You are on page 1of 5

[b]############################## | UsbFix V 7.

184 | [Clean][/b]
User: SMKH (Administrator) # SMKH-PC
Updated 20/10/2014 by El Desaparecido - SosVirus
Started at 12:48:20 | 01/04/2015
Website : [url=http://www.en.usbfix.net/]http://www.en.usbfix.net/[/url]
Changelog : [url=http://www.en.usbfix.net/changelog/]http://www.en.usbfix.net/ch
angelog/[/url]
Support : [url=http://www.sosvirus.net/]http://www.sosvirus.net/[/url]
Upload Malware : [url=http://www.sosvirus.net/upload_malware.php]http://www.sosv
irus.net/upload_malware.php[/url]
Live detection : [url=http://how-to-remove.us/]http://how-to-remove.us/[/url]
Contact : [url=http://www.en.usbfix.net/contact/]http://www.en.usbfix.net/contac
t/[/url]
[b]################## | System information |[/b]
MB: Foxconn (2ADA)
CPU: Intel(R) Core(TM) i3-3220 CPU @ 3.30GHz
GC: Intel(R) HD Graphics
RAM -> [Total : 1933 Mo | Free : 1140 Mo]
Bios: AMI
Boot: Normal boot
OS:
WB:
WB:
WB:

Microsoft Windows 7 Ultimate (6.1.7600 64-Bit)


Internet Explorer : 8.00.7600.16385
Google Chrome : 41.0.2272.101
Mozilla Firefox : 36.0.4

[b]################## | Security Information |[/b]


AV:
AS:
AS:
FW:
SC:
WU:

Avira Desktop [[b](!) Disabled[/b] |Updated]


Avira Desktop [[b](!) Disabled[/b] |Updated]
Windows Defender [[b](!) Disabled[/b] |Updated]
Windows Firewall [[b](!) Disabled[/b]]
Security Center [Enabled]
Windows Update [Enabled]

[b]################## | Disk Information |[/b]


C:\ (%SystemDrive%) -> Fixed disk # 244 Gb (212 Gb free - 87%) [New Volume] # NT
FS
D:\ -> Fixed disk # 222 Gb (221 Gb free - 100%) [New Volume] # NTFS
F:\ -> Removable disk # 2 Gb (896 Mb free - 46%) [HOW5] # FAT
[b]################## | Generic Research |[/b]
(!) Temporary files deleted. (0.187568664550781 MB)
[b]################## | Registry |[/b]
[b]################## | Regedit Run |[/b]
F2
F2
F2
F2

HKLM\..\Winlogon : [Shell] explorer.exe


[x64] HKLM\..\Winlogon : [Shell] explorer.exe
HKLM\..\Winlogon : [Userinit] userinit.exe
[x64] HKLM\..\Winlogon : [Userinit] C:\Windows\System32\Userinit.exe,

04 - HKCU\..\Run : [CNAP2 Launcher] C:\Windows\system32\spool\DRIVERS\x64\3\CNAP


2LAK.EXE
04 - HKLM\..\Run : [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.e
xe" /min
04 - HKLM\..\Run : [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.
0\AdobeARM.exe"
04 - HKLM\..\Run : [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Jav
a\Java Update\jusched.exe"
04 - HKLM\..\Run : [Avira Systray] C:\Program Files (x86)\Avira\My Avira\Avira.O
E.Systray.exe
04 - [x64] HKLM\..\Run : [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe
04 - [x64] HKLM\..\Run : [BeatsOSDApp] C:\Program Files\IDT\WDM\beats64.exe
04 - [x64] HKLM\..\Run : [CNAP2 Launcher] C:\Windows\system32\spool\DRIVERS\x64\
3\CNAP2LAK.EXE
04 - [x64] HKLM\..\Run : [IgfxTray] C:\Windows\system32\igfxtray.exe
04 - [x64] HKLM\..\Run : [HotKeysCmds] C:\Windows\system32\hkcmd.exe
04 - [x64] HKLM\..\Run : [Persistence] C:\Windows\system32\igfxpers.exe
04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
/autoRun
04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
/autoRun
04 - HKU\S-1-5-21-494603724-3176682210-163257844-1000\..\Run : [CNAP2 Launcher]
C:\Windows\system32\spool\DRIVERS\x64\3\CNAP2LAK.EXE
04 - HKU\S-1-5-19\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-20\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
[b]################## | UsbFix - Information |[/b]
Info : [url=https://www.youtube.com/watch?v=vUZYYASd7FE]How to remove shortcut v
irus on flash disk (Video)[/url]
Info : [url=http://www.en.usbfix.net/2014/03/remove-shortcut-virus-usb/]Shortcut
virus on flash disk, What is it ?[/url]
[b]################## | Hijack |[/b]
[b]################## | C:\ %SystemDrive% - Fixed drive (NTFS) |[/b]
[01/04/2015
[01/04/2015
[15/10/2013
[15/10/2013
[14/07/2009
[14/07/2009
[14/07/2009
[15/10/2013
[15/10/2013
[15/10/2013
[15/10/2013
[15/10/2013
[15/10/2013
[15/10/2013
[23/02/2014
[25/02/2014
[22/06/2014
[13/07/2014
[19/10/2014
[23/03/2015
[29/03/2015
[01/04/2015

