• بادئ الموضوع بادئ الموضوع brs10
  • تاريخ البدء تاريخ البدء
  • المشاهدات 651

brs10

زيزوومي جديد
إنضم
24 مارس 2009
المشاركات
77
مستوى التفاعل
3
النقاط
80
غير متصل
السلام عليكم ورحمة الله وبركاته

اخواني جهازي فيه ثقل في التصفح والتشغيل
وهذ تقرير الهايجك حق الجهاز ارجو الأفاده والمساعده
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:17:01, on 13/06/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\WINDOWS\system32\VTTimer.exe
C:\WINDOWS\system32\VTtrayp.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\FreeCall.com\FreeCall\FreeCall.exe
C:\Program Files\Hotspot Shield\AnchorFree\ctrl\AFController.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Hotspot Shield\bin\openvpnas.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
c:\program files\avira\antivir personaledition classic\avcenter.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe
C:\Documents and Settings\USER\سطح المكتب\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: مساعد رابط Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [FreeCall] "C:\Program Files\FreeCall.com\FreeCall\FreeCall.exe" -nosplash -minimized
O4 - HKCU\..\Run: [AFProg] C:\Program Files\Hotspot Shield\AnchorFree\ctrl\AFController.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: سرعة تشغيل Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &تصدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: HP Smart Select - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6924091F-CD97-41E1-B1D4-D9079409D413} (IMCv1 Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {C171FF59-8C55-4796-A398-4F5D02B4C763} (IMC_Sec Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Hotspot Shield Service (HotspotShieldService) - Unknown owner - C:\Program Files\Hotspot Shield\bin\openvpnas.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
--
End of file - 7178 bytes
 

حياك اخوي

ترا بعض الاحيان الحجامه تقلب على صاحبها :d:

طيب يابعدي احذف التالي من التقرير

O16 - DPF: {C171FF59-8C55-4796-A398-4F5D02B4C763} (IMC_Sec Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي



طريقة الحذف للاكس بي


mg%20%283%29.png



mg%20%284%29.png


بعدين استخدم ها الاداة

التحميل من هنا

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي



التوافق : ويندوز اكسبي فقط




شرح الاستخدام ,,,,,,



عند تشغيل ملف الاداة تظهر لك هذه الشاشه ,, انتظر ( وتابع مع الصور )




000.png




001.png




وعند ظهور هذه الشاشه ,, اضغط على Close ليتم اعادة تشغيل جهازك (( لتكملة عملية التنظيف ))




002.png







بعدين اعمل الاتي

عطل جميع برامج الحمايه

نزل هذه الاداة

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

عند تشغيلها بتظهر لك رسالة ,, اضغط على >> Yes
بعدها بتظهر لك رساله ثانيه ,, اضغط على >> Yes

اثناء الفحص ممكن يعاد تشغيل الجهاز
وبعد اعادة التشغيل ,, سوف تبدأ الاداة بالفحص مرره ثانيه
انتظر حتى يظهر لك تقرير ،، وبذلك يكون الفحص انتهى الصق التقرير بمشاركتك القادمة

 
التعديل الأخير بواسطة المشرف:
توقيع : KoNaMi
الله يسلمك يالغالي

الحجامه طيبه بعد كل فتره

ومدام أنت وأعضاء منتدى زيزوم موجودين
أشهد بأن أي جهاز فيه خلل بيجيه تحجيم ويصحصح بعدها

