GMER 2.1.19357 - http://www.gmer.net Rootkit scan 2014-03-10 11:47:30 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\0000006b TOSHIBA_ rev.AX00 298,09GB Running: d3qfb4i0.exe; Driver: C:\Users\hp\AppData\Local\Temp\uxldipow.sys ---- User code sections - GMER 2.1 ---- .text C:\Program Files (x86)\Skype\Phone\Skype.exe[2016] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000075f21465 2 bytes [F2, 75] .text C:\Program Files (x86)\Skype\Phone\Skype.exe[2016] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 0000000075f214bb 2 bytes [F2, 75] .text ... * 2 .text C:\Program Files (x86)\Skype\Phone\Skype.exe[2016] C:\Windows\SysWOW64\ksuser.dll!KsCreatePin + 35 000000006eca11a8 2 bytes [CA, 6E] .text C:\Program Files (x86)\Skype\Phone\Skype.exe[2016] C:\Windows\SysWOW64\ksuser.dll!KsCreateAllocator + 21 000000006eca13a8 2 bytes [CA, 6E] .text C:\Program Files (x86)\Skype\Phone\Skype.exe[2016] C:\Windows\SysWOW64\ksuser.dll!KsCreateClock + 21 000000006eca1422 2 bytes [CA, 6E] .text C:\Program Files (x86)\Skype\Phone\Skype.exe[2016] C:\Windows\SysWOW64\ksuser.dll!KsCreateTopologyNode + 19 000000006eca1498 2 bytes [CA, 6E] .text C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe[2144] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 69 0000000075f21465 2 bytes [F2, 75] .text C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe[2144] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 155 0000000075f214bb 2 bytes [F2, 75] .text ... * 2 .text C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe[3516] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000075f21465 2 bytes [F2, 75] .text C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe[3516] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 0000000075f214bb 2 bytes [F2, 75] .text ... * 2 ---- EOF - GMER 2.1 ----