#1
|
||||
|
||||
ÓÇÇÚÏæäí ÇÑÌæßã ãÇ ÇáÍá .....
ÇáÓáÇã Úáíßã ÌåÇÒí ÕÇÑ íÚáÞ æÇáÑÇã 4 æÇäÇ ÇÓÊÎÏã ßÇÓÈÑ ÇäÊÑäÊ ÓßíæÑÊí 2011
ÇÚãá ÝÍÕ ÈÇáßÓÈÑ æáÇíßÊÔÝ ÔíÆ æÇáÌåÇÒ ÈØíÆ æíÚáÞ 1 .... åá åäÇß ÇÝÖá ãä ßÇÓÈÑ 2011 2 .... ãÇÐÇ ÇÝÖá ÈÑäÇãÌ ÖÏ ãáÝÇÊ ÇáÊÌÓÓ æÇáÊÑæÌÇä ÇÑÌæ ÇáãÓÇÚÏå æÔßÑÇÇ ÇáÈÑÇãÌ ÇáãËÈÊå Adobe Flash Player 10 ActiveX Adobe Flash Player 10 Plugin Adobe Photoshop CS4 Portable+True BoxShot Plug-in Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver Conduit Engine DW WLAN Card Utility Google Update Helper ImagXpress Internet Download Manager Java Auto Updater Java(TM) 6 Update 23 Kaspersky Internet Security 2011 Kaspersky Internet Security 2011 ************' Anti-Malware Messenger Plus! Live Microsoft Application Error Reporting Microsoft Choice Guard Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 MSVCRT MSXML 4.0 SP2 and SOAP Toolkit 3.0 neroxml oovoo video chat arabic Toolbar RealPlayer SRS Audio Sandbox wadhefa.com Toolbar Windows Live Communications Platform Windows Live Essentials Windows Live Essentials Windows Live Messenger Windows Live Upload Tool WinRAR archiver ÚäÕÑ ÊÍßã ActiveX ÇáÎÇÕ ÈÜ Windows Live Mesh ááÇÊÕÇáÇÊ ÇáÈÚíÏÉ ÇáåÇíÌß Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 08:56:35 ã, on 14/02/11 Platform: Windows 7 (WinNT 6.00.3504) MSIE: Internet Explorer v8.00 (8.00.7600.16722) Boot mode: Normal Running processes: C:\Windows\system32\taskhost.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe C:\Program Files\SRS Labs\Audio Sandbox\SRSSSC.exe C:\Program Files\Internet Download Manager\IDMan.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\Internet Download Manager\IEMonitor.exe C:\Users\u\AppData\Local\Google\Chrome\Application \chrome.exe C:\Users\u\AppData\Local\Google\Chrome\Application \chrome.exe C:\Zyzoom_Forum_Tools\zyzoom.exe C:\Zyzoom_Forum_Tools\zHijak.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: (no name) - {a42bf48a-0fea-4b76-858d-b9fbe74c566b} - (no file) R3 - URLSearchHook: (no name) - {8aa7e4cd-af28-430e-99f7-f5e10c8b96cd} - (no file) O1 - Hosts: gosredirector.ea.com O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ievkbd.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - (no file) O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe" O4 - HKCU\..\Run: [SRS Audio Sandbox] "C:\Program Files\SRS Labs\Audio Sandbox\SRSSSC.exe" /hideme O4 - HKCU\..\Run: [Google Update] "C:\Users\u\AppData\Local\Google\Update\Google Upda te.exe" /c O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ie_banner_deny.htm O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E117 12C84EA7E12B.dll/cmsidewiki.html O8 - Extra context menu item: Ê&ÕÏíÑ Åáì Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: ÊÍãíá Çáßá ÈæÇÓØÉ Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm O8 - Extra context menu item: ÊÍãíá ÈæÇÓØÉ Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm O8 - Extra context menu item: ÊÍãíá ãÍÊæì FLV ÈæÇÓØÉ Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - (no file) O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - (no file) O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - (no file) O9 - Extra button: &Virtual Keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe O9 - Extra button: URLs c&heck - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll O16 - DPF: {4B54A9DE-EF1C-4EBE-A328-7C28EA3B433A} (BitDefender QuickScan Control) - http://quickscan.bitdefender.com/qsax/qsax.