offline
- Pridružio: 07 Avg 2006
- Poruke: 1182
- Gde živiš: Fili Davydkovo, Moscow, Russia
|
GMER 1.0.12.12011 - [Link mogu videti samo ulogovani korisnici]
Rootkit scan 2007-02-06 11:33:39
Windows 5.1.2600 Service Pack 2
---- System - GMER 1.0.12 ----
SSDT \??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys ZwOpenProcess
SSDT \??\C:\WINDOWS\system32\mmx19g.sys ZwQueryDirectoryFile
SSDT \??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys ZwTerminateProcess
---- User code sections - GMER 1.0.12 ----
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHWEBSV.EXE[148] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHWEBSV.EXE[148] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHWEBSV.EXE[148] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHWEBSV.EXE[148] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHWEBSV.EXE[148] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHWEBSV.EXE[148] kernel32.dll!FreeLibrary + 15 7C80AA7B 4 Bytes [ BD, 55, 7F, E2 ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHWEBSV.EXE[148] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHWEBSV.EXE[148] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHWEBSV.EXE[148] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHMAISV.EXE[180] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHMAISV.EXE[180] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHMAISV.EXE[180] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHMAISV.EXE[180] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHMAISV.EXE[180] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHMAISV.EXE[180] kernel32.dll!FreeLibrary + 15 7C80AA7B 4 Bytes [ BD, 55, 7F, E2 ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHMAISV.EXE[180] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHMAISV.EXE[180] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHMAISV.EXE[180] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE[552] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE[552] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE[552] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE[552] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE[552] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE[552] kernel32.dll!FreeLibrary + 15 7C80AA7B 4 Bytes [ BD, 55, 7F, E2 ]
.text C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE[552] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE[552] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE[552] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\WINDOWS\SYSTEM32\CSRSS.EXE[572] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\WINDOWS\SYSTEM32\CSRSS.EXE[572] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\WINDOWS\SYSTEM32\CSRSS.EXE[572] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\WINDOWS\SYSTEM32\CSRSS.EXE[572] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\WINDOWS\SYSTEM32\CSRSS.EXE[572] KERNEL32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\WINDOWS\SYSTEM32\CSRSS.EXE[572] KERNEL32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\WINDOWS\SYSTEM32\CSRSS.EXE[572] KERNEL32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\WINDOWS\SYSTEM32\CSRSS.EXE[572] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\WINDOWS\SYSTEM32\WINLOGON.EXE[596] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\WINDOWS\SYSTEM32\WINLOGON.EXE[596] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\WINDOWS\SYSTEM32\WINLOGON.EXE[596] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\WINDOWS\SYSTEM32\WINLOGON.EXE[596] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\WINDOWS\SYSTEM32\WINLOGON.EXE[596] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\WINDOWS\SYSTEM32\WINLOGON.EXE[596] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\WINDOWS\SYSTEM32\WINLOGON.EXE[596] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\WINDOWS\SYSTEM32\WINLOGON.EXE[596] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\WINDOWS\SYSTEM32\SERVICES.EXE[640] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\WINDOWS\SYSTEM32\SERVICES.EXE[640] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\WINDOWS\SYSTEM32\SERVICES.EXE[640] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\WINDOWS\SYSTEM32\SERVICES.EXE[640] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\WINDOWS\SYSTEM32\SERVICES.EXE[640] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\WINDOWS\SYSTEM32\SERVICES.EXE[640] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\WINDOWS\SYSTEM32\SERVICES.EXE[640] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\WINDOWS\SYSTEM32\SERVICES.EXE[640] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\WINDOWS\SYSTEM32\LSASS.EXE[652] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\WINDOWS\SYSTEM32\LSASS.EXE[652] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\WINDOWS\SYSTEM32\LSASS.EXE[652] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\WINDOWS\SYSTEM32\LSASS.EXE[652] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\WINDOWS\SYSTEM32\LSASS.EXE[652] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\WINDOWS\SYSTEM32\LSASS.EXE[652] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\WINDOWS\SYSTEM32\LSASS.EXE[652] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\WINDOWS\SYSTEM32\LSASS.EXE[652] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE[796] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE[796] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE[796] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE[796] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE[796] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE[796] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE[796] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE[796] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[812] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[812] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[812] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[812] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[812] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[812] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[812] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[812] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[872] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[872] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[872] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[872] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[872] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[872] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[872] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[872] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[932] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[932] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[932] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[932] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[932] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[932] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[932] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[932] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[980] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[980] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[980] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[980] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[980] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[980] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[980] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[980] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[1120] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[1120] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[1120] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[1120] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[1120] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[1120] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[1120] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\WINDOWS\SYSTEM32\SVCHOST.EXE[1120] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\WINDOWS\SYSTEM32\SPOOLSV.EXE[1252] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\WINDOWS\SYSTEM32\SPOOLSV.EXE[1252] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\WINDOWS\SYSTEM32\SPOOLSV.EXE[1252] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\WINDOWS\SYSTEM32\SPOOLSV.EXE[1252] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\WINDOWS\SYSTEM32\SPOOLSV.EXE[1252] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\WINDOWS\SYSTEM32\SPOOLSV.EXE[1252] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\WINDOWS\SYSTEM32\SPOOLSV.EXE[1252] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\WINDOWS\SYSTEM32\SPOOLSV.EXE[1252] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\WINDOWS\EXPLORER.EXE[1328] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\WINDOWS\EXPLORER.EXE[1328] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\WINDOWS\EXPLORER.EXE[1328] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\WINDOWS\EXPLORER.EXE[1328] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\WINDOWS\EXPLORER.EXE[1328] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\WINDOWS\EXPLORER.EXE[1328] kernel32.dll!FreeLibrary + 15 7C80AA7B 4 Bytes [ BD, 55, 7F, E2 ]
.text C:\WINDOWS\EXPLORER.EXE[1328] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\WINDOWS\EXPLORER.EXE[1328] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\WINDOWS\EXPLORER.EXE[1328] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASWUPDSV.EXE[1404] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASWUPDSV.EXE[1404] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASWUPDSV.EXE[1404] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASWUPDSV.EXE[1404] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASWUPDSV.EXE[1404] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASWUPDSV.EXE[1404] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASWUPDSV.EXE[1404] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASWUPDSV.EXE[1404] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHSERV.EXE[1416] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHSERV.EXE[1416] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHSERV.EXE[1416] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHSERV.EXE[1416] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHSERV.EXE[1416] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHSERV.EXE[1416] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHSERV.EXE[1416] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHSERV.EXE[1416] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE[1464] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE[1464] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE[1464] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE[1464] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE[1464] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE[1464] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE[1464] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE[1464] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGUPSVC.EXE[1480] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGUPSVC.EXE[1480] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGUPSVC.EXE[1480] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGUPSVC.EXE[1480] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGUPSVC.EXE[1480] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGUPSVC.EXE[1480] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGUPSVC.EXE[1480] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGUPSVC.EXE[1480] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE[1492] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE[1492] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE[1492] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE[1492] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE[1492] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE[1492] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE[1492] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE[1492] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\PROGRAM FILES\SPYWARE DOCTOR\SDHELP.EXE[1636] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\PROGRAM FILES\SPYWARE DOCTOR\SDHELP.EXE[1636] user32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 0F, 5F ]
.text C:\PROGRAM FILES\SPYWARE DOCTOR\SDHELP.EXE[1636] user32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\PROGRAM FILES\SPYWARE DOCTOR\SDHELP.EXE[1636] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMAGENT.EXE[1784] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMAGENT.EXE[1784] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMAGENT.EXE[1784] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMAGENT.EXE[1784] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMAGENT.EXE[1784] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMAGENT.EXE[1784] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMAGENT.EXE[1784] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMAGENT.EXE[1784] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE[1856] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE[1856] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE[1856] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE[1856] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE[1856] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE[1856] kernel32.dll!FreeLibrary + 15 7C80AA7B 4 Bytes [ BD, 55, 7F, E2 ]
.text C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE[1856] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE[1856] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE[1856] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMTRAY.EXE[1984] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMTRAY.EXE[1984] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMTRAY.EXE[1984] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMTRAY.EXE[1984] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMTRAY.EXE[1984] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMTRAY.EXE[1984] kernel32.dll!FreeLibrary + 15 7C80AA7B 4 Bytes [ BD, 55, 7F, E2 ]
.text C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMTRAY.EXE[1984] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMTRAY.EXE[1984] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SMTRAY.EXE[1984] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\E_FATIAAP.EXE[1992] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\E_FATIAAP.EXE[1992] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\E_FATIAAP.EXE[1992] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\E_FATIAAP.EXE[1992] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\E_FATIAAP.EXE[1992] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\E_FATIAAP.EXE[1992] kernel32.dll!FreeLibrary + 15 7C80AA7B 4 Bytes [ BD, 55, 7F, E2 ]
.text C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\E_FATIAAP.EXE[1992] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\E_FATIAAP.EXE[1992] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\E_FATIAAP.EXE[1992] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHDISP.EXE[2004] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHDISP.EXE[2004] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHDISP.EXE[2004] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHDISP.EXE[2004] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHDISP.EXE[2004] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHDISP.EXE[2004] kernel32.dll!FreeLibrary + 15 7C80AA7B 4 Bytes [ BD, 55, 7F, E2 ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHDISP.EXE[2004] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHDISP.EXE[2004] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHDISP.EXE[2004] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE[2212] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE[2212] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE[2212] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE[2212] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE[2212] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE[2212] kernel32.dll!FreeLibrary + 15 7C80AA7B 4 Bytes [ BD, 55, 7F, E2 ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE[2212] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE[2212] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE[2212] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE[2220] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\PROGRAM FILES\GRISOFT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE[2220] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE[2220] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE[2220] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE[2220] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE[2220] kernel32.dll!FreeLibrary + 15 7C80AA7B 4 Bytes [ BD, 55, 7F, E2 ]
