GMER 1.0.15.15641 - http://www.gmer.net Rootkit scan 2012-08-19 14:49:04 Windows 5.1.2600 Dodatek Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3 ST980811AS rev.3.ALB Running: gmer.exe; Driver: C:\DOCUME~1\Joker_PC\USTAWI~1\Temp\kxtdypow.sys ---- System - GMER 1.0.15 ---- SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwAdjustPrivilegesToken [0xF45BD5FA] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwClose [0xF45BDEFE] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwConnectPort [0xF45BED32] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateEvent [0xF45BF27C] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateFile [0xF45BE1DA] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateKey [0xF45BC46A] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateMutant [0xF45BF162] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateNamedPipeFile [0xF45BD1E8] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreatePort [0xF45BF036] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateSection [0xF45BD390] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateSemaphore [0xF45BF39C] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateSymbolicLinkObject [0xF45D46C0] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateThread [0xF45BDB86] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateWaitablePort [0xF45BF0CC] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwDebugActiveProcess [0xF45C0A84] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwDeleteKey [0xF45BCA74] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwDeleteValueKey [0xF45BCE28] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwDeviceIoControlFile [0xF45BE65C] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwDuplicateObject [0xF45C1C90] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwEnumerateKey [0xF45BCF74] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwEnumerateValueKey [0xF45BD00C] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwFsControlFile [0xF45BE46A] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwLoadDriver [0xF45C0B76] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwLoadKey [0xF45BC446] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwLoadKey2 [0xF45BC458] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwMapViewOfSection [0xF45D46E0] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwNotifyChangeKey [0xF45BD138] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenEvent [0xF45BF312] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenFile [0xF45BDF80] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenKey [0xF45BC62A] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenMutant [0xF45BF1F2] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenProcess [0xF45BD836] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenSection [0xF45C1078] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenSemaphore [0xF45BF432] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenThread [0xF45BD728] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwPlugPlayControl [0xF45D46D0] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwQueryKey [0xF45BD0A4] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwQueryMultipleValueKey [0xF45BCCDC] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwQuerySection [0xF45C1618] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwQueryValueKey [0xF45BC906] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwQueueApcThread [0xF45C0F0A] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwRenameKey [0xF45BCB96] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwReplaceKey [0xF45BBE80] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwReplyPort [0xF45BF796] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwReplyWaitReceivePort [0xF45BF65C] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwRequestWaitReplyPort [0xF45C081E] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwRestoreKey [0xF45BC1F8] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwResumeThread [0xF45C1B32] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSaveKey [0xF45BBE18] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSecureConnectPort [0xF45BEA78] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSetContextThread [0xF45BDDA2] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSetInformationToken [0xF45C00BE] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSetSecurityObject [0xF45C0D14] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSetSystemInformation [0xF45C1768] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSetValueKey [0xF45BC780] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSuspendProcess [0xF45C185A] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSuspendThread [0xF45C1994] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSystemDebugControl [0xF45C09A8] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwTerminateProcess [0xF45BD9D2] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwTerminateThread [0xF45BD932] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwUnmapViewOfSection [0xF45C14BC] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwWriteVirtualMemory [0xF45BDABC] INT 0x62 ? 857C9CB8 INT 0x63 ? 857C9CB8 INT 0x63 ? 857C9CB8 INT 0x63 ? 854ABCB8 INT 0x63 ? 854ABCB8 INT 0x63 ? 857C9CB8 INT 0x82 ? 857C9CB8 INT 0x84 ? 854ABCB8 INT 0xA4 ? 