غنوجة نجد

زيزوومى مميز
إنضم
2 نوفمبر 2007
المشاركات
920
مستوى التفاعل
7
النقاط
520
غير متصل
السلام عليكم رحمة الرحيم

مدري هاذا فايروس ولا ايش ملف دل هو

سويت بحث وحاولت احذفه ولا انحذف عن طريق النود والنود ما حذفه بعد سويت لديت ورستارت

وحاولت احذفه بالبحث ولقيته بس مو راضي ينحذف؟
ولا حذفه ايش يكون؟

الصوره

i13753_5555.jpg



i13754_66666.jpg

 

الموقع يفتح بس لما افحص الملف يعلق الموقع صفحه بيضاء؟
 
بعد الفتح اختاري اللغة الانجليزية للموقع
اللغة العربية فيها مشاكل
 
عطل برامج الحماية عن العمل
ثم
حمل الاداة التالية واحفظها على سطح المكتب
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

عند تشغيلها بتظهر لك رسالة ,, اضغط على >> Yes
بعدها بتظهر لك رساله ثانيه ,, اضغط على >> Yes
اثناء الفحص ممكن يعاد تشغيل الجهاز
وبعد اعادة التشغيل ,, سوف تبدأ الاداة بالفحص مرره ثانيه
لا تقم بتشغيل اي برنامج ،، ومهما طالت عملية الفحص انتظر حتى تنتهي
انتظر حتى يظهر لك تقرير ،،انسخه والصقه بمشاركتك القادمة
 
فحصت فيها قبل ما تحطها بالمووضع كلامك صحيح :ok:

حذفت اربع ملفات دل دخلت علي السيف مود

وعمل رستارت للجهاز والحمد لله كل شي تمام مشكوووووور

شوف تقريري

ComboFix 09-05-23.03 - Abeer$ 05/26/2009 14:07.1 - NTFSx86 MINIMAL
Microsoft Windows XP Professional 5.1.2600.3.1256.966.1033.18.2038.1752 [GMT 3:00]
Running from: c:\documents and settings\Abeer$\Desktop\دكيومانت\ComboFix.exe
FW: ESET Personal firewall *disabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\Abeer$\Application Data\dghzsimz
c:\documents and settings\Abeer$\Application Data\dghzsimz\profiles.ini
c:\documents and settings\Abeer$\Application Data\dghzsimz\Profiles\l560z7xz.default\cert8.db
c:\documents and settings\Abeer$\Application Data\dghzsimz\Profiles\l560z7xz.default\compatibility.ini
c:\documents and settings\Abeer$\Application Data\dghzsimz\Profiles\l560z7xz.default\compreg.dat
c:\documents and settings\Abeer$\Application Data\dghzsimz\Profiles\l560z7xz.default\cookies.sqlite
c:\documents and settings\Abeer$\Application Data\dghzsimz\Profiles\l560z7xz.default\formhistory.sqlite
c:\documents and settings\Abeer$\Application Data\dghzsimz\Profiles\l560z7xz.default\key3.db
c:\documents and settings\Abeer$\Application Data\dghzsimz\Profiles\l560z7xz.default\localstore.rdf
c:\documents and settings\Abeer$\Application Data\dghzsimz\Profiles\l560z7xz.default\permissions.sqlite
c:\documents and settings\Abeer$\Application Data\dghzsimz\Profiles\l560z7xz.default\places.sqlite-journal
c:\documents and settings\Abeer$\Application Data\dghzsimz\Profiles\l560z7xz.default\places.sqlite
c:\documents and settings\Abeer$\Application Data\dghzsimz\Profiles\l560z7xz.default\pluginreg.dat
c:\documents and settings\Abeer$\Application Data\dghzsimz\Profiles\l560z7xz.default\prefs.js
c:\documents and settings\Abeer$\Application Data\dghzsimz\Profiles\l560z7xz.default\secmod.db
c:\documents and settings\Abeer$\Application Data\dghzsimz\Profiles\l560z7xz.default\webappsstore.sqlite
c:\documents and settings\Abeer$\Application Data\dghzsimz\Profiles\l560z7xz.default\xpti.dat
c:\documents and settings\Abeer$\Local Settings\Application Data\dghzsimz
c:\documents and settings\Abeer$\Local Settings\Application Data\dghzsimz\Profiles\l560z7xz.default\urlclassifier3.sqlite
c:\documents and settings\Abeer$\Local Settings\Application Data\dghzsimz\Profiles\l560z7xz.default\XPC.mfl
c:\documents and settings\NetworkService\Application Data\dghzsimz
c:\documents and settings\NetworkService\Application Data\dghzsimz\profiles.ini
c:\documents and settings\NetworkService\Application Data\dghzsimz\Profiles\j8i2hnni.default\cert8.db
c:\documents and settings\NetworkService\Application Data\dghzsimz\Profiles\j8i2hnni.default\compatibility.ini
c:\documents and settings\NetworkService\Application Data\dghzsimz\Profiles\j8i2hnni.default\compreg.dat
c:\documents and settings\NetworkService\Application Data\dghzsimz\Profiles\j8i2hnni.default\cookies.sqlite
c:\documents and settings\NetworkService\Application Data\dghzsimz\Profiles\j8i2hnni.default\formhistory.sqlite
c:\documents and settings\NetworkService\Application Data\dghzsimz\Profiles\j8i2hnni.default\key3.db
c:\documents and settings\NetworkService\Application Data\dghzsimz\Profiles\j8i2hnni.default\localstore.rdf
c:\documents and settings\NetworkService\Application Data\dghzsimz\Profiles\j8i2hnni.default\permissions.sqlite
c:\documents and settings\NetworkService\Application Data\dghzsimz\Profiles\j8i2hnni.default\places.sqlite-journal
c:\documents and settings\NetworkService\Application Data\dghzsimz\Profiles\j8i2hnni.default\places.sqlite
c:\documents and settings\NetworkService\Application Data\dghzsimz\Profiles\j8i2hnni.default\pluginreg.dat
c:\documents and settings\NetworkService\Application Data\dghzsimz\Profiles\j8i2hnni.default\prefs.js
c:\documents and settings\NetworkService\Application Data\dghzsimz\Profiles\j8i2hnni.default\secmod.db
c:\documents and settings\NetworkService\Application Data\dghzsimz\Profiles\j8i2hnni.default\webappsstore.sqlite
c:\documents and settings\NetworkService\Application Data\dghzsimz\Profiles\j8i2hnni.default\xpti.dat
c:\documents and settings\NetworkService\Local Settings\Application Data\dghzsimz
c:\documents and settings\NetworkService\Local Settings\Application Data\dghzsimz\Profiles\j8i2hnni.default\urlclassifier3.sqlite
c:\documents and settings\NetworkService\Local Settings\Application Data\dghzsimz\Profiles\j8i2hnni.default\XPC.mfl
c:\windows\system32\cbjugjks.dll
c:\windows\system32\drivers\ffykxrzd.sys
c:\windows\system32\drivers\kungsflkcfyxde.sys
c:\windows\system32\drivers\mchfwbgo.sys
c:\windows\system32\jdbpeqv.dll
c:\windows\system32\kungsfpafsxnlt.dat
c:\windows\system32\kungsfpuyevgrv.dll
c:\windows\system32\pvwdlpv.dll
c:\windows\system32\sfgatmer.dll
c:\windows\system32\tmp.reg
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_FFYKXRZD
-------\Legacy_KNJUPJGW
-------\Service_ffykxrzd
-------\Service_knjupjgw
-------\Service_kungsfjgvitqru​

