Rooter.exe (v1.0) by Eric_71 ¨ Microsoft Windows XP Professional (5.1.2600) Service Pack 3 32_bits - x86 Family 6 Model 23 Stepping 7, GenuineIntel ¨ C:\ [Fixed-NTFS] .. ( Total:99998 Mo - Free:80524 Mo ) D:\ [CD_Rom] E:\ [Fixed-NTFS] .. ( Total:1330798 Mo - Free:1017813 Mo ) F:\ [Fixed-NTFS] .. ( Total:1430796 Mo - Free:534772 Mo ) ¨ Scan : 23:35.29 Path : C:\Documents and Settings\Hello World\Desktop\Rooter.exe User : Hello World ( Administrator -> YES ) ¨ ----------------------\\ Processes ¨ Locked [System Process] (0) ______ System (4) ______ \SystemRoot\System32\smss.exe (680) ______ \??\C:\WINDOWS\system32\csrss.exe (740) ______ \??\C:\WINDOWS\system32\winlogon.exe (764) ______ C:\WINDOWS\system32\services.exe (812) ______ C:\WINDOWS\system32\lsass.exe (824) ______ C:\WINDOWS\system32\svchost.exe (1004) ______ C:\WINDOWS\system32\svchost.exe (1072) ______ C:\WINDOWS\System32\svchost.exe (1168) ______ C:\WINDOWS\system32\svchost.exe (1296) ______ C:\WINDOWS\system32\svchost.exe (1368) ______ C:\WINDOWS\system32\spoolsv.exe (1540) ______ C:\WINDOWS\system32\svchost.exe (1652) ______ C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (1684) ______ C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe (1760) ______ c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe (1796) ______ c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe (1916) ______ C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe (1940) ______ C:\Program Files\McAfee\MPF\MPFSrv.exe (2012) ______ C:\WINDOWS\system32\nvsvc32.exe (2032) ______ C:\WINDOWS\system32\svchost.exe (384) ______ C:\WINDOWS\System32\alg.exe (2140) ______ C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe (3544) ______ c:\PROGRA~1\mcafee.com\agent\mcagent.exe (3928) ______ C:\Program Files\Google\Update\GoogleUpdate.exe (4084) ______ C:\WINDOWS\Explorer.EXE (240) ______ C:\WINDOWS\RTHDCPL.EXE (2456) ______ C:\Program Files\KMaestro\KMaestro.exe (2528) ______ C:\WINDOWS\system32\RUNDLL32.EXE (2544) ______ C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (2564) ______ C:\WINDOWS\system32\ctfmon.exe (2572) ______ C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe (2088) ______ c:\PROGRA~1\mcafee\msc\mcshell.exe (3848) ______ C:\Program Files\Real Alternative\Media Player Classic\mplayerc.exe (2664) ______ C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe (1380) ______ c:\PROGRA~1\mcafee\VIRUSS~1\mcvsshld.exe (3956) ______ C:\Program Files\Internet Explorer\iexplore.exe (2728) ______ C:\Program Files\Internet Explorer\iexplore.exe (672) ______ C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (3656) ______ C:\Program Files\Internet Explorer\iexplore.exe (2672) ______ c:\PROGRA~1\mcafee.com\agent\mcupdate.exe (2344) ______ C:\Documents and Settings\Hello World\Desktop\Rooter.exe (3036) ¨ ----------------------\\ Device\Harddisk0\ ¨ \Device\Harddisk0 [Sectors : 63 x 512 Bytes] ¨ \Device\Harddisk0\Partition1 --[ MBR ]-- (Start_Offset:32256 | Length:104855837184) \Device\Harddisk0\Partition2 (Start_Offset:104855869440 | Length:1395443427840) ¨ ----------------------\\ Scheduled Tasks ¨ C:\WINDOWS\Tasks\desktop.ini C:\WINDOWS\Tasks\GoogleUpdateTaskMachine.job C:\WINDOWS\Tasks\McDefragTask.job C:\WINDOWS\Tasks\McQcTask.job C:\WINDOWS\Tasks\SA.DAT ¨ ----------------------\\ Registry ¨ ¨ ----------------------\\ Files & Folders ¨ ----------------------\\ Scan completed at 23:35.31 ¨ C:\Rooter$\Rooter_2.txt - (13/06/2009 | 23:35.31)