GMER 2.1.19357 - http://www.gmer.net Rootkit scan 2015-10-20 16:36:43 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 FUJITSU_MHZ2160BH_G2 rev.8909 149,05GB Running: vcyq53qe.exe; Driver: C:\Users\Daniel\AppData\Local\Temp\kwrdrpog.sys ---- Registry - GMER 2.1 ---- Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\0021868930c9 Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\0021868930c9@001e3b73958b 0xFC 0x5C 0x7B 0xD1 ... Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\0021868930c9@04a82a38dec2 0x19 0x60 0xA6 0xE0 ... Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\0021868930c9@e063e5287544 0x3A 0x35 0x90 0x17 ... Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\0021868930c9@b8d9ceff41b1 0x6E 0xAD 0x35 0xA0 ... Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\0021868930c9 (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\0021868930c9@001e3b73958b 0xFC 0x5C 0x7B 0xD1 ... Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\0021868930c9@04a82a38dec2 0x19 0x60 0xA6 0xE0 ... Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\0021868930c9@e063e5287544 0x3A 0x35 0x90 0x17 ... Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\0021868930c9@b8d9ceff41b1 0x6E 0xAD 0x35 0xA0 ... ---- EOF - GMER 2.1 ----