GMER 1.0.12.12011 -
http://www.gmer.netRootkit scan 2007-01-13 16:26:21
Windows 5.1.2600 Service Pack 2
---- System - GMER 1.0.12 ----
SSDT \??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys ZwOpenProcess
SSDT \??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys ZwTerminateProcess
---- Devices - GMER 1.0.12 ----
Device \Driver\Tcpip \Device\Ip IRP_MJ_CREATE [F891A316] smtcpmon.sys
Device \Driver\Tcpip \Device\Ip IRP_MJ_CLOSE [F891A50E] smtcpmon.sys
Device \Driver\Tcpip \Device\Ip IRP_MJ_INTERNAL_DEVICE_CONTROL [F891A743] smtcpmon.sys
Device \Driver\Tcpip \Device\Tcp IRP_MJ_CREATE [F891A316] smtcpmon.sys
Device \Driver\Tcpip \Device\Tcp IRP_MJ_CLOSE [F891A50E] smtcpmon.sys
Device \Driver\Tcpip \Device\Tcp IRP_MJ_INTERNAL_DEVICE_CONTROL [F891A743] smtcpmon.sys
Device \Driver\Tcpip \Device\Udp IRP_MJ_CREATE [F891A316] smtcpmon.sys
Device \Driver\Tcpip \Device\Udp IRP_MJ_CLOSE [F891A50E] smtcpmon.sys
Device \Driver\Tcpip \Device\Udp IRP_MJ_INTERNAL_DEVICE_CONTROL [F891A743] smtcpmon.sys
Device \Driver\Tcpip \Device\RawIp IRP_MJ_CREATE [F891A316] smtcpmon.sys
Device \Driver\Tcpip \Device\RawIp IRP_MJ_CLOSE [F891A50E] smtcpmon.sys
Device \Driver\Tcpip \Device\RawIp IRP_MJ_INTERNAL_DEVICE_CONTROL [F891A743] smtcpmon.sys
Device \Driver\Tcpip \Device\IPMULTICAST IRP_MJ_CREATE [F891A316] smtcpmon.sys
Device \Driver\Tcpip \Device\IPMULTICAST IRP_MJ_CLOSE [F891A50E] smtcpmon.sys
Device \Driver\Tcpip \Device\IPMULTICAST IRP_MJ_INTERNAL_DEVICE_CONTROL [F891A743] smtcpmon.sys
Device \FileSystem\Fs_Rec \FileSystem\UdfsCdRomRecognizer IRP_MJ_FILE_SYSTEM_CONTROL [A9CEC701] tfsnifs.sys
Device \FileSystem\Fs_Rec \FileSystem\FatCdRomRecognizer IRP_MJ_FILE_SYSTEM_CONTROL [A9CEC701] tfsnifs.sys
Device \FileSystem\Fs_Rec \FileSystem\CdfsRecognizer IRP_MJ_FILE_SYSTEM_CONTROL [A9CEC701] tfsnifs.sys
Device \FileSystem\Fs_Rec \FileSystem\FatDiskRecognizer IRP_MJ_FILE_SYSTEM_CONTROL [A9CEC701] tfsnifs.sys
Device \FileSystem\Fs_Rec \FileSystem\UdfsDiskRecognizer IRP_MJ_FILE_SYSTEM_CONTROL [A9CEC701] tfsnifs.sys
Device \FileSystem\Cdfs \Cdfs IRP_MJ_FILE_SYSTEM_CONTROL [A9CEC89D] tfsnifs.sys
---- Files - GMER 1.0.12 ----
ADS C:\WINDOWS\system32:lzx32.sy_
---- EOF - GMER 1.0.12 ----