GMER 2.1.19155 - http://www.gmer.net Rootkit scan 2013-03-05 20:37:27 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP3T1L0-6 SAMSUNG_HD754JJ rev.1AJ10001 698,64GB Running: roy27pfw.exe; Driver: C:\Users\Vojak\AppData\Local\Temp\fgloypob.sys ---- User code sections - GMER 2.1 ---- .text C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE[1472] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 69 0000000077d51465 2 bytes [D5, 77] .text C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE[1472] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 155 0000000077d514bb 2 bytes [D5, 77] .text ... * 2 .text C:\Program Files (x86)\Steam\steam.exe[2568] C:\Windows\syswow64\KERNELBASE.dll!HeapCreate 00000000771f548e 5 bytes JMP 0000000100190800 .text C:\Program Files (x86)\Steam\steam.exe[2568] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 69 0000000077d51465 2 bytes [D5, 77] .text C:\Program Files (x86)\Steam\steam.exe[2568] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 155 0000000077d514bb 2 bytes [D5, 77] .text ... * 2 .text C:\Program Files (x86)\AIMP3\AIMP3.exe[2576] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000077d51465 2 bytes [D5, 77] .text C:\Program Files (x86)\AIMP3\AIMP3.exe[2576] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 0000000077d514bb 2 bytes [D5, 77] .text ... * 2 .text C:\Users\Vojak\AppData\Roaming\Dropbox\bin\Dropbox.exe[2596] C:\Windows\syswow64\Psapi.dll!GetModuleInformation + 69 0000000077d51465 2 bytes [D5, 77] .text C:\Users\Vojak\AppData\Roaming\Dropbox\bin\Dropbox.exe[2596] C:\Windows\syswow64\Psapi.dll!GetModuleInformation + 155 0000000077d514bb 2 bytes [D5, 77] .text ... * 2 .text C:\Program Files (x86)\Last.fm\Last.fm Scrobbler.exe[2124] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000077d51465 2 bytes [D5, 77] .text C:\Program Files (x86)\Last.fm\Last.fm Scrobbler.exe[2124] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 0000000077d514bb 2 bytes [D5, 77] .text ... * 2 ---- EOF - GMER 2.1 ----