GMER 2.2.19882 - http://www.gmer.net Rootkit scan 2016-03-26 16:17:41 Windows 5.1.2600 Dodatek Service Pack 3 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-5 SAMSUNG_HD502HJ rev.1AJ10001 465,76GB Running: 0sxni1s6.exe; Driver: C:\DOCUME~1\Wojciech\USTAWI~1\Temp\kgxoifow.sys ---- System - GMER 2.2 ---- SSDT \SystemRoot\system32\DRIVERS\avgidsshimx.sys ZwNotifyChangeKey [0xBA4396F0] SSDT \SystemRoot\system32\DRIVERS\avgidsshimx.sys ZwNotifyChangeMultipleKeys [0xBA439820] SSDT \SystemRoot\system32\DRIVERS\avgidsshimx.sys ZwOpenProcess [0xBA439010] SSDT \SystemRoot\system32\DRIVERS\avgidsshimx.sys ZwOpenThread [0xBA4394E0] SSDT \SystemRoot\system32\DRIVERS\avgidsshimx.sys ZwSuspendProcess [0xBA439300] SSDT \SystemRoot\system32\DRIVERS\avgidsshimx.sys ZwSuspendThread [0xBA4393F0] SSDT \SystemRoot\system32\DRIVERS\avgidsshimx.sys ZwTerminateProcess [0xBA439120] SSDT \SystemRoot\system32\DRIVERS\avgidsshimx.sys ZwTerminateThread [0xBA439210] SSDT \SystemRoot\system32\DRIVERS\avgidsshimx.sys ZwWriteVirtualMemory [0xBA4395F0] ---- Kernel code sections - GMER 2.2 ---- ? kjprtei.sys Nie można odnaleźć określonego pliku. ! ---- User code sections - GMER 2.2 ---- .text C:\Program Files\Mozilla Firefox\firefox.exe[1832] ntdll.dll!LdrLoadDll 7C91632D 5 Bytes JMP 1000AF72 C:\Program Files\Mozilla Firefox\mozglue.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[1832] kernel32.dll!lstrlenW + 43 7C809AEC 7 Bytes JMP 01866F1C C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[1832] kernel32.dll!MapViewOfFileEx + 6A 7C80B9A0 7 Bytes JMP 0186653F C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[1832] kernel32.dll!ValidateLocale + B648 7C844EE0 7 Bytes JMP 015C69CE C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[1832] GDI32.dll!SetDIBitsToDevice + 20A 77F19E14 7 Bytes JMP 01865E8B C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[1832] USER32.dll!GetWindowInfo 7E37C49C 5 Bytes JMP 023DB658 C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[1832] USER32.dll!CreateWindowExW 7E37D0A3 5 Bytes JMP 015A6DAB C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[1832] USER32.dll!CreateWindowExA 7E37E4A9 5 Bytes JMP 0194FD98 C:\Program Files\Mozilla Firefox\xul.dll ---- Devices - GMER 2.2 ---- AttachedDevice \Driver\Tcpip \Device\Ip avgtdix.sys AttachedDevice \Driver\Tcpip \Device\Tcp avgtdix.sys AttachedDevice \Driver\Tcpip \Device\Udp avgtdix.sys AttachedDevice \Driver\Tcpip \Device\RawIp avgtdix.sys ---- EOF - GMER 2.2 ----