SOS: PLEASE HELP ME! Virus Serge le Lama!
Closed
annabio
Posts
3
Registration date
Tuesday April 22, 2014
Status
Member
Last seen
April 22, 2014
-
Apr 22, 2014 at 11:59 AM
Ambucias Posts 47310 Registration date Monday February 1, 2010 Status Moderator Last seen February 15, 2023 - Apr 22, 2014 at 04:53 PM
Ambucias Posts 47310 Registration date Monday February 1, 2010 Status Moderator Last seen February 15, 2023 - Apr 22, 2014 at 04:53 PM
How cam I do now???
I've obtained this report from usbfix:
############################## | UsbFix V 7.169 | [Soppressione]
Utente: Anna (Amministratore) # ANNA-PC
Messi aggiornati il 31/03/2014 per El Desaparecido - Team SosVirus
Lanciato a 17:22:12 | 22/04/2014
Sito Web : http://www.it.usbfix.net/
Changelog : https://www.usb-antivirus.com/fr/maj/
Support : http://it.kioskea.net/forum/virus-e-sicurezza-7
Upload Malware : http://www.sosvirus.net/upload_malware.php
Contatto : http://www.it.usbfix.net/contattaci/
PC: Acer, Inc. (Chapala )
CPU: Intel(R) Core(TM)2 Duo CPU T7300 @ 2.00GHz
RAM -> [Total : 2046 Mo| Free : 331 Mo]
Bios: Acer
Boot: Normal boot
OS: Microsoft Windows 7 Ultimate (6.1.7601 32-Bit) Service Pack 1
WB: Windows Internet Explorer : 11.0.9600.16659
WB: Google Chrome : 34.0.1847.116
WB: Mozilla Firefox : 28.0
SC: Security Center [Enabled]
WU: Windows Update [Enabled]
AV: Avira Desktop [Enabled | Updated]
AS: Avira Desktop [Enabled | Updated]
AS: Windows Defender [Enabled | (!) Outdated]
FW: Windows FireWall [Enabled]
C:\ (%systemdrive%) -> Disco fisso # 70 Go (2 Go liberi - 2%) [] # NTFS
D:\ -> Disco fisso # 66 Go (19 Go liberi - 28%) [DATA] # NTFS
E:\ -> CD-ROM
F:\ -> CD-ROM
G:\ -> Disco amovibile # 30 Mo (28 Mo liberi - 94%) [] # FAT
H:\ -> Disco amovibile # 2 Go (2 Go liberi - 90%) [ANNA2] # FAT
I:\ -> Disco amovibile # 2 Go (2 Go liberi - 96%) [ANNA90] # FAT
################## | Processo Attivo |
C:\Windows\system32\csrss.exe (ID: 392 |ParentID: 376)
C:\Windows\system32\wininit.exe (ID: 448 |ParentID: 376)
C:\Windows\system32\csrss.exe (ID: 460 |ParentID: 440)
C:\Windows\system32\services.exe (ID: 500 |ParentID: 448)
C:\Windows\system32\lsass.exe (ID: 508 |ParentID: 448)
C:\Windows\system32\lsm.exe (ID: 516 |ParentID: 448)
C:\Windows\system32\svchost.exe (ID: 640 |ParentID: 500)
C:\Windows\system32\nvvsvc.exe (ID: 712 |ParentID: 500)
C:\Windows\system32\svchost.exe (ID: 752 |ParentID: 500)
C:\Windows\System32\svchost.exe (ID: 812 |ParentID: 500)
C:\Windows\System32\svchost.exe (ID: 844 |ParentID: 500)
C:\Windows\system32\svchost.exe (ID: 884 |ParentID: 500)
C:\Windows\system32\svchost.exe (ID: 916 |ParentID: 500)
C:\Windows\system32\winlogon.exe (ID: 1084 |ParentID: 440)
C:\Windows\system32\svchost.exe (ID: 1232 |ParentID: 500)
C:\Windows\System32\spoolsv.exe (ID: 1372 |ParentID: 500)
C:\Windows\system32\nvvsvc.exe (ID: 1392 |ParentID: 712)
C:\Windows\system32\svchost.exe (ID: 1444 |ParentID: 500)
C:\Program Files\Avira\AntiVir Desktop\sched.exe (ID: 1472 |ParentID: 500)
C:\Windows\system32\svchost.exe (ID: 1496 |ParentID: 500)
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ID: 1700 |ParentID: 500)
C:\Program Files\Avira\AntiVir Desktop\avguard.exe (ID: 1744 |ParentID: 500)
C:\Program Files\Dassault Systemes\DS License Server\intel_a\code\bin\DSLicSrv.exe (ID: 1804 |ParentID: 500)
C:\SIMULIA\License\lmgrd.exe (ID: 1852 |ParentID: 500)
C:\Windows\system32\conhost.exe (ID: 1876 |ParentID: 392)
C:\SIMULIA\License\lmgrd.exe (ID: 1904 |ParentID: 1852)
C:\Windows\system32\svchost.exe (ID: 1992 |ParentID: 500)
C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe (ID: 108 |ParentID: 500)
C:\SIMULIA\License\ABAQUSLM.exe (ID: 280 |ParentID: 1904)
C:\Windows\system32\taskhost.exe (ID: 736 |ParentID: 500)
C:\Program Files\TeamViewer\Version8\TeamViewer.exe (ID: 2468 |ParentID: 108)
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (ID: 2608 |ParentID: 1744)
C:\Windows\system32\sppsvc.exe (ID: 2744 |ParentID: 500)
