GMER 2.2.19882 - http://www.gmer.net Rootkit scan 2016-05-16 09:48:01 Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\00000028 WDC_WD3200BPVT-60JJ5T0 rev.01.01A01 298,09GB Running: n7wmmgmx.exe; Driver: C:\Users\WACICI~1\AppData\Local\Temp\pxldapow.sys ---- Kernel code sections - GMER 2.2 ---- .text C:\WINDOWS\System32\win32k.sys!W32pServiceTable fffff96000142a00 15 bytes [00, 31, EF, 01, 00, 36, 6A, ...] .text C:\WINDOWS\System32\win32k.sys!W32pServiceTable + 16 fffff96000142a10 11 bytes [00, E4, FB, FF, C0, 4B, E6, ...] ---- User IAT/EAT - GMER 2.2 ---- IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2728] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GdiDllInitialize] [7fffbc9c002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2728] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2728] @ C:\WINDOWS\system32\MSCTF.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2728] @ C:\WINDOWS\system32\SHELL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2728] @ C:\WINDOWS\system32\SHELL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2728] @ C:\WINDOWS\system32\SHLWAPI.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2728] @ C:\WINDOWS\system32\SHLWAPI.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2728] @ C:\WINDOWS\system32\COMDLG32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2728] @ C:\WINDOWS\system32\COMDLG32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2728] @ C:\WINDOWS\system32\ole32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2728] @ C:\WINDOWS\system32\ole32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2728] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2728] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2728] @ C:\WINDOWS\SYSTEM32\dwrite.dll[ntdll.dll!NtAlpcConnectPort] [7fff6514c888] C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\chrome_child.dll IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3476] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GdiDllInitialize] [7fffbc9c002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3476] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3476] @ C:\WINDOWS\system32\MSCTF.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3476] @ C:\WINDOWS\system32\SHELL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3476] @ C:\WINDOWS\system32\SHELL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3476] @ C:\WINDOWS\system32\SHLWAPI.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3476] @ C:\WINDOWS\system32\SHLWAPI.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3476] @ C:\WINDOWS\system32\COMDLG32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3476] @ C:\WINDOWS\system32\COMDLG32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3476] @ C:\WINDOWS\system32\ole32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3476] @ C:\WINDOWS\system32\ole32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3476] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3476] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3476] @ C:\WINDOWS\SYSTEM32\dwrite.dll[ntdll.dll!NtAlpcConnectPort] [7fff6514c888] C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\chrome_child.dll IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3468] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GdiDllInitialize] [7fffbc9c002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3468] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3468] @ C:\WINDOWS\system32\MSCTF.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3468] @ C:\WINDOWS\system32\SHELL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3468] @ C:\WINDOWS\system32\SHELL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3468] @ C:\WINDOWS\system32\SHLWAPI.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3468] @ C:\WINDOWS\system32\SHLWAPI.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3468] @ C:\WINDOWS\system32\COMDLG32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3468] @ C:\WINDOWS\system32\COMDLG32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3468] @ C:\WINDOWS\system32\ole32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3468] @ C:\WINDOWS\system32\ole32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3468] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3468] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3468] @ C:\WINDOWS\SYSTEM32\dwrite.dll[ntdll.dll!NtAlpcConnectPort] [7fff6514c888] C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\chrome_child.dll IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2372] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GdiDllInitialize] [7fffbc9c002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2372] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2372] @ C:\WINDOWS\system32\MSCTF.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2372] @ C:\WINDOWS\system32\SHELL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2372] @ C:\WINDOWS\system32\SHELL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2372] @ C:\WINDOWS\system32\SHLWAPI.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2372] @ C:\WINDOWS\system32\SHLWAPI.