GMER 2.1.19357 - http://www.gmer.net Rootkit scan 2014-03-16 22:39:44 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 Samsung_SSD_840_EVO_250GB rev.EXT0BB6Q 232,89GB Running: 09pskuru.exe; Driver: D:\Temp\uglcraoc.sys ---- User code sections - GMER 2.1 ---- .text C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe[1808] C:\Windows\syswow64\kernel32.dll!SetUnhandledExceptionFilter 0000000076138769 4 bytes [C2, 04, 00, 00] .text C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe[1808] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 69 0000000076071465 2 bytes [07, 76] .text C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe[1808] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 155 00000000760714bb 2 bytes [07, 76] .text ... * 2 .text C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe[2160] C:\Windows\syswow64\kernel32.dll!CreateThread 0000000076133475 5 bytes JMP 0000000102489f28 .text C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe[2932] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000076071465 2 bytes [07, 76] .text C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe[2932] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000760714bb 2 bytes [07, 76] .text ... * 2 ---- EOF - GMER 2.1 ----