Prosím o kontrolu logu.. Pomalu najíždi do metra Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
AngelikaB
Level 6
Level 6
Příspěvky: 3139
Registrován: červen 13
Pohlaví: Žena
Stav:
Offline

Prosím o kontrolu logu.. Pomalu najíždi do metra

Příspěvekod AngelikaB » 05 dub 2014 13:43

ahoj zase po delší době ale omlouvám se že to znovu sem dávám.. Ale zase mám viry nevím jak to chytám je to zázrak :lol:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:43:32, on 5. 4. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v10.0 (10.00.9200.16843)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe
C:\Program Files (x86)\Windows Media Player\wmplayer.exe
C:\Program Files (x86)\Opera\opera.exe
C:\Program Files (x86)\Steam\steam.exe
C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
O4 - HKLM\..\Run: [ASUSWebStorage] C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe /S
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
O23 - Service: Asus WebStorage Windows Service - Unknown owner - C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe

--
End of file - 10511 bytes

Reklama
Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.. Pomalu najíždi do metra

Příspěvekod Orcus » 05 dub 2014 22:03

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

===================================================

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.

====================================================

Stáhni AdwCleaner

Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

Uživatelský avatar
AngelikaB
Level 6
Level 6
Příspěvky: 3139
Registrován: červen 13
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu logu.. Pomalu najíždi do metra

Příspěvekod AngelikaB » 06 dub 2014 08:29

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 6. 4. 2014
Scan Time: 8:28:21
Logfile:
Administrator: Yes

Version: 2.00.1.1004
Malware Database: v2014.04.06.04
Rootkit Database: v2014.03.27.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Chameleon: Disabled

OS: Windows 8
CPU: x64
File System: NTFS
User: ASUS

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 246660
Time Elapsed: 8 min, 34 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Shuriken: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)

Uživatelský avatar
AngelikaB
Level 6
Level 6
Příspěvky: 3139
Registrován: červen 13
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu logu.. Pomalu najíždi do metra

Příspěvekod AngelikaB » 06 dub 2014 08:30

# AdwCleaner v3.023 - Report created 06/04/2014 at 08:29:46
# Updated 01/04/2014 by Xplode
# Operating System : Windows 8 (64 bits)
# Username : ASUS - PEŤÁSEK
# Running from : C:\Users\ASUS\Downloads\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16843


-\\ Mozilla Firefox v28.0 (cs)

[ File : C:\Users\ASUS\AppData\Roaming\Mozilla\Firefox\Profiles\sptf9zwg.default\prefs.js ]


*************************

AdwCleaner[R0].txt - [993 octets] - [29/03/2014 13:06:42]
AdwCleaner[R1].txt - [916 octets] - [05/04/2014 08:58:23]
AdwCleaner[R2].txt - [719 octets] - [06/04/2014 08:29:46]
AdwCleaner[S0].txt - [1063 octets] - [29/03/2014 13:07:36]
AdwCleaner[S1].txt - [980 octets] - [05/04/2014 08:58:52]

########## EOF - C:\AdwCleaner\AdwCleaner[R2].txt - [897 octets] ##########

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu.. Pomalu najíždi do metra

Příspěvekod memphisto » 06 dub 2014 09:55

Stáhni si Junkware Removal Tool

na svojí plochu.
Deaktivuj si svůj antivirový program.
Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

Uživatelský avatar
AngelikaB
Level 6
Level 6
Příspěvky: 3139
Registrován: červen 13
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu logu.. Pomalu najíždi do metra

