For the record I use Webroot Spy Sweeper 5.3. FYI, on their alert page for general information they have posted the following: "Important Update: Spy Sweeper® with AntiVirus is now compatible with Windows Vista Webroot® Software Inc. has released Spy Sweeper with AntiVirus version 5.3, this new version has been optimized to improve performance and is compatible with Microsoft’s new operating system, Windows Vista™ (version 5.3 continues to support Windows 2000 and XP). To receive your FREE upgrade, click "Check for Updates" on the home screen of Spy Sweeper." Having found a RK in SM7 recently, (I reverted to SM6), I ran 3 rootkit finders on to see if SS, uses RK's. Results were: 1) BD 10 reported no root kits 2) F-Secures BlackLight, reported no rootkits 3) RKU found things on BD 10 and ZA Pro with hooked and hidden processes plus a bunch of other entries which I can't decode, so I'll submit them to the official RKU forum for study. Since some of those MAY relate to SS. What I would like to better understand at some point is there ever a valid technical reason for using RK's hooks, and / or hidden processes? Does anybody know the answer to this?