VIR RECYCLER (PRO MOTJI)
Napsal: 29 črc 2012 21:18
Log z USBfixu z notebooku:
############################## | UsbFix V 7.093 | [Deletion]
User: Monika (Administrator) # MONIKA-PC
Updated 08/07/2012 by El Desaparecido
Started at 21:54:58 | 29/07/2012
Website: http://eldesaparecido.com
Forum: http://forum.eldesaparecido.com
Suspicious file ? : http://eldesaparecido.com/upload.php
Contact: contact@eldesaparecido.com
PC: Acer (AO722) (x64-based PC) # Notebook
CPU: AMD C-60 APU with Radeon(tm) HD Graphics (1000)
RAM -> [Total : 3819 | Free : 2321]
BIOS: InsydeH2O Version V1.04
BOOT: Normal boot
OS: Microsoft Windows 7 Home Premium (6.1.7601 64-Bit) # Service Pack 1
WB: Windows Internet Explorer 9.0.8112.16421
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AV: ESET NOD32 Antivirus 4.2 [(!) Disabled | Updated]
FW: Windows FireWall Service [Enabled]
C:\ (%systemdrive%) -> Fixed drive # 452 Gb (343 Mb free - 76%) [Acer] # NTFS
D:\ -> Removable drive # 2 Gb (4 Mb free - 0%) [SD 2GB] # FAT
################## | Active Processes |
C:\Windows\system32\csrss.exe (392)
C:\Windows\system32\wininit.exe (504)
C:\Windows\system32\csrss.exe (528)
C:\Windows\system32\services.exe (568)
C:\Windows\system32\lsass.exe (584)
C:\Windows\system32\lsm.exe (592)
C:\Windows\system32\winlogon.exe (652)
C:\Windows\system32\svchost.exe (748)
C:\Windows\system32\svchost.exe (824)
C:\Windows\system32\atiesrxx.exe (868)
C:\Windows\System32\svchost.exe (952)
C:\Windows\System32\svchost.exe (1004)
C:\Windows\system32\svchost.exe (248)
C:\Windows\system32\svchost.exe (840)
C:\Windows\system32\atieclxx.exe (1028)
C:\Windows\system32\svchost.exe (1152)
C:\Windows\system32\WLANExt.exe (1256)
C:\Windows\system32\conhost.exe (1264)
C:\Windows\System32\spoolsv.exe (1360)
C:\Windows\system32\svchost.exe (1428)
C:\Windows\system32\taskhost.exe (1484)
C:\Windows\system32\Dwm.exe (1560)
C:\Windows\Explorer.EXE (1604)
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (1832)
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (1896)
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (1964)
C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (1972)
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (1984)
C:\Windows\system32\CxAudMsg64.exe (2028)
C:\Program Files\Windows Sidebar\sidebar.exe (2036)
C:\Program Files (x86)\FilesFrog Update Checker\update_checker.exe (1128)
C:\Program Files (x86)\Launch Manager\dsiwmis.exe (1424)
C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe (1568)
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (1480)
C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE (1716)
C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe (1872)
C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe (1388)
C:\Program Files (x86)\Launch Manager\LMworker.exe (2088)
C:\Program Files (x86)\Launch Manager\LMutilps32.exe (2100)
C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe (2108)
C:\Program Files (x86)\Launch Manager\LManager.exe (2184)
C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe (2208)
C:\Windows\system32\svchost.exe (2232)
C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (2272)
C:\Program Files\Acer\Acer Updater\UpdaterService.exe (2312)
c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (2360)
C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe (2404)
C:\Windows\system32\svchost.exe (2480)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (2520)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (2692)
C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (2768)
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe (2836)
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (3020)
C:\Windows\system32\wbem\wmiprvse.exe (2336)
C:\Windows\system32\wbem\unsecapp.exe (2940)
C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe (3296)
C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe (3392)
C:\Windows\system32\SearchIndexer.exe (3576)
C:\Windows\system32\svchost.exe (3968)
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (3492)
C:\Program Files\Windows Media Player\wmpnetwk.exe (3764)
C:\Windows\System32\svchost.exe (4332)
C:\Windows\system32\DllHost.exe (364)
C:\Windows\SysWOW64\RunDll32.exe (1700)
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (3996)
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (4208)
C:\Windows\System32\svchost.exe (1068)
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (1228)
C:\Windows\system32\svchost.exe (4472)
