sory za prehazene poradi tvych pokynu

... zde zatim scan z rootrepealu
ROOTREPEAL (c) AD, 2007-2009
==================================================
Scan Start Time: 2009/12/18 14:19
Program Version: Version 1.3.5.0
Windows Version: Windows XP SP3
==================================================
Drivers
-------------------
Name: dump_atapi.sys
Image Path: C:\WINDOWS\System32\Drivers\dump_atapi.sys
Address: 0xF2208000 Size: 98304 File Visible: No Signed: -
Status: -
Name: dump_WMILIB.SYS
Image Path: C:\WINDOWS\System32\Drivers\dump_WMILIB.SYS
Address: 0xF7AC6000 Size: 8192 File Visible: No Signed: -
Status: -
Name: PCI_PNP9150
Image Path: \Driver\PCI_PNP9150
Address: 0x00000000 Size: 0 File Visible: No Signed: -
Status: -
Name: rootrepeal.SYS
Image Path: C:\WINDOWS\System32\Drivers\rootrepeal.SYS
Address: 0xEEFE0000 Size: 49152 File Visible: No Signed: -
Status: -
Name: sptd
Image Path: \Driver\sptd
Address: 0x00000000 Size: 0 File Visible: No Signed: -
Status: -
Name: spwj.sys
Image Path: spwj.sys
Address: 0xF739F000 Size: 1040384 File Visible: No Signed: -
Status: -
Hidden/Locked Files
-------------------
Path: C:\HIBERFIL.SYS
Status: Locked to the Windows API!
Path: c:\documents and settings\david\data aplikací\skype\blackveil406\etilqs_2fkzkhva3odwms3fyh85
Status: Size mismatch (API: 8192, Raw: 0)
SSDT
-------------------
#: 025 Function Name: NtClose
Status: Hooked by "C:\WINDOWS\system32\drivers\sp_rsdrv2.sys" at address 0xf22e488e
#: 037 Function Name: NtCreateFile
Status: Hooked by "C:\WINDOWS\system32\drivers\sp_rsdrv2.sys" at address 0xf22e40ec
#: 041 Function Name: NtCreateKey
Status: Hooked by "C:\WINDOWS\system32\drivers\sp_rsdrv2.sys" at address 0xf22e3dce
#: 050 Function Name: NtCreateSection
Status: Hooked by "C:\WINDOWS\system32\drivers\sp_rsdrv2.sys" at address 0xf22e5938
#: 063 Function Name: NtDeleteKey
Status: Hooked by "C:\WINDOWS\system32\drivers\sp_rsdrv2.sys" at address 0xf22e3ed8
#: 065 Function Name: NtDeleteValueKey
Status: Hooked by "C:\WINDOWS\system32\drivers\sp_rsdrv2.sys" at address 0xf22e3fc2
#: 071 Function Name: NtEnumerateKey
Status: Hooked by "spwj.sys" at address 0xf73bdca2
#: 073 Function Name: NtEnumerateValueKey
Status: Hooked by "spwj.sys" at address 0xf73be030
#: 097 Function Name: NtLoadDriver
Status: Hooked by "C:\WINDOWS\system32\drivers\sp_rsdrv2.sys" at address 0xf22e4bbc
#: 116 Function Name: NtOpenFile
Status: Hooked by "C:\WINDOWS\system32\drivers\sp_rsdrv2.sys" at address 0xf22e43f4
#: 119 Function Name: NtOpenKey
Status: Hooked by "spwj.sys" at address 0xf73a00c0
#: 160 Function Name: NtQueryKey
Status: Hooked by "spwj.sys" at address 0xf73be108
#: 177 Function Name: NtQueryValueKey
Status: Hooked by "spwj.sys" at address 0xf73bdf88
#: 224 Function Name: NtSetInformationFile
Status: Hooked by "C:\WINDOWS\system32\drivers\sp_rsdrv2.sys" at address 0xf22e4526
#: 247 Function Name: NtSetValueKey
Status: Hooked by "C:\WINDOWS\system32\drivers\sp_rsdrv2.sys" at address 0xf22e3bfc
#: 257 Function Name: NtTerminateProcess
Status: Hooked by "C:\WINDOWS\system32\drivers\sp_rsdrv2.sys" at address 0xf22e4b04
#: 274 Function Name: NtWriteFile
Status: Hooked by "C:\WINDOWS\system32\drivers\sp_rsdrv2.sys" at address 0xf22e470c
Stealth Objects
-------------------