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2372] @ C:\WINDOWS\system32\COMDLG32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2372] @ C:\WINDOWS\system32\COMDLG32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2372] @ C:\WINDOWS\system32\ole32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2372] @ C:\WINDOWS\system32\ole32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2372] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2372] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2372] @ C:\WINDOWS\SYSTEM32\dwrite.dll[ntdll.dll!NtAlpcConnectPort] [7fff6514c888] C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\chrome_child.dll IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2428] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GdiDllInitialize] [7fffbc9c002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2428] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2428] @ C:\WINDOWS\system32\MSCTF.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2428] @ C:\WINDOWS\system32\SHELL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2428] @ C:\WINDOWS\system32\SHELL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2428] @ C:\WINDOWS\system32\SHLWAPI.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2428] @ C:\WINDOWS\system32\SHLWAPI.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2428] @ C:\WINDOWS\system32\COMDLG32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2428] @ C:\WINDOWS\system32\COMDLG32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2428] @ C:\WINDOWS\system32\ole32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2428] @ C:\WINDOWS\system32\ole32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2428] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2428] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2428] @ C:\WINDOWS\SYSTEM32\dwrite.dll[ntdll.dll!NtAlpcConnectPort] [7fff6514c888] C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\chrome_child.dll IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3568] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GdiDllInitialize] [7fffbc9c002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3568] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3568] @ C:\WINDOWS\system32\MSCTF.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3568] @ C:\WINDOWS\system32\SHELL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3568] @ C:\WINDOWS\system32\SHELL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3568] @ C:\WINDOWS\system32\SHLWAPI.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3568] @ C:\WINDOWS\system32\SHLWAPI.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3568] @ C:\WINDOWS\system32\COMDLG32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3568] @ C:\WINDOWS\system32\COMDLG32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3568] @ C:\WINDOWS\system32\ole32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3568] @ C:\WINDOWS\system32\ole32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3568] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3568] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3568] @ C:\WINDOWS\SYSTEM32\dwrite.dll[ntdll.dll!NtAlpcConnectPort] [7fff6514c888] C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\chrome_child.dll IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3700] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GdiDllInitialize] [7fffbc9c002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3700] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3700] @ C:\WINDOWS\system32\MSCTF.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3700] @ C:\WINDOWS\system32\SHELL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3700] @ C:\WINDOWS\system32\SHELL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3700] @ C:\WINDOWS\system32\SHLWAPI.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3700] @ C:\WINDOWS\system32\SHLWAPI.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3700] @ C:\WINDOWS\system32\COMDLG32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3700] @ C:\WINDOWS\system32\COMDLG32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3700] @ C:\WINDOWS\system32\ole32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3700] @ C:\WINDOWS\system32\ole32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3700] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3700] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3700] @ C:\WINDOWS\SYSTEM32\dwrite.dll[ntdll.dll!NtAlpcConnectPort] [7fff6514c888] C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\chrome_child.dll IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3692] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GdiDllInitialize] [7fffbc9c002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3692] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3692] @ C:\WINDOWS\system32\MSCTF.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3692] @ C:\WINDOWS\system32\SHELL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3692] @ C:\WINDOWS\system32\SHELL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3692] @ C:\WINDOWS\system32\SHLWAPI.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3692] @ C:\WINDOWS\system32\SHLWAPI.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3692] @ C:\WINDOWS\system32\COMDLG32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3692] @ C:\WINDOWS\system32\COMDLG32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3692] @ C:\WINDOWS\system32\ole32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3692] @ C:\WINDOWS\system32\ole32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3692] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3692] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3692] @ C:\WINDOWS\SYSTEM32\dwrite.dll[ntdll.dll!NtAlpcConnectPort] [7fff6514c888] C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\chrome_child.dll IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2780] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GdiDllInitialize] [7fffbc9c002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2780] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2780] @ C:\WINDOWS\system32\MSCTF.