Here are some of my recent scans. I couldn't get a DDS scan because it froze up, but I'm running 32bit Vista on an HP Pavilion if that helps. So here's just the malwarebytes and GMER for now. I'll try to get a DDS log if i can run it again without it freezing.
Malwarebytes' Anti-Malware
www.malwarebytes.org
Database version:
Windows 6.0.6002 Service Pack 2 (Safe Mode)
Internet Explorer 8.0.6001.19019
12/10/2011 5:34:17 PM
mbam-log-2011-12-10 (17-34-17).txt
Scan type: Quick scan
Objects scanned: 174413
Time elapsed: 7 minute(s), 24 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
GMER 1.0.15.15641 - http://www.gmer.net
Rootkit scan 2011-12-10 22:43:18
Windows 6.0.6002 Service Pack 2 Harddisk1\DR1 -> \Device\00000062 WDC_WD50 rev.05.0
Running: 8bwsu7xc.exe; Driver: C:\Users\Deathx\AppData\Local\Temp\fxdirpow.sys
---- User code sections - GMER 1.0.15 ----
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtCreateFile + 6 77AE422A 4 Bytes [28, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtCreateFile + B 77AE422F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtMapViewOfSection + 6 77AE497A 1 Byte [28]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtMapViewOfSection + 6 77AE497A 4 Bytes [28, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtMapViewOfSection + B 77AE497F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtOpenFile + 6 77AE4A0A 4 Bytes [68, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtOpenFile + B 77AE4A0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtOpenProcess + 6 77AE4A8A 4 Bytes [A8, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtOpenProcess + B 77AE4A8F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtOpenProcessToken + B 77AE4A9F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtOpenProcessTokenEx + 6 77AE4AAA 4 Bytes [A8, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtOpenProcessTokenEx + B 77AE4AAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtOpenThread + 6 77AE4AFA 4 Bytes [68, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtOpenThread + B 77AE4AFF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtOpenThreadToken + 6 77AE4B0A 4 Bytes [68, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtOpenThreadToken + B 77AE4B0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtOpenThreadTokenEx + B 77AE4B1F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtQueryAttributesFile + 6 77AE4BAA 4 Bytes [A8, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtQueryAttributesFile + B 77AE4BAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtQueryFullAttributesFile + B 77AE4C5F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtSetInformationFile + 6 77AE513A 4 Bytes [28, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtSetInformationFile + B 77AE513F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtSetInformationThread + 6 77AE518A 4 Bytes [28, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtSetInformationThread + B 77AE518F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 1 Byte [68]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 4 Bytes [68, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[808] ntdll.dll!NtUnmapViewOfSection + B 77AE542F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtCreateFile + 6 77AE422A 4 Bytes [28, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtCreateFile + B 77AE422F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtMapViewOfSection + 6 77AE497A 1 Byte [28]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtMapViewOfSection + 6 77AE497A 4 Bytes [28, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtMapViewOfSection + B 77AE497F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtOpenFile + 6 77AE4A0A 4 Bytes [68, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtOpenFile + B 77AE4A0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtOpenProcess + 6 77AE4A8A 4 Bytes [A8, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtOpenProcess + B 77AE4A8F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtOpenProcessToken + B 77AE4A9F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtOpenProcessTokenEx + 6 77AE4AAA 4 Bytes [A8, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtOpenProcessTokenEx + B 77AE4AAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtOpenThread + 6 77AE4AFA 4 Bytes [68, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtOpenThread + B 77AE4AFF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtOpenThreadToken + 6 77AE4B0A 4 Bytes [68, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtOpenThreadToken + B 77AE4B0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtOpenThreadTokenEx + B 77AE4B1F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtQueryAttributesFile + 6 77AE4BAA 4 Bytes [A8, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtQueryAttributesFile + B 77AE4BAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtQueryFullAttributesFile + B 77AE4C5F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtSetInformationFile + 6 77AE513A 4 Bytes [28, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtSetInformationFile + B 77AE513F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtSetInformationThread + 6 77AE518A 4 Bytes [28, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtSetInformationThread + B 77AE518F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 1 Byte [68]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 4 Bytes [68, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[888] ntdll.dll!NtUnmapViewOfSection + B 77AE542F 1 Byte [E2]
