GMER 2.1.19163 - http://www.gmer.net Rootkit scan 2013-05-17 11:19:33 Windows 5.1.2600 Dodatek Service Pack 3 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-4 ST3250318AS rev.CC38 232,89GB Running: 9gtc5tu5.exe; Driver: C:\DOCUME~1\EDRUZK~1\USTAWI~1\Temp\uxtdapog.sys ---- Kernel code sections - GMER 2.1 ---- .text atapi.sys F74C5852 1 Byte [CC] {INT 3 } ? nwfilter.sys Nie można odnaleźć określonego pliku. ! ---- Trace I/O - GMER 2.1 ---- Trace ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys >>UNKNOWN [0x89b2d7e1]<< 89b2d7e1 Trace 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x89b19908] 89b19908 Trace 3 CLASSPNP.SYS[f7637fd7] -> nt!IofCallDriver -> \Device\0000005f[0x89b1e318] 89b1e318 Trace 5 ACPI.sys[f75ad620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-4[0x89b6dd98] 89b6dd98 ---- Threads - GMER 2.1 ---- Thread System [4:152] 89ABC39F Thread System [4:164] 899040F4 ---- Registry - GMER 2.1 ---- Reg HKLM\SYSTEM\CurrentControlSet\Services\NdisTapi\Securit Reg HKLM\SYSTEM\CurrentControlSet\Services\NdisTapi\Securit@Security 0x01 0x00 0x14 0x80 ... Reg HKLM\SYSTEM\CurrentControlSet\Services\Themes@ErrorCo\0trol 1 Reg HKLM\SYSTEM\ControlSet003\Services\NdisTapi\Securit (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\Services\NdisTapi\Securit@Security 0x01 0x00 0x14 0x80 ... Reg HKLM\SYSTEM\ControlSet003\Services\Themes@ErrorCo\0trol 1 ---- EOF - GMER 2.1 ----