854ABCB8 Code \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) FsRtlCheckLockForReadAccess Code \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) IoIsOperationSynchronous ---- Kernel code sections - GMER 1.0.15 ---- .text ntkrnlpa.exe!FsRtlCheckLockForReadAccess 804E9E14 5 Bytes JMP F45AFFEC \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) .text ntkrnlpa.exe!IoIsOperationSynchronous 804EE54E 5 Bytes JMP F45B03C8 \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) .text ntkrnlpa.exe!ZwCallbackReturn + 2390 80501094 2 Bytes [FE, DE] .text ntkrnlpa.exe!ZwCallbackReturn + 23D8 805010DC 5 Bytes [62, F1, 5B, F4, E8] .text ntkrnlpa.exe!ZwCallbackReturn + 23DE 805010E2 2 Bytes [5B, F4] {POP EBX; HLT } .text ntkrnlpa.exe!ZwCallbackReturn + 23F4 805010F8 16 Bytes [90, D3, 5B, F4, 9C, F3, 5B, ...] .text ntkrnlpa.exe!ZwCallbackReturn + 24B0 805011B4 12 Bytes [76, 0B, 5C, F4, 46, C4, 5B, ...] {JBE 0xd; POP ESP; HLT ; INC ESI; LES EBX, DWORD [EBX-0xc]; POP EAX; LES EBX, DWORD [EBX-0xc]} .text ... .sptd1 C:\WINDOWS\system32\drivers\sptd.sys entry point in ".sptd1" section [0xF6F8BB2E] .text USBPORT.SYS!DllUnload F5B5A62C 5 Bytes JMP 854AB1C8 .text as44f4s6.SYS!A0DB34FC6FE35D429A28ADDE5467D4D7 F5B02CA0 48 Bytes [B3, 0D, 7E, 9C, 20, 6C, B1, ...] ? C:\WINDOWS\System32\Drivers\as44f4s6.SYS suspicious PE modification ---- User code sections - GMER 1.0.15 ---- ? C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] C:\WINDOWS\system32\ntdll.dll time/date stamp mismatch; ? C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] C:\WINDOWS\system32\kernel32.dll time/date stamp mismatch; .text C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] USER32.dll!VRipOutput 77D32A78 4 Bytes [E0, 13, 48, 6C] {LOOPNZ 0x15; DEC EAX; INSB } ? C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] C:\WINDOWS\system32\ntdll.dll time/date stamp mismatch; ? C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] C:\WINDOWS\system32\kernel32.dll time/date stamp mismatch; .text C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] USER32.dll!VRipOutput 77D32A78 4 Bytes [E0, 13, 48, 6C] {LOOPNZ 0x15; DEC EAX; INSB } ---- Kernel IAT/EAT - GMER 1.0.15 ---- IAT \WINDOWS\system32\DRIVERS\PCIIDEX.SYS[HAL.dll!WRITE_PORT_ULONG] [F6E97232] sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) IAT \WINDOWS\system32\DRIVERS\PCIIDEX.SYS[HAL.dll!READ_PORT_UCHAR] [F6E96730] sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) IAT \WINDOWS\system32\DRIVERS\PCIIDEX.SYS[HAL.dll!WRITE_PORT_UCHAR] [F6E96F12] sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) IAT atapi.sys[HAL.dll!READ_PORT_UCHAR] [F6E96730] sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) IAT atapi.sys[HAL.dll!READ_PORT_BUFFER_USHORT] [F6E96914] sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) IAT atapi.sys[HAL.dll!READ_PORT_USHORT] [F6E96856] sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) IAT atapi.sys[HAL.dll!WRITE_PORT_BUFFER_USHORT] [F6E970F0] sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) IAT atapi.sys[HAL.dll!WRITE_PORT_UCHAR] [F6E96F12] sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) IAT \SystemRoot\system32\DRIVERS\i8042prt.sys[HAL.dll!READ_PORT_UCHAR] [F6EAAEB0] sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) IAT \SystemRoot\system32\DRIVERS\tcpip.sys[TDI.SYS!TdiRegisterDeviceObject] [F701FE60] kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO) IAT \SystemRoot\system32\DRIVERS\netbt.sys[TDI.SYS!TdiRegisterDeviceObject] [F701FE60] kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO) ---- User IAT/EAT - GMER 1.0.15 ---- IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlAllocateHeap] 00C60240 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlFreeHeap] 00C602B0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlSizeHeap] 00C60320 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlReAllocateHeap] 00C60390 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!SetErrorMode] 00F304E0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 00F30550 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!GetProcAddress] 00F305C0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!FreeLibrary] 00F30630 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!GetModuleHandleA] 00F306A0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!HeapDestroy] 00C60940 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!HeapCreate] 00C609B0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!VirtualFree] 00C60A20 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!VirtualAlloc] 00C60A90 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!CreateThread] 00C60B70 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!FreeLibrary] 00F308D0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress] 00F30940 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 00F309B0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!CreateThread] 00C60CC0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!GetModuleHandleA] 00F30A20 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlFreeHeap] 00C60D30 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlAllocateHeap] 00C60DA0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlReAllocateHeap] 00C60E10 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!SetErrorMode] 00F30A90 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!CreateThread] 00C60E80 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetModuleHandleW] 00F30B00 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 00F30B70 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetModuleHandleA] 00F30BE0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!FreeLibrary] 00F30C50 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] 00F30CC0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!VirtualAlloc] 7D1E0400 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!VirtualFree] 7D1E0470 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\RPCRT4.dll [ntdll.dll!RtlFreeHeap] 7D1E04E0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\RPCRT4.dll [ntdll.dll!RtlAllocateHeap] 7D1E0550 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!VirtualFree] 7D1E0630 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] 00F30D30 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!FreeLibrary] 00F30DA0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 00F30E10 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!CreateThread] 7D1E0710 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetModuleHandleW] 00F30E80 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!VirtualAlloc] 7D1E0780 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\USER32.dll [ntdll.dll!RtlAllocateHeap] 