Stránka 1 z 3

Prosím o kontrolu...předem děkuji

Napsal: 29 dub 2014 09:26
od olinka123
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:23:12, on 29. 4. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v10.0 (10.00.9200.16537)

FIREFOX: 28.0 (cs)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe
C:\PROGRA~2\RELEVA~1\rlvknlg32.exe
C:\Windows\System32\spool\drivers\x64\3\WrtMon.exe
C:\Windows\System32\spool\drivers\x64\3\WrtProc.exe
C:\Users\Jirka\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_206.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_206.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_206.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_206.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_206.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_206.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\Jirka\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.alibaba.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: cenbho32.TCentrumCZBHOObject - {C91BA35D-6516-489F-A203-2992ED9A4132} - C:\Program Files (x86)\Centrum Holdings s.r.o\Lišta Centrum.cz\cenbho32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Lišta Centrum.cz - {5D9C17C6-093D-43E5-BF3D-4A13D162AB74} - C:\Program Files (x86)\Centrum Holdings s.r.o\Lišta Centrum.cz\cenbho32.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files (x86)\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [ApnTBMon] "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Jirka\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Jirka\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [AcerCloud] "C:\Program Files (x86)\Acer\Acer Portal\acpanel_win.exe" startup
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe"
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.alipay.com
O15 - Trusted Zone: http://*.alisoft.com
O15 - Trusted Zone: http://*.taobao.com
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Abrosoft: Abrosoft FantaMorph update permissions manager. 12810. - Unknown owner - C:\Program Files (x86)\Abrosoft\FantaMorph5\FantaUp.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: Ask Update Service (APNMCP) - APN LLC. - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Launch Manager Service (LMSvc) - Acer Incorporate - C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: RelevantKnowledge - TMRG, Inc. - C:\Program Files (x86)\RelevantKnowledge\rlservice.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG - C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9683 bytes

Re: Prosím o kontrolu...předem děkuji

Napsal: 29 dub 2014 10:20
od jaro3
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.


Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

Stáhni AdwCleaner (by Xplode)
http://www.bleepingcomputer.com/download/adwcleaner/

Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.

Stáhni si Malwarebytes' Anti-Malware
- Při instalaci odeber zatržítko u „Povolit bezplatnou zkušební verzi Malwarebytes' Anti-Malware Premium“
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a klikni na Skenovat nyní a
- po proběhnutí programu se ti objeví hláška vpravo dole tak klikni na b] Kopírovat do schránky [/b]a a vlož sem celý log.

- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).

Pokud budou problémy , spusť v nouz. režimu.

Re: Prosím o kontrolu...předem děkuji

Napsal: 29 dub 2014 10:46
od olinka123
# AdwCleaner v3.205 - Report created 29/04/2014 at 10:41:38
# Updated 28/04/2014 by Xplode
# Operating System : Windows 8 (64 bits)
# Username : Jirka - JIRKA-ACER
# Running from : C:\Users\Jirka\Desktop\AdwCleaner.exe
# Option : Scan

***** [ Services ] *****

Service Found : APNMCP
Service Found : RelevantKnowledge

***** [ Files / Folders ] *****

File Found : C:\Users\Jirka\AppData\Roaming\Mozilla\Firefox\Profiles\pg7bn2iq.default\searchplugins\Web Search.xml
File Found : C:\Users\Jirka\AppData\Roaming\Mozilla\Firefox\Profiles\pg7bn2iq.default\user.js
File Found : C:\Users\Jirka\daemonprocess.txt
File Found : C:\WINDOWS\System32\roboot64.exe
Folder Found : C:\Program Files (x86)\AskPartnerNetwork
Folder Found : C:\Program Files (x86)\Common Files\Spigot
Folder Found : C:\Program Files (x86)\RelevantKnowledge
Folder Found : C:\Users\Jirka\.android
Folder Found : C:\Users\Jirka\AppData\Local\genienext
Folder Found : C:\Users\Jirka\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbcennhacfaagdopikcegfcobcadeocj
Folder Found : C:\Users\Jirka\AppData\Local\Google\Chrome\User Data\Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj
Folder Found : C:\Users\Jirka\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk
Folder Found : C:\Users\Jirka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp
Folder Found : C:\Users\Jirka\AppData\Local\Mobogenie
Folder Found : C:\Users\Jirka\AppData\Local\Software
Folder Found : C:\Users\Jirka\AppData\Roaming\Mozilla\Firefox\Profiles\pg7bn2iq.default\Extensions\speeddial@instair.net
Folder Found : C:\Users\Jirka\AppData\Roaming\newnext.me
Folder Found : C:\Users\Jirka\AppData\Roaming\OpenCandy
Folder Found : C:\Users\Jirka\AppData\Roaming\Solvusoft

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\AppDataLow\Software\Search Settings
Key Found : HKCU\Software\AskPartnerNetwork
Key Found : HKCU\Software\BI
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5}
Key Found : HKCU\Software\systweak
Key Found : [x64] HKCU\Software\AskPartnerNetwork
Key Found : [x64] HKCU\Software\BI
Key Found : [x64] HKCU\Software\systweak
Key Found : HKLM\Software\AskPartnerNetwork
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocj
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocpp
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{D08D9F98-1C78-4704-87E6-368B0023D831}
Key Found : HKLM\Software\systweak
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnTbMon]
Value Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{318A227B-5E9F-45BD-8999-7F8F10CA4CF5}]

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16537


-\\ Mozilla Firefox v28.0 (cs)

[ File : C:\Users\Jirka\AppData\Roaming\Mozilla\Firefox\Profiles\pg7bn2iq.default\prefs.js ]

Line Found : user_pref("browser.search.defaultengine", "Web Search");
Line Found : user_pref("browser.search.order.1", "Web Search");

-\\ Google Chrome v34.0.1847.131

[ File : C:\Users\Jirka\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Found [Extension] : hbcennhacfaagdopikcegfcobcadeocj
Found [Extension] : icdlfehblmklkikfigmjhbmmpmkmpooj
Found [Extension] : mhkaekfpcppmmioggniknbnbdbcigpkk
Found [Extension] : pfndaklgolladniicklehhancnlgocpp

*************************

AdwCleaner[R0].txt - [3918 octets] - [29/04/2014 10:41:38]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [3978 octets] ##########

Re: Prosím o kontrolu...předem děkuji

Napsal: 29 dub 2014 11:32
od olinka123
Tak asi jsem něco podělala...Malwarebytes Anti-Malware jsem musela spustit ještě jednou,poprvé se mi to nepodařilo zkopírovat a podruhé žádné okno nevyskočilo...

Re: Prosím o kontrolu...předem děkuji

Napsal: 29 dub 2014 18:27
od jaro3
Zkus ještě jednou:

- program se po té spustí a klikni na Skenovat nyní a
- po proběhnutí programu se ti objeví hláška vpravo dole tak klikni na b] Kopírovat do schránky [/b]a a vlož sem celý log

máš ho už v paměti , stačí klik do příspěvku , klik pravým a vybrat "vložit"
.

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce
klikni na „Prohledat-Scan“, po prohledání klikni na „ Vymazat-Clean

Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

Stáhni si Junkware Removal Tool by Thisisu

na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

Re: Prosím o kontrolu...předem děkuji

Napsal: 29 dub 2014 20:18
od olinka123
Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 29. 4. 2014
Scan Time: 11:29:45
Logfile: txt.txt
Administrator: Yes

Version: 2.00.1.1004
Malware Database: v2014.04.29.02
Rootkit Database: v2014.03.27.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Chameleon: Disabled

OS: Windows 8
CPU: x64
File System: NTFS
User: Jirka

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 248420
Time Elapsed: 13 min, 42 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Shuriken: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)

Re: Prosím o kontrolu...předem děkuji

Napsal: 29 dub 2014 20:24
od olinka123
# AdwCleaner v3.205 - Report created 29/04/2014 at 20:20:40
# Updated 28/04/2014 by Xplode
# Operating System : Windows 8 (64 bits)
# Username : Jirka - JIRKA-ACER
# Running from : C:\Users\Jirka\Desktop\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : APNMCP

