ADVERTISEMENT

UsbFix_Report.txt

Jak usunąć wirusa tworzącego skróty folderów na pendrive?

Witam Poproszę o pomoc co z tym dalej zrobić? Najlepiej krok po kroku bo nie znam się na tym kompletnie. Z góry dziękuję za pomoc


Download file - link to post

[b]############################## | UsbFix V 8.248 | [Clean][/b]

User: admin (Administrator) # ADMIN-KOMPUTER
Updated 27/05/2016 by SOSVirus
Started at 12:33:16 | 01/06/2016

Website : [url=https://www.usb-antivirus.com/]https://www.usb-antivirus.com/[/url]
Tutorial : [url=https://www.usb-antivirus.com/tutorial/]https://www.usb-antivirus.com/tutorial/[/url]
Support : [url=http://www.sosvirus.org/]http://www.sosvirus.org/[/url]
Live detection : [url=http://www.sosmalware.com/usbfix/]http://www.sosmalware.com/usbfix/[/url]
Contact : [url=https://www.usb-antivirus.com/contact/]https://www.usb-antivirus.com/contact/[/url]

[b]################## | System information |[/b]

MB: (ALiveNF6P-VSTA)
CPU: AMD Athlon(tm) 64 X2 Dual Core Processor 4200+
RAM - & gt; [Total : 2815 Mo | Free : 1689 Mo]
Bios: American Megatrends Inc.
Boot: Normal boot

OS: Microsoft™ Windows 7 Professional (6.1.7601 32-Bit) Service Pack 1
WB: Internet Explorer : 11.00.9600.16428
WB: Mozilla Firefox : 46.0.1
WB: Opera : 37.0.2178.43

[b]################## | Security Information |[/b]

AV: avast! Antivirus [Enabled |Updated]
AS: Windows Defender [Enabled |Updated]
AS: avast! Antivirus [Enabled |Updated]
FW: avast! Antivirus [Enabled]
AS: Malwarebytes Anti-Malware : 2.0.4.1028
FW: Windows Firewall [Enabled]
SC: Security Center [Enabled]
WU: Windows Update [Enabled]

[b]################## | Disk Information |[/b]

C:\ (%SystemDrive%) - & gt; Fixed disk # 149 Gb (96 Gb free - 65%) [] # NTFS
E:\ - & gt; Removable disk # 7 Gb (7 Gb free - 100%) [PATRIOT] # FAT32

[b]################## | Generic Research |[/b]

Deleted! C:\Users\admin\AppData\Roaming\home.vbe
Deleted! C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\home.vbe
Deleted! E:\home.vbe
Deleted! E:\My videos 18.lnk
Deleted! HKCU\Software\Microsoft\Windows\CurrentVersion\Run|home
Deleted! HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|{47D7F6F4-13DD-4C15-83CB-1A4F87F4A6B2}
Restored! [N] E:\.~lock.polityka.doc#
Restored! [D] E:\My videos 18

(!) Temporary files deleted. (4288.62390708923 MB)

[b]################## | Startup |[/b]

F2 - HKLM\..\Winlogon : [Shell] explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKCU\..\Run : [Mobile Partner] C:\Program Files\PLAY ONLINE\PLAY ONLINE.exe
04 - HKLM\..\Run : [AdobeAAMUpdater-1.0] " C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe "
04 - HKLM\..\Run : [Adobe Creative Cloud] " C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe " --showwindow=false --onOSstartup=true
04 - HKLM\..\Run : [AvastUI.exe] " C:\Program Files\AVAST Software\Avast\AvastUI.exe " /nogui
04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-21-2738219880-464994963-4236387451-1000\..\Run : [Mobile Partner] C:\Program Files\PLAY ONLINE\PLAY ONLINE.exe
04 - HKU\S-1-5-19\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-20\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04GS - McAfee Security Scan Plus.lnk : C:\Program Files\McAfee Security Scan\3.11.309\SSScheduler.exe

[b]################## | C:\ %SystemDrive% - Fixed drive (NTFS) |[/b]

[10/06/2009 - 23:42:20 | A | 0 Ko] - C:\config.sys
[01/06/2016 - 08:30:19 | ASH | 2162152 Ko] - C:\hiberfil.sys
[01/06/2016 - 08:30:21 | ASH | 2882872 Ko] - C:\pagefile.sys
[02/11/2015 - 12:28:48 | A | 0 Ko] - C:\ftconfig.ini
[16/10/2014 - 12:39:07 | SHD] - C:\$Recycle.Bin
[10/06/2009 - 23:42:20 | A | 0 Ko] - C:\autoexec.bat
[28/10/2015 - 09:46:37 | SHD] - C:\found.000
[14/07/2009 - 04:37:05 | D] - C:\PerfLogs
[14/07/2009 - 06:53:55 | SHD] - C:\Documents and Settings
[16/10/2014 - 12:38:46 | SHD] - C:\Recovery
[16/10/2014 - 13:34:17 | RHD] - C:\MSOCache
[24/10/2014 - 08:37:01 | RD] - C:\Users
[15/07/2015 - 18:10:48 | D] - C:\9e3985faaedcc08ebe872be805ab28
[12/08/2015 - 17:11:28 | D] - C:\69df71a837d60e24f439
[14/10/2015 - 17:05:46 | D] - C:\84570fbd172b7caf4f91f42129
[27/05/2016 - 12:36:15 | D] - C:\AdwCleaner
[27/05/2016 - 12:36:15 | RD] - C:\Program Files
[30/05/2016 - 14:18:52 | D] - C:\SKANY
[31/05/2016 - 08:49:41 | HD] - C:\ProgramData
[01/06/2016 - 11:13:11 | AD] - C:\Windows
[01/06/2016 - 11:37:49 | D] - C:\FRST
[01/06/2016 - 11:58:15 | D] - C:\UsbFix