Object: Hidden Code [Driver: Fastfat, IRP_MJ_CREATE]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: Fastfat, IRP_MJ_CLOSE]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: Fastfat, IRP_MJ_READ]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: Fastfat, IRP_MJ_WRITE]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: Fastfat, IRP_MJ_QUERY_INFORMATION]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: Fastfat, IRP_MJ_SET_INFORMATION]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: Fastfat, IRP_MJ_QUERY_EA]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: Fastfat, IRP_MJ_SET_EA]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: Fastfat, IRP_MJ_FLUSH_BUFFERS]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: Fastfat, IRP_MJ_QUERY_VOLUME_INFORMATION]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: Fastfat, IRP_MJ_SET_VOLUME_INFORMATION]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: Fastfat, IRP_MJ_DIRECTORY_CONTROL]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: Fastfat, IRP_MJ_FILE_SYSTEM_CONTROL]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: Fastfat, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: Fastfat, IRP_MJ_SHUTDOWN]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: Fastfat, IRP_MJ_LOCK_CONTROL]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: Fastfat, IRP_MJ_CLEANUP]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: Fastfat, IRP_MJ_PNP]
Process: System Address: 0x84f5d1f8 Size: 121
Object: Hidden Code [Driver: perc2, IRP_MJ_CREATE]
Process: System Address: 0x84fcc1f8 Size: 121
Object: Hidden Code [Driver: perc2, IRP_MJ_CLOSE]
Process: System Address: 0x84fcc1f8 Size: 121
Object: Hidden Code [Driver: perc2, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84fcc1f8 Size: 121
Object: Hidden Code [Driver: perc2, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84fcc1f8 Size: 121
Object: Hidden Code [Driver: perc2, IRP_MJ_POWER]
Process: System Address: 0x84fcc1f8 Size: 121
Object: Hidden Code [Driver: perc2, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84fcc1f8 Size: 121
Object: Hidden Code [Driver: perc2, IRP_MJ_PNP]
Process: System Address: 0x84fcc1f8 Size: 121
Object: Hidden Code [Driver: Ql10wnt, IRP_MJ_CREATE]
Process: System Address: 0x84f691f8 Size: 121
Object: Hidden Code [Driver: Ql10wnt, IRP_MJ_CLOSE]
Process: System Address: 0x84f691f8 Size: 121
Object: Hidden Code [Driver: Ql10wnt, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84f691f8 Size: 121
Object: Hidden Code [Driver: Ql10wnt, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84f691f8 Size: 121
Object: Hidden Code [Driver: Ql10wnt, IRP_MJ_POWER]
Process: System Address: 0x84f691f8 Size: 121
Object: Hidden Code [Driver: Ql10wnt, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84f691f8 Size: 121
Object: Hidden Code [Driver: Ql10wnt, IRP_MJ_PNP]
Process: System Address: 0x84f691f8 Size: 121
Object: Hidden Code [Driver: cbidf, IRP_MJ_CREATE]
Process: System Address: 0x84fca1f8 Size: 121
Object: Hidden Code [Driver: cbidf, IRP_MJ_CLOSE]
Process: System Address: 0x84fca1f8 Size: 121
Object: Hidden Code [Driver: cbidf, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84fca1f8 Size: 121
Object: Hidden Code [Driver: cbidf, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84fca1f8 Size: 121
Object: Hidden Code [Driver: cbidf, IRP_MJ_POWER]
Process: System Address: 0x84fca1f8 Size: 121
Object: Hidden Code [Driver: cbidf, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84fca1f8 Size: 121
Object: Hidden Code [Driver: cbidf, IRP_MJ_PNP]
Process: System Address: 0x84fca1f8 Size: 121
Object: Hidden Code [Driver: ini910u, IRP_MJ_CREATE]
Process: System Address: 0x84f661f8 Size: 121
Object: Hidden Code [Driver: ini910u, IRP_MJ_CLOSE]
Process: System Address: 0x84f661f8 Size: 121
