Microsoft Windows XP Professional (5.1.2600) Service Pack 3 C:\ [Fixed] - NTFS - (Total:95181 Mo/Free:2918 Mo) D:\ [CD-Rom] (Total:0 Mo/Free:0 Mo) E:\ [Removable] (Total:0 Mo/Free:0 Mo) H:\ [Fixed] - NTFS - (Total:152624 Mo/Free:315 Mo) Fri 05/01/2009|12:14 ----------------------\\ Processes.. --Locked-- [System Process] ---------- System ---------- \SystemRoot\System32\smss.exe ---------- \??\C:\WINDOWS\system32\csrss.exe ---------- \??\C:\WINDOWS\system32\winlogon.exe ---------- C:\WINDOWS\system32\services.exe ---------- C:\WINDOWS\system32\lsass.exe ---------- C:\WINDOWS\system32\svchost.exe ---------- C:\WINDOWS\system32\svchost.exe ---------- C:\WINDOWS\System32\svchost.exe ---------- C:\WINDOWS\system32\svchost.exe ---------- C:\WINDOWS\system32\svchost.exe ---------- C:\WINDOWS\system32\svchost.exe ---------- C:\WINDOWS\system32\spoolsv.exe ---------- C:\WINDOWS\system32\svchost.exe ---------- C:\WINDOWS\System32\svchost.exe ---------- C:\Program Files\Java\jre6\bin\jqs.exe ---------- C:\Program Files\McAfee\MBK\MBackMonitor.exe ---------- C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe ---------- c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe ---------- c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe ---------- C:\Program Files\McAfee\VirusScan\McShield.exe ---------- C:\Program Files\McAfee\MPF\MPFSrv.exe ---------- C:\WINDOWS\System32\svchost.exe ---------- C:\WINDOWS\System32\svchost.exe ---------- C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe ---------- C:\WINDOWS\system32\svchost.exe ---------- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe ---------- C:\Program Files\Windows Media Player\WMPNetwk.exe ---------- C:\WINDOWS\System32\alg.exe ---------- c:\PROGRA~1\mcafee.com\agent\mcagent.exe ---------- C:\WINDOWS\Explorer.EXE ---------- C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe ---------- C:\Program Files\Synaptics\SynTP\SynTPLpr.exe ---------- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ---------- C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe ---------- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe ---------- C:\WINDOWS\system32\igfxtray.exe ---------- C:\WINDOWS\system32\hkcmd.exe ---------- C:\WINDOWS\system32\igfxpers.exe ---------- C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe ---------- C:\Program Files\McAfee\MBK\McAfeeDataBackup.exe ---------- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe ---------- C:\Program Files\Java\jre6\bin\jusched.exe ---------- C:\WINDOWS\system32\ctfmon.exe ---------- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe ---------- C:\Program Files\Microsoft ActiveSync\wcescomm.exe ---------- C:\Program Files\MSN Messenger\MsnMsgr.Exe ---------- C:\Program Files\Windows Media Player\WMPNSCFG.exe ---------- C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe ---------- C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe ---------- C:\Program Files\Hewlett-Packard\AiO\hp officejet d series\Bin\hpoojd07.exe ---------- C:\Program Files\Intuit\QuickBooks\Components\QBAgent\QBDAgent.exe ---------- C:\PROGRA~1\MI3AA1~1\rapimgr.exe ---------- C:\WINDOWS\system32\mrtMngr.EXE ---------- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe ---------- C:\PROGRA~1\HEWLET~1\AiO\Shared\Bin\hpoevm07.exe ---------- C:\Program Files\Hewlett-Packard\AiO\Shared\bin\hpOSTS07.exe ---------- C:\Program Files\Hewlett-Packard\AiO\Shared\bin\hpOFXM07.exe ---------- C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe ---------- C:\Program Files\Internet Explorer\iexplore.exe ---------- C:\Program Files\Internet Explorer\iexplore.exe ---------- C:\WINDOWS\system32\taskmgr.exe ---------- C:\Program Files\Internet Explorer\iexplore.exe ---------- C:\WINDOWS\system32\cmd.exe ---------- C:\Rooter$\RK.exe ----------------------\\ Search.. ----------------------\\ ROOTKIT !! 1 - "C:\Rooter$\Rooter_1.txt" - Fri 05/01/2009|12:18 ----------------------\\ Scan completed at 12:18