GMER 1.0.15.15641 - http://www.gmer.net Rootkit scan 2011-12-12 10:43:44 Windows 6.0.6002 Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 ST9120822AS rev.3.ALC Running: vwyb9flj.exe; Driver: C:\Users\Kasia\AppData\Local\Temp\kwtoqpod.sys ---- System - GMER 1.0.15 ---- SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwAdjustPrivilegesToken [0x8EF3B28A] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwAlpcConnectPort [0x8EF55342] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwAlpcCreatePort [0x8EF55678] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwAlpcSendWaitReceivePort [0x8EF559EE] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwClose [0x8EF3BD04] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwConnectPort [0x8EF5502A] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwCreateEvent [0x8EF3C276] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwCreateMutant [0x8EF3C164] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwCreatePort [0x8EF554E8] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwCreateSection [0x8EF3B046] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwCreateSemaphore [0x8EF3C38E] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwCreateThread [0x8EF3B8BA] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwCreateWaitablePort [0x8EF555B0] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwDebugActiveProcess [0x8EF3C74E] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwDeviceIoControlFile [0x8EF3BD46] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwDuplicateObject [0x8EF3D750] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwLoadDriver [0x8EF3C840] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwMapViewOfSection [0x8EF3CDAC] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwNotifyChangeKey [0x8EF53840] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwOpenEvent [0x8EF3C308] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwOpenMutant [0x8EF3C1F0] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwOpenProcess [0x8EF3B4C4] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwOpenSection [0x8EF3CB90] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwOpenSemaphore [0x8EF3C420] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwOpenThread [0x8EF3B3B8] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwQueryDirectoryObject [0x8EF3C55C] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwQueryObject [0x8EF53A38] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwQuerySection [0x8EF3D0D2] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwQueueApcThread [0x8EF3C9E0] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwReplyPort [0x8EF557DC] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwReplyWaitReceivePort [0x8EF5572A] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwRequestWaitReplyPort [0x8EF55848] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwResumeThread [0x8EF3D5F2] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwSecureConnectPort [0x8EF551B2] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwSetContextThread [0x8EF3BBA4] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwSetInformationToken [0x8EF3C5FA] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwSetSystemInformation [0x8EF3D222] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwSuspendProcess [0x8EF3D316] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwSuspendThread [0x8EF3D450] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwSystemDebugControl [0x8EF3C670] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwTerminateProcess [0x8EF3B664] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwTerminateThread [0x8EF3B5BA] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwUnmapViewOfSection [0x8EF3CF8A] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwWriteVirtualMemory [0x8EF3B750] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwCreateThreadEx [0x8EF3BA2A] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wlh_x86]/Kaspersky Lab) ZwCreateUserProcess [0x8EF3C4A6] ---- Kernel code sections - GMER 1.0.15 ---- .text ntoskrnl.exe!KeInsertQueue + 309 82477900 4 Bytes [8A, B2, F3, 8E] .text ntoskrnl.exe!KeInsertQueue + 32D 82477924 8 Bytes [42, 53, F5, 8E, 78, 56, F5, ...] .text ntoskrnl.exe!KeInsertQueue + 371 82477968 4 Bytes [EE, 59, F5, 8E] .text ntoskrnl.exe!KeInsertQueue + 399 82477990 4 Bytes [04, BD, F3, 8E] .text ntoskrnl.exe!KeInsertQueue + 3B1 824779A8 4 Bytes [2A, 50, F5, 8E] .text ... .text bridge.sys 87A09462 519 Bytes [8B, FF, 55, 8B, EC, 81, EC, ...] .text C:\Windows\system32\drivers\ACEDRV07.sys section is writeable [0x98C08000, 0x328BA, 0xE8000020] .pklstb C:\Windows\system32\drivers\ACEDRV07.sys entry point in ".pklstb" section [0x98C4C000] .relo2 C:\Windows\system32\drivers\ACEDRV07.sys unknown last section [0x98C68000, 0x8E, 0x42000040] ---- User code sections - GMER 1.0.15 ---- ? C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] C:\Windows\system32\ntdll.dll time/date stamp mismatch; .text C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] ntdll.dll!NtProtectVirtualMemory 77B94B84 5 Bytes JMP 6AC91765 C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\ushata.dll (Ushata module/Kaspersky Lab ZAO) ? C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] C:\Windows\system32\kernel32.dll time/date stamp mismatch; .text C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] USER32.dll!SetScrollInfo + 7A8 76357980 4 Bytes [E0, 13, 54, 67] .text d:\Program Files\Tunngle\TnglCtrl.exe[2852] ntdll.dll!DbgBreakPoint 77B7884E 1 Byte [90] ? C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] C:\Windows\system32\ntdll.dll time/date stamp mismatch; .text C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] ntdll.dll!NtProtectVirtualMemory 77B94B84 5 Bytes JMP 6AC91765 C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\ushata.dll (Ushata module/Kaspersky Lab ZAO) ? C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] C:\Windows\system32\kernel32.dll time/date stamp mismatch; .text C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] USER32.dll!SetScrollInfo + 7A8 76357980 4 Bytes [E0, 13, 54, 67] ---- User IAT/EAT - GMER 1.0.15 ---- IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\kernel32.dll [ntdll.dll!RtlAllocateHeap] 7DFF05F8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\kernel32.dll [ntdll.dll!RtlFreeHeap] 7DFF0664 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\kernel32.dll [ntdll.dll!RtlSizeHeap] 7DFF06D0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\kernel32.dll [ntdll.dll!RtlReAllocateHeap] 7DFF073C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!SetErrorMode] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!HeapDestroy] 7DFF0520 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!HeapCreate] 7DFF04B4 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\RPCRT4.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\RPCRT4.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ADVAPI32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ADVAPI32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!SetErrorMode] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\USER32.dll [ntdll.dll!RtlSizeHeap] 7DFF03DC IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\USER32.dll [ntdll.dll!RtlReAllocateHeap] 7DFF0370 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\USER32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\USER32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\GDI32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\GDI32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SetErrorMode] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\CRYPT32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\CRYPT32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\CRYPT32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\CRYPT32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\CRYPT32.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\CRYPT32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\CRYPT32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\USERENV.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!SetErrorMode] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\Secur32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\Secur32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!HeapDestroy] 7DFF0520 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!HeapCreate] 7DFF04B4 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!HeapDestroy] 7DFF0520 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!SetErrorMode] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!HeapCreate] 7DFF04B4 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SHELL32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\PSAPI.DLL [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!HeapDestroy] 7DFF0520 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!HeapCreate] 7DFF04B4 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ole32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ole32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\ole32.dll [ntdll.dll!RtlReAllocateHeap] 7DFF0370 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\iphlpapi.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\iphlpapi.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\iphlpapi.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\iphlpapi.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\iphlpapi.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\iphlpapi.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\iphlpapi.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\NETAPI32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\NETAPI32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\WININET.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\WININET.dll [KERNEL32.dll!SetErrorMode] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\WININET.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\WININET.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\WININET.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\WININET.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\WININET.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\WININET.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SAMLIB.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SAMLIB.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SAMLIB.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[2356] @ C:\Windows\system32\SAMLIB.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT D:\Program Files\Logitech\Logitech WebCam Software\LWS.exe[3876] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtCreateFile] [00A92F20] C:\Windows\TEMP\logishrd\LVPrcInj01.dll (Camera Helper Library./Logitech Inc.) IAT D:\Program Files\Logitech\Logitech WebCam Software\LWS.exe[3876] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtClose] [00A92CF0] C:\Windows\TEMP\logishrd\LVPrcInj01.dll (Camera Helper Library./Logitech Inc.) IAT D:\Program Files\Logitech\Logitech WebCam Software\LWS.exe[3876] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [00A92C90] C:\Windows\TEMP\logishrd\LVPrcInj01.dll (Camera Helper Library./Logitech Inc.) IAT D:\Program Files\Logitech\Logitech WebCam Software\LWS.exe[3876] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [00A92CC0] C:\Windows\TEMP\logishrd\LVPrcInj01.dll (Camera Helper Library./Logitech Inc.) IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\kernel32.dll [ntdll.dll!RtlAllocateHeap] 7DFF05F8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\kernel32.dll [ntdll.dll!RtlFreeHeap] 7DFF0664 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\kernel32.dll [ntdll.dll!RtlSizeHeap] 7DFF06D0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\kernel32.dll [ntdll.dll!RtlReAllocateHeap] 7DFF073C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!SetErrorMode] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!HeapDestroy] 7DFF0520 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!HeapCreate] 7DFF04B4 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\RPCRT4.