scan con gmer:
GMER 1.0.13.12551 - http://www.gmer.net
Rootkit scan 2007-12-30 01:00:09
Windows 5.1.2600 Service Pack 2
---- System - GMER 1.0.13 ----
SSDT sptd.sys ZwCreateKey
SSDT sptd.sys ZwEnumerateKey
SSDT sptd.sys ZwEnumerateValueKey
SSDT sptd.sys ZwOpenKey
SSDT sptd.sys ZwQueryKey
SSDT sptd.sys ZwQueryValueKey
SSDT sptd.sys ZwSetValueKey
---- Kernel code sections - GMER 1.0.13 ----
? C:\WINDOWS\system32\drivers\sptd.sys Impossibile accedere al file. Il file è utilizzato da un altro processo.
.text USBPORT.SYS!DllUnload F60D962C 5 Bytes JMP 84D47868
? System32\Drivers\af21a1p8.SYS Impossibile trovare il file specificato.
---- Kernel IAT/EAT - GMER 1.0.13 ----
IAT \WINDOWS\System32\Drivers\SCSIPORT.SYS[ntoskrnl.exe!IoConnectInterrupt] [F73A197E] sptd.sys
IAT pci.sys[ntoskrnl.exe!IoDetachDevice] [F73A192A] sptd.sys
IAT pci.sys[ntoskrnl.exe!IoAttachDeviceToDeviceStack] [F73BCB4E] sptd.sys
IAT atapi.sys[ntoskrnl.exe!IoConnectInterrupt] [F73A197E] sptd.sys
IAT atapi.sys[HAL.dll!READ_PORT_UCHAR] [F738DAB4] sptd.sys
IAT atapi.sys[HAL.dll!READ_PORT_BUFFER_USHORT] [F738DBFA] sptd.sys
IAT atapi.sys[HAL.dll!READ_PORT_USHORT] [F738DB7C] sptd.sys
IAT atapi.sys[HAL.dll!WRITE_PORT_BUFFER_USHORT] [F738E728] sptd.sys
IAT atapi.sys[HAL.dll!WRITE_PORT_UCHAR] [F738E5FE] sptd.sys
IAT \SystemRoot\system32\DRIVERS\i8042prt.sys[HAL.dll!READ_PORT_UCHAR] [F73A0C5A] sptd.sys
---- Devices - GMER 1.0.13 ----
Device \FileSystem\Ntfs \Ntfs IRP_MJ_CREATE 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_CLOSE 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_READ 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_WRITE 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_INFORMATION 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_INFORMATION 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_EA 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_EA 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_FLUSH_BUFFERS 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_VOLUME_INFORMATION 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_VOLUME_INFORMATION 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_DIRECTORY_CONTROL 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_FILE_SYSTEM_CONTROL 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_DEVICE_CONTROL 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_SHUTDOWN 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_LOCK_CONTROL 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_CLEANUP 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_SECURITY 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_SECURITY 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_QUOTA 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_QUOTA 84F941E8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_PNP 84F941E8
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CREATE [B9346FE2] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CREATE_NAMED_PIPE [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CLOSE [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_READ [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_WRITE [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_INFORMATION [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_INFORMATION [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_EA [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_EA [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_FLUSH_BUFFERS [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_VOLUME_INFORMATION [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_VOLUME_INFORMATION [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_DIRECTORY_CONTROL [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_FILE_SYSTEM_CONTROL [B9346BEC] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_DEVICE_CONTROL [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_INTERNAL_DEVICE_CONTROL [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SHUTDOWN [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_LOCK_CONTROL [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CLEANUP [B93473D4] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CREATE_MAILSLOT [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_SECURITY [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_SECURITY [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_POWER [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SYSTEM_CONTROL [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_DEVICE_CHANGE [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_QUOTA [B934767A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_QUOTA [B934767A] amon.sys
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_CREATE 84686980
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_CLOSE 84686980
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_READ 84686980
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_WRITE 84686980
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_QUERY_INFORMATION 84686980
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_SET_INFORMATION 84686980
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_QUERY_EA 84686980