7D1E07F0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\USER32.dll [ntdll.dll!RtlFreeHeap] 7D1E0860 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetModuleHandleW] 00F30EF0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!CreateThread] 7D1E08D0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!VirtualFree] 7D1E0A20 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetModuleHandleA] 00F30F60 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7D1F02B0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetProcAddress] 7D1F0320 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!FreeLibrary] 7D1F0390 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\GDI32.dll [ntdll.dll!RtlAllocateHeap] 7D1E0B70 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\GDI32.dll [ntdll.dll!RtlFreeHeap] 7D1E0BE0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7D1F0400 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!FreeLibrary] 7D1F0470 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] 7D1F04E0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\userenv.dll [ntdll.dll!RtlFreeHeap] 00C70400 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!SetErrorMode] 7D1F0D30 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!CreateThread] 00C70470 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!GetProcAddress] 7D1F0DA0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!FreeLibrary] 7D1F0E10 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7D1F0E80 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\secur32.dll [ntdll.dll!RtlFreeHeap] 00C70550 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\secur32.dll [ntdll.dll!RtlAllocateHeap] 00C705C0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\secur32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 00F400F0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\secur32.dll [KERNEL32.dll!GetModuleHandleW] 00F40160 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\secur32.dll [KERNEL32.dll!GetProcAddress] 00F401D0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\secur32.dll [KERNEL32.dll!FreeLibrary] 00F40240 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\netapi32.dll [ntdll.dll!RtlAllocateHeap] 00C70630 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\netapi32.dll [ntdll.dll!RtlFreeHeap] 00C706A0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\netapi32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 00F402B0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\netapi32.dll [KERNEL32.dll!FreeLibrary] 00F40320 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\netapi32.dll [KERNEL32.dll!GetProcAddress] 00F40390 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\netapi32.dll [KERNEL32.dll!CreateThread] 00C707F0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 00F408D0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!SetErrorMode] 00F40940 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetModuleHandleA] 00F409B0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetModuleHandleW] 00F40A20 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!FreeLibrary] 00F40A90 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!CreateThread] 00C70BE0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!HeapDestroy] 00C70C50 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!HeapCreate] 00C70D30 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] 00F40B00 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ole32.dll [ntdll.dll!RtlFreeHeap] 00C70E80 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetProcAddress] 00F40BE0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!FreeLibrary] 00F40C50 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetModuleHandleW] 00F40CC0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!CreateThread] 00C800F0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!VirtualAlloc] 00C80160 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 00F40D30 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHELL32.dll [ntdll.dll!RtlFreeHeap] 00C80320 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!VirtualAlloc] 00C80390 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetModuleHandleA] 00F40E10 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!HeapCreate] 00C80400 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!VirtualFree] 00C80470 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!HeapDestroy] 00C80630 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 00F40E80 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetModuleHandleW] 00F40EF0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!SetErrorMode] 00F40F60 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] 00F50010 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!CreateThread] 00C806A0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!FreeLibrary] 00F50080 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!FreeLibrary] 00F509B0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!GetProcAddress] 00F50A20 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!SetUnhandledExceptionFilter] 00F50A90 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!CreateThread] 7D1E01D0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!SetErrorMode] 7D1F01D0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!GetModuleHandleA] 7D1F0080 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!GetModuleHandleW] 7D1F00F0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7D1F0240 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!GetProcAddress] 7D1F0160 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[1844] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!FreeLibrary] 7D1F0010 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlAllocateHeap] 00F40240 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlFreeHeap] 00F402B0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlSizeHeap] 00F40320 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlReAllocateHeap] 00F40390 