• بادئ الموضوع بادئ الموضوع صالح115
  • تاريخ البدء تاريخ البدء
  • المشاهدات 960

صالح115

زيزوومى فعال
إنضم
1 سبتمبر 2008
المشاركات
256
مستوى التفاعل
1
النقاط
330
الإقامة
السعوديـk.s.Aــة
غير متصل
السلام عليكم

جهازي بطئ حيييل بالنت مدري وش فيه
جربت على كذا اتصال نفس الشي

وهذا تقرير هياجيك

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:35:22 م, on 30/06/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\system32\crypserv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\WINDOWS\system32\WISPTIS.EXE
C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: مساعد رابط Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
O2 - BHO: Ipswitch.WsftpBrowserHelper - {601ED020-FB6C-11D3-87D8-0050DA59922B} - C:\Program Files\Ipswitch\WS_FTP Pro\wsbho2k0.dll
O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AF BHO - {B7154C4D-87C0-4A2C-AB64-DA132BAC2EE6} - C:\Program Files\AnchorFree\bin\AFBho.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: AFToolbar - {1F385865-F3D4-41ff-960D-7B7D0A7A72F6} - C:\Program Files\AnchorFree\bin\AFToolbar.dll
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: تحميل الكل بـ إنترنت داونلود مانيجر - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بـ إنترنت داونلود مانيجر - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى فيديو (إف.إل.في) بـ إنترنت داونلود مانيجر - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: Web traffic protection statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: HP Smart Select - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6924091F-CD97-41E1-B1D4-D9079409D413} (IMCv1 Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {E001C731-5E37-4538-A5CB-8168736A2360} (ActiveQscan Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Crypkey License - Kenonic Controls Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE
--
End of file - 8416 bytes
 

وعليكم السلام ورحمة الله وبركاته

اهلا بك اخي الحبيب

اخــي :-

ماهي مواصفات جهازك
* سرعة المعالج
* حجم الرام


- الملاحظ ان برامج بدء التشغيل كثيره مما يؤدي الى استهلاك الرامات

بالتوفيق
 
توقيع : SUL6AN
انا جهازي دل 6400

رام 2 ونص قيقا
هاردسك 140

ياليت توضح لي اخوي كيف اقلل البرامج ويكون سريع
 
الله يحييك اخوي


عطل برامج الحماية عن العمل
ثم
حمل الاداة التالية واحفظها على سطح المكتب
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

عند تشغيلها بتظهر لك رسالة ,, اضغط على >> Yes
بعدها بتظهر لك رساله ثانيه ,, اضغط على >> Yes
اثناء الفحص ممكن يعاد تشغيل الجهاز
وبعد اعادة التشغيل ,, سوف تبدأ الاداة بالفحص مرره ثانيه
لا تقم بتشغيل اي برنامج ،، ومهما طالت عملية الفحص انتظر حتى تنتهي
انتظر حتى يظهر لك تقرير ،،انسخه والصقه بمشاركتك القادمة