Object: Hidden Code [Driver: ini910u, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84f661f8 Size: 121
Object: Hidden Code [Driver: ini910u, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84f661f8 Size: 121
Object: Hidden Code [Driver: ini910u, IRP_MJ_POWER]
Process: System Address: 0x84f661f8 Size: 121
Object: Hidden Code [Driver: ini910u, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84f661f8 Size: 121
Object: Hidden Code [Driver: ini910u, IRP_MJ_PNP]
Process: System Address: 0x84f661f8 Size: 121
Object: Hidden Code [Driver: ql1280, IRP_MJ_CREATE]
Process: System Address: 0x84fcd1f8 Size: 121
Object: Hidden Code [Driver: ql1280, IRP_MJ_CLOSE]
Process: System Address: 0x84fcd1f8 Size: 121
Object: Hidden Code [Driver: ql1280, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84fcd1f8 Size: 121
Object: Hidden Code [Driver: ql1280, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84fcd1f8 Size: 121
Object: Hidden Code [Driver: ql1280, IRP_MJ_POWER]
Process: System Address: 0x84fcd1f8 Size: 121
Object: Hidden Code [Driver: ql1280, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84fcd1f8 Size: 121
Object: Hidden Code [Driver: ql1280, IRP_MJ_PNP]
Process: System Address: 0x84fcd1f8 Size: 121
Object: Hidden Code [Driver: asc, IRP_MJ_CREATE]
Process: System Address: 0x84f681f8 Size: 121
Object: Hidden Code [Driver: asc, IRP_MJ_CLOSE]
Process: System Address: 0x84f681f8 Size: 121
Object: Hidden Code [Driver: asc, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84f681f8 Size: 121
Object: Hidden Code [Driver: asc, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84f681f8 Size: 121
Object: Hidden Code [Driver: asc, IRP_MJ_POWER]
Process: System Address: 0x84f681f8 Size: 121
Object: Hidden Code [Driver: asc, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84f681f8 Size: 121
Object: Hidden Code [Driver: asc, IRP_MJ_PNP]
Process: System Address: 0x84f681f8 Size: 121
Object: Hidden Code [Driver: asc3350p, IRP_MJ_CREATE]
Process: System Address: 0x84fd01f8 Size: 121
Object: Hidden Code [Driver: asc3350p, IRP_MJ_CLOSE]
Process: System Address: 0x84fd01f8 Size: 121
Object: Hidden Code [Driver: asc3350p, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84fd01f8 Size: 121
Object: Hidden Code [Driver: asc3350p, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84fd01f8 Size: 121
Object: Hidden Code [Driver: asc3350p, IRP_MJ_POWER]
Process: System Address: 0x84fd01f8 Size: 121
Object: Hidden Code [Driver: asc3350p, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84fd01f8 Size: 121
Object: Hidden Code [Driver: asc3350p, IRP_MJ_PNP]
Process: System Address: 0x84fd01f8 Size: 121
Object: Hidden Code [Driver: cd20xrnt, IRP_MJ_CREATE]
Process: System Address: 0x84f621f8 Size: 121
Object: Hidden Code [Driver: cd20xrnt, IRP_MJ_CLOSE]
Process: System Address: 0x84f621f8 Size: 121
Object: Hidden Code [Driver: cd20xrnt, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84f621f8 Size: 121
Object: Hidden Code [Driver: cd20xrnt, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84f621f8 Size: 121
Object: Hidden Code [Driver: cd20xrnt, IRP_MJ_POWER]
Process: System Address: 0x84f621f8 Size: 121
Object: Hidden Code [Driver: cd20xrnt, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84f621f8 Size: 121
Object: Hidden Code [Driver: cd20xrnt, IRP_MJ_PNP]
Process: System Address: 0x84f621f8 Size: 121
Object: Hidden Code [Driver: mraid35x, IRP_MJ_CREATE]
Process: System Address: 0x84f671f8 Size: 121
Object: Hidden Code [Driver: mraid35x, IRP_MJ_CLOSE]
Process: System Address: 0x84f671f8 Size: 121
