1. إستبعاد الملاحظة
  2. الإدارة العامة

    صفحة منتديات زيزووم للأمن والحماية

  3. الإدارة العامة

    الصفحة الرسمية لمنتديات زيزووم للأمن والحماية الفيس بوك

  4. الإدارة العامة

    الصفحة الرسمية لمنتديات زيزووم للأمن والحماية التلكرام

(( كيف تعرف ان جهازك مخترق بالطريقة الصحيحة ))

الموضوع في 'منتدى [ حلول مشاكل الحاسوب الشائعة ]' بواسطة fahd, بتاريخ ‏مايو 12, 2010.

حالة الموضوع:
مغلق
  1. @NAIF@

    @NAIF@ زيزوومي جديد

    إنضم إلينا في:
    ‏يناير 18, 2011
    المشاركات:
    25
    الإعجابات :
    0
    نقاط الجائزة:
    20
    برامج الحماية:
    اخرى
    نظام التشغيل:
    Linux
    علشان الاخ المراقب الي حرر الرد ما راح اكمل الموضوع معك
    بس توضيح للاعضاء
    الموضوع هذا ما له صلة بكشف الاختراق
    الموضوع لكشف هل الجهاز مصاب بفايروس فقط !
    ولو لاحقين على ردي قبل التعديل تقتنعون بالكلام
    مع التحية للجميع
    fahd بكيفك لا تقتنع بس اهم شي وصلتك المعلومة
    BRB خارج الموضوع
     
  2. fahd

    fahd زيزوومي VIP

    إنضم إلينا في:
    ‏ديسمبر 5, 2007
    المشاركات:
    5,591
    الإعجابات :
    3,298
    نقاط الجائزة:
    1,220
    الجنس:
    ذكر
    الإقامة:
    k.s.a
    برامج الحماية:
    اخرى
    نظام التشغيل:
    أخرى
    أحب أذكّر الأخوة والأخوات أعضاء وزوار منتديات زيزوووم الأعزاء

    بأن الطريقة اللي أنا شرحتها بهذا الموضوع
    تتكون من 5 خمس طرق وليست مجرد تقرير واحد

    وقد أوضحتها في أول هذا الموضوع من اللحظة الأولى من كتابته






    أخيرا أحب أنوه إلى

    إن هذا الموضوع نال شرف ثقة إدارة منتديات زيزوووم للأمن والحماية
    حيث تم تثبيته من قبلهم

    وهذا دليل كافي على صحة هذه الطريقة .


    ملاحظة أخيره


    هذا الموضوع تناقلته العديد من مواقع الهكرز

    ومنها أشهر موقع عربي بهذا المجال وهو موقع الديف بوينت


    وكلهم شهدوا بصحته


     
  3. زائرالمساء

    زائرالمساء زيزوومي نشيط

    إنضم إلينا في:
    ‏يناير 23, 2008
    المشاركات:
    96
    الإعجابات :
    21
    نقاط الجائزة:
    120
    الجنس:
    ذكر
    برامج الحماية:
    Norton
    نظام التشغيل:
    Windows 7
    1- تقرير الهاجك

    Logfile of Trend Micro HijackThis v2.0.4
    Scan saved at 07:52:18 ص, on 29/07/11
    Platform: Windows 7 SP1 (WinNT 6.00.3505)
    MSIE: Internet Explorer v8.00 (8.00.7601.17514)
    Boot mode: Normal
    Running processes:
    C:\Program Files (x86)\Internet Download Manager\IDMan.exe
    C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe
    C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
    C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe
    C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
    C:\Program Files (x86)\USB Disk Security\USBGuard.exe
    C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
    C:\Program Files (x86)\iTunes\iTunesHelper.exe
    C:\Program Files (x86)\Internet Explorer\iexplore.exe
    C:\Program Files (x86)\Internet Explorer\iexplore.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
    C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
    C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe
    C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10t_ActiveX.exe
    C:\Zyzoom_Forum_Tools\zyzoom.exe
    C:\Zyzoom_Forum_Tools\zHijak.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.haokan123.com/
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    F2 - REG:system.ini: UserInit=userinit.exe
    O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
    O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
    O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
    O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
    O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [USB Security] C:\Program Files (x86)\USB Disk Security\USBGuard.exe
    O4 - HKLM\..\Run: [RegTask] C:\Program Files (x86)\RegTask\RegTask.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
    O4 - HKCU\..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot
    O4 - HKCU\..\Run: [ManyCam] "C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe" /silent
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
    O4 - Global Startup: Bluetooth.lnk = ?
    O8 - Extra context menu item: إر&سال إلى OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
    O8 - Extra context menu item: ت&صدير إلى Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
    O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm
    O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files (x86)\Internet Download Manager\IEExt.htm
    O8 - Extra context menu item: جاري إرسال الصفحة إلى &جهاز Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O8 - Extra context menu item: جاري إرسال الصورة إلى &جهاز Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
    O9 - Extra button: إرسال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: إر&سال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
    O9 - Extra button: ملاحظات OneNote الم&رتبطة - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
    O9 - Extra 'Tools' menuitem: ملاحظات OneNote الم&رتبطة - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
    O9 - Extra button: إرسال إلى Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O9 - Extra 'Tools' menuitem: إرسال إلى &جهاز Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O16 - DPF: {7253A666-683F-4D45-B6F1-549188BB79C0} (BMC Control) - http://209.59.224.86/bmc.cab
    O16 - DPF: {7253A666-6DA5-4FAE-89B3-BC419653381C} (BMC Control) - http://209.59.224.86/bmc.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
    O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_58afa5ca50c7b5e7\AESTSr64.exe
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
    O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
    O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
    O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
    O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
    O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe
    O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
    O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_58afa5ca50c7b5e7\STacSV64.exe
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
    O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
    --
    End of file - 11115 bytes
    ----------------------------------------------------------
    2- البرامج المثبته


    ====== معلومات نظام التشغيل ======
    X64 WIN_7 7601 Service Pack 1​

    ====== قائمة البرامج المثبتة ======
    Adobe Flash Player 10 ActiveX
    Adobe Flash Player 10 Plugin
    Adobe Reader 9 - Arabic
    Apple Application Support
    Apple Software Update
    Avira AntiVir Personal - Free Antivirus
    Catalyst Control Center - Branding
    Catalyst Control Center Core Implementation
    Catalyst Control Center Graphics Full Existing
    Catalyst Control Center Graphics Full New
    Catalyst Control Center Graphics Light
    Catalyst Control Center Graphics Previews Common
    Catalyst Control Center Graphics Previews Vista
    Catalyst Control Center InstallProxy
    Catalyst Control Center Localization All
    CCC Help Chinese Standard
    CCC Help Chinese Traditional
    CCC Help Danish
    CCC Help Dutch
    CCC Help English
    CCC Help Finnish
    CCC Help French
    CCC Help German
    CCC Help Italian
    CCC Help Japanese
    CCC Help Korean
    CCC Help Norwegian
    CCC Help Portuguese
    CCC Help Russian
    CCC Help Spanish
    CCC Help Swedish
    ccc-core-static
    Definition update for Microsoft Office 2010 (KB982726)
    Dell Resource CD
    FormatFactory 2.20
    IDT Audio
    ImTOO iPad Mate
    Intel(R) Control Center
    Intel(R) Management Engine Components
    Intel(R) Rapid Storage Technology
    Internet Download Manager
    iPhoneBrowser
    Java Auto Updater
    Java(TM) 6 Update 26
    Java(TM) SE Runtime Environment 6 Update 1
    Junk Mail filter update
    K-Lite Codec Pack 4.7.5 (Full)
    ManyCam 2.6.55 (remove only)
    Messenger Plus! 5
    Microsoft Choice Guard
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office Access MUI (Arabic) 2010
    Microsoft Office Excel MUI (Arabic) 2010
    Microsoft Office Groove MUI (Arabic) 2010
    Microsoft Office InfoPath MUI (Arabic) 2010
    Microsoft Office OneNote MUI (Arabic) 2010
    Microsoft Office Outlook MUI (Arabic) 2010
    Microsoft Office PowerPoint MUI (Arabic) 2010
    Microsoft Office Professional Plus 2010
    Microsoft Office Professional Plus 2010
    Microsoft Office Proof (Arabic) 2010
    Microsoft Office Proof (English) 2010
    Microsoft Office Proof (French) 2010
    Microsoft Office Proofing (Arabic) 2010
    Microsoft Office Publisher MUI (Arabic) 2010
    Microsoft Office Shared MUI (Arabic) 2010
    Microsoft Office Word MUI (Arabic) 2010
    Microsoft Silverlight
    Microsoft SQL Server 2005 Compact Edition [ENU]
    Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
    Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    Mozilla Firefox 5.0 (x86 ar)
    MSVCRT
    PL-2303 USB-to-Serial
    Pure Codec
    QuickTime
    Real Alternative 1.9.0 Lite
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
    Skype™ 5.3
    UltraISO Premium V9.36
    Update for Microsoft Office 2010 (KB2494150)
    USB Disk Security
    Windows Installer Clean Up
    Windows Live Communications Platform
    Windows Live Essentials
    Windows Live Essentials
    Windows Live Messenger
    Windows Live Messenger
    WinRAR archiver
    XP Codec Pack
    Your Uninstaller! 7
    أداة التحميل Windows Live Upload Tool
    أوزو ميديا 9.0
    بريد Windows Live
    صانع الأفلام من Windows Live
    مساعد تسجيل الدخول إلى Windows Live
    معرض صور Windows Live
    معرض صور Windows Live
    -----------------------------------------------------------
    3- تقرير runscanner


    ---------------------------------------------------------------------------
     
  4. زائرالمساء

    زائرالمساء زيزوومي نشيط

    إنضم إلينا في:
    ‏يناير 23, 2008
    المشاركات:
    96
    الإعجابات :
    21
    نقاط الجائزة:
    120
    الجنس:
    ذكر
    برامج الحماية:
    Norton
    نظام التشغيل:
    Windows 7
    4-StartUp

    "Silent Runners.vbs", revision 61, http://www.silentrunners.org/
    Operating System: Windows 7 SP1
    Output limited to non-default values, except where indicated by "{++}"​

