GMER 1.0.15.15641 - http://www.gmer.net Rootkit scan 2012-08-27 21:32:15 Windows 5.1.2600 Dodatek Service Pack 3 Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 Intel___ rev.1.0. Running: jruhw120.exe; Driver: C:\DOCUME~1\Agata\USTAWI~1\Temp\pxtdapow.sys ---- System - GMER 1.0.15 ---- SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwAdjustPrivilegesToken [0x9C074FBA] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwClose [0x9C0758B4] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwConnectPort [0x9C08EAEE] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateEvent [0x9C075E26] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateMutant [0x9C075D14] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreatePort [0x9C08EE06] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateProcess [0x9C076056] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateProcessEx [0x9C07621E] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateSection [0x9C074D76] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateSemaphore [0x9C075F3E] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateSymbolicLinkObject [0x9C090110] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateThread [0x9C0755E6] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateWaitablePort [0x9C08EECE] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwDebugActiveProcess [0x9C07653C] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwDeleteKey [0x9C089084] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwDeleteValueKey [0x9C08A88E] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwDeviceIoControlFile [0x9C0758F6] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwDuplicateObject [0x9C07753C] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwEnumerateKey [0x9C08A088] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwEnumerateValueKey [0x9C08AA38] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwLoadDriver [0x9C07662E] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwLoadKey [0x9C089BC0] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwLoadKey2 [0x9C089E1C] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwMapViewOfSection [0x9C090130] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwNotifyChangeKey [0x9C08D30A] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenEvent [0x9C075EB8] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenMutant [0x9C075DA0] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenProcess [0x9C0751F4] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenSection [0x9C07697E] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenSemaphore [0x9C075FD0] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenThread [0x9C0750E8] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwPlugPlayControl [0x9C090120] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwQueryKey [0x9C088EB8] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwQueryMultipleValueKey [0x9C08A698] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwQueryObject [0x9C08D500] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwQuerySection [0x9C076EC0] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwQueryValueKey [0x9C08A488] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwQueueApcThread [0x9C0767CE] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwRenameKey [0x9C089198] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwReplaceKey [0x9C08980C] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwReplyPort [0x9C08F048] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwReplyWaitReceivePort [0x9C08EF96] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwRequestWaitReplyPort [0x9C08F0B4] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwRestoreKey [0x9C089A14] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwResumeThread [0x9C0773DE] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSaveKey [0x9C08933E] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSaveKeyEx [0x9C0894D4] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSaveMergedKeys [0x9C089670] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSecureConnectPort [0x9C08EC76] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSetContextThread [0x9C075756] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSetInformationToken [0x9C0763E8] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSetSystemInformation [0x9C077010] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSetValueKey [0x9C08A248] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSuspendProcess [0x9C077104] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSuspendThread [0x9C07723E] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSystemDebugControl [0x9C07645E] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwTerminateProcess [0x9C075392] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwTerminateThread [0x9C0752EA] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwUnmapViewOfSection [0x9C076D78] SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwWriteVirtualMemory [0x9C07547C] INT 0x63 ? 8AEC4CB8 INT 0x63 ? 896F7CB8 INT 0x83 ? 8AEC8CB8 INT 0x83 ? 896F7CB8 INT 0x83 ? 8AEC8CB8 INT 0x84 ? 896F7CB8 INT 0xA4 ? 896F7CB8 INT 0xA4 ? 896F7CB8 INT 0xA4 ? 896F7CB8 INT 0xA4 ? 896F7CB8 INT 0xB4 ? 