((((((((((((((((((((((((( Files Created from 2009-04-26 to 2009-05-26 )))))))))))))))))))))))))))))))
.
2009-05-26 11:01 . 2009-05-26 11:01 -------- d-----w c:\windows\system32\dllcache
2009-05-26 11:01 . 2009-05-26 11:01 -------- d-----w C:\Temp
2009-05-25 21:25 . 2009-05-25 21:25 -------- d-----w c:\windows\PaltalkScene
2009-05-25 07:15 . 2009-05-25 07:15 -------- d-----w c:\documents and settings\Abeer$\Application Data\AVI ReComp
2009-05-25 07:15 . 2009-05-25 07:15 -------- d-----w c:\program files\Gabest
2009-05-25 07:15 . 2009-05-25 07:15 -------- d-----w c:\program files\Xvid
2009-05-25 07:15 . 2009-05-25 07:15 -------- d-----w c:\program files\AviSynth 2.5
2009-05-25 07:14 . 2009-05-25 07:15 -------- d-----w c:\program files\AVI ReComp
2009-05-24 21:11 . 2009-05-24 21:12 -------- d-----w c:\documents and settings\Abeer$\Application Data\Download Manager
2009-05-24 11:39 . 2009-05-24 11:39 -------- d-----w c:\documents and settings\Abeer$\Local Settings\Application Data\ESET
2009-05-22 17:38 . 2009-05-22 17:38 -------- d-----w c:\program files\Lavalys
2009-05-22 17:30 . 2009-05-22 17:30 -------- d-----w c:\documents and settings\Abeer$\Application Data\gtopala
2009-05-22 17:23 . 2009-05-22 17:23 -------- d-----w c:\documents and settings\Abeer$\Application Data\BinarySense
2009-05-22 17:22 . 2009-05-22 17:22 23600 ----a-w c:\windows\system32\drivers\TVICHW32.SYS
2009-05-22 17:22 . 2009-05-22 17:22 -------- d-----w c:\documents and settings\Abeer$\Local Settings\Application Data\TouchStoneSoftware
2009-05-22 15:31 . 2009-05-25 21:25 -------- d-----w c:\program files\Paltalk Messenger
2009-05-22 14:14 . 2009-05-22 14:14 -------- d-----w c:\documents and settings\Abeer$\Local Settings\Application Data\Identities
2009-05-22 04:37 . 2009-05-22 04:44 -------- d-----w c:\documents and settings\Abeer$\Local Settings\Application Data\Google
2009-05-21 16:34 . 2009-05-21 16:34 -------- d-----w c:\documents and settings\Abeer$\Application Data\Nero
2009-05-21 16:33 . 2007-08-03 09:48 33576 ----a-w c:\windows\system32\BCGPOleAcc.dll
2009-05-21 16:33 . 2007-08-03 09:48 3036456 ----a-w c:\windows\system32\BCGCBPRO860u80.dll
2009-05-21 16:33 . 2006-03-17 12:49 368640 ----a-w c:\windows\system32\TwnLib4.dll
2009-05-21 16:33 . 2006-03-17 09:45 802816 ----a-w c:\windows\system32\imagXRA7.dll
2009-05-21 16:33 . 2006-03-17 09:45 497296 ----a-w c:\windows\system32\imagXpr7.dll
2009-05-21 16:33 . 2006-03-17 09:45 258048 ----a-w c:\windows\system32\imagXR7.dll
2009-05-21 16:33 . 2006-03-17 09:45 1757184 ----a-w c:\windows\system32\imagX7.dll
2009-05-21 16:33 . 2009-05-21 16:33 -------- d-----w c:\program files\Common Files\Ahead
2009-05-21 16:33 . 2009-05-21 16:33 -------- d-----w c:\program files\Nero
2009-05-21 16:26 . 2008-12-11 05:38 159600 ----a-w c:\windows\system32\drivers\pctgntdi.sys
2009-05-21 16:26 . 2009-04-03 08:18 130936 ----a-w c:\windows\system32\drivers\PCTCore.sys
2009-05-21 16:26 . 2008-12-18 09:16 73840 ----a-w c:\windows\system32\drivers\PCTAppEvent.sys
2009-05-21 16:26 . 2009-05-21 16:30 -------- d-----w c:\program files\Common Files\PC Tools
2009-05-21 16:26 . 2008-12-10 08:36 64392 ----a-w c:\windows\system32\drivers\pctplsg.sys
2009-05-21 16:25 . 2009-05-25 10:10 -------- d-----w c:\program files\Spyware Doctor
2009-05-21 16:25 . 2009-05-21 16:25 -------- d-----w c:\documents and settings\All Users\Application Data\PC Tools
