ابو الفيصل
زيزوومي نشيط
- إنضم
- 26 مايو 2008
- المشاركات
- 173
- مستوى التفاعل
- 11
- النقاط
- 210
غير متصل
من فضلك قم بتحديث الصفحة لمشاهدة المحتوى المخفي
السلام عليكم ورحمة الله وبركاته
اخواني ... نحن مجموعه مشتركين في الاوربت عاملين شبكة انترنت من خلال توصيلات سلكيه ولاسلكيه
حصلت معنا مشكله بالشبكه .. تقطع والنت بطيء
لما اشبك النت على جهازي لا اجد اي مشكله نهائي والنت 100 %
اختربنا الاجهزه جهاز جهاز . ووجدت في احد الاجهزه ان الابلود فيه عالي جدا لدرجة انه اعلى من الداونلود ... يحسب على طول حتى بدون اتصفح
شرحت المشكله للدعم الفني بالاوربت واكدوا لي ان هذا الجهاز به ابلود عالي جدا جدا ويعمل على قطع الارسال على بقية الاجهزه واحتمال كبير يكون فايروس
وعندما افصل هذا الجهاز من الشبكه تصير الشبكه 100 %
واذا شبكته نرجع الى وضع الانقطاع والبطء
ايضا ركبت برنامج الافيرا انتي فايروس وكلما احاول اعمل له تحديث لايقبل يتحرك الخط قليلا ثم يتوقف
عملت لكم اخواني فحص باداة الكاسبر وهذا التقرير
Scan
----
Scanned: 3582
Detected: 0
Untreated: 0
Start time: 26/04/1430 10:53:43 م
Duration: 00:01:50
Finish time: 26/04/1430 10:55:33 م
Detected
--------
Status Object
------ ------
Events
------
Time Name Status Reason
---- ---- ------ ------
26/04/1430 10:53:55 م Running module: smss.exe\smss.exe ok scanned
26/04/1430 10:53:57 م File: C:\WINDOWS\System32\smss.exe ok scanned
26/04/1430 10:53:57 م Running module: smss.exe\ntdll.dll ok scanned
26/04/1430 10:53:57 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
26/04/1430 10:53:57 م Running module: csrss.exe\csrss.exe ok scanned
26/04/1430 10:53:57 م File: C:\WINDOWS\system32\csrss.exe ok scanned
26/04/1430 10:53:57 م Running module: csrss.exe\ntdll.dll ok scanned
26/04/1430 10:53:57 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
26/04/1430 10:53:57 م Running module: csrss.exe\CSRSRV.dll ok scanned
26/04/1430 10:53:57 م File: C:\WINDOWS\system32\CSRSRV.dll ok scanned
26/04/1430 10:53:57 م Running module: csrss.exe\basesrv.dll ok scanned
26/04/1430 10:53:57 م File: C:\WINDOWS\system32\basesrv.dll ok scanned
26/04/1430 10:53:57 م Running module: csrss.exe\winsrv.dll ok scanned
26/04/1430 10:53:58 م File: C:\WINDOWS\system32\winsrv.dll ok scanned
26/04/1430 10:53:58 م Running module: csrss.exe\USER32.dll ok scanned
26/04/1430 10:53:58 م File: C:\WINDOWS\system32\USER32.dll ok scanned
26/04/1430 10:53:58 م Running module: csrss.exe\KERNEL32.dll ok scanned
26/04/1430 10:53:58 م File: C:\WINDOWS\system32\KERNEL32.dll ok scanned
26/04/1430 10:53:58 م Running module: csrss.exe\GDI32.dll ok scanned
Statistics
----------
Object Scanned Detected Untreated Deleted Moved to Quarantine Archives Packed files Password protected Corrupted
------ ------- -------- --------- ------- ------------------- -------- ------------ ------------------ ---------
Settings
--------
Parameter Value
--------- -----
Security Level Recommended
Action Disinfect, delete if disinfection fails
Run mode Manually
File types Scan all files
Scan only new and changed files No
Scan archives All
Scan embedded OLE objects All
Skip if object is larger than No
Skip if scan takes longer than No
Parse email formats No
Scan password-protected archives No
Enable iChecker technology No
Enable iSwift technology No
Show detected threats on "Detected" tab Yes
Rootkits search Yes
Deep rootkits search No
Use heuristic analyzer Yes
Quarantine
----------
Status Object Size Added
------ ------ ---- -----
Backup
------
Status Object Size
------ ------ ----
وهذا تقرير ايضا لاداة الكاسبر لكن اضفت القرص المحلي D
Scan
----
Scanned: 41116
Detected: 0
Untreated: 0
Start time: 26/04/1430 10:57:19 م
Duration: 00:39:00
Finish time: 26/04/1430 11:36:19 م
Detected
--------
Status Object
------ ------
Events
------
