|
Poslao: 04 Jul 2007 21:42
|
offline
- gligam

- Novi MyCity građanin
- Pridružio: 10 Nov 2005
- Poruke: 9
- Gde živiš: Nis
|
Kad pustim Kaspersky da skenira, kompjuter mi se ugasi.
Nod32 ne nalazi nikakve viruse. Kompjuter pravi mnogo konekcija iako ne koristim internet. Evo i HijackThis logfile-a:
Logfile of HijackThis v1.99.1
Scan saved at 21:07:20, on 4.7.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Google\Google Talk\googletalk.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\DAP\DAP.EXE
C:\Documents and Settings\Mladen i Milica\Desktop\TEMP - VIRUSI\TR3.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = [Link mogu videti samo ulogovani korisnici]
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = [Link mogu videti samo ulogovani korisnici]
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = [Link mogu videti samo ulogovani korisnici]
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Zend Studio - {95188727-288F-4581-A48D-EAB3BD027314} - C:\PROGRA~1\Zend\ZENDST~1.0\bin\ZENDIE~1.DLL
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [PCSuiteTrayApplication] D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup
O4 - HKLM\..\Run: [kav] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
O4 - Startup: Total Organizer.lnk = C:\Program Files\Organizer\Organizer.exe
O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
O8 - Extra context menu item: &Clean Traces - C:\Program Files\DAP\Privacy Package\dapcleanerie.htm
O8 - Extra context menu item: &Download with &DAP - C:\Program Files\DAP\dapextie.htm
O8 - Extra context menu item: &Windows Live Search - [Link mogu videti samo ulogovani korisnici]\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - [Link mogu videti samo ulogovani korisnici]
O8 - Extra context menu item: Download &all with DAP - C:\Program Files\DAP\dapextie2.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - [Link mogu videti samo ulogovani korisnici]\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Open in new background tab - [Link mogu videti samo ulogovani korisnici]\Program Files\Windows Live Toolbar\Components\en-us\msntabres.dll.mui/229?d8e38d48edb84e2fb8656c6fe895cf91
O8 - Extra context menu item: Open in new foreground tab - [Link mogu videti samo ulogovani korisnici]\Program Files\Windows Live Toolbar\Components\en-us\msntabres.dll.mui/230?d8e38d48edb84e2fb8656c6fe895cf91
O8 - Extra context menu item: Zend Studio - Debug current page - [Link mogu videti samo ulogovani korisnici]\Program Files\Zend\ZendStudio-5.5.0\bin\ZendIEToolbar.dll/DebugCurrent.html
O8 - Extra context menu item: Zend Studio - Debug next page - [Link mogu videti samo ulogovani korisnici]\Program Files\Zend\ZendStudio-5.5.0\bin\ZendIEToolbar.dll/DebugNext.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Web Anti-Virus - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Zend Studio Toolbar - {A26ABCF0-1C8F-46e7-A67C-0489DC21B9CC} - C:\PROGRA~1\Zend\ZENDST~1.0\bin\ZENDIE~1.DLL
O9 - Extra 'Tools' menuitem: Zend Studio - {A26ABCF0-1C8F-46e7-A67C-0489DC21B9CC} - C:\PROGRA~1\Zend\ZENDST~1.0\bin\ZENDIE~1.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{2A36AAA9-F02C-4A7C-9DF1-AEE64D007A0B}: NameServer = 82.117.194.2,82.117.194.3
O17 - HKLM\System\CS1\Services\Tcpip\..\{2A36AAA9-F02C-4A7C-9DF1-AEE64D007A0B}: NameServer = 82.117.194.2,82.117.194.3
O17 - HKLM\System\CS2\Services\Tcpip\..\{2A36AAA9-F02C-4A7C-9DF1-AEE64D007A0B}: NameServer = 82.117.194.2,82.117.194.3
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Kaspersky Anti-Virus 6.0 (AVP) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" -r (file missing)
O23 - Service: Remote Administrator Service (r_server) - Unknown owner - C:\WINDOWS\system32\r_server.exe" /service (file missing)
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: wampapache - Unknown owner - c:\wamp\apache2\bin\httpd.exe" -k runservice (file missing)
O23 - Service: wampmysqld - Unknown owner - c:\wamp\mysql\bin\mysqld-nt.exe
Hvala puno!
|
|
|
|
|
|
|
Poslao: 04 Jul 2007 22:49
|
offline
- DEMIAN

- Legendarni građanin
- Pridružio: 25 Mar 2005
- Poruke: 3706
- Gde živiš: The darkest place on earth..
|
Zdravo gligam,
U ovom logu koji si postavila ne postoji ništa vidljivo što bi ukazalo na pristvu malware-a na tvom računaru. Ipak ću te uputiti na skeniranje kompa sa GMER-om (postavićeš nam njegov log) da proverimo da nema nekih rootkitova...
