ROOTREPEAL (c) AD, 2007-2009 ================================================== Scan Start Time: 2009/09/21 11:10 Program Version: Version 1.3.5.0 Windows Version: Windows XP SP3 ================================================== Drivers ------------------- Name: catchme.sys Image Path: C:\DOCUME~1\DYSADM~1\LOCALS~1\Temp\catchme.sys Address: 0xBA440000 Size: 31744 File Visible: No Signed: - Status: - Name: dump_iastor.sys Image Path: C:\WINDOWS\System32\Drivers\dump_iastor.sys Address: 0x9E5A8000 Size: 851968 File Visible: No Signed: - Status: - Name: PROCEXP90.SYS Image Path: C:\WINDOWS\system32\Drivers\PROCEXP90.SYS Address: 0xBA5CC000 Size: 6464 File Visible: No Signed: - Status: - Name: rootrepeal.sys Image Path: C:\WINDOWS\system32\drivers\rootrepeal.sys Address: 0x9E1D6000 Size: 49152 File Visible: No Signed: - Status: - Hidden/Locked Files ------------------- Path: C:\WINDOWS\Temp\HPSLPS173.log Status: Locked to the Windows API! Path: c:\documents and settings\dys administrator\application data\skype\lallessio\etilqs_cylteibq0gq9sb0o2q5e Status: Allocation size mismatch (API: 4096, Raw: 0) Path: c:\documents and settings\dys administrator\application data\skype\lallessio\etilqs_tlo79agtumjemzffzilq Status: Allocation size mismatch (API: 16384, Raw: 0) ==EOF==