    Startup items buried in registry:
    ---------------------------------
    HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ {++}
    "IDMan" = "C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot" ["Tonec Inc."]
    "ManyCam" = ""C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe" /silent" ["ManyCam LLC"]
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++}
    "StartCCC" = ""C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun" ["Advanced Micro Devices, Inc."]
    "IAStorIcon" = "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [null data]
    "BCSSync" = ""C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices" [MS]
    "Adobe Reader Speed Launcher" = ""C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"" ["Adobe Systems Incorporated"]
    "avgnt" = ""C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min" ["Avira GmbH"]
    "QuickTime Task" = ""C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime" ["Apple Inc."]
    "USB Security" = "C:\Program Files (x86)\USB Disk Security\USBGuard.exe" ["Zbshareware مختبر"]
    "RegTask" = "C:\Program Files (x86)\RegTask\RegTask.exe" [file not found]
    "SunJavaUpdateSched" = ""C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"" ["Sun Microsystems, Inc."]
    "iTunesHelper" = ""C:\Program Files (x86)\iTunes\iTunesHelper.exe"" ["Apple Inc."]
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
    {0055C089-8582-441B-A0BF-17B458C2A3A8}\(Default) = "IDM Helper"
    -> {HKLM...CLSID} = "IDM integration (IDMIEHlprObj Class)"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll" ["Internet Download Manager, Tonec Inc."]
    {18DF081C-E8AD-4283-A596-FA578C2EBDC3}\(Default) = "AcroIEHelperStub"
    -> {HKLM...CLSID} = "Adobe PDF Link Helper"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll" ["Adobe Systems Incorporated"]
    {72853161-30C5-4D22-B7F9-0BBC1D38A37E}\(Default) = (no title provided)
    -> {HKLM...CLSID} = "Groove GFS Browser Helper"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    {9030D464-4C02-4ABF-8ECC-5164760863C6}\(Default) = (no title provided)
    -> {HKLM...CLSID} = "مساعد تسجيل الدخول إلى Windows Live"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll" [MS]
    {B4F3A835-0E21-4959-BA22-42B3008E02FF}\(Default) = "URLRedirectionBHO"
    -> {HKLM...CLSID} = "Office Document Cache Handler"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL" [MS]
    {DBC80044-A445-435b-BC74-9C25C1C588A9}\(Default) = (no title provided)
    -> {HKLM...CLSID} = "Java(tm) Plug-In 2 SSV Helper"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll" ["Sun Microsystems, Inc."]
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\
    Groove Explorer Icon Overlay 1 (GFS Unread Stub)\(Default) = "{99FD978C-D287-4F50-827F-B2C658EDA8E7}"
    -> {HKLM...CLSID} = "Groove Explorer Icon Overlay 1 (GFS Unread Stub)"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    Groove Explorer Icon Overlay 2 (GFS Stub)\(Default) = "{AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}"
    -> {HKLM...CLSID} = "Groove Explorer Icon Overlay 2 (GFS Stub)"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)\(Default) = "{920E6DB1-9907-4370-B3A0-BAFC03D81399}"
    -> {HKLM...CLSID} = "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    Groove Explorer Icon Overlay 3 (GFS Folder)\(Default) = "{16F3DD56-1AF5-4347-846D-7C10C4192619}"
    -> {HKLM...CLSID} = "Groove Explorer Icon Overlay 3 (GFS Folder)"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    Groove Explorer Icon Overlay 4 (GFS Unread Mark)\(Default) = "{2916C86E-86A6-43FE-8112-43ABE6BF8DCC}"
    -> {HKLM...CLSID} = "Groove Explorer Icon Overlay 4 (GFS Unread Mark)"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
    "{42042206-2D85-11D3-8CFF-005004838597}" = "Microsoft Office HTML Icon Handler"
    -> {HKLM...CLSID} = (no title provided)
    \InProcServer32\(Default) = "C:\Program Files (x86)\Microsoft Office\Office14\msohevi.dll" [MS]
    "{3D60EDA7-9AB4-4DA8-864C-D9B5F2E7281D}" = "Groove Namespace Extension"
    -> {HKLM...CLSID} = "مساحات عمل"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    "{0875DCB6-C686-4243-9432-ADCCF0B9F2D7}" = "Microsoft OneNote Namespace Extension for Windows Desktop Search"
    -> {HKLM...CLSID} = "Microsoft OneNote Namespace Extension for Windows Desktop Search"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Microsoft Office\Office14\ONFILTER.DLL" [MS]
    "{506F4668-F13E-4AA1-BB04-B43203AB3CC0}" = "{506F4668-F13E-4AA1-BB04-B43203AB3CC0}"
    -> {HKLM...CLSID} = "ImageExtractorShellExt Class"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Microsoft Office\Office14\VISSHE.DLL" [MS]
    "{D66DC78C-4F61-447F-942B-3FB6980118CF}" = "{D66DC78C-4F61-447F-942B-3FB6980118CF}"
    -> {HKLM...CLSID} = "CInfoTipShellExt Class"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Microsoft Office\Office14\VISSHE.DLL" [MS]
    "{72853161-30C5-4D22-B7F9-0BBC1D38A37E}" = "Groove GFS Browser Helper"
    -> {HKLM...CLSID} = "Groove GFS Browser Helper"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    "{6C467336-8281-4E60-8204-430CED96822D}" = "Groove GFS Context Menu Handler"
    -> {HKLM...CLSID} = "Groove GFS Context Menu Handler"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    "{2A541AE1-5BF6-4665-A8A3-CFA9672E4291}" = "Groove GFS Explorer Bar"
    -> {HKLM...CLSID} = "Groove Folder Synchronization"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    "{16F3DD56-1AF5-4347-846D-7C10C4192619}" = "Groove Explorer Icon Overlay 3 (GFS Folder)"
    -> {HKLM...CLSID} = "Groove Explorer Icon Overlay 3 (GFS Folder)"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}" = "Groove GFS Stub Execution Hook"
    -> {HKLM...CLSID} = "Groove GFS Stub Execution Hook"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    "{A449600E-1DC6-4232-B948-9BD794D62056}" = "Groove GFS Stub Icon Handler"
    -> {HKLM...CLSID} = "Groove GFS Stub Icon Handler"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    "{AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}" = "Groove Explorer Icon Overlay 2 (GFS Stub)"
    -> {HKLM...CLSID} = "Groove Explorer Icon Overlay 2 (GFS Stub)"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    "{920E6DB1-9907-4370-B3A0-BAFC03D81399}" = "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)"
    -> {HKLM...CLSID} = "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    "{2916C86E-86A6-43FE-8112-43ABE6BF8DCC}" = "Groove Explorer Icon Overlay 4 (GFS Unread Mark)"
    -> {HKLM...CLSID} = "Groove Explorer Icon Overlay 4 (GFS Unread Mark)"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    "{99FD978C-D287-4F50-827F-B2C658EDA8E7}" = "Groove Explorer Icon Overlay 1 (GFS Unread Stub)"
    -> {HKLM...CLSID} = "Groove Explorer Icon Overlay 1 (GFS Unread Stub)"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    "{387E725D-DC16-4D76-B310-2C93ED4752A0}" = "Groove XML Icon Handler"
    -> {HKLM...CLSID} = "Groove XML Icon Handler"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    "{00020D75-0000-0000-C000-000000000046}" = "Microsoft Outlook Desktop Icon Handler"
    -> {HKLM...CLSID} = "Microsoft Outlook"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\MLSHEXT.DLL" [MS]
    "{0006F045-0000-0000-C000-000000000046}" = "Microsoft Outlook Custom Icon Handler"
    -> {HKLM...CLSID} = "Outlook File Icon Extension"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Microsoft Office\Office14\OLKFSTUB.DLL" [MS]
    "{B41DB860-8EE4-11D2-9906-E49FADC173CA}" = "WinRAR shell extension"
    -> {HKLM...CLSID} = "WinRAR"
    \InProcServer32\(Default) = "C:\Program Files (x86)\WinRar\rarext.dll" [null data]
    "{00F33137-EE26-412F-8D71-F84E4C2C6625}" = (no title provided)
    -> {HKLM...CLSID} = "Windows Live Photo Gallery Viewer Autoplay Shim"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll" [MS]
    "{00F346CB-35A4-465B-8B8F-65A29DBAB1F6}" = "Windows Live Photo Gallery Viewer Drop Target Shim"
    -> {HKLM...CLSID} = "Windows Live Photo Gallery Viewer Shim"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll" [MS]
    "{00F3712A-CA79-45B4-9E4D-D7891E7F8B9D}" = "Windows Live Photo Gallery Editor Drop Target Shim"
    -> {HKLM...CLSID} = "Windows Live Photo Gallery Editor Shim"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll" [MS]
    "{00F30F90-3E96-453B-AFCD-D71989ECC2C7}" = "Windows Live Photo Gallery Autoplay Drop Target Shim"
    -> {HKLM...CLSID} = "Windows Live Photo Gallery Viewer Autoplay Shim"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll" [MS]
    "{0E223B1F-FF38-452A-AC36-E2A6E8561F8B}" = "iPhone"
    -> {HKLM...CLSID} = "iPhone"
    \InProcServer32\(Default) = "C:\Program Files (x86)\ImTOO\iPad Mate\IPhoneExplorer.dll" [null data]
    "{993BE281-6695-4BA5-8A2A-7AACBFAAB69E}" = "Microsoft Office Metadata Handler"
    -> {HKLM...CLSID} = "Microsoft Office Metadata Handler"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\msoshext.dll" [MS]
    "{C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97}" = "Microsoft Office Thumbnail Handler"
    -> {HKLM...CLSID} = "Microsoft Office Thumbnail Handler"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\msoshext.dll" [MS]
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\
    <<!>> "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}" = "Groove GFS Stub Execution Hook"
    -> {HKLM...CLSID} = "Groove GFS Stub Execution Hook"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\
    <<!>> "Userinit" = "userinit.exe" [MS]
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers\
    {503739d0-4c5e-4cfd-b3ba-d881334f0df2}\(Default) = "VaultCredProvider"
    -> {HKLM...CLSID} = "VaultCredProvider"
    \InProcServer32\(Default) = "C:\Windows\System32\VaultCredProvider.dll" [file not found]
    HKLM\SOFTWARE\Classes\PROTOCOLS\Filter\
    <<!>> deflate\CLSID = "{8f6b0360-b80d-11d0-a9b3-006097942311}"
    -> {HKLM...CLSID} = "AP encoding/decoding Filters"
    \InProcServer32\(Default) = "C:\Windows\SysWOW64\urlmon.dll" [MS]
    <<!>> gzip\CLSID = "{8f6b0360-b80d-11d0-a9b3-006097942311}"
    -> {HKLM...CLSID} = "AP encoding/decoding Filters"
    \InProcServer32\(Default) = "C:\Windows\SysWOW64\urlmon.dll" [MS]
    <<!>> text/xml\CLSID = "{807573E5-5146-11D5-A672-00B0D022E945}"
    -> {HKLM...CLSID} = "Microsoft Office InfoPath XML Mime Filter"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL" [MS]
    HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\
    <<!>> about\CLSID = "{3050F406-98B5-11CF-BB82-00AA00BDCE0B}"
    -> {HKLM...CLSID} = "Microsoft HTML About Pluggable Protocol"
    \InProcServer32\(Default) = "C:\Windows\SysWOW64\mshtml.dll" [MS]
    <<!>> cdl\CLSID = "{3dd53d40-7b8b-11D0-b013-00aa0059ce02}"
    -> {HKLM...CLSID} = "CDL: Asychronous Pluggable Protocol Handler"
    \InProcServer32\(Default) = "C:\Windows\SysWOW64\urlmon.dll" [MS]
    <<!>> dvd\CLSID = "{12D51199-0DB5-46FE-A120-47A3D7D937CC}"
    -> {HKLM...CLSID} = "DVD: Pluggable Protocol"
    \InProcServer32\(Default) = "C:\Windows\SysWOW64\msvidctl.dll" [MS]
    <<!>> file\CLSID = "{79eac9e7-baf9-11ce-8c82-00aa004ba90b}"
    -> {HKLM...CLSID} = "file:, local: Asychronous Pluggable Protocol Handler"
    \InProcServer32\(Default) = "C:\Windows\SysWOW64\urlmon.dll" [MS]
    <<!>> ftp\CLSID = "{79eac9e3-baf9-11ce-8c82-00aa004ba90b}"
    -> {HKLM...CLSID} = "ftp: Asychronous Pluggable Protocol Handler"
    \InProcServer32\(Default) = "C:\Windows\SysWOW64\urlmon.dll" [MS]
    <<!>> http\CLSID = "{79eac9e2-baf9-11ce-8c82-00aa004ba90b}"
    -> {HKLM...CLSID} = "http: Asychronous Pluggable Protocol Handler"
    \InProcServer32\(Default) = "C:\Windows\SysWOW64\urlmon.dll" [MS]
    <<!>> https\CLSID = "{79eac9e5-baf9-11ce-8c82-00aa004ba90b}"
    -> {HKLM...CLSID} = "https: Asychronous Pluggable Protocol Handler"
    \InProcServer32\(Default) = "C:\Windows\SysWOW64\urlmon.dll" [MS]
    <<!>> javascript\CLSID = "{3050F3B2-98B5-11CF-BB82-00AA00BDCE0B}"
    -> {HKLM...CLSID} = "Microsoft HTML Javascript Pluggable Protocol"
    \InProcServer32\(Default) = "C:\Windows\SysWOW64\mshtml.dll" [MS]
    <<!>> livecall\CLSID = "{828030A1-22C1-4009-854F-8E305202313F}"
    -> {HKLM...CLSID} = (no title provided)
    \InProcServer32\(Default) = "C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL" [MS]
    <<!>> local\CLSID = "{79eac9e7-baf9-11ce-8c82-00aa004ba90b}"
    -> {HKLM...CLSID} = "file:, local: Asychronous Pluggable Protocol Handler"
    \InProcServer32\(Default) = "C:\Windows\SysWOW64\urlmon.dll" [MS]
    <<!>> mailto\CLSID = "{3050f3DA-98B5-11CF-BB82-00AA00BDCE0B}"
    -> {HKLM...CLSID} = "Microsoft HTML Mailto Pluggable Protocol"
    \InProcServer32\(Default) = "C:\Windows\SysWOW64\mshtml.dll" [MS]
    <<!>> mk\CLSID = "{79eac9e6-baf9-11ce-8c82-00aa004ba90b}"
    -> {HKLM...CLSID} = "mk: Asychronous Pluggable Protocol Handler"
    \InProcServer32\(Default) = "C:\Windows\SysWOW64\urlmon.dll" [MS]
    <<!>> ms-help\CLSID = "{314111c7-a502-11d2-bbca-00c04f8ec294}"
    -> {HKLM...CLSID} = "HxProtocol Class"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll" [MS]
    <<!>> msnim\CLSID = "{828030A1-22C1-4009-854F-8E305202313F}"
    -> {HKLM...CLSID} = (no title provided)
    \InProcServer32\(Default) = "C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL" [MS]
    <<!>> res\CLSID = "{3050F3BC-98B5-11CF-BB82-00AA00BDCE0B}"
    -> {HKLM...CLSID} = "Microsoft HTML Resource Pluggable Protocol"
    \InProcServer32\(Default) = "C:\Windows\SysWOW64\mshtml.dll" [MS]
    <<!>> tv\CLSID = "{CBD30858-AF45-11D2-B6D6-00C04FBBDE6E}"
    -> {HKLM...CLSID} = "TV: Pluggable Protocol"
    \InProcServer32\(Default) = "C:\Windows\SysWOW64\msvidctl.dll" [MS]
    <<!>> vbscript\CLSID = "{3050F3B2-98B5-11CF-BB82-00AA00BDCE0B}"
    -> {HKLM...CLSID} = "Microsoft HTML Javascript Pluggable Protocol"
    \InProcServer32\(Default) = "C:\Windows\SysWOW64\mshtml.dll" [MS]
    HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\
    WinRAR32\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}"
    -> {HKLM...CLSID} = "WinRAR"
    \InProcServer32\(Default) = "C:\Program Files (x86)\WinRar\rarext.dll" [null data]
    XXX Groove GFS Context Menu Handler XXX\(Default) = "{6C467336-8281-4E60-8204-430CED96822D}"
    -> {HKLM...CLSID} = "Groove GFS Context Menu Handler"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    HKLM\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\
    XXX Groove GFS Context Menu Handler XXX\(Default) = "{6C467336-8281-4E60-8204-430CED96822D}"
    -> {HKLM...CLSID} = "Groove GFS Context Menu Handler"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    HKLM\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\
    WinRAR32\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}"
    -> {HKLM...CLSID} = "WinRAR"
    \InProcServer32\(Default) = "C:\Program Files (x86)\WinRar\rarext.dll" [null data]
    XXX Groove GFS Context Menu Handler XXX\(Default) = "{6C467336-8281-4E60-8204-430CED96822D}"
    -> {HKLM...CLSID} = "Groove GFS Context Menu Handler"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    HKLM\SOFTWARE\Classes\Directory\shellex\DragDropHandlers\
    WinRAR32\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}"
    -> {HKLM...CLSID} = "WinRAR"
    \InProcServer32\(Default) = "C:\Program Files (x86)\WinRar\rarext.dll" [null data]
    HKLM\SOFTWARE\Classes\Directory\Background\shellex\ContextMenuHandlers\
    XXX Groove GFS Context Menu Handler XXX\(Default) = "{6C467336-8281-4E60-8204-430CED96822D}"
    -> {HKLM...CLSID} = "Groove GFS Context Menu Handler"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    HKLM\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\
    {F9DB5320-233E-11D1-9F84-707F02C10627}\(Default) = "PDF Column Info"
    -> {HKLM...CLSID} = "PDF Shell Extension"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll" ["Adobe Systems, Inc."]
    HKLM\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\
    WinRAR32\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}"
    -> {HKLM...CLSID} = "WinRAR"
    \InProcServer32\(Default) = "C:\Program Files (x86)\WinRar\rarext.dll" [null data]
    XXX Groove GFS Context Menu Handler XXX\(Default) = "{6C467336-8281-4E60-8204-430CED96822D}"
    -> {HKLM...CLSID} = "Groove GFS Context Menu Handler"
    \InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    HKLM\SOFTWARE\Classes\Folder\shellex\DragDropHandlers\
    WinRAR32\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}"
    -> {HKLM...CLSID} = "WinRAR"
    \InProcServer32\(Default) = "C:\Program Files (x86)\WinRar\rarext.dll" [null data]​