***** [ Files / Folders ] *****

Folder Deleted : C:\Program Files (x86)\AskPartnerNetwork
Folder Deleted : C:\Program Files (x86)\RelevantKnowledge
Folder Deleted : C:\Program Files (x86)\Common Files\Spigot
Folder Deleted : C:\Users\Jirka\.android
Folder Deleted : C:\Users\Jirka\AppData\Local\genienext
Folder Deleted : C:\Users\Jirka\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Jirka\AppData\Roaming\newnext.me
Folder Deleted : C:\Users\Jirka\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Jirka\AppData\Roaming\Solvusoft
Folder Deleted : C:\Users\Jirka\AppData\Local\Software
Folder Deleted : C:\Users\Jirka\AppData\Roaming\Mozilla\Firefox\Profiles\pg7bn2iq.default\Extensions\speeddial@instair.net
Folder Deleted : C:\Users\Jirka\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbcennhacfaagdopikcegfcobcadeocj
Folder Deleted : C:\Users\Jirka\AppData\Local\Google\Chrome\User Data\Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj
Folder Deleted : C:\Users\Jirka\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk
Folder Deleted : C:\Users\Jirka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp
File Deleted : C:\Users\Jirka\daemonprocess.txt
File Deleted : C:\Users\Jirka\AppData\Roaming\Mozilla\Firefox\Profiles\pg7bn2iq.default\user.js

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocj
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocpp
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnTbMon]
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5}
Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{318A227B-5E9F-45BD-8999-7F8F10CA4CF5}]
Key Deleted : HKCU\Software\AskPartnerNetwork
Key Deleted : HKCU\Software\BI
Key Deleted : HKCU\Software\systweak
Key Deleted : HKCU\Software\AppDataLow\Software\Search Settings
Key Deleted : HKLM\Software\AskPartnerNetwork
Key Deleted : HKLM\Software\systweak
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{D08D9F98-1C78-4704-87E6-368B0023D831}

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16537


-\\ Mozilla Firefox v28.0 (cs)

[ File : C:\Users\Jirka\AppData\Roaming\Mozilla\Firefox\Profiles\pg7bn2iq.default\prefs.js ]

Line Deleted : user_pref("browser.search.defaultengine", "Web Search");
Line Deleted : user_pref("browser.search.order.1", "Web Search");

-\\ Google Chrome v34.0.1847.131

[ File : C:\Users\Jirka\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Extension] : hbcennhacfaagdopikcegfcobcadeocj
Deleted [Extension] : icdlfehblmklkikfigmjhbmmpmkmpooj
Deleted [Extension] : mhkaekfpcppmmioggniknbnbdbcigpkk
Deleted [Extension] : pfndaklgolladniicklehhancnlgocpp

*************************

AdwCleaner[R0].txt - [4074 octets] - [29/04/2014 10:41:38]
AdwCleaner[R1].txt - [4021 octets] - [29/04/2014 20:19:44]
AdwCleaner[S0].txt - [3893 octets] - [29/04/2014 20:20:40]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3953 octets] ##########

Re: Prosím o kontrolu...předem děkuji

Napsal: 29 dub 2014 20:36
od olinka123
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 8 x64
Ran by Jirka on Łt 29. 04. 2014 at 20:26:39,48
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services

Successfully stopped: [Service] relevantknowledge
Successfully deleted: [Service] relevantknowledge



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{CAF42C63-D0E8-4D56-98F0-AFF0568FBE25}



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\apn"
Successfully deleted: [Folder] "C:\ProgramData\boost_interprocess"
Successfully deleted: [Folder] "C:\Users\Jirka\AppData\Roaming\thinstall"
Successfully deleted: [Folder] "C:\Program Files (x86)\smarttweak"
Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\relevantknowledge"
Successfully deleted: [Folder] "C:\Users\Jirka\AppData\Roaming\microsoft\windows\start menu\programs\smarttweak software"
Successfully deleted: [Folder] "C:\ProgramData\AskPartnerNetwork"



~~~ FireFox

Emptied folder: C:\Users\Jirka\AppData\Roaming\mozilla\firefox\profiles\pg7bn2iq.default\minidumps [7 files]



~~~ Chrome

Successfully deleted: [Folder] C:\Users\Jirka\appdata\local\Google\Chrome\User Data\Default\Extensions\hbcennhacfaagdopikcegfcobcadeocj
Successfully deleted: [Folder] C:\Users\Jirka\appdata\local\Google\Chrome\User Data\Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj
Successfully deleted: [Folder] C:\Users\Jirka\appdata\local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk
Successfully deleted: [Folder] C:\Users\Jirka\appdata\local\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Łt 29. 04. 2014 at 20:34:17,33
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Re: Prosím o kontrolu...předem děkuji

Napsal: 29 dub 2014 20:37
od olinka123
...tak snad jsem to zvládla...uf uf

Re: Prosím o kontrolu...předem děkuji

Napsal: 29 dub 2014 22:03
od Orcus
Zvládla na jedničku. :wink: :smile:


Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.

