############################## | UsbFix V 7.093 | [Research] User: komputer (Administrator) # TWOJA-9322ADD3A Updated 08/07/2012 by El Desaparecido Started at 20:24:41 | 19/12/2012 Website: http://eldesaparecido.com Forum: http://forum.eldesaparecido.com Suspicious file ? : http://eldesaparecido.com/upload.php Contact: contact@eldesaparecido.com PC: ASUSTeK Computer Inc. (F5R ) (X86-based PC) # Notebook CPU: Genuine Intel(R) CPU T2130 @ 1.86GHz (1862) CPU: Genuine Intel(R) CPU T2130 @ 1.86GHz (1862) RAM -> [Total : 1919 | Free : 1486] BIOS: Default System BIOS BOOT: Normal boot OS: Microsoft Windows XP Home Edition (5.1.2600 32-Bit) # Dodatek Service Pack 2 WB: Windows Internet Explorer 6.0.2900.2180 SC: Security Center Service [Enabled] WU: Windows Update Service [Enabled] FW: Windows FireWall Service [Enabled] C:\ (%systemdrive%) -> Fixed drive # 149 Gb (129 Mb free - 87%) [] # FAT32 D:\ -> CD-ROM F:\ -> Fixed drive # 49 Gb (49 Mb free - 100%) [Dysk] # NTFS G:\ -> Fixed drive # 78 Gb (78 Mb free - 100%) [Dysk] # NTFS H:\ -> Fixed drive # 98 Gb (98 Mb free - 100%) [Dysk] # NTFS I:\ -> Fixed drive # 68 Gb (17 Mb free - 25%) [Przygodowe Fantsy] # NTFS J:\ -> Fixed drive # 98 Gb (84 Mb free - 86%) [MUZA] # NTFS K:\ -> Fixed drive # 73 Gb (21 Mb free - 29%) [Polskie] # NTFS L:\ -> Fixed drive # 73 Gb (43 Mb free - 59%) [Bajki] # NTFS M:\ -> Fixed drive # 59 Gb (25 Mb free - 42%) [Wojenne] # NTFS N:\ -> Fixed drive # 439 Gb (19 Mb free - 4%) [Sensacja Komedia] # NTFS O:\ -> Fixed drive # 78 Gb (15 Mb free - 20%) [] # NTFS P:\ -> Fixed drive # 59 Gb (47 Mb free - 79%) [Horror] # NTFS Q:\ -> Fixed drive # 59 Gb (12 Mb free - 20%) [Sagi] # NTFS R:\ -> Fixed drive # 59 Gb (58 Mb free - 100%) [] # NTFS S:\ -> Fixed drive # 59 Gb (58 Mb free - 100%) [] # NTFS T:\ -> Fixed drive # 50 Gb (49 Mb free - 100%) [] # NTFS ################## | Active Processes | C:\WINDOWS\System32\smss.exe (464) C:\WINDOWS\system32\winlogon.exe (824) C:\WINDOWS\system32\services.exe (888) C:\WINDOWS\system32\lsass.exe (900) C:\WINDOWS\system32\Ati2evxx.exe (1056) C:\WINDOWS\system32\svchost.exe (1076) C:\WINDOWS\System32\svchost.exe (1172) C:\WINDOWS\system32\Ati2evxx.exe (1260) C:\WINDOWS\system32\spoolsv.exe (1784) C:\WINDOWS\system32\acs.exe (1828) C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe (1992) C:\WINDOWS\system32\svchost.exe (124) C:\Program Files\StartNow Toolbar\ToolbarUpdaterService.exe (180) C:\WINDOWS\system32\wscntfy.exe (672) C:\WINDOWS\Explorer.EXE (1496) C:\Program Files\ATKOSD2\ATKOSD2.exe (2056) C:\Program Files\ATK Hotkey\Hcontrol.exe (2120) C:\WINDOWS\RTHDCPL.EXE (2128) C:\Program Files\ASUS\ATK Media\DMEDIA.EXE (2200) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (2208) C:\Program Files\ASUS\Splendid\ACMON.exe (2224) C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe (2284) C:\WINDOWS\system32\ACEngSvr.exe (2324) C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe (2352) C:\Program Files\P4P\P4P.exe (2440) C:\Program Files\Wireless Console 2\wcourier.exe (2456) C:\WINDOWS\system32\ASUSTPE.exe (2520) C:\WINDOWS\ASScrPro.exe (2576) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe (2584) C:\Program Files\Atheros\ACU.exe (2592) C:\WINDOWS\system32\ctfmon.exe (2612) c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE (2704) C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe (2736) C:\Program Files\ATK Hotkey\ATKOSD.exe (2744) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (2820) C:\Program Files\ATK Hotkey\WDC.exe (3056) c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe (3096) C:\WINDOWS\system32\wuauclt.exe (3516) C:\UsbFix\Go.exe (4068) ################## | Files # Infected Folders | Found ! C:\DOCUME~1\komputer\USTAWI~1\Temp\ose00000.exe Found ! F:\RECYCLER.lnk Found ! F:\System Volume Information.lnk Found ! G:\RECYCLER.lnk Found ! G:\System Volume Information.lnk Found ! H:\RECYCLER.lnk Found ! H:\System Volume Information.lnk Found ! I:\4.Przygodowe fantasty.lnk Found ! I:\System Volume Information.lnk Found ! J:\$RECYCLE.BIN.lnk Found ! J:\Hip HOP.lnk Found ! J:\Muza.lnk Found ! J:\polskie.lnk Found ! J:\System Volume Information.lnk Found ! J:\Zagraniczne.lnk Found ! K:\5.Polskie.lnk Found ! K:\System Volume Information.lnk Found ! L:\1.Bajki.lnk Found ! L:\System Volume Information.lnk Found ! M:\3.Wojenne.lnk Found ! M:\System Volume Information.lnk Found ! N:\$AVG.lnk Found ! N:\2.Komedie.lnk Found ! N:\6.Sensacja , akcja.lnk Found ! N:\Filmy.lnk Found ! N:\Policja Filmy.lnk Found ! N:\pozosałe.lnk Found ! N:\System Volume Information.lnk Found ! O:\$RECYCLE.BIN.lnk Found ! O:\System Volume Information.lnk Found ! P:\$RECYCLE.BIN.lnk Found ! P:\7.Horror.lnk Found ! P:\System Volume Information.lnk Found ! Q:\$RECYCLE.BIN.lnk Found ! Q:\Sagi.lnk Found ! Q:\System Volume Information.lnk Found ! R:\$RECYCLE.BIN.lnk Found ! R:\System Volume Information.lnk Found ! S:\$RECYCLE.BIN.lnk Found ! S:\System Volume Information.lnk Found ! T:\$RECYCLE.BIN.lnk Found ! T:\System Volume Information.lnk Found ! F:\RECYCLER\470a1245.exe Found ! F:\Recycler\desktop.ini Found ! G:\RECYCLER\470a1245.exe Found ! G:\Recycler\desktop.ini Found ! H:\RECYCLER\470a1245.exe Found ! H:\Recycler\desktop.ini Found ! I:\RECYCLER\470a1245.exe Found ! I:\Recycler\desktop.ini Found ! J:\RECYCLER\470a1245.exe Found ! J:\Recycler\desktop.ini Found ! J:\muza Found ! K:\RECYCLER\470a1245.exe Found ! K:\Recycler\desktop.ini Found ! L:\RECYCLER\470a1245.exe Found ! L:\Recycler\desktop.ini Found ! M:\RECYCLER\470a1245.exe Found ! M:\Recycler\desktop.ini Found ! N:\RECYCLER\470a1245.exe Found ! N:\Recycler\desktop.ini Found ! O:\RECYCLER\470a1245.exe Found ! O:\Recycler\desktop.ini Found ! P:\RECYCLER\470a1245.exe Found ! P:\Recycler\desktop.ini Found ! Q:\RECYCLER\470a1245.exe Found ! Q:\Recycler\desktop.ini Found ! R:\RECYCLER\470a1245.exe Found ! R:\Recycler\desktop.ini Found ! S:\RECYCLER\470a1245.exe Found ! S:\Recycler\desktop.ini Found ! T:\RECYCLER\470a1245.exe Found ! T:\Recycler\desktop.ini ################## | Registry | ################## | Mountpoints2 | ################## | Vaccin | (!) This computer is not vaccinated! ################## | E.O.F |