Sei sulla pagina 1di 4

[b]############################## | UsbFix Premium V 10.

018 | [Full scan][/b]

Usuario: FABIANCANDELA (Administrador) # ONIX


Actualizado el 13/03/2018 por SOSVirus
Comenzó a 16:49:11 | 19/03/2018

Sitio web : [url=https://www.usb-antivirus.com/es/]https://www.usb-


antivirus.com/es/[/url]
Contacto : [url=https://www.usb-antivirus.com/es/contacto/]https://www.usb-
antivirus.com/es/contacto/[/url]

[b]################## | System information |[/b]

MB: Dell Inc. (0NJT03)


CPU: Intel(R) Core(TM) i7-2630QM CPU @ 2.00GHz
GC: Intel(R) HD Graphics 3000
GC: NVIDIA GeForce GT 540M
RAM -> [Total : 6038 Mo | Free : 1993 Mo]
Bios: Dell Inc.
Boot: Normal boot

OS: Microsoft™ Windows 8 (6.2.9200 64-Bit)


WB: Internet Explorer : 10.00.9200.16384
WB: Google Chrome : 64.0.3282.186

[b]################## | Security Information |[/b]

FW: Windows Firewall [[b](!) Desactivado[/b]]


SC: Security Center [Activado]
WU: Windows Update [Activado]

[b]################## | Disk Information |[/b]

C:\ (%SystemDrive%) -> Disco fijo # 146 Gb (83 Gb libre(s) - 57%) [] # NTFS
D:\ -> Disco fijo # 319 Gb (24 Gb libre(s) - 7%) [] # NTFS

[b]################## | Autorun |[/b]

[b]################## | Búsqueda genérica | Full scan |[/b]

[b]################## | Regedit Run |[/b]

