Wirus USB, skrót podczas podłączania

0

Witam, podczas podłączania urządzeń zewnętrznych pojawia się zamiast danych skrót, zainfekowany jest moj komputer bo po kazdorazowym formacie pendrive problem wraca

PONIŻEJ LOG z USBFix

 [b]############################## | UsbFix V 8.248 | [Research][/b]

User: Dell Inspiron 17R (Administrator) # ERYK
Updated 27/05/2016 by SOSVirus
Started at 21:01:40 | 03/08/2016

Website : [url=https://www.usb-antivirus.com/]https://www.usb-antivirus.com/[/url]
Tutorial : [url=https://www.usb-antivirus.com/tutorial/]https://www.usb-antivirus.com/tutorial/[/url]
Support : [url=http://www.sosvirus.org/]http://www.sosvirus.org/[/url]
Live detection : [url=http://www.sosmalware.com/usbfix/]http://www.sosmalware.com/usbfix/[/url]
Contact : [url=https://www.usb-antivirus.com/contact/]https://www.usb-antivirus.com/contact/[/url]

[b]################## | System information |[/b]

MB: Dell Inc. (04M3YM) 
CPU: Intel(R) Core(TM) i7-3630QM CPU @ 2.40GHz
GC: NVIDIA GeForce GT 650M  
RAM -> [Total : 8049 Mo | Free : 5312 Mo]
Bios: Dell Inc.
Boot: Normal boot

OS: Microsoft™ Windows 8.1 (6.3.9600 64-Bit) 
WB: Internet Explorer : 11.00.9600.16384
WB: Google Chrome : 51.0.2704.103

[b]################## | Security Information |[/b]

AV: Windows Defender [Enabled |Updated]
AS: Windows Defender [Enabled |Updated]
FW: Windows Firewall [Enabled]
SC: Security Center [Enabled]
WU: Windows Update [Enabled]

[b]################## | Disk Information |[/b]

C:\ (%SystemDrive%) -> Fixed disk # 223 Gb (42 Gb free - 19%) [OS] # NTFS
D:\ -> Fixed disk # 407 Gb (25 Gb free - 6%) [ERYK] # NTFS
E:\ -> Fixed disk # 466 Gb (58 Gb free - 12%) [ERYK] # NTFS
F:\ -> CD-ROM # 137 Mb (0 Mb free - 0%) [CDROM] # CDFS
J:\ -> Removable disk # 14 Gb (14 Gb free - 100%) [16gb] # NTFS

[b]################## | Startup |[/b]

F2 - HKLM\..\Winlogon : [Shell] explorer.exe
F2 - [x64] HKLM\..\Winlogon : [Shell] explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] userinit.exe
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKCU\..\Run : [Autodesk Sync] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe
04 - HKCU\..\Run : [Facebook Update] "C:\Users\Dell Inspiron 17R\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
04 - HKCU\..\Run : [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
04 - HKCU\..\Run : [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
04 - HKLM\..\Run : [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
04 - HKLM\..\Run : [BDRegion] C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
04 - HKLM\..\Run : [ADSK DLMSession] C:\Program Files (x86)\Common Files\Autodesk Shared\Autodesk Download Manager\DLMSession.exe
04 - HKLM\..\Run : [Panasonic Device Manager for Multi-Function Station software] C:\Program Files (x86)\Panasonic\MFStation\PCCMFSDM.exe
04 - HKLM\..\Run : [Panasonic PCFAX for Multi-Function Station software] C:\Program Files (x86)\Panasonic\MFStation\KmPcFax.exe -1
04 - HKLM\..\Run : [Panasonic IP Address Checker for Multi-Function Station software] C:\Program Files (x86)\Panasonic\MFStation\PccChgIP.exe -s10
04 - HKLM\..\Run : [Panasonic LPD Manager] C:\Program Files (x86)\Panasonic\MFStation\PCMFSMLM.exe
04 - HKLM\..\Run : [Bonus.SSR.FR12] "C:\Program Files (x86)\ABBYY FineReader 12\Bonus.ScreenshotReader.exe" /autorun
04 - HKLM\..\Run : [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
04 - [x64] HKLM\..\Run : [IgfxTray] "C:\WINDOWS\system32\igfxtray.exe"
04 - [x64] HKLM\..\Run : [HotKeysCmds] "C:\WINDOWS\system32\hkcmd.exe"
04 - [x64] HKLM\..\Run : [Persistence] "C:\WINDOWS\system32\igfxpers.exe"
04 - [x64] HKLM\..\Run : [Apoint] C:\Program Files\DellTPad\Apoint.exe
04 - [x64] HKLM\..\Run : [QuickSet] c:\Program Files\Dell\QuickSet\QuickSet.exe
04 - [x64] HKLM\..\Run : [IntelTBRunOnce] wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
04 - [x64] HKLM\..\Run : [BTMTrayAgent] rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
04 - [x64] HKLM\..\Run : [ShadowPlay] C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
04 - [x64] HKLM\..\Run : [NvBackend] "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
04 - [x64] HKLM\..\Run : [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe
04 - [x64] HKLM\..\Run : [Launch LCore] C:\Program Files\Logitech Gaming Software\LCore.exe /minimized
04 - HKU\S-1-5-21-2234618050-2411359263-2925702725-1002\..\Run : [Autodesk Sync] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe
04 - HKU\S-1-5-21-2234618050-2411359263-2925702725-1002\..\Run : [Facebook Update] "C:\Users\Dell Inspiron 17R\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
04 - HKU\S-1-5-21-2234618050-2411359263-2925702725-1002\..\Run : [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
04 - HKU\S-1-5-21-2234618050-2411359263-2925702725-1002\..\Run : [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
04GS - GigaTribe.lnk : C:\Program Files (x86)\GigaTribe\gigatribe.exe
04GS - helper.lnk : C:\Users\Dell Inspiron 17R\AppData\Roaming\WindowsServices\helper.vbs
04GS - Kolo - wyklad.zip.lnk : C:\ProgramData\{1dc7dc70-91cb-61ed-1dc7-7dc7091c71c2}\Kolo - wyklad.zip.exe
04GS - MEGAsync.lnk : C:\Users\Dell Inspiron 17R\AppData\Local\MEGAsync\MEGAsync.exe
04GS - Wysyłanie do programu OneNote.lnk : C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE

[b]################## | Generic Research |[/b]

Found! D:\Downloads.lnk
Found! [x64] HKLM\Software\Microsoft\Windows\CurrentVersion\Run|IntelTBRunOnce

[b]Analysed in 15.61 seconds[/b]

[b]################## | E.O.F | [url=http://www.sosvirus.net/]http://www.sosvirus.net/[/url] | [url=https://www.usb-antivirus.com/]https://www.usb-antivirus.com/[/url] |[/b]
0

No i? Tak to jest jak się nie używa porządnych zabezpieczeń oraz grzebie nie tam gdzie się ma grzebać :) Polecam format całego kompa

1 użytkowników online, w tym zalogowanych: 0, gości: 1