.text C:\Windows\system32\svchost.exe[952] ntdll.dll!NtProtectVirtualMemory 77AE4B84 5 Bytes JMP 0090000A
.text C:\Windows\system32\svchost.exe[952] ntdll.dll!NtWriteVirtualMemory 77AE54C4 5 Bytes JMP 00A5000A
.text C:\Windows\system32\svchost.exe[952] ntdll.dll!KiUserExceptionDispatcher 77AE5BF8 5 Bytes JMP 008F000A
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtCreateFile + 6 77AE422A 4 Bytes [28, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtCreateFile + B 77AE422F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtMapViewOfSection + 6 77AE497A 1 Byte [28]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtMapViewOfSection + 6 77AE497A 4 Bytes [28, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtMapViewOfSection + B 77AE497F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtOpenFile + 6 77AE4A0A 4 Bytes [68, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtOpenFile + B 77AE4A0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtOpenProcess + 6 77AE4A8A 4 Bytes [A8, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtOpenProcess + B 77AE4A8F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtOpenProcessToken + B 77AE4A9F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtOpenProcessTokenEx + 6 77AE4AAA 4 Bytes [A8, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtOpenProcessTokenEx + B 77AE4AAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtOpenThread + 6 77AE4AFA 4 Bytes [68, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtOpenThread + B 77AE4AFF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtOpenThreadToken + 6 77AE4B0A 4 Bytes [68, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtOpenThreadToken + B 77AE4B0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtOpenThreadTokenEx + B 77AE4B1F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtQueryAttributesFile + 6 77AE4BAA 4 Bytes [A8, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtQueryAttributesFile + B 77AE4BAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtQueryFullAttributesFile + B 77AE4C5F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtSetInformationFile + 6 77AE513A 4 Bytes [28, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtSetInformationFile + B 77AE513F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtSetInformationThread + 6 77AE518A 4 Bytes [28, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtSetInformationThread + B 77AE518F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 1 Byte [68]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 4 Bytes [68, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1168] ntdll.dll!NtUnmapViewOfSection + B 77AE542F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtCreateFile + 6 77AE422A 4 Bytes [28, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtCreateFile + B 77AE422F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtMapViewOfSection + 6 77AE497A 1 Byte [28]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtMapViewOfSection + 6 77AE497A 4 Bytes [28, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtMapViewOfSection + B 77AE497F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtOpenFile + 6 77AE4A0A 4 Bytes [68, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtOpenFile + B 77AE4A0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtOpenProcess + 6 77AE4A8A 4 Bytes [A8, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtOpenProcess + B 77AE4A8F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtOpenProcessToken + B 77AE4A9F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtOpenProcessTokenEx + 6 77AE4AAA 4 Bytes [A8, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtOpenProcessTokenEx + B 77AE4AAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtOpenThread + 6 77AE4AFA 4 Bytes [68, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtOpenThread + B 77AE4AFF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtOpenThreadToken + 6 77AE4B0A 4 Bytes [68, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtOpenThreadToken + B 77AE4B0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtOpenThreadTokenEx + B 77AE4B1F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtQueryAttributesFile + 6 77AE4BAA 4 Bytes [A8, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtQueryAttributesFile + B 77AE4BAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtQueryFullAttributesFile + B 77AE4C5F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtSetInformationFile + 6 77AE513A 4 Bytes [28, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtSetInformationFile + B 77AE513F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtSetInformationThread + 6 77AE518A 4 Bytes [28, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtSetInformationThread + B 