Virus

Closed
Manimaran11
Posts
13
Registration date
Saturday April 11, 2015
Status
Member
Last seen
April 13, 2015
- Apr 11, 2015 at 10:00 AM
Manimaran11
Posts
13
Registration date
Saturday April 11, 2015
Status
Member
Last seen
April 13, 2015
- Apr 13, 2015 at 10:50 PM
My pendrive is not accessible and not formattable.There are few shortcuts created too in my laptop.Initially it showed autoit error .I removed it from regedit.I tried formatting the pendrive from cmd it didn't work.My pendrive shows system volume information.I downloaded autorun exterminator.I searched in cmd for autorun.inf but it said there are no files like that.I downloaded malwarebytes-anti-malware malwarebytes but it did not detect my virus after scanning for 30 minutes.Pls help me.

1 reply

Ambucias
Posts
47363
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
September 1, 2021
11,284
Apr 11, 2015 at 04:22 PM
Hello,
# Download USB Fix
] on your computer, and launch it.
# It will start automatically, and a shortcut will be created on your desktop.
# Connect all your external data sources to your PC (Usb keys, external drives, etc...) Do not open them.
# Choose " Deletion " option.

#The computer will re-start, and it may be longer than usually.

# UsbFix will display a message at re-start.

# Click "OK" to start cleaning.
# Copy/paste the report here.

Tutorial : http://www.en.usbfix.net/2014/02/usbfix-tutorial-clean-option/
0
Manimaran11
Posts
13
Registration date
Saturday April 11, 2015
Status
Member
Last seen
April 13, 2015

Apr 11, 2015 at 10:13 PM
[b]############################## | UsbFix V 7.921.2 | [Clean][/b]

User: DELL3521 (Administrator) # DELL
Updated 10/04/2015 by El Desaparecido - SosVirus
Started at 07:29:03 | 12/04/2015

Website : [url=http://www.en.usbfix.net/]http://www.en.usbfix.net/[/url]
Changelog : [url=http://www.en.usbfix.net/changelog/]http://www.en.usbfix.net/changelog/[/url]
Support : [url=http://www.sos-virus.net/]http://www.sos-virus.net/[/url]
Live detection : [url=http://how-to-remove.us/]http://ww25.how-to-remove.us/[/url]
Contact : [url=http://www.en.usbfix.net/contact/]http://www.en.usbfix.net/contact/[/url]

[b]################## | System information |[/b]

MB: Dell Inc. (06RYX8)
CPU: Intel(R) Core(TM) i3-3217U CPU @ 1.80GHz
GC: Intel(R) HD Graphics 4000
RAM -> [Total : 3977 Mo | Free : 2108 Mo]
Bios: Dell Inc.
Boot: Normal boot

OS: Microsoft(TM) Windows 8.1 Single Language (6.3.9600 64-Bit)
WB: Internet Explorer : 11.00.9600.16384
WB: Google Chrome : 43.0.2357.10

[b]################## | Security Information |[/b]

AV: Windows Defender [Enabled |Updated]
AS: Windows Defender [Enabled |Updated]
AS: Malwarebytes Anti-Malware : 2.0.4.1028
FW: Windows Firewall [Enabled]
SC: Security Center [Enabled]
WU: Windows Update [Enabled]

[b]################## | Disk Information |[/b]

C:\ (%SystemDrive%) -> Fixed disk # 99 Gb (52 Gb free - 53%) [] # NTFS
D:\ -> Fixed disk # 366 Gb (294 Gb free - 80%) [] # NTFS
E:\ -> Removable disk # 7 Gb (7 Gb free - 92%) [MANIMARAN] # FAT32

[b]################## | Autorun |[/b]


[b]################## | Generic Research |[/b]