Příspěvekod AngelikaB » 06 dub 2014 10:21

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 8 x64
Ran by ASUS on ne 06. 04. 2014 at 10:13:41,19
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\ytd video downloader"
Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader"



~~~ FireFox

Emptied folder: C:\Users\ASUS\AppData\Roaming\mozilla\firefox\profiles\sptf9zwg.default\minidumps [4 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ne 06. 04. 2014 at 10:20:21,80
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Uživatelský avatar
AngelikaB
Level 6
Level 6
Příspěvky: 3139
Registrován: červen 13
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu logu.. Pomalu najíždi do metra

Příspěvekod AngelikaB » 06 dub 2014 10:30

1 strana
RogueKiller V8.8.15 _x64_ [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 8 (6.2.9200 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : ASUS [Práva správce]
Mód : Odebrat -- Datum : 04/06/2014 10:26:21
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 6 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
[Address] EAT @explorer.exe (AssocCreate) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73B20)
[Address] EAT @explorer.exe (AssocGetPerceivedType) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF74940)
[Address] EAT @explorer.exe (AssocIsDangerous) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8CFBC)
[Address] EAT @explorer.exe (AssocQueryKeyA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7A870)
[Address] EAT @explorer.exe (AssocQueryKeyW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73A20)
[Address] EAT @explorer.exe (AssocQueryStringA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8E60C)
[Address] EAT @explorer.exe (AssocQueryStringByKeyA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8E440)
[Address] EAT @explorer.exe (AssocQueryStringByKeyW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF741A0)
[Address] EAT @explorer.exe (AssocQueryStringW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF79CC0)
[Address] EAT @explorer.exe (ChrCmpIA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A03C)
[Address] EAT @explorer.exe (ChrCmpIW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A02C)
[Address] EAT @explorer.exe (ColorAdjustLuma) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8F7A8)
[Address] EAT @explorer.exe (ColorHLSToRGB) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7BFF0)
[Address] EAT @explorer.exe (ColorRGBToHLS) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7BF30)
[Address] EAT @explorer.exe (ConnectToConnectionPoint) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF742B0)
[Address] EAT @explorer.exe (DelayLoadFailureHook) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8F8F0)
[Address] EAT @explorer.exe (DllGetClassObject) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF9D448)
[Address] EAT @explorer.exe (DllGetVersion) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF85AE0)
[Address] EAT @explorer.exe (GUIDFromStringW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7F786)
[Address] EAT @explorer.exe (GetAcceptLanguagesA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF897D0)
[Address] EAT @explorer.exe (GetAcceptLanguagesW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF75A40)
[Address] EAT @explorer.exe (GetMenuPosFromID) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF75A60)
[Address] EAT @explorer.exe (HashData) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF897C0)
[Address] EAT @explorer.exe (IStream_Copy) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7A1A0)
[Address] EAT @explorer.exe (IStream_Read) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72B80)
[Address] EAT @explorer.exe (IStream_ReadPidl) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF79980)
[Address] EAT @explorer.exe (IStream_ReadStr) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF71120)
[Address] EAT @explorer.exe (IStream_Reset) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF76340)
[Address] EAT @explorer.exe (IStream_Size) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7A180)
[Address] EAT @explorer.exe (IStream_Write) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF76320)
[Address] EAT @explorer.exe (IStream_WritePidl) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF9F194)
[Address] EAT @explorer.exe (IStream_WriteStr) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF76350)
[Address] EAT @explorer.exe (IUnknown_AtomicRelease) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A09C)
[Address] EAT @explorer.exe (IUnknown_Exec) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF75B80)
[Address] EAT @explorer.exe (IUnknown_GetSite) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF760B0)
[Address] EAT @explorer.exe (IUnknown_GetWindow) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72D20)
[Address] EAT @explorer.exe (IUnknown_QueryService) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73300)
[Address] EAT @explorer.exe (IUnknown_QueryStatus) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF9BBA8)
[Address] EAT @explorer.exe (IUnknown_Set) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF71130)
[Address] EAT @explorer.exe (IUnknown_SetSite) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73310)
[Address] EAT @explorer.exe (IntlStrEqWorkerA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89E3C)
[Address] EAT @explorer.exe (IntlStrEqWorkerW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89E2C)
[Address] EAT @explorer.exe (IsCharSpaceA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89A80)
[Address] EAT @explorer.exe (IsCharSpaceW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF71140)
[Address] EAT @explorer.exe (IsInternetESCEnabled) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF897B0)
[Address] EAT @explorer.exe (IsOS) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72B60)
[Address] EAT @explorer.exe (MLFreeLibrary) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF99EF4)
[Address] EAT @explorer.exe (MLLoadLibraryA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF99F48)
[Address] EAT @explorer.exe (MLLoadLibraryW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF99FA8)
[Address] EAT @explorer.exe (ParseURLA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF897A0)
[Address] EAT @explorer.exe (ParseURLW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7C250)
[Address] EAT @explorer.exe (PathAddBackslashA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89B2C)
[Address] EAT @explorer.exe (PathAddBackslashW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73C00)
[Address] EAT @explorer.exe (PathAddExtensionA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89CCC)
[Address] EAT @explorer.exe (PathAddExtensionW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89CBC)
[Address] EAT @explorer.exe (PathAppendA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89CAC)
[Address] EAT @explorer.exe (PathAppendW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF75A10)
[Address] EAT @explorer.exe (PathBuildRootA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A05C)
[Address] EAT @explorer.exe (PathBuildRootW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A06C)
[Address] EAT @explorer.exe (PathCanonicalizeA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89C9C)
[Address] EAT @explorer.exe (PathCanonicalizeW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72CF0)
[Address] EAT @explorer.exe (PathCombineA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89B5C)
[Address] EAT @explorer.exe (PathCombineW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73C10)
[Address] EAT @explorer.exe (PathCommonPrefixA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89DAC)
[Address] EAT @explorer.exe (PathCommonPrefixW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89D9C)
[Address] EAT @explorer.exe (PathCompactPathA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8AF90)
[Address] EAT @explorer.exe (PathCompactPathExA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8AD80)
[Address] EAT @explorer.exe (PathCompactPathExW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF76530)
[Address] EAT @explorer.exe (PathCompactPathW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8EB08)
[Address] EAT @explorer.exe (PathCreateFromUrlA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89790)