896F7CB8 Code \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) FsRtlCheckLockForReadAccess Code \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) IoIsOperationSynchronous ---- Kernel code sections - GMER 1.0.15 ---- .text ntkrnlpa.exe!FsRtlCheckLockForReadAccess 804EAF84 5 Bytes JMP 9C0679F0 \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) .text ntkrnlpa.exe!IoIsOperationSynchronous 804EF92C 5 Bytes JMP 9C067DCC \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) .text ntkrnlpa.exe!ZwCallbackReturn + 2C58 80504510 4 Bytes [EE, EA, 08, 9C] .text ntkrnlpa.exe!ZwCallbackReturn + 2C94 8050454C 12 Bytes [06, EE, 08, 9C, 56, 60, 07, ...] {PUSH ES; OUT DX, AL ; OR [ESI+EDX*2+0x1e9c0760], BL; BOUND EAX, [EDI]; PUSHF } .text ntkrnlpa.exe!ZwCallbackReturn + 2CA4 8050455C 16 Bytes [76, 4D, 07, 9C, 3E, 5F, 07, ...] .text ntkrnlpa.exe!ZwCallbackReturn + 2D60 80504618 12 Bytes [2E, 66, 07, 9C, C0, 9B, 08, ...] .text ntkrnlpa.exe!ZwCallbackReturn + 2DDC 80504694 4 Bytes CALL C4EC4DE9 .text ... .sptd1 C:\WINDOWS\system32\drivers\sptd.sys entry point in ".sptd1" section [0xB9F83B2E] .text C:\WINDOWS\system32\DRIVERS\ati2mtag.sys section is writeable [0xB7DD4000, 0x19DA46, 0xE8000020] .text USBPORT.SYS!DllUnload B7D8B8AC 5 Bytes JMP 896F71C8 ---- User code sections - GMER 1.0.15 ---- ? C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] C:\WINDOWS\system32\ntdll.dll time/date stamp mismatch; .text C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] ntdll.dll!NtProtectVirtualMemory 7C90D6EE 5 Bytes JMP 6AC91765 C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\ushata.dll (Ushata module/Kaspersky Lab ZAO) ? C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] C:\WINDOWS\system32\kernel32.dll time/date stamp mismatch; .text C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] USER32.dll!AlignRects 7E362A78 4 Bytes [E0, 13, 54, 67] ? C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] C:\WINDOWS\system32\ntdll.dll time/date stamp mismatch; .text C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] ntdll.dll!NtProtectVirtualMemory 7C90D6EE 5 Bytes JMP 6AC91765 C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\ushata.dll (Ushata module/Kaspersky Lab ZAO) ? C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] C:\WINDOWS\system32\kernel32.dll time/date stamp mismatch; .text C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] USER32.dll!AlignRects 7E362A78 4 Bytes [E0, 13, 54, 67] .text C:\Program Files\Mozilla Firefox\plugin-container.exe[2488] USER32.dll!DefWindowProcA + 11A 7E37C298 7 Bytes JMP 1067C453 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation) .text C:\Program Files\Mozilla Firefox\plugin-container.exe[2488] USER32.dll!SetWindowLongA + 19 7E37C2B6 7 Bytes JMP 1067C3E2 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation) .text C:\Program Files\Mozilla Firefox\plugin-container.exe[2488] USER32.dll!GetWindowInfo 7E37C49C 5 Bytes JMP 1043BACC C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation) .text C:\Program Files\Mozilla Firefox\plugin-container.exe[2488] USER32.dll!GetMenuContextHelpId + 1A 7E3B5319 7 Bytes JMP 1043C0F9 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation) .text C:\Program Files\Mozilla Firefox\firefox.exe[3576] ntdll.dll!LdrLoadDll 7C91632D 5 Bytes JMP 011BB52A C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation) .text C:\Program Files\Mozilla Firefox\firefox.exe[3576] kernel32.dll!lstrlenW + 43 7C809AEC 7 Bytes JMP 0146B6F5 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation) .text C:\Program Files\Mozilla Firefox\firefox.exe[3576] kernel32.dll!MapViewOfFileEx + 6A 7C80B9A0 7 Bytes JMP 0146B6D2 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation) .text C:\Program Files\Mozilla Firefox\firefox.exe[3576] GDI32.dll!SetDIBitsToDevice + 20A 77F19E14 7 Bytes JMP 0146B653 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation) ---- Kernel IAT/EAT - GMER 1.0.15 ---- IAT \WINDOWS\system32\DRIVERS\PCIIDEX.SYS[HAL.dll!WRITE_PORT_ULONG] [B9E8F232] sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) IAT \WINDOWS\system32\DRIVERS\PCIIDEX.SYS[HAL.dll!READ_PORT_UCHAR] [B9E8E730] sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) IAT \WINDOWS\system32\DRIVERS\PCIIDEX.SYS[HAL.dll!WRITE_PORT_UCHAR] [B9E8EF12] sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) IAT atapi.sys[HAL.dll!READ_PORT_UCHAR] [B9E8E730] sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) IAT atapi.sys[HAL.dll!READ_PORT_BUFFER_USHORT] [B9E8E914] sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) IAT atapi.sys[HAL.dll!READ_PORT_USHORT] [B9E8E856] sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) IAT atapi.sys[HAL.dll!WRITE_PORT_BUFFER_USHORT] [B9E8F0F0] sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) IAT atapi.sys[HAL.dll!WRITE_PORT_UCHAR] [B9E8EF12] sptd.sys (SCSI Pass Through Direct Host/Duplex Secure Ltd.) IAT \SystemRoot\system32\DRIVERS\tcpip.sys[TDI.SYS!TdiRegisterDeviceObject] [B999EE60] kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO) IAT \SystemRoot\system32\DRIVERS\netbt.sys[TDI.SYS!TdiRegisterDeviceObject] [B999EE60] kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO) ---- User IAT/EAT - GMER 1.0.15 ---- IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlAllocateHeap] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlFreeHeap] 7DFF05F8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlSizeHeap] 7DFF0664 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlReAllocateHeap] 7DFF06D0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!SetErrorMode] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlReAllocateHeap] 7DFF0370 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\RPCRT4.