GMER 1.0.13.12551 - http://www.gmer.net Rootkit scan 2007-08-27 22:27:49 Windows 5.1.2600 Dodatek Service Pack 2 ---- System - GMER 1.0.13 ---- SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwClose SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwCreateKey SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwCreateProcess SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwCreateProcessEx SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwCreateSection SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwCreateSymbolicLinkObject SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwCreateThread SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwDeleteKey SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwDeleteValueKey SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwDuplicateObject SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwEnumerateKey SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwEnumerateValueKey SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwFlushKey SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwInitializeRegistry SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwLoadDriver SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwLoadKey SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwLoadKey2 SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwNotifyChangeKey SSDT kl1.sys ZwOpenFile SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwOpenKey SSDT ??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys ZwOpenProcess SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwOpenSection SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwQueryKey SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwQueryMultipleValueKey SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwQuerySystemInformation SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwQueryValueKey SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwReplaceKey SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwRestoreKey SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwResumeThread SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwSaveKey SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwSetContextThread SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwSetInformationFile SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwSetInformationKey SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwSetSecurityObject SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwSetValueKey SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwSuspendThread SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwSystemDebugControl SSDT ??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys ZwTerminateProcess SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwUnloadKey SSDT ??\C:\WINDOWS\system32\drivers\klif.sys ZwWriteVirtualMemory SSDT ??\C:\WINDOWS\system32\drivers\klif.sys SSDT[284] SSDT ??\C:\WINDOWS\system32\drivers\klif.sys SSDT[285] SSDT ??\C:\WINDOWS\system32\drivers\klif.sys SSDT[286] SSDT ??\C:\WINDOWS\system32\drivers\klif.sys SSDT[287] SSDT ??\C:\WINDOWS\system32\drivers\klif.sys SSDT[288] SSDT ??\C:\WINDOWS\system32\drivers\klif.sys SSDT[289] SSDT ??\C:\WINDOWS\system32\drivers\klif.sys SSDT[290] SSDT ??\C:\WINDOWS\system32\drivers\klif.sys SSDT[291] SSDT ??\C:\WINDOWS\system32\drivers\klif.sys SSDT[292] SSDT ??\C:\WINDOWS\system32\drivers\klif.sys SSDT[293] SSDT ??\C:\WINDOWS\system32\drivers\klif.sys SSDT[294] SSDT ??\C:\WINDOWS\system32\drivers\klif.sys SSDT[295] SSDT ??\C:\WINDOWS\system32\drivers\klif.sys SSDT[296] Code ??\C:\WINDOWS\system32\drivers\klif.sys FsRtlCheckLockForReadAccess Code ??\C:\WINDOWS\system32\drivers\klif.sys IoIsOperationSynchronous ---- Kernel code sections - GMER 1.0.13 ---- .text ntkrnlpa.exe!FsRtlCheckLockForReadAccess 804EAE40 5 Bytes JMP AD23CA70 ??\C:\WINDOWS\system32\drivers\klif.sys .text ntkrnlpa.exe!IoIsOperationSynchronous 804EF634 5 Bytes JMP AD23CF70 ??\C:\WINDOWS\system32\drivers\klif.sys ? C:\WINDOWS\system32\drivers\sptd.sys Proces nie może uzyskać dostępu do pliku, ponieważ jest on używany przez inny proces. .text USBPORT.SYS!DllUnload B704F62C 5 Bytes JMP 89DD91C8 .text a6r5gq5o.SYS AF61E384 1 Byte [20] .text a6r5gq5o.SYS AF61E386 35 Bytes [00, 68, 00, 00, 00, 00, 00, …] .text a6r5gq5o.SYS AF61E3AA 24 Bytes [00, 00, 20, 00, 00, E0, 00, …] .text a6r5gq5o.SYS AF61E3C4 3 Bytes [00, 00, 00] .text a6r5gq5o.SYS AF61E3C9 1 Byte [00] .text … ---- User code sections - GMER 1.0.13 ---- .text C:\WINDOWS\Explorer.EXE[396] SHELL32.dll!StrStrW + FFE2AEDD 7C9C42A8 4 Bytes [F0, 00, 1E, 7D] .text C:\WINDOWS\Explorer.EXE[396] SHELL32.dll!StrStrW + FFE2AEE9 7C9C42B4 4 Bytes [60, 01, 1E, 7D] .text C:\WINDOWS\Explorer.EXE[396] SHELL32.dll!StrStrW + FFE2C555 7C9C5920 4 Bytes [60, 08, 1E, 7D] .text C:\WINDOWS\Explorer.EXE[396] SHELL32.dll!StrStrW + FFE2C66D 7C9C5A38 4 Bytes [D0, 08, 1E, 7D] .text C:\WINDOWS\Explorer.EXE[396] SHELL32.dll!StrStrW + FFE2C6A1 7C9C5A6C 4 Bytes [00, 0B, 1E, 7D] .text … .text C:\WINDOWS\Explorer.EXE[396] SHELL32.dll!ILFree + 24F 7C9E2B50 4 Bytes [E0, 04, A1, 02] .text C:\WINDOWS\Explorer.EXE[396] SHELL32.dll!ILFindChild + 195 7C9EB96C 4 Bytes [00, 0B, A1, 02] .text C:\WINDOWS\Explorer.EXE[396] SHELL32.dll!ILFindChild + 1355 7C9ECB2C 4 Bytes [A0, 0D, A1, 02] .text C:\WINDOWS\Explorer.EXE[396] SHELL32.dll!SHCreateShellFolderView + 460E 7C9F4C7C 4 Bytes [20, 03, 1E, 7D] .text C:\WINDOWS\Explorer.EXE[396] SHELL32.dll!SHCreateShellFolderView + 462E 7C9F4C9C 4 Bytes [B0, 02, 1E, 7D] .text C:\WINDOWS\Explorer.EXE[396] SHELL32.dll!SHCreateShellFolderView + 4666 7C9F4CD4 4 Bytes [40, 02, 1E, 7D] .text C:\WINDOWS\Explorer.EXE[396] SHELL32.dll!DllCanUnloadNow + 7F7 7CA01DB0 4 Bytes [30, 0D, A1, 02] .text C:\WINDOWS\Explorer.EXE[396] SHELL32.dll!SHTestTokenMembership + E3 7CA11C60 4 Bytes [10, 0E, 1E, 7D] .text C:\WINDOWS\Explorer.EXE[396] SHELL32.dll!SHPropStgReadMultiple + 472 7CA1A578 4 Bytes [E0, 04, 1E, 7D] .text C:\WINDOWS\Explorer.EXE[396] SHELL32.dll!SHPropStgReadMultiple + 57E 7CA1A684 4 Bytes [C0, 05, 1E, 7D] .text D:\Program Files\Mozilla Firefox\firefox.exe[3816] SHELL32.dll!StrStrW + FFE2AEDD 7C9C42A8 4 Bytes [F0, 00, 1E, 7D] .text D:\Program Files\Mozilla Firefox\firefox.exe[3816] SHELL32.dll!StrStrW + FFE2AEE9 7C9C42B4 4 Bytes [60, 01, 1E, 7D] .text D:\Program Files\Mozilla Firefox\firefox.exe[3816] SHELL32.dll!StrStrW + FFE2D515 7C9C68E0 4 Bytes [40, 02, 1E, 7D] .text D:\Program Files\Mozilla Firefox\firefox.exe[3816] SHELL32.dll!StrStrW + FFE2D55D 7C9C6928 4 Bytes [D0, 01, 1E, 7D] .text D:\Program Files\Mozilla Firefox\firefox.exe[3816] SHELL32.dll!StrStrW + FFE2EBB5 7C9C7F80 4 Bytes [B0, 02, 1E, 7D] .text D:\Program Files\Mozilla Firefox\firefox.exe[3816] SHELL32.dll!SHCreateShellFolderView + 460E 7C9F4C7C 4 Bytes [00, 04, 1E, 7D] .text D:\Program Files\Mozilla Firefox\firefox.exe[3816] SHELL32.dll!SHCreateShellFolderView + 462E 7C9F4C9C 4 Bytes [90, 03, 1E, 7D] .text D:\Program Files\Mozilla