Download as txt, pdf, or txt
Download as txt, pdf, or txt
You are on page 1of 3

# ----------------------------------------------------

# UsbFix Antivirus Free


# ----------------------------------------------------
# Version : 11.023
# Database : 2020.01.13
# Contact : https://www.usb-antivirus.com/contact
# ----------------------------------------------------
# Scan type : Listing
# User : Deepak (Administrator)
# Device : DESKTOP-RH2I3SP
# Started : 15/02/2020 13:28:31
# ----------------------------------------------------

------------ | Analyzed disks |

C:\ NTFS (630GB/909GB) [Fixed]


D:\ NTFS (2GB/21GB) [Fixed]
G:\ FAT32 (8GB/8GB) [Removable]

------------ | Run |

F2 - HKLM\..\Winlogon : [Shell] explorer.exe


F2 - [x64] HKLM\..\Winlogon : [Shell] explorer.exe
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKCU\..\Run : [OneDrive]
"C:\Users\Deepak\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
04 - HKCU\..\Run : [steyn] "C:\Program Files (x86)\elfin\steyn.exe" vkahc
04 - HKLM\..\Run : [SunJavaUpdateSched] "C:\Program Files (x86)\Common
Files\Java\Java Update\jusched.exe"
04 - [x64] HKLM\..\Run : [SecurityHealth] %windir
%\system32\SecurityHealthSystray.exe
04 - [x64] HKLM\..\Run : [Classic Start Menu] "C:\Program Files\Classic
Shell\ClassicStartMenu.exe" -autorun
04 - [x64] HKLM\..\Run : [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe
04 - HKU\S-1-5-19\..\Run : [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe
/thfirstsetup
04 - HKU\S-1-5-20\..\Run : [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe
/thfirstsetup
04 - HKU\S-1-5-21-1300270986-2346404970-3131472229-1001\..\Run : [OneDrive]
"C:\Users\Deepak\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
04 - HKU\S-1-5-21-1300270986-2346404970-3131472229-1001\..\Run : [steyn]
"C:\Program Files (x86)\elfin\steyn.exe" vkahc
04 - HKU\S-1-5-19\..\RunOnce : [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe
/Upgrade
04 - HKU\S-1-5-20\..\RunOnce : [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe
/Upgrade
04GS - McAfee Security Scan Plus.lnk : C:\Program Files\McAfee Security
Scan\3.11.812\SSScheduler.exe
04GS - MobileGo Service.lnk : C:\Program Files
(x86)\Wondershare\MobileGo\MobileGoService.exe

------------ | Tasks |

Task - Adobe Acrobat Update Task --> C:\Program Files (x86)\Common


Files\Adobe\ARM\1.0\AdobeARM.exe
Task - compelling --> C:\Program Files (x86)\Hamrick\babyface.exe dalec
Task - compellingcompelling --> C:\Program Files (x86)\Hamrick\babyface.exe dalec
Task - correspond steppingstone wilder --> C:\Users\Deepak\AppData\Local\Bakshi.exe
vkahc
Task - correspond steppingstone wildercorrespond steppingstone wilder -->
C:\Users\Deepak\AppData\Local\Bakshi.exe vkahc
Task - dement_unsolicited --> C:\Users\Deepak\AppData\Local\Forbearance.exe dalec
Task - dement_unsoliciteddement_unsolicited -->
C:\Users\Deepak\AppData\Local\Forbearance.exe dalec
Task - fridays --> C:\Program Files (x86)\Wajda\angler.exe vkahc
Task - fridaysfridays --> C:\Program Files (x86)\Wajda\angler.exe vkahc
Task - GoogleUpdateTaskMachineCore --> C:\Program Files
(x86)\Google\Update\GoogleUpdate.exe /c
Task - GoogleUpdateTaskMachineUA --> C:\Program Files
(x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
Task - HPCeeScheduleForDeepak --> C:\Program Files (x86)\Hewlett-Packard\HP
Ceement\HPCEE.exe HPCeeScheduleForDeepak (null)
Task - JavaUpdateSched --> C:\Program Files (x86)\Common Files\Java\Java
Update\jusched.exe
Task - OInstall --> "%WINDIR%\OInstall.exe" /activate
Task - OneDrive Standalone Update Task-S-1-5-21-1300270986-2346404970-3131472229-
1001 --> %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
Task - priestess_cortina --> C:\Users\Deepak\AppData\Local\Quinoline.exe vkahc
Task - priestess_cortinapriestess_cortina -->
C:\Users\Deepak\AppData\Local\Quinoline.exe vkahc
Task - ravenna osbourne robby --> C:\Users\Deepak\AppData\Local\Modifiable.exe
dalec
Task - ravenna osbourne robbyravenna osbourne robby -->
C:\Users\Deepak\AppData\Local\Modifiable.exe dalec
Task - sweety --> C:\Program Files (x86)\profits\profits.exe vkahc
Task - sweetysweety --> C:\Program Files (x86)\profits\profits.exe vkahc
Task - User_Feed_Synchronization-{358961ED-93B6-4025-AECE-A0108CE6C29B} -->
C:\WINDOWS\system32\msfeedssync.exe sync
Task - winfrey --> C:\Program Files (x86)\denny\denny.exe dalec
Task - winfreywinfrey --> C:\Program Files (x86)\denny\denny.exe dalec

