Anbei die Logs von GMER, OSAM und aswMBR.exe:
OSAM Logfile:
Code:
Report of OSAM: Autorun Manager v5.0.11926.0
hxxp://www.online-solutions.ru/en/
Saved at 21:20:13 on 11.11.2011
OS: Windows XP Home Edition Service Pack 3 (Build 2600)
Default Browser: Mozilla Corporation Firefox 5.0
Scanner Settings
[x] Rootkits detection (hidden registry)
[x] Rootkits detection (hidden files)
[x] Retrieve files information
[x] Check Microsoft signatures
Filters
[ ] Trusted entries
[ ] Empty entries
[x] Hidden registry entries (rootkit activity)
[x] Exclusively opened files
[x] Not found files
[x] Files without detailed information
[x] Existing files
[ ] Non-startable services
[ ] Non-startable drivers
[x] Active entries
[x] Disabled entries
[Common]
-----( %SystemRoot%\Tasks )-----
"AppleSoftwareUpdate.job" - "Apple Inc." - C:\Programme\Apple Software Update\SoftwareUpdate.exe
"GoogleUpdateTaskMachineCore.job" - "Google Inc." - C:\Programme\Google\Update\GoogleUpdate.exe
"GoogleUpdateTaskMachineUA.job" - "Google Inc." - C:\Programme\Google\Update\GoogleUpdate.exe
"GoogleUpdateTaskUserS-1-5-21-925180219-156916486-3693596870-1006Core.job" - "Google Inc." - C:\Dokumente und Einstellungen\****\Lokale Einstellungen\Anwendungsdaten\Google\Update\GoogleUpdate.exe
"GoogleUpdateTaskUserS-1-5-21-925180219-156916486-3693596870-1006UA.job" - "Google Inc." - C:\Dokumente und Einstellungen\****\Lokale Einstellungen\Anwendungsdaten\Google\Update\GoogleUpdate.exe
[Control Panel Objects]
-----( %SystemRoot%\system32 )-----
"FlashPlayerCPLApp.cpl" - "Adobe Systems Incorporated" - C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
"infocardcpl.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\infocardcpl.cpl
"ISUSPM.cpl" - "InstallShield Software Corporation" - C:\WINDOWS\system32\ISUSPM.cpl
"javacpl.cpl" - "Sun Microsystems, Inc." - C:\WINDOWS\system32\javacpl.cpl
"WACntlPnl.cpl" - "Hewlett-Packard Development Company, L.P." - C:\WINDOWS\system32\WACntlPnl.cpl
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls )-----
"Avira AntiVir PersonalEdition Classic " - ? - C:\PROGRA~1\Avira\ANTIVI~1\avconfig.cpl (File not found)
"CognizanceWS" - "Cognizance Corporation" - C:\PROGRA~1\HPQ\IAM\Bin\Settings.dll
"PTHOST.CPL" - "HP" - C:\Programme\HPQ\HP ProtectTools Security Manager\PTHOST.CPL
"QlbConfg" - ? - C:\Programme\Hewlett-Packard\HP Quick Launch Buttons\QlbConfg.cpl
"QuickTime" - "Apple Inc." - C:\Programme\QuickTime\QTSystem\QuickTime.cpl
"SMAX4CP" - "Analog Devices, Inc." - C:\Programme\Analog Devices\SoundMAX\SMax4.cpl
[Drivers]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"ACEDRV09" (ACEDRV09) - "Protect Software GmbH" - C:\WINDOWS\system32\drivers\ACEDRV09.sys
"catchme" (catchme) - ? - C:\ComboFix\catchme.sys (File not found)
"DLABOIOM" (DLABOIOM) - "Sonic Solutions" - C:\WINDOWS\System32\DLA\DLABOIOM.SYS
"DLACDBHM" (DLACDBHM) - "Sonic Solutions" - C:\WINDOWS\System32\Drivers\DLACDBHM.SYS
"DLADResN" (DLADResN) - "Sonic Solutions" - C:\WINDOWS\System32\DLA\DLADResN.SYS
"DLAIFS_M" (DLAIFS_M) - "Sonic Solutions" - C:\WINDOWS\System32\DLA\DLAIFS_M.SYS
"DLAOPIOM" (DLAOPIOM) - "Sonic Solutions" - C:\WINDOWS\System32\DLA\DLAOPIOM.SYS
"DLAPoolM" (DLAPoolM) - "Sonic Solutions" - C:\WINDOWS\System32\DLA\DLAPoolM.SYS
"DLARTL_N" (DLARTL_N) - "Sonic Solutions" - C:\WINDOWS\System32\Drivers\DLARTL_N.SYS
"DLAUDFAM" (DLAUDFAM) - "Sonic Solutions" - C:\WINDOWS\System32\DLA\DLAUDFAM.SYS
"DLAUDF_M" (DLAUDF_M) - "Sonic Solutions" - C:\WINDOWS\System32\DLA\DLAUDF_M.SYS
"DRVMCDB" (DRVMCDB) - "Sonic Solutions" - C:\WINDOWS\System32\Drivers\DRVMCDB.SYS
"DRVNDDM" (DRVNDDM) - "Sonic Solutions" - C:\WINDOWS\System32\Drivers\DRVNDDM.SYS
"Lavasoft helper driver" (Lavasoft Kernexplorer) - ? - C:\Programme\Lavasoft\Ad-Aware\KernExplorer.sys (File not found)
"MBAMSwissArmy" (MBAMSwissArmy) - ? - C:\WINDOWS\system32\drivers\mbamswissarmy.sys (File not found)
"PCIDump" (PCIDump) - ? - C:\WINDOWS\system32\drivers\PCIDump.sys (File not found)
"PDCOMP" (PDCOMP) - ? - C:\WINDOWS\system32\drivers\PDCOMP.sys (File not found)
"PDFRAME" (PDFRAME) - ? - C:\WINDOWS\system32\drivers\PDFRAME.sys (File not found)
"PDRELI" (PDRELI) - ? - C:\WINDOWS\system32\drivers\PDRELI.sys (File not found)
"PDRFRAME" (PDRFRAME) - ? - C:\WINDOWS\system32\drivers\PDRFRAME.sys (File not found)
"PersonalSecureDrive" (PersonalSecureDrive) - "Infineon Technologies AG" - C:\WINDOWS\System32\drivers\psd.sys
"PxHelp20" (PxHelp20) - "Sonic Solutions" - C:\WINDOWS\System32\Drivers\PxHelp20.sys
"ssmdrv" (ssmdrv) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\ssmdrv.sys
"WDICA" (WDICA) - ? - C:\WINDOWS\system32\drivers\WDICA.sys (File not found)
"WIDCOMM USB Bluetooth Driver" (BTWUSB) - "Broadcom Corporation." - C:\WINDOWS\System32\Drivers\btwusb.sys
[Explorer]
-----( HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components )-----
{89B4C1CD-B018-4511-B0A1-5476DBF70820} "StubPath" - "Microsoft Corporation" - C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install
-----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )-----