وهذ التقرير حق الأداة

ComboFix 09-06-12.04 - USER 06/13/2009 15:56.6 - FAT32x86
Microsoft Windows XP Professional 5.1.2600.2.1256.966.1025.18.447.151 [GMT 3:00]
Running from: c:\documents and settings\USER\سطح المكتب\ComboFix.exe
AV: Avira AntiVir PersonalEdition *On-access scanning disabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7}
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\IE4 Error Log.txt
.
((((((((((((((((((((((((( Files Created from 2009-05-13 to 2009-06-13 )))))))))))))))))))))))))))))))
.
2009-06-11 13:03 . 2009-06-11 13:03 -------- d-sh--w- C:\FOUND.024
2009-06-07 06:47 . 2009-06-07 06:47 -------- d-sh--w- C:\FOUND.023
2009-06-07 04:27 . 2009-06-07 04:27 -------- d-sh--w- C:\FOUND.022
2009-06-04 07:10 . 2009-06-04 07:10 -------- d-sh--w- C:\FOUND.021
2009-06-04 04:18 . 2009-06-04 04:18 -------- d-sh--w- C:\FOUND.020
2009-06-02 07:15 . 2009-06-02 07:15 -------- d-sh--w- C:\FOUND.019
2009-05-30 20:02 . 2008-05-09 10:15 45376 ----a-w- c:\windows\system32\drivers\avgntdd.sys
2009-05-30 20:02 . 2008-01-21 15:11 22336 ----a-w- c:\windows\system32\drivers\avgntmgr.sys
2009-05-30 20:02 . 2009-05-30 20:11 75096 ----a-w- c:\windows\system32\drivers\avipbb.sys
2009-05-30 20:02 . 2009-05-30 20:02 -------- d-----w- c:\program files\Avira
2009-05-30 20:02 . 2009-05-30 20:02 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira
2009-05-29 03:54 . 2009-05-29 03:54 -------- d-sh--w- C:\FOUND.018
2009-05-28 20:35 . 2009-05-28 20:35 -------- d-sh--w- C:\FOUND.017
2009-05-28 15:51 . 2009-05-28 15:51 -------- d-sh--w- C:\FOUND.016
2009-05-27 14:59 . 2009-05-27 14:59 -------- d-sh--w- C:\FOUND.015
2009-05-26 15:36 . 2009-05-26 15:36 -------- d-sh--w- C:\FOUND.014
2009-05-26 14:24 . 2009-05-26 14:24 -------- d-sh--w- C:\FOUND.013
2009-05-25 01:53 . 2001-08-17 11:02 9600 ----a-w- c:\windows\system32\drivers\hidusb.sys
2009-05-25 01:53 . 2001-08-17 11:02 9600 ----a-w- c:\windows\system32\dllcache\hidusb.sys
2009-05-25 01:01 . 2009-05-25 01:01 -------- d--h--w- c:\windows\PIF
2009-05-24 21:41 . 2009-05-24 21:41 720896 ----a-w- c:\windows\iun6002.exe
2009-05-22 22:04 . 2009-05-22 22:04 390664 ----a-w- c:\documents and settings\USER\Application Data\Real\RealPlayer\Update\RealPlayer11.exe
2009-05-20 19:18 . 2009-05-20 19:18 -------- d-----w- c:\documents and settings\All Users\Application Data\Office Genuine Advantage
2009-05-19 13:45 . 2009-05-19 13:45 -------- d-sh--w- C:\FOUND.012
2009-05-17 14:09 . 2009-05-17 14:09 -------- d-----w- c:\program files\ProDM
2009-05-17 13:39 . 2009-05-17 13:39 -------- d-sh--w- C:\FOUND.011
2009-05-16 17:57 . 2009-05-16 17:57 -------- d-sh--w- C:\FOUND.010
2009-05-16 14:38 . 2009-05-16 14:38 -------- d-sh--w- C:\FOUND.009
2009-05-14 23:21 . 2009-05-14 23:21 -------- d-sh--w- C:\FOUND.008
2009-05-14 14:00 . 2009-05-14 14:00 -------- d-sh--w- C:\FOUND.007
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-02 12:30 . 2009-04-28 16:52 145412 --sha-w- c:\windows\system32\drivers\fidbox.idx
2009-06-02 12:30 . 2009-04-28 16:52 12138528 --sha-w- c:\windows\system32\drivers\fidbox.dat
2009-05-23 12:21 . 2009-05-24 13:10 2175411 ----a-w- c:\documents and settings\USER\Application Data\IDM\SmitfraudFix\SmitfraudFix.cmd
2009-05-07 15:42 . 2004-08-03 20:55 344064 ----a-w- c:\windows\system32\localspl.dll
2009-05-06 22:11 . 2009-05-06 22:11 -------- d-----w- c:\program files\IE Accelerator
2009-05-02 18:39 . 2009-05-02 18:39 -------- d-----w- c:\program files\MSXML 4.0
2009-05-01 18:05 . 2009-05-01 18:05 -------- d-----w- c:\documents and settings\USER\Application Data\HPAppData
2009-05-01 17:17 . 2009-05-01 17:17 -------- d-----w- c:\documents and settings\USER\Application Data\HP
2009-05-01 17:13 . 2009-05-01 17:13 -------- d-----w- c:\documents and settings\All Users\Application Data\WEBREG
2009-05-01 17:13 . 2009-05-01 17:00 173519 ----a-w- c:\windows\hpoins27.dat
2009-05-01 17:03 . 2009-05-01 17:03 -------- d-----w- c:\documents and settings\All Users\Application Data\HP Product Assistant
