Software: Apache. PHP/5.5.15 uname -a: Windows NT SVR-DMZ 6.1 build 7600 (Windows Server 2008 R2 Enterprise Edition) i586 SYSTEM Safe-mode: OFF (not secure) C:\Windows\Temp\ drwxrwxrwx |
Viewing file: $klssinstlib.log (84.78 KB) -rw-rw-rw- Select action/file-type: (+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) | ============================================================================ ========== Trace Log File. Pid=2736. Started - Wed Sep 01 2010 16:48:38.099 =========== ============================================================================ System: Microsoft Windows NT Version: 6.1, 7600 Wed Sep 01 2010 16:48:38.099 00000260 KLSTD: Sync objects count: CS: 6 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.099 00000260 KLSTD: Sync objects count: CS: 7 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.099 00000260 KLSTD: Sync objects count: CS: 8 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.099 00000260 KLSTD: Sync objects count: CS: 9 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.099 00000260 KLSTD: Initializing default security descriptor for newly created threads (based on primary access token)... Wed Sep 01 2010 16:48:38.099 00000260 KLSTD: Default security descriptor for newly created threads initialized. Wed Sep 01 2010 16:48:38.099 00000260 KLSTD: Current host info: NetBIOS name: 'SVR-DMZ' Domain name: 'WORKGROUP' Domain type: 'workgroup' Wed Sep 01 2010 16:48:38.099 00000260 KLSTD: Default codepage: 1252, Default LCID: 1033, Default LangID: 1033 Wed Sep 01 2010 16:48:38.099 00000260 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\2\' Wed Sep 01 2010 16:48:38.099 00000260 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\2\3623bb35-40b2-40b6-b527-7fe3a618c244' Wed Sep 01 2010 16:48:38.099 00000260 KLSTD: KLSTD_DeletePath('C:\Users\ADMINI~1\AppData\Local\Temp\2\3623bb35-40b2-40b6-b527-7fe3a618c244') Wed Sep 01 2010 16:48:38.099 00000260 KLSTD: KLSTD_RemoveDirectory('C:\Users\ADMINI~1\AppData\Local\Temp\2\3623bb35-40b2-40b6-b527-7fe3a618c244', 1) Wed Sep 01 2010 16:48:38.099 00000260 KLSTD: Sync objects count: CS: 10 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.099 00000260 KLPRSS: Starting KLPRSS_Init... Wed Sep 01 2010 16:48:38.099 00000260 KLPRSS: ...KLPRSS_Init took 1.899453 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.099 00000260 KLSTD: Sync objects count: CS: 11 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.099 00000260 HOOKAPI: Starting KLINSTFIX_Start... Wed Sep 01 2010 16:48:38.099 00000260 HOOKAPI: Starting WriteStub... Wed Sep 01 2010 16:48:38.099 00000260 HOOKAPI: Starting changing page protection into PAGE_READWRITE... Wed Sep 01 2010 16:48:38.099 00000260 HOOKAPI: ...changing page protection into PAGE_READWRITE took 0.038667 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.099 00000260 HOOKAPI: Starting modifying... Wed Sep 01 2010 16:48:38.099 00000260 HOOKAPI: ...modifying took 0.032165 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.099 00000260 HOOKAPI: Starting changing page protection into PAGE_EXECUTE_WRITECOPYy... Wed Sep 01 2010 16:48:38.099 00000260 HOOKAPI: ...changing page protection into PAGE_EXECUTE_WRITECOPYy took 0.036271 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.099 00000260 HOOKAPI: Starting FlushInstructionCache... Wed Sep 01 2010 16:48:38.099 00000260 HOOKAPI: ...FlushInstructionCache took 0.029428 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.099 00000260 HOOKAPI: ...WriteStub took 0.344235 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.114 00000260 HOOKAPI: ...KLINSTFIX_Start took 0.456813 ms (User: 0 ms, Kernel: 15 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.114 00000260 KLPRSS: Starting CStorage::trans_begin... Wed Sep 01 2010 16:48:38.114 00000260 KLPRSS: Starting CStorage::trans_end... Wed Sep 01 2010 16:48:38.114 00000260 KLPRSS: ...CStorage::trans_end took 0.030796 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.114 00000260 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_SETTINGS.lck' timeout - 180000 creation flags - 0x3 Wed Sep 01 2010 16:48:38.114 00000260 KLSTD: Starting KLSTD_CreateFile... Wed Sep 01 2010 16:48:38.114 00000260 KLSTD: ...KLSTD_CreateFile took 0.220023 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.114 00000260 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_SETTINGS.xml' timeout - 180000 creation flags - 0x3 Wed Sep 01 2010 16:48:38.114 00000260 KLSTD: Starting KLSTD_CreateFile... Wed Sep 01 2010 16:48:38.114 00000260 KLSTD: ...KLSTD_CreateFile took 0.191622 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.114 00000260 KLPRSS: ...CStorage::trans_begin took 0.846216 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.114 00000260 KLPRSS: Starting CStorage::trans_end... Wed Sep 01 2010 16:48:38.114 00000260 KLSTD: KLSTD_Rename2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_SETTINGS.xml', 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_SETTINGS.xml~') Wed Sep 01 2010 16:48:38.114 00000260 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_SETTINGS.xml' timeout - 0 creation flags - 0x7 Wed Sep 01 2010 16:48:38.114 00000260 KLSTD: Starting KLSTD_CreateFile... Wed Sep 01 2010 16:48:38.114 00000260 KLSTD: ...KLSTD_CreateFile took 0.466736 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.114 00000260 KLSTD: KLSTD_Unlink2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_SETTINGS.~xml~2') Wed Sep 01 2010 16:48:38.114 00000260 KLSTD: KLSTD_Rename2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_SETTINGS.xml~', 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_SETTINGS.~xml~2') Wed Sep 01 2010 16:48:38.114 00000260 KLPRSS: ...CStorage::trans_end took 3.223697 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.114 00000260 KLSTD: KLSTD_CreateFile path - 'C:\Users\ADMINI~1\AppData\Local\Temp\2\{786A9F7E-CFEC-451F-B3C4-22EB11550FD8}\nagent_notification_default_settings.xml' timeout - 180000 creation flags - 0x1 Wed Sep 01 2010 16:48:38.114 00000260 KLSTD: Starting KLSTD_CreateFile... Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: ...KLSTD_CreateFile took 3.101196 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.130 00000260 KLPRSS: Starting CStorage::trans_begin... Wed Sep 01 2010 16:48:38.130 00000260 KLPRSS: Starting CStorage::trans_end... Wed Sep 01 2010 16:48:38.130 00000260 KLPRSS: ...CStorage::trans_end took 0.029428 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_SETTINGS.lck' timeout - 180000 creation flags - 0x3 Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: Starting KLSTD_CreateFile... Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: ...KLSTD_CreateFile took 0.204967 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_SETTINGS.xml' timeout - 180000 creation flags - 0x3 Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: Starting KLSTD_CreateFile... Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: ...KLSTD_CreateFile took 0.638512 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.130 00000260 KLPRSS: ...CStorage::trans_begin took 1.417660 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.130 00000260 KLPRSS: Starting CStorage::trans_end... Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: KLSTD_Rename2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_SETTINGS.xml', 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_SETTINGS.xml~') Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_SETTINGS.xml' timeout - 0 creation flags - 0x7 Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: Starting KLSTD_CreateFile... Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: ...KLSTD_CreateFile took 0.441757 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: KLSTD_Unlink2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_SETTINGS.~xml~2') Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: KLSTD_Rename2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_SETTINGS.xml~', 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_SETTINGS.~xml~2') Wed Sep 01 2010 16:48:38.130 00000260 KLPRSS: ...CStorage::trans_end took 3.586068 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.130 00000260 KLPRSS: Starting CStorage::trans_end... Wed Sep 01 2010 16:48:38.130 00000260 KLPRSS: ...CStorage::trans_end took 0.031481 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.130 00000260 KLPRSS: Starting CStorage::trans_begin... Wed Sep 01 2010 16:48:38.130 00000260 KLPRSS: Starting CStorage::trans_end... Wed Sep 01 2010 16:48:38.130 00000260 KLPRSS: ...CStorage::trans_end took 0.029770 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_PRODINFO.lck' timeout - 180000 creation flags - 0x3 Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: Starting KLSTD_CreateFile... Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: ...KLSTD_CreateFile took 0.185120 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_PRODINFO.xml' timeout - 180000 creation flags - 0x3 Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: Starting KLSTD_CreateFile... Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: ...KLSTD_CreateFile took 0.199150 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.130 00000260 KLPRSS: ...CStorage::trans_begin took 0.753827 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.130 00000260 KLPRSS: Starting CStorage::trans_end... Wed Sep 01 2010 16:48:38.130 00000260 KLSTD: KLSTD_Rename2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_PRODINFO.xml', 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_PRODINFO.xml~') Wed Sep 01 2010 16:48:38.146 00000260 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_PRODINFO.xml' timeout - 0 creation flags - 0x7 Wed Sep 01 2010 16:48:38.146 00000260 KLSTD: Starting KLSTD_CreateFile... Wed Sep 01 2010 16:48:38.146 00000260 KLSTD: ...KLSTD_CreateFile took 0.382560 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.146 00000260 KLSTD: KLSTD_Unlink2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_PRODINFO.