[Address] EAT @explorer.exe (PathCreateFromUrlAlloc) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89780)
[Address] EAT @explorer.exe (PathCreateFromUrlW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF736E0)
[Address] EAT @explorer.exe (PathFileExistsA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89C0C)
[Address] EAT @explorer.exe (PathFileExistsAndAttributesW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF75930)
[Address] EAT @explorer.exe (PathFileExistsW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73690)
[Address] EAT @explorer.exe (PathFindExtensionA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89C3C)
[Address] EAT @explorer.exe (PathFindExtensionW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF710C0)
[Address] EAT @explorer.exe (PathFindFileNameA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89BFC)
[Address] EAT @explorer.exe (PathFindFileNameW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF71090)
[Address] EAT @explorer.exe (PathFindNextComponentA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89AE0)
[Address] EAT @explorer.exe (PathFindNextComponentW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7A210)
[Address] EAT @explorer.exe (PathFindOnPathA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8B610)
[Address] EAT @explorer.exe (PathFindOnPathW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF79170)
[Address] EAT @explorer.exe (PathFindSuffixArrayA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8B534)
[Address] EAT @explorer.exe (PathFindSuffixArrayW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF753D0)
[Address] EAT @explorer.exe (PathGetArgsA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8962C)
[Address] EAT @explorer.exe (PathGetArgsW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7C880)
[Address] EAT @explorer.exe (PathGetCharTypeA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89648)
[Address] EAT @explorer.exe (PathGetCharTypeW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF76480)
[Address] EAT @explorer.exe (PathGetDriveNumberA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89D5C)
[Address] EAT @explorer.exe (PathGetDriveNumberW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF71050)
[Address] EAT @explorer.exe (PathIsContentTypeA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8ABAC)
[Address] EAT @explorer.exe (PathIsContentTypeW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7A2C0)
[Address] EAT @explorer.exe (PathIsDirectoryA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8B404)
[Address] EAT @explorer.exe (PathIsDirectoryEmptyA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8B334)
[Address] EAT @explorer.exe (PathIsDirectoryEmptyW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8EE78)
[Address] EAT @explorer.exe (PathIsDirectoryW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF754D0)
[Address] EAT @explorer.exe (PathIsFileSpecA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89D6C)
[Address] EAT @explorer.exe (PathIsFileSpecW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF76200)
[Address] EAT @explorer.exe (PathIsLFNFileSpecA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89CFC)
[Address] EAT @explorer.exe (PathIsLFNFileSpecW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89CEC)
[Address] EAT @explorer.exe (PathIsNetworkPathA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A07C)
[Address] EAT @explorer.exe (PathIsNetworkPathW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF729A0)
[Address] EAT @explorer.exe (PathIsPrefixA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89D8C)
[Address] EAT @explorer.exe (PathIsPrefixW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89D7C)
[Address] EAT @explorer.exe (PathIsRelativeA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89D4C)
[Address] EAT @explorer.exe (PathIsRelativeW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73680)
[Address] EAT @explorer.exe (PathIsRootA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89C8C)
[Address] EAT @explorer.exe (PathIsRootW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72CE0)
[Address] EAT @explorer.exe (PathIsSameRootA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89D1C)
[Address] EAT @explorer.exe (PathIsSameRootW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89D0C)
[Address] EAT @explorer.exe (PathIsSystemFolderA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A834)
[Address] EAT @explorer.exe (PathIsSystemFolderW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8E948)
[Address] EAT @explorer.exe (PathIsUNCA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89B3C)
[Address] EAT @explorer.exe (PathIsUNCServerA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89C1C)
[Address] EAT @explorer.exe (PathIsUNCServerShareA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89C2C)
[Address] EAT @explorer.exe (PathIsUNCServerShareW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF75E60)
[Address] EAT @explorer.exe (PathIsUNCServerW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF75E70)
[Address] EAT @explorer.exe (PathIsUNCW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF71040)
[Address] EAT @explorer.exe (PathIsURLA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89770)
[Address] EAT @explorer.exe (PathIsURLW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF736C0)
[Address] EAT @explorer.exe (PathMakePrettyA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8BCB0)
[Address] EAT @explorer.exe (PathMakePrettyW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF79FC0)
[Address] EAT @explorer.exe (PathMakeSystemFolderA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A8C0)
[Address] EAT @explorer.exe (PathMakeSystemFolderW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF71270)
[Address] EAT @explorer.exe (PathMatchSpecA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89BAC)
[Address] EAT @explorer.exe (PathMatchSpecExA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89B8C)
[Address] EAT @explorer.exe (PathMatchSpecExW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89B7C)
[Address] EAT @explorer.exe (PathMatchSpecW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89B9C)
[Address] EAT @explorer.exe (PathParseIconLocationA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89BEC)
[Address] EAT @explorer.exe (PathParseIconLocationW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF75E20)
[Address] EAT @explorer.exe (PathQuoteSpacesA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89BCC)
[Address] EAT @explorer.exe (PathQuoteSpacesW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72D00)
[Address] EAT @explorer.exe (PathRelativePathToA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89B14)
[Address] EAT @explorer.exe (PathRelativePathToW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89AF4)
[Address] EAT @explorer.exe (PathRemoveArgsA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8BC74)
[Address] EAT @explorer.exe (PathRemoveArgsW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF76450)
[Address] EAT @explorer.exe (PathRemoveBackslashA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89CDC)
[Address] EAT @explorer.exe (PathRemoveBackslashW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73730)
[Address] EAT @explorer.exe (PathRemoveBlanksA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89BBC)
[Address] EAT @explorer.exe (PathRemoveBlanksW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73BD0)
[Address] EAT @explorer.exe (PathRemoveExtensionA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89C7C)
[Address] EAT @explorer.exe (PathRemoveExtensionW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF75E30)
[Address] EAT @explorer.exe (PathRemoveFileSpecA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89B4C)
[Address] EAT @explorer.exe (PathRemoveFileSpecW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF74040)
[Address] EAT @explorer.exe (PathRenameExtensionA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89C6C)
[Address] EAT @explorer.exe (PathRenameExtensionW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89C5C)
[Address] EAT @explorer.exe (PathSearchAndQualifyA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8961C)
[Address] EAT @explorer.exe (PathSearchAndQualifyW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72E00)
[Address] EAT @explorer.exe (PathSetDlgItemPathA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8AC50)