 
توقيع : AbOdy
تفضل هذا التقرير

ComboFix 09-07-01.04 - Good 07/01/2009 21:46.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1256.966.1025.18.2550.2127 [GMT 3:00]
Running from: c:\documents and settings\Good\سطح المكتب\ComboFix.exe
AV: Kaspersky Anti-Virus *On-access scanning disabled* (Updated) {2C4D4BC6-0793-4956-A9F9-E252435469C0}
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\Good\Application Data\addons.dat
.
((((((((((((((((((((((((( Files Created from 2009-06-01 to 2009-07-01 )))))))))))))))))))))))))))))))
.
2009-07-01 09:27 . 2008-10-16 11:06 268648 ----a-w- c:\windows\system32\mucltui.dll
2009-07-01 09:27 . 2008-10-16 11:06 208744 ----a-w- c:\windows\system32\muweb.dll
2009-06-30 21:25 . 2009-06-30 21:25 -------- d-----w- c:\documents and settings\Good\Local Settings\Application Data\Runscanner.net
2009-06-29 22:09 . 2009-06-29 22:09 57344 ----a-w- C:\MsnPass.exe
2009-06-29 22:08 . 2009-07-01 18:44 -------- d-----w- c:\documents and settings\Good\Application Data\HPAppData
2009-06-29 22:08 . 2009-06-29 22:08 -------- d-----w- c:\documents and settings\Good\Application Data\HP
2009-06-29 21:49 . 2009-06-29 21:49 -------- d-----w- c:\documents and settings\All Users\Application Data\WEBREG
2009-06-29 21:47 . 2009-06-29 21:47 -------- d-----w- c:\documents and settings\All Users\Application Data\Hewlett-Packard
2009-06-29 21:47 . 2007-11-08 14:59 271704 ----a-r- c:\windows\system32\hpzids01.dll
2009-06-29 21:47 . 2007-10-20 15:25 117760 ----a-w- c:\windows\system32\hpzll5mu.dll
2009-06-29 21:42 . 2009-06-29 21:46 -------- d-----w- c:\documents and settings\All Users\Application Data\HP
2009-06-29 21:42 . 2009-06-29 21:42 -------- d-----w- c:\documents and settings\All Users\Application Data\HP Product Assistant
2009-06-29 21:42 . 2009-06-29 21:42 -------- d-----w- c:\program files\Common Files\HP
2009-06-29 21:39 . 2009-06-29 21:42 -------- d-----w- c:\program files\HP
2009-06-29 21:39 . 2004-08-03 20:08 31616 -c--a-w- c:\windows\system32\dllcache\usbccgp.sys
2009-06-29 21:39 . 2004-08-03 20:08 31616 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2009-06-29 21:36 . 2009-06-29 21:49 173340 ----a-w- c:\windows\hphins26.dat
2009-06-29 21:36 . 2008-01-18 16:49 787 ------w- c:\windows\hphmdl26.dat
2009-06-29 21:27 . 2004-08-03 20:01 25856 -c--a-w- c:\windows\system32\dllcache\usbprint.sys
2009-06-29 21:27 . 2004-08-03 20:01 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2009-06-21 15:05 . 2009-06-21 15:05 -------- d-----w- c:\program files\MSECache
2009-06-20 04:07 . 2009-06-20 04:07 -------- d-----w- c:\documents and settings\Good\Application Data\shamela
2009-06-18 17:50 . 2009-06-18 17:50 -------- d-----w- c:\program files\SWiSHmax
2009-06-12 01:38 . 2009-06-30 20:56 -------- d-----w- c:\documents and settings\All Users\Application Data\WinZip
2009-06-11 22:53 . 2009-06-11 22:54 -------- d-----w- c:\documents and settings\Good\Application Data\QuickScan
2009-06-09 02:43 . 2009-06-09 02:43 -------- d-----w- c:\program files\Common Files\SWiSHzone.com
2009-06-06 05:13 . 2009-06-06 05:13 -------- d-----w- c:\program files\LtUcx
2009-06-05 23:32 . 2009-06-05 23:32 -------- d-----w- c:\documents and settings\All Users\Application Data\Messenger Plus!
2009-06-05 22:50 . 2009-06-05 22:50 -------- d-----w- c:\program files\Ask Search Assistant
2009-06-05 22:47 . 2009-06-05 22:50 -------- d-----w- c:\program files\MSN Messenger
2009-06-05 22:02 . 2008-07-08 11:54 148496 ----a-w- c:\windows\system32\drivers\61988249.sys
2009-06-05 21:33 . 2009-06-05 21:33 -------- d-----w- c:\program files\Trend Micro
2009-06-05 21:18 . 2009-06-05 21:18 64000 ----a-w- C:\mspass.exe
2009-06-05 21:17 . 2009-06-05 21:17 33 ----a-w- C:\mspass.bat
2009-06-05 20:59 . 2009-06-05 21:00 294912 ----a-w- C:\kob.exe
2009-06-05 19:06 . 2009-06-05 19:06 -------- d-----w- c:\windows\system32\??
2009-06-05 05:25 . 2009-06-05 05:25 -------- d-----w- c:\documents and settings\Good\Local Settings\Application Data\Identities
2009-06-05 04:57 . 2009-06-05 04:57 -------- d-----w- c:\documents and settings\Good\Application Data\vlc
2009-06-05 02:53 . 2009-06-05 02:53 -------- d-----w- c:\program files\Hotspot Shield
2009-06-05 02:52 . 2009-06-05 02:52 -------- d-----w- c:\program files\AnchorFree
2009-06-04 21:58 . 2009-06-04 21:58 -------- d--h--w- c:\windows\system32\MsN
2009-06-04 21:54 . 2009-06-30 20:56 -------- d-----w- c:\documents and settings\Good\Application Data\IDM
2009-06-04 21:54 . 2009-06-30 19:24 -------- d-----w- c:\documents and settings\Good\Application Data\DMCache
2009-06-04 21:54 . 2009-06-30 20:58 -------- d-----w- c:\program files\Internet Download Manager
2009-06-04 21:53 . 2009-06-04 21:53 -------- d-----w- c:\documents and settings\Good\Local Settings\Application Data\Help
2009-06-04 21:53 . 2009-06-04 21:53 -------- d-----w- c:\program files\GoldWave
2009-06-04 21:52 . 2009-06-04 21:52 -------- d-----w- c:\documents and settings\Good\Application Data\Ipswitch
2009-06-04 21:52 . 2009-06-04 21:52 -------- d-----w- c:\program files\Ipswitch
2009-06-04 21:51 . 2009-06-04 21:51 -------- d-----w- c:\program files\PHP Coder
2009-06-04 21:44 . 2002-10-25 02:17 65536 ----a-w- c:\windows\system32\Crypserv.exe
2009-06-04 21:44 . 1999-06-18 21:49 165888 ----a-w- c:\windows\Ckconfig.exe
2009-06-04 21:44 . 1996-05-03 17:21 27648 ----a-r- c:\windows\Setup_ck.exe
2009-06-04 21:44 . 1996-05-03 15:36 18432 ----a-w- c:\windows\Setup_ck.dll
2009-06-04 21:44 . 1995-07-04 18:33 11776 ----a-w- c:\windows\Ckrfresh.exe
2009-06-04 21:44 . 2002-10-25 02:17 29414 ----a-w- c:\windows\system32\CKLDRV.SYS
2009-06-04 21:44 . 2009-06-04 21:44 818688 ----a-w- c:\windows\system32\K2KLOC.dll
2009-06-04 21:44 . 2009-06-04 21:44 741888 ----a-w- c:\windows\system32\K2KRMT.dll
2009-06-04 21:43 . 2009-06-04 21:43 -------- d-----w- c:\documents and settings\Good\Application Data\Media Player Classic
2009-06-04 21:43 . 2009-06-25 10:32 -------- d-----w- c:\program files\Kelk 2000
2009-06-04 21:33 . 2009-06-21 16:39 -------- d-----w- c:\documents and settings\Good\Contacts
2009-06-04 21:21 . 2009-06-04 21:23 -------- dcsh--w- c:\program files\Common Files\WindowsLiveInstaller
2009-06-04 21:20 . 2009-06-05 22:24 -------- d-----w- c:\documents and settings\All Users\Application Data\WLInstaller
2009-06-04 21:13 . 2005-02-25 03:34 22752 ----a-w- c:\windows\system32\spupdsvc.exe
2009-06-04 21:13 . 2009-06-04 21:13 -------- d--h--w- c:\windows\$hf_mig$
