It created two logs; as follows
Rooter.exe (v1.0.2) by Eric_71
.
The token does not have the SeDebugPrivilege privilege ! (error:1300)
Can not acquire SeDebugPrivilege !
Please run the tool as administrator ...
Windows 7 Home Edition (6.1.7600)
[32_bits] - AMD64 Family 16 Model 5 Stepping 3, AuthenticAMD
.
Error OpenService (wscsvc) : 6
Error OpenSCManager : 5
Error OpenService (MpsSvc) : 6
Windows Defender -> Enabled
User Account Control (UAC) -> Enabled
.
Internet Explorer 8.0.7600.16385
.
C:\ [Fixed-NTFS] .. ( Total:244 Go - Free:197 Go )
D:\ [Fixed-NTFS] .. ( Total:352 Go - Free:285 Go )
E:\ [Fixed-NTFS] .. ( Total:63 Go - Free:45 Go )
F:\ [Fixed-NTFS] .. ( Total:12 Go - Free:8 Go )
G:\ [CD_Rom]
H:\ [CD_Rom]
.
Scan : 16:53.50
Path : C:\Users\JIM\Desktop\Rooter.exe
User : JIM ( Administrator -> YES )
.
----------------------\\ Processes
.
Locked [System Process] (0)
Locked System (4)
Locked smss.exe (288)
Locked avgchsva.exe (352)
Locked csrss.exe (580)
Locked wininit.exe (656)
Locked csrss.exe (664)
Locked winlogon.exe (696)
Locked services.exe (752)
Locked lsass.exe (760)
Locked lsm.exe (772)
Locked svchost.exe (892)
Locked svchost.exe (1004)
Locked svchost.exe (512)
Locked svchost.exe (572)
Locked svchost.exe (840)
Locked audiodg.exe (1060)
Locked svchost.exe (1204)
Locked svchost.exe (1308)
Locked AvastSvc.exe (1360)
Locked spoolsv.exe (1592)
Locked svchost.exe (1620)
Locked SASCore64.exe (1716)
Locked avgwdsvc.exe (1736)
Locked svchost.exe (1772)
Locked LSSrvc.exe (1800)
Locked NBService.exe (1924)
Locked SeaPort.exe (2008)
Locked svchost.exe (1152)
Locked WLIDSVC.EXE (1256)
Locked AVGIDSAgent.exe (1872)
Locked WLIDSVCM.EXE (2312)
Locked avgnsa.exe (2432)
Locked avgemca.exe (2472)
Locked conhost.exe (2484)
Locked SearchIndexer.exe (2872)
______ ???c?
?? (3008)
______ ???c?
?? (3024)
______ ???c?
?? (2304)
______ ???c?
?? (3240)
______ C:\Program Files (x86)\Creative\MediaSource5\Go\CTCMSGoU.exe (3248)
______ C:\Program Files (x86)\Creative\MediaSource5\MtdAcqu.exe (3268)
______ C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe (3332)
______ C:\Users\JIM\AppData\Roaming\CBS Interactive\CNET TechTracker\TechTracker.exe (3360)
______ C:\Program Files (x86)\AVG\AVG10\avgtray.exe (3472)
______ C:\Program Files\Alwil Software\Avast5\AvastUI.exe (3596)
______ C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (3484)
______ C:\Program Files (x86)\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe (4064)
______ ???c?
?? (2784)
Locked wmpnetwk.exe (3456)
______ ???c?
?? (520)
Locked avgrsa.exe (2660)
Locked avgcsrva.exe (2404)
Locked svchost.exe (4848)
Locked dllhost.exe (2780)
______ C:\Program Files (x86)\Microsoft Office\Office\WINWORD.EXE (3488)
______ ???c?
?? (4328)
______ C:\Program Files (x86)\Microsoft Office\Office\EXCEL.EXE (5176)
______ C:\Program Files (x86)\Internet Explorer\iexplore.exe (5484)
______ C:\Program Files (x86)\Internet Explorer\iexplore.exe (4396)
______ C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe (5276)
______ C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SCServer\SCServer.exe (3188)
______ C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10l_ActiveX.exe (5092)
Locked SearchFilterHost.exe (5748)
______ C:\Program Files (x86)\Internet Explorer\iexplore.exe (6072)
______ C:\Program Files (x86)\Internet Explorer\iexplore.exe (5544)
Locked SearchProtocolHost.exe (4276)
______ C:\Users\JIM\Desktop\Rooter.exe (3572)
.
----------------------\\ Device\Harddisk0\
.
\Device\Harddisk0 [Sectors : 63 x 512 Bytes]
.
\Device\Harddisk0\Partition1 --[ MBR ]-- (Start_Offset:1048576 | Length:104857600)
\Device\Harddisk0\Partition2 (Start_Offset:105906176 | Length:262039142400)
\Device\Harddisk0\Partition3 (Start_Offset:262145048576 | Length:377987530752)
.
----------------------\\ Scheduled Tasks
.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\SA.DAT
C:\Windows\Tasks\SCHEDLGU.TXT
.
----------------------\\ Registry
.
.
----------------------\\ Files & Folders
.
----------------------\\ Scan completed at 16:53.52
.
C:\Rooter$\Rooter_1.txt - (18/12/2010 | 16:53.52)
------------------------------------------------------------------------------------------------------
Rooter.exe (v1.0.2) by Eric_71
.