Time Name Status Reason
---- ---- ------ ------
26/04/1430 10:57:48 م Running module: smss.exe\smss.exe ok scanned
26/04/1430 10:57:50 م File: C:\WINDOWS\System32\smss.exe ok scanned
26/04/1430 10:57:51 م Running module: smss.exe\ntdll.dll ok scanned
26/04/1430 10:57:52 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
26/04/1430 10:57:52 م Running module: csrss.exe\csrss.exe ok scanned
26/04/1430 10:57:53 م File: C:\WINDOWS\system32\csrss.exe ok scanned
26/04/1430 10:57:53 م Running module: csrss.exe\ntdll.dll ok scanned
26/04/1430 10:57:53 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
26/04/1430 10:57:53 م Running module: csrss.exe\CSRSRV.dll ok scanned
26/04/1430 10:57:53 م File: C:\WINDOWS\system32\CSRSRV.dll ok scanned
26/04/1430 10:57:53 م Running module: csrss.exe\basesrv.dll ok scanned
26/04/1430 10:57:53 م File: C:\WINDOWS\system32\basesrv.dll ok scanned
26/04/1430 10:57:53 م Running module: csrss.exe\winsrv.dll ok scanned
26/04/1430 10:57:54 م File: C:\WINDOWS\system32\winsrv.dll ok scanned
26/04/1430 10:57:54 م Running module: csrss.exe\USER32.dll ok scanned
26/04/1430 10:57:57 م File: C:\WINDOWS\system32\USER32.dll ok scanned
26/04/1430 10:57:57 م Running module: csrss.exe\KERNEL32.dll ok scanned
26/04/1430 10:57:58 م File: C:\WINDOWS\system32\KERNEL32.dll ok scanned
26/04/1430 10:57:58 م Running module: csrss.exe\GDI32.dll ok scanned
26/04/1430 10:57:59 م File: C:\WINDOWS\system32\GDI32.dll ok scanned
26/04/1430 10:57:59 م Running module: csrss.exe\LPK.DLL ok scanned
26/04/1430 10:57:59 م File: C:\WINDOWS\system32\LPK.DLL ok scanned
26/04/1430 10:57:59 م Running module: csrss.exe\USP10.dll ok scanned
26/04/1430 10:58:00 م File: C:\WINDOWS\system32\USP10.dll ok scanned
26/04/1430 10:58:00 م Running module: csrss.exe\msvcrt.dll ok scanned
Statistics
----------
Object Scanned Detected Untreated Deleted Moved to Quarantine Archives Packed files Password protected Corrupted
------ ------- -------- --------- ------- ------------------- -------- ------------ ------------------ ---------
Settings
--------
Parameter Value
--------- -----
Security Level Recommended
Action Disinfect, delete if disinfection fails
Run mode Manually
File types Scan all files
Scan only new and changed files No
Scan archives All
Scan embedded OLE objects All
Skip if object is larger than No
Skip if scan takes longer than No
Parse email formats No
Scan password-protected archives No
Enable iChecker technology No
Enable iSwift technology No
Show detected threats on "Detected" tab Yes
Rootkits search Yes
Deep rootkits search No
Use heuristic analyzer Yes
Quarantine
----------
Status Object Size Added
------ ------ ---- -----
Backup
------
Status Object Size
------ ------ ----
وهذا تقرير hijackthis
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:49:11 م, on 21/04/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\VTTimer.exe
C:\WINDOWS\system32\VTtrayp.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Java\jre1.6.0\bin\jusched.exe
C:\WINDOWS\sm56hlpr.exe
C:\Program Files\DU Meter\DUMeter.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\fast\Desktop\HiJackThis.exe
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe"
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [DU Meter] C:\Program Files\DU Meter\DUMeter.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: is-U862A.lnk = C:\Documents and Settings\fast\Desktop\Virus Removal Tool\is-U862A\startup.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O8 - Extra context menu item: &تصدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O20 - Winlogon Notify: crypt - C:\WINDOWS\
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