2009-05-21 16:25 . 2009-05-21 16:25 -------- d-----w c:\documents and settings\Abeer$\Application Data\PC Tools
2009-05-20 16:18 . 2009-05-20 16:18 -------- d-----w c:\documents and settings\Abeer$\Application Data\vlc
2009-05-20 16:18 . 2009-05-20 16:18 -------- d-----w c:\program files\VideoLAN
2009-05-20 01:16 . 2009-05-20 01:16 -------- d-----w c:\program files\MSECache
2009-05-20 00:34 . 2009-05-20 00:34 -------- d-----w c:\documents and settings\Abeer$\Application Data\ESET
2009-05-20 00:33 . 2009-05-20 00:33 -------- d-----w c:\documents and settings\All Users\Application Data\ESET
2009-05-19 22:41 . 2009-05-19 22:41 -------- d-----w c:\documents and settings\Abeer$\Local Settings\Application Data\TechSmith
2009-05-19 22:40 . 2008-03-11 23:37 107864 ----a-w c:\windows\system32\tsccvid.dll
2009-05-19 22:40 . 2009-05-19 22:40 -------- d-----w c:\windows\system32\QuickTime
2009-05-19 22:40 . 2009-05-19 22:40 -------- d-----w c:\documents and settings\All Users\Application Data\TechSmith
2009-05-19 22:40 . 2009-05-19 22:40 -------- d-----w c:\program files\Common Files\TechSmith Shared
2009-05-19 21:25 . 2009-05-23 13:21 -------- d-----w c:\documents and settings\Abeer$\Application Data\Skype
2009-05-19 21:25 . 2009-05-19 21:25 -------- d-----r c:\program files\Skype
2009-05-19 21:24 . 2009-05-19 21:25 -------- d-----w c:\documents and settings\All Users\Application Data\Skype
2009-05-19 21:23 . 2008-04-13 21:15 60032 ----a-w c:\windows\system32\drivers\USBAUDIO.sys
2009-05-19 21:23 . 2008-04-13 21:16 121984 ----a-w c:\windows\system32\drivers\usbvideo.sys
2009-05-19 10:35 . 2009-05-19 10:35 -------- d-----w c:\program files\Common Files\Cisco Systems
2009-05-18 12:08 . 2009-05-23 20:58 -------- d-----w C:\EVTERM1
2009-05-18 12:08 . 2009-05-18 12:08 -------- d-----w C:\RegSupreme
2009-05-18 12:04 . 2009-05-18 12:04 -------- d-----w c:\documents and settings\Abeer$\Application Data\Uniblue
2009-05-18 12:04 . 2009-05-18 12:04 -------- d-----w c:\program files\Uniblue
2009-05-18 12:04 . 2008-08-26 16:48 99624 -c--a-w c:\documents and settings\All Users\Application Data\{B46E1EF5-0B37-4DB4-A4E2-9F2B41036185}\registrybooster2\7390E4F0\6383BC9B\StartRegistryBooster.exe
2009-05-18 12:04 . 2008-08-26 16:48 757760 -c--a-w c:\documents and settings\All Users\Application Data\{B46E1EF5-0B37-4DB4-A4E2-9F2B41036185}\registrybooster2\2B86F085\6383BC9B\UBVarRB.dll
2009-05-18 12:04 . 2008-08-26 16:48 6676480 -c--a-w c:\documents and settings\All Users\Application Data\{B46E1EF5-0B37-4DB4-A4E2-9F2B41036185}\registrybooster2\4E45A1A4\6383BC9B\RegistryBooster.dll
2009-05-18 12:04 . 2008-08-26 16:48 497496 -c--a-w c:\documents and settings\All Users\Application Data\{B46E1EF5-0B37-4DB4-A4E2-9F2B41036185}\registrybooster2\AF01B0B\6383BC9B\XceedZip.dll
2009-05-18 12:04 . 2008-08-26 16:48 413696 -c--a-w c:\documents and settings\All Users\Application Data\{B46E1EF5-0B37-4DB4-A4E2-9F2B41036185}\registrybooster2\52CD59C9\6383BC9B\update.dll
2009-05-18 12:04 . 2008-08-26 16:48 2019624 -c--a-w c:\documents and settings\All Users\Application Data\{B46E1EF5-0B37-4DB4-A4E2-9F2B41036185}\registrybooster2\7CE1607E\6383BC9B\RegistryBooster.exe
2009-05-18 12:04 . 2008-08-26 16:48 111912 -c--a-w c:\documents and settings\All Users\Application Data\{B46E1EF5-0B37-4DB4-A4E2-9F2B41036185}\registrybooster2\65B92A91\6383BC9B\KillRBProcess.exe
2009-05-18 12:03 . 2009-05-18 12:07 -------- d-----w c:\program files\PConPoint