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\RPCRT4.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ADVAPI32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ADVAPI32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!SetErrorMode] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\USER32.dll [ntdll.dll!RtlSizeHeap] 7DFF03DC IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\USER32.dll [ntdll.dll!RtlReAllocateHeap] 7DFF0370 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\USER32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\USER32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\GDI32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\GDI32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SetErrorMode] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\CRYPT32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\CRYPT32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\CRYPT32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\CRYPT32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\CRYPT32.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\CRYPT32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\CRYPT32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\USERENV.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!SetErrorMode] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\Secur32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\Secur32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!HeapDestroy] 7DFF0520 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!HeapCreate] 7DFF04B4 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!HeapDestroy] 7DFF0520 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!SetErrorMode] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!HeapCreate] 7DFF04B4 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\SHELL32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\PSAPI.DLL [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!HeapDestroy] 7DFF0520 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!HeapCreate] 7DFF04B4 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ole32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ole32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\ole32.dll [ntdll.dll!RtlReAllocateHeap] 7DFF0370 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\NETAPI32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\NETAPI32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!FreeLibrary] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0E68 IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!HeapFree] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe[3924] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!CreateThread] 7DFF0448 ---- Devices - GMER 1.0.15 ---- AttachedDevice \Driver\kbdclass \Device\KeyboardClass0 Wdf01000.sys (Dynamiczna struktura WDF/Microsoft Corporation) AttachedDevice \Driver\kbdclass \Device\KeyboardClass1 Wdf01000.sys (Dynamiczna struktura WDF/Microsoft Corporation) AttachedDevice \Driver\tdx \Device\Tcp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO) AttachedDevice \Driver\tdx \Device\Udp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO) AttachedDevice \Driver\tdx \Device\RawIp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO) AttachedDevice \FileSystem\fastfat \Fat fltmgr.sys (Menedżer filtrów systemu plików firmy Microsoft/Microsoft Corporation) ---- Registry - GMER 1.0.15 ---- Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\0018f337f16b Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files\DAEMON Tools Lite\ Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0xD4 0xC3 0x97 0x02 ... Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 1 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0x99 0x87 0x65 0x11 ... Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0x20 0x01 0x00 0x00 ... Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x98 0xA0 0x94 0x75 ... Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0xD8 0x0B 0x17 0xC2 ... Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 0 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0x45 0x92 0xDF 0x4C ... Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@khjeh 0xB9 0x2B 0x6F 0xDE ... Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40@khjeh 0x0F 0x12 0xFB 0xB8 ... Reg HKLM\SYSTEM\ControlSet003\Services\BTHPORT\Parameters\Keys\0018f337f16b (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files\DAEMON Tools Lite\ Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0xD4 0xC3 0x97 0x02 ... Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 1 Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0x99 0x87 0x65 0x11 ... Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0x20 0x01 0x00 0x00 ... Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x98 0xA0 0x94 0x75 ... Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0xD8 0x0B 0x17 0xC2 ... Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4 (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 0 Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0x45 0x92 0xDF 0x4C ... Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001 (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@khjeh 0xB9 0x2B 0x6F 0xDE ... Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40 (not active ControlSet) Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40@khjeh 0x0F 0x12 0xFB 0xB8 ... ---- EOF - GMER 1.0.15 ----