C:\Program Files\TeamViewer\Version8\tv_w32.exe (ID: 2956 |ParentID: 108)
C:\Windows\system32\Dwm.exe (ID: 3240 |ParentID: 844)
C:\Windows\Explorer.EXE (ID: 3264 |ParentID: 3232)
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe (ID: 3380 |ParentID: 3264)
C:\Windows\PLFSetI.exe (ID: 3388 |ParentID: 3264)
C:\Program Files\Common Files\Real\Update_OB\realsched.exe (ID: 3396 |ParentID: 3264)
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ID: 3404 |ParentID: 3264)
C:\Program Files\Alice Mobile Olicard 100\ConnMonitor.exe (ID: 3412 |ParentID: 3264)
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (ID: 3440 |ParentID: 3264)
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (ID: 3456 |ParentID: 3264)
C:\Program Files\Vodafone\Vodafone Mobile Wi-Fi\Launcher.exe (ID: 3468 |ParentID: 3264)
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac (ID: 3556 |ParentID: 3404)
C:\Program Files\Windows Sidebar\sidebar.exe (ID: 3624 |ParentID: 3264)
C:\Users\Anna\AppData\Local\Akamai\netsession_win.exe (ID: 3700 |ParentID: 3264)
C:\Windows\system32\SearchIndexer.exe (ID: 3760 |ParentID: 500)
C:\Users\Anna\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (ID: 3892 |ParentID: 3264)
C:\Windows\System32\StikyNot.exe (ID: 3952 |ParentID: 3264)
C:\Users\Anna\AppData\Local\Akamai\netsession_win.exe (ID: 3972 |ParentID: 3700)
C:\Program Files\Google\Drive\googledrivesync.exe (ID: 4020 |ParentID: 3264)
C:\Windows\System32\wscript.exe (ID: 1620 |ParentID: 3264)
C:\Program Files\Common Files\Gestore installazioni SolidWorks\BackgroundDownloading\sldBgDwld.exe (ID: 2336 |ParentID: 3264)
C:\Users\Anna\AppData\Roaming\Dropbox\bin\Dropbox.exe (ID: 368 |ParentID: 3264)
C:\Program Files\Google\Drive\googledrivesync.exe (ID: 2852 |ParentID: 4020)
C:\Windows\System32\svchost.exe (ID: 4032 |ParentID: 500)
C:\Program Files\Mozilla Firefox\firefox.exe (ID: 5076 |ParentID: 3264)
C:\Windows\system32\wbem\wmiprvse.exe (ID: 5240 |ParentID: 640)
C:\Program Files\Mozilla Firefox\plugin-container.exe (ID: 3540 |ParentID: 5076)
C:\Windows\system32\wuauclt.exe (ID: 4196 |ParentID: 916)
C:\Program Files\Mozilla Firefox\plugin-container.exe (ID: 1784 |ParentID: 5076)
C:\Program Files\Mozilla Firefox\plugin-container.exe (ID: 4716 |ParentID: 5076)
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe (ID: 4432 |ParentID: 4716)
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe (ID: 5692 |ParentID: 4432)
C:\Windows\system32\WUDFHost.exe (ID: 4492 |ParentID: 844)
C:\Program Files\Internet Explorer\iexplore.exe (ID: 5096 |ParentID: 3584)
C:\Program Files\Internet Explorer\iexplore.exe (ID: 2908 |ParentID: 5096)
C:\Windows\System32\MsSpellCheckingFacility.exe (ID: 2268 |ParentID: 640)
C:\Windows\system32\wbem\wmiprvse.exe (ID: 5904 |ParentID: 640)
################## | Ricerca generica |
Soppresso! C:\Users\Anna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SergeLeLama.vbs
Soppresso! H:\SergeLeLama.vbs
Soppresso! I:\SergeLeLama.vbs
Soppresso! C:\Users\Anna\AppData\Local\Temp\FlashPlayerUpdate.exe
Soppresso! C:\Users\Anna\AppData\Local\Temp\SergeLeLama.vbs
Soppresso! G:\Racolta appunti.lnk
Soppresso! G:\PROSTHETIC FOOT - 1Parte (1).lnk
Soppresso! H:\RoadWalkingCovers_ElasticEnergy_Marco.lnk
Soppresso! H:\RoadWalkingCovers_ElasticEnergy_Margherita.lnk
Soppresso! H:\Anna Pace 800766 - Articolo Ing.lnk
Soppresso! H:\Anna Pace_CV.lnk
Soppresso! H:\UNITECH.lnk
Soppresso! H:\Pietro_Bortolotti_r_01.lnk
Soppresso! H:\Manufacturing-Direct-Long-Fibre-Thermoplastics.lnk
Soppresso! H:\progetto_formativo_27712.lnk
Soppresso! H:\matlab.lnk
Soppresso! H:\Capelli.lnk
Soppresso! H:\PSSV Ese3-2014testo.lnk
Soppresso! H:\PSSV Ese1-2014_sol.lnk
Soppresso! H:\Anna.lnk
Soppresso! H:\Supporto.lnk
Soppresso! H:\Tesi.lnk
Soppresso! C:\Users\Anna\autorun.inf
Soppresso! C:\$Recycle.Bin\S-1-5-21-1820990010-357242136-2890627278-1000\$RW7WXX7.vbs
Soppresso! D:\aiutooooooooooooooooooo\SergeLeLama.vbs
Soppresso! D:\aiutooooooooooooooooooo\SergeLeLama_1.vbs
(!) Schedari temporanei soppressi.