06:58:53
06:58:55
02:52:46
03:42:46
09:38:58
11:20:08
13:08:56
02:50:45
02:51:29
02:51:29
02:52:34
03:00:23
03:22:57
03:42:45
08:35:47
10:05:03
15:37:00
12:01:52
07:40:27
09:55:09
08:01:14
10:50:30

|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|

ASH | 1484376 Ko] - C:\hiberfil.sys


ASH | 1979172 Ko] - C:\pagefile.sys
SHD] - C:\$Recycle.Bin
RASH | 8 Ko] - C:\BOOTSECT.BAK
RASH | 375 Ko] - C:\bootmgr
D] - C:\PerfLogs
SHD] - C:\Documents and Settings
SHD] - C:\Recovery
N | 0 Ko] - C:\wedaolu
N | 201 Ko] - C:\QNTOM
RD] - C:\Users
D] - C:\Intel
RHD] - C:\MSOCache
SHD] - C:\Boot
RD] - C:\Program Files
D] - C:\Drivers
D] - C:\Windows
D] - C:\STePMPM
HD] - C:\ProgramData
RD] - C:\Program Files (x86)
SHD] - C:\System Volume Information
D] - C:\Temp

[01/04/2015 - 12:40:57 | D] - C:\UsbFix


[b]################## | D:\ - Fixed drive (NTFS) |[/b]
[28/08/2014 - 07:49:10 | A | 516 Ko] - D:\Sejarah offline 3A3.xlsx
[28/08/2014 - 07:50:16 | A | 515 Ko] - D:\Sejarah offline 3A6.xlsx
[28/08/2014 - 07:50:47 | A | 515 Ko] - D:\Sejarah offline 3A7.xlsx
[10/09/2014 - 09:12:12 | A | 517 Ko] - D:\Modul_Offline_Sejarah_T3 3A11.xlsx
[10/09/2014 - 09:12:55 | A | 518 Ko] - D:\Modul_Offline_Sejarah_T3 3A5.xlsx
[10/09/2014 - 09:13:04 | A | 518 Ko] - D:\Modul_Offline_Sejarah_T3 3A2.xlsx
[11/07/2014 - 12:48:10 | A | 79 Ko] - D:\KELAB PENGGUNA ERNY.pub
[29/03/2015 - 08:38:41 | A | 1289 Ko] - D:\bm.html
[12/11/2012 - 00:25:58 | A | 3920 Ko] - [[url=https://www.virustotal.com/file/79
f7f3f5d4eb63e922de097bd5258485b0d8557c14ed3aab93761696dd726162/analysis/14277809
75/]VirusTotal[/url] - (1/57)] - D:\TeamViewerQS.exe
[10/09/2014 - 10:51:17 | A | 1820 Ko] - D:\bio f4.docx
[10/09/2014 - 15:18:01 | A | 14 Ko] - D:\Konsep Pengurusan.docx
[29/03/2015 - 08:38:02 | A | 0 Ko] - D:\New Microsoft Office Word Document.docx
[29/03/2015 - 08:38:11 | A | 0 Ko] - D:\New Microsoft Office Word Document (2).d
ocx
[24/07/2014 - 12:23:50 | A | 81 Ko] - D:\mid2007 (2).doc
[15/10/2013 - 02:52:47 | SHD] - D:\$RECYCLE.BIN
[15/10/2013 - 02:44:27 | SHD] - D:\System Volume Information
[19/03/2014 - 09:21:08 | D] - D:\Sharing KEAT HWA
[28/07/2014 - 08:23:10 | D] - D:\SK0304 SMK AGAMA KEDAH STPM P2 2014
[26/01/2015 - 13:42:17 | D] - D:\New folder
[24/02/2015 - 11:57:09 | D] - D:\chp
[08/03/2015 - 09:50:35 | D] - D:\DEBBY
[29/03/2015 - 08:38:42 | D] - D:\bm_files
[b]################## | F:\ - Removable drive (FAT) |[/b]
[17/09/2009
[09/09/2013
[09/03/2014
[03/03/2013
[23/07/2013
[20/03/2014
[29/04/2012
[23/09/2014
[05/01/2012
[16/05/2012
[28/10/2013
[29/10/2013
[29/10/2013
[23/06/2014
[26/06/2014
[26/06/2014
[26/06/2014
[26/06/2014
[23/07/2014
[08/09/2014
[08/09/2014
[23/09/2014
[10/11/2014
[11/11/2014
[11/02/2014
[15/05/2012
[06/05/2008
[04/01/2007

22:03:46
00:05:50
08:55:54
08:41:58
12:13:10
09:27:30
10:09:52
09:57:14
13:47:42
13:25:16
13:31:00
10:25:40
12:44:50
12:03:44
09:37:36
11:08:46
11:09:26
11:30:34
08:56:08
08:33:08
08:39:16
09:46:40
10:35:20
07:22:42
13:23:08
01:18:42
21:29:28
11:17:08

|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|

N
N
N
N
N
N
N
N
N
N
N
N
N
N
N
N
N
N
N
N
N
N
N
N
N
N
N
N

|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|

859 Ko] - F:\attachments_2009_09_17.zip


2717 Ko] - F:\_2013???????????.zip_.zip
18883 Ko] - F:\2014??PBS??.zip
11 Ko] - F:\??????.xml
18 Ko] - F:\????????.xml
377 Ko] - F:\F4 ULBS BC.xml
55 Ko] - F:\TOV ETR 2012 How.xlsx
12 Ko] - F:\3C.xlsx
67 Ko] - F:\LAMPIRAN A.xls
77 Ko] - F:\january claim how moh nya.xls
101 Ko] - F:\T&T (version 1) modified.xls
101 Ko] - F:\T&T (version 1).xls
67 Ko] - F:\mac claim how moh nya.xls
265 Ko] - F:\Analisis BC T5 2014.xls
273 Ko] - F:\Analisis BC T4 4A2 2014.xls
272 Ko] - F:\Analisis BC T4 4A4 2014.xls
233 Ko] - F:\Analisis BC T4 4K2 2014.xls
267 Ko] - F:\Analisis BC T4 4A9 2014.xls
68 Ko] - F:\LAMPIRAN A (2).xls
204 Ko] - F:\3A1 BC T3 MUADZAM SHAH.xls
201 Ko] - F:\3A2 BCT3 MUADZAM SHAH.xls
184 Ko] - F:\3A shah t3.xls
322 Ko] - F:\4A2.xls
273 Ko] - F:\Analisis BC T4 4A6 2014.xls
1907 Ko] - F:\?????PBS??.rar
8762 Ko] - F:\penataran ulbs 2012.ppt
1548 Ko] - F:\SecureTraveler User's Manual.pdf
381 Ko] - F:\BOOTEX.LOG