2009-06-04 21:08 . 2001-08-17 13:59 3072 ----a-w- c:\windows\system32\drivers\audstub.sys
2009-06-04 21:08 . 2004-08-04 00:55 21504 ----a-w- c:\windows\system32\hidserv.dll
2009-06-04 21:07 . 2004-08-04 00:41 57216 ----a-w- c:\windows\system32\drivers\redbook.sys
2009-06-04 21:07 . 2001-08-17 13:46 6400 ----a-w- c:\windows\system32\drivers\enum1394.sys
2009-06-04 21:06 . 2004-08-03 21:55 73728 -c--a-w- c:\windows\system32\dllcache\usbui.dll
2009-06-04 21:06 . 2004-08-03 21:55 73728 ----a-w- c:\windows\system32\usbui.dll
2009-06-04 21:06 . 2001-09-18 13:30 16256 ----a-w- c:\windows\system32\drivers\battc.sys
2009-06-04 21:06 . 2001-08-17 13:58 9344 ----a-w- c:\windows\system32\drivers\compbatt.sys
2009-06-04 21:06 . 2004-08-03 23:07 14080 ----a-w- c:\windows\system32\drivers\CmBatt.sys
2009-06-04 21:06 . 2004-08-03 23:07 8832 ----a-w- c:\windows\system32\drivers\wmiacpi.sys
2009-06-04 21:04 . 2002-08-29 06:30 5632 -c--a-w- c:\windows\system32\dllcache\kbdheb.dll
2009-06-04 21:03 . 2008-10-16 11:09 43544 ----a-w- c:\windows\system32\wups2.dll
2009-06-04 21:03 . 2009-06-05 21:51 -------- d--h--w- c:\documents and settings\Default User
2009-06-04 21:03 . 2009-06-04 18:23 -------- d-----w- C:\Documents and Settings
2009-06-04 21:03 . 2009-06-04 18:15 -------- d-----w- c:\documents and settings\All Users
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-07-01 18:41 . 2002-08-29 06:30 41160 ----a-w- c:\windows\system32\perfc001.dat
2009-07-01 18:41 . 2002-08-29 06:30 254850 ----a-w- c:\windows\system32\perfh001.dat
2009-07-01 18:37 . 2009-06-04 20:11 -------- d-----w- c:\documents and settings\All Users\Application Data\Kaspersky Lab
2009-07-01 18:36 . 2009-06-04 20:11 52544 --sha-w- c:\windows\system32\drivers\fidbox.idx
2009-07-01 18:36 . 2009-06-04 20:11 516128 --sha-w- c:\windows\system32\drivers\fidbox2.dat
2009-07-01 18:36 . 2009-06-04 20:11 4940 --sha-w- c:\windows\system32\drivers\fidbox2.idx
2009-07-01 18:36 . 2009-06-04 20:11 4302880 --sha-w- c:\windows\system32\drivers\fidbox.dat
2009-06-27 19:22 . 2009-06-04 18:23 393880 ----a-w- c:\documents and settings\Good\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-06-25 10:36 . 2009-06-04 19:31 -------- d-----w- c:\program files\Real_SC
2009-06-25 10:21 . 2009-06-04 18:48 -------- d-----w- c:\program files\Dell
2009-06-05 22:50 . 2009-06-04 19:27 -------- d-----w- c:\program files\Messenger Plus! Live
2009-06-05 22:50 . 2009-06-04 19:26 -------- d-----w- c:\program files\Windows Live
2009-06-05 22:45 . 2009-06-04 19:28 -------- d-----w- c:\program files\Yahoo!
2009-06-04 21:52 . 2009-06-04 18:39 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-06-04 21:52 . 2009-06-04 18:15 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-06-04 20:52 . 2008-01-29 14:29 33808 ----a-w- c:\windows\system32\drivers\klbg.sys
2009-06-04 20:52 . 2009-06-04 20:12 105395 ----a-w- c:\windows\system32\drivers\klin.dat
2009-06-04 20:52 . 2009-06-04 20:12 94643 ----a-w- c:\windows\system32\drivers\klick.dat
2009-06-04 20:52 . 2009-06-04 20:52 33808 ----a-w- c:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP8\Data\Updater\Temporary Files\temporaryFolder\AutoPatches\kav8exec\8.0.0.506\klbg.sys
2009-06-04 20:52 . 2009-06-04 20:52 206088 ----a-w- c:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP8\Data\Updater\Temporary Files\temporaryFolder\AutoPatches\kav8exec\8.0.0.506\avp.exe
2009-06-04 20:52 . 2009-06-04 20:52 226832 ----a-w- c:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP8\Data\Updater\Temporary Files\temporaryFolder\AutoPatches\kav8exec\8.0.0.506\XP\klif.sys
2009-06-04 20:11 . 2009-06-04 20:11 -------- d-----w- c:\program files\Kaspersky Lab
2009-06-04 20:10 . 2009-06-04 20:10 -------- d-----w- c:\documents and settings\All Users\Application Data\Kaspersky Lab Setup Files
2009-06-04 20:08 . 2009-06-04 20:08 720896 ----a-w- c:\windows\iun6002.exe
2009-06-04 20:08 . 2009-06-04 20:08 -------- d-----w- c:\program files\Macromedia
2009-06-04 20:06 . 2009-06-04 19:21 -------- d-----w- c:\program files\Common Files\Adobe
2009-06-04 20:04 . 2009-06-04 20:04 -------- d-----w- c:\documents and settings\All Users\Application Data\Adobe Systems
2009-06-04 20:04 . 2009-06-04 20:04 -------- d-----w- c:\program files\Common Files\Adobe Systems Shared
2009-06-04 20:02 . 2009-06-04 20:02 -------- d-----w- c:\program files\Xilisoft
2009-06-04 20:01 . 2009-06-04 20:01 0 ----a-w- c:\windows\nsreg.dat
2009-06-04 19:53 . 2009-06-04 19:53 -------- d-----w- c:\documents and settings\Good\Application Data\ESET
2009-06-04 19:49 . 2009-06-04 19:49 -------- d-----w- c:\documents and settings\All Users\Application Data\ESET
2009-06-04 19:42 . 2009-06-04 19:42 -------- d-----w- c:\program files\Golden Al-Wafi Translator
2009-06-04 19:42 . 2009-06-04 19:42 172032 ------w- c:\windows\Setup1.exe
2009-06-04 19:42 . 2009-06-04 19:42 73216 ----a-w- c:\windows\ST6UNST.EXE
2009-06-04 19:41 . 2009-06-04 19:41 -------- d-----w- c:\program files\Nero
2009-06-04 19:41 . 2009-06-04 19:41 -------- d-----w- c:\program files\Common Files\Ahead
2009-06-04 19:40 . 2009-06-04 19:40 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple Computer
2009-06-04 19:40 . 2009-06-04 19:40 -------- d-----w- c:\program files\K-Lite Codec Pack
2009-06-04 19:39 . 2009-06-04 19:39 -------- d-----w- c:\program files\VideoLAN
2009-06-04 19:38 . 2009-06-04 19:38 -------- d-----w- c:\program files\Common Files\xing shared
2009-06-04 19:38 . 2009-06-04 19:37 -------- d-----w- c:\program files\Real
2009-06-04 19:38 . 2009-06-04 19:37 -------- d-----w- c:\program files\Common Files\Real
2009-06-04 19:34 . 2009-06-04 19:34 -------- d-----w- c:\documents and settings\All Users\Application Data\CyberLink
2009-06-04 19:34 . 2009-06-04 19:34 -------- d-----w- c:\program files\CyberLink
2009-06-04 19:31 . 2009-06-04 19:31 196608 ----a-w- c:\windows\system32\maag.dll
2009-06-04 19:31 . 2009-06-04 19:31 1212416 ----a-w- c:\windows\system32\ckll.dll
2009-06-04 19:31 . 2009-06-04 19:31 90112 ----a-w- c:\windows\system32\agsaami.dll
2009-06-04 19:31 . 2009-06-04 19:31 610304 ----a-w- c:\windows\system32\agsaamg.dll
2009-06-04 19:31 . 2009-06-04 19:31 372736 ----a-w- c:\windows\system32\agsaamc.dll
2009-06-04 19:31 . 2009-06-04 19:31 2535424 ----a-w- c:\windows\system32\agsaamj.dll
2009-06-04 19:31 . 2009-06-04 19:31 1986560 ----a-w- c:\windows\system32\akll.dll