Object: Hidden Code [Driver: mraid35x, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84f671f8 Size: 121
Object: Hidden Code [Driver: mraid35x, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84f671f8 Size: 121
Object: Hidden Code [Driver: mraid35x, IRP_MJ_POWER]
Process: System Address: 0x84f671f8 Size: 121
Object: Hidden Code [Driver: mraid35x, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84f671f8 Size: 121
Object: Hidden Code [Driver: mraid35x, IRP_MJ_PNP]
Process: System Address: 0x84f671f8 Size: 121
Object: Hidden Code [Driver: Cdrom, IRP_MJ_CREATE]
Process: System Address: 0x84e9e1f8 Size: 121
Object: Hidden Code [Driver: Cdrom, IRP_MJ_CLOSE]
Process: System Address: 0x84e9e1f8 Size: 121
Object: Hidden Code [Driver: Cdrom, IRP_MJ_READ]
Process: System Address: 0x84e9e1f8 Size: 121
Object: Hidden Code [Driver: Cdrom, IRP_MJ_WRITE]
Process: System Address: 0x84e9e1f8 Size: 121
Object: Hidden Code [Driver: Cdrom, IRP_MJ_FLUSH_BUFFERS]
Process: System Address: 0x84e9e1f8 Size: 121
Object: Hidden Code [Driver: Cdrom, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84e9e1f8 Size: 121
Object: Hidden Code [Driver: Cdrom, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84e9e1f8 Size: 121
Object: Hidden Code [Driver: Cdrom, IRP_MJ_SHUTDOWN]
Process: System Address: 0x84e9e1f8 Size: 121
Object: Hidden Code [Driver: Cdrom, IRP_MJ_POWER]
Process: System Address: 0x84e9e1f8 Size: 121
Object: Hidden Code [Driver: Cdrom, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84e9e1f8 Size: 121
Object: Hidden Code [Driver: Cdrom, IRP_MJ_PNP]
Process: System Address: 0x84e9e1f8 Size: 121
Object: Hidden Code [Driver: usbohci, IRP_MJ_CREATE]
Process: System Address: 0x84f1f1f8 Size: 121
Object: Hidden Code [Driver: usbohci, IRP_MJ_CLOSE]
Process: System Address: 0x84f1f1f8 Size: 121
Object: Hidden Code [Driver: usbohci, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84f1f1f8 Size: 121
Object: Hidden Code [Driver: usbohci, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84f1f1f8 Size: 121
Object: Hidden Code [Driver: usbohci, IRP_MJ_POWER]
Process: System Address: 0x84f1f1f8 Size: 121
Object: Hidden Code [Driver: usbohci, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84f1f1f8 Size: 121
Object: Hidden Code [Driver: usbohci, IRP_MJ_PNP]
Process: System Address: 0x84f1f1f8 Size: 121
Object: Hidden Code [Driver: symc8xx, IRP_MJ_CREATE]
Process: System Address: 0x84fd21f8 Size: 121
Object: Hidden Code [Driver: symc8xx, IRP_MJ_CLOSE]
Process: System Address: 0x84fd21f8 Size: 121
Object: Hidden Code [Driver: symc8xx, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84fd21f8 Size: 121
Object: Hidden Code [Driver: symc8xx, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84fd21f8 Size: 121
Object: Hidden Code [Driver: symc8xx, IRP_MJ_POWER]
Process: System Address: 0x84fd21f8 Size: 121
Object: Hidden Code [Driver: symc8xx, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84fd21f8 Size: 121
Object: Hidden Code [Driver: symc8xx, IRP_MJ_PNP]
Process: System Address: 0x84fd21f8 Size: 121
Object: Hidden Code [Driver: ultra, IRP_MJ_CREATE]
Process: System Address: 0x84fcf1f8 Size: 121
Object: Hidden Code [Driver: ultra, IRP_MJ_CLOSE]
Process: System Address: 0x84fcf1f8 Size: 121
Object: Hidden Code [Driver: ultra, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84fcf1f8 Size: 121
Object: Hidden Code [Driver: ultra, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84fcf1f8 Size: 121
Object: Hidden Code [Driver: ultra, IRP_MJ_POWER]
Process: System Address: 0x84fcf1f8 Size: 121