Uradićeš sledeće:
Preuzmi fajl gmer.zip sa ovog linka i sačuvaj na Desktop-u.
Raspakuj ga u neki folder.
Dupli klik na gmer.exe za početak: Izaberi Rootkit Tab na vrhu.
Klikni na Scan.
Kada je skeniranje završeno, klik na Copy dugme ispod - ovo će sačuvati to u Clipboard.
U polju za pisanje poruke na forumu klikni desno dugme misa i odaberi opciju Paste.
---------------
Što se direktno restarta računara pri skeniranju sa Kasperskim AV-om tiče obavio sam konsultaciju sa administratorom ovog foruma koji je i sam imao takav (skoro identičan) problem i dobio sam odgovor da ako se ne radi o nekom rootkitu jedan od uzročnika tog problema može biti pregrejavanje hardware-a. CPU hladnjak je bio u pitanju - zaprljan od prašine i to je izazivalo pregrevanje CPU-a i restart sistema jer se pri skeniranju prilično opterećuje procesor.
Znači.. Postavi nam log gmer-a ovde i za to vreme (dok ja pregledam isti) nabavi neki program za merenje temperature komponenti (npr. SpeedFan, Everest, Motherboard Monitor..) i isprati da li je i kod tebe pregrevanje uzrok restarta.
|
|
|
|
|
|
|
Poslao: 04 Jul 2007 23:30
|
offline
- gligam

- Novi MyCity građanin
- Pridružio: 10 Nov 2005
- Poruke: 9
- Gde živiš: Nis
|
Zdravo, zdravo!
Brzo si se ispravio za pol ..
Uzela sam u obzir mogucnost sa pregrejavanjem. Tacnije, problem sa gasenjem kompjutera sam imala i u toku zime (cudno). Kad je ociscen iznutra (cooleri i svaki moguci delic) gasenje se ponavljalo onako povremeno. Zato sam ga otvorila skroz i evo od tad mi radi sa skinutim stranama. Moguce je da je to problem (soba je vrlo topla), ali mi je cudno zasto se ugasi odmah cim pustim da skenura Kaspersky .. nekako mi je mala verovatnoca da se tri-cetiri puta ugasi odmah cim pustim scan. Nego, izgleda da mi sad radi scan u pozadini i evo jos se nije ugasio. Videcemo.
Ali mene vise brinu one konekcije koje imam, a ne koristim internet uopste. Znaci, ne koristim nikakve eMule i slicne programe, niti je bilo sta drugo ukljuceno a ja imam konekcije. Imam kablovski internet.
Evo logfile-a:
GMER 1.0.13.12551 - [Link mogu videti samo ulogovani korisnici]
Rootkit scan 2007-07-04 23:26:59
Windows 5.1.2600 Service Pack 2
---- System - GMER 1.0.13 ----
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwClose
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwCreateKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwCreateProcess
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwCreateProcessEx
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwCreateSection
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwCreateSymbolicLinkObject
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwCreateThread
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwDeleteKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwDeleteValueKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwDuplicateObject
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwEnumerateKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwEnumerateValueKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwFlushKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwInitializeRegistry
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwLoadKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwLoadKey2
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwNotifyChangeKey
SSDT kl1.sys ZwOpenFile
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwOpenKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwOpenProcess
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwOpenSection
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwQueryKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwQueryMultipleValueKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwQuerySystemInformation
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwQueryValueKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwReplaceKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwRestoreKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwResumeThread
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwSaveKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwSetContextThread
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwSetInformationFile
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwSetInformationKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwSetInformationProcess
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwSetSecurityObject
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwSetValueKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwSuspendThread
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwTerminateProcess
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwUnloadKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwWriteVirtualMemory
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys SSDT[284]
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys SSDT[285]
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys SSDT[286]
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys SSDT[287]
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys SSDT[288]
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys SSDT[289]
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys SSDT[290]
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys SSDT[291]
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys SSDT[292]
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys SSDT[293]
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys SSDT[294]
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys SSDT[295]
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys SSDT[296]
Code \??\C:\WINDOWS\system32\drivers\klif.sys FsRtlCheckLockForReadAccess
Code \??\C:\WINDOWS\system32\drivers\klif.sys IoIsOperationSynchronous
---- Kernel code sections - GMER 1.0.13 ----
.text ntoskrnl.exe!KiDispatchInterrupt + C0 804DBEC3 7 Bytes JMP AA64DD70 \??\C:\WINDOWS\system32\drivers\klif.sys
.text ntoskrnl.exe!IoIsOperationSynchronous 804E8EBA 5 Bytes JMP AA64B000 \??\C:\WINDOWS\system32\drivers\klif.sys
.text ntoskrnl.exe!FsRtlCheckLockForReadAccess 804FDAF1 5 Bytes JMP AA64AB70 \??\C:\WINDOWS\system32\drivers\klif.sys
? C:\WINDOWS\system32\drivers\sptd.sys The process cannot access the file because it is being used by another process.
