العليمي

زيزوومي نشيط
إنضم
2 أغسطس 2008
المشاركات
106
مستوى التفاعل
0
النقاط
120
غير متصل
الاخوة الكرام
لدي تعليق او تهنيق او بطء شديد في بداية تشغيل الجهاز ولا يزول الا بعد إعادة التشغيل بشكل يدوي
هل هناك حل ؟
 

السلام عليكم ورحمة الله وبركاته


عذرا على نقل الموضوع لـ قسمه المناسب


(1)

عطل جميع برامج الحماية ,,
وحمل هذه الاداة واحفظها على سطح المكتب
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


قم بتشغيلها واتبع الشرح :

ri0jwrauixffv0n3hsk9.png


ستظهر لك هذه الشاشة السوداء ماعليك سوى الإنتظار :


ph5zm97asywocrv26o6n.png



تخبرك الرسالة القادمة بأنه سيتم إعادة التشغيل تلقائيا :


vcugasz5fixcii0xz21f.png



بعد إعادة التشغيل وعند بدء الدخول ستظهر لك هذه النافذه ماعليـك سوى الإنتظار


q7nw2aekeox17qx62fkh.png



هذه هو التقرير قد خرج انسخه والصقه في ردك القادم


2uhlzh9hbxq4i16xu7do.png



(2)
حمل أداة الهايجاك

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

kphzzpsh5mpfqbcw3yi9.png


بعد ان تشغل البرنامج اعمل الاتي :

gjmaza581l881lopj6o7.png


ستظهر لك هذه النافذه .. اتبع الشرح :


11tu2t6gl40lzqlf9yc8.png



ثم ستظهر لك هذه النافذه ::


zcmkecxjzd7pfypb4gdq.png



انسخ التقرير كاملا وارفقه في ردك القادم لتحليله​
 
توقيع : Al jNtEeL
بارك الله فيك من الاستعجال حطيت الموضوع في قسم خطأ
سؤال كيف اعطل برامج الحماية .. لااعرف
 
بارك الله فيك من الاستعجال حطيت الموضوع في قسم خطأ
سؤال كيف اعطل برامج الحماية .. لااعرف

وفيك يا الغالي , لا مشكله عزيزي اطلاقا

ماهو برنامج الحماية لديـك ؟؟
 
توقيع : Al jNtEeL
وليتك تشرح المشكله بالتفيل ومتى تظهر وماهي توقعاتك ,, هل هو من برنامج معين ؟؟

او ماذا
 
توقيع : Al jNtEeL
برنامج الحماية فيرا

وتفصيل المشكلة بداية التشغيل يعلق الجهاز عند فتح صفحة قوقل وعند فتح المفضله يحصل تعليق لاتفتح او تتأخر بشكل كبير
تحس ان هناك مشكلة وليست طبيعية فأقوم واعيد التشغيل من الزر اليدوي المجاور لزر التشغيل وتنتهي المشكلة
 
اول شيء تعطيل برامج الحماية .. كيف ياغالي
 
اخي الكريم
اليوم لااواجه اي مشكلة
لااعلم إحتمال يكون من الاتصال
اتصالي دي اس ال 256 زجول نت
 
اخي الكريم
اليوم لااواجه اي مشكلة
لااعلم إحتمال يكون من الاتصال
اتصالي دي اس ال 256 زجول نت
والله ممكن ياغالي ,, لأن الأفيرا مايثر على الإتصال لأن ليس به جدارا ناري

ثواني اشرح لك كيف تعطيله :q:
 
توقيع : Al jNtEeL
لـ تعطيل الأفيرا اضغط على المحدد باللون الأحمر :

zyzoom-c58c89b2b1.jpg


ثم ستلاحظت تغيير لون الأيقونه إلى احمر بعد ان تجهز كل التقريرن اعد تفعيله :smile:

بـ انتظار التقريرين
 
توقيع : Al jNtEeL
اخي الكريم
هذا هو التقرير علماً انه لم يعد التشغيل + تم انقطاع النت فعملت لصق للتقرير في الوورد ثم اعدت التشغيل انا واشتغل النت
وهذا هو التقرير الاول :
ComboFix 08-08-30.03 - USER 08/31/2008 21:54:58.3 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1256.1.1033.18.677 [GMT 3:00]
Running from: C:\Documents and Settings\USER\Desktop\ComboFix.exe

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.

((((((((((((((((((((((((( Files Created from 2008-07-28 to 2008-08-31 )))))))))))))))))))))))))))))))
.

No new files created in this timespan

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-08-31 19:07 39,493,664 --sha-w C:\WINDOWS\system32\drivers\fidbox.dat
2008-08-31 18:49 448,880 --sha-w C:\WINDOWS\system32\drivers\fidbox.idx
2008-08-30 20:28 --------- d-----w C:\Program Files\GVR
2008-08-05 22:43 --------- d-----w C:\Program Files\Avira
2008-08-05 22:43 --------- d-----w C:\Documents and Settings\All Users\Application Data\Avira
2008-08-05 21:00 --------- d-----w C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
2008-08-04 12:24 --------- d-----w C:\Program Files\MSXML 4.0
2008-07-18 19:10 94,920 ----a-w C:\WINDOWS\system32\cdm.dll
2008-07-18 19:10 53,448 ----a-w C:\WINDOWS\system32\wuauclt.exe
2008-07-18 19:10 45,768 ----a-w C:\WINDOWS\system32\wups2.dll
2008-07-18 19:10 36,552 ----a-w C:\WINDOWS\system32\wups.dll
2008-07-18 19:09 563,912 ----a-w C:\WINDOWS\system32\wuapi.dll
2008-07-18 19:09 325,832 ----a-w C:\WINDOWS\system32\wucltui.dll
2008-07-18 19:09 205,000 ----a-w C:\WINDOWS\system32\wuweb.dll
2008-07-18 19:09 1,811,656 ----a-w C:\WINDOWS\system32\wuaueng.dll
2008-07-18 19:07 270,880 ----a-w C:\WINDOWS\system32\mucltui.dll
2008-07-18 19:07 210,976 ----a-w C:\WINDOWS\system32\muweb.dll
2008-07-07 20:32 253,952 ----a-w C:\WINDOWS\system32\es.dll
2008-06-29 19:00 --------- d-----w C:\Program Files\Smarty Uninstaller Pro
2008-06-24 16:23 74,240 ----a-w C:\WINDOWS\system32\mscms.dll
2008-06-23 15:38 659,456 ----a-w C:\WINDOWS\system32\wininet.dll
2008-06-20 17:41 245,248 ----a-w C:\WINDOWS\system32\mswsock.dll
2008-05-07 05:18 1,287,680 ----a-w C:\WINDOWS\system32\quartz.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [08/04/2004 03:00 PM 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IMJPMIG8.1"="C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" [08/04/2004 03:00 PM 208952]
"MSPY2002"="C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe" [08/04/2004 03:00 PM 59392]
"PHIME2002ASync"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE" [08/04/2004 03:00 PM 455168]
"PHIME2002A"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE" [08/04/2004 03:00 PM 455168]
"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [12/08/2005 08:57 AM 30208]
"LanguageShortcut"="C:\Program Files\CyberLink\PowerDVD\Language\Language.exe" [04/13/2006 09:09 PM 49152]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [04/08/2007 07:22 AM 180269]
"IgfxTray"="C:\WINDOWS\system32\igfxtray.exe" [04/25/2005 05:32 AM 94208]
"HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe" [04/25/2005 05:29 AM 77824]
"Persistence"="C:\WINDOWS\system32\igfxpers.exe" [04/25/2005 05:32 AM 114688]
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [01/12/2006 04:40 PM 155648]
"HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [03/11/2007 09:34 PM 49152]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [04/08/2007 07:25 AM 98304]
"avgnt"="C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [02/12/2008 10:06 AM 262401]
"SoundMan"="SOUNDMAN.EXE" [06/20/2005 04:42 PM 77824 C:\WINDOWS\SOUNDMAN.EXE]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\CTFMON.EXE" [08/04/2004 03:00 PM 15360]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [2007-03-11 21:26:24 210520]
WinZip Quick Pick.lnk - C:\Program Files\WinZip\WZQKPICK.EXE [2007-04-08 07:08:51 122880]
«©م، ¢¬نïé Adobe Reader.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-24 17:05:26 29696]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"ForceClassicControlPanel"= 1 (0x1)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"VIDC.ACDV"= ACDV.dll

