That was a lot, but I managed to get through it. Thanks for the concise instructions.
1. Update installed. Computer restarted. No issues encountered.
2. Seek.bat file run and report attached below under title "SeekResults"
3. autoexec.bat file opened, contents deleted, then the file was saved.
4. OTScanIt2 run, utilizing fix. Computer restarted and log popped-up. Appended below as "MovedFilesLog"
5. OTScanIt2 scan run. Log attached as "OTScanIt2"
6. gmer.exe successfully run. I should point out that, initially, the option boxes were entirely gray (as with OTScanIt2), however, after the scan had been completed, a simple movement of the window revealed the text. The resultant log is pasted below, as per your instructions:
------------------------------------------------------------------------------------------------------------------------
GMER 1.0.14.14536 -
http://www.gmer.netRootkit scan 2009-02-03 20:04:29
Windows 5.1.2600 Service Pack 3
---- System - GMER 1.0.14 ----
SSDT Vax347b.sys (Plug and Play BIOS Extension/ ) ZwClose [0xF74A7C58]
SSDT Vax347b.sys (Plug and Play BIOS Extension/ ) ZwCreateKey [0xF74A7C10]
SSDT Vax347b.sys (Plug and Play BIOS Extension/ ) ZwCreatePagingFile [0xF749BC70]
SSDT 89F62109 ZwCreateThread
SSDT Vax347b.sys (Plug and Play BIOS Extension/ ) ZwEnumerateKey [0xF749C4FE]
SSDT Vax347b.sys (Plug and Play BIOS Extension/ ) ZwEnumerateValueKey [0xF74A7D50]
SSDT Vax347b.sys (Plug and Play BIOS Extension/ ) ZwOpenKey [0xF74A7BD4]
SSDT Vax347b.sys (Plug and Play BIOS Extension/ ) ZwQueryKey [0xF749C51E]
SSDT Vax347b.sys (Plug and Play BIOS Extension/ ) ZwQueryValueKey [0xF74A7CA6]
SSDT Vax347b.sys (Plug and Play BIOS Extension/ ) ZwSetSystemPowerState [0xF74A74F0]
SSDT spov.sys ZwSetValueKey [0xF74F819A]
INT 0x62 ? 8A9D0BF8
INT 0x82 ? 8A9D0BF8
INT 0x83 ? 8A6E0BF8
INT 0xA4 ? 8A6E0BF8
---- Kernel code sections - GMER 1.0.14 ----
? spov.sys The system cannot find the file specified. !
.text USBPORT.SYS!DllUnload B99378AC 5 Bytes JMP 8A6E01D8
---- User code sections - GMER 1.0.14 ----
.text C:\windows\system32\services.exe[792] kernel32.dll!ReadFile 7C801812 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] kernel32.dll!VirtualProtectEx 7C801A61 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] kernel32.dll!VirtualProtect 7C801AD4 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] kernel32.dll!LoadLibraryA 7C801D7B 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] kernel32.dll!GetStartupInfoA 7C801EF2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] kernel32.dll!GetProcAddress 7C80AE30 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] kernel32.dll!WriteFile 7C810E17 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] kernel32.dll!CreatePipe 7C81D827 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] kernel32.dll!PeekNamedPipe 7C860817 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] kernel32.dll!WinExec 7C8623AD 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] ADVAPI32.dll!RegOpenKeyA 77DDEFB8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] WS2_32.dll!select 71AB30A8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] WS2_32.dll!socket 71AB4211 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] WS2_32.dll!bind 71AB4480 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] WS2_32.dll!send 71AB4C27 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] WS2_32.dll!recv 71AB676F 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] WININET.dll!InternetOpenA 771C5786 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] WININET.dll!InternetOpenUrlA 771C5A52 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\services.exe[792] WININET.dll!InternetReadFile 771C82E2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] kernel32.dll!ReadFile 7C801812 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] kernel32.dll!VirtualProtectEx 7C801A61 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] kernel32.dll!VirtualProtect 7C801AD4 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] kernel32.dll!LoadLibraryA 7C801D7B 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] kernel32.dll!GetStartupInfoA 7C801EF2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] kernel32.dll!GetProcAddress 7C80AE30 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] kernel32.dll!WriteFile 7C810E17 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] kernel32.dll!CreatePipe 7C81D827 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] kernel32.dll!PeekNamedPipe 7C860817 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] kernel32.dll!WinExec 7C8623AD 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] ADVAPI32.dll!RegOpenKeyA 77DDEFB8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] WS2_32.dll!select 71AB30A8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] WS2_32.dll!socket 71AB4211 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] WS2_32.dll!bind 71AB4480 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] WS2_32.dll!send 71AB4C27 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] WS2_32.dll!recv 71AB676F 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] WININET.dll!InternetOpenA 771C5786 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] WININET.dll!InternetOpenUrlA 771C5A52 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\lsass.exe[804] WININET.dll!InternetReadFile 771C82E2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] kernel32.dll!ReadFile 7C801812 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] kernel32.dll!VirtualProtectEx 7C801A61 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] kernel32.dll!VirtualProtect 7C801AD4 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] kernel32.dll!LoadLibraryA 7C801D7B 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] kernel32.dll!GetStartupInfoA 