[12/11/2014 - 09:38:16
[12/11/2014 - 09:39:10
[18/12/2010 - 09:02:30
[25/04/2011 - 08:49:12
[02/11/2011 - 12:01:20
[29/10/2012 - 08:26:42
[03/03/2013 - 14:19:16
[03/04/2013 - 00:35:22
[03/04/2013 - 00:35:22
[04/11/2013 - 10:17:24
[28/01/2014 - 11:27:40
cx
[16/02/2014 - 08:03:42
[16/02/2014 - 08:36:40
[16/02/2014 - 08:51:38
[16/02/2014 - 08:52:02
[18/02/2014 - 13:38:18
[26/02/2014 - 13:56:04
[14/05/2014 - 13:35:12
ocx
[15/05/2014 - 13:29:20
[04/08/2014 - 08:22:36
ocx
[06/11/2014 - 08:28:46
[06/11/2014 - 09:50:14
[16/02/2014 - 08:52:02
[16/02/2015 - 14:37:08
[12/11/2014 - 12:08:04
[16/02/2015 - 14:37:08
[24/02/2015 - 09:45:16
[24/02/2015 - 14:47:28
[01/04/2015 - 11:21:52
[18/01/2004 - 06:33:22
PARLIMEN.doc
[30/11/2006 - 00:16:08
[30/11/2006 - 00:59:38
[01/01/2010 - 13:54:24
[02/01/2010 - 13:01:22
[17/01/2010 - 22:11:22
[17/01/2010 - 22:12:54
[05/04/2010 - 21:05:28
Kedah Tahun 2010.doc
[19/07/2010 - 08:54:10
[28/11/2010 - 18:46:44
ahun 2010.doc
[21/02/2011 - 08:51:26
[21/04/2011 - 09:40:36
[28/11/2010 - 18:46:44
[12/07/2011 - 08:51:10
[28/09/2011 - 14:27:14
[07/03/2012 - 14:19:12
[15/05/2012 - 09:40:42
[16/02/2014 - 08:32:28
[17/03/2014 - 12:41:24
[23/04/2014 - 11:07:16
[23/04/2014 - 11:08:16
[21/04/2011 - 09:52:06
[28/11/2010 - 18:46:44
[23/05/2014 - 11:20:48
[11/11/2014 - 13:39:30

|
|
|
|
|
|
|
|
|
|
|

A | 1 Ko] - F:\Evidens 4A6.lnk


A | 1 Ko] - F:\evidens 4A9 2014.doc.lnk
D] - F:\autorun.inf
N | 24 Ko] - F:\bc march test with answer 2011 f5.docx
N | 13 Ko] - F:\FAMILYHOW.docx
N | 15 Ko] - F:\senarai tugas 2011.docx
N | 19 Ko] - F:\????F5 2013.docx
N | 14 Ko] - F:\??? ??.docx
N | 14 Ko] - F:\???? ??????.docx
N | 22 Ko] - F:\PBS T2 FINAL EXAM PAPER 2.docx
N | 20 Ko] - F:\PELAN
KEDUDUKAN PELAJAR 4A6.do

|
|
|
|
|
|
|

N
N
N
N
N
N
N

|
|
|
|
|
|
|

28 Ko] 29 Ko] 1851 Ko]


24 Ko] 20 Ko] 19 Ko] 22 Ko] -

F:\2014 march test , modified.docx


F:\2014 march test but not used.docx
- F:\DESA SERAYA ALOR SETAR.docx
F:\???.docx
F:\? 4 ? ?????, 5, 6.docx
F:\???,6.7.docx
F:\SMK MUADZAM SHAH F2 2014 mid year PBS.d

| N | 23 Ko] - F:\SMK MUADZAM SHAH F1 2014 mid year.docx


| N | 30 Ko] - F:\SMJK KEAT HWA UJIAN BULANAN OGOS 2014.d
|
|
|
|
|
|
|
|
|
|

N
N
N
A
A
A
A
A
A
N

|
|
|
|
|
|
|
|
|
|

14
17
24
14
20
14
20
16
25
40

Ko]
Ko]
Ko]
Ko]
Ko]
Ko]
Ko]
Ko]
Ko]
Ko]

F:\senarai tugas 2014.docx


F:\SENARAI KEHADIRAN KURSUS LDP.docx
F:\????.docx
F:\??.docx
F:\??ULBS??.docx
F:\?2.docx
F:\2015 ???? march test , modified.docx
F:\2015 ??march test with answer.docx
F:\EVIDENS ULBS BAHASA CINA 4K2.docx
F:\PERTANDINGAN BAHAS BAHASA CINA ALA

|
|
|
|
|
|
|

N
N
N
N
N
N
N

|
|
|
|
|
|
|

38 Ko] - F:\kertas soalan POL Ting 2.doc


106 Ko] - F:\academic cyk 2009.doc
577 Ko] - F:\M BC T2.doc PBS TCS.doc
1061 Ko] - F:\2014_Muar_ModuTteksT4.doc
45 Ko] - F:\SPM????caibao2013. doc-1.doc
26 Ko] - F:\2013SPM latihan??? ?.doc
23 Ko] - F:\Pertandingan Kaligrafi Peringkat Negeri

| N | 20 Ko] - F:\GERAK GEMPUR PMR MUADZAM SHAH.doc


| N | 672 Ko] - F:\Laporan Perbelanjaan Peruntukan LPBT T
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|

