GMER 2.2.19882 - http://www.gmer.net Rootkit scan 2017-01-02 23:20:38 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 TOSHIBA_MQ01ACF032 rev.AV001A 298,09GB Running: lwgqd4b3.exe; Driver: C:\Users\Konar\AppData\Local\Temp\pgddqpoc.sys ---- Threads - GMER 2.2 ---- Thread C:\windows\SysWOW64\ntdll.dll [2116:2120] 0000000000d6ebb6 Thread C:\windows\SysWOW64\ntdll.dll [2116:2752] 0000000072cc32fb ---- Registry - GMER 2.2 ---- Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\70f39568a458 Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\70f39568a458@d8b377dc8c03 0x9E 0xEE 0x72 0xDF ... Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\70f39568a458 (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\70f39568a458@d8b377dc8c03 0x9E 0xEE 0x72 0xDF ... ---- EOF - GMER 2.2 ----