GMER 1.0.15.15641 - http://www.gmer.net Rootkit scan 2012-10-27 03:09:50 Windows 5.1.2600 Dodatek Service Pack 3 Harddisk0\DR0 -> \Device\Scsi\nvgts1Port2Path0Target0Lun0 ST310005 rev.JC45 Running: 1mhw4j7g.exe; Driver: C:\DOCUME~1\Stach\USTAWI~1\Temp\kgwiqpod.sys ---- Kernel code sections - GMER 1.0.15 ---- .text C:\WINDOWS\system32\DRIVERS\nv4_mini.sys section is writeable [0xB5A673A0, 0x5FE082, 0xE8000020] init C:\WINDOWS\system32\drivers\monfilt.sys entry point in "init" section [0xB3509280] ---- User code sections - GMER 1.0.15 ---- .text C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe[564] USER32.dll!DefWindowProcA + 11A 7E37C298 7 Bytes JMP 10053940 C:\Program Files\Sony\Sony PC Companion\NewUI.dll (New UI/Avanquest Software) .text C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe[564] USER32.dll!SetWindowRgn + 2BD 7E37E7E5 7 Bytes JMP 100537F0 C:\Program Files\Sony\Sony PC Companion\NewUI.dll (New UI/Avanquest Software) .text C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe[564] USER32.dll!SetClipboardData + 19D 7E38113B 7 Bytes JMP 10053920 C:\Program Files\Sony\Sony PC Companion\NewUI.dll (New UI/Avanquest Software) .text C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe[564] USER32.dll!MessageBoxA + 49 7E3A0833 7 Bytes JMP 10053A10 C:\Program Files\Sony\Sony PC Companion\NewUI.dll (New UI/Avanquest Software) .text C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe[564] USER32.dll!MessageBoxExW + 1F 7E3A0857 7 Bytes JMP 10053A60 C:\Program Files\Sony\Sony PC Companion\NewUI.dll (New UI/Avanquest Software) .text C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe[564] USER32.dll!MessageBoxTimeoutA + CA 7E3B64D0 7 Bytes JMP 10053990 C:\Program Files\Sony\Sony PC Companion\NewUI.dll (New UI/Avanquest Software) ---- EOF - GMER 1.0.15 ----