--
End of file - 4706 bytes
ان شاء الله اجد لدى عباقرة زيزووم الحل المناسب
ولكم كل تحيه وتقدير
اخواني ... نحن مجموعه مشتركين في الاوربت عاملين شبكة انترنت من خلال توصيلات سلكيه ولاسلكيه
حصلت معنا مشكله بالشبكه .. تقطع والنت بطيء
لما اشبك النت على جهازي لا اجد اي مشكله نهائي والنت 100 %
اختربنا الاجهزه جهاز جهاز . ووجدت في احد الاجهزه ان الابلود فيه عالي جدا لدرجة انه اعلى من الداونلود ... يحسب على طول حتى بدون اتصفح
شرحت المشكله للدعم الفني بالاوربت واكدوا لي ان هذا الجهاز به ابلود عالي جدا جدا ويعمل على قطع الارسال على بقية الاجهزه واحتمال كبير يكون فايروس
وعندما افصل هذا الجهاز من الشبكه تصير الشبكه 100 %
واذا شبكته نرجع الى وضع الانقطاع والبطء
ايضا ركبت برنامج الافيرا انتي فايروس وكلما احاول اعمل له تحديث لايقبل يتحرك الخط قليلا ثم يتوقف
عملت لكم اخواني فحص باداة الكاسبر وهذا التقرير
Scan
----
Scanned: 3582
Detected: 0
Untreated: 0
Start time: 26/04/1430 10:53:43 م
Duration: 00:01:50
Finish time: 26/04/1430 10:55:33 م
Detected
--------
Status Object
------ ------
Events
------
Time Name Status Reason
---- ---- ------ ------
26/04/1430 10:53:55 م Running module: smss.exe\smss.exe ok scanned
26/04/1430 10:53:57 م File: C:\WINDOWS\System32\smss.exe ok scanned
26/04/1430 10:53:57 م Running module: smss.exe\ntdll.dll ok scanned
26/04/1430 10:53:57 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
26/04/1430 10:53:57 م Running module: csrss.exe\csrss.exe ok scanned
26/04/1430 10:53:57 م File: C:\WINDOWS\system32\csrss.exe ok scanned
26/04/1430 10:53:57 م Running module: csrss.exe\ntdll.dll ok scanned
26/04/1430 10:53:57 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
26/04/1430 10:53:57 م Running module: csrss.exe\CSRSRV.dll ok scanned
26/04/1430 10:53:57 م File: C:\WINDOWS\system32\CSRSRV.dll ok scanned
26/04/1430 10:53:57 م Running module: csrss.exe\basesrv.dll ok scanned
26/04/1430 10:53:57 م File: C:\WINDOWS\system32\basesrv.dll ok scanned
26/04/1430 10:53:57 م Running module: csrss.exe\winsrv.dll ok scanned
26/04/1430 10:53:58 م File: C:\WINDOWS\system32\winsrv.dll ok scanned
26/04/1430 10:53:58 م Running module: csrss.exe\USER32.dll ok scanned
26/04/1430 10:53:58 م File: C:\WINDOWS\system32\USER32.dll ok scanned
26/04/1430 10:53:58 م Running module: csrss.exe\KERNEL32.dll ok scanned
26/04/1430 10:53:58 م File: C:\WINDOWS\system32\KERNEL32.dll ok scanned
26/04/1430 10:53:58 م Running module: csrss.exe\GDI32.dll ok scanned
Statistics
----------
Object Scanned Detected Untreated Deleted Moved to Quarantine Archives Packed files Password protected Corrupted
------ ------- -------- --------- ------- ------------------- -------- ------------ ------------------ ---------
Settings
--------
Parameter Value
--------- -----
Security Level Recommended
Action Disinfect, delete if disinfection fails
Run mode Manually
File types Scan all files
Scan only new and changed files No
Scan archives All
Scan embedded OLE objects All
Skip if object is larger than No
Skip if scan takes longer than No
Parse email formats No
Scan password-protected archives No
Enable iChecker technology No
Enable iSwift technology No
Show detected threats on "Detected" tab Yes
Rootkits search Yes
Deep rootkits search No
Use heuristic analyzer Yes
Quarantine
----------
Status Object Size Added
------ ------ ---- -----
Backup
------
Status Object Size
------ ------ ----
وهذا تقرير ايضا لاداة الكاسبر لكن اضفت القرص المحلي D
Scan
----
Scanned: 41116
Detected: 0
Untreated: 0
Start time: 26/04/1430 10:57:19 م
Duration: 00:39:00
Finish time: 26/04/1430 11:36:19 م
Detected
--------
Status Object
------ ------
Events
------
Time Name Status Reason
---- ---- ------ ------
26/04/1430 10:57:48 م Running module: smss.exe\smss.exe ok scanned