7C801EF2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] kernel32.dll!GetProcAddress 7C80AE30 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] kernel32.dll!WriteFile 7C810E17 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] kernel32.dll!CreatePipe 7C81D827 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] kernel32.dll!PeekNamedPipe 7C860817 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] kernel32.dll!WinExec 7C8623AD 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] ADVAPI32.dll!RegOpenKeyA 77DDEFB8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] WS2_32.dll!select 71AB30A8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] WS2_32.dll!socket 71AB4211 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] WS2_32.dll!bind 71AB4480 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] WS2_32.dll!send 71AB4C27 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] WS2_32.dll!recv 71AB676F 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] WININET.dll!InternetOpenA 771C5786 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] WININET.dll!InternetOpenUrlA 771C5A52 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[976] WININET.dll!InternetReadFile 771C82E2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] kernel32.dll!ReadFile 7C801812 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] kernel32.dll!VirtualProtectEx 7C801A61 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] kernel32.dll!VirtualProtect 7C801AD4 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] kernel32.dll!LoadLibraryA 7C801D7B 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] kernel32.dll!GetStartupInfoA 7C801EF2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] kernel32.dll!GetProcAddress 7C80AE30 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] kernel32.dll!WriteFile 7C810E17 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] kernel32.dll!CreatePipe 7C81D827 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] kernel32.dll!PeekNamedPipe 7C860817 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] kernel32.dll!WinExec 7C8623AD 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] ADVAPI32.dll!RegOpenKeyA 77DDEFB8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] WS2_32.dll!select 71AB30A8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] WS2_32.dll!socket 71AB4211 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] WS2_32.dll!bind 71AB4480 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] WS2_32.dll!send 71AB4C27 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] WS2_32.dll!recv 71AB676F 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] WININET.dll!InternetOpenA 771C5786 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] WININET.dll!InternetOpenUrlA 771C5A52 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1044] WININET.dll!InternetReadFile 771C82E2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] kernel32.dll!ReadFile 7C801812 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] kernel32.dll!VirtualProtectEx 7C801A61 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] kernel32.dll!VirtualProtect 7C801AD4 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] kernel32.dll!LoadLibraryA 7C801D7B 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] kernel32.dll!GetStartupInfoA 7C801EF2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] kernel32.dll!GetProcAddress 7C80AE30 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] kernel32.dll!WriteFile 7C810E17 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] kernel32.dll!CreatePipe 7C81D827 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] kernel32.dll!PeekNamedPipe 7C860817 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] kernel32.dll!WinExec 7C8623AD 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] ADVAPI32.dll!RegOpenKeyA 77DDEFB8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] WS2_32.dll!select 71AB30A8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] WS2_32.dll!socket 71AB4211 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] WS2_32.dll!bind 71AB4480 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] WS2_32.dll!send 71AB4C27 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] WS2_32.dll!recv 71AB676F 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] WININET.dll!InternetOpenA 771C5786 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] WININET.dll!InternetOpenUrlA 771C5A52 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\System32\svchost.exe[1140] WININET.dll!InternetReadFile 771C82E2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] kernel32.dll!ReadFile 7C801812 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] kernel32.dll!VirtualProtectEx 7C801A61 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] kernel32.dll!VirtualProtect 7C801AD4 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] kernel32.dll!LoadLibraryA 7C801D7B 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] kernel32.dll!GetStartupInfoA 7C801EF2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] kernel32.dll!GetProcAddress 7C80AE30 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] kernel32.dll!WriteFile 7C810E17 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] kernel32.dll!CreatePipe 7C81D827 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] kernel32.dll!PeekNamedPipe 7C860817 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] kernel32.dll!WinExec 7C8623AD 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] ADVAPI32.dll!RegOpenKeyA 77DDEFB8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] WS2_32.dll!select 71AB30A8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] WS2_32.dll!socket 71AB4211 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] WS2_32.dll!bind 71AB4480 