.text USBPORT.SYS!DllUnload F7D1C62C 5 Bytes JMP 820721B8
? System32\Drivers\atce3tyq.SYS The system cannot find the file specified.
---- Kernel IAT/EAT - GMER 1.0.13 ----
IAT \WINDOWS\System32\Drivers\SPTDDRV1.SYS[ntoskrnl.exe!IoConnectInterrupt] [F845E718] sptd.sys
IAT \WINDOWS\System32\Drivers\SPTDDRV1.SYS[ntoskrnl.exe!IofCompleteRequest] [F8473656] sptd.sys
IAT pci.sys[ntoskrnl.exe!IoDetachDevice] [F845E6C4] sptd.sys
IAT pci.sys[ntoskrnl.exe!IoAttachDeviceToDeviceStack] [F8474394] sptd.sys
IAT atapi.sys[ntoskrnl.exe!IoConnectInterrupt] [F845E718] sptd.sys
IAT atapi.sys[HAL.dll!READ_PORT_UCHAR] [F844EAB6] sptd.sys
IAT atapi.sys[HAL.dll!READ_PORT_BUFFER_USHORT] [F844EBEE] sptd.sys
IAT atapi.sys[HAL.dll!READ_PORT_USHORT] [F844EB76] sptd.sys
IAT atapi.sys[HAL.dll!WRITE_PORT_BUFFER_USHORT] [F844F71C] sptd.sys
IAT atapi.sys[HAL.dll!WRITE_PORT_UCHAR] [F844F5F2] sptd.sys
IAT disk.sys[ntoskrnl.exe!IoAttachDeviceToDeviceStack] [F84744E8] sptd.sys
IAT \SystemRoot\system32\DRIVERS\intelppm.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\VIDEOPRT.SYS[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\imapi.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\cdrom.sys[ntoskrnl.exe!IoAttachDeviceToDeviceStack] [F84744E8] sptd.sys
IAT \SystemRoot\system32\DRIVERS\redbook.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\ks.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\USBPORT.SYS[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\serial.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\serenum.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\fdc.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\parport.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\i8042prt.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\i8042prt.sys[HAL.dll!READ_PORT_UCHAR] [F84737AE] sptd.sys
IAT \SystemRoot\system32\DRIVERS\mouclass.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\kbdclass.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\drivers\portcls.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\audstub.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\ndistapi.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\ndiswan.sys[NDIS.SYS!NdisCloseAdapter] 820BE710
IAT \SystemRoot\system32\DRIVERS\ndiswan.sys[NDIS.SYS!NdisOpenAdapter] 820BE660
IAT \SystemRoot\system32\DRIVERS\ndiswan.sys[NDIS.SYS!NdisDeregisterProtocol] 820BE722
IAT \SystemRoot\system32\DRIVERS\ndiswan.sys[NDIS.SYS!NdisRegisterProtocol] 820BE646
IAT \SystemRoot\system32\DRIVERS\raspppoe.sys[NDIS.SYS!NdisRegisterProtocol] 820BE646
IAT \SystemRoot\system32\DRIVERS\raspppoe.sys[NDIS.SYS!NdisOpenAdapter] 820BE660
IAT \SystemRoot\system32\DRIVERS\raspppoe.sys[NDIS.SYS!NdisCloseAdapter] 820BE710
IAT \SystemRoot\system32\DRIVERS\raspppoe.sys[NDIS.SYS!NdisDeregisterProtocol] 820BE722
IAT \SystemRoot\system32\DRIVERS\psched.sys[NDIS.SYS!NdisDeregisterProtocol] 820BE722
IAT \SystemRoot\system32\DRIVERS\psched.sys[NDIS.SYS!NdisRegisterProtocol] 820BE646
IAT \SystemRoot\system32\DRIVERS\psched.sys[NDIS.SYS!NdisOpenAdapter] 820BE660
IAT \SystemRoot\system32\DRIVERS\psched.sys[NDIS.SYS!NdisCloseAdapter] 820BE710
IAT \SystemRoot\system32\DRIVERS\msgpc.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\rdpdr.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\termdd.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\swenum.sys[NTOSKRNL.EXE!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\mssmbios.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\System32\Drivers\NDProxy.SYS[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\System32\Drivers\NDProxy.SYS[NDIS.SYS!NdisRegisterProtocol] 820BE646
IAT \SystemRoot\System32\Drivers\NDProxy.SYS[NDIS.SYS!NdisCloseAdapter] 820BE710
IAT \SystemRoot\System32\Drivers\NDProxy.SYS[NDIS.SYS!NdisOpenAdapter] 820BE660
IAT \SystemRoot\System32\Drivers\NDProxy.SYS[NDIS.SYS!NdisDeregisterProtocol] 820BE722
IAT \SystemRoot\system32\DRIVERS\usbhub.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\flpydisk.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\System32\Drivers\Fs_Rec.SYS[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\System32\Drivers\Null.SYS[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\System32\Drivers\Beep.SYS[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\System32\Drivers\Msfs.SYS[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\System32\Drivers\Npfs.SYS[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\rasacd.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\ipsec.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\tcpip.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\tcpip.sys[NDIS.SYS!NdisCloseAdapter] 820BE710