Re: Prosím o kontrolu...předem děkuji

Napsal: 30 dub 2014 04:30
od olinka123
RogueKiller V8.8.15 _x64_ [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 8 (6.2.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Jirka [Práva správce]
Mód : Kontrola -- Datum : 04/30/2014 04:02:41
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 6 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Jirka\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-409746375-2400753399-3449076528-1001\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Jirka\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
[Address] EAT @explorer.exe (AssocCreate) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3B20)
[Address] EAT @explorer.exe (AssocGetPerceivedType) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD4940)
[Address] EAT @explorer.exe (AssocIsDangerous) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAECFBC)
[Address] EAT @explorer.exe (AssocQueryKeyA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADA870)
[Address] EAT @explorer.exe (AssocQueryKeyW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3A20)
[Address] EAT @explorer.exe (AssocQueryStringA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEE60C)
[Address] EAT @explorer.exe (AssocQueryStringByKeyA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEE440)
[Address] EAT @explorer.exe (AssocQueryStringByKeyW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD41A0)
[Address] EAT @explorer.exe (AssocQueryStringW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD9CC0)
[Address] EAT @explorer.exe (ChrCmpIA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA03C)
[Address] EAT @explorer.exe (ChrCmpIW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA02C)
[Address] EAT @explorer.exe (ColorAdjustLuma) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEF7A8)
[Address] EAT @explorer.exe (ColorHLSToRGB) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADBFF0)
[Address] EAT @explorer.exe (ColorRGBToHLS) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADBF30)
[Address] EAT @explorer.exe (ConnectToConnectionPoint) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD42B0)
[Address] EAT @explorer.exe (DelayLoadFailureHook) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEF8F0)
[Address] EAT @explorer.exe (DllGetClassObject) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAFD448)
[Address] EAT @explorer.exe (DllGetVersion) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE5AE0)
[Address] EAT @explorer.exe (GUIDFromStringW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADF786)
[Address] EAT @explorer.exe (GetAcceptLanguagesA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE97D0)
[Address] EAT @explorer.exe (GetAcceptLanguagesW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD5A40)
[Address] EAT @explorer.exe (GetMenuPosFromID) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD5A60)
[Address] EAT @explorer.exe (HashData) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE97C0)
[Address] EAT @explorer.exe (IStream_Copy) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADA1A0)
[Address] EAT @explorer.exe (IStream_Read) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2B80)
[Address] EAT @explorer.exe (IStream_ReadPidl) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD9980)
[Address] EAT @explorer.exe (IStream_ReadStr) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD1120)
[Address] EAT @explorer.exe (IStream_Reset) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD6340)
[Address] EAT @explorer.exe (IStream_Size) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADA180)
[Address] EAT @explorer.exe (IStream_Write) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD6320)
[Address] EAT @explorer.exe (IStream_WritePidl) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAFF194)
[Address] EAT @explorer.exe (IStream_WriteStr) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD6350)
[Address] EAT @explorer.exe (IUnknown_AtomicRelease) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA09C)
[Address] EAT @explorer.exe (IUnknown_Exec) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD5B80)
[Address] EAT @explorer.exe (IUnknown_GetSite) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD60B0)
[Address] EAT @explorer.exe (IUnknown_GetWindow) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2D20)
[Address] EAT @explorer.exe (IUnknown_QueryService) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3300)
[Address] EAT @explorer.exe (IUnknown_QueryStatus) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAFBBA8)
[Address] EAT @explorer.exe (IUnknown_Set) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD1130)
[Address] EAT @explorer.exe (IUnknown_SetSite) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3310)
[Address] EAT @explorer.exe (IntlStrEqWorkerA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9E3C)
[Address] EAT @explorer.exe (IntlStrEqWorkerW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9E2C)
[Address] EAT @explorer.exe (IsCharSpaceA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9A80)
[Address] EAT @explorer.exe (IsCharSpaceW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD1140)
[Address] EAT @explorer.exe (IsInternetESCEnabled) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE97B0)
[Address] EAT @explorer.exe (IsOS) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2B60)
[Address] EAT @explorer.exe (MLFreeLibrary) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAF9EF4)
[Address] EAT @explorer.exe (MLLoadLibraryA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAF9F48)
[Address] EAT @explorer.exe (MLLoadLibraryW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAF9FA8)
[Address] EAT @explorer.exe (ParseURLA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE97A0)
[Address] EAT @explorer.exe (ParseURLW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADC250)
[Address] EAT @explorer.exe (PathAddBackslashA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9B2C)
[Address] EAT @explorer.exe (PathAddBackslashW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3C00)
[Address] EAT @explorer.exe (PathAddExtensionA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9CCC)
[Address] EAT @explorer.exe (PathAddExtensionW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9CBC)
[Address] EAT @explorer.exe (PathAppendA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9CAC)
[Address] EAT @explorer.exe (PathAppendW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD5A10)
[Address] EAT @explorer.exe (PathBuildRootA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA05C)
[Address] EAT @explorer.exe (PathBuildRootW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA06C)
[Address] EAT @explorer.exe (PathCanonicalizeA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9C9C)
[Address] EAT @explorer.exe (PathCanonicalizeW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2CF0)
[Address] EAT @explorer.exe (PathCombineA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9B5C)
[Address] EAT @explorer.exe (PathCombineW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3C10)
[Address] EAT @explorer.exe (PathCommonPrefixA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9DAC)
[Address] EAT @explorer.exe (PathCommonPrefixW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9D9C)
[Address] EAT @explorer.exe (PathCompactPathA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEAF90)
[Address] EAT @explorer.exe (PathCompactPathExA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEAD80)
[Address] EAT @explorer.exe (PathCompactPathExW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD6530)
[Address] EAT @explorer.exe (PathCompactPathW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEEB08)
[Address] EAT @explorer.exe (PathCreateFromUrlA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9790)
[Address] EAT @explorer.exe (PathCreateFromUrlAlloc) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9780)
[Address] EAT @explorer.exe (PathCreateFromUrlW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD36E0)
[Address] EAT @explorer.exe (PathFileExistsA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9C0C)
[Address] EAT @explorer.exe (PathFileExistsAndAttributesW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD5930)
[Address] EAT @explorer.exe (PathFileExistsW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3690)
[Address] EAT @explorer.exe (PathFindExtensionA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9C3C)
[Address] EAT @explorer.exe (PathFindExtensionW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD10C0)
[Address] EAT @explorer.exe (PathFindFileNameA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9BFC)
[Address] EAT @explorer.exe (PathFindFileNameW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD1090)
[Address] EAT @explorer.exe (PathFindNextComponentA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9AE0)
[Address] EAT @explorer.exe (PathFindNextComponentW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADA210)
[Address] EAT @explorer.exe (PathFindOnPathA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEB610)
[Address] EAT @explorer.exe (PathFindOnPathW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD9170)
[Address] EAT @explorer.exe (PathFindSuffixArrayA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEB534)
[Address] EAT @explorer.exe (PathFindSuffixArrayW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD53D0)
[Address] EAT @explorer.exe (PathGetArgsA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE962C)
[Address] EAT @explorer.exe (PathGetArgsW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADC880)
[Address] EAT @explorer.exe (PathGetCharTypeA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9648)
[Address] EAT @explorer.exe (PathGetCharTypeW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD6480)
[Address] EAT @explorer.exe (PathGetDriveNumberA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9D5C)
[Address] EAT @explorer.exe (PathGetDriveNumberW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD1050)
[Address] EAT @explorer.exe (PathIsContentTypeA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEABAC)
[Address] EAT @explorer.exe (PathIsContentTypeW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADA2C0)
[Address] EAT @explorer.exe (PathIsDirectoryA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEB404)
[Address] EAT @explorer.exe (PathIsDirectoryEmptyA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEB334)
[Address] EAT @explorer.exe (PathIsDirectoryEmptyW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEEE78)
[Address] EAT @explorer.exe (PathIsDirectoryW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD54D0)
[Address] EAT @explorer.exe (PathIsFileSpecA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9D6C)
[Address] EAT @explorer.exe (PathIsFileSpecW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD6200)
[Address] EAT @explorer.exe (PathIsLFNFileSpecA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9CFC)
[Address] EAT @explorer.exe (PathIsLFNFileSpecW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9CEC)
[Address] EAT @explorer.exe (PathIsNetworkPathA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA07C)
[Address] EAT @explorer.exe (PathIsNetworkPathW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD29A0)
[Address] EAT @explorer.exe (PathIsPrefixA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9D8C)
