OK, I ran GMR and got the following log. Can someone translate for me and tell me what my next step is?
GMER 1.0.15.15281 -
http://www.gmer.netRootkit scan 2010-01-15 22:59:24
Windows 5.1.2600 Service Pack 3
Running: wq9r1dtz.exe; Driver: C:\DOCUME~1\Owner\LOCALS~1\Temp\kgtdrpow.sys
---- System - GMER 1.0.15 ----
Code 86BF2BA0 ZwEnumerateKey
Code 86CDF630 ZwFlushInstructionCache
Code 86CB36BE IofCallDriver
Code 86CAE82E IofCompleteRequest
---- Kernel code sections - GMER 1.0.15 ----
.text ntkrnlpa.exe!IofCallDriver 804EF1A6 5 Bytes JMP 86CB36C3
.text ntkrnlpa.exe!IofCompleteRequest 804EF236 5 Bytes JMP 86CAE833
PAGE ntkrnlpa.exe!ZwFlushInstructionCache 805B6814 5 Bytes JMP 86CDF634
PAGE ntkrnlpa.exe!ZwEnumerateKey 80623FF2 5 Bytes JMP 86BF2BA4
init C:\WINDOWS\System32\Drivers\sunkfilt.sys entry point in "init" section [0xF7916300]
---- User code sections - GMER 1.0.15 ----
.text c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe[208] kernel32.dll!CreateProcessW 7C802336 5 Bytes JMP 00A7000A
.text C:\RubyDev\apps\MySQL\bin\mysqld-nt.exe[652] kernel32.dll!CreateProcessW 7C802336 5 Bytes JMP 00E3000A
.text C:\WINDOWS\system32\services.exe[824] kernel32.dll!CreateProcessW 7C802336 5 Bytes JMP 0088000A
.text C:\WINDOWS\system32\lsass.exe[836] kernel32.dll!CreateProcessW 7C802336 5 Bytes JMP 0092000A
.text C:\WINDOWS\Explorer.EXE[1112] kernel32.dll!CreateProcessW 7C802336 5 Bytes JMP 00CF000A
.text ...
.text C:\Program Files\Internet Explorer\iexplore.exe[1472] WININET.dll!HttpAddRequestHeadersA 3D94CF46 5 Bytes JMP 00C8000A
.text C:\Program Files\Internet Explorer\iexplore.exe[1472] WININET.dll!HttpOpenRequestA 3D94D508 5 Bytes JMP 00D8000A
.text C:\Program Files\Internet Explorer\iexplore.exe[1472] WININET.dll!InternetConnectA 3D94DEAE 5 Bytes JMP 00DA000A
.text C:\Program Files\Internet Explorer\iexplore.exe[1472] WININET.dll!InternetConnectW 3D94F862 5 Bytes JMP 00D9000A
.text C:\Program Files\Internet Explorer\iexplore.exe[1472] WININET.dll!HttpOpenRequestW 3D94FBFB 5 Bytes JMP 00D7000A
.text C:\Program Files\Internet Explorer\iexplore.exe[1472] WININET.dll!HttpAddRequestHeadersW 3D94FE49 5 Bytes JMP 00D6000A
.text C:\WINDOWS\system32\spoolsv.exe[1652] kernel32.dll!CreateProcessW 7C802336 5 Bytes JMP 00B7000A
.text c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe[1732] kernel32.dll!CreateProcessW 7C802336 5 Bytes JMP 009E000A
.text C:\Program Files\a-squared Free\a2service.exe[1812] kernel32.dll!CreateProcessW 7C802336 5 Bytes JMP 00E3000A
.text C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe[1836] kernel32.dll!CreateProcessW 7C802336 5 Bytes JMP 00A1000A
.text C:\Program Files\Bonjour\mDNSResponder.exe[1872] kernel32.dll!CreateProcessW 7C802336 5 Bytes JMP 00A4000A
.text ...
---- Devices - GMER 1.0.15 ----
AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
Device \FileSystem\Cdfs \Cdfs A6E7F400
---- Modules - GMER 1.0.15 ----
Module \systemroot\system32\drivers\H8SRTtptoytkuyl.sys (*** hidden *** ) A8383000-A83A0000 (118784 bytes)
---- Processes - GMER 1.0.15 ----
Library \\?\globalroot\systemroot\system32\H8SRTvkjkgtklrs.dll (*** hidden *** ) @ C:\WINDOWS\system32\winlogon.exe [776] 0x10000000
Library \\?\globalroot\systemroot\system32\H8SRTvkjkgtklrs.dll (*** hidden *** ) @ C:\WINDOWS\System32\svchost.exe [1100] 0x00870000
Library \\?\globalroot\systemroot\system32\H8SRTvkjkgtklrs.dll (*** hidden *** ) @ C:\WINDOWS\system32\svchost.exe [1116] 0x00870000
Library \\?\globalroot\systemroot\system32\H8SRTvkjkgtklrs.dll (*** hidden *** ) @ C:\WINDOWS\System32\svchost.exe [1340] 0x00870000
Library \\?\globalroot\systemroot\system32\H8SRTvkjkgtklrs.dll (*** hidden *** ) @ C:\WINDOWS\system32\svchost.exe [1388] 0x00870000
Library \\?\globalroot\systemroot\system32\H8SRTvkjkgtklrs.dll (*** hidden *** ) @ C:\Program Files\Internet Explorer\iexplore.exe [1472] 0x00E10000
Library \\?\globalroot\systemroot\system32\H8SRTvkjkgtklrs.dll (*** hidden *** ) @ C:\WINDOWS\system32\svchost.exe [1516] 0x00870000
Library \\?\globalroot\systemroot\system32\H8SRTvkjkgtklrs.dll (*** hidden *** ) @ C:\WINDOWS\System32\svchost.exe [1568] 0x00870000
Library \\?\globalroot\systemroot\system32\H8SRTvkjkgtklrs.dll (*** hidden *** ) @ C:\WINDOWS\system32\svchost.exe [1780] 0x00870000
Library \\?\globalroot\systemroot\system32\H8SRTvkjkgtklrs.dll (*** hidden *** ) @ C:\WINDOWS\system32\svchost.exe [1984] 0x00870000
Library \\?\globalroot\systemroot\system32\H8SRTvkjkgtklrs.dll (*** hidden *** ) @ C:\WINDOWS\system32\svchost.exe [2024] 0x00AF0000
Library \\?\globalroot\systemroot\system32\H8SRTvkjkgtklrs.dll (*** hidden *** ) @ C:\WINDOWS\system32\svchost.exe [2120] 0x00870000
---- EOF - GMER 1.0.15 ----