IAT \SystemRoot\system32\DRIVERS\tcpip.sys[NDIS.SYS!NdisRegisterProtocol] 820BE646
IAT \SystemRoot\system32\DRIVERS\tcpip.sys[NDIS.SYS!NdisOpenAdapter] 820BE660
IAT \SystemRoot\system32\DRIVERS\tcpip.sys[TDI.SYS!TdiRegisterDeviceObject] 820C97E0
IAT \SystemRoot\system32\DRIVERS\netbt.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\netbt.sys[TDI.SYS!TdiRegisterDeviceObject] 820C97E0
IAT \SystemRoot\System32\drivers\afd.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\netbios.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\rdbss.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\mrxsmb.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\System32\Drivers\Fips.SYS[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\ipnat.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\wanarp.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\wanarp.sys[NDIS.SYS!NdisDeregisterProtocol] 820BE722
IAT \SystemRoot\system32\DRIVERS\wanarp.sys[NDIS.SYS!NdisRegisterProtocol] 820BE646
IAT \SystemRoot\system32\DRIVERS\wanarp.sys[NDIS.SYS!NdisOpenAdapter] 820BE660
IAT \SystemRoot\system32\DRIVERS\wanarp.sys[NDIS.SYS!NdisCloseAdapter] 820BE710
IAT \SystemRoot\System32\Drivers\Fastfat.SYS[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\ndisuio.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\ndisuio.sys[NDIS.SYS!NdisRegisterProtocol] 820BE646
IAT \SystemRoot\system32\DRIVERS\ndisuio.sys[NDIS.SYS!NdisDeregisterProtocol] 820BE722
IAT \SystemRoot\system32\DRIVERS\ndisuio.sys[NDIS.SYS!NdisCloseAdapter] 820BE710
IAT \SystemRoot\system32\DRIVERS\ndisuio.sys[NDIS.SYS!NdisOpenAdapter] 820BE660
IAT \SystemRoot\system32\DRIVERS\mrxdav.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\System32\Drivers\ParVdm.SYS[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\System32\Drivers\Cdfs.SYS[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\DRIVERS\srv.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\drivers\wdmaud.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\system32\drivers\sysaudio.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
IAT \SystemRoot\System32\Drivers\HTTP.sys[ntoskrnl.exe!IoCreateDevice] 820C9760
---- User IAT/EAT - GMER 1.0.13 ----
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe[344] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\System32\WS2_32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\System32\WS2_32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\System32\WS2HELP.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\System32\WS2HELP.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\System32\alg.exe[348] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe[496] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\kernel32.dll
IAT D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe[528] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\kernel32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\winsrv.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\KERNEL32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\winsrv.dll [KERNEL32.dll!LoadLibraryExA] [7C882FC4] C:\WINDOWS\system32\KERNEL32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\winsrv.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\KERNEL32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\winsrv.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\KERNEL32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\KERNEL32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\KERNEL32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\KERNEL32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\KERNEL32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\KERNEL32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\KERNEL32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\KERNEL32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\KERNEL32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FE2] C:\WINDOWS\system32\KERNEL32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FD3] C:\WINDOWS\system32\KERNEL32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\KERNEL32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [7C882FF1] C:\WINDOWS\system32\KERNEL32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [7C882FB5] C:\WINDOWS\system32\KERNEL32.dll
IAT C:\WINDOWS\system32\csrss.exe[532] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [7
|
|
|
|
|
|
|
|
|
Poslao: 05 Jul 2007 17:55
|
offline
- gligam

- Novi MyCity građanin
- Pridružio: 10 Nov 2005
- Poruke: 9
- Gde živiš: Nis
|
Citat:Aha.. Brzo reagujem kada vidim onaj roze značić pored nicka
Citat:Jel' ti se problem javlja samo sa Kasperskim ili ti se desilo nekad to isto i kada poteraš neku zahtevniju aplikaciju ili igricu možda ?