Object: Hidden Code [Driver: ultra, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84fcf1f8 Size: 121
Object: Hidden Code [Driver: ultra, IRP_MJ_PNP]
Process: System Address: 0x84fcf1f8 Size: 121
Object: Hidden Code [Driver: aic78u2, IRP_MJ_CREATE]
Process: System Address: 0x84f651f8 Size: 121
Object: Hidden Code [Driver: aic78u2, IRP_MJ_CLOSE]
Process: System Address: 0x84f651f8 Size: 121
Object: Hidden Code [Driver: aic78u2, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84f651f8 Size: 121
Object: Hidden Code [Driver: aic78u2, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84f651f8 Size: 121
Object: Hidden Code [Driver: aic78u2, IRP_MJ_POWER]
Process: System Address: 0x84f651f8 Size: 121
Object: Hidden Code [Driver: aic78u2, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84f651f8 Size: 121
Object: Hidden Code [Driver: aic78u2, IRP_MJ_PNP]
Process: System Address: 0x84f651f8 Size: 121
Object: Hidden Code [Driver: dac960nt, IRP_MJ_CREATE]
Process: System Address: 0x84fd71f8 Size: 121
Object: Hidden Code [Driver: dac960nt, IRP_MJ_CLOSE]
Process: System Address: 0x84fd71f8 Size: 121
Object: Hidden Code [Driver: dac960nt, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84fd71f8 Size: 121
Object: Hidden Code [Driver: dac960nt, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84fd71f8 Size: 121
Object: Hidden Code [Driver: dac960nt, IRP_MJ_POWER]
Process: System Address: 0x84fd71f8 Size: 121
Object: Hidden Code [Driver: dac960nt, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84fd71f8 Size: 121
Object: Hidden Code [Driver: dac960nt, IRP_MJ_PNP]
Process: System Address: 0x84fd71f8 Size: 121
Object: Hidden Code [Driver: adpu160m, IRP_MJ_CREATE]
Process: System Address: 0x84f611f8 Size: 121
Object: Hidden Code [Driver: adpu160m, IRP_MJ_CLOSE]
Process: System Address: 0x84f611f8 Size: 121
Object: Hidden Code [Driver: adpu160m, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84f611f8 Size: 121
Object: Hidden Code [Driver: adpu160m, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84f611f8 Size: 121
Object: Hidden Code [Driver: adpu160m, IRP_MJ_POWER]
Process: System Address: 0x84f611f8 Size: 121
Object: Hidden Code [Driver: adpu160m, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84f611f8 Size: 121
Object: Hidden Code [Driver: adpu160m, IRP_MJ_PNP]
Process: System Address: 0x84f611f8 Size: 121
Object: Hidden Code [Driver: Ftdisk, IRP_MJ_CREATE]
Process: System Address: 0x84f6d1f8 Size: 121
Object: Hidden Code [Driver: Ftdisk, IRP_MJ_READ]
Process: System Address: 0x84f6d1f8 Size: 121
Object: Hidden Code [Driver: Ftdisk, IRP_MJ_WRITE]
Process: System Address: 0x84f6d1f8 Size: 121
Object: Hidden Code [Driver: Ftdisk, IRP_MJ_FLUSH_BUFFERS]
Process: System Address: 0x84f6d1f8 Size: 121
Object: Hidden Code [Driver: Ftdisk, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84f6d1f8 Size: 121
Object: Hidden Code [Driver: Ftdisk, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84f6d1f8 Size: 121
Object: Hidden Code [Driver: Ftdisk, IRP_MJ_SHUTDOWN]
Process: System Address: 0x84f6d1f8 Size: 121
Object: Hidden Code [Driver: Ftdisk, IRP_MJ_CLEANUP]
Process: System Address: 0x84f6d1f8 Size: 121
Object: Hidden Code [Driver: Ftdisk, IRP_MJ_POWER]
Process: System Address: 0x84f6d1f8 Size: 121
Object: Hidden Code [Driver: Ftdisk, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84f6d1f8 Size: 121
Object: Hidden Code [Driver: Ftdisk, IRP_MJ_PNP]
Process: System Address: 0x84f6d1f8 Size: 121
Object: Hidden Code [Driver: sym_u3, IRP_MJ_CREATE]
Process: System Address: 0x84fd11f8 Size: 121
