GMER 2.1.19357 - http://www.gmer.net Rootkit scan 2015-03-04 17:37:35 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 WDC_WD10EZEX-00BN5A0 rev.01.01A01 931,51GB Running: vjsdtzdo.exe; Driver: C:\Users\User\AppData\Local\Temp\aftcaaob.sys ---- Registry - GMER 2.1 ---- Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\111111111111 Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\111111111111@7eec46662888 0x25 0xAC 0x8A 0xDA ... Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\111111111111@f4f5a554c60f 0x2D 0x1E 0x2B 0xA9 ... Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\111111111111@380a94a19cfd 0xB8 0x65 0xD7 0x63 ... Reg HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Epoch@Epoch 13119 Reg HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Epoch2@Epoch 3201 Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\111111111111 (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\111111111111@7eec46662888 0x25 0xAC 0x8A 0xDA ... Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\111111111111@f4f5a554c60f 0x2D 0x1E 0x2B 0xA9 ... Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\111111111111@380a94a19cfd 0xB8 0x65 0xD7 0x63 ... ---- EOF - GMER 2.1 ----