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] WS2_32.dll!send 71AB4C27 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] WS2_32.dll!recv 71AB676F 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] WININET.dll!InternetOpenA 771C5786 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] WININET.dll!InternetOpenUrlA 771C5A52 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\Program Files\Network Associates\Common Framework\FrameworkService.exe[1228] WININET.dll!InternetReadFile 771C82E2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] kernel32.dll!ReadFile 7C801812 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] kernel32.dll!VirtualProtectEx 7C801A61 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] kernel32.dll!VirtualProtect 7C801AD4 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] kernel32.dll!LoadLibraryA 7C801D7B 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] kernel32.dll!GetStartupInfoA 7C801EF2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] kernel32.dll!GetProcAddress 7C80AE30 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] kernel32.dll!WriteFile 7C810E17 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] kernel32.dll!CreatePipe 7C81D827 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] kernel32.dll!PeekNamedPipe 7C860817 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] kernel32.dll!WinExec 7C8623AD 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] ADVAPI32.dll!RegOpenKeyA 77DDEFB8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] WS2_32.dll!select 71AB30A8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] WS2_32.dll!socket 71AB4211 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] WS2_32.dll!bind 71AB4480 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] WS2_32.dll!send 71AB4C27 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] WS2_32.dll!recv 71AB676F 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] WININET.dll!InternetOpenA 771C5786 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] WININET.dll!InternetOpenUrlA 771C5A52 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1236] WININET.dll!InternetReadFile 771C82E2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] kernel32.dll!ReadFile 7C801812 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] kernel32.dll!VirtualProtectEx 7C801A61 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] kernel32.dll!VirtualProtect 7C801AD4 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] kernel32.dll!LoadLibraryA 7C801D7B 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] kernel32.dll!GetStartupInfoA 7C801EF2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] kernel32.dll!GetProcAddress 7C80AE30 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] kernel32.dll!WriteFile 7C810E17 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] kernel32.dll!CreatePipe 7C81D827 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] kernel32.dll!PeekNamedPipe 7C860817 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] kernel32.dll!WinExec 7C8623AD 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] ADVAPI32.dll!RegOpenKeyA 77DDEFB8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] WS2_32.dll!select 71AB30A8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] WS2_32.dll!socket 71AB4211 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] WS2_32.dll!bind 71AB4480 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] WS2_32.dll!send 71AB4C27 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] WS2_32.dll!recv 71AB676F 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] WININET.dll!InternetOpenA 771C5786 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] WININET.dll!InternetOpenUrlA 771C5A52 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[1340] WININET.dll!InternetReadFile 771C82E2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] kernel32.dll!ReadFile 7C801812 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] kernel32.dll!VirtualProtectEx 7C801A61 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] kernel32.dll!VirtualProtect 7C801AD4 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] kernel32.dll!LoadLibraryA 7C801D7B 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] kernel32.dll!GetStartupInfoA 7C801EF2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] kernel32.dll!GetProcAddress 7C80AE30 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] kernel32.dll!WriteFile 7C810E17 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] kernel32.dll!CreatePipe 7C81D827 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] kernel32.dll!PeekNamedPipe 7C860817 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] kernel32.dll!WinExec 7C8623AD 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] ADVAPI32.dll!RegOpenKeyA 77DDEFB8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] WS2_32.dll!select 71AB30A8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] WS2_32.dll!socket 71AB4211 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] WS2_32.dll!bind 71AB4480 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] WS2_32.dll!send 71AB4C27 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] WS2_32.dll!recv 71AB676F 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] WININET.dll!InternetOpenA 771C5786 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] WININET.dll!InternetOpenUrlA 771C5A52 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe[1876] WININET.dll!InternetReadFile 771C82E2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] kernel32.dll!ReadFile 7C801812 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] kernel32.dll!VirtualProtectEx 7C801A61 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] kernel32.dll!VirtualProtect 7C801AD4 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] kernel32.dll!LoadLibraryA 