catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-10-01 19:31:34
Windows 5.1.2600 Dodatek Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg]
"s1"=dword:2df9c43f
"s2"=dword:110480d0
"h0"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"h0"=dword:00000000
"khjeh"=hex:f1,3f,3c,0a,bc,b5,8d,99,4c,25,bb,86,14,35,39,eb,04,e0,04,a8,38,..
"p0"="C:\Program Files\DAEMON Tools Lite\"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
"a0"=hex:20,01,00,00,12,94,54,03,ea,fb,c7,e3,ee,f8,36,c1,52,e8,5b,1b,a4,..
"khjeh"=hex:96,6b,98,b9,7b,bc,51,4d,5d,5e,88,0e,d8,12,d7,d1,7a,c5,99,12,96,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
"khjeh"=hex:65,2e,50,97,d9,ef,ce,65,89,e6,9f,cb,5e,aa,1d,80,f0,c4,33,09,99,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"h0"=dword:00000000
"khjeh"=hex:f1,3f,3c,0a,bc,b5,8d,99,4c,25,bb,86,14,35,39,eb,04,e0,04,a8,38,..
"p0"="C:\Program Files\DAEMON Tools Lite\"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
"a0"=hex:20,01,00,00,12,94,54,03,ea,fb,c7,e3,ee,f8,36,c1,52,e8,5b,1b,a4,..
"khjeh"=hex:96,6b,98,b9,7b,bc,51,4d,5d,5e,88,0e,d8,12,d7,d1,7a,c5,99,12,96,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
"khjeh"=hex:65,2e,50,97,d9,ef,ce,65,89,e6,9f,cb,5e,aa,1d,80,f0,c4,33,09,99,..
scanning hidden registry entries ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0