PDA

View Full Version : RootAnalyzer Scan -- do I have problems?



rmbelson
2014-11-20, 17:19
Hi -- thanks for helping out. Here's my log. Anything I should take action on? Thanks, rmb

// info: Rootkit removal help file
// copyright: (c) 2008-2014 Safer-Networking Ltd. All rights reserved.

:: RootAlyzer Results
File:"Unknown ADS","C:\Windows:nlsPreferences:$DATA"
File:"Unknown ADS","C:\Users\Owner\Cookies:dg2I7ml5tdZLtwspU1XT4UF2owYj:$DATA"
File:"Unknown ADS","C:\Users\Owner\Cookies:itJBKk31nOKShsXiFZ3cqqXZSA:$DATA"
File:"Unknown ADS","C:\Users\Owner\Local Settings:EvargcNJ4sXwVN4Wwc8CILe:$DATA"
File:"Unknown ADS","C:\Users\Owner\Documents\Scanned Documents\Welcome Scan.jpg:3or4kl4x13tuuug3Byamue2s4b:$DATA"
File:"Unknown ADS","C:\Users\Owner\Documents\My Kindle Content\Amitav Ghosh - Sea of Poppies (prc).prc:uidStream:$DATA"
File:"Unknown ADS","C:\Users\Owner\AppData\Local:EvargcNJ4sXwVN4Wwc8CILe:$DATA"
File:"Unknown ADS","C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies:dg2I7ml5tdZLtwspU1XT4UF2owYj:$DATA"
File:"Unknown ADS","C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies:itJBKk31nOKShsXiFZ3cqqXZSA:$DATA"
File:"Unknown ADS","C:\Users\Owner\AppData\Local\Application Data:EvargcNJ4sXwVN4Wwc8CILe:$DATA"
File:"No admin in ACL","C:\Users\Owner\AppData\Local\Temp\~DFCD80F39059B65733.TMP"
File:"Unknown ADS","C:\System Volume Information\SystemRestore\FRStaging\Windows:nlsPreferences:$DATA"
File:"Unknown ADS","C:\ProgramData\Microsoft:eWphw507Z8MJUump1UgcqKO:$DATA"
File:"Unknown ADS","C:\ProgramData\Microsoft:w5vwlFGue6XtnlqJNPNs:$DATA"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\Activations12.xml"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\cmWCPA4201.12"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\cmWCPA7301.12"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\Downloads"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\help"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\MA.txt"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\pfWCPA.12"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\pmWCPA.12"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\report_rpt_f109xminisummaryreport.html"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\report_rpt_financialsoftwareimportpreviewreport.html"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\report_rpt_w2importauthparams.html"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\Sydvrs12.x01"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\tmpFILogo.gif"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\tmpscreen.htm"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\tmpwizardscreen.htm"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\Update"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\update.tim"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\Update\cver.txt"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\Update\maver.txt"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\Update\US42017301cupd.exe"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\Update\US73017801cupd.exe"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\Update\US78017803cupd.exe"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\help\reg"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\help\reg\vhl"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\help\reg\vhl\vhl.htm"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\Downloads\HRBlockMA.exe"
File:"No admin in ACL","C:\ProgramData\TaxCut\2012\Downloads\ver.txt"
File:"Unknown ADS","C:\ProgramData\Microsoft\Dt7c9KK1kPYCoqj:l0rz1qklHsLIDeSPw8dA:$DATA"
File:"No admin in ACL","C:\ProgramData\Microsoft\OFFICE\DATA"
File:"Unknown ADS","C:\ProgramData\Kaspersky Lab\KSS2\DataRoot\Report:kssextended:$DATA"
File:"No admin in ACL","C:\Program Files (x86)\PDF995"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\install.ini"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\Pdf995 Postscript Converter.txt"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\pdf995.ini"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\readme.html"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\setup.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\pdf995.ini"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\sponsor0.htm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\burstpdf.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\high.set"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\low.set"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\Medium.set"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\modps.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\pdf16.jpg"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\pdfcombine.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\pdfcompress.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\pdfedit16.jpg"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\pdfEdit995.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\pdfextract.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\pdfsetup.log"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\PrintPDF.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\PSHandler.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\readme.html"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\readMeEdit.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\sample.jpg"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\sendattachment.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\smtpsend.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\splash.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\splash.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\splash.htm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\sponsora.htm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\sponsorhed.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\sponsorhed.htm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\stop.txt"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\text.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\utilities\thinsetup.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\._masthead.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\._masthead_rule.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\._order_button.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\._order_button2.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\._rates_button.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\._rule2.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\._toolset_banner.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\995.css"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\about.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\bot.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\copy64.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\COPYING"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\create.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\dfdevmd.dat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\dfdevmdnt.dat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\dfdevmdnt5.dat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\dfdevmdsubtable.dat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\dot.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\download.htm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\driver.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\dwnld.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\dwnld_f2.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\EFS.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\entrprs.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\entrprs_f2.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\espacio.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\faq.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\faq_F2.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\fontsub.par"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\fontsub.tbl"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\fontsubnt.tbl"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\group_licensing_ad.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\gs.PPD"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\instruct.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\line1.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\line2.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\logo.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\masthead.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\masthead_rule.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\order_button.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\order_button2.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdf995.ini"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdf995mon.dll"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdf995mon64.dll"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdf995mon64ui.dll"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdf995ps5.ppd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdf995PS5UI64.dll"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\PDF995PSCRIPT.NTF"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdf995ui.dll"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdf995ui5-64.DLL"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdf995ui5.dll"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdf995x64.ini"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdf995_readme.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdfdriver.spd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdflib.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdfmon95.dll"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdfmona.dll"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdfmona64.dll"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdfmona95.dll"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\pdfsave.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\printerdata.dat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\printerdata5.dat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\ps convert readme"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\PSConvert.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\PSCRIPT.DLL"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\PSCRIPT.DRV"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\PSCRIPT.GID"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\PSMON.DLL"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\purchasenow.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\purchpdf.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\rates_button.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\rpcinaccessible.tmp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\rule.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\rule2.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\setup.log"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\suite.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\suite_F2.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\toolset_banner.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\ultraBanner2.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\upgrade.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\upgrd.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\upgrd_F2.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\why.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\why_F2.gif"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\drivedir\xprights.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\acctest.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\addxchar.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\afmdiff.awk"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\align.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bdftops"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bdftops.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bdftops.cmd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bdftops.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bj8.rpd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bj8gc12f.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bj8hg12f.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bj8oh06n.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bj8pa06n.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bj8pp12f.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bj8ts06n.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bjc610a0.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bjc610a1.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bjc610a2.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bjc610a3.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bjc610a4.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bjc610a5.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bjc610a6.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bjc610a7.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bjc610a8.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bjc610b1.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bjc610b2.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bjc610b3.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bjc610b4.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bjc610b6.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bjc610b7.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\bjc610b8.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\caption.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\cbjc600.ppd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\cbjc800.ppd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\cdj550.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\cdj690.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\cdj690ec.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\cid2code.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\COPYING"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\decrypt.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\dnj750c.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\dnj750m.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\docie.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\dumphint"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\dumphint.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\dumphint.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\dvipdf"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\EndOfTask.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\eps2eps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\eps2eps.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\eps2eps.cmd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\FAPIcidfmap"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\FAPIconfig"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\FAPIconfig-FCO"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\FAPIfontmap"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\FCOfontmap-PCLPS3"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\FCOfontmap-PS3"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\fixmswrd.pl"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\font2c"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\font2c.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\font2c.cmd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\font2c.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\font2pcl.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\Fontmap.ATB"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\Fontmap.ATM"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\Fontmap.OS2"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\Fontmap.OSF"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\Fontmap.SGI"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\Fontmap.Sol"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\Fontmap.Ult"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\Fontmap.VMS"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ghostpdf.inf"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ghostpdf.ppd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gsbj"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gsbj.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gsdj"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gsdj.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gsdj500"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gsdj500.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gsdll32.dll"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gsdll32.lib"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gslj"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gslj.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gslp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gslp.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gslp.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gsnd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gsnd.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gsndt.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gsnup.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gssetgs.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gst.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gstt.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gswin32.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gswin32c.exe"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_ce_e.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_cmdl.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_fform.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_il2_e.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_kanji.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_ksb_e.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_l.xbm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_l.xpm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_lgo_e.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_lgx_e.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_l_m.xbm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_m.xbm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_m.xpm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_m_m.xbm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_pdfwr.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_pfile.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_rdlin.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_s.xbm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_s.xpm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_s_m.xbm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_t.xbm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_t.xpm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_t_m.xbm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_wl1_e.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_wl2_e.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\gs_wl5_e.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ht_ccsto.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\image-qa.