More Related Content
Similar to Usb fix report
Similar to Usb fix report (20)
Usb fix report
- 1. [b]############################## | UsbFix V 7.181 | [Clean][/b]
User: hp (Administrator) # HPW
Updated 31/08/2014 by El Desaparecido - SosVirus
Started at 02:08:36 | 27/03/2015
Website : [url=http://www.en.usbfix.net/]http://www.en.usbfix.net/[/url]
Changelog :
[url=http://www.en.usbfix.net/changelog/]http://www.en.usbfix.net/changelog/
[/url]
Support : [url=http://www.sosvirus.net/]http://www.sosvirus.net/[/url]
Upload Malware :
[url=http://www.sosvirus.net/upload_malware.php]http://www.sosvirus.net/upload_m
alware.php[/url]
Contact :
[url=http://www.en.usbfix.net/contact/]http://www.en.usbfix.net/contact/[/url]
[b]################## | System information |[/b]
MB: Hewlett-Packard (196F)
CPU: Intel(R) Core(TM) i3-3110M CPU @ 2.40GHz
GC: Intel(R) HD Graphics 4000
RAM -> [Total : 1940 Mo | Free : 931 Mo]
Bios: Insyde
Boot: Normal boot
OS: Microsoft™ Windows 8 Single Language (6.2.9200 64-Bit)
WB: Internet Explorer : 10.00.9200.16384
WB: Mozilla Firefox : 36.0.4
[b]################## | Security Information |[/b]
AV: Quick Heal Total Security 2014 [Enabled |[b](!) Outdated[/b]]
AV: Windows Defender [[b](!) Disabled[/b] |Updated]
AS: Quick Heal Total Security 2014 [Enabled |Updated]
AS: Windows Defender [[b](!) Disabled[/b] |Updated]
FW: Quick Heal Firewall [Enabled]
FW: Windows Firewall [Enabled]
SC: Security Center [Enabled]
WU: Windows Update [Enabled]
[b]################## | Disk Information |[/b]
C: (%SystemDrive%) -> Fixed disk # 221 Gb (159 Gb free - 72%) [Windows] # NTFS
D: -> Fixed disk # 24 Gb (2 Gb free - 10%) [RECOVERY] # NTFS
F: -> Fixed disk # 220 Gb (103 Gb free - 47%) [New Volume] # NTFS
[b]################## | Generic Research |[/b]
(!) Temporary files deleted. (3.32225227355957 MB)
[b]################## | Registry |[/b]
[b]################## | Regedit Run |[/b]
F2 - HKLM..Winlogon : [Shell] Explorer.exe
F2 - [x64] HKLM..Winlogon : [Shell] explorer.exe
F2 - HKLM..Winlogon : [Userinit]
C:Windowssystem32userinit.exe,C:WindowsSysWOW64userinit.exe,
F2 - [x64] HKLM..Winlogon : [Userinit] C:Windowssystem32userinit.exe,
04 - HKCU..Run : [Facebook Update]
"C:UsershpAppDataLocalFacebookUpdateFacebookUpdate.exe" /c /nocrashserver
- 2. 04 - HKCU..Run : [NextLive] C:WindowsSysWOW64rundll32.exe
"C:UsershpAppDataRoamingnewnext.menengine.dll",EntryPoint -m l
04 - HKCU..Run : [PcSync] C:Program Files (x86)NokiaNokia PC Suite
6PcSync2.exe /NoDialog
04 - HKCU..Run : [ALLUpdate] "C:Program Files (x86)ALLPlayerALLUpdate.exe"
"sleep"
04 - HKCU..Run : [ALLPlayer WiFi Remote] C:Program Files (x86)ALLPlayer
RemoteALLPlayerRemoteControl.exe
04 - HKLM..Run : [BtTray] "C:Program Files (x86)Ralink CorporationRalink
Bluetooth StackBtTray.exe"
04 - HKLM..Run : [RemoteControl10] "C:Program Files
(x86)CyberLinkPowerDVD10PDVD10Serv.exe"