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^WinZip Quick Pick.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\WinZip Quick Pick.lnk
backup=C:\WINDOWS\pss\WinZip Quick Pick.lnkCommon Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DataLayer]
--a------ 03/31/2005 07:30 PM 1106944 C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSuiteTrayApplication]
--a------ 03/22/2005 07:39 PM 167936 C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PcSync]
--a------ 04/20/2005 07:57 PM 847872 C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
--a------ 04/08/2007 07:25 AM 98304 C:\Program Files\QuickTime\qttask.exe

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\Skype\\Phone\\Skype.exe"=
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"C:\\Program Files\\MSN Messenger\\msncall.exe"=
"C:\\Documents and Settings\\All Users\\Application Data\\Kaspersky Lab Setup Files\\Kaspersky Anti-Virus 2009\\English\\setup.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"16808:TCP"= 16808:TCP:PORT_16808
"48371:TCP"= 48371:TCP:PORT_48371
"45957:TCP"= 45957:TCP:PORT_45957
"18207:TCP"= 18207:TCP:PORT_18207
"40941:TCP"= 40941:TCP:PORT_40941
"60250:TCP"= 60250:TCP:PORT_60250
"37910:TCP"= 37910:TCP:PORT_37910
"49520:TCP"= 49520:TCP:PORT_49520
"65246:TCP"= 65246:TCP:PORT_65246
"10559:TCP"= 10559:TCP:PORT_10559
"31129:TCP"= 31129:TCP:PORT_31129
"42422:TCP"= 42422:TCP:PORT_42422
"29094:TCP"= 29094:TCP:PORT_29094
"25851:TCP"= 25851:TCP:PORT_25851
"11611:TCP"= 11611:TCP:PORT_11611
"21325:TCP"= 21325:TCP:PORT_21325
"46301:TCP"= 46301:TCP:PORT_46301
"20501:TCP"= 20501:TCP:PORT_20501
"52516:TCP"= 52516:TCP:PORT_52516
"11125:TCP"= 11125:TCP:PORT_11125
"57101:TCP"= 57101:TCP:PORT_57101
"34219:TCP"= 34219:TCP:PORT_34219
"63486:TCP"= 63486:TCP:PORT_63486
"19988:TCP"= 19988:TCP:PORT_19988
"49601:TCP"= 49601:TCP:PORT_49601
"41648:TCP"= 41648:TCP:PORT_41648
"19726:TCP"= 19726:TCP:PORT_19726
"19320:TCP"= 19320:TCP:PORT_19320
"17380:TCP"= 17380:TCP:PORT_17380
"17356:TCP"= 17356:TCP:PORT_17356
"51031:TCP"= 51031:TCP:PORT_51031
"20148:TCP"= 20148:TCP:PORT_20148
"50180:TCP"= 50180:TCP:PORT_50180
"24555:TCP"= 24555:TCP:PORT_24555
"35742:TCP"= 35742:TCP:PORT_35742
"10368:TCP"= 10368:TCP:PORT_10368
"39254:TCP"= 39254:TCP:PORT_39254
"37742:TCP"= 37742:TCP:PORT_37742
"35005:TCP"= 35005:TCP:PORT_35005
"31286:TCP"= 31286:TCP:PORT_31286
"31883:TCP"= 31883:TCP:PORT_31883
"52078:TCP"= 52078:TCP:PORT_52078
"32582:TCP"= 32582:TCP:PORT_32582
"29461:TCP"= 29461:TCP:PORT_29461
"26545:TCP"= 26545:TCP:PORT_26545
"26438:TCP"= 26438:TCP:PORT_26438
"26018:TCP"= 26018:TCP:PORT_26018
"27193:TCP"= 27193:TCP:PORT_27193
"31819:TCP"= 31819:TCP:PORT_31819
"31423:TCP"= 31423:TCP:PORT_31423
"23637:TCP"= 23637:TCP:PORT_23637
"37587:TCP"= 37587:TCP:PORT_37587
"38450:TCP"= 38450:TCP:PORT_38450
"61321:TCP"= 61321:TCP:PORT_61321
"28880:TCP"= 28880:TCP:PORT_28880
"15961:TCP"= 15961:TCP:PORT_15961
"45648:TCP"= 45648:TCP:PORT_45648
"24461:TCP"= 24461:TCP:PORT_24461
"22461:TCP"= 22461:TCP:PORT_22461
"16039:TCP"= 16039:TCP:PORT_16039
"5293:TCP"= 5293:TCP:PORT_5293
"16395:TCP"= 16395:TCP:PORT_16395
"35082:TCP"= 35082:TCP:PORT_35082
"26504:TCP"= 26504:TCP:PORT_26504
"57336:TCP"= 57336:TCP:PORT_57336
"20758:TCP"= 20758:TCP:PORT_20758
"15461:TCP"= 15461:TCP:PORT_15461
"42020:TCP"= 42020:TCP:PORT_42020
"19851:TCP"= 19851:TCP:PORT_19851
"5653:TCP"= 5653:TCP:PORT_5653
"10570:TCP"= 10570:TCP:PORT_10570
"36351:TCP"= 36351:TCP:PORT_36351
"58645:TCP"= 58645:TCP:PORT_58645
"51652:TCP"= 51652:TCP:PORT_51652
"11665:TCP"= 11665:TCP:PORT_11665
"60742:TCP"= 60742:TCP:PORT_60742
"31736:TCP"= 31736:TCP:PORT_31736
"18670:TCP"= 18670:TCP:PORT_18670
"42657:TCP"= 42657:TCP:PORT_42657
"37440:TCP"= 37440:TCP:PORT_37440
"49754:TCP"= 49754:TCP:PORT_49754
"18945:TCP"= 18945:TCP:PORT_18945
"36863:TCP"= 36863:TCP:PORT_36863
"46266:TCP"= 46266:TCP:PORT_46266
"39460:TCP"= 39460:TCP:PORT_39460
"54125:TCP"= 54125:TCP:PORT_54125
"37028:TCP"= 37028:TCP:PORT_37028
"34383:TCP"= 34383:TCP:PORT_34383
"40602:TCP"= 40602:TCP:PORT_40602
"23090:TCP"= 23090:TCP:PORT_23090
"39606:TCP"= 39606:TCP:PORT_39606
"11867:TCP"= 11867:TCP:PORT_11867
"43770:TCP"= 43770:TCP:PORT_43770
"49043:TCP"= 49043:TCP:PORT_49043
"20418:TCP"= 20418:TCP:PORT_20418
"56516:TCP"= 56516:TCP:PORT_56516
"36508:TCP"= 36508:TCP:PORT_36508
"65439:TCP"= 65439:TCP:PORT_65439
"14224:TCP"= 14224:TCP:PORT_14224
"12615:TCP"= 12615:TCP:PORT_12615
"30164:TCP"= 30164:TCP:PORT_30164
"25133:TCP"= 25133:TCP:PORT_25133
"19289:TCP"= 19289:TCP:PORT_19289
"9771:TCP"= 9771:TCP:PORT_9771
"62986:TCP"= 62986:TCP:PORT_62986
"45954:TCP"= 45954:TCP:PORT_45954
"26930:TCP"= 26930:TCP:PORT_26930
"36680:TCP"= 36680:TCP:PORT_36680
"52820:TCP"= 52820:TCP:PORT_52820
"19845:TCP"= 19845:TCP:PORT_19845
"22523:TCP"= 22523:TCP:PORT_22523
"14601:TCP"= 14601:TCP:PORT_14601
"38137:TCP"= 38137:TCP:PORT_38137
"22410:TCP"= 22410:TCP:PORT_22410
"24781:TCP"= 24781:TCP:PORT_24781
"22365:TCP"= 22365:TCP:PORT_22365
"48236:TCP"= 48236:TCP:PORT_48236
"36567:TCP"= 36567:TCP:PORT_36567
"47118:TCP"= 47118:TCP:PORT_47118
"39985:TCP"= 39985:TCP:PORT_39985
"27336:TCP"= 27336:TCP:PORT_27336
"28573:TCP"= 28573:TCP:PORT_28573
"36318:TCP"= 36318:TCP:PORT_36318
"60208:TCP"= 60208:TCP:PORT_60208
"9951:TCP"= 9951:TCP:PORT_9951
"63411:TCP"= 63411:TCP:PORT_63411
"45191:TCP"= 45191:TCP:PORT_45191
"23191:TCP"= 23191:TCP:PORT_23191
"40630:TCP"= 40630:TCP:PORT_40630
"39664:TCP"= 39664:TCP:PORT_39664
"23883:TCP"= 23883:TCP:PORT_23883
"23722:TCP"= 23722:TCP:PORT_23722
"45856:TCP"= 45856:TCP:PORT_45856
"48055:TCP"= 48055:TCP:PORT_48055
"56563:TCP"= 56563:TCP:PORT_56563
"44825:TCP"= 44825:TCP:PORT_44825
"49848:TCP"= 49848:TCP:PORT_49848
"41048:TCP"= 41048:TCP:PORT_41048
"49445:TCP"= 49445:TCP:PORT_49445
"51508:TCP"= 51508:TCP:PORT_51508
"49363:TCP"= 49363:TCP:PORT_49363
"33555:TCP"= 33555:TCP:PORT_33555
"33645:TCP"= 33645:TCP:PORT_33645
"16528:TCP"= 16528:TCP:PORT_16528
"37351:TCP"= 37351:TCP:PORT_37351
"36570:TCP"= 36570:TCP:PORT_36570
"31383:TCP"= 31383:TCP:PORT_31383
"19816:TCP"= 19816:TCP:PORT_19816
"52508:TCP"= 52508:TCP:PORT_52508
"24633:TCP"= 24633:TCP:PORT_24633
"32970:TCP"= 32970:TCP:PORT_32970
"34055:TCP"= 34055:TCP:PORT_34055
"46789:TCP"= 46789:TCP:PORT_46789
"9212:TCP"= 9212:TCP:PORT_9212
"48914:TCP"= 48914:TCP:PORT_48914
"50117:TCP"= 50117:TCP:PORT_50117
"22039:TCP"= 22039:TCP:PORT_22039
"26523:TCP"= 26523:TCP:PORT_26523
"30508:TCP"= 30508:TCP:PORT_30508
"23117:TCP"= 23117:TCP:PORT_23117
"33289:TCP"= 33289:TCP:PORT_33289
"40570:TCP"= 40570:TCP:PORT_40570
"25633:TCP"= 25633:TCP:PORT_25633
"38367:TCP"= 38367:TCP:PORT_38367
"28391:TCP"= 28391:TCP:PORT_28391
"20836:TCP"= 20836:TCP:PORT_20836
"24336:TCP"= 24336:TCP:PORT_24336
"45340:TCP"= 45340:TCP:PORT_45340
"8911:TCP"= 8911:TCP:PORT_8911
"59633:TCP"= 59633:TCP:PORT_59633
"44070:TCP"= 44070:TCP:PORT_44070
"17426:TCP"= 17426:TCP:PORT_17426