{F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Programme\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll
-----( HKLM\Software\Classes\Protocols\Filter )-----
{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll
{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll
{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll
-----( HKLM\Software\Classes\Protocols\Handler )-----
{3D9F03FA-7A94-11D3-BE81-0050048385D1} "Data Page Pluggable Protocol mso-offdap Handler" - "Microsoft Corporation" - C:\PROGRA~1\GEMEIN~1\MICROS~1\WEBCOM~1\10\OWC10.DLL
{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} "IEProtocolHandler Class" - "Skype Technologies" - C:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL
{CD00020A-8B95-11D1-82DB-00C04FB1625D} "Microsoft PKM KnowledgePluggable Class" - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Folders\PKMCDO.DLL
{91774881-D725-4E58-B298-07617B9B86A8} "Skype IE add-on Pluggable Protocol" - "Skype Technologies S.A." - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )-----
{23170F69-40C1-278A-1000-000100020000} "7-Zip Shell Extension" - "Igor Pavlov" - C:\Programme\7-Zip\7-zip.dll
{42071714-76d4-11d1-8b24-00a0c9068ff3} "CPL-Erweiterung für Anzeigeverschiebung" - ? - (File not found | COM-object registry key not found)
{666C7831-A9B6-4AB4-94ED-DC238C81E925} "Dokument-Manager (Shell Context Menu)" - "Cognizance Corporation" - C:\Programme\HPQ\IAM\Bin\SFSShell.dll
{666C7835-A9B6-4AB4-94ED-DC238C81E925} "Dokument-Manager (Shell Drive Properties)" - "Cognizance Corporation" - C:\Programme\HPQ\IAM\Bin\SFSShell.dll
{666C7832-A9B6-4AB4-94ED-DC238C81E925} "Dokument-Manager (Shell File Properties)" - "Cognizance Corporation" - C:\Programme\HPQ\IAM\Bin\SFSShell.dll
{5CA3D70E-1895-11CF-8E15-001234567890} "DriveLetterAccess" - "Sonic Solutions" - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
{1D2680C9-0E2A-469d-B787-065558BC7D43} "Fusion Cache" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll
{FAC3CBF6-8697-43d0-BAB9-DCD1FCE19D75} "IE User Assist" - ? - (File not found | COM-object registry key not found)
{B9E1D2CB-CCFF-4AA6-9579-D7A4754030EF} "iTunes" - "Apple Inc." - C:\Programme\iTunes\iTunesMiniPlayer.dll
{853FE2B1-B769-11d0-9C4E-00C04FB6C6FA} "Kontextmenü für die Verschlüsselung" - ? - (File not found | COM-object registry key not found)
{42042206-2D85-11D3-8CFF-005004838597} "Microsoft Office HTML Icon Handler" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office10\msohev.dll
{0006F045-0000-0000-C000-000000000046} "Outlook-Dateisymbolerweiterung" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office10\OLKFSTUB.DLL
{E08BF9C5-191E-4B15-8F67-2622B4DB5580} "PSDShCtrl Class" - "Infineon Technologies AG" - C:\Programme\ProtectTools\Embedded Security Software\PSDShExt.dll
{7F67036B-66F1-411A-AD85-759FB9C5B0DB} "SampleView" - "XSS" - C:\WINDOWS\system32\ShellvRTF.dll
{45AC2688-0253-4ED8-97DE-B5370FA7D48A} "Shell Extension for Malware scanning" - ? - (File not found | COM-object registry key not found)
{E37E2028-CE1A-4f42-AF05-6CEABC4E5D75} "Shell Icon Handler for Application References" - "Microsoft Corporation" - C:\WINDOWS\system32\dfshim.dll
{764BF0E1-F219-11ce-972D-00AA00A14F56} "Shellerweiterungen für die Dateikomprimierung" - ? - (File not found | COM-object registry key not found)
{e82a2d71-5b2f-43a0-97b8-81be15854de8} "ShellLink for Application References" - "Microsoft Corporation" - C:\WINDOWS\system32\dfshim.dll
{5E2121EE-0300-11D4-8D3B-444553540000} "SimpleShlExt Class" - ? - C:\Programme\ATI Technologies\ATI.ACE\atiacmxx.dll
{BDEADF00-C265-11D0-BCED-00A0C90AB50F} "Webordner" - "Microsoft Corporation" - C:\PROGRA~1\GEMEIN~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL
[Internet Explorer]
-----( HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser )-----
<binary data> "EPSON Web-To-Page" - "SEIKO EPSON CORPORATION" - C:\Programme\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
<binary data> "Google Toolbar" - "Google Inc." - C:\Programme\Google\Google Toolbar\GoogleToolbar_32.dll
ITBar7Height "ITBar7Height" - ? - (File not found | COM-object registry key not found)
<binary data> "ITBar7Layout" - ? - (File not found | COM-object registry key not found)
<binary data> "ITBarLayout" - ? - (File not found | COM-object registry key not found)
-----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )-----
{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} "Java Plug-in 1.5.0_06" - "Sun Microsystems, Inc." - C:\Programme\Java\jre1.5.0_06\bin\npjpi150_06.dll / hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab
{8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 1.6.0_11" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_11.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} "Java Plug-in 1.6.0_11" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_11.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 1.6.0_11" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_11.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