77AE518F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 1 Byte [68]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 4 Bytes [68, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1224] ntdll.dll!NtUnmapViewOfSection + B 77AE542F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtCreateFile + 6 77AE422A 4 Bytes [28, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtCreateFile + B 77AE422F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtMapViewOfSection + 6 77AE497A 1 Byte [28]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtMapViewOfSection + 6 77AE497A 4 Bytes [28, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtMapViewOfSection + B 77AE497F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtOpenFile + 6 77AE4A0A 4 Bytes [68, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtOpenFile + B 77AE4A0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtOpenProcess + 6 77AE4A8A 4 Bytes [A8, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtOpenProcess + B 77AE4A8F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtOpenProcessToken + B 77AE4A9F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtOpenProcessTokenEx + 6 77AE4AAA 4 Bytes [A8, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtOpenProcessTokenEx + B 77AE4AAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtOpenThread + 6 77AE4AFA 4 Bytes [68, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtOpenThread + B 77AE4AFF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtOpenThreadToken + 6 77AE4B0A 4 Bytes [68, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtOpenThreadToken + B 77AE4B0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtOpenThreadTokenEx + B 77AE4B1F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtQueryAttributesFile + 6 77AE4BAA 4 Bytes [A8, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtQueryAttributesFile + B 77AE4BAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtQueryFullAttributesFile + B 77AE4C5F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtSetInformationFile + 6 77AE513A 4 Bytes [28, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtSetInformationFile + B 77AE513F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtSetInformationThread + 6 77AE518A 4 Bytes [28, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtSetInformationThread + B 77AE518F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 1 Byte [68]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 4 Bytes [68, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[1564] ntdll.dll!NtUnmapViewOfSection + B 77AE542F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtCreateFile + 6 77AE422A 4 Bytes [28, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtCreateFile + B 77AE422F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtMapViewOfSection + 6 77AE497A 1 Byte [28]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtMapViewOfSection + 6 77AE497A 4 Bytes [28, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtMapViewOfSection + B 77AE497F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtOpenFile + 6 77AE4A0A 4 Bytes [68, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtOpenFile + B 77AE4A0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtOpenProcess + 6 77AE4A8A 4 Bytes [A8, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtOpenProcess + B 77AE4A8F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtOpenProcessToken + B 77AE4A9F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtOpenProcessTokenEx + 6 77AE4AAA 4 Bytes [A8, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtOpenProcessTokenEx + B 77AE4AAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtOpenThread + 6 77AE4AFA 4 Bytes [68, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtOpenThread + B 77AE4AFF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtOpenThreadToken + 6 77AE4B0A 4 Bytes [68, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtOpenThreadToken + B 77AE4B0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtOpenThreadTokenEx + B 77AE4B1F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtQueryAttributesFile + 6 77AE4BAA 4 Bytes [A8, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtQueryAttributesFile + B 77AE4BAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtQueryFullAttributesFile + B 77AE4C5F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtSetInformationFile + 6 77AE513A 4 Bytes [28, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtSetInformationFile + B 77AE513F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtSetInformationThread + 6 77AE518A 4 Bytes [28, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtSetInformationThread + B 77AE518F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 1 Byte [68]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 4 Bytes [68, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2364] ntdll.dll!NtUnmapViewOfSection + B 77AE542F 1 Byte [E2]
.text C:\Program Files\PC Tools Security\pctsGui.exe[2380] kernel32.dll!CreateThread + 1A 779EC928 4 Bytes CALL 0044BB9D C:\Program Files\PC Tools Security\pctsGui.exe (PC Tools GUI Application/PC Tools)
