GMER 1.0.15.15641 - http://www.gmer.net Rootkit scan 2012-09-11 21:24:22 Windows 5.1.2600 Dodatek Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP1T0L0-5 SSDPAMM0008G1EA rev.Ver2.I0H Running: w0b7jl6f.exe; Driver: C:\DOCUME~1\Asia\USTAWI~1\Temp\pxtdqpoc.sys ---- User code sections - GMER 1.0.15 ---- ÒuÛŠëÔÿÿÿÿservicesentry point in "ÒuÛŠëÔÿÿÿÿservicesentry point in "" section [0x0042E238] C:\Documents and Settings\Asia\Ustawienia lokalne\Dane aplikacji\services.exe[256] C:\Documents and Settings\Asia\Ustawienia lokalne\Dane aplikacji\services.exe entry point in "ÒuÛŠëÔÿÿÿÿservicesentry point in "" section [0x0042E238] ÒuÛŠëÔÿÿÿÿservicesunknown last code section [0x00424000, 0x19000, 0xC00000E0] C:\Documents and Settings\Asia\Ustawienia lokalne\Dane aplikacji\services.exe[256] C:\Documents and Settings\Asia\Ustawienia lokalne\Dane aplikacji\services.exe unknown last code section [0x00424000, 0x19000, 0xC00000E0] ÒuÛŠëÔÿÿÿÿwinlogonentry point in "ÒuÛŠëÔÿÿÿÿwinlogonentry point in "" section [0x0042E238] C:\Documents and Settings\Asia\Ustawienia lokalne\Dane aplikacji\winlogon.exe[1496] C:\Documents and Settings\Asia\Ustawienia lokalne\Dane aplikacji\winlogon.exe entry point in "ÒuÛŠëÔÿÿÿÿwinlogonentry point in "" section [0x0042E238] ÒuÛŠëÔÿÿÿÿwinlogonunknown last code section [0x00424000, 0x19000, 0xC00000E0] C:\Documents and Settings\Asia\Ustawienia lokalne\Dane aplikacji\winlogon.exe[1496] C:\Documents and Settings\Asia\Ustawienia lokalne\Dane aplikacji\winlogon.exe unknown last code section [0x00424000, 0x19000, 0xC00000E0] ---- EOF - GMER 1.0.15 ----