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\RPCRT4.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\Secur32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\Secur32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!SetErrorMode] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!HeapDestroy] 7DFF0520 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!HeapCreate] 7DFF04B4 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\NETAPI32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\NETAPI32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\USER32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\USER32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\GDI32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\GDI32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!HeapCreate] 7DFF04B4 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!HeapDestroy] 7DFF0520 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!SetErrorMode] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!HeapDestroy] 7DFF0520 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!HeapCreate] 7DFF04B4 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!HeapCreate] 7DFF04B4 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!HeapDestroy] 7DFF0520 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!SetErrorMode] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\SHELL32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\ole32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!SetErrorMode] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\userenv.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!SetErrorMode] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[1784] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlAllocateHeap] 7DFF058C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlFreeHeap] 7DFF05F8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlSizeHeap] 7DFF0664 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlReAllocateHeap] 7DFF06D0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!SetErrorMode] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlReAllocateHeap] 7DFF0370 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\RPCRT4.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\RPCRT4.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\Secur32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\Secur32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!SetErrorMode] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!HeapDestroy] 7DFF0520 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!HeapCreate] 7DFF04B4 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\NETAPI32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\NETAPI32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\USER32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\USER32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\GDI32.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\GDI32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!HeapCreate] 7DFF04B4 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!HeapDestroy] 7DFF0520 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!SetErrorMode] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!HeapDestroy] 7DFF0520 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!HeapCreate] 7DFF04B4 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!HeapCreate] 7DFF04B4 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!HeapDestroy] 7DFF0520 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!SetErrorMode] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SHELL32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!SetErrorMode] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\userenv.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\ole32.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!HeapCreate] 7DFF04B4 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!HeapDestroy] 7DFF0520 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\iphlpapi.dll [ntdll.dll!RtlFreeHeap] 7DFF0304 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\iphlpapi.dll [ntdll.dll!RtlAllocateHeap] 7DFF0298 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\wininet.dll [KERNEL32.dll!CreateThread] 7DFF0448 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\wininet.dll [KERNEL32.dll!SetErrorMode] 7DFF0D90 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\wininet.dll [KERNEL32.dll!GetModuleHandleA] 7DFF0C4C IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\wininet.dll [KERNEL32.dll!GetModuleHandleW] 7DFF0CB8 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\wininet.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\wininet.dll [KERNEL32.dll!GetProcAddress] 7DFF0D24 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\wininet.dll [KERNEL32.dll!FreeLibrary] 7DFF0BE0 IAT C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[2044] @ C:\WINDOWS\system32\SAMLIB.