#1
|
||||
|
||||
![]() السلام عليكم و رحمة الله وبركاته تقرير هايجاك Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 07:21:27 ص, on 17/06/2012 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.5730.0013) Boot mode: Normal Running processes: I:\WINDOWS\System32\smss.exe I:\WINDOWS\system32\winlogon.exe I:\WINDOWS\system32\services.exe I:\WINDOWS\system32\lsass.exe I:\WINDOWS\system32\svchost.exe I:\WINDOWS\System32\svchost.exe I:\WINDOWS\Explorer.EXE I:\WINDOWS\system32\spoolsv.exe I:\Program Files\Common Files\ACD Systems\EN\DevDetect.exe I:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe I:\WINDOWS\system32\igfxtray.exe I:\WINDOWS\system32\hkcmd.exe I:\WINDOWS\system32\igfxsrvc.exe I:\WINDOWS\system32\igfxpers.exe I:\WINDOWS\RTHDCPL.EXE I:\Program Files\BrowserCompanion\BCHelper.exe I:\WINDOWS\system32\ctfmon.exe I:\Program Files\LClock\LClock.exe I:\Program Files\DAP\DAP.EXE I:\Program Files\ToolwizCareFree\ToolwizCares.exe I:\Program Files\RocketDock\RocketDock.exe I:\Program Files\DeviceVM\Browser Configuration Utility\BCUService.exe I:\Program Files\Gigabyte\EasySaver\ESSVR.EXE I:\Program Files\Norton Internet Security\Engine\16.5.0.134\ccSvcHst.exe I:\WINDOWS\system32\svchost.exe I:\Program Files\Norton Internet Security\Engine\16.5.0.134\ccSvcHst.exe I:\Program Files\Mozilla Firefox\firefox.exe I:\Program Files\ToolwizCareFree\ToolwizTools.exe I:\Program Files\Mozilla Firefox\plugin-container.exe C:\Zyzoom_Forum_Tools\zyzoom.exe C:\Zyzoom_Forum_Tools\zHijak.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Funmoods Search R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Funmoods Search R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,AutoConfigURL = http://pac.onspeed.com/pac/?id=08410...2a326097b4b4f4 R3 - URLSearchHook: SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - I:\Program Files\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll O2 - BHO: script helper for ie - {00cbb66b-1d3b-46d3-9577-323a336acb50} - I:\Program Files\BrowserCompanion\jsloader.dll O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - I:\Program Files\Norton Internet Security\Engine\16.5.0.134\coIEPlg.dll O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - I:\Program Files\Norton Internet Security\Engine\16.5.0.134\IPSBHO.DLL O2 - BHO: Funmoods Helper Object - {75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} - I:\PROGRA~1\Funmoods\1.5.23.22\bh\escort.dll O2 - BHO: Update Timer - {963B125B-8B21-49A2-A3A8-E37092276531} - I:\Program Files\BrowserCompanion\updatebhoWin32.dll O2 - BHO: BHO Project - {e78a5c92-6a2b-4369-ab14-0ed3b2b18584} - I:\Program Files\OApps\bho_project.dll O2 - BHO: DAPIELoader Class - {FF6C3CF0-4B15-11D1-ABED-709549C10000} - I:\PROGRA~1\DAP\DAPIEL~1.DLL O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - I:\Program Files\Norton Internet Security\Engine\16.5.0.134\coIEPlg.dll O3 - Toolbar: Funmoods Toolbar - {A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} - I:\PROGRA~1\Funmoods\1.5.23.22\escorTlbr.dll O4 - HKLM\..\Run: [Device Detector] DevDetect.exe -autorun O4 - HKLM\..\Run: [BCU] "I:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe" O4 - HKLM\..\Run: [IgfxTray] I:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] I:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] I:\WINDOWS\system32\igfxpers.exe O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [Browser companion helper] I:\Program Files\BrowserCompanion\BCHelper.exe /T=3 /CHI=clbfjfbnelcflpgpklppgplejolacbej O4 - HKCU\..\Run: [CTFMON.EXE] I:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [LClock] I:\Program Files\LClock\LClock.exe O4 - HKCU\..\Run: [Download***********] "I:\Program Files\DAP\DAP.EXE" /STARTUP O4 - HKCU\..\Run: [ToolwizCareFree] "I:\Program Files\ToolwizCareFree\ToolwizCares.exe" -autorun O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] I:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [LClock] I:\Program Files\LClock\LClock.