Deleted! C:\GoogleChrome\GoogleChrome.exe
Deleted! C:\GoogleChrome\GoogleUpdate.lnk
Deleted! C:\GoogleChrome\MozillaFirefox.lnk
Deleted! C:\GoogleChrome\Windowsupdate.lnk
Deleted! C:\GoogleChrome
Deleted! C:\MozillaFirefox\GoogleChrome.exe
Deleted! C:\MozillaFirefox\GoogleUpdate.lnk
Deleted! C:\MozillaFirefox\Windowsupdate.lnk
Deleted! C:\MozillaFirefox
Deleted! D:\MozillaFirefox\GoogleChrome.exe
Not deleted ! ... Tentative au redémarrage... D:\MozillaFirefox\GoogleUpdate.lnk
Not deleted ! ... Tentative au redémarrage... D:\MozillaFirefox\MozillaFirefox.lnk
Not deleted ! ... Tentative au redémarrage... D:\MozillaFirefox\Windowsupdate.lnk
Deleted! D:\MozillaFirefox

(!) Temporary files deleted. (404.479190826416 MB)

[b]################## | Registry |[/b]


[b]################## | Regedit Run |[/b]

F2 - HKLM\..\Winlogon : [Shell] explorer.exe
F2 - [x64] HKLM\..\Winlogon : [Shell] explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] userinit.exe,
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKLM\..\Run : [PowerDVD12DMREngine] "C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe"
04 - HKLM\..\Run : [PowerDVD12Agent] "C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe"
04 - [x64] HKLM\..\Run : [QuickSet] C:\Program Files\Dell\QuickSet\QuickSet.exe
04 - HKU\S-1-5-18\..\Run : [Autodesk Sync] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe
04GS - The.Imitation.Game.2014.DVDSCR.x264-GoPanda [2ndtimearound].lnk : C:\ProgramData\{d44d0094-37b1-2cc7-d44d-d009437b0250}\The.Imitation.Game.2014.DVDSCR.x264-GoPanda [2ndtimearound].exe
04GS - Bluetooth.lnk : C:\Program Files (x86)\WIDCOMM\Bluetooth Software\BTTray.exe
04GS - SolidWorks 2014 Fast Start.lnk : C:\Windows\Installer\{4FFA60C4-9A8B-4C9E-8265-2241B266304C}\NewShortcut2_87EDF6C81D0A4B7B84F42FE0C6A9D608.exe
04GS - SolidWorks Background Downloader.lnk : C:\Program Files (x86)\Common Files\SolidWorks Installation Manager\BackgroundDownloading\sldBgDwld.exe

[b]################## | UsbFix - Information |[/b]

Info : [url=https://www.youtube.com/watch?v=vUZYYASd7FE]How to remove shortcut virus on flash disk (Video)[/url]
Info : [url=http://www.en.usbfix.net/2014/03/remove-shortcut-virus-usb/]Shortcut virus on flash disk, What is it ?[/url]
Live detection : [url=http://how-to-remove.us/]http://ww25.how-to-remove.us/[/url]

[b]################## | Attrib - Restore |[/b]


[b]################## | C:\ %SystemDrive% - Fixed drive (NTFS) |[/b]

[10/04/2015 - 18:28:23 | ASH | 3258180 Ko] - C:\hiberfil.sys
[10/04/2015 - 18:28:28 | ASH | 786432 Ko] - C:\pagefile.sys
[10/04/2015 - 18:28:28 | ASH | 262144 Ko] - C:\swapfile.sys
[08/11/2014 - 09:33:36 | SHD] - C:\$Recycle.Bin
[18/06/2013 - 17:48:29 | N | 0 Ko] - C:\BOOTNXT
[22/08/2013 - 11:01:45 | RASH | 418 Ko] - C:\bootmgr
[22/08/2013 - 20:15:52 | SHD] - C:\Documents and Settings
[07/09/2014 - 10:29:24 | RHD] - C:\MSOCache
[28/09/2014 - 10:39:04 | RD] - C:\Users
[06/02/2015 - 13:01:34 | D] - C:\SolidWorks Data
[18/02/2015 - 00:32:59 | D] - C:\PerfLogs
[18/02/2015 - 00:32:59 | D] - C:\Intel
[23/02/2015 - 21:45:40 | RD] - C:\Program Files
[26/02/2015 - 16:09:40 | D] - C:\Dell
[25/03/2015 - 20:50:24 | D] - C:\MSI
[04/04/2015 - 22:41:44 | D] - C:\Windows
[10/04/2015 - 21:13:02 | HD] - C:\ProgramData
[10/04/2015 - 21:13:40 | RD] - C:\Program Files (x86)
[12/04/2015 - 07:29:50 | D] - C:\UsbFix

