Rkill 2.4.3 by Lawrence Abrams (Grinler) http://www.bleepingcomputer.com/ Copyright 2008-2012 BleepingComputer.com More Information about Rkill can be found at this link: http://www.bleepingcomputer.com/forums/topic308364.html Program started at: 10/03/2012 07:34:14 AM in x64 mode. Windows Version: Windows 7 Professional Service Pack 1 Checking for Windows services to stop: * No malware services found to stop. Checking for processes to terminate: * C:\Windows\system32\NA_Service.exe (PID: 2236) [WD-HEUR] * C:\Windows\system32\MODBUSDRVSys.exe (PID: 2532) [WD-HEUR] * c:\Windows\SysWOW64\srvany.exe (PID: 3208) [WD-HEUR] * C:\Windows\system32\MODBUSDRV.exe (PID: 3236) [WD-HEUR] 4 proccesses terminated! Checking Registry for malware related settings: * No issues found in the Registry. Resetting .EXE, .COM, & .BAT associations in the Windows Registry. Performing miscellaneous checks: * ALERT: ZEROACCESS rootkit symptoms found! * HKEY_CLASSES_ROOT\CLSID\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InprocServer32 [ZA Reg Hijack] Checking Windows Service Integrity: * Windows Update (wuauserv) is not Running. Startup Type set to: Automatic (Delayed Start) * iphlpsvc [Missing Service] Searching for Missing Digital Signatures: * No issues found. Checking HOSTS File: * HOSTS file entries found: ÿþ1 Program finished at: 10/03/2012 07:34:39 AM Execution time: 0 hours(s), 0 minute(s), and 25 seconds(s)