{D27CDB6E-AE6D-11CF-96B8-444553540000} "Shockwave Flash Object" - "Adobe Systems, Inc." - C:\WINDOWS\system32\Macromed\Flash\Flash10n.ocx / hxxp://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
{8FFBE65D-2C9C-4669-84BD-5829DC0B603C} "{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}" - ? - (File not found | COM-object registry key not found) / hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
{E2883E8F-472F-4FB0-9522-AC9BF37916A7} "{E2883E8F-472F-4FB0-9522-AC9BF37916A7}" - ? - (File not found | COM-object registry key not found) / hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )-----
{4248FE82-7FCB-46AC-B270-339F08212110} "&Virtuelle Tastatur" - "Kaspersky Lab ZAO" - C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\klwtbbho.dll
{CCF151D8-D089-449F-A5A4-D9909053F20F} "Li&nks untersuchen" - "Kaspersky Lab ZAO" - C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\klwtbbho.dll
{898EA8C8-E7FF-479B-8935-AEC46303B9E5} "Skype Plug-In" - "Skype Technologies S.A." - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar )-----
<binary data> "EPSON Web-To-Page" - "SEIKO EPSON CORPORATION" - C:\Programme\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
<binary data> "Google Toolbar" - "Google Inc." - C:\Programme\Google\Google Toolbar\GoogleToolbar_32.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )-----
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} "Adobe PDF Reader Link Helper" - "Adobe Systems Incorporated" - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
{5CA3D70E-1895-11CF-8E15-001234567890} "DriveLetterAccess" - "Sonic Solutions" - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} "EpsonToolBandKicker Class" - "SEIKO EPSON CORPORATION" - C:\Programme\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
{E33CF602-D945-461A-83F0-819F76A199F8} "FilterBHO Class" - "Kaspersky Lab ZAO" - C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\klwtbbho.dll
{AA58ED58-01DD-4d91-8333-CF10577473F7} "Google Toolbar Helper" - "Google Inc." - C:\Programme\Google\Google Toolbar\GoogleToolbar_32.dll
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} "Google Toolbar Notifier BHO" - "Google Inc." - C:\Programme\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll
{DF21F1DB-80C6-11D3-9483-B03D0EC10000} "HP Credential Manager for ProtectTools" - "Infineon Technologies AG" - C:\Programme\HPQ\IAM\Bin\ItIeAddIN.dll
{59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} "IEVkbdBHO Class" - "Kaspersky Lab ZAO" - C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\ievkbd.dll
{DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\jp2ssv.dll
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} "Java(tm) Plug-In SSV Helper" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\ssv.dll
{E7E6F031-17CE-4C07-BC86-EABFE594F69C} "JQSIEStartDetectorImpl Class" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} "Skype Plug-In" - "Skype Technologies S.A." - C:\Programme\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
[Logon]
-----( %AllUsersProfile%\Startmenü\Programme\Autostart )-----
"desktop.ini" - ? - C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\desktop.ini
-----( %UserProfile%\Startmenü\Programme\Autostart )-----
"desktop.ini" - ? - C:\Dokumente und Einstellungen\****\Startmenü\Programme\Autostart\desktop.ini
-----( HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run )-----
"GameXN" - "EasyBits Software AS" - "C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\GameXN\GameXNGO.exe" /silent
"GameXN (news)" - "EasyBits Software AS" - "C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\GameXN\GameXNGO.exe" /n
"GameXN (update)" - "EasyBits Software AS" - "C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\GameXN\GameXNGO.exe" /u
"Skype" - "Skype Technologies S.A." - "C:\Programme\Skype\Phone\Skype.exe" /nosplash /minimized
"swg" - "Google Inc." - "C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )-----
"APSDaemon" - "Apple Inc." - "C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\APSDaemon.exe"
"AVP" - "Kaspersky Lab ZAO" - "C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe"
"Cpqset" - ? - C:\Programme\Hewlett-Packard\Default Settings\cpqset.exe (File found, but it contains no detailed information)
"FreePDF Assistant" - "shbox.de" - C:\Programme\FreePDF_XP\fpassist.exe
"iTunesHelper" - "Apple Inc." - "C:\Programme\iTunes\iTunesHelper.exe"
"PTHOSTTR" - "Hewlett-Packard Development Company, L.P." - C:\Programme\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
"QuickTime Task" - "Apple Inc." - "C:\Programme\QuickTime\QTTask.exe" -atboottime
"SSC Service Utility" - "SSC Localization Group" - C:\Programme\SSC Service Utility-neu\ssc_serv.exe /s
[Print Monitors]
-----( HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors )-----
"PDFCreator" - ? - C:\WINDOWS\system32\pdfcmnnt.dll (File found, but it contains no detailed information)
"Redirected Port" - ? - C:\WINDOWS\system32\redmonnt.dll (File found, but it contains no detailed information)
[Services]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
