الحالة
مغلق و غير مفتوح للمزيد من الردود.

كراك الفيستا

زيزوومى مميز
إنضم
1 نوفمبر 2008
المشاركات
610
مستوى التفاعل
2
النقاط
520
الإقامة
الرياض
غير متصل
السلام عليكم

كيف الحال اخواني

والله مشكلتي واضحة اتمناء مساعدتكم فديتكم !
 

هلا فيك
اعمل التالي لاهنت


( 1 )

عطل جميع برامج الحماية ,,
وحمل هذه الاداة واحفظها على سطح المكتب
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

عند تشغيلها بتظهر لك رسالة ,, اضغط على >> Yes
بعدها بتظهر لك رساله ثانيه ,, اضغط على >> Yes​

انتظر حتى الاداة تنتهي من فحص جهازك ,,, وبشكل تلقائي يعاد تشغيل جهازك ,,
وبعد اعادة التشغيل ,, سوف تبدأ الاداة بالفحص مرره ثانيه
انتظر حتى يظهر لك تقرير ,, انسخه والصقه بردك القادم

--------------------------------------------


( 2 )


واعمل تقرير للهايجاك
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي




اذا انتهى التحميل ==> شغل البرنامج ==> واضغط على Do a system scan and save log
لحظات ويظهر لك تقرير ,, انسخه والصقه بردك القادم
 
هلا زيزوم ، اسف على التأخير يا شنب ،

المشكلة بدت بعد الفورمات قبل الفورمات كانت مواقع الحماية و مايكروسوفت شغاله ، وبعد الفورمات ما اشتغلت خصوصا ان الاسطوانه الي فرمت فيها نفسها الي كنت افرمت فيها سابقا

عموما هذا تقرير الكومبوفيكس

ComboFix 09-06-26.02 - A 06/27/2009 12:29.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1256.966.1025.18.1519.1189 [GMT 3:00]
Running from: c:\documents and settings\A\My Documents\Downloads\Programs\ComboFix.exe
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\Help\agt0401.hlp
c:\windows\Help\agt0405.hlp
c:\windows\Help\agt0408.hlp
c:\windows\Help\agt0415.hlp
c:\windows\Help\agt0419.hlp
c:\windows\linkinfo.dll
c:\windows\system32\drivers\cdralw.sys
h:\recycler\S-1-5-21-1292428093-1123561945-725345543-1003\Dh98\arw-pexpress-dvdrip-xvid.iso.bc!
h:\recycler\S-1-5-21-1292428093-1123561945-725345543-1003\Dh98\Pineapple.Express.DVDRip.XviD-ARROW.srt
h:\recycler\S-1-5-21-1292428093-1123561945-725345543-1003\Dh98\Subs\arw-pexpress-dvdrip-xvid-subs.rar.bc!
h:\recycler\S-1-5-21-1292428093-1123561945-725345543-1003\Dh98\Subs\arw-pexpress-dvdrip-xvid-subs.sfv.bc!
h:\recycler\S-1-5-21-1292428093-1123561945-725345543-1003\Dh98\Torrent downloaded from Demonoid.com.txt.bc!
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_CDRALW
-------\Service_cdralw