[Address] EAT @explorer.exe (PathSetDlgItemPathW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8E9D0)
[Address] EAT @explorer.exe (PathSkipRootA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89D2C)
[Address] EAT @explorer.exe (PathSkipRootW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF75A20)
[Address] EAT @explorer.exe (PathStripPathA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89D3C)
[Address] EAT @explorer.exe (PathStripPathW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF76220)
[Address] EAT @explorer.exe (PathStripToRootA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89C4C)
[Address] EAT @explorer.exe (PathStripToRootW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF75E50)
[Address] EAT @explorer.exe (PathUnExpandEnvStringsA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89B6C)
[Address] EAT @explorer.exe (PathUnExpandEnvStringsW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72DF0)
[Address] EAT @explorer.exe (PathUndecorateA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A75C)
[Address] EAT @explorer.exe (PathUndecorateW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF764D0)
[Address] EAT @explorer.exe (PathUnmakeSystemFolderA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A86C)
[Address] EAT @explorer.exe (PathUnmakeSystemFolderW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8E984)
[Address] EAT @explorer.exe (PathUnquoteSpacesA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89BDC)
[Address] EAT @explorer.exe (PathUnquoteSpacesW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73BE0)
[Address] EAT @explorer.exe (QISearch) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF71010)
[Address] EAT @explorer.exe (SHAllocShared) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF729D0)
[Address] EAT @explorer.exe (SHAnsiToAnsi) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A310)
[Address] EAT @explorer.exe (SHAnsiToUnicode) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A320)
[Address] EAT @explorer.exe (SHAutoComplete) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7BE10)
[Address] EAT @explorer.exe (SHCopyKeyA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A2F0)
[Address] EAT @explorer.exe (SHCopyKeyW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7A070)
[Address] EAT @explorer.exe (SHCreateMemStream) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF732B0)
[Address] EAT @explorer.exe (SHCreateShellPalette) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72890)
[Address] EAT @explorer.exe (SHCreateStreamOnFileA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A0DC)
[Address] EAT @explorer.exe (SHCreateStreamOnFileEx) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF76070)
[Address] EAT @explorer.exe (SHCreateStreamOnFileW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF764A0)
[Address] EAT @explorer.exe (SHCreateStreamWrapper) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7F792)
[Address] EAT @explorer.exe (SHCreateThread) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF75E80)
[Address] EAT @explorer.exe (SHCreateThreadRef) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF75B30)
[Address] EAT @explorer.exe (SHCreateThreadWithHandle) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF76400)
[Address] EAT @explorer.exe (SHDeleteEmptyKeyA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A0FC)
[Address] EAT @explorer.exe (SHDeleteEmptyKeyW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A0EC)
[Address] EAT @explorer.exe (SHDeleteKeyA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A2E0)
[Address] EAT @explorer.exe (SHDeleteKeyW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72C60)
[Address] EAT @explorer.exe (SHDeleteOrphanKeyA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF9EFB8)
[Address] EAT @explorer.exe (SHDeleteOrphanKeyW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF9EF48)
[Address] EAT @explorer.exe (SHDeleteValueA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A10C)
[Address] EAT @explorer.exe (SHDeleteValueW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72CA0)
[Address] EAT @explorer.exe (SHEnumKeyExA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A290)
[Address] EAT @explorer.exe (SHEnumKeyExW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A280)
[Address] EAT @explorer.exe (SHEnumValueA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A250)
[Address] EAT @explorer.exe (SHEnumValueW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7A1D0)
[Address] EAT @explorer.exe (SHFormatDateTimeA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8F004)
[Address] EAT @explorer.exe (SHFormatDateTimeW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8F070)
[Address] EAT @explorer.exe (SHFreeShared) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF729E0)
[Address] EAT @explorer.exe (SHGetInverseCMAP) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF90830)
[Address] EAT @explorer.exe (SHGetThreadRef) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF79140)
[Address] EAT @explorer.exe (SHGetValueA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF743C0)
[Address] EAT @explorer.exe (SHGetValueW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72B20)
[Address] EAT @explorer.exe (SHGetViewStatePropertyBag) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF76FA0)
[Address] EAT @explorer.exe (SHIsChildOrSelf) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73510)
[Address] EAT @explorer.exe (SHIsLowMemoryMachine) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF9BC3C)
[Address] EAT @explorer.exe (SHLoadIndirectString) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73340)
[Address] EAT @explorer.exe (SHLockShared) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF9F838)
[Address] EAT @explorer.exe (SHMessageBoxCheckA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF9ADD4)
[Address] EAT @explorer.exe (SHMessageBoxCheckW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF9AF00)
[Address] EAT @explorer.exe (SHOpenRegStream2A) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A0AC)
[Address] EAT @explorer.exe (SHOpenRegStream2W) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF743F0)
[Address] EAT @explorer.exe (SHOpenRegStreamA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A0CC)
[Address] EAT @explorer.exe (SHOpenRegStreamW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A0BC)
[Address] EAT @explorer.exe (SHPackDispParamsV) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF77DB0)
[Address] EAT @explorer.exe (SHPropertyBag_ReadStrAlloc) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EFA1598)
[Address] EAT @explorer.exe (SHPropertyBag_WriteBSTR) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EFA1498)
[Address] EAT @explorer.exe (SHQueryInfoKeyA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A230)
[Address] EAT @explorer.exe (SHQueryInfoKeyW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A210)
[Address] EAT @explorer.exe (SHQueryValueExA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A120)
[Address] EAT @explorer.exe (SHQueryValueExW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF763A0)
[Address] EAT @explorer.exe (SHRegCloseUSKey) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89A70)
[Address] EAT @explorer.exe (SHRegCreateUSKeyA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89A58)
[Address] EAT @explorer.exe (SHRegCreateUSKeyW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72640)
[Address] EAT @explorer.exe (SHRegDeleteEmptyUSKeyA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89A44)
[Address] EAT @explorer.exe (SHRegDeleteEmptyUSKeyW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89A34)
[Address] EAT @explorer.exe (SHRegDeleteUSValueA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89A24)
[Address] EAT @explorer.exe (SHRegDeleteUSValueW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89A14)
[Address] EAT @explorer.exe (SHRegDuplicateHKey) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A1F0)
[Address] EAT @explorer.exe (SHRegEnumUSKeyA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF899FC)
[Address] EAT @explorer.exe (SHRegEnumUSKeyW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF899DC)
[Address] EAT @explorer.exe (SHRegEnumUSValueA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89998)
[Address] EAT @explorer.exe (SHRegEnumUSValueW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72590)