.text C:\PROGRAM FILES\GRISOFT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE[2220] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE[2220] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\PROGRAM FILES\GRISOFT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE[2220] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\WINDOWS\SYSTEM32\CTFMON.EXE[2248] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\WINDOWS\SYSTEM32\CTFMON.EXE[2248] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\WINDOWS\SYSTEM32\CTFMON.EXE[2248] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\WINDOWS\SYSTEM32\CTFMON.EXE[2248] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\WINDOWS\SYSTEM32\CTFMON.EXE[2248] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\WINDOWS\SYSTEM32\CTFMON.EXE[2248] kernel32.dll!FreeLibrary + 15 7C80AA7B 4 Bytes [ BD, 55, 7F, E2 ]
.text C:\WINDOWS\SYSTEM32\CTFMON.EXE[2248] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\WINDOWS\SYSTEM32\CTFMON.EXE[2248] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\WINDOWS\SYSTEM32\CTFMON.EXE[2248] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\PROGRAM FILES\MESSENGER\MSMSGS.EXE[2260] ntdll.dll!NtTerminateProcess 7C90E88E 3 Bytes [ FF, 25, 1E ]
.text C:\PROGRAM FILES\MESSENGER\MSMSGS.EXE[2260] ntdll.dll!NtTerminateProcess + 4 7C90E892 2 Bytes [ 0E, 5F ]
.text C:\PROGRAM FILES\MESSENGER\MSMSGS.EXE[2260] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\PROGRAM FILES\MESSENGER\MSMSGS.EXE[2260] kernel32.dll!CreateProcessW 7C802332 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\PROGRAM FILES\MESSENGER\MSMSGS.EXE[2260] kernel32.dll!CreateProcessA 7C802367 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\PROGRAM FILES\MESSENGER\MSMSGS.EXE[2260] kernel32.dll!FreeLibrary + 15 7C80AA7B 4 Bytes [ BD, 55, 7F, E2 ]
.text C:\PROGRAM FILES\MESSENGER\MSMSGS.EXE[2260] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 11, 5F ]
.text C:\PROGRAM FILES\MESSENGER\MSMSGS.EXE[2260] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 19, 5F ]
.text C:\PROGRAM FILES\MESSENGER\MSMSGS.EXE[2260] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 15, 5F ]
.text C:\PROGRAM FILES\SPYWARE DOCTOR\SWDOCTOR.EXE[2416] kernel32.dll!LoadLibraryExW 7C801AF1 6 Bytes [ FF, 25, 1E, 00, 08, 5F ]
.text C:\PROGRAM FILES\SPYWARE DOCTOR\SWDOCTOR.EXE[2416] kernel32.dll!FreeLibrary + 15 7C80AA7B 4 Bytes [ BD, 55, 7F, E2 ]
.text C:\PROGRAM FILES\SPYWARE DOCTOR\SWDOCTOR.EXE[2416] USER32.dll!SetWindowsHookExW 77D5E621 6 Bytes [ FF, 25, 1E, 00, 0F, 5F ]
.text C:\PROGRAM FILES\SPYWARE DOCTOR\SWDOCTOR.EXE[2416] USER32.dll!SetWindowsHookExA 77D602B2 6 Bytes [ FF, 25, 1E, 00, 0B, 5F ]
.text C:\PROGRAM FILES\SPYWARE DOCTOR\SWDOCTOR.EXE[2416] GDI32.dll!Escape 77F27FBB 6 Bytes [ FF, 25, 1E, 00, 05, 5F ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!NlsMbOemCodePageTag + FFF84FE8 7C901000 9 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlEnterCriticalSection + 7 7C90100C 7 Bytes [ 00, 00, 00, 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlEnterCriticalSection + F 7C901014 18 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlEnterCriticalSection + 24 7C901029 4 Bytes [ 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlEnterCriticalSection + 29 7C90102E 3 Bytes [ 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlEnterCriticalSection + 30 7C901035 15 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text ...
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlLeaveCriticalSection + 17 7C901104 5 Bytes [ 00, 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlLeaveCriticalSection + 1D 7C90110A 4 Bytes [ 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlLeaveCriticalSection + 22 7C90110F 4 Bytes [ 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlLeaveCriticalSection + 2A 7C901117 3 Bytes [ 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlLeaveCriticalSection + 31 7C90111E 6 Bytes [ 00, 00, 00, 00, 00, 00 ]
.text ...
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlTryEnterCriticalSection + E 7C901139 10 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlTryEnterCriticalSection + 1B 7C901146 7 Bytes [ 00, 00, 00, 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlTryEnterCriticalSection + 25 7C901150 2 Bytes [ 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlTryEnterCriticalSection + 2A 7C901155 2 Bytes [ 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlTryEnterCriticalSection + 2D 7C901158 3 Bytes [ 00, 00, 00 ]
.text ...
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!LdrInitializeThunk + F 7C90118D 34 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!LdrInitializeThunk + 32 7C9011B0 15 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlActivateActivationContextUnsafeFast + D 7C9011C2 4 Bytes [ 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlActivateActivationContextUnsafeFast + 13 7C9011C8 9 Bytes [ 5C, 41, 32, 40, 5C, 41, 32, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlActivateActivationContextUnsafeFast + 1E 7C9011D3 6 Bytes [ 00, 00, 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlActivateActivationContextUnsafeFast + 26 7C9011DB 6 Bytes [ 00, 00, 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlActivateActivationContextUnsafeFast + 2D 7C9011E2 4 Bytes [ 00, 00, 00, 00 ]
.text ...