".NET Runtime Optimization Service v2.0.50727_X86" (clr_optimization_v2.0.50727_32) - "Microsoft Corporation" - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
"Anwendungsverwaltung" (AppMgmt) - ? - C:\WINDOWS\System32\appmgmts.dll (File not found)
"Apple Mobile Device" (Apple Mobile Device) - "Apple Inc." - C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe
"ASP.NET State Service" (aspnet_state) - "Microsoft Corporation" - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
"Canon Camera Access Library 8" (CCALib8) - "Canon Inc." - C:\Programme\Canon\CAL\CALMAIN.exe
"Dienst "Bonjour"" (Bonjour Service) - "Apple Inc." - C:\Programme\Bonjour\mDNSResponder.exe
"Google Software Updater" (gusvc) - "Google" - C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe
"Google Update Service (gupdate)" (gupdate) - "Google Inc." - C:\Programme\Google\Update\GoogleUpdate.exe
"Google Update-Dienst (gupdatem)" (gupdatem) - "Google Inc." - C:\Programme\Google\Update\GoogleUpdate.exe
"hpqwmiex" (hpqwmiex) - "Hewlett-Packard Development Company, L.P." - C:\Programme\Hewlett-Packard\Shared\hpqwmiex.exe
"InstallDriver Table Manager" (IDriverT) - "Macrovision Corporation" - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe
"iPod-Dienst" (iPod Service) - "Apple Inc." - C:\Programme\iPod\bin\iPodService.exe
"Java Quick Starter" (JavaQuickStarterService) - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\jqs.exe
"Kaspersky Security Suite CBE 11 Service" (AVP) - "Kaspersky Lab ZAO" - C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe
"LightScribeService Direct Disc Labeling Service" (LightScribeService) - "Hewlett-Packard Company" - C:\Programme\Gemeinsame Dateien\LightScribe\LSSrvc.exe
"Lokaler Verbindungskanal" (ASChannel) - "Cognizance Corporation" - C:\Programme\HPQ\IAM\Bin\ASChnl.dll
"PC Angel" (PCA) - "SoftThinks" - C:\WINDOWS\SMINST\PCAngel.exe
"Personal Secure Drive Service" (PersonalSecureDriveService) - "Infineon Technologies AG" - C:\Programme\ProtectTools\Embedded Security Software\PSDsrvc.EXE
"Security Platform Management Service" (IFXSpMgtSrv) - "Infineon Technologies AG" - C:\WINDOWS\system32\IFXSPMGT.exe
"Trusted Platform Core Service" (IFXTCS) - "Infineon Technologies AG" - C:\WINDOWS\system32\IFXTCS.exe
"Windows CardSpace" (idsvc) - "Microsoft Corporation" - c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
"Windows Presentation Foundation Font Cache 3.0.0.0" (FontCache3.0.0.0) - "Microsoft Corporation" - c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
[Winlogon]
-----( HKCU\Control Panel\IOProcs )-----
"MVB" - ? - mvfs32.dll (File not found)
-----( HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions )-----
{8F51D94E-8B89-4844-B15C-9C049BA0F49F} "DLLName" - "Cognizance Corporation" - C:\Programme\HPQ\IAM\Bin\ItVCard.dll
{c6dc5466-785a-11d2-84d0-00c04fb169f7} "Softwareinstallation" - ? - appmgmts.dll (File not found)
-----( HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify )-----
"IfxWlxEN" - "Infineon Technologies AG" - C:\WINDOWS\system32\IfxWlxEN.dll
"klogon" - "Kaspersky Lab ZAO" - C:\WINDOWS\system32\klogon.dll
"OneCard" - "Cognizance Corporation" - C:\Programme\HPQ\IAM\Bin\AsWlnPkg.dll
[Winsock Providers]
-----( HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries )-----
"mdnsNSP" - "Apple Inc." - C:\Programme\Bonjour\mdnsNSP.dll
===[ Logfile end ]=========================================[ Logfile end ]===
--- --- ---
If You have questions or want to get some help, You can visit hxxp://forum.online-solutions.ru
GMER Logfile:
Code:
GMER 1.0.15.15641 - hxxp://www.gmer.net
Rootkit scan 2011-11-11 20:40:40
Windows 5.1.2600 Service Pack 3 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3 TOSHIBA_MK6034GSX rev.AH101H
Running: i9cpehuf.exe; Driver: C:\DOKUME~1\MICHAE~1\LOKALE~1\Temp\fwtdapog.sys
---- System - GMER 1.0.15 ----
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwAdjustPrivilegesToken [0xED9815FA]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwClose [0xED981EFE]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwConnectPort [0xED982D32]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateEvent [0xED98327C]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateFile [0xED9821DA]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateKey [0xED98046A]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateMutant [0xED983162]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateNamedPipeFile [0xED9811E8]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreatePort [0xED983036]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateSection [0xED981390]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateSemaphore [0xED98339C]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateThread [0xED981B86]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwCreateWaitablePort [0xED9830CC]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwDebugActiveProcess [0xED984A84]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwDeleteKey [0xED980A74]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwDeleteValueKey [0xED980E28]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwDeviceIoControlFile [0xED98265C]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwDuplicateObject [0xED985C90]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwEnumerateKey [0xED980F74]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwEnumerateValueKey [0xED98100C]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwFsControlFile [0xED98246A]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwLoadDriver [0xED984B76]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwLoadKey [0xED980446]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwLoadKey2 [0xED980458]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwMapViewOfSection [0xED9852DE]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwNotifyChangeKey [0xED981138]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenEvent [0xED983312]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenFile [0xED981F80]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenKey [0xED98062A]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenMutant [0xED9831F2]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenProcess [0xED981836]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenSection [0xED985078]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenSemaphore [0xED983432]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwOpenThread [0xED981728]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwQueryKey [0xED9810A4]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwQueryMultipleValueKey [0xED980CDC]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwQuerySection [0xED985618]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwQueryValueKey [0xED980906]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwQueueApcThread [0xED984F0A]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwRenameKey [0xED980B96]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwReplaceKey [0xED97FE80]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwReplyPort [0xED983796]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwReplyWaitReceivePort [0xED98365C]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwRequestWaitReplyPort [0xED98481E]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwRestoreKey [0xED9801F8]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwResumeThread [0xED985B32]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSaveKey [0xED97FE18]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSecureConnectPort [0xED982A78]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSetContextThread [0xED981DA2]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSetInformationToken [0xED9840BE]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSetSecurityObject [0xED984D14]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSetSystemInformation [0xED985768]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSetValueKey [0xED980780]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSuspendProcess [0xED98585A]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSuspendThread [0xED985994]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwSystemDebugControl [0xED9849A8]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwTerminateProcess [0xED9819D2]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwTerminateThread [0xED981932]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwUnmapViewOfSection [0xED9854BC]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) ZwWriteVirtualMemory [0xED981ABC]
Code \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) FsRtlCheckLockForReadAccess
Code \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab) IoIsOperationSynchronous
---- Kernel code sections - GMER 1.0.15 ----
.text ntkrnlpa.exe!FsRtlCheckLockForReadAccess 804EAF84 5 Bytes JMP ED973FEC \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)
.text ntkrnlpa.exe!IoIsOperationSynchronous 804EF912 5 Bytes JMP ED9743C8 \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)
.text ntkrnlpa.exe!ZwCallbackReturn + 2D68 80504604 12 Bytes [76, 4B, 98, ED, 46, 04, 98, ...] {JBE 0x4d; CWDE ; IN EAX, DX; INC ESI; ADD AL, 0x98; IN EAX, DX; POP EAX; ADD AL, 0x98; IN EAX, DX}
.text ntkrnlpa.exe!ZwCallbackReturn + 2EE4 80504780 16 Bytes [96, 0B, 98, ED, 80, FE, 97, ...]
.text ntkrnlpa.exe!ZwCallbackReturn + 2FD8 80504874 12 Bytes [5A, 58, 98, ED, 94, 59, 98, ...] {POP EDX; POP EAX; CWDE ; IN EAX, DX; XCHG ESP, EAX; POP ECX; CWDE ; IN EAX, DX; TEST AL, 0x49; CWDE ; IN EAX, DX}
init C:\WINDOWS\system32\drivers\tifm21.sys entry point in "init" section [0xF5E1EEBF]
.text C:\WINDOWS\system32\drivers\ACEDRV09.sys section is writeable [0xEB12E000, 0x3326E, 0xE8000020]
.pklstb C:\WINDOWS\system32\drivers\ACEDRV09.sys entry point in ".pklstb" section [0xEB173000]
.relo2 C:\WINDOWS\system32\drivers\ACEDRV09.sys unknown last section [0xEB18F000, 0x8E, 0x42000040]
? System32\Drivers\hiber_WMILIB.SYS Das System kann den angegebenen Pfad nicht finden. !