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtCreateFile + 6 77AE422A 4 Bytes [28, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtCreateFile + B 77AE422F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtMapViewOfSection + 6 77AE497A 1 Byte [28]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtMapViewOfSection + 6 77AE497A 4 Bytes [28, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtMapViewOfSection + B 77AE497F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtOpenFile + 6 77AE4A0A 4 Bytes [68, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtOpenFile + B 77AE4A0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtOpenProcess + 6 77AE4A8A 4 Bytes [A8, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtOpenProcess + B 77AE4A8F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtOpenProcessToken + B 77AE4A9F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtOpenProcessTokenEx + 6 77AE4AAA 4 Bytes [A8, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtOpenProcessTokenEx + B 77AE4AAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtOpenThread + 6 77AE4AFA 4 Bytes [68, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtOpenThread + B 77AE4AFF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtOpenThreadToken + 6 77AE4B0A 4 Bytes [68, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtOpenThreadToken + B 77AE4B0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtOpenThreadTokenEx + B 77AE4B1F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtQueryAttributesFile + 6 77AE4BAA 4 Bytes [A8, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtQueryAttributesFile + B 77AE4BAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtQueryFullAttributesFile + B 77AE4C5F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtSetInformationFile + 6 77AE513A 4 Bytes [28, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtSetInformationFile + B 77AE513F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtSetInformationThread + 6 77AE518A 4 Bytes [28, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtSetInformationThread + B 77AE518F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 1 Byte [68]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 4 Bytes [68, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[2840] ntdll.dll!NtUnmapViewOfSection + B 77AE542F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtCreateFile + 6 77AE422A 4 Bytes [28, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtCreateFile + B 77AE422F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtMapViewOfSection + 6 77AE497A 1 Byte [28]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtMapViewOfSection + 6 77AE497A 4 Bytes [28, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtMapViewOfSection + B 77AE497F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtOpenFile + 6 77AE4A0A 4 Bytes [68, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtOpenFile + B 77AE4A0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtOpenProcess + 6 77AE4A8A 4 Bytes [A8, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtOpenProcess + B 77AE4A8F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtOpenProcessToken + B 77AE4A9F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtOpenProcessTokenEx + 6 77AE4AAA 4 Bytes [A8, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtOpenProcessTokenEx + B 77AE4AAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtOpenThread + 6 77AE4AFA 4 Bytes [68, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtOpenThread + B 77AE4AFF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtOpenThreadToken + 6 77AE4B0A 4 Bytes [68, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtOpenThreadToken + B 77AE4B0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtOpenThreadTokenEx + B 77AE4B1F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtQueryAttributesFile + 6 77AE4BAA 4 Bytes [A8, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtQueryAttributesFile + B 77AE4BAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtQueryFullAttributesFile + B 77AE4C5F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtSetInformationFile + 6 77AE513A 4 Bytes [28, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtSetInformationFile + B 77AE513F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtSetInformationThread + 6 77AE518A 4 Bytes [28, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtSetInformationThread + B 77AE518F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 1 Byte [68]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 4 Bytes [68, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3208] ntdll.dll!NtUnmapViewOfSection + B 77AE542F 1 Byte [E2]
.text C:\Windows\System32\ping.exe[3464] ntdll.dll!NtCreateProcess 77AE42E4 5 Bytes JMP 006E000A
.text C:\Windows\System32\ping.exe[3464] ntdll.dll!NtCreateProcessEx 77AE42F4 5 Bytes JMP 006F000A
.text C:\Windows\System32\ping.exe[3464] ntdll.dll!NtProtectVirtualMemory 77AE4B84 5 Bytes JMP 001D000A
.text C:\Windows\System32\ping.exe[3464] ntdll.dll!NtWriteVirtualMemory 77AE54C4 5 Bytes JMP 0022000A
.text C:\Windows\System32\ping.exe[3464] ntdll.dll!NtCreateUserProcess 77AE5654 5 Bytes JMP 0070000A