################## | Registro |
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\Microsoft\Windows\CurrentVersion\RunOnce|FlashPlayerUpdate
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\Microsoft\Windows\CurrentVersion\Run|SergeLeLama
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\.\.\.\.\Mountpoints2\G
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\.\.\.\.\Mountpoints2\{0ee12da1-e458-11e0-85ec-001b2473e6c8}
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\.\.\.\.\Mountpoints2\{6fd62a7f-31e6-11e3-ae65-001b2473e6c8}
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\.\.\.\.\Mountpoints2\{96b3e9ab-2df7-11e3-b588-001b2473e6c8}
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\.\.\.\.\Mountpoints2\{bc2c6e19-39a4-11df-8ccd-001b2473e6c8}
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\.\.\.\.\Mountpoints2\{e3550784-247c-11e3-b50f-001b2473e6c8}
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\.\.\.\.\Mountpoints2\{f4b5e0cc-a6b7-11e2-8805-001b2473e6c8}
################## | Regedit Run |
F2 - HKLM\..\Winlogon : [Shell] explorer.exe
F2 - [x64] HKLM\..\Winlogon : [Shell] explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKCU\..\Run : [Facebook Update] "C:\Users\Anna\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
04 - HKCU\..\Run : [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
04 - HKCU\..\Run : [Akamai NetSession Interface] "C:\Users\Anna\AppData\Local\Akamai\netsession_win.exe"
04 - HKCU\..\Run : [NIRegistrationWizard] C:\Program Files\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe -autoDiscover 1 -displayIfNoneFound 0 -displayRegisterOptions 1 -sleepIfNoneFound 0 -locale 1040
04 - HKCU\..\Run : [Spotify] "C:\Users\Anna\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
04 - HKCU\..\Run : [Spotify Web Helper] "C:\Users\Anna\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
04 - HKCU\..\Run : [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
04 - HKCU\..\Run : [GoogleDriveSync] "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
04 - HKLM\..\Run : [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
04 - HKLM\..\Run : [PLFSetI] C:\Windows\PLFSetI.exe
04 - HKLM\..\Run : [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
04 - HKLM\..\Run : [ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
04 - HKLM\..\Run : [ConnMonitor] C:\Program Files\Alice Mobile Olicard 100\ConnMonitor.exe start
04 - HKLM\..\Run : [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
04 - HKLM\..\Run : [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
04 - HKLM\..\Run : [Autodesk Sync] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe
04 - HKLM\..\Run : [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
04 - HKLM\..\Run : [VodafoneMobileWiFi] C:\Program Files\Vodafone\Vodafone Mobile Wi-Fi\Launcher.exe
04 - HKLM\..\RunOnce : []
04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-21-1820990010-357242136-2890627278-1000\..\Run : [Facebook Update] "C:\Users\Anna\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
04 - HKU\S-1-5-21-1820990010-357242136-2890627278-1000\..\Run : [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
04 - HKU\S-1-5-21-1820990010-357242136-2890627278-1000\..\Run : [Akamai NetSession Interface] "C:\Users\Anna\AppData\Local\Akamai\netsession_win.exe"
04 - HKU\S-1-5-21-1820990010-357242136-2890627278-1000\..\Run : [NIRegistrationWizard] C:\Program Files\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe -autoDiscover 1 -displayIfNoneFound 0 -displayRegisterOptions 1 -sleepIfNoneFound 0 -locale 1040
04 - HKU\S-1-5-21-1820990010-357242136-2890627278-1000\..\Run : [Spotify] "C:\Users\Anna\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
04 - HKU\S-1-5-21-1820990010-357242136-2890627278-1000\..\Run : [Spotify Web Helper] "C:\Users\Anna\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
04 - HKU\S-1-5-21-1820990010-357242136-2890627278-1000\..\Run : [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
04 - HKU\S-1-5-21-1820990010-357242136-2890627278-1000\..\Run : [GoogleDriveSync] "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