[Address] EAT @explorer.exe (SHRegGetBoolUSValueA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89984)
[Address] EAT @explorer.exe (SHRegGetBoolUSValueW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7C220)
[Address] EAT @explorer.exe (SHRegGetBoolValueFromHKCUHKLM) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF76330)
[Address] EAT @explorer.exe (SHRegGetIntW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A1E0)
[Address] EAT @explorer.exe (SHRegGetPathA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A1C0)
[Address] EAT @explorer.exe (SHRegGetPathW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7A240)
[Address] EAT @explorer.exe (SHRegGetUSValueA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89948)
[Address] EAT @explorer.exe (SHRegGetUSValueW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7A280)
[Address] EAT @explorer.exe (SHRegGetValueA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A2A4)
[Address] EAT @explorer.exe (SHRegGetValueFromHKCUHKLM) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF76EBC)
[Address] EAT @explorer.exe (SHRegGetValueW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF721B0)
[Address] EAT @explorer.exe (SHRegOpenUSKeyA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89928)
[Address] EAT @explorer.exe (SHRegOpenUSKeyW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89908)
[Address] EAT @explorer.exe (SHRegQueryInfoUSKeyA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF898E0)
[Address] EAT @explorer.exe (SHRegQueryInfoUSKeyW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72610)
[Address] EAT @explorer.exe (SHRegQueryUSValueA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF898A0)
[Address] EAT @explorer.exe (SHRegQueryUSValueW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89860)
[Address] EAT @explorer.exe (SHRegSetPathA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A1A0)
[Address] EAT @explorer.exe (SHRegSetPathW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A180)
[Address] EAT @explorer.exe (SHRegSetUSValueA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89838)
[Address] EAT @explorer.exe (SHRegSetUSValueW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89810)
[Address] EAT @explorer.exe (SHRegWriteUSValueA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF897E4)
[Address] EAT @explorer.exe (SHRegWriteUSValueW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF725E0)
[Address] EAT @explorer.exe (SHRegisterValidateTemplate) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EFA58E0)
[Address] EAT @explorer.exe (SHReleaseThreadRef) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A08C)
[Address] EAT @explorer.exe (SHRunIndirectRegClientCommand) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8C95C)
[Address] EAT @explorer.exe (SHSendMessageBroadcastA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF9A27C)
[Address] EAT @explorer.exe (SHSendMessageBroadcastW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72CC0)
[Address] EAT @explorer.exe (SHSetThreadRef) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF75B10)
[Address] EAT @explorer.exe (SHSetValueA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A14C)
[Address] EAT @explorer.exe (SHSetValueW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF763D0)
[Address] EAT @explorer.exe (SHSkipJunction) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72E20)
[Address] EAT @explorer.exe (SHStrDupA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7A260)
[Address] EAT @explorer.exe (SHStrDupW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF71070)
[Address] EAT @explorer.exe (SHStripMneumonicA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF9A900)
[Address] EAT @explorer.exe (SHStripMneumonicW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72DB0)
[Address] EAT @explorer.exe (SHUnicodeToAnsi) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF732E0)
[Address] EAT @explorer.exe (SHUnicodeToAnsiCP) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF7F7B9)
[Address] EAT @explorer.exe (SHUnicodeToUnicode) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8A300)
[Address] EAT @explorer.exe (SHUnlockShared) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF9F818)
[Address] EAT @explorer.exe (ShellMessageBoxA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8C604)
[Address] EAT @explorer.exe (ShellMessageBoxW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8F54C)
[Address] EAT @explorer.exe (StrCSpnA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89EEC)
[Address] EAT @explorer.exe (StrCSpnIA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89EDC)
[Address] EAT @explorer.exe (StrCSpnIW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89ECC)
[Address] EAT @explorer.exe (StrCSpnW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF75A30)
[Address] EAT @explorer.exe (StrCatBuffA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89FDC)
[Address] EAT @explorer.exe (StrCatBuffW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89FEC)
[Address] EAT @explorer.exe (StrCatChainW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89DCC)
[Address] EAT @explorer.exe (StrCatW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8FCF8)
[Address] EAT @explorer.exe (StrChrA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89FCC)
[Address] EAT @explorer.exe (StrChrIA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89F9C)
[Address] EAT @explorer.exe (StrChrIW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF710E0)
[Address] EAT @explorer.exe (StrChrNIW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89F8C)
[Address] EAT @explorer.exe (StrChrNW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89FBC)
[Address] EAT @explorer.exe (StrChrW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF71080)
[Address] EAT @explorer.exe (StrCmpCA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89DEC)
[Address] EAT @explorer.exe (StrCmpCW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72C90)
[Address] EAT @explorer.exe (StrCmpICA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF71100)
[Address] EAT @explorer.exe (StrCmpICW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF710F0)
[Address] EAT @explorer.exe (StrCmpIW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73650)
[Address] EAT @explorer.exe (StrCmpLogicalW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89DDC)
[Address] EAT @explorer.exe (StrCmpNA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89EBC)
[Address] EAT @explorer.exe (StrCmpNCA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89E0C)
[Address] EAT @explorer.exe (StrCmpNCW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89DFC)
[Address] EAT @explorer.exe (StrCmpNIA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89EAC)
[Address] EAT @explorer.exe (StrCmpNICA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF760A0)
[Address] EAT @explorer.exe (StrCmpNICW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72B70)
[Address] EAT @explorer.exe (StrCmpNIW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73670)
[Address] EAT @explorer.exe (StrCmpNW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73770)
[Address] EAT @explorer.exe (StrCmpW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF710B0)
[Address] EAT @explorer.exe (StrCpyNW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89FFC)
[Address] EAT @explorer.exe (StrCpyW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8FD38)
[Address] EAT @explorer.exe (StrDupA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89E4C)
[Address] EAT @explorer.exe (StrDupW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF72B50)
[Address] EAT @explorer.exe (StrFormatByteSize64A) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8FC00)
[Address] EAT @explorer.exe (StrFormatByteSizeA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8FBF4)
[Address] EAT @explorer.exe (StrFormatByteSizeEx) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF732D0)
[Address] EAT @explorer.exe (StrFormatByteSizeW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8FC60)
[Address] EAT @explorer.exe (StrFormatKBSizeA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8FB74)
[Address] EAT @explorer.exe (StrFormatKBSizeW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8FBE0)
[Address] EAT @explorer.exe (StrFromTimeIntervalA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF98AC8)
