السلم عليكم ورحمة الله وبركاتة
اولاً اشكر القائمين على هذا الصرح الرائع والمتميز ...
اخواني هذا تقرير عن جهازي رأيكم اذا كان يحتاج عملية جراحية او اي شيئ :13:
logfile of trend micro hijackthis v2.0.4
scan saved at 4:25:01 pm, on 12/21/2010
platform: Windows xp sp3 (winnt 5.01.2600)
msie: Internet explorer v8.00 (8.00.6001.18702)
boot mode: Normal
running processes:
C:\windows\system32\smss.exe
c:\windows\system32\winlogon.exe
c:\windows\system32\services.exe
c:\windows\system32\lsass.exe
c:\windows\system32\svchost.exe
c:\windows\system32\svchost.exe
c:\windows\system32\spoolsv.exe
c:\windows\explorer.exe
c:\windows\rthdcpl.exe
c:\windows\system32\igfxtray.exe
c:\windows\system32\hkcmd.exe
c:\windows\system32\igfxpers.exe
c:\program files\microsoft office\office12\groovemonitor.exe
c:\program files\java\jre6\bin\jusched.exe
c:\program files\canon\myprinter\bjmyprt.exe
c:\program files\kaspersky lab\kaspersky anti-virus 2011\avp.exe
c:\program files\itunes\ituneshelper.exe
c:\program files\real\realplayer\update\realsched.exe
c:\windows\system32\ctfmon.exe
c:\program files\windows live\messenger\msnmsgr.exe
c:\program files\icq7.2\icq.exe
c:\program files\internet download manager\idman.exe
c:\appserv\apache2.2\bin\httpd.exe
c:\program files\common files\apple\mobile device support\applemobiledeviceservice.exe
c:\program files\kaspersky lab\kaspersky anti-virus 2011\avp.exe
c:\program files\bonjour\mdnsresponder.exe
c:\windows\microsoft.net\framework\v2.0.50727\mscorsvw.exe
c:\program files\canon\ijplm\ijplmsvc.exe
c:\program files\java\jre6\bin\jqs.exe
c:\program files\intel\intel(r) management engine components\lms\lms.exe
c:\appserv\mysql\bin\mysqld-nt.exe
c:\windows\system32\svchost.exe
c:\program files\intel\intel(r) management engine components\uns\uns.exe
c:\program files\yahoo!\softwareupdate\yahooauservice.exe
c:\appserv\apache2.2\bin\httpd.exe
c:\program files\ipod\bin\ipodservice.exe
c:\program files\internet download manager\iemonitor.exe
c:\progra~1\yahoo!\messenger\ymsgr_tray.exe
c:\program files\windows live\contacts\wlcomm.exe
c:\program files\windows live\messenger\msnmsgr.exe
c:\program files\java\jre6\bin\jucheck.exe
c:\program files\internet explorer\iexplore.exe
c:\program files\internet explorer\iexplore.exe
c:\program files\kaspersky lab\kaspersky anti-virus 2011\klwtblfs.exe
c:\program files\internet explorer\iexplore.exe
c:\windows\system32\msiexec.exe
c:\program files\internet explorer\iexplore.exe
c:\program files\trend micro\hijackthis\hijackthis.exe
r1 - hkcu\software\microsoft\internet explorer\main,search page = http://go.microsoft.com/fwlink/?linkid=54896
r0 - hkcu\software\microsoft\internet explorer\main,start page = about:blank
r1 - hklm\software\microsoft\internet explorer\main,default_page_url = http://go.microsoft.com/fwlink/?linkid=69157
r1 - hklm\software\microsoft\internet explorer\main,default_search_url = http://go.microsoft.com/fwlink/?linkid=54896
r1 - hklm\software\microsoft\internet explorer\main,search page = http://go.microsoft.com/fwlink/?linkid=54896
r0 - hklm\software\microsoft\internet explorer\main,start page = http://go.microsoft.com/fwlink/?linkid=69157
r0 - hklm\software\microsoft\internet explorer\search,searchassistant =
r0 - hklm\software\microsoft\internet explorer\search,customizesearch =
r1 - hkcu\software\microsoft\internet connection wizard,shellnext = http://go.microsoft.com/fwlink/?linkid=74005
r1 - hkcu\software\microsoft\windows\currentversion\internet settings,proxyoverride = *.local
r3 - urlsearchhook: (no name) - - (no file)
o2 - bho: Idm helper - {0055c089-8582-441b-a0bf-17b458c2a3a8} - c:\program files\internet download manager\idmiecc.dll