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7DFF0DFC ---- Devices - GMER 1.0.15 ---- Device \FileSystem\Ntfs \Ntfs 8AF091E8 Device \Driver\NetBT \Device\NetBT_Tcpip_{226A20B4-97FE-47F4-8786-ADCD56FF2C83} 8887F1E8 AttachedDevice \Driver\Tcpip \Device\Ip kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO) Device \Driver\usbuhci \Device\USBPDO-0 895CA1E8 Device \Driver\usbuhci \Device\USBPDO-1 895CA1E8 Device \Driver\usbuhci \Device\USBPDO-2 895CA1E8 Device \Driver\usbehci \Device\USBPDO-3 896E81E8 Device \Driver\usbuhci \Device\USBPDO-4 895CA1E8 AttachedDevice \Driver\Tcpip \Device\Tcp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO) Device \Driver\usbuhci \Device\USBPDO-5 895CA1E8 Device \Driver\usbuhci \Device\USBPDO-6 895CA1E8 Device \Driver\usbehci \Device\USBPDO-7 896E81E8 Device \Driver\Cdrom \Device\CdRom0 8959A1E8 Device \Driver\iaStor \Device\Ide\iaStor0 [B986AEB0] iaStor.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX} Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 [B986AEB0] iaStor.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX} Device \Driver\iaStor \Device\Ide\IAAStorageDevice-1 [B986AEB0] iaStor.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX} Device \Driver\NetBT \Device\NetBt_Wins_Export 8887F1E8 Device \Driver\NetBT \Device\NetbiosSmb 8887F1E8 AttachedDevice \Driver\Tcpip \Device\Udp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO) AttachedDevice \Driver\Tcpip \Device\RawIp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO) Device \Driver\usbuhci \Device\USBFDO-0 895CA1E8 Device \Driver\USBSTOR \Device\0000007a 895FD1E8 Device \Driver\usbuhci \Device\USBFDO-1 895CA1E8 Device \Driver\USBSTOR \Device\0000007b 895FD1E8 Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver 8887D1E8 Device \Driver\usbuhci \Device\USBFDO-2 895CA1E8 Device \FileSystem\MRxSmb \Device\LanmanRedirector 8887D1E8 Device \Driver\usbehci \Device\USBFDO-3 896E81E8 Device \Driver\usbuhci \Device\USBFDO-4 895CA1E8 Device \Driver\usbuhci \Device\USBFDO-5 895CA1E8 Device \Driver\usbuhci \Device\USBFDO-6 895CA1E8 Device \Driver\usbehci \Device\USBFDO-7 896E81E8 Device \Driver\mv61xx \Device\Scsi\mv61xx1Port1Path0Target14Lun0 8AF0A1E8 Device \Driver\mv61xx \Device\Scsi\mv61xx1 8AF0A1E8 Device \FileSystem\Cdfs \Cdfs 8951A430 ---- Registry - GMER 1.0.15 ---- Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0x32 0x59 0xDA 0x38 ... Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0x00 0x00 0x00 0x00 ... Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 1 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0x46 0xB8 0xC5 0xB4 ... Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0 Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0x32 0x59 0xDA 0x38 ... Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0x00 0x00 0x00 0x00 ... Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 1 Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0x46 0xB8 0xC5 0xB4 ... ---- Files - GMER 1.0.15 ---- File C:\Program Files\Common Files\ParetoLogic 0 bytes File C:\Program Files\Common Files\ParetoLogic\UUS3 0 bytes File C:\Program Files\Common Files\ParetoLogic\UUS3\Images 0 bytes File C:\Program Files\Common Files\ParetoLogic\UUS3\Images\ad_generic.jpg 12448 bytes File C:\Program Files\Common Files\ParetoLogic\UUS3\Images\close.png 3454 bytes File C:\Program Files\Common Files\ParetoLogic\UUS3\Images\close_md.png 3484 bytes File C:\Program Files\Common Files\ParetoLogic\UUS3\Images\close_mo.png 3608 bytes File C:\Program Files\Common Files\ParetoLogic\UUS3\Images\close_pu.png 3653 bytes File C:\Program Files\Common Files\ParetoLogic\UUS3\Images\close_pu_md.png 3714 bytes File C:\Program Files\Common Files\ParetoLogic\UUS3\Images\close_pu_mo.png 3829 bytes File C:\Program Files\Common Files\ParetoLogic\UUS3\Images\Logo.png 7006 bytes File C:\Program Files\Common Files\ParetoLogic\UUS3\Images\min.png 3269 bytes File C:\Program Files\Common Files\ParetoLogic\UUS3\Images\min_md.png 3304 bytes File C:\Program Files\Common Files\ParetoLogic\UUS3\Images\min_mo.png 3430 bytes File C:\Program Files\Common Files\ParetoLogic\UUS3\Images\progress_glow.png 999 bytes File C:\Program Files\Common Files\ParetoLogic\UUS3\Images\topbar_gradient.png 2872 bytes File C:\Program Files\Common Files\ParetoLogic\UUS3\LiteUnzip.dll 47616 bytes executable File C:\Program Files\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe 565952 bytes executable File C:\Program Files\Common Files\ParetoLogic\UUS3\settings.xml 1804 bytes File C:\Program Files\Common Files\ParetoLogic\UUS3\UUS3.dll 509632 bytes File C:\Program Files\ParetoLogic 0 bytes File C:\Program Files\ParetoLogic\PCHA 0 bytes File C:\Program Files\ParetoLogic\PCHA\7ZipDLL.dll 526336 bytes executable File C:\Program Files\ParetoLogic\PCHA\colors.xml 5557 bytes File C:\Program Files\ParetoLogic\PCHA\CommonLoggingExtension.pxt 180224 bytes executable File C:\Program Files\ParetoLogic\PCHA\CommonSpecialist.pxt 210944 bytes File C:\Program Files\ParetoLogic\PCHA\ExtensionManager.dll 107520 bytes executable File C:\Program Files\ParetoLogic\PCHA\HandleUpdate.dll 210432 bytes File C:\Program Files\ParetoLogic\PCHA\HTML 0 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\0_days.htm 2671 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\15_days.htm 2765 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\1_days.htm 2691 