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_SET_EA 84686980
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_FLUSH_BUFFERS 84686980
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_QUERY_VOLUME_INFORMATION 84686980
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_SET_VOLUME_INFORMATION 84686980
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_DIRECTORY_CONTROL 84686980
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_FILE_SYSTEM_CONTROL 84686980
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_DEVICE_CONTROL 84686980
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_SHUTDOWN 84686980
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_LOCK_CONTROL 84686980
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_CLEANUP 84686980
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_PNP 84686980
Device \Driver\usbohci \Device\USBPDO-0 IRP_MJ_CREATE 84D6A688
Device \Driver\usbohci \Device\USBPDO-0 IRP_MJ_CLOSE 84D6A688
Device \Driver\usbohci \Device\USBPDO-0 IRP_MJ_DEVICE_CONTROL 84D6A688
Device \Driver\usbohci \Device\USBPDO-0 IRP_MJ_INTERNAL_DEVICE_CONTROL 84D6A688
Device \Driver\usbohci \Device\USBPDO-0 IRP_MJ_POWER 84D6A688
Device \Driver\usbohci \Device\USBPDO-0 IRP_MJ_SYSTEM_CONTROL 84D6A688
Device \Driver\usbohci \Device\USBPDO-0 IRP_MJ_PNP 84D6A688
Device \Driver\usbohci \Device\USBPDO-1 IRP_MJ_CREATE 84D6A688
Device \Driver\usbohci \Device\USBPDO-1 IRP_MJ_CLOSE 84D6A688
Device \Driver\usbohci \Device\USBPDO-1 IRP_MJ_DEVICE_CONTROL 84D6A688
Device \Driver\usbohci \Device\USBPDO-1 IRP_MJ_INTERNAL_DEVICE_CONTROL 84D6A688
Device \Driver\usbohci \Device\USBPDO-1 IRP_MJ_POWER 84D6A688
Device \Driver\usbohci \Device\USBPDO-1 IRP_MJ_SYSTEM_CONTROL 84D6A688
Device \Driver\usbohci \Device\USBPDO-1 IRP_MJ_PNP 84D6A688
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_CREATE 850061E8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_CLOSE 850061E8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_READ 850061E8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_WRITE 850061E8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_FLUSH_BUFFERS 850061E8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_DEVICE_CONTROL 850061E8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_INTERNAL_DEVICE_CONTROL 850061E8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_SHUTDOWN 850061E8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_POWER 850061E8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_SYSTEM_CONTROL 850061E8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_PNP 850061E8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_CREATE 850061E8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_CLOSE 850061E8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_READ 850061E8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_WRITE 850061E8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_FLUSH_BUFFERS 850061E8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_DEVICE_CONTROL 850061E8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_INTERNAL_DEVICE_CONTROL 850061E8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_SHUTDOWN 850061E8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_POWER 850061E8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_SYSTEM_CONTROL 850061E8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_PNP 850061E8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_CREATE 850061E8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_CLOSE 850061E8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_READ 850061E8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_WRITE 850061E8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_FLUSH_BUFFERS 850061E8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_DEVICE_CONTROL 850061E8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_INTERNAL_DEVICE_CONTROL 850061E8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_SHUTDOWN 850061E8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_POWER 850061E8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_SYSTEM_CONTROL 850061E8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_PNP 850061E8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_CREATE 850061E8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_CLOSE 850061E8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_READ 850061E8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_WRITE 850061E8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_FLUSH_BUFFERS 850061E8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_DEVICE_CONTROL 850061E8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_INTERNAL_DEVICE_CONTROL 850061E8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_SHUTDOWN 850061E8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_POWER 850061E8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_SYSTEM_CONTROL 850061E8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_PNP 850061E8
Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_CREATE 84D791E8
Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_CLOSE 84D791E8
Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_DEVICE_CONTROL 84D791E8
Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_INTERNAL_DEVICE_CONTROL 84D791E8
Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_POWER 84D791E8
Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_SYSTEM_CONTROL 84D791E8
Device \Driver\usbehci \Device\USBPDO-2 IRP_MJ_PNP 84D791E8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_CREATE 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_READ 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_WRITE 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_FLUSH_BUFFERS 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_DEVICE_CONTROL 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_INTERNAL_DEVICE_CONTROL 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_SHUTDOWN 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_CLEANUP 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_POWER 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_SYSTEM_CONTROL 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_PNP 84F971E8
Device \Driver\NetBT \Device\NetBT_Tcpip_{6F973C40-B6C8-49A7-ABDF-2E1B1AFF8593} IRP_MJ_CREATE 84C99508
Device \Driver\NetBT \Device\NetBT_Tcpip_{6F973C40-B6C8-49A7-ABDF-2E1B1AFF8593} IRP_MJ_CLOSE 84C99508
Device \Driver\NetBT \Device\NetBT_Tcpip_{6F973C40-B6C8-49A7-ABDF-2E1B1AFF8593} IRP_MJ_DEVICE_CONTROL 84C99508
Device \Driver\NetBT \Device\NetBT_Tcpip_{6F973C40-B6C8-49A7-ABDF-2E1B1AFF8593} IRP_MJ_INTERNAL_DEVICE_CONTROL 84C99508
Device \Driver\NetBT \Device\NetBT_Tcpip_{6F973C40-B6C8-49A7-ABDF-2E1B1AFF8593} IRP_MJ_CLEANUP 84C99508
Device \Driver\NetBT \Device\NetBT_Tcpip_{6F973C40-B6C8-49A7-ABDF-2E1B1AFF8593} IRP_MJ_PNP 84C99508
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_CREATE 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_READ 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_WRITE 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_FLUSH_BUFFERS 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_DEVICE_CONTROL 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_INTERNAL_DEVICE_CONTROL 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_SHUTDOWN 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_CLEANUP 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_POWER 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_SYSTEM_CONTROL 84F971E8
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_PNP 84F971E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_CREATE 84EF61E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_CLOSE 84EF61E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_READ 84EF61E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_WRITE 84EF61E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_FLUSH_BUFFERS 84EF61E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_DEVICE_CONTROL 84EF61E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_INTERNAL_DEVICE_CONTROL 84EF61E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_SHUTDOWN 84EF61E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_POWER 84EF61E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_SYSTEM_CONTROL 84EF61E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_PNP 84EF61E8
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_CREATE 84C99508
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_CLOSE 84C99508
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_DEVICE_CONTROL 84C99508
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_INTERNAL_DEVICE_CONTROL 84C99508
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_CLEANUP 84C99508
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_PNP 84C99508
Device \Driver\sbp2port \Device\Sbp2Port0 IRP_MJ_CREATE 850031E8
Device \Driver\sbp2port \Device\Sbp2Port0 IRP_MJ_CLOSE 850031E8
Device \Driver\sbp2port \Device\Sbp2Port0 IRP_MJ_DEVICE_CONTROL 850031E8
Device \Driver\sbp2port \Device\Sbp2Port0 IRP_MJ_INTERNAL_DEVICE_CONTROL 850031E8
Device \Driver\sbp2port \Device\Sbp2Port0 IRP_MJ_POWER 850031E8
Device \Driver\sbp2port \Device\Sbp2Port0 IRP_MJ_SYSTEM_CONTROL 850031E8
Device \Driver\sbp2port \Device\Sbp2Port0 IRP_MJ_PNP 850031E8
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_CREATE 84C99508
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_CLOSE 84C99508
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_DEVICE_CONTROL 84C99508
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_INTERNAL_DEVICE_CONTROL 84C99508
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_CLEANUP 84C99508
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_PNP 84C99508
