Sunteți pe pagina 1din 5

[b]############################## | UsbFix V 7.

811 | [Limpiar][/b]
Usuario: HernnMatias (Administrador) # HERNANPC
Actualizado el 20/01/2015 por El Desaparecido - SosVirus
Comenz a 19:41:50 | 23/01/2015
Sitio web : [url=http://www.es.usbfix.net/]http://www.es.usbfix.net/[/url]
Changelog : [url=http://www.usbfix.net/maj/]http://www.usbfix.net/maj/[/url]
Asistencia : [url=http://www.forospyware.com/foro-de-virus-y-spywares/?utm_sourc
e=UsbFix&utm_medium=support&utm_campaign=UsbFix-Forospyware]http://www.forospywa
re.com/foro-de-virus-y-spywares/?utm_source=UsbFix&utm_medium=support&utm_campai
gn=UsbFix-Forospyware[/url]
Dtection en directo : [url=http://como-eliminar.net/category/usb-virus/]http://co
mo-eliminar.net/category/usb-virus/[/url]
Contacto : [url=http://www.es.usbfix.net/contacto/]http://www.es.usbfix.net/cont
acto/[/url]
[b]################## | System information |[/b]
MB: Dell Inc. (09XNFP)
CPU: Intel(R) Core(TM) i3-3227U CPU @ 1.90GHz
GC: Intel(R) HD Graphics 4000
RAM -> [Total : 3993 Mo | Free : 1238 Mo]
Bios: Dell Inc.
Boot: Normal boot
OS:
WB:
WB:
WB:
WB:

Microsoft Windows 8 Single Language (6.2.9200 64-Bit)


Internet Explorer : 10.00.9200.16384
Google Chrome : 35.0.1916.114
Mozilla Firefox : 35.0
Opera : 26.0.1656.60

[b]################## | Security Information |[/b]


AV:
AV:
AV:
AS:
AS:
AS:
FW:
FW:
SC:
WU:

Norton Security with Backup [Activado |Actualizado]


Windows Defender [[b](!) Desactivado[/b] |Actualizado]
Baidu Antivirus [Activado |Actualizado]
Windows Defender [[b](!) Desactivado[/b] |Actualizado]
Baidu Antivirus [Activado |Actualizado]
Norton Security with Backup [Activado |Actualizado]
Norton Security with Backup [Activado]
Windows Firewall [Activado]
Security Center [Activado]
Windows Update [Activado]

[b]################## | Disk Information |[/b]


C:\ (%SystemDrive%) -> Disco fijo # 450 Gb (392 Gb libre(s) - 87%) [OS] # NTFS
E:\ -> Disco extrable # 8 Gb (97 Mb libre(s) - 1%) [] # NTFS
F:\ -> Disco extrable # 497 Mb (6 Mb libre(s) - 1%) [IRIVER] # FAT
[b]################## | Bsqueda genrica |[/b]
Borrado! C:\Users\HernnMatias\AppData\Roaming\Microsoft\Windows\Start Menu\Progra
ms\Startup\Tempnorton.vbs
Borrado! E:\Tempnorton.vbs
Borrado! F:\Tempnorton.vbs
Borrado! C:\Users\HERNNM~1\AppData\Local\Temp\Tempnorton.vbs
Borrado! C:\Users\HernnMatias\AppData\Local\Tempnorton.vbs
Borrado! C:\Users\HernnMatias\AppData\Roaming\WSE_Lasaoren

Borrado!
Borrado!
Borrado!
Borrado!
Borrado!
Borrado!
exe
Borrado!
Borrado!
Borrado!

C:\Users\HernnMatias\AppData\Roaming\WSE_Lasaoren\UpdateProc\bkup.dat
C:\Users\HernnMatias\AppData\Roaming\WSE_Lasaoren\UpdateProc\config.dat
C:\Users\HernnMatias\AppData\Roaming\WSE_Lasaoren\UpdateProc\info.dat
C:\Users\HernnMatias\AppData\Roaming\WSE_Lasaoren\UpdateProc\STTL.DAT
C:\Users\HernnMatias\AppData\Roaming\WSE_Lasaoren\UpdateProc\TTL.DAT
C:\Users\HernnMatias\AppData\Roaming\WSE_Lasaoren\UpdateProc\updatetask.
C:\Users\HernnMatias\AppData\Roaming\WSE_Lasaoren
C:\Users\HernnMatias\AppData\Roaming\WSE_Lasaoren
C:\Users\HernnMatias\AppData\Local\1207956875dsisetup12079610932.exe

(!) Archivos temporales suprimido. (17.6898889541626 MB)


[b]################## | Registro |[/b]
Borrado! HKLM\Software\Tempnorton
Borrado! HKU\S-1-5-21-3858766918-212384637-3344864995-1001\Software\Microsoft\Wi
ndows\CurrentVersion\Run|Tempnorton
Borrado! HKLM\Software\Microsoft\Windows\CurrentVersion\Run|Tempnorton
[b]################## | Regedit Run |[/b]
F2 - HKLM\..\Winlogon : [Shell] explorer.exe
F2 - [x64] HKLM\..\Winlogon : [Shell] explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] userinit.exe
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKCU\..\Run : [Gameo] C:\Users\HernnMatias\AppData\Roaming\Gameo\gameo.exe "
C:\Users\HernnMatias\AppData\Roaming\Gameo\gameo.dat" mode:minimized
04 - HKCU\..\Run : [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minim
ized /regrun
04 - HKCU\..\Run : [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1453.0.
0.0\jsdrv.exe
04 - HKCU\..\Run : [se] "C:\Users\HernnMatias\AppData\Roaming\SkypEmoticons\SE.ex
e" /minimized
04 - HKCU\..\Run : [pricefountainw.exe] C:\Users\HernnMatias\AppData\Local\PriceF
ountain\pricefountainw.exe HKEY_CURRENT_USER Software\PriceFountain
04 - HKCU\..\Run : [uTorrent] "C:\Users\HernnMatias\AppData\Roaming\uTorrent\uTor
rent.exe" /MINIMIZED
04 - HKCU\..\Run : [SoftonicAssistant] "C:\Users\HernnMatias\AppData\Local\Softon
icAssistant\SoftonicAssistant.exe"
04 - HKLM\..\Run : [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Stor
age Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid
Storage Technology\IAStorIcon.exe" 60
04 - HKLM\..\Run : [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD1
0\PDVD10Serv.exe"
04 - HKLM\..\Run : [Baidu Antivirus] "C:\Program Files (x86)\Baidu-Security-2014
-4.4.4.82804\Baidu Antivirus\BavTray.exe" -auto
04 - [x64] HKLM\..\Run : [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64
.exe -s
04 - [x64] HKLM\..\Run : [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.ex
e /MAXX4
04 - [x64] HKLM\..\Run : [IgfxTray] C:\Windows\system32\igfxtray.exe
04 - [x64] HKLM\..\Run : [HotKeysCmds] C:\Windows\system32\hkcmd.exe
04 - [x64] HKLM\..\Run : [Persistence] C:\Windows\system32\igfxpers.exe
04 - [x64] HKLM\..\Run : [QuickSet] c:\Program Files\Dell\QuickSet\QuickSet.exe
04 - [x64] HKLM\..\Run : [Broadcom Wireless Manager UI] C:\Program Files\Dell\DW
WLAN Card\WLTRAY.exe
04 - HKU\S-1-5-21-3858766918-212384637-3344864995-1001\..\Run : [Gameo] C:\Users
\HernnMatias\AppData\Roaming\Gameo\gameo.exe "C:\Users\HernnMatias\AppData\Roaming
\Gameo\gameo.dat" mode:minimized