"52914:TCP"= 52914:TCP:PORT_52914
"58867:TCP"= 58867:TCP:PORT_58867
"22613:TCP"= 22613:TCP:PORT_22613
"26466:TCP"= 26466:TCP:PORT_26466
"7379:TCP"= 7379:TCP:PORT_7379
"49148:TCP"= 49148:TCP:PORT_49148
"18165:TCP"= 18165:TCP:PORT_18165
"31738:TCP"= 31738:TCP:PORT_31738
"27973:TCP"= 27973:TCP:PORT_27973
"37961:TCP"= 37961:TCP:PORT_37961
"29766:TCP"= 29766:TCP:PORT_29766
"40961:TCP"= 40961:TCP:PORT_40961
"33887:TCP"= 33887:TCP:PORT_33887
"40539:TCP"= 40539:TCP:PORT_40539
"15825:TCP"= 15825:TCP:PORT_15825
"41250:TCP"= 41250:TCP:PORT_41250
"11910:TCP"= 11910:TCP:PORT_11910
"19156:TCP"= 19156:TCP:PORT_19156
"29075:TCP"= 29075:TCP:PORT_29075
"35336:TCP"= 35336:TCP:PORT_35336
"29726:TCP"= 29726:TCP:PORT_29726
"13957:TCP"= 13957:TCP:PORT_13957
"43985:TCP"= 43985:TCP:PORT_43985
"27278:TCP"= 27278:TCP:PORT_27278
"49133:TCP"= 49133:TCP:PORT_49133
"60485:TCP"= 60485:TCP:PORT_60485
"25871:TCP"= 25871:TCP:PORT_25871
"44235:TCP"= 44235:TCP:PORT_44235
"7816:TCP"= 7816:TCP:PORT_7816
"9595:TCP"= 9595:TCP:PORT_9595
"30371:TCP"= 30371:TCP:PORT_30371
"51898:TCP"= 51898:TCP:PORT_51898
"42101:TCP"= 42101:TCP:PORT_42101
"57776:TCP"= 57776:TCP:PORT_57776
"33836:TCP"= 33836:TCP:PORT_33836
"36836:TCP"= 36836:TCP:PORT_36836
"32148:TCP"= 32148:TCP:PORT_32148
"34336:TCP"= 34336:TCP:PORT_34336
"49871:TCP"= 49871:TCP:PORT_49871
"59023:TCP"= 59023:TCP:PORT_59023
"42023:TCP"= 42023:TCP:PORT_42023
"33145:TCP"= 33145:TCP:PORT_33145
"61305:TCP"= 61305:TCP:PORT_61305
"41278:TCP"= 41278:TCP:PORT_41278
"36594:TCP"= 36594:TCP:PORT_36594
"8898:TCP"= 8898:TCP:PORT_8898
"44326:TCP"= 44326:TCP:PORT_44326
"8238:TCP"= 8238:TCP:PORT_8238
"12789:TCP"= 12789:TCP:PORT_12789
"57114:TCP"= 57114:TCP:PORT_57114
"27896:TCP"= 27896:TCP:PORT_27896
"32164:TCP"= 32164:TCP:PORT_32164
"27856:TCP"= 27856:TCP:PORT_27856
"34075:TCP"= 34075:TCP:PORT_34075
"22141:TCP"= 22141:TCP:PORT_22141
"9008:TCP"= 9008:TCP:PORT_9008
"49723:TCP"= 49723:TCP:PORT_49723
"16469:TCP"= 16469:TCP:PORT_16469
"22445:TCP"= 22445:TCP:PORT_22445
"31971:TCP"= 31971:TCP:PORT_31971
"14004:TCP"= 14004:TCP:PORT_14004
"43114:TCP"= 43114:TCP:PORT_43114
"57266:TCP"= 57266:TCP:PORT_57266
"54930:TCP"= 54930:TCP:PORT_54930
"49226:TCP"= 49226:TCP:PORT_49226
"37141:TCP"= 37141:TCP:PORT_37141
"34121:TCP"= 34121:TCP:PORT_34121
"12988:TCP"= 12988:TCP:PORT_12988
"48476:TCP"= 48476:TCP:PORT_48476
"16896:TCP"= 16896:TCP:PORT_16896
"22571:TCP"= 22571:TCP:PORT_22571
"25043:TCP"= 25043:TCP:PORT_25043
"63365:TCP"= 63365:TCP:PORT_63365
"25075:TCP"= 25075:TCP:PORT_25075
"40242:TCP"= 40242:TCP:PORT_40242
"24028:TCP"= 24028:TCP:PORT_24028
"6970:TCP"= 6970:TCP:PORT_6970
"12676:TCP"= 12676:TCP:PORT_12676
"31356:TCP"= 31356:TCP:PORT_31356
"40851:TCP"= 40851:TCP:PORT_40851
"58172:TCP"= 58172:TCP:PORT_58172
"37221:TCP"= 37221:TCP:PORT_37221
"7274:TCP"= 7274:TCP:PORT_7274
"28236:TCP"= 28236:TCP:PORT_28236
"15793:TCP"= 15793:TCP:PORT_15793
"64328:TCP"= 64328:TCP:PORT_64328
"49060:TCP"= 49060:TCP:PORT_49060
"19660:TCP"= 19660:TCP:PORT_19660
"59195:TCP"= 59195:TCP:PORT_59195
"52461:TCP"= 52461:TCP:PORT_52461
"52992:TCP"= 52992:TCP:PORT_52992
"21062:TCP"= 21062:TCP:PORT_21062
"31047:TCP"= 31047:TCP:PORT_31047
"42364:TCP"= 42364:TCP:PORT_42364
"30430:TCP"= 30430:TCP:PORT_30430
"17340:TCP"= 17340:TCP:PORT_17340
"55470:TCP"= 55470:TCP:PORT_55470
"38711:TCP"= 38711:TCP:PORT_38711
"20653:TCP"= 20653:TCP:PORT_20653
"36760:TCP"= 36760:TCP:PORT_36760
"19386:TCP"= 19386:TCP:PORT_19386
"31231:TCP"= 31231:TCP:PORT_31231
"25211:TCP"= 25211:TCP:PORT_25211
"17410:TCP"= 17410:TCP:PORT_17410
"34804:TCP"= 34804:TCP:PORT_34804
"48068:TCP"= 48068:TCP:PORT_48068
"16582:TCP"= 16582:TCP:PORT_16582
"43513:TCP"= 43513:TCP:PORT_43513
"33996:TCP"= 33996:TCP:PORT_33996
"33441:TCP"= 33441:TCP:PORT_33441
"32606:TCP"= 32606:TCP:PORT_32606
"55448:TCP"= 55448:TCP:PORT_55448
"21756:TCP"= 21756:TCP:PORT_21756
"34690:TCP"= 34690:TCP:PORT_34690
"49742:TCP"= 49742:TCP:PORT_49742
"22450:TCP"= 22450:TCP:PORT_22450
"61348:TCP"= 61348:TCP:PORT_61348
"54739:TCP"= 54739:TCP:PORT_54739
"35502:TCP"= 35502:TCP:PORT_35502
"30957:TCP"= 30957:TCP:PORT_30957
"37516:TCP"= 37516:TCP:PORT_37516
"35157:TCP"= 35157:TCP:PORT_35157
"42711:TCP"= 42711:TCP:PORT_42711
"44539:TCP"= 44539:TCP:PORT_44539
"32211:TCP"= 32211:TCP:PORT_32211
"33523:TCP"= 33523:TCP:PORT_33523
"54430:TCP"= 54430:TCP:PORT_54430
"34136:TCP"= 34136:TCP:PORT_34136
"32541:TCP"= 32541:TCP:PORT_32541
"60367:TCP"= 60367:TCP:PORT_60367
"27538:TCP"= 27538:TCP:PORT_27538
"56127:TCP"= 56127:TCP:PORT_56127
"64211:TCP"= 64211:TCP:PORT_64211
"13901:TCP"= 13901:TCP:PORT_13901
"14055:TCP"= 14055:TCP:PORT_14055
"53445:TCP"= 53445:TCP:PORT_53445
"35523:TCP"= 35523:TCP:PORT_35523
"53985:TCP"= 53985:TCP:PORT_53985
"57453:TCP"= 57453:TCP:PORT_57453
"8082:TCP"= 8082:TCP:PORT_8082
"11137:TCP"= 11137:TCP:PORT_11137
"57871:TCP"= 57871:TCP:PORT_57871
"52951:TCP"= 52951:TCP:PORT_52951
"20009:TCP"= 20009:TCP:PORT_20009
"14176:TCP"= 14176:TCP:PORT_14176
"39188:TCP"= 39188:TCP:PORT_39188
"11410:TCP"= 11410:TCP:PORT_11410
"40241:TCP"= 40241:TCP:PORT_40241
"10123:TCP"= 10123:TCP:PORT_10123
"57016:TCP"= 57016:TCP:PORT_57016
"60365:TCP"= 60365:TCP:PORT_60365
"8575:TCP"= 8575:TCP:PORT_8575
"9000:TCP"= 9000:TCP:PORT_9000
"6770:TCP"= 6770:TCP:PORT_6770
"58086:TCP"= 58086:TCP:PORT_58086
"8448:TCP"= 8448:TCP:PORT_8448
"31091:TCP"= 31091:TCP:PORT_31091
"11184:TCP"= 11184:TCP:PORT_11184
"27101:TCP"= 27101:TCP:PORT_27101
"49203:TCP"= 49203:TCP:PORT_49203
"40153:TCP"= 40153:TCP:PORT_40153
"43110:TCP"= 43110:TCP:PORT_43110
"51539:TCP"= 51539:TCP:PORT_51539
"40846:TCP"= 40846:TCP:PORT_40846
"27508:TCP"= 27508:TCP:PORT_27508
"61892:TCP"= 61892:TCP:PORT_61892
"36133:TCP"= 36133:TCP:PORT_36133
"35023:TCP"= 35023:TCP:PORT_35023
"32794:TCP"= 32794:TCP:PORT_32794
"51383:TCP"= 51383:TCP:PORT_51383
"45539:TCP"= 45539:TCP:PORT_45539
"24735:TCP"= 24735:TCP:PORT_24735
"6348:TCP"= 6348:TCP:PORT_6348
"15226:TCP"= 15226:TCP:PORT_15226
"41217:TCP"= 41217:TCP:PORT_41217
"64630:TCP"= 64630:TCP:PORT_64630
"42180:TCP"= 42180:TCP:PORT_42180
"37431:TCP"= 37431:TCP:PORT_37431
"43016:TCP"= 43016:TCP:PORT_43016
"33938:TCP"= 33938:TCP:PORT_33938
"12738:TCP"= 12738:TCP:PORT_12738
"39285:TCP"= 39285:TCP:PORT_39285
"58133:TCP"= 58133:TCP:PORT_58133
"12826:TCP"= 12826:TCP:PORT_12826
"37551:TCP"= 37551:TCP:PORT_37551
"44836:TCP"= 44836:TCP:PORT_44836
"22231:TCP"= 22231:TCP:PORT_22231
"10235:TCP"= 10235:TCP:PORT_10235
"42029:TCP"= 42029:TCP:PORT_42029
"53148:TCP"= 53148:TCP:PORT_53148
"50738:TCP"= 50738:TCP:PORT_50738
"41226:TCP"= 41226:TCP:PORT_41226
"38539:TCP"= 38539:TCP:PORT_38539
"40336:TCP"= 40336:TCP:PORT_40336
"11696:TCP"= 11696:TCP:PORT_11696
"20795:TCP"= 20795:TCP:PORT_20795
"50825:TCP"= 50825:TCP:PORT_50825
"7520:TCP"= 7520:TCP:PORT_7520
"36101:TCP"= 36101:TCP:PORT_36101
"48066:TCP"= 48066:TCP:PORT_48066
"62117:TCP"= 62117:TCP:PORT_62117