C:\Windows\system32\svchost.exe (4176)
C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe (984)
C:\Windows\System32\mobsync.exe (1824)
C:\Program Files (x86)\Mozilla Firefox\firefox.exe (2864)
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe (4596)
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_3_300_268.exe (2664)
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_3_300_268.exe (5924)
C:\Windows\system32\WUDFHost.exe (2356)
C:\Windows\system32\SearchProtocolHost.exe (1536)
C:\Windows\system32\SearchFilterHost.exe (7164)
C:\UsbFix\Go.exe (4928)
C:\Windows\system32\wbem\wmiprvse.exe (3504)
################## | Stopped processes |
Stopped! C:\Windows\system32\atiesrxx.exe (868)
Stopped! C:\Windows\system32\atieclxx.exe (1028)
Stopped! C:\Windows\system32\WLANExt.exe (1256)
Stopped! C:\Windows\System32\spoolsv.exe (1360)
Stopped! C:\Windows\system32\taskhost.exe (1484)
Stopped! C:\Windows\Explorer.EXE (1604)
Stopped! C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (1832)
Stopped! C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (1896)
Stopped! C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (1964)
Stopped! C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (1972)
Stopped! C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (1984)
Stopped! C:\Windows\system32\CxAudMsg64.exe (2028)
Stopped! C:\Program Files\Windows Sidebar\sidebar.exe (2036)
Stopped! C:\Program Files (x86)\FilesFrog Update Checker\update_checker.exe (1128)
Stopped! C:\Program Files (x86)\Launch Manager\dsiwmis.exe (1424)
Stopped! C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe (1568)
Stopped! C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (1480)
Stopped! C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE (1716)
Stopped! C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe (1872)
Stopped! C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe (1388)
Stopped! C:\Program Files (x86)\Launch Manager\LMworker.exe (2088)
Stopped! C:\Program Files (x86)\Launch Manager\LMutilps32.exe (2100)
Stopped! C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe (2108)
Stopped! C:\Program Files (x86)\Launch Manager\LManager.exe (2184)
Stopped! C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe (2208)
Stopped! C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (2272)
Stopped! C:\Program Files\Acer\Acer Updater\UpdaterService.exe (2312)
Stopped! c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (2360)
Stopped! C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe (2404)
Stopped! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (2520)
Stopped! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (2692)
Stopped! C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (2768)
Stopped! C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe (2836)
Stopped! C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (3020)
Stopped! C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe (3296)
Stopped! C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe (3392)
Stopped! C:\Windows\system32\SearchIndexer.exe (3576)
Stopped! C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (3492)
Stopped! C:\Program Files\Windows Media Player\wmpnetwk.exe (3764)
Stopped! C:\Windows\system32\DllHost.exe (364)
Stopped! C:\Windows\SysWOW64\RunDll32.exe (1700)
Stopped! C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (3996)
Stopped! C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (4208)
Stopped! C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (1228)
Stopped! C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe (984)
Stopped! C:\Windows\System32\mobsync.exe (1824)
Stopped! C:\Program Files (x86)\Mozilla Firefox\firefox.exe (2864)
Stopped! C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe (4596)
Stopped! C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_3_300_268.exe (2664)
Stopped! C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_3_300_268.exe (5924)
Stopped! C:\Windows\system32\WUDFHost.exe (2356)
Stopped! C:\Windows\system32\SearchProtocolHost.exe (1536)
Stopped! C:\Windows\system32\SearchFilterHost.exe (7164)
################## | Files # Infected Folders |
Deleted ! C:\$RECYCLE.BIN\S-1-5-20
Deleted ! C:\$RECYCLE.BIN\S-1-5-21-164997144-3361878971-219360879-500
Deleted ! C:\$RECYCLE.BIN\S-1-5-21-2361239559-3042083619-923908226-1001
Deleted ! C:\$RECYCLE.BIN\S-1-5-21-2361239559-3042083619-923908226-500
(!) Temporary files deleted.