04 - HKU\S-1-5-21-3858766918-212384637-3344864995-1001\..\Run : [Skype] "C:\Prog


ram Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
04 - HKU\S-1-5-21-3858766918-212384637-3344864995-1001\..\Run : [SPDriver] C:\Pr
ogram Files (x86)\ShopperPro\JSDriver\1453.0.0.0\jsdrv.exe
04 - HKU\S-1-5-21-3858766918-212384637-3344864995-1001\..\Run : [se] "C:\Users\H
ernnMatias\AppData\Roaming\SkypEmoticons\SE.exe" /minimized
04 - HKU\S-1-5-21-3858766918-212384637-3344864995-1001\..\Run : [pricefountainw.
exe] C:\Users\HernnMatias\AppData\Local\PriceFountain\pricefountainw.exe HKEY_CUR
RENT_USER Software\PriceFountain
04 - HKU\S-1-5-21-3858766918-212384637-3344864995-1001\..\Run : [uTorrent] "C:\U
sers\HernnMatias\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
04 - HKU\S-1-5-21-3858766918-212384637-3344864995-1001\..\Run : [SoftonicAssista
nt] "C:\Users\HernnMatias\AppData\Local\SoftonicAssistant\SoftonicAssistant.exe"
04GS - MyPC Backup.lnk : C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe
04GS - AdFender.lnk : C:\Program Files (x86)\AdFender\AdFender.exe
04GS - Bluetooth.lnk : C:\Program Files (x86)\WIDCOMM\Bluetooth Software\BTTray.
exe
[b]################## | UsbFix - Informacin |[/b]
UsbFix detect sobre su ordenador, una infeccin que dispone de una funcin de Keylogg
er.
Despus de limpiar con UsbFix, por favor, modifique todas sus contraseas.
Si usted efectu compras en internet,
por favor, ponerse en contacto con su banco con el fin de enviseager una oposicin
sobre su tarjeta bancaria.
Info : [url=https://www.youtube.com/watch?v=vUZYYASd7FE]Cmo eliminar el virus de a
cceso directo en el disco flash ? (Video)[/url]
Info : [url=http://www.es.usbfix.net/2015/01/como-eliminar-el-virus-de-acceso-di
recto-usb/]Como eliminar el virus de acceso directo USB?[/url]
[b]################## | Hijack |[/b]
Restorado! [N] E:\09-Ten Years Gone.mp3
Restorado! [N] E:\Charly Garcia - Yendo De La Cama Al Living (Pro).pdf
Restorado! [N] E:\Charly Garca - Yendo de la cama al living.mp3
Restorado! [N] E:\ComprobantePagoRealizado.pdf
Restorado! [N] E:\ComprobantePagoRealizado2.pdf
Restorado! [N] E:\Creedence Clearwater Revival - Fortunate Son.pdf
Restorado! [N] E:\Creedence Clearwater Revival Fortunate Son.mp3
Restorado! [D] E:\E-Books Bajo
Restorado! [D] E:\Hotel Budapest
Restorado! [N] E:\Jauja.2014.DVDRip.x264.HORiZON-ArtSubs.mkv
Restorado! [N] E:\Led Zeppelin - Ten Years Gone.pdf
Restorado! [D] E:\Non Stop
Restorado! [N] F:\TUNER.DAT
Restorado! [D] F:\Creedence
Restorado! [D] F:\Varios
Restorado! [D] F:\Queen
Restorado! [D] F:\2014....The Stories We Could Tell
Restorado! [D] F:\Creedence Clearwater Revival - Chronicle - The 20 Greatest Hit
s 320cbr (Big Papi) 1991
Restorado! [D] F:\Playlists
Restorado! [D] F:\VOICE
Restorado! [D] F:\RECORD
Restorado! [N] F:\T10.SYS
[b]################## | C:\ %SystemDrive% - Disco fijo (NTFS) |[/b]

[26/10/2014
pi
[23/05/2013
[27/01/2014
[16/01/2015
[16/01/2015
[23/01/2015
[27/01/2014
[31/07/2014
[13/12/2014
[02/06/2012
[26/07/2012
[26/07/2012
[26/07/2012
[27/01/2014
[27/01/2014
[27/01/2014
[27/01/2014
[27/01/2014
[27/01/2014
[31/07/2014
[19/09/2014
[19/09/2014
[23/10/2014
[08/11/2014
[18/11/2014
[13/12/2014
[10/01/2015
[16/01/2015
[20/01/2015
[23/01/2015