2009-05-01 17:03 . 2009-05-01 17:03 -------- d-----w- c:\documents and settings\All Users\Application Data\HP
2009-05-01 17:03 . 2009-05-01 17:03 -------- d-----w- c:\program files\Hewlett-Packard
2009-05-01 17:03 . 2009-05-01 17:03 -------- d-----w- c:\program files\Common Files\Hewlett-Packard
2009-05-01 17:03 . 2009-05-01 17:02 -------- d-----w- c:\program files\Common Files\HP
2009-05-01 17:02 . 2009-05-01 17:02 -------- d-----w- c:\program files\HP
2009-05-01 17:01 . 2009-05-01 17:01 -------- d-----w- c:\documents and settings\All Users\Application Data\Hewlett-Packard
2009-04-29 22:36 . 2009-05-24 13:10 75776 ----a-w- c:\documents and settings\USER\Application Data\IDM\SmitfraudFix\WS2Fix.exe
2009-04-29 04:51 . 2004-08-03 20:55 657920 ----a-w- c:\windows\system32\wininet.dll
2009-04-29 04:51 . 2004-08-03 20:55 81920 ----a-w- c:\windows\system32\ieencode.dll
2009-04-27 17:05 . 2009-04-27 17:05 2678 ----a-w- c:\windows\java\Packages\Data\6XJ9VZ31.DAT
2009-04-27 17:05 . 2009-04-27 17:04 2678 ----a-w- c:\windows\java\Packages\Data\ZHF13T7H.DAT
2009-04-27 17:05 . 2009-04-27 17:04 2678 ----a-w- c:\windows\java\Packages\Data\MR7P3BZD.DAT
2009-04-27 17:05 . 2009-04-27 17:04 2678 ----a-w- c:\windows\java\Packages\Data\B3R3JHBV.DAT
2009-04-27 17:05 . 2009-04-27 17:04 2678 ----a-w- c:\windows\java\Packages\Data\3T31BJ7N.DAT
2009-04-26 01:03 . 2001-09-19 11:00 58586 ----a-w- c:\windows\system32\perfc001.dat
2009-04-26 01:03 . 2001-09-19 11:00 328222 ----a-w- c:\windows\system32\perfh001.dat
2009-04-24 12:15 . 2009-04-24 12:14 331664 ----a-w- c:\documents and settings\USER\Application Data\IDM\DwnlData\USER\Firefox-20Setup-203.0.9_219\Firefox-20Setup-203.0.9.exe
2009-04-24 11:03 . 2009-04-24 11:03 -------- d-----w- c:\program files\HLPSOFT
2009-04-20 13:11 . 2009-04-20 13:11 -------- d-----w- c:\documents and settings\USER\Application Data\JLC's Software
2009-04-20 13:11 . 2009-04-20 13:11 -------- d-----w- c:\program files\JLC's Software
2009-04-19 20:08 . 2004-08-03 20:46 1846528 ----a-w- c:\windows\system32\win32k.sys
2009-04-15 15:12 . 2004-08-03 20:55 584192 ----a-w- c:\windows\system32\rpcrt4.dll
2009-04-04 20:52 . 2009-05-24 13:10 180224 ----a-w- c:\documents and settings\USER\Application Data\IDM\SmitfraudFix\ProxyDisable.exe
2009-03-30 18:26 . 2009-03-30 18:26 0 ----a-w- c:\windows\nsreg.dat
2009-03-27 11:53 . 2009-03-27 11:52 181680 ----a-w- c:\documents and settings\USER\Application Data\IDM\idmmzcc2\components\idmmzcc.dll
2009-03-26 18:07 . 2009-03-26 18:07 2876719 ----a-w- c:\documents and settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe
2009-03-19 18:07 . 2009-03-19 18:07 56 ---ha-w- c:\windows\system32\ezsidmv.dat
.
------- Sigcheck -------
[-] 2007-12-15 14:12 1547776 B0BACE02277B1979F22CE785536F651F c:\windows\system32\sfcfiles.dll
.
((((((((((((((((((((((((((((( SnapShot_2009-05-19_22.09.29 )))))))))))))))))))))))))))))))))))))))))
.
+ 2007-10-12 10:33 . 2007-12-08 04:39 28672 c:\windows\system32\vb6lib.dll
- 2009-01-30 18:32 . 2007-11-30 12:39 17784 c:\windows\system32\spmsg.dll
+ 2009-01-30 18:32 . 2008-07-09 07:34 17784 c:\windows\system32\spmsg.dll
- 2004-08-03 20:55 . 2009-02-20 08:29 39424 c:\windows\system32\pngfilt.dll
+ 2004-08-03 20:55 . 2009-04-29 04:51 39424 c:\windows\system32\pngfilt.dll
+ 2004-08-03 20:55 . 2005-05-04 11:45 15360 c:\windows\system32\msisip.dll
+ 2004-08-03 20:56 . 2005-05-04 11:45 78848 c:\windows\system32\msiexec.exe
- 2004-08-03 20:55 . 2009-02-20 08:29 16384 c:\windows\system32\jsproxy.dll
+ 2004-08-03 20:55 . 2009-04-29 04:51 16384 c:\windows\system32\jsproxy.dll
- 2004-08-03 20:55 . 2009-02-20 08:29 96256 c:\windows\system32\inseng.dll
+ 2004-08-03 20:55 . 2009-04-29 04:51 96256 c:\windows\system32\inseng.dll
- 2004-08-03 20:55 . 2009-02-20 08:29 55808 c:\windows\system32\extmgr.dll
+ 2004-08-03 20:55 . 2009-04-29 04:51 55808 c:\windows\system32\extmgr.dll
+ 2009-05-30 20:02 . 2007-03-01 07:34 28352 c:\windows\system32\drivers\ssmdrv.sys
- 2009-03-25 21:12 . 2007-03-01 07:34 28352 c:\windows\system32\drivers\ssmdrv.sys