[b]################## | E:\ - Removable drive (FAT32) |[/b]

[01/01/1980 - 00:00:00 | A | 0 Ko] - E:\.cm0013
[06/12/2013 - 21:42:58 | N | 0 Ko] - E:\.~lock.polityka.doc#
[05/06/2015 - 16:58:20 | D] - E:\Natalia
[08/06/2015 - 11:54:52 | D] - E:\Mariusz
[23/08/2015 - 19:02:04 | A | 92 Ko] - E:\Groupon-4C7ABB1E61.pdf
[31/05/2016 - 08:37:50 | D] - E:\My videos 18
[01/01/1980 - 00:00:00 | A | 0 Ko] - E:\Natalia\.cm0013
[25/01/2014 - 10:09:56 | A | 18 Ko] - E:\Natalia\Baza noclegowa i gastronomiczna.docx
[08/12/2013 - 10:53:32 | A | 14 Ko] - E:\Natalia\doradztwo.docx
[04/11/2013 - 14:42:24 | A | 679 Ko] - E:\Natalia\Flieger _ instrumenty wspierania przedsiębiorczości tabela 2 i 3.pdf
[04/11/2013 - 14:43:56 | A | 2748 Ko] - E:\Natalia\historia rehabilitacji.ppt
[25/01/2014 - 11:22:50 | A | 13 Ko] - E:\Natalia\kody.docx
[04/11/2013 - 14:42:10 | A | 1578 Ko] - E:\Natalia\książka_bończak-kucharczyk.pdf
[01/07/2012 - 10:49:24 | A | 170 Ko] - E:\Natalia\Magdalena Wojcik CV11.doc
[23/05/2012 - 22:06:40 | A | 146 Ko] - E:\Natalia\Magdalena Wojcik CV11.docx
[25/01/2014 - 10:10:56 | A | 555 Ko] - E:\Natalia\Merchandising biura podróży.pptx
[05/07/2012 - 20:49:10 | A | 17 Ko] - E:\Natalia\Motivation letter1.docx
[02/09/2012 - 13:20:18 | A | 0 Ko] - E:\Natalia\ogloszenie.txt
[07/05/2015 - 10:26:28 | A | 11 Ko] - E:\Natalia\pitus.doc
[18/12/2013 - 16:38:34 | A | 68 Ko] - E:\Natalia\planowanie.doc
[21/02/2014 - 18:19:22 | A | 12 Ko] - E:\Natalia\podanie.docx
[06/12/2013 - 21:13:02 | A | 15 Ko] - E:\Natalia\polityka.doc
[07/12/2013 - 03:14:26 | A | 320 Ko] - E:\Natalia\polityka.docx
[04/11/2013 - 14:42:36 | A | 499 Ko] - E:\Natalia\PT_2_UE slajdy.pdf
[07/11/2013 - 22:59:56 | A | 28 Ko] - E:\Natalia\rehabilitacja.doc
[07/11/2013 - 22:59:24 | A | 26 Ko] - E:\Natalia\rehabilitacja.odt
[09/11/2013 - 15:35:58 | A | 17 Ko] - E:\Natalia\socjologia.doc
[04/11/2013 - 14:41:38 | A | 61 Ko] - E:\Natalia\Zadanie_3_Zao.doc
[04/11/2013 - 14:42:58 | A | 26 Ko] - E:\Natalia\ZAL AKTYW REKR GR1A.doc
[04/11/2013 - 14:44:20 | A | 1547 Ko] - E:\Natalia\środki treningowe w rehabilitacji.ppt
[31/05/2015 - 19:23:34 | A | 86 Ko] - E:\Natalia\24060005_F_20222662_05_15_F.pdf
[13/06/2015 - 12:24:30 | RA | 13 Ko] - E:\Natalia\Wniosek wszystko wzór1.pdf
[12/08/2015 - 15:12:36 | A | 75 Ko] - E:\Natalia\Kopia KORSNAS.ods
[11/08/2015 - 19:46:30 | A | 79 Ko] - E:\Natalia\Kopia FISKEBY.ods
[31/05/2015 - 19:23:08 | A | 52 Ko] - E:\Mariusz\Szczegoly_operacji_2015-05-31_19-22-25.pdf
[05/06/2015 - 17:03:32 | A | 316 Ko] - E:\Mariusz\skierowanie.pdf
[05/06/2015 - 17:01:00 | A | 233 Ko] - E:\Mariusz\Za-. 31 - Podanie o urlop PT.doc
[05/06/2015 - 17:01:10 | A | 285 Ko] - E:\Mariusz\Za-. 12 - Ewidencja czasu pracy.doc
[09/07/2015 - 10:49:48 | A | 10 Ko] - E:\Mariusz\podanie o urlop.doc
[30/06/2015 - 13:30:22 | A | 98 Ko] - E:\Mariusz\wniosek.pdf
[16/06/2015 - 16:45:24 | A | 290 Ko] - E:\Mariusz\SKM_C284e15061616510.pdf

[b]################## | Vaccin |[/b]

C:\Autorun.inf - & gt; Vaccine created by UsbFix (El Desaparecido)
E:\Autorun.inf - & gt; Vaccine created by UsbFix (El Desaparecido)

[b]Analysed in 115.7 seconds[/b]

[b]################## | E.O.F | [url=http://www.sosvirus.net/]http://www.sosvirus.net/[/url] | [url=https://www.usb-antivirus.com/]https://www.usb-antivirus.com/[/url] |[/b]