---- User code sections - GMER 1.0.15 ----
? C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] C:\WINDOWS\system32\ntdll.dll time/date stamp mismatch;
? C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] C:\WINDOWS\system32\kernel32.dll time/date stamp mismatch;
.text C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] USER32.dll!AlignRects 7E362A78 4 Bytes [E0, 13, 48, 6C] {LOOPNZ 0x15; DEC EAX; INSB }
? C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] C:\WINDOWS\system32\ntdll.dll time/date stamp mismatch;
? C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] C:\WINDOWS\system32\kernel32.dll time/date stamp mismatch;
.text C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] USER32.dll!AlignRects 7E362A78 4 Bytes [E0, 13, 48, 6C] {LOOPNZ 0x15; DEC EAX; INSB }
.text C:\Programme\Mozilla Firefox\firefox.exe[3864] ntdll.dll!LdrLoadDll 7C92632D 5 Bytes JMP 00401410 C:\Programme\Mozilla Firefox\firefox.exe (Firefox/Mozilla Corporation)
---- Kernel IAT/EAT - GMER 1.0.15 ----
IAT \SystemRoot\system32\DRIVERS\tcpip.sys[TDI.SYS!TdiRegisterDeviceObject] [F6CF3DC0] kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO)
IAT \SystemRoot\system32\DRIVERS\netbt.sys[TDI.SYS!TdiRegisterDeviceObject] [F6CF3DC0] kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO)
---- User IAT/EAT - GMER 1.0.15 ----
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlAllocateHeap] 00EF0240
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlFreeHeap] 00EF02B0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlSizeHeap] 00EF0320
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlReAllocateHeap] 00EF0390
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!SetErrorMode] 011D04E0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 011D0550
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!GetProcAddress] 011D05C0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!FreeLibrary] 011D0630
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!GetModuleHandleA] 011D06A0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!HeapDestroy] 00EF0940
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!HeapCreate] 00EF09B0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!VirtualFree] 00EF0A20
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!VirtualAlloc] 00EF0A90
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!CreateThread] 00EF0B70
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!SetErrorMode] 011D08D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!CreateThread] 00EF0CC0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetModuleHandleW] 011D0940
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 011D09B0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetModuleHandleA] 011D0A20
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!FreeLibrary] 011D0A90
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] 011D0B00
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!VirtualAlloc] 00EF0E10
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!VirtualFree] 00EF0E80
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlFreeHeap] 00EF0EF0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlAllocateHeap] 00EF0F60
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlReAllocateHeap] 7C9D0400
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] 011D0B70
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!FreeLibrary] 011D0BE0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 011D0C50
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!CreateThread] 7C9D0550
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetModuleHandleW] 011D0CC0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!VirtualAlloc] 7C9D05C0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!VirtualFree] 7C9D0630
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\RPCRT4.dll [ntdll.dll!RtlFreeHeap] 7C9D06A0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\RPCRT4.dll [ntdll.dll!RtlAllocateHeap] 7C9D0710
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 011D0D30
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!GetModuleHandleW] 011D0DA0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!GetProcAddress] 011D0E10
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!FreeLibrary] 011D0E80
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\Secur32.dll [ntdll.dll!RtlFreeHeap] 7C9D0780
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\Secur32.dll [ntdll.dll!RtlAllocateHeap] 7C9D07F0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!FreeLibrary] 011D0EF0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress] 011D0F60
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7C9E02B0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!CreateThread] 7C9D0860
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!GetModuleHandleA] 7C9E0320
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetModuleHandleW] 7C9E04E0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!CreateThread] 7C9D08D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetModuleHandleA] 7C9E0550
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7C9E05C0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetProcAddress] 7C9E0630
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!FreeLibrary] 7C9E06A0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\USER32.dll [ntdll.dll!RtlAllocateHeap] 7C9D0B00
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\USER32.dll [ntdll.dll!RtlFreeHeap] 7C9D0B70
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7C9E0710
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!FreeLibrary] 7C9E0780
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] 7C9E07F0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\GDI32.dll [ntdll.dll!RtlAllocateHeap] 7C9D0BE0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\GDI32.dll [ntdll.dll!RtlFreeHeap] 7C9D0C50
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!SetErrorMode] 011E0080
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!CreateThread] 00F00630
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!GetProcAddress] 011E00F0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!FreeLibrary] 011E0160
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 011E01D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\userenv.dll [ntdll.dll!RtlFreeHeap] 00F006A0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\netapi32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 011E0400
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\netapi32.dll [KERNEL32.dll!FreeLibrary] 011E0470
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\netapi32.dll [KERNEL32.dll!GetProcAddress] 011E04E0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\netapi32.dll [KERNEL32.dll!CreateThread] 00F00780
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\netapi32.dll [ntdll.dll!RtlAllocateHeap] 00F008D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\netapi32.dll [ntdll.dll!RtlFreeHeap] 00F00940
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!FreeLibrary] 011E06A0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!GetProcAddress] 011E0710
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!SetUnhandledExceptionFilter] 011E0780
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 011E07F0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!SetErrorMode] 011E0860
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetModuleHandleA] 011E08D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetModuleHandleW] 011E0940
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!FreeLibrary] 011E09B0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!CreateThread] 00F00BE0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!HeapDestroy] 00F00C50
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!HeapCreate] 00F00D30