+ 2009-04-29 04:51 . 2009-04-29 04:51 39424 c:\windows\system32\dllcache\pngfilt.dll
+ 2009-04-29 04:51 . 2009-04-29 04:51 16384 c:\windows\system32\dllcache\jsproxy.dll
+ 2009-04-29 04:51 . 2009-04-29 04:51 96256 c:\windows\system32\dllcache\inseng.dll
+ 2009-04-29 04:51 . 2009-04-29 04:51 81920 c:\windows\system32\dllcache\ieencode.dll
+ 2009-04-27 09:17 . 2009-04-27 09:17 18432 c:\windows\system32\dllcache\iedw.exe
+ 2009-04-29 04:51 . 2009-04-29 04:51 55808 c:\windows\system32\dllcache\extmgr.dll
- 2008-02-17 01:33 . 2009-02-20 02:19 690176 c:\windows\system32\xpsp3res.dll
+ 2008-02-17 01:33 . 2009-04-27 09:48 690176 c:\windows\system32\xpsp3res.dll
+ 2009-01-30 18:32 . 2008-10-18 17:42 332672 c:\windows\system32\WgaTray.exe
+ 2009-01-30 18:32 . 2008-10-18 17:41 200064 c:\windows\system32\WgaLogon.dll
+ 2004-08-03 20:55 . 2009-04-29 04:51 615424 c:\windows\system32\urlmon.dll
- 2004-08-03 20:55 . 2009-02-20 08:29 615424 c:\windows\system32\urlmon.dll
+ 2004-08-03 20:55 . 2009-04-29 04:51 474112 c:\windows\system32\shlwapi.dll
- 2004-08-03 20:55 . 2009-02-20 08:29 474112 c:\windows\system32\shlwapi.dll
- 2004-08-03 20:55 . 2004-08-03 20:55 151552 c:\windows\system32\scrrun.dll
+ 2004-08-04 07:56 . 2004-08-04 07:56 151552 c:\windows\system32\scrrun.dll
+ 2004-08-03 20:55 . 2009-04-29 04:51 532480 c:\windows\system32\mstime.dll
- 2004-08-03 20:55 . 2009-02-20 08:29 532480 c:\windows\system32\mstime.dll
+ 2004-08-03 20:55 . 2009-04-29 04:51 146432 c:\windows\system32\msrating.dll
- 2004-08-03 20:55 . 2009-02-20 08:29 146432 c:\windows\system32\msrating.dll
+ 2004-08-03 20:54 . 2005-05-04 11:45 884736 c:\windows\system32\msimsg.dll
- 2004-08-03 20:54 . 2004-08-03 20:54 884736 c:\windows\system32\msimsg.dll
+ 2004-08-03 20:55 . 2005-05-04 11:45 271360 c:\windows\system32\msihnd.dll
- 2004-08-03 20:55 . 2009-02-20 08:29 449024 c:\windows\system32\mshtmled.dll
+ 2004-08-03 20:55 . 2009-04-29 04:51 449024 c:\windows\system32\mshtmled.dll
- 2004-08-03 20:55 . 2009-02-20 08:29 250880 c:\windows\system32\iepeers.dll
+ 2004-08-03 20:55 . 2009-04-29 04:51 250880 c:\windows\system32\iepeers.dll
+ 2009-01-30 17:43 . 2009-06-11 01:45 334664 c:\windows\system32\FNTCACHE.DAT
- 2009-01-30 17:43 . 2009-04-26 00:52 334664 c:\windows\system32\FNTCACHE.DAT
+ 2004-08-03 20:55 . 2009-04-29 04:51 205312 c:\windows\system32\dxtrans.dll
- 2004-08-03 20:55 . 2009-02-20 08:29 205312 c:\windows\system32\dxtrans.dll
- 2004-08-03 20:55 . 2009-02-20 08:29 357888 c:\windows\system32\dxtmsft.dll
+ 2004-08-03 20:55 . 2009-04-29 04:51 357888 c:\windows\system32\dxtmsft.dll
+ 2009-04-29 04:51 . 2009-04-29 04:51 657920 c:\windows\system32\dllcache\wininet.dll
+ 2009-04-29 04:51 . 2009-04-29 04:51 615424 c:\windows\system32\dllcache\urlmon.dll
+ 2009-04-29 04:51 . 2009-04-29 04:51 474112 c:\windows\system32\dllcache\shlwapi.dll
+ 2009-04-15 15:12 . 2009-04-15 15:12 584192 c:\windows\system32\dllcache\rpcrt4.dll
+ 2009-04-29 04:51 . 2009-04-29 04:51 532480 c:\windows\system32\dllcache\mstime.dll
+ 2009-04-29 04:51 . 2009-04-29 04:51 146432 c:\windows\system32\dllcache\msrating.dll
+ 2009-04-29 04:51 . 2009-04-29 04:51 449024 c:\windows\system32\dllcache\mshtmled.dll
+ 2009-05-07 15:42 . 2009-05-07 15:42 344064 c:\windows\system32\dllcache\localspl.dll
+ 2009-04-29 04:51 . 2009-04-29 04:51 250880 c:\windows\system32\dllcache\iepeers.dll
+ 2009-04-29 04:51 . 2009-04-29 04:51 205312 c:\windows\system32\dllcache\dxtrans.dll
+ 2009-04-29 04:51 . 2009-04-29 04:51 357888 c:\windows\system32\dllcache\dxtmsft.dll
+ 2009-04-29 04:51 . 2009-04-29 04:51 151040 c:\windows\system32\dllcache\cdfview.dll
+ 2004-08-03 20:55 . 2009-04-29 04:51 151040 c:\windows\system32\cdfview.dll
- 2004-08-03 20:55 . 2009-02-20 08:29 151040 c:\windows\system32\cdfview.dll
- 2009-01-30 18:01 . 2009-01-30 18:01 166912 c:\windows\Installer\{350C97B7-3D7C-4EE8-BAA9-00BCB3D54227}\places.exe
+ 2009-06-02 10:00 . 2009-06-02 10:00 166912 c:\windows\Installer\{350C97B7-3D7C-4EE8-BAA9-00BCB3D54227}\places.exe
