GMER 1.0.15.15530 - http://www.gmer.net Rootkit scan 2011-01-14 18:10:26 Windows 5.1.2600 Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-e ST3808110AS rev.3.AAH Running: gmer.exe; Driver: C:\DOKUME~1\Florian\LOKALE~1\Temp\pwldypob.sys ---- System - GMER 1.0.15 ---- SSDT F7E60256 ZwCreateKey SSDT F7E6024C ZwCreateThread SSDT F7E6025B ZwDeleteKey SSDT F7E60265 ZwDeleteValueKey SSDT F7E6026A ZwLoadKey SSDT F7E60238 ZwOpenProcess SSDT F7E6023D ZwOpenThread SSDT F7E60274 ZwReplaceKey SSDT F7E6026F ZwRestoreKey SSDT F7E60260 ZwSetValueKey SSDT F7E60247 ZwTerminateProcess ---- Kernel code sections - GMER 1.0.15 ---- ? kjabtr.sys Das System kann die angegebene Datei nicht finden. ! .text C:\WINDOWS\system32\DRIVERS\nv4_mini.sys section is writeable [0xF69E6360, 0x20598D, 0xE8000020] ---- Devices - GMER 1.0.15 ---- AttachedDevice \FileSystem\Fastfat \Fat fltMgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation) ---- Disk sectors - GMER 1.0.15 ---- Disk \Device\Harddisk0\DR0 sector 32: copy of MBR ---- EOF - GMER 1.0.15 ----