- Eventually, a Notepad file containing the report will open, also found at C:\Rooter.txt. Post that log in your next reply.
Rooter.exe (v1.0.2) by Eric_71
.
SeDebugPrivilege granted successfully ...
.
Windows 7 Home Edition (6.1.7600)
[32_bits] - Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
.
[wscsvc] (Security Center) RUNNING (state:4)
[MpsSvc] RUNNING (state:4)
Windows Firewall -> Enabled
Windows Defender -> Enabled
User Account Control (UAC) -> Enabled
.
Internet Explorer 8.0.7600.16385
.
C:\ [Fixed-NTFS] .. ( Total:451 Go - Free:403 Go )
D:\ [CD_Rom]
.
Scan : 15:52.48
Path : C:\Users\Gerrit deBorst\Desktop\Rooter.exe
User : Gerrit deBorst ( Administrator -> YES )
.
----------------------\\ Processes
.
Locked [System Process] (0)
Locked System (4)
______ ???z?
?? (264)
______ ???z?
?? (400)
______ ???z?
?? (464)
______ ???z?
?? (480)
______ ???z?
?? (512)
______ ???z?
?? (536)
______ ???z?
?? (544)
______ ???z?
?? (628)
______ ???z?
?? (700)
______ ???z?
?? (788)
______ ???z?
?? (852)
______ ???z?
?? (916)
______ ???z?
?? (964)
______ ???z?
?? (1000)
______ ???z?
?? (312)
______ C:\Program Files\Dell\DellDock\DockLogin.exe (1052)
______ ???z?
?? (1128)
______ C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (1212)
______ ???z?
?? (1312)
______ ???z?
?? (1336)
______ ???z?
?? (1588)
______ ???z?
?? (1620)
______ ???z?
?? (1632)
______ C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (1764)
______ ???z?
?? (1864)
______ C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (1908)
______ C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE (1964)
______ ???z?
?? (2000)
______ C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe (2032)
______ ???z?
?? (2852)
______ ???z?
?? (2652)
______ C:\Program Files (x86)\Dell DataSafe Local Backup\Toaster.exe (2904)
______ ???z?
?? (3044)
______ C:\ProgramData\Macrovision\FLEXnet Connect\11\ISUSPM.exe (2960)
______ C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (2676)
______ C:\Program Files\Alwil Software\Avast5\AvastUI.exe (2604)
______ ???z?
?? (2252)
______ ???z?
?? (1300)
______ C:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exe (3560)
______ ???z?
?? (3732)
______ C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10l_ActiveX.exe (3764)
Locked audiodg.exe (3840)
______ ???z?
?? (4080)
______ ???z?
?? (1652)
______ ???z?
?? (3196)
______ C:\Users\Gerrit deBorst\Desktop\Rooter.exe (2320)
.
----------------------\\ Device\Harddisk0\
.
\Device\Harddisk0 [Sectors : 63 x 512 Bytes]
.
\Device\Harddisk0\Partition1 (Start_Offset:32256 | Length:41094144)
\Device\Harddisk0\Partition2 --[ MBR ]-- (Start_Offset:41126400 | Length:15728640000)
\Device\Harddisk0\Partition3 (Start_Offset:15769766400 | Length:484337047040)
.
----------------------\\ Scheduled Tasks
.
C:\Windows\Tasks\SA.DAT
C:\Windows\Tasks\SCHEDLGU.TXT
.
----------------------\\ Registry
.
.
----------------------\\ Files & Folders
.
----------------------\\ Scan completed at 15:52.55
.
C:\Rooter$\Rooter_1.txt - (28/12/2010 | 15:52.55)