jak mam najit
fxkvcqpv.sys? mam zapnute abych videl zkryte polozky .v ice swrodu jsem dal file a nasel tuto cestu
Local Disk (C:) > WINDOWS > system32 > DRIVERS. ale tento soubor
a3jqx1z3.SYSjsem tam nenasel .Posilam log z toho gmer ale je pekne dlouhej ....ja bych se v nem nevyznal :-)) ale vy urcite jo .....
GMER 1.0.13.12551 -
http://www.gmer.net
Rootkit scan 2007-07-06 22:33:13
Windows 5.1.2600 Service Pack 2
---- System - GMER 1.0.13 ----
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwConnectPort
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwCreateFile
SSDT sptd.sys ZwCreateKey
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwCreatePort
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwCreateSection
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwCreateThread
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwDeleteFile
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwDeleteKey
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwDeleteValueKey
SSDT sptd.sys ZwEnumerateKey
SSDT sptd.sys ZwEnumerateValueKey
SSDT sptd.sys ZwOpenKey
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwOpenProcess
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwOpenSection
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwOpenThread
SSDT sptd.sys ZwQueryKey
SSDT sptd.sys ZwQueryValueKey
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwSetContextThread
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwSetInformationFile
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwSetValueKey
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwShutdownSystem
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwTerminateProcess
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwWriteFile
SSDT \SystemRoot\System32\DRIVERS\cmdmon.sys ZwWriteFileGather
---- Kernel code sections - GMER 1.0.13 ----
? C:\WINDOWS\system32\drivers\sptd.sys Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.
.text USBPORT.SYS!DllUnload F7B9A62C 5 Bytes JMP 8204C1B8
? System32\Drivers\au7gh37i.SYS Systém nemůže nalézt uvedený soubor.
---- Kernel IAT/EAT - GMER 1.0.13 ----
IAT \SystemRoot\system32\DRIVERS\i8042prt.sys[HAL.dll!READ_PORT_UCHAR] [F82FC7AE] sptd.sys
IAT \SystemRoot\system32\DRIVERS\ndiswan.sys[NDIS.SYS!NdisCloseAdapter] [F85026D0] inspect.sys
IAT \SystemRoot\system32\DRIVERS\ndiswan.sys[NDIS.SYS!NdisOpenAdapter] [F8502730] inspect.sys
IAT \SystemRoot\system32\DRIVERS\ndiswan.sys[NDIS.SYS!NdisDeregisterProtocol] [F8502950] inspect.sys
IAT \SystemRoot\system32\DRIVERS\ndiswan.sys[NDIS.SYS!NdisRegisterProtocol] [F8502910] inspect.sys
IAT \SystemRoot\system32\DRIVERS\raspppoe.sys[NDIS.SYS!NdisRegisterProtocol] [F8502910] inspect.sys
IAT \SystemRoot\system32\DRIVERS\raspppoe.sys[NDIS.SYS!NdisOpenAdapter] [F8502730] inspect.sys
IAT \SystemRoot\system32\DRIVERS\raspppoe.sys[NDIS.SYS!NdisCloseAdapter] [F85026D0] inspect.sys
IAT \SystemRoot\system32\DRIVERS\raspppoe.sys[NDIS.SYS!NdisDeregisterProtocol] [F8502950] inspect.sys
IAT \SystemRoot\System32\Drivers\NDProxy.SYS[NDIS.SYS!NdisRegisterProtocol] [F8502910] inspect.sys
IAT \SystemRoot\System32\Drivers\NDProxy.SYS[NDIS.SYS!NdisCloseAdapter] [F85026D0] inspect.sys
IAT \SystemRoot\System32\Drivers\NDProxy.SYS[NDIS.SYS!NdisOpenAdapter] [F8502730] inspect.sys
IAT \SystemRoot\System32\Drivers\NDProxy.SYS[NDIS.SYS!NdisDeregisterProtocol] [F8502950] inspect.sys
IAT \SystemRoot\system32\DRIVERS\tcpip.sys[NDIS.SYS!NdisCloseAdapter] [F85026D0] inspect.sys
IAT \SystemRoot\system32\DRIVERS\tcpip.sys[NDIS.SYS!NdisOpenAdapter] [F8502730] inspect.sys
IAT \SystemRoot\system32\DRIVERS\tcpip.sys[NDIS.SYS!NdisRegisterProtocol] [F8502910] inspect.sys
IAT \SystemRoot\system32\DRIVERS\wanarp.sys[NDIS.SYS!NdisDeregisterProtocol] [F8502950] inspect.sys
IAT \SystemRoot\system32\DRIVERS\wanarp.sys[NDIS.SYS!NdisRegisterProtocol] [F8502910] inspect.sys
IAT \SystemRoot\system32\DRIVERS\wanarp.sys[NDIS.SYS!NdisOpenAdapter] [F8502730] inspect.sys
IAT \SystemRoot\system32\DRIVERS\wanarp.sys[NDIS.SYS!NdisCloseAdapter] [F85026D0] inspect.sys
IAT \SystemRoot\system32\DRIVERS\irda.sys[NDIS.SYS!NdisOpenAdapter] [F8502730] inspect.sys
IAT \SystemRoot\system32\DRIVERS\irda.sys[NDIS.SYS!NdisRegisterProtocol] [F8502910] inspect.sys
IAT \SystemRoot\system32\DRIVERS\irda.sys[NDIS.SYS!NdisCloseAdapter] [F85026D0] inspect.sys
IAT \SystemRoot\system32\DRIVERS\irda.sys[NDIS.SYS!NdisDeregisterProtocol] [F8502950] inspect.sys
IAT \SystemRoot\system32\DRIVERS\ndisuio.sys[NDIS.SYS!NdisRegisterProtocol] [F8502910] inspect.sys
IAT \SystemRoot\system32\DRIVERS\ndisuio.sys[NDIS.SYS!NdisDeregisterProtocol] [F8502950] inspect.sys
IAT \SystemRoot\system32\DRIVERS\ndisuio.sys[NDIS.SYS!NdisCloseAdapter] [F85026D0] inspect.sys
IAT \SystemRoot\system32\DRIVERS\ndisuio.sys[NDIS.SYS!NdisOpenAdapter] [F8502730] inspect.sys