"38445:TCP"= 38445:TCP:PORT_38445
"63164:TCP"= 63164:TCP:PORT_63164
"19488:TCP"= 19488:TCP:PORT_19488
"65253:TCP"= 65253:TCP:PORT_65253
"53528:TCP"= 53528:TCP:PORT_53528
"14668:TCP"= 14668:TCP:PORT_14668
"61691:TCP"= 61691:TCP:PORT_61691
"6946:TCP"= 6946:TCP:PORT_6946
"41703:TCP"= 41703:TCP:PORT_41703
"16082:TCP"= 16082:TCP:PORT_16082
"6649:TCP"= 6649:TCP:PORT_6649
"55058:TCP"= 55058:TCP:PORT_55058
"45695:TCP"= 45695:TCP:PORT_45695
"63778:TCP"= 63778:TCP:PORT_63778
"64180:TCP"= 64180:TCP:PORT_64180
"9184:TCP"= 9184:TCP:PORT_9184
"61083:TCP"= 61083:TCP:PORT_61083
"10254:TCP"= 10254:TCP:PORT_10254
"60075:TCP"= 60075:TCP:PORT_60075
"52898:TCP"= 52898:TCP:PORT_52898
"46168:TCP"= 46168:TCP:PORT_46168
"6914:TCP"= 6914:TCP:PORT_6914
"6226:TCP"= 6226:TCP:PORT_6226
"30101:TCP"= 30101:TCP:PORT_30101
"21883:TCP"= 21883:TCP:PORT_21883
"36590:TCP"= 36590:TCP:PORT_36590
"24730:TCP"= 24730:TCP:PORT_24730
"47277:TCP"= 47277:TCP:PORT_47277
"13836:TCP"= 13836:TCP:PORT_13836
"8492:TCP"= 8492:TCP:PORT_8492
"5770:TCP"= 5770:TCP:PORT_5770
"44873:TCP"= 44873:TCP:PORT_44873
"47742:TCP"= 47742:TCP:PORT_47742
"34360:TCP"= 34360:TCP:PORT_34360
"59051:TCP"= 59051:TCP:PORT_59051
"38074:TCP"= 38074:TCP:PORT_38074
"12772:TCP"= 12772:TCP:PORT_12772
"55618:TCP"= 55618:TCP:PORT_55618
"14503:TCP"= 14503:TCP:PORT_14503
"51363:TCP"= 51363:TCP:PORT_51363
"31700:TCP"= 31700:TCP:PORT_31700
"53926:TCP"= 53926:TCP:PORT_53926
"65465:TCP"= 65465:TCP:PORT_65465
"12807:TCP"= 12807:TCP:PORT_12807
"27919:TCP"= 27919:TCP:PORT_27919
"35445:TCP"= 35445:TCP:PORT_35445
"30681:TCP"= 30681:TCP:PORT_30681
"52723:TCP"= 52723:TCP:PORT_52723
"27656:TCP"= 27656:TCP:PORT_27656
"59558:TCP"= 59558:TCP:PORT_59558
"43683:TCP"= 43683:TCP:PORT_43683
"11963:TCP"= 11963:TCP:PORT_11963
"23375:TCP"= 23375:TCP:PORT_23375
"27784:TCP"= 27784:TCP:PORT_27784
"45075:TCP"= 45075:TCP:PORT_45075
"16086:TCP"= 16086:TCP:PORT_16086
"47821:TCP"= 47821:TCP:PORT_47821
"30848:TCP"= 30848:TCP:PORT_30848
"39776:TCP"= 39776:TCP:PORT_39776
"61121:TCP"= 61121:TCP:PORT_61121
"35598:TCP"= 35598:TCP:PORT_35598
"59552:TCP"= 59552:TCP:PORT_59552
"42348:TCP"= 42348:TCP:PORT_42348
"32156:TCP"= 32156:TCP:PORT_32156
"22367:TCP"= 22367:TCP:PORT_22367
"15665:TCP"= 15665:TCP:PORT_15665
"14641:TCP"= 14641:TCP:PORT_14641
"37707:TCP"= 37707:TCP:PORT_37707
"36206:TCP"= 36206:TCP:PORT_36206
"8051:TCP"= 8051:TCP:PORT_8051
"8074:TCP"= 8074:TCP:PORT_8074
"13413:TCP"= 13413:TCP:PORT_13413
"43621:TCP"= 43621:TCP:PORT_43621
"53493:TCP"= 53493:TCP:PORT_53493
"36020:TCP"= 36020:TCP:PORT_36020
"63543:TCP"= 63543:TCP:PORT_63543
"59110:TCP"= 59110:TCP:PORT_59110
"5523:TCP"= 5523:TCP:PORT_5523
"52578:TCP"= 52578:TCP:PORT_52578
"16028:TCP"= 16028:TCP:PORT_16028
"37489:TCP"= 37489:TCP:PORT_37489
"54098:TCP"= 54098:TCP:PORT_54098
"34808:TCP"= 34808:TCP:PORT_34808
"17844:TCP"= 17844:TCP:PORT_17844
"51258:TCP"= 51258:TCP:PORT_51258
"14707:TCP"= 14707:TCP:PORT_14707
"63613:TCP"= 63613:TCP:PORT_63613
"41325:TCP"= 41325:TCP:PORT_41325
"13504:TCP"= 13504:TCP:PORT_13504
"58176:TCP"= 58176:TCP:PORT_58176
"56871:TCP"= 56871:TCP:PORT_56871
"19368:TCP"= 19368:TCP:PORT_19368
"8435:TCP"= 8435:TCP:PORT_8435
"62703:TCP"= 62703:TCP:PORT_62703
"19994:TCP"= 19994:TCP:PORT_19994
"30648:TCP"= 30648:TCP:PORT_30648
"50364:TCP"= 50364:TCP:PORT_50364
"51869:TCP"= 51869:TCP:PORT_51869
"38722:TCP"= 38722:TCP:PORT_38722
"42575:TCP"= 42575:TCP:PORT_42575
"59305:TCP"= 59305:TCP:PORT_59305
"56551:TCP"= 56551:TCP:PORT_56551
"19613:TCP"= 19613:TCP:PORT_19613
"36574:TCP"= 36574:TCP:PORT_36574
"47699:TCP"= 47699:TCP:PORT_47699
"35579:TCP"= 35579:TCP:PORT_35579
"62485:TCP"= 62485:TCP:PORT_62485
"54326:TCP"= 54326:TCP:PORT_54326
"36106:TCP"= 36106:TCP:PORT_36106
"57027:TCP"= 57027:TCP:PORT_57027
"49860:TCP"= 49860:TCP:PORT_49860
"49516:TCP"= 49516:TCP:PORT_49516
"49169:TCP"= 49169:TCP:PORT_49169
"51726:TCP"= 51726:TCP:PORT_51726
"48293:TCP"= 48293:TCP:PORT_48293
"26086:TCP"= 26086:TCP:PORT_26086
"27492:TCP"= 27492:TCP:PORT_27492
"15852:TCP"= 15852:TCP:PORT_15852
"38346:TCP"= 38346:TCP:PORT_38346
"45027:TCP"= 45027:TCP:PORT_45027
"52211:TCP"= 52211:TCP:PORT_52211
"20730:TCP"= 20730:TCP:PORT_20730
"42685:TCP"= 42685:TCP:PORT_42685
"8242:TCP"= 8242:TCP:PORT_8242
"35443:TCP"= 35443:TCP:PORT_35443
"61230:TCP"= 61230:TCP:PORT_61230
"55621:TCP"= 55621:TCP:PORT_55621
"16161:TCP"= 16161:TCP:PORT_16161
"17640:TCP"= 17640:TCP:PORT_17640
"53617:TCP"= 53617:TCP:PORT_53617
"43445:TCP"= 43445:TCP:PORT_43445
"60298:TCP"= 60298:TCP:PORT_60298
"39078:TCP"= 39078:TCP:PORT_39078
"59178:TCP"= 59178:TCP:PORT_59178
"60855:TCP"= 60855:TCP:PORT_60855
"17910:TCP"= 17910:TCP:PORT_17910
"22093:TCP"= 22093:TCP:PORT_22093
"54836:TCP"= 54836:TCP:PORT_54836
"9348:TCP"= 9348:TCP:PORT_9348
"38449:TCP"= 38449:TCP:PORT_38449
"58081:TCP"= 58081:TCP:PORT_58081
"63332:TCP"= 63332:TCP:PORT_63332
"9716:TCP"= 9716:TCP:PORT_9716
"28176:TCP"= 28176:TCP:PORT_28176
"54422:TCP"= 54422:TCP:PORT_54422
"11992:TCP"= 11992:TCP:PORT_11992
"46793:TCP"= 46793:TCP:PORT_46793
"15043:TCP"= 15043:TCP:PORT_15043
"23348:TCP"= 23348:TCP:PORT_23348
"58590:TCP"= 58590:TCP:PORT_58590
"12867:TCP"= 12867:TCP:PORT_12867
"62036:TCP"= 62036:TCP:PORT_62036
"48410:TCP"= 48410:TCP:PORT_48410
"22832:TCP"= 22832:TCP:PORT_22832
"29702:TCP"= 29702:TCP:PORT_29702
"6392:TCP"= 6392:TCP:PORT_6392
"51558:TCP"= 51558:TCP:PORT_51558
"59366:TCP"= 59366:TCP:PORT_59366
"32055:TCP"= 32055:TCP:PORT_32055
"7579:TCP"= 7579:TCP:PORT_7579
"23743:TCP"= 23743:TCP:PORT_23743
"25497:TCP"= 25497:TCP:PORT_25497
"54113:TCP"= 54113:TCP:PORT_54113
"64783:TCP"= 64783:TCP:PORT_64783
"63860:TCP"= 63860:TCP:PORT_63860
"47798:TCP"= 47798:TCP:PORT_47798
"48527:TCP"= 48527:TCP:PORT_48527
"53277:TCP"= 53277:TCP:PORT_53277
"27836:TCP"= 27836:TCP:PORT_27836
"47590:TCP"= 47590:TCP:PORT_47590
"53685:TCP"= 53685:TCP:PORT_53685
"15238:TCP"= 15238:TCP:PORT_15238
"27991:TCP"= 27991:TCP:PORT_27991
"40231:TCP"= 40231:TCP:PORT_40231
"18930:TCP"= 18930:TCP:PORT_18930
"56965:TCP"= 56965:TCP:PORT_56965
"59988:TCP"= 59988:TCP:PORT_59988
"15016:TCP"= 15016:TCP:PORT_15016
"22344:TCP"= 22344:TCP:PORT_22344
"30573:TCP"= 30573:TCP:PORT_30573
"60118:TCP"= 60118:TCP:PORT_60118
"19238:TCP"= 19238:TCP:PORT_19238
"56931:TCP"= 56931:TCP:PORT_56931
"55458:TCP"= 55458:TCP:PORT_55458
"52371:TCP"= 52371:TCP:PORT_52371
"7570:TCP"= 7570:TCP:PORT_7570
"26390:TCP"= 26390:TCP:PORT_26390
"18435:TCP"= 18435:TCP:PORT_18435
"65402:TCP"= 65402:TCP:PORT_65402
"59220:TCP"= 59220:TCP:PORT_59220
"32034:TCP"= 32034:TCP:PORT_32034
"12951:TCP"= 12951:TCP:PORT_12951
"41287:TCP"= 41287:TCP:PORT_41287
"59532:TCP"= 59532:TCP:PORT_59532
"64258:TCP"= 64258:TCP:PORT_64258
"56485:TCP"= 56485:TCP:PORT_56485
"15816:TCP"= 15816:TCP:PORT_15816
"26226:TCP"= 26226:TCP:PORT_26226
"59106:TCP"= 59106:TCP:PORT_59106
"46433:TCP"= 46433:TCP:PORT_46433
"37430:TCP"= 37430:TCP:PORT_37430
"39555:TCP"= 39555:TCP:PORT_39555
