GMER 2.2.19882 - http://www.gmer.net Rootkit scan 2017-04-19 10:26:12 Windows 6.1.7601 Service Pack 1 x64 Running: u6xmonsb.exe ---- Registry - GMER 2.2 ---- Reg HKLM\SYSTEM\CurrentControlSet\services\aswRvrt\Parameters\Instup_14913186784142291@SetupOperations ???{)???? ??????????????????????g???v??????????????? ???z??????????????10.248.25.74?55??????????????????????????????????????????????????????????????\???????s??gendisk?nf???? ??z??????????????255.255.255.252??????????e??????????{00000000-0000-0000-ffff-ffffffffffff}???????????????????????????????????????????????????????????5??0?????????????????????????????????????????X??????&???&??? >??????????????????z??????????????????????????????????Remote Desktop Generic USB Device????y?z?z?z?z?z?z????l??z??????????????tsgenericusbdriver.inf_amd64_neutral_24c807694f614911???sse1mdu.dll?????Ultra Fit???????????????????? ??v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=137|App=System|Name=@FirewallAPI.dll,-28519|Desc=@FirewallAPI.dll,-28522|EmbedCtxt=@FirewallAPI.dll,-28502|?ed????N???????????D??????????t????????????????????????????(??z???'???'???????????z???????e???O??AL??????Microsoft???????t???????????????????????????t?????????????????????\??????????????z???????????????????{???????????z???z????? Reg HKLM\SYSTEM\ControlSet002\services\aswRvrt\Parameters\Instup_14913186784142291@SetupOperations ?????D??disk????????????????nettun.inf???t??????????{4d36e967-e325-11ce-bfc1-08002be10318}????????????????????????:??????)??????.NT?????????????? ???y????????????????$??????????????????????????????????????????????????????????????????????5??????????ce???????h???5??????????????2001:0:9d38:90d7:1862:d455:dad0:db36?d??Net?????Microsoft???? ?????????????????????0????????????????????????????@machine.inf,%acpi\fixedbutton.devicedesc%;ACPI Fixed Feature Button????v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|LPort=162|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@snmptrap.exe,-7|Desc=@snmptrap.exe,-8|EmbedCtxt=@snmptrap.exe,-3|??\??????|???? ?????????????????????0????????????&????????????????????????????????5??25??Microsoft?????T???????????????????????????????????????F?????????????????\\?\Root#*TEREDO#0000#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{9AA9C9EE-9779-4A0F-94D7-30065929E651}?????\\?\USB#VID_04E8&PID_6863#4200570accb74300#{cac8848 ---- EOF - GMER 2.2 ----