GMER 1.0.15.15641 - http://www.gmer.net Rootkit scan 2012-03-04 12:13:50 Windows 5.1.2600 Dodatek Service Pack 3 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3 WDC_WD600BB-00CAA1 rev.17.07W17 Running: l8z8to73.exe; Driver: C:\DOCUME~1\Dawid\USTAWI~1\Temp\kwpyrfoc.sys ---- System - GMER 1.0.15 ---- SSDT \SystemRoot\system32\DRIVERS\CFRMD.sys (Safe Deletion Driver/Windows (R) Win 7 DDK provider) ZwCreateKey [0xF775489E] SSDT \SystemRoot\system32\DRIVERS\CFRMD.sys (Safe Deletion Driver/Windows (R) Win 7 DDK provider) ZwDeleteKey [0xF77548B0] SSDT \SystemRoot\system32\DRIVERS\CFRMD.sys (Safe Deletion Driver/Windows (R) Win 7 DDK provider) ZwDeleteValueKey [0xF775A490] SSDT \SystemRoot\system32\DRIVERS\CFRMD.sys (Safe Deletion Driver/Windows (R) Win 7 DDK provider) ZwSetValueKey [0xF775A688] ---- EOF - GMER 1.0.15 ----