[Address] EAT @explorer.exe (PathIsPrefixW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9D7C)
[Address] EAT @explorer.exe (PathIsRelativeA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9D4C)
[Address] EAT @explorer.exe (PathIsRelativeW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3680)
[Address] EAT @explorer.exe (PathIsRootA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9C8C)
[Address] EAT @explorer.exe (PathIsRootW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2CE0)
[Address] EAT @explorer.exe (PathIsSameRootA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9D1C)
[Address] EAT @explorer.exe (PathIsSameRootW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9D0C)
[Address] EAT @explorer.exe (PathIsSystemFolderA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA834)
[Address] EAT @explorer.exe (PathIsSystemFolderW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEE948)
[Address] EAT @explorer.exe (PathIsUNCA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9B3C)
[Address] EAT @explorer.exe (PathIsUNCServerA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9C1C)
[Address] EAT @explorer.exe (PathIsUNCServerShareA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9C2C)
[Address] EAT @explorer.exe (PathIsUNCServerShareW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD5E60)
[Address] EAT @explorer.exe (PathIsUNCServerW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD5E70)
[Address] EAT @explorer.exe (PathIsUNCW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD1040)
[Address] EAT @explorer.exe (PathIsURLA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9770)
[Address] EAT @explorer.exe (PathIsURLW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD36C0)
[Address] EAT @explorer.exe (PathMakePrettyA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEBCB0)
[Address] EAT @explorer.exe (PathMakePrettyW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD9FC0)
[Address] EAT @explorer.exe (PathMakeSystemFolderA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA8C0)
[Address] EAT @explorer.exe (PathMakeSystemFolderW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD1270)
[Address] EAT @explorer.exe (PathMatchSpecA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9BAC)
[Address] EAT @explorer.exe (PathMatchSpecExA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9B8C)
[Address] EAT @explorer.exe (PathMatchSpecExW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9B7C)
[Address] EAT @explorer.exe (PathMatchSpecW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9B9C)
[Address] EAT @explorer.exe (PathParseIconLocationA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9BEC)
[Address] EAT @explorer.exe (PathParseIconLocationW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD5E20)
[Address] EAT @explorer.exe (PathQuoteSpacesA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9BCC)
[Address] EAT @explorer.exe (PathQuoteSpacesW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2D00)
[Address] EAT @explorer.exe (PathRelativePathToA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9B14)
[Address] EAT @explorer.exe (PathRelativePathToW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9AF4)
[Address] EAT @explorer.exe (PathRemoveArgsA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEBC74)
[Address] EAT @explorer.exe (PathRemoveArgsW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD6450)
[Address] EAT @explorer.exe (PathRemoveBackslashA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9CDC)
[Address] EAT @explorer.exe (PathRemoveBackslashW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3730)
[Address] EAT @explorer.exe (PathRemoveBlanksA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9BBC)
[Address] EAT @explorer.exe (PathRemoveBlanksW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3BD0)
[Address] EAT @explorer.exe (PathRemoveExtensionA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9C7C)
[Address] EAT @explorer.exe (PathRemoveExtensionW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD5E30)
[Address] EAT @explorer.exe (PathRemoveFileSpecA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9B4C)
[Address] EAT @explorer.exe (PathRemoveFileSpecW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD4040)
[Address] EAT @explorer.exe (PathRenameExtensionA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9C6C)
[Address] EAT @explorer.exe (PathRenameExtensionW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9C5C)
[Address] EAT @explorer.exe (PathSearchAndQualifyA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE961C)
[Address] EAT @explorer.exe (PathSearchAndQualifyW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2E00)
[Address] EAT @explorer.exe (PathSetDlgItemPathA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEAC50)
[Address] EAT @explorer.exe (PathSetDlgItemPathW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEE9D0)
[Address] EAT @explorer.exe (PathSkipRootA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9D2C)
[Address] EAT @explorer.exe (PathSkipRootW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD5A20)
[Address] EAT @explorer.exe (PathStripPathA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9D3C)
[Address] EAT @explorer.exe (PathStripPathW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD6220)
[Address] EAT @explorer.exe (PathStripToRootA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9C4C)
[Address] EAT @explorer.exe (PathStripToRootW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD5E50)
[Address] EAT @explorer.exe (PathUnExpandEnvStringsA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9B6C)
[Address] EAT @explorer.exe (PathUnExpandEnvStringsW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2DF0)
[Address] EAT @explorer.exe (PathUndecorateA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA75C)
[Address] EAT @explorer.exe (PathUndecorateW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD64D0)
[Address] EAT @explorer.exe (PathUnmakeSystemFolderA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA86C)
[Address] EAT @explorer.exe (PathUnmakeSystemFolderW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEE984)
[Address] EAT @explorer.exe (PathUnquoteSpacesA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9BDC)
[Address] EAT @explorer.exe (PathUnquoteSpacesW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3BE0)
[Address] EAT @explorer.exe (QISearch) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD1010)
[Address] EAT @explorer.exe (SHAllocShared) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD29D0)
[Address] EAT @explorer.exe (SHAnsiToAnsi) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA310)
[Address] EAT @explorer.exe (SHAnsiToUnicode) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA320)
[Address] EAT @explorer.exe (SHAutoComplete) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADBE10)
[Address] EAT @explorer.exe (SHCopyKeyA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA2F0)
[Address] EAT @explorer.exe (SHCopyKeyW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADA070)
[Address] EAT @explorer.exe (SHCreateMemStream) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD32B0)
[Address] EAT @explorer.exe (SHCreateShellPalette) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2890)
[Address] EAT @explorer.exe (SHCreateStreamOnFileA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA0DC)
[Address] EAT @explorer.exe (SHCreateStreamOnFileEx) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD6070)
[Address] EAT @explorer.exe (SHCreateStreamOnFileW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD64A0)
[Address] EAT @explorer.exe (SHCreateStreamWrapper) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADF792)
[Address] EAT @explorer.exe (SHCreateThread) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD5E80)
[Address] EAT @explorer.exe (SHCreateThreadRef) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD5B30)
[Address] EAT @explorer.exe (SHCreateThreadWithHandle) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD6400)
[Address] EAT @explorer.exe (SHDeleteEmptyKeyA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA0FC)
[Address] EAT @explorer.exe (SHDeleteEmptyKeyW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA0EC)
[Address] EAT @explorer.exe (SHDeleteKeyA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA2E0)
[Address] EAT @explorer.exe (SHDeleteKeyW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2C60)
[Address] EAT @explorer.exe (SHDeleteOrphanKeyA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAFEFB8)
[Address] EAT @explorer.exe (SHDeleteOrphanKeyW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAFEF48)
[Address] EAT @explorer.exe (SHDeleteValueA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA10C)
[Address] EAT @explorer.exe (SHDeleteValueW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2CA0)
[Address] EAT @explorer.exe (SHEnumKeyExA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA290)
[Address] EAT @explorer.exe (SHEnumKeyExW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA280)
[Address] EAT @explorer.exe (SHEnumValueA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA250)
[Address] EAT @explorer.exe (SHEnumValueW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADA1D0)
[Address] EAT @explorer.exe (SHFormatDateTimeA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEF004)
[Address] EAT @explorer.exe (SHFormatDateTimeW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEF070)
[Address] EAT @explorer.exe (SHFreeShared) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD29E0)
[Address] EAT @explorer.exe (SHGetInverseCMAP) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAF0830)
[Address] EAT @explorer.exe (SHGetThreadRef) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD9140)
[Address] EAT @explorer.exe (SHGetValueA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD43C0)
[Address] EAT @explorer.exe (SHGetValueW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2B20)
[Address] EAT @explorer.exe (SHGetViewStatePropertyBag) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD6FA0)
[Address] EAT @explorer.exe (SHIsChildOrSelf) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3510)
[Address] EAT @explorer.exe (SHIsLowMemoryMachine) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAFBC3C)
[Address] EAT @explorer.exe (SHLoadIndirectString) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3340)
[Address] EAT @explorer.exe (SHLockShared) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAFF838)
[Address] EAT @explorer.exe (SHMessageBoxCheckA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAFADD4)
[Address] EAT @explorer.exe (SHMessageBoxCheckW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAFAF00)
[Address] EAT @explorer.exe (SHOpenRegStream2A) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA0AC)
[Address] EAT @explorer.exe (SHOpenRegStream2W) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD43F0)
[Address] EAT @explorer.exe (SHOpenRegStreamA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA0CC)
[Address] EAT @explorer.exe (SHOpenRegStreamW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA0BC)
[Address] EAT @explorer.exe (SHPackDispParamsV) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD7DB0)
[Address] EAT @explorer.exe (SHPropertyBag_ReadStrAlloc) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DB01598)
[Address] EAT @explorer.exe (SHPropertyBag_WriteBSTR) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DB01498)