o2 - bho: (no name) - {02478d38-c3f9-4efb-9b51-7695eca05670} - (no file)
o2 - bho: Realplayer download and record plugin for internet explorer - {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll
o2 - bho: Ievkbdbho - {59273ab4-e7d3-40f9-a1a8-6fa9cca1862c} - c:\program files\kaspersky lab\kaspersky anti-virus 2011\ievkbd.dll
o2 - bho: (no name) - {5c255c8a-e604-49b4-9d64-90988571cecb} - (no file)
o2 - bho: Groove gfs browser helper - {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\progra~1\micros~2\office12\gra8e1~1.dll
o2 - bho: Windows live sign-in helper - {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\windowslivelogin.dll
o2 - bho: Java(tm) plug-in 2 ssv helper - {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
o2 - bho: Link filter bho - {e33cf602-d945-461a-83f0-819f76a199f8} - c:\program files\kaspersky lab\kaspersky anti-virus 2011\klwtbbho.dll
o2 - bho: Flashfxp helper for internet explorer - {e5a1691b-d188-4419-ad02-90002030b8ee} - c:\progra~1\flashfxp\ieflash.dll
o2 - bho: Jqsiestartdetectorimpl - {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
o4 - hklm\..\run: [rthdcpl] rthdcpl.exe
o4 - hklm\..\run: [igfxtray] c:\windows\system32\igfxtray.exe
o4 - hklm\..\run: [hotkeyscmds] c:\windows\system32\hkcmd.exe
o4 - hklm\..\run: [persistence] c:\windows\system32\igfxpers.exe
o4 - hklm\..\run: [groovemonitor] "c:\program files\microsoft office\office12\groovemonitor.exe"
o4 - hklm\..\run: [sunjavaupdatesched] "c:\program files\java\jre6\bin\jusched.exe"
o4 - hklm\..\run: [canonsolutionmenu] c:\program files\canon\solutionmenu\cnslmain.exe /logon
o4 - hklm\..\run: [canonmyprinter] c:\program files\canon\myprinter\bjmyprt.exe /logon
o4 - hklm\..\run: [avp] "c:\program files\kaspersky lab\kaspersky anti-virus 2011\avp.exe"
o4 - hklm\..\run: [ituneshelper] "c:\program files\itunes\ituneshelper.exe"
o4 - hklm\..\run: [quicktime task] "c:\program files\quicktime\qttask.exe" -atboottime
o4 - hklm\..\run: [applesyncnotifier] c:\program files\common files\apple\mobile device support\applesyncnotifier.exe
o4 - hklm\..\run: [tkbellexe] "c:\program files\real\realplayer\update\realsched.exe" -osboot
o4 - hkcu\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe
o4 - hkcu\..\run: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
o4 - hkcu\..\run: [icq] "c:\program files\icq7.2\icq.exe" silent loginmode=4
o4 - hkcu\..\run: [messenger (yahoo!)] "c:\progra~1\yahoo!\messenger\yahoomessenger.exe" -quiet
o4 - hkcu\..\run: [idman] c:\program files\internet download manager\idman.exe /onboot
o4 - hkus\s-1-5-19\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'local service')
o4 - hkus\s-1-5-19\..\runonce: [_nltide_2] regsvr32 /s /n /i:u shell32 (user 'local service')
o4 - hkus\s-1-5-20\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'network service')
o4 - hkus\s-1-5-20\..\runonce: [_nltide_2] regsvr32 /s /n /i:u shell32 (user 'network service')
o4 - hkus\s-1-5-18\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'system')
o4 - hkus\s-1-5-18\..\runonce: [_nltide_2] regsvr32 /s /n /i:u shell32 (user 'system')
o4 - hkus\.default\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'default user')
o4 - hkus\.default\..\runonce: [_nltide_2] regsvr32 /s /n /i:u shell32 (user 'default user')
o4 - global startup: Adobe gamma loader.lnk = c:\program files\common files\adobe\calibration\adobe gamma loader.exe
o8 - extra context menu item: Download all links with idm - c:\program files\internet download manager\iegetall.htm
o8 - extra context menu item: Download flv video content with idm - c:\program files\internet download manager\iegetvl.htm