04 - HKU\S-1-5-19\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-20\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-18\..\RunOnce : [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"https://support.microsoft.com/en-us/windows/install-windows-7-service-pack-1-sp1-b3da2c0f-cdb6-0572-8596-bab972897f61" /build:7601
################## | Listing |
[27/03/2010 - 14:11:02 | SHD] - C:\$Recycle.Bin
[21/03/2011 - 01:15:13 | N | 0 Ko | 7215EE9C7D9DC229D2921A40E899EC5F] - C:\7c2f879b3da148dc39fca1d567dfc7fc_log.txt
[21/01/2014 - 15:34:00 | D] - C:\Abaqus Setup
[10/06/2009 - 23:42:20 | A | 0 Ko] - C:\autoexec.bat
[23/05/2013 - 16:04:48 | SHD] - C:\Boot
[20/11/2010 - 14:40:07 | RASH | 375 Ko] - C:\bootmgr
[27/03/2010 - 14:00:54 | RASH | 8 Ko] - C:\BOOTSECT.BAK
[27/03/2010 - 15:24:06 | N | 8 Ko] - C:\bootsect.lxe.bak
[15/04/2014 - 01:12:16 | D] - C:\Config.Msi
[10/06/2009 - 23:42:20 | N | 0 Ko] - C:\config.sys
[14/07/2009 - 06:53:55 | SHD] - C:\Documents and Settings
[27/03/2010 - 15:24:06 | N | 375 Ko] - C:\gdrop
[22/04/2014 - 16:35:12 | ASH | 1571656 Ko] - C:\hiberfil.sys
[11/01/2014 - 02:07:18 | D] - C:\MATS
[27/03/2010 - 15:33:26 | RHD] - C:\MSOCache
[22/04/2014 - 16:35:18 | ASH | 2095544 Ko] - C:\pagefile.sys
[14/07/2009 - 04:37:05 | D] - C:\PerfLogs
[13/04/2014 - 01:15:13 | D] - C:\Program Files
[13/04/2014 - 01:12:34 | HD] - C:\ProgramData
[27/03/2010 - 14:10:38 | D] - C:\Programmi
[27/03/2010 - 14:10:38 | SHD] - C:\Recovery
[21/01/2014 - 15:20:43 | D] - C:\SIMULIA
[21/01/2014 - 13:51:00 | D] - C:\SolidWorks Data
[22/04/2014 - 17:37:29 | SHD] - C:\System Volume Information
[10/01/2014 - 20:36:43 | D] - C:\Temp
[22/04/2014 - 17:09:59 | D] - C:\UsbFix
[22/04/2014 - 17:40:33 | A | 14 Ko | F47BD952D33CD908987D4706072AEEDC] - C:\UsbFix [Clean 2] ANNA-PC.txt
[26/03/2012 - 23:44:59 | N | 0 Ko] - C:\user.js
[04/06/2013 - 10:27:14 | D] - C:\Users
[23/02/2014 - 12:22:53 | D] - C:\Windows
[27/03/2010 - 15:24:06 | N | 167 Ko] - C:\xeldr
[27/03/2010 - 14:11:02 | SHD] - D:\$RECYCLE.BIN
[19/11/2013 - 01:57:40 | D] - D:\6e941ec263a0ee054b5e8a7f6ca143
[13/12/2012 - 02:30:49 | D] - D:\972bfb6f80eb8abe339ae44653e589f1
[22/04/2014 - 17:36:56 | D] - D:\aiutooooooooooooooooooo
[26/03/2010 - 21:25:02 | D] - D:\Alice Mobile Olicard 100
[23/05/2013 - 01:16:15 | D] - D:\anna
[14/03/2013 - 13:19:03 | D] - D:\anna2
[11/03/2013 - 15:45:20 | D] - D:\Barons
[02/09/2013 - 18:27:48 | D] - D:\c0feea63de548fbb9c
[10/01/2014 - 22:44:39 | D] - D:\Desktop
[12/09/2012 - 10:38:51 | D] - D:\Dev-Cpp
[04/12/2012 - 17:11:49 | D] - D:\Documents
[11/03/2013 - 15:41:06 | D] - D:\DVD Maker
[11/03/2013 - 15:41:09 | D] - D:\epson
[06/06/2008 - 19:36:22 | D] - D:\erData
[26/03/2010 - 21:05:40 | D] - D:\ESAME
[04/06/2013 - 10:51:00 | D] - D:\f32d43dfd30e79a830fef1d6
[10/07/2013 - 00:41:08 | D] - D:\fac4d083f9ac2a112cebd3
[04/12/2012 - 17:23:38 | N | 1 Ko] - D:\Immagini - collegamento.lnk
[14/03/2013 - 13:31:44 | D] - D:\KENYA
[23/05/2013 - 15:00:29 | D] - D:\LAUREA
[05/03/2010 - 16:56:54 | N | 159 Ko] - D:\LeBronJamesDunker.jpg
[05/03/2010 - 16:55:26 | N | 111 Ko] - D:\magic.jpg
[10/01/2014 - 22:50:21 | D] - D:\MATLAB
[10/01/2014 - 16:48:56 | D] - D:\musica
[02/09/2013 - 17:21:02 | D] - D:\Pictures
[21/01/2014 - 13:37:05 | D] - D:\SolidWorks 2012 SP0
[31/07/2007 - 17:56:33 | SHD] - D:\System Volume Information
[15/09/2013 - 11:44:06 | D] - D:\Videos
[12/04/2014 - 22:39:00 | N | 1229 Ko] - G:\Racolta appunti.pdf
[15/04/2014 - 00:48:42 | N | 566 Ko] - G:\PROSTHETIC FOOT - 1Parte (1).docx
[28/05/2012 - 12:35:24 | N | 58 Ko] - H:\RoadWalkingCovers_ElasticEnergy_Marco.m
[28/05/2012 - 13:12:18 | N | 59 Ko] - H:\RoadWalkingCovers_ElasticEnergy_Margherita.m
[10/12/2012 - 00:36:20 | D] - H:\UNITECH
[22/10/2012 - 14:06:20 | D] - H:\matlab
[05/01/2014 - 13:39:14 | D] - H:\Anna
[09/01/2014 - 23:48:16 | N | 209 Ko] - H:\Anna Pace 800766 - Articolo Ing.Biomim.&Tissutale.pdf
[14/02/2014 - 10:13:34 | N | 15 Ko] - H:\Anna Pace_CV.docx
[25/03/2014 - 22:55:06 | N | 20737 Ko] - H:\Pietro_Bortolotti_r_01.pdf
[25/03/2014 - 23:21:12 | N | 584 Ko] - H:\Manufacturing-Direct-Long-Fibre-Thermoplastics.pdf