Object: Hidden Code [Driver: sym_u3, IRP_MJ_CLOSE]
Process: System Address: 0x84fd11f8 Size: 121
Object: Hidden Code [Driver: sym_u3, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84fd11f8 Size: 121
Object: Hidden Code [Driver: sym_u3, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84fd11f8 Size: 121
Object: Hidden Code [Driver: sym_u3, IRP_MJ_POWER]
Process: System Address: 0x84fd11f8 Size: 121
Object: Hidden Code [Driver: sym_u3, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84fd11f8 Size: 121
Object: Hidden Code [Driver: sym_u3, IRP_MJ_PNP]
Process: System Address: 0x84fd11f8 Size: 121
Object: Hidden Code [Driver: abp480n5, IRP_MJ_CREATE]
Process: System Address: 0x84f631f8 Size: 121
Object: Hidden Code [Driver: abp480n5, IRP_MJ_CLOSE]
Process: System Address: 0x84f631f8 Size: 121
Object: Hidden Code [Driver: abp480n5, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84f631f8 Size: 121
Object: Hidden Code [Driver: abp480n5, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84f631f8 Size: 121
Object: Hidden Code [Driver: abp480n5, IRP_MJ_POWER]
Process: System Address: 0x84f631f8 Size: 121
Object: Hidden Code [Driver: abp480n5, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84f631f8 Size: 121
Object: Hidden Code [Driver: abp480n5, IRP_MJ_PNP]
Process: System Address: 0x84f631f8 Size: 121
Object: Hidden Code [Driver: ql1080, IRP_MJ_CREATE]
Process: System Address: 0x84f601f8 Size: 121
Object: Hidden Code [Driver: ql1080, IRP_MJ_CLOSE]
Process: System Address: 0x84f601f8 Size: 121
Object: Hidden Code [Driver: ql1080, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84f601f8 Size: 121
Object: Hidden Code [Driver: ql1080, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84f601f8 Size: 121
Object: Hidden Code [Driver: ql1080, IRP_MJ_POWER]
Process: System Address: 0x84f601f8 Size: 121
Object: Hidden Code [Driver: ql1080, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84f601f8 Size: 121
Object: Hidden Code [Driver: ql1080, IRP_MJ_PNP]
Process: System Address: 0x84f601f8 Size: 121
Object: Hidden Code [Driver: hpn, IRP_MJ_CREATE]
Process: System Address: 0x84fcb1f8 Size: 121
Object: Hidden Code [Driver: hpn, IRP_MJ_CLOSE]
Process: System Address: 0x84fcb1f8 Size: 121
Object: Hidden Code [Driver: hpn, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84fcb1f8 Size: 121
Object: Hidden Code [Driver: hpn, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84fcb1f8 Size: 121
Object: Hidden Code [Driver: hpn, IRP_MJ_POWER]
Process: System Address: 0x84fcb1f8 Size: 121
Object: Hidden Code [Driver: hpn, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84fcb1f8 Size: 121
Object: Hidden Code [Driver: hpn, IRP_MJ_PNP]
Process: System Address: 0x84fcb1f8 Size: 121
Object: Hidden Code [Driver: symc810, IRP_MJ_CREATE]
Process: System Address: 0x84fd81f8 Size: 121
Object: Hidden Code [Driver: symc810, IRP_MJ_CLOSE]
Process: System Address: 0x84fd81f8 Size: 121
Object: Hidden Code [Driver: symc810, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84fd81f8 Size: 121
Object: Hidden Code [Driver: symc810, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84fd81f8 Size: 121
Object: Hidden Code [Driver: symc810, IRP_MJ_POWER]
Process: System Address: 0x84fd81f8 Size: 121
Object: Hidden Code [Driver: symc810, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84fd81f8 Size: 121
Object: Hidden Code [Driver: symc810, IRP_MJ_PNP]
Process: System Address: 0x84fd81f8 Size: 121
Object: Hidden Code [Driver: NetBT, IRP_MJ_CREATE]
Process: System Address: 0x84999500 Size: 121
Object: Hidden Code [Driver: NetBT, IRP_MJ_CLOSE]