~xml~2') Wed Sep 01 2010 16:48:38.146 00000260 KLSTD: KLSTD_Rename2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_PRODINFO.xml~', 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_PRODINFO.~xml~2') Wed Sep 01 2010 16:48:38.146 00000260 KLPRSS: ...CStorage::trans_end took 3.088877 ms (User: 15 ms, Kernel: 0 ms, FullLoad: 500 %) Wed Sep 01 2010 16:48:38.146 00000260 KLPRSS: Starting CStorage::trans_end... Wed Sep 01 2010 16:48:38.146 00000260 KLPRSS: ...CStorage::trans_end took 0.031139 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.146 00000260 HOOKAPI: Starting KLINSTFIX_Stop... Wed Sep 01 2010 16:48:38.146 00000260 HOOKAPI: ...KLINSTFIX_Stop took 0.029770 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.146 00000260 KLPRSS: Starting KLPRSS_Deinit... Wed Sep 01 2010 16:48:38.146 00000260 KLPRSS: ...KLPRSS_Deinit took 0.034903 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.146 00000260 KLSTD: KLSTD_CreateFile path - 'C:\Users\ADMINI~1\AppData\Local\Temp\2\kladminkit.lck' timeout - 0 creation flags - 0x3 Wed Sep 01 2010 16:48:38.146 00000260 KLSTD: Starting KLSTD_CreateFile... Wed Sep 01 2010 16:48:38.146 00000260 KLSTD: ...KLSTD_CreateFile took 0.175539 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) ============================================================================ ========== Trace Log File. Pid=2736. Closed - Wed Sep 01 2010 16:48:38.146 ============ ============================================================================ ============================================================================ ========== Trace Log File. Pid=2736. Started - Wed Sep 01 2010 16:48:38.177 =========== ============================================================================ System: Microsoft Windows NT Version: 6.1, 7600 Wed Sep 01 2010 16:48:38.177 00000260 KLSTD: Sync objects count: CS: 6 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.177 00000260 KLSTD: Sync objects count: CS: 7 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.177 00000260 KLSTD: Sync objects count: CS: 8 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.177 00000260 KLSTD: Sync objects count: CS: 9 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.177 00000260 KLSTD: Initializing default security descriptor for newly created threads (based on primary access token)... Wed Sep 01 2010 16:48:38.177 00000260 KLSTD: Default security descriptor for newly created threads initialized. Wed Sep 01 2010 16:48:38.177 00000260 KLSTD: Current host info: NetBIOS name: 'SVR-DMZ' Domain name: 'WORKGROUP' Domain type: 'workgroup' Wed Sep 01 2010 16:48:38.177 00000260 KLSTD: Default codepage: 1252, Default LCID: 1033, Default LangID: 1033 Wed Sep 01 2010 16:48:38.177 00000260 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\2\' Wed Sep 01 2010 16:48:38.177 00000260 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\2\e5dc6b06-f03a-4cf1-9cc2-129aa7c3a015' Wed Sep 01 2010 16:48:38.177 00000260 KLSTD: KLSTD_DeletePath('C:\Users\ADMINI~1\AppData\Local\Temp\2\e5dc6b06-f03a-4cf1-9cc2-129aa7c3a015') Wed Sep 01 2010 16:48:38.177 00000260 KLSTD: KLSTD_RemoveDirectory('C:\Users\ADMINI~1\AppData\Local\Temp\2\e5dc6b06-f03a-4cf1-9cc2-129aa7c3a015', 1) Wed Sep 01 2010 16:48:38.177 00000260 KLSTD: Sync objects count: CS: 10 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.177 00000260 KLPRSS: Starting KLPRSS_Init... Wed Sep 01 2010 16:48:38.177 00000260 KLPRSS: ...KLPRSS_Init took 1.502521 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.177 00000260 KLSTD: Sync objects count: CS: 11 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.177 00000260 HOOKAPI: Starting KLINSTFIX_Start... Wed Sep 01 2010 16:48:38.177 00000260 HOOKAPI: Starting WriteStub... Wed Sep 01 2010 16:48:38.177 00000260 HOOKAPI: Starting changing page protection into PAGE_READWRITE... Wed Sep 01 2010 16:48:38.177 00000260 HOOKAPI: ...changing page protection into PAGE_READWRITE took 0.038324 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.177 00000260 HOOKAPI: Starting modifying... Wed Sep 01 2010 16:48:38.177 00000260 HOOKAPI: ...modifying took 0.027375 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.177 00000260 HOOKAPI: Starting changing page protection into PAGE_EXECUTE_WRITECOPYy... Wed Sep 01 2010 16:48:38.177 00000260 HOOKAPI: ...changing page protection into PAGE_EXECUTE_WRITECOPYy took 0.035929 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.177 00000260 HOOKAPI: Starting FlushInstructionCache... Wed Sep 01 2010 16:48:38.177 00000260 HOOKAPI: ...FlushInstructionCache took 0.029428 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.177 00000260 HOOKAPI: ...WriteStub took 0.336707 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.177 00000260 HOOKAPI: ...KLINSTFIX_Start took 0.410618 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.177 00000260 KLSRVSWCH: processing LOC-PUB-6EEB50F8D2EB46029DB4CCB77E0DA651 Wed Sep 01 2010 16:48:38.177 00000260 STRG9X: Starting GetData_2K9x... Wed Sep 01 2010 16:48:38.177 00000260 STRG9X: szKey=LOC-PUB-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x2 Wed Sep 01 2010 16:48:38.177 00000260 STRG9X: ...GetData_2K9x took 0.082124 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.177 00000260 STRGNT: Starting GetData_Old... Wed Sep 01 2010 16:48:38.177 00000260 STRGNT: szKey=LOC-PUB-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x80004005 Wed Sep 01 2010 16:48:38.177 00000260 STRGNT: ...GetData_Old took 0.314465 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.192 00000260 KLERR: #1, Error was caught in module "KLSRVSWCH" in file "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp" on line 135. Error params: (1181/0x80004005 ("System error 0x80004005 (Unspecified error)"), "KLSTD", "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp", 115) Error loc: ''. Wed Sep 01 2010 16:48:38.192 00000260 KLSRVSWCH: processing LOC-PRV-6EEB50F8D2EB46029DB4CCB77E0DA651 Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: Starting GetData_2K9x... Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: szKey=LOC-PRV-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x2 Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: ...GetData_2K9x took 0.114631 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.192 00000260 STRGNT: Starting GetData_Old... Wed Sep 01 2010 16:48:38.192 00000260 STRGNT: szKey=LOC-PRV-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x80004005 Wed Sep 01 2010 16:48:38.192 00000260 STRGNT: ...GetData_Old took 0.262111 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.192 00000260 KLERR: #1, Error was caught in module "KLSRVSWCH" in file "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp" on line 135. Error params: (1181/0x80004005 ("System error 0x80004005 (Unspecified error)"), "KLSTD", "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp", 115) Error loc: ''. Wed Sep 01 2010 16:48:38.192 00000260 KLSRVSWCH: processing GLB-PUB-6EEB50F8D2EB46029DB4CCB77E0DA651 Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: Starting GetData_2K9x... Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: szKey=GLB-PUB-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x2 Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: ...GetData_2K9x took 0.083150 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.192 00000260 STRGNT: Starting GetData_Old... Wed Sep 01 2010 16:48:38.192 00000260 STRGNT: szKey=GLB-PUB-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x80004005 Wed Sep 01 2010 16:48:38.192 00000260 STRGNT: ...GetData_Old took 0.202572 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.192 00000260 KLERR: #1, Error was caught in module "KLSRVSWCH" in file "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp" on line 135. Error params: (1181/0x80004005 ("System error 0x80004005 (Unspecified error)"), "KLSTD", "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp", 115) Error loc: ''. Wed Sep 01 2010 16:48:38.192 00000260 KLSRVSWCH: processing GLB-PRV-6EEB50F8D2EB46029DB4CCB77E0DA651 Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: Starting GetData_2K9x... Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: szKey=GLB-PRV-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x2 Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: ...GetData_2K9x took 0.076991 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.192 00000260 STRGNT: Starting GetData_Old... Wed Sep 01 2010 16:48:38.192 00000260 STRGNT: szKey=GLB-PRV-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x80004005 Wed Sep 01 2010 16:48:38.192 00000260 STRGNT: ...GetData_Old took 0.198466 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.192 00000260 KLERR: #1, Error was caught in module "KLSRVSWCH" in file "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp" on line 135. Error params: (1181/0x80004005 ("System error 0x80004005 (Unspecified error)"), "KLSTD", "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp", 115) Error loc: ''. Wed Sep 01 2010 16:48:38.192 00000260 KLSRVSWCH: processing SRVR-PUB-6EEB50F8D2EB46029DB4CCB77E0DA651 Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: Starting GetData_2K9x... Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: szKey=SRVR-PUB-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x2 Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: ...GetData_2K9x took 0.080755 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.192 00000260 STRGNT: Starting GetData_Old... Wed Sep 01 2010 16:48:38.192 00000260 STRGNT: szKey=SRVR-PUB-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x80004005 Wed Sep 01 2010 16:48:38.192 00000260 STRGNT: ...GetData_Old took 0.199492 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.192 00000260 KLERR: #1, Error was caught in module "KLSRVSWCH" in file "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp" on line 135. Error params: (1181/0x80004005 ("System error 0x80004005 (Unspecified error)"), "KLSTD", "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp", 115) Error loc: ''. Wed Sep 01 2010 16:48:38.192 00000260 KLSRVSWCH: processing SRVR-PRV-6EEB50F8D2EB46029DB4CCB77E0DA651 Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: Starting GetData_2K9x... Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: szKey=SRVR-PRV-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x2 Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: ...GetData_2K9x took 0.075964 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.192 00000260 STRGNT: Starting GetData_Old... Wed Sep 01 2010 16:48:38.192 00000260 STRGNT: szKey=SRVR-PRV-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x80004005 Wed Sep 01 2010 16:48:38.192 00000260 STRGNT: ...GetData_Old took 0.198123 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.192 00000260 KLERR: #1, Error was caught in module "KLSRVSWCH" in file "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp" on line 135. Error params: (1181/0x80004005 ("System error 0x80004005 (Unspecified error)"), "KLSTD", "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp", 115) Error loc: ''. Wed Sep 01 2010 16:48:38.192 00000260 KLSRVSWCH: processing L$EE34595D-B89D-4e70-B9CB-178A7E8CEF45 Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: Starting GetData_2K9x... Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: szKey=L$EE34595D-B89D-4e70-B9CB-178A7E8CEF45, nResult=0x2 Wed Sep 01 2010 16:48:38.192 00000260 STRG9X: ...GetData_2K9x took 0.075280 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.224 00000260 KLERR: #1, Error was caught in module "KLSRVSWCH" in file "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp" on line 83. Error params: (1181/0xC0000034 ("System error 0xC0000034 (System error 3221225524 occured)"), "KLSTD", "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp", 79) Error loc: ''. Wed Sep 01 2010 16:48:38.224 00000260 KLERR: #1, Error was caught in module "KLSRVSWCH" in file "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp" on line 135. Error params: (1181/0xC0000034 ("System error 0xC0000034 (System error 3221225524 occured)"), "KLSTD", "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp", 79) Error loc: ''. Wed Sep 01 2010 16:48:38.224 00000260 KLSRVSWCH: processing L$EE34595D-B89D-4e70-B9CB-178A7E8CEF46 Wed Sep 01 2010 16:48:38.224 00000260 STRG9X: Starting GetData_2K9x... Wed Sep 01 2010 16:48:38.224 00000260 STRG9X: szKey=L$EE34595D-B89D-4e70-B9CB-178A7E8CEF46, nResult=0x2 Wed Sep 01 2010 16:48:38.224 00000260 STRG9X: ...GetData_2K9x took 0.083150 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.224 00000260 KLERR: #1, Error was caught in module "KLSRVSWCH" in file "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp" on line 83. Error params: (1181/0xC0000034 ("System error 0xC0000034 (System error 3221225524 occured)"), "KLSTD", "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp", 79) Error loc: ''. Wed Sep 01 2010 16:48:38.224 00000260 KLERR: #1, Error was caught in module "KLSRVSWCH" in file "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp" on line 135. Error params: (1181/0xC0000034 ("System error 0xC0000034 (System error 3221225524 occured)"), "KLSTD", "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp", 79) Error loc: ''. Wed Sep 01 2010 16:48:38.224 00000260 KLSRVSWCH: processing MASTER-PRV-25A13042F52348f08E3673B483467AF2 Wed Sep 01 2010 16:48:38.224 00000260 STRG9X: Starting GetData_2K9x... Wed Sep 01 2010 16:48:38.224 00000260 STRG9X: szKey=MASTER-PRV-25A13042F52348f08E3673B483467AF2, nResult=0x2 Wed Sep 01 2010 16:48:38.224 00000260 STRG9X: ...GetData_2K9x took 0.078702 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.224 00000260 STRGNT: Starting GetData_Old... Wed Sep 01 2010 16:48:38.224 00000260 STRGNT: szKey=MASTER-PRV-25A13042F52348f08E3673B483467AF2, nResult=0x80004005 Wed Sep 01 2010 16:48:38.224 00000260 STRGNT: ...GetData_Old took 0.206336 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.224 00000260 KLERR: #1, Error was caught in module "KLSRVSWCH" in file "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp" on line 135. Error params: (1181/0x80004005 ("System error 0x80004005 (Unspecified error)"), "KLSTD", "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp", 115) Error loc: ''. Wed Sep 01 2010 16:48:38.224 00000260 KLSRVSWCH: processing MASTER-PUB-25A13042F52348f08E3673B483467AF2 Wed Sep 01 2010 16:48:38.224 00000260 STRG9X: Starting GetData_2K9x... Wed Sep 01 2010 16:48:38.224 00000260 STRG9X: szKey=MASTER-PUB-25A13042F52348f08E3673B483467AF2, nResult=0x2 Wed Sep 01 2010 16:48:38.224 00000260 STRG9X: ...GetData_2K9x took 0.076649 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.224 00000260 STRGNT: Starting GetData_Old... Wed Sep 01 2010 16:48:38.224 00000260 STRGNT: szKey=MASTER-PUB-25A13042F52348f08E3673B483467AF2, nResult=0x80004005 Wed Sep 01 2010 16:48:38.224 00000260 STRGNT: ...GetData_Old took 0.194702 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.224 00000260 KLERR: #1, Error was caught in module "KLSRVSWCH" in file "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp" on line 135. Error params: (1181/0x80004005 ("System error 0x80004005 (Unspecified error)"), "KLSTD", "O:\CS AdminKit\development2\apps\klsrvswch\srv_switch_secrets.cpp", 115) Error loc: ''. Wed Sep 01 2010 16:48:38.224 00000260 HOOKAPI: Starting KLINSTFIX_Stop... Wed Sep 01 2010 16:48:38.224 00000260 HOOKAPI: ...KLINSTFIX_Stop took 0.052696 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.224 00000260 KLPRSS: Starting KLPRSS_Deinit... Wed Sep 01 2010 16:48:38.224 00000260 KLPRSS: ...KLPRSS_Deinit took 0.035929 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.224 00000260 KLSTD: KLSTD_CreateFile path - 'C:\Users\ADMINI~1\AppData\Local\Temp\2\kladminkit.lck' timeout - 0 creation flags - 0x3 Wed Sep 01 2010 16:48:38.224 00000260 KLSTD: Starting KLSTD_CreateFile... Wed Sep 01 2010 16:48:38.224 00000260 KLSTD: ...KLSTD_CreateFile took 0.201545 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) ============================================================================ ========== Trace Log File. Pid=2736. Closed - Wed Sep 01 2010 16:48:38.224 ============ ============================================================================ ============================================================================ ========== Trace Log File. Pid=2736. Started - Wed Sep 01 2010 16:48:38.255 =========== ============================================================================ System: Microsoft Windows NT Version: 6.1, 7600 Wed Sep 01 2010 16:48:38.255 00000260 KLSTD: Sync objects count: CS: 6 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.255 00000260 KLSTD: Sync objects count: CS: 7 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.255 00000260 KLSTD: Sync objects count: CS: 8 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.255 00000260 KLSTD: Sync objects count: CS: 9 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.255 00000260 KLSTD: Initializing default security descriptor for newly created threads (based on primary access token)... Wed Sep 01 2010 16:48:38.255 00000260 KLSTD: Default security descriptor for newly created threads initialized. Wed Sep 01 2010 16:48:38.255 00000260 KLSTD: Current host info: NetBIOS name: 'SVR-DMZ' Domain name: 'WORKGROUP' Domain type: 'workgroup' Wed Sep 01 2010 16:48:38.255 00000260 KLSTD: Default codepage: 1252, Default LCID: 1033, Default LangID: 1033 Wed Sep 01 2010 16:48:38.255 00000260 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\2\' Wed Sep 01 2010 16:48:38.255 00000260 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\2\69711564-1e0a-4d4c-8968-6a0002b67400' Wed Sep 01 2010 16:48:38.255 00000260 KLSTD: KLSTD_DeletePath('C:\Users\ADMINI~1\AppData\Local\Temp\2\69711564-1e0a-4d4c-8968-6a0002b67400') Wed Sep 01 2010 16:48:38.255 00000260 KLSTD: KLSTD_RemoveDirectory('C:\Users\ADMINI~1\AppData\Local\Temp\2\69711564-1e0a-4d4c-8968-6a0002b67400', 1) Wed Sep 01 2010 16:48:38.255 00000260 KLSTD: Sync objects count: CS: 10 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.255 00000260 KLPRSS: Starting KLPRSS_Init... Wed Sep 01 2010 16:48:38.255 00000260 KLPRSS: ...KLPRSS_Init took 1.484044 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.255 00000260 KLSTD: Sync objects count: CS: 11 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.255 00000260 HOOKAPI: Starting KLINSTFIX_Start... Wed Sep 01 2010 16:48:38.255 00000260 HOOKAPI: Starting WriteStub... Wed Sep 01 2010 16:48:38.255 00000260 HOOKAPI: Starting changing page protection into PAGE_READWRITE... Wed Sep 01 2010 16:48:38.255 00000260 HOOKAPI: ...changing page protection into PAGE_READWRITE took 0.038324 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.255 00000260 HOOKAPI: Starting modifying... Wed Sep 01 2010 16:48:38.255 00000260 HOOKAPI: ...modifying took 0.027717 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.255 00000260 HOOKAPI: Starting changing page protection into PAGE_EXECUTE_WRITECOPYy... Wed Sep 01 2010 16:48:38.255 00000260 HOOKAPI: ...changing page protection into PAGE_EXECUTE_WRITECOPYy took 0.036271 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.255 00000260 HOOKAPI: Starting FlushInstructionCache... Wed Sep 01 2010 16:48:38.255 00000260 HOOKAPI: ...FlushInstructionCache took 0.029428 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.255 00000260 HOOKAPI: ...WriteStub took 0.337734 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.255 00000260 HOOKAPI: ...KLINSTFIX_Start took 0.412672 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.270 00000260 KLNAPUTILS: RegisterNAPSha starting ... Wed Sep 01 2010 16:48:38.270 00000260 KLNAPUTILS: IsNapPlatform called Wed Sep 01 2010 16:48:38.270 00000260 KLNAPUTILS: IsNapPlatform - dwMajorVersion = 6, dwMinorVersion = 1, szCSDVersion = Wed Sep 01 2010 16:48:38.364 00000260 KLNAPUTILS: RegisterNAPSha: Sha registration with NapAgent returned SUCCESS Wed Sep 01 2010 16:48:38.364 00000260 HOOKAPI: Starting KLINSTFIX_Stop... Wed Sep 01 2010 16:48:38.364 00000260 HOOKAPI: ...KLINSTFIX_Stop took 0.043115 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.364 00000260 KLPRSS: Starting KLPRSS_Deinit... Wed Sep 01 2010 16:48:38.364 00000260 KLPRSS: ...KLPRSS_Deinit took 0.037640 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.364 00000260 KLSTD: KLSTD_CreateFile path - 'C:\Users\ADMINI~1\AppData\Local\Temp\2\kladminkit.lck' timeout - 0 creation flags - 0x3 Wed Sep 01 2010 16:48:38.364 00000260 KLSTD: Starting KLSTD_CreateFile... Wed Sep 01 2010 16:48:38.364 00000260 KLSTD: ...KLSTD_CreateFile took 0.095127 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) ============================================================================ ========== Trace Log File. Pid=2736. Closed - Wed Sep 01 2010 16:48:38.364 ============ ============================================================================ ============================================================================ ========== Trace Log File. Pid=2736. Started - Wed Sep 01 2010 16:48:38.473 =========== ============================================================================ System: Microsoft Windows NT Version: 6.1, 7600 Wed Sep 01 2010 16:48:38.473 00000260 KLSTD: Sync objects count: CS: 6 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.473 00000260 KLSTD: Sync objects count: CS: 7 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.473 00000260 KLSTD: Sync objects count: CS: 8 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.473 00000260 KLSTD: Sync objects count: CS: 9 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.473 00000260 KLSTD: Initializing default security descriptor for newly created threads (based on primary access token)... Wed Sep 01 2010 16:48:38.473 00000260 KLSTD: Default security descriptor for newly created threads initialized. Wed Sep 01 2010 16:48:38.473 00000260 KLSTD: Current host info: NetBIOS name: 'SVR-DMZ' Domain name: 'WORKGROUP' Domain type: 'workgroup' Wed Sep 01 2010 16:48:38.473 00000260 KLSTD: Default codepage: 1252, Default LCID: 1033, Default LangID: 1033 Wed Sep 01 2010 16:48:38.473 00000260 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\2\' Wed Sep 01 2010 16:48:38.473 00000260 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\2\c474a6a9-badf-4a78-85be-9dbd0ed78dea' Wed Sep 01 2010 16:48:38.473 00000260 KLSTD: KLSTD_DeletePath('C:\Users\ADMINI~1\AppData\Local\Temp\2\c474a6a9-badf-4a78-85be-9dbd0ed78dea') Wed Sep 01 2010 16:48:38.473 00000260 KLSTD: KLSTD_RemoveDirectory('C:\Users\ADMINI~1\AppData\Local\Temp\2\c474a6a9-badf-4a78-85be-9dbd0ed78dea', 1) Wed Sep 01 2010 16:48:38.473 00000260 KLSTD: Sync objects count: CS: 10 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.473 00000260 KLPRSS: Starting KLPRSS_Init... Wed Sep 01 2010 16:48:38.473 00000260 KLPRSS: ...KLPRSS_Init took 1.501153 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.473 00000260 KLSTD: Sync objects count: CS: 11 Sem: 0 RWL: 0 Wed Sep 01 2010 16:48:38.473 00000260 HOOKAPI: Starting KLINSTFIX_Start... Wed Sep 01 2010 16:48:38.473 00000260 HOOKAPI: Starting WriteStub... Wed Sep 01 2010 16:48:38.473 00000260 HOOKAPI: Starting changing page protection into PAGE_READWRITE... Wed Sep 01 2010 16:48:38.473 00000260 HOOKAPI: ...changing page protection into PAGE_READWRITE took 0.037982 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.473 00000260 HOOKAPI: Starting modifying... Wed Sep 01 2010 16:48:38.473 00000260 HOOKAPI: ...modifying took 0.027717 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.473 00000260 HOOKAPI: Starting changing page protection into PAGE_EXECUTE_WRITECOPYy... Wed Sep 01 2010 16:48:38.473 00000260 HOOKAPI: ...changing page protection into PAGE_EXECUTE_WRITECOPYy took 0.036271 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.473 00000260 HOOKAPI: Starting FlushInstructionCache... Wed Sep 01 2010 16:48:38.473 00000260 HOOKAPI: ...FlushInstructionCache took 0.029428 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.473 00000260 HOOKAPI: ...WriteStub took 0.336707 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.473 00000260 HOOKAPI: ...KLINSTFIX_Start took 0.411303 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.473 00000260 STRG9X: Starting GetData_2K9x... Wed Sep 01 2010 16:48:38.473 00000260 STRG9X: szKey=LOC-PUB-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x2 Wed Sep 01 2010 16:48:38.473 00000260 STRG9X: ...GetData_2K9x took 0.080755 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.473 00000260 STRGNT: Starting GetData_Old... Wed Sep 01 2010 16:48:38.473 00000260 STRGNT: szKey=LOC-PUB-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x80004005 Wed Sep 01 2010 16:48:38.473 00000260 STRGNT: ...GetData_Old took 0.278536 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.692 00000260 STRGNT: Starting PutData_Old... Wed Sep 01 2010 16:48:38.692 00000260 STRGNT: szKey=LOC-PUB-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x0 Wed Sep 01 2010 16:48:38.692 00000260 STRGNT: ...PutData_Old took 5.287739 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.692 00000260 STRG9X: Starting PutData_2K9x... Wed Sep 01 2010 16:48:38.707 00000260 KLERR: #1, Error was caught in module "KLSRVSWCH" in file "O:\CS AdminKit\development2\std\win32\srv_switch_acls.cpp" on line 458. Error params: (1181/0x534 ("System error 0x534 (No mapping between account names and security IDs was done.)"), "KLSTD", "O:\CS AdminKit\development2\std\win32\srv_switch_acls.cpp", 185) Error loc: ''. Wed Sep 01 2010 16:48:38.707 00000260 KLSRVSWCH: Processing container 'LOC-PUB-6EEB50F8D2EB46029DB4CCB77E0DA651' Wed Sep 01 2010 16:48:38.770 00000260 STRG9X: szKey=LOC-PUB-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x0 Wed Sep 01 2010 16:48:38.770 00000260 STRG9X: ...PutData_2K9x took 75.952096 ms (User: 15 ms, Kernel: 15 ms, FullLoad: 40 %) Wed Sep 01 2010 16:48:38.770 00000260 STRGNT: Starting PutData_Old... Wed Sep 01 2010 16:48:38.785 00000260 STRGNT: szKey=LOC-PRV-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x0 Wed Sep 01 2010 16:48:38.785 00000260 STRGNT: ...PutData_Old took 4.664626 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.785 00000260 STRG9X: Starting PutData_2K9x... Wed Sep 01 2010 16:48:38.785 00000260 KLERR: #1, Error was caught in module "KLSRVSWCH" in file "O:\CS AdminKit\development2\std\win32\srv_switch_acls.cpp" on line 458. Error params: (1181/0x534 ("System error 0x534 (No mapping between account names and security IDs was done.)"), "KLSTD", "O:\CS AdminKit\development2\std\win32\srv_switch_acls.cpp", 185) Error loc: ''. Wed Sep 01 2010 16:48:38.785 00000260 KLSRVSWCH: Processing container 'LOC-PRV-6EEB50F8D2EB46029DB4CCB77E0DA651' Wed Sep 01 2010 16:48:38.785 00000260 STRG9X: szKey=LOC-PRV-6EEB50F8D2EB46029DB4CCB77E0DA651, nResult=0x0 Wed Sep 01 2010 16:48:38.785 00000260 STRG9X: ...PutData_2K9x took 11.912384 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.801 00000260 HOOKAPI: Starting KLINSTFIX_Stop... Wed Sep 01 2010 16:48:38.801 00000260 HOOKAPI: ...KLINSTFIX_Stop took 0.044826 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.801 00000260 KLPRSS: Starting KLPRSS_Deinit... Wed Sep 01 2010 16:48:38.801 00000260 KLPRSS: ...KLPRSS_Deinit took 0.036613 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Wed Sep 01 2010 16:48:38.801 00000260 KLSTD: KLSTD_CreateFile path - 'C:\Users\ADMINI~1\AppData\Local\Temp\2\kladminkit.lck' timeout - 0 creation flags - 0x3 Wed Sep 01 2010 16:48:38.801 00000260 KLSTD: Starting KLSTD_CreateFile... Wed Sep 01 2010 16:48:38.801 00000260 KLSTD: ...KLSTD_CreateFile took 0.091020 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) ============================================================================ ========== Trace Log File. Pid=2736. Closed - Wed Sep 01 2010 16:48:38.801 ============ ============================================================================ ============================================================================ ========== Trace Log File. Pid=1148. Started - Tue Nov 01 2011 13:27:14.890 =========== ============================================================================ System: Microsoft Windows NT Version: 6.1, 7600 Tue Nov 01 2011 13:27:14.890 00000AE0 KLSTD: Sync objects count: CS: 6 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:14.890 00000AE0 KLSTD: Sync objects count: CS: 7 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:14.890 00000AE0 KLSTD: Sync objects count: CS: 8 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:14.890 00000AE0 KLSTD: Sync objects count: CS: 9 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:14.890 00000AE0 KLSTD: Initializing default security descriptor for newly created threads (based on primary access token)... Tue Nov 01 2011 13:27:14.890 00000AE0 KLSTD: Default security descriptor for newly created threads initialized. Tue Nov 01 2011 13:27:14.890 00000AE0 KLSTD: Current host info: NetBIOS name: 'SVR-DMZ' Domain name: 'WORKGROUP' Domain type: 'workgroup' Tue Nov 01 2011 13:27:14.890 00000AE0 KLSTD: Default codepage: 1252, Default LCID: 1033, Default LangID: 1033 Tue Nov 01 2011 13:27:14.890 00000AE0 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\' Tue Nov 01 2011 13:27:14.890 00000AE0 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\f5bae48a-593c-4b1e-9bf4-d09d93e95875' Tue Nov 01 2011 13:27:14.906 00000AE0 KLSTD: KLSTD_DeletePath('C:\Users\ADMINI~1\AppData\Local\Temp\1\f5bae48a-593c-4b1e-9bf4-d09d93e95875') Tue Nov 01 2011 13:27:14.906 00000AE0 KLSTD: KLSTD_RemoveDirectory('C:\Users\ADMINI~1\AppData\Local\Temp\1\f5bae48a-593c-4b1e-9bf4-d09d93e95875', 1) Tue Nov 01 2011 13:27:14.906 