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\impath.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\Info-macos.plist"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ISO Coated sb.icc"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\jispaper.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\jobseparator.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\landscap.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\level1.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\lines.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\lp386.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\lp386r2.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\lpgs.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\lpr2.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\lprsetup.sh"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\markhint.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\markpath.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\mkcidfm.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\necp2x.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\necp2x6.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\packfile.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pcharstr.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pdf2dsc"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pdf2dsc.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pdf2dsc.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pdf2ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pdf2ps.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pdf2ps.cmd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\PDFA_def.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pdfopt"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pdfopt.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pdfopt.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pdfwrite.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\PDFX_def.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pf2afm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pf2afm.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pf2afm.cmd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pf2afm.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pfbtopfa"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pfbtopfa.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pfbtopfa.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pftogsf.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ppath.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pphs"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pphs.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\prfont.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\printafm"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\printafm.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2ai.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2ascii"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2ascii.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2ascii.cmd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2ascii.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2epsi"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2epsi.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2epsi.cmd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2epsi.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2pdf"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2pdf.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2pdf.cmd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2pdf12"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2pdf12.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2pdf12.cmd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2pdf13"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2pdf13.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2pdf13.cmd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2pdf14"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2pdf14.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2pdf14.cmd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2pdfwr"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2pdfxx.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2ps.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2ps.cmd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2ps2"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2ps2.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ps2ps2.cmd"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\pv.sh"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\quit.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ras1.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ras24.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ras3.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ras32.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ras4.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\ras8m.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\readme"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\rinkj-2200-setup"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\rollconv.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\showchar.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\showpage.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\st640ih.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\st640ihg.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\st640p.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\st640pg.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\st640pl.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\st640plg.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc1520h.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc2.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc200_h.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc2s_h.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc2_h.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc300.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc300bl.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc300bm.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc500p.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc500ph.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc600ih.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc600p.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc600pl.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc640p.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc800ih.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc800p.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc800pl.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stcany.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stcany_h.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stcinfo.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stcolor.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc_h.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stc_l.upp"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\stocht.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\traceimg.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\traceop.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\type1enc.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\type1ops.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\uninfo.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\unix-lpr.sh"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\unprot.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\viewcmyk.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\viewgif.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\viewjpeg.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\viewmiff.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\viewpbm.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\viewpcx.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\viewps2a.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\wftopfa"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\wftopfa.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\winmaps.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\wmakebat.bat"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\wrfont.ps"
File:"No admin in ACL","C:\Program Files (x86)\PDF995\res\convert\zeroline.ps"

tashi
2014-11-20, 19:01
Hello rmbelson,

Those are mostly program files and data. In general all items found by the RootAlyzer are not necessarily malicious but shows items it believes to be out of the ordinary and may give a hint for an infection.

Sometimes even legitimate software uses rootkit technologies. How is the computer running? :)

Best regards.

rmbelson
2014-11-20, 19:38
Hello rmbelson,

<snip> How is the computer running? :)

Best regards.

Running OK. I checked rootkits because I foolishly inserted an unknown thumb drive and wondered if it did anything to my system. It installed drivers but did not show up as a drive, so I wondered if it was a malware infected device.

tashi
2014-11-20, 20:26
Hi rmbelson,

Running OK. I checked rootkits because I foolishly inserted an unknown thumb drive and wondered if it did anything to my system. It installed drivers but did not show up as a drive, so I wondered if it was a malware infected device.

Some malware presents differently from a rootkit.

Any time a computer does show sign of infection one can start a topic in the Malware Removal Forum (http://forums.spybot.info/forumdisplay.php?f=22) after reading the FAQ:
http://forums.spybot.info/showthread.php?t=288

:greeting: