|
Log-Analyse und Auswertung: Großes Problem mit W32.Myzor.FK@yfWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
04.11.2007, 19:44 | #16 | ||
Administrator > Competence Manager | Großes Problem mit W32.Myzor.FK@yfZitat:
Zitat:
Meist ist der o.g. Trojaner mit Rootkit-Technologie ausgestattet und versteckt sich tief im System. Es wird sehr schwierig dieses wieder zu entfernen, unter XP würde das schneller gehen, aber unter VISTA ist es für alle Helfer hier an Board noch Neuland.
__________________ Anfragen per Email, Profil- oder privater Nachricht werden ignoriert! Hilfe gibts NUR im Forum! Stulti est se ipsum sapientem putare. |
04.11.2007, 19:50 | #17 |
| Großes Problem mit W32.Myzor.FK@yf Hmm und was kan das jetzt genau anrichten?
__________________Hier der scan. Muss ihn in 5 Teile teilen. GMER 1.0.13.12551 - http://www.gmer.net Rootkit scan 2007-11-04 19:39:14 Windows 6.0.6000 ---- System - GMER 1.0.13 ---- SSDT 9C4B41E0 ZwAlertResumeThread SSDT A1291460 ZwAlertThread SSDT 8E021320 ZwAllocateVirtualMemory SSDT 8888EF30 ZwConnectPort SSDT 9F7EEE28 ZwCreateMutant SSDT 8E021368 ZwCreateThread SSDT A1223B20 ZwFreeVirtualMemory SSDT 9877D428 ZwImpersonateAnonymousToken SSDT 9C5EC090 ZwImpersonateThread SSDT 9AD88EB8 ZwMapViewOfSection SSDT 9C51E070 ZwOpenEvent SSDT 9AB58190 ZwOpenProcess SSDT 9AC71A68 ZwOpenProcessToken SSDT 9AB58195 ZwOpenThread SSDT 9F7D4608 ZwOpenThreadToken SSDT 9F6808B8 ZwResumeThread SSDT A122A3F8 ZwSetContextThread SSDT 9AD88D60 ZwSetInformationProcess SSDT 9F7D44B0 ZwSetInformationThread SSDT 9C40EDE0 ZwSuspendProcess SSDT 9AD1CDC8 ZwSuspendThread SSDT 8890ED90 ZwTerminateProcess SSDT A122BEC0 ZwTerminateThread SSDT 9AC0EA98 ZwUnmapViewOfSection SSDT 8E021290 ZwWriteVirtualMemory ---- Kernel code sections - GMER 1.0.13 ---- ? C:\Windows\System32\Drivers\sptd.sys Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. .text USBPORT.SYS!DllUnload 8B9F2ACF 5 Bytes JMP 861F11C8 ? C:\Windows\system32\Drivers\RKREVEAL150.SYS Das System kann die angegebene Datei nicht finden. ---- Kernel IAT/EAT - GMER 1.0.13 ---- IAT \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortWritePortUchar] [8071A61E] \SystemRoot\System32\Drivers\sptd.sys IAT \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortReadPortUchar] [80719AD4] \SystemRoot\System32\Drivers\sptd.sys IAT \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortWritePortBufferUshort] [8071A748] \SystemRoot\System32\Drivers\sptd.sys IAT \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortReadPortUshort] [80719B9C] \SystemRoot\System32\Drivers\sptd.sys IAT \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortReadPortBufferUshort] [80719C1A] \SystemRoot\System32\Drivers\sptd.sys IAT \SystemRoot\system32\DRIVERS\i8042prt.sys[HAL.dll!READ_PORT_UCHAR] [8072EACA] \SystemRoot\System32\Drivers\sptd.sys ---- User IAT/EAT - GMER 1.0.13 ---- IAT C:\Windows\System32\rundll32.exe[4524] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4524] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4524] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4524] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4524] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4524] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4524] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!CreateProcessW] [6F3B1923] C:\Windows\AppPatch\AcLayers.DLL IAT C:\Windows\System32\rundll32.exe[4524] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4524] @ C:\Windows\System32\USERENV.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4524] @ C:\Windows\System32\Secur32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4524] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4524] @ C:\Windows\System32\SAMLIB.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4768] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4768] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4768] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4768] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4768] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4768] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4768] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!CreateProcessW] [6F3B1923] C:\Windows\AppPatch\AcLayers.DLL IAT C:\Windows\System32\rundll32.exe[4768] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4768] @ C:\Windows\System32\USERENV.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4768] @ C:\Windows\System32\Secur32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4768] @ C:\Windows\system32\WS2_32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Windows\System32\rundll32.exe[4768] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!CopyFileW] [6C5E88F6] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!MoveFileW] [6C5E8B2F] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!DeleteFileW] [6C5E8A65] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!CreateFileW] [6C5EA391] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegOpenKeyExW] [6C5E9815] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegCreateKeyExW] [6C5E9639] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegSetValueExW] [6C5E9BA7] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!CopyFileW] [6C5E88F6] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!CreateFileW] [6C5EA391] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!DeleteFileW] [6C5E8A65] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!OpenFile] [6C5E8C84] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!CopyFileW] [6C5E88F6] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!DeleteFileW] [6C5E8A65] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!MoveFileW] [6C5E8B2F] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!CreateFileW] [6C5EA391] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!CreateFileW] [6C5EA391] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\RPCRT4.dll [ADVAPI32.dll!RegCreateKeyExA] [6C5E952A] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\RPCRT4.dll [ADVAPI32.dll!RegSetValueExA] [6C5E9AFB] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\RPCRT4.dll [ADVAPI32.dll!RegOpenKeyExA] [6C5E9741] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\RPCRT4.dll [ADVAPI32.dll!RegOpenKeyExW] [6C5E9815] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!CreateProcessW] [6C5E2E2C] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!DeleteFileW] [6C5E8A65] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetFileAttributesExW] [6C5E2C16] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!CreateFileW] [6C5EA391] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetFileAttributesW] [6C5E2A18] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ole32.dll [ADVAPI32.dll!AccessCheck] [6C5E883A] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ole32.dll [ADVAPI32.dll!RegSetValueW] [6C5E9A53] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ole32.dll [ADVAPI32.dll!RegDeleteValueW] [6C5E9CF9] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ole32.dll [ADVAPI32.dll!RegOpenKeyExW] [6C5E9815] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ole32.dll [ADVAPI32.dll!RegSetValueExW] [6C5E9BA7] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ole32.dll [ADVAPI32.dll!RegCreateKeyExW] [6C5E9639] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\ole32.dll [ADVAPI32.dll!RegOpenKeyExA] [6C5E9741] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!DeleteFileW] [6C5E8A65] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SetFileAttributesW] [6C5E8FA6] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!CreateFileW] [6C5EA391] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SetFileAttributesA] [6C5E8F4E] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!CreateFileA] [6C5EA275] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegSetValueExA] [6C5E9AFB] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegCreateKeyExA] [6C5E952A] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegOpenKeyExA] [6C5E9741] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegDeleteValueA] [6C5E9C57] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegCreateKeyExW] [6C5E9639] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegOpenKeyExW] [6C5E9815] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegSetValueExW] [6C5E9BA7] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegDeleteValueW] [6C5E9CF9] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\NETAPI32.dll [ADVAPI32.dll!RegSetValueExW] [6C5E9BA7] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\NETAPI32.dll [ADVAPI32.dll!SetFileSecurityW] [6C5E9DF4] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\NETAPI32.dll [ADVAPI32.dll!RegOpenKeyExA] [6C5E9741] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\NETAPI32.dll [ADVAPI32.dll!RegCreateKeyExW] [6C5E9639] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\NETAPI32.dll [ADVAPI32.dll!RegOpenKeyExW] [6C5E9815] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\NETAPI32.dll [ADVAPI32.dll!AccessCheck] [6C5E883A] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!CreateFileW] [6C5EA391] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!MoveFileExW] [6C5E8C14] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!CopyFileW] [6C5E88F6] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!MoveFileW] [6C5E8B2F] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!DeleteFileW] [6C5E8A65] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!SetFileAttributesW] [6C5E8FA6] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!MoveFileExW] [6C5E8C14] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!CreateFileW] [6C5EA391] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHELL32.dll [ADVAPI32.dll!RegOpenKeyExW] [6C5E9815] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHELL32.dll [ADVAPI32.dll!RegSetValueExW] [6C5E9BA7] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHELL32.dll [ADVAPI32.dll!RegCreateKeyExW] [6C5E9639] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHELL32.dll [ADVAPI32.dll!RegDeleteValueW] [6C5E9CF9] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHELL32.dll [ADVAPI32.dll!RegSetValueW] [6C5E9A53] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHELL32.dll [ADVAPI32.dll!RegCreateKeyW] [6C5E9498] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHELL32.dll [ADVAPI32.dll!SetFileSecurityW] [6C5E9DF4] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHELL32.dll [ADVAPI32.dll!AccessCheck] [6C5E883A] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\SHELL32.dll [ADVAPI32.dll!RegOpenKeyExA] [6C5E9741] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!PrivCopyFileExW] [6C5E8EEA] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!MoveFileExW] [6C5E8C14] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!DeleteFileW] [6C5E8A65] C:\Windows\AppPatch\AcGenral.DLL |
04.11.2007, 19:51 | #18 |
| Großes Problem mit W32.Myzor.FK@yf IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll
__________________IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!CreateFileW] [6C5EA391] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!SetFileAttributesW] [6C5E8FA6] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USERENV.dll [ADVAPI32.dll!SetFileSecurityW] [6C5E9DF4] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USERENV.dll [ADVAPI32.dll!RegCreateKeyExW] [6C5E9639] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USERENV.dll [ADVAPI32.dll!RegSetValueExW] [6C5E9BA7] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\USERENV.dll [ADVAPI32.dll!RegOpenKeyExW] [6C5E9815] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!CreateFileW] [6C5EA391] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!GetProcAddress] [6FE74618] C:\Windows\system32\ShimEng.dll IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\Secur32.dll [ADVAPI32.dll!RegCreateKeyExW] [6C5E9639] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\Secur32.dll [ADVAPI32.dll!RegSetValueExW] [6C5E9BA7] C:\Windows\AppPatch\AcGenral.DLL IAT C:\Users\Rafael\Desktop\gmer\gmer.exe[6772] @ C:\Windows\system32\Secur32.dll [ADVAPI32.dll!RegOpenKeyExW] [6C5E9815] C:\Windows\AppPatch\AcGenral.DLL Device \FileSystem\Ntfs \Ntfs IRP_MJ_CREATE 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_CLOSE 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_READ 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_WRITE 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_INFORMATION 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_INFORMATION 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_EA 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_EA 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_FLUSH_BUFFERS 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_VOLUME_INFORMATION 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_VOLUME_INFORMATION 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_DIRECTORY_CONTROL 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_FILE_SYSTEM_CONTROL 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_DEVICE_CONTROL 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_SHUTDOWN 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_LOCK_CONTROL 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_CLEANUP 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_SECURITY 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_SECURITY 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_QUOTA 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_QUOTA 84A581E8 Device \FileSystem\Ntfs \Ntfs IRP_MJ_PNP 84A581E8 AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CREATE [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CREATE_NAMED_PIPE [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CLOSE [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_READ [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_WRITE [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_INFORMATION [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_INFORMATION [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_EA [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_EA [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_FLUSH_BUFFERS [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_DIRECTORY_CONTROL [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_FILE_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_INTERNAL_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SHUTDOWN [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_LOCK_CONTROL [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CLEANUP [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CREATE_MAILSLOT [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_SECURITY [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_SECURITY [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_POWER [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_DEVICE_CHANGE [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_QUOTA [8288BB02] symsnap.sys AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_QUOTA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_CREATE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_CREATE_NAMED_PIPE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_CLOSE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_READ [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_WRITE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_QUERY_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_SET_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_QUERY_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_SET_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_FLUSH_BUFFERS [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_QUERY_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_SET_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_DIRECTORY_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_FILE_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_INTERNAL_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_SHUTDOWN [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_LOCK_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_CLEANUP [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_CREATE_MAILSLOT [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_QUERY_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_SET_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_POWER [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_DEVICE_CHANGE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_QUERY_QUOTA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy1 IRP_MJ_SET_QUOTA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_CREATE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_CREATE_NAMED_PIPE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_CLOSE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_READ [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_WRITE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_QUERY_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_SET_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_QUERY_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_SET_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_FLUSH_BUFFERS [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_QUERY_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_SET_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_DIRECTORY_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_FILE_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_INTERNAL_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_SHUTDOWN [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_LOCK_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_CLEANUP [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_CREATE_MAILSLOT [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_QUERY_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_SET_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_POWER [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_DEVICE_CHANGE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_QUERY_QUOTA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy2 IRP_MJ_SET_QUOTA [8288BB02] symsnap.sys Device \Driver\volmgr \Device\VolMgrControl IRP_MJ_CREATE 84A531E8 Device \Driver\volmgr \Device\VolMgrControl IRP_MJ_READ 84A531E8 Device \Driver\volmgr \Device\VolMgrControl IRP_MJ_WRITE 84A531E8 Device \Driver\volmgr \Device\VolMgrControl IRP_MJ_FLUSH_BUFFERS 84A531E8 Device \Driver\volmgr \Device\VolMgrControl IRP_MJ_DEVICE_CONTROL 84A531E8 Device \Driver\volmgr \Device\VolMgrControl IRP_MJ_INTERNAL_DEVICE_CONTROL 84A531E8 Device \Driver\volmgr \Device\VolMgrControl IRP_MJ_SHUTDOWN 84A531E8 Device \Driver\volmgr \Device\VolMgrControl IRP_MJ_CLEANUP 84A531E8 Device \Driver\volmgr \Device\VolMgrControl IRP_MJ_POWER 84A531E8 Device \Driver\volmgr \Device\VolMgrControl IRP_MJ_SYSTEM_CONTROL 84A531E8 Device \Driver\volmgr \Device\VolMgrControl IRP_MJ_PNP 84A531E8 AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_CREATE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_CREATE_NAMED_PIPE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_CLOSE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_READ [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_WRITE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_QUERY_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_SET_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_QUERY_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_SET_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_FLUSH_BUFFERS [8288BB02] symsnap.sys |
04.11.2007, 19:52 | #19 |
| Großes Problem mit W32.Myzor.FK@yf AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_QUERY_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_SET_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_DIRECTORY_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_FILE_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_INTERNAL_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_SHUTDOWN [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_LOCK_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_CLEANUP [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_CREATE_MAILSLOT [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_QUERY_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_SET_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_POWER [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_DEVICE_CHANGE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_QUERY_QUOTA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy3 IRP_MJ_SET_QUOTA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_CREATE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_CREATE_NAMED_PIPE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_CLOSE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_READ [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_WRITE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_QUERY_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_SET_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_QUERY_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_SET_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_FLUSH_BUFFERS [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_QUERY_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_SET_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_DIRECTORY_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_FILE_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_INTERNAL_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_SHUTDOWN [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_LOCK_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_CLEANUP [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_CREATE_MAILSLOT [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_QUERY_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_SET_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_POWER [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_DEVICE_CHANGE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_QUERY_QUOTA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy4 IRP_MJ_SET_QUOTA [8288BB02] symsnap.sys Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_CREATE 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_CLOSE 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_INTERNAL_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_POWER 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_SYSTEM_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_PNP 870AE1E8 AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_CREATE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_CREATE_NAMED_PIPE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_CLOSE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_READ [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_WRITE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_QUERY_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_SET_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_QUERY_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_SET_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_FLUSH_BUFFERS [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_QUERY_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_SET_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_DIRECTORY_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_FILE_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_INTERNAL_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_SHUTDOWN [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_LOCK_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_CLEANUP [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_CREATE_MAILSLOT [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_QUERY_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_SET_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_POWER [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_DEVICE_CHANGE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_QUERY_QUOTA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy5 IRP_MJ_SET_QUOTA [8288BB02] symsnap.sys Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_CREATE 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_CLOSE 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_INTERNAL_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_POWER 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_SYSTEM_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_PNP 870AE1E8 AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_CREATE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_CREATE_NAMED_PIPE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_CLOSE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_READ [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_WRITE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_QUERY_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_SET_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_QUERY_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_SET_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_FLUSH_BUFFERS [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_QUERY_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_SET_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_DIRECTORY_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_FILE_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_INTERNAL_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_SHUTDOWN [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_LOCK_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_CLEANUP [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_CREATE_MAILSLOT [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_QUERY_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_SET_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_POWER [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_DEVICE_CHANGE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_QUERY_QUOTA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy6 IRP_MJ_SET_QUOTA [8288BB02] symsnap.sys Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_CREATE 870727A0 Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_CLOSE 870727A0 Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_DEVICE_CONTROL 870727A0 Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_INTERNAL_DEVICE_CONTROL 870727A0 Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_POWER 870727A0 Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_SYSTEM_CONTROL 870727A0 Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_PNP 870727A0 AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_CREATE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_CREATE_NAMED_PIPE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_CLOSE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_READ [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_WRITE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_QUERY_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_SET_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_QUERY_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_SET_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_FLUSH_BUFFERS [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_QUERY_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_SET_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_DIRECTORY_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_FILE_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_INTERNAL_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_SHUTDOWN [8288BB02] symsnap.sys |
04.11.2007, 19:54 | #20 |
| Großes Problem mit W32.Myzor.FK@yf AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_LOCK_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_CLEANUP [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_CREATE_MAILSLOT [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_QUERY_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_SET_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_POWER [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_DEVICE_CHANGE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_QUERY_QUOTA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy7 IRP_MJ_SET_QUOTA [8288BB02] symsnap.sys Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_CREATE 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_CLOSE 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_INTERNAL_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_POWER 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_SYSTEM_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_PNP 870AE1E8 AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_CREATE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_CREATE_NAMED_PIPE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_CLOSE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_READ [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_WRITE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_QUERY_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_SET_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_QUERY_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_SET_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_FLUSH_BUFFERS [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_QUERY_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_SET_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_DIRECTORY_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_FILE_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_INTERNAL_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_SHUTDOWN [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_LOCK_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_CLEANUP [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_CREATE_MAILSLOT [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_QUERY_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_SET_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_POWER [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_DEVICE_CHANGE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_QUERY_QUOTA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy8 IRP_MJ_SET_QUOTA [8288BB02] symsnap.sys Device \Driver\usbuhci \Device\USBPDO-4 IRP_MJ_CREATE 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-4 IRP_MJ_CLOSE 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-4 IRP_MJ_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-4 IRP_MJ_INTERNAL_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-4 IRP_MJ_POWER 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-4 IRP_MJ_SYSTEM_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-4 IRP_MJ_PNP 870AE1E8 AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_CREATE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_CREATE_NAMED_PIPE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_CLOSE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_READ [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_WRITE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_QUERY_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_SET_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_QUERY_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_SET_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_FLUSH_BUFFERS [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_QUERY_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_SET_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_DIRECTORY_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_FILE_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_INTERNAL_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_SHUTDOWN [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_LOCK_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_CLEANUP [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_CREATE_MAILSLOT [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_QUERY_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_SET_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_POWER [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_DEVICE_CHANGE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_QUERY_QUOTA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy9 IRP_MJ_SET_QUOTA [8288BB02] symsnap.sys AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_CREATE [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_CREATE_NAMED_PIPE [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_CLOSE [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_READ [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_WRITE [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_QUERY_INFORMATION [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_SET_INFORMATION [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_QUERY_EA [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_SET_EA [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_FLUSH_BUFFERS [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_QUERY_VOLUME_INFORMATION [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_SET_VOLUME_INFORMATION [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_DIRECTORY_CONTROL [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_FILE_SYSTEM_CONTROL [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_DEVICE_CONTROL [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_INTERNAL_DEVICE_CONTROL [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_SHUTDOWN [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_LOCK_CONTROL [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_CLEANUP [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_CREATE_MAILSLOT [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_QUERY_SECURITY [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_SET_SECURITY [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_POWER [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_SYSTEM_CONTROL [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_DEVICE_CHANGE [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_QUERY_QUOTA [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Tcp IRP_MJ_SET_QUOTA [8D4251D0] SYMTDI.SYS Device \Driver\usbuhci \Device\USBPDO-5 IRP_MJ_CREATE 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-5 IRP_MJ_CLOSE 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-5 IRP_MJ_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-5 IRP_MJ_INTERNAL_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-5 IRP_MJ_POWER 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-5 IRP_MJ_SYSTEM_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBPDO-5 IRP_MJ_PNP 870AE1E8 Device \Driver\usbehci \Device\USBPDO-6 IRP_MJ_CREATE 870727A0 Device \Driver\usbehci \Device\USBPDO-6 IRP_MJ_CLOSE 870727A0 Device \Driver\usbehci \Device\USBPDO-6 IRP_MJ_DEVICE_CONTROL 870727A0 Device \Driver\usbehci \Device\USBPDO-6 IRP_MJ_INTERNAL_DEVICE_CONTROL 870727A0 Device \Driver\usbehci \Device\USBPDO-6 IRP_MJ_POWER 870727A0 Device \Driver\usbehci \Device\USBPDO-6 IRP_MJ_SYSTEM_CONTROL 870727A0 Device \Driver\usbehci \Device\USBPDO-6 IRP_MJ_PNP 870727A0 Device \Driver\volmgr \Device\HarddiskVolume1 IRP_MJ_CREATE 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume1 IRP_MJ_READ 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume1 IRP_MJ_WRITE 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume1 IRP_MJ_FLUSH_BUFFERS 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume1 IRP_MJ_DEVICE_CONTROL 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume1 IRP_MJ_INTERNAL_DEVICE_CONTROL 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume1 IRP_MJ_SHUTDOWN 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume1 IRP_MJ_CLEANUP 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume1 IRP_MJ_POWER 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume1 IRP_MJ_SYSTEM_CONTROL 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume1 IRP_MJ_PNP 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume2 IRP_MJ_CREATE 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume2 IRP_MJ_READ 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume2 IRP_MJ_WRITE 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume2 IRP_MJ_FLUSH_BUFFERS 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume2 IRP_MJ_DEVICE_CONTROL 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume2 IRP_MJ_INTERNAL_DEVICE_CONTROL 84A531E8 |
04.11.2007, 19:56 | #21 |
| Großes Problem mit W32.Myzor.FK@yf Device \Driver\volmgr \Device\HarddiskVolume2 IRP_MJ_SHUTDOWN 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume2 IRP_MJ_CLEANUP 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume2 IRP_MJ_POWER 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume2 IRP_MJ_SYSTEM_CONTROL 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume2 IRP_MJ_PNP 84A531E8 Device \Driver\cdrom \Device\CdRom0 IRP_MJ_CREATE 871DB1E8 Device \Driver\cdrom \Device\CdRom0 IRP_MJ_CLOSE 871DB1E8 Device \Driver\cdrom \Device\CdRom0 IRP_MJ_READ 871DB1E8 Device \Driver\cdrom \Device\CdRom0 IRP_MJ_WRITE 871DB1E8 Device \Driver\cdrom \Device\CdRom0 IRP_MJ_FLUSH_BUFFERS 871DB1E8 Device \Driver\cdrom \Device\CdRom0 IRP_MJ_DEVICE_CONTROL 871DB1E8 Device \Driver\cdrom \Device\CdRom0 IRP_MJ_INTERNAL_DEVICE_CONTROL 871DB1E8 Device \Driver\cdrom \Device\CdRom0 IRP_MJ_SHUTDOWN 871DB1E8 Device \Driver\cdrom \Device\CdRom0 IRP_MJ_POWER 871DB1E8 Device \Driver\cdrom \Device\CdRom0 IRP_MJ_SYSTEM_CONTROL 871DB1E8 Device \Driver\cdrom \Device\CdRom0 IRP_MJ_PNP 871DB1E8 Device \Driver\volmgr \Device\HarddiskVolume3 IRP_MJ_CREATE 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume3 IRP_MJ_READ 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume3 IRP_MJ_WRITE 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume3 IRP_MJ_FLUSH_BUFFERS 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume3 IRP_MJ_DEVICE_CONTROL 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume3 IRP_MJ_INTERNAL_DEVICE_CONTROL 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume3 IRP_MJ_SHUTDOWN 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume3 IRP_MJ_CLEANUP 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume3 IRP_MJ_POWER 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume3 IRP_MJ_SYSTEM_CONTROL 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume3 IRP_MJ_PNP 84A531E8 Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-0 IRP_MJ_CREATE 84A571E8 Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-0 IRP_MJ_CLOSE 84A571E8 Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-0 IRP_MJ_DEVICE_CONTROL 84A571E8 Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-0 IRP_MJ_INTERNAL_DEVICE_CONTROL 84A571E8 Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-0 IRP_MJ_POWER 84A571E8 Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-0 IRP_MJ_SYSTEM_CONTROL 84A571E8 Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-0 IRP_MJ_PNP 84A571E8 Device \Driver\iaStor \Device\Ide\iaStor0 IRP_MJ_CREATE 84A561E8 Device \Driver\iaStor \Device\Ide\iaStor0 IRP_MJ_CLOSE 84A561E8 Device \Driver\iaStor \Device\Ide\iaStor0 IRP_MJ_DEVICE_CONTROL 84A561E8 Device \Driver\iaStor \Device\Ide\iaStor0 IRP_MJ_INTERNAL_DEVICE_CONTROL 84A561E8 Device \Driver\iaStor \Device\Ide\iaStor0 IRP_MJ_POWER 84A561E8 Device \Driver\iaStor \Device\Ide\iaStor0 IRP_MJ_SYSTEM_CONTROL 84A561E8 Device \Driver\iaStor \Device\Ide\iaStor0 IRP_MJ_PNP 84A561E8 Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_CREATE 84A571E8 Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_CLOSE 84A571E8 Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_DEVICE_CONTROL 84A571E8 Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_INTERNAL_DEVICE_CONTROL 84A571E8 Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_POWER 84A571E8 Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_SYSTEM_CONTROL 84A571E8 Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_PNP 84A571E8 Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_CREATE 84A571E8 Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_CLOSE 84A571E8 Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_DEVICE_CONTROL 84A571E8 Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_INTERNAL_DEVICE_CONTROL 84A571E8 Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_POWER 84A571E8 Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_SYSTEM_CONTROL 84A571E8 Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_PNP 84A571E8 Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 IRP_MJ_CREATE 84A561E8 Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 IRP_MJ_CLOSE 84A561E8 Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 IRP_MJ_DEVICE_CONTROL 84A561E8 Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 IRP_MJ_INTERNAL_DEVICE_CONTROL 84A561E8 Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 IRP_MJ_POWER 84A561E8 Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 IRP_MJ_SYSTEM_CONTROL 84A561E8 Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 IRP_MJ_PNP 84A561E8 Device \Driver\volmgr \Device\HarddiskVolume4 IRP_MJ_CREATE 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume4 IRP_MJ_READ 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume4 IRP_MJ_WRITE 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume4 IRP_MJ_FLUSH_BUFFERS 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume4 IRP_MJ_DEVICE_CONTROL 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume4 IRP_MJ_INTERNAL_DEVICE_CONTROL 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume4 IRP_MJ_SHUTDOWN 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume4 IRP_MJ_CLEANUP 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume4 IRP_MJ_POWER 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume4 IRP_MJ_SYSTEM_CONTROL 84A531E8 Device \Driver\volmgr \Device\HarddiskVolume4 IRP_MJ_PNP 84A531E8 AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_CREATE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_CREATE_NAMED_PIPE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_CLOSE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_READ [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_WRITE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_QUERY_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_SET_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_QUERY_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_SET_EA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_FLUSH_BUFFERS [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_QUERY_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_SET_VOLUME_INFORMATION [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_DIRECTORY_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_FILE_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_INTERNAL_DEVICE_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_SHUTDOWN [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_LOCK_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_CLEANUP [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_CREATE_MAILSLOT [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_QUERY_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_SET_SECURITY [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_POWER [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_SYSTEM_CONTROL [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_DEVICE_CHANGE [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_QUERY_QUOTA [8288BB02] symsnap.sys AttachedDevice \Driver\volsnap \Device\HarddiskVolumeShadowCopy10 IRP_MJ_SET_QUOTA [8288BB02] symsnap.sys Device \Driver\netbt \Device\NetBt_Wins_Export IRP_MJ_CREATE 887C31E8 Device \Driver\netbt \Device\NetBt_Wins_Export IRP_MJ_CLOSE 887C31E8 Device \Driver\netbt \Device\NetBt_Wins_Export IRP_MJ_DEVICE_CONTROL 887C31E8 Device \Driver\netbt \Device\NetBt_Wins_Export IRP_MJ_INTERNAL_DEVICE_CONTROL 887C31E8 Device \Driver\netbt \Device\NetBt_Wins_Export IRP_MJ_CLEANUP 887C31E8 Device \Driver\netbt \Device\NetBt_Wins_Export IRP_MJ_PNP 887C31E8 Device \Driver\netbt \Device\NetBT_Tcpip_{920B322A-E7C9-4528-9995-B0F9EABDB1CD} IRP_MJ_CREATE 887C31E8 Device \Driver\netbt \Device\NetBT_Tcpip_{920B322A-E7C9-4528-9995-B0F9EABDB1CD} IRP_MJ_CLOSE 887C31E8 Device \Driver\netbt \Device\NetBT_Tcpip_{920B322A-E7C9-4528-9995-B0F9EABDB1CD} IRP_MJ_DEVICE_CONTROL 887C31E8 Device \Driver\netbt \Device\NetBT_Tcpip_{920B322A-E7C9-4528-9995-B0F9EABDB1CD} IRP_MJ_INTERNAL_DEVICE_CONTROL 887C31E8 Device \Driver\netbt \Device\NetBT_Tcpip_{920B322A-E7C9-4528-9995-B0F9EABDB1CD} IRP_MJ_CLEANUP 887C31E8 Device \Driver\netbt \Device\NetBT_Tcpip_{920B322A-E7C9-4528-9995-B0F9EABDB1CD} IRP_MJ_PNP 887C31E8 Device \Driver\iScsiPrt \Device\RaidPort0 IRP_MJ_CREATE 871741E8 Device \Driver\iScsiPrt \Device\RaidPort0 IRP_MJ_CLOSE 871741E8 Device \Driver\iScsiPrt \Device\RaidPort0 IRP_MJ_DEVICE_CONTROL 871741E8 Device \Driver\iScsiPrt \Device\RaidPort0 IRP_MJ_INTERNAL_DEVICE_CONTROL 871741E8 Device \Driver\iScsiPrt \Device\RaidPort0 IRP_MJ_POWER 871741E8 Device \Driver\iScsiPrt \Device\RaidPort0 IRP_MJ_SYSTEM_CONTROL 871741E8 Device \Driver\iScsiPrt \Device\RaidPort0 IRP_MJ_PNP 871741E8 AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_CREATE [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_CREATE_NAMED_PIPE [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_CLOSE [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_READ [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_WRITE [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_QUERY_INFORMATION [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_SET_INFORMATION [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_QUERY_EA [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_SET_EA [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_FLUSH_BUFFERS [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_QUERY_VOLUME_INFORMATION [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_SET_VOLUME_INFORMATION [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_DIRECTORY_CONTROL [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_FILE_SYSTEM_CONTROL [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_DEVICE_CONTROL [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_INTERNAL_DEVICE_CONTROL [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_SHUTDOWN [8D4251D0] SYMTDI.SYS |
04.11.2007, 19:57 | #22 |
| Großes Problem mit W32.Myzor.FK@yf So das is der letze Teil. AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_LOCK_CONTROL [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_CLEANUP [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_CREATE_MAILSLOT [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_QUERY_SECURITY [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_SET_SECURITY [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_POWER [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_SYSTEM_CONTROL [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_DEVICE_CHANGE [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_QUERY_QUOTA [8D4251D0] SYMTDI.SYS AttachedDevice \Driver\tdx \Device\Udp IRP_MJ_SET_QUOTA [8D4251D0] SYMTDI.SYS Device \Driver\usbuhci \Device\USBFDO-0 IRP_MJ_CREATE 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-0 IRP_MJ_CLOSE 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-0 IRP_MJ_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-0 IRP_MJ_INTERNAL_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-0 IRP_MJ_POWER 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-0 IRP_MJ_SYSTEM_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-0 IRP_MJ_PNP 870AE1E8 Device \Driver\netbt \Device\NetBT_Tcpip_{031ECDCD-A5F4-4794-9D2F-271ADE06D3F4} IRP_MJ_CREATE 887C31E8 Device \Driver\netbt \Device\NetBT_Tcpip_{031ECDCD-A5F4-4794-9D2F-271ADE06D3F4} IRP_MJ_CLOSE 887C31E8 Device \Driver\netbt \Device\NetBT_Tcpip_{031ECDCD-A5F4-4794-9D2F-271ADE06D3F4} IRP_MJ_DEVICE_CONTROL 887C31E8 Device \Driver\netbt \Device\NetBT_Tcpip_{031ECDCD-A5F4-4794-9D2F-271ADE06D3F4} IRP_MJ_INTERNAL_DEVICE_CONTROL 887C31E8 Device \Driver\netbt \Device\NetBT_Tcpip_{031ECDCD-A5F4-4794-9D2F-271ADE06D3F4} IRP_MJ_CLEANUP 887C31E8 Device \Driver\netbt \Device\NetBT_Tcpip_{031ECDCD-A5F4-4794-9D2F-271ADE06D3F4} IRP_MJ_PNP 887C31E8 Device \Driver\usbuhci \Device\USBFDO-1 IRP_MJ_CREATE 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-1 IRP_MJ_CLOSE 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-1 IRP_MJ_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-1 IRP_MJ_INTERNAL_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-1 IRP_MJ_POWER 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-1 IRP_MJ_SYSTEM_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-1 IRP_MJ_PNP 870AE1E8 Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_CREATE 870727A0 Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_CLOSE 870727A0 Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_DEVICE_CONTROL 870727A0 Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_INTERNAL_DEVICE_CONTROL 870727A0 Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_POWER 870727A0 Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_SYSTEM_CONTROL 870727A0 Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_PNP 870727A0 Device \Driver\usbuhci \Device\USBFDO-3 IRP_MJ_CREATE 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-3 IRP_MJ_CLOSE 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-3 IRP_MJ_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-3 IRP_MJ_INTERNAL_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-3 IRP_MJ_POWER 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-3 IRP_MJ_SYSTEM_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-3 IRP_MJ_PNP 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-4 IRP_MJ_CREATE 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-4 IRP_MJ_CLOSE 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-4 IRP_MJ_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-4 IRP_MJ_INTERNAL_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-4 IRP_MJ_POWER 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-4 IRP_MJ_SYSTEM_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-4 IRP_MJ_PNP 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-5 IRP_MJ_CREATE 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-5 IRP_MJ_CLOSE 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-5 IRP_MJ_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-5 IRP_MJ_INTERNAL_DEVICE_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-5 IRP_MJ_POWER 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-5 IRP_MJ_SYSTEM_CONTROL 870AE1E8 Device \Driver\usbuhci \Device\USBFDO-5 IRP_MJ_PNP 870AE1E8 Device \Driver\usbehci \Device\USBFDO-6 IRP_MJ_CREATE 870727A0 Device \Driver\usbehci \Device\USBFDO-6 IRP_MJ_CLOSE 870727A0 Device \Driver\usbehci \Device\USBFDO-6 IRP_MJ_DEVICE_CONTROL 870727A0 Device \Driver\usbehci \Device\USBFDO-6 IRP_MJ_INTERNAL_DEVICE_CONTROL 870727A0 Device \Driver\usbehci \Device\USBFDO-6 IRP_MJ_POWER 870727A0 Device \Driver\usbehci \Device\USBFDO-6 IRP_MJ_SYSTEM_CONTROL 870727A0 Device \Driver\usbehci \Device\USBFDO-6 IRP_MJ_PNP 870727A0 ---- EOF - GMER 1.0.13 ---- |
04.11.2007, 20:24 | #23 |
Administrator > Competence Manager | Großes Problem mit W32.Myzor.FK@yf Hannibal, seit wann tritt denn das Problem auf mit den falschen Links bei Google? Ich habe nun in 2 anderen Foren "Kollegen" um Rat gebeten, keiner konnte mir genaueres zu deinem Problem sagen bzw. helfen! Es gibt die Möglichkeit einer Systemwiederherstellung, d.h. dein System sieht dann so aus wie es an diesem Tag (automatisch!) abgesichert wurde. Somit würde dein Problem eventuell gelöst werden.
__________________ Anfragen per Email, Profil- oder privater Nachricht werden ignoriert! Hilfe gibts NUR im Forum! Stulti est se ipsum sapientem putare. |
04.11.2007, 20:41 | #24 | |
| Großes Problem mit W32.Myzor.FK@yfZitat:
Ich habe gerade n HijackThis für Vista gefunden. Könnte das mein Problem lösen ? Geändert von Hannibal252 (04.11.2007 um 20:49 Uhr) |
04.11.2007, 20:52 | #25 | |
Administrator > Competence Manager | Großes Problem mit W32.Myzor.FK@yfSorry, falscher Thread! Zitat:
Jedoch wird diese auch die DNS-Umleitung erkennen. Und leider auch nicht bereinigen/entfernen.
__________________ Anfragen per Email, Profil- oder privater Nachricht werden ignoriert! Hilfe gibts NUR im Forum! Stulti est se ipsum sapientem putare. |
04.11.2007, 20:57 | #26 |
| Großes Problem mit W32.Myzor.FK@yf da steht das ich das manuell entfernen muss. Dazu soll ich in Notepad C:\Windows\System32\drivers\etc\hosts öffnen und die linien finden die HijackThis mir angegeben hat und diese löschen. |
04.11.2007, 20:59 | #27 | ||
Administrator > Competence Manager | Großes Problem mit W32.Myzor.FK@yfZitat:
es darf unter dem Beispiel Text nur das stehen: Zitat:
__________________ Anfragen per Email, Profil- oder privater Nachricht werden ignoriert! Hilfe gibts NUR im Forum! Stulti est se ipsum sapientem putare. |
04.11.2007, 21:04 | #28 |
| Großes Problem mit W32.Myzor.FK@yf bei mir steht folgendes unter dem beispieltext: 127.0.0.1 localhost ::1 localhost Wenn ich die untere Zele lösche und neu speichern will meint der PC aber dass die datei nicht gespeichert werden kann. Ich soll dateipfad und namen überprüfen -.- |
04.11.2007, 21:09 | #29 | |
Administrator > Competence Manager | Großes Problem mit W32.Myzor.FK@yfZitat:
Wichtig ist eigentlich nur das dort nichts mit 85.255.x.x steht! Ansonsten versuch mal eine Systemwiederherstellung, das wäre das einzige was mir dazu jetzt noch einfällt. Fakt ist: Die DNS-Umleitung muss raus, deine Verbindung wird so abgefangen und (eventuell!) missbraucht, und die gesamte Geschwindigkeit nimmt auch mit der Zeit ab.
__________________ Anfragen per Email, Profil- oder privater Nachricht werden ignoriert! Hilfe gibts NUR im Forum! Stulti est se ipsum sapientem putare. |
04.11.2007, 21:12 | #30 |
| Großes Problem mit W32.Myzor.FK@yf Dann bleibt wohl oder übel keine andere Möglichkeit. Trotzdem danke die Hilfe hier ist wirklich gut. Dafür hast du n dickes Lob verdient mfg Hannibal PS ich melde mich nach der Systemwiederherstellung wieder. |
Themen zu Großes Problem mit W32.Myzor.FK@yf |
abgesicherten modus, add-on, adobe, application, attention, computer, cs3, cyberlink, desktop, dll, drivers, firefox, generic, hijack, internet, internet explorer, mozilla, mozilla firefox, photoshop, problem, programm, registry, rundll, security, server, software, suche, symantec, temp, virus, windows, windows sidebar, windows\system32\drivers, öffnet |