2009-05-18 11:47 . 2003-01-26 11:41 40960 ----a-w c:\windows\system32\SSubTmr6.dll
2009-05-18 11:47 . 2009-05-18 12:00 -------- d-----w c:\program files\RegDoctor
2009-05-18 06:42 . 2009-05-20 17:13 -------- d-----w c:\documents and settings\Abeer$\Application Data\IDM
2009-05-18 06:42 . 2009-05-18 06:42 198064 ----a-w c:\documents and settings\Abeer$\Application Data\IDM\idmmzcc3\components\idmmzcc.dll
2009-05-18 01:09 . 2009-05-24 22:42 -------- d-----w c:\documents and settings\Abeer$\Local Settings\Application Data\WMTools Downloaded Files
2009-05-18 01:03 . 2002-05-06 08:01 45056 ----a-w c:\windows\system32\WNASPI32.DLL
2009-05-18 01:03 . 2002-05-06 08:01 17005 ----a-w c:\windows\system32\drivers\ASPI32.SYS
2009-05-18 01:03 . 2001-04-19 14:34 4672 ----a-w c:\windows\system\WOWPOST.EXE
2009-05-18 01:03 . 2001-04-19 14:34 5600 ----a-w c:\windows\system\WINASPI.DLL
2009-05-17 22:49 . 2009-05-17 22:49 -------- d-----w c:\documents and settings\Abeer$\Application Data\Media Player Classic
2009-05-17 22:47 . 2009-05-17 22:47 -------- d-----w c:\documents and settings\Abeer$\Application Data\URSoft
2009-05-17 22:28 . 2009-05-17 22:29 -------- d-----w c:\documents and settings\Abeer$\Application Data\ManyCam
2009-05-17 22:23 . 2009-05-22 15:31 -------- d-----w c:\documents and settings\Abeer$\Application Data\Paltalk
2009-05-17 22:22 . 2009-05-17 22:22 -------- d-----w c:\documents and settings\Abeer$\Application Data\ACD Systems
2009-05-17 21:43 . 2009-05-20 21:31 -------- d-----w c:\documents and settings\Abeer$\Application Data\IEPro
2009-05-17 21:43 . 2009-05-26 11:13 -------- d-----w c:\documents and settings\Abeer$\Application Data\DMCache
2009-05-17 21:42 . 2009-05-18 12:10 -------- d-sh--w C:\found.000
2009-05-17 21:09 . 2009-05-17 21:38 -------- d-----w c:\documents and settings\All Users\Application Data\Hagel Technologies
2009-05-17 15:58 . 2009-05-17 15:58 -------- d-----w c:\windows\Sun
2009-05-17 01:57 . 2009-05-17 01:57 4 ----a-w c:\windows\RegDefrag.dat
2009-05-17 01:54 . 2009-05-18 21:24 -------- d-----w c:\program files\Registry Compressor
2009-05-17 01:53 . 2009-05-24 08:41 -------- d-----w c:\program files\Registry Fast
2009-05-16 23:25 . 2009-05-16 23:25 -------- d-----w c:\documents and settings\All Users\Application DataTechSmith
2009-05-16 23:25 . 2009-05-19 22:39 -------- d-----w c:\program files\TechSmith
2009-05-16 23:24 . 2009-05-16 23:24 -------- d-----w c:\program files\Common Files\Wise Installation Wizard
2009-05-16 22:56 . 2009-05-16 22:56 -------- d-----w c:\program files\System
2009-05-16 22:56 . 2009-05-16 22:56 -------- d-----w c:\windows\KingoOo
2009-05-16 22:49 . 2008-04-13 21:09 5504 ----a-w c:\windows\system32\drivers\MSTEE.sys
2009-05-16 22:49 . 2008-04-13 21:16 10880 ----a-w c:\windows\system32\drivers\NdisIP.sys
2009-05-16 22:49 . 2008-04-13 21:16 15232 ----a-w c:\windows\system32\drivers\StreamIP.sys
2009-05-16 22:49 . 2008-04-13 21:16 11136 ----a-w c:\windows\system32\drivers\SLIP.sys
2009-05-16 22:49 . 2008-04-13 21:16 19200 ----a-w c:\windows\system32\drivers\WSTCODEC.SYS
2009-05-16 22:49 . 2008-04-13 21:16 85248 ----a-w c:\windows\system32\drivers\NABTSFEC.sys
2009-05-16 22:49 . 2008-04-13 21:16 17024 ----a-w c:\windows\system32\drivers\CCDECODE.sys
2009-05-16 22:49 . 2008-04-14 02:42 53760 ----a-w c:\windows\system32\vfwwdm32.dll
2009-05-16 22:48 . 2009-05-16 22:50 -------- d-----w c:\program files\ManyCam 2.4
