GMER 2.1.19357 - http://www.gmer.net Rootkit scan 2014-02-15 17:12:17 Windows 5.1.2600 Dodatek Service Pack 3 \Device\Harddisk0\DR0 -> \Device\00000065 SAMSUNG_HD502HJ rev.1AJ10001 465,76GB Running: gmer.exe; Driver: C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\uwtiqfow.sys ---- Kernel code sections - GMER 2.1 ---- .text C:\WINDOWS\system32\DRIVERS\nv4_mini.sys section is writeable [0xB69BB3C0, 0x80008A, 0xE8000020] ? C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\ALSysIO.sys Nazwa pliku, nazwa katalogu lub składnia etykiety woluminu jest niepoprawna. ! ---- User code sections - GMER 2.1 ---- .text C:\Program Files\Mozilla Firefox\firefox.exe[2516] ntdll.dll!LdrLoadDll 7C9163A3 5 Bytes JMP 10001FFD C:\Program Files\Mozilla Firefox\mozglue.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[2516] kernel32.dll!lstrlenW + 43 7C809ADC 7 Bytes JMP 01B10455 C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[2516] kernel32.dll!MapViewOfFileEx + 6A 7C80B990 7 Bytes JMP 01B1049D C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[2516] kernel32.dll!ValidateLocale + B1E8 7C8449F8 7 Bytes JMP 01725A06 C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[2516] GDI32.dll!SetDIBitsToDevice + 209 77F19E04 7 Bytes JMP 01B104C4 C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe[2892] USER32.dll!LoadStringW 7E369E36 5 Bytes CALL 00C411A2 C:\Program Files\DAEMON Tools Pro\BRD.dll ---- Registry - GMER 2.1 ---- Reg HKLM\SYSTEM\CurrentControlSet\Control\Video\{79E4EED3-EC1D-4437-A454-801E2DEE1395}\0000@D3D_\x3332\x3331 2089309684 Reg HKLM\SYSTEM\ControlSet003\Control\Video\{79E4EED3-EC1D-4437-A454-801E2DEE1395}\0000@D3D_\x3332\x3331 2089309684 ---- EOF - GMER 2.1 ----