GMER 2.1.19155 - http://www.gmer.net Rootkit scan 2013-03-04 20:00:47 Windows 6.1.7600 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 WDC_WD6400BPVT-80HXZT1 rev.01.01A01 596,17GB Running: trj5x4xu.exe; Driver: C:\Users\hardisc.pl\AppData\Local\Temp\pwliapob.sys ---- Registry - GMER 2.1 ---- Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\742f683de658 Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Bind ???????????????????????????e????? ???????T??????n???????????????????????????????????????TCPIP6TUNNEL?Tcpip6??P??@n??????BADDEVICE.Dev???Urz?dzenie wej?ciowe USB????????????????????Multiple Card Reader USB Device?e????z???????????????????$??????????????????????k???????????????????u???????k??{8ECC055D-047F-11D1-A537-0000F8753ED1}??????? ?????????????????????0????????????????????????????????????&????????????????????????????n???????????????????????????? ??????????? ????????????n????????????6????????? ?5?????????????????????3?????????????Root\*ISATAP\0003????????????/??????????{71a27cdd-812a-11d0-bec7-08002be2092f}\0027??????????????????????????????????????????????????????}??????????????????????????????{7E4AE9B8-1DC4-4CBD-8A43-A113EA57EBCA}??????????????????????????????6.1.7600.16385????????X??????5???????????????T??\0??2???????????????????.NTAMD64?????????????B??????????? l??????c??????????????????????????????????Karta Microsoft ISATAP??????-100????????????????????????????{71a27cdd-812a-11d0-bec7-08002be2092f}? Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Route ?????0??? ???????????????????????????????????_???????????????????????????????y??LegacyDriver??????4?????????p???Ndisuio,rspndr,lltdio,RasPppoe,Tcpip,Tcpip6??????????????????????????8?e?e?e?e???V??????????? ???????????????????&?0??????????????????????????????????????????z????????g?????????????????????????????????????????????????????p????h?????????????????????????????????????????????????????????r?????z????????g????????????????????????????????????t???{ac7e6115-72e4-476b-afac-eee8ec694717}????????????????????????????????????????????????z????????g??????X??????z???e???????????????????????????????5??????????????????????p???10.0.0.67???????$???4????? ??????? ????t???????????????????????????????????????? ??????????? ?????????z????????g???????? ????/???????????????????????????e???????j???~???t???8?[?e?e?e?z?d??????{00000000-0000-0000-ffff-ffffffffffff}?PCI?????????????????s?????????????????????????$|??????????????????????????????????j??????????????????$???4????? ??????? ???????????????????????????????????????????????? Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Export ?????????????0??t?????X??????????6??????? ??????????????????????????????????????}???????????????????????D????????????????h??????96????0??????????????????????????????????????????????????????????*??????????????????????????????????????????????????????????????????????????6-??GEARAspiWDM?????????????????????????????????????????????{0??????????? ??D????????????-???t???????????????????????????????????????????????????????????D??99????B??????i???h??.NT??e???????????????????????????????????????????-??86???????e??t???? ????????????????????????????????;??????????e??storage\volume????????????????????????????????*??????????????????????????????????????s?????????0???0???9???;???;???;??????????%?