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_CREATE [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_CREATE_NAMED_PIPE [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_CLOSE [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_READ [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_WRITE [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_QUERY_INFORMATION [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_SET_INFORMATION [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_QUERY_EA [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_SET_EA [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_FLUSH_BUFFERS [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_QUERY_VOLUME_INFORMATION [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_SET_VOLUME_INFORMATION [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_DIRECTORY_CONTROL [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_FILE_SYSTEM_CONTROL [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_DEVICE_CONTROL [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_INTERNAL_DEVICE_CONTROL [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_SHUTDOWN [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_LOCK_CONTROL [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_CLEANUP [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_CREATE_MAILSLOT [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_QUERY_SECURITY [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_SET_SECURITY [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_POWER [F739BDB8] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_SYSTEM_CONTROL [F73B6344] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_DEVICE_CHANGE [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_QUERY_QUOTA [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_SET_QUOTA [F73B9F18] sptd.sys
Device \Driver\PCI_NTPNP5614 \Device\0000004e IRP_MJ_PNP [F73B72D0] sptd.sys
Device \Driver\usbohci \Device\USBFDO-0 IRP_MJ_CREATE 84D6A688
Device \Driver\usbohci \Device\USBFDO-0 IRP_MJ_CLOSE 84D6A688
Device \Driver\usbohci \Device\USBFDO-0 IRP_MJ_DEVICE_CONTROL 84D6A688
Device \Driver\usbohci \Device\USBFDO-0 IRP_MJ_INTERNAL_DEVICE_CONTROL 84D6A688
Device \Driver\usbohci \Device\USBFDO-0 IRP_MJ_POWER 84D6A688
Device \Driver\usbohci \Device\USBFDO-0 IRP_MJ_SYSTEM_CONTROL 84D6A688
Device \Driver\usbohci \Device\USBFDO-0 IRP_MJ_PNP 84D6A688
Device \Driver\sbp2port \Device\Sbp2\Oxford Semiconductor Ltd. &OXFORD IDE Device &0&0030e001_e00007f9_Instance00 IRP_MJ_CREATE 850031E8
Device \Driver\sbp2port \Device\Sbp2\Oxford Semiconductor Ltd. &OXFORD IDE Device &0&0030e001_e00007f9_Instance00 IRP_MJ_CLOSE 850031E8
Device \Driver\sbp2port \Device\Sbp2\Oxford Semiconductor Ltd. &OXFORD IDE Device &0&0030e001_e00007f9_Instance00 IRP_MJ_DEVICE_CONTROL 850031E8
Device \Driver\sbp2port \Device\Sbp2\Oxford Semiconductor Ltd. &OXFORD IDE Device &0&0030e001_e00007f9_Instance00 IRP_MJ_INTERNAL_DEVICE_CONTROL 850031E8
Device \Driver\sbp2port \Device\Sbp2\Oxford Semiconductor Ltd. &OXFORD IDE Device &0&0030e001_e00007f9_Instance00 IRP_MJ_POWER 850031E8
Device \Driver\sbp2port \Device\Sbp2\Oxford Semiconductor Ltd. &OXFORD IDE Device &0&0030e001_e00007f9_Instance00 IRP_MJ_SYSTEM_CONTROL 850031E8
Device \Driver\sbp2port \Device\Sbp2\Oxford Semiconductor Ltd. &OXFORD IDE Device &0&0030e001_e00007f9_Instance00 IRP_MJ_PNP 850031E8
Device \Driver\usbohci \Device\USBFDO-1 IRP_MJ_CREATE 84D6A688
Device \Driver\usbohci \Device\USBFDO-1 IRP_MJ_CLOSE 84D6A688
Device \Driver\usbohci \Device\USBFDO-1 IRP_MJ_DEVICE_CONTROL 84D6A688
Device \Driver\usbohci \Device\USBFDO-1 IRP_MJ_INTERNAL_DEVICE_CONTROL 84D6A688
Device \Driver\usbohci \Device\USBFDO-1 IRP_MJ_POWER 84D6A688
Device \Driver\usbohci \Device\USBFDO-1 IRP_MJ_SYSTEM_CONTROL 84D6A688
Device \Driver\usbohci \Device\USBFDO-1 IRP_MJ_PNP 84D6A688
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CREATE 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CREATE_NAMED_PIPE 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CLOSE 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_READ 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_WRITE 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_INFORMATION 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_INFORMATION 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_EA 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_EA 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_FLUSH_BUFFERS 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_VOLUME_INFORMATION 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_VOLUME_INFORMATION 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_DIRECTORY_CONTROL 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_FILE_SYSTEM_CONTROL 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_DEVICE_CONTROL 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_INTERNAL_DEVICE_CONTROL 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SHUTDOWN 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_LOCK_CONTROL 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CLEANUP 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CREATE_MAILSLOT 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_SECURITY 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_SECURITY 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_POWER 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SYSTEM_CONTROL 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_DEVICE_CHANGE 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_QUOTA 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_QUOTA 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_PNP 84CC51E8
Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_CREATE 84D791E8
Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_CLOSE 84D791E8
Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_DEVICE_CONTROL 84D791E8
Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_INTERNAL_DEVICE_CONTROL 84D791E8
Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_POWER 84D791E8
Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_SYSTEM_CONTROL 84D791E8
Device \Driver\usbehci \Device\USBFDO-2 IRP_MJ_PNP 84D791E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_CREATE 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_CREATE_NAMED_PIPE 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_CLOSE 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_READ 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_WRITE 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_QUERY_INFORMATION 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SET_INFORMATION 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_QUERY_EA 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SET_EA 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_FLUSH_BUFFERS 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_QUERY_VOLUME_INFORMATION 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SET_VOLUME_INFORMATION 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_DIRECTORY_CONTROL 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_FILE_SYSTEM_CONTROL 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_DEVICE_CONTROL 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_INTERNAL_DEVICE_CONTROL 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SHUTDOWN 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_LOCK_CONTROL 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_CLEANUP 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_CREATE_MAILSLOT 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_QUERY_SECURITY 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SET_SECURITY 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_POWER 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SYSTEM_CONTROL 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_DEVICE_CHANGE 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_QUERY_QUOTA 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_SET_QUOTA 84CC51E8
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_PNP 84CC51E8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_CREATE 84F971E8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_READ 84F971E8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_WRITE 84F971E8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_FLUSH_BUFFERS 84F971E8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_DEVICE_CONTROL 84F971E8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_INTERNAL_DEVICE_CONTROL 84F971E8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_SHUTDOWN 84F971E8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_CLEANUP 84F971E8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_POWER 84F971E8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_SYSTEM_CONTROL 84F971E8
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_PNP 84F971E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1Port0Path0Target0Lun0 IRP_MJ_CREATE 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1Port0Path0Target0Lun0 IRP_MJ_CLOSE 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1Port0Path0Target0Lun0 IRP_MJ_DEVICE_CONTROL 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1Port0Path0Target0Lun0 IRP_MJ_INTERNAL_DEVICE_CONTROL 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1Port0Path0Target0Lun0 IRP_MJ_POWER 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1Port0Path0Target0Lun0 IRP_MJ_SYSTEM_CONTROL 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1Port0Path0Target0Lun0 IRP_MJ_PNP 850051E8
Device \Driver\viamraid \Device\Scsi\viamraid1 IRP_MJ_CREATE 84F951E8
Device \Driver\viamraid \Device\Scsi\viamraid1 IRP_MJ_CLOSE 84F951E8
Device \Driver\viamraid \Device\Scsi\viamraid1 IRP_MJ_DEVICE_CONTROL 84F951E8
Device \Driver\viamraid \Device\Scsi\viamraid1 IRP_MJ_INTERNAL_DEVICE_CONTROL 84F951E8
Device \Driver\viamraid \Device\Scsi\viamraid1 IRP_MJ_POWER 84F951E8
Device \Driver\viamraid \Device\Scsi\viamraid1 IRP_MJ_SYSTEM_CONTROL 84F951E8
Device \Driver\viamraid \Device\Scsi\viamraid1 IRP_MJ_PNP 84F951E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1 IRP_MJ_CREATE 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1 IRP_MJ_CLOSE 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1 IRP_MJ_DEVICE_CONTROL 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1 IRP_MJ_INTERNAL_DEVICE_CONTROL 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1 IRP_MJ_POWER 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1 IRP_MJ_SYSTEM_CONTROL 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1 IRP_MJ_PNP 850051E8
Device \Driver\af21a1p8 \Device\Scsi\af21a1p81 IRP_MJ_CREATE 84C9A1E8
Device \Driver\af21a1p8 \Device\Scsi\af21a1p81 IRP_MJ_CLOSE 84C9A1E8
Device \Driver\af21a1p8 \Device\Scsi\af21a1p81 IRP_MJ_DEVICE_CONTROL 84C9A1E8
Device \Driver\af21a1p8 \Device\Scsi\af21a1p81 IRP_MJ_INTERNAL_DEVICE_CONTROL 84C9A1E8
Device \Driver\af21a1p8 \Device\Scsi\af21a1p81 IRP_MJ_POWER 84C9A1E8
