Anonim / 5 lat temu | Download | Plaintext | Odpowiedz |

  1
  2
  3
  4
  5
  6
  7
  8
  9
 10
 11
 12
 13
 14
 15
 16
 17
 18
 19
 20
 21
 22
 23
 24
 25
 26
 27
 28
 29
 30
 31
 32
 33
 34
 35
 36
 37
 38
 39
 40
 41
 42
 43
 44
 45
 46
 47
 48
 49
 50
 51
 52
 53
 54
 55
 56
 57
 58
 59
 60
 61
 62
 63
 64
 65
 66
 67
 68
 69
 70
 71
 72
 73
 74
 75
 76
 77
 78
 79
 80
 81
 82
 83
 84
 85
 86
 87
 88
 89
 90
 91
 92
 93
 94
 95
 96
 97
 98
 99
100
############################## | UsbFix V 7.093 | [Research]

User: Berlot (Administrator) # 1234-42498147EB
Updated 08/07/2012 by El Desaparecido
Started at 13:14:25 | 16/11/2012

Website: http://eldesaparecido.com
Forum: http://forum.eldesaparecido.com
Suspicious file ? : http://eldesaparecido.com/upload.php
Contact: contact@eldesaparecido.com

PC: TOSHIBA (SATELLITE M100) (X86-based PC) # Notebook
CPU: Genuine Intel(R) CPU           T2300  @ 1.66GHz (1662)
RAM -> [Total : 1014 | Free : 389]
BIOS: Ver 1.00PARTTBL0
BOOT: Normal boot

OS: Microsoft Windows XP Professional (5.1.2600 32-Bit) # Dodatek Service Pack 3
WB: Windows Internet Explorer 8.0.6001.18702

SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
FW: Windows FireWall Service [Enabled]

C:\ (%systemdrive%) -> Fixed drive # 20 Gb (314 Mb free - 2%) [] # NTFS
D:\ -> Fixed drive # 36 Gb (10 Mb free - 27%) [Dysk lokalny] # NTFS
E:\ -> CD-ROM
F:\ -> Removable drive # 14 Gb (6 Mb free - 41%) [KINGSTON] # FAT32

################## | Active Processes |

C:\WINDOWS\System32\smss.exe (932)
C:\WINDOWS\system32\winlogon.exe (1024)
C:\WINDOWS\system32\services.exe (1068)
C:\WINDOWS\system32\lsass.exe (1080)
C:\WINDOWS\system32\svchost.exe (1240)
C:\WINDOWS\System32\svchost.exe (1348)
C:\Program Files\Intel\WiFi\bin\S24EvMon.exe (1580)
C:\Program Files\AVAST Software\Avast\AvastSvc.exe (1932)
C:\WINDOWS\system32\spoolsv.exe (1980)
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe (584)
C:\Program Files\Intel\WiFi\bin\EvtEng.exe (648)
C:\WINDOWS\System32\FTRTSVC.exe (664)
C:\Program Files\Java\jre6\bin\jqs.exe (760)
C:\WINDOWS\system32\LGScsiCommandService.exe (788)
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE (848)
C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (948)
C:\WINDOWS\system32\svchost.exe (280)
C:\WINDOWS\system32\wbem\wmiapsrv.exe (2400)
C:\WINDOWS\system32\ZCfgSvc.exe (3200)
C:\WINDOWS\Explorer.EXE (3120)
C:\Program Files\Winamp\winampa.exe (1568)
C:\Program Files\Common Files\Real\Update_OB\realsched.exe (3344)
C:\Program Files\Apoint2K\Apoint.exe (3460)
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe (3464)
C:\Program Files\TOSHIBA\ConfigFree\CFSServ.exe (2692)
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe (1400)
C:\Program Files\TOSHIBA\TOSHIBAs kontroller\TFncKy.exe (3104)
C:\Program Files\TOSHIBA\Tvs\TvsTray.exe (3512)
C:\WINDOWS\system32\igfxtray.exe (2944)
C:\WINDOWS\system32\hkcmd.exe (1300)
C:\WINDOWS\system32\igfxpers.exe (3312)
C:\WINDOWS\AGRSMMSG.exe (3304)
C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (3556)
C:\WINDOWS\RTHDCPL.EXE (3588)
C:\Program Files\AVAST Software\Avast\avastUI.exe (3244)
C:\Program Files\Common Files\Java\Java Update\jusched.exe (2192)
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (3852)
C:\WINDOWS\system32\ctfmon.exe (3808)
C:\Program Files\Apoint2K\Apntex.exe (3972)
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe (3592)
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (1004)
C:\WINDOWS\system32\wbem\unsecapp.exe (2828)
C:\Program Files\Mozilla Firefox\firefox.exe (4024)
C:\Program Files\Mozilla Firefox\plugin-container.exe (3988)
C:\WINDOWS\system32\wscntfy.exe (3472)
C:\UsbFix\Go.exe (3668)

################## | Files # Infected Folders |

Found ! F:\unInstaller.exe.lnk
Found ! F:\urDrive.exe.lnk
Found ! F:\Contents.lnk
Found ! F:\Statystyka.lnk
Found ! F:\ed7e8f3_a.exe
Found ! D:\MUZYKA
Found ! F:\autorun.inf

################## | Registry |


################## | Mountpoints2 |



################## | Vaccin |

(!) This computer is not vaccinated!

################## | E.O.F |