2009-06-04 19:31 . 2009-06-04 19:31 1245184 ----a-w- c:\windows\system32\bkll.dll
2009-06-04 19:29 . 2009-06-04 19:29 47104 ------w- c:\windows\AKDeInstall.exe
2009-06-04 19:29 . 2009-06-04 19:29 -------- d-----w- c:\program files\mpegable
2009-06-04 19:29 . 2009-06-04 19:29 -------- d-----w- c:\documents and settings\All Users\Application Data\Yahoo!
2009-06-04 19:24 . 2009-06-04 19:24 2232 ----a-w- c:\windows\java\Packages\Data\FBHVT335.DAT
2009-06-04 19:24 . 2009-06-04 19:24 155995 ----a-w- c:\windows\java\Packages\YKLB5V3X.ZIP
2009-06-04 19:24 . 2009-06-04 19:24 2678 ----a-w- c:\windows\java\Packages\Data\3TR3P77J.DAT
2009-06-04 19:24 . 2009-06-04 19:24 2678 ----a-w- c:\windows\java\Packages\Data\VPNV7TV5.DAT
2009-06-04 19:24 . 2009-06-04 19:24 2678 ----a-w- c:\windows\java\Packages\Data\YP7LZPN1.DAT
2009-06-04 19:24 . 2009-06-04 19:24 2678 ----a-w- c:\windows\java\Packages\Data\NFJRNTZ5.DAT
2009-06-04 19:24 . 2009-06-04 19:24 2678 ----a-w- c:\windows\java\Packages\Data\FDBD79JJ.DAT
2009-06-04 19:19 . 2009-06-04 19:19 -------- d-----w- c:\documents and settings\Good\Application Data\ACD Systems
2009-06-04 19:17 . 2009-06-04 19:17 -------- d-----w- c:\program files\Common Files\ACD Systems
2009-06-04 19:17 . 2009-06-04 19:17 -------- d-----w- c:\documents and settings\All Users\Application Data\ACD Systems
2009-06-04 19:17 . 2009-06-04 19:17 -------- d-----w- c:\program files\ACD Systems
2009-06-04 18:54 . 2009-06-04 18:54 -------- d-----w- c:\program files\WIDCOMM
2009-06-04 18:51 . 2009-06-04 18:38 -------- d-----w- c:\program files\Common Files\InstallShield
2009-06-04 18:47 . 2009-06-04 18:47 -------- d-----w- c:\program files\Broadcom
2009-06-04 18:46 . 2009-06-04 18:46 -------- d-----w- c:\program files\Synaptics
2009-06-04 18:45 . 2009-06-04 18:45 -------- d-----w- c:\program files\CONEXANT
2009-06-04 18:44 . 2009-06-04 18:44 -------- d-----w- c:\program files\DIFX
2009-06-04 18:42 . 2009-06-04 18:42 -------- d-----w- c:\program files\Intel
2009-06-04 18:40 . 2009-06-04 18:40 -------- d-----w- c:\program files\SigmaTel
2009-06-04 18:29 . 2009-06-04 18:29 -------- d-----w- c:\program files\Common Files\L&H
2009-06-04 18:29 . 2009-06-04 18:29 -------- d-----w- c:\program files\Microsoft.NET
2009-06-04 18:29 . 2009-06-04 18:29 -------- d-----w- c:\program files\Microsoft ActiveSync
2009-06-04 18:28 . 2009-06-04 18:28 -------- d-----w- c:\program files\Microsoft Works
2009-06-04 18:16 . 2009-06-04 18:16 -------- d-----w- c:\program files\microsoft frontpage
2009-06-04 18:12 . 2009-06-04 18:12 22144 ----a-w- c:\windows\system32\emptyregdb.dat
.
((((((((((((((((((((((((((((( SnapShot@2009-06-05_21.49.21 )))))))))))))))))))))))))))))))))))))))))
.
+ 2007-10-19 17:46 . 2007-10-19 17:46 49152 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_341af80a\mfc80KOR.dll
+ 2007-10-19 17:46 . 2007-10-19 17:46 49152 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_341af80a\mfc80JPN.dll
+ 2007-10-19 17:46 . 2007-10-19 17:46 61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_341af80a\mfc80ITA.dll
+ 2007-10-19 17:46 . 2007-10-19 17:46 61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_341af80a\mfc80FRA.dll
+ 2007-10-19 17:46 . 2007-10-19 17:46 61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_341af80a\mfc80ESP.dll
+ 2007-10-19 17:46 . 2007-10-19 17:46 57344 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_341af80a\mfc80ENU.dll
+ 2007-10-19 17:46 . 2007-10-19 17:46 65536 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_341af80a\mfc80DEU.dll
+ 2007-10-19 17:46 . 2007-10-19 17:46 45056 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_341af80a\mfc80CHT.dll
+ 2007-10-19 17:46 . 2007-10-19 17:46 40960 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_341af80a\mfc80CHS.dll
+ 2007-05-08 11:19 . 2007-05-08 11:19 57344 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_decbdf0c\mfcm80u.dll
+ 2007-05-08 11:19 . 2007-05-08 11:19 69632 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_decbdf0c\mfcm80.dll
+ 2007-09-12 08:23 . 2007-09-12 08:23 96256 c:\windows\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_6e85597b\ATL80.dll
+ 2009-06-29 21:47 . 2007-07-31 10:52 57344 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\hpuac5mu.dll
+ 2009-06-29 21:47 . 2007-07-31 10:52 57344 c:\windows\system32\spool\drivers\w32x86\3\hpuac5mu.dll
+ 2007-01-19 09:53 . 2007-01-19 09:53 51056 c:\windows\system32\sirenacm.dll
+ 2002-08-29 06:30 . 2009-07-01 18:41 41170 c:\windows\system32\perfc009.dat
+ 2009-06-04 18:22 . 2009-06-27 19:21 32768 c:\windows\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
- 2009-06-04 18:22 . 2009-06-04 18:22 32768 c:\windows\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
+ 2009-06-04 18:22 . 2009-06-27 19:21 32768 c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
- 2009-06-04 18:22 . 2009-06-04 18:22 32768 c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
- 2009-06-04 18:22 . 2009-06-04 18:22 16384 c:\windows\system32\config\systemprofile\Cookies\index.dat
+ 2009-06-04 18:22 . 2009-06-27 19:21 16384 c:\windows\system32\config\systemprofile\Cookies\index.dat
+ 2009-06-29 21:47 . 2009-06-29 21:47 25214 c:\windows\Installer\{BAD0FA60-09CF-4411-AE6A-C2844C8812FA}\NewShortcut2_8CEA85DE955B4BF487F20BAA62821633.exe
+ 2009-06-29 21:47 . 2009-06-29 21:47 25214 c:\windows\Installer\{BAD0FA60-09CF-4411-AE6A-C2844C8812FA}\NewShortcut1_8CEA85DE955B4BF487F20BAA62821633.exe
+ 2009-06-29 21:47 . 2009-06-29 21:47 25214 c:\windows\Installer\{BAD0FA60-09CF-4411-AE6A-C2844C8812FA}\ARPPRODUCTICON.exe
+ 2009-06-29 21:45 . 2009-06-29 21:45 25214 c:\windows\Installer\{B8DBED1E-8BC3-4d08-B94A-F9D7D88E9BBF}\NewShortcut11.E6275AC6_5F4F_4F0B_987B_C7E51AB63AA0.exe
+ 2009-06-29 21:45 . 2009-06-29 21:45 25214 c:\windows\Installer\{B8DBED1E-8BC3-4d08-B94A-F9D7D88E9BBF}\NewShortcut1.E6275AC6_5F4F_4F0B_987B_C7E51AB63AA0.exe
+ 2009-06-05 22:47 . 2009-06-05 22:47 29926 c:\windows\Installer\{B3FB6C13-AEC8-4FC8-8B96-919BAB1F2FC7}\MsblIco.Exe
+ 2009-06-21 15:05 . 2009-06-21 15:05 38240 c:\windows\Installer\{90120000-0020-0409-0000-0000000FF1CE}\O12ConvIcon.exe
+ 2009-06-29 21:44 . 2009-06-29 21:44 65536 c:\windows\Installer\{5ACE69F0-A3E8-44eb-88C1-0A841E700180}\NewShortcut1.A6CC6977_F7B4_4C0B_9510_BCD847D4BDB2.exe
+ 2009-06-29 21:46 . 2009-06-29 21:46 25214 c:\windows\Installer\{34BFB099-07B2-4E95-A673-7362D60866A2}\ARPPRODUCTICON.exe