- 14:02:21 | A | 4 Ko] - C:\{b6a94784-0ffb-4121-88c6-435139067ee2}.x


-

14:37:36
09:19:03
17:24:17
17:24:19
19:41:59
17:24:20
18:04:22
14:43:22
11:30:55
00:44:30
04:22:08
04:33:46
08:30:24
09:18:57
09:19:47
15:59:23
18:42:01
19:38:51
13:51:40
21:04:56
21:31:30
16:56:52
20:51:08
18:05:27
10:22:15
22:35:43
17:25:45
16:23:23
19:41:07

|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|

N | 0 Ko] - C:\DBAR_Ver.txt
A | 1 Ko] - C:\installlog.txt
ASH | 3271136 Ko] - C:\hiberfil.sys
ASH | 262144 Ko] - C:\swapfile.sys
ASH | 2273852 Ko] - C:\pagefile.sys
N | 31 Ko] - C:\dell.sdr
SHD] - C:\$Recycle.Bin
D] - C:\$Windows.~BT
N | 0 Ko] - C:\BOOTNXT
RASH | 389 Ko] - C:\bootmgr
SHD] - C:\Documents and Settings
D] - C:\PerfLogs
D] - C:\Intel
D] - C:\Temp
D] - C:\apps
D] - C:\Drivers
D] - C:\DELL
D] - C:\System Recovery
D] - C:\Archivos de programa
RD] - C:\Users
D] - C:\$SysReset
D] - C:\e0cfb323512e890361
RD] - C:\Program Files
D] - C:\f304b0f5e3bf513cf2177933
SHD] - C:\Recovery
D] - C:\Windows
HD] - C:\ProgramData
RD] - C:\Program Files (x86)
D] - C:\UsbFix

[b]################## | E:\ - Disco extrable (NTFS) |[/b]


[16/11/2014 - 19:34:29
[16/11/2014 - 19:58:20
te Son.pdf
[16/11/2014 - 20:12:52
ving (Pro).pdf
[29/11/2014 - 11:19:48
[29/11/2014 - 11:22:38
[16/11/2014 - 19:59:53
e Son.mp3
[16/11/2014 - 20:10:13
[16/11/2014 - 20:17:28
ing.mp3
[04/01/2015 - 21:33:01
Subs.mkv
[05/11/2014 - 20:26:31
[09/12/2014 - 23:21:48
[10/01/2015 - 13:33:10

| N | 453 Ko] - E:\Led Zeppelin - Ten Years Gone.pdf


| N | 272 Ko] - E:\Creedence Clearwater Revival - Fortuna
| N | 202 Ko] - E:\Charly Garcia - Yendo De La Cama Al Li
| N | 9 Ko] - E:\ComprobantePagoRealizado.pdf
| N | 9 Ko] - E:\ComprobantePagoRealizado2.pdf
| N | 5438 Ko] - E:\Creedence Clearwater Revival Fortunat
| N | 9116 Ko] - E:\09-Ten Years Gone.mp3
| N | 4153 Ko] - E:\Charly Garca - Yendo de la cama al liv
| N | 1659377 Ko] - E:\Jauja.2014.DVDRip.x264.HORiZON-Art
| D] - E:\E-Books Bajo
| D] - E:\Hotel Budapest
| D] - E:\Non Stop

[b]################## | F:\ - Disco extrable (FAT) |[/b]


[04/01/2015
[26/07/2007
[07/01/2014
[10/03/2006
[10/03/2006
[12/11/2007

18:35:20
23:00:16
20:07:54
14:26:18
14:26:18
01:36:34

|
|
|
|
|
|

D] - F:\2014....The Stories We Could Tell


N | 1 Ko] - F:\T10.SYS
N | 1 Ko] - F:\TUNER.DAT
D] - F:\RECORD
D] - F:\VOICE
D] - F:\Playlists

[14/05/2014
[28/08/2014
[03/01/2015
[04/01/2015
20 Greatest

- 19:24:38 | D] - F:\Varios
- 19:48:30 | D] - F:\Queen
- 10:57:42 | D] - F:\Creedence
- 18:37:18 | D] - F:\Creedence Clearwater Revival - Chronicle - The
Hits 320cbr (Big Papi) 1991

[b]################## | Vaccin |[/b]


C:\Autorun.inf -> Vacuna creada por UsbFix (El Desaparecido)
E:\Autorun.inf -> Vacuna creada por UsbFix (El Desaparecido)
F:\Autorun.inf -> Vacuna creada por UsbFix (El Desaparecido)
[b]################## | E.O.F | [url=http://www.sosvirus.net/]http://www.sosviru
s.net/[/url] | [url=http://www.es.usbfix.net/]http://www.es.usbfix.net/[/url] |[
/b]

S-ar putea să vă placă și