00000AE0 KLSTD: Sync objects count: CS: 10 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:14.906 00000AE0 KLPRSS: Starting KLPRSS_Init... Tue Nov 01 2011 13:27:14.906 00000AE0 KLPRSS: ...KLPRSS_Init took 7.654270 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.906 00000AE0 KLSTD: Sync objects count: CS: 11 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:14.906 00000AE0 HOOKAPI: Starting KLINSTFIX_Start... Tue Nov 01 2011 13:27:14.906 00000AE0 HOOKAPI: Starting WriteStub... Tue Nov 01 2011 13:27:14.906 00000AE0 HOOKAPI: Starting changing page protection into PAGE_READWRITE... Tue Nov 01 2011 13:27:14.906 00000AE0 HOOKAPI: ...changing page protection into PAGE_READWRITE took 0.040035 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.906 00000AE0 HOOKAPI: Starting modifying... Tue Nov 01 2011 13:27:14.906 00000AE0 HOOKAPI: ...modifying took 0.032507 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.906 00000AE0 HOOKAPI: Starting changing page protection into PAGE_EXECUTE_WRITECOPYy... Tue Nov 01 2011 13:27:14.906 00000AE0 HOOKAPI: ...changing page protection into PAGE_EXECUTE_WRITECOPYy took 0.036613 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.906 00000AE0 HOOKAPI: Starting FlushInstructionCache... Tue Nov 01 2011 13:27:14.906 00000AE0 HOOKAPI: ...FlushInstructionCache took 0.031481 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.906 00000AE0 HOOKAPI: ...WriteStub took 0.352790 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.906 00000AE0 HOOKAPI: ...KLINSTFIX_Start took 0.429096 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.906 00000AE0 KLPRSS: Starting CStorage::trans_begin... Tue Nov 01 2011 13:27:14.906 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:14.906 00000AE0 KLPRSS: ...CStorage::trans_end took 0.030112 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.906 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Kaspersky Lab\NetworkAgent 8\Data\policy.lck' timeout - 180000 creation flags - 0x3 Tue Nov 01 2011 13:27:14.906 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:14.906 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.125239 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.906 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Kaspersky Lab\NetworkAgent 8\Data\policy.dat' timeout - 180000 creation flags - 0x1 Tue Nov 01 2011 13:27:14.906 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:14.906 00000AE0 KLSTD: Win32 error 0x2 while opening file 'C:\Program Files (x86)\Kaspersky Lab\NetworkAgent 8\Data\policy.dat' Tue Nov 01 2011 13:27:14.906 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.319598 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.906 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:14.906 00000AE0 KLPRSS: ...CStorage::trans_end took 0.079728 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.906 00000AE0 KLPRSS: ...CStorage::trans_begin took 0.938263 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.906 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:14.906 00000AE0 KLPRSS: ...CStorage::trans_end took 0.028743 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.906 00000AE0 KLERR: #1, Error was caught in module "SSINST" in file "O:\CS AdminKit\development2\inst_libs\ssinst\klssinst.cpp" on line 215. Error params: (1186/0x0 ("The system cannot find the file specified."), "KLSTD", "O:\CS AdminKit\development2\std\io\klio.cpp", 849) Error loc: 'Error 1186/0x0 ('The system cannot find the file specified.') occured while opening file 'C:\Program Files (x86)\Kaspersky Lab\NetworkAgent 8\Data\policy.dat''. Tue Nov 01 2011 13:27:14.906 00000AE0 KLPRSS: Starting CStorage::trans_begin... Tue Nov 01 2011 13:27:14.906 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:14.906 00000AE0 KLPRSS: ...CStorage::trans_end took 0.030454 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.906 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_SETTINGS.lck' timeout - 180000 creation flags - 0x3 Tue Nov 01 2011 13:27:14.906 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:14.906 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.120448 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.906 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_SETTINGS.xml' timeout - 180000 creation flags - 0x1 Tue Nov 01 2011 13:27:14.906 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:14.906 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.097180 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.922 00000AE0 KLPRSS: ...CStorage::trans_begin took 0.971113 ms (User: 15 ms, Kernel: 0 ms, FullLoad: 1500 %) Tue Nov 01 2011 13:27:14.922 00000AE0 KLERR: #1, Error was caught in module "SSINST" in file "O:\CS AdminKit\development2\inst_libs\ssinst\SsData.cpp" on line 282. Error params: (1125/0x0 ("Parameter with name "NGTINSTALLERDATA" not exist."), "KLPRSS", "O:\CS AdminKit\development2\kca\prss\store.cpp", 1182) Error loc: ''. Tue Nov 01 2011 13:27:14.922 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:14.922 00000AE0 KLPRSS: ...CStorage::trans_end took 0.106076 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.922 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:14.922 00000AE0 KLPRSS: ...CStorage::trans_end took 0.031139 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.922 00000AE0 KLERR: #1, Error was caught in module "SSINST" in file "O:\CS AdminKit\development2\inst_libs\ssinst\klssinst.cpp" on line 215. Error params: (1125/0x0 ("Parameter with name "NGTINSTALLERDATA" not exist."), "KLPRSS", "O:\CS AdminKit\development2\kca\prss\store.cpp", 1182) Error loc: ''. Tue Nov 01 2011 13:27:14.922 00000AE0 HOOKAPI: Starting KLINSTFIX_Stop... Tue Nov 01 2011 13:27:14.922 00000AE0 HOOKAPI: ...KLINSTFIX_Stop took 0.051327 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.922 00000AE0 KLPRSS: Starting KLPRSS_Deinit... Tue Nov 01 2011 13:27:14.922 00000AE0 KLPRSS: ...KLPRSS_Deinit took 0.052354 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:14.922 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\kladminkit.lck' timeout - 0 creation flags - 0x3 Tue Nov 01 2011 13:27:14.922 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:14.922 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.221050 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) ============================================================================ ========== Trace Log File. Pid=1148. Closed - Tue Nov 01 2011 13:27:14.922 ============ ============================================================================ ============================================================================ ========== Trace Log File. Pid=1148. Started - Tue Nov 01 2011 13:27:17.184 =========== ============================================================================ System: Microsoft Windows NT Version: 6.1, 7600 Tue Nov 01 2011 13:27:17.184 00000AE0 KLSTD: Sync objects count: CS: 6 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:17.184 00000AE0 KLSTD: Sync objects count: CS: 7 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:17.184 00000AE0 KLSTD: Sync objects count: CS: 8 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:17.184 00000AE0 KLSTD: Sync objects count: CS: 9 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:17.184 00000AE0 KLSTD: Initializing default security descriptor for newly created threads (based on primary access token)... Tue Nov 01 2011 13:27:17.184 00000AE0 KLSTD: Default security descriptor for newly created threads initialized. Tue Nov 01 2011 13:27:17.184 00000AE0 KLSTD: Current host info: NetBIOS name: 'SVR-DMZ' Domain name: 'WORKGROUP' Domain type: 'workgroup' Tue Nov 01 2011 13:27:17.184 00000AE0 KLSTD: Default codepage: 1252, Default LCID: 1033, Default LangID: 1033 Tue Nov 01 2011 13:27:17.184 00000AE0 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\' Tue Nov 01 2011 13:27:17.184 00000AE0 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\62bce9a7-c7dc-4487-94b7-e513321940be' Tue Nov 01 2011 13:27:17.184 00000AE0 KLSTD: KLSTD_DeletePath('C:\Users\ADMINI~1\AppData\Local\Temp\1\62bce9a7-c7dc-4487-94b7-e513321940be') Tue Nov 01 2011 13:27:17.184 00000AE0 KLSTD: KLSTD_RemoveDirectory('C:\Users\ADMINI~1\AppData\Local\Temp\1\62bce9a7-c7dc-4487-94b7-e513321940be', 1) Tue Nov 01 2011 13:27:17.184 00000AE0 KLSTD: Sync objects count: CS: 10 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:17.184 00000AE0 KLPRSS: Starting KLPRSS_Init... Tue Nov 01 2011 13:27:17.184 00000AE0 KLPRSS: ...KLPRSS_Init took 1.407053 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:17.184 00000AE0 KLSTD: Sync objects count: CS: 11 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:17.184 00000AE0 HOOKAPI: Starting KLINSTFIX_Start... Tue Nov 01 2011 13:27:17.184 00000AE0 HOOKAPI: Starting WriteStub... Tue Nov 01 2011 13:27:17.184 00000AE0 HOOKAPI: Starting changing page protection into PAGE_READWRITE... Tue Nov 01 2011 13:27:17.184 00000AE0 HOOKAPI: ...changing page protection into PAGE_READWRITE took 0.039009 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:17.184 00000AE0 HOOKAPI: Starting modifying... Tue Nov 01 2011 13:27:17.184 00000AE0 HOOKAPI: ...modifying took 0.027717 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:17.184 00000AE0 HOOKAPI: Starting changing page protection into PAGE_EXECUTE_WRITECOPYy... Tue Nov 01 2011 13:27:17.184 00000AE0 HOOKAPI: ...changing page protection into PAGE_EXECUTE_WRITECOPYy took 0.035929 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:17.184 00000AE0 HOOKAPI: Starting FlushInstructionCache... Tue Nov 01 2011 13:27:17.184 00000AE0 HOOKAPI: ...FlushInstructionCache took 0.029770 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:17.184 00000AE0 HOOKAPI: ...WriteStub took 0.343209 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:17.184 00000AE0 HOOKAPI: ...KLINSTFIX_Start took 0.418831 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:17.184 