GMER 2.1.19357 - http://www.gmer.net Rootkit scan 2014-05-27 19:16:21 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 Hitachi_ rev.FB4O 298,09GB Running: 0kyez3qf.exe; Driver: C:\Users\Marek\AppData\Local\Temp\kwddikog.sys ---- Kernel code sections - GMER 2.1 ---- INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 528 fffff80002dff000 45 bytes [00, 00, 00, 00, 00, 00, 00, ...] INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 575 fffff80002dff02f 16 bytes [00, 00, 00, 00, 00, 00, 00, ...] ---- User code sections - GMER 2.1 ---- .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[1324] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000075721465 2 bytes [72, 75] .text C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[1324] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000757214bb 2 bytes [72, 75] .text ... * 2 ---- Threads - GMER 2.1 ---- Thread C:\Program Files\Windows Media Player\wmpnetwk.exe [4604:2504] 000007fefb8c2a7c Thread C:\Program Files\Windows Media Player\wmpnetwk.exe [4604:2460] 000007feedc14830 Thread C:\Program Files\Windows Media Player\wmpnetwk.exe [4604:3692] 000007fef99e5124 ---- EOF - GMER 2.1 ----