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/reso...an8/oscan8.cab O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab O16 - DPF: {6924091F-CD97-41E1-B1D4-D9079409D413} (IMCv1 Control) - http://174.34.234.78:1999/talk.cab O16 - DPF: {7253A666-804A-1107-A4DC-00E04C504788} (BMC Control) - http://74.86.165.249/inc/bmc.cab O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab O16 - DPF: {B7FDB0C3-4724-46D2-B8DB-6FA1DC63F7CA} (ReadUid.UserControlMacEntry) - http://174.34.234.78:1999/ReadUid.CAB O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/pu...sh/swflash.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - (no file) O20 - AppInit_DLLs: C:\PROGRA~2\AVP11\mzvkbd3.dll,C:\PROGRA~2\AVP11\kl oehk.dll O23 - Service: Kaspersky Anti-Virus Service (AVP) - Kaspersky Lab ZAO - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe O23 - Service: ÎÏãÉ ÊÍÏíË Google (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: DW WLAN Tray Service (wltrysvc) - Dell Inc. - C:\Program Files\Dell\DW WLAN Card\WLTRYSVC.EXE -- End of file - 6780 bytes ãÇáæíÑ ÈÇíÊ : ************' Anti-Malware 1.50.1.1100 www.************.org äÓÎÉ ÞÇÚÏÉ ÇáÈíÇäÇÊ : 5762 Windows 6.1.7600 Internet Explorer 8.0.7600.16385 14/02/11 10:09:44 ã mbam-log-2011-02-14 (22-09-38).txt äæÚ ÇáÝÍÕ : ÝÍÕ ßÇãá (C:\|D:\|E:\|) ÇáßÇÆäÇÊ ÇáãÝÍæÕÉ : 216723 ÇáæÞÊ ÇáãäÞÖí : 1 ÓÇÚÉ, 1 ÏÞíÞÉ, 29 ËÇäíÉ ÚãáíÇÊ ÇáÐÇßÑÉ ÇáãÕÇÈÉ : 0 æÍÏÇÊ ÇáÐÇßÑÉ ÇáãÕÇÈÉ : 0 ãÝÇÊíÍ ÇáÑíÌÓÊÑí ÇáãÕÇÈÉ : 1 Þíã ÇáÑíÌÓÊÑí ÇáãÕÇÈÉ : 0 ãæÇÏ ÈíÇäÇÊ ÇáÑíÌÓÊÑí ÇáãÕÇÈÉ : 0 ÇáãÌáÏÇÊ ÇáãÕÇÈÉ : 0 ÇáãáÝÇÊ ÇáãÕÇÈÉ : 1 ÚãáíÇÊ ÇáÐÇßÑÉ ÇáãÕÇÈÉ : (áã íÊã ÅßÊÔÇÝ ãæÇÏ ÖÇÑÉ) æÍÏÇÊ ÇáÐÇßÑÉ ÇáãÕÇÈÉ : (áã íÊã ÅßÊÔÇÝ ãæÇÏ ÖÇÑÉ) ãÝÇÊíÍ ÇáÑíÌÓÊÑí ÇáãÕÇÈÉ : HKEY_CURRENT_USER\SOFTWARE\Bifrost (Bifrose.Trace) -> No action taken. Þíã ÇáÑíÌÓÊÑí ÇáãÕÇÈÉ : (áã íÊã ÅßÊÔÇÝ ãæÇÏ ÖÇÑÉ) ãæÇÏ ÈíÇäÇÊ ÇáÑíÌÓÊÑí ÇáãÕÇÈÉ : (áã íÊã ÅßÊÔÇÝ ãæÇÏ ÖÇÑÉ) ÇáãÌáÏÇÊ ÇáãÕÇÈÉ : (áã íÊã ÅßÊÔÇÝ ãæÇÏ ÖÇÑÉ) ÇáãáÝÇÊ ÇáãÕÇÈÉ : c:\Users\u\AppData\Roaming\addons.dat (Bifrose.Trace) -> No action taken. æÇÓÝ ÍØíÊ ãæÖÚí ÈÑßä Íáæá æãÔÇßá ÇáÍÇÓÈ ÈÓ ãÇÝí ÊÝÇÚá ÇÚÊÐÑ ãäßã :er: ÃßËÑ... |
ãæÇÞÚ ÇáäÔÑ (ÇáãÝÖáÉ) |
|
|
ÇáãæÇÖíÚ ÇáãÊÔÇÈåå | ||||
ÇáãæÖæÚ | ßÇÊÈ ÇáãæÖæÚ | ÇáãäÊÏì | ãÔÇÑßÇÊ | ÂÎÑ ãÔÇÑßÉ |
VMware-WorkStation (( ÚãáÇÞ ÇáÃÌåÒÉ ÇáæåãíÉ )) ÇÑÌæßã ÓÇÇÚÏæäí ÜÜÜÜÜÜÜÜÜÜÜÜÜÜÜÜÜÜÜÜÜ | RSS | Arabic Rss | 0 | 01-02-2011 08:59 AM |
Çááå íÓÚÏßã ÓÇÇÚÏæäí ÖÑæÑí | RSS | Arabic Rss | 0 | 12-29-2010 10:01 PM |
ÊßÝæææææææææææææä ÓÇÇÚÏæäí | RSS | Arabic Rss | 0 | 12-04-2010 09:26 PM |
ÇÑÌæßã ÇáÍá :: ÈÑäÇãÌ ÇáÍãÇíÉ f-secure íãäÚ ÇáÌåÇÒ ãä ÊäÝíÐ ÃæÇãÑ restart æ shutdown | RSS | Arabic Rss | 0 | 09-15-2010 04:00 PM |
ÚäÏí ßã ãÔßáå ÇÑÌæßã ÓÇÇÚÏæäí | RSS | Arabic Rss | 0 | 05-04-2010 06:09 PM |
|