[04/04/2014 - 19:01:32 | D] - H:\Supporto
[04/04/2014 - 19:02:14 | N | 142 Ko] - H:\progetto_formativo_27712.pdf
[04/04/2014 - 23:10:50 | D] - H:\Tesi
[04/04/2014 - 23:30:18 | N | 126 Ko] - H:\Capelli.pdf
[10/04/2014 - 13:27:02 | N | 72 Ko] - H:\PSSV Ese3-2014testo.pdf
[10/04/2014 - 13:27:32 | N | 2456 Ko] - H:\PSSV Ese1-2014_sol.pdf
################## | Vaccin |
D:\Autorun.inf -> Vaccino creato per UsbFix (El Desaparecido)
G:\Autorun.inf -> Vaccino creato per UsbFix (El Desaparecido)
H:\Autorun.inf -> Vaccino creato per UsbFix (El Desaparecido)
I:\Autorun.inf -> Vaccino creato per UsbFix (El Desaparecido)
################## | E.O.F | http://www.it.usbfix.net/ - https://www.sosvirus.net/ |
I've obtained this report from usbfix:
############################## | UsbFix V 7.169 | [Soppressione]
Utente: Anna (Amministratore) # ANNA-PC
Messi aggiornati il 31/03/2014 per El Desaparecido - Team SosVirus
Lanciato a 17:22:12 | 22/04/2014
Sito Web : http://www.it.usbfix.net/
Changelog : https://www.usb-antivirus.com/fr/maj/
Support : http://it.kioskea.net/forum/virus-e-sicurezza-7
Upload Malware : http://www.sosvirus.net/upload_malware.php
Contatto : http://www.it.usbfix.net/contattaci/
PC: Acer, Inc. (Chapala )
CPU: Intel(R) Core(TM)2 Duo CPU T7300 @ 2.00GHz
RAM -> [Total : 2046 Mo| Free : 331 Mo]
Bios: Acer
Boot: Normal boot
OS: Microsoft Windows 7 Ultimate (6.1.7601 32-Bit) Service Pack 1
WB: Windows Internet Explorer : 11.0.9600.16659
WB: Google Chrome : 34.0.1847.116
WB: Mozilla Firefox : 28.0
SC: Security Center [Enabled]
WU: Windows Update [Enabled]
AV: Avira Desktop [Enabled | Updated]
AS: Avira Desktop [Enabled | Updated]
AS: Windows Defender [Enabled | (!) Outdated]
FW: Windows FireWall [Enabled]
C:\ (%systemdrive%) -> Disco fisso # 70 Go (2 Go liberi - 2%) [] # NTFS
D:\ -> Disco fisso # 66 Go (19 Go liberi - 28%) [DATA] # NTFS
E:\ -> CD-ROM
F:\ -> CD-ROM
G:\ -> Disco amovibile # 30 Mo (28 Mo liberi - 94%) [] # FAT
H:\ -> Disco amovibile # 2 Go (2 Go liberi - 90%) [ANNA2] # FAT
I:\ -> Disco amovibile # 2 Go (2 Go liberi - 96%) [ANNA90] # FAT
################## | Processo Attivo |
C:\Windows\system32\csrss.exe (ID: 392 |ParentID: 376)
C:\Windows\system32\wininit.exe (ID: 448 |ParentID: 376)
C:\Windows\system32\csrss.exe (ID: 460 |ParentID: 440)
C:\Windows\system32\services.exe (ID: 500 |ParentID: 448)
C:\Windows\system32\lsass.exe (ID: 508 |ParentID: 448)
C:\Windows\system32\lsm.exe (ID: 516 |ParentID: 448)
C:\Windows\system32\svchost.exe (ID: 640 |ParentID: 500)
C:\Windows\system32\nvvsvc.exe (ID: 712 |ParentID: 500)
C:\Windows\system32\svchost.exe (ID: 752 |ParentID: 500)
C:\Windows\System32\svchost.exe (ID: 812 |ParentID: 500)
C:\Windows\System32\svchost.exe (ID: 844 |ParentID: 500)
C:\Windows\system32\svchost.exe (ID: 884 |ParentID: 500)
C:\Windows\system32\svchost.exe (ID: 916 |ParentID: 500)
C:\Windows\system32\winlogon.exe (ID: 1084 |ParentID: 440)
C:\Windows\system32\svchost.exe (ID: 1232 |ParentID: 500)
C:\Windows\System32\spoolsv.exe (ID: 1372 |ParentID: 500)
C:\Windows\system32\nvvsvc.exe (ID: 1392 |ParentID: 712)
C:\Windows\system32\svchost.exe (ID: 1444 |ParentID: 500)
C:\Program Files\Avira\AntiVir Desktop\sched.exe (ID: 1472 |ParentID: 500)
C:\Windows\system32\svchost.exe (ID: 1496 |ParentID: 500)
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ID: 1700 |ParentID: 500)
C:\Program Files\Avira\AntiVir Desktop\avguard.exe (ID: 1744 |ParentID: 500)
C:\Program Files\Dassault Systemes\DS License Server\intel_a\code\bin\DSLicSrv.exe (ID: 1804 |ParentID: 500)
C:\SIMULIA\License\lmgrd.exe (ID: 1852 |ParentID: 500)
C:\Windows\system32\conhost.exe (ID: 1876 |ParentID: 392)
C:\SIMULIA\License\lmgrd.exe (ID: 1904 |ParentID: 1852)
C:\Windows\system32\svchost.exe (ID: 1992 |ParentID: 500)
C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe (ID: 108 |ParentID: 500)
C:\SIMULIA\License\ABAQUSLM.exe (ID: 280 |ParentID: 1904)
C:\Windows\system32\taskhost.exe (ID: 736 |ParentID: 500)
C:\Program Files\TeamViewer\Version8\TeamViewer.exe (ID: 2468 |ParentID: 108)
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (ID: 2608 |ParentID: 1744)