[Address] EAT @explorer.exe (StrFromTimeIntervalW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF98A44)
[Address] EAT @explorer.exe (StrIsIntlEqualA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89E3C)
[Address] EAT @explorer.exe (StrIsIntlEqualW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89E2C)
[Address] EAT @explorer.exe (StrNCatA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8FCB8)
[Address] EAT @explorer.exe (StrNCatW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8FC74)
[Address] EAT @explorer.exe (StrPBrkA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89F5C)
[Address] EAT @explorer.exe (StrPBrkW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF761E0)
[Address] EAT @explorer.exe (StrRChrA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89FAC)
[Address] EAT @explorer.exe (StrRChrIA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89F7C)
[Address] EAT @explorer.exe (StrRChrIW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89F6C)
[Address] EAT @explorer.exe (StrRChrW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF76210)
[Address] EAT @explorer.exe (StrRStrIA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89E9C)
[Address] EAT @explorer.exe (StrRStrIW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89E8C)
[Address] EAT @explorer.exe (StrRetToBSTR) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF760D0)
[Address] EAT @explorer.exe (StrRetToBufA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8F9E8)
[Address] EAT @explorer.exe (StrRetToBufW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF71110)
[Address] EAT @explorer.exe (StrRetToStrA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8FA98)
[Address] EAT @explorer.exe (StrRetToStrW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73330)
[Address] EAT @explorer.exe (StrSpnA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89F0C)
[Address] EAT @explorer.exe (StrSpnW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89EFC)
[Address] EAT @explorer.exe (StrStrA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89E7C)
[Address] EAT @explorer.exe (StrStrIA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF76490)
[Address] EAT @explorer.exe (StrStrIW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF710D0)
[Address] EAT @explorer.exe (StrStrNIW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89E5C)
[Address] EAT @explorer.exe (StrStrNW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89E6C)
[Address] EAT @explorer.exe (StrStrW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73660)
[Address] EAT @explorer.exe (StrToInt64ExA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89F2C)
[Address] EAT @explorer.exe (StrToInt64ExW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89F3C)
[Address] EAT @explorer.exe (StrToIntA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89F4C)
[Address] EAT @explorer.exe (StrToIntExA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89F1C)
[Address] EAT @explorer.exe (StrToIntExW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF761F0)
[Address] EAT @explorer.exe (StrToIntW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF710A0)
[Address] EAT @explorer.exe (StrTrimA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89E1C)
[Address] EAT @explorer.exe (StrTrimW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73320)
[Address] EAT @explorer.exe (UrlApplySchemeA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89760)
[Address] EAT @explorer.exe (UrlApplySchemeW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89750)
[Address] EAT @explorer.exe (UrlCanonicalizeA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89740)
[Address] EAT @explorer.exe (UrlCanonicalizeW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF736B0)
[Address] EAT @explorer.exe (UrlCombineA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89728)
[Address] EAT @explorer.exe (UrlCombineW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73750)
[Address] EAT @explorer.exe (UrlCompareA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89714)
[Address] EAT @explorer.exe (UrlCompareW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89704)
[Address] EAT @explorer.exe (UrlCreateFromPathA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF896F4)
[Address] EAT @explorer.exe (UrlCreateFromPathW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73BF0)
[Address] EAT @explorer.exe (UrlEscapeA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF896E4)
[Address] EAT @explorer.exe (UrlEscapeW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73720)
[Address] EAT @explorer.exe (UrlFixupW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF896D4)
[Address] EAT @explorer.exe (UrlGetLocationA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF896C4)
[Address] EAT @explorer.exe (UrlGetLocationW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF896B4)
[Address] EAT @explorer.exe (UrlGetPartA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8969C)
[Address] EAT @explorer.exe (UrlGetPartW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF73700)
[Address] EAT @explorer.exe (UrlHashA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89688)
[Address] EAT @explorer.exe (UrlHashW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89678)
[Address] EAT @explorer.exe (UrlIsA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89668)
[Address] EAT @explorer.exe (UrlIsNoHistoryA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF895EC)
[Address] EAT @explorer.exe (UrlIsNoHistoryW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF71150)
[Address] EAT @explorer.exe (UrlIsOpaqueA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF8960C)
[Address] EAT @explorer.exe (UrlIsOpaqueW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF895FC)
[Address] EAT @explorer.exe (UrlIsW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF736A0)
[Address] EAT @explorer.exe (UrlUnescapeA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF89658)
[Address] EAT @explorer.exe (UrlUnescapeW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF736D0)
[Address] EAT @explorer.exe (WhichPlatform) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF9A6D0)
[Address] EAT @explorer.exe (wnsprintfA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF993AC)
[Address] EAT @explorer.exe (wnsprintfW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF99318)
[Address] EAT @explorer.exe (wvnsprintfA) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF993F8)
[Address] EAT @explorer.exe (wvnsprintfW) : urlmon.dll -> HOOKED (C:\Windows\system32\SHLWAPI.dll @ 0x3EF99368)
[Address] EAT @explorer.exe (GdipAddPathArc) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0C868)
[Address] EAT @explorer.exe (GdipAddPathArcI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0C7C8)
[Address] EAT @explorer.exe (GdipAddPathBezier) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3F400)
[Address] EAT @explorer.exe (GdipAddPathBezierI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3F31C)
[Address] EAT @explorer.exe (GdipAddPathBeziers) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3F258)
[Address] EAT @explorer.exe (GdipAddPathBeziersI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3F174)
[Address] EAT @explorer.exe (GdipAddPathClosedCurve) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3EAC4)
[Address] EAT @explorer.exe (GdipAddPathClosedCurve2) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3E90C)
[Address] EAT @explorer.exe (GdipAddPathClosedCurve2I) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3E824)
[Address] EAT @explorer.exe (GdipAddPathClosedCurveI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3E9E0)
[Address] EAT @explorer.exe (GdipAddPathCurve) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3F094)
[Address] EAT @explorer.exe (GdipAddPathCurve2) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3EE94)
[Address] EAT @explorer.exe (GdipAddPathCurve2I) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3ED74)
[Address] EAT @explorer.exe (GdipAddPathCurve3) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3EC90)
[Address] EAT @explorer.exe (GdipAddPathCurve3I) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3EB90)
[Address] EAT @explorer.exe (GdipAddPathCurveI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3EF78)
[Address] EAT @explorer.exe (GdipAddPathEllipse) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3E3FC)