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\2_days.htm 2645 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\30_days.htm 2684 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\5_days.htm 2687 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\container_content_bkimg.gif 114 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\container_content_leftimg.gif 298 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\container_content_rightimg.gif 296 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\error_connect.html 1353 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\images 0 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\images\10x10.gif 49 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\images\10x10tile.gif 49 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\images\contentwrapper.gif 133 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\images\error_internet.jpg 10078 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\images\footerbarfill.gif 156 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\images\info_bubble.jpg 6999 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\images\pcha_background.jpg 17846 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\images\tile_footerbarbase.jpg 609 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\images\tile_subheadbarbase.jpg 626 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\images\tile_titlebarbase.jpg 576 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\main.css 2051 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\main_error.css 4223 bytes File C:\Program Files\ParetoLogic\PCHA\HTML\package_titlebar_bkimg.jpg 573 bytes File C:\Program Files\ParetoLogic\PCHA\Images 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button.png 6834 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_bho_mgr.png 12166 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_defrag.png 13671 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_defrag_schedule.png 13671 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_driver.png 10515 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_extmgr.png 5916 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_generalsettings.png 11807 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_icons.png 7695 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_ignore.png 7921 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_optimize.png 11673 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_over.png 7116 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_privacy.png 9345 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_process_mgr.png 11177 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_registry.png 12081 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_restore.png 11161 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_scansettings.png 10129 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_schedule.png 10213 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_startup_mgr.png 10939 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\header_about.png 14330 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\header_bho.png 15025 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\header_clean.png 14975 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\header_defrag.png 15016 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\header_disk.png 14171 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\header_driver.png 14568 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\header_duplicate.png 14087 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\header_extmgr.png 13571 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\header_optimize.png 15798 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\header_process.png 14765 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\header_processes.png 14943 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\header_registry.png 14361 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\header_restore.png 15322 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\header_settings.png 15110 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\header_startup.png 15243 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\header_summary.png 12613 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\settings_defrag_schedule.png 16649 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\settings_general.png 16481 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\settings_icons.png 16401 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\settings_ignore.png 15958 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\settings_privacy.png 16196 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\settings_registry.png 16230 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\settings_scan.png 16821 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\settings_schedule.png 16272 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\startbg.png 13141 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\startbg_over.png 11818 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\vdb.png 12166 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\button_duplicate.png 9224 bytes File C:\Program Files\ParetoLogic\PCHA\Images\buttons and headers\header_privacy.png 14349 bytes