"31855:TCP"= 31855:TCP:PORT_31855
"32825:TCP"= 32825:TCP:PORT_32825
"54277:TCP"= 54277:TCP:PORT_54277
"55316:TCP"= 55316:TCP:PORT_55316
"35590:TCP"= 35590:TCP:PORT_35590
"32136:TCP"= 32136:TCP:PORT_32136
"60683:TCP"= 60683:TCP:PORT_60683
"10961:TCP"= 10961:TCP:PORT_10961
"46777:TCP"= 46777:TCP:PORT_46777
"23648:TCP"= 23648:TCP:PORT_23648
"18270:TCP"= 18270:TCP:PORT_18270
"54465:TCP"= 54465:TCP:PORT_54465
"11586:TCP"= 11586:TCP:PORT_11586
"14445:TCP"= 14445:TCP:PORT_14445
"27031:TCP"= 27031:TCP:PORT_27031
"59570:TCP"= 59570:TCP:PORT_59570
"56922:TCP"= 56922:TCP:PORT_56922
"26898:TCP"= 26898:TCP:PORT_26898
"16055:TCP"= 16055:TCP:PORT_16055
"56125:TCP"= 56125:TCP:PORT_56125
"14867:TCP"= 14867:TCP:PORT_14867
"23488:TCP"= 23488:TCP:PORT_23488
"56215:TCP"= 56215:TCP:PORT_56215
"45430:TCP"= 45430:TCP:PORT_45430
"53023:TCP"= 53023:TCP:PORT_53023
"32285:TCP"= 32285:TCP:PORT_32285
"8695:TCP"= 8695:TCP:PORT_8695
"63465:TCP"= 63465:TCP:PORT_63465
"35043:TCP"= 35043:TCP:PORT_35043
"46746:TCP"= 46746:TCP:PORT_46746
"42117:TCP"= 42117:TCP:PORT_42117
"58121:TCP"= 58121:TCP:PORT_58121
"51513:TCP"= 51513:TCP:PORT_51513
"54868:TCP"= 54868:TCP:PORT_54868
"29143:TCP"= 29143:TCP:PORT_29143
"9426:TCP"= 9426:TCP:PORT_9426
"56751:TCP"= 56751:TCP:PORT_56751
"41293:TCP"= 41293:TCP:PORT_41293
"10305:TCP"= 10305:TCP:PORT_10305
"17047:TCP"= 17047:TCP:PORT_17047
"45855:TCP"= 45855:TCP:PORT_45855
"44754:TCP"= 44754:TCP:PORT_44754
"33133:TCP"= 33133:TCP:PORT_33133
"49402:TCP"= 49402:TCP:PORT_49402
"50407:TCP"= 50407:TCP:PORT_50407
"55340:TCP"= 55340:TCP:PORT_55340
"46490:TCP"= 46490:TCP:PORT_46490
"34965:TCP"= 34965:TCP:PORT_34965
"64235:TCP"= 64235:TCP:PORT_64235
"17289:TCP"= 17289:TCP:PORT_17289
"21727:TCP"= 21727:TCP:PORT_21727
"44750:TCP"= 44750:TCP:PORT_44750
"59136:TCP"= 59136:TCP:PORT_59136
"56298:TCP"= 56298:TCP:PORT_56298
"61543:TCP"= 61543:TCP:PORT_61543
"10918:TCP"= 10918:TCP:PORT_10918
"52965:TCP"= 52965:TCP:PORT_52965
"44807:TCP"= 44807:TCP:PORT_44807
"45992:TCP"= 45992:TCP:PORT_45992
"58660:TCP"= 58660:TCP:PORT_58660
"57311:TCP"= 57311:TCP:PORT_57311
"27680:TCP"= 27680:TCP:PORT_27680
"62285:TCP"= 62285:TCP:PORT_62285
"6766:TCP"= 6766:TCP:PORT_6766
"31465:TCP"= 31465:TCP:PORT_31465
"51145:TCP"= 51145:TCP:PORT_51145
"54418:TCP"= 54418:TCP:PORT_54418
"28308:TCP"= 28308:TCP:PORT_28308
"59793:TCP"= 59793:TCP:PORT_59793
"31673:TCP"= 31673:TCP:PORT_31673
"51965:TCP"= 51965:TCP:PORT_51965
"59574:TCP"= 59574:TCP:PORT_59574
"61243:TCP"= 61243:TCP:PORT_61243
"17023:TCP"= 17023:TCP:PORT_17023
"22938:TCP"= 22938:TCP:PORT_22938
"62022:TCP"= 62022:TCP:PORT_62022
"56277:TCP"= 56277:TCP:PORT_56277
"47027:TCP"= 47027:TCP:PORT_47027
"11723:TCP"= 11723:TCP:PORT_11723
"26871:TCP"= 26871:TCP:PORT_26871
"6448:TCP"= 6448:TCP:PORT_6448
"8028:TCP"= 8028:TCP:PORT_8028
"45808:TCP"= 45808:TCP:PORT_45808
"60965:TCP"= 60965:TCP:PORT_60965
"18336:TCP"= 18336:TCP:PORT_18336
"32398:TCP"= 32398:TCP:PORT_32398
"41168:TCP"= 41168:TCP:PORT_41168
"49961:TCP"= 49961:TCP:PORT_49961
"47949:TCP"= 47949:TCP:PORT_47949
"37418:TCP"= 37418:TCP:PORT_37418
"30391:TCP"= 30391:TCP:PORT_30391
"49508:TCP"= 49508:TCP:PORT_49508
"25229:TCP"= 25229:TCP:PORT_25229
"43301:TCP"= 43301:TCP:PORT_43301
"52164:TCP"= 52164:TCP:PORT_52164
"48168:TCP"= 48168:TCP:PORT_48168
"24618:TCP"= 24618:TCP:PORT_24618
"62707:TCP"= 62707:TCP:PORT_62707
"56148:TCP"= 56148:TCP:PORT_56148
"24518:TCP"= 24518:TCP:PORT_24518
"31633:TCP"= 31633:TCP:PORT_31633
"7633:TCP"= 7633:TCP:PORT_7633
"25402:TCP"= 25402:TCP:PORT_25402
"60626:TCP"= 60626:TCP:PORT_60626
"17961:TCP"= 17961:TCP:PORT_17961
"41606:TCP"= 41606:TCP:PORT_41606
"55648:TCP"= 55648:TCP:PORT_55648
"22195:TCP"= 22195:TCP:PORT_22195
"42450:TCP"= 42450:TCP:PORT_42450
"53110:TCP"= 53110:TCP:PORT_53110
"45536:TCP"= 45536:TCP:PORT_45536
"24868:TCP"= 24868:TCP:PORT_24868
"18170:TCP"= 18170:TCP:PORT_18170
"62622:TCP"= 62622:TCP:PORT_62622
"61996:TCP"= 61996:TCP:PORT_61996
"36716:TCP"= 36716:TCP:PORT_36716
"24086:TCP"= 24086:TCP:PORT_24086
"20731:TCP"= 20731:TCP:PORT_20731
"6851:TCP"= 6851:TCP:PORT_6851
"38580:TCP"= 38580:TCP:PORT_38580
"7290:TCP"= 7290:TCP:PORT_7290
"63726:TCP"= 63726:TCP:PORT_63726
"17976:TCP"= 17976:TCP:PORT_17976
"26746:TCP"= 26746:TCP:PORT_26746
"30138:TCP"= 30138:TCP:PORT_30138
"58027:TCP"= 58027:TCP:PORT_58027
"24830:TCP"= 24830:TCP:PORT_24830
"16638:TCP"= 16638:TCP:PORT_16638
"52011:TCP"= 52011:TCP:PORT_52011
"34070:TCP"= 34070:TCP:PORT_34070
"54641:TCP"= 54641:TCP:PORT_54641
"44789:TCP"= 44789:TCP:PORT_44789
"37629:TCP"= 37629:TCP:PORT_37629
"9559:TCP"= 9559:TCP:PORT_9559
"19295:TCP"= 19295:TCP:PORT_19295
"6976:TCP"= 6976:TCP:PORT_6976
"48320:TCP"= 48320:TCP:PORT_48320
"55871:TCP"= 55871:TCP:PORT_55871
"54408:TCP"= 54408:TCP:PORT_54408
"9077:TCP"= 9077:TCP:PORT_9077
"41016:TCP"= 41016:TCP:PORT_41016
"58480:TCP"= 58480:TCP:PORT_58480
"45943:TCP"= 45943:TCP:PORT_45943
"61840:TCP"= 61840:TCP:PORT_61840
"19309:TCP"= 19309:TCP:PORT_19309
"23786:TCP"= 23786:TCP:PORT_23786
"53559:TCP"= 53559:TCP:PORT_53559
"48855:TCP"= 48855:TCP:PORT_48855
"44681:TCP"= 44681:TCP:PORT_44681
"14762:TCP"= 14762:TCP:PORT_14762
"35789:TCP"= 35789:TCP:PORT_35789
"57465:TCP"= 57465:TCP:PORT_57465
"38523:TCP"= 38523:TCP:PORT_38523
"64770:TCP"= 64770:TCP:PORT_64770
"33355:TCP"= 33355:TCP:PORT_33355
"37354:TCP"= 37354:TCP:PORT_37354
"33313:TCP"= 33313:TCP:PORT_33313
"33302:TCP"= 33302:TCP:PORT_33302
"51903:TCP"= 51903:TCP:PORT_51903
"36090:TCP"= 36090:TCP:PORT_36090
"28480:TCP"= 28480:TCP:PORT_28480
"30988:TCP"= 30988:TCP:PORT_30988
"49895:TCP"= 49895:TCP:PORT_49895
"41876:TCP"= 41876:TCP:PORT_41876
"23613:TCP"= 23613:TCP:PORT_23613
"10062:TCP"= 10062:TCP:PORT_10062
"45251:TCP"= 45251:TCP:PORT_45251
"25536:TCP"= 25536:TCP:PORT_25536
"38172:TCP"= 38172:TCP:PORT_38172
"11631:TCP"= 11631:TCP:PORT_11631
"33488:TCP"= 33488:TCP:PORT_33488
"61320:TCP"= 61320:TCP:PORT_61320
"9391:TCP"= 9391:TCP:PORT_9391
"13876:TCP"= 13876:TCP:PORT_13876
"23836:TCP"= 23836:TCP:PORT_23836
"46031:TCP"= 46031:TCP:PORT_46031
"25012:TCP"= 25012:TCP:PORT_25012
"15070:TCP"= 15070:TCP:PORT_15070
"45883:TCP"= 45883:TCP:PORT_45883
"25555:TCP"= 25555:TCP:PORT_25555
"38195:TCP"= 38195:TCP:PORT_38195
"12297:TCP"= 12297:TCP:PORT_12297
"16835:TCP"= 16835:TCP:PORT_16835
"12238:TCP"= 12238:TCP:PORT_12238
"42086:TCP"= 42086:TCP:PORT_42086
"15463:TCP"= 15463:TCP:PORT_15463
"64047:TCP"= 64047:TCP:PORT_64047
"13110:TCP"= 13110:TCP:PORT_13110
"55461:TCP"= 55461:TCP:PORT_55461
"19797:TCP"= 19797:TCP:PORT_19797
"22898:TCP"= 22898:TCP:PORT_22898
"13341:TCP"= 13341:TCP:PORT_13341
"53742:TCP"= 53742:TCP:PORT_53742
"44941:TCP"= 44941:TCP:PORT_44941
"50293:TCP"= 50293:TCP:PORT_50293
"30919:TCP"= 30919:TCP:PORT_30919
"23898:TCP"= 23898:TCP:PORT_23898
"15851:TCP"= 15851:TCP:PORT_15851
"34719:TCP"= 34719:TCP:PORT_34719
"27527:TCP"= 27527:TCP:PORT_27527
"40367:TCP"= 40367:TCP:PORT_40367
"45405:TCP"= 45405:TCP:PORT_45405