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlDeactivateActivationContextUnsafeFast + 2 7C9011FC 40 Bytes [ D1, 93, 6D, FF, D1, 93, 6D, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlDeactivateActivationContextUnsafeFast + 2C 7C901226 4 Bytes [ 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlDeactivateActivationContextUnsafeFast + 31 7C90122B 31 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!DbgUserBreakPoint + 12 7C90124B 8 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!NtCurrentTeb + 6 7C901256 25 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlInitString + 14 7C901270 16 Bytes [ 8B, 75, 69, FF, 8B, 75, 69, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlInitString + 25 7C901281 5 Bytes [ 00, 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlInitString + 2C 7C901288 11 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlInitString + 38 7C901294 16 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlInitAnsiString + F 7C9012A8 20 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlInitAnsiString + 25 7C9012BE 5 Bytes [ 00, 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlInitAnsiString + 2C 7C9012C5 11 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlInitAnsiString + 38 7C9012D1 16 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlInitUnicodeString + F 7C9012E5 23 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlInitUnicodeString + 28 7C9012FE 5 Bytes [ 00, 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlInitUnicodeString + 2F 7C901305 12 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!RtlInitUnicodeString + 3C 7C901312 15 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_CIcos + B 7C901322 2 Bytes [ 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_CIcos + 10 7C901327 12 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!cos + 9 7C901334 35 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!cos + 2D 7C901358 5 Bytes [ 00, 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!cos + 33 7C90135E 2 Bytes [ 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!cos + 38 7C901363 10 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!cos + 43 7C90136E 26 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text ...
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_CIlog + 41 7C901414 15 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_CIlog + 51 7C901424 5 Bytes [ 00, 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_CIlog + 57 7C90142A 8 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_CIlog + 62 7C901435 4 Bytes [ 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_CIlog + 67 7C90143A 1 Byte [ 00 ]
.text ...
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_CIpow + 15 7C9014CC 12 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_CIpow + 22 7C9014D9 19 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_CIpow + 36 7C9014ED 2 Bytes [ 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_CIpow + 39 7C9014F0 60 Bytes [ EE, AF, 7A, FF, D1, 93, 6D, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_CIpow + 76 7C90152D 13 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text ...
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!sin + 2D 7C90170C 5 Bytes [ 00, 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!sin + 33 7C901712 2 Bytes [ 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!sin + 38 7C901717 10 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!sin + 43 7C901722 26 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!sin + 5E 7C90173D 6 Bytes [ 00, 00, 00, 00, 00, 00 ]
.text ...
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_CIsqrt + B 7C901789 2 Bytes [ 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_CIsqrt + 10 7C90178E 12 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!sqrt + 9 7C90179B 23 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!sqrt + 21 7C9017B3 1 Byte [ 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!sqrt + 25 7C9017B7 11 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!sqrt + 31 7C9017C3 5 Bytes [ 00, 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!sqrt + 37 7C9017C9 2 Bytes [ 00, 00 ]
.text ...
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_alldiv + 19 7C901856 27 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_alldiv + 35 7C901872 110 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_alldiv + A4 7C9018E1 5 Bytes [ 00, 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_alldiv + AA 7C9018E7 32 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_alldvrm + 1C 7C901908 27 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_alldvrm + 38 7C901924 140 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_alldvrm + C5 7C9019B1 19 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_alldvrm + D9 7C9019C5 5 Bytes [ 00, 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_alldvrm + DF 7C9019CB 29 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_allmul + 19 7C9019E9 26 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_allmul + 34 7C901A04 6 Bytes [ 00, 00, 00, 00, 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_alloca_probe + 2 7C901A0B 1 Byte [ 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_alloca_probe + 5 7C901A0E 10 Bytes [ 00, 00, 00, 00, 00, 00, 00, ... ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_alloca_probe + 10 7C901A19 2 Bytes [ 00, 00 ]
.text C:\Program Files\Alwil Software\Avast4\setup\avast.setup[2668] ntdll.dll!_alloca_probe + 13 7C901A1C 9 Byt
|