04 - HKLM..Run : [HPMessageService] C:Program Files (x86)Hewlett-PackardHP
System EventHPMSGSVC.exe
04 - HKLM..Run : [HP CoolSense] C:Program Files (x86)Hewlett-PackardHP
CoolSenseCoolSense.exe -byrunkey
04 - HKLM..Run : [Adobe Reader Speed Launcher] "C:Program Files
(x86)AdobeReader 9.0ReaderReader_sl.exe"
04 - HKLM..Run : [Adobe ARM] "C:Program Files (x86)Common
FilesAdobeARM1.0AdobeARM.exe"
04 - HKLM..Run : [BCSSync] "C:Program Files (x86)Microsoft
OfficeOffice14BCSSync.exe" /DelayServices
04 - HKLM..Run : [PCSuiteTrayApplication]
C:PROGRA~2NokiaNOKIAP~1LAUNCH~1.EXE -startup
04 - HKLM..Run : [AdobeCEPServiceManager] "C:Program Files (x86)Common
FilesAdobeCEPServiceManager4CEPServiceManager.exe" -launchedbylogin
04 - HKLM..Run : [Intex Speed 3.5G Datacard] C:Program Files (x86)Intex
Speed 3.5G DatacardDriverMobileAgent.exe
04 - [x64] HKLM..Run : [IgfxTray] C:Windowssystem32igfxtray.exe
04 - [x64] HKLM..Run : [HotKeysCmds] C:Windowssystem32hkcmd.exe
04 - [x64] HKLM..Run : [Persistence] C:Windowssystem32igfxpers.exe
04 - [x64] HKLM..Run : [RTHDVCPL] C:Program
FilesRealtekAudioHDARtkNGUI64.exe -s
04 - [x64] HKLM..Run : [SynTPEnh] %ProgramFiles%SynapticsSynTPSynTPEnh.exe
04 - [x64] HKLM..Run : [Quick Heal Core UI] "C:UsershpDesktopQuick Heal
Total Securitystrtupap.exe"
04 - [x64] HKLM..Run : [AdobeAAMUpdater-1.0] "C:Program Files (x86)Common
FilesAdobeOOBEPDAppUWAUpdaterStartupUtility.exe"
04 - HKUS-1-5-21-3834751363-4055730730-1076691404-1001..Run : [Facebook
Update] "C:UsershpAppDataLocalFacebookUpdateFacebookUpdate.exe" /c
/nocrashserver
04 - HKUS-1-5-21-3834751363-4055730730-1076691404-1001..Run : [NextLive]
C:WindowsSysWOW64rundll32.exe
"C:UsershpAppDataRoamingnewnext.menengine.dll",EntryPoint -m l
04 - HKUS-1-5-21-3834751363-4055730730-1076691404-1001..Run : [PcSync]
C:Program Files (x86)NokiaNokia PC Suite 6PcSync2.exe /NoDialog
04 - HKUS-1-5-21-3834751363-4055730730-1076691404-1001..Run : [ALLUpdate]
"C:Program Files (x86)ALLPlayerALLUpdate.exe" "sleep"
04 - HKUS-1-5-21-3834751363-4055730730-1076691404-1001..Run : [ALLPlayer WiFi
Remote] C:Program Files (x86)ALLPlayer RemoteALLPlayerRemoteControl.exe
[b]################## | UsbFix - Information |[/b]
Info : [url=https://www.youtube.com/watch?v=vUZYYASd7FE]How to remove shortcut
virus on flash disk (Video)[/url]
Info : [url=http://www.en.usbfix.net/2014/03/remove-shortcut-virus-usb/]Shortcut
virus on flash disk, What is it ?[/url]
[b]################## | Hijack |[/b]
[b]################## | Vaccin |[/b]
C:Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
- 3. D:Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
F:Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
[b]################## | E.O.F |
[url=http://www.sosvirus.net/]http://www.sosvirus.net/[/url] |
[url=http://www.en.usbfix.net/]http://www.en.usbfix.net/[/url] |[/b]