00000AE0 KLNAG_WFW: Starting KLNAG_DoClearAllFirewallPorts... Tue Nov 01 2011 13:27:17.184 00000AE0 KLNAG_WFW: Windows 6.1 SP 0.0 found Tue Nov 01 2011 13:27:17.184 00000AE0 KLNAG_WFW: ProductType is 3 Tue Nov 01 2011 13:27:17.184 00000AE0 KLNAG_WFW: Starting SetFirewallPortsNewInterface... Tue Nov 01 2011 13:27:17.199 00000AE0 KLNAG_WFW: Processing profile 0... Tue Nov 01 2011 13:27:17.199 00000AE0 KLNAG_WFW: Starting SetFirewallPortsNewInterface_FillExisting... Tue Nov 01 2011 13:27:17.199 00000AE0 KLNAG_WFW: Ignoring port 'Extranet' Tue Nov 01 2011 13:27:17.215 00000AE0 KLNAG_WFW: Found port 15000, proto=17, Enabled=1 Tue Nov 01 2011 13:27:17.215 00000AE0 KLNAG_WFW: ...SetFirewallPortsNewInterface_FillExisting took 10.791053 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:17.215 00000AE0 KLNAG_WFW: Starting SetFirewallPortsNewInterface_FillNew... Tue Nov 01 2011 13:27:17.215 00000AE0 KLNAG_WFW: ...SetFirewallPortsNewInterface_FillNew took 0.041062 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:17.215 00000AE0 KLNAG_WFW: Synchronizing... Tue Nov 01 2011 13:27:17.215 00000AE0 KLNAG_WFW: Removing port 15000, proto=17... Tue Nov 01 2011 13:27:17.230 00000AE0 KLNAG_WFW: ...OK removing port 15000, proto=17 Tue Nov 01 2011 13:27:17.230 00000AE0 KLNAG_WFW: ... OK synchronizing Tue Nov 01 2011 13:27:17.230 00000AE0 KLNAG_WFW: ...OK processing profile 0 Tue Nov 01 2011 13:27:17.230 00000AE0 KLNAG_WFW: Processing profile 1... Tue Nov 01 2011 13:27:17.230 00000AE0 KLNAG_WFW: Starting SetFirewallPortsNewInterface_FillExisting... Tue Nov 01 2011 13:27:17.246 00000AE0 KLNAG_WFW: Ignoring port 'Extranet' Tue Nov 01 2011 13:27:17.246 00000AE0 KLNAG_WFW: Found port 15000, proto=17, Enabled=1 Tue Nov 01 2011 13:27:17.246 00000AE0 KLNAG_WFW: ...SetFirewallPortsNewInterface_FillExisting took 11.858319 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:17.246 00000AE0 KLNAG_WFW: Starting SetFirewallPortsNewInterface_FillNew... Tue Nov 01 2011 13:27:17.246 00000AE0 KLNAG_WFW: ...SetFirewallPortsNewInterface_FillNew took 0.034560 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:17.246 00000AE0 KLNAG_WFW: Synchronizing... Tue Nov 01 2011 13:27:17.246 00000AE0 KLNAG_WFW: Removing port 15000, proto=17... Tue Nov 01 2011 13:27:17.246 00000AE0 KLNAG_WFW: ...OK removing port 15000, proto=17 Tue Nov 01 2011 13:27:17.246 00000AE0 KLNAG_WFW: ... OK synchronizing Tue Nov 01 2011 13:27:17.246 00000AE0 KLNAG_WFW: ...OK processing profile 1 Tue Nov 01 2011 13:27:17.246 00000AE0 KLNAG_WFW: Processing profile 2... Tue Nov 01 2011 13:27:17.246 00000AE0 KLNAG_WFW: Starting SetFirewallPortsNewInterface_FillExisting... Tue Nov 01 2011 13:27:17.262 00000AE0 KLNAG_WFW: Ignoring port 'Extranet' Tue Nov 01 2011 13:27:17.262 00000AE0 KLNAG_WFW: Found port 15000, proto=17, Enabled=1 Tue Nov 01 2011 13:27:17.262 00000AE0 KLNAG_WFW: ...SetFirewallPortsNewInterface_FillExisting took 10.240482 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:17.262 00000AE0 KLNAG_WFW: Starting SetFirewallPortsNewInterface_FillNew... Tue Nov 01 2011 13:27:17.262 00000AE0 KLNAG_WFW: ...SetFirewallPortsNewInterface_FillNew took 0.034560 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:17.262 00000AE0 KLNAG_WFW: Synchronizing... Tue Nov 01 2011 13:27:17.262 00000AE0 KLNAG_WFW: Removing port 15000, proto=17... Tue Nov 01 2011 13:27:17.262 00000AE0 KLNAG_WFW: ...OK removing port 15000, proto=17 Tue Nov 01 2011 13:27:17.262 00000AE0 KLNAG_WFW: ... OK synchronizing Tue Nov 01 2011 13:27:17.262 00000AE0 KLNAG_WFW: ...OK processing profile 2 Tue Nov 01 2011 13:27:17.262 00000AE0 KLNAG_WFW: ...SetFirewallPortsNewInterface took 81.883822 ms (User: 15 ms, Kernel: 0 ms, FullLoad: 18 %) Tue Nov 01 2011 13:27:17.262 00000AE0 KLNAG_WFW: ...KLNAG_DoClearAllFirewallPorts took 82.036435 ms (User: 15 ms, Kernel: 0 ms, FullLoad: 18 %) Tue Nov 01 2011 13:27:53.766 00000AE0 HOOKAPI: Starting KLINSTFIX_Stop... Tue Nov 01 2011 13:27:53.766 00000AE0 HOOKAPI: ...KLINSTFIX_Stop took 0.055433 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:53.766 00000AE0 KLPRSS: Starting KLPRSS_Deinit... Tue Nov 01 2011 13:27:53.766 00000AE0 KLPRSS: ...KLPRSS_Deinit took 0.039351 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:53.766 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\kladminkit.lck' timeout - 0 creation flags - 0x3 Tue Nov 01 2011 13:27:53.766 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:53.766 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.172118 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) ============================================================================ ========== Trace Log File. Pid=1148. Closed - Tue Nov 01 2011 13:27:53.766 ============ ============================================================================ ============================================================================ ========== Trace Log File. Pid=1148. Started - Tue Nov 01 2011 13:27:57.416 =========== ============================================================================ System: Microsoft Windows NT Version: 6.1, 7600 Tue Nov 01 2011 13:27:57.416 00000AE0 KLSTD: Sync objects count: CS: 6 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:57.416 00000AE0 KLSTD: Sync objects count: CS: 7 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:57.416 00000AE0 KLSTD: Sync objects count: CS: 8 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:57.416 00000AE0 KLSTD: Sync objects count: CS: 9 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:57.416 00000AE0 KLSTD: Initializing default security descriptor for newly created threads (based on primary access token)... Tue Nov 01 2011 13:27:57.416 00000AE0 KLSTD: Default security descriptor for newly created threads initialized. Tue Nov 01 2011 13:27:57.416 00000AE0 KLSTD: Current host info: NetBIOS name: 'SVR-DMZ' Domain name: 'WORKGROUP' Domain type: 'workgroup' Tue Nov 01 2011 13:27:57.416 00000AE0 KLSTD: Default codepage: 1252, Default LCID: 1033, Default LangID: 1033 Tue Nov 01 2011 13:27:57.416 00000AE0 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\' Tue Nov 01 2011 13:27:57.416 00000AE0 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\5a7a1d73-e312-4507-97b9-1eaad4623059' Tue Nov 01 2011 13:27:57.416 00000AE0 KLSTD: KLSTD_DeletePath('C:\Users\ADMINI~1\AppData\Local\Temp\1\5a7a1d73-e312-4507-97b9-1eaad4623059') Tue Nov 01 2011 13:27:57.416 00000AE0 KLSTD: KLSTD_RemoveDirectory('C:\Users\ADMINI~1\AppData\Local\Temp\1\5a7a1d73-e312-4507-97b9-1eaad4623059', 1) Tue Nov 01 2011 13:27:57.416 00000AE0 KLSTD: Sync objects count: CS: 10 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:57.416 00000AE0 KLPRSS: Starting KLPRSS_Init... Tue Nov 01 2011 13:27:57.416 00000AE0 KLPRSS: ...KLPRSS_Init took 1.371466 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:57.416 00000AE0 KLSTD: Sync objects count: CS: 11 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:57.416 00000AE0 HOOKAPI: Starting KLINSTFIX_Start... Tue Nov 01 2011 13:27:57.416 00000AE0 HOOKAPI: Starting WriteStub... Tue Nov 01 2011 13:27:57.416 00000AE0 HOOKAPI: Starting changing page protection into PAGE_READWRITE... Tue Nov 01 2011 13:27:57.416 00000AE0 HOOKAPI: ...changing page protection into PAGE_READWRITE took 0.039351 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:57.416 00000AE0 HOOKAPI: Starting modifying... Tue Nov 01 2011 13:27:57.416 00000AE0 HOOKAPI: ...modifying took 0.029770 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:57.416 00000AE0 HOOKAPI: Starting changing page protection into PAGE_EXECUTE_WRITECOPYy... Tue Nov 01 2011 13:27:57.416 00000AE0 HOOKAPI: ...changing page protection into PAGE_EXECUTE_WRITECOPYy took 0.036271 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:57.416 00000AE0 HOOKAPI: Starting FlushInstructionCache... Tue Nov 01 2011 13:27:57.416 00000AE0 HOOKAPI: ...FlushInstructionCache took 0.029428 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:57.416 00000AE0 HOOKAPI: ...WriteStub took 0.343209 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:57.416 00000AE0 HOOKAPI: ...KLINSTFIX_Start took 0.419173 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:57.416 00000AE0 KLNAPUTILS: RegisterNAPSha starting ... Tue Nov 01 2011 13:27:57.416 00000AE0 KLNAPUTILS: IsNapPlatform called Tue Nov 01 2011 13:27:57.416 00000AE0 KLNAPUTILS: IsNapPlatform - dwMajorVersion = 6, dwMinorVersion = 1, szCSDVersion = Tue Nov 01 2011 13:27:57.416 00000AE0 KLNAPUTILS: RegisterNAPSha: RegisterSystemHealthAgent returned NAP_E_CONFLICTING_ID - already registered? Tue Nov 01 2011 13:27:57.416 00000AE0 KLNAPUTILS: IsNapPlatform called Tue Nov 01 2011 13:27:57.416 00000AE0 KLNAPUTILS: IsNapPlatform - dwMajorVersion = 6, dwMinorVersion = 1, szCSDVersion = Tue Nov 01 2011 13:27:57.416 00000AE0 KLNAPUTILS: UnregisterNAPSha: Sha unregistration with NapAgent returned SUCCESS Tue Nov 01 2011 13:27:57.416 00000AE0 KLNAPUTILS: RegisterNAPSha starting ... Tue Nov 01 2011 13:27:57.416 00000AE0 KLNAPUTILS: IsNapPlatform called Tue Nov 01 2011 13:27:57.416 00000AE0 KLNAPUTILS: IsNapPlatform - dwMajorVersion = 6, dwMinorVersion = 1, szCSDVersion = Tue Nov 01 2011 13:27:57.416 00000AE0 KLNAPUTILS: RegisterNAPSha: Sha registration with NapAgent returned SUCCESS Tue Nov 01 2011 13:27:57.416 00000AE0 HOOKAPI: Starting KLINSTFIX_Stop... Tue Nov 01 2011 13:27:57.416 00000AE0 HOOKAPI: ...KLINSTFIX_Stop took 0.064330 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:57.416 00000AE0 KLPRSS: Starting KLPRSS_Deinit... Tue Nov 01 2011 13:27:57.416 00000AE0 KLPRSS: ...KLPRSS_Deinit took 0.041404 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:57.416 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\kladminkit.lck' timeout - 0 creation flags - 0x3 Tue Nov 01 2011 13:27:57.416 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:57.416 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.222076 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) ============================================================================ ========== Trace Log File. Pid=1148. Closed - Tue Nov 01 2011 13:27:57.416 ============ ============================================================================ ============================================================================ ========== Trace Log File. Pid=1148. Started - Tue Nov 01 2011 13:27:58.103 =========== ============================================================================ System: Microsoft Windows NT Version: 6.1, 7600 Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: Sync objects count: CS: 6 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: Sync objects count: CS: 7 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: Sync objects count: CS: 8 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: Sync objects count: CS: 9 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: Initializing default security descriptor for newly created threads (based on primary access token)... Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: Default security descriptor for newly created threads initialized. Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: Current host info: NetBIOS name: 'SVR-DMZ' Domain name: 'WORKGROUP' Domain type: 'workgroup' Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: Default codepage: 1252, Default LCID: 1033, Default LangID: 1033 Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\' Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\6cf28ec9-aa31-45b1-b9d2-cac171bb4a35' Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: KLSTD_DeletePath('C:\Users\ADMINI~1\AppData\Local\Temp\1\6cf28ec9-aa31-45b1-b9d2-cac171bb4a35') Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: KLSTD_RemoveDirectory('C:\Users\ADMINI~1\AppData\Local\Temp\1\6cf28ec9-aa31-45b1-b9d2-cac171bb4a35', 1) Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: Sync objects count: CS: 10 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.103 00000AE0 KLPRSS: Starting KLPRSS_Init... Tue Nov 01 2011 13:27:58.103 00000AE0 KLPRSS: ...KLPRSS_Init took 1.333141 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: Sync objects count: CS: 11 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.103 00000AE0 HOOKAPI: Starting KLINSTFIX_Start... Tue Nov 01 2011 13:27:58.103 00000AE0 HOOKAPI: Starting WriteStub... Tue Nov 01 2011 13:27:58.103 00000AE0 HOOKAPI: Starting changing page protection into PAGE_READWRITE... Tue Nov 01 2011 13:27:58.103 00000AE0 HOOKAPI: ...changing page protection into PAGE_READWRITE took 0.039009 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.103 00000AE0 HOOKAPI: Starting modifying... Tue Nov 01 2011 13:27:58.103 00000AE0 HOOKAPI: ...modifying took 0.028401 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.103 00000AE0 HOOKAPI: Starting changing page protection into PAGE_EXECUTE_WRITECOPYy... Tue Nov 01 2011 13:27:58.103 00000AE0 HOOKAPI: ...changing page protection into PAGE_EXECUTE_WRITECOPYy took 0.036613 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.103 00000AE0 HOOKAPI: Starting FlushInstructionCache... Tue Nov 01 2011 13:27:58.103 00000AE0 HOOKAPI: ...FlushInstructionCache took 0.030112 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.103 00000AE0 HOOKAPI: ...WriteStub took 0.344920 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.103 00000AE0 HOOKAPI: ...KLINSTFIX_Start took 0.421226 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.103 00000AE0 KLPRSS: Starting CStorage::trans_begin... Tue Nov 01 2011 13:27:58.103 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:58.103 00000AE0 KLPRSS: ...CStorage::trans_end took 0.031139 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_SETTINGS.lck' timeout - -1 creation flags - 0x3 Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.337391 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_SETTINGS.xml' timeout - -1 creation flags - 0x3 Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.176566 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.103 00000AE0 KLPRSS: ...CStorage::trans_begin took 0.947844 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.103 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:58.103 00000AE0 KLPRSS: ...CStorage::trans_end took 0.081097 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.103 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:58.103 00000AE0 KLPRSS: ...CStorage::trans_end took 0.030796 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.103 00000AE0 KLPRSS: Starting CStorage::trans_begin... Tue Nov 01 2011 13:27:58.103 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:58.103 00000AE0 KLPRSS: ...CStorage::trans_end took 0.029428 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_PRODINFO.lck' timeout - -1 creation flags - 0x3 Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:58.103 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.192991 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.118 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_PRODINFO.xml' timeout - -1 creation flags - 0x3 Tue Nov 01 2011 13:27:58.118 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:58.118 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.232684 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.118 00000AE0 KLPRSS: ...CStorage::trans_begin took 0.803101 ms (User: 15 ms, Kernel: 0 ms, FullLoad: 1500 %) Tue Nov 01 2011 13:27:58.118 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:58.118 00000AE0 KLPRSS: ...CStorage::trans_end took 0.055091 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.118 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:58.118 00000AE0 KLPRSS: ...CStorage::trans_end took 0.030454 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.118 00000AE0 HOOKAPI: Starting KLINSTFIX_Stop... Tue Nov 01 2011 13:27:58.118 00000AE0 HOOKAPI: ...KLINSTFIX_Stop took 0.029085 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.118 00000AE0 KLPRSS: Starting KLPRSS_Deinit... Tue Nov 01 2011 13:27:58.118 00000AE0 KLPRSS: ...KLPRSS_Deinit took 0.037982 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.118 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\kladminkit.lck' timeout - 0 creation flags - 0x3 Tue Nov 01 2011 13:27:58.118 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:58.118 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.164932 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) ============================================================================ ========== Trace Log File. Pid=1148. Closed - Tue Nov 01 2011 13:27:58.118 ============ ============================================================================ ============================================================================ ========== Trace Log File. Pid=1148. Started - Tue Nov 01 2011 13:27:58.134 =========== ============================================================================ System: Microsoft Windows NT Version: 6.1, 7600 Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: Sync objects count: CS: 6 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: Sync objects count: CS: 7 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: Sync objects count: CS: 8 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: Sync objects count: CS: 9 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: Initializing default security descriptor for newly created threads (based on primary access token)... Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: Default security descriptor for newly created threads initialized. Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: Current host info: NetBIOS name: 'SVR-DMZ' Domain name: 'WORKGROUP' Domain type: 'workgroup' Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: Default codepage: 1252, Default LCID: 1033, Default LangID: 1033 Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\' Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\7e8f2c91-4e95-4a55-a238-1e77e4146591' Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_DeletePath('C:\Users\ADMINI~1\AppData\Local\Temp\1\7e8f2c91-4e95-4a55-a238-1e77e4146591') Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_RemoveDirectory('C:\Users\ADMINI~1\AppData\Local\Temp\1\7e8f2c91-4e95-4a55-a238-1e77e4146591', 1) Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: Sync objects count: CS: 10 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: Starting KLPRSS_Init... Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: ...KLPRSS_Init took 1.331088 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: Sync objects count: CS: 11 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.134 00000AE0 HOOKAPI: Starting KLINSTFIX_Start... Tue Nov 01 2011 13:27:58.134 00000AE0 HOOKAPI: Starting WriteStub... Tue Nov 01 2011 13:27:58.134 00000AE0 HOOKAPI: Starting changing page protection into PAGE_READWRITE... Tue Nov 01 2011 13:27:58.134 00000AE0 HOOKAPI: ...changing page protection into PAGE_READWRITE took 0.084519 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 HOOKAPI: Starting modifying... Tue Nov 01 2011 13:27:58.134 00000AE0 HOOKAPI: ...modifying took 0.028401 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 HOOKAPI: Starting changing page protection into PAGE_EXECUTE_WRITECOPYy... Tue Nov 01 2011 13:27:58.134 00000AE0 HOOKAPI: ...changing page protection into PAGE_EXECUTE_WRITECOPYy took 0.038324 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 HOOKAPI: Starting FlushInstructionCache... Tue Nov 01 2011 13:27:58.134 00000AE0 HOOKAPI: ...FlushInstructionCache took 0.030112 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 HOOKAPI: ...WriteStub took 0.393852 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 HOOKAPI: ...KLINSTFIX_Start took 0.468789 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: Starting KLPRSS_RemoveSettingsStorage... Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: wstrLocation='C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_SETTINGS.xml' Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: ...CStorage::trans_end took 0.031139 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_SETTINGS.lck' timeout - 900000 creation flags - 0x3 Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.138926 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_Unlink2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_SETTINGS.xml') Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_Unlink2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_SETTINGS.xml~') Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_Unlink2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_SETTINGS.~xml~2') Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: ...CStorage::trans_end took 0.032849 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: ...KLPRSS_RemoveSettingsStorage took 1.065897 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: Starting KLPRSS_RemoveSettingsStorage... Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: wstrLocation='C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_PRODINFO.xml' Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: ...CStorage::trans_end took 0.029428 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_PRODINFO.lck' timeout - 900000 creation flags - 0x3 Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.117368 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_Unlink2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_PRODINFO.xml') Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_Unlink2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_PRODINFO.xml~') Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_Unlink2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_PRODINFO.~xml~2') Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: ...CStorage::trans_end took 0.032507 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: ...KLPRSS_RemoveSettingsStorage took 1.014912 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: Starting KLPRSS_RemoveSettingsStorage... Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: wstrLocation='C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_RUNTIME.xml' Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: ...CStorage::trans_end took 0.029428 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_RUNTIME.lck' timeout - 900000 creation flags - 0x3 Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.196070 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_Unlink2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\SS_RUNTIME.xml') Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_Unlink2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_RUNTIME.xml~') Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_Unlink2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Settings\~SS_RUNTIME.~xml~2') Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: ...CStorage::trans_end took 0.032507 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: ...KLPRSS_RemoveSettingsStorage took 0.946133 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: Starting KLPRSS_RemoveSettingsStorage... Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: wstrLocation='C:\Program Files (x86)\Common Files\Kaspersky Lab\Data\e2s_subscription.xml' Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:58.134 00000AE0 KLPRSS: ...CStorage::trans_end took 0.029770 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Program Files (x86)\Common Files\Kaspersky Lab\Data\e2s_subscription.lck' timeout - 900000 creation flags - 0x3 Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.178619 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_Unlink2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Data\e2s_subscription.xml') Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_Unlink2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Data\~e2s_subscription.xml~') Tue Nov 01 2011 13:27:58.134 00000AE0 KLSTD: KLSTD_Unlink2('C:\Program Files (x86)\Common Files\Kaspersky Lab\Data\~e2s_subscription.~xml~2') Tue Nov 01 2011 13:27:58.149 00000AE0 KLPRSS: Starting CStorage::trans_end... Tue Nov 01 2011 13:27:58.149 00000AE0 KLPRSS: ...CStorage::trans_end took 0.038324 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.149 00000AE0 KLPRSS: ...KLPRSS_RemoveSettingsStorage took 7.414743 ms (User: 15 ms, Kernel: 0 ms, FullLoad: 214 %) Tue Nov 01 2011 13:27:58.149 00000AE0 HOOKAPI: Starting KLINSTFIX_Stop... Tue Nov 01 2011 13:27:58.149 00000AE0 HOOKAPI: ...KLINSTFIX_Stop took 0.030454 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.149 00000AE0 KLPRSS: Starting KLPRSS_Deinit... Tue Nov 01 2011 13:27:58.149 00000AE0 KLPRSS: ...KLPRSS_Deinit took 0.036271 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.149 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\kladminkit.lck' timeout - 0 creation flags - 0x3 Tue Nov 01 2011 13:27:58.149 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:58.149 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.142006 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) ============================================================================ ========== Trace Log File. Pid=1148. Closed - Tue Nov 01 2011 13:27:58.149 ============ ============================================================================ ============================================================================ ========== Trace Log File. Pid=1148. Started - Tue Nov 01 2011 13:27:58.181 =========== ============================================================================ System: Microsoft Windows NT Version: 6.1, 7600 Tue Nov 01 2011 13:27:58.181 00000AE0 KLSTD: Sync objects count: CS: 6 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.181 00000AE0 KLSTD: Sync objects count: CS: 7 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.181 00000AE0 KLSTD: Sync objects count: CS: 8 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.181 00000AE0 KLSTD: Sync objects count: CS: 9 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.181 00000AE0 KLSTD: Initializing default security descriptor for newly created threads (based on primary access token)... Tue Nov 01 2011 13:27:58.181 00000AE0 KLSTD: Default security descriptor for newly created threads initialized. Tue Nov 01 2011 13:27:58.181 00000AE0 KLSTD: Current host info: NetBIOS name: 'SVR-DMZ' Domain name: 'WORKGROUP' Domain type: 'workgroup' Tue Nov 01 2011 13:27:58.181 00000AE0 KLSTD: Default codepage: 1252, Default LCID: 1033, Default LangID: 1033 Tue Nov 01 2011 13:27:58.181 00000AE0 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\' Tue Nov 01 2011 13:27:58.181 00000AE0 KLSTD: KLSTD_CreatePath path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\b4c3d41d-d7aa-456b-b972-c6d16a157fe7' Tue Nov 01 2011 13:27:58.181 00000AE0 KLSTD: KLSTD_DeletePath('C:\Users\ADMINI~1\AppData\Local\Temp\1\b4c3d41d-d7aa-456b-b972-c6d16a157fe7') Tue Nov 01 2011 13:27:58.181 00000AE0 KLSTD: KLSTD_RemoveDirectory('C:\Users\ADMINI~1\AppData\Local\Temp\1\b4c3d41d-d7aa-456b-b972-c6d16a157fe7', 1) Tue Nov 01 2011 13:27:58.181 00000AE0 KLSTD: Sync objects count: CS: 10 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.181 00000AE0 KLPRSS: Starting KLPRSS_Init... Tue Nov 01 2011 13:27:58.181 00000AE0 KLPRSS: ...KLPRSS_Init took 1.324245 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.181 00000AE0 KLSTD: Sync objects count: CS: 11 Sem: 0 RWL: 0 Tue Nov 01 2011 13:27:58.181 00000AE0 HOOKAPI: Starting KLINSTFIX_Start... Tue Nov 01 2011 13:27:58.181 00000AE0 HOOKAPI: Starting WriteStub... Tue Nov 01 2011 13:27:58.181 00000AE0 HOOKAPI: Starting changing page protection into PAGE_READWRITE... Tue Nov 01 2011 13:27:58.181 00000AE0 HOOKAPI: ...changing page protection into PAGE_READWRITE took 0.038667 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.181 00000AE0 HOOKAPI: Starting modifying... Tue Nov 01 2011 13:27:58.181 00000AE0 HOOKAPI: ...modifying took 0.028401 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.181 00000AE0 HOOKAPI: Starting changing page protection into PAGE_EXECUTE_WRITECOPYy... Tue Nov 01 2011 13:27:58.181 00000AE0 HOOKAPI: ...changing page protection into PAGE_EXECUTE_WRITECOPYy took 0.036613 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.181 00000AE0 HOOKAPI: Starting FlushInstructionCache... Tue Nov 01 2011 13:27:58.181 00000AE0 HOOKAPI: ...FlushInstructionCache took 0.029770 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.181 00000AE0 HOOKAPI: ...WriteStub took 0.344235 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.181 00000AE0 HOOKAPI: ...KLINSTFIX_Start took 0.419515 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.181 00000AE0 HOOKAPI: Starting KLINSTFIX_Stop... Tue Nov 01 2011 13:27:58.181 00000AE0 HOOKAPI: ...KLINSTFIX_Stop took 0.061935 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.181 00000AE0 KLPRSS: Starting KLPRSS_Deinit... Tue Nov 01 2011 13:27:58.181 00000AE0 KLPRSS: ...KLPRSS_Deinit took 0.099233 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) Tue Nov 01 2011 13:27:58.181 00000AE0 KLSTD: KLSTD_CreateFile path - 'C:\Users\ADMINI~1\AppData\Local\Temp\1\kladminkit.lck' timeout - 0 creation flags - 0x3 Tue Nov 01 2011 13:27:58.181 00000AE0 KLSTD: Starting KLSTD_CreateFile... Tue Nov 01 2011 13:27:58.181 00000AE0 KLSTD: ...KLSTD_CreateFile took 0.206678 ms (User: 0 ms, Kernel: 0 ms, FullLoad: 0 %) ============================================================================ ========== Trace Log File. Pid=1148. Closed - Tue Nov 01 2011 13:27:58.181 ============ ============================================================================ |
:: Command execute :: | |
--[ c99shell v. 1.0 pre-release build #13 powered by Captain Crunch Security Team | http://ccteam.ru | Generation time: 0.0624 ]-- |