################## | Registry |
################## | Mountpoints2 |
################## | Listing |
[29/07/2012 - 21:58:06 | SHD ] C:\$Recycle.Bin
[07/09/2011 - 12:57:21 | D ] C:\book
[22/06/2011 - 15:54:23 | N | 8192] C:\BOOTSECT.BAK
[14/05/2012 - 14:54:28 | N | 4608] C:\DANES_MARTIN_certifikatKB.p12
[14/07/2009 - 07:08:56 | SHD ] C:\Documents and Settings
[04/12/2011 - 17:42:26 | D ] C:\Downloads
[29/07/2012 - 17:25:40 | ASH | 3003305984] C:\hiberfil.sys
[07/02/2012 - 13:58:41 | N | 132] C:\ICSYSINF.log
[18/06/2012 - 18:15:32 | N | 4635] C:\KOSTALOVA_MONIKA.p12
[09/01/2012 - 16:56:59 | RHD ] C:\MSOCache
[07/09/2011 - 12:57:25 | D ] C:\OEM
[29/07/2012 - 17:25:44 | ASH | 4004409344] C:\pagefile.sys
[14/07/2009 - 05:20:08 | D ] C:\PerfLogs
[22/07/2012 - 21:08:39 | D ] C:\Program Files
[24/07/2012 - 15:52:13 | D ] C:\Program Files (x86)
[29/05/2012 - 09:56:18 | HD ] C:\ProgramData
[07/09/2011 - 12:37:06 | SHD ] C:\Recovery
[29/07/2012 - 20:04:05 | SHD ] C:\System Volume Information
[26/07/2012 - 16:30:32 | N | 126128] C:\TDSSKiller.2.7.48.0_26.07.2012_16.29.41_log.txt
[26/07/2012 - 22:50:49 | N | 126128] C:\TDSSKiller.2.7.48.0_26.07.2012_22.49.55_log.txt
[29/07/2012 - 21:58:06 | D ] C:\UsbFix
[29/07/2012 - 21:55:17 | A | 10589] C:\UsbFix.txt
[12/07/2012 - 09:52:53 | N | 447] C:\user.js
[07/09/2011 - 12:39:06 | D ] C:\Users
[23/07/2012 - 18:40:51 | D ] C:\Windows
[29/07/2012 - 19:06:14 | D ] D:\MONIKA-PC
[29/07/2012 - 19:06:14 | N | 528] D:\MediaID.bin
################## | Vaccin |
C:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
D:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
################## | Upload |
Please send the file: C:\UsbFix_Upload_Me_MONIKA-PC.zip
http://eldesaparecido.com/upload.php
Thank you for your contribution.
################## | E.O.F |
############################## | UsbFix V 7.093 | [Deletion]
User: Monika (Administrator) # MONIKA-PC
Updated 08/07/2012 by El Desaparecido
Started at 21:54:58 | 29/07/2012
Website: http://eldesaparecido.com
Forum: http://forum.eldesaparecido.com
Suspicious file ? : http://eldesaparecido.com/upload.php
Contact: contact@eldesaparecido.com
PC: Acer (AO722) (x64-based PC) # Notebook
CPU: AMD C-60 APU with Radeon(tm) HD Graphics (1000)
RAM -> [Total : 3819 | Free : 2321]
BIOS: InsydeH2O Version V1.04
BOOT: Normal boot
OS: Microsoft Windows 7 Home Premium (6.1.7601 64-Bit) # Service Pack 1
WB: Windows Internet Explorer 9.0.8112.16421
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AV: ESET NOD32 Antivirus 4.2 [(!) Disabled | Updated]
FW: Windows FireWall Service [Enabled]
C:\ (%systemdrive%) -> Fixed drive # 452 Gb (343 Mb free - 76%) [Acer] # NTFS
D:\ -> Removable drive # 2 Gb (4 Mb free - 0%) [SD 2GB] # FAT
################## | Active Processes |
C:\Windows\system32\csrss.exe (392)
C:\Windows\system32\wininit.exe (504)
C:\Windows\system32\csrss.exe (528)
C:\Windows\system32\services.exe (568)
C:\Windows\system32\lsass.exe (584)
C:\Windows\system32\lsm.exe (592)
C:\Windows\system32\winlogon.exe (652)
C:\Windows\system32\svchost.exe (748)
C:\Windows\system32\svchost.exe (824)
C:\Windows\system32\atiesrxx.exe (868)
C:\Windows\System32\svchost.exe (952)
C:\Windows\System32\svchost.exe (1004)
C:\Windows\system32\svchost.exe (248)
C:\Windows\system32\svchost.exe (840)
C:\Windows\system32\atieclxx.exe (1028)
C:\Windows\system32\svchost.exe (1152)
C:\Windows\system32\WLANExt.exe (1256)
C:\Windows\system32\conhost.exe (1264)
C:\Windows\System32\spoolsv.exe (1360)
C:\Windows\system32\svchost.exe (1428)
C:\Windows\system32\taskhost.exe (1484)
C:\Windows\system32\Dwm.exe (1560)
C:\Windows\Explorer.EXE (1604)
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (1832)
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (1896)
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (1964)
C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (1972)
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (1984)
C:\Windows\system32\CxAudMsg64.exe (2028)
C:\Program Files\Windows Sidebar\sidebar.exe (2036)
C:\Program Files (x86)\FilesFrog Update Checker\update_checker.exe (1128)
C:\Program Files (x86)\Launch Manager\dsiwmis.exe (1424)
