GMER 1.0.15.15281 -
http://www.gmer.net
Rootkit scan 2010-07-13 15:49:48
Windows 5.1.2600 Service Pack 2
Running: gmer.exe; Driver: C:\Users\MARTIN~1.001\AppData\Local\Temp\pxddqkow.sys
---- System - GMER 1.0.15 ----
INT 0x52 ? FFFFFFFF
INT 0x52 ? 00000052
INT 0x62 ? FFFFFFFF
INT 0x62 ? 83B42728
INT 0x72 ? FFFFFFFF
INT 0x72 ? 83B42728
INT 0x82 ? FFFFFFFF
INT 0x82 ? 83B42728
INT 0x92 ? FFFFFFFF
INT 0x92 ? 85794000
INT 0x93 ? FFFFFFFF
INT 0x93 ? 04030002
INT 0x93 ? 85B6F748
INT 0x93 ? FFFE77E8
INT 0xA2 ? FFFFFFFF
INT 0xA2 ? 857E6DD8
INT 0xA3 ? FFFFFFFF
INT 0xA3 ? 85901E10
INT 0xB1 ? FFFFFFFF
INT 0xB1 ? 5F534750
INT 0xB1 ? 4789BBBE
INT 0xB2 ? FFFFFFFF
INT 0xB2 ? 85776C40
INT 0xB3 ? FFFFFFFF
INT 0xB3 ? 85901E10
---- Kernel code sections - GMER 1.0.15 ----
.xreloc C:\Windows\system32\drivers\sfsync04.sys unknown last section [0x80735000, 0xC0A, 0x40000040]
---- User code sections - GMER 1.0.15 ----
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!CreateDialogParamW 774F72A2 5 Bytes JMP 6F42DEA8 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!GetAsyncKeyState 774F863C 5 Bytes JMP 6F348EFF C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!SetWindowsHookExW 774F87AD 5 Bytes JMP 6F429AC9 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!CallNextHookEx 774F8E3B 5 Bytes JMP 6F41D0ED C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!UnhookWindowsHookEx 774F98DB 5 Bytes JMP 6F39467C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!EnableWindow 774FCD8B 5 Bytes JMP 6F42DD35 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!CreateWindowExW 77501305 5 Bytes JMP 6F42DB1C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!GetKeyState 77508CB1 5 Bytes JMP 6F42D2E3 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!IsDialogMessageW 77510745 5 Bytes JMP 6F3559D7 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!CreateDialogParamA 775117AA 5 Bytes JMP 6F52547B C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!IsDialogMessage 77511847 5 Bytes JMP 6F524D17 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!CreateDialogIndirectParamA 775126F1 5 Bytes JMP 6F5254B2 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!CreateDialogIndirectParamW 77519A62 5 Bytes JMP 6F5254E9 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!SetKeyboardState 77520987 3 Bytes JMP 6F525086 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!SetKeyboardState + 4 7752098B 1 Byte [F8]
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!DialogBoxParamW 775210B0 5 Bytes JMP 6F3554C5 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!DialogBoxIndirectParamW 77522EF5 5 Bytes JMP 6F52480F C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!SendInput 77522F75 3 Bytes JMP 6F525C43 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!SendInput + 4 77522F79 1 Byte [F8]
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!EndDialog 7752326E 5 Bytes JMP 6F357E7E C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!SetCursorPos 77536FB2 5 Bytes JMP 6F525C97 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!DialogBoxParamA 77538152 5 Bytes JMP 6F5247AC C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!DialogBoxIndirectParamA 7753847D 5 Bytes JMP 6F524872 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!MessageBoxIndirectA 7754D4D9 5 Bytes JMP 6F524741 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!MessageBoxIndirectW 7754D5D3 5 Bytes JMP 6F5246D6 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!MessageBoxExA 7754D639 5 Bytes JMP 6F524674 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!MessageBoxExW 7754D65D 5 Bytes JMP 6F524612 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] USER32.dll!keybd_event 7754D972 5 Bytes JMP 6F525FC7 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] SHELL32.dll!SHRestricted + D95 75E78988 4 Bytes [4D, 30, 1B, 6E] {DEC EBP; XOR [EBX], BL; OUTSB }
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] SHELL32.dll!SHRestricted + D9D 75E78990 8 Bytes [57, 2F, 1B, 6E, 9C, 5B, 1A, ...]