2009-05-16 18:32 . 2009-05-16 18:36 55640 ----a-w c:\windows\system32\drivers\avgntflt.sys
2009-05-16 18:32 . 2009-05-19 10:19 -------- d-----w c:\documents and settings\All Users\Application Data\Avira
2009-05-16 18:28 . 2009-05-22 20:46 -------- d-----w c:\program files\Internet Download Manager
2009-05-16 18:27 . 2009-05-26 08:56 -------- d-----w c:\program files\IEPro
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-05-26 10:58 . 2009-05-13 06:22 -------- d---a-w c:\documents and settings\All Users\Application Data\TEMP
2009-05-25 10:04 . 2009-05-13 06:22 -------- d-----w c:\program files\Your Uninstaller 2008
2009-05-25 09:31 . 2009-05-13 06:14 -------- d-----w c:\program files\Real
2009-05-25 00:16 . 2009-05-13 06:16 -------- d-----w c:\program files\K-Lite Codec Pack
2009-05-23 21:08 . 2009-05-19 10:22 -------- d-----w c:\documents and settings\Abeer$\Application Data\cleaner
2009-05-20 01:17 . 2009-05-13 06:20 36288 ----a-w c:\documents and settings\Abeer$\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-05-19 10:22 . 2009-05-19 10:22 -------- d-----w c:\documents and settings\Abeer$\Application Data\CyberScrub
2009-05-18 12:04 . 2009-05-13 06:21 -------- dc-h--w c:\documents and settings\All Users\Application Data\{B46E1EF5-0B37-4DB4-A4E2-9F2B41036185}
2009-05-17 18:26 . 2009-05-13 05:48 86327 ----a-w c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-05-17 01:51 . 2009-05-13 07:30 -------- d-----w c:\program files\Common Files\Acronis
2009-05-16 18:33 . 2009-05-13 06:21 -------- d-----w c:\documents and settings\All Users\Application Data\Long slow road itch
2009-05-13 07:30 . 2009-05-13 07:30 82464 ----a-w c:\windows\system32\drivers\snapman.sys
2009-05-13 07:30 . 2009-05-13 07:30 37888 ----a-w c:\windows\system32\setupnt.dll
2009-05-13 07:30 . 2009-05-13 07:30 28896 ----a-w c:\windows\system32\drivers\tifsfilt.sys
2009-05-13 07:30 . 2009-05-13 07:30 211520 ----a-w c:\windows\system32\drivers\timntr.sys
2009-05-13 07:17 . 2009-05-13 07:17 -------- d-----w c:\documents and settings\All Users\Application Data\Messenger Plus!
2009-05-13 06:46 . 2009-05-13 06:45 -------- d-----w c:\program files\WinAVI Video Converter
2009-05-13 06:45 . 2009-05-13 06:45 -------- d-----w c:\program files\Ultra Video Converter
2009-05-13 06:26 . 2009-05-13 06:26 -------- d-----w c:\program files\Microsoft ActiveSync
2009-05-13 06:20 . 2009-05-13 06:20 -------- d-----w c:\program files\Messenger Plus! Live
2009-05-13 06:19 . 2009-05-13 06:19 -------- d-----w c:\program files\Windows Live
2009-05-13 06:18 . 2009-05-13 06:18 203776 ----a-w c:\windows\system32\clrviddc.dll
2009-05-13 06:15 . 2009-05-13 06:15 -------- d-----w c:\program files\Common Files\xing shared
2009-05-13 06:14 . 2009-05-13 06:14 -------- d-----w c:\program files\Common Files\Real
2009-05-13 06:14 . 2009-05-13 06:08 499712 ----a-w c:\windows\system32\msvcp71.dll
2009-05-13 06:13 . 2009-05-13 06:13 -------- d-----w c:\program files\Common Files\ACD Systems
2009-05-13 06:13 . 2009-05-13 06:13 -------- d-----w c:\program files\ACD Systems
2009-05-13 06:13 . 2009-05-13 06:13 -------- d-----w c:\documents and settings\All Users\Application Data\ACD Systems
2009-05-13 06:13 . 2009-05-13 06:13 9856 ----a-w c:\windows\system32\drivers\pfc.sys
2009-05-13 06:09 . 2009-05-13 06:08 -------- d-----w c:\program files\Common Files\Adobe