C:\Windows\system32\sppsvc.exe (ID: 2744 |ParentID: 500)
C:\Program Files\TeamViewer\Version8\tv_w32.exe (ID: 2956 |ParentID: 108)
C:\Windows\system32\Dwm.exe (ID: 3240 |ParentID: 844)
C:\Windows\Explorer.EXE (ID: 3264 |ParentID: 3232)
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe (ID: 3380 |ParentID: 3264)
C:\Windows\PLFSetI.exe (ID: 3388 |ParentID: 3264)
C:\Program Files\Common Files\Real\Update_OB\realsched.exe (ID: 3396 |ParentID: 3264)
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ID: 3404 |ParentID: 3264)
C:\Program Files\Alice Mobile Olicard 100\ConnMonitor.exe (ID: 3412 |ParentID: 3264)
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (ID: 3440 |ParentID: 3264)
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (ID: 3456 |ParentID: 3264)
C:\Program Files\Vodafone\Vodafone Mobile Wi-Fi\Launcher.exe (ID: 3468 |ParentID: 3264)
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac (ID: 3556 |ParentID: 3404)
C:\Program Files\Windows Sidebar\sidebar.exe (ID: 3624 |ParentID: 3264)
C:\Users\Anna\AppData\Local\Akamai\netsession_win.exe (ID: 3700 |ParentID: 3264)
C:\Windows\system32\SearchIndexer.exe (ID: 3760 |ParentID: 500)
C:\Users\Anna\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (ID: 3892 |ParentID: 3264)
C:\Windows\System32\StikyNot.exe (ID: 3952 |ParentID: 3264)
C:\Users\Anna\AppData\Local\Akamai\netsession_win.exe (ID: 3972 |ParentID: 3700)
C:\Program Files\Google\Drive\googledrivesync.exe (ID: 4020 |ParentID: 3264)
C:\Windows\System32\wscript.exe (ID: 1620 |ParentID: 3264)
C:\Program Files\Common Files\Gestore installazioni SolidWorks\BackgroundDownloading\sldBgDwld.exe (ID: 2336 |ParentID: 3264)
C:\Users\Anna\AppData\Roaming\Dropbox\bin\Dropbox.exe (ID: 368 |ParentID: 3264)
C:\Program Files\Google\Drive\googledrivesync.exe (ID: 2852 |ParentID: 4020)
C:\Windows\System32\svchost.exe (ID: 4032 |ParentID: 500)
C:\Program Files\Mozilla Firefox\firefox.exe (ID: 5076 |ParentID: 3264)
C:\Windows\system32\wbem\wmiprvse.exe (ID: 5240 |ParentID: 640)
C:\Program Files\Mozilla Firefox\plugin-container.exe (ID: 3540 |ParentID: 5076)
C:\Windows\system32\wuauclt.exe (ID: 4196 |ParentID: 916)
C:\Program Files\Mozilla Firefox\plugin-container.exe (ID: 1784 |ParentID: 5076)
C:\Program Files\Mozilla Firefox\plugin-container.exe (ID: 4716 |ParentID: 5076)
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe (ID: 4432 |ParentID: 4716)
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe (ID: 5692 |ParentID: 4432)
C:\Windows\system32\WUDFHost.exe (ID: 4492 |ParentID: 844)
C:\Program Files\Internet Explorer\iexplore.exe (ID: 5096 |ParentID: 3584)
C:\Program Files\Internet Explorer\iexplore.exe (ID: 2908 |ParentID: 5096)
C:\Windows\System32\MsSpellCheckingFacility.exe (ID: 2268 |ParentID: 640)
C:\Windows\system32\wbem\wmiprvse.exe (ID: 5904 |ParentID: 640)
################## | Ricerca generica |
Soppresso! C:\Users\Anna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SergeLeLama.vbs
Soppresso! H:\SergeLeLama.vbs
Soppresso! I:\SergeLeLama.vbs
Soppresso! C:\Users\Anna\AppData\Local\Temp\FlashPlayerUpdate.exe
Soppresso! C:\Users\Anna\AppData\Local\Temp\SergeLeLama.vbs
Soppresso! G:\Racolta appunti.lnk
Soppresso! G:\PROSTHETIC FOOT - 1Parte (1).lnk
Soppresso! H:\RoadWalkingCovers_ElasticEnergy_Marco.lnk
Soppresso! H:\RoadWalkingCovers_ElasticEnergy_Margherita.lnk
Soppresso! H:\Anna Pace 800766 - Articolo Ing.lnk
Soppresso! H:\Anna Pace_CV.lnk
Soppresso! H:\UNITECH.lnk
Soppresso! H:\Pietro_Bortolotti_r_01.lnk
Soppresso! H:\Manufacturing-Direct-Long-Fibre-Thermoplastics.lnk
Soppresso! H:\progetto_formativo_27712.lnk
Soppresso! H:\matlab.lnk
Soppresso! H:\Capelli.lnk
Soppresso! H:\PSSV Ese3-2014testo.lnk
Soppresso! H:\PSSV Ese1-2014_sol.lnk
Soppresso! H:\Anna.lnk
Soppresso! H:\Supporto.lnk
Soppresso! H:\Tesi.lnk
Soppresso! C:\Users\Anna\autorun.inf
Soppresso! C:\$Recycle.Bin\S-1-5-21-1820990010-357242136-2890627278-1000\$RW7WXX7.vbs
Soppresso! D:\aiutooooooooooooooooooo\SergeLeLama.vbs
Soppresso! D:\aiutooooooooooooooooooo\SergeLeLama_1.vbs
(!) Schedari temporanei soppressi.