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] I:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] I:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] I:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 (User 'Default user') O4 - S-1-5-18 Startup: RocketDock.lnk = I:\Program Files\RocketDock\RocketDock.exe (User 'SYSTEM') O4 - .DEFAULT Startup: RocketDock.lnk = I:\Program Files\RocketDock\RocketDock.exe (User 'Default user') O4 - Startup: RocketDock.lnk = I:\Program Files\RocketDock\RocketDock.exe O8 - Extra context menu item: &Clean Traces - I:\Program Files\DAP\Privacy Package\dapcleanerie.htm O8 - Extra context menu item: &Download with &DAP - I:\Program Files\DAP\dapextie.htm O8 - Extra context menu item: Download &all with DAP - I:\Program Files\DAP\dapextie2.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://I:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - I:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - I:\WINDOWS\Network Diagnostic\xpnetdiag.exe O17 - HKLM\System\CCS\Services\Tcpip\..\{7254FC36-259B-40AD-AA1D-2F0C46FF8125}: NameServer = 8.8.8.8,8.8.4.4 O17 - HKLM\System\CS1\Services\Tcpip\..\{7254FC36-259B-40AD-AA1D-2F0C46FF8125}: NameServer = 8.8.8.8,8.8.4.4 O17 - HKLM\System\CS2\Services\Tcpip\..\{7254FC36-259B-40AD-AA1D-2F0C46FF8125}: NameServer = 8.8.8.8,8.8.4.4 O18 - Protocol: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - I:\Program Files\BrowserCompanion\tdataprotocol.dll O18 - Protocol: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - I:\Program Files\BrowserCompanion\tdataprotocol.dll O18 - Protocol: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - I:\Program Files\BrowserCompanion\tdataprotocol.dll O18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - I:\Program Files\Norton Internet Security\Engine\16.5.0.134\coIEPlg.dll O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - I:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - I:\WINDOWS\system32\browseui.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - I:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpda teService.exe O23 - Service: Browser Configuration Utility Service (BCUService) - DeviceVM, Inc. - I:\Program Files\DeviceVM\Browser Configuration Utility\BCUService.exe O23 - Service: ES lite Service for program management. (ES lite Service) - Unknown owner - I:\Program Files\Gigabyte\EasySaver\ESSVR.EXE O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - I:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: Norton Internet Security - Symantec Corporation - I:\Program Files\Norton Internet Security\Engine\16.5.0.134\ccSvcHst.exe -- End of file - 8447 bytes ====== معلومات نظام التشغيل ====== X86 WIN_XP 2600 Service Pack 3 ====== قائمة البرامج المثبتة ====== AC3Filter (remove only) ACDSee 8 Adobe Flash Player 11 ActiveX Adobe Flash Player 11 Plugin Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver Browser Configuration Utility BrowserCompanion CCleaner Choice Guard Download *********** Plus (DAP) EasySaver B9.0610.1 ffdshow [rev 2940] [2009-05-06] FormatFactory 1.80 GeeKz Virus Remover V4.0 Haali Media Splitter Intel(R) Graphics Media *********** Driver Junk Mail filter update LClock Microsoft Office Professional Edition 2003 Microsoft Sync Framework Runtime Native v1.0 (x86) Microsoft Visual C++ 2005 Redistributable Mozilla Firefox 13.0.1 (x86 en-US) Mozilla Maintenance Service Norton Internet Security Opera 11.50 Real Alternative 1.9.0 Realtek High Definition Audio Driver Toolwiz Care UltraISO 8.0 Premium Edition VideoFileDownload WebFldrs XP Windows Live Call Windows Live Communications Platform Windows Live Family Safety Windows Live Messenger WinRAR archiver الموضوع الأساسي: هل توجد مشكلة بجهازي ( تقرير هايجاك + قائمة البرامج المثبتة ) المصدر: زيزوووم للأمن والحماية أكثر... |
مواقع النشر (المفضلة) |
|
|
![]() |
||||
الموضوع | كاتب الموضوع | المنتدى | مشاركات | آخر مشاركة |
مشكلة : الماوس يتحرك بسرعه + تقرير الهايجاك + تقرير البرامج المثبتة | RSS | Arabic Rss | 0 | 06-09-2012 08:11 AM |
مشـاكل الجهاز ! +تقرير رن سكنر + الهاجيك+قائمة البرامج المثبتة؟! | RSS | Arabic Rss | 0 | 08-22-2011 10:31 PM |
مشكلة الجهاز مع البرامج التنفيذية و ادوات زيزوم (تقرير هايجاك) | RSS | Arabic Rss | 0 | 03-20-2011 11:52 AM |
مشكلة فى الكسيورد يوجد تقرير هايجاك + رن سكانر + البرامج المثبته | RSS | Arabic Rss | 0 | 03-16-2011 05:24 PM |
طلب تحليل تقرير HijackThis + تقرير runscanner + تقرير عن قائمة البرامج المثبتة | RSS | Arabic Rss | 0 | 02-18-2011 10:14 PM |
|