GMER 2.1.19357 - http://www.gmer.net Rootkit scan 2014-11-29 14:50:30 Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\0000001c ST1000LM024_HN-M101MBB rev.2AR20002 931.51GB Running: 9dgp17qs.exe; Driver: C:\Users\Laura\AppData\Local\Temp\kxtdapob.sys ---- Disk sectors - GMER 2.1 ---- Disk \Device\Harddisk0\DR0 unknown MBR code ---- Threads - GMER 2.1 ---- Thread C:\WINDOWS\system32\csrss.exe [584:600] fffff960008ebb90 ---- Processes - GMER 2.1 ---- Process C:\ProgramData\IePluginServices\PluginService.exe (*** suspicious ***) @ C:\ProgramData\IePluginServices\PluginService.exe [1260] (IePlugin Service/Cherished Technololgy LIMITED)(2014-09-16 06:40:11) 0000000000ef0000 Process C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe (*** suspicious ***) @ C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [1328] (WindowsProtectManger Service/Fuyu LIMITED)(2014-09-16 06:39:55) 0000000000a80000 Library C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Numerics\8e945b32dd6b4b00c900f6c01c0f3c62\System.Numerics.ni.dll (*** suspicious ***) @ C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [4280] 0000000066d20000 ---- EOF - GMER 2.1 ----