((((((((((((((((((((((((( Files Created from 2009-05-27 to 2009-06-27 )))))))))))))))))))))))))))))))
.
2009-06-27 07:37 . 2004-08-03 20:08 26496 -c--a-w- c:\windows\system32\dllcache\usbstor.sys
2009-06-26 14:21 . 2009-06-26 14:21 -------- d-----w- c:\documents and settings\A\Local Settings\Application Data\Yahoo
2009-06-26 14:20 . 2009-06-26 14:20 -------- d-----w- c:\documents and settings\All Users\Application Data\Yahoo! Companion
2009-06-26 14:20 . 2009-06-26 14:20 -------- d-----w- c:\docume~1\A\APPLIC~1\Yahoo!
2009-06-26 14:19 . 2009-06-26 14:21 -------- d-----w- c:\documents and settings\All Users\Application Data\Yahoo!
2009-06-26 14:19 . 2009-05-26 16:50 607472 ----a-w- c:\documents and settings\All Users\Application Data\Yahoo!\YUpdater\yupdater.exe
2009-06-26 14:19 . 2009-06-26 14:20 -------- d-----w- c:\program files\Yahoo!
2009-06-26 09:50 . 2009-06-26 09:58 -------- d-----w- c:\docume~1\A\APPLIC~1\Skype
2009-06-26 09:50 . 2009-06-26 09:50 -------- d-----w- c:\program files\Common Files\Skype
2009-06-26 09:50 . 2009-06-26 09:50 -------- d-----r- c:\program files\Skype
2009-06-26 09:50 . 2009-06-26 09:50 -------- d-----w- c:\documents and settings\All Users\Application Data\Skype
2009-06-26 09:36 . 2009-06-26 09:36 -------- d-----w- c:\docume~1\A\APPLIC~1\Paltalk
2009-06-26 09:36 . 2009-06-26 09:37 -------- d-----w- c:\program files\Paltalk Messenger
2009-06-26 09:36 . 2009-06-26 09:36 -------- d-----w- c:\windows\PaltalkScene
2009-06-26 08:12 . 2009-06-26 08:18 -------- d-----w- c:\program files\PFConfig
2009-06-26 05:51 . 2009-06-26 05:51 23552 ----a-w- c:\windows\system32\wmimgr32.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-27 09:31 . 2009-06-25 16:35 -------- d-----w- c:\docume~1\A\APPLIC~1\uTorrent
2009-06-27 09:28 . 2009-06-25 16:15 -------- d-----w- c:\docume~1\A\APPLIC~1\DMCache
2009-06-26 12:56 . 2009-06-25 16:15 -------- d-----w- c:\docume~1\A\APPLIC~1\IDM
2009-06-26 07:14 . 2001-09-19 12:00 39982 ----a-w- c:\windows\system32\perfc001.dat
2009-06-26 07:14 . 2001-09-19 12:00 251478 ----a-w- c:\windows\system32\perfh001.dat
2009-06-25 17:19 . 2009-06-25 17:19 -------- d-----w- c:\program files\BreakPoint Software
2009-06-25 16:58 . 2009-06-25 16:58 -------- d-----w- c:\program files\No-IP
2009-06-25 16:54 . 2009-06-25 16:15 -------- d-----w- c:\program files\Internet Download Manager
2009-06-25 16:50 . 2009-06-25 16:50 -------- d-----w- c:\documents and settings\All Users\Application Data\Messenger Plus!
2009-06-25 16:42 . 2009-06-25 16:42 -------- d-----w- c:\program files\Messenger Plus! Live
2009-06-25 16:41 . 2009-06-25 16:28 -------- d-----w- c:\program files\Windows Live
2009-06-25 16:41 . 2009-06-25 16:29 -------- dcsh--w- c:\program files\Common Files\WindowsLiveInstaller
2009-06-25 16:40 . 2009-06-25 16:28 -------- d-----w- c:\documents and settings\All Users\Application Data\WLInstaller
2009-06-25 16:36 . 2009-06-25 16:36 -------- d-----w- c:\program files\uTorrent
2009-06-25 16:31 . 2009-06-25 16:31 2232 ----a-w- c:\windows\java\Packages\Data\T3DV3TNR.DAT
2009-06-25 16:31 . 2009-06-25 16:31 155995 ----a-w- c:\windows\java\Packages\8GYBB7NB.ZIP
2009-06-25 16:31 . 2009-06-25 16:31 2678 ----a-w- c:\windows\java\Packages\Data\9ZLB7J5F.DAT
2009-06-25 16:31 . 2009-06-25 16:31 2678 ----a-w- c:\windows\java\Packages\Data\CJPJPZDV.DAT
2009-06-25 16:31 . 2009-06-25 16:31 2678 ----a-w- c:\windows\java\Packages\Data\9FBT3HR3.DAT
2009-06-25 16:31 . 2009-06-25 16:31 2678 ----a-w- c:\windows\java\Packages\Data\YD73XRX7.DAT
2009-06-25 16:31 . 2009-06-25 16:31 2678 ----a-w- c:\windows\java\Packages\Data\ACHBRHZX.DAT
2009-06-25 16:23 . 2009-06-25 16:23 -------- d-----w- c:\program files\Realtek AC97
2009-06-25 16:23 . 2009-06-25 16:23 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-06-25 16:22 . 2009-06-25 16:22 -------- d-----w- c:\program files\Common Files\InstallShield
2009-06-25 16:20 . 2009-06-25 16:20 -------- d-----w- c:\program files\Driver Magician
2009-06-25 16:15 . 2009-06-25 16:15 -------- d-----w- c:\docume~1\A\APPLIC~1\Avant Profiles
2009-06-25 16:15 . 2009-06-25 16:15 -------- d-----w- c:\program files\Avant Browser
2009-06-25 16:12 . 2009-06-25 16:12 27264 ----a-w- c:\documents and settings\A\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-06-25 16:07 . 2009-06-25 16:07 -------- d-----w- c:\program files\microsoft frontpage
2009-06-25 16:06 . 2009-06-25 16:06 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-06-25 16:03 . 2009-06-25 16:03 22144 ----a-w- c:\windows\system32\emptyregdb.dat
2009-05-13 05:02 . 2004-08-03 21:55 915456 ----a-w- c:\windows\system32\wininet.dll
2004-08-03 21:55 . 2004-08-03 21:55 165025 --sha-r- c:\windows\system32\hayjzb.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2004-08-03 15360]
"IDMan"="c:\program files\Internet Download Manager\IDMan.exe" [2009-05-27 2815408]
"uTorrent"="c:\program files\uTorrent\uTorrent.exe" [2009-06-25 287536]
"MsnMsgr"="c:\program files\Windows Live\Messenger\MsnMsgr.Exe" [2007-10-18 5724184]
"Messenger (Yahoo!)"="c:\program files\Yahoo!\Messenger\YahooMessenger.exe" [2009-05-26 4351216]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"="SOUNDMAN.EXE" - c:\windows\soundman.exe [2007-04-16 577536]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-03 15360]
c:\documents and settings\A\çں‍ê، ں §ڑ\ںé ©ںê¤\ §ک ں颬نïé\
No-IP DUC.lnk - c:\program files\No-IP\DUC20.exe [2009-6-25 1172992]
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"6972:TCP"= 6972:TCP:sxuseejk
"3460:TCP"= 3460:TCP:3460
"81:TCP"= 81:TCP:81
S2 yzixsqas;kdytsq;c:\windows\system32\svchost.exe -k netsvcs [04/08/2004 12:56 ص 14336]
--- Other Services/Drivers In Memory ---
*Deregistered* - PROCEXP113
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
yzixsqas
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
"c:\windows\system32\rundll32.exe" "c:\windows\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com.sa/
uInternet Settings,ProxyOverride = local
IE: تحميل الكل بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEGetAll.htm
IE: تحميل بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEExt.htm
IE: تحميل محتوى FLV بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEGetVL.htm
DPF: Microsoft XML Parser for Java -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