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!SetErrorMode] 011704E0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 01170550 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!GetProcAddress] 011705C0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!FreeLibrary] 01170630 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!GetModuleHandleA] 011706A0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!HeapDestroy] 00F40940 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!HeapCreate] 00F409B0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!VirtualFree] 00F40A20 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!VirtualAlloc] 00F40A90 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!CreateThread] 00F40B70 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!FreeLibrary] 011708D0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress] 01170940 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 011709B0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!CreateThread] 00F40CC0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!GetModuleHandleA] 01170A20 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlFreeHeap] 00F40D30 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlAllocateHeap] 00F40DA0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlReAllocateHeap] 00F40E10 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!SetErrorMode] 01170A90 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!CreateThread] 00F40E80 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetModuleHandleW] 01170B00 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 01170B70 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetModuleHandleA] 01170BE0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!FreeLibrary] 01170C50 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] 01170CC0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!VirtualAlloc] 7D1E0400 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!VirtualFree] 7D1E0470 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\RPCRT4.dll [ntdll.dll!RtlFreeHeap] 7D1E04E0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\RPCRT4.dll [ntdll.dll!RtlAllocateHeap] 7D1E0550 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!VirtualFree] 7D1E0630 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] 01170D30 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!FreeLibrary] 01170DA0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 01170E10 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!CreateThread] 7D1E0710 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetModuleHandleW] 01170E80 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!VirtualAlloc] 7D1E0780 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\USER32.dll [ntdll.dll!RtlAllocateHeap] 7D1E07F0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\USER32.dll [ntdll.dll!RtlFreeHeap] 7D1E0860 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetModuleHandleW] 01170EF0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!CreateThread] 7D1E08D0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!VirtualFree] 7D1E0A20 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetModuleHandleA] 01170F60 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7D1F02B0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetProcAddress] 7D1F0320 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!FreeLibrary] 7D1F0390 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\GDI32.dll [ntdll.dll!RtlAllocateHeap] 7D1E0B70 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\GDI32.dll [ntdll.dll!RtlFreeHeap] 7D1E0BE0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7D1F0400 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!FreeLibrary] 7D1F0470 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] 7D1F04E0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\userenv.dll [ntdll.dll!RtlFreeHeap] 00F50400 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!SetErrorMode] 7D1F0D30 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!CreateThread] 00F50470 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!GetProcAddress] 7D1F0DA0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!FreeLibrary] 7D1F0E10 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7D1F0E80 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\secur32.dll [ntdll.dll!RtlFreeHeap] 00F50550 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\secur32.dll [ntdll.dll!RtlAllocateHeap] 00F505C0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\secur32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 011800F0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\secur32.dll [KERNEL32.dll!GetModuleHandleW] 01180160 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\secur32.dll [KERNEL32.dll!GetProcAddress] 011801D0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\secur32.dll [KERNEL32.dll!FreeLibrary] 01180240 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\netapi32.dll [ntdll.dll!RtlAllocateHeap] 00F50630 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\netapi32.dll [ntdll.dll!RtlFreeHeap] 00F506A0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\netapi32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 011802B0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\netapi32.dll [KERNEL32.dll!FreeLibrary] 01180320 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\netapi32.dll [KERNEL32.dll!GetProcAddress] 01180390 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\netapi32.dll [KERNEL32.dll!CreateThread] 00F507F0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 011808D0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!SetErrorMode] 01180940 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetModuleHandleA] 011809B0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetModuleHandleW] 01180A20 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!FreeLibrary] 01180A90 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!CreateThread] 