+ 2009-06-29 21:46 . 2009-06-29 21:46 65536 c:\windows\Installer\{11B83AD3-7A46-4C2E-A568-9505981D4C6F}\ARPPRODUCTICON.exe
+ 2007-05-08 11:19 . 2007-05-08 11:19 626688 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_0de56c07\msvcr80.dll
+ 2007-05-08 11:19 . 2007-05-08 11:19 548864 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_0de56c07\msvcp80.dll
+ 2007-05-08 11:19 . 2007-05-08 11:19 479232 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_0de56c07\msvcm80.dll
+ 2005-09-22 20:48 . 2005-09-22 20:48 626688 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd\msvcr80.dll
+ 2005-09-22 20:48 . 2005-09-22 20:48 548864 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd\msvcp80.dll
+ 2005-09-22 20:48 . 2005-09-22 20:48 479232 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd\msvcm80.dll
+ 2009-06-29 21:47 . 2007-10-20 15:21 278016 c:\windows\system32\spool\prtprocs\w32x86\hpzpp5mu.dll
+ 2009-06-29 21:47 . 2007-03-09 07:03 761344 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\UNIRES.DLL
+ 2009-06-29 21:47 . 2007-03-09 07:03 740864 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\UNIDRVUI.DLL
+ 2009-06-29 21:47 . 2007-03-09 07:03 372736 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\UNIDRV.DLL
+ 2009-06-29 21:47 . 2007-10-20 15:19 674816 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\hpzss5mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:22 302592 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\hpzpr5mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:21 783872 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\hpzle5mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:22 790528 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\hpzev5mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:25 235008 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\hpzc35mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:14 977920 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\hpz3c5mu.dll
+ 2009-06-29 21:47 . 2007-06-29 08:56 113664 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\hpfrs5mu.dll
+ 2009-06-29 21:47 . 2007-08-10 07:06 356352 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\hpfig5mu.dll
+ 2009-06-29 21:47 . 2007-06-29 08:55 326144 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\hpfie5mu.dll
+ 2009-06-29 21:47 . 2006-11-30 08:14 671816 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\hpcdmc32.dll
+ 2009-06-29 21:47 . 2007-03-09 07:03 761344 c:\windows\system32\spool\drivers\w32x86\3\UNIRES.DLL
+ 2009-06-29 21:47 . 2007-03-09 07:03 740864 c:\windows\system32\spool\drivers\w32x86\3\UNIDRVUI.DLL
+ 2009-06-29 21:47 . 2007-03-09 07:03 372736 c:\windows\system32\spool\drivers\w32x86\3\UNIDRV.DLL
+ 2009-06-29 21:47 . 2007-10-20 15:19 674816 c:\windows\system32\spool\drivers\w32x86\3\hpzss5mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:22 302592 c:\windows\system32\spool\drivers\w32x86\3\hpzpr5mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:21 783872 c:\windows\system32\spool\drivers\w32x86\3\hpzle5mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:22 790528 c:\windows\system32\spool\drivers\w32x86\3\hpzev5mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:25 235008 c:\windows\system32\spool\drivers\w32x86\3\hpzc35mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:14 977920 c:\windows\system32\spool\drivers\w32x86\3\hpz3c5mu.dll
+ 2009-06-29 21:47 . 2007-06-29 08:56 113664 c:\windows\system32\spool\drivers\w32x86\3\hpfrs5mu.dll
+ 2009-06-29 21:47 . 2007-08-10 07:06 356352 c:\windows\system32\spool\drivers\w32x86\3\hpfig5mu.dll
+ 2009-06-29 21:47 . 2007-06-29 08:55 326144 c:\windows\system32\spool\drivers\w32x86\3\hpfie5mu.dll
+ 2009-06-29 21:47 . 2006-11-30 08:14 671816 c:\windows\system32\spool\drivers\w32x86\3\hpcdmc32.dll
+ 2002-08-29 06:30 . 2009-07-01 18:41 314842 c:\windows\system32\perfh009.dat
+ 2009-06-29 21:41 . 2007-11-08 14:59 271704 c:\windows\system32\DRVSTORE\hpd1500a_02DD6E10833EA64367992C9570AD6B04D82C3CCE\hpzids01.dll
+ 2007-08-22 13:34 . 2007-08-22 13:34 287256 c:\windows\system32\AbaleZip.dll
+ 2009-06-04 19:38 . 2009-06-04 19:38 164352 c:\windows\Installer\85667.msi
+ 2009-06-04 19:28 . 2009-06-04 19:28 331264 c:\windows\Installer\85660.msi
+ 2009-06-05 22:47 . 2009-06-05 22:47 873984 c:\windows\Installer\336b51.msi
+ 2009-06-04 21:24 . 2009-06-04 21:24 111104 c:\windows\Installer\18e16.msi
+ 2009-06-04 21:20 . 2009-06-04 21:20 467968 c:\windows\Installer\18e09.msi
+ 2009-06-04 20:06 . 2009-06-04 20:06 634880 c:\windows\Installer\16fe9.msi
+ 2009-06-04 18:47 . 2009-06-04 18:47 588288 c:\windows\Installer\16f594.msi
+ 2009-06-04 18:23 . 2009-06-04 18:23 264704 c:\windows\Installer\16b1f.msi
+ 2009-06-21 15:05 . 2009-06-21 15:05 355328 c:\windows\Installer\14d0b8.msi
+ 2009-06-29 21:48 . 2009-06-29 21:48 324608 c:\windows\Installer\102cb1.msi
+ 2009-06-29 21:48 . 2009-06-29 21:48 301568 c:\windows\Installer\102ca9.msi
+ 2009-06-29 21:48 . 2009-06-29 21:48 635392 c:\windows\Installer\102ca2.msi
+ 2009-06-29 21:47 . 2009-06-29 21:47 312320 c:\windows\Installer\102c9b.msi
+ 2009-06-29 21:47 . 2009-06-29 21:47 510976 c:\windows\Installer\102c94.msi
+ 2009-06-29 21:46 . 2009-06-29 21:46 988160 c:\windows\Installer\102c8d.msi
+ 2009-06-29 21:45 . 2009-06-29 21:45 375808 c:\windows\Installer\102c7c.msi
+ 2009-06-29 21:45 . 2009-06-29 21:45 691712 c:\windows\Installer\102c74.msi
+ 2009-06-29 21:45 . 2009-06-29 21:45 596480 c:\windows\Installer\102c6d.msi
+ 2009-06-29 21:44 . 2009-06-29 21:44 121344 c:\windows\Installer\102c61.msi
+ 2009-06-29 21:44 . 2009-06-29 21:44 444416 c:\windows\Installer\102c5a.msi
+ 2009-06-29 21:44 . 2009-06-29 21:44 610816 c:\windows\Installer\102c51.msi
+ 2009-06-29 21:44 . 2009-06-29 21:44 550912 c:\windows\Installer\102c4a.msi
+ 2009-06-29 21:43 . 2009-06-29 21:43 121344 c:\windows\Installer\102c3d.msi
+ 2009-06-29 21:43 . 2009-06-29 21:43 367616 c:\windows\Installer\102c36.msi
+ 2009-06-29 21:43 . 2009-06-29 21:43 748544 c:\windows\Installer\102c2f.msi
+ 2009-06-29 21:43 . 2009-06-29 21:43 634880 c:\windows\Installer\102c20.msi
+ 2009-06-29 21:42 . 2009-06-29 21:42 121344 c:\windows\Installer\102c19.msi
+ 2009-06-29 21:42 . 2009-06-29 21:42 305152 c:\windows\Installer\102c12.msi
+ 2009-06-29 21:42 . 2009-06-29 21:42 591360 c:\windows\Installer\102c0b.msi
+ 2009-06-29 21:42 . 2009-06-29 21:42 519680 c:\windows\Installer\102c04.msi
