GMER 2.1.19357 - http://www.gmer.net Rootkit scan 2016-02-13 05:54:03 Windows 5.1.2600 Dodatek Service Pack 2 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-e FUJITSU_MHY2120BH rev.0000000B 0,00MB Running: pj6xe9vn.exe; Driver: C:\DOCUME~1\p\USTAWI~1\Temp\pxtdapow.sys ---- Kernel code sections - GMER 2.1 ---- .text C:\WINDOWS\system32\DRIVERS\nv4_mini.sys section is writeable [0xF5BF0360, 0x2FE337, 0xE8000020] ---- User code sections - GMER 2.1 ---- .text C:\Program Files\AVG\Framework\Common\avguix.exe[592] CRYPT32.dll!CryptVerifyCertificateSignatureEx 77A88DE3 5 Bytes JMP 01C2B990 C:\Program Files\AVG\UiDll\2171\libcef.dll ---- Registry - GMER 2.1 ---- Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@DeviceNotSelectedTimeout 15 Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@GDIProcessHandleQuota 10000 Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@Spooler yes Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@swapdisk Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@TransmissionRetryTimeout 90 Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@USERProcessHandleQuota 10000 Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@RequireSignedAppInit_DLLs 1 ---- EOF - GMER 2.1 ----