------------ | Dev Zone |

------------ | C:\ %SystemDrive% - Fixed drive (NTFS) |

[12/08/2018 - 14:20:29 | A | 0 Ko] - fjajvcfmhuadojg.tmp


[22/08/2018 - 22:00:28 | A | 0 Ko] - caoodurhkcl6zno.tmp
[13/02/2020 - 02:11:51 | ASH | 2490368 Ko] - pagefile.sys
[13/02/2020 - 02:11:51 | ASH | 262144 Ko] - swapfile.sys
[15/02/2020 - 12:26:25 | ASH | 6683040 Ko] - hiberfil.sys
[26/08/2018 - 13:52:38 | D] - System.sav
[09/11/2019 - 15:37:23 | A | 714 Ko] - stores.json
[20/11/2019 - 18:34:15 | A | 0 Ko] - autolock.ini
[15/02/2020 - 13:28:09 | D] - autorun.inf
[04/04/2018 - 11:36:37 | SHD] - $Recycle.Bin
[15/07/2018 - 22:16:50 | D] -
rolex_global_images_V8.2.9.0.MCCMIDL_20170524.0000.00_6.0_global
[15/04/2015 - 15:34:30 | D] - OPO
[10/07/2015 - 22:00:31 | RASH | 386 Ko] - bootmgr
[04/04/2018 - 02:44:00 | HD] - $SysReset
[04/04/2018 - 05:11:20 | SHD] - Documents and Settings
[07/04/2018 - 13:40:12 | D] - Python27
[10/04/2018 - 00:02:56 | D] - SWSetup
[15/06/2018 - 18:43:10 | HD] - OneDriveTemp
[06/07/2018 - 20:52:33 | D] - Rhymes
[14/07/2018 - 11:24:54 | D] - MoboUserData
[15/07/2018 - 21:03:08 | D] - XiaoMi
[15/07/2018 - 22:23:53 | D] - fastbootlog
[17/09/2018 - 22:23:32 | D] - Test
[12/12/2018 - 11:27:35 | D] - Sweta Hard disk
[19/12/2018 - 21:36:31 | AD] - adb
[05/01/2019 - 11:15:56 | D] - Samsung
[10/03/2019 - 20:44:11 | D] - Resume
[13/03/2019 - 22:33:33 | D] - AKH
[15/03/2019 - 20:17:31 | D] - Untitled
[19/03/2019 - 15:52:43 | D] - PerfLogs
[31/05/2019 - 20:29:10 | D] - 29 Fantail
[04/09/2019 - 22:46:10 | D] - Amyra
[17/09/2019 - 20:30:19 | D] - Visa
[17/09/2019 - 22:17:14 | RD] - Users
[19/09/2019 - 19:55:55 | SHD] - Recovery
[19/09/2019 - 20:02:52 | D] - Intel
[27/10/2019 - 01:01:54 | AD] - Android
[09/11/2019 - 22:21:01 | D] - Books
[13/02/2020 - 02:09:03 | D] - Windows
[14/02/2020 - 00:54:31 | D] - Move
[15/02/2020 - 13:06:28 | RD] - Program Files
[15/02/2020 - 13:06:29 | HD] - ProgramData
[15/02/2020 - 13:26:01 | D] - Temp
[15/02/2020 - 13:26:06 | A | 0 Ko] - caoodurhkcl6zno
[15/02/2020 - 13:26:12 | RD] - Program Files (x86)

------------ | D:\ - Fixed drive (NTFS) |

[15/02/2020 - 13:28:09 | D] - autorun.inf


[23/08/2013 - 15:39:16 | RASH | 1574 Ko] - bootmgr.efi
[04/04/2018 - 08:18:22 | SHD] - $RECYCLE.BIN
[23/08/2013 - 08:31:46 | RASH | 418 Ko] - bootmgr
[09/01/2014 - 20:36:31 | RSHD] - EFI
[09/01/2014 - 20:36:31 | RASHD] - hp
[09/01/2014 - 20:36:31 | RSHD] - boot
[09/01/2014 - 20:36:31 | SHD] - RM_Reserve
[23/01/2016 - 15:57:14 | RSHD] - preload
[21/03/2018 - 13:00:05 | SD] - recovery
[14/07/2018 - 11:24:56 | D] - temp

------------ | G:\ - Removable drive (FAT32) |

[15/02/2020 - 13:28:10 | D] - autorun.inf

------------ | E.O.F |

You might also like