+ 2009-06-29 21:41 . 2009-06-29 21:41 432640 c:\windows\Installer\102bfd.msi
+ 2009-06-29 21:41 . 2009-06-29 21:41 326144 c:\windows\Installer\102bf1.msi
+ 2009-06-29 21:41 . 2009-06-29 21:41 501248 c:\windows\Installer\102bea.msi
+ 2009-06-29 21:46 . 2009-06-29 21:46 689456 c:\windows\Installer\{11B83AD3-7A46-4C2E-A568-9505981D4C6F}\HPSUShortcut_BB85ED9CAFC943BDB8DC258C3C7DF72E.exe
+ 2006-06-20 12:44 . 2006-06-20 12:44 117560 c:\windows\Downloaded Program Files\PURen-us.dll
+ 2006-06-20 12:44 . 2006-06-20 12:44 379704 c:\windows\Downloaded Program Files\MsnPUpld.dll
+ 2005-06-13 12:50 . 2005-06-13 12:50 397312 c:\windows\Downloaded Program Files\imcv1.dll
+ 2007-05-08 11:19 . 2007-05-08 11:19 1079808 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_decbdf0c\mfc80u.dll
+ 2007-05-08 11:19 . 2007-05-08 11:19 1093632 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_decbdf0c\mfc80.dll
+ 2004-07-17 08:35 . 2004-07-17 08:35 1353216 c:\windows\system32\webfldrs.msi
+ 2009-06-29 21:47 . 2007-10-20 15:13 1176576 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\hpzur5mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:22 3354112 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\hpzui5mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:33 6312448 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\hpzst5mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:24 5193728 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\hpzla5mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:25 1789440 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\hpz3r5mu.dll
+ 2009-06-29 21:47 . 2007-09-14 10:52 3019264 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_d1500_seria502\hpbcfgre.dll
+ 2009-06-29 21:47 . 2007-10-20 15:13 1176576 c:\windows\system32\spool\drivers\w32x86\3\hpzur5mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:22 3354112 c:\windows\system32\spool\drivers\w32x86\3\hpzui5mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:33 6312448 c:\windows\system32\spool\drivers\w32x86\3\hpzst5mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:24 5193728 c:\windows\system32\spool\drivers\w32x86\3\hpzla5mu.dll
+ 2009-06-29 21:47 . 2007-10-20 15:25 1789440 c:\windows\system32\spool\drivers\w32x86\3\hpz3r5mu.dll
+ 2009-06-29 21:47 . 2007-09-14 10:52 3019264 c:\windows\system32\spool\drivers\w32x86\3\hpbcfgre.dll
+ 2009-06-04 21:58 . 2009-07-01 18:39 1098000 c:\windows\system32\MsN\logg.dat
+ 2007-10-19 17:37 . 2007-10-19 17:37 1645320 c:\windows\system32\gdiplus.dll
+ 2009-06-04 21:03 . 2009-06-27 19:21 1006488 c:\windows\system32\FNTCACHE.DAT
- 2009-06-04 21:03 . 2009-06-05 19:06 1006488 c:\windows\system32\FNTCACHE.DAT
+ 2009-06-04 19:22 . 2009-06-04 19:22 3683840 c:\windows\Installer\8564f.msi
+ 2009-06-04 19:17 . 2009-06-04 19:17 8667648 c:\windows\Installer\8564a.msi
+ 2009-06-04 20:12 . 2009-06-04 20:12 2661888 c:\windows\Installer\16ffd.msi
+ 2009-06-04 20:07 . 2009-06-04 20:07 1453568 c:\windows\Installer\16ff9.msi
+ 2009-06-04 20:06 . 2009-06-04 20:06 1870336 c:\windows\Installer\16ff1.msi
+ 2009-06-04 20:05 . 2009-06-04 20:05 3862016 c:\windows\Installer\16fe1.msi
+ 2009-06-04 20:04 . 2009-06-04 20:04 6009856 c:\windows\Installer\16fd9.msi
+ 2009-06-04 18:55 . 2009-06-04 18:55 2507776 c:\windows\Installer\16f5a4.msi
+ 2009-06-04 18:35 . 2009-06-04 18:35 3035648 c:\windows\Installer\16b49.msi
+ 2009-06-04 18:33 . 2009-06-04 18:33 1112064 c:\windows\Installer\16b3a.msi
+ 2009-06-04 18:30 . 2009-06-04 18:30 5922816 c:\windows\Installer\16b2d.msi
+ 2009-06-29 21:46 . 2009-06-29 21:46 1505792 c:\windows\Installer\102c84.msi
+ 2009-06-05 22:47 . 2007-01-19 10:21 16829440 c:\windows\Installer\MSN Messenger 8.1.0178\MsnMsgs.Msi
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2004-08-03 15360]
"MsnMsgr"="c:\program files\MSN Messenger\MsnMsgr.Exe" [2007-01-19 5674352]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2004-08-03 1667584]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2005-11-29 761947]
"Broadcom Wireless Manager UI"="c:\windows\system32\WLTRAY.exe" [2005-12-19 1347584]
"Dell QuickSet"="c:\program files\Dell\QuickSet\quickset.exe" [2006-08-03 1032192]
"AVP"="c:\program files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe" [2009-06-04 206088]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2009-06-04 185896]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2007-10-14 49152]
"hpqSRMon"="c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe" [2007-08-22 80896]
"SigmatelSysTrayApp"="stsystra.exe" - c:\windows\stsystra.exe [2005-11-16 397312]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-03 15360]
c:\documents and settings\All Users\çں‍ê، ں §ڑ\ںé ©ںê¤\ §ک ں颬نïé\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2006-5-24 622653]
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2007-10-14 214360]
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^قائمة ابدأ^البرامج^بدء التشغيل^Adobe Reader Synchronizer.lnk]
path=c:\documents and settings\All Users\قائمة ابدأ\البرامج\بدء التشغيل\Adobe Reader Synchronizer.lnk
backup=c:\windows\pss\Adobe Reader Synchronizer.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^قائمة ابدأ^البرامج^بدء التشغيل^سرعة تشغيل Adobe Reader.lnk]
path=c:\documents and settings\All Users\قائمة ابدأ\البرامج\بدء التشغيل\سرعة تشغيل Adobe Reader.lnk
backup=c:\windows\pss\سرعة تشغيل Adobe Reader.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^Good^قائمة ابدأ^البرامج^بدء التشغيل^Adobe Gamma.lnk]
path=c:\documents and settings\Good\قائمة ابدأ\البرامج\بدء التشغيل\Adobe Gamma.lnk
backup=c:\windows\pss\Adobe Gamma.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"c:\\Program Files\\MSN Messenger\\livecall.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [29/01/2008 05:29 م 33808]
R1 is-0ODFUdrv;is-0ODFUdrv;c:\windows\system32\drivers\61988249.sys [06/06/2009 01:02 ص 148496]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [30/04/2008 05:06 م 24592]
S2 ekrn;ekrn; [x]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{474E2CC9-32D4-1DC8-6CB8-368E9F8E63F0}]
c:\windows\system32\MsN\msnmsgr.exe s
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com.sa/
uInternet Connection Wizard,ShellNext = hxxp://www.google.com/
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Send to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
DPF: Microsoft XML Parser for Java -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