[Address] EAT @explorer.exe (SHQueryInfoKeyA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA230)
[Address] EAT @explorer.exe (SHQueryInfoKeyW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA210)
[Address] EAT @explorer.exe (SHQueryValueExA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA120)
[Address] EAT @explorer.exe (SHQueryValueExW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD63A0)
[Address] EAT @explorer.exe (SHRegCloseUSKey) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9A70)
[Address] EAT @explorer.exe (SHRegCreateUSKeyA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9A58)
[Address] EAT @explorer.exe (SHRegCreateUSKeyW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2640)
[Address] EAT @explorer.exe (SHRegDeleteEmptyUSKeyA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9A44)
[Address] EAT @explorer.exe (SHRegDeleteEmptyUSKeyW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9A34)
[Address] EAT @explorer.exe (SHRegDeleteUSValueA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9A24)
[Address] EAT @explorer.exe (SHRegDeleteUSValueW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9A14)
[Address] EAT @explorer.exe (SHRegDuplicateHKey) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA1F0)
[Address] EAT @explorer.exe (SHRegEnumUSKeyA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE99FC)
[Address] EAT @explorer.exe (SHRegEnumUSKeyW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE99DC)
[Address] EAT @explorer.exe (SHRegEnumUSValueA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9998)
[Address] EAT @explorer.exe (SHRegEnumUSValueW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2590)
[Address] EAT @explorer.exe (SHRegGetBoolUSValueA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9984)
[Address] EAT @explorer.exe (SHRegGetBoolUSValueW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADC220)
[Address] EAT @explorer.exe (SHRegGetBoolValueFromHKCUHKLM) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD6330)
[Address] EAT @explorer.exe (SHRegGetIntW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA1E0)
[Address] EAT @explorer.exe (SHRegGetPathA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA1C0)
[Address] EAT @explorer.exe (SHRegGetPathW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADA240)
[Address] EAT @explorer.exe (SHRegGetUSValueA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9948)
[Address] EAT @explorer.exe (SHRegGetUSValueW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADA280)
[Address] EAT @explorer.exe (SHRegGetValueA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA2A4)
[Address] EAT @explorer.exe (SHRegGetValueFromHKCUHKLM) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD6EBC)
[Address] EAT @explorer.exe (SHRegGetValueW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD21B0)
[Address] EAT @explorer.exe (SHRegOpenUSKeyA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9928)
[Address] EAT @explorer.exe (SHRegOpenUSKeyW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9908)
[Address] EAT @explorer.exe (SHRegQueryInfoUSKeyA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE98E0)
[Address] EAT @explorer.exe (SHRegQueryInfoUSKeyW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2610)
[Address] EAT @explorer.exe (SHRegQueryUSValueA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE98A0)
[Address] EAT @explorer.exe (SHRegQueryUSValueW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9860)
[Address] EAT @explorer.exe (SHRegSetPathA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA1A0)
[Address] EAT @explorer.exe (SHRegSetPathW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA180)
[Address] EAT @explorer.exe (SHRegSetUSValueA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9838)
[Address] EAT @explorer.exe (SHRegSetUSValueW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9810)
[Address] EAT @explorer.exe (SHRegWriteUSValueA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE97E4)
[Address] EAT @explorer.exe (SHRegWriteUSValueW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD25E0)
[Address] EAT @explorer.exe (SHRegisterValidateTemplate) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DB058E0)
[Address] EAT @explorer.exe (SHReleaseThreadRef) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA08C)
[Address] EAT @explorer.exe (SHRunIndirectRegClientCommand) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEC95C)
[Address] EAT @explorer.exe (SHSendMessageBroadcastA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAFA27C)
[Address] EAT @explorer.exe (SHSendMessageBroadcastW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2CC0)
[Address] EAT @explorer.exe (SHSetThreadRef) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD5B10)
[Address] EAT @explorer.exe (SHSetValueA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA14C)
[Address] EAT @explorer.exe (SHSetValueW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD63D0)
[Address] EAT @explorer.exe (SHSkipJunction) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2E20)
[Address] EAT @explorer.exe (SHStrDupA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADA260)
[Address] EAT @explorer.exe (SHStrDupW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD1070)
[Address] EAT @explorer.exe (SHStripMneumonicA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAFA900)
[Address] EAT @explorer.exe (SHStripMneumonicW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2DB0)
[Address] EAT @explorer.exe (SHUnicodeToAnsi) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD32E0)
[Address] EAT @explorer.exe (SHUnicodeToAnsiCP) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DADF7B9)
[Address] EAT @explorer.exe (SHUnicodeToUnicode) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEA300)
[Address] EAT @explorer.exe (SHUnlockShared) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAFF818)
[Address] EAT @explorer.exe (ShellMessageBoxA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEC604)
[Address] EAT @explorer.exe (ShellMessageBoxW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEF54C)
[Address] EAT @explorer.exe (StrCSpnA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9EEC)
[Address] EAT @explorer.exe (StrCSpnIA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9EDC)
[Address] EAT @explorer.exe (StrCSpnIW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9ECC)
[Address] EAT @explorer.exe (StrCSpnW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD5A30)
[Address] EAT @explorer.exe (StrCatBuffA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9FDC)
[Address] EAT @explorer.exe (StrCatBuffW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9FEC)
[Address] EAT @explorer.exe (StrCatChainW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9DCC)
[Address] EAT @explorer.exe (StrCatW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEFCF8)
[Address] EAT @explorer.exe (StrChrA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9FCC)
[Address] EAT @explorer.exe (StrChrIA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9F9C)
[Address] EAT @explorer.exe (StrChrIW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD10E0)
[Address] EAT @explorer.exe (StrChrNIW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9F8C)
[Address] EAT @explorer.exe (StrChrNW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9FBC)
[Address] EAT @explorer.exe (StrChrW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD1080)
[Address] EAT @explorer.exe (StrCmpCA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9DEC)
[Address] EAT @explorer.exe (StrCmpCW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2C90)
[Address] EAT @explorer.exe (StrCmpICA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD1100)
[Address] EAT @explorer.exe (StrCmpICW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD10F0)
[Address] EAT @explorer.exe (StrCmpIW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3650)
[Address] EAT @explorer.exe (StrCmpLogicalW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9DDC)
[Address] EAT @explorer.exe (StrCmpNA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9EBC)
[Address] EAT @explorer.exe (StrCmpNCA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9E0C)
[Address] EAT @explorer.exe (StrCmpNCW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9DFC)
[Address] EAT @explorer.exe (StrCmpNIA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9EAC)
[Address] EAT @explorer.exe (StrCmpNICA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD60A0)
[Address] EAT @explorer.exe (StrCmpNICW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2B70)
[Address] EAT @explorer.exe (StrCmpNIW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3670)
[Address] EAT @explorer.exe (StrCmpNW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3770)
[Address] EAT @explorer.exe (StrCmpW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD10B0)
[Address] EAT @explorer.exe (StrCpyNW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9FFC)
[Address] EAT @explorer.exe (StrCpyW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEFD38)
[Address] EAT @explorer.exe (StrDupA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9E4C)
[Address] EAT @explorer.exe (StrDupW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD2B50)
[Address] EAT @explorer.exe (StrFormatByteSize64A) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEFC00)
[Address] EAT @explorer.exe (StrFormatByteSizeA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEFBF4)
[Address] EAT @explorer.exe (StrFormatByteSizeEx) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD32D0)
[Address] EAT @explorer.exe (StrFormatByteSizeW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEFC60)
[Address] EAT @explorer.exe (StrFormatKBSizeA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEFB74)
[Address] EAT @explorer.exe (StrFormatKBSizeW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEFBE0)
[Address] EAT @explorer.exe (StrFromTimeIntervalA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAF8AC8)
[Address] EAT @explorer.exe (StrFromTimeIntervalW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAF8A44)
[Address] EAT @explorer.exe (StrIsIntlEqualA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9E3C)
[Address] EAT @explorer.exe (StrIsIntlEqualW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9E2C)
[Address] EAT @explorer.exe (StrNCatA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEFCB8)
[Address] EAT @explorer.exe (StrNCatW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEFC74)
[Address] EAT @explorer.exe (StrPBrkA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9F5C)
[Address] EAT @explorer.exe (StrPBrkW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD61E0)
[Address] EAT @explorer.exe (StrRChrA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9FAC)
[Address] EAT @explorer.exe (StrRChrIA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9F7C)
[Address] EAT @explorer.exe (StrRChrIW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9F6C)
[Address] EAT @explorer.exe (StrRChrW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD6210)
[Address] EAT @explorer.exe (StrRStrIA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9E9C)
[Address] EAT @explorer.exe (StrRStrIW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9E8C)
[Address] EAT @explorer.exe (StrRetToBSTR) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD60D0)
[Address] EAT @explorer.exe (StrRetToBufA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEF9E8)