- 2004-08-03 20:55 . 2009-03-02 23:49 1495552 c:\windows\system32\shdocvw.dll
+ 2004-08-03 20:55 . 2009-04-29 04:51 1495552 c:\windows\system32\shdocvw.dll
+ 2004-08-03 20:55 . 2005-05-04 11:45 2890240 c:\windows\system32\msi.dll
+ 2004-08-03 20:55 . 2009-04-29 04:51 3081728 c:\windows\system32\mshtml.dll
+ 2009-01-30 18:31 . 2008-10-18 17:20 1488688 c:\windows\system32\LegitCheckControl.dll
+ 2009-04-19 20:08 . 2009-04-19 20:08 1846528 c:\windows\system32\dllcache\win32k.sys
+ 2009-04-29 04:51 . 2009-04-29 04:51 1495552 c:\windows\system32\dllcache\shdocvw.dll
+ 2009-04-29 04:51 . 2009-04-29 04:51 3081728 c:\windows\system32\dllcache\mshtml.dll
+ 2009-04-29 04:51 . 2009-04-29 04:51 1053696 c:\windows\system32\dllcache\danim.dll
+ 2009-04-29 04:51 . 2009-04-29 04:51 1023488 c:\windows\system32\dllcache\browseui.dll
- 2004-08-03 20:55 . 2009-02-20 08:29 1053696 c:\windows\system32\danim.dll
+ 2004-08-03 20:55 . 2009-04-29 04:51 1053696 c:\windows\system32\danim.dll
- 2004-08-03 20:55 . 2009-02-20 08:29 1023488 c:\windows\system32\browseui.dll
+ 2004-08-03 20:55 . 2009-04-29 04:51 1023488 c:\windows\system32\browseui.dll
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2004-08-03 15360]
"IDMan"="c:\program files\Internet Download Manager\IDMan.exe" [2009-03-27 2745776]
"FreeCall"="c:\program files\FreeCall.com\FreeCall\FreeCall.exe" [2008-09-01 9109296]
"AFProg"="c:\program files\Hotspot Shield\AnchorFree\ctrl\AFController.exe" [2006-07-23 118784]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"Privacy Suite"="c:\documents and settings\USER\Application Data\cleaner\CSPSeraser.exe" [2007-11-20 872080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RemoteControl"="c:\program files\CyberLink\PowerDVD\PDVDServ.exe" [2005-12-07 30208]
"LanguageShortcut"="c:\program files\CyberLink\PowerDVD\Language\Language.exe" [2006-04-13 49152]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2009-01-30 185896]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2007-10-14 49152]
"hpqSRMon"="c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe" [2007-08-22 80896]
"avgnt"="c:\program files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2008-06-12 266497]
"VTTimer"="VTTimer.exe" - c:\windows\system32\VTTimer.exe [2004-05-27 49152]
"VTTrayp"="VTtrayp.exe" - c:\windows\system32\VTTrayp.exe [2004-06-07 143360]
"SoundMan"="SOUNDMAN.EXE" - c:\windows\soundman.exe [2006-08-02 577536]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-03 15360]
c:\documents and settings\All Users\çں‍ê، ں §ڑ\ںé ©ںê¤\ §ک ں颬نïé\
«©م، ¢¬نïé Adobe Reader.lnk - c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe [2006-10-23 40048]
Adobe Reader Synchronizer.lnk - c:\program files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe [2006-10-23 734872]
Adobe Gamma Loader.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2009-1-30 113664]
WinZip Quick Pick.lnk - c:\program files\WinZip\WZQKPICK.EXE [2007-4-11 394856]
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2007-10-14 214360]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoWelcomeScreen"= 0 (0x0)
"NoSMConfigurePrograms"= 0 (0x0)
"NoSearch"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"c:\\Program Files\\CyberLink\\Shared files\\RichVideo.exe"=
"c:\\Program Files\\Messenger\\MSMSGS.EXE"=
"c:\\Program Files\\Globe7\\Globe7.exe"=
"c:\\Program Files\\FreeCall.com\\FreeCall\\FreeCall.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpiscnapp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.googel.com/
uInternet Connection Wizard,ShellNext = iexplore
IE: &تصدير إلى Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: تحميل الكل بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEGetAll.htm
IE: تحميل بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEExt.htm
IE: تحميل محتوى FLV بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEGetVL.htm
DPF: Microsoft XML Parser for Java -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

