GMER die erste. Code:
GMER 1.0.15.15281 - hxxp://www.gmer.net
Rootkit scan 2010-05-16 22:43:27
Windows 6.0.6002 Service Pack 2
Running: jc4rxwge.exe; Driver: C:\Users\GJM\AppData\Local\Temp\pgldqpow.sys
---- System - GMER 1.0.15 ----
SSDT \SystemRoot\system32\ntkrnlpa.exe (NT Kernel & System/Microsoft Corporation) ZwCreateKey [0x8221EFE2]
SSDT \SystemRoot\system32\ntkrnlpa.exe[unknown section] [8221EFE2] ZwCreateKey [0x8221EFE2]
SSDT \SystemRoot\system32\ntkrnlpa.exe (NT Kernel & System/Microsoft Corporation) ZwOpenKey [0x8221EFE7]
SSDT \SystemRoot\system32\ntkrnlpa.exe[unknown section] [8221EFE7] ZwOpenKey [0x8221EFE7]
INT 0x03 \SystemRoot\system32\ntkrnlpa.exe[unknown section] 8221EFEC
INT 0x51 ? 850F4BF8
INT 0x52 ? 86DC7CA0
INT 0x62 ? 850F3BF8
INT 0x72 ? 850F3BF8
INT 0x82 ? 850F4BF8
INT 0x83 ? 86DC7CA0
---- Kernel code sections - GMER 1.0.15 ----
.text ntkrnlpa.exe!KeSetEvent + 1E9 822CA92C 3 Bytes [E2, EF, 21]
.text ntkrnlpa.exe!KeSetEvent + 3DD 822CAB20 3 Bytes [E7, EF, 21]
? System32\Drivers\spfz.sys Das System kann den angegebenen Pfad nicht finden. !
.text USBPORT.SYS!DllUnload 8859041B 5 Bytes JMP 86DC7280
.text akywmzmu.SYS 8D0BA000 22 Bytes [82, E3, 5D, 82, 6C, E2, 5D, ...]
.text akywmzmu.SYS 8D0BA017 159 Bytes [00, 32, 67, 71, 80, 3D, 65, ...]
.text akywmzmu.SYS 8D0BA0B7 22 Bytes [00, 00, 00, 00, 00, 00, 00, ...]
.text akywmzmu.SYS 8D0BA0CE 80 Bytes [00, 00, 26, 00, 00, 00, E0, ...]
.text akywmzmu.SYS 8D0BA11F 194 Bytes [7E, 38, 40, 39, 82, 3B, C4, ...]
.text ...
.text C:\Windows\system32\drivers\aksfridge.sys section is writeable [0x9B00E000, 0x48011, 0xE0000020]
.init C:\Windows\system32\drivers\aksfridge.sys entry point in ".init" section [0x9B063224]
.init C:\Windows\system32\drivers\aksfridge.sys unknown last code section [0x9B063000, 0x4000, 0xE20000E0]
.text C:\Windows\system32\drivers\hardlock.sys section is writeable [0x9B067400, 0x6E1B2, 0xE8000020]
.protectÿÿÿÿhardlockentry point in ".protectÿÿÿÿhardlockentry point in ".protectÿÿÿÿhardlockentry point in ".p" section [0x9B0F1220] C:\Windows\system32\drivers\hardlock.sys entry point in ".protectÿÿÿÿhardlockentry point in ".protectÿÿÿÿhardlockentry point in ".p" section [0x9B0F1220]
.protectÿÿÿÿhardlockunknown last code section [0x9B0F1000, 0x50EA, 0xE0000020] C:\Windows\system32\drivers\hardlock.sys unknown last code section [0x9B0F1000, 0x50EA, 0xE0000020]
---- User code sections - GMER 1.0.15 ----
.text C:\Users\GJM\Desktop\jc4rxwge.exe[224] USER32.dll!SetWindowPlacement 75937963 5 Bytes JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Users\GJM\Desktop\jc4rxwge.exe[224] USER32.dll!MoveWindow 7593989F 5 Bytes JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Users\GJM\Desktop\jc4rxwge.exe[224] USER32.dll!SetWindowPos 759435E3 5 Bytes JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Users\GJM\Desktop\jc4rxwge.exe[224] USER32.dll!DeferWindowPos 7594467F 5 Bytes JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Users\GJM\Desktop\jc4rxwge.exe[224] USER32.dll!EndPaint 7594A28F 5 Bytes JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Users\GJM\Desktop\jc4rxwge.exe[224] USER32.dll!BeginPaint 7594A2A3 5 Bytes JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Users\GJM\Desktop\jc4rxwge.exe[224] USER32.dll!GetWindowRect 75950E21 5 Bytes JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Users\GJM\Desktop\jc4rxwge.exe[224] USER32.dll!GetWindowPlacement 759638E3 5 Bytes JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\wuauclt.exe[636] USER32.dll!SetWindowPlacement 75937963 5 Bytes JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\wuauclt.exe[636] USER32.dll!MoveWindow 7593989F 5 Bytes JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\wuauclt.exe[636] USER32.dll!SetWindowPos 759435E3 5 Bytes JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\wuauclt.exe[636] USER32.dll!DeferWindowPos 7594467F 5 Bytes JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\wuauclt.exe[636] USER32.dll!EndPaint 7594A28F 5 Bytes JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\wuauclt.exe[636] USER32.dll!BeginPaint 7594A2A3 5 Bytes JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\wuauclt.exe[636] USER32.dll!GetWindowRect 75950E21 5 Bytes JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\wuauclt.exe[636] USER32.dll!GetWindowPlacement 759638E3 5 Bytes JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\ehome\ehmsas.exe[808] USER32.dll!SetWindowPlacement 75937963 5 Bytes JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\ehome\ehmsas.exe[808] USER32.dll!MoveWindow 7593989F 5 Bytes JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\ehome\ehmsas.exe[808] USER32.dll!SetWindowPos 759435E3 5 Bytes JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\ehome\ehmsas.exe[808] USER32.dll!DeferWindowPos 