[Address] EAT @explorer.exe (StrRetToBufW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD1110)
[Address] EAT @explorer.exe (StrRetToStrA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAEFA98)
[Address] EAT @explorer.exe (StrRetToStrW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3330)
[Address] EAT @explorer.exe (StrSpnA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9F0C)
[Address] EAT @explorer.exe (StrSpnW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9EFC)
[Address] EAT @explorer.exe (StrStrA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9E7C)
[Address] EAT @explorer.exe (StrStrIA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD6490)
[Address] EAT @explorer.exe (StrStrIW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD10D0)
[Address] EAT @explorer.exe (StrStrNIW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9E5C)
[Address] EAT @explorer.exe (StrStrNW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9E6C)
[Address] EAT @explorer.exe (StrStrW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3660)
[Address] EAT @explorer.exe (StrToInt64ExA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9F2C)
[Address] EAT @explorer.exe (StrToInt64ExW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9F3C)
[Address] EAT @explorer.exe (StrToIntA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9F4C)
[Address] EAT @explorer.exe (StrToIntExA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9F1C)
[Address] EAT @explorer.exe (StrToIntExW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD61F0)
[Address] EAT @explorer.exe (StrToIntW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD10A0)
[Address] EAT @explorer.exe (StrTrimA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9E1C)
[Address] EAT @explorer.exe (StrTrimW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3320)
[Address] EAT @explorer.exe (UrlApplySchemeA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9760)
[Address] EAT @explorer.exe (UrlApplySchemeW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9750)
[Address] EAT @explorer.exe (UrlCanonicalizeA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9740)
[Address] EAT @explorer.exe (UrlCanonicalizeW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD36B0)
[Address] EAT @explorer.exe (UrlCombineA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9728)
[Address] EAT @explorer.exe (UrlCombineW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3750)
[Address] EAT @explorer.exe (UrlCompareA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9714)
[Address] EAT @explorer.exe (UrlCompareW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9704)
[Address] EAT @explorer.exe (UrlCreateFromPathA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE96F4)
[Address] EAT @explorer.exe (UrlCreateFromPathW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3BF0)
[Address] EAT @explorer.exe (UrlEscapeA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE96E4)
[Address] EAT @explorer.exe (UrlEscapeW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3720)
[Address] EAT @explorer.exe (UrlFixupW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE96D4)
[Address] EAT @explorer.exe (UrlGetLocationA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE96C4)
[Address] EAT @explorer.exe (UrlGetLocationW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE96B4)
[Address] EAT @explorer.exe (UrlGetPartA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE969C)
[Address] EAT @explorer.exe (UrlGetPartW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD3700)
[Address] EAT @explorer.exe (UrlHashA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9688)
[Address] EAT @explorer.exe (UrlHashW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9678)
[Address] EAT @explorer.exe (UrlIsA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9668)
[Address] EAT @explorer.exe (UrlIsNoHistoryA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE95EC)
[Address] EAT @explorer.exe (UrlIsNoHistoryW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD1150)
[Address] EAT @explorer.exe (UrlIsOpaqueA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE960C)
[Address] EAT @explorer.exe (UrlIsOpaqueW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE95FC)
[Address] EAT @explorer.exe (UrlIsW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD36A0)
[Address] EAT @explorer.exe (UrlUnescapeA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAE9658)
[Address] EAT @explorer.exe (UrlUnescapeW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAD36D0)
[Address] EAT @explorer.exe (WhichPlatform) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAFA6D0)
[Address] EAT @explorer.exe (wnsprintfA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAF93AC)
[Address] EAT @explorer.exe (wnsprintfW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAF9318)
[Address] EAT @explorer.exe (wvnsprintfA) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAF93F8)
[Address] EAT @explorer.exe (wvnsprintfW) : clbcatq.dll -> HOOKED (C:\WINDOWS\system32\SHLWAPI.dll @ 0x2DAF9368)
[Address] EAT @explorer.exe (GdipAddPathArc) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2559C868)
[Address] EAT @explorer.exe (GdipAddPathArcI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2559C7C8)
[Address] EAT @explorer.exe (GdipAddPathBezier) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CF400)
[Address] EAT @explorer.exe (GdipAddPathBezierI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CF31C)
[Address] EAT @explorer.exe (GdipAddPathBeziers) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CF258)
[Address] EAT @explorer.exe (GdipAddPathBeziersI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CF174)
[Address] EAT @explorer.exe (GdipAddPathClosedCurve) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CEAC4)
[Address] EAT @explorer.exe (GdipAddPathClosedCurve2) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CE90C)
[Address] EAT @explorer.exe (GdipAddPathClosedCurve2I) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CE824)
[Address] EAT @explorer.exe (GdipAddPathClosedCurveI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CE9E0)
[Address] EAT @explorer.exe (GdipAddPathCurve) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CF094)
[Address] EAT @explorer.exe (GdipAddPathCurve2) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CEE94)
[Address] EAT @explorer.exe (GdipAddPathCurve2I) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CED74)
[Address] EAT @explorer.exe (GdipAddPathCurve3) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CEC90)
[Address] EAT @explorer.exe (GdipAddPathCurve3I) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CEB90)
[Address] EAT @explorer.exe (GdipAddPathCurveI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CEF78)
[Address] EAT @explorer.exe (GdipAddPathEllipse) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CE3FC)
[Address] EAT @explorer.exe (GdipAddPathEllipseI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CE378)
[Address] EAT @explorer.exe (GdipAddPathLine) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2559B964)
[Address] EAT @explorer.exe (GdipAddPathLine2) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CF61C)
[Address] EAT @explorer.exe (GdipAddPathLine2I) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CF538)
[Address] EAT @explorer.exe (GdipAddPathLineI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2559B8E0)
[Address] EAT @explorer.exe (GdipAddPathPath) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CDF7C)
[Address] EAT @explorer.exe (GdipAddPathPie) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CE280)
[Address] EAT @explorer.exe (GdipAddPathPieI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CE1E0)
[Address] EAT @explorer.exe (GdipAddPathPolygon) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CE11C)
[Address] EAT @explorer.exe (GdipAddPathPolygonI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CE038)
[Address] EAT @explorer.exe (GdipAddPathRectangle) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CE730)
[Address] EAT @explorer.exe (GdipAddPathRectangleI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CE6AC)
[Address] EAT @explorer.exe (GdipAddPathRectangles) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CE5E8)
[Address] EAT @explorer.exe (GdipAddPathRectanglesI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CE4E8)
[Address] EAT @explorer.exe (GdipAddPathString) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CDDBC)
[Address] EAT @explorer.exe (GdipAddPathStringI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CDCD4)
[Address] EAT @explorer.exe (GdipAlloc) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25559ADC)
[Address] EAT @explorer.exe (GdipBeginContainer) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BB1C4)
[Address] EAT @explorer.exe (GdipBeginContainer2) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BB100)
[Address] EAT @explorer.exe (GdipBeginContainerI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BB000)
[Address] EAT @explorer.exe (GdipBitmapApplyEffect) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C2874)
[Address] EAT @explorer.exe (GdipBitmapConvertFormat) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C2B20)
[Address] EAT @explorer.exe (GdipBitmapCreateApplyEffect) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C295C)
[Address] EAT @explorer.exe (GdipBitmapGetHistogram) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C278C)
[Address] EAT @explorer.exe (GdipBitmapGetHistogramSize) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C2740)
[Address] EAT @explorer.exe (GdipBitmapGetPixel) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C2E18)
[Address] EAT @explorer.exe (GdipBitmapLockBits) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2555C490)
[Address] EAT @explorer.exe (GdipBitmapSetPixel) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255731E0)
[Address] EAT @explorer.exe (GdipBitmapSetResolution) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25574880)
[Address] EAT @explorer.exe (GdipBitmapUnlockBits) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2555C5C8)
[Address] EAT @explorer.exe (GdipClearPathMarkers) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CF848)
[Address] EAT @explorer.exe (GdipCloneBitmapArea) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C2F04)
[Address] EAT @explorer.exe (GdipCloneBitmapAreaI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255A12D8)
[Address] EAT @explorer.exe (GdipCloneBrush) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CA32C)
[Address] EAT @explorer.exe (GdipCloneCustomLineCap) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C5450)
[Address] EAT @explorer.exe (GdipCloneFont) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B996C)
[Address] EAT @explorer.exe (GdipCloneFontFamily) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B9C18)
[Address] EAT @explorer.exe (GdipCloneImage) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255770D8)
[Address] EAT @explorer.exe (GdipCloneImageAttributes) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C2538)
[Address] EAT @explorer.exe (GdipCloneMatrix) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2559B360)
[Address] EAT @explorer.exe (GdipClonePath) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255D0184)
[Address] EAT @explorer.exe (GdipClonePen) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C7048)
[Address] EAT @explorer.exe (GdipCloneRegion) : MSIMG32.dll ->