FF - ProfilePath -
.
.
------- File Associations -------
.
txtfile=c:\windows\notepad.exe %1
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

Rootkit scan 2009-06-13 15:57
Windows 5.1.2600 Service Pack 2 FAT NTAPI
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{46d8f35e-758f-4292-ad61-3750ef08bb32}]
@Denied: (Full) (Everyone)
"Model"=dword:00000095
"Therad"=dword:0000000a
"MData"=hex(0):73,d5,cf,b8,a4,07,89,80,31,e4,35,6b,2a,ca,fe,43,98,07,ff,fc,5d,
df,1c,2f,3b,8a,0a,32,11,89,01,b5,a2,d7,b1,92,65,e3,b7,63,4f,85,dd,0a,f1,1e,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{5ED60779-4DE2-4E07-B862-974CA4FF2E9C}]
@Denied: (Full) (Everyone)
"scansk"=hex(0):e3,bd,63,df,52,b1,11,67,0e,51,5c,98,e3,26,36,6e,eb,77,42,98,87,
6f,fe,c3,21,19,c5,88,cb,bc,d9,e5,4a,84,ae,01,d0,b3,f5,45,00,00,00,00,00,00,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{7B8E9164-324D-4A2E-A46D-0165FB2000EC}]
@Denied: (Full) (Everyone)
"scansk"=hex(0):e6,26,a5,35,31,ea,85,b9,16,f2,46,46,56,7f,3a,a8,f8,7d,60,83,95,
a5,f3,82,cb,6f,bf,1e,15,ef,98,b8,bb,58,d9,d2,81,00,af,35,00,00,00,00,00,00,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{b441d10c-711f-49ca-859c-5058eaa2fc19}]
@Denied: (Full) (Everyone)
"Model"=dword:00000055
"Therad"=dword:00000007
.
Completion time: 2009-06-13 15:58
ComboFix-quarantined-files.txt 2009-06-13 12:58
ComboFix2.txt 2009-05-30 19:34
ComboFix3.txt 2009-05-24 13:05
ComboFix4.txt 2009-05-19 22:10
ComboFix5.txt 2009-06-13 12:55
Pre-Run: 18,709,217,280 bytes free
Post-Run: 18,708,381,696 bytes free
280 --- E O F --- 2009-06-11 00:01
 
