GMER 2.1.19322 - http://www.gmer.net Rootkit scan 2014-01-17 14:51:46 Windows 5.1.2600 Dodatek Service Pack 3 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3 ST360021A rev.3.19 55,90GB Running: gmer.exe; Driver: C:\DOCUME~1\xp\USTAWI~1\Temp\kwayakow.sys ---- Kernel code sections - GMER 2.1 ---- .reloc C:\WINDOWS\system32\drivers\acedrv11.sys section is executable [0xF3DDA300, 0x25D4C, 0xE0000060] ---- User code sections - GMER 2.1 ---- .text C:\Program Files\Mozilla Firefox\plugin-container.exe[2924] USER32.dll!DefWindowProcA + 11A 7E37C298 7 Bytes JMP 1060B55A C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\plugin-container.exe[2924] USER32.dll!SetWindowLongA + 19 7E37C2B6 7 Bytes JMP 1060B5CB C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\plugin-container.exe[2924] USER32.dll!GetWindowInfo 7E37C49C 5 Bytes JMP 1060F36E C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\plugin-container.exe[2924] USER32.dll!GetMenuContextHelpId + 1A 7E3B5319 7 Bytes JMP 10608DFA C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[3744] ntdll.dll!LdrLoadDll 7C9163A3 5 Bytes JMP 01A2B780 C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[3744] kernel32.dll!lstrlenW + 43 7C809ADC 7 Bytes JMP 02266EFD C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[3744] kernel32.dll!MapViewOfFileEx + 6A 7C80B990 7 Bytes JMP 02266EDA C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[3744] kernel32.dll!ValidateLocale + B1E8 7C8449F8 7 Bytes JMP 01A30836 C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[3744] GDI32.dll!SetDIBitsToDevice + 209 77F19E04 7 Bytes JMP 02266E5B C:\Program Files\Mozilla Firefox\xul.dll ---- Devices - GMER 2.1 ---- Device \Driver\prodrv06 \Device\ProDrv06 E1B72C30 Device \Driver\prohlp02 \Device\ProHlp02 E18A9C00 ---- EOF - GMER 2.1 ----