F2 - HKLM\..\Winlogon : [Shell] explorer.exe


F2 - [x64] HKLM\..\Winlogon : [Shell] explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] userinit.exe
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKCU\..\Run : [muigie] C:\Users\FABIANCANDELA\eigium\muigie.exe /s
04 - HKCU\..\Run : [Sony PC Companion] "C:\Program Files (x86)\Sony\Sony PC
Companion\PCCompanion.exe" /Background
04 - HKCU\..\Run : [Speech Recognition] "C:\Windows\Speech\Common\sapisvr.exe"
-SpeechUX -Startup
04 - HKCU\..\Run : [HW_OPENEYE_OUC_Mobile Partner] "C:\Program Files (x86)\Mobile
Partner\UpdateDog\ouc.exe"
04 - HKCU\..\Run : [Adobe Acrobat Synchronizer] "C:\Program Files
(x86)\Adobe\Acrobat 11.0\Acrobat\AdobeCollabSync.exe"
04 - HKCU\..\Run : [EPLTarget\P0000000000000001]
C:\Windows\system32\spool\DRIVERS\x64\3\E_YATII2E.EXE /EPT
"EPLTarget\P0000000000000001" /M "L210 Series"
04 - HKCU\..\Run : [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe"
/minimized /regrun
04 - HKCU\..\Run : [Ln4iNx9Ji7.exe] C:\Program Files\Process Gear Man MP3 Pizs
Mod\H9AI8ZHXHJXTFJ8076T\Ln4iNx9Ji7.exe
04 - HKCU\..\Run : [bzSysJQ6CM92dU.exe]
C:\Users\FABIANCANDELA\AppData\Roaming\77c7f86375d34b35a6d4a3656ad8b674\bzSysJQ6CM9
2dU.exe
04 - HKCU\..\Run : [SpringSilence] "C:\Windows\rss\csrss.exe"
04 - HKCU\..\Run : [CloudNet] "C:\Users\FABIANCANDELA\AppData\Roaming\EpicNet
Inc\CloudNet\cloudnet.exe" 31337
04 - HKCU\..\Run : [kMsQ8ynAYijI.exe]
C:\Users\FABIANCANDELA\AppData\Local\1db817d443c34702ab88ccdd4ded242b\kMsQ8ynAYijI.
exe
04 - HKCU\..\Run : [v7CTxVDD.exe]
C:\Users\FABIANCANDELA\AppData\Roaming\408bd144ae094c3eb8da601f33c855b3\v7CTxVDD.ex
e
04 - HKCU\..\Run : [qh6iictR8KVg6.exe]
C:\Users\FABIANCANDELA\AppData\Local\Temp\08a5e496d47f42a7994ce0161c86bea0\qh6iictR
8KVg6.exe
04 - HKCU\..\Run : [GHyzaBLK3vh.exe]
C:\Users\FABIANCANDELA\AppData\Local\Temp\cb4039c00bfe4161b90377b653259c0d\GHyzaBLK
3vh.exe
04 - HKLM\..\Run : [Adobe Reader Speed Launcher] "C:\Program Files
(x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
04 - HKLM\..\Run : [Adobe ARM] "C:\Program Files (x86)\Common
Files\Adobe\ARM\1.0\AdobeARM.exe"
04 - HKLM\..\Run : [RIMBBLaunchAgent.exe] C:\Program Files (x86)\Common
Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
04 - HKLM\..\Run : [SaveFlash] C:\Program Files (x86)\Save Flash\SaveFlash.exe
04 - HKLM\..\Run : [tvncontrol] "C:\Program Files (x86)\Common
Files\COMODO\GeekBuddyRSP.exe" -controlservice -slave
04 - [x64] HKLM\..\Run : [IgfxTray] "C:\Windows\system32\igfxtray.exe"
04 - [x64] HKLM\..\Run : [HotKeysCmds] "C:\Windows\system32\hkcmd.exe"
04 - [x64] HKLM\..\Run : [Persistence] "C:\Windows\system32\igfxpers.exe"
04 - HKU\S-1-5-21-3621456956-987050679-2648411773-1001\..\Run : [muigie]
C:\Users\FABIANCANDELA\eigium\muigie.exe /s
04 - HKU\S-1-5-21-3621456956-987050679-2648411773-1001\..\Run : [Sony PC Companion]
"C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background
04 - HKU\S-1-5-21-3621456956-987050679-2648411773-1001\..\Run : [Speech
Recognition] "C:\Windows\Speech\Common\sapisvr.exe" -SpeechUX -Startup
04 - HKU\S-1-5-21-3621456956-987050679-2648411773-1001\..\Run :
[HW_OPENEYE_OUC_Mobile Partner] "C:\Program Files (x86)\Mobile
Partner\UpdateDog\ouc.exe"
04 - HKU\S-1-5-21-3621456956-987050679-2648411773-1001\..\Run : [Adobe Acrobat
Synchronizer] "C:\Program Files (x86)\Adobe\Acrobat
11.0\Acrobat\AdobeCollabSync.exe"
04 - HKU\S-1-5-21-3621456956-987050679-2648411773-1001\..\Run :
[EPLTarget\P0000000000000001] C:\Windows\system32\spool\DRIVERS\x64\3\E_YATII2E.EXE
/EPT "EPLTarget\P0000000000000001" /M "L210 Series"
04 - HKU\S-1-5-21-3621456956-987050679-2648411773-1001\..\Run : [Skype] "C:\Program
Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
04 - HKU\S-1-5-21-3621456956-987050679-2648411773-1001\..\Run : [Ln4iNx9Ji7.exe]
C:\Program Files\Process Gear Man MP3 Pizs Mod\H9AI8ZHXHJXTFJ8076T\Ln4iNx9Ji7.exe
04 - HKU\S-1-5-21-3621456956-987050679-2648411773-1001\..\Run :
[bzSysJQ6CM92dU.exe]
C:\Users\FABIANCANDELA\AppData\Roaming\77c7f86375d34b35a6d4a3656ad8b674\bzSysJQ6CM9
2dU.exe
04 - HKU\S-1-5-21-3621456956-987050679-2648411773-1001\..\Run : [SpringSilence]
"C:\Windows\rss\csrss.exe"
04 - HKU\S-1-5-21-3621456956-987050679-2648411773-1001\..\Run : [CloudNet]
"C:\Users\FABIANCANDELA\AppData\Roaming\EpicNet Inc\CloudNet\cloudnet.exe" 31337
04 - HKU\S-1-5-21-3621456956-987050679-2648411773-1001\..\Run : [kMsQ8ynAYijI.exe]
C:\Users\FABIANCANDELA\AppData\Local\1db817d443c34702ab88ccdd4ded242b\kMsQ8ynAYijI.
exe
04 - HKU\S-1-5-21-3621456956-987050679-2648411773-1001\..\Run : [v7CTxVDD.exe]
C:\Users\FABIANCANDELA\AppData\Roaming\408bd144ae094c3eb8da601f33c855b3\v7CTxVDD.ex
e
04 - HKU\S-1-5-21-3621456956-987050679-2648411773-1001\..\Run : [qh6iictR8KVg6.exe]
C:\Users\FABIANCANDELA\AppData\Local\Temp\08a5e496d47f42a7994ce0161c86bea0\qh6iictR
8KVg6.exe
04 - HKU\S-1-5-21-3621456956-987050679-2648411773-1001\..\Run : [GHyzaBLK3vh.exe]
C:\Users\FABIANCANDELA\AppData\Local\Temp\cb4039c00bfe4161b90377b653259c0d\GHyzaBLK
3vh.exe
04GS - muigie.lnk : C:\Users\FABIANCANDELA\eigium\muigie.exe
04GS - OpenOffice.org 3.1.lnk : C:\Program Files (x86)\OpenOffice.org
3\program\quickstart.exe
04GSA - rvlkl.lnk : C:\ProgramData\rvlkl\rvlkl.exe