7594467F 5 Bytes JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\ehome\ehmsas.exe[808] USER32.dll!EndPaint 7594A28F 5 Bytes JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\ehome\ehmsas.exe[808] USER32.dll!BeginPaint 7594A2A3 5 Bytes JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\ehome\ehmsas.exe[808] USER32.dll!GetWindowRect 75950E21 5 Bytes JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\ehome\ehmsas.exe[808] USER32.dll!GetWindowPlacement 759638E3 5 Bytes JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Windows Defender\MSASCui.exe[3008] USER32.dll!SetWindowPlacement 75937963 5 Bytes JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Windows Defender\MSASCui.exe[3008] USER32.dll!MoveWindow 7593989F 5 Bytes JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Windows Defender\MSASCui.exe[3008] USER32.dll!SetWindowPos 759435E3 5 Bytes JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Windows Defender\MSASCui.exe[3008] USER32.dll!DeferWindowPos 7594467F 5 Bytes JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Windows Defender\MSASCui.exe[3008] USER32.dll!EndPaint 7594A28F 5 Bytes JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Windows Defender\MSASCui.exe[3008] USER32.dll!BeginPaint 7594A2A3 5 Bytes JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Windows Defender\MSASCui.exe[3008] USER32.dll!GetWindowRect 75950E21 5 Bytes JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Windows Defender\MSASCui.exe[3008] USER32.dll!GetWindowPlacement 759638E3 5 Bytes JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Common Files\SolidWorks Installations-Manager\Scheduler\sldIMScheduler.exe[3208] USER32.dll!SetWindowPlacement 75937963 5 Bytes JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Common Files\SolidWorks Installations-Manager\Scheduler\sldIMScheduler.exe[3208] USER32.dll!MoveWindow 7593989F 5 Bytes JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Common Files\SolidWorks Installations-Manager\Scheduler\sldIMScheduler.exe[3208] USER32.dll!SetWindowPos 759435E3 5 Bytes JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Common Files\SolidWorks Installations-Manager\Scheduler\sldIMScheduler.exe[3208] USER32.dll!DeferWindowPos 7594467F 5 Bytes JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Common Files\SolidWorks Installations-Manager\Scheduler\sldIMScheduler.exe[3208] USER32.dll!EndPaint 7594A28F 5 Bytes JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Common Files\SolidWorks Installations-Manager\Scheduler\sldIMScheduler.exe[3208] USER32.dll!BeginPaint 7594A2A3 5 Bytes JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Common Files\SolidWorks Installations-Manager\Scheduler\sldIMScheduler.exe[3208] USER32.dll!GetWindowRect 75950E21 5 Bytes JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Common Files\SolidWorks Installations-Manager\Scheduler\sldIMScheduler.exe[3208] USER32.dll!GetWindowPlacement 759638E3 5 Bytes JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\HP\HP Software Update\hpwuSchd2.exe[3216] USER32.dll!SetWindowPlacement 75937963 5 Bytes JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\HP\HP Software Update\hpwuSchd2.exe[3216] USER32.dll!MoveWindow 7593989F 5 Bytes JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\HP\HP Software Update\hpwuSchd2.exe[3216] USER32.dll!SetWindowPos 759435E3 5 Bytes JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\HP\HP Software Update\hpwuSchd2.exe[3216] USER32.dll!DeferWindowPos 7594467F 5 Bytes JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\HP\HP Software Update\hpwuSchd2.exe[3216] USER32.dll!EndPaint 7594A28F 5 Bytes JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\HP\HP Software Update\hpwuSchd2.exe[3216] USER32.dll!BeginPaint 7594A2A3 5 Bytes JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\HP\HP Software Update\hpwuSchd2.exe[3216] USER32.dll!GetWindowRect 75950E21 5 Bytes JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\HP\HP Software Update\hpwuSchd2.exe[3216] USER32.dll!GetWindowPlacement 759638E3 5 Bytes JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\RtHDVCpl.exe[3220] USER32.dll!SetWindowPlacement 75937963 5 Bytes JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\RtHDVCpl.exe[3220] USER32.dll!MoveWindow 7593989F 5 Bytes JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\RtHDVCpl.exe[3220] USER32.dll!SetWindowPos 759435E3 5 Bytes JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\RtHDVCpl.exe[3220] USER32.dll!DeferWindowPos 7594467F 5 Bytes JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\RtHDVCpl.exe[3220] USER32.dll!EndPaint 7594A28F 5 Bytes JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\RtHDVCpl.exe[3220] USER32.dll!BeginPaint 