GMER 2.2.19882 - http://www.gmer.net Rootkit scan 2017-05-23 15:07:02 Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\00000025 INTEL_SSDSC2CT120A3 rev.300i 111,79GB Running: ht3ty8uw.exe; Driver: C:\Users\maciek\AppData\Local\Temp\pxldapow.sys ---- Kernel code sections - GMER 2.2 ---- .text C:\Windows\System32\win32k.sys!W32pServiceTable fffff9600022ba00 15 bytes {ADD BL, CH; JMP 0x5} .text C:\Windows\System32\win32k.sys!W32pServiceTable + 16 fffff9600022ba10 11 bytes [00, D6, FB, FF, 40, AA, BF, ...] ---- Threads - GMER 2.2 ---- Thread C:\Windows\system32\csrss.exe [4876:2008] fffff9600089b2d0 ---- Registry - GMER 2.2 ---- Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Kernel\RNG@RNGAuxiliarySeed 1504233811 ---- Files - GMER 2.2 ---- File C:\Users\maciek\AppData\Local\Temp\.squirrel-lock-41516DB2C7B4AC418156D205F6DA6483CB1B77AE 0 bytes ---- EOF - GMER 2.2 ----