Device \FileSystem\Ntfs \Ntfs IRP_MJ_CREATE 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_CLOSE 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_READ 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_WRITE 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_INFORMATION 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_INFORMATION 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_EA 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_EA 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_FLUSH_BUFFERS 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_VOLUME_INFORMATION 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_VOLUME_INFORMATION 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_DIRECTORY_CONTROL 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_FILE_SYSTEM_CONTROL 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_DEVICE_CONTROL 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_SHUTDOWN 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_LOCK_CONTROL 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_CLEANUP 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_SECURITY 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_SECURITY 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_QUOTA 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_SET_QUOTA 823591D8
Device \FileSystem\Ntfs \Ntfs IRP_MJ_PNP 823591D8
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CREATE [F1920FE2] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CREATE_NAMED_PIPE [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CLOSE [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_READ [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_WRITE [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_INFORMATION [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_INFORMATION [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_EA [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_EA [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_FLUSH_BUFFERS [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_VOLUME_INFORMATION [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_VOLUME_INFORMATION [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_DIRECTORY_CONTROL [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_FILE_SYSTEM_CONTROL [F1920BEC] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_DEVICE_CONTROL [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_INTERNAL_DEVICE_CONTROL [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SHUTDOWN [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_LOCK_CONTROL [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CLEANUP [F19213D4] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CREATE_MAILSLOT [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_SECURITY [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_SECURITY [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_POWER [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SYSTEM_CONTROL [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_DEVICE_CHANGE [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_QUOTA [F192167A] amon.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_QUOTA [F192167A] amon.sys
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_CREATE 81B2F580
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_CLOSE 81B2F580
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_READ 81B2F580
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_WRITE 81B2F580
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_QUERY_INFORMATION 81B2F580
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_SET_INFORMATION 81B2F580
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_QUERY_EA 81B2F580
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_SET_EA 81B2F580
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_FLUSH_BUFFERS 81B2F580
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_QUERY_VOLUME_INFORMATION 81B2F580
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_SET_VOLUME_INFORMATION 81B2F580
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_DIRECTORY_CONTROL 81B2F580
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_FILE_SYSTEM_CONTROL 81B2F580
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_DEVICE_CONTROL 81B2F580
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_SHUTDOWN 81B2F580
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_LOCK_CONTROL 81B2F580
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_CLEANUP 81B2F580
Device \FileSystem\Fastfat \FatCdrom IRP_MJ_PNP 81B2F580
Device \Driver\NetBT \Device\NetBT_Tcpip_{D9278036-8738-4994-91D1-FC253A46ED1F} IRP_MJ_CREATE 81B76990
Device \Driver\NetBT \Device\NetBT_Tcpip_{D9278036-8738-4994-91D1-FC253A46ED1F} IRP_MJ_CLOSE 81B76990
Device \Driver\NetBT \Device\NetBT_Tcpip_{D9278036-8738-4994-91D1-FC253A46ED1F} IRP_MJ_DEVICE_CONTROL 81B76990
Device \Driver\NetBT \Device\NetBT_Tcpip_{D9278036-8738-4994-91D1-FC253A46ED1F} IRP_MJ_INTERNAL_DEVICE_CONTROL 81B76990
Device \Driver\NetBT \Device\NetBT_Tcpip_{D9278036-8738-4994-91D1-FC253A46ED1F} IRP_MJ_CLEANUP 81B76990
Device \Driver\NetBT \Device\NetBT_Tcpip_{D9278036-8738-4994-91D1-FC253A46ED1F} IRP_MJ_PNP 81B76990