C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe (1568)
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (1480)
C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE (1716)
C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe (1872)
C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe (1388)
C:\Program Files (x86)\Launch Manager\LMworker.exe (2088)
C:\Program Files (x86)\Launch Manager\LMutilps32.exe (2100)
C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe (2108)
C:\Program Files (x86)\Launch Manager\LManager.exe (2184)
C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe (2208)
C:\Windows\system32\svchost.exe (2232)
C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (2272)
C:\Program Files\Acer\Acer Updater\UpdaterService.exe (2312)
c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (2360)
C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe (2404)
C:\Windows\system32\svchost.exe (2480)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (2520)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (2692)
C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (2768)
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe (2836)
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (3020)
C:\Windows\system32\wbem\wmiprvse.exe (2336)
C:\Windows\system32\wbem\unsecapp.exe (2940)
C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe (3296)
C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe (3392)
C:\Windows\system32\SearchIndexer.exe (3576)
C:\Windows\system32\svchost.exe (3968)
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (3492)
C:\Program Files\Windows Media Player\wmpnetwk.exe (3764)
C:\Windows\System32\svchost.exe (4332)
C:\Windows\system32\DllHost.exe (364)
C:\Windows\SysWOW64\RunDll32.exe (1700)
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (3996)
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (4208)
C:\Windows\System32\svchost.exe (1068)
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (1228)
C:\Windows\system32\svchost.exe (4472)
C:\Windows\system32\svchost.exe (4176)
C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe (984)
C:\Windows\System32\mobsync.exe (1824)
C:\Program Files (x86)\Mozilla Firefox\firefox.exe (2864)
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe (4596)
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_3_300_268.exe (2664)
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_3_300_268.exe (5924)
C:\Windows\system32\WUDFHost.exe (2356)
C:\Windows\system32\SearchProtocolHost.exe (1536)
C:\Windows\system32\SearchFilterHost.exe (7164)
C:\UsbFix\Go.exe (4928)
C:\Windows\system32\wbem\wmiprvse.exe (3504)
################## | Stopped processes |
Stopped! C:\Windows\system32\atiesrxx.exe (868)
Stopped! C:\Windows\system32\atieclxx.exe (1028)
Stopped! C:\Windows\system32\WLANExt.exe (1256)
Stopped! C:\Windows\System32\spoolsv.exe (1360)
Stopped! C:\Windows\system32\taskhost.exe (1484)
Stopped! C:\Windows\Explorer.EXE (1604)
Stopped! C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (1832)
Stopped! C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (1896)
Stopped! C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (1964)
Stopped! C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (1972)
Stopped! C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (1984)
Stopped! C:\Windows\system32\CxAudMsg64.exe (2028)
Stopped! C:\Program Files\Windows Sidebar\sidebar.exe (2036)
Stopped! C:\Program Files (x86)\FilesFrog Update Checker\update_checker.exe (1128)
Stopped! C:\Program Files (x86)\Launch Manager\dsiwmis.exe (1424)
Stopped! C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe (1568)
Stopped! C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (1480)
Stopped! C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE (1716)
Stopped! C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe (1872)
Stopped! C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe (1388)
Stopped! C:\Program Files (x86)\Launch Manager\LMworker.exe (2088)
Stopped! C:\Program Files (x86)\Launch Manager\LMutilps32.exe (2100)
Stopped! C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe (2108)
