Gathering system information: completed 37 minutes ago (events: 21, time: 00:02:12) 15-01-25 21:58:03 Task started Gathering system information 15-01-25 21:58:05 Main script of analysis 15-01-25 21:58:05 Windows version: Windows 7 Home Premium, Build=7601, SP="Service Pack 1" 15-01-25 21:58:05 System Restore: enabled 15-01-25 21:58:24 Hidden startup suspected: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\ShadowPlay="C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart" 15-01-25 21:58:54 >> Services: potentially dangerous service allowed: Schedule (@%SystemRoot%\system32\schedsvc.dll,-100) 15-01-25 21:58:54 > Services: please bear in mind that the set of services depends on the use of the PC (home PC, office PC connected to corporate network, etc)! 15-01-25 21:58:54 >> Security: disk drives' autorun is enabled 15-01-25 21:58:54 >> Security: administrative shares (C$, D$ ...) are enabled 15-01-25 21:58:54 >> Security: anonymous user access is enabled 15-01-25 21:58:59 >> Disable HDD autorun 15-01-25 21:58:59 >> Disable autorun from network drives 15-01-25 21:58:59 >> Disable CD/DVD autorun 15-01-25 21:58:59 >> Disable removable media autorun 15-01-25 21:59:02 >> [?? - AVZ1789] 15-01-25 21:59:02 System Analysis in progress 15-01-25 22:00:15 System Analysis - complete 15-01-25 22:00:15 Deleting service/driver: uti0mza0 15-01-25 22:00:15 Deleting service/driver: uji0mza0 15-01-25 22:00:15 Main script of analysis 15-01-25 22:00:15 Task completed Gathering system information