00F50BE0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!HeapDestroy] 00F50C50 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!HeapCreate] 00F50D30 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] 01180B00 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ole32.dll [ntdll.dll!RtlFreeHeap] 00F50E80 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetProcAddress] 01180BE0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!FreeLibrary] 01180C50 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetModuleHandleW] 01180CC0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!CreateThread] 00F600F0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!VirtualAlloc] 00F60160 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 01180D30 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHELL32.dll [ntdll.dll!RtlFreeHeap] 00F60320 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!VirtualAlloc] 00F60390 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetModuleHandleA] 01180E10 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!HeapCreate] 00F60400 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!VirtualFree] 00F60470 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!HeapDestroy] 00F60630 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 01180E80 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetModuleHandleW] 01180EF0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!SetErrorMode] 01180F60 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] 01190010 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!CreateThread] 00F606A0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!FreeLibrary] 01190080 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!FreeLibrary] 011A0160 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!GetProcAddress] 011A01D0 IAT C:\Program Files\Kasper\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe[2288] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!SetUnhandledExceptionFilter] 011A0240 ---- Devices - GMER 1.0.15 ---- Device \FileSystem\Ntfs \Ntfs 857D91E8 AttachedDevice \Driver\Tcpip \Device\Ip kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO) Device \Driver\usbuhci \Device\USBPDO-0 856251E8 Device \Driver\usbuhci \Device\USBPDO-1 856251E8 Device \Driver\usbuhci \Device\USBPDO-2 856251E8 Device \Driver\usbuhci \Device\USBPDO-3 856251E8 Device \Driver\usbehci \Device\USBPDO-4 85624430 AttachedDevice \Driver\Tcpip \Device\Tcp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO) Device \Driver\NetBT \Device\NetBT_Tcpip_{91C03E08-211C-420E-873C-0E0B4D4EC1DD} 85205430 Device \Driver\PCI_PNP8728 \Device\00000064 sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) Device \Driver\PCI_PNP8728 \Device\00000064 sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) Device \Driver\NetBT \Device\NetBT_Tcpip_{1A9CF173-790A-4D93-807C-7E7E280B1DD2} 85205430 Device \Driver\Cdrom \Device\CdRom0 856261E8 Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-3 857C91E8 Device \Driver\atapi \Device\Ide\IdePort0 857C91E8 Device \Driver\atapi \Device\Ide\IdePort1 857C91E8 Device \Driver\atapi \Device\Ide\IdePort2 857C91E8 Device \Driver\atapi \Device\Ide\IdePort3 857C91E8 Device \Driver\atapi \Device\Ide\IdeDeviceP3T0L0-10 857C91E8 Device \Driver\Cdrom \Device\CdRom1 856261E8 Device \Driver\NetBT \Device\NetBt_Wins_Export 85205430 Device \Driver\usbhub \Device\00000090 hcmon.sys (VMware USB monitor/VMware, Inc.) Device \Driver\NetBT \Device\NetbiosSmb 85205430 Device \Driver\NetBT \Device\NetBT_Tcpip_{7247C91E-D87C-4147-A12C-C62F89F8153E} 85205430 AttachedDevice \Driver\Tcpip \Device\Udp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO) Device \Driver\usbhub \Device\00000089 hcmon.sys (VMware USB monitor/VMware, Inc.) AttachedDevice \Driver\Tcpip \Device\RawIp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO) Device \Driver\usbuhci \Device\USBFDO-0 856251E8 Device \Driver\usbuhci \Device\USBFDO-0 hcmon.sys (VMware USB monitor/VMware, Inc.) Device \Driver\usbuhci \Device\USBFDO-1 856251E8 Device \Driver\usbuhci \Device\USBFDO-1 hcmon.sys (VMware USB monitor/VMware, Inc.) Device \Driver\usbuhci \Device\USBFDO-2 856251E8 Device \Driver\usbuhci \Device\USBFDO-2 hcmon.sys (VMware USB monitor/VMware, Inc.) Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver 8518B430 Device \Driver\usbuhci \Device\USBFDO-3 856251E8 Device \Driver\usbuhci \Device\USBFDO-3 hcmon.sys (VMware USB monitor/VMware, Inc.) Device \FileSystem\MRxSmb \Device\LanmanRedirector 8518B430 Device \Driver\usbehci \Device\USBFDO-4 85624430 Device \Driver\usbehci \Device\USBFDO-4 hcmon.sys (VMware USB monitor/VMware, Inc.) Device \Driver\as44f4s6 \Device\Scsi\as44f4s61 85467430 Device \Driver\as44f4s6 \Device\Scsi\as44f4s61Port4Path0Target0Lun0 85467430 Device \Driver\usbhub \Device\0000008d hcmon.sys (VMware USB monitor/VMware, Inc.) Device \FileSystem\Cdfs \Cdfs 852B4430 ---- Registry - GMER 1.0.15 ---- Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\2c3d4f041b0c Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files\Alcohol Soft\Alcohol 120\ Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0x72 0xB8 0xAA 0x85 ... Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0xA0 0x02 0x00 0x00 ... Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0x66 0x41 0x79 0x5C ... Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x8F 0xC1 0xC5 0x4F ... Reg HKLM\SYSTEM\ControlSet002\Services\BTHPORT\Parameters\Keys\2c3d4f041b0c (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files\Alcohol Soft\Alcohol 120\ Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0 Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0x72 0xB8 0xAA 0x85 ... Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001 (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0xA0 0x02 0x00 0x00 ... Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0x66 0x41 0x79 0x5C ... Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40 (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x8F 0xC1 0xC5 0x4F ... ---- EOF - GMER 1.0.15 ----