منتديات المجاوشي

منتديات المجاوشي (http://www.vb.mjawshy.net/index.php)
-   Arabic Rss (http://www.vb.mjawshy.net/forumdisplay.php?f=41)
-   -   بطء في الجهاز غير طبيعي (http://www.vb.mjawshy.net/showthread.php?t=74393)

RSS 09-01-2010 06:09 AM

بطء في الجهاز غير طبيعي
 
هلآ ..

يـأأ الغاالين أإنــأ عندي جهااز مكتبي dell طبعآآ من زماان ما كاان فيه براامج حمااية ومع مرور الزمن والتصفح وكل شيء اكييييد رااح يجي فيروساات ...
طبعاا من فترة شعررت انه صاار بطء مرررهـ يعين لو ابي اتصفح وكل شيء يخطر في باللك عن الجهااز فييه يعني لو تروح تسويلك قهوة وشااهي ما بعد فتح وهذ تقاارير عن البرناامج ..

HijackThis

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 05:29:56 ص, on 01/09/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\msco rsvw.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\userini.exe
C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\Temp\wpv131283269873.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\userini.exe
C:\WINDOWS\system32\louwood.exe
C:\WINDOWS\system32\userini.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\userini.exe
C:\Documents and Settings\tazebama.dl_
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Documents and Settings\xp\سطح المكتب\Zyzoom_HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.live.com/sphome.aspx
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.live.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.live.com/sphome.aspx
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: (no name) - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - (no file)
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [byhe] C:\WINDOWS\system32\joujygy.exe
O4 - HKLM\..\Run: [userini] C:\WINDOWS\system32\userini.exe
O4 - HKLM\..\Run: [kyquuw] C:\WINDOWS\system32\louwood.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [userini] C:\WINDOWS\system32\userini.exe
O4 - HKLM\..\Policies\Explorer\Run: [userini] C:\WINDOWS\system32\userini.exe
O4 - HKCU\..\Policies\Explorer\Run: [userini] C:\WINDOWS\system32\userini.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: 0aavmmh.exe
O4 - Startup: 0bxss6e.exe
O4 - Startup: 0dzuu6g.exe
O4 - Startup: 0fbww6i.exe
O4 - Startup: 0mmhyyt.exe
O4 - Startup: 1miiduu.exe
O4 - Startup: 1uqqlcc.exe
O4 - Startup: 2nii6uu.exe
O4 - Startup: 3uupggb.exe
O4 - Startup: 6uu6gg6.exe
O4 - Startup: 6ww6iy6.exe
O4 - Startup: 70fbww6.exe
O4 - Startup: 70hdyy6.exe
O4 - Startup: 9s1ez0k.exe
O4 - Startup: aavmmhyy.exe
O4 - Startup: aavmmhyytk.exe
O4 - Startup: avmmhyyt.exe
O4 - Startup: bbxnnjzzvll.exe
O4 - Startup: bxnnjzzv.exe
O4 - Startup: ccxoojaavm.exe
O4 - Startup: dzpplbbx.exe
O4 - Startup: e6qq6cc6.exe
O4 - Startup: eaavmmhyyt.exe
O4 - Startup: fbrrnddz.exe
O4 - Startup: g3iiduupggb.exe
O4 - Startup: ggbsi0eezq.exe
O4 - Startup: hyytkkfw.exe
O4 - Startup: hyytkkfwwri.exe
O4 - Startup: ieezqqlccx.exe
O4 - Startup: je1awwriid.exe
O4 - Startup: l1whidj60l.exe
O4 - Startup: m1ieezqq.exe
O4 - Startup: neezqqlc.exe
O4 - Startup: ni1eaavmmc.exe
O4 - Startup: nnjzzvllhxx.exe
O4 - Startup: o1kggbssne.exe
O4 - Startup: okkfwwriid.exe
O4 - Startup: oo6aa6mm6.exe
O4 - Startup: p0vrmm6yy.exe
O4 - Startup: pffbrxsy.exe
O4 - Startup: pk1gccxooj.exe
O4 - Startup: pkk6ww6ii.exe
O4 - Startup: pplbbxnnjzp.exe
O4 - Startup: pplbbxnnjzz.exe
O4 - Startup: riiduupggbs.exe
O4 - Startup: rm1ieezqql.exe
O4 - Startup: rmm6yy6kk.exe
O4 - Startup: rnddzpplbb.exe
O4 - Startup: tjjfvvrh.exe
O4 - Startup: u0lg0ntd.exe
O4 - Startup: uk9g1cyytk.exe
O4 - Startup: wwriiduu.exe
O4 - Startup: xtoo6aa6.exe
O4 - Startup: xxtjjfvvrhh.exe
O4 - Startup: y6kk6ww6.exe
O4 - Startup: y70zvqq6c.exe
O4 - Startup: ytkkfwwr.exe
O4 - Startup: z0fbww6ii.exe
O4 - Startup: zuu6gg6ss.exe
O4 - Startup: zvllhxxt.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &تصدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_06\bin\npjpi142_06.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_06\bin\npjpi142_06.dll
O9 - Extra button: تدوين هذا في المدونة - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &تدوين هذا في Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6924091F-CD97-41E1-B1D4-D9079409D413} (IMCv1 Control) - http://67.222.158.82:1999/talk.cab
O16 - DPF: {B7FDB0C3-4724-46D2-B8DB-6FA1DC63F7CA} (ReadUid.UserControlMacEntry) - http://67.222.158.82:1999/ReadUid.CAB
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary...t.cab56907.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O23 - Service: ASF Agent (bmgxexay) - Unknown owner - C:\WINDOWS\system32\bidowooh.exe (file missing)
O23 - Service: BsHelpCS (oeomanykeooi) - Unknown owner - C:\WINDOWS\system32\wycou.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
--
End of file - 8390 bytes








أكثر...


الساعة الآن 08:21 PM

Powered by vBulletin® Copyright ©2000 - 2025, Jelsoft Enterprises Ltd. منتديات بلاك بيري mjawshy.net
المجاوشي للتقنية المتقدمة