Sinoc se desilo jos 3-4 puta sa Kasperskim, i to ne ugasi se skroz, ugasi se monitor, kompjuter se ucuti ali i dalje se cuje da radi .. u nekom stanju izmedju zivota i smrti bude ..
desavalo se to ranije, ne mogu da ukapiram kad, moguce kad se neka zahtevnija stvar uradi .. nesto sam ranije mislila da je imalo veze sa grafickom, jer je nesto sa tim bio problem .. sada toga nema i ne znam da li ovo sad ima veze sa tim sto je bilo (taj problem je nekako sam nestao kad sam skinula kompjuteru strane)
A ovog puta, ovo sto se desi, desi se tacno onda kad pustim scan, scan pocne i kompjuter ode u ono svoje stanje. Ja ga podizah par puta i onda mi je nestala struja i onda i ja odoh da spavam
Nemam igrice, nista tako mnogo zahtevno ne koristim. Mada radim sa Apache serverom, neku bazu imam, php, mysql i tako neke stvari. Problemi se nisu javljali.
Citat:Jedino šta u logu vidim i mogu da povežem sa ovim je program Remote Administrator međutim čini mi se da je deinstaliran. Jel' ti je poznat program ? Ti si ga instalirala/deinstalirala ?
Kompjuter mi je u mrezi pa sam instalirala taj program da pokusa da vidi sta je problem i neko sa drugog racunara. Nije jos uvek deinstaliran. Dakle, poznat mi je.
Citat:Reci mi još nešto kada smo već kod instaliranja programa.. Da li si imala na računaru ili i sada povremeno koristiš Alcohol 100% ili Deamon Tools ?
Ne vidim te programe u logu ali su iscitani drajveri za koje pretpostavljam da pripadaju njima:
C:\WINDOWS\System32\Drivers\atce3tyq.SYS
C:\WINDOWS\system32\drivers\sptd.sys
Osim toga sve ostalo je provereno i ok je.
Ovaj Alcohol mi je poznat. To moj brat nesto koristi. Pretpostavljam i ovaj drugi. Mogu li oni da naprave problem?
Kako je sve OK? Pa sta mi se onda desava?!
Pusticu danas neki drugi Antivirus, npr. AVG pa mozda nesto nadjem.
Uglavnom, hvala puuuuno tebi na odvojenom vremenu i savetima. Slusam, ako ti ili bilo ko ima neki drugi predlog.
Veliki pozdrav!
|
|
|
|
|
|
|
Poslao: 05 Jul 2007 19:01
|
offline
- DEMIAN

- Legendarni građanin
- Pridružio: 25 Mar 2005
- Poruke: 3706
- Gde živiš: The darkest place on earth..
|
gligam ::... i to ne ugasi se skroz, ugasi se monitor, kompjuter se ucuti ali i dalje se cuje da radi .. u nekom stanju izmedju zivota i smrti bude ..
desavalo se to ranije, ne mogu da ukapiram kad, moguce kad se neka zahtevnija stvar uradi .. nesto sam ranije mislila da je imalo veze sa grafickom, jer je nesto sa tim bio problem .. sada toga nema i ne znam da li ovo sad ima veze sa tim sto je bilo (taj problem je nekako sam nestao kad sam skinula kompjuteru strane).