.text C:\Windows\System32\ping.exe[3464] ntdll.dll!KiUserExceptionDispatcher 77AE5BF8 5 Bytes JMP 0018000A
.text C:\Windows\System32\ping.exe[3464] USER32.dll!WindowFromPoint 77C3884F 5 Bytes JMP 007D000A
.text C:\Windows\System32\ping.exe[3464] USER32.dll!GetForegroundWindow 77C432C4 5 Bytes JMP 007E000A
.text C:\Windows\System32\ping.exe[3464] USER32.dll!GetCursorPos 77C50B88 5 Bytes JMP 007C000A
.text C:\Windows\System32\ping.exe[3464] ole32.dll!CoCreateInstance 77799F3E 5 Bytes JMP 0077000A
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtCreateFile + 6 77AE422A 4 Bytes [28, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtCreateFile + B 77AE422F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtMapViewOfSection + 6 77AE497A 1 Byte [28]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtMapViewOfSection + 6 77AE497A 4 Bytes [28, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtMapViewOfSection + B 77AE497F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtOpenFile + 6 77AE4A0A 4 Bytes [68, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtOpenFile + B 77AE4A0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtOpenProcess + 6 77AE4A8A 4 Bytes [A8, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtOpenProcess + B 77AE4A8F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtOpenProcessToken + B 77AE4A9F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtOpenProcessTokenEx + 6 77AE4AAA 4 Bytes [A8, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtOpenProcessTokenEx + B 77AE4AAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtOpenThread + 6 77AE4AFA 4 Bytes [68, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtOpenThread + B 77AE4AFF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtOpenThreadToken + 6 77AE4B0A 4 Bytes [68, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtOpenThreadToken + B 77AE4B0F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtOpenThreadTokenEx + B 77AE4B1F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtQueryAttributesFile + 6 77AE4BAA 4 Bytes [A8, 00, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtQueryAttributesFile + B 77AE4BAF 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtQueryFullAttributesFile + B 77AE4C5F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtSetInformationFile + 6 77AE513A 4 Bytes [28, 01, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtSetInformationFile + B 77AE513F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtSetInformationThread + 6 77AE518A 4 Bytes [28, 02, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtSetInformationThread + B 77AE518F 1 Byte [E2]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 1 Byte [68]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtUnmapViewOfSection + 6 77AE542A 4 Bytes [68, 03, 06, 00]
.text C:\Users\Deathx\AppData\Local\Google\Chrome\Application\chrome.exe[3548] ntdll.dll!NtUnmapViewOfSection + B 77AE542F 1 Byte [E2]
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files\Alcohol Soft\Alcohol 120\
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0xC8 0xB8 0x0F 0xEC ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0x9F 0x82 0x11 0x72 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x26 0x7F 0xA6 0xFA ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41@ujdew 0x91 0x63 0x5E 0xB0 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg42
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg42@ujdew 0x93 0x30 0xAC 0x42 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg43
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg43@ujdew 0x93 0x30 0xAC 0x42 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files\DAEMON Tools Lite\
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 1
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0x48 0xA2 0x45 0xE0 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x2C 0x77 0x87 0xFE ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0xC5 0xAA 0x2A 0x8C ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files\Alcohol Soft\Alcohol 120\
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0xC8 0xB8 0x0F 0xEC ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0x9F 0x82 0x11 0x72 ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x26 0x7F 0xA6 0xFA ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41@ujdew 0x91 0x63 0x5E 0xB0 ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg42 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg42@ujdew 0x93 0x30 0xAC 0x42 ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg43 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg43@ujdew 0x93 0x30 0xAC 0x42 ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files\DAEMON Tools Lite\
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 1
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0x48 0xA2 0x45 0xE0 ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x2C 0x77 0x87 0xFE ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0xC5 0xAA 0x2A 0x8C ...
Reg HKLM\SOFTWARE\Classes\CLSID\{BEB3C0C7-B648-4257-96D9-B5D024816E27}\Version
Reg HKLM\SOFTWARE\Classes\CLSID\{BEB3C0C7-B648-4257-96D9-B5D024816E27}\Version@Version 0x78 0x0E 0x5B 0x00 ...