R1 is-2I7NCdrv;is-2I7NCdrv;C:\WINDOWS\system32\drivers\42439833.sys [03/05/2008 11:41 AM]
R1 is-EB04Jdrv;is-EB04Jdrv;C:\WINDOWS\system32\drivers\73343304.sys [03/05/2008 11:41 AM]
R1 is-JCU2Pdrv;is-JCU2Pdrv;C:\WINDOWS\system32\drivers\48575709.sys [03/05/2008 11:41 AM]
R1 is-QK3HRdrv;is-QK3HRdrv;C:\WINDOWS\system32\drivers\64272159.sys [03/05/2008 11:41 AM]
R1 is-S1C19drv;is-S1C19drv;C:\WINDOWS\system32\drivers\70629233.sys [03/05/2008 11:41 AM]
S1 is-PKNCHdrv;is-PKNCHdrv;C:\WINDOWS\system32\drivers\96556684.sys [03/05/2008 11:41 AM]
S1 is-RAQ3Cdrv;is-RAQ3Cdrv;C:\WINDOWS\system32\drivers\69159150.sys [03/05/2008 11:41 AM]
S1 is-RI49Qdrv;is-RI49Qdrv;C:\WINDOWS\system32\drivers\91856624.sys [03/05/2008 11:41 AM]
S1 is-S876Ddrv;is-S876Ddrv;C:\WINDOWS\system32\drivers\06976345.sys [03/05/2008 11:41 AM]
S2 is-EB04J;is-EB04J;C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-EB04J\is-EB04J.exe []
S2 is-JCU2P;is-JCU2P;C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-JCU2P\is-JCU2P.exe []
S2 is-PKNCH;is-PKNCH;C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-PKNCH\is-PKNCH.exe []
S2 is-QK3HR;is-QK3HR;C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-QK3HR\is-QK3HR.exe []
S2 is-RAQ3C;is-RAQ3C;C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-RAQ3C\is-RAQ3C.exe []
S2 is-RI49Q;is-RI49Q;C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-RI49Q\is-RI49Q.exe []
S2 is-S1C19;is-S1C19;C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-S1C19\is-S1C19.exe []
S2 is-S876D;is-S876D;C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-S876D\is-S876D.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
- - - - ORPHANS REMOVED - - - -