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CREATE [F5665A6A] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CREATE_NAMED_PIPE [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CLOSE [F5665A16] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_READ [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_WRITE [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_INFORMATION [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_INFORMATION [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_EA [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_EA [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_FLUSH_BUFFERS [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_VOLUME_INFORMATION [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_VOLUME_INFORMATION [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_DIRECTORY_CONTROL [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_FILE_SYSTEM_CONTROL [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_DEVICE_CONTROL [F566594A] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_INTERNAL_DEVICE_CONTROL [F566585E] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SHUTDOWN [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_LOCK_CONTROL [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CLEANUP [F56659B8] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CREATE_MAILSLOT [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_SECURITY [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_SECURITY [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_POWER [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SYSTEM_CONTROL [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_DEVICE_CHANGE [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_QUOTA [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_QUOTA [F5665B12] cmdmon.sys
Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_CREATE 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_CLOSE 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_DEVICE_CONTROL 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_INTERNAL_DEVICE_CONTROL 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_POWER 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_SYSTEM_CONTROL 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-0 IRP_MJ_PNP 8204B1D8
Device \Driver\NetBT \Device\NetBT_Tcpip_{02F1AA83-18BA-4496-A209-6C2231301334} IRP_MJ_CREATE 81B76990
Device \Driver\NetBT \Device\NetBT_Tcpip_{02F1AA83-18BA-4496-A209-6C2231301334} IRP_MJ_CLOSE 81B76990
Device \Driver\NetBT \Device\NetBT_Tcpip_{02F1AA83-18BA-4496-A209-6C2231301334} IRP_MJ_DEVICE_CONTROL 81B76990
Device \Driver\NetBT \Device\NetBT_Tcpip_{02F1AA83-18BA-4496-A209-6C2231301334} IRP_MJ_INTERNAL_DEVICE_CONTROL 81B76990
Device \Driver\NetBT \Device\NetBT_Tcpip_{02F1AA83-18BA-4496-A209-6C2231301334} IRP_MJ_CLEANUP 81B76990
Device \Driver\NetBT \Device\NetBT_Tcpip_{02F1AA83-18BA-4496-A209-6C2231301334} IRP_MJ_PNP 81B76990
Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_CREATE 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_CLOSE 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_DEVICE_CONTROL 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_INTERNAL_DEVICE_CONTROL 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_POWER 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_SYSTEM_CONTROL 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-1 IRP_MJ_PNP 8204B1D8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_CREATE 822EF1D8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_CLOSE 822EF1D8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_READ 822EF1D8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_WRITE 822EF1D8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_FLUSH_BUFFERS 822EF1D8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_DEVICE_CONTROL 822EF1D8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_INTERNAL_DEVICE_CONTROL 822EF1D8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_SHUTDOWN 822EF1D8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_POWER 822EF1D8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_SYSTEM_CONTROL 822EF1D8
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_PNP 822EF1D8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_CREATE 822EF1D8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_CLOSE 822EF1D8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_READ 822EF1D8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_WRITE 822EF1D8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_FLUSH_BUFFERS 822EF1D8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_DEVICE_CONTROL 822EF1D8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_INTERNAL_DEVICE_CONTROL 822EF1D8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_SHUTDOWN 822EF1D8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_POWER 822EF1D8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_SYSTEM_CONTROL 822EF1D8
