GMER 1.0.15.15281 - http://www.gmer.net Rootkit scan 2010-06-19 10:28:56 Windows 6.0.6002 Service Pack 2 Running: ns3mku9c.exe; Driver: C:\Users\marzar\AppData\Local\Temp\ffryakog.sys ---- Devices - GMER 1.0.15 ---- AttachedDevice \Driver\kbdclass \Device\KeyboardClass0 Wdf01000.sys (Aparat wykonawczy struktury sterowników trybu jądra/Microsoft Corporation) ---- Registry - GMER 1.0.15 ---- Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\0002787923ce Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\001fe1f5d89c Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\002269c9debb Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\002269c9debb@001813a70e94 0x32 0xD5 0x7C 0xAA ... Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\002269c9debb@0023f1b44ba3 0x2C 0xF5 0xF7 0xD9 ... Reg HKLM\SYSTEM\ControlSet002\Services\BTHPORT\Parameters\Keys\0002787923ce (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\Services\BTHPORT\Parameters\Keys\001fe1f5d89c (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\Services\BTHPORT\Parameters\Keys\002269c9debb (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\Services\BTHPORT\Parameters\Keys\002269c9debb@001813a70e94 0x32 0xD5 0x7C 0xAA ... Reg HKLM\SYSTEM\ControlSet002\Services\BTHPORT\Parameters\Keys\002269c9debb@0023f1b44ba3 0x2C 0xF5 0xF7 0xD9 ... ---- EOF - GMER 1.0.15 ----