The token does not have the SeDebugPrivilege privilege ! (error:1300)
Can not acquire SeDebugPrivilege !
Please run the tool as administrator ...
Windows 7 Home Edition (6.1.7600)
[32_bits] - AMD64 Family 16 Model 5 Stepping 3, AuthenticAMD
.
Error OpenService (wscsvc) : 6
Error OpenSCManager : 5
Error OpenService (MpsSvc) : 6
Windows Defender -> Enabled
User Account Control (UAC) -> Enabled
.
Internet Explorer 8.0.7600.16385
.
C:\ [Fixed-NTFS] .. ( Total:244 Go - Free:197 Go )
D:\ [Fixed-NTFS] .. ( Total:352 Go - Free:285 Go )
E:\ [Fixed-NTFS] .. ( Total:63 Go - Free:45 Go )
F:\ [Fixed-NTFS] .. ( Total:12 Go - Free:8 Go )
G:\ [CD_Rom]
H:\ [CD_Rom]
.
Scan : 16:53.52
Path : C:\Users\JIM\Desktop\Rooter.exe
User : JIM ( Administrator -> YES )
.
----------------------\\ Processes
.
Locked [System Process] (0)
Locked System (4)
Locked smss.exe (288)
Locked avgchsva.exe (352)
Locked csrss.exe (580)
Locked wininit.exe (656)
Locked csrss.exe (664)
Locked winlogon.exe (696)
Locked services.exe (752)
Locked lsass.exe (760)
Locked lsm.exe (772)
Locked svchost.exe (892)
Locked svchost.exe (1004)
Locked svchost.exe (512)
Locked svchost.exe (572)
Locked svchost.exe (840)
Locked audiodg.exe (1060)
Locked svchost.exe (1204)
Locked svchost.exe (1308)
Locked AvastSvc.exe (1360)
Locked spoolsv.exe (1592)
Locked svchost.exe (1620)
Locked SASCore64.exe (1716)
Locked avgwdsvc.exe (1736)
Locked svchost.exe (1772)
Locked LSSrvc.exe (1800)
Locked NBService.exe (1924)
Locked SeaPort.exe (2008)
Locked svchost.exe (1152)
Locked WLIDSVC.EXE (1256)
Locked AVGIDSAgent.exe (1872)
Locked WLIDSVCM.EXE (2312)
Locked avgnsa.exe (2432)
Locked avgemca.exe (2472)
Locked conhost.exe (2484)
Locked SearchIndexer.exe (2872)
______ ???c?
?? (3008)
______ ???c?
?? (3024)
______ ???c?
?? (2304)
______ ???c?
?? (3240)
______ C:\Program Files (x86)\Creative\MediaSource5\Go\CTCMSGoU.exe (3248)
______ C:\Program Files (x86)\Creative\MediaSource5\MtdAcqu.exe (3268)
______ C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe (3332)
______ C:\Users\JIM\AppData\Roaming\CBS Interactive\CNET TechTracker\TechTracker.exe (3360)
______ C:\Program Files (x86)\AVG\AVG10\avgtray.exe (3472)
______ C:\Program Files\Alwil Software\Avast5\AvastUI.exe (3596)
______ C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (3484)
______ C:\Program Files (x86)\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe (4064)
______ ???c?
?? (2784)
Locked wmpnetwk.exe (3456)
______ ???c?
?? (520)
Locked avgrsa.exe (2660)
Locked avgcsrva.exe (2404)
Locked svchost.exe (4848)
Locked dllhost.exe (2780)
______ C:\Program Files (x86)\Microsoft Office\Office\WINWORD.EXE (3488)
______ ???c?
?? (4328)
______ C:\Program Files (x86)\Microsoft Office\Office\EXCEL.EXE (5176)
______ C:\Program Files (x86)\Internet Explorer\iexplore.exe (5484)
______ C:\Program Files (x86)\Internet Explorer\iexplore.exe (4396)
______ C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe (5276)
______ C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SCServer\SCServer.exe (3188)
______ C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10l_ActiveX.exe (5092)
Locked SearchFilterHost.exe (5748)
______ C:\Program Files (x86)\Internet Explorer\iexplore.exe (6072)
______ C:\Program Files (x86)\Internet Explorer\iexplore.exe (5544)
Locked SearchProtocolHost.exe (4276)
______ C:\Users\JIM\Desktop\Rooter.exe (3572)
______ C:\Windows\SysWOW64\NOTEPAD.EXE (5284)
.
----------------------\\ Device\Harddisk0\
.
\Device\Harddisk0 [Sectors : 63 x 512 Bytes]
.
\Device\Harddisk0\Partition1 --[ MBR ]-- (Start_Offset:1048576 | Length:104857600)
\Device\Harddisk0\Partition2 (Start_Offset:105906176 | Length:262039142400)
\Device\Harddisk0\Partition3 (Start_Offset:262145048576 | Length:377987530752)
.
----------------------\\ Scheduled Tasks
.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\SA.DAT
C:\Windows\Tasks\SCHEDLGU.TXT
.
----------------------\\ Registry
.
.
----------------------\\ Files & Folders
.
----------------------\\ Scan completed at 16:53.53
.
C:\Rooter$\Rooter_2.txt - (18/12/2010 | 16:53.53)