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] ole32.dll!OleLoadFromStream 75B11E12 5 Bytes JMP 6F524B77 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[2576] ole32.dll!CoCreateInstance 75B49EA6 5 Bytes JMP 6F42DB78 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4064] USER32.dll!CreateWindowExW 77501305 5 Bytes JMP 6F42DB1C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4064] USER32.dll!DialogBoxParamW 775210B0 5 Bytes JMP 6F3554C5 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4064] USER32.dll!DialogBoxIndirectParamW 77522EF5 5 Bytes JMP 6F52480F C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4064] USER32.dll!DialogBoxParamA 77538152 5 Bytes JMP 6F5247AC C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4064] USER32.dll!DialogBoxIndirectParamA 7753847D 5 Bytes JMP 6F524872 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4064] USER32.dll!MessageBoxIndirectA 7754D4D9 5 Bytes JMP 6F524741 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4064] USER32.dll!MessageBoxIndirectW 7754D5D3 5 Bytes JMP 6F5246D6 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4064] USER32.dll!MessageBoxExA 7754D639 5 Bytes JMP 6F524674 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4064] USER32.dll!MessageBoxExW 7754D65D 5 Bytes JMP 6F524612 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!CreateDialogParamW 774F72A2 5 Bytes JMP 6F42DEA8 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!GetAsyncKeyState 774F863C 5 Bytes JMP 6F348EFF C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!SetWindowsHookExW 774F87AD 5 Bytes JMP 6F429AC9 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!CallNextHookEx 774F8E3B 5 Bytes JMP 6F41D0ED C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!UnhookWindowsHookEx 774F98DB 5 Bytes JMP 6F39467C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!EnableWindow 774FCD8B 5 Bytes JMP 6F42DD35 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!CreateWindowExW 77501305 5 Bytes JMP 6F42DB1C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!GetKeyState 77508CB1 5 Bytes JMP 6F42D2E3 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!IsDialogMessageW 77510745 5 Bytes JMP 6F3559D7 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!CreateDialogParamA 775117AA 5 Bytes JMP 6F52547B C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!IsDialogMessage 77511847 5 Bytes JMP 6F524D17 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!CreateDialogIndirectParamA 775126F1 5 Bytes JMP 6F5254B2 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!CreateDialogIndirectParamW 77519A62 5 Bytes JMP 6F5254E9 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!SetKeyboardState 77520987 3 Bytes JMP 6F525086 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!SetKeyboardState + 4 7752098B 1 Byte [F8]
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!DialogBoxParamW 775210B0 5 Bytes JMP 6F3554C5 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!DialogBoxIndirectParamW 77522EF5 5 Bytes JMP 6F52480F C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!SendInput 77522F75 3 Bytes JMP 6F525C43 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!SendInput + 4 77522F79 1 Byte [F8]
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!EndDialog 7752326E 5 Bytes JMP 6F357E7E C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!SetCursorPos 77536FB2 5 Bytes JMP 6F525C97 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!DialogBoxParamA 77538152 5 Bytes JMP 6F5247AC C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!DialogBoxIndirectParamA 7753847D 5 Bytes JMP 6F524872 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!MessageBoxIndirectA 7754D4D9 5 Bytes JMP 6F524741 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!MessageBoxIndirectW 7754D5D3 5 Bytes JMP 6F5246D6 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!MessageBoxExA 7754D639 5 Bytes JMP 6F524674 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!MessageBoxExW 7754D65D 5 Bytes JMP 6F524612 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] USER32.dll!keybd_event 7754D972 5 Bytes JMP 6F525FC7 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] SHELL32.dll!SHRestricted + D95 75E78988 4 Bytes [4D, 30, 1B, 6E] {DEC EBP; XOR [EBX], BL; OUTSB }
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] SHELL32.dll!SHRestricted + D9D 75E78990 8 Bytes [57, 2F, 1B, 6E, 9C, 5B, 1A, ...]
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] ole32.dll!OleLoadFromStream 75B11E12 5 Bytes JMP 6F524B77 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4904] ole32.dll!CoCreateInstance 75B49EA6 5 Bytes JMP 6F42DB78 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!CreateDialogParamW 774F72A2 5 Bytes JMP 6F42DEA8 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!GetAsyncKeyState 774F863C 5 Bytes JMP 6F348EFF C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!SetWindowsHookExW 774F87AD 5 Bytes JMP 6F429AC9 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!CallNextHookEx 774F8E3B 5 Bytes JMP 6F41D0ED C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!UnhookWindowsHookEx 774F98DB 5 Bytes JMP 6F39467C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!EnableWindow 774FCD8B 5 Bytes JMP 6F42DD35 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!CreateWindowExW 77501305 5 Bytes JMP 6F42DB1C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!GetKeyState 77508CB1 5 Bytes JMP 6F42D2E3 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!IsDialogMessageW 77510745 5 Bytes JMP 6F3559D7 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!CreateDialogParamA 775117AA 5 Bytes JMP 6F52547B C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!IsDialogMessage 77511847 5 Bytes JMP 6F524D17 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!CreateDialogIndirectParamA 775126F1 5 Bytes JMP 6F5254B2 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!CreateDialogIndirectParamW 77519A62 5 Bytes JMP 6F5254E9 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!SetKeyboardState 77520987 3 Bytes JMP 6F525086 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!SetKeyboardState + 4 7752098B 1 Byte [F8]
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!DialogBoxParamW 775210B0 5 Bytes JMP 6F3554C5 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!DialogBoxIndirectParamW 77522EF5 5 Bytes JMP 6F52480F C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!SendInput 77522F75 3 Bytes JMP 6F525C43 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!SendInput + 4 77522F79 1 Byte [F8]
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!EndDialog 7752326E 5 Bytes JMP 6F357E7E C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!SetCursorPos 77536FB2 5 Bytes JMP 6F525C97 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!DialogBoxParamA 77538152 5 Bytes JMP 6F5247AC C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!DialogBoxIndirectParamA 7753847D 5 Bytes JMP 6F524872 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!MessageBoxIndirectA 7754D4D9 5 Bytes JMP 6F524741 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!MessageBoxIndirectW 7754D5D3 5 Bytes JMP 6F5246D6 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!MessageBoxExA 7754D639 5 Bytes JMP 6F524674 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!MessageBoxExW 7754D65D 5 Bytes JMP 6F524612 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] USER32.dll!keybd_event 7754D972 5 Bytes JMP 6F525FC7 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] SHELL32.dll!SHRestricted + D95 75E78988 4 Bytes [4D, 30, 1B, 6E] {DEC EBP; XOR [EBX], BL; OUTSB }
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] SHELL32.dll!SHRestricted + D9D 75E78990 8 Bytes [57, 2F, 1B, 6E, 9C, 5B, 1A, ...]
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] ole32.dll!OleLoadFromStream 75B11E12 5 Bytes JMP 6F524B77 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4936] ole32.dll!CoCreateInstance 75B49EA6 5 Bytes JMP 6F42DB78 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
---- EOF - GMER 1.0.15 ----