GMER 2.2.19882 - http://www.gmer.net Rootkit scan 2016-11-17 18:17:35 Windows 6.0.6002 Service Pack 2 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-1 SanDisk_SSD_U100_128GB rev.10.01.04 119,24GB Running: GMER.exe; Driver: C:\Users\Mariusz\AppData\Local\Temp\kgtdrpow.sys ---- User code sections - GMER 2.2 ---- .text C:\Windows\Explorer.EXE[268] SHELL32.dll!SHCoCreateInstance + 657 77281A80 8 Bytes [80, 11, 74, 73, C0, 11, 74, ...] ---- Devices - GMER 2.2 ---- Device \Driver\BTHUSB \Device\00000066 bthport.sys ---- Registry - GMER 2.2 ---- Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\002269db5725 Reg HKLM\SYSTEM\ControlSet003\Services\BTHPORT\Parameters\Keys\002269db5725 (not active ControlSet) ---- Disk sectors - GMER 2.2 ---- Disk \Device\Harddisk0\DR0 unknown MBR code ---- EOF - GMER 2.2 ----