cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

[b]############################## | UsbFix V 7.923 | [Research][/b]

User: maryam (Administrator) # MARYAM-PC
Updated 17/04/2015 by El Desaparecido - SosVirus
Started at 12:08:57 | 19/04/2015

Website : [url=http://www.en.usbfix.net/]http://www.en.usbfix.net/[/url]
Changelog : [url=http://www.en.usbfix.net/changelog/]http://www.en.usbfix.net/changelog/[/url]
Support : [url=http://www.sos-virus.net/]http://www.sos-virus.net/[/url]
Live detection : [url=http://how-to-remove.us/]http://how-to-remove.us/[/url]
Contact : [url=http://www.en.usbfix.net/contact/]http://www.en.usbfix.net/contact/[/url]

[b]################## | System information |[/b]

MB: ASUSTeK Computer INC. (P5G41T-M LX)
CPU: Pentium(R) Dual-Core CPU E5700 @ 3.00GHz
RAM -> [Total : 2013 Mo | Free : 684 Mo]
Bios: American Megatrends Inc.
Boot: Normal boot

OS: Microsoft� Windows 7 Ultimate (6.1.7601 64-Bit) Service Pack 1
WB: Internet Explorer : 8.00.7600.16385
WB: Mozilla Firefox : 32.0.3

[b]################## | Security Information |[/b]

AS: Windows Defender [Enabled |[b](!) Outdated[/b]]
FW: Windows Firewall [Enabled]
SC: Security Center [Enabled]
WU: Windows Update [Enabled]

[b]################## | Disk Information |[/b]

C:\ (%SystemDrive%) -> Fixed disk # 20 Gb (38 Mb free - 0%) [] # NTFS
D:\ -> Fixed disk # 49 Gb (27 Gb free - 54%) [] # NTFS
E:\ -> Fixed disk # 78 Gb (29 Gb free - 37%) [] # NTFS
F:\ -> Fixed disk # 86 Gb (54 Gb free - 62%) [] # NTFS
H:\ -> Removable disk # 981 Mb (450 Mb free - 46%) [] # FAT
I:\ -> Removable disk # 7 Gb (7 Gb free - 100%) [SHAHRAD] # FAT32

[b]################## | Autorun |[/b]


[b]################## | Regedit Run |[/b]

F2 - HKLM\..\Winlogon : [Shell] explorer.exe
F2 - [x64] HKLM\..\Winlogon : [Shell] explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] userinit.exe
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
F3 - HKCU\..\Windows : [Load] C:\Users\maryam\LOCALS~1\Temp\ccamiquhm.exe
04 - HKCU\..\Run : [Google Update] "C:\Users\maryam\AppData\Local\Google\Update\GoogleUpdate.exe" /c
04 - HKLM\..\Run : [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
04 - HKLM\..\Run : [Samsung PanelMgr] C:\Windows\Samsung\PanelMgr\ssmmgr.exe /autorun
04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-21-1969387246-909588187-3246495165-1000\..\Run : [Google Update] "C:\Users\maryam\AppData\Local\Google\Update\GoogleUpdate.exe" /c
04 - HKU\S-1-5-19\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-20\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe

[b]################## | Generic Research |[/b]

Found! C:\Users\maryam\AppData\Local\Temp\lvqblvgblvgqlvgqbvgqblgqblvqblvg.com
Found! H:\Removable Disk (1GB).lnk
Found! I:\SHAHRAD (8GB).lnk
Found! C:\Users\maryam\LOCALS~1\Temp\ccamiquhm.exe
Found! C:\Users\maryam\AppData\Local\Temp\afolder
Found! C:\Users\maryam\AppData\Local\Temp\ztmp\tmp3487.bat
Found! C:\Users\maryam\AppData\Local\Temp\ztmp\tmp6517.exe
Found! C:\Users\maryam\AppData\Local\Temp\ztmp
Found! H:\4#*.ini
Found! I:\4#*.ini
Found! C:\Users\maryam\AppData\Local\Temp\ccamiquhm.exe

[b]################## | Registry |[/b]

Found! HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows|load (C:\Users\maryam\LOCALS~1\Temp\ccamiquhm.exe)

[b]################## | UsbFix - Information |[/b]

Info : [url=https://www.youtube.com/watch?v=vUZYYASd7FE]How to remove shortcut virus on flash disk (Video)[/url]
Info : [url=http://www.en.usbfix.net/2014/03/remove-shortcut-virus-usb/]Shortcut virus on flash disk, What is it ?[/url]
Live detection : [url=http://how-to-remove.us/]http://how-to-remove.us/[/url]

[b]################## | Attrib - Restore |[/b]

Will be restored : [SHD] H:\�
Will be restored : [ASH] H:\autorun.inf
Will be restored : [RASH] H:\4#SFUXOCYTHIHDP.ini
Will be restored : [ASH] I:\autorun.inf
Will be restored : [SHD] I:\�
Will be restored : [RASH] I:\4#KSWXLXPEG.ini

[b]################## | E.O.F | [url=http://www.sosvirus.net/]http://www.sosvirus.net/[/url] | [url=http://www.en.usbfix.net/]http://www.en.usbfix.net/[/url] |[/b]

Publicité


Signaler le contenu de ce document

Publicité