File C:\Program Files\ParetoLogic\PCHA\Images\defrag 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\defrag\c_frag.png 2919 bytes File C:\Program Files\ParetoLogic\PCHA\Images\defrag\c_unfrag.png 2938 bytes File C:\Program Files\ParetoLogic\PCHA\Images\defrag\c_unknown.png 2929 bytes File C:\Program Files\ParetoLogic\PCHA\Images\defrag\c_unmove.png 2943 bytes File C:\Program Files\ParetoLogic\PCHA\Images\detected_items.png 8755 bytes File C:\Program Files\ParetoLogic\PCHA\Images\email_logo.png 19191 bytes File C:\Program Files\ParetoLogic\PCHA\Images\general 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\general\collapse.png 3504 bytes File C:\Program Files\ParetoLogic\PCHA\Images\general\delete.png 3691 bytes File C:\Program Files\ParetoLogic\PCHA\Images\general\expand.png 3467 bytes File C:\Program Files\ParetoLogic\PCHA\Images\general\open.png 3330 bytes File C:\Program Files\ParetoLogic\PCHA\Images\general\progress_glow.png 3932 bytes File C:\Program Files\ParetoLogic\PCHA\Images\general\recycle.png 3454 bytes File C:\Program Files\ParetoLogic\PCHA\Images\general\x.png 4475 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\bho.png 5473 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\dup_audio.png 4393 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\dup_doc.png 4168 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\dup_image.png 4114 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\dup_other.png 4384 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\dup_video.png 4358 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\ig_drivers.png 5443 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\ig_proc.png 5694 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\ig_reg.png 5152 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\priv_3rd.png 5433 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\priv_browser.png 5469 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\priv_email.png 5211 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\priv_fs.png 5235 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\priv_im.png 5358 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\priv_multi.png 5583 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\priv_office.png 5237 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\priv_other.png 5360 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\priv_windows.png 5254 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\reg_apppath.png 4775 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\reg_com.png 5056 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\reg_dll.png 5370 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\reg_empty.png 4965 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\reg_extensions.png 5355 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\reg_filepath.png 4816 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\reg_font.png 5073 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\reg_help.png 5372 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\reg_shortcut.png 5122 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\reg_startup.png 5420 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\reg_uninstall.png 5286 bytes File C:\Program Files\ParetoLogic\PCHA\Images\group\startup.png 5196 bytes File C:\Program Files\ParetoLogic\PCHA\Images\health rating 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\health rating\pchealth_high.png 7124 bytes File C:\Program Files\ParetoLogic\PCHA\Images\health rating\pchealth_high_short.png 6756 bytes File C:\Program Files\ParetoLogic\PCHA\Images\health rating\pchealth_low.png 7494 bytes File C:\Program Files\ParetoLogic\PCHA\Images\health rating\pchealth_low_short.png 7198 bytes File C:\Program Files\ParetoLogic\PCHA\Images\health rating\pchealth_medium.png 8080 bytes File C:\Program Files\ParetoLogic\PCHA\Images\health rating\pchealth_medium_short.png 7705 bytes File C:\Program Files\ParetoLogic\PCHA\Images\health rating\pchealth_unrated.png 8022 bytes File C:\Program Files\ParetoLogic\PCHA\Images\health rating\pchealth_unrated_short.png 7693 bytes File C:\Program Files\ParetoLogic\PCHA\Images\home settings 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\home settings\button_outline.png 2963 bytes File C:\Program Files\ParetoLogic\PCHA\Images\home settings\no_1.png 3082 bytes File C:\Program Files\ParetoLogic\PCHA\Images\home settings\no_2.png 3151 bytes File C:\Program Files\ParetoLogic\PCHA\Images\home settings\no_3.png 3175 bytes File C:\Program Files\ParetoLogic\PCHA\Images\home settings\no_4.png 3138 bytes File C:\Program Files\ParetoLogic\PCHA\Images\home settings\no_5.png 3141 bytes File C:\Program Files\ParetoLogic\PCHA\Images\home settings\no_6.png 3188 bytes File C:\Program Files\ParetoLogic\PCHA\Images\info.jpg 2161 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\drivers 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\drivers\cd.png 4508 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\drivers\cpu.png 4118 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\drivers\disk.png 4275 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\drivers\display.png 4284 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\drivers\driver_outdated.png 5713 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\drivers\driver_uptodate.png 