FF - ProfilePath - c:\documents and settings\Good\Application Data\Mozilla\Firefox\Profiles\tmnxar54.default\
FF - prefs.js: browser.search.selectedEngine - Ask
FF - prefs.js: browser.startup.homepage - hxxp://www.plusnetwork.com
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

Rootkit scan 2009-07-01 21:51
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{5ED60779-4DE2-4E07-B862-974CA4FF2E9C}]
@Denied: (Full) (Everyone)
"scansk"=hex(0):c1,1a,96,65,1d,75,59,34,9c,3a,cb,7c,77,61,76,ad,61,8e,c1,fc,49,
17,8a,fa,03,b3,d7,d6,b8,ed,75,86,e6,fd,bd,24,91,4b,d2,35,00,00,00,00,00,00,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{7873a26d-9a1e-435c-8a13-85b96f13298f}]
@Denied: (Full) (Everyone)
"Model"=dword:000000b4
"Therad"=dword:0000001d
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'winlogon.exe'(1576)
c:\windows\System32\BCMLogon.dll
.
Completion time: 2009-07-01 21:53
ComboFix-quarantined-files.txt 2009-07-01 18:53
ComboFix2.txt 2009-06-05 21:51
Pre-Run: 16,871,124,992 bytes free
Post-Run: 16,984,154,112 bytes free
413
 