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] 011E0A20
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetProcAddress] 011E0E80
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetModuleHandleW] 011E0EF0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!FreeLibrary] 011E0F60
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!CreateThread] 00F102B0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!VirtualAlloc] 00F10320
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 011F0010
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\ole32.dll [ntdll.dll!RtlFreeHeap] 00F10390
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!VirtualAlloc] 00F10550
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetModuleHandleA] 011F00F0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!HeapCreate] 00F105C0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!VirtualFree] 00F10630
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!HeapDestroy] 00F107F0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 011F0160
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetModuleHandleW] 011F01D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!SetErrorMode] 011F0240
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] 011F02B0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!CreateThread] 00F10860
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!FreeLibrary] 011F0320
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SHELL32.dll [ntdll.dll!RtlFreeHeap] 00F108D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!HeapCreate] 7C9D0240
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!HeapDestroy] 7C9D02B0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!GetProcAddress] 7C9E0160
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!CreateThread] 7C9D01D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!FreeLibrary] 7C9E0010
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7C9E0240
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!FreeLibrary] 7C9E0010
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7C9E0240
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!GetModuleHandleA] 7C9E0080
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!CreateThread] 7C9D01D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!GetProcAddress] 7C9E0160
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7C9E0240
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!FreeLibrary] 7C9E0010
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!HeapCreate] 7C9D0240
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!HeapDestroy] 7C9D02B0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!GetProcAddress] 7C9E0160
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\iphlpapi.dll [ntdll.dll!RtlFreeHeap] 7C9D0080
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\iphlpapi.dll [ntdll.dll!RtlAllocateHeap] 7C9D0010
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!CreateThread] 7C9D01D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!SetErrorMode] 7C9E01D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!GetModuleHandleA] 7C9E0080
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!GetModuleHandleW] 7C9E00F0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7C9E0240
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!GetProcAddress] 7C9E0160
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!FreeLibrary] 7C9E0010
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SAMLIB.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7C9E0240
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SAMLIB.dll [KERNEL32.dll!VirtualFree] 7C9D0390
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[340] @ C:\WINDOWS\system32\SAMLIB.dll [KERNEL32.dll!VirtualAlloc] 7C9D0320
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlAllocateHeap] 011D0240
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlFreeHeap] 011D02B0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlSizeHeap] 011D0320
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!RtlReAllocateHeap] 011D0390
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!SetErrorMode] 013C04E0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 013C0550
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!GetProcAddress] 013C05C0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!FreeLibrary] 013C0630
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!GetModuleHandleA] 013C06A0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!HeapDestroy] 011D0940
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!HeapCreate] 011D09B0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!VirtualFree] 011D0A20
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!VirtualAlloc] 011D0A90
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!CreateThread] 011D0B70
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!SetErrorMode] 013C08D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!CreateThread] 011D0CC0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetModuleHandleW] 013C0940
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 013C09B0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetModuleHandleA] 013C0A20
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!FreeLibrary] 013C0A90
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] 013C0B00
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!VirtualAlloc] 011D0E10
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!VirtualFree] 011D0E80
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlFreeHeap] 011D0EF0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlAllocateHeap] 011D0F60
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ADVAPI32.dll [ntdll.dll!RtlReAllocateHeap] 7C9D0400
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] 013C0B70
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!FreeLibrary] 013C0BE0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 013C0C50
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!CreateThread] 7C9D0550
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!GetModuleHandleW] 013C0CC0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!VirtualAlloc] 7C9D05C0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!VirtualFree] 7C9D0630
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\RPCRT4.dll [ntdll.dll!RtlFreeHeap] 7C9D06A0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\RPCRT4.dll [ntdll.dll!RtlAllocateHeap] 7C9D0710
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 013C0D30
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!GetModuleHandleW] 013C0DA0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!GetProcAddress] 013C0E10
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!FreeLibrary] 013C0E80
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\Secur32.dll [ntdll.dll!RtlFreeHeap] 7C9D0780
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\Secur32.dll [ntdll.dll!RtlAllocateHeap] 7C9D07F0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!FreeLibrary] 013C0EF0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress] 013C0F60
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7C9E02B0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!CreateThread] 7C9D0860
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!GetModuleHandleA] 7C9E0320
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetModuleHandleW] 7C9E04E0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!CreateThread] 7C9D08D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetModuleHandleA] 7C9E0550
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7C9E05C0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!GetProcAddress] 7C9E0630
