GMER 2.1.19357 - http://www.gmer.net Rootkit scan 2015-10-06 14:06:42 Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\00000035 WDC_WD10S21X-24R1BT0-SSHD-8GB rev.03.01A01 931,51GB Running: 27nqxjmx.exe; Driver: C:\Users\User\AppData\Local\Temp\kxtdapob.sys ---- Kernel code sections - GMER 2.1 ---- .text C:\WINDOWS\System32\win32k.sys!W32pServiceTable fffff960000e8300 15 bytes [00, 0B, F2, 01, 00, 06, 6C, ...] .text C:\WINDOWS\System32\win32k.sys!W32pServiceTable + 16 fffff960000e8310 8 bytes [00, D7, FB, FF, 00, D3, CD, ...] ---- Threads - GMER 2.1 ---- Thread C:\WINDOWS\system32\csrss.exe [3040:4000] fffff96000304890 Thread C:\WINDOWS\system32\csrss.exe [5204:5988] fffff960008702d0 ---- Disk sectors - GMER 2.1 ---- Disk \Device\Harddisk0\DR0 unknown MBR code ---- EOF - GMER 2.1 ----