---- Files - GMER 1.0.15 ----
File C:\Windows\$NtUninstallKB57375$\2690138183 0 bytes
File C:\Windows\$NtUninstallKB57375$\2690138183\@ 2048 bytes
File C:\Windows\$NtUninstallKB57375$\2690138183\bckfg.tmp 851 bytes
File C:\Windows\$NtUninstallKB57375$\2690138183\cfg.ini 208 bytes
File C:\Windows\$NtUninstallKB57375$\2690138183\Desktop.ini 4608 bytes
File C:\Windows\$NtUninstallKB57375$\2690138183\keywords 155 bytes
File C:\Windows\$NtUninstallKB57375$\2690138183\kwrd.dll 223744 bytes
File C:\Windows\$NtUninstallKB57375$\2690138183\L 0 bytes
File C:\Windows\$NtUninstallKB57375$\2690138183\L\qnbwvoto 66560 bytes
File C:\Windows\$NtUninstallKB57375$\2690138183\lsflt7.ver 5176 bytes
File C:\Windows\$NtUninstallKB57375$\2690138183\U 0 bytes
File C:\Windows\$NtUninstallKB57375$\2690138183\U\00000001.@ 2048 bytes
File C:\Windows\$NtUninstallKB57375$\2690138183\U\00000002.@ 224768 bytes
File C:\Windows\$NtUninstallKB57375$\2690138183\U\00000004.@ 1024 bytes
File C:\Windows\$NtUninstallKB57375$\2690138183\U\80000000.@ 1024 bytes
File C:\Windows\$NtUninstallKB57375$\2690138183\U\80000004.@ 12800 bytes
File C:\Windows\$NtUninstallKB57375$\2690138183\U\80000032.@ 98304 bytes
File C:\Windows\$NtUninstallKB57375$\3510475107 0 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3LSBQAXH\black_default[1].xml 10561 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3LSBQAXH\icon_facebook[1].png 1114 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3LSBQAXH\icon_onescreen[1].png 323 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3LSBQAXH\icon_twitter[1].png 1342 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3LSBQAXH\1122060[1].txt 16490 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3LSBQAXH\1172080[1].xml 25619 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3LSBQAXH\netcruzeshop_com[1].txt 2351 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3LSBQAXH\mybuffalosports_com[1].txt 43582 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3LSBQAXH\mygreenbaysports_com[1].txt 50225 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3LSBQAXH\jquery-1.4.3.min[1].js 77746 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3LSBQAXH\main4[1].jpg 33101 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3LSBQAXH\images[1].css 1906 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3LSBQAXH\header[1].css 2137 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3LSBQAXH\ADTECH;loc=100;target=_blank;misc=1323574000208[1] 1857 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3LSBQAXH\session[1].js 1 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3LSBQAXH\160x600_v2[1].gif 35127 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\base[1].js 3504 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\ifCAR57DW0.txt 980 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\contentPatternLeft[1].png 137 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\lg[1].gif 43 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\beacon[2].js 1194 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\beacon[3].js 1194 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\sandbox[10].php 10001 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\offers[1].png 5727 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\load1[1].png 1967 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\b[2].gif 43 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\C375781924R1[1] 7295 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\ca[1] 24890 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\blake-lively-030211-15[1].jpg 9078 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\blake-lively-030511-21[1].jpg 5395 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\blake-lively-042611-14[1].jpg 4203 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\blake-rachel-050911-2[1].jpg 6836 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\blake-rachel-050911-4[1].jpg 7455 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\blood-honey-120811-18[1].jpg 4613 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\blood-honey-120811-6[1].jpg 4562 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\borderMiddleRight[1].png 137 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\ajs[2].php 1797 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\ajs[3].php 1791 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\set[1].gif 43 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\colorbox_ie[1].css 2321 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\color_black[1].css 3166 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\companions[1].js 10114 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\quant[1].js 5299 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\beacon[1].js 1194 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\site_images3[1].png 64163 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\sprite[1].png 3752 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\ctools[1].css 581 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\d9f211e8-4bc7-4acc-b193-f54e3d766170[1].swf 41709 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\glamadapt_jsrv[1].act 1914 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\par_hugo_728x90_main[1].swf 2164 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\eprize_button_howitworks1[1].gif 2644 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\eprize_stubs1[1].png 27044 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\back_h1[1].gif 285 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\banner_300x120[1].jpg 35465 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\angelina-120610-4[1].jpg 6974 bytes
File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6I1TEPKT\Assurance_FreeRevised_728x90[1].swf 25863 bytes
This post has been edited by deathx88: 10 December 2011 - 10:46 PM

Help
This topic is locked


Back to top