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_PNP 822EF1D8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_CREATE 822EF1D8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_CLOSE 822EF1D8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_READ 822EF1D8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_WRITE 822EF1D8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_FLUSH_BUFFERS 822EF1D8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_DEVICE_CONTROL 822EF1D8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_INTERNAL_DEVICE_CONTROL 822EF1D8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_SHUTDOWN 822EF1D8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_POWER 822EF1D8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_SYSTEM_CONTROL 822EF1D8
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_PNP 822EF1D8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_CREATE 822EF1D8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_CLOSE 822EF1D8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_READ 822EF1D8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_WRITE 822EF1D8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_FLUSH_BUFFERS 822EF1D8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_DEVICE_CONTROL 822EF1D8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_INTERNAL_DEVICE_CONTROL 822EF1D8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_SHUTDOWN 822EF1D8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_POWER 822EF1D8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_SYSTEM_CONTROL 822EF1D8
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_PNP 822EF1D8
Device \Driver\usbuhci \Device\USBPDO-2 IRP_MJ_CREATE 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-2 IRP_MJ_CLOSE 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-2 IRP_MJ_DEVICE_CONTROL 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-2 IRP_MJ_INTERNAL_DEVICE_CONTROL 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-2 IRP_MJ_POWER 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-2 IRP_MJ_SYSTEM_CONTROL 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-2 IRP_MJ_PNP 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_CREATE 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_CLOSE 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_DEVICE_CONTROL 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_INTERNAL_DEVICE_CONTROL 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_POWER 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_SYSTEM_CONTROL 8204B1D8
Device \Driver\usbuhci \Device\USBPDO-3 IRP_MJ_PNP 8204B1D8
Device \Driver\usbehci \Device\USBPDO-4 IRP_MJ_CREATE 822AE1D8
Device \Driver\usbehci \Device\USBPDO-4 IRP_MJ_CLOSE 822AE1D8
Device \Driver\usbehci \Device\USBPDO-4 IRP_MJ_DEVICE_CONTROL 822AE1D8
Device \Driver\usbehci \Device\USBPDO-4 IRP_MJ_INTERNAL_DEVICE_CONTROL 822AE1D8
Device \Driver\usbehci \Device\USBPDO-4 IRP_MJ_POWER 822AE1D8
Device \Driver\usbehci \Device\USBPDO-4 IRP_MJ_SYSTEM_CONTROL 822AE1D8
Device \Driver\usbehci \Device\USBPDO-4 IRP_MJ_PNP 822AE1D8
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CREATE [F5665A6A] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CREATE_NAMED_PIPE [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CLOSE [F5665A16] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_READ [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_WRITE [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_INFORMATION [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_INFORMATION [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_EA [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_EA [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_FLUSH_BUFFERS [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_VOLUME_INFORMATION [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_VOLUME_INFORMATION [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_DIRECTORY_CONTROL [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_FILE_SYSTEM_CONTROL [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_DEVICE_CONTROL [F566594A] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_INTERNAL_DEVICE_CONTROL [F566585E] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SHUTDOWN [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_LOCK_CONTROL [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CLEANUP [F56659B8] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CREATE_MAILSLOT [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_SECURITY [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_SECURITY [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_POWER [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SYSTEM_CONTROL [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_DEVICE_CHANGE [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_QUOTA [F5665B12] cmdmon.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_QUOTA [F5665B12] cmdmon.sys
Device \Driver\prodrv06 \Device\ProDrv06 IRP_MJ_CREATE