o8 - extra context menu item: Download with idm - c:\program files\internet download manager\ieext.htm
o8 - extra context menu item: E&xport to microsoft excel - res://c:\progra~1\micros~2\office12\excel.exe/3000
o9 - extra button: Send to onenote - {2670000a-7350-4f3c-8081-5663ee0c6c49} - c:\progra~1\micros~2\office12\onbttnie.dll
o9 - extra 'tools' menuitem: S&end to onenote - {2670000a-7350-4f3c-8081-5663ee0c6c49} - c:\progra~1\micros~2\office12\onbttnie.dll
o9 - extra button: &virtual keyboard - {4248fe82-7fcb-46ac-b270-339f08212110} - c:\program files\kaspersky lab\kaspersky anti-virus 2011\klwtbbho.dll
o9 - extra button: Paltalk - {4eafef58-eefa-4116-983d-03b49bcbfffe} - c:\program files\paltalk messenger\paltalk.exe
o9 - extra button: Icq7.2 - {72efbfe4-c74f-4187-aefd-73ea3be968d6} - c:\program files\icq7.2\icq.exe
o9 - extra 'tools' menuitem: Icq7.2 - {72efbfe4-c74f-4187-aefd-73ea3be968d6} - c:\program files\icq7.2\icq.exe
o9 - extra button: Research - {92780b25-18cc-41c8-b9be-3c9c571a8263} - c:\progra~1\micros~2\office12\refiebar.dll
o9 - extra button: Urls c&heck - {ccf151d8-d089-449f-a5a4-d9909053f20f} - c:\program files\kaspersky lab\kaspersky anti-virus 2011\klwtbbho.dll
o9 - extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - c:\windows\network diagnostic\xpnetdiag.exe
o9 - extra 'tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - c:\windows\network diagnostic\xpnetdiag.exe
o9 - extra button: Messenger - {fb5f1910-f110-11d2-bb9e-00c04f795683} - c:\program files\messenger\msmsgs.exe
o9 - extra 'tools' menuitem: Windows messenger - {fb5f1910-f110-11d2-bb9e-00c04f795683} - c:\program files\messenger\msmsgs.exe
o16 - dpf: {e2883e8f-472f-4fb0-9522-ac9bf37916a7} - http://platformdl.adobe.com/nos/getplusplus/1.6/gp.cab
o18 - protocol: Groovelocalgws - {88fed34c-f0ca-4636-a375-3cb6248b04cd} - c:\progra~1\micros~2\office12\gr99d3~1.dll
o20 - appinit_dlls: C:\progra~1\kasper~1\kasper~1\mzvkbd3.dll
o22 - sharedtaskscheduler: Browseui preloader - {438755c2-a8ba-11d1-b96b-00a0c90312e1} - c:\windows\system32\browseui.dll
o22 - sharedtaskscheduler: Component categories cache daemon - {8c7461ef-2b13-11d2-be35-3078302c2030} - c:\windows\system32\browseui.dll
o23 - service: Apache2.2 - apache software foundation - c:\appserv\apache2.2\bin\httpd.exe
o23 - service: Apple mobile device - apple inc. - c:\program files\common files\apple\mobile device support\applemobiledeviceservice.exe
o23 - service: Kaspersky anti-virus service (avp) - kaspersky lab zao - c:\program files\kaspersky lab\kaspersky anti-virus 2011\avp.exe
o23 - service: Bonjour service - apple inc. - c:\program files\bonjour\mdnsresponder.exe
o23 - service: Inkjet printer/scanner extended survey program (ijplmsvc) - unknown owner - c:\program files\canon\ijplm\ijplmsvc.exe
o23 - service: Ipod service - apple inc. - c:\program files\ipod\bin\ipodservice.exe
o23 - service: Java quick starter (javaquickstarterservice) - sun microsystems, inc. - c:\program files\java\jre6\bin\jqs.exe
o23 - service: Intel(r) management and security application local management service (lms) - intel corporation - c:\program files\intel\intel(r) management engine components\lms\lms.exe
o23 - service: Mysql - unknown owner - c:\appserv\mysql\bin\mysqld-nt.exe
o23 - service: Intel(r) management & security application user notification service (uns) - intel corporation - c:\program files\intel\intel(r) management engine components\uns\uns.exe
o23 - service: Yahoo! Updater (yahooauservice) - yahoo! Inc. - c:\program files\yahoo!\softwareupdate\yahooauservice.exe
--
end of file - 11182 bytes
وبارك الله فيكم وجعله الله في ميزان حسناتكم