GMER 1.0.12.11883 - http://www.gmer.net Rootkit scan 2006-11-06 12:51:38 Windows 5.1.2600 Service Pack 2 ---- System - GMER 1.0.12 ---- SYSENTER ? F89F1FAF Code F89F0A5E pIofCallDriver ---- Kernel code sections - GMER 1.0.12 ---- .text ntoskrnl.exe!Kei386EoiHelper + 1269 804D8DF0 3 Bytes .text tcpip.sys!IPTransmit + 4279 FAC00CFA 6 Bytes CALL F89F3D60 .text tcpip.sys!IPTransmit + 9433 FAC0211C 6 Bytes CALL F89F3D60 .text tcpip.sys!IPTransmit + 18018 FAC042A5 6 Bytes CALL F89F3D60 .text wanarp.sys FC6A03FD 7 Bytes CALL F89F3D6A ---- Modules - GMER 1.0.12 ---- Module (noname) (*** hidden *** ) F89ED000 ---- Services - GMER 1.0.12 ---- Service D:\WINDOWS\system32:lzx32.sys (*** hidden *** ) [SYSTEM] pe386 <-- ROOTKIT !!! ---- Files - GMER 1.0.12 ---- ADS D:\WINDOWS\system32:lzx32.sys <-- ROOTKIT !!! ---- EOF - GMER 1.0.12 ----