Download as txt, pdf, or txt
Download as txt, pdf, or txt
You are on page 1of 4

# ----------------------------------------------------

# UsbFix Antivirus Premium


# ----------------------------------------------------
# Version : 11.032
# Database :
# Contact : https://www.usb-antivirus.com/contact
# ----------------------------------------------------
# Scan type : Windows [Auto Scan]
# User : Victor (Administrator)
# Device : PYROKINETIC-PC
# Started : 05/07/2021 23:27:26
# ----------------------------------------------------

------------ | Analyzed disks |

C:\ NTFS (62GB/581GB) [Fixed]


D:\ NTFS (1GB/24GB) [Fixed]
F:\ FAT32 (510GB/512GB) [Fixed]

------------ | Infected elements |

Not selected! C:\Users\Victor\AppData\Roaming\Microsoft\Windows\Start


Menu\Programs\Startup\filename.vbs

------------ | Run |

F2 - HKLM\..\Winlogon : [Shell] explorer.exe


F2 - [x64] HKLM\..\Winlogon : [Shell] explorer.exe
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKCU\..\Run : [OneDrive]
"C:\Users\Victor\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
04 - HKCU\..\Run : [uTorrent]
"C:\Users\Victor\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
04 - HKCU\..\Run : [ut] "C:\Users\Victor\AppData\Roaming\uTorrent\uTorrent.exe"
/MINIMIZED
04 - HKCU\..\Run : [Opera Browser Assistant]
C:\Users\Victor\AppData\Local\Programs\Opera\assistant\browser_assistant.exe
04 - HKLM\..\Run : [HPMessageService] C:\Program Files (x86)\Hewlett-Packard\HP
System Event\HPMSGSVC.exe
04 - HKLM\..\Run : [DropboxOEM] "C:\Program Files
(x86)\Dropbox\DropboxOEM\DropboxOEM.exe" auto
04 - [x64] HKLM\..\Run : [SecurityHealth] %windir
%\system32\SecurityHealthSystray.exe
04 - [x64] HKLM\..\Run : [RTHDVCPL] "C:\Program
Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
04 - [x64] HKLM\..\Run : [MTPW] "C:\Program Files\MiniTool Partition Wizard
12\updatechecker.exe"
04 - HKU\S-1-5-19\..\Run : [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe
/thfirstsetup
04 - HKU\S-1-5-20\..\Run : [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe
/thfirstsetup
04 - HKU\S-1-5-21-1917131455-4154536863-2863883299-1001\..\Run : [OneDrive]
"C:\Users\Victor\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
04 - HKU\S-1-5-21-1917131455-4154536863-2863883299-1001\..\Run : [uTorrent]
"C:\Users\Victor\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
04 - HKU\S-1-5-21-1917131455-4154536863-2863883299-1001\..\Run : [ut]
"C:\Users\Victor\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
04 - HKU\S-1-5-21-1917131455-4154536863-2863883299-1001\..\Run : [Opera Browser
Assistant]
C:\Users\Victor\AppData\Local\Programs\Opera\assistant\browser_assistant.exe
04GS - Paint.lnk : C:\Users\Victor\AppData\Roaming\Paint.exe

------------ | Tasks |

Task - BlueStacksHelper_nxt --> C:\Program


Files\BlueStacks_nxt\BlueStacksHelper.exe -sr
Task - GoogleUpdateTaskMachineCore --> C:\Program Files
(x86)\Google\Update\GoogleUpdate.exe /c
Task - GoogleUpdateTaskMachineUA --> C:\Program Files
(x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
Task - HPCeeScheduleForVictor --> C:\Program Files (x86)\Hewlett-Packard\HP
Ceement\HPCEE.exe HPCeeScheduleForVictor (null)
Task - Microsoft Office 15 Sync Maintenance for Ndukwe-Victor Ndukwe --> C:\Program
Files (x86)\Microsoft Office\Office15\MsoSync.exe
Task - Microsoft Office 15 Sync Maintenance for PYROKINETIC-PC-Victor PYROKINETIC-
PC --> C:\Program Files (x86)\Microsoft Office\Office15\MsoSync.exe
Task - MicrosoftEdgeUpdateTaskMachineCore --> C:\Program Files
(x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /c
Task - MicrosoftEdgeUpdateTaskMachineUA --> C:\Program Files
(x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /ua /installsource scheduler
Task - MiniTool Shadow Maker --> C:\Program Files\MiniTool
ShadowMaker\SMMonitor.exe
Task - MiniToolPartitionWizard --> C:\Program Files\MiniTool Partition Wizard
12\updatechecker.exe /fromtask
Task - OneDrive Standalone Update Task-S-1-5-21-1917131455-4154536863-2863883299-
1001 --> %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
Task - OneDrive Standalone Update Task-S-1-5-21-1917131455-4154536863-2863883299-
500 --> %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
Task - OneDrive Standalone Update Task-S-1-5-21-3538912014-3826891016-3662973680-
500 --> %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
Task - Opera scheduled assistant Autoupdate 1624836748 -->
C:\Users\Victor\AppData\Local\Programs\Opera\launcher.exe --scheduledautoupdate
--component-name=assistant --component-
path="C:\Users\Victor\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task - Opera scheduled Autoupdate 1624836734 -->
C:\Users\Victor\AppData\Local\Programs\Opera\launcher.exe --scheduledautoupdate $
(Arg0)
Task - Optimize Start Menu Cache Files-S-1-5-21-1403104675-1344878854-632344657-500
Task - Optimize Start Menu Cache Files-S-1-5-21-1917131455-4154536863-2863883299-
1001
Task - Optimize Start Menu Cache Files-S-1-5-21-1917131455-4154536863-2863883299-
500
Task - Optimize Start Menu Cache Files-S-1-5-21-4250549750-3232631760-1885326518-
500
Task - Optimize Start Menu Cache Files-S-1-5-21-956196743-1230178945-77028197-500
Task - UsbFix Boot Scan --> "C:\Program Files (x86)\UsbFix\UsbFix.exe" -scanonstart
Task - UsbFix Monitor --> "C:\Program Files (x86)\UsbFix\Modules\UsbFixMonitor.exe"
Task - User_Feed_Synchronization-{A92080E6-DB9D-4C19-92B9-82793EBC3215} -->
C:\WINDOWS\system32\msfeedssync.exe sync
Task - YCMServiceAgent --> C:\Program Files
(x86)\CyberLink\YouCam\YouCamService.exe