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2780] @ C:\WINDOWS\system32\SHELL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2780] @ C:\WINDOWS\system32\SHELL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2780] @ C:\WINDOWS\system32\SHLWAPI.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2780] @ C:\WINDOWS\system32\SHLWAPI.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2780] @ C:\WINDOWS\system32\COMDLG32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2780] @ C:\WINDOWS\system32\COMDLG32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2780] @ C:\WINDOWS\system32\ole32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2780] @ C:\WINDOWS\system32\ole32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2780] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2780] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[2780] @ C:\WINDOWS\SYSTEM32\dwrite.dll[ntdll.dll!NtAlpcConnectPort] [7fff6514c888] C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\chrome_child.dll IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3284] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GdiDllInitialize] [7fffbc9c002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3284] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3284] @ C:\WINDOWS\system32\MSCTF.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3284] @ C:\WINDOWS\system32\SHELL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3284] @ C:\WINDOWS\system32\SHELL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3284] @ C:\WINDOWS\system32\SHLWAPI.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3284] @ C:\WINDOWS\system32\SHLWAPI.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3284] @ C:\WINDOWS\system32\COMDLG32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3284] @ C:\WINDOWS\system32\COMDLG32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3284] @ C:\WINDOWS\system32\ole32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3284] @ C:\WINDOWS\system32\ole32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3284] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3284] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3284] @ C:\WINDOWS\SYSTEM32\dwrite.dll[ntdll.dll!NtAlpcConnectPort] [7fff6514c888] C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\chrome_child.dll IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3540] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GdiDllInitialize] [7fffbc9c002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3540] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3540] @ C:\WINDOWS\system32\MSCTF.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3540] @ C:\WINDOWS\system32\SHELL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3540] @ C:\WINDOWS\system32\SHELL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3540] @ C:\WINDOWS\system32\SHLWAPI.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3540] @ C:\WINDOWS\system32\SHLWAPI.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3540] @ C:\WINDOWS\system32\COMDLG32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3540] @ C:\WINDOWS\system32\COMDLG32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3540] @ C:\WINDOWS\system32\ole32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3540] @ C:\WINDOWS\system32\ole32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3540] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3540] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3540] @ C:\WINDOWS\SYSTEM32\dwrite.dll[ntdll.dll!NtAlpcConnectPort] [7fff6514c888] C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\chrome_child.dll IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3560] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GdiDllInitialize] [7fffbc9c002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3560] @ C:\WINDOWS\system32\USER32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3560] @ C:\WINDOWS\system32\MSCTF.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3560] @ C:\WINDOWS\system32\SHELL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3560] @ C:\WINDOWS\system32\SHELL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3560] @ C:\WINDOWS\system32\SHLWAPI.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3560] @ C:\WINDOWS\system32\SHLWAPI.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3560] @ C:\WINDOWS\system32\COMDLG32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3560] @ C:\WINDOWS\system32\COMDLG32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3560] @ C:\WINDOWS\system32\ole32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3560] @ C:\WINDOWS\system32\ole32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3560] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[GDI32.dll!GetStockObject] [7fffbc9c006c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3560] @ C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8\COMCTL32.dll[USER32.dll!RegisterClassW] [7fffbea6002c] IAT C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[3560] @ C:\WINDOWS\SYSTEM32\dwrite.dll[ntdll.dll!NtAlpcConnectPort] [7fff6514c888] C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\chrome_child.dll ---- Threads - GMER 2.2 ---- Thread C:\WINDOWS\system32\csrss.exe [660:684] fffff960009852d0 ---- Registry - GMER 2.2 ---- Reg HKLM\SYSTEM\CurrentControlSet\Control@LastBootShutdown 0 Reg HKLM\SYSTEM\CurrentControlSet\Control\CMF\SqmData@SystemStartTime 0xA1 0x0F 0x65 0x6A ... Reg HKLM\SYSTEM\CurrentControlSet\Control\CMF\SqmData@CMFStartTime 0x05 0xB9 0x05 0x82 ... Reg HKLM\SYSTEM\CurrentControlSet\Control\CMF\SqmData\BootLanguages@pl-PL 77 Reg HKLM\SYSTEM\CurrentControlSet\Control\GraphicsDrivers\Configuration\LGD02DC0_00_07DA_79^43DE932A75FD237B0BDE555D6E837849@Timestamp 0x6A 0x3B 0xA9 0x2D ... Reg HKLM\SYSTEM\CurrentControlSet\Control\Lsa@LsaPid 516 Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager@PendingFileRenameOperations \??