GMER 2.1.19163 - http://www.gmer.net Rootkit scan 2013-09-04 19:52:29 Windows 5.1.2600 Dodatek Service Pack 3 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3 IC35L060AVV207-0 rev.V22OA66A 37,25GB Running: gmer.exe; Driver: C:\DOCUME~1\PROFIL~1\USTAWI~1\Temp\uxtdqpob.sys ---- Registry - GMER 2.1 ---- Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Epoch@Epoch 25696 Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters@DhcpNameServer 10.4.38.126 Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7BA7EDDE-965B-45D2-949B-CE66235B704B}@DhcpServer 10.4.38.126 Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7BA7EDDE-965B-45D2-949B-CE66235B704B}@Lease 86400 Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7BA7EDDE-965B-45D2-949B-CE66235B704B}@LeaseObtainedTime 1378307117 Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7BA7EDDE-965B-45D2-949B-CE66235B704B}@T1 1378350317 Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7BA7EDDE-965B-45D2-949B-CE66235B704B}@T2 1378382717 Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7BA7EDDE-965B-45D2-949B-CE66235B704B}@LeaseTerminatesTime 1378393517 Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7BA7EDDE-965B-45D2-949B-CE66235B704B}@DhcpIPAddress 10.4.38.125 Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7BA7EDDE-965B-45D2-949B-CE66235B704B}@DhcpSubnetMask 255.255.255.128 Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7BA7EDDE-965B-45D2-949B-CE66235B704B}@DhcpNameServer 10.4.38.126 Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7BA7EDDE-965B-45D2-949B-CE66235B704B}@DhcpDefaultGateway 10.4.38.126? Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{7BA7EDDE-965B-45D2-949B-CE66235B704B}@DhcpSubnetMaskOpt 255.255.255.128? Reg HKLM\SYSTEM\CurrentControlSet\Services\{7BA7EDDE-965B-45D2-949B-CE66235B704B}\Parameters\Tcpip@DhcpIPAddress 10.4.38.125 Reg HKLM\SYSTEM\CurrentControlSet\Services\{7BA7EDDE-965B-45D2-949B-CE66235B704B}\Parameters\Tcpip@DhcpSubnetMask 255.255.255.128 Reg HKLM\SYSTEM\CurrentControlSet\Services\{7BA7EDDE-965B-45D2-949B-CE66235B704B}\Parameters\Tcpip@DhcpServer 10.4.38.126 Reg HKLM\SYSTEM\CurrentControlSet\Services\{7BA7EDDE-965B-45D2-949B-CE66235B704B}\Parameters\Tcpip@Lease 86400 Reg HKLM\SYSTEM\CurrentControlSet\Services\{7BA7EDDE-965B-45D2-949B-CE66235B704B}\Parameters\Tcpip@LeaseObtainedTime 1378307117 Reg HKLM\SYSTEM\CurrentControlSet\Services\{7BA7EDDE-965B-45D2-949B-CE66235B704B}\Parameters\Tcpip@T1 1378350317 Reg HKLM\SYSTEM\CurrentControlSet\Services\{7BA7EDDE-965B-45D2-949B-CE66235B704B}\Parameters\Tcpip@T2 1378382717 Reg HKLM\SYSTEM\CurrentControlSet\Services\{7BA7EDDE-965B-45D2-949B-CE66235B704B}\Parameters\Tcpip@LeaseTerminatesTime 1378393517 Reg HKLM\SYSTEM\CurrentControlSet\Services\{7BA7EDDE-965B-45D2-949B-CE66235B704B}\Parameters\Tcpip@DhcpDefaultGateway 10.4.38.126? Reg HKLM\SYSTEM\CurrentControlSet\Services\{7BA7EDDE-965B-45D2-949B-CE66235B704B}\Parameters\Tcpip@DhcpSubnetMaskOpt 255.255.255.128? ---- EOF - GMER 2.1 ----