[b]################## | C:\ %SystemDrive% - Disco fijo (NTFS) |[/b]

[20/04/2016 - 07:46:04 | A | 5 Ko] - C:\debug1214.txt


[19/03/2018 - 14:54:04 | ASH | 4946464 Ko] - C:\hiberfil.sys
[19/03/2018 - 14:54:06 | ASH | 6291456 Ko] - C:\pagefile.sys
[19/03/2018 - 14:54:07 | ASH | 262144 Ko] - C:\swapfile.sys
[19/03/2018 - 15:35:59 | SHD] - C:\Config.Msi
[27/11/2014 - 18:56:57 | SHD] - C:\$RECYCLE.BIN
[04/10/2011 - 00:18:38 | A | 1 Ko] - C:\Antivirus.BAT
[13/03/2018 - 22:09:18 | A | 0 Ko] - C:\autoexec.bat
[02/06/2012 - 09:30:55 | ASH | 0 Ko] - C:\BOOTNXT
[25/07/2012 - 22:44:30 | RASH | 389 Ko] - C:\bootmgr
[26/07/2012 - 02:22:08 | SHD] - C:\Documents and Settings
[26/07/2012 - 02:33:46 | D] - C:\PerfLogs
[18/07/2014 - 17:40:27 | SHD] - C:\Archivos de programa
[18/07/2014 - 18:18:33 | RHD] - C:\MSOCache
[22/07/2014 - 01:45:27 | RD] - C:\Users
[15/07/2015 - 14:16:38 | AH | 0 Ko] - C:\C3EDF1C2A645
[08/08/2016 - 16:30:01 | AH | 0 Ko] - C:\82674FEA0DBA
[08/08/2016 - 16:30:01 | AH | 0 Ko] - C:\C1FAF7C2A74B
[08/08/2016 - 16:30:01 | AH | 0 Ko] - C:\C1AB2F68B071
[08/08/2016 - 16:30:01 | AH | 0 Ko] - C:\BFC2E58518D5
[08/11/2016 - 21:45:03 | D] - C:\Intel
[08/11/2016 - 21:45:03 | D] - C:\Windows Activation Technologies
[18/11/2016 - 06:43:39 | SHD] - C:\Recovery
[24/07/2017 - 07:42:12 | D] - C:\Kimera
[16/03/2018 - 16:03:07 | RD] - C:\Program Files
[16/03/2018 - 16:23:05 | D] - C:\ProgramData
[19/03/2018 - 14:54:06 | D] - C:\Windows
[19/03/2018 - 16:19:37 | RD] - C:\Program Files (x86)

[b]################## | D:\ - Disco fijo (NTFS) |[/b]

[14/08/2015 - 15:41:07 | A | 0 Ko] - D:\CLAVE MOVISTAR.txt


[29/01/2014 - 16:08:14 | HD] - D:\msdownld.tmp
[22/04/2016 - 21:01:58 | A | 857 Ko] - D:\prueba.pdf
[18/07/2014 - 17:45:28 | SHD] - D:\$RECYCLE.BIN
[02/10/2013 - 18:57:26 | HD] - D:\3bb51105934ca769035fecc6
[22/07/2014 - 15:42:40 | D] - D:\DATOS
[24/02/2015 - 21:55:15 | D] - D:\HIDDEN BOOTS
[15/07/2015 - 15:15:34 | AH | 0 Ko] - D:\C3EDF1C2A645
[26/07/2015 - 20:59:57 | D] - D:\MEDIA MOTOROLA
[09/11/2015 - 12:32:50 | D] - D:\memoria roja
[10/11/2015 - 10:36:22 | D] - D:\ESCRITORIO 2014
[08/08/2016 - 17:30:14 | AH | 0 Ko] - D:\BFC2E58518D5
[08/08/2016 - 17:30:14 | AH | 0 Ko] - D:\C1FAF7C2A74B
[08/08/2016 - 17:30:14 | AH | 0 Ko] - D:\82674FEA0DBA
[08/08/2016 - 17:30:14 | AH | 0 Ko] - D:\C1AB2F68B071
[09/11/2016 - 00:12:09 | D] - D:\FABIANCANDELA
[28/02/2018 - 20:09:36 | D] - D:\ESCRIT

[b]################## | E.O.F | [/b]

Potrebbero piacerti anche