############################## | UsbFix 7.035 | [Deletion] User: user (Administrator) # USER-C76F198357 [ ] Updated 11/11/10 by El Desaparecido / C_XX Started at 18:56:06 | 18/01/2013 Website: http://www.teamxscript.org Contact: eldesaparecido@teamxscript.org CPU: AMD Athlon(tm) 64 X2 Dual Core Processor 4200+ CPU 2: AMD Athlon(tm) 64 X2 Dual Core Processor 4200+ Microsoft Windows XP Professional (5.1.2600 32-Bit) # Dodatek Service Pack 3 Internet Explorer 7.0.5730.13 Windows Firewall: Enabled Antivirus: ArcaVir [Enabled | (!) Outdated] Firewall: ArcaVir Firewall [Enabled] RAM -> 2046 Mb C:\ (%systemdrive%) -> Fixed drive # 36 Gb (5 Mb free - 13%) [] # NTFS D:\ -> Fixed drive # 98 Gb (95 Mb free - 97%) [] # NTFS E:\ -> Fixed drive # 99 Gb (99 Mb free - 100%) [] # NTFS F:\ -> CD-ROM ################## | Files # Infected Folders | Deleted ! C:\WINDOWS\system32\EXPLORER.EXE.vir Deleted ! C:\Recycler\S-1-5-21-1993962763-1770027372-1801674531-1003 Deleted ! C:\Recycler\S-1-5-21-1993962763-1770027372-1801674531-1005 Deleted ! D:\Recycler\S-1-5-21-1993962763-1770027372-1801674531-1003 Deleted ! D:\Recycler\S-1-5-21-1993962763-1770027372-1801674531-1005 Deleted ! D:\Recycler\S-1-5-21-343818398-73586283-839522115-1003 Deleted ! D:\Recycler\S-1-5-21-343818398-73586283-839522115-1004 Deleted ! E:\Recycler\S-1-5-21-1993962763-1770027372-1801674531-1003 Deleted ! E:\Recycler\S-1-5-21-1993962763-1770027372-1801674531-1005 Deleted ! E:\Recycler\S-1-5-21-343818398-73586283-839522115-1003 Deleted ! E:\Recycler\S-1-5-21-343818398-73586283-839522115-1004 ################## | Registry | Deleted ! HKLM\software\microsoft\shared tools\msconfig\startupreg\EXPLORER.EXE Deleted ! HKLM\software\microsoft\shared tools\msconfig\startupreg\wsctf.exe ################## | Mountpoints2 | Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{e01950b6-07f1-11e1-a7cd-002719bc47f9} ################## | Listing | [30/06/2011 - 07:43:31 | N | 0] C:\AUTOEXEC.BAT [05/06/2012 - 15:32:35 | N | 211] C:\boot.ini [21/07/2001 - 23:13:54 | N | 4952] C:\Bootfont.bin [30/04/2012 - 15:02:08 | D ] C:\Click! [30/06/2011 - 07:43:31 | N | 0] C:\CONFIG.SYS [30/05/2012 - 12:59:35 | D ] C:\Documents and Settings [14/01/2013 - 17:44:52 | N | 62] C:\error.txt [31/12/2012 - 15:26:12 | D ] C:\Hexe Huckla Data [30/06/2011 - 07:43:31 | N | 0] C:\IO.SYS [24/09/2012 - 13:32:49 | D ] C:\Lexmark [29/05/2012 - 16:39:36 | D ] C:\logs [30/06/2011 - 07:43:31 | N | 0] C:\MSDOS.SYS [30/06/2011 - 08:12:27 | RHD ] C:\MSOCache [13/04/2008 - 22:13:04 | N | 47564] C:\NTDETECT.COM [14/04/2008 - 00:02:00 | N | 251152] C:\ntldr [30/06/2011 - 08:05:14 | D ] C:\NVIDIA [18/01/2013 - 18:50:42 | ASH | 2145386496] C:\pagefile.sys [07/01/2013 - 20:52:02 | D ] C:\Program Files [14/01/2013 - 19:06:48 | D ] C:\rc [18/01/2013 - 18:58:42 | SHD ] C:\RECYCLER [07/06/2012 - 20:12:38 | SHD ] C:\System Volume Information [07/10/2012 - 17:37:06 | D ] C:\Szkola_podstawowa_klasa_5_-_Tajemnice_przyrody [18/01/2013 - 18:58:42 | D ] C:\UsbFix [18/01/2013 - 18:58:46 | A | 1803] C:\UsbFix.txt [15/12/2012 - 17:06:29 | D ] C:\WESTWOOD [08/01/2013 - 09:00:40 | D ] C:\WINDOWS [12/11/2011 - 23:43:54 | N | 22] C:\zzz.txt [16/08/2011 - 20:54:00 | N | 12589] D:\Pozew o separację.docx [29/04/2012 - 14:13:47 | D ] D:\pulpit c [18/01/2013 - 18:58:42 | SHD ] D:\RECYCLER [18/01/2010 - 14:42:50 | SHD ] D:\System Volume Information [16/08/2011 - 10:07:56 | N | 37376] D:\wz_separacja.doc [16/06/2011 - 14:46:04 | D ] D:\_628828_ [16/06/2011 - 14:50:43 | D ] E:\a1a23b523df61e989f96 [18/01/2013 - 18:58:42 | SHD ] E:\RECYCLER [06/04/2010 - 13:03:08 | N | 275] E:\Skrót do Dysk lokalny (D).lnk [18/01/2010 - 14:43:04 | SHD ] E:\System Volume Information [16/06/2011 - 14:49:12 | D ] E:\_628859_ ################## | Vaccin | C:\Autorun.inf -> Folder created by UsbFix (El Desaparecido & C_XX) D:\Autorun.inf -> Folder created by UsbFix (El Desaparecido & C_XX) E:\Autorun.inf -> Folder created by UsbFix (El Desaparecido & C_XX) ################## | Upload | Please send the file: C:\UsbFix_Upload_Me_USER-C76F198357.zip http://www.teamxscript.org/Sample/Upload.php Thank you for your contribution. ################## | E.O.F |