Re: Prosím o kontrolu...předem děkuji

Napsal: 30 dub 2014 04:32
od olinka123
HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CB8FC)
[Address] EAT @explorer.exe (GdipCloneStringFormat) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B8CF0)
[Address] EAT @explorer.exe (GdipClosePathFigure) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CFA28)
[Address] EAT @explorer.exe (GdipClosePathFigures) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CF988)
[Address] EAT @explorer.exe (GdipCombineRegionPath) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CB538)
[Address] EAT @explorer.exe (GdipCombineRegionRect) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CB6F4)
[Address] EAT @explorer.exe (GdipCombineRegionRectI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CB654)
[Address] EAT @explorer.exe (GdipCombineRegionRegion) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255788A4)
[Address] EAT @explorer.exe (GdipComment) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B9878)
[Address] EAT @explorer.exe (GdipConvertToEmfPlus) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B80FC)
[Address] EAT @explorer.exe (GdipConvertToEmfPlusToFile) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B7FFC)
[Address] EAT @explorer.exe (GdipConvertToEmfPlusToStream) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B7EFC)
[Address] EAT @explorer.exe (GdipCreateAdjustableArrowCap) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C4B88)
[Address] EAT @explorer.exe (GdipCreateBitmapFromDirectDrawSurface) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C30A4)
[Address] EAT @explorer.exe (GdipCreateBitmapFromFile) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255706FC)
[Address] EAT @explorer.exe (GdipCreateBitmapFromFileICM) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C3330)
[Address] EAT @explorer.exe (GdipCreateBitmapFromGdiDib) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2556B994)
[Address] EAT @explorer.exe (GdipCreateBitmapFromGraphics) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C31D4)
[Address] EAT @explorer.exe (GdipCreateBitmapFromHBITMAP) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25552F28)
[Address] EAT @explorer.exe (GdipCreateBitmapFromHICON) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25577B2C)
[Address] EAT @explorer.exe (GdipCreateBitmapFromResource) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C300C)
[Address] EAT @explorer.exe (GdipCreateBitmapFromScan0) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255684A4)
[Address] EAT @explorer.exe (GdipCreateBitmapFromStream) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2559FF40)
[Address] EAT @explorer.exe (GdipCreateBitmapFromStreamICM) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C3480)
[Address] EAT @explorer.exe (GdipCreateCachedBitmap) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255A2F6C)
[Address] EAT @explorer.exe (GdipCreateCustomLineCap) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C551C)
[Address] EAT @explorer.exe (GdipCreateEffect) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C2DB0)
[Address] EAT @explorer.exe (GdipCreateFont) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255797BC)
[Address] EAT @explorer.exe (GdipCreateFontFamilyFromName) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25578DD4)
[Address] EAT @explorer.exe (GdipCreateFontFromDC) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B9520)
[Address] EAT @explorer.exe (GdipCreateFontFromLogfontA) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B9408)
[Address] EAT @explorer.exe (GdipCreateFontFromLogfontW) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25579380)
[Address] EAT @explorer.exe (GdipCreateFromHDC) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2555D848)
[Address] EAT @explorer.exe (GdipCreateFromHDC2) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C196C)
[Address] EAT @explorer.exe (GdipCreateFromHWND) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C18CC)
[Address] EAT @explorer.exe (GdipCreateFromHWNDICM) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C182C)
[Address] EAT @explorer.exe (GdipCreateHBITMAPFromBitmap) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25563830)
[Address] EAT @explorer.exe (GdipCreateHICONFromBitmap) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2557779C)
[Address] EAT @explorer.exe (GdipCreateHalftonePalette) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25579ED8)
[Address] EAT @explorer.exe (GdipCreateHatchBrush) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CA198)
[Address] EAT @explorer.exe (GdipCreateImageAttributes) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25576D10)
[Address] EAT @explorer.exe (GdipCreateLineBrush) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C984C)
[Address] EAT @explorer.exe (GdipCreateLineBrushFromRect) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255A2150)
[Address] EAT @explorer.exe (GdipCreateLineBrushFromRectI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255A2044)
[Address] EAT @explorer.exe (GdipCreateLineBrushFromRectWithAngle) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C961C)
[Address] EAT @explorer.exe (GdipCreateLineBrushFromRectWithAngleI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C9514)
[Address] EAT @explorer.exe (GdipCreateLineBrushI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C9738)
[Address] EAT @explorer.exe (GdipCreateMatrix) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255674C8)
[Address] EAT @explorer.exe (GdipCreateMatrix2) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2559B244)
[Address] EAT @explorer.exe (GdipCreateMatrix3) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CC3C0)
[Address] EAT @explorer.exe (GdipCreateMatrix3I) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CC274)
[Address] EAT @explorer.exe (GdipCreateMetafileFromEmf) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BAB18)
[Address] EAT @explorer.exe (GdipCreateMetafileFromFile) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BAA30)
[Address] EAT @explorer.exe (GdipCreateMetafileFromStream) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BA854)
[Address] EAT @explorer.exe (GdipCreateMetafileFromWmf) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BAC0C)
[Address] EAT @explorer.exe (GdipCreateMetafileFromWmfFile) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BA93C)
[Address] EAT @explorer.exe (GdipCreatePath) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2556F200)
[Address] EAT @explorer.exe (GdipCreatePath2) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255D03C4)
[Address] EAT @explorer.exe (GdipCreatePath2I) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255D023C)
[Address] EAT @explorer.exe (GdipCreatePathGradient) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C8778)
[Address] EAT @explorer.exe (GdipCreatePathGradientFromPath) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C8598)
[Address] EAT @explorer.exe (GdipCreatePathGradientI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C864C)
[Address] EAT @explorer.exe (GdipCreatePathIter) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CCEE0)
[Address] EAT @explorer.exe (GdipCreatePen1) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2556A7E8)
[Address] EAT @explorer.exe (GdipCreatePen2) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25567D40)
[Address] EAT @explorer.exe (GdipCreateRegion) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25578040)
[Address] EAT @explorer.exe (GdipCreateRegionHrgn) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CBA00)
[Address] EAT @explorer.exe (GdipCreateRegionPath) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CBB94)
[Address] EAT @explorer.exe (GdipCreateRegionRect) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2559D9CC)
[Address] EAT @explorer.exe (GdipCreateRegionRectI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2559D918)
[Address] EAT @explorer.exe (GdipCreateRegionRgnData) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CBAC8)
[Address] EAT @explorer.exe (GdipCreateSolidFill) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25565630)
[Address] EAT @explorer.exe (GdipCreateStreamOnFile) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2558AB24)
[Address] EAT @explorer.exe (GdipCreateStringFormat) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B8EA0)
[Address] EAT @explorer.exe (GdipCreateTexture) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25572A40)
[Address] EAT @explorer.exe (GdipCreateTexture2) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C9EC4)
[Address] EAT @explorer.exe (GdipCreateTexture2I) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C9C40)
[Address] EAT @explorer.exe (GdipCreateTextureIA) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C9D10)
[Address] EAT @explorer.exe (GdipCreateTextureIAI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C9BF0)
[Address] EAT @explorer.exe (GdipDeleteBrush) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25565170)
[Address] EAT @explorer.exe (GdipDeleteCachedBitmap) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25573498)
[Address] EAT @explorer.exe (GdipDeleteCustomLineCap) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C5308)
[Address] EAT @explorer.exe (GdipDeleteEffect) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C2D60)
[Address] EAT @explorer.exe (GdipDeleteFont) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2556834C)
[Address] EAT @explorer.exe (GdipDeleteFontFamily) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B9CD0)
[Address] EAT @explorer.exe (GdipDeleteGraphics) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2555D378)
[Address] EAT @explorer.exe (GdipDeleteMatrix) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255673FC)
[Address] EAT @explorer.exe (GdipDeletePath) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2556F2E0)
[Address] EAT @explorer.exe (GdipDeletePathIter) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CCE4C)
[Address] EAT @explorer.exe (GdipDeletePen) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2556521C)
[Address] EAT @explorer.exe (GdipDeletePrivateFontCollection) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B924C)
[Address] EAT @explorer.exe (GdipDeleteRegion) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255676B8)
[Address] EAT @explorer.exe (GdipDeleteStringFormat) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B8C7C)
[Address] EAT @explorer.exe (GdipDisposeImage) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25551CE0)
[Address] EAT @explorer.exe (GdipDisposeImageAttributes) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25576B70)
[Address] EAT @explorer.exe (GdipDrawArc) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C040C)
[Address] EAT @explorer.exe (GdipDrawArcI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C0360)
[Address] EAT @explorer.exe (GdipDrawBezier) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C0208)
[Address] EAT @explorer.exe (GdipDrawBezierI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C0114)
[Address] EAT @explorer.exe (GdipDrawBeziers) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BFFF8)
[Address] EAT @explorer.exe (GdipDrawBeziersI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BFEDC)
[Address] EAT @explorer.exe (GdipDrawCachedBitmap) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255A0EF0)
[Address] EAT @explorer.exe (GdipDrawClosedCurve) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BF140)
[Address] EAT @explorer.exe (GdipDrawClosedCurve2) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BEF38)
[Address] EAT @explorer.exe (GdipDrawClosedCurve2I) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BEE44)
[Address] EAT @explorer.exe (GdipDrawClosedCurveI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BF05C)
[Address] EAT @explorer.exe (GdipDrawCurve) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BF7B4)
[Address] EAT @explorer.exe (GdipDrawCurve2) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BF59C)
[Address] EAT @explorer.exe (GdipDrawCurve2I) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BF4A8)
[Address] EAT @explorer.exe (GdipDrawCurve3) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BF374)
[Address] EAT @explorer.exe (GdipDrawCurve3I) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BF268)
[Address] EAT @explorer.exe (GdipDrawCurveI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BF6D0)
[Address] EAT @explorer.exe (GdipDrawDriverString) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BD9A8)
[Address] EAT @explorer.exe (GdipDrawEllipse) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BFB64)
[Address] EAT @explorer.exe (GdipDrawEllipseI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BFAD4)
[Address] EAT @explorer.exe (GdipDrawImage) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25572DF0)
[Address] EAT @explorer.exe (GdipDrawImageFX) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BD004)
[Address] EAT @explorer.exe (GdipDrawImageI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25572D6C)
[Address] EAT @explorer.exe (GdipDrawImagePointRect) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2559D77C)
[Address] EAT @explorer.exe (GdipDrawImagePointRectI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2559D6B8)
[Address] EAT @explorer.exe (GdipDrawImagePoints) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BD658)