################## | Registro |
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\Microsoft\Windows\CurrentVersion\RunOnce|FlashPlayerUpdate
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\Microsoft\Windows\CurrentVersion\Run|SergeLeLama
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\.\.\.\.\Mountpoints2\G
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\.\.\.\.\Mountpoints2\{0ee12da1-e458-11e0-85ec-001b2473e6c8}
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\.\.\.\.\Mountpoints2\{6fd62a7f-31e6-11e3-ae65-001b2473e6c8}
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\.\.\.\.\Mountpoints2\{96b3e9ab-2df7-11e3-b588-001b2473e6c8}
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\.\.\.\.\Mountpoints2\{bc2c6e19-39a4-11df-8ccd-001b2473e6c8}
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\.\.\.\.\Mountpoints2\{e3550784-247c-11e3-b50f-001b2473e6c8}
Soppresso! HKU\S-1-5-21-1820990010-357242136-2890627278-1000\Software\.\.\.\.\Mountpoints2\{f4b5e0cc-a6b7-11e2-8805-001b2473e6c8}
################## | Regedit Run |
F2 - HKLM\..\Winlogon : [Shell] explorer.exe
F2 - [x64] HKLM\..\Winlogon : [Shell] explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKCU\..\Run : [Facebook Update] "C:\Users\Anna\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
04 - HKCU\..\Run : [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
04 - HKCU\..\Run : [Akamai NetSession Interface] "C:\Users\Anna\AppData\Local\Akamai\netsession_win.exe"
04 - HKCU\..\Run : [NIRegistrationWizard] C:\Program Files\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe -autoDiscover 1 -displayIfNoneFound 0 -displayRegisterOptions 1 -sleepIfNoneFound 0 -locale 1040
04 - HKCU\..\Run : [Spotify] "C:\Users\Anna\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
04 - HKCU\..\Run : [Spotify Web Helper] "C:\Users\Anna\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
04 - HKCU\..\Run : [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
04 - HKCU\..\Run : [GoogleDriveSync] "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
04 - HKLM\..\Run : [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
04 - HKLM\..\Run : [PLFSetI] C:\Windows\PLFSetI.exe
04 - HKLM\..\Run : [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
04 - HKLM\..\Run : [ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
04 - HKLM\..\Run : [ConnMonitor] C:\Program Files\Alice Mobile Olicard 100\ConnMonitor.exe start
04 - HKLM\..\Run : [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
04 - HKLM\..\Run : [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
04 - HKLM\..\Run : [Autodesk Sync] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe
04 - HKLM\..\Run : [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
04 - HKLM\..\Run : [VodafoneMobileWiFi] C:\Program Files\Vodafone\Vodafone Mobile Wi-Fi\Launcher.exe
04 - HKLM\..\RunOnce : []
04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-21-1820990010-357242136-2890627278-1000\..\Run : [Facebook Update] "C:\Users\Anna\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
04 - HKU\S-1-5-21-1820990010-357242136-2890627278-1000\..\Run : [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
04 - HKU\S-1-5-21-1820990010-357242136-2890627278-1000\..\Run : [Akamai NetSession Interface] "C:\Users\Anna\AppData\Local\Akamai\netsession_win.exe"
04 - HKU\S-1-5-21-1820990010-357242136-2890627278-1000\..\Run : [NIRegistrationWizard] C:\Program Files\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe -autoDiscover 1 -displayIfNoneFound 0 -displayRegisterOptions 1 -sleepIfNoneFound 0 -locale 1040
04 - HKU\S-1-5-21-1820990010-357242136-2890627278-1000\..\Run : [Spotify] "C:\Users\Anna\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
04 - HKU\S-1-5-21-1820990010-357242136-2890627278-1000\..\Run : [Spotify Web Helper] "C:\Users\Anna\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
04 - HKU\S-1-5-21-1820990010-357242136-2890627278-1000\..\Run : [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
04 - HKU\S-1-5-21-1820990010-357242136-2890627278-1000\..\Run : [GoogleDriveSync] "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
04 - HKU\S-1-5-19\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-20\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-18\..\RunOnce : [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"https://support.microsoft.com/en-us/windows/install-windows-7-service-pack-1-sp1-b3da2c0f-cdb6-0572-8596-bab972897f61" /build:7601
################## | Listing |
[27/03/2010 - 14:11:02 | SHD] - C:\$Recycle.Bin
[21/03/2011 - 01:15:13 | N | 0 Ko | 7215EE9C7D9DC229D2921A40E899EC5F] - C:\7c2f879b3da148dc39fca1d567dfc7fc_log.txt
[21/01/2014 - 15:34:00 | D] - C:\Abaqus Setup
[10/06/2009 - 23:42:20 | A | 0 Ko] - C:\autoexec.bat