HKLM-Run-ماركت بروف - C:\MarketProf\MarketProf.exe
HKLM-Run-USB GATE - C:\Program Files\USB GATE\USB GATE.exe
HKLM-Run-is-PKNCH - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-PKNCH\is-PKNCH.exe
HKLM-Run-is-QK3HR - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-QK3HR\is-QK3HR.exe
HKLM-Run-is-RAQ3C - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-RAQ3C\is-RAQ3C.exe
HKLM-Run-is-S876D - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-S876D\is-S876D.exe
HKLM-Run-is-RI49Q - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-RI49Q\is-RI49Q.exe
HKLM-Run-is-S1C19 - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-S1C19\is-S1C19.exe
HKLM-Run-is-EB04J - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-EB04J\is-EB04J.exe
HKLM-Run-is-JCU2P - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-JCU2P\is-JCU2P.exe
HKLM-Run-NWEReboot - (no file)
MSConfigStartUp-Yahoo! Pager - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
MSConfigStartUp-Device Detector - DevDetect.exe


.
------- Supplementary Scan -------
.
R0 -: HKCU-Main,Start Page = hxxp://www.google.com/
R1 -: HKCU-Internet Settings,ProxyOverride = <local>
O8 -: &تصدير إلى Microsoft Excel - C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

O16 -: Microsoft XML Parser for Java - file://C:\WINDOWS\Java\classes\xmldso.cab
C:\WINDOWS\Downloaded Program Files\Microsoft XML Parser for Java.osd
.