    Default executables:
    --------------------
    HKLM\SOFTWARE\Classes\.hta\(Default) = "htafile"
    <<!>> HKLM\SOFTWARE\Classes\htafile\shell\open\command\(Default) = "C:\Windows\SysWOW64\mshta.exe "%1" %*" [MS]​

    Group Policies {GPedit.msc branch and setting}:
    -----------------------------------------------
    Note: detected settings may not have any effect.
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\
    "NoActiveDesktop" = (REG_DWORD) dword:0x00000001
    {unrecognized setting}
    "NoActiveDesktopChanges" = (REG_DWORD) dword:0x00000001
    {unrecognized setting}
    "ForceActiveDesktopOn" = (REG_DWORD) dword:0x00000000
    {unrecognized setting}​

    Active Desktop and Wallpaper:
    -----------------------------
    Active Desktop may be disabled at this entry:
    HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState
    Displayed if Active Desktop disabled and wallpaper not set by Group Policy:
    HKCU\Control Panel\Desktop\
    "Wallpaper" = "C:\Users\user\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg"​

    Windows Portable Device AutoPlay Handlers
    -----------------------------------------
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\
    iTunesBurnCDOnArrival\
    "Provider" = "iTunes"
    "InvokeProgID" = "iTunes.BurnCD"
    "InvokeVerb" = "burn"
    HKLM\SOFTWARE\Classes\iTunes.BurnCD\shell\burn\command\(Default) = ""C:\Program Files (x86)\iTunes\iTunes.exe" /AutoPlayBurn "%L"" ["Apple Inc."]
    iTunesImportSongsOnArrival\
    "Provider" = "iTunes"
    "InvokeProgID" = "iTunes.ImportSongsOnCD"
    "InvokeVerb" = "import"
    HKLM\SOFTWARE\Classes\iTunes.ImportSongsOnCD\shell\import\command\(Default) = ""C:\Program Files (x86)\iTunes\iTunes.exe" /AutoPlayImportSongs "%L"" ["Apple Inc."]
    iTunesPlaySongsOnArrival\
    "Provider" = "iTunes"
    "InvokeProgID" = "iTunes.PlaySongsOnCD"
    "InvokeVerb" = "play"
    HKLM\SOFTWARE\Classes\iTunes.PlaySongsOnCD\shell\play\command\(Default) = ""C:\Program Files (x86)\iTunes\iTunes.exe" /playCD "%L"" ["Apple Inc."]
    iTunesShowSongsOnArrival\
    "Provider" = "iTunes"
    "InvokeProgID" = "iTunes.ShowSongsOnCD"
    "InvokeVerb" = "showsongs"
    HKLM\SOFTWARE\Classes\iTunes.ShowSongsOnCD\shell\showsongs\command\(Default) = ""C:\Program Files (x86)\iTunes\iTunes.exe" /AutoPlayShowSongs "%L"" ["Apple Inc."]
    MPCPlayCDAudioOnArrival\
    "Provider" = "Media Player Classic"
    "InvokeProgID" = "MediaPlayerClassic.Autorun"
    "InvokeVerb" = "PlayCDAudio"
    HKLM\SOFTWARE\Classes\MediaPlayerClassic.Autorun\shell\PlayCDAudio\command\(Default) = ""C:\Program Files (x86)\K-Lite Codec Pack\Media Player Classic\mplayerc.exe" %1 /cd" ["mpc-hc@Sourceforge"]
    MPCPlayDVDMovieOnArrival\
    "Provider" = "Media Player Classic"
    "InvokeProgID" = "MediaPlayerClassic.Autorun"
    "InvokeVerb" = "PlayDVDMovie"
    HKLM\SOFTWARE\Classes\MediaPlayerClassic.Autorun\shell\PlayDVDMovie\command\(Default) = ""C:\Program Files (x86)\K-Lite Codec Pack\Media Player Classic\mplayerc.exe" %1 /dvd" ["mpc-hc@Sourceforge"]
    MPCPlayMusicFilesOnArrival\
    "Provider" = "Media Player Classic"
    "InvokeProgID" = "MediaPlayerClassic.Autorun"
    "InvokeVerb" = "PlayMusicFiles"
    HKLM\SOFTWARE\Classes\MediaPlayerClassic.Autorun\shell\PlayMusicFiles\command\(Default) = ""C:\Program Files (x86)\K-Lite Codec Pack\Media Player Classic\mplayerc.exe" %1" ["mpc-hc@Sourceforge"]
    MPCPlayVideoFilesOnArrival\
    "Provider" = "Media Player Classic"
    "InvokeProgID" = "MediaPlayerClassic.Autorun"
    "InvokeVerb" = "PlayVideoFiles"
    HKLM\SOFTWARE\Classes\MediaPlayerClassic.Autorun\shell\PlayVideoFiles\command\(Default) = ""C:\Program Files (x86)\K-Lite Codec Pack\Media Player Classic\mplayerc.exe" %1" ["mpc-hc@Sourceforge"]
    MSLivePhotoAcqHWEventHandler\
    "Provider" = "@%ProgramFiles(x86)%\Windows Live\Photo Gallery\regres.dll,-10;ar-sa.8117.0416"
    "ProgID" = "Microsoft.LivePhotoAcqHWEventHandler"
    HKLM\SOFTWARE\Classes\Microsoft.LivePhotoAcqHWEventHandler\CLSID\(Default) = "{3BD0ACD1-71CA-4475-92CC-E0AA0AAF843F}"
    -> {HKLM...CLSID} = (no title provided)
    \LocalServer32\(Default) = "C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe" [MS]
    MSLivePhotoAcquireDropHandler\
    "Provider" = "@%ProgramFiles(x86)%\Windows Live\Photo Gallery\regres.dll,-10;ar-sa.8117.0416"
    "InvokeProgID" = "Microsoft.LivePhotoAcqDTShim.1"
    "InvokeVerb" = "open"
    HKLM\SOFTWARE\Classes\Microsoft.LivePhotoAcqDTShim.1\shell\open\DropTarget\CLSID = "{00F33137-EE26-412F-8D71-F84E4C2C6625}"
    -> {HKLM...CLSID} = "Windows Live Photo Gallery Viewer Autoplay Shim"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll" [MS]
    MSLiveShowPicturesOnArrival\
    "Provider" = "@%ProgramFiles(x86)%\Windows Live\Photo Gallery\regres.dll,-10;ar-sa.8117.0416"
    "InvokeProgID" = "Microsoft.Photos.LiveAutoplayShim.1"
    "InvokeVerb" = "open"
    HKLM\SOFTWARE\Classes\Microsoft.Photos.LiveAutoplayShim.1\shell\open\DropTarget\CLSID = "{00F30F90-3E96-453B-AFCD-D71989ECC2C7}"
    -> {HKLM...CLSID} = "Windows Live Photo Gallery Viewer Autoplay Shim"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll" [MS]
    MSLiveVideoCameraArrivalCaptureWizard\
    "Provider" = "@%ProgramFiles(x86)%\Windows Live\Photo Gallery\regres.dll,-10;ar-sa.8117.0416"
    "ProgID" = "WLXAutoPlayMgr.WLXHWEventHandler"
    "InitCmdLine" = "WLXVideoAcquireWizard"
    HKLM\SOFTWARE\Classes\WLXAutoPlayMgr.WLXHWEventHandler\CLSID\(Default) = "{9B5C97F6-B3A5-4A6D-8B03-993EC7291A22}"
    -> {HKLM...CLSID} = "WLXWEventHandler Class"
    \LocalServer32\(Default) = ""C:\Program Files (x86)\Windows Live\Photo Gallery\WLXVideoCameraAutoPlayManager.exe"" [MS]​

    Startup items in "user" & "All Users" startup folders:
    ------------------------------------------------------
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
    "Bluetooth" -> shortcut to: "C:\Program Files (x86)\WIDCOMM\Bluetooth Software\BTTray.exe" [file not found]​

    Winsock2 Service Provider DLLs:
    -------------------------------
    Namespace Service Providers
    HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++}
    000000000001\LibraryPath = "%SystemRoot%\system32\NLAapi.dll" [MS]
    000000000002\LibraryPath = "%SystemRoot%\system32\napinsp.dll" [MS]
    000000000003\LibraryPath = "%SystemRoot%\system32\pnrpnsp.dll" [MS]
    000000000004\LibraryPath = "%SystemRoot%\system32\pnrpnsp.dll" [MS]
    000000000005\LibraryPath = "%SystemRoot%\system32\wshbth.dll" [MS]
    000000000006\LibraryPath = "%SystemRoot%\System32\mswsock.dll" [MS]
    000000000007\LibraryPath = "%SystemRoot%\System32\winrnr.dll" [MS]
    000000000008\LibraryPath = "C:\Program Files (x86)\Bonjour\mdnsNSP.dll" ["Apple Inc."]
    Transport Service Providers
    HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++}
    0000000000##\PackedCatalogItem (contains) DLL [Company Name], (at) ## range:
    %SystemRoot%\system32\mswsock.dll [MS], 01 - 11​

    Toolbars, Explorer Bars, Extensions:
    ------------------------------------
    Explorer Bars
    HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\
    HKLM\SOFTWARE\Classes\CLSID\{2A541AE1-5BF6-4665-A8A3-CFA9672E4291}\(Default) = "Groove Folder Synchronization"
    Implemented Categories\{00021493-0000-0000-C000-000000000046}\ [vertical bar]
    InProcServer32\(Default) = "C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL" [MS]
    Extensions (Tools menu items, main toolbar menu buttons)
    HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\
    {2670000A-7350-4F3C-8081-5663EE0C6C49}\
    "ButtonText" = "إرسال إلى OneNote"
    "MenuText" = "إر&سال إلى OneNote"
    "CLSIDExtension" = "{48E73304-E1D6-4330-914C-F5F514E3486C}"
    -> {HKLM...CLSID} = "Send to OneNote from Internet Explorer button"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll" [MS]
    {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}\
    "ButtonText" = "ملاحظات OneNote الم&رتبطة"
    "MenuText" = "ملاحظات OneNote الم&رتبطة"
    "CLSIDExtension" = "{FFFDC614-B694-4AE6-AB38-5D6374584B52}"
    -> {HKLM...CLSID} = "Linked Notes button"
    \InProcServer32\(Default) = "C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll" [MS]
    {CCA281CA-C863-46EF-9331-5C8D4460577F}\
    "ButtonText" = "إرسال إلى Bluetooth"
    "MenuText" = "إرسال إلى &جهاز Bluetooth..."
    "Script" = "C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm" [null data]​