Skinula si sa kućišta bočne stranice i obezbedila mu bolje hlađenje tako. To nas opet vraća na temperaturu kao mogući uzrok restarta tj opet na sam hardware bilo to grafička, hladnjak, CPU ili napajanje (moj tip prema ovom zadnjem što si napisala). Da ne bih reklamirao ovde jedan sajt pustiću ti na PP link kako da brzo i lako testiraš komponente pa da lično otkloniš sve sumnje u ovo što ti sada pišem.
gligam ::Ovaj Alcohol mi je poznat. To moj brat nesto koristi. Pretpostavljam i ovaj drugi. Mogu li oni da naprave problem ?
Mogu da naprave konflikt ali lično sumnjam da je baš u tome problem. Deinstaliraj to pa testiraj. Samo tako ćes pouzdano znati. Ja ovako preko foruma ne mogu da ti ponudim konkretnije rešenje ili procenu na ovo tvoje konkretno pitanje.
gligam ::Kako je sve OK? Pa sta mi se onda desava?!
Pusticu danas neki drugi Antivirus, npr. AVG pa mozda nesto nadjem.Pod tim ok, mislio sam da nemaš skriven malware na kompu (rootkit direktno) što je i log programa Gmer-a i pokazao.
Hteo sam ti još napomenuti sledeće:
Nemoj da instaliraš 2 AV na jednom računaru. (morao sam to da ti kažem - dosta ljudi viđam kako to rade)
Ako je isključivo softverski tip problema rešićeš ga jednostavno deinstalacijom Kasperskog i instalicijom nekog drugog AV-a.
Nemoj da tražiš malware na računaru po svaku cenu. To što će ti bilo koje parče software-a detektovati nešto ne znači da je to stvarno maliciozno ili da ti se zbog toga restartuje računar.
Evo ti linkovi za 3 skroz funkcionalna online scanner-a. Pomoću njih možeš da očistiš komp i bez instalacije još nekog AV-a.
[Link mogu videti samo ulogovani korisnici]
[Link mogu videti samo ulogovani korisnici]
[Link mogu videti samo ulogovani korisnici]
Svejedno koji izabereš bitno je samo da ti je za skeniranje potreban Internet Explorer i uključen ActiveX. Napominjem još jednom da brišu sve što detektuju na računaru i da ako nisi sigurna da li nešto treba da brišeš ili ne - slobodno postaviš pitanje o tome ovde.
|
|
|
|
|
|
|
|
|
|
|
Poslao: 06 Jul 2007 16:42
|
offline
- gligam

- Novi MyCity građanin
- Pridružio: 10 Nov 2005
- Poruke: 9
- Gde živiš: Nis
|
DeM14n ::
Zato bih te zamolio da pronadjes i sacuvas taj report i okacis ga ovde da bi izbegli nagadjanje i videli tacno da li su ovi alati kojima se sluzimo za detekciju malware "zatajili" ili je ipak cinjenica (meni bliza i realnija) da sve sto ti je AVG detektovao nije bilo aktivno na sistemu pa samim tim nije bilo sansi da to bude uzrok problema na koji si se zalila.
Evo kacim ti log.
Znas kako, ja i ne znam da li imam taj problem jos uvek. Mene brinu te konekcije sto ih ima toliko.
Kao bilo je bolje, ali sad primecujem da mi izgleda skype to pravi. Je l' moguce to?
Vrlo cesto koristim skype i neophodan mi je. U ovom AVG ima opcija da se prate konekcije i vidim sad da ima mnogo vezanih za skype.
Je l' vam poznato tako nesto?
Hvala puuuuno jos jednom ..
a mi mozemo i dalje da cavrljamo .. nadam se da ovo znaci da ipak nemam nista opasno na racunaru.
Pozdravce!
|
|
|
|
|
|
|
Poslao: 06 Jul 2007 17:01
|
offline
- DEMIAN

- Legendarni građanin
- Pridružio: 25 Mar 2005
- Poruke: 3706
- Gde živiš: The darkest place on earth..
|
Pronacices fajl sa ove putanje:
C:\Program Files\Network Assistant\Nassi.exe
Upload na ovu formu radi tacnije provere > [Link mogu videti samo ulogovani korisnici]
Ostale detekcije su ti burazerovi razbijacovi. Obrisi ih sa racunara.
Za TrackingCookie-es ne moras da brines. To ce ti svaki AV/AS uvek nalaziti cak i ako posecujes samo proverene adrese.
Ne koristim Skype ali te konekcije koje ti on uspostavlja su naravno moguce uz to i legitimne. Slikaj to ako zelis pa da konkretno vidim o cemu se radi.
|
|
|
|
|
|