Microsoft Windows XP Professional (5.1.2600) Service Pack 3 C:\ [Fixed] - NTFS - (Total:69303 Mo/Free:3045 Mo) D:\ [Fixed] - FAT32 - (Total:6991 Mo/Free:785 Mo) E:\ [CD-Rom] (Total:0 Mo/Free:0 Mo) Mon 06/01/2009| 1:50 ----------------------\\ Processes.. --Locked-- [System Process] ---------- System ---------- \SystemRoot\System32\smss.exe ---------- \??\C:\WINDOWS\system32\csrss.exe ---------- \??\C:\WINDOWS\system32\winlogon.exe ---------- C:\WINDOWS\system32\services.exe ---------- C:\WINDOWS\system32\lsass.exe ---------- C:\WINDOWS\system32\Ati2evxx.exe ---------- C:\WINDOWS\system32\svchost.exe ---------- C:\WINDOWS\system32\svchost.exe ---------- C:\WINDOWS\System32\svchost.exe ---------- C:\WINDOWS\system32\svchost.exe ---------- C:\WINDOWS\system32\Ati2evxx.exe ---------- C:\WINDOWS\system32\svchost.exe ---------- C:\WINDOWS\Explorer.EXE ---------- C:\WINDOWS\system32\svchost.exe ---------- C:\WINDOWS\System32\wltrysvc.exe ---------- C:\WINDOWS\System32\bcmwltry.exe ---------- C:\WINDOWS\system32\spoolsv.exe ---------- C:\WINDOWS\system32\ctfmon.exe ---------- C:\Program Files\Common Files\Real\Update_OB\realsched.exe ---------- C:\Program Files\Synaptics\SynTP\SynTPLpr.exe ---------- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ---------- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe ---------- C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe ---------- C:\WINDOWS\system32\svchost.exe ---------- C:\WINDOWS\eHome\ehRecvr.exe ---------- C:\WINDOWS\eHome\ehSched.exe ---------- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe ---------- C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS ---------- C:\WINDOWS\system32\svchost.exe ---------- C:\WINDOWS\ehome\mcrdsvc.exe ---------- C:\WINDOWS\System32\alg.exe ---------- C:\WINDOWS\System32\svchost.exe ---------- C:\WINDOWS\system32\svchost.exe ---------- C:\Program Files\Internet Explorer\Iexplore.exe ---------- C:\WINDOWS\system32\cmd.exe ---------- C:\Rooter$\RK.exe ----------------------\\ Search.. ----------------------\\ ROOTKIT !! 1 - "C:\Rooter$\Rooter_1.txt" - Mon 06/01/2009| 1:51 ----------------------\\ Scan completed at 1:51