############################## | UsbFix 7.059 | [Deletion]
User: Martan (Administrator) # DOMA [ ]
Updated 16/09/2011 by El Desaparecido
Started at 06:28:09 | 23/09/2011
Website:
http://eldesaparecido.com
Submit your sample:
http://eldesaparecido.com/support.php
Contact:
contact@eldesaparecido.com
CPU: AMD Athlon(tm) 64 X2 Dual Core Processor 5000+
CPU 2: AMD Athlon(tm) 64 X2 Dual Core Processor 5000+
Systém Microsoft Windows XP Professional (5.1.2600 32-Bit) # Service Pack 3
Internet Explorer 8.0.6001.18702
Windows Firewall: Enabled
Antivirus: CyberDefender Internet Security 2011 [Enabled | Updated]
Antivirus: avast! Antivirus 5.0.100664585 [Enabled | Updated]
RAM -> 2047 Mb
C:\ (%systemdrive%) -> Fixed drive # 146 Gb (48 Mb free - 33%) [] # NTFS
D:\ -> Fixed drive # 552 Gb (177 Mb free - 32%) [] # NTFS
E:\ -> CD-ROM
F:\ -> CD-ROM
G:\ -> CD-ROM
H:\ -> CD-ROM
I:\ -> CD-ROM
J:\ -> Fixed drive # 35 Gb (34 Mb free - 98%) [] # NTFS
L:\ -> Removable drive # 2 Gb (362 Mb free - 19%) [] # FAT
O:\ -> CD-ROM
################## | Files # Infected Folders |
Deleted ! L:\New Folder.lnk
Deleted ! L:\Passwords.lnk
Deleted ! L:\Documents.lnk
Deleted ! L:\Pictures.lnk
Deleted ! L:\Music.lnk
Deleted ! L:\Video.lnk
Deleted ! L:\DCIM.lnk
Deleted ! L:\SMRTNTKY.lnk
Deleted ! C:\Recycler\S-1-5-21-1606980848-1637723038-725345543-1003
Deleted ! D:\Recycler\S-1-5-21-1606980848-1637723038-725345543-1003
Deleted ! J:\Recycler\S-1-5-21-1606980848-1637723038-725345543-1003
Not deleted ! F:\Autorun.inf
Not deleted ! F:\autorun.exe
Not deleted ! G:\Autorun.inf
Not deleted ! H:\autorun.inf
Not deleted ! I:\AUTORUN.INF
Not deleted ! O:\AUTORUN.INF
(!) Temporary files deleted.
################## | Registry |
Deleted ! HKLM\Software\Microsoft\Windows\CurrentVersion\Run|Adobe Reader Speed Launcher
################## | Mountpoints2 |
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{2357e5fa-e4e7-11e0-9a42-001d7da0f66d}
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{246550f9-9a75-11df-993b-001d7da0f66d}
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{54d593dd-9a7a-11df-993c-001d7da0f66d}
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{81fa2bcb-b09d-11e0-9a05-001d7da0f66d}
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{ae574809-01d4-11de-a762-001d7da0f66d}
Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{c4578178-c4a8-11de-9844-001d7da0f66d}
################## | Listing |
[23/09/2011 - 00:57:02 | N | 161057] C:\aaw7boot.log
[16/02/2009 - 20:11:46 | N | 0] C:\AUTOEXEC.BAT
[15/04/2010 - 21:19:23 | D ] C:\Berounka na Soutoku 21 06 2009
[22/09/2011 - 19:42:09 | N | 320] C:\boot.ini
[14/04/2008 - 13:00:00 | N | 4952] C:\Bootfont.bin
[23/09/2011 - 00:59:24 | N | 13598] C:\CDAVFSuser.log
[23/09/2011 - 00:54:34 | N | 42831] C:\CDAVFSuserBackup.log
[16/02/2009 - 20:11:46 | N | 0] C:\CONFIG.SYS
[22/02/2009 - 21:04:47 | N | 86] C:\CSB.LOG
[22/09/2011 - 23:40:01 | N | 347012] C:\cybdefauth_i.log
[22/09/2011 - 23:42:04 | N | 9212] C:\CybDefInstallInfo.log
[22/09/2011 - 23:39:33 | N | 114] C:\CybDefWebInstaller.log
[18/12/2010 - 14:03:21 | D ] C:\Documents and Settings
[03/03/2011 - 09:43:10 | D ] C:\found.000
[16/02/2009 - 20:11:46 | N | 0] C:\IO.SYS
[27/05/2011 - 19:49:24 | N | 737757184] C:\jak-ztratit-kluka-v-10-dnech-cz.avi
[16/02/2009 - 20:11:46 | N | 0] C:\MSDOS.SYS
[20/09/2011 - 09:56:24 | RHD ] C:\MSOCache
[21/06/2009 - 19:23:04 | D ] C:\Nase foto Komarek oslava
[14/04/2008 - 13:00:00 | N | 47564] C:\NTDETECT.COM
[14/04/2008 - 13:00:00 | N | 250576] C:\ntldr
[23/09/2011 - 02:27:45 | D ] C:\Obnovené soubory
[14/09/2011 - 13:30:26 | D ] C:\OSL2000
[23/09/2011 - 00:57:03 | ASH | 2145386496] C:\pagefile.sys
[29/09/2009 - 18:59:03 | D ] C:\PC TRANSLATOR DEMO
[23/09/2011 - 01:50:25 | D ] C:\Program Files
[23/09/2011 - 06:33:28 | SHD ] C:\RECYCLER
[22/02/2009 - 21:02:29 | N | 446] C:\RHDSetup.log
[23/02/2009 - 18:58:59 | SHD ] C:\System Volume Information
[05/08/2011 - 14:46:18 | D ] C:\Temp
[18/03/2009 - 12:44:24 | D ] C:\totalcmd
[23/09/2011 - 06:33:28 | D ] C:\UsbFix
[23/09/2011 - 06:34:48 | A | 1858] C:\UsbFix.txt
[23/09/2011 - 00:33:39 | D ] C:\vseqrntn.bin
[23/09/2011 - 00:57:54 | D ] C:\WINDOWS
[07/10/2010 - 17:28:00 | N | 2376574] D:\07102010008.mp4
[07/10/2010 - 17:33:08 | N | 11053735] D:\07102010009.mp4
[07/10/2010 - 17:38:04 | N | 9864796] D:\07102010010.mp4
[07/10/2010 - 17:46:50 | N | 1090529] D:\07102010011.mp4
[07/10/2010 - 19:20:32 | N | 15989117] D:\07102010012.mp4
[07/10/2010 - 19:34:10 | N | 5906451] D:\07102010013.mp4
[15/10/2009 - 20:35:58 | N | 1901845] D:\15102009006.mp4
[16/10/2010 - 22:13:14 | N | 9534178] D:\17102010014.mp4
[16/10/2010 - 22:22:58 | N | 7580272] D:\17102010015.mp4
[11/08/2009 - 03:02:40 | D ] D:\7248deacf9b3d5df42a8a8
[04/11/2009 - 08:25:00 | D ] D:\Adobe CS4
[18/10/2010 - 17:24:50 | D ] D:\DIGITALIZACE KAMERA
[02/08/2011 - 14:56:12 | D ] D:\FILMY
[15/08/2011 - 17:49:45 | D ] D:\filmy vytvareni
[21/09/2011 - 12:10:09 | D ] D:\Flash volné místo
[30/08/2011 - 11:33:37 | D ] D:\FOTKY
[24/02/2010 - 20:12:16 | D ] D:\HRY
[18/10/2010 - 17:24:53 | D ] D:\HUDBA
[23/09/2011 - 01:37:23 | N | 1834738706] D:\materiály.rar
[23/02/2009 - 20:13:18 | D ] D:\NHL09
[30/06/2010 - 18:54:59 | D ] D:\NOTEBOOK
[30/08/2011 - 13:06:42 | D ] D:\notebook 2
[18/03/2009 - 12:45:10 | D ] D:\OFFICE O7
[10/11/2009 - 20:18:31 | N | 24654] D:\off_dib.bmp
[15/08/2011 - 17:44:18 | D ] D:\PROGRAMY
[23/09/2011 - 06:33:28 | SHD ] D:\RECYCLER
[23/02/2009 - 18:58:59 | SHD ] D:\System Volume Information
[18/10/2010 - 17:24:52 | ASH | 33792] D:\Thumbs.db
[02/08/2011 - 14:25:40 | D ] D:\Vyskočil
[22/09/2011 - 16:34:02 | D ] D:\windows instal
[22/09/2011 - 16:24:41 | D ] D:\Windows XP
[30/06/2010 - 18:17:14 | N | 369] D:\Zástupce - PROGRAMY.lnk
[17/09/2010 - 21:39:33 | RD ] E:\materiály
[27/04/2007 - 13:06:14 | R | 332744] F:\_Setup.dll
[18/11/2009 - 16:30:26 | R | 554312] F:\autorun.exe
[27/10/2009 - 19:58:33 | R | 16958] F:\Autorun.ico
[27/10/2009 - 15:59:30 | R | 69] F:\Autorun.inf
[02/12/2009 - 14:22:37 | R | 1213900] F:\data1.cab
[02/12/2009 - 14:22:37 | R | 20907] F:\data1.hdr
[02/12/2009 - 14:26:23 | R | 3297082216] F:\data2.cab
[02/12/2009 - 14:44:15 | RD ] F:\DirectX
[02/12/2009 - 14:44:15 | RD ] F:\GFWL
[02/12/2009 - 14:22:36 | R | 541056] F:\ISSetup.dll
[02/12/2009 - 14:26:23 | R | 533] F:\layout.bin
[02/12/2009 - 14:44:19 | RD ] F:\Readme
[29/10/2009 - 17:19:21 | R | 468056] F:\Setup.bmp
[02/12/2009 - 14:22:34 | R | 378240] F:\setup.exe
[02/12/2009 - 14:22:32 | R | 532] F:\setup.ini
[02/12/2009 - 14:22:28 | R | 254863] F:\setup.inx
[20/02/2007 - 04:10:23 | R | 45] G:\Autorun.inf
[20/02/2007 - 04:10:23 | RD ] G:\DocReader
[20/02/2007 - 04:38:24 | RD ] G:\cz-CZ
[20/02/2007 - 04:30:59 | R | 1128963] G:\data1.cab
[20/02/2007 - 04:28:40 | R | 44991] G:\data1.hdr
[20/02/2007 - 04:38:45 | R | 314414101] G:\data2.cab
[20/02/2007 - 04:36:03 | R | 460818] G:\engine32.cab
[20/02/2007 - 04:33:11 | R | 455] G:\layout.bin
[20/02/2007 - 04:37:58 | R | 119016] G:\setup.exe
[20/02/2007 - 04:37:58 | R | 424572] G:\setup.ibt
[20/02/2007 - 04:37:58 | R | 4150] G:\setup.ico
[20/02/2007 - 04:37:58 | R | 598] G:\setup.ini
[20/02/2007 - 04:37:58 | R | 271435] G:\setup.isn
[14/07/2009 - 14:25:34 | R | 43] H:\autorun.inf
[14/07/2009 - 14:25:34 | RD ] H:\boot
[14/07/2009 - 14:25:34 | R | 383562] H:\bootmgr
[14/07/2009 - 14:25:34 | RD ] H:\efi
[14/07/2009 - 14:25:34 | R | 111880] H:\setup.exe
[14/07/2009 - 14:25:34 | RD ] H:\sources
[14/07/2009 - 14:25:34 | RD ] H:\support
[14/07/2009 - 14:25:34 | RD ] H:\upgrade
[07/08/2008 - 22:24:02 | R | 83] I:\AUTORUN.INF
[30/09/2008 - 20:38:17 | RD ] I:\Adobe CS4
[22/08/2008 - 03:02:58 | RD ] I:\Autoplay
[06/08/2008 - 07:23:05 | R | 189808] I:\Autoplay.exe
[15/05/2008 - 07:03:29 | RD ] I:\Magyar
[17/09/2008 - 13:47:18 | R | 237037] I:\Photoshop CS4 - Czytaj mnie.pdf
[17/09/2008 - 13:50:28 | R | 289124] I:\Photoshop CS4 Beni Oku.pdf
[11/09/2008 - 18:50:11 | R | 221612] I:\Photoshop CS4 – fontos tudnivalók.pdf
[23/09/2008 - 15:52:24 | R | 268560] I:\Photoshop CS4 – Čtěte.pdf
[15/05/2008 - 07:03:38 | RD ] I:\Polski
[11/09/2008 - 18:51:01 | R | 225830] I:\Read Me Photoshop CS4.pdf
[21/08/2008 - 20:36:57 | RD ] I:\Română
[15/05/2008 - 07:03:50 | RD ] I:\Türkçe
[21/04/2003 - 10:39:50 | R | 245408] I:\unicows.dll
[15/05/2008 - 07:03:59 | RD ] I:\Český
[17/09/2008 - 13:48:58 | R | 248530] I:\?????? ? Photoshop CS4.pdf
[15/05/2008 - 07:04:07 | RD ] I:\???????
[15/05/2008 - 07:04:16 | RD ] I:\??????????
[11/09/2008 - 18:51:19 | R | 278854] I:\???? Read Me ??? Photoshop CS4.pdf
[23/09/2011 - 06:33:28 | SHD ] J:\RECYCLER
[23/09/2011 - 00:57:42 | SHD ] J:\System Volume Information
[22/09/2011 - 19:41:38 | D ] J:\WINDOWS
[16/12/2010 - 16:12:44 | D ] L:\DCIM
[25/12/2010 - 16:42:04 | D ] L:\SMRTNTKY
[14/07/2009 - 02:14:38 | N | 17920] L:\setupSNK.exe
[14/04/2008 - 13:00:00 | R | 112] O:\AUTORUN.INF
[14/04/2008 - 13:00:00 | R | 4952] O:\BOOTFONT.BIN
[14/01/2010 - 17:16:27 | RD ] O:\I386
[14/04/2008 - 13:00:00 | R | 36035] O:\README.HTM
[14/04/2008 - 13:00:00 | R | 2584576] O:\SETUP.EXE
[14/04/2008 - 13:00:00 | R | 93980] O:\SETUPXP.HTM
[14/04/2008 - 13:00:00 | R | 10] O:\WIN51
[14/04/2008 - 13:00:00 | R | 10] O:\WIN51IP
[14/04/2008 - 13:00:00 | R | 10] O:\WIN51IP.SP3
################## | Vaccin |
C:\Autorun.inf -> Vaccine created by UsbFix (TeamXscript)
D:\Autorun.inf -> Vaccine created by UsbFix (TeamXscript)
J:\Autorun.inf -> Vaccine created by UsbFix (TeamXscript)
L:\Autorun.inf -> Vaccine created by UsbFix (TeamXscript)
################## | Upload |
Please send the file: C:\UsbFix_Upload_Me_DOMA.zip
http://eldesaparecido.com/support.php
Thank you for your contribution.
################## | E.O.F |