GMER 2.1.19163 - http://www.gmer.net Rootkit scan 2014-01-01 11:53:55 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 ST1000LM rev.2AR1 931,51GB Running: h5dtqk9w.exe; Driver: C:\Users\SAMSUNG\AppData\Local\Temp\uxldapow.sys ---- Registry - GMER 2.1 ---- Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\448500035e34 Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\c485080d5f2e Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\c485080d5f2e@502d1ddeaf79 0xD5 0x18 0x44 0x15 ... Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\c485080d5f2e@0060d1002bb8 0xDE 0x75 0x01 0xD0 ... Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\448500035e34 (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\c485080d5f2e (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\c485080d5f2e@502d1ddeaf79 0xD5 0x18 0x44 0x15 ... Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\c485080d5f2e@0060d1002bb8 0xDE 0x75 0x01 0xD0 ... Reg HKCU\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Persisted@C:\Users\SAMSUNG\Desktop\zbior\[121125][121123] [MangaGamer] Otoboku - Maidens Are Falling for Me\xff01 [Crack is included] [English]\Setup.exe 1 Reg HKCU\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Persisted@C:\Users\SAMSUNG\Desktop\zbior\[121125][121123] [MangaGamer] Otoboku - Maidens Are Falling for Me\xff01 [Crack is included] [English]\UnSETUP.exe 1 Reg HKCU\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Persisted@C:\gamess\Aile\relations sister\x81~sister\Uninstall.exe 1 Reg HKCU\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Persisted@C:\Program Files (x86)\EROTICA PEACH\\x2022ú\x2030ÛŒã\x2014\xa0\x83Œ\x0083b\x83X\x83\x201c\x81@\x81`\x90\xab\x2039³\x88ç\x201aÍ\x90æ\x90\xb6\x201aÉ\x201a\xa8\x201dC\x201a¹\x81I\x81`\Setup.exe 1 ---- Disk sectors - GMER 2.1 ---- Disk \Device\Harddisk0\DR0 unknown MBR code ---- EOF - GMER 2.1 ----