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!FreeLibrary] 7C9E06A0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\USER32.dll [ntdll.dll!RtlAllocateHeap] 7C9D0B00
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\USER32.dll [ntdll.dll!RtlFreeHeap] 7C9D0B70
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7C9E0710
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!FreeLibrary] 7C9E0780
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] 7C9E07F0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\GDI32.dll [ntdll.dll!RtlAllocateHeap] 7C9D0BE0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\GDI32.dll [ntdll.dll!RtlFreeHeap] 7C9D0C50
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!SetErrorMode] 013D0080
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!CreateThread] 011E0630
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!GetProcAddress] 013D00F0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!FreeLibrary] 013D0160
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 013D01D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\userenv.dll [ntdll.dll!RtlFreeHeap] 011E06A0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\netapi32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 013D0400
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\netapi32.dll [KERNEL32.dll!FreeLibrary] 013D0470
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\netapi32.dll [KERNEL32.dll!GetProcAddress] 013D04E0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\netapi32.dll [KERNEL32.dll!CreateThread] 011E0780
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\netapi32.dll [ntdll.dll!RtlAllocateHeap] 011E08D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\netapi32.dll [ntdll.dll!RtlFreeHeap] 011E0940
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!FreeLibrary] 013D06A0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!GetProcAddress] 013D0710
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\PSAPI.DLL [KERNEL32.dll!SetUnhandledExceptionFilter] 013D0780
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 013D07F0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!SetErrorMode] 013D0860
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetModuleHandleA] 013D08D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetModuleHandleW] 013D0940
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!FreeLibrary] 013D09B0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!CreateThread] 011E0BE0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!HeapDestroy] 011E0C50
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!HeapCreate] 011E0D30
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] 013D0A20
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetProcAddress] 013D0E80
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!GetModuleHandleW] 013D0EF0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!FreeLibrary] 013D0F60
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!CreateThread] 011F02B0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!VirtualAlloc] 011F0320
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 013E0010
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\ole32.dll [ntdll.dll!RtlFreeHeap] 011F0390
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!VirtualAlloc] 011F0550
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetModuleHandleA] 013E00F0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!HeapCreate] 011F05C0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!VirtualFree] 011F0630
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!HeapDestroy] 011F07F0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 013E0160
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetModuleHandleW] 013E01D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!SetErrorMode] 013E0240
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] 013E02B0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!CreateThread] 011F0860
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!FreeLibrary] 013E0320
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\SHELL32.dll [ntdll.dll!RtlFreeHeap] 011F08D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!HeapCreate] 7C9D0240
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!HeapDestroy] 7C9D02B0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!GetProcAddress] 7C9E0160
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!CreateThread] 7C9D01D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!FreeLibrary] 7C9E0010
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7C9E0240
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!FreeLibrary] 7C9E0010
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!SetUnhandledExceptionFilter] 7C9E0240
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!GetModuleHandleA] 7C9E0080
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!CreateThread] 7C9D01D0
IAT C:\Programme\Kaspersky Lab\Kaspersky Security Suite CBE 11\avp.exe[2660] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!GetProcAddress] 7C9E0160
---- Devices - GMER 1.0.15 ----
AttachedDevice \Driver\Tcpip \Device\Ip kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 SynTP.sys (Synaptics Touchpad Driver/Synaptics, Inc.)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 eabfiltr.sys (QLB PS/2 Keyboard filter driver/Hewlett-Packard Development Company, L.P.)
AttachedDevice \Driver\Tcpip \Device\Tcp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO)
AttachedDevice \Driver\Tcpip \Device\Udp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO)
AttachedDevice \Driver\Tcpip \Device\RawIp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO)
Device \FileSystem\Cdfs \Cdfs DLAIFS_M.SYS (Drive Letter Access Component/Sonic Solutions)
---- EOF - GMER 1.0.15 ----
--- --- ---
aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software
Run date: 2011-11-11 21:21:13
-----------------------------
21:21:13.312 OS Version: Windows 5.1.2600 Service Pack 3
21:21:13.312 Number of processors: 1 586 0x4C02
21:21:13.312 ComputerName: PC2007 UserName:
21:21:14.234 Initialize success
21:23:34.359 AVAST engine defs: 11111100
21:23:47.312 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
21:23:47.328 Disk 0 Vendor: TOSHIBA_MK6034GSX AH101H Size: 57241MB BusType: 3
21:23:49.406 Disk 0 MBR read successfully
21:23:49.406 Disk 0 MBR scan
21:23:49.484 Disk 0 unknown MBR code
21:23:49.500 Disk 0 scanning sectors +117225360
21:23:49.593 Disk 0 scanning C:\WINDOWS\system32\drivers
21:24:07.578 Service scanning
21:24:09.515 Service KL1 C:\WINDOWS\system32\DRIVERS\kl1.sys **LOCKED** 5
21:24:09.562 Service kl2 C:\WINDOWS\system32\DRIVERS\kl2.sys **LOCKED** 5
21:24:09.562 Service klim5 C:\WINDOWS\system32\DRIVERS\klim5.sys **LOCKED** 5
21:24:09.609 Service klmouflt C:\WINDOWS\system32\DRIVERS\klmouflt.sys **LOCKED** 5
21:24:10.515 Modules scanning
21:24:24.578 Disk 0 trace - called modules:
21:24:24.625 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys PCIIDEX.SYS
21:24:24.640 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x85334ab8]
21:24:24.640 3 CLASSPNP.SYS[f74fcfd7] -> nt!IofCallDriver -> \Device\00000091[0x85276f18]
21:24:24.656 5 ACPI.sys[f7372620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x85303940]
21:24:26.171 AVAST engine scan C:\WINDOWS
21:24:39.328 AVAST engine scan C:\WINDOWS\system32
21:27:14.859 AVAST engine scan C:\WINDOWS\system32\drivers
21:27:37.750 AVAST engine scan C:\Dokumente und Einstellungen\****
21:35:03.812 AVAST engine scan C:\Dokumente und Einstellungen\All Users
21:41:58.953 Scan finished successfully
00:53:10.421 Disk 0 MBR has been saved successfully to "C:\Dokumente und Einstellungen\****\Eigene Dateien\Downloads\MBR.dat"
00:53:10.453 The log file has been saved successfully to "C:\Dokumente und Einstellungen\****\Eigene Dateien\Downloads\aswMBR111111.txt"