[Address] EAT @explorer.exe (GdipAddPathEllipseI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3E378)
[Address] EAT @explorer.exe (GdipAddPathLine) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0B964)
[Address] EAT @explorer.exe (GdipAddPathLine2) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3F61C)
[Address] EAT @explorer.exe (GdipAddPathLine2I) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3F538)
[Address] EAT @explorer.exe (GdipAddPathLineI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0B8E0)
[Address] EAT @explorer.exe (GdipAddPathPath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3DF7C)
[Address] EAT @explorer.exe (GdipAddPathPie) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3E280)
[Address] EAT @explorer.exe (GdipAddPathPieI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3E1E0)
[Address] EAT @explorer.exe (GdipAddPathPolygon) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3E11C)
[Address] EAT @explorer.exe (GdipAddPathPolygonI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3E038)
[Address] EAT @explorer.exe (GdipAddPathRectangle) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3E730)
[Address] EAT @explorer.exe (GdipAddPathRectangleI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3E6AC)
[Address] EAT @explorer.exe (GdipAddPathRectangles) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3E5E8)
[Address] EAT @explorer.exe (GdipAddPathRectanglesI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3E4E8)
[Address] EAT @explorer.exe (GdipAddPathString) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3DDBC)
[Address] EAT @explorer.exe (GdipAddPathStringI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3DCD4)
[Address] EAT @explorer.exe (GdipAlloc) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389C9ADC)
[Address] EAT @explorer.exe (GdipBeginContainer) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2B1C4)
[Address] EAT @explorer.exe (GdipBeginContainer2) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2B100)
[Address] EAT @explorer.exe (GdipBeginContainerI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2B000)
[Address] EAT @explorer.exe (GdipBitmapApplyEffect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A32874)
[Address] EAT @explorer.exe (GdipBitmapConvertFormat) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A32B20)
[Address] EAT @explorer.exe (GdipBitmapCreateApplyEffect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3295C)
[Address] EAT @explorer.exe (GdipBitmapGetHistogram) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3278C)
[Address] EAT @explorer.exe (GdipBitmapGetHistogramSize) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A32740)
[Address] EAT @explorer.exe (GdipBitmapGetPixel) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A32E18)
[Address] EAT @explorer.exe (GdipBitmapLockBits) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389CC490)
[Address] EAT @explorer.exe (GdipBitmapSetPixel) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E31E0)
[Address] EAT @explorer.exe (GdipBitmapSetResolution) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E4880)
[Address] EAT @explorer.exe (GdipBitmapUnlockBits) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389CC5C8)
[Address] EAT @explorer.exe (GdipClearPathMarkers) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3F848)

Uživatelský avatar
AngelikaB
Level 6
Level 6
Příspěvky: 3139
Registrován: červen 13
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu logu.. Pomalu najíždi do metra

Příspěvekod AngelikaB » 06 dub 2014 10:31

2 strana
[Address] EAT @explorer.exe (GdipCloneBitmapArea) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A32F04)
[Address] EAT @explorer.exe (GdipCloneBitmapAreaI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A112D8)
[Address] EAT @explorer.exe (GdipCloneBrush) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3A32C)
[Address] EAT @explorer.exe (GdipCloneCustomLineCap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A35450)
[Address] EAT @explorer.exe (GdipCloneFont) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2996C)
[Address] EAT @explorer.exe (GdipCloneFontFamily) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A29C18)
[Address] EAT @explorer.exe (GdipCloneImage) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E70D8)
[Address] EAT @explorer.exe (GdipCloneImageAttributes) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A32538)
[Address] EAT @explorer.exe (GdipCloneMatrix) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0B360)
[Address] EAT @explorer.exe (GdipClonePath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A40184)
[Address] EAT @explorer.exe (GdipClonePen) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37048)
[Address] EAT @explorer.exe (GdipCloneRegion) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3B8FC)
[Address] EAT @explorer.exe (GdipCloneStringFormat) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A28CF0)
[Address] EAT @explorer.exe (GdipClosePathFigure) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3FA28)
[Address] EAT @explorer.exe (GdipClosePathFigures) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3F988)
[Address] EAT @explorer.exe (GdipCombineRegionPath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3B538)
[Address] EAT @explorer.exe (GdipCombineRegionRect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3B6F4)
[Address] EAT @explorer.exe (GdipCombineRegionRectI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3B654)
[Address] EAT @explorer.exe (GdipCombineRegionRegion) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E88A4)
[Address] EAT @explorer.exe (GdipComment) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A29878)
[Address] EAT @explorer.exe (GdipConvertToEmfPlus) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A280FC)
[Address] EAT @explorer.exe (GdipConvertToEmfPlusToFile) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A27FFC)
[Address] EAT @explorer.exe (GdipConvertToEmfPlusToStream) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A27EFC)
[Address] EAT @explorer.exe (GdipCreateAdjustableArrowCap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A34B88)
[Address] EAT @explorer.exe (GdipCreateBitmapFromDirectDrawSurface) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A330A4)
[Address] EAT @explorer.exe (GdipCreateBitmapFromFile) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E06FC)
[Address] EAT @explorer.exe (GdipCreateBitmapFromFileICM) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A33330)
[Address] EAT @explorer.exe (GdipCreateBitmapFromGdiDib) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DB994)
[Address] EAT @explorer.exe (GdipCreateBitmapFromGraphics) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A331D4)
[Address] EAT @explorer.exe (GdipCreateBitmapFromHBITMAP) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389C2F28)
[Address] EAT @explorer.exe (GdipCreateBitmapFromHICON) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E7B2C)
[Address] EAT @explorer.exe (GdipCreateBitmapFromResource) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3300C)
[Address] EAT @explorer.exe (GdipCreateBitmapFromScan0) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D84A4)
[Address] EAT @explorer.exe (GdipCreateBitmapFromStream) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0FF40)
[Address] EAT @explorer.exe (GdipCreateBitmapFromStreamICM) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A33480)
[Address] EAT @explorer.exe (GdipCreateCachedBitmap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A12F6C)
[Address] EAT @explorer.exe (GdipCreateCustomLineCap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3551C)
[Address] EAT @explorer.exe (GdipCreateEffect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A32DB0)
[Address] EAT @explorer.exe (GdipCreateFont) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E97BC)
[Address] EAT @explorer.exe (GdipCreateFontFamilyFromName) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E8DD4)
[Address] EAT @explorer.exe (GdipCreateFontFromDC) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A29520)
[Address] EAT @explorer.exe (GdipCreateFontFromLogfontA) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A29408)
[Address] EAT @explorer.exe (GdipCreateFontFromLogfontW) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E9380)
