GMER 1.0.15.15641 - http://www.gmer.net Rootkit scan 2012-05-31 13:58:28 Windows 5.1.2600 Dodatek Service Pack 3 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3 ST380011A rev.8.01 Running: k5og5zlq.exe; Driver: C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\pgtdypoc.sys ---- User code sections - GMER 1.0.15 ---- .text C:\WINDOWS\Explorer.EXE[416] C:\WINDOWS\Explorer.EXE section is writeable [0x01001000, 0x44C09, 0xE0000020] .rdata C:\WINDOWS\Explorer.EXE[416] C:\WINDOWS\Explorer.EXE unknown last code section [0x0137C000, 0x7000, 0xE0000020] ---- Files - GMER 1.0.15 ---- File C:\System Volume Information\_restore{EB3D71AC-22AD-4078-BDB1-452E464BFD82}\RP87\A0088691.exe 0 bytes File C:\System Volume Information\_restore{EB3D71AC-22AD-4078-BDB1-452E464BFD82}\RP87\A0088692.exe 0 bytes ---- EOF - GMER 1.0.15 ----