2009-05-13 06:08 . 2009-05-13 06:09 410984 ----a-w c:\windows\system32\deploytk.dll
2009-05-13 06:08 . 2009-05-13 06:08 -------- d-----w c:\program files\Java
2009-05-13 06:07 . 2009-05-13 06:07 -------- d-----w c:\program files\Windows Media Connect 2
2009-05-13 06:07 . 2009-05-13 06:07 -------- d-----w c:\program files\CCleaner
2009-05-13 06:02 . 2009-05-13 05:58 -------- d-----w c:\program files\Intel
2009-05-13 06:01 . 2009-05-13 06:00 -------- d-----w c:\program files\IDT
2009-05-13 06:00 . 2009-05-13 06:00 -------- d--h--w c:\program files\InstallShield Installation Information
2009-05-13 06:00 . 2009-05-13 06:00 -------- d-----w c:\program files\Common Files\InstallShield
2009-05-13 05:49 . 2009-05-13 05:49 -------- d-----w c:\program files\microsoft frontpage
2009-05-13 05:46 . 2009-05-13 05:46 21640 ----a-w c:\windows\system32\emptyregdb.dat
2009-05-05 22:31 . 2009-05-13 06:16 2402304 ----a-w c:\windows\system32\x264vfw.dll
2009-04-02 13:21 . 2009-05-13 06:16 84480 ----a-w c:\windows\system32\ff_vfw.dll
2009-03-26 15:35 . 2009-05-07 07:42 210352 ----a-w c:\windows\system32\idmmbc.dll
2009-03-13 21:25 . 2009-04-25 03:55 25088 ----a-w c:\windows\system32\msxml3a.dll
2009-03-06 14:22 . 2008-04-14 12:00 284160 ----a-w c:\windows\system32\pdh.dll
2009-03-03 00:18 . 2008-04-14 12:00 826368 ----a-w c:\windows\system32\wininet.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
"IDMan"="c:\program files\Internet Download Manager\IDMan.exe" [2009-05-22 2807216]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2007-11-29 5724184]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-02-28 141848]
"SysTrayApp"="c:\program files\IDT\WDM\sttray.exe" [2008-05-07 413696]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2009-05-13 185872]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Start Menu\Programs\Startup\
PalTalk.lnk - c:\program files\Paltalk Messenger\paltalk.exe [2009-4-25 11057664]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"NoConfigPage"= 0 (0x0)
"NoDevMgrPage"= 0 (0x0)
"NoFileSysPage"= 0 (0x0)
"NoVirtMemPage"= 0 (0x0)
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\system]
"NoConfigPage"= 0 (0x0)
"NoDevMgrPage"= 0 (0x0)
"NoFileSysPage"= 0 (0x0)
"NoVirtMemPage"= 0 (0x0)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice]
@=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice]
@=""
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"c:\\Program Files\\Paltalk Messenger\\paltalk.exe"=
"c:\\Program Files\\IEPro\\MiniDM.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R0 PCTCore;PCTools KDS;c:\windows\system32\drivers\PCTCore.sys [21/05/2009 07:26 م 130936]
R3 ManyCam;ManyCam Virtual Webcam, WDM Video Capture Driver;c:\windows\system32\drivers\ManyCam.sys [14/01/2008 01:06 م 21632]
S2 ekrn;ESET Service;"c:\program files\ESET\ESET Smart Security\ekrn.exe" --> c:\program files\ESET\ESET Smart Security\ekrn.exe [?]
S3 ATE_PROCMON;ATE_PROCMON;\??\c:\program files\Anti Trojan Elite\ATEPMon.sys --> c:\program files\Anti Trojan Elite\ATEPMon.sys [?]
S3 sdAuxService;PC Tools Auxiliary Service;c:\program files\Spyware Doctor\pctsAuxs.exe [21/05/2009 07:26 م 348752]
--- Other Services/Drivers In Memory ---
*NewlyCreated* - FFYKXRZD
*Deregistered* - ffykxrzd
.
- - - - ORPHANS REMOVED - - - -
BHO-{0000DDE5-5174-457A-A54A-AF6AF051AF77} - c:\windows\system32\cbjugjks.dll
HKLM-Run-egui - c:\program files\ESET\ESET Smart Security\egui.exe
SafeBoot-procexp90.Sys​

