Zatím přidám dle info popisu Gmeru oba logy
log 1 - při startu programu
GMER 1.0.15.15281 -
http://www.gmer.net
Rootkit quick scan 2010-01-02 22:49:00
Windows 5.1.2600 Service Pack 2
Running: gmer.exe; Driver: C:\DOCUME~1\Carlos\LOCALS~1\Temp\pgtdipoc.sys
---- System - GMER 1.0.15 ----
SSDT sppj.sys ZwEnumerateKey [0xF72FACA2]
SSDT sppj.sys ZwEnumerateValueKey [0xF72FB030]
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Ntfs \Ntfs 871551F8
AttachedDevice \FileSystem\Ntfs \Ntfs eamon.sys (Amon monitor/ESET)
Device \FileSystem\Fastfat \Fat 861E2500
AttachedDevice \FileSystem\Fastfat \Fat eamon.sys (Amon monitor/ESET)
AttachedDevice \FileSystem\Fastfat \Fat fltMgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\Ip fwdrv.sys (Kerio Technologies)
AttachedDevice \Driver\Tcpip \Device\Ip ntkrnlpa.exe (NT Kernel & System/Microsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\Tcp fwdrv.sys (Kerio Technologies)
AttachedDevice \Driver\Tcpip \Device\Tcp ntkrnlpa.exe (NT Kernel & System/Microsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\Udp fwdrv.sys (Kerio Technologies)
AttachedDevice \Driver\Tcpip \Device\Udp ntkrnlpa.exe (NT Kernel & System/Microsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\RawIp fwdrv.sys (Kerio Technologies)
AttachedDevice \Driver\Tcpip \Device\RawIp ntkrnlpa.exe (NT Kernel & System/Microsoft Corporation)
---- Threads - GMER 1.0.15 ----
Thread System [4:436] 865E9930
---- EOF - GMER 1.0.15 ---