    Running Services (Display Name, Service Name, Path {Service DLL}):
    ------------------------------------------------------------------
    AMD External Events Utility, AMD External Events Utility, "C:\Windows\system32\atiesrxx.exe" [file not found]
    Andrea ST Filters Service, AESTFilters, "C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_58afa5ca50c7b5e7\AESTSr64.exe" ["Andrea Electronics Corporation"]
    Apple Mobile Device, Apple Mobile Device, ""C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"" ["Apple Inc."]
    Application Experience, AeLookupSvc, "C:\Windows\system32\svchost.exe -k netsvcs" {"C:\Windows\System32\aelupsvc.dll" [file not found]}
    Application Information, Appinfo, "C:\Windows\system32\svchost.exe -k netsvcs" {"C:\Windows\System32\appinfo.dll" [file not found]}
    Audio Service, STacSV, "C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_58afa5ca50c7b5e7\STacSV64.exe" ["IDT, Inc."]
    Avira AntiVir Guard, AntiVirService, ""C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"" ["Avira GmbH"]
    Avira AntiVir Scheduler, AntiVirSchedulerService, ""C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"" ["Avira GmbH"]
    Background Intelligent Transfer Service, BITS, "C:\Windows\System32\svchost.exe -k netsvcs" {"C:\Windows\System32\qmgr.dll" [file not found]}
    Base Filtering Engine, BFE, "C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork" {"C:\Windows\System32\bfe.dll" [file not found]}
    Bluetooth Service, btwdins, "C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe" ["Broadcom Corporation."]
    Bluetooth Support Service, bthserv, "C:\Windows\system32\svchost.exe -k bthsvcs" {"C:\Windows\system32\bthserv.dll" [file not found]}
    Bonjour Service, Bonjour Service, ""C:\Program Files (x86)\Bonjour\mDNSResponder.exe"" ["Apple Inc."]
    CNG Key Isolation, KeyIso, "C:\Windows\system32\lsass.exe" [file not found]
    Computer Browser, Browser, "C:\Windows\System32\svchost.exe -k netsvcs" {"C:\Windows\System32\browser.dll" [file not found]}
    DCOM Server Process Launcher, DcomLaunch, "C:\Windows\system32\svchost.exe -k DcomLaunch" {"C:\Windows\system32\rpcss.dll" [file not found]}
    Desktop Window Manager Session Manager, UxSms, "C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted" {"C:\Windows\System32\uxsms.dll" [file not found]}
    Diagnostic Policy Service, DPS, "C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork" {"C:\Windows\system32\dps.dll" [file not found]}
    Distributed Link Tracking Client, TrkWks, "C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted" {"C:\Windows\System32\trkwks.dll" [file not found]}
    DNS Client, Dnscache, "C:\Windows\system32\svchost.exe -k NetworkService" {"C:\Windows\System32\dnsrslvr.dll" [file not found]}
    Extensible Authentication Protocol, EapHost, "C:\Windows\System32\svchost.exe -k netsvcs" {"C:\Windows\System32\eapsvc.dll" [file not found]}
    Function Discovery Provider Host, fdPHost, "C:\Windows\system32\svchost.exe -k LocalService" {"C:\Windows\system32\fdPHost.dll" [file not found]}
    Function Discovery Resource Publication, FDResPub, "C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation" {"C:\Windows\system32\fdrespub.dll" [file not found]}
    Group Policy Client, gpsvc, "C:\Windows\system32\svchost.exe -k netsvcs" {"C:\Windows\System32\gpsvc.dll" [file not found]}
    HomeGroup Listener, HomeGroupListener, "C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted" {"C:\Windows\system32\ListSvc.dll" [file not found]}
    Intel(R) Management & Security Application User Notification Service, UNS, ""C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"" ["Intel Corporation"]
    Intel(R) Management and Security Application Local Management Service, LMS, "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe" ["Intel Corporation"]
    Intel(R) Rapid Storage Technology, IAStorDataMgrSvc, ""C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"" [null data]
    IP Helper, iphlpsvc, "C:\Windows\System32\svchost.exe -k NetSvcs" {"C:\Windows\System32\iphlpsvc.dll" [file not found]}
    iPod Service, iPod Service, ""C:\Program Files\iPod\bin\iPodService.exe"" ["Apple Inc."]
    KMService, KMService, "C:\Windows\system32\srvany.exe" [** WMI GetObject error **]
    Multimedia Class Scheduler, MMCSS, "C:\Windows\system32\svchost.exe -k netsvcs" {"C:\Windows\system32\mmcss.dll" [file not found]}
    Network Connections, Netman, "C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted" {"C:\Windows\System32\netman.dll" [file not found]}
    Network Location Awareness, NlaSvc, "C:\Windows\System32\svchost.exe -k NetworkService" {"C:\Windows\System32\nlasvc.dll" [file not found]}
    Network Store Interface Service, nsi, "C:\Windows\system32\svchost.exe -k LocalService" {"C:\Windows\system32\nsisvc.dll" [file not found]}
    Offline Files, CscService, "C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted" {"C:\Windows\System32\cscsvc.dll" [file not found]}
    Peer Name Resolution Protocol, PNRPsvc, "C:\Windows\System32\svchost.exe -k LocalServicePeerNet" {"C:\Windows\system32\pnrpsvc.dll" [file not found]}
    Peer Networking Grouping, p2psvc, "C:\Windows\System32\svchost.exe -k LocalServicePeerNet" {"C:\Windows\system32\p2psvc.dll" [file not found]}
    Peer Networking Identity Manager, p2pimsvc, "C:\Windows\System32\svchost.exe -k LocalServicePeerNet" {"C:\Windows\system32\pnrpsvc.dll" [file not found]}
    Plug and Play, PlugPlay, "C:\Windows\system32\svchost.exe -k DcomLaunch" {"C:\Windows\system32\umpnpmgr.dll" [file not found]}
    Power, Power, "C:\Windows\system32\svchost.exe -k DcomLaunch" {"C:\Windows\system32\umpo.dll" [file not found]}
    Print Spooler, Spooler, "C:\Windows\System32\spoolsv.exe" [file not found]
    Program Compatibility Assistant Service, PcaSvc, "C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted" {"C:\Windows\System32\pcasvc.dll" [file not found]}
    Remote Access Connection Manager, RasMan, "C:\Windows\System32\svchost.exe -k netsvcs" {"C:\Windows\System32\rasmans.dll" [file not found]}
    Remote Procedure Call (RPC), RpcSs, "C:\Windows\system32\svchost.exe -k rpcss" {"C:\Windows\system32\rpcss.dll" [file not found]}
    RPC Endpoint Mapper, RpcEptMapper, "C:\Windows\system32\svchost.exe -k RPCSS" {"C:\Windows\System32\RpcEpMap.dll" [file not found]}
    Secure Socket Tunneling Protocol Service, SstpSvc, "C:\Windows\system32\svchost.exe -k LocalService" {"C:\Windows\system32\sstpsvc.dll" [file not found]}
    Security Accounts Manager, SamSs, "C:\Windows\system32\lsass.exe" [file not found]
    Security Center, wscsvc, "C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted" {"C:\Windows\System32\wscsvc.dll" [file not found]}
    Server, LanmanServer, "C:\Windows\system32\svchost.exe -k netsvcs" {"C:\Windows\system32\srvsvc.dll" [file not found]}
    SSDP Discovery, SSDPSRV, "C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation" {"C:\Windows\System32\ssdpsrv.dll" [file not found]}
    Superfetch, SysMain, "C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted" {"C:\Windows\system32\sysmain.dll" [file not found]}
    Task Scheduler, Schedule, "C:\Windows\system32\svchost.exe -k netsvcs" {"C:\Windows\system32\schedsvc.dll" [file not found]}
    TCP/IP NetBIOS Helper, lmhosts, "C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted" {"C:\Windows\System32\lmhsvc.dll" [file not found]}
    Themes, Themes, "C:\Windows\System32\svchost.exe -k netsvcs" {"C:\Windows\system32\themeservice.dll" [file not found]}
    User Profile Service, ProfSvc, "C:\Windows\system32\svchost.exe -k netsvcs" {"C:\Windows\system32\profsvc.dll" [file not found]}
    Windows Audio, AudioSrv, "C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted" {"C:\Windows\System32\Audiosrv.dll" [file not found]}
    Windows Audio Endpoint Builder, AudioEndpointBuilder, "C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted" {"C:\Windows\System32\Audiosrv.dll" [file not found]}
    Windows Defender, WinDefend, "C:\Windows\System32\svchost.exe -k secsvcs" {"C:\Program Files (x86)\Windows Defender\mpsvc.dll" [file not found]}
    Windows Driver Foundation - User-mode Driver Framework, wudfsvc, "C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted" {"C:\Windows\System32\WUDFSvc.dll" [file not found]}
    Windows Event Log, eventlog, "C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted" {"C:\Windows\System32\wevtsvc.dll" [file not found]}
    Windows Firewall, MpsSvc, "C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork" {"C:\Windows\system32\mpssvc.dll" [file not found]}
    Windows Font Cache Service, FontCache, "C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation" {"C:\Windows\system32\FntCache.dll" [file not found]}
    Windows Image Acquisition (WIA), stisvc, "C:\Windows\system32\svchost.exe -k imgsvc" {"C:\Windows\System32\wiaservc.dll" [file not found]}
    Windows Management Instrumentation, Winmgmt, "C:\Windows\system32\svchost.exe -k netsvcs" {"C:\Windows\system32\wbem\WMIsvc.dll" [file not found]}
    Windows Update, wuauserv, "C:\Windows\system32\svchost.exe -k netsvcs" {"C:\Windows\system32\wuaueng.dll" [file not found]}
    WLAN AutoConfig, Wlansvc, "C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted" {"C:\Windows\System32\wlansvc.dll" [file not found]}
    Workstation, LanmanWorkstation, "C:\Windows\System32\svchost.exe -k NetworkService" {"C:\Windows\System32\wkssvc.dll" [file not found]}​

    Keyboard Driver Filters:
    ------------------------
    HKLM\SYSTEM\CurrentControlSet\Control\Class\{4D36E96B-E325-11CE-BFC1-08002BE10318}\
    <<!>> "UpperFilters" = <<!>> "kbdclass" [file not found]​

    Print Monitors:
    ---------------
    HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors\
    Local Port\Driver = "localspl.dll" [file not found]
    Microsoft Shared Fax Monitor\Driver = "FXSMON.DLL" [file not found]
    Standard TCP/IP Port\Driver = "tcpmon.dll" [file not found]
    USB Monitor\Driver = "usbmon.dll" [file not found]
    WSD Port\Driver = "WSDMon.dll" [file not found]​

    ---------- (launch time: 2011-07-29 08:03:39)
    <<!>>: Suspicious data at a malware launch point.
    + This report excludes default entries except where indicated.
    + To see *everywhere* the script checks and *everything* it finds,
    launch it from a command prompt or a shortcut with the -all parameter.
    + To search all directories of local fixed drives for DESKTOP.INI
    DLL launch points, use the -supp parameter or answer "No" at the
    first message box and "Yes" at the second message box.
    ---------- (total run time: 42 seconds, including 6 seconds for message boxes)
    --------------------------------------------​

    بانتظار ردك ياغلاهم وان شاء الله يكون جهازي سليم :)
     
  5. fahd

    fahd زيزوومي VIP

    إنضم إلينا في:
    ‏ديسمبر 5, 2007
    المشاركات:
    5,591
    الإعجابات :
    3,298
    نقاط الجائزة:
    1,220
    الجنس:
    ذكر
    الإقامة:
    k.s.a
    برامج الحماية:
    اخرى
    نظام التشغيل:
    أخرى

    هذا رد المراقب العام
    KoNaMi

     
  6. مجهول 404

    مجهول 404 زيزوومى متألق

    إنضم إلينا في:
    ‏يوليو 30, 2011
    المشاركات:
    344
    الإعجابات :
    1
    نقاط الجائزة:
    420
    برامج الحماية:
    Kaspersky
    نظام التشغيل:
    Windows 7
    امممم طريقه حلوه ومشكور
     
  7. دلوعه بمزاجي

    دلوعه بمزاجي زيزوومي جديد

    إنضم إلينا في:
    ‏مارس 2, 2009
    المشاركات:
    55
    الإعجابات :
    0
    نقاط الجائزة:
    50
    الإقامة:
    •°في عالمـ الخاص ـي °•
    برامج الحماية:
    Avira
    نظام التشغيل:
    Windows XP
    هل جهاااازي مخترق ؟؟؟؟؟