[Address] EAT @explorer.exe (GdipDrawImagePointsI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BD53C)
[Address] EAT @explorer.exe (GdipDrawImagePointsRect) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BD2CC)
[Address] EAT @explorer.exe (GdipDrawImagePointsRectI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BD134)
[Address] EAT @explorer.exe (GdipDrawImageRect) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25562664)
[Address] EAT @explorer.exe (GdipDrawImageRectI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255625C4)
[Address] EAT @explorer.exe (GdipDrawImageRectRect) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2559EFC4)
[Address] EAT @explorer.exe (GdipDrawImageRectRectI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2559EE90)
[Address] EAT @explorer.exe (GdipDrawLine) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C05D8)
[Address] EAT @explorer.exe (GdipDrawLineI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C0548)
[Address] EAT @explorer.exe (GdipDrawLines) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2556CA40)
[Address] EAT @explorer.exe (GdipDrawLinesI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2556C958)
[Address] EAT @explorer.exe (GdipDrawPath) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2559AFA0)
[Address] EAT @explorer.exe (GdipDrawPie) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BF998)
[Address] EAT @explorer.exe (GdipDrawPieI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BF8EC)
[Address] EAT @explorer.exe (GdipDrawPolygon) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255827D0)
[Address] EAT @explorer.exe (GdipDrawPolygonI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255826E0)
[Address] EAT @explorer.exe (GdipDrawRectangle) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2556CD30)
[Address] EAT @explorer.exe (GdipDrawRectangleI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2556CC90)
[Address] EAT @explorer.exe (GdipDrawRectangles) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BFDC0)
[Address] EAT @explorer.exe (GdipDrawRectanglesI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BFC88)
[Address] EAT @explorer.exe (GdipDrawString) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BE018)
[Address] EAT @explorer.exe (GdipEmfToWmfBits) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25586A28)
[Address] EAT @explorer.exe (GdipEndContainer) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BAF58)
[Address] EAT @explorer.exe (GdipEnumerateMetafileDestPoint) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BCE6C)
[Address] EAT @explorer.exe (GdipEnumerateMetafileDestPointI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BCDD0)
[Address] EAT @explorer.exe (GdipEnumerateMetafileDestPoints) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BC9D4)
[Address] EAT @explorer.exe (GdipEnumerateMetafileDestPointsI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BC894)
[Address] EAT @explorer.exe (GdipEnumerateMetafileDestRect) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BCC38)
[Address] EAT @explorer.exe (GdipEnumerateMetafileDestRectI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BCB80)
[Address] EAT @explorer.exe (GdipEnumerateMetafileSrcRectDestPoint) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BC6D0)
[Address] EAT @explorer.exe (GdipEnumerateMetafileSrcRectDestPointI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BC5E0)
[Address] EAT @explorer.exe (GdipEnumerateMetafileSrcRectDestPoints) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BC15C)
[Address] EAT @explorer.exe (GdipEnumerateMetafileSrcRectDestPointsI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BBFD4)
[Address] EAT @explorer.exe (GdipEnumerateMetafileSrcRectDestRect) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BC41C)
[Address] EAT @explorer.exe (GdipEnumerateMetafileSrcRectDestRectI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BC328)
[Address] EAT @explorer.exe (GdipFillClosedCurve) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BE524)
[Address] EAT @explorer.exe (GdipFillClosedCurve2) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BE310)
[Address] EAT @explorer.exe (GdipFillClosedCurve2I) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BE210)
[Address] EAT @explorer.exe (GdipFillClosedCurveI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BE440)
[Address] EAT @explorer.exe (GdipFillEllipse) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2556F768)
[Address] EAT @explorer.exe (GdipFillEllipseI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BE990)
[Address] EAT @explorer.exe (GdipFillPath) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BE654)
[Address] EAT @explorer.exe (GdipFillPie) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BE850)
[Address] EAT @explorer.exe (GdipFillPieI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BE79C)
[Address] EAT @explorer.exe (GdipFillPolygon) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255829AC)
[Address] EAT @explorer.exe (GdipFillPolygon2) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BEB04)
[Address] EAT @explorer.exe (GdipFillPolygon2I) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BEA20)
[Address] EAT @explorer.exe (GdipFillPolygonI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255828BC)
[Address] EAT @explorer.exe (GdipFillRectangle) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25565870)
[Address] EAT @explorer.exe (GdipFillRectangleI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255657DC)
[Address] EAT @explorer.exe (GdipFillRectangles) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BED28)
[Address] EAT @explorer.exe (GdipFillRectanglesI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BEC28)
[Address] EAT @explorer.exe (GdipFillRegion) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2559D354)
[Address] EAT @explorer.exe (GdipFindFirstImageItem) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C3730)
[Address] EAT @explorer.exe (GdipFindNextImageItem) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C3680)
[Address] EAT @explorer.exe (GdipFlattenPath) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2559AEC4)
[Address] EAT @explorer.exe (GdipFlush) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C1764)
[Address] EAT @explorer.exe (GdipFree) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25559A74)
[Address] EAT @explorer.exe (GdipGetAdjustableArrowCapFillState) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C45B0)
[Address] EAT @explorer.exe (GdipGetAdjustableArrowCapHeight) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C4A10)
[Address] EAT @explorer.exe (GdipGetAdjustableArrowCapMiddleInset) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C4720)
[Address] EAT @explorer.exe (GdipGetAdjustableArrowCapWidth) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C4898)
[Address] EAT @explorer.exe (GdipGetAllPropertyItems) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255711D8)
[Address] EAT @explorer.exe (GdipGetBrushType) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CA27C)
[Address] EAT @explorer.exe (GdipGetCellAscent) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B9708)
[Address] EAT @explorer.exe (GdipGetCellDescent) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B9644)
[Address] EAT @explorer.exe (GdipGetClip) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25578424)
[Address] EAT @explorer.exe (GdipGetClipBounds) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255BB938)
[Address] EAT @explorer.exe (GdipGetClipBoundsI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25567B04)
[Address] EAT @explorer.exe (GdipGetCompositingMode) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2559D0E0)
[Address] EAT @explorer.exe (GdipGetCompositingQuality) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C1478)
[Address] EAT @explorer.exe (GdipGetCustomLineCapBaseCap) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C4EF4)
[Address] EAT @explorer.exe (GdipGetCustomLineCapBaseInset) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C4DBC)
[Address] EAT @explorer.exe (GdipGetCustomLineCapStrokeCaps) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C5198)
[Address] EAT @explorer.exe (GdipGetCustomLineCapStrokeJoin) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C5058)
[Address] EAT @explorer.exe (GdipGetCustomLineCapType) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C539C)
[Address] EAT @explorer.exe (GdipGetCustomLineCapWidthScale) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C4C84)
[Address] EAT @explorer.exe (GdipGetDC) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255835E8)
[Address] EAT @explorer.exe (GdipGetDpiX) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C0A68)
[Address] EAT @explorer.exe (GdipGetDpiY) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25578AD8)
[Address] EAT @explorer.exe (GdipGetEffectParameterSize) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C2C8C)
[Address] EAT @explorer.exe (GdipGetEffectParameters) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C2C18)
[Address] EAT @explorer.exe (GdipGetEmHeight) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25579A70)
[Address] EAT @explorer.exe (GdipGetEncoderParameterList) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C419C)
[Address] EAT @explorer.exe (GdipGetEncoderParameterListSize) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C4260)
[Address] EAT @explorer.exe (GdipGetFamily) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25578C70)
[Address] EAT @explorer.exe (GdipGetFamilyName) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25579984)
[Address] EAT @explorer.exe (GdipGetFontCollectionFamilyCount) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B9178)
[Address] EAT @explorer.exe (GdipGetFontCollectionFamilyList) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B90BC)
[Address] EAT @explorer.exe (GdipGetFontHeight) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25579660)
[Address] EAT @explorer.exe (GdipGetFontHeightGivenDPI) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B9A64)
[Address] EAT @explorer.exe (GdipGetFontSize) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25578CF0)
[Address] EAT @explorer.exe (GdipGetFontStyle) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25578B6C)
[Address] EAT @explorer.exe (GdipGetFontUnit) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25578BF0)
[Address] EAT @explorer.exe (GdipGetGenericFontFamilyMonospace) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B9DC4)
[Address] EAT @explorer.exe (GdipGetGenericFontFamilySansSerif) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B9EAC)
[Address] EAT @explorer.exe (GdipGetGenericFontFamilySerif) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255B9E38)
[Address] EAT @explorer.exe (GdipGetHatchBackgroundColor) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CA030)
[Address] EAT @explorer.exe (GdipGetHatchForegroundColor) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C84E4)
[Address] EAT @explorer.exe (GdipGetHatchStyle) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255CA0E4)
[Address] EAT @explorer.exe (GdipGetHemfFromMetafile) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25585A24)
[Address] EAT @explorer.exe (GdipGetImageAttributesAdjustedPalette) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C1A18)
[Address] EAT @explorer.exe (GdipGetImageBounds) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C3CEC)
[Address] EAT @explorer.exe (GdipGetImageDecoders) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25599270)
[Address] EAT @explorer.exe (GdipGetImageDecodersSize) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25599428)
[Address] EAT @explorer.exe (GdipGetImageDimension) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C3C28)
[Address] EAT @explorer.exe (GdipGetImageEncoders) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25556798)
[Address] EAT @explorer.exe (GdipGetImageEncodersSize) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255569D8)
[Address] EAT @explorer.exe (GdipGetImageFlags) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C396C)
[Address] EAT @explorer.exe (GdipGetImageGraphicsContext) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25569214)
[Address] EAT @explorer.exe (GdipGetImageHeight) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2555B680)
[Address] EAT @explorer.exe (GdipGetImageHorizontalResolution) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C3B3C)
[Address] EAT @explorer.exe (GdipGetImageItemData) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C35D0)
[Address] EAT @explorer.exe (GdipGetImagePalette) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255A05B4)
[Address] EAT @explorer.exe (GdipGetImagePaletteSize) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255A067C)
[Address] EAT @explorer.exe (GdipGetImagePixelFormat) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x2555B588)
[Address] EAT @explorer.exe (GdipGetImageRawFormat) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255718F4)
[Address] EAT @explorer.exe (GdipGetImageThumbnail) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C37E0)
[Address] EAT @explorer.exe (GdipGetImageType) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x25576EA0)
[Address] EAT @explorer.exe (GdipGetImageVerticalResolution) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x255C3A50)
[Address] EAT @explorer.exe (GdipGetImageWidth) : MSIMG32.dll -> HOOKED (C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012