ive deleted it now, dont no what had created that file
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-04-25 15:23:03
Windows 6.0.6002 Service Pack 2
Running: lk22beu7.exe; Driver: C:\Users\SAULTO~1\AppData\Local\Temp\pxldapow.sys
---- Kernel code sections - GMER 1.0.15 ----
? system32\drivers\klmdb.sys The system cannot find the path specified. !
? system32\drivers\tsk5F1F.tmp The system cannot find the path specified. !
.text C:\Windows\system32\DRIVERS\nvlddmkm.sys section is writeable [0x8F007340, 0x28B977, 0xE8000020]
---- User IAT/EAT - GMER 1.0.15 ----
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetProcessHeap] 0118C6E0
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!FindFirstFileW] 0118C1C0
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!DuplicateHandle] 0118B320
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!IsDebuggerPresent] 0118CC60
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!CreateThread] 0118A2E0
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryExW] 01189C90
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetEnvironmentStringsW] 0118A010
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!SetFilePointer] 0118B180
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!MapViewOfFileEx] 0118B840
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!CreateFileMappingW] 0118B5D0
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!MapViewOfFile] 0118B7C0
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!OpenFileMappingW] 0118BCA0
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!UnmapViewOfFile] 0118B9B0
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetFileType] 0118B4D0
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!FlushViewOfFile] 0118B710
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetFileSize] 0118B2C0
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!WriteFile] 0118B140
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetACP] 0118C700
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!TerminateProcess] 0118A190
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GlobalAlloc] 0118C420
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GlobalLock] 0118C340
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GlobalUnlock] 0118C300
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!CreateFileW] 0118A9C0
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] 01189B30
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!CloseHandle] 0118B3C0
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] 01189AB0
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!FreeLibrary] 01189D20
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetProcAddress] 01188850
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!ReadFile] 0118AD10
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetVersion] 0118C6D0
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [USER32.dll!LoadIconW] 0118C9A0
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [USER32.dll!LoadCursorW] 0118C940
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [USER32.dll!CreateDialogParamW] 0118CB90
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [USER32.dll!DialogBoxParamW] 0118CC30
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [USER32.dll!LoadStringW] 0118CA60
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [ADVAPI32.dll!RegQueryValueA] 0118C650
IAT C:\Program Files\Registry Mechanic\regmech.exe[2896] @ C:\Windows\system32\ole32.dll [ADVAPI32.dll!RegCreateKeyExW] 0118C600
---- Devices - GMER 1.0.15 ----
AttachedDevice \Driver\tdx \Device\Tcp bdftdif.sys
AttachedDevice \Driver\volmgr \Device\HarddiskVolume1 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice \Driver\volmgr \Device\HarddiskVolume1 hotcore3.sys (Hotbackup helper driver/Paragon Software Group)
AttachedDevice \Driver\volmgr \Device\HarddiskVolume2 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice \Driver\volmgr \Device\HarddiskVolume2 hotcore3.sys (Hotbackup helper driver/Paragon Software Group)
AttachedDevice \Driver\volmgr \Device\HarddiskVolume3 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice \Driver\volmgr \Device\HarddiskVolume3 hotcore3.sys (Hotbackup helper driver/Paragon Software Group)
AttachedDevice \Driver\volmgr \Device\HarddiskVolume4 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice \Driver\volmgr \Device\HarddiskVolume4 hotcore3.sys (Hotbackup helper driver/Paragon Software Group)
AttachedDevice \Driver\tdx \Device\Udp bdftdif.sys
AttachedDevice \FileSystem\fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
---- EOF - GMER 1.0.15 ----