الله يخليك يالغلاا

طيب يابعدي هات تقرير هاجيك جديد
 
توقيع : KoNaMi
وهذا يالغالي تقرير هايجك جديد

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:19:16, on 13/06/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\WINDOWS\system32\VTTimer.exe
C:\WINDOWS\system32\VTtrayp.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Hotspot Shield\AnchorFree\ctrl\AFController.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Hotspot Shield\bin\openvpnas.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\explorer.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Documents and Settings\USER\سطح المكتب\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: مساعد رابط Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [FreeCall] "C:\Program Files\FreeCall.com\FreeCall\FreeCall.exe" -nosplash -minimized
O4 - HKCU\..\Run: [AFProg] C:\Program Files\Hotspot Shield\AnchorFree\ctrl\AFController.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: سرعة تشغيل Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &تصدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: HP Smart Select - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6924091F-CD97-41E1-B1D4-D9079409D413} (IMCv1 Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Hotspot Shield Service (HotspotShieldService) - Unknown owner - C:\Program Files\Hotspot Shield\bin\openvpnas.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
--
End of file - 6864 bytes
 
الحين اعمل الاتي يالغلاا


حمل هذه الاداة من هنا
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
او
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


بعد تنزيل الاداة دبل كلك ستظهر لديك مثل هذه النافذة خذ صورة لها وارفقها بردك القادم

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

 
التعديل الأخير بواسطة المشرف:
توقيع : KoNaMi
اخوي حاولت ادرج الصوره في الموقع لكن بدون فايده

ماأدري الغلط مني أو أنا ماعرفت لها

مع اني حاولت الرفع الصوره في مركز الرفع ولكن بدون فايده
 
ياشيخ حجملة يمكن تنفع الحجاااااااااااااااااااااااااااااااااااااامة خد طرق علاج مشكلة البضئ
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي





su15j5w4z.gif
 
عودة
أعلى