ارفع تقرير هايجاك جديد
 
توقيع : AbOdy
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 01:26:46 ص, on 02/07/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\system32\crypserv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\stsystra.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Adobe\Adobe Photoshop CS2\Photoshop.exe
C:\DOCUME~1\Good\LOCALS~1\Temp\Adobelm_Cleanup.0001
C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
C:\DOCUME~1\Good\LOCALS~1\Temp\Adobelm_Cleanup.0001
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: مساعد رابط Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
O2 - BHO: Ipswitch.WsftpBrowserHelper - {601ED020-FB6C-11D3-87D8-0050DA59922B} - C:\Program Files\Ipswitch\WS_FTP Pro\wsbho2k0.dll
O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AF BHO - {B7154C4D-87C0-4A2C-AB64-DA132BAC2EE6} - C:\Program Files\AnchorFree\bin\AFBho.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: AFToolbar - {1F385865-F3D4-41ff-960D-7B7D0A7A72F6} - C:\Program Files\AnchorFree\bin\AFToolbar.dll
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Web traffic protection statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: HP Smart Select - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6924091F-CD97-41E1-B1D4-D9079409D413} (IMCv1 Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {E001C731-5E37-4538-A5CB-8168736A2360} (ActiveQscan Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Crypkey License - Kenonic Controls Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE
--
End of file - 7894 bytes
 
احذف هالقيمه

O3 - Toolbar: AFToolbar - {1F385865-F3D4-41ff-960D-7B7D0A7A72F6} - C:\Program Files\AnchorFree\bin\AFToolbar.dll

طريقه الحذف

mg%20(3).png



mg%20(4).png



بعدها اذهب الى اضافة وازالة البرامج واحذف التولبار الموجود عندك (toolbar)>> ممكن ما يكون موجود


ثم نزل هذه الاداة واتبع الشرح التالي



يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي



التوافق : ويندوز اكسبيفقط


شرح الاستخدام ,,,,,,
دبل كلك على الاداة واصبر حتى تنتهي جميع النوافذ وتقف عند هذه النافذة


002.png



وعند ظهور هذه الشاشه ,, اضغط على Close ليتم اعادة تشغيل جهازك (( لتكملة عملية التنظيف ))


بعد عمل المطلوب ركب الأكسبلور 7

رابط تحميل الاكسبلورر 7

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


رابط التعريب

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


طريقة التعريب
اغلق الاكسبلورر بعد التثبيت ثم دبل كلك على ملف التعريب وثبت بشكل عادي


 
توقيع : AbOdy
تم اخوي
وجاري تنصيب اكسبلور 7

لكن شوف هالصوره
سويت فحص بالبرنامج الموجود
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي
 
انت ثبت اكسبلور 7

وبعدين شوف وضع النت عندك
 
توقيع : AbOdy
سويت تنصيب للكسبلور7
لكن النت للحين نفس الشي
وجهازي حيل بطئ بالتشغيل وكله
 
عودة
أعلى