Process: System Address: 0x84999500 Size: 121
Object: Hidden Code [Driver: NetBT, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84999500 Size: 121
Object: Hidden Code [Driver: NetBT, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84999500 Size: 121
Object: Hidden Code [Driver: NetBT, IRP_MJ_CLEANUP]
Process: System Address: 0x84999500 Size: 121
Object: Hidden Code [Driver: NetBT, IRP_MJ_PNP]
Process: System Address: 0x84999500 Size: 121
Object: Hidden Code [Driver: ql12160, IRP_MJ_CREATE]
Process: System Address: 0x84f5f1f8 Size: 121
Object: Hidden Code [Driver: ql12160, IRP_MJ_CLOSE]
Process: System Address: 0x84f5f1f8 Size: 121
Object: Hidden Code [Driver: ql12160, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84f5f1f8 Size: 121
Object: Hidden Code [Driver: ql12160, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84f5f1f8 Size: 121
Object: Hidden Code [Driver: ql12160, IRP_MJ_POWER]
Process: System Address: 0x84f5f1f8 Size: 121
Object: Hidden Code [Driver: ql12160, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84f5f1f8 Size: 121
Object: Hidden Code [Driver: ql12160, IRP_MJ_PNP]
Process: System Address: 0x84f5f1f8 Size: 121
Object: Hidden Code [Driver: aic78xx, IRP_MJ_CREATE]
Process: System Address: 0x84f6a1f8 Size: 121
Object: Hidden Code [Driver: aic78xx, IRP_MJ_CLOSE]
Process: System Address: 0x84f6a1f8 Size: 121
Object: Hidden Code [Driver: aic78xx, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84f6a1f8 Size: 121
Object: Hidden Code [Driver: aic78xx, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84f6a1f8 Size: 121
Object: Hidden Code [Driver: aic78xx, IRP_MJ_POWER]
Process: System Address: 0x84f6a1f8 Size: 121
Object: Hidden Code [Driver: aic78xx, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84f6a1f8 Size: 121
Object: Hidden Code [Driver: aic78xx, IRP_MJ_PNP]
Process: System Address: 0x84f6a1f8 Size: 121
Object: Hidden Code [Driver: dac2w2k, IRP_MJ_CREATE]
Process: System Address: 0x84fc91f8 Size: 121
Object: Hidden Code [Driver: dac2w2k, IRP_MJ_CLOSE]
Process: System Address: 0x84fc91f8 Size: 121
Object: Hidden Code [Driver: dac2w2k, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84fc91f8 Size: 121
Object: Hidden Code [Driver: dac2w2k, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84fc91f8 Size: 121
Object: Hidden Code [Driver: dac2w2k, IRP_MJ_POWER]
Process: System Address: 0x84fc91f8 Size: 121
Object: Hidden Code [Driver: dac2w2k, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84fc91f8 Size: 121
Object: Hidden Code [Driver: dac2w2k, IRP_MJ_PNP]
Process: System Address: 0x84fc91f8 Size: 121
Object: Hidden Code [Driver: amsint, IRP_MJ_CREATE]
Process: System Address: 0x84fd61f8 Size: 121
Object: Hidden Code [Driver: amsint, IRP_MJ_CLOSE]
Process: System Address: 0x84fd61f8 Size: 121
Object: Hidden Code [Driver: amsint, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84fd61f8 Size: 121
Object: Hidden Code [Driver: amsint, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84fd61f8 Size: 121
Object: Hidden Code [Driver: amsint, IRP_MJ_POWER]
Process: System Address: 0x84fd61f8 Size: 121
Object: Hidden Code [Driver: amsint, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84fd61f8 Size: 121
Object: Hidden Code [Driver: amsint, IRP_MJ_PNP]
Process: System Address: 0x84fd61f8 Size: 121
Object: Hidden Code [Driver: usbehci, IRP_MJ_CREATE]
Process: System Address: 0x84e771f8 Size: 121
Object: Hidden Code [Driver: usbehci, IRP_MJ_CLOSE]
Process: System Address: 0x84e771f8 Size: 121