Rootkit scan 2009-06-27 12:32
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\yzixsqas]
"ServiceDll"="c:\windows\system32\hayjzb.dll"
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'explorer.exe'(3300)
c:\windows\system32\WININET.dll
c:\windows\system32\msi.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Yahoo!\SoftwareUpdate\YahooAUService.exe
c:\program files\Yahoo!\Messenger\Ymsgr_tray.exe
c:\documents and settings\A\c:\windows\explorer.exe
c:\windows\system32\rundll32.exe
.
**************************************************************************
.
Completion time: 2009-06-27 12:34 - machine was rebooted
ComboFix-quarantined-files.txt 2009-06-27 09:34
Pre-Run: 35,786,489,856 bytes free
Post-Run: 35,923,357,696 bytes free
164 --- E O F --- 2009-06-25 16:26


وهذا تقرير الهايجاك

---

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:36:22 م, on 27/06/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\No-IP\DUC20.exe
C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: No-IP DUC.lnk = C:\Program Files\No-IP\DUC20.exe
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
--
End of file - 4223 bytes
 
حذفت

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
 
طيب الحين كيف الكمبوفيكس سوى اللي عليه
 
التقرير موجود فوق ، تم حذف ملفات صحيح والهايجاك شبـة نظيف سواء قيمة واحدهـ، غير ضارهـ ،

والى الحين المشكلة مستمرهـ ..
 
1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = local


R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll


O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\YTSingle Instance.dll

O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe

احذفها بعد
 
أستخدمت اداة smitfraudfix ، وحذفت الي قلتها بالهايجاك

وهذا تقرير جديد

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:00:16, on 27/06/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\No-IP\DUC20.exe
C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: No-IP DUC.lnk = C:\Program Files\No-IP\DUC20.exe
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
--
End of file - 3655 bytes
 
كيف ما تفتح يظهر خطأ ولا شي ثاني ممكن صووره
 
توقيع : v.i.p
تفضل الصورهـ !

339048815.jpg
 
للعلم فقط ، استخدمت الريل بلير ، و متصفحات اخرى وما فاد !

..
 
يا نـاس / فيه حل : ولا بسوي فورمات ؟
 
الحالة
مغلق و غير مفتوح للمزيد من الردود.
عودة
أعلى