GMER 2.1.19163 - http://www.gmer.net Rootkit scan 2013-08-31 18:28:55 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 WDC_WD2500BEVS-08VAT2 rev.14.01A14 232,89GB Running: gmer.exe; Driver: C:\Users\PROFIL~1\AppData\Local\Temp\kfwiykod.sys ---- User code sections - GMER 2.1 ---- .text C:\Program Files (x86)\Ask.com\Updater\Updater.exe[2924] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000075ac1465 2 bytes [AC, 75] .text C:\Program Files (x86)\Ask.com\Updater\Updater.exe[2924] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 0000000075ac14bb 2 bytes [AC, 75] .text ... * 2 .text C:\Users\Public\Conduit\ConduitHelper\ConduitHelper.exe[2108] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000075ac1465 2 bytes [AC, 75] .text C:\Users\Public\Conduit\ConduitHelper\ConduitHelper.exe[2108] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 0000000075ac14bb 2 bytes [AC, 75] .text ... * 2 .text C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin[1740] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000075ac1465 2 bytes [AC, 75] .text C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin[1740] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 0000000075ac14bb 2 bytes [AC, 75] .text ... * 2 ---- EOF - GMER 2.1 ----