Stopped! C:\Program Files (x86)\Launch Manager\LManager.exe (2184)
Stopped! C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe (2208)
Stopped! C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (2272)
Stopped! C:\Program Files\Acer\Acer Updater\UpdaterService.exe (2312)
Stopped! c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (2360)
Stopped! C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe (2404)
Stopped! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (2520)
Stopped! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (2692)
Stopped! C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (2768)
Stopped! C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe (2836)
Stopped! C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (3020)
Stopped! C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe (3296)
Stopped! C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe (3392)
Stopped! C:\Windows\system32\SearchIndexer.exe (3576)
Stopped! C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (3492)
Stopped! C:\Program Files\Windows Media Player\wmpnetwk.exe (3764)
Stopped! C:\Windows\system32\DllHost.exe (364)
Stopped! C:\Windows\SysWOW64\RunDll32.exe (1700)
Stopped! C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (3996)
Stopped! C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (4208)
Stopped! C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (1228)
Stopped! C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe (984)
Stopped! C:\Windows\System32\mobsync.exe (1824)
Stopped! C:\Program Files (x86)\Mozilla Firefox\firefox.exe (2864)
Stopped! C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe (4596)
Stopped! C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_3_300_268.exe (2664)
Stopped! C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_3_300_268.exe (5924)
Stopped! C:\Windows\system32\WUDFHost.exe (2356)
Stopped! C:\Windows\system32\SearchProtocolHost.exe (1536)
Stopped! C:\Windows\system32\SearchFilterHost.exe (7164)
################## | Files # Infected Folders |
Deleted ! C:\$RECYCLE.BIN\S-1-5-20
Deleted ! C:\$RECYCLE.BIN\S-1-5-21-164997144-3361878971-219360879-500
Deleted ! C:\$RECYCLE.BIN\S-1-5-21-2361239559-3042083619-923908226-1001
Deleted ! C:\$RECYCLE.BIN\S-1-5-21-2361239559-3042083619-923908226-500
(!) Temporary files deleted.
################## | Registry |
################## | Mountpoints2 |
################## | Listing |
[29/07/2012 - 21:58:06 | SHD ] C:\$Recycle.Bin
[07/09/2011 - 12:57:21 | D ] C:\book
[22/06/2011 - 15:54:23 | N | 8192] C:\BOOTSECT.BAK
[14/05/2012 - 14:54:28 | N | 4608] C:\DANES_MARTIN_certifikatKB.p12
[14/07/2009 - 07:08:56 | SHD ] C:\Documents and Settings
[04/12/2011 - 17:42:26 | D ] C:\Downloads
[29/07/2012 - 17:25:40 | ASH | 3003305984] C:\hiberfil.sys
[07/02/2012 - 13:58:41 | N | 132] C:\ICSYSINF.log
[18/06/2012 - 18:15:32 | N | 4635] C:\KOSTALOVA_MONIKA.p12
[09/01/2012 - 16:56:59 | RHD ] C:\MSOCache
[07/09/2011 - 12:57:25 | D ] C:\OEM
[29/07/2012 - 17:25:44 | ASH | 4004409344] C:\pagefile.sys
[14/07/2009 - 05:20:08 | D ] C:\PerfLogs
[22/07/2012 - 21:08:39 | D ] C:\Program Files
[24/07/2012 - 15:52:13 | D ] C:\Program Files (x86)
[29/05/2012 - 09:56:18 | HD ] C:\ProgramData
[07/09/2011 - 12:37:06 | SHD ] C:\Recovery
[29/07/2012 - 20:04:05 | SHD ] C:\System Volume Information
[26/07/2012 - 16:30:32 | N | 126128] C:\TDSSKiller.2.7.48.0_26.07.2012_16.29.41_log.txt
[26/07/2012 - 22:50:49 | N | 126128] C:\TDSSKiller.2.7.48.0_26.07.2012_22.49.55_log.txt
[29/07/2012 - 21:58:06 | D ] C:\UsbFix
[29/07/2012 - 21:55:17 | A | 10589] C:\UsbFix.txt
[12/07/2012 - 09:52:53 | N | 447] C:\user.js
[07/09/2011 - 12:39:06 | D ] C:\Users
[23/07/2012 - 18:40:51 | D ] C:\Windows
[29/07/2012 - 19:06:14 | D ] D:\MONIKA-PC
[29/07/2012 - 19:06:14 | N | 528] D:\MediaID.bin
################## | Vaccin |
C:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
D:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
################## | Upload |
Please send the file: C:\UsbFix_Upload_Me_MONIKA-PC.zip
http://eldesaparecido.com/upload.php
Thank you for your contribution.
################## | E.O.F |