26/04/1430 10:57:50 م File: C:\WINDOWS\System32\smss.exe ok scanned
26/04/1430 10:57:51 م Running module: smss.exe\ntdll.dll ok scanned
26/04/1430 10:57:52 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
26/04/1430 10:57:52 م Running module: csrss.exe\csrss.exe ok scanned
26/04/1430 10:57:53 م File: C:\WINDOWS\system32\csrss.exe ok scanned
26/04/1430 10:57:53 م Running module: csrss.exe\ntdll.dll ok scanned
26/04/1430 10:57:53 م File: C:\WINDOWS\system32\ntdll.dll ok scanned
26/04/1430 10:57:53 م Running module: csrss.exe\CSRSRV.dll ok scanned
26/04/1430 10:57:53 م File: C:\WINDOWS\system32\CSRSRV.dll ok scanned
26/04/1430 10:57:53 م Running module: csrss.exe\basesrv.dll ok scanned
26/04/1430 10:57:53 م File: C:\WINDOWS\system32\basesrv.dll ok scanned
26/04/1430 10:57:53 م Running module: csrss.exe\winsrv.dll ok scanned
26/04/1430 10:57:54 م File: C:\WINDOWS\system32\winsrv.dll ok scanned
26/04/1430 10:57:54 م Running module: csrss.exe\USER32.dll ok scanned
26/04/1430 10:57:57 م File: C:\WINDOWS\system32\USER32.dll ok scanned
26/04/1430 10:57:57 م Running module: csrss.exe\KERNEL32.dll ok scanned
26/04/1430 10:57:58 م File: C:\WINDOWS\system32\KERNEL32.dll ok scanned
26/04/1430 10:57:58 م Running module: csrss.exe\GDI32.dll ok scanned
26/04/1430 10:57:59 م File: C:\WINDOWS\system32\GDI32.dll ok scanned
26/04/1430 10:57:59 م Running module: csrss.exe\LPK.DLL ok scanned
26/04/1430 10:57:59 م File: C:\WINDOWS\system32\LPK.DLL ok scanned
26/04/1430 10:57:59 م Running module: csrss.exe\USP10.dll ok scanned
26/04/1430 10:58:00 م File: C:\WINDOWS\system32\USP10.dll ok scanned
26/04/1430 10:58:00 م Running module: csrss.exe\msvcrt.dll ok scanned
Statistics
----------
Object Scanned Detected Untreated Deleted Moved to Quarantine Archives Packed files Password protected Corrupted
------ ------- -------- --------- ------- ------------------- -------- ------------ ------------------ ---------
Settings
--------
Parameter Value
--------- -----
Security Level Recommended
Action Disinfect, delete if disinfection fails
Run mode Manually
File types Scan all files
Scan only new and changed files No
Scan archives All
Scan embedded OLE objects All
Skip if object is larger than No
Skip if scan takes longer than No
Parse email formats No
Scan password-protected archives No
Enable iChecker technology No
Enable iSwift technology No
Show detected threats on "Detected" tab Yes
Rootkits search Yes
Deep rootkits search No
Use heuristic analyzer Yes
Quarantine
----------
Status Object Size Added
------ ------ ---- -----
Backup
------
Status Object Size
------ ------ ----
وهذا تقرير hijackthis
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:49:11 م, on 21/04/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\VTTimer.exe
C:\WINDOWS\system32\VTtrayp.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Java\jre1.6.0\bin\jusched.exe
C:\WINDOWS\sm56hlpr.exe
C:\Program Files\DU Meter\DUMeter.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\fast\Desktop\HiJackThis.exe
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe"
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [DU Meter] C:\Program Files\DU Meter\DUMeter.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: is-U862A.lnk = C:\Documents and Settings\fast\Desktop\Virus Removal Tool\is-U862A\startup.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O8 - Extra context menu item: &تصدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O20 - Winlogon Notify: crypt - C:\WINDOWS\
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
--
End of file - 4706 bytes
ان شاء الله اجد لدى عباقرة زيزووم الحل المناسب
ولكم كل تحيه وتقدير