5809 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\drivers\floppy.png 4128 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\drivers\mouse_key.png 4529 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\drivers\other.png 3922 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\drivers\outdated.png 4274 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\drivers\power.png 4463 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\drivers\printer.png 4528 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\drivers\software.png 4365 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\drivers\system.png 4367 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\drivers\uptodate.png 4446 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\drivers\usb.png 4293 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\other.png 4405 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\process 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\process\bho.png 4491 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\process\process.png 4399 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\process\startup.png 4373 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\recommendations 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\recommendations\rec_malware16.png 3629 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\recommendations\rec_malware24.png 4500 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\recommendations\rec_malware32.png 5494 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\recommendations\rec_system16.png 3687 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\recommendations\rec_system24.png 4535 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\recommendations\rec_system32.png 5587 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\recommendations\rec_unknown16.png 3512 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\recommendations\rec_unknown24.png 4495 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\recommendations\rec_unknown32.png 5476 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\recommendations\rec_unwanted16.png 3646 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\recommendations\rec_unwanted24.png 4486 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\recommendations\rec_unwanted32.png 5473 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\recommendations\rec_userapp16.png 3656 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\recommendations\rec_userapp24.png 4499 bytes File C:\Program Files\ParetoLogic\PCHA\Images\list\recommendations\rec_userapp32.png 5531 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\bg.png 169649 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\bg_logo.png 10593 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\left_stretch.png 2841 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\lower_left.png 3297 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\lower_right.png 3263 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\lower_stretch.png 2857 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\nav_back.png 4140 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\nav_bg.png 5626 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\nav_forward.png 4223 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\right_stretch.png 2834 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\tabs 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\tabs\active_tab_left.png 3596 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\tabs\active_tab_right.png 3923 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\tabs\active_tab_stretch.png 3159 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\tabs\tab_left.png 3080 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\tabs\tab_right.png 3122 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\tabs\tab_stretch.png 2831 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\upper_left.png 953 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\upper_right.png 971 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Main\upper_stretch.png 272 bytes File C:\Program Files\ParetoLogic\PCHA\Images\progress 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\progress\add_check.png 2404 bytes File C:\Program Files\ParetoLogic\PCHA\Images\progress\add_error.png 2068 bytes File C:\Program Files\ParetoLogic\PCHA\Images\progress\add_unknown.png 5169 bytes File C:\Program Files\ParetoLogic\PCHA\Images\progress\scan.png 7099 bytes File C:\Program Files\ParetoLogic\PCHA\Images\progress\small_driver.png 4274 bytes File C:\Program Files\ParetoLogic\PCHA\Images\progress\small_md5.png 4399 bytes File C:\Program Files\ParetoLogic\PCHA\Images\progress\small_privacy.png 4311 bytes File C:\Program Files\ParetoLogic\PCHA\Images\progress\small_registry.png 4263 bytes File C:\Program Files\ParetoLogic\PCHA\Images\register.png 20066 bytes File C:\Program Files\ParetoLogic\PCHA\Images\register_over.png 20102 bytes File C:\Program Files\ParetoLogic\PCHA\Images\registration.png 4544 bytes File C:\Program Files\ParetoLogic\PCHA\Images\results page 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\results page\drivers_green.png 6495 bytes File C:\Program Files\ParetoLogic\PCHA\Images\results page\drivers_red.png 6418 bytes File