\C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAResources.dll??\??\C:\Program Files (x86)\Panda Security\Panda Security Protection\Data\??\??\C:\Program Files (x86)\Panda Security\Panda Security Protection\Kosz\??\??\C:\Program Files (x86)\Panda Security\Panda Security Protection\??\??\C:\Config.Msi\23c95af.rbf??\??\C:\Config.Msi\23c95b0.rbf??\??\C:\Config.Msi\23c95dc.rbf??\??\C:\Config.Msi\23c95f0.rbf??\??\C:\Config.Msi\23c95f1.rbf??\??\C:\Config.Msi\23c95f2.rbf??\??\C:\Config.Msi\23c95fb.rbf??\??\C:\Config.Msi\23c9617.rbf??\??\C:\Config.Msi\23c9618.rbf??\??\C:\Config.Msi\23c9619.rbf??\??\C:\Config.Msi\23c961a.rbf??\??\C:\Config.Msi\23c961b.rbf??\??\C:\Config.Msi\23c961c.rbf??\??\C:\Config.Msi\23c961d.rbf??\??\C:\Config.Msi\23c961e.rbf??\??\C:\Config.Msi\23c961f.rbf??\??\C:\Config.Msi\23c9620.rbf??\??\C:\Config.Msi\23c9621.rbf??\??\C:\Config.Msi\23c9622.rbf??\??\C:\Config.Msi\23c9623.rbf??\??\C:\Config.Msi\23c9624.rbf??\??\C:\Config.Msi\23c9625.rbf??\??\C:\Config.Msi\23c9626.rbf??\?? Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Executive@UuidSequenceNumber 4521675 Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Kernel\RNG@RNGAuxiliarySeed -830413752 Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\PrefetchParameters@BootId 82 Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\PrefetchParameters@BaseTime 473664247 Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Power@POSTTime 4205 Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Power@FwPOSTTime 4209 Reg HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server@InstanceID 9889b8be-7e36-4b35-82f6-c4a4e02 Reg HKLM\SYSTEM\CurrentControlSet\Control\WMI\Autologger\AITEventLog@FileCounter 1 Reg HKLM\SYSTEM\CurrentControlSet\Control\WMI\Autologger\SQMLogger@FileCounter 2 Reg HKLM\SYSTEM\CurrentControlSet\Control\WMI\Autologger\WdiContextLog@FileCounter 1 Reg HKLM\SYSTEM\CurrentControlSet\Services\amdsata\Parameters\Device-1@AmdSataCounter 76 Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\b8763f7f770a Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Upgrade\LocalRadioSettings Reg HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\Probe\{ff6b1318-df89-468a-ba1f-b70f659a6b8a}@LastProbeTime 1463346672 Reg HKLM\SYSTEM\CurrentControlSet\Services\rdyboost\Parameters@LastBootPlanUserTime ?N?, ?maj ?15 ?16, 11:24:50???????????????????????????????????? Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Epoch@Epoch 11110 Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Epoch2@Epoch 4207 Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile@EnableFirewall 1 Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile@EnableFirewall 1 Reg HKLM\SYSTEM\CurrentControlSet\Services\srvnet\Parameters@MajorSequence 79 Reg HKLM\SYSTEM\CurrentControlSet\Services\SynTP\Parameters@DetectTimeMS 918 Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{4523963F-3A77-434B-886C-7BAD0BAD8383}@LeaseObtainedTime 1463375821 Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{4523963F-3A77-434B-886C-7BAD0BAD8383}@T1 1463419021 Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{4523963F-3A77-434B-886C-7BAD0BAD8383}@T2 1463451421 Reg HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{4523963F-3A77-434B-886C-7BAD0BAD8383}@LeaseTerminatesTime 1463462221 Reg HKLM\SYSTEM\CurrentControlSet\Services\Winmgmt\Parameters@ServiceDllUnloadOnStop 0 Reg HKLM\SYSTEM\Setup\Upgrade\NsiMigrationRoot\60\0@Rw 0x64 0x62 0x03 0x00 ... Reg HKLM\SYSTEM\Setup\Upgrade\NsiMigrationRoot\60\0@RwMask 0x64 0x62 0x03 0x00 ... Reg HKLM\SYSTEM\Setup\Upgrade\NsiMigrationRoot\60\1@Rw 0x64 0x62 0x03 0x00 ... Reg HKLM\SYSTEM\Setup\Upgrade\NsiMigrationRoot\60\1@RwMask 0x64 0x62 0x03 0x00 ... Reg HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.txt\OpenWithList@MRUList cab Reg HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shutdown@CleanShutdown 1 Reg HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Taskband@FavoritesRemovedChanges 18 Reg HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}\iexplore@Count 759 Reg HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{553891B7-A0D5-4526-BE18-D3CE461D6310}\iexplore@Count 765 Reg HKCU\Software\Microsoft\Windows\CurrentVersion\GWX\Usage@UsageTime 0xAE 0xC4 0x45 0x13 ... Reg HKCU\Software\Microsoft\Windows\Windows Error Reporting\Debug@StoreLocation C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_BlueSoleilCS.exe_c360d24373c0c22be2663f16374881172886fdbf_672e075d_0e355255 Reg HKCU\Software\Microsoft\Windows\Windows Error Reporting\Debug\UIHandles@CheckingForSolutionDialog 0xB8 0x04 0x01 0x00 ... ---- Disk sectors - GMER 2.2 ---- Disk \Device\Harddisk0\DR0 unknown MBR code ---- Files - GMER 2.2 ---- File C:\Users\Właściciel\AppData\Local\Google\Chrome\User Data\Default\B7E0.tmp 0 bytes ---- EOF - GMER 2.2 ----