**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

Rootkit scan 2008-08-31 22:07:35
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
Completion time: 08/31/2008 22:08:55
ComboFix-quarantined-files.txt 2008-08-31 19:08:44

Pre-Run: 31,704,068,096 bytes free
Post-Run: 34,287,112,192 bytes free

924 --- E O F --- 2008-08-29 11:24:21
 
وهذا هو التقرير الثاني :
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:21:02 م, on 31/08/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Documents and Settings\USER\Desktop\HiJackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [ctfmon.exe] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ctfmon.exe] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O4 - Global Startup: سرعة تشغيل Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &تصدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: is-EB04J - Unknown owner - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-EB04J\is-EB04J.exe (file missing)
O23 - Service: is-JCU2P - Unknown owner - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-JCU2P\is-JCU2P.exe (file missing)
O23 - Service: is-PKNCH - Unknown owner - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-PKNCH\is-PKNCH.exe (file missing)
O23 - Service: is-QK3HR - Unknown owner - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-QK3HR\is-QK3HR.exe (file missing)
O23 - Service: is-RAQ3C - Unknown owner - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-RAQ3C\is-RAQ3C.exe (file missing)
O23 - Service: is-RI49Q - Unknown owner - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-RI49Q\is-RI49Q.exe (file missing)
O23 - Service: is-S1C19 - Unknown owner - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-S1C19\is-S1C19.exe (file missing)
O23 - Service: is-S876D - Unknown owner - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-S876D\is-S876D.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
--
End of file - 6613 bytes

والشهر عليك مبارك وكل عام وانت بخير ، (فصل وحنا بنلبس) إن شاء الله
وهناك سؤال الاداتين التي حملتها هل احذفها ام لم ينتهي العمل بها
 
بارك الله فيك ,, وانت بـ ألف خيـر يالغلاا

لا لا تحذفها دعهما عندك

وجاري التحليل
 
توقيع : Al jNtEeL
حدد التالي واحذفه ::

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"

O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE

O4 - Global Startup: سرعة تشغيل Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe



طريقة الحذف

9ofccez7zg03e2edjckj.png


ستظهر لك هذا النافذه : اضغط Yes

r2yz0bxm9ksfpd6fs507.png


بعدها اذهب الى اضافة وازالة البرامج واحذف التولبار الموجود عندك (toolbar)>> ممكن ما يكون موجود


ثم نزل هذه الاداة واتبع الشرح التالي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


التوافق : ويندوز اكسبي فقط

شرح الاستخدام ,,,,,,
عند تشغيل ملف الاداة تظهر لك هذه الشاشه ,, انتظر ( وتابع مع الصور )

000.png


001.png


وعند ظهور هذه الشاشه ,, اضغط على Close ليتم اعادة تشغيل جهازك (( لتكملة عملية التنظيف ))

002.png



ثم حمل هذه الاداة ,,
واتبع الشرح التالي ,, لتنظيف جهازك من هذه الدعايات
و عمل تقرير بالعمليه حتى ترفقه بردك القادم ,,

رابط تحميل آخر تحديث للاداة
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي



شرح الاستخدام ,,,,,,
قم بتشغيل الملف SmitfraudFix.exe ,, وتابع الشرح كماا بهذه الصور

000.png





001.png





002.png





003.png





004.png



ثم هات تقرير هايجاك جديد لاهنت​
 
توقيع : Al jNtEeL
اخي الكريم تم عمل المطلوب ولكن الصورررررررة الاخيرة Q طفشتني لم تظهربعد y
وش الحل ياغالي
 
يبدو ان مشكلة Q انحلت ولكن خلفية سطح المكتب تغيرت صارت سادة والساعة خربت والاداة الاخيرة عندما تبدا في العمل تختفى الاختصارت التي على المكتب ( حبيت اقولك ماذا حصل ) وهذا هو التقرير وبارك الله فيك :
SmitFraudFix v2.343
Scan done at 23:58:28.84, Sun 08/31/2008
Run from C:\Documents and Settings\USER\Desktop\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
The filesystem type is NTFS
Fix run in normal mode
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Before SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» Killing process

»»»»»»»»»»»»»»»»»»»»»»»» hosts

127.0.0.1 localhost
»»»»»»»»»»»»»»»»»»»»»»»» VACFix
VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri

»»»»»»»»»»»»»»»»»»»»»»»» Winsock2 Fix
S!Ri's WS2Fix: LSP not Found.

»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix
GenericRenosFix by S!Ri

»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files

»»»»»»»»»»»»»»»»»»»»»»»» IEDFix
IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri

»»»»»»»»»»»»»»»»»»»»»»»» 404Fix
404Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri

»»»»»»»»»»»»»»»»»»»»»»»» AntiXPVSTFix
AntiXPVSTFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri

»»»»»»»»»»»»»»»»»»»»»»»» RK

»»»»»»»»»»»»»»»»»»»»»»»» DNS
Description: Realtek RTL8139 Family PCI Fast Ethernet NIC
DNS Server Search Order: 10.0.0.2
HKLM\SYSTEM\CCS\Services\Tcpip\..\{601FF982-BF77-4DA5-971E-6359D676BD2B}: DhcpNameServer=10.0.0.2
HKLM\SYSTEM\CS1\Services\Tcpip\..\{601FF982-BF77-4DA5-971E-6359D676BD2B}: DhcpNameServer=10.0.0.2
HKLM\SYSTEM\CS2\Services\Tcpip\..\{601FF982-BF77-4DA5-971E-6359D676BD2B}: DhcpNameServer=10.0.0.2
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=10.0.0.2
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=10.0.0.2
HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=10.0.0.2

»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files

»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, following keys are not inevitably infected!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""

»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning

Registry Cleaning done.

»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler After SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

»»»»»»»»»»»»»»»»»»»»»»»» End
 
وهذا تقرير هايجاك جديد :
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:12:23, on 01/09/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
C:\WINDOWS\explorer.exe
C:\Documents and Settings\USER\Desktop\HiJackThis.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [ctfmon.exe] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ctfmon.exe] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O4 - Global Startup: سرعة تشغيل Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &تصدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: is-EB04J - Unknown owner - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-EB04J\is-EB04J.exe (file missing)
O23 - Service: is-JCU2P - Unknown owner - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-JCU2P\is-JCU2P.exe (file missing)
O23 - Service: is-PKNCH - Unknown owner - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-PKNCH\is-PKNCH.exe (file missing)
O23 - Service: is-QK3HR - Unknown owner - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-QK3HR\is-QK3HR.exe (file missing)
O23 - Service: is-RAQ3C - Unknown owner - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-RAQ3C\is-RAQ3C.exe (file missing)
O23 - Service: is-RI49Q - Unknown owner - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-RI49Q\is-RI49Q.exe (file missing)
O23 - Service: is-S1C19 - Unknown owner - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-S1C19\is-S1C19.exe (file missing)
O23 - Service: is-S876D - Unknown owner - C:\Documents and Settings\All Users\Desktop\Kaspersky Lab Tool\is-S876D\is-S876D.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
--
End of file - 6382 bytes
 
اخي الكريم
اذا تم الانتهاء من الفحص والتنظيف جزاك الله خيراً
اريد ان اعرف هل احذف الادوات التي حملتها ام اجعلها لدي ولماذا ؟
وجعل الله هذا العمل وجميع الاعمال الخيره في هذا المنتدى المبارك في ميزان حسناتكم يوم ظل الا ظله
سبحانه وتعالى .

اخوك العليمي مرة:cr:
 
بقي التالي احذفه فورا :

O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"

O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime


O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O4 - Global Startup: سرعة تشغيل Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe


ثم احذف كل الأدوات الي تبي تحذفها ,,,

واخبارك المشكله معاك ؟؟
 
توقيع : Al jNtEeL
عودة
أعلى