GMER 2.1.18952 - http://www.gmer.net Rootkit scan 2013-02-20 07:10:11 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP3T0L0-3 WDC_WD5000AAKX-001CA0 rev.15.01H15 465,76GB Running: ssjsrgu0.exe; Driver: C:\Users\Ola\AppData\Local\Temp\uwliqpow.sys ---- User code sections - GMER 2.1 ---- .text C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe[1680] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000077351465 2 bytes [35, 77] .text C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe[1680] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000773514bb 2 bytes [35, 77] .text ... * 2 .text C:\Program Files (x86)\Mozilla Firefox\firefox.exe[1884] C:\Windows\syswow64\PSAPI.dll!GetModuleInformation + 69 0000000077351465 2 bytes [35, 77] .text C:\Program Files (x86)\Mozilla Firefox\firefox.exe[1884] C:\Windows\syswow64\PSAPI.dll!GetModuleInformation + 155 00000000773514bb 2 bytes [35, 77] .text ... * 2 ---- Processes - GMER 2.1 ---- Library D:\POBRANE\FIXITPC\OTL.exe (*** suspicious ***) @ D:\POBRANE\FIXITPC\OTL.exe [1884] 0000000000400000 ---- EOF - GMER 2.1 ----