Device \Driver\af21a1p8 \Device\Scsi\af21a1p81 IRP_MJ_SYSTEM_CONTROL 84C9A1E8
Device \Driver\af21a1p8 \Device\Scsi\af21a1p81 IRP_MJ_PNP 84C9A1E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1Port0Path1Target0Lun0 IRP_MJ_CREATE 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1Port0Path1Target0Lun0 IRP_MJ_CLOSE 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1Port0Path1Target0Lun0 IRP_MJ_DEVICE_CONTROL 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1Port0Path1Target0Lun0 IRP_MJ_INTERNAL_DEVICE_CONTROL 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1Port0Path1Target0Lun0 IRP_MJ_POWER 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1Port0Path1Target0Lun0 IRP_MJ_SYSTEM_CONTROL 850051E8
Device \Driver\nvidesm \Device\Scsi\nvidesm1Port0Path1Target0Lun0 IRP_MJ_PNP 850051E8
Device \FileSystem\Fastfat \Fat IRP_MJ_CREATE 84686980
Device \FileSystem\Fastfat \Fat IRP_MJ_CLOSE 84686980
Device \FileSystem\Fastfat \Fat IRP_MJ_READ 84686980
Device \FileSystem\Fastfat \Fat IRP_MJ_WRITE 84686980
Device \FileSystem\Fastfat \Fat IRP_MJ_QUERY_INFORMATION 84686980
Device \FileSystem\Fastfat \Fat IRP_MJ_SET_INFORMATION 84686980
Device \FileSystem\Fastfat \Fat IRP_MJ_QUERY_EA 84686980
Device \FileSystem\Fastfat \Fat IRP_MJ_SET_EA 84686980
Device \FileSystem\Fastfat \Fat IRP_MJ_FLUSH_BUFFERS 84686980
Device \FileSystem\Fastfat \Fat IRP_MJ_QUERY_VOLUME_INFORMATION 84686980
Device \FileSystem\Fastfat \Fat IRP_MJ_SET_VOLUME_INFORMATION 84686980
Device \FileSystem\Fastfat \Fat IRP_MJ_DIRECTORY_CONTROL 84686980
Device \FileSystem\Fastfat \Fat IRP_MJ_FILE_SYSTEM_CONTROL 84686980
Device \FileSystem\Fastfat \Fat IRP_MJ_DEVICE_CONTROL 84686980
Device \FileSystem\Fastfat \Fat IRP_MJ_SHUTDOWN 84686980
Device \FileSystem\Fastfat \Fat IRP_MJ_LOCK_CONTROL 84686980
Device \FileSystem\Fastfat \Fat IRP_MJ_CLEANUP 84686980
Device \FileSystem\Fastfat \Fat IRP_MJ_PNP 84686980
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_CREATE [B9346FE2] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_CREATE_NAMED_PIPE [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_CLOSE [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_READ [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_WRITE [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_QUERY_INFORMATION [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SET_INFORMATION [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_QUERY_EA [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SET_EA [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_FLUSH_BUFFERS [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_QUERY_VOLUME_INFORMATION [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SET_VOLUME_INFORMATION [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_DIRECTORY_CONTROL [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_FILE_SYSTEM_CONTROL [B9346BEC] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_DEVICE_CONTROL [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_INTERNAL_DEVICE_CONTROL [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SHUTDOWN [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_LOCK_CONTROL [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_CLEANUP [B93473D4] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_CREATE_MAILSLOT [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_QUERY_SECURITY [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SET_SECURITY [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_POWER [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SYSTEM_CONTROL [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_DEVICE_CHANGE [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_QUERY_QUOTA [B934767A] amon.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SET_QUOTA [B934767A] amon.sys
Device \FileSystem\Cdfs \Cdfs IRP_MJ_CREATE 84DA9558
Device \FileSystem\Cdfs \Cdfs IRP_MJ_CLOSE 84DA9558
Device \FileSystem\Cdfs \Cdfs IRP_MJ_READ 84DA9558
Device \FileSystem\Cdfs \Cdfs IRP_MJ_QUERY_INFORMATION 84DA9558
Device \FileSystem\Cdfs \Cdfs IRP_MJ_SET_INFORMATION 84DA9558
Device \FileSystem\Cdfs \Cdfs IRP_MJ_QUERY_VOLUME_INFORMATION 84DA9558
Device \FileSystem\Cdfs \Cdfs IRP_MJ_DIRECTORY_CONTROL 84DA9558
Device \FileSystem\Cdfs \Cdfs IRP_MJ_FILE_SYSTEM_CONTROL 84DA9558
Device \FileSystem\Cdfs \Cdfs IRP_MJ_DEVICE_CONTROL 84DA9558
Device \FileSystem\Cdfs \Cdfs IRP_MJ_SHUTDOWN 84DA9558
Device \FileSystem\Cdfs \Cdfs IRP_MJ_LOCK_CONTROL 84DA9558
Device \FileSystem\Cdfs \Cdfs IRP_MJ_CLEANUP 84DA9558
Device \FileSystem\Cdfs \Cdfs IRP_MJ_PNP 84DA9558
---- Registry - GMER 1.0.13 ----
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
[email protected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
---- EOF - GMER 1.0.13 ----
credo che sia un worm di msn semplicemente dal fatto che un'amico mio ha un worm che ogni mezz'oretta spamma le classiche richieste di file transfer "here's my new pic, u think i look ugly?" e menate di sto tipo. ovviamente non ho mai accettato niente di tutto cio', e l'ho bloccato in via preventiva :s
non so se e' un problema diffuso, mandero' un'email a quelli di hotmail, vediamo cosa ne esce fuori.