[23/05/2013 - 16:04:48 | SHD] - C:\Boot
[20/11/2010 - 14:40:07 | RASH | 375 Ko] - C:\bootmgr
[27/03/2010 - 14:00:54 | RASH | 8 Ko] - C:\BOOTSECT.BAK
[27/03/2010 - 15:24:06 | N | 8 Ko] - C:\bootsect.lxe.bak
[15/04/2014 - 01:12:16 | D] - C:\Config.Msi
[10/06/2009 - 23:42:20 | N | 0 Ko] - C:\config.sys
[14/07/2009 - 06:53:55 | SHD] - C:\Documents and Settings
[27/03/2010 - 15:24:06 | N | 375 Ko] - C:\gdrop
[22/04/2014 - 16:35:12 | ASH | 1571656 Ko] - C:\hiberfil.sys
[11/01/2014 - 02:07:18 | D] - C:\MATS
[27/03/2010 - 15:33:26 | RHD] - C:\MSOCache
[22/04/2014 - 16:35:18 | ASH | 2095544 Ko] - C:\pagefile.sys
[14/07/2009 - 04:37:05 | D] - C:\PerfLogs
[13/04/2014 - 01:15:13 | D] - C:\Program Files
[13/04/2014 - 01:12:34 | HD] - C:\ProgramData
[27/03/2010 - 14:10:38 | D] - C:\Programmi
[27/03/2010 - 14:10:38 | SHD] - C:\Recovery
[21/01/2014 - 15:20:43 | D] - C:\SIMULIA
[21/01/2014 - 13:51:00 | D] - C:\SolidWorks Data
[22/04/2014 - 17:37:29 | SHD] - C:\System Volume Information
[10/01/2014 - 20:36:43 | D] - C:\Temp
[22/04/2014 - 17:09:59 | D] - C:\UsbFix
[22/04/2014 - 17:40:33 | A | 14 Ko | F47BD952D33CD908987D4706072AEEDC] - C:\UsbFix [Clean 2] ANNA-PC.txt
[26/03/2012 - 23:44:59 | N | 0 Ko] - C:\user.js
[04/06/2013 - 10:27:14 | D] - C:\Users
[23/02/2014 - 12:22:53 | D] - C:\Windows
[27/03/2010 - 15:24:06 | N | 167 Ko] - C:\xeldr
[27/03/2010 - 14:11:02 | SHD] - D:\$RECYCLE.BIN
[19/11/2013 - 01:57:40 | D] - D:\6e941ec263a0ee054b5e8a7f6ca143
[13/12/2012 - 02:30:49 | D] - D:\972bfb6f80eb8abe339ae44653e589f1
[22/04/2014 - 17:36:56 | D] - D:\aiutooooooooooooooooooo
[26/03/2010 - 21:25:02 | D] - D:\Alice Mobile Olicard 100
[23/05/2013 - 01:16:15 | D] - D:\anna
[14/03/2013 - 13:19:03 | D] - D:\anna2
[11/03/2013 - 15:45:20 | D] - D:\Barons
[02/09/2013 - 18:27:48 | D] - D:\c0feea63de548fbb9c
[10/01/2014 - 22:44:39 | D] - D:\Desktop
[12/09/2012 - 10:38:51 | D] - D:\Dev-Cpp
[04/12/2012 - 17:11:49 | D] - D:\Documents
[11/03/2013 - 15:41:06 | D] - D:\DVD Maker
[11/03/2013 - 15:41:09 | D] - D:\epson
[06/06/2008 - 19:36:22 | D] - D:\erData
[26/03/2010 - 21:05:40 | D] - D:\ESAME
[04/06/2013 - 10:51:00 | D] - D:\f32d43dfd30e79a830fef1d6
[10/07/2013 - 00:41:08 | D] - D:\fac4d083f9ac2a112cebd3
[04/12/2012 - 17:23:38 | N | 1 Ko] - D:\Immagini - collegamento.lnk
[14/03/2013 - 13:31:44 | D] - D:\KENYA
[23/05/2013 - 15:00:29 | D] - D:\LAUREA
[05/03/2010 - 16:56:54 | N | 159 Ko] - D:\LeBronJamesDunker.jpg
[05/03/2010 - 16:55:26 | N | 111 Ko] - D:\magic.jpg
[10/01/2014 - 22:50:21 | D] - D:\MATLAB
[10/01/2014 - 16:48:56 | D] - D:\musica
[02/09/2013 - 17:21:02 | D] - D:\Pictures
[21/01/2014 - 13:37:05 | D] - D:\SolidWorks 2012 SP0
[31/07/2007 - 17:56:33 | SHD] - D:\System Volume Information
[15/09/2013 - 11:44:06 | D] - D:\Videos
[12/04/2014 - 22:39:00 | N | 1229 Ko] - G:\Racolta appunti.pdf
[15/04/2014 - 00:48:42 | N | 566 Ko] - G:\PROSTHETIC FOOT - 1Parte (1).docx
[28/05/2012 - 12:35:24 | N | 58 Ko] - H:\RoadWalkingCovers_ElasticEnergy_Marco.m
[28/05/2012 - 13:12:18 | N | 59 Ko] - H:\RoadWalkingCovers_ElasticEnergy_Margherita.m
[10/12/2012 - 00:36:20 | D] - H:\UNITECH
[22/10/2012 - 14:06:20 | D] - H:\matlab
[05/01/2014 - 13:39:14 | D] - H:\Anna
[09/01/2014 - 23:48:16 | N | 209 Ko] - H:\Anna Pace 800766 - Articolo Ing.Biomim.&Tissutale.pdf
[14/02/2014 - 10:13:34 | N | 15 Ko] - H:\Anna Pace_CV.docx
[25/03/2014 - 22:55:06 | N | 20737 Ko] - H:\Pietro_Bortolotti_r_01.pdf
[25/03/2014 - 23:21:12 | N | 584 Ko] - H:\Manufacturing-Direct-Long-Fibre-Thermoplastics.pdf
[04/04/2014 - 19:01:32 | D] - H:\Supporto
[04/04/2014 - 19:02:14 | N | 142 Ko] - H:\progetto_formativo_27712.pdf
[04/04/2014 - 23:10:50 | D] - H:\Tesi
[04/04/2014 - 23:30:18 | N | 126 Ko] - H:\Capelli.pdf
[10/04/2014 - 13:27:02 | N | 72 Ko] - H:\PSSV Ese3-2014testo.pdf
[10/04/2014 - 13:27:32 | N | 2456 Ko] - H:\PSSV Ese1-2014_sol.pdf
################## | Vaccin |
D:\Autorun.inf -> Vaccino creato per UsbFix (El Desaparecido)
G:\Autorun.inf -> Vaccino creato per UsbFix (El Desaparecido)
H:\Autorun.inf -> Vaccino creato per UsbFix (El Desaparecido)
I:\Autorun.inf -> Vaccino creato per UsbFix (El Desaparecido)
################## | E.O.F | http://www.it.usbfix.net/ - https://www.sosvirus.net/ |
1 response
Ambucias
Posts
47310
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
February 15, 2023
11,164
Apr 22, 2014 at 04:53 PM
Apr 22, 2014 at 04:53 PM
Thanks for the report but you have not followed the instructions properly to fix the issue.
See this tutorial, follow the instructions and your problem will be solved in no time.
: http://www.en.usbfix.net/2014/02/usbfix-tutorial-clean-option/
See this tutorial, follow the instructions and your problem will be solved in no time.
: http://www.en.usbfix.net/2014/02/usbfix-tutorial-clean-option/