    تقرير الهايجك
    Logfile of Trend Micro HijackThis v2.0.4
    Scan saved at 05:08:16 ص, on 09/08/2011
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal
    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\WLTRYSVC.EXE
    C:\WINDOWS\System32\bcmwltry.exe
    C:\WINDOWS\system32\spoolsv.exe
    c:\program files\idt\xpm09_6047v002\wdm\STacSV.exe
    C:\Program Files\Avira\AntiVir Desktop\sched.exe
    C:\Program Files\Avira\AntiVir Desktop\avguard.exe
    C:\WINDOWS\System32\ChgService.exe
    C:\Program Files\Common Files\DeviceHelper\DeviceManager.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\RUNDLL32.EXE
    C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\AESTFltr.exe
    C:\Program Files\DellTPad\Apoint.exe
    C:\WINDOWS\system32\WLTRAY.exe
    C:\WINDOWS\system32\igfxtray.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\WINDOWS\system32\igfxsrvc.exe
    C:\Program Files\IDT\WDM\sttray.exe
    C:\Program Files\DellTPad\Apntex.exe
    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
    C:\Program Files\DellTPad\HidFind.exe
    C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
    C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\Quick net\ModemListener.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Documents and Settings\DELL\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
    C:\Program Files\ALFA\AWUS036H Wireless LAN Utility\RtWLan.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
    C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
    C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe
    C:\Program Files\Nokia\PC Connectivity Solution\ServiceLayer.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Nokia\PC Connectivity Solution\Transports\NclUSBSrv.exe
    C:\Program Files\Nokia\PC Connectivity Solution\Transports\NclRSSrv.exe
    C:\Program Files\Nokia\PC Connectivity Solution\Transports\NclBCBTSrv.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Zyzoom_Forum_Tools\zyzoom.exe
    C:\Zyzoom_Forum_Tools\zHijak.com
    C:\Program Files\Internet Explorer\iexplore.exe
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.googel.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R3 - URLSearchHook: Messenger Plus Live Saudi Arabia Toolbar - {9d657fd4-0328-423a-b12d-9576cd92af19} - C:\Program Files\Messenger_Plus_Live_Saudi_Arabia\prxtbMes2.dll
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
    O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
    O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Messenger Plus Live Saudi Arabia - {9d657fd4-0328-423a-b12d-9576cd92af19} - C:\Program Files\Messenger_Plus_Live_Saudi_Arabia\prxtbMes2.dll
    O3 - Toolbar: Messenger Plus Live Saudi Arabia Toolbar - {9d657fd4-0328-423a-b12d-9576cd92af19} - C:\Program Files\Messenger_Plus_Live_Saudi_Arabia\prxtbMes2.dll
    O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll
    O4 - HKLM\..\Run: [AESTFltr] %SystemRoot%\system32\AESTFltr.exe /NoDlg
    O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
    O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
    O4 - HKLM\..\Run: [reader_s] C:\WINDOWS\System32\reader_s.exe
    O4 - HKLM\..\Run: [UP THAT FREE TICK] C:\Documents and Settings\All Users\Application Data\software two up that\boob owns.exe
    O4 - HKLM\..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles
    O4 - HKLM\..\Run: [Nokia FastStart] "C:\Program Files\Nokia\Nokia Music\NokiaMusic.exe" /command:faststart
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [ModemListener] C:\Program Files\Quick net\ModemListener.exe start
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [reader_s] C:\Documents and Settings\DELL\reader_s.exe
    O4 - HKCU\..\Run: [Upload Comp] C:\DOCUME~1\DELL\APPLIC~1\FASTBL~1\batteam.exe
    O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\DELL\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
    O4 - Startup: Picture Motion Browser Media Check Tool.lnk = C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe
    O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: ALFA AWUS036H Wireless LAN Utility.lnk = C:\Program Files\ALFA\AWUS036H Wireless LAN Utility\RtWLan.exe
    O4 - Global Startup: Bluetooth.lnk = ?
    O4 - Global Startup: McAfee Security Scan Plus.lnk = ?
    O4 - Global Startup: Nokia Ovi Suite.lnk = C:\Program Files\Nokia\Ovi\Suite\RunLauncher.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
    O8 - Extra context menu item: إرسال إلى &جهاز Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
    O8 - Extra context menu item: إرسال إلى Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O8 - Extra context menu item: ت&صدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
    O9 - Extra button: تدوين هذا في المدونة - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: &تدوين هذا في Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: إرسال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: إر&سال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra button: (no name) - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
    O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
    O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
    O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
    O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
    O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    O23 - Service: Change Modem Device Service - Unknown owner - C:\WINDOWS\System32\ChgService.exe
    O23 - Service: DeviceManager - Unknown owner - C:\Program Files\Common Files\DeviceHelper\DeviceManager.exe
    O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
    O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
    O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Nokia\PC Connectivity Solution\ServiceLayer.exe
    O23 - Service: Audio Service (STacSV) - IDT, Inc. - c:\program files\idt\xpm09_6047v002\wdm\STacSV.exe
    O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE
    O23 - Service: Marvell Yukon Service (yksvc) - Unknown owner - RUNDLL32.EXE (file missing)
    --
    End of file - 11937 bytes
    ----------------------------------------------------------------------------
    قائمة البرامج المثبتة

    ====== معلومات نظام التشغيل ======
    X86 WIN_XP 2600 Service Pack 2

    ====== قائمة البرامج المثبتة ======
    Acrobat.com
    Acrobat.com
    Adobe AIR
    Adobe AIR
    Adobe Flash Player 10 ActiveX
    Adobe Flash Player 10 Plugin
    Adobe Photoshop 7.0.1 ME
    Adobe Reader 9.1 - Arabic
    Alive Zune Video Converter (version 1.9.0.9)
    Ask.com Search Assistant 1.0.2
    Avira AntiVir Personal - Free Antivirus
    Cole2k Media - Codec Pack (Advanced) 7.6.0
    Conduit Engine
    Dell Resource CD
    Dell Touchpad
    Dell Wireless WLAN Card Utility
    Golden Al-Wafi Translator
    Google Update Helper
    High Definition Audio Driver Package - KB835221
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
    Hotfix for Windows Media Format 11 SDK (KB929399)
    Hotfix for Windows XP (KB926239)
    Hotfix for Windows XP (KB952287)
    Hotfix for Windows XP (KB954550-v5)
    Hotfix for Windows XP (KB954708)
    Hotfix for Windows XP (KB961118)
    Hotfix for Windows XP (KB976098-v2)
    Hotfix for Windows XP (KB979306)
    Hotfix for Windows XP (KB981793)
    IDT Audio
    Intel(R) Graphics Media *********** Driver
    Junk Mail filter update
    K-Lite Mega Codec Pack 4.0.0
    Marvell Miniport Driver
    McAfee Security Scan Plus
    Messenger Plus! Live
    Messenger_Plus_Live_Saudi_Arabia Toolbar
    Microsoft .NET Framework 2.0 Service Pack 2
    Microsoft .NET Framework 3.0 Service Pack 2
    Microsoft .NET Framework 3.5 SP1
    Microsoft .NET Framework 3.5 SP1
    Microsoft Application Error Reporting
    Microsoft Choice Guard
    Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
    Microsoft Office 2003 Arabic User Interface Pack
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office Access MUI (Arabic) 2007
    Microsoft Office Enterprise 2007
    Microsoft Office Enterprise 2007
    Microsoft Office Excel MUI (Arabic) 2007
    Microsoft Office Groove MUI (English) 2007
    Microsoft Office Groove Setup Metadata MUI (Arabic) 2007
    Microsoft Office InfoPath MUI (Arabic) 2007
    Microsoft Office OneNote MUI (Arabic) 2007
    Microsoft Office Outlook MUI (Arabic) 2007
    Microsoft Office PowerPoint MUI (Arabic) 2007
    Microsoft Office Proof (Arabic) 2007
    Microsoft Office Proof (English) 2007
    Microsoft Office Proof (French) 2007
    Microsoft Office Proofing (Arabic) 2007
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    Microsoft Office Publisher MUI (Arabic) 2007
    Microsoft Office Shared MUI (Arabic) 2007
    Microsoft Office Shared MUI (English) 2007
    Microsoft Office Word MUI (Arabic) 2007
    Microsoft Software Update for Web Folders (Arabic) 12
    Microsoft SQL Server 2005 Compact Edition [ENU]
    Microsoft Text-to-Speech Engine 4.0 (English)
    Microsoft User-Mode Driver Framework Feature Pack 1.5
    Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
    Microsoft Visual C++ 2005 Redistributable
    Microsoft Visual C++ 2005 Redistributable - KB2467175
    Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
    Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
    Mobily Connect Card
    Mobily Connect Card 03031
    MSVCRT
    MSXML 4.0 SP2 (KB954430)
    MSXML 4.0 SP2 (KB973688)
    MSXML 6 Service Pack 2 (KB973686)
    Nero 6 Ultra Edition
    Nokia Connectivity Cable Driver
    Nokia Flashing Cable Driver
    Nokia Map Loader
    Nokia Music
    Nokia Ovi Application Installer
    Nokia Ovi Application Installer 6.85.3011
    Nokia Ovi Content Copier
    Nokia Ovi Content Copier 6.85.3011
    Nokia Ovi One Touch Access
    Nokia Ovi One Touch Access 6.85.3011
    Nokia Ovi Suite
    Nokia Ovi System Utilities
    Nokia Ovi System Utilities 6.85.3011
    Nokia Photos
    Nokia Software Updater
    PC Connectivity Solution
    Quick net
    RealPlayer
    Realtek Card Reader
    REALTEK Wireless LAN Driver and Utility
    Security Update for 2007 Microsoft Office System (KB2288621)
    Security Update for 2007 Microsoft Office System (KB2288931)
    Security Update for 2007 Microsoft Office System (KB2345043)
    Security Update for 2007 Microsoft Office System (KB2509488)
    Security Update for 2007 Microsoft Office System (KB969559)
    Security Update for 2007 Microsoft Office System (KB976321)
    Security Update for Microsoft Office 2007 System (KB2541012)
    Security Update for Microsoft Office Access 2007 (KB979440)
    Security Update for Microsoft Office Access 2007 (KB979440)
    Security Update for Microsoft Office Excel 2007 (KB2541007)
    Security Update for Microsoft Office Groove 2007 (KB2494047)
    Security Update for Microsoft Office InfoPath 2007 (KB2510061)
    Security Update for Microsoft Office InfoPath 2007 (KB979441)
    Security Update for Microsoft Office InfoPath 2007 (KB979441)
    Security Update for Microsoft Office PowerPoint 2007 (KB2535818)
    Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623)
    Security Update for Microsoft Office Publisher 2007 (KB2284697)
    Security Update for Microsoft Office system 2007 (972581)
    Security Update for Microsoft Office system 2007 (KB974234)
    Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
    Security Update for Microsoft Office Word 2007 (KB2344993)
    Security Update for Windows Internet Explorer 8 (KB971961)
    Security Update for Windows Internet Explorer 8 (KB976325)
    Security Update for Windows Internet Explorer 8 (KB978207)
    Security Update for Windows Internet Explorer 8 (KB981332)
    Security Update for Windows Internet Explorer 8 (KB982381)
    Security Update for Windows Media Player (KB952069)
    Security Update for Windows Media Player (KB954155)
    Security Update for Windows Media Player (KB968816)
    Security Update for Windows Media Player (KB973540)
    Security Update for Windows Media Player (KB978695)
    Security Update for Windows Media Player (KB979402)
    Security Update for Windows XP (KB2229593)
    Security Update for Windows XP (KB923561)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB944338-v2)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952004)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB955069)
    Security Update for Windows XP (KB956572)
    Security Update for Windows XP (KB956802)
    Security Update for Windows XP (KB956803)
    Security Update for Windows XP (KB956844)
    Security Update for Windows XP (KB957097)
    Security Update for Windows XP (KB958470)
    Security Update for Windows XP (KB958644)
    Security Update for Windows XP (KB958687)
    Security Update for Windows XP (KB958869)
    Security Update for Windows XP (KB959426)
    Security Update for Windows XP (KB960225)
    Security Update for Windows XP (KB960803)
    Security Update for Windows XP (KB960859)
    Security Update for Windows XP (KB961371-v2)
    Security Update for Windows XP (KB961501)
    Security Update for Windows XP (KB969059)
    Security Update for Windows XP (KB969947)
    Security Update for Windows XP (KB970238)
    Security Update for Windows XP (KB970430)
    Security Update for Windows XP (KB971032)
    Security Update for Windows XP (KB971468)
    Security Update for Windows XP (KB971486)
    Security Update for Windows XP (KB971557)
    Security Update for Windows XP (KB971633)
    Security Update for Windows XP (KB971657)
    Security Update for Windows XP (KB971961)
    Security Update for Windows XP (KB972270)
    Security Update for Windows XP (KB973354)
    Security Update for Windows XP (KB973507)
    Security Update for Windows XP (KB973525)
    Security Update for Windows XP (KB973869)
    Security Update for Windows XP (KB973904)
    Security Update for Windows XP (KB974112)
    Security Update for Windows XP (KB974318)
    Security Update for Windows XP (KB974392)
    Security Update for Windows XP (KB974571)
    Security Update for Windows XP (KB975025)
    Security Update for Windows XP (KB975467)
    Security Update for Windows XP (KB975560)
    Security Update for Windows XP (KB975561)
    Security Update for Windows XP (KB975562)
    Security Update for Windows XP (KB976325)
    Security Update for Windows XP (KB977165)
    Security Update for Windows XP (KB977816)
    Security Update for Windows XP (KB977914)
    Security Update for Windows XP (KB978037)
    Security Update for Windows XP (KB978251)
    Security Update for Windows XP (KB978262)
    Security Update for Windows XP (KB978338)
    Security Update for Windows XP (KB978542)
    Security Update for Windows XP (KB978601)
    Security Update for Windows XP (KB978706)
    Security Update for Windows XP (KB979309)
    Security Update for Windows XP (KB979482)
    Security Update for Windows XP (KB979559)
    Security Update for Windows XP (KB979683)
    Security Update for Windows XP (KB980195)
    Security Update for Windows XP (KB980218)
    Security Update for Windows XP (KB980232)
    Segoe UI
    Skype web features
    Skype™ 4.1
    Sony Picture Utility
    Sprint & FineReader 5.0
    Update for 2007 Microsoft Office System (KB967642)
    Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
    Update for Microsoft Office 2007 System (KB2539530)
    Update for Microsoft Office OneNote 2007 (KB980729)
    Update for Microsoft Office Outlook 2007 (KB2509470)
    Update for Outlook 2007 Junk Email Filter (KB2553975)
    Update for Windows Internet Explorer 8 (KB976662)
    Update for Windows Internet Explorer 8 (KB978506)
    Update for Windows Internet Explorer 8 (KB980182)
    Update for Windows XP (KB898461)
    Update for Windows XP (KB925720)
    Update for Windows XP (KB932823-v3)
    Update for Windows XP (KB955759)
    Update for Windows XP (KB961503)
    Update for Windows XP (KB967715)
    Update for Windows XP (KB968389)
    Update for Windows XP (KB971737)
    Update for Windows XP (KB973687)
    Update for Windows XP (KB973815)
    Update for Windows XP (KB978207)
    VLC media player 1.0.1
    WebFldrs XP
    Windows Imaging Component
    Windows Installer 3.1 (KB893803)
    Windows Internet Explorer 8
    Windows Live Communications Platform
    Windows Live Essentials
    Windows Live Essentials
    Windows Live Messenger
    Windows Live Writer
    Windows Media Format 11 runtime
    Windows Media Format 11 runtime
    Windows Movie Maker 2.0
    WinRAR archiver
    Yahoo! Messenger
    أداة التحميل Windows Live Upload Tool
    برنامج WIDCOMM Bluetooth
    بريد Windows Live
    حزمة برامج تشغيل Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)
    محول الصوتيات 5.9
    مساعد تسجيل الدخول إلى Windows Live
    معرض صور Windows Live
     
