cjoint

Publicité


Publicité

Format du document : application/octet-stream

Prévisualisation

ÿþCheck Browsers' LNK by Alex Dragokas & regist ver. 2.0.0.12 ( Beta )

OS: x64 Windows 7 Home Premium, 6.1.7600, Service Pack: 0
Time: 15.03.2016 - 00:38
Language: OS: Portuguese (0x416). Display: Portuguese (0x416). Non-Unicode: Portuguese (0x416)
Elevated: Yes
User: Intel (group: Administrator)


* Suspicious objects will be marked with prefix >>>

=========================================================================
(((((( BROWSER shortcuts ))))))
=========================================================================

__________________ Suspicious ( >>> HIGH risk <<< ) ___________________

>>> [HTTP] "C:\Users\Intel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk" -> ["C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" =>> hxxp://hao.169x.cn/?v=108]
>>> [HTTP] "C:\Users\Intel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk" -> ["C:\Program Files (x86)\Internet Explorer\iexplore.exe" =>> hxxp://hao.169x.cn/?v=108]
>>> [HTTP] "C:\Users\Intel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\chrome.exe.lnk" -> ["C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" =>> hxxp://hao.169x.cn/?v=108]
>>> [HTTP] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk" -> ["C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" =>> hxxp://hao.169x.cn/?v=108]
>>> [HTTP] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk" -> ["C:\Program Files (x86)\Mozilla Firefox\firefox.exe" =>> hxxp://hao.169x.cn/?v=108]

=========================================================================
(((((( Other shortcuts ))))))
=========================================================================

______________________ Suspicious ( low risk ) ________________________

-[HTTP] "C:\Users\Intel\AppData\Local\Microsoft\Windows\GameExplorer\{B7B1A102-F8AC-420E-814C-085BE2EAACA2}\SupportTasks\0\Mais Jogos da Microsoft.lnk" -> ["(Internet Explorer)" =>> hxxp://vvv.harrypotter.ea.com/]
-[HTTP] "C:\Users\Intel\AppData\Local\Microsoft\Windows\GameExplorer\{B7B1A102-F8AC-420E-814C-085BE2EAACA2}\SupportTasks\1\Suporte.lnk" -> ["(Internet Explorer)" =>> hxxp://techsupport.ea.com/]
-[HTTP] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Programas RFB\Receitanet\Ajuda do Receitanet 1.07 .lnk" -> ["(Internet Explorer)" =>> hxxp://10.200.110.89/HelpReceitanet/]

_________________ Browser by default ________________

- [OK] http = "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Chrome)
- [OK] https = "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Chrome)
- [OK] ftp = "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Chrome)
- [OK] .htm = "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Chrome)
- [OK] .html = "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Chrome)
- [OK] .url = "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Navegador da Internet)

_____________________ Statistics ____________________

Threats found: 5
Removed attrib. RO: 0 from 0
Start mode: Normal
Time spent: 5 sec. (search: 1 sec.)
Folders processed: 858
Files processed: 1877 (shortcuts: 242)

Been verified:
C:\Users\Intel
C:\Users\Default
C:\Users\Public
C:\ProgramData
_____________________________ End of Log ________________________________7620 bytes, CRC32: FFFFFFFF. Sign: å‚q¾

Publicité


Signaler le contenu de ce document

Publicité