[b]################## | D:\ - Fixed drive (NTFS) |[/b]

[26/02/2015 - 22:31:52 | A | 56 Ko] - D:\phy PBL 2015.pptx
[14/10/2014 - 07:25:22 | A | 28 Ko] - D:\BTechEEE_Curriculum.pdf
[01/04/2015 - 20:39:38 | A | 444 Ko] - D:\CAT_april2015.pdf
[26/09/2014 - 10:24:39 | A | 0 Ko] - D:\Untitled2.m
[03/08/2014 - 17:27:52 | A | 872 Ko] - D:\IMAG0111.jpg
[13/05/2010 - 14:53:30 | A | 46 Ko] - D:\AutoRunExterminator.exe
[14/12/2014 - 22:41:05 | A | 67 Ko] - D:\FFCS REGISTRATION WINTER SEMESTER.docx
[14/01/2015 - 08:34:24 | A | 28 Ko] - D:\eigen.doc
[17/11/2014 - 15:13:37 | ASH | 15 Ko] - D:\Thumbs.db
[08/09/2014 - 06:02:36 | SHD] - D:\$RECYCLE.BIN
[18/02/2015 - 09:07:34 | D] - D:\nothing
[09/04/2015 - 13:26:43 | D] - D:\entertainment
[09/04/2015 - 16:11:59 | D] - D:\books
[10/04/2015 - 22:17:21 | D] - D:\Dev-Cpp
[10/04/2015 - 22:17:46 | D] - D:\solid works
[10/04/2015 - 22:17:46 | D] - D:\Program Files
[10/04/2015 - 22:17:46 | D] - D:\Program Files (x86)
[10/04/2015 - 22:17:46 | D] - D:\New folder
[10/04/2015 - 22:17:46 | D] - D:\mee my files
[10/04/2015 - 22:17:46 | D] - D:\Matlab
[10/04/2015 - 22:17:47 | D] - D:\edx
[10/04/2015 - 22:17:47 | RD] - D:\Downloads

[b]################## | Vaccin |[/b]

C:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
D:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)

[b]################## | E.O.F | [url=http://www.sosvirus.net/]https://www.sosvirus.net/[/url] | [url=http://www.en.usbfix.net/]http://www.en.usbfix.net/[/url] |[/b]
0
Manimaran11
Posts
13
Registration date
Saturday April 11, 2015
Status
Member
Last seen
April 13, 2015

Apr 11, 2015 at 10:14 PM
When i was scanning my laptop suddenly was not showing the taskbar and it not showing the windows
0
Ambucias
Posts
47363
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
September 1, 2021
11,284 > Manimaran11
Posts
13
Registration date
Saturday April 11, 2015
Status
Member
Last seen
April 13, 2015

Apr 12, 2015 at 06:18 AM
That is normal.
0
Manimaran11
Posts
13
Registration date
Saturday April 11, 2015
Status
Member
Last seen
April 13, 2015

Apr 12, 2015 at 09:00 AM
my pendrive is still not working
0
Ambucias
Posts
47363
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
September 1, 2021
11,284 > Manimaran11
Posts
13
Registration date
Saturday April 11, 2015
Status
Member
Last seen
April 13, 2015

Apr 12, 2015 at 04:19 PM
No doubt that it is physically damaged as USBFix did not find any malware.
0