------------ | C:\ %SystemDrive% - Fixed drive (NTFS) |

[28/03/2015 - 05:08:05 | A | 3 Ko] - OA3.Trace.xml


[05/07/2021 - 23:22:53 | ASH | 8 Ko] - DumpStack.log.tmp
[05/07/2021 - 23:22:52 | ASH | 2487968 Ko] - hiberfil.sys
[05/07/2021 - 23:22:53 | ASH | 1694720 Ko] - pagefile.sys
[05/07/2021 - 23:22:53 | ASH | 262144 Ko] - swapfile.sys
[20/10/2017 - 01:18:46 | AHD] - SYSTEM.SAV
[28/03/2015 - 05:08:04 | A | 0 Ko] - OA3ChkEdt.log
[18/05/2021 - 08:56:59 | SHD] - autorun.inf
[06/06/2021 - 09:05:42 | SH | 0 Ko] - bootTel.dat
[31/10/2017 - 13:21:07 | SHD] - $RECYCLE.BIN
[18/03/2014 - 10:54:54 | RASH | 389 Ko] - bootmgr
[25/09/2014 - 14:42:34 | HD] - HP
[28/03/2015 - 05:12:18 | D] - SWSetup
[10/07/2015 - 12:00:31 | ASH | 0 Ko] - BOOTNXT
[10/07/2015 - 13:21:38 | SHD] - Documents and Settings
[20/10/2017 - 14:47:01 | D] - System Recovery Files
[20/10/2017 - 15:38:52 | RHD] - MSOCache
[16/01/2019 - 20:19:14 | D] - Windows10Upgrade
[07/12/2019 - 10:14:52 | D] - PerfLogs
[01/09/2020 - 19:39:48 | D] - Intel
[04/09/2020 - 20:10:36 | SHD] - OSRSS
[04/09/2020 - 20:19:29 | D] - c1e58d39820deb64ef96
[01/05/2021 - 12:48:06 | D] - 11745155172870
[04/05/2021 - 15:51:19 | RSHD] - 658948805187
[04/05/2021 - 15:51:45 | RSHD] - 41992113017447
[30/05/2021 - 09:32:02 | RD] - Users
[30/05/2021 - 17:57:35 | D] - inetpub
[05/06/2021 - 04:17:30 | D] - Boot
[05/06/2021 - 14:56:35 | SHD] - Recovery
[20/06/2021 - 21:24:02 | SH | 1540 Ko] - Paint
[22/06/2021 - 19:27:24 | D] - xampp
[30/06/2021 - 20:47:17 | HD] - ProgramData
[01/07/2021 - 13:55:44 | RD] - Program Files (x86)
[01/07/2021 - 13:55:44 | RD] - Program Files
[04/07/2021 - 00:49:53 | D] - Games
[05/07/2021 - 22:50:26 | D] - Windows

------------ | D:\ - Fixed drive (NTFS) |

[20/11/2016 - 15:30:29 | A | 1 Ko] - Videos - Shortcut.lnk -->


C:\Users\Victor\Videos
[28/03/2015 - 05:36:48 | RASH | 0 Ko] - RP.ini
[18/05/2021 - 08:57:00 | SHD] - autorun.inf
[23/08/2013 - 00:39:16 | RASH | 1574 Ko] - bootmgr.efi
[25/06/2017 - 00:55:13 | SHD] - $RECYCLE.BIN
[22/08/2013 - 17:31:46 | RASH | 418 Ko] - bootmgr
[21/11/2013 - 00:36:00 | RASHD] - sources
[28/03/2015 - 05:49:55 | RASHD] - EFI
[28/03/2015 - 05:49:56 | RASHD] - Boot
[28/03/2015 - 05:50:00 | RSD] - Recovery
[25/06/2017 - 21:30:04 | SHD] - preload
[17/05/2021 - 17:09:56 | D] - Program Files
[20/06/2021 - 21:24:08 | SH | 1540 Ko] - Paint

------------ | F:\ - Fixed drive (FAT32) |

[12/06/2021 - 13:10:38 | SHD] - $RECYCLE.BIN


[09/06/2021 - 14:29:18 | D] - EFI
[20/06/2021 - 21:24:10 | SH | 1540 Ko] - Paint

Infected elements : 1
Analyzed elements : 1681337 in 00h 33m 52s
# UsbFix-Report-187.txt [8214B]

------------ | E.O.F |

You might also like