GMER 2.1.19357 - http://www.gmer.net Rootkit scan 2015-09-20 18:16:03 Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\00000024 TOSHIBA_MQ01ABD075 rev.AX001C 698,64GB Running: jhnmqgsg.exe; Driver: C:\Users\BartoszM\AppData\Local\Temp\pgriqpoc.sys ---- User code sections - GMER 2.1 ---- ? C:\Windows\SYSTEM32\BsHelpCSps.dll [3832] entry point in ".data" section 0000000002fa5055 ---- Threads - GMER 2.1 ---- Thread C:\WINDOWS\system32\csrss.exe [624:656] fffff960008692d0 ---- Processes - GMER 2.1 ---- Library C:\ProgramData\GG\ggdrive\ggdrive-overlay.dll (*** suspicious ***) @ C:\WINDOWS\Explorer.EXE [2116] (GG drive overlay/GG Network S.A.)(2013-01-23 15:45:56) 000000005c080000 Library C:\Users\BartoszM\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll (*** suspicious ***) @ C:\WINDOWS\Explorer.EXE [2116] (GG drive menu/GG Network S.A.)(2012-12-29 17:30:58) 000000005ff80000 ---- Disk sectors - GMER 2.1 ---- Disk \Device\Harddisk0\DR0 unknown MBR code ---- EOF - GMER 2.1 ----