من فضلك قم بتحديث الصفحة لمشاهدة المحتوى المخفي
السلام عليكم ورحمة الله وبركاته
اخواني الكرام اعتذر اولاً ان لم يكن الموضوع بموقعه المخصص،
وهذا نتيجة فحص جهازي ببرنامج الكاسبر سكاي الفحص المجاني الموجود بالموقع
ارجوا افادتي ان كان هناك فيروسات يجب ازالتها وكيف الطريقة
وفقكم الله
الى التقرير
BitDefender QuickScan Beta 0.9.4.0 - Apr 30 2009, 19:57:49
----------------------------------------------------------------
Scan date/time: Sun May 10 04:26:27 2009
Machine Id: 80A2EAC5
Processes
----------
<unsigned> a.exe 588 C:\Documents and Settings\expert\Local Settings\Temp\a.exe
<unsigned> RichVideo Module 1328 C:\Program Files\CyberLink\Shared Files\RichVideo.exe
<unsigned> FolderSize Service 564 C:\Program Files\FolderSize\FolderSizeSvc.exe
<unsigned> msa.exe 632 C:\WINDOWS\msa.exe
<verified> Machine Debug Manager 752 C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
<verified> ESET GUI 612 C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
<verified> ESET Service 476 C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
<verified> Internet Explorer 3840 C:\Program Files\Internet Explorer\iexplore.exe
<verified> Bluetooth Support Server 1412 C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
<verified> Windows Explorer 252 C:\WINDOWS\Explorer.EXE
<verified> Client Server Runtime Process 928 C:\WINDOWS\system32\csrss.exe
<verified> CTF Loader 620 C:\WINDOWS\system32\ctfmon.exe
<verified> CTF Loader 824 C:\WINDOWS\system32\ctfmon.exe
<verified> LSA Shell (Export Version) 1008 C:\WINDOWS\system32\lsass.exe
<verified> Services and Controller app 996 C:\WINDOWS\system32\services.exe
<verified> Windows NT Session Manager 856 C:\WINDOWS\System32\smss.exe
<verified> Spooler SubSystem App 260 C:\WINDOWS\system32\spoolsv.exe
<verified> Generic Host Process for Win32 Services 1172 C:\WINDOWS\system32\svchost.exe
<verified> Generic Host Process for Win32 Services 1240 C:\WINDOWS\system32\svchost.exe
<verified> Generic Host Process for Win32 Services 1384 C:\WINDOWS\System32\svchost.exe
<verified> Generic Host Process for Win32 Services 1460 C:\WINDOWS\system32\svchost.exe
<verified> Generic Host Process for Win32 Services 1504 C:\WINDOWS\system32\svchost.exe
<verified> Windows NT Logon Application 952 C:\WINDOWS\system32\winlogon.exe
Autoruns and critical files
---------------------------
c:\documents and settings\expert\local settings\temp\a.exe
c:\program files\eset\eset nod32 antivirus\egui.exe
c:\program files\microsoft office\office12\onenotem.exe
c:\windows\msa.exe
c:\windows\system32\crypt32.dll
c:\windows\system32\cryptnet.dll
c:\windows\system32\cscdll.dll
c:\windows\system32\ctfmon.exe
c:\windows\system32\igfxdev.dll
c:\windows\system32\logonui.exe
c:\windows\system32\mswsock.dll
c:\windows\system32\rsvpsp.dll
c:\windows\system32\sclgntfy.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wlnotify.dll
Browser plugins
---------------
c:\program files\common files\adobe\acrobat\activex\acroiehelpershim.dll
c:\program files\google\googletoolbar1.dll
c:\program files\microsoft office\office12\grooveshellextensions.dll
c:\program files\yahoo!\common\npyaxmpb.dll
c:\program files\yahoo!\companion\installs\cpn\yt.dll
c:\program files\yahoo!\shared\npystate.dll
c:\windows\downloaded program files\activeqscan.ocx
c:\windows\downloaded program files\imcsec.dll
c:\windows\downloaded program files\imcv1.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\macromed\flash\npswf32.dll
c:\windows\system32\msxml71.dll
Missing files
-------------
File not found: C:\PROGRA~1\LAUNCH~1\LManager.exe
referenced in: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\"LManager"
File not found: C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
referenced in: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\"swg"
File not found: C:\Program Files\Messenger\msmsgs.exe
referenced in: HKLM\Software\Microsoft\Internet Explorer\Extensions\{FB5F1910-F110-11d2-BB9E-00C04F795683}\"Exec"
File not found: C:\Program Files\Paltalk Messenger\Paltalk.exe
referenced in: HKLM\Software\Microsoft\Internet Explorer\Extensions\{4EAFEF58-EEFA-4116-983D-03B49BCBFFFE}\"Exec"
File not found: C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
referenced in: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\"SynTPEnh"
Scan
----
The following files must be uploaded for server-side scanning:
C:\Documents and Settings\expert\Local Settings\Temp\a.exe
C:\WINDOWS\msa.exe
C:\WINDOWS\system32\msxml71.dll
Upload started - 3 file(s)
Upload: C:\Documents and Settings\expert\Local Settings\Temp\a.exe - (recommended) 84996 bytes, hash: 1a9e239fe5fcfea066d751c2ea60eca4
Upload: C:\WINDOWS\msa.exe - (recommended) 97796 bytes, hash: b8862a5948e68296c101acc6716c4412
Upload: C:\WINDOWS\system32\msxml71.dll - 129540 bytes, hash: 7f0d92635ad88cab689eb829277d98a4
Upload speed - 12 KB/s
Upload finished - 3 uploaded, 0 failed
The uploaded file(s) were found clean.
Found 1 infected item!