  8. whyomax

    whyomax زيزوومي جديد

    إنضم إلينا في:
    ‏نوفمبر 11, 2008
    المشاركات:
    25
    الإعجابات :
    1
    نقاط الجائزة:
    20
    الإقامة:
    Jordan
    برامج الحماية:
    ESET
    نظام التشغيل:
    Windows 7
    الله يعطيك ألف عافية أخي .. موضوع موفق وشرح طيب
     
  9. untitled

    untitled زيزوومي نشيط

    إنضم إلينا في:
    ‏فبراير 22, 2010
    المشاركات:
    169
    الإعجابات :
    5
    نقاط الجائزة:
    200
    الإقامة:
    الكمبيوتر
    برامج الحماية:
    Kaspersky
    نظام التشغيل:
    Windows XP
    بارك الله فيك

    موفق إن شاء الله
     
  10. aliloo20

    aliloo20 زيزوومى متألق

    إنضم إلينا في:
    ‏أكتوبر 20, 2008
    المشاركات:
    327
    الإعجابات :
    6
    نقاط الجائزة:
    390
    الإقامة:
    alger
    برامج الحماية:
    Kaspersky
    نظام التشغيل:
    Windows XP
    بارك الله فيك اخي
     
  11. yaya55

    yaya55 زيزوومي نشيط

    إنضم إلينا في:
    ‏ابريل 3, 2010
    المشاركات:
    119
    الإعجابات :
    37
    نقاط الجائزة:
    130
    الجنس:
    ذكر
    الإقامة:
    Algérie
    برامج الحماية:
    اخرى
    نظام التشغيل:
    Windows 7
    بارك الله في ك على تنويرنا
     
  12. هشام سوبر

    هشام سوبر زيزوومى مميز

    إنضم إلينا في:
    ‏أغسطس 22, 2011
    المشاركات:
    593
    الإعجابات :
    429
    نقاط الجائزة:
    570
    الجنس:
    ذكر
    الإقامة:
    مصر
    برامج الحماية:
    Avira
    نظام التشغيل:
    Windows 7
    بارك الله فيــك أخي الفاضـل
     
  13. abu_youssef

    abu_youssef المـــــــدير العـــــام طـــاقم الإدارة ★ نجم المنتدى ★ نجم الشهر عضوية موثوقة ✔️ فريق دعم البرامج العامة

    إنضم إلينا في:
    ‏فبراير 15, 2008
    المشاركات:
    38,246
    الإعجابات :
    67,503
    نقاط الجائزة:
    7,370
    الجنس:
    ذكر
    الإقامة:
    www.zyzoom.org
    برامج الحماية:
    Kaspersky
    نظام التشغيل:
    Windows XP
    ما اروع طرحك اخي فهد
    موضوع مهم ومميز
    بارك الله فيك ونفع بك
     
  14. king kong

    king kong زيزوومي نشيط

    إنضم إلينا في:
    ‏أغسطس 24, 2010
    المشاركات:
    106
    الإعجابات :
    0
    نقاط الجائزة:
    120
    برامج الحماية:
    Trend Micro
    نظام التشغيل:
    Windows 7
  15. كوكيز

    كوكيز زيزوومى مميز

    إنضم إلينا في:
    ‏يوليو 29, 2008
    المشاركات:
    532
    الإعجابات :
    23
    نقاط الجائزة:
    530
    الجنس:
    ذكر
    الإقامة:
    ksa
    برامج الحماية:
    Kaspersky
    نظام التشغيل:
    windows 11
    السلام عليكم أبى سيريال نامبر لبرنامج رفع صوت اللاب توب ،أنا نزلت برنامج اسمه srs audio sandbox جزاكم الله خير
     
  16. dhohvd

    dhohvd زيزوومي جديد

    إنضم إلينا في:
    ‏يناير 4, 2008
    المشاركات:
    32
    الإعجابات :
    1
    نقاط الجائزة:
    40
    برامج الحماية:
    Kaspersky
    نظام التشغيل:
    Windows 7
    ; for 16-bit app support
    [386Enh]
    woafont=dosapp.fon
    EGA80WOA.FON=EGA80WOA.FON
    EGA40WOA.FON=EGA40WOA.FON
    CGA80WOA.FON=CGA80WOA.FON
    CGA40WOA.FON=CGA40WOA.FON

    [drivers]
    wave=mmdrv.dll
    timer=timer.drv

    [mci]
     
  17. saidmax

    saidmax زيزوومي نشيط

    إنضم إلينا في:
    ‏أكتوبر 19, 2011
    المشاركات:
    112
    الإعجابات :
    27
    نقاط الجائزة:
    130
    الجنس:
    ذكر
    برامج الحماية:
    ESET
    نظام التشغيل:
    Windows8.1
    بارك الله فيك وجزاك خيرا
     
  18. kingspy

    kingspy زيزوومي جديد

    إنضم إلينا في:
    ‏أغسطس 23, 2011
    المشاركات:
    1,108
    الإعجابات :
    25
    نقاط الجائزة:
    0
    الإقامة:
    لبنان
    برامج الحماية:
    ESET
    نظام التشغيل:
    Windows 7
    اخوي بارك الله فيك انا خاءف لأن اللبتوب بتاعي مخترق كيف الحل؟

    ; for 16-bit app support
    [386Enh]
    woafont=dosapp.fon
    EGA80WOA.FON=EGA80WOA.FON
    EGA40WOA.FON=EGA40WOA.FON
    CGA80WOA.FON=CGA80WOA.FON
    CGA40WOA.FON=CGA40WOA.FON

    [drivers]
    wave=mmdrv.dll
    timer=timer.drv

    [mci]
     
  19. kingspy

    kingspy زيزوومي جديد

    إنضم إلينا في:
    ‏أغسطس 23, 2011
    المشاركات:
    1,108
    الإعجابات :
    25
    نقاط الجائزة:
    0
    الإقامة:
    لبنان
    برامج الحماية:
    ESET
    نظام التشغيل:
    Windows 7
    انا عندي برنامج الحماية العملاق ايست سمرت سكيورتي

    هايجاك

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 11:01:59 PM, on 12-Nov-11
    Platform: Unknown Windows (WinNT 6.01.3505 SP1)
    MSIE: Internet Explorer v9.00 (9.00.8112.16421)
    Boot mode: Normal

    Running processes:
    C:\Program Files (x86)\Internet Download Manager\IDMan.exe
    C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE
    C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
    C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
    C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
    C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
    C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
    C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
    C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
    C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
    C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe
    C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    C:\HijackThis.exe
    C:\Windows\SysWOW64\DllHost.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://toshiba.msn.com
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.searchcompletion.com/?si=10179&home=1
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.searchcompletion.com/?si=10179&home=1
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.searchcompletion.com/?si=10179&home=1
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=56626&homepage=http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://search.searchcompletion.com/?si=10179&home=1
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://start.facemoods.com/?a=fsy&s={searchTerms}&f=4
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:8888;https=127.0.0.1:8888
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    R3 - URLSearchHook: (no name) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - (no file)
    R3 - URLSearchHook: progs4arab Toolbar - {bb1ff726-aba1-4ff7-bece-8154ed5e18b8} - C:\Program Files (x86)\progs4arab\tbprog.dll
    R3 - URLSearchHook: BrotherSoft Extreme Toolbar - {51a86bb3-6602-4c85-92a5-130ee4864f13} - C:\Program Files (x86)\BrotherSoft_Extreme\tbBrot.dll
    R3 - URLSearchHook: (no name) - {447ccf23-3319-4481-b1f6-0b13e40b0639} - (no file)
    R3 - URLSearchHook: IMVU Inc Toolbar - {90b49673-5506-483e-b92b-ca0265bd9ca8} - C:\Program Files (x86)\IMVU_Inc\tbIMVU.dll (file missing)
    F2 - REG:system.ini: UserInit=userinit.exe,
    O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll
    O2 - BHO: SnagIt Toolbar Loader - {00C6482D-C502-44C8-8409-FCE54AD9C208} - D:\snagit 10\SnagitBHO.dll
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll
    O2 - BHO: BrotherSoft Extreme Toolbar - {51a86bb3-6602-4c85-92a5-130ee4864f13} - C:\Program Files (x86)\BrotherSoft_Extreme\tbBrot.dll
    O2 - BHO: Adobe PDF Link Helper - {6D13740A-7B5F-0E11-65AE-5F1F7558225B} - (no file)
    O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MIF5BA~1\Office14\GROOVEEX.DLL
    O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: IMVU Inc Toolbar - {90b49673-5506-483e-b92b-ca0265bd9ca8} - C:\Program Files (x86)\IMVU_Inc\tbIMVU.dll (file missing)
    O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
    O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O2 - BHO: FaceCons - {B2A44031-7EAD-434C-AC9E-7F1DA176BA8C} - C:\Program Files (x86)\Facecons\facecons.dll
    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MIF5BA~1\Office14\URLREDIR.DLL
    O2 - BHO: progs4arab - {bb1ff726-aba1-4ff7-bece-8154ed5e18b8} - C:\Program Files (x86)\progs4arab\tbprog.dll
    O2 - BHO: Complitly - {D27FC31C-6E3D-4305-8D53-ACDAEFA5F862} - C:\Users\yasmine\AppData\Roaming\Complitly\Complitly.dll
    O2 - BHO: Bing Bar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files (x86)\MSN Toolbar\Platform\6.3.2348.0\npwinext.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
    O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
    O3 - Toolbar: @c:\Program Files (x86)\MSN Toolbar\Platform\6.3.2348.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} - c:\Program Files (x86)\MSN Toolbar\Platform\6.3.2348.0\npwinext.dll
    O3 - Toolbar: progs4arab Toolbar - {bb1ff726-aba1-4ff7-bece-8154ed5e18b8} - C:\Program Files (x86)\progs4arab\tbprog.dll
    O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll
    O3 - Toolbar: BrotherSoft Extreme Toolbar - {51a86bb3-6602-4c85-92a5-130ee4864f13} - C:\Program Files (x86)\BrotherSoft_Extreme\tbBrot.dll
    O3 - Toolbar: IMVU Inc Toolbar - {90b49673-5506-483e-b92b-ca0265bd9ca8} - C:\Program Files (x86)\IMVU_Inc\tbIMVU.dll (file missing)
    O3 - Toolbar: Snagit - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - D:\snagit 10\SnagitIEAddin.dll
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] C:\Users\yasmine\AppData\Local\Temp\zxq2\\mbamgui.exe /starttray
    O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware (reboot)] "C:\Users\yasmine\AppData\Local\Temp\zxq2\mbam.exe" /runcleanupscript
    O4 - HKCU\..\Run: [Google Update] "C:\Users\yasmine\AppData\Local\Google\Update\GoogleUpdate.exe" /c
    O4 - HKCU\..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot
    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    O4 - HKCU\..\Run: [OfficeSyncProcess] "C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
    O4 - HKUS\S-1-5-18\..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe (User 'Default user')
    O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user')
    O4 - Startup: Microsoft SharePoint Workspace.lnk = C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE
    O4 - Global Startup: Bluetooth Manager.lnk = ?
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O8 - Extra context menu item: &Dictionary - http://files.db3nf.com/scripts/ie.htm
    O8 - Extra context menu item: &Encyclopedia - http://files.db3nf.com/scripts/ie-e.htm
    O8 - Extra context menu item: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm
    O8 - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MIF5BA~1\Office14\EXCEL.EXE/3000
    O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MIF5BA~1\Office14\ONBttnIE.dll/105
    O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
    O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
    O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
    O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
    O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
    O13 - Gopher Prefix:
    O17 - HKLM\System\CCS\Services\Tcpip\..\{4CD77168-6050-48AB-80BD-D1869481C764}: NameServer = 4.2.2.3,208.67.220.220
    O17 - HKLM\System\CCS\Services\Tcpip\..\{5E1848CB-F6E2-40AD-9DBD-9A693F695DE5}: NameServer = 4.2.2.3,208.67.220.220
    O17 - HKLM\System\CCS\Services\Tcpip\..\{7E8C90DB-2B85-49D7-B5A5-DC53080676BF}: NameServer = 4.2.2.3,208.67.220.220
    O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
    O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
    O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
    O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
    O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
    O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
    O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
    O23 - Service: MBAMService - Malwarebytes Corporation - C:\Users\yasmine\AppData\Local\Temp\zxq2\\mbamservice.exe
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
    O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - c:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
    O23 - Service: Notebook Performance Tuning Service (TEMPRO) (TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
    O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
    O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing)
    O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
    O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
    O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
    O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
    O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
    O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
    O23 - Service: Video***********Service - SpeedBit Ltd. - D:\d\Video***********Service.exe
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --
    End of file - 17043 bytes
    قائمة البرامج المثبتة