.
------- Supplementary Scan -------
.
IE: تحميل الكل بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEGetAll.htm
IE: تحميل بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEExt.htm
IE: تحميل محتوى FLV بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEGetVL.htm
IE: {{000002a3-84fe-43f1-b958-f2c3ca804f1a} - {CD275D4E-791A-4993-9D4D-6A071EDD2709} - c:\program files\IEPro\iepro.dll
LSP: c:\windows\system32\idmmbc.dll
.
.
------- File Associations -------
.
txtfile=NOTEPAD %1
vbefile\shell\edit\command=%SystemRoot%\System32\Notepad.exe %1
vbsfile\shell\edit\command=c:\windows\Notepad.exe %1
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

Rootkit scan 2009-05-26 14:13
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'lsass.exe'(604)
c:\windows\system32\idmmbc.dll
- - - - - - - > 'explorer.exe'(4000)
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
c:\program files\Internet Download Manager\idmmkb.dll
c:\windows\system32\stacapi.dll
c:\windows\system32\igfxsrvc.dll
c:\program files\Microsoft Office\OFFICE11\msohev.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\IDT\IntelXPV_v83\WDM\stacsv.exe
c:\windows\system32\wscntfy.exe
c:\program files\Internet Download Manager\IEMonitor.exe
c:\documents and settings\Abeer$\Desktop\Killer.exe
c:\windows\system32\igfxsrvc.exe
.
**************************************************************************
.
Completion time: 2009-05-26 14:16 - machine was rebooted
ComboFix-quarantined-files.txt 2009-05-26 11:15
Pre-Run: 46,403,629,056 bytes free
Post-Run: 46,348,640,256 bytes free
328​
 