N
N
N
N
N
N
N
N
N
N
N
N
N
N
A

|
|
|
|
|
|
|
|
|
|
|
|
|
|
|

39 Ko] - F:\2010 KEAT HWA F4 OGOS TEST.doc


31 Ko] - F:\bc march test with answer 2010 f4.doc
672 Ko] - F:\??????????????.doc
90 Ko] - F:\Brg lawatan.doc
34 Ko] - F:\PEPERIKSAAN AKHIR TAHUN POL.doc
41 Ko] - F:\Maklumat Guru POL 2011SMK T. MALIK.doc
56 Ko] - F:\POL 2012 TUNTUTAN SMK TUNKU MALIK.doc
49 Ko] - F:\2014 march test skema pemarkahan.doc
1062 Ko] - F:\F4
7.doc
42 Ko] - F:\panitia bc 2014.doc
35 Ko] - F:\panitia bc 2010.doc
39 Ko] - F:\???????.doc
672 Ko] - F:\???????1.doc
81 Ko] - F:\Lisan BC T4 2013 tanchingsin.doc
221 Ko] - F:\evidens T5 2014.doc

[12/11/2014
[08/02/2015
[08/02/2015
[16/02/2015
[16/02/2015
h test.doc
[01/04/2015
[02/05/2013
[02/05/2013
[02/05/2013
[02/05/2013
[30/11/2006
[03/01/2007
[28/11/2010
[19/12/2011
[09/01/2012
[08/05/2012
[07/11/2012
[07/11/2012
[09/01/2012
[12/11/2012
[12/11/2012
[14/11/2012
[12/03/2013
[17/07/2013
[23/07/2013
[30/09/2013
[30/09/2013
[01/10/2013
[09/11/2014
[09/11/2014

10:38:30
09:09:50
11:19:42
11:19:44
11:21:56

|
|
|
|
|

A
A
A
A
A

|
|
|
|
|

244 Ko] - F:\Evidens 4A2.doc


63 Ko] - F:\KONTRAK LATIHAN TING 5 2011.doc
59 Ko] - F:\KONTRAK LATIHAN TING 5 2015.doc
256 Ko] - F:\SPM BC2_11_NS.doc
116 Ko] - F:\SPM BC2_11_NS with answer 2015 f5 marc

12:17:32
09:36:36
09:38:10
09:39:24
09:40:18
03:22:44
00:59:52
23:34:00
15:51:24
11:28:30
10:10:56
11:09:58
11:11:16
11:28:30
11:55:22
14:45:42
16:38:12
13:31:38
12:27:38
12:00:50
09:50:04
09:50:04
08:14:10
11:28:16
14:03:06

|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|

A | 248 Ko] - F:\Evidens 4A4.doc


D] - F:\Mak_ind.aspx_files
D] - F:\pendapatan.aspx_files
D] - F:\pelepasan.aspx_files
D] - F:\rumusan.aspx_files
D] - F:\FOUND.001
D] - F:\launch_files
D] - F:\Borang Tuntutan SPM 2010
D] - F:\R10002011
D] - F:\GUNDAL
D] - F:\PBS F1
D] - F:\Lawatan + Insurans
D] - F:\POL
D] - F:\??????
D] - F:\PBS T2 n T1
D] - F:\PBS F1 LPM 2012
D] - F:\PBS F2 FINAL
D] - F:\akuan brg 1_files
D] - F:\TeknikMenjawabBCinaSPM2013
RSHD] - F:\RECYCLER
D] - F:\2013???????????
D] - F:\2013???????????
D] - F:\trial spm 2013
D] - F:\ANALISIS BC 2014
D] - F:\UsbFix

[b]################## | Vaccin |[/b]


C:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
D:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
F:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
[b]################## | E.O.F | [url=http://www.sosvirus.net/]http://www.sosviru
s.net/[/url] | [url=http://www.en.usbfix.net/]http://www.en.usbfix.net/[/url] |[
/b]

You might also like