Firefox\firefox.exe[3816] SHELL32.dll!SHCreateShellFolderView + 4666 7C9F4CD4 4 Bytes [20, 03, 1E, 7D] ---- Kernel IAT/EAT - GMER 1.0.13 ---- IAT atapi.sys[HAL.dll!READ_PORT_UCHAR] [bA6BEAD4] sptd.sys IAT atapi.sys[HAL.dll!READ_PORT_BUFFER_USHORT] [bA6BEC1A] sptd.sys IAT atapi.sys[HAL.dll!READ_PORT_USHORT] [bA6BEB9C] sptd.sys IAT atapi.sys[HAL.dll!WRITE_PORT_BUFFER_USHORT] [bA6BF748] sptd.sys IAT atapi.sys[HAL.dll!WRITE_PORT_UCHAR] [bA6BF61E] sptd.sys IAT \SystemRoot\System32\Drivers\a6r5gq5o.SYS[HAL.dll!KfAcquireSpinLock] 6C000000 IAT \SystemRoot\System32\Drivers\a6r5gq5o.SYS[HAL.dll!READ_PORT_UCHAR] 56000000 IAT \SystemRoot\System32\Drivers\a6r5gq5o.SYS[HAL.dll!KeGetCurrentIrql] F4000000 IAT \SystemRoot\System32\Drivers\a6r5gq5o.SYS[HAL.dll!KfRaiseIrql] EA000000 IAT \SystemRoot\System32\Drivers\a6r5gq5o.SYS[HAL.dll!KfLowerIrql] 65000000 IAT \SystemRoot\System32\Drivers\a6r5gq5o.SYS[HAL.dll!HalGetInterruptVector] 7A000000 IAT \SystemRoot\System32\Drivers\a6r5gq5o.SYS[HAL.dll!HalTranslateBusAddress] AE000000 IAT \SystemRoot\System32\Drivers\a6r5gq5o.SYS[HAL.dll!KeStallExecutionProcessor] 08000000 IAT \SystemRoot\System32\Drivers\a6r5gq5o.SYS[HAL.dll!KfReleaseSpinLock] BA000000 IAT \SystemRoot\System32\Drivers\a6r5gq5o.SYS[HAL.dll!READ_PORT_BUFFER_USHORT] 78000000 IAT \SystemRoot\System32\Drivers\a6r5gq5o.SYS[HAL.dll!READ_PORT_USHORT] 25000000 IAT \SystemRoot\System32\Drivers\a6r5gq5o.SYS[HAL.dll!WRITE_PORT_BUFFER_USHORT] 2E000000 IAT \SystemRoot\System32\Drivers\a6r5gq5o.SYS[HAL.dll!WRITE_PORT_UCHAR] 1C000000 IAT \SystemRoot\System32\Drivers\a6r5gq5o.SYS[WMILIB.SYS!WmiSystemControl] B4000000 IAT \SystemRoot\System32\Drivers\a6r5gq5o.SYS[WMILIB.SYS!WmiCompleteRequest] C6000000 IAT \SystemRoot\system32\DRIVERS\i8042prt.sys[HAL.dll!READ_PORT_UCHAR] [bA6D429A] sptd.sys IAT \SystemRoot\system32\DRIVERS\tcpip.sys[TDI.SYS!TdiRegisterDeviceObject] 89DE67E0 IAT \SystemRoot\system32\DRIVERS\netbt.sys[TDI.SYS!TdiRegisterDeviceObject] 89DE67E0 ---- User IAT/EAT - GMER 1.0.13 ---- IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ c:\windows\system32\WS2_32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ c:\windows\system32\WS2_32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ c:\windows\system32\WS2HELP.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ c:\windows\system32\WS2HELP.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\secur32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\secur32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\system32\svchost.exe[232] @ C:\WINDOWS\system32\secur32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\Explorer.EXE[396] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\System32\WS2_32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\System32\WS2_32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\System32\WS2HELP.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\System32\WS2HELP.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\WINDOWS\System32\alg.exe[448] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe[592] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [7C882FC4] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress] [7C882FEC] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryExA] [7C882FB0] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryExW] [7C882FD8] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!LoadLibraryA] [7C882F9C] C:\WINDOWS\system32\kernel32.dll IAT C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe[664] @ C:\WINDOWS\system32\PSAPI.