    Adobe AIR
    Adobe AIR
    Adobe Flash Player 10 ActiveX
    Adobe Flash Player 11 Plugin
    Adobe Reader 9.4.6
    Amazon.co.uk
    Ashampoo Snap 5 v.5.0.1
    Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
    aTube Catcher
    Bing Bar
    Bing Bar Platform
    BrotherSoft Extreme Toolbar
    Catalyst Control Center - Branding
    Cheat Engine 6.1
    Compatibility Pack for the 2007 Office system
    Complitly
    Conduit Engine
    D3DX10
    Definition update for Microsoft Office 2010 (KB982726) 32-Bit Edition
    eBay
    ÊÍÏíË áÜ Microsoft Office Excel 2007 Help (KB963678)
    ÊÍÏíË áÜ Microsoft Office Powerpoint 2007 Help (KB963669)
    ÊÍÏíË áÜ Microsoft Office Word 2007 Help (KB963665)
    Facebook Video Calling 1.0.0.8714
    Facecons
    Feedback Tool
    Feedback Tool
    Google Bar
    Google Update Helper
    Intel(R) Management Engine Components
    Intel(R) Rapid Storage Technology
    Internet Download Manager
    Java(TM) 6 Update 29
    Junk Mail filter update
    Mesh Runtime
    Messenger Companion
    Microsoft Default Manager
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office Access MUI (Arabic) 2007
    Microsoft Office Access MUI (English) 2010
    Microsoft Office Access Setup Metadata MUI (English) 2010
    Microsoft Office Excel MUI (Arabic) 2007
    Microsoft Office Excel MUI (English) 2010
    Microsoft Office Groove MUI (English) 2007
    Microsoft Office Groove MUI (English) 2010
    Microsoft Office Groove Setup Metadata MUI (Arabic) 2007
    Microsoft Office InfoPath MUI (Arabic) 2007
    Microsoft Office InfoPath MUI (English) 2010
    Microsoft Office Language Pack 2007 - Arabic ???????
    Microsoft Office O MUI (Arabic) 2007
    Microsoft Office OneNote MUI (Arabic) 2007
    Microsoft Office OneNote MUI (English) 2010
    Microsoft Office Outlook Connector
    Microsoft Office Outlook MUI (Arabic) 2007
    Microsoft Office Outlook MUI (English) 2010
    Microsoft Office PowerPoint MUI (Arabic) 2007
    Microsoft Office PowerPoint MUI (English) 2010
    Microsoft Office PowerPoint Viewer 2007 (English)
    Microsoft Office Professional Plus 2010
    Microsoft Office Professional Plus 2010
    Microsoft Office Proof (Arabic) 2007
    Microsoft Office Proof (English) 2007
    Microsoft Office Proof (English) 2010
    Microsoft Office Proof (French) 2007
    Microsoft Office Proof (French) 2010
    Microsoft Office Proof (Spanish) 2010
    Microsoft Office Proofing (Arabic) 2007
    Microsoft Office Proofing (English) 2010
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    Microsoft Office Publisher MUI (Arabic) 2007
    Microsoft Office Publisher MUI (English) 2010
    Microsoft Office Shared MUI (Arabic) 2007
    Microsoft Office Shared MUI (English) 2007
    Microsoft Office Shared MUI (English) 2010
    Microsoft Office Shared Setup Metadata MUI (English) 2010
    Microsoft Office SharePoint Designer 2007 Service Pack 2 (SP2)
    Microsoft Office SharePoint Designer MUI (Arabic) 2007
    Microsoft Office Word MUI (Arabic) 2007
    Microsoft Office Word MUI (English) 2010
    Microsoft Office X MUI (Arabic) 2007
    Microsoft Outlook Social Connector Provider for Windows Live Messenger 32-bit
    Microsoft Search Enhancement Pack
    Microsoft Silverlight
    Microsoft SQL Server 2005 Compact Edition [ENU]
    Microsoft Visual C++ 2005 Redistributable
    Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    Microsoft Works
    Mozilla Firefox 7.0.1 (x86 en-US)
    Mozilla Firefox 8.0 (x86 en-US)
    MSVC80_x86_v2
    MSVC90_x86
    MSVCRT
    MSVCRT_amd64
    MSXML 4.0 SP2 (KB954430)
    MSXML 4.0 SP2 (KB973688)
    MSXML 4.0 SP3 Parser
    MSXML 4.0 SP3 Parser (KB973685)
    Nero 9 Essentials
    Nero BackItUp
    Nero BackItUp and Burn
    Nero BurnRights
    Nero BurnRights
    Nero BurnRights Help
    Nero ControlCenter
    Nero ControlCenter
    Nero DiscSpeed
    Nero DiscSpeed Help
    Nero DriveSpeed
    Nero DriveSpeed Help
    Nero Express
    Nero Express Help
    Nero InfoTool
    Nero InfoTool Help
    Nero Installer
    Nero Online Upgrade
    Nero RescueAgent
    Nero StartSmart
    Nero StartSmart Help
    NeroExpress
    neroxml
    Nokia Connectivity Cable Driver
    Nokia Ovi Suite
    Nokia Ovi Suite
    Nokia Ovi Suite Software Updater
    Ovi Desktop Sync Engine
    OviMPlatform
    PC Connectivity Solution
    Photo Service - powered by myphotobook
    Photo Service - powered by myphotobook
    progs4arab Toolbar
    Realtek USB 2.0 Card Reader
    RocketDock 1.3.5
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
    Security Update for Microsoft Excel 2010 (KB2553070)
    Security Update for Microsoft InfoPath 2010 (KB2510065)
    Security Update for Microsoft Office 2010 (KB2289078)
    Security Update for Microsoft Office 2010 (KB2553091)
    Security Update for Microsoft Office 2010 (KB2553096)
    Security Update for Microsoft Office 2010 (KB2584066)
    Security Update for Microsoft PowerPoint 2010 (KB2519975)
    Security Update for Microsoft Publisher 2010 (KB2409055)
    Security Update for Microsoft SharePoint Workspace 2010 (KB2566445)
    Security Update for Microsoft SharePoint Workspace 2010 (KB2566445)
    Security Update for Microsoft Word 2010 (KB2345000)
    Skype Toolbars
    Skype™ 5.5
    Snagit 10.0.1
    Toshiba Assist
    TOSHIBA Bulletin Board
    TOSHIBA ConfigFree
    TOSHIBA eco Utility
    TOSHIBA Face Recognition
    TOSHIBA Hardware Setup
    TOSHIBA HDD/SSD Alert
    Toshiba Manuals
    TOSHIBA Media Controller
    TOSHIBA Media Controller Plug-in
    TOSHIBA Online Product Information
    TOSHIBA Recovery Media Creator Reminder
    TOSHIBA ReelTime
    TOSHIBA Service Station
    TOSHIBA Supervisor Password
    Toshiba TEMPRO
    TOSHIBA Value Added Package
    TOSHIBA Web Camera Application
    TRORMCLauncher
    Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
    Update for Microsoft .NET Framework 4 Client Profile (KB2473228)
    Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
    Update for Microsoft Office 2007 Help for Common Features (KB963673)
    Update for Microsoft Office 2007 Help for Common Features (KB963673)
    Update for Microsoft Office 2010 (KB2202188)
    Update for Microsoft Office 2010 (KB2494150)
    Update for Microsoft Office 2010 (KB2523113)
    Update for Microsoft Office 2010 (KB2523113)
    Update for Microsoft Office 2010 (KB2553065)
    Update for Microsoft Office 2010 (KB2553092)
    Update for Microsoft Office 2010 (KB2566458)
    Update for Microsoft Office Script Editor Help (KB963671)
    Update for Microsoft Office Script Editor Help (KB963671)
    Update for Microsoft OneNote 2010 (KB2493983)
    Update for Microsoft Outlook Social Connector (KB2583935)
    Update for Microsoft Outlook Social Connector (KB2583935)
    Visual C++ 8.0 Runtime Setup Package (x64)
    Visual Studio 2008 x64 Redistributables
    VLC media player 1.1.8
    Windows Live Communications Platform
    Windows Live Essentials
    Windows Live Essentials
    Windows Live Installer
    Windows Live Mail
    Windows Live Mail
    Windows Live Mesh
    Windows Live Mesh
    Windows Live Mesh ActiveX Control for Remote Connections
    Windows Live Messenger
    Windows Live Messenger
    Windows Live Messenger
    Windows Live Messenger
    Windows Live Messenger Companion Core
    Windows Live Movie Maker
    Windows Live Movie Maker
    Windows Live Photo Common
    Windows Live Photo Common
    Windows Live Photo Gallery
    Windows Live Photo Gallery
    Windows Live PIMT Platform
    Windows Live SOXE
    Windows Live SOXE Definitions
    Windows Live Sync
    Windows Live UX Platform
    Windows Live UX Platform Language Pack
    Windows Live Writer
    Windows Live Writer
    Windows Live Writer
    Windows Live Writer Resources
    WinRAR 4.10 beta 1 (32-bit)
    تقرير رن سكنر

    Runscanner logfile http://www.runscanner.net

    * = signed file
    - = file not found

    General info
    ------------
    Computer name : MOHAMMAD-TOSH
    Creation time : 12-Nov-11 11:07:47 PM
    Hosts <> 127.0.0.1 : 0
    Hosts file location : %SystemRoot%\System32\drivers\etc
    IE version : 9.0.8112.16421
    OS : Windows 7 Home Premium
    OS Build : 7601
    OS SP : Service Pack 1
    RunScanner Version : 2.0.0.50
    User Language : English (United Kingdom)
    User rights : Administrator
    Windows folder : C:\Windows