7594A2A3 5 Bytes JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\RtHDVCpl.exe[3220] USER32.dll!GetWindowRect 75950E21 5 Bytes JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\RtHDVCpl.exe[3220] USER32.dll!GetWindowPlacement 759638E3 5 Bytes JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\schtasks.exe[3236] USER32.dll!SetWindowPlacement 75937963 5 Bytes JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\schtasks.exe[3236] USER32.dll!MoveWindow 7593989F 5 Bytes JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\schtasks.exe[3236] USER32.dll!SetWindowPos 759435E3 5 Bytes JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\schtasks.exe[3236] USER32.dll!DeferWindowPos 7594467F 5 Bytes JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\schtasks.exe[3236] USER32.dll!EndPaint 7594A28F 5 Bytes JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\schtasks.exe[3236] USER32.dll!BeginPaint 7594A2A3 5 Bytes JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\schtasks.exe[3236] USER32.dll!GetWindowRect 75950E21 5 Bytes JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\schtasks.exe[3236] USER32.dll!GetWindowPlacement 759638E3 5 Bytes JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe[3336] USER32.dll!SetWindowPlacement 75937963 5 Bytes JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe[3336] USER32.dll!MoveWindow 7593989F 5 Bytes JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe[3336] USER32.dll!SetWindowPos 759435E3 5 Bytes JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe[3336] USER32.dll!DeferWindowPos 7594467F 5 Bytes JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe[3336] USER32.dll!EndPaint 7594A28F 5 Bytes JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe[3336] USER32.dll!BeginPaint 7594A2A3 5 Bytes JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe[3336] USER32.dll!GetWindowRect 75950E21 5 Bytes JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe[3336] USER32.dll!GetWindowPlacement 759638E3 5 Bytes JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Common Files\Java\Java Update\jusched.exe[3380] USER32.dll!SetWindowPlacement 75937963 5 Bytes JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Common Files\Java\Java Update\jusched.exe[3380] USER32.dll!MoveWindow 7593989F 5 Bytes JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Common Files\Java\Java Update\jusched.exe[3380] USER32.dll!SetWindowPos 759435E3 5 Bytes JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Common Files\Java\Java Update\jusched.exe[3380] USER32.dll!DeferWindowPos 7594467F 5 Bytes JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Common Files\Java\Java Update\jusched.exe[3380] USER32.dll!EndPaint 7594A28F 5 Bytes JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Common Files\Java\Java Update\jusched.exe[3380] USER32.dll!BeginPaint 7594A2A3 5 Bytes JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Common Files\Java\Java Update\jusched.exe[3380] USER32.dll!GetWindowRect 75950E21 5 Bytes JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Common Files\Java\Java Update\jusched.exe[3380] USER32.dll!GetWindowPlacement 759638E3 5 Bytes JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\System32\wpcumi.exe[3392] USER32.dll!SetWindowPlacement 75937963 5 Bytes JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\System32\wpcumi.exe[3392] USER32.dll!MoveWindow 7593989F 5 Bytes JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\System32\wpcumi.exe[3392] USER32.dll!SetWindowPos 759435E3 5 Bytes JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\System32\wpcumi.exe[3392] USER32.dll!DeferWindowPos 7594467F 5 Bytes JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\System32\wpcumi.exe[3392] USER32.dll!EndPaint 7594A28F 5 Bytes JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\System32\wpcumi.exe[3392] USER32.dll!BeginPaint 7594A2A3 5 Bytes JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\System32\wpcumi.exe[3392] USER32.dll!GetWindowRect 75950E21 5 Bytes JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\System32\wpcumi.exe[3392] USER32.dll!GetWindowPlacement 759638E3 5 Bytes JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Windows Media Player\wmpnscfg.exe[3480] USER32.dll!SetWindowPlacement 75937963 5 Bytes JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Windows Media Player\wmpnscfg.exe[3480] USER32.dll!MoveWindow 7593989F 5 Bytes JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Windows Media Player\wmpnscfg.exe[3480] USER32.dll!SetWindowPos 759435E3 5 Bytes JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Windows Media Player\wmpnscfg.exe[3480] USER32.dll!DeferWindowPos 7594467F 5 Bytes JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Windows Media