C:\Program Files\ParetoLogic\PCHA\Images\results page\drivers_yellow.png 6338 bytes File C:\Program Files\ParetoLogic\PCHA\Images\results page\malware_green.png 6049 bytes File C:\Program Files\ParetoLogic\PCHA\Images\results page\malware_red.png 5960 bytes File C:\Program Files\ParetoLogic\PCHA\Images\results page\privacy_green.png 6247 bytes File C:\Program Files\ParetoLogic\PCHA\Images\results page\privacy_red.png 6255 bytes File C:\Program Files\ParetoLogic\PCHA\Images\results page\processes_green.png 6420 bytes File C:\Program Files\ParetoLogic\PCHA\Images\results page\processes_red.png 6326 bytes File C:\Program Files\ParetoLogic\PCHA\Images\results page\registry_green.png 5807 bytes File C:\Program Files\ParetoLogic\PCHA\Images\results page\registry_red.png 5805 bytes File C:\Program Files\ParetoLogic\PCHA\Images\results page\startup_green.png 6115 bytes File C:\Program Files\ParetoLogic\PCHA\Images\results page\startup_red.png 6062 bytes File C:\Program Files\ParetoLogic\PCHA\Images\scanning 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\scanning\driver.png 14967 bytes File C:\Program Files\ParetoLogic\PCHA\Images\scanning\privacy.png 14609 bytes File C:\Program Files\ParetoLogic\PCHA\Images\scanning\process.png 15556 bytes File C:\Program Files\ParetoLogic\PCHA\Images\scanning\registry.png 14634 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\1.png 36100 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\10.png 37371 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\11.png 37546 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\12.png 37639 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\13.png 37752 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\14.png 37835 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\15.png 37892 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\16.png 37890 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\17.png 37790 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\18.png 37701 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\19.png 37605 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\2.png 36144 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\20.png 37552 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\21.png 37427 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\22.png 37348 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\23.png 37061 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\24.png 36748 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\25.png 36100 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\3.png 36203 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\4.png 36319 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\5.png 36612 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\6.png 36740 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\7.png 36838 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\8.png 36917 bytes File C:\Program Files\ParetoLogic\PCHA\Images\Start Anim\9.png 37104 bytes File C:\Program Files\ParetoLogic\PCHA\Images\tab icons 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\tab icons\nav-disk.png 4087 bytes File C:\Program Files\ParetoLogic\PCHA\Images\tab icons\nav-optimize.png 4531 bytes File C:\Program Files\ParetoLogic\PCHA\Images\tab icons\nav-scan.png 4091 bytes File C:\Program Files\ParetoLogic\PCHA\Images\tab icons\nav-settings.png 4396 bytes File C:\Program Files\ParetoLogic\PCHA\Images\tfn_email.png 8246 bytes File C:\Program Files\ParetoLogic\PCHA\Images\tfn_frame.png 3257 bytes File C:\Program Files\ParetoLogic\PCHA\Images\top nav icons 0 bytes File C:\Program Files\ParetoLogic\PCHA\Images\top nav icons\help_down.png 5187 bytes File C:\Program Files\ParetoLogic\PCHA\Images\top nav icons\help_normal.png 5202 bytes File C:\Program Files\ParetoLogic\PCHA\Images\top nav icons\help_over.png 5136 bytes File C:\Program Files\ParetoLogic\PCHA\Images\top nav icons\info_down.png 5042 bytes File C:\Program Files\ParetoLogic\PCHA\Images\top nav icons\info_normal.png 5057 bytes File C:\Program Files\ParetoLogic\PCHA\Images\top nav icons\info_over.png 4989 bytes File C:\Program Files\ParetoLogic\PCHA\Images\warning.jpg 1969 bytes File C:\Program Files\ParetoLogic\PCHA\LiteUnzip.dll 47616 bytes executable File C:\Program Files\ParetoLogic\PCHA\LiteZip.dll 39936 bytes executable File C:\Program Files\ParetoLogic\PCHA\LogSettings.xml 992 bytes File C:\Program Files\ParetoLogic\PCHA\MyResources.dll 565584 bytes executable File C:\Program Files\ParetoLogic\PCHA\noapp.exe 364032 bytes executable File C:\Program Files\ParetoLogic\PCHA\PCHA.exe 4873040 bytes executable File C:\Program Files\ParetoLogic\PCHA\privacy.db 38928 bytes File C:\Program Files\ParetoLogic\PCHA\RegHookSpecialist.pxt 176640 bytes executable File C:\Program Files\ParetoLogic\PCHA\SandBoxer.dll 552960 bytes executable File C:\Program Files\ParetoLogic\PCHA\settings.xml 951 bytes File C:\Program Files\ParetoLogic\PCHA\sqlite3.dll 333043 bytes executable File C:\Program Files\ParetoLogic\PCHA\tfn.xml 266 bytes File C:\Program Files\ParetoLogic\PCHA\uninstall.exe 267296 bytes executable File C:\Program Files\ParetoLogic\PCHA\UNS.xml 950 bytes File C:\Program Files\ParetoLogic\PCHA\Utility.pxt 1047040 bytes File C:\Program Files\ParetoLogic\PCHA\whitelist.dat 7528 bytes ---- EOF - GMER 1.0.15 ----