مرحباً ...

خلاص نحزف ...

هاتي تقرير هايجك خليني شوف وضع الجهاز ...
 
توقيع : MMA_LORD_735
كل هذه الملفات حذفت

c:\documents and settings\abeer$\application data\dghzsimz
c:\documents and settings\abeer$\application data\dghzsimz\profiles.ini
c:\documents and settings\abeer$\application data\dghzsimz\profiles\l560z7xz.default\cert8.db
c:\documents and settings\abeer$\application data\dghzsimz\profiles\l560z7xz.default\compatibil ity.ini
c:\documents and settings\abeer$\application data\dghzsimz\profiles\l560z7xz.default\compreg.da t
c:\documents and settings\abeer$\application data\dghzsimz\profiles\l560z7xz.default\cookies.sq lite
c:\documents and settings\abeer$\application data\dghzsimz\profiles\l560z7xz.default\formhistor y.sqlite
c:\documents and settings\abeer$\application data\dghzsimz\profiles\l560z7xz.default\key3.db
c:\documents and settings\abeer$\application data\dghzsimz\profiles\l560z7xz.default\localstore .rdf
c:\documents and settings\abeer$\application data\dghzsimz\profiles\l560z7xz.default\permission s.sqlite
c:\documents and settings\abeer$\application data\dghzsimz\profiles\l560z7xz.default\places.sql ite-journal
c:\documents and settings\abeer$\application data\dghzsimz\profiles\l560z7xz.default\places.sql ite
c:\documents and settings\abeer$\application data\dghzsimz\profiles\l560z7xz.default\pluginreg. Dat
c:\documents and settings\abeer$\application data\dghzsimz\profiles\l560z7xz.default\prefs.js
c:\documents and settings\abeer$\application data\dghzsimz\profiles\l560z7xz.default\secmod.db
c:\documents and settings\abeer$\application data\dghzsimz\profiles\l560z7xz.default\webappssto re.sqlite
c:\documents and settings\abeer$\application data\dghzsimz\profiles\l560z7xz.default\xpti.dat
c:\documents and settings\abeer$\local settings\application data\dghzsimz
c:\documents and settings\abeer$\local settings\application data\dghzsimz\profiles\l560z7xz.default\urlclassif ier3.sqlite
c:\documents and settings\abeer$\local settings\application data\dghzsimz\profiles\l560z7xz.default\xpc.mfl
c:\documents and settings\networkservice\application data\dghzsimz
c:\documents and settings\networkservice\application data\dghzsimz\profiles.ini
c:\documents and settings\networkservice\application data\dghzsimz\profiles\j8i2hnni.default\cert8.db
c:\documents and settings\networkservice\application data\dghzsimz\profiles\j8i2hnni.default\compatibil ity.ini
c:\documents and settings\networkservice\application data\dghzsimz\profiles\j8i2hnni.default\compreg.da t
c:\documents and settings\networkservice\application data\dghzsimz\profiles\j8i2hnni.default\cookies.sq lite
c:\documents and settings\networkservice\application data\dghzsimz\profiles\j8i2hnni.default\formhistor y.sqlite
c:\documents and settings\networkservice\application data\dghzsimz\profiles\j8i2hnni.default\key3.db
c:\documents and settings\networkservice\application data\dghzsimz\profiles\j8i2hnni.default\localstore .rdf
c:\documents and settings\networkservice\application data\dghzsimz\profiles\j8i2hnni.default\permission s.sqlite
c:\documents and settings\networkservice\application data\dghzsimz\profiles\j8i2hnni.default\places.sql ite-journal
c:\documents and settings\networkservice\application data\dghzsimz\profiles\j8i2hnni.default\places.sql ite
c:\documents and settings\networkservice\application data\dghzsimz\profiles\j8i2hnni.default\pluginreg. Dat
c:\documents and settings\networkservice\application data\dghzsimz\profiles\j8i2hnni.default\prefs.js
c:\documents and settings\networkservice\application data\dghzsimz\profiles\j8i2hnni.default\secmod.db
c:\documents and settings\networkservice\application data\dghzsimz\profiles\j8i2hnni.default\webappssto re.sqlite
c:\documents and settings\networkservice\application data\dghzsimz\profiles\j8i2hnni.default\xpti.dat
c:\documents and settings\networkservice\local settings\application data\dghzsimz
c:\documents and settings\networkservice\local settings\application data\dghzsimz\profiles\j8i2hnni.default\urlclassif ier3.sqlite
c:\documents and settings\networkservice\local settings\application data\dghzsimz\profiles\j8i2hnni.default\xpc.mfl
c:\windows\system32\cbjugjks.dll
c:\windows\system32\drivers\ffykxrzd.sys
c:\windows\system32\drivers\kungsflkcfyxde.sys
c:\windows\system32\drivers\mchfwbgo.sys
c:\windows\system32\jdbpeqv.dll
c:\windows\system32\kungsfpafsxnlt.dat
c:\windows\system32\kungsfpuyevgrv.dll
c:\windows\system32\pvwdlpv.dll
c:\windows\system32\sfgatmer.dll
c:\windows\system32\tmp.reg

ومن بينها الملف المقصود
موفقة
 
مدري وين راح الملف هههههه

تقرير الهايجك

ملف البالتوك استفاهم عليه عادي مو مشكله:u:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 02:44:42 م, on 26/05/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16827)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Java\jre6\bin\jqs.exe
c:\program files\idt\intelxpv_v83\wdm\STacSV.exe
C:\WINDOWS\system32\svchost.exe
C:\Documents and Settings\Abeer$\Desktop\Killer.exe
C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
C:\Program Files\Avira\AntiVir Desktop\avmailc.exe
C:\Program Files\Paltalk Messenger\paltalk.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Documents and Settings\Abeer$\Desktop\HiJackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: IE7Pro - {00011268-E188-40DF-A514-835FCD78B1BF} - C:\Program Files\IEPro\iepro.dll
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: HelperObject Class - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\SnagIt 7\SnagItBHO.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files\TechSmith\SnagIt 7\SnagItIEAddin.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: PalTalk.lnk = C:\Program Files\Paltalk Messenger\paltalk.exe
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: IE7Pro Grab and Drag - {000002a3-84fe-43f1-b958-f2c3ca804f1a} - C:\Program Files\IEPro\iepro.dll
O9 - Extra 'Tools' menuitem: IE7Pro Grab and Drag - {000002a3-84fe-43f1-b958-f2c3ca804f1a} - C:\Program Files\IEPro\iepro.dll
O9 - Extra button: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\iepro.dll
O9 - Extra 'Tools' menuitem: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\iepro.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O23 - Service: Avira Firewall (AntiVirFirewallService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avfwsvc.exe
O23 - Service: Avira AntiVir MailGuard (AntiVirMailService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira AntiVir WebGuard (AntiVirWebService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - c:\program files\idt\intelxpv_v83\wdm\STacSV.exe
--
End of file - 6834 bytes
 
عودة
أعلى