GMER 1.0.15.15641 - http://www.gmer.net Rootkit scan 2012-11-26 12:09:19 Windows 5.1.2600 Dodatek Service Pack 3 Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-0 WDC_WD16 rev.04.0 Running: q0yyxrby.exe; Driver: C:\DOCUME~1\Admin\USTAWI~1\Temp\pxtdapow.sys ---- Kernel code sections - GMER 1.0.15 ---- .xreloc C:\WINDOWS\system32\drivers\sfsync04.sys unknown last section [0xF74F5000, 0xC5E, 0x40000040] C:\Program Files\CyberLink\PowerDVD\000.fcl entry point in "" section [0x9DD8E000] .clc C:\Program Files\CyberLink\PowerDVD\000.fcl unknown last section [0x9DD8F000, 0x1000, 0x00000000] ---- Devices - GMER 1.0.15 ---- AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 SynTP.sys (Synaptics Touchpad Driver/Synaptics, Inc.) AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 SynTP.sys (Synaptics Touchpad Driver/Synaptics, Inc.) Device \Driver\iaStor \Device\Ide\iaStor0 8A937780 Device \Driver\atapi \Device\Ide\IdePort0 89CD04A8 Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-3 89CD04A8 Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 8A937780 Device \Driver\usbstor \Device\0000007e 89B206F8 Device \Driver\usbstor \Device\0000007f 89B206F8 AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation) ---- EOF - GMER 1.0.15 ----