    Running processes
    -----------------
    * C:\Windows\System32\atieclxx.exe (AMD)
    * C:\Windows\System32\atiesrxx.exe (AMD)
    * C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\tosBtProc.exe (TOSHIBA CORPORATION.)
    * C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtMng.exe (TOSHIBA CORPORATION.)
    * C:\Windows\System32\csrss.exe (Microsoft Corporation)
    * C:\Windows\System32\csrss.exe (Microsoft Corporation)
    * C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe (TOSHIBA CORPORATION)
    * C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe (TOSHIBA CORPORATION)
    * C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe (TOSHIBA CORPORATION)
    * C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe (TOSHIBA CORPORATION)
    * C:\Windows\System32\conhost.exe (Microsoft Corporation)
    * C:\Windows\System32\dwm.exe (Microsoft Corporation)
    * C:\Program Files\ESET\ESET Smart Security\egui.exe (ESET)
    * C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe (ESET)
    * C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
    * C:\Windows\System32\svchost.exe (Microsoft Corporation)
    * C:\Windows\System32\svchost.exe (Microsoft Corporation)
    * C:\Windows\System32\svchost.exe (Microsoft Corporation)
    * C:\Windows\System32\svchost.exe (Microsoft Corporation)
    * C:\Windows\System32\svchost.exe (Microsoft Corporation)
    * C:\Windows\System32\svchost.exe (Microsoft Corporation)
    * C:\Windows\System32\svchost.exe (Microsoft Corporation)
    * C:\Windows\System32\svchost.exe (Microsoft Corporation)
    * C:\Windows\System32\svchost.exe (Microsoft Corporation)
    * C:\Windows\System32\svchost.exe (Microsoft Corporation)
    * C:\Windows\System32\svchost.exe (Microsoft Corporation)
    * C:\Windows\System32\svchost.exe (Microsoft Corporation)
    * C:\Windows\System32\svchost.exe (Microsoft Corporation)
    * C:\Windows\System32\taskhost.exe (Microsoft Corporation)
    * C:\Windows\System32\taskhost.exe (Microsoft Corporation)
    * C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe (Microsoft Corporation)
    * C:\Program Files (x86)\Internet Download Manager\IDMan.exe (Tonec Inc.)
    * C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe (Tonec Inc.)
    * C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
    * C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation)
    * C:\Windows\System32\lsass.exe (Microsoft Corporation)
    * C:\Windows\System32\lsm.exe (Microsoft Corporation)
    * C:\Users\yasmine\AppData\Local\Temp\zxq2\mbamservice.exe (Malwarebytes Corporation)
    * C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE (Microsoft Corporation)
    * C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation)
    * C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corporation)
    * C:\Windows\System32\SearchIndexer.exe (Microsoft Corporation)
    * C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.)
    * C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corp.)
    * C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
    * C:\Windows\SysWOW64\notepad.exe (Microsoft Corporation)
    * C:\Zyzoom_Forum_Tools\zRunScanner.com (Runscanner.net)
    * C:\Windows\System32\services.exe (Microsoft Corporation)
    * C:\Windows\System32\spoolsv.exe (Microsoft Corporation)
    * C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Synaptics, Inc.)
    * C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics, Inc.)
    * C:\Windows\System32\taskeng.exe (Microsoft Corporation)
    * C:\Windows\System32\taskeng.exe (Microsoft Corporation)
    * C:\Windows\System32\TODDSrv.exe (TOSHIBA Corporation)
    * C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosA2dp.exe (TOSHIBA CORPORATION.)
    * C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosAVRC.exe (TOSHIBA CORPORATION.)
    * C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtHid.exe (TOSHIBA CORPORATION.)
    * C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtHSP.exe (TOSHIBA CORPORATION.)
    * C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtSrv.exe (TOSHIBA CORPORATION)
    * C:\Program Files\TOSHIBA\TECO\TecoService.exe (TOSHIBA Corporation)
    * C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe (TOSHIBA Corporation)
    * C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe (TOSHIBA Corporation)
    * C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe (TOSHIBA Corporation)
    * C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe (Toshiba Europe GmbH)
    * C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\tosOBEX.exe (TOSHIBA CORPORATION.)
    * C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation)
    * D:\d\Video***********Service.exe (SpeedBit Ltd.)
    * C:\Windows\system32\audiodg.exe (Microsoft Corporation)
    * C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)
    * C:\Windows\explorer.exe (Microsoft Corporation)
    * C:\Windows\System32\winlogon.exe (Microsoft Corporation)
    * C:\Windows\System32\smss.exe (Microsoft Corporation)
    * C:\Windows\System32\wininit.exe (Microsoft Corporation)
    * C:\Windows\System32\wuauclt.exe (Microsoft Corporation)
    * C:\Windows\System32\wlanext.exe (Microsoft Corporation)
    C:\Zyzoom_Forum_Tools\zyzoom.exe

    Unrated items
    -------------
    002 * C:\Users\yasmine\AppData\Local\Temp\zxq2\\mbamgui.exe (Malwarebytes Corporation)
    002 * C:\Users\yasmine\AppData\Local\Temp\zxq2\mbam.exe (Malwarebytes Corporation)
    010 * C:\Users\yasmine\AppData\Local\Temp\zxq2\\mbamservice.exe (Malwarebytes' Anti-Malware)
    010 C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe (ServiceLayer Module)
    011 * C:\Windows\system32\drivers\CHDMI64.sys (64-bit High Definition Audio Function Driver)
    011 * C:\Windows\system32\drivers\CHDRT64.sys (64-bit High Definition Audio Function Driver)
    011 * C:\Windows\system32\DRIVERS\L1C62x64.sys (Atheros L1c PCI-E Gigabit Ethernet Controller)
    011 * C:\Windows\system32\DRIVERS\lmimirr.sys (lmimirr)
    011 * C:\Windows\system32\DRIVERS\wcmvcam64.sys (WebcamMax Capture)
    040 C:\Program Files (x86)\BrotherSoft_Extreme\tbBrot.dll (Conduit Ltd.) {51a86bb3-6602-4c85-92a5-130ee4864f13}
    040 * C:\Program Files (x86)\progs4arab\tbprog.dll (Conduit Ltd.) {bb1ff726-aba1-4ff7-bece-8154ed5e18b8}
    041 C:\Program Files (x86)\BrotherSoft_Extreme\tbBrot.dll (Conduit Ltd.) {51a86bb3-6602-4c85-92a5-130ee4864f13}
    041 * C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll (Conduit Ltd.) {30F9B915-B755-4826-820B-08FBA6BD249D}
    041 * C:\Program Files (x86)\progs4arab\tbprog.dll (Conduit Ltd.) {bb1ff726-aba1-4ff7-bece-8154ed5e18b8}
    042 GUID / CLSID not found {0000036B-C524-4050-81A0-243669A86B9F}
    042 GUID / CLSID not found {219C3416-8CB2-491a-A3C7-D9FCDDC9D600}
    042 GUID / CLSID not found {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}
    042 GUID / CLSID not found {2670000A-7350-4f3c-8081-5663EE0C6C49}
    042 GUID / CLSID not found {898EA8C8-E7FF-479B-8935-AEC46303B9E5}
    045 * C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll (Conduit Ltd.) {30F9B915-B755-4826-820B-08FBA6BD249D}
    045 C:\Program Files (x86)\BrotherSoft_Extreme\tbBrot.dll (Conduit Ltd.) {51A86BB3-6602-4C85-92A5-130EE4864F13}
    045 * C:\Program Files (x86)\progs4arab\tbprog.dll (Conduit Ltd.) {BB1FF726-ABA1-4FF7-BECE-8154ED5E18B8}
    052 GUID / CLSID not found {6D13740A-7B5F-0E11-65AE-5F1F7558225B}
    052 C:\Users\yasmine\AppData\Roaming\Complitly\Complitly.dll (SimplyGen) {D27FC31C-6E3D-4305-8D53-ACDAEFA5F862}
    052 * C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll (Conduit Ltd.) {30F9B915-B755-4826-820B-08FBA6BD249D}
    052 C:\Program Files (x86)\BrotherSoft_Extreme\tbBrot.dll (Conduit Ltd.) {51a86bb3-6602-4c85-92a5-130ee4864f13}
    052 * C:\Program Files (x86)\progs4arab\tbprog.dll (Conduit Ltd.) {bb1ff726-aba1-4ff7-bece-8154ed5e18b8}
    052 C:\Program Files (x86)\Facecons\facecons.dll (Facecons) {B2A44031-7EAD-434C-AC9E-7F1DA176BA8C}
    060 GUID / CLSID not found {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
    061 C:\Users\yasmine\winrar 4.00\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
    100 Default_Page_URL HKCU : http://toshiba.msn.com
    100 Default_Search_URL HKCU : http://search.searchcompletion.com/?si=10179&home=1
    100 ProxyServer HKCU : http=127.0.0.1:8888;https=127.0.0.1:8888
    100 Search Page HKCU : http://search.searchcompletion.com/?si=10179&home=1
    100 SearchAssistant HKLM : http://start.facemoods.com/?a=fsy&s={searchTerms}&f=4
    102 GUID / CLSID not found {950DD287-7C12-4D2B-8A9A-729AB0553E65}
    105 &Dictionary : http://files.db3nf.com/scripts/ie.htm
    105 &Encyclopedia : http://files.db3nf.com/scripts/ie-e.htm
    105 Download all links with IDM : C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm
    105 Download with IDM : C:\Program Files (x86)\Internet Download Manager\IEExt.htm
    105 E&xport to Microsoft Excel : res://C:\PROGRA~2\MIF5BA~1\Office14\EXCEL.EXE/3000
    105 Se&nd to OneNote : res://C:\PROGRA~2\MIF5BA~1\Office14\ONBttnIE.dll/105
    120 NameServer {4CD77168-6050-48AB-80BD-D1869481C764} : 4.2.2.3,208.67.220.220
    120 NameServer {5E1848CB-F6E2-40AD-9DBD-9A693F695DE5} : 4.2.2.3,208.67.220.220
    120 NameServer {7E8C90DB-2B85-49D7-B5A5-DC53080676BF} : 4.2.2.3,208.67.220.220
    173 GUID / CLSID not found {6BEF3D0B-53F0-4b0d-B91C-C19ED3D4C9D1}
    173 GUID / CLSID not found {B41DB860-64E4-11D2-9906-E49FADC173CA}
    173 C:\Users\yasmine\winrar 4.00\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
    221 GUID / CLSID not found {6BEF3D0B-53F0-4b0d-B91C-C19ED3D4C9D1}
    221 GUID / CLSID not found {B41DB860-64E4-11D2-9906-E49FADC173CA}
    221 C:\Users\yasmine\winrar 4.00\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
    223 GUID / CLSID not found {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
    225 GUID / CLSID not found {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
    225 GUID / CLSID not found {57CE581A-0CB6-4266-9CA0-19364C90A0B3}
    225 GUID / CLSID not found {B41DB860-64E4-11D2-9906-E49FADC173CA}
    225 GUID / CLSID not found {B41DB860-64E4-11D2-9906-E49FADC173CA}
    225 C:\Users\yasmine\winrar 4.00\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
    225 C:\Users\yasmine\winrar 4.00\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
    227 GUID / CLSID not found {6BEF3D0B-53F0-4b0d-B91C-C19ED3D4C9D1}
    227 GUID / CLSID not found {B41DB860-64E4-11D2-9906-E49FADC173CA}
    227 C:\Users\yasmine\winrar 4.00\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
    229 GUID / CLSID not found {5E2121EE-0300-11D4-8D3B-444553540000}
    251 GUID / CLSID not found {B41DB860-64E4-11D2-9906-E49FADC173CA}
    251 C:\Users\yasmine\winrar 4.00\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}

    Missing files
    -------------
    011 C:\Windows\system32\drivers\LMIRfsClientNP.sys
    011 C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys
    032 rdpclip
    040 C:\Program Files (x86)\IMVU_Inc\tbIMVU.dll
    041 C:\Program Files (x86)\IMVU_Inc\tbIMVU.dll
    045 C:\Program Files (x86)\IMVU_Inc\tbIMVU.dll
    052 C:\Program Files (x86)\IMVU_Inc\tbIMVU.dll
    073 C:\Windows\AutoKMS.exe

    ارجو مساعدتي
     
  20. الوافي010

    الوافي010 زيزوومي جديد

    إنضم إلينا في:
    ‏نوفمبر 16, 2011
    المشاركات:
    14
    الإعجابات :
    0
    نقاط الجائزة:
    20
    برامج الحماية:
    avast
    نظام التشغيل:
    Windows XP
    وهاذا تقريري..أتمنى تفيدني بسرع وقت....:er::er:



    Scan saved at 09:32:59 ص, on 17/11/2011
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\WINDOWS\system32\STacSV.exe
    C:\WINDOWS\sttray.exe
    C:\WINDOWS\system32\igfxtray.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\Common Files\Java\Java Update\jusched.exe
    C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Skype\Phone\Skype.exe
    C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
    C:\Program Files\WinZip\WZQKPICK.EXE
    C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\WinRAR\WinRAR.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Documents and Settings\kuz\My Documents\Downloads\HiJackThis.exe

    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office12\GRA8E1~1.DLL
    O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
    O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
    O4 - HKLM\..\Run: [GSISETUP] E:\Driver\DSL-20~2\setup.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: McAfee Security Scan Plus.lnk = ?
    O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
    O8 - Extra context menu item: ت&صدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
    O9 - Extra button: إرسال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: إر&سال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~3\Office12\GR99D3~1.DLL
    O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
    O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
    O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
    O23 - Service: خدمة تحديث Google (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
    O23 - Service: خدمة Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
    O23 - Service: SigmaTel Audio Service (STacSV) - SigmaTel, Inc. - C:\WINDOWS\system32\STacSV.exe

    --
    End of file - 5922 bytes
     
حالة الموضوع:
مغلق

مشاركة هذه الصفحة

جاري تحميل الصفحة...