

text C:\Program Files (x86)\CheckPoint\Endpoint Connect\TracSrvWrapper.exe C:\Windows\syswow64\PSAPI.DLL!GetDeviceDriverBaseNameA + 17 00000000756014f5 2 bytes JMP 77418978 C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\CheckPoint\Endpoint Connect\TracSrvWrapper.exe C:\Windows\syswow64\PSAPI.DLL!EnumDeviceDrivers + 17 00000000756014dd 2 bytes JMP 774187a2 C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\CheckPoint\Endpoint Connect\TracSrvWrapper.exe C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 42 000000007560144a 2 bytes CALL 773748ad C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\CheckPoint\Endpoint Connect\TracSrvWrapper.exe C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 17 0000000075601431 2 bytes JMP 77418ea9 C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\CheckPoint\Endpoint Connect\TracSrvWrapper.exe C:\Windows\syswow64\PSAPI.DLL!EnumProcessModules + 17 0000000075601419 2 bytes JMP 7739b346 C:\Windows\syswow64\kernel32.dll


text C:\Program Files (x86)\CheckPoint\Endpoint Connect\TracSrvWrapper.exe C:\Windows\syswow64\PSAPI.DLL!GetModuleFileNameExW + 17 0000000075601401 2 bytes JMP 7739b21b C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe C:\Windows\syswow64\psapi.dll!GetProcessImageFileNameW + 31 00000000756016bd 2 bytes JMP 774185f1 C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe C:\Windows\syswow64\psapi.dll!GetProcessImageFileNameW + 20 00000000756016b2 2 bytes JMP 77418e24 C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe C:\Windows\syswow64\psapi.dll!GetModuleFileNameExA + 17 00000000756015cd 2 bytes JMP 7739b2dc C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe C:\Windows\syswow64\psapi.dll!GetModuleBaseNameA + 17 00000000756015b5 2 bytes JMP 7738fd41 C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe C:\Windows\syswow64\psapi.dll!QueryWorkingSet + 17 000000007560159d 2 bytes JMP 7741865c C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe C:\Windows\syswow64\psapi.dll!GetPerformanceInfo + 17 0000000075601585 2 bytes JMP 77418ac2 C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe C:\Windows\syswow64\psapi.dll!GetProcessMemoryInfo + 17 000000007560156d 2 bytes JMP 77418f61 C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe C:\Windows\syswow64\psapi.dll!EnumProcesses + 17 0000000075601555 2 bytes JMP 773968ef C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe C:\Windows\syswow64\psapi.dll!GetModuleBaseNameW + 17 000000007560153d 2 bytes JMP 7738fca8 C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe C:\Windows\syswow64\psapi.dll!GetDeviceDriverBaseNameW + 17 0000000075601525 2 bytes JMP 77418a62 C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe C:\Windows\syswow64\psapi.dll!QueryWorkingSetEx + 17 000000007560150d 2 bytes JMP 77418698 C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe C:\Windows\syswow64\psapi.dll!GetDeviceDriverBaseNameA + 17 00000000756014f5 2 bytes JMP 77418978 C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe C:\Windows\syswow64\psapi.dll!EnumDeviceDrivers + 17 00000000756014dd 2 bytes JMP 774187a2 C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe C:\Windows\syswow64\psapi.dll!GetModuleInformation + 42 000000007560144a 2 bytes CALL 773748ad C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe C:\Windows\syswow64\psapi.dll!GetModuleInformation + 17 0000000075601431 2 bytes JMP 77418ea9 C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe C:\Windows\syswow64\psapi.dll!EnumProcessModules + 17 0000000075601419 2 bytes JMP 7739b346 C:\Windows\syswow64\kernel32.dll text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe C:\Windows\syswow64\psapi.dll!GetModuleFileNameExW + 17 0000000075601401 2 bytes JMP 7739b21b C:\Windows\syswow64\kernel32.dll Running: Gmer-19357.exe Driver: C:\Users\banimatz\AppData\Local\Temp\uwdiruog.sys
Avira free antivirus 14.0.7.342 windows#
Windows Service Pack 1 圆4 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 APPLE_SSD_SM0512F rev.UXM2JA1Q 465,92GB ATTFilter GMER 7 - hxxp://Rootkit scan 13:42:02
