[b]############################## | UsbFix V 7.992 | [Research][/b] User: Bartek (Administrator) # BARTEK-KOMPUTER Updated 13/07/2015 by El Desaparecido - SosVirus Started at 14:06:56 | 13/07/2015 Website : [url=http://www.en.usbfix.net/]http://www.en.usbfix.net/[/url] Changelog : [url=http://www.en.usbfix.net/changelog/]http://www.en.usbfix.net/changelog/[/url] Support : [url=http://www.sos-virus.net/]http://www.sos-virus.net/[/url] Live detection : [url=http://how-to-remove.us/]http://how-to-remove.us/[/url] Contact : [url=http://www.en.usbfix.net/contact/]http://www.en.usbfix.net/contact/[/url] [b]################## | System information |[/b] MB: MSI (B75MA-E33 (MS-7808)) CPU: Intel(R) Pentium(R) CPU G860 @ 3.00GHz RAM -> [Total : 3549 Mo | Free : 2626 Mo] Bios: American Megatrends Inc. Boot: Normal boot OS: Microsoft™ Windows 7 Home Premium (6.1.7601 32-Bit) Service Pack 1 WB: Mozilla Firefox : 39.0 [b]################## | Security Information |[/b] AV: ESET NOD32 Antivirus 7.0 [[b](!) Disabled[/b] |[b](!) Outdated[/b]] AS: Windows Defender [Enabled |[b](!) Outdated[/b]] AS: ESET NOD32 Antivirus 7.0 [[b](!) Disabled[/b] |[b](!) Outdated[/b]] FW: Windows Firewall [Enabled] SC: Security Center [Enabled] WU: Windows Update [Enabled] [b]################## | Disk Information |[/b] C:\ (%SystemDrive%) -> Fixed disk # 181 Gb (130 Gb free - 71%) [] # NTFS D:\ -> Fixed disk # 250 Gb (122 Gb free - 49%) [Muzyka i filmy] # NTFS E:\ -> Fixed disk # 250 Gb (210 Gb free - 84%) [] # NTFS F:\ -> Fixed disk # 250 Gb (168 Gb free - 67%) [] # NTFS H:\ -> Removable disk # 15 Gb (15 Gb free - 100%) [] # FAT32 [b]################## | Startup |[/b] F2 - HKLM\..\Winlogon : [Shell] explorer.exe F2 - HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe, F3 - HKCU\..\Windows : [Load] C:\ProgramData\mscrzoj.exe 04 - HKCU\..\Run : [Steam] "D:\Steam\steam.exe" -silent 04 - HKLM\..\Run : [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice 04 - HKLM\..\Run : [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun 04 - HKLM\..\Run : [lxdemon.exe] "C:\Program Files\Lexmark 4800 Series\lxdemon.exe" 04 - HKLM\..\Run : [lxdeamon] "C:\Program Files\Lexmark 4800 Series\lxdeamon.exe" 04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun 04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun 04 - HKU\S-1-5-21-3193886611-3762004184-2434545920-1000\..\Run : [Steam] "D:\Steam\steam.exe" -silent 04 - HKU\S-1-5-19\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe 04 - HKU\S-1-5-20\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe [b]################## | Generic Research |[/b] Found! H:\Removable Drive (16GB).lnk Found! H:\ \klin1y7g.durxab.fgy.zfxe.t38pzcp3.vcp2.uctz.4lai Found! C:\ProgramData\mscrzoj.exe Found! C:\Users\Bartek\AppData\Roaming\dll-files.com Found! C:\Users\All Users\mscrzoj.exe Found! HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows|load (C:\ProgramData\mscrzoj.exe) [b]################## | UsbFix - Information |[/b] Info : [url=https://www.youtube.com/watch?v=vUZYYASd7FE]How to remove shortcut virus on flash disk (Video)[/url] Info : [url=http://www.en.usbfix.net/2014/03/remove-shortcut-virus-usb/]Shortcut virus on flash disk, What is it ?[/url] Live detection : [url=http://how-to-remove.us/]http://how-to-remove.us/[/url] [b]################## | E.O.F | [url=http://www.sosvirus.net/]http://www.sosvirus.net/[/url] | [url=http://www.en.usbfix.net/]http://www.en.usbfix.net/[/url] |[/b]