GMER 2.1.19163 - http://www.gmer.net Rootkit scan 2013-11-01 17:27:34 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP3T0L0-3 ST3320613AS rev.SD22 298,09GB Running: m57g1hli.exe; Driver: C:\Users\-\AppData\Local\Temp\axloquog.sys ---- Threads - GMER 2.1 ---- Thread [364:400] 000007fefd701f00 Thread [364:404] 000007fefd701c90 Thread [364:408] 000007fefd764be4 Thread [364:412] 000007fefd763ff0 Thread [364:436] 000007fefd764be4 Thread [364:460] 000007fefd703710 Thread [364:464] 000007fefd703710 Thread [364:492] 000007fefd764be4 Thread [364:512] 000007fefd703710 Thread [444:556] 000007fefd701f00 Thread [444:560] 000007fefd701c90 Thread [444:564] 000007fefd764be4 Thread [444:568] 000007fefd763ff0 Thread [444:588] 000007fefd764be4 Thread [444:648] 000007fefd703710 Thread [444:652] 000007fefd703710 Thread [444:2224] 000007fefd764be4 Thread [444:2256] 000007fefd764be4 Thread [444:2444] 000007fefd703710 Thread [444:1700] 000007fefd764be4 Thread C:\Windows\system32\svchost.exe [656:700] 000007fefc9d332c Thread C:\Windows\system32\svchost.exe [656:704] 000007fefc9d10b0 Thread C:\Windows\System32\svchost.exe [880:2360] 000007fefa2c88f8 Thread C:\Windows\System32\svchost.exe [880:3028] 000007fef9f744e0 Thread C:\Windows\System32\svchost.exe [880:3524] 000007fef4383efc Thread C:\Windows\System32\svchost.exe [880:3644] 000007fef43c8a4c Thread C:\Windows\System32\svchost.exe [880:3792] 000007fef916a2b0 Thread C:\Windows\system32\svchost.exe [916:4420] 000007fef8d76848 Thread C:\Windows\system32\svchost.exe [916:2016] 000007fef463d3c8 Thread C:\Windows\system32\svchost.exe [916:4864] 000007fef463d3c8 Thread C:\Windows\system32\svchost.exe [916:3960] 000007fef463d3c8 Thread C:\Windows\system32\svchost.exe [916:3932] 000007fef463d3c8 Thread C:\Windows\system32\svchost.exe [964:1668] 000007fef9419498 Thread C:\Windows\system32\svchost.exe [964:3224] 000007fefa145124 Thread C:\Windows\system32\svchost.exe [964:3656] 000007fef370506c Thread C:\Windows\system32\svchost.exe [964:3660] 000007fef9ea1c20 Thread C:\Windows\system32\svchost.exe [964:3668] 000007fef9ea1c20 Thread C:\Windows\system32\svchost.exe [964:4528] 000007fef8d54164 Thread C:\Windows\system32\svchost.exe [964:4332] 000007fef9111ab0 Thread C:\Windows\system32\svchost.exe [964:4728] 000007fef96717f8 Thread C:\Windows\system32\svchost.exe [376:1044] 000007fefb248274 Thread C:\Windows\system32\svchost.exe [376:1496] 000007fefb248274 Thread C:\Windows\system32\svchost.exe [720:368] 000007fefaff341c Thread C:\Windows\system32\svchost.exe [720:324] 000007fefaff3a2c Thread C:\Windows\system32\svchost.exe [720:584] 000007fefaff3768 Thread C:\Windows\system32\svchost.exe [720:580] 000007fefaff5c20 Thread C:\Windows\system32\svchost.exe [720:1424] 000007fefa30bd88 Thread C:\Windows\system32\svchost.exe [720:1436] 000007fef9f183d8 Thread C:\Windows\system32\svchost.exe [720:1440] 000007fef9f183d8 Thread C:\Windows\system32\svchost.exe [720:1636] 000007fef95a3f1c Thread C:\Windows\system32\svchost.exe [720:1640] 000007fef9571a38 Thread C:\Windows\system32\svchost.exe [720:1644] 000007fef9565388 Thread C:\Windows\system32\svchost.exe [720:1648] 000007fef9547738 Thread C:\Windows\system32\svchost.exe [720:1652] 000007fef9531f90 Thread C:\Windows\system32\svchost.exe [720:2020] 000007fefa145124 Thread C:\Windows\system32\svchost.exe [720:3516] 000007fefaff3900 Thread C:\Windows\System32\spoolsv.exe [1112:1864] 000007fef82610c8 Thread C:\Windows\System32\spoolsv.exe [1112:1872] 000007fefabb6144 Thread C:\Windows\System32\spoolsv.exe [1112:1876] 000007fefa3b5fd0 Thread C:\Windows\System32\spoolsv.exe [1112:1880] 000007fefab93438 Thread C:\Windows\System32\spoolsv.exe [1112:1884] 000007fefa3b63ec Thread C:\Windows\System32\spoolsv.exe [1112:1892] 000007fef82f5e5c Thread C:\Windows\System32\spoolsv.exe [1112:1896] 000007fef89e5074 Thread C:\Windows\system32\svchost.exe [1144:1308] 000007fefa9b35c0 Thread C:\Windows\system32\svchost.exe [1144:1476] 000007fefa9b5600 Thread C:\Windows\system32\svchost.exe [1144:1912] 000007fef8ff2888 Thread C:\Windows\system32\svchost.exe [1144:1916] 000007fef8fe2940 Thread C:\Windows\system32\svchost.exe [1280:2888] 000007fef44e8470 Thread C:\Windows\system32\svchost.exe [1280:1388] 000007fef44f2418 Thread C:\Windows\system32\svchost.exe [1280:632] 000007fef3b0f130 Thread C:\Windows\system32\svchost.exe [1280:1532] 000007fef3b04734 Thread C:\Windows\system32\svchost.exe [1280:4104] 000007fef3b04734 Thread C:\Windows\system32\taskhost.exe [1776:1936] 000007fef94f1010 Thread C:\Windows\system32\Dwm.exe [2100:2136] 000007fefc69f0d8 Thread C:\Windows\system32\Dwm.exe [2100:2140] 000007fefb82abf0 Thread C:\Windows\System32\svchost.exe [2712:2468] 000007fefa149874 ---- EOF - GMER 2.1 ----