C:\WINDOWS\system32\mhhojyd.dll - Win32.Worm.Downadup.Gen
تحياتي
اخواني الكرام اعتذر اولاً ان لم يكن الموضوع بموقعه المخصص،
وهذا نتيجة فحص جهازي ببرنامج الكاسبر سكاي الفحص المجاني الموجود بالموقع
ارجوا افادتي ان كان هناك فيروسات يجب ازالتها وكيف الطريقة
وفقكم الله
الى التقرير
BitDefender QuickScan Beta 0.9.4.0 - Apr 30 2009, 19:57:49
----------------------------------------------------------------
Scan date/time: Sun May 10 04:26:27 2009
Machine Id: 80A2EAC5
Processes
----------
<unsigned> a.exe 588 C:\Documents and Settings\expert\Local Settings\Temp\a.exe
<unsigned> RichVideo Module 1328 C:\Program Files\CyberLink\Shared Files\RichVideo.exe
<unsigned> FolderSize Service 564 C:\Program Files\FolderSize\FolderSizeSvc.exe
<unsigned> msa.exe 632 C:\WINDOWS\msa.exe
<verified> Machine Debug Manager 752 C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
<verified> ESET GUI 612 C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
<verified> ESET Service 476 C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
<verified> Internet Explorer 3840 C:\Program Files\Internet Explorer\iexplore.exe
<verified> Bluetooth Support Server 1412 C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
<verified> Windows Explorer 252 C:\WINDOWS\Explorer.EXE
<verified> Client Server Runtime Process 928 C:\WINDOWS\system32\csrss.exe
<verified> CTF Loader 620 C:\WINDOWS\system32\ctfmon.exe
<verified> CTF Loader 824 C:\WINDOWS\system32\ctfmon.exe
<verified> LSA Shell (Export Version) 1008 C:\WINDOWS\system32\lsass.exe
<verified> Services and Controller app 996 C:\WINDOWS\system32\services.exe
<verified> Windows NT Session Manager 856 C:\WINDOWS\System32\smss.exe
<verified> Spooler SubSystem App 260 C:\WINDOWS\system32\spoolsv.exe
<verified> Generic Host Process for Win32 Services 1172 C:\WINDOWS\system32\svchost.exe
<verified> Generic Host Process for Win32 Services 1240 C:\WINDOWS\system32\svchost.exe
<verified> Generic Host Process for Win32 Services 1384 C:\WINDOWS\System32\svchost.exe
<verified> Generic Host Process for Win32 Services 1460 C:\WINDOWS\system32\svchost.exe
<verified> Generic Host Process for Win32 Services 1504 C:\WINDOWS\system32\svchost.exe
<verified> Windows NT Logon Application 952 C:\WINDOWS\system32\winlogon.exe
Autoruns and critical files
---------------------------
c:\documents and settings\expert\local settings\temp\a.exe
c:\program files\eset\eset nod32 antivirus\egui.exe
c:\program files\microsoft office\office12\onenotem.exe
c:\windows\msa.exe
c:\windows\system32\crypt32.dll
c:\windows\system32\cryptnet.dll
c:\windows\system32\cscdll.dll
c:\windows\system32\ctfmon.exe
c:\windows\system32\igfxdev.dll
c:\windows\system32\logonui.exe
c:\windows\system32\mswsock.dll
c:\windows\system32\rsvpsp.dll
c:\windows\system32\sclgntfy.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wlnotify.dll
Browser plugins
---------------
c:\program files\common files\adobe\acrobat\activex\acroiehelpershim.dll
c:\program files\google\googletoolbar1.dll
c:\program files\microsoft office\office12\grooveshellextensions.dll
c:\program files\yahoo!\common\npyaxmpb.dll
c:\program files\yahoo!\companion\installs\cpn\yt.dll
c:\program files\yahoo!\shared\npystate.dll
c:\windows\downloaded program files\activeqscan.ocx
c:\windows\downloaded program files\imcsec.dll
c:\windows\downloaded program files\imcv1.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\macromed\flash\npswf32.dll
c:\windows\system32\msxml71.dll
Missing files
-------------
File not found: C:\PROGRA~1\LAUNCH~1\LManager.exe
referenced in: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\"LManager"
File not found: C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
referenced in: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\"swg"
File not found: C:\Program Files\Messenger\msmsgs.exe
referenced in: HKLM\Software\Microsoft\Internet Explorer\Extensions\{FB5F1910-F110-11d2-BB9E-00C04F795683}\"Exec"
File not found: C:\Program Files\Paltalk Messenger\Paltalk.exe
referenced in: HKLM\Software\Microsoft\Internet Explorer\Extensions\{4EAFEF58-EEFA-4116-983D-03B49BCBFFFE}\"Exec"
File not found: C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
referenced in: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\"SynTPEnh"
Scan
----
The following files must be uploaded for server-side scanning:
C:\Documents and Settings\expert\Local Settings\Temp\a.exe
C:\WINDOWS\msa.exe
C:\WINDOWS\system32\msxml71.dll
Upload started - 3 file(s)
Upload: C:\Documents and Settings\expert\Local Settings\Temp\a.exe - (recommended) 84996 bytes, hash: 1a9e239fe5fcfea066d751c2ea60eca4
Upload: C:\WINDOWS\msa.exe - (recommended) 97796 bytes, hash: b8862a5948e68296c101acc6716c4412
Upload: C:\WINDOWS\system32\msxml71.dll - 129540 bytes, hash: 7f0d92635ad88cab689eb829277d98a4
Upload speed - 12 KB/s
Upload finished - 3 uploaded, 0 failed
The uploaded file(s) were found clean.
Found 1 infected item!
C:\WINDOWS\system32\mhhojyd.dll - Win32.Worm.Downadup.Gen
تحياتي