7C801D7B 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] kernel32.dll!GetStartupInfoA 7C801EF2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] kernel32.dll!WriteFile 7C810E17 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] kernel32.dll!CreatePipe 7C81D827 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] kernel32.dll!PeekNamedPipe 7C860817 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] kernel32.dll!WinExec 7C8623AD 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] ADVAPI32.dll!RegOpenKeyA 77DDEFB8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] WININET.dll!InternetOpenA 771C5786 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] WININET.dll!InternetOpenUrlA 771C5A52 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] WININET.dll!InternetReadFile 771C82E2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] WS2_32.dll!select 71AB30A8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] WS2_32.dll!socket 71AB4211 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] WS2_32.dll!bind 71AB4480 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] WS2_32.dll!send 71AB4C27 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\Explorer.EXE[1888] WS2_32.dll!recv 71AB676F 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] kernel32.dll!ReadFile 7C801812 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] kernel32.dll!VirtualProtectEx 7C801A61 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] kernel32.dll!VirtualProtect 7C801AD4 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] kernel32.dll!LoadLibraryA 7C801D7B 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] kernel32.dll!GetStartupInfoA 7C801EF2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] kernel32.dll!GetProcAddress 7C80AE30 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] kernel32.dll!WriteFile 7C810E17 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] kernel32.dll!CreatePipe 7C81D827 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] kernel32.dll!PeekNamedPipe 7C860817 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] kernel32.dll!WinExec 7C8623AD 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] ADVAPI32.dll!RegOpenKeyA 77DDEFB8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] WS2_32.dll!select 71AB30A8 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] WS2_32.dll!socket 71AB4211 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] WS2_32.dll!bind 71AB4480 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] WS2_32.dll!send 71AB4C27 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] WS2_32.dll!recv 71AB676F 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] WININET.dll!InternetOpenA 771C5786 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] WININET.dll!InternetOpenUrlA 771C5A52 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
.text C:\windows\system32\svchost.exe[2260] WININET.dll!InternetReadFile 771C82E2 5 Bytes CALL 37001160 C:\windows\system32\EntApi.dll (EntAPI/Network Associates, Inc)
---- Kernel IAT/EAT - GMER 1.0.14 ----
IAT \windows\System32\Drivers\SCSIPORT.SYS[ntoskrnl.exe!DbgBreakPoint] 8A9622D8
IAT pci.sys[ntoskrnl.exe!IoDetachDevice] [F750A93C] spov.sys
IAT pci.sys[ntoskrnl.exe!IoAttachDeviceToDeviceStack] [F750A990] spov.sys
IAT \SystemRoot\system32\DRIVERS\USBPORT.SYS[ntoskrnl.exe!DbgBreakPoint] 8A6E02D8
IAT \SystemRoot\system32\DRIVERS\i8042prt.sys[HAL.dll!READ_PORT_UCHAR] [F74EAD92] spov.sys
---- Devices - GMER 1.0.14 ----
Device \FileSystem\Ntfs \Ntfs 8A95E1F8
AttachedDevice \FileSystem\Ntfs \Ntfs avg7rsw.sys (AVG Resident Shield Unload Helper/GRISOFT, s.r.o.)
AttachedDevice \FileSystem\Ntfs \Ntfs naiavf5x.sys (Anti-Virus File System Filter Driver/Network Associates, Inc.)
Device \Driver\Tcpip \Device\Ip avgtdi.sys (AVG Network connection watcher/GRISOFT, s.r.o.)
AttachedDevice \Driver\Tcpip \Device\Ip mvstdi5x.sys (Anti-Virus Mini-Firewall Driver/Network Associates, Inc.)
Device \Driver\usbuhci \Device\USBPDO-0 8A6DE1F8
Device \Driver\dmio \Device\DmControl\DmIoDaemon 8A9601F8
Device \Driver\dmio \Device\DmControl\DmConfig 8A9601F8
Device \Driver\dmio \Device\DmControl\DmPnP 8A9601F8
Device \Driver\dmio \Device\DmControl\DmInfo 8A9601F8
Device \Driver\usbuhci \Device\USBPDO-1 8A6DE1F8
Device \Driver\usbehci \Device\USBPDO-2 8A6C11F8
Device \Driver\NetBT \Device\NetBT_Tcpip_{B559A7B4-1F93-48BE-B65B-C15BAAC5C0AA} 8A732500
Device \Driver\Tcpip \Device\Tcp avgtdi.sys (AVG Network connection watcher/GRISOFT, s.r.o.)
AttachedDevice \Driver\Tcpip \Device\Tcp mvstdi5x.sys (Anti-Virus Mini-Firewall Driver/Network Associates, Inc.)
Device \Driver\Ftdisk \Device\HarddiskVolume1 8A9D11F8
Device \Driver\Cdrom \Device\CdRom0 8A54DAE0
Device \FileSystem\Rdbss \Device\FsWrap 8A5A77C8
Device \Driver\Cdrom \Device\CdRom1 8A54DAE0
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-17 8A55F280
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-3 8A55F280
Device \Driver\atapi \Device\Ide\IdePort0 8A55F280
Device \Driver\atapi \Device\Ide\IdePort1 8A55F280
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-f 8A55F280
Device \Driver\Cdrom \Device\CdRom2 8A54DAE0
Device \Driver\NetBT \Device\NetBt_Wins_Export 8A732500
Device \Driver\NetBT \Device\NetbiosSmb 8A732500
Device \FileSystem\Srv \Device\LanmanServer 8A584240
Device \Driver\Tcpip \Device\Udp avgtdi.sys (AVG Network connection watcher/GRISOFT, s.r.o.)
AttachedDevice \Driver\Tcpip \Device\Udp mvstdi5x.sys (Anti-Virus Mini-Firewall Driver/Network Associates, Inc.)
Device \Driver\Tcpip \Device\RawIp avgtdi.sys (AVG Network connection watcher/GRISOFT, s.r.o.)
AttachedDevice \Driver\Tcpip \Device\RawIp mvstdi5x.sys (Anti-Virus Mini-Firewall Driver/Network Associates, Inc.)
Device \Driver\usbuhci \Device\USBFDO-0 8A6DE1F8
Device \Driver\usbuhci \Device\USBFDO-1