Player\wmpnscfg.exe[3480] USER32.dll!EndPaint 7594A28F 5 Bytes JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Windows Media Player\wmpnscfg.exe[3480] USER32.dll!BeginPaint 7594A2A3 5 Bytes JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Windows Media Player\wmpnscfg.exe[3480] USER32.dll!GetWindowRect 75950E21 5 Bytes JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Program Files\Windows Media Player\wmpnscfg.exe[3480] USER32.dll!GetWindowPlacement 759638E3 5 Bytes JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\ehome\ehtray.exe[3516] USER32.dll!SetWindowPlacement 75937963 5 Bytes JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\ehome\ehtray.exe[3516] USER32.dll!MoveWindow 7593989F 5 Bytes JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\ehome\ehtray.exe[3516] USER32.dll!SetWindowPos 759435E3 5 Bytes JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\ehome\ehtray.exe[3516] USER32.dll!DeferWindowPos 7594467F 5 Bytes JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\ehome\ehtray.exe[3516] USER32.dll!EndPaint 7594A28F 5 Bytes JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\ehome\ehtray.exe[3516] USER32.dll!BeginPaint 7594A2A3 5 Bytes JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\ehome\ehtray.exe[3516] USER32.dll!GetWindowRect 75950E21 5 Bytes JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\ehome\ehtray.exe[3516] USER32.dll!GetWindowPlacement 759638E3 5 Bytes JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] USER32.dll!SetWindowPlacement 75937963 5 Bytes JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] USER32.dll!MoveWindow 7593989F 5 Bytes JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] USER32.dll!SetWindowPos 759435E3 5 Bytes JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] USER32.dll!DeferWindowPos 7594467F 5 Bytes JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] USER32.dll!EndPaint 7594A28F 5 Bytes JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] USER32.dll!BeginPaint 7594A2A3 5 Bytes JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] USER32.dll!GetWindowRect 75950E21 5 Bytes JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE[3668] USER32.dll!GetWindowPlacement 759638E3 5 Bytes JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\taskeng.exe[3720] USER32.dll!SetWindowPlacement 75937963 5 Bytes JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\taskeng.exe[3720] USER32.dll!MoveWindow 7593989F 5 Bytes JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\taskeng.exe[3720] USER32.dll!SetWindowPos 759435E3 5 Bytes JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\taskeng.exe[3720] USER32.dll!DeferWindowPos 7594467F 5 Bytes JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\taskeng.exe[3720] USER32.dll!EndPaint 7594A28F 5 Bytes JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\taskeng.exe[3720] USER32.dll!BeginPaint 7594A2A3 5 Bytes JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\taskeng.exe[3720] USER32.dll!GetWindowRect 75950E21 5 Bytes JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\taskeng.exe[3720] USER32.dll!GetWindowPlacement 759638E3 5 Bytes JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\conime.exe[3768] USER32.dll!SetWindowPlacement 75937963 5 Bytes JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\conime.exe[3768] USER32.dll!MoveWindow 7593989F 5 Bytes JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\conime.exe[3768] USER32.dll!SetWindowPos 759435E3 5 Bytes JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\conime.exe[3768] USER32.dll!DeferWindowPos 7594467F 5 Bytes JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\conime.exe[3768] USER32.dll!EndPaint 7594A28F 5 Bytes JMP 66002ADD C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\conime.exe[3768] USER32.dll!BeginPaint 7594A2A3 5 Bytes JMP 66002AE2 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\conime.exe[3768] USER32.dll!GetWindowRect 75950E21 5 Bytes JMP 6602ADEB C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\system32\conime.exe[3768] USER32.dll!GetWindowPlacement 759638E3 5 Bytes JMP 6602A980 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\Explorer.EXE[3908] USER32.dll!SetWindowPlacement 75937963 5 Bytes JMP 6602A82F C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\Explorer.EXE[3908] USER32.dll!MoveWindow 7593989F 5 Bytes JMP 6602AB2A C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\Explorer.EXE[3908] USER32.dll!SetWindowPos 759435E3 5 Bytes JMP 6602AC79 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation)
.text C:\Windows\Explorer.EXE[3908] USER32.dll!DeferWindowPos 7594467F 5 Bytes JMP 6602A1D7 C:\Program Files\Stardock\MyColors\WBLIND.dll (WindowBlinds (Vista 32 bit)/Stardock Corporation) |