Microsoft Windows Vista Home Edition (6.0.6001) Service Pack 1 C:\ [Fixed] - NTFS - (Total:293067 Mo/Free:4054 Mo) D:\ [Fixed] - NTFS - (Total:12172 Mo/Free:1691 Mo) E:\ [CD-Rom] (Total:0 Mo/Free:0 Mo) Mon 01/06/2009|19:31 ----------------------\\ Processes.. --Locked-- [System Process] --Locked-- System ---------- \SystemRoot\System32\smss.exe ---------- C:\Windows\system32\csrss.exe ---------- C:\Windows\system32\wininit.exe ---------- C:\Windows\system32\csrss.exe ---------- C:\Windows\system32\services.exe ---------- C:\Windows\system32\lsass.exe ---------- C:\Windows\system32\lsm.exe ---------- C:\Windows\system32\winlogon.exe ---------- C:\Windows\system32\svchost.exe ---------- C:\Windows\system32\nvvsvc.exe ---------- C:\Windows\system32\svchost.exe ---------- C:\Windows\System32\svchost.exe ---------- C:\Windows\System32\svchost.exe ---------- C:\Windows\System32\svchost.exe ---------- C:\Windows\system32\svchost.exe ---------- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_e7ea6efc\STacSV.exe --Locked-- audiodg.exe ---------- C:\Windows\system32\svchost.exe ---------- C:\Windows\system32\SLsvc.exe ---------- C:\Windows\system32\svchost.exe ---------- C:\Windows\system32\Hpservice.exe ---------- C:\Windows\system32\rundll32.exe ---------- C:\Windows\system32\svchost.exe ---------- C:\Program Files\Cisco\Cisco AnyConnect VPN Client\vpnagent.exe ---------- C:\Windows\System32\spoolsv.exe ---------- C:\Windows\system32\svchost.exe ---------- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_e7ea6efc\aestsrv.exe ---------- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe ---------- C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe ---------- C:\Program Files\Bonjour\mDNSResponder.exe ---------- C:\Windows\system32\svchost.exe ---------- C:\Program Files\Common Files\LightScribe\LSSrvc.exe ---------- C:\Program Files\McAfee\Common Framework\FrameworkService.exe ---------- C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe ---------- C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe ---------- C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe ---------- C:\Program Files\McAfee\Common Framework\naPrdMgr.exe ---------- c:\Program Files\Microsoft SQL Server\MSSQL.2\MSSQL\Binn\sqlservr.exe ---------- C:\Windows\system32\PnkBstrA.exe ---------- C:\Windows\system32\svchost.exe ---------- C:\Program Files\SMINST\BLService.exe ---------- C:\Program Files\CyberLink\Shared files\RichVideo.exe ---------- C:\Windows\system32\taskeng.exe ---------- c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe ---------- C:\Windows\system32\Dwm.exe ---------- c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe ---------- C:\Windows\system32\svchost.exe ---------- C:\Windows\Explorer.EXE ---------- C:\Program Files\Hewlett-Packard\Media\TV\Kernel\TV\TVCapSvc.exe ---------- C:\Program Files\Hewlett-Packard\Media\TV\Kernel\TV\TVSched.exe ---------- C:\Program Files\VMware\VMware Server\vmware-authd.exe ---------- C:\Program Files\Common Files\VMware\VMware Virtual Image Editing\vmount2.exe ---------- C:\Windows\system32\vmnat.exe ---------- C:\Windows\System32\svchost.exe ---------- C:\Windows\system32\SearchIndexer.exe ---------- C:\Windows\system32\CCM\CcmExec.exe ---------- C:\Windows\system32\vmnetdhcp.exe ---------- C:\Windows\System32\rundll32.exe ---------- C:\Program Files\Apoint2K\Apoint.exe ---------- C:\Program Files\IDT\WDM\sttray.exe ---------- C:\Program Files\Hewlett-Packard\Media\DVD\DVDAgent.exe ---------- C:\Program Files\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe ---------- C:\Program Files\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe ---------- C:\Program Files\Hewlett-Packard\Media\TV\TVAgent.exe ---------- C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe ---------- C:\Program Files\Windows Defender\MSASCui.exe ---------- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe ---------- C:\Program Files\Java\jre6\bin\jusched.exe ---------- C:\Program Files\HP\HP Software Update\hpwuSchd2.exe ---------- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe ---------- C:\Program Files\McAfee\VirusScan Enterprise\shstat.exe ---------- C:\Program Files\McAfee\Common Framework\UdaterUI.exe ---------- C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe ---------- C:\Program Files\iTunes\iTunesHelper.exe ---------- C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe ---------- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe ---------- C:\Program Files\Launchy\Launchy.exe ---------- C:\Program Files\McAfee\Common Framework\McTray.exe ---------- C:\Program Files\VMware\VMware Server\vmserverdWin32.exe ---------- C:\Windows\system32\wbem\wmiprvse.exe ---------- C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe ---------- C:\Windows\system32\wbem\wmiprvse.exe ---------- C:\Program Files\iPod\bin\iPodService.exe ---------- C:\Windows\system32\wbem\wmiprvse.exe ---------- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe ---------- C:\Program Files\Apoint2K\ApMsgFwd.exe ---------- C:\Program Files\Apoint2K\Apntex.exe ---------- C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe ---------- C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe ---------- c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe ---------- C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe ---------- C:\Program Files\Windows Media Player\wmpnscfg.exe ---------- C:\Program Files\Windows Media Player\wmpnetwk.exe ---------- C:\Windows\system32\wuauclt.exe ---------- C:\Windows\servicing\TrustedInstaller.exe ---------- C:\Program Files\Mozilla Firefox\firefox.exe ---------- C:\Users\Tiong Jia Ming\Desktop\OTListIt2.exe ---------- C:\Windows\system32\SearchProtocolHost.exe ---------- C:\Windows\system32\SearchFilterHost.exe ---------- C:\Windows\system32\DllHost.exe ---------- C:\Windows\system32\DllHost.exe ---------- C:\Windows\system32\cmd.exe ---------- C:\Rooter$\RK.exe ----------------------\\ Search.. C:\ProgramData\anti cdrom inter.n81xa C:\ProgramData\Peak anti anti.j8jig C:\ProgramData\Peak anti anti.wm70oj C:\ProgramData\Peak anti anti.knvxhqh ----------------------\\ ROOTKIT !! 1 - "C:\Rooter$\Rooter_1.txt" - Mon 01/06/2009|19:32