GMER 1.0.15.15641 - http://www.gmer.net Rootkit scan 2012-11-27 19:31:37 Windows 6.0.6001 Service Pack 1 Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 WDC_WD32 rev.11.0 Running: q657o7nv.exe; Driver: C:\Users\lenovo\AppData\Local\Temp\pxdirpog.sys ---- Kernel code sections - GMER 1.0.15 ---- .sptd1 C:\Windows\System32\Drivers\sptd.sys entry point in ".sptd1" section [0x8078B346] ---- Devices - GMER 1.0.15 ---- AttachedDevice \Driver\kbdclass \Device\KeyboardClass0 Wdf01000.sys (Dynamiczna struktura WDF/Microsoft Corporation) ---- Registry - GMER 1.0.15 ---- Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\0c6076d88898 Reg HKLM\SYSTEM\ControlSet003\Services\BTHPORT\Parameters\Keys\0c6076d88898 (not active ControlSet) ---- Files - GMER 1.0.15 ---- File C:\Windows\$NtUninstallKB23449$\2348497632 0 bytes File C:\Windows\$NtUninstallKB23449$\3705374530 0 bytes File C:\Windows\$NtUninstallKB23449$\3705374530\Desktop.ini 4608 bytes File C:\Windows\$NtUninstallKB23449$\3705374530\L 0 bytes File C:\Windows\$NtUninstallKB23449$\3705374530\U 0 bytes ---- EOF - GMER 1.0.15 ----