Driver shortcut

Closed
Nikster Posts 2 Registration date Thursday May 7, 2015 Status Member Last seen May 7, 2015 - May 7, 2015 at 02:39 AM
Nikster Posts 2 Registration date Thursday May 7, 2015 Status Member Last seen May 7, 2015 - May 7, 2015 at 10:31 AM
PC runs on windows 8 and when ever i plug in pendrive, it shows an shortcut of itself instead of showing all the files. The files are present in the shortcut. Please help.
Related:

1 response

Computertech Posts 3569 Registration date Friday February 6, 2015 Status Moderator Last seen July 18, 2016 892
May 7, 2015 at 03:17 AM
Hello Nikster,
This type issue could be caused by a USB virus. It will spread to all of your USB memory devices and hard disk.

Here is a tool to remove the virus and vaccinate your USB against further viruses.


Download UsbFix (created by El Desaparecido) on your desktop.

http://ccm.net/download/download-24089-usbfix

If your antivirus gives an alert, ignore it and temporarily deactivate the antivirus.
Plug in your usb devices (Flash drive, pen drive. External HD etc...) don't open them.
Double click sur UsbFix.exe.

Click on deletion
.
Let the tool work.

At the end of the scan a report will show which you can copy and paste here..

The report is save at the root ( C:\UsbFix.txt ).

You can also vaccinate against any virus.
0
Nikster Posts 2 Registration date Thursday May 7, 2015 Status Member Last seen May 7, 2015
May 7, 2015 at 10:31 AM
[b]############################## | UsbFix V 7.933 | [Research][/b]

User: Nikhil V (Administrator) # NIKHIL
Updated 07/05/2015 by El Desaparecido - SosVirus
Started at 20:00:01 | 07/05/2015

Website : [url=http://www.en.usbfix.net/]http://www.en.usbfix.net/[/url]
Changelog : [url=http://www.en.usbfix.net/changelog/]http://www.en.usbfix.net/changelog/[/url]
Support : [url=http://www.sos-virus.net/]http://www.sos-virus.net/[/url]
Live detection : [url=http://how-to-remove.us/]http://ww25.how-to-remove.us/[/url]
Contact : [url=http://www.en.usbfix.net/contact/]http://www.en.usbfix.net/contact/[/url]

[b]################## | System information |[/b]

MB: Hewlett-Packard (2166)
CPU: Intel(R) Core(TM) i5-4200U CPU @ 1.60GHz
GC: Intel(R) HD Graphics Family
RAM -> [Total : 4026 Mo | Free : 1892 Mo]
Bios: Insyde
Boot: Normal boot

OS: Microsoft(TM) Windows 8.1 Single Language (6.3.9600 64-Bit)
WB: Internet Explorer : 11.00.9600.16384
WB: Google Chrome : 42.0.2311.135
WB: Mozilla Firefox : 36.0

[b]################## | Security Information |[/b]

AV: Windows Defender [Enabled |Updated]
AS: Windows Defender [Enabled |Updated]
FW: Windows Firewall [Enabled]
SC: Security Center [Enabled]
WU: Windows Update [Enabled]

[b]################## | Disk Information |[/b]

C:\ (%SystemDrive%) -> Fixed disk # 74 Gb (13 Gb free - 18%) [Windows] # NTFS
D:\ -> Fixed disk # 20 Gb (2 Gb free - 10%) [RECOVERY] # NTFS
F:\ -> Fixed disk # 279 Gb (153 Gb free - 55%) [New Volume] # NTFS
G:\ -> Fixed disk # 279 Gb (225 Gb free - 81%) [New Volume] # NTFS
H:\ -> Fixed disk # 279 Gb (164 Gb free - 59%) [New Volume] # NTFS
I:\ -> Removable disk # 4 Gb (4 Gb free - 100%) [NIKHIL] # FAT32
J:\ -> Removable disk # 7 Gb (7 Gb free - 100%) [NIKSTER] # FAT32

[b]################## | Autorun |[/b]

J:\NIKSTER (8GB).lnk -> J:\ \~$tbkglhtgxbbpsxgrcnzcaxsfttycjlqaczbn.bak

[b]################## | Startup |[/b]

F2 - HKLM\..\Winlogon : [Shell] explorer.exe
F2 - [x64] HKLM\..\Winlogon : [Shell] explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] userinit.exe
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKLM\..\Run : [AccelerometerSysTrayApplet] C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe
04 - HKLM\..\Run : [YouCam Service] "C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe" /s
04 - HKLM\..\Run : [HPMessageService] C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
04 - [x64] HKLM\..\Run : [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
04 - [x64] HKLM\..\Run : [IgfxTray] "C:\Windows\system32\igfxtray.exe"
04 - [x64] HKLM\..\Run : [HotKeysCmds] "C:\Windows\system32\hkcmd.exe"
04 - [x64] HKLM\..\Run : [Persistence] "C:\Windows\system32\igfxpers.exe"
04 - [x64] HKLM\..\Run : [SimplePass] C:\Program Files\Hewlett-Packard\SimplePass\HPSmplPass.exe /hideui
04 - [x64] HKLM\..\Run : [OPBHOBroker] C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe
04 - [x64] HKLM\..\Run : [OPBHOBrokerDesktop] C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe
04 - [x64] HKLM\..\Run : [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
04 - [x64] HKLM\..\Run : [NvBackend] "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
04 - [x64] HKLM\..\Run : [ShadowPlay] C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
04 - [x64] HKLM\..\Run : [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
04GS - Send to OneNote.lnk : C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE

[b]################## | Generic Research |[/b]

Found! J:\NIKSTER (8GB).lnk
Found! J:\ \~$tbkglhtgxbbpsxgrcnzcaxsfttycjlqaczbn.bak

[b]################## | Registry |[/b]


[b]################## | UsbFix - Information |[/b]

Info : [url=https://www.youtube.com/watch?v=vUZYYASd7FE]How to remove shortcut virus on flash disk (Video)[/url]
Info : [url=http://www.en.usbfix.net/2014/03/remove-shortcut-virus-usb/]Shortcut virus on flash disk, What is it ?[/url]
Live detection : [url=http://how-to-remove.us/]http://ww25.how-to-remove.us/[/url]

[b]################## | Attrib - Restore |[/b]


[b]################## | E.O.F | [url=http://www.sosvirus.net/]https://www.sosvirus.net/[/url] | [url=http://www.en.usbfix.net/]http://www.en.usbfix.net/[/url] |[/b]
0