Object: Hidden Code [Driver: usbehci, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84e771f8 Size: 121
Object: Hidden Code [Driver: usbehci, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84e771f8 Size: 121
Object: Hidden Code [Driver: usbehci, IRP_MJ_POWER]
Process: System Address: 0x84e771f8 Size: 121
Object: Hidden Code [Driver: usbehci, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84e771f8 Size: 121
Object: Hidden Code [Driver: usbehci, IRP_MJ_PNP]
Process: System Address: 0x84e771f8 Size: 121
Object: Hidden Code [Driver: ql1240, IRP_MJ_CREATE]
Process: System Address: 0x84fd31f8 Size: 121
Object: Hidden Code [Driver: ql1240, IRP_MJ_CLOSE]
Process: System Address: 0x84fd31f8 Size: 121
Object: Hidden Code [Driver: ql1240, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84fd31f8 Size: 121
Object: Hidden Code [Driver: ql1240, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84fd31f8 Size: 121
Object: Hidden Code [Driver: ql1240, IRP_MJ_POWER]
Process: System Address: 0x84fd31f8 Size: 121
Object: Hidden Code [Driver: ql1240, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84fd31f8 Size: 121
Object: Hidden Code [Driver: ql1240, IRP_MJ_PNP]
Process: System Address: 0x84fd31f8 Size: 121
Object: Hidden Code [Driver: Sparrow, IRP_MJ_CREATE]
Process: System Address: 0x84f6b1f8 Size: 121
Object: Hidden Code [Driver: Sparrow, IRP_MJ_CLOSE]
Process: System Address: 0x84f6b1f8 Size: 121
Object: Hidden Code [Driver: Sparrow, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84f6b1f8 Size: 121
Object: Hidden Code [Driver: Sparrow, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84f6b1f8 Size: 121
Object: Hidden Code [Driver: Sparrow, IRP_MJ_POWER]
Process: System Address: 0x84f6b1f8 Size: 121
Object: Hidden Code [Driver: Sparrow, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84f6b1f8 Size: 121
Object: Hidden Code [Driver: Sparrow, IRP_MJ_PNP]
Process: System Address: 0x84f6b1f8 Size: 121
Object: Hidden Code [Driver: sym_hi, IRP_MJ_CREATE]
Process: System Address: 0x84f641f8 Size: 121
Object: Hidden Code [Driver: sym_hi, IRP_MJ_CLOSE]
Process: System Address: 0x84f641f8 Size: 121
Object: Hidden Code [Driver: sym_hi, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x84f641f8 Size: 121
Object: Hidden Code [Driver: sym_hi, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x84f641f8 Size: 121
Object: Hidden Code [Driver: sym_hi, IRP_MJ_POWER]
Process: System Address: 0x84f641f8 Size: 121
Object: Hidden Code [Driver: sym_hi, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x84f641f8 Size: 121
Object: Hidden Code [Driver: sym_hi, IRP_MJ_PNP]
Process: System Address: 0x84f641f8 Size: 121
Object: Hidden Code [Driver: perc2hib, IRP_MJ_CREATE]
Process: System Address: 0x84f5e1f8 Size: 121
Object: Hidden Code [Driver: perc2hib, IRP_MJ_CREATE_NAMED_PIPE]
Process: System Address: 0x84f5e1f8 Size: 121
Object: Hidden Code [Driver: perc2hib, IRP_MJ_CLOSE]
Process: System Address: 0x84f5e1f8 Size: 121
Object: Hidden Code [Driver: perc2hib, IRP_MJ_READ]
Process: System Address: 0x84f5e1f8 Size: 121
Object: Hidden Code [Driver: perc2hib, IRP_MJ_WRITE]
Process: System Address: 0x84f5e1f8 Size: 121
Object: Hidden Code [Driver: perc2hib, IRP_MJ_QUERY_INFORMATION]
Process: System Address: 0x84f5e1f8 Size: 121
Object: Hidden Code [Driver: perc2hib, IRP_MJ_SET_INFORMATION]
Process: System Address: 0x84f5e1f8 Size: 121
Object: Hidden Code [Driver: perc2hib, IRP_MJ_QUERY_EA]
Process: System Address: 0x84f5e1f8 Size: 121
Object: Hidden Code [Driver: perc2hib, IRP_MJ_SET_EA]
Proc==EOF==
a uz jdu na ten registr ... mmnt