GMER 1.0.15.15281 - http://www.gmer.net Rootkit quick scan 2010-08-23 11:15:03 Windows 5.1.2600 Dodatek Service Pack 2 Running: uwgb6j24.exe; Driver: C:\DOCUME~1\DOMOWY\USTAWI~1\Temp\pxtdapow.sys ---- Disk sectors - GMER 1.0.15 ---- Disk \Device\Harddisk0\DR0 sector 05: copy of MBR ---- System - GMER 1.0.15 ---- Code 8235C0E0 pIofCallDriver ---- Devices - GMER 1.0.15 ---- Device \FileSystem\Ntfs \Ntfs 81FBDEA8 Device \Driver\NDIS \Device\Ndis [822C4982] NDIS.sys[.reloc] Device -> \Driver\nvidesm \Device\Harddisk0\DR0 820D9EC5 ---- Threads - GMER 1.0.15 ---- Thread System [4:384] 81ACF470 ---- Processes - GMER 1.0.15 ---- Process C:\lsass.exe (*** hidden *** ) 5380 ---- Services - GMER 1.0.15 ---- Service C:\WINDOWS\system32\drivers\aec.sys (*** hidden *** ) [MANUAL] aec <-- ROOTKIT !!! ---- Files - GMER 1.0.15 ---- File C:\WINDOWS\system32\drivers\nvidesm.sys suspicious modification ---- EOF - GMER 1.0.15 ----