[Address] EAT @explorer.exe (GdipCreateFromHDC) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389CD848)
[Address] EAT @explorer.exe (GdipCreateFromHDC2) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3196C)
[Address] EAT @explorer.exe (GdipCreateFromHWND) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A318CC)
[Address] EAT @explorer.exe (GdipCreateFromHWNDICM) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3182C)
[Address] EAT @explorer.exe (GdipCreateHBITMAPFromBitmap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D3830)
[Address] EAT @explorer.exe (GdipCreateHICONFromBitmap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E779C)
[Address] EAT @explorer.exe (GdipCreateHalftonePalette) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E9ED8)
[Address] EAT @explorer.exe (GdipCreateHatchBrush) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3A198)
[Address] EAT @explorer.exe (GdipCreateImageAttributes) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E6D10)
[Address] EAT @explorer.exe (GdipCreateLineBrush) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3984C)
[Address] EAT @explorer.exe (GdipCreateLineBrushFromRect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A12150)
[Address] EAT @explorer.exe (GdipCreateLineBrushFromRectI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A12044)
[Address] EAT @explorer.exe (GdipCreateLineBrushFromRectWithAngle) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3961C)
[Address] EAT @explorer.exe (GdipCreateLineBrushFromRectWithAngleI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39514)
[Address] EAT @explorer.exe (GdipCreateLineBrushI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39738)
[Address] EAT @explorer.exe (GdipCreateMatrix) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D74C8)
[Address] EAT @explorer.exe (GdipCreateMatrix2) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0B244)
[Address] EAT @explorer.exe (GdipCreateMatrix3) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3C3C0)
[Address] EAT @explorer.exe (GdipCreateMatrix3I) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3C274)
[Address] EAT @explorer.exe (GdipCreateMetafileFromEmf) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2AB18)
[Address] EAT @explorer.exe (GdipCreateMetafileFromFile) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2AA30)
[Address] EAT @explorer.exe (GdipCreateMetafileFromStream) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2A854)
[Address] EAT @explorer.exe (GdipCreateMetafileFromWmf) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2AC0C)
[Address] EAT @explorer.exe (GdipCreateMetafileFromWmfFile) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2A93C)
[Address] EAT @explorer.exe (GdipCreatePath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DF200)
[Address] EAT @explorer.exe (GdipCreatePath2) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A403C4)
[Address] EAT @explorer.exe (GdipCreatePath2I) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A4023C)
[Address] EAT @explorer.exe (GdipCreatePathGradient) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A38778)
[Address] EAT @explorer.exe (GdipCreatePathGradientFromPath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A38598)
[Address] EAT @explorer.exe (GdipCreatePathGradientI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3864C)
[Address] EAT @explorer.exe (GdipCreatePathIter) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3CEE0)
[Address] EAT @explorer.exe (GdipCreatePen1) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DA7E8)
[Address] EAT @explorer.exe (GdipCreatePen2) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D7D40)
[Address] EAT @explorer.exe (GdipCreateRegion) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E8040)
[Address] EAT @explorer.exe (GdipCreateRegionHrgn) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3BA00)
[Address] EAT @explorer.exe (GdipCreateRegionPath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3BB94)
[Address] EAT @explorer.exe (GdipCreateRegionRect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0D9CC)
[Address] EAT @explorer.exe (GdipCreateRegionRectI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0D918)
[Address] EAT @explorer.exe (GdipCreateRegionRgnData) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3BAC8)
[Address] EAT @explorer.exe (GdipCreateSolidFill) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D5630)
[Address] EAT @explorer.exe (GdipCreateStreamOnFile) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389FAB24)
[Address] EAT @explorer.exe (GdipCreateStringFormat) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A28EA0)
[Address] EAT @explorer.exe (GdipCreateTexture) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E2A40)
[Address] EAT @explorer.exe (GdipCreateTexture2) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39EC4)
[Address] EAT @explorer.exe (GdipCreateTexture2I) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39C40)
[Address] EAT @explorer.exe (GdipCreateTextureIA) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39D10)
[Address] EAT @explorer.exe (GdipCreateTextureIAI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39BF0)
[Address] EAT @explorer.exe (GdipDeleteBrush) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D5170)
[Address] EAT @explorer.exe (GdipDeleteCachedBitmap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E3498)
[Address] EAT @explorer.exe (GdipDeleteCustomLineCap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A35308)
[Address] EAT @explorer.exe (GdipDeleteEffect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A32D60)
[Address] EAT @explorer.exe (GdipDeleteFont) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D834C)
[Address] EAT @explorer.exe (GdipDeleteFontFamily) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A29CD0)
[Address] EAT @explorer.exe (GdipDeleteGraphics) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389CD378)
[Address] EAT @explorer.exe (GdipDeleteMatrix) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D73FC)
[Address] EAT @explorer.exe (GdipDeletePath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DF2E0)
[Address] EAT @explorer.exe (GdipDeletePathIter) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3CE4C)
[Address] EAT @explorer.exe (GdipDeletePen) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D521C)
[Address] EAT @explorer.exe (GdipDeletePrivateFontCollection) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2924C)
[Address] EAT @explorer.exe (GdipDeleteRegion) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D76B8)
[Address] EAT @explorer.exe (GdipDeleteStringFormat) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A28C7C)
[Address] EAT @explorer.exe (GdipDisposeImage) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389C1CE0)
[Address] EAT @explorer.exe (GdipDisposeImageAttributes) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E6B70)
[Address] EAT @explorer.exe (GdipDrawArc) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3040C)
[Address] EAT @explorer.exe (GdipDrawArcI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A30360)
[Address] EAT @explorer.exe (GdipDrawBezier) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A30208)
[Address] EAT @explorer.exe (GdipDrawBezierI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A30114)
[Address] EAT @explorer.exe (GdipDrawBeziers) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2FFF8)
[Address] EAT @explorer.exe (GdipDrawBeziersI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2FEDC)
[Address] EAT @explorer.exe (GdipDrawCachedBitmap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A10EF0)
[Address] EAT @explorer.exe (GdipDrawClosedCurve) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2F140)
[Address] EAT @explorer.exe (GdipDrawClosedCurve2) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2EF38)
[Address] EAT @explorer.exe (GdipDrawClosedCurve2I) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2EE44)
[Address] EAT @explorer.exe (GdipDrawClosedCurveI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2F05C)
[Address] EAT @explorer.exe (GdipDrawCurve) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2F7B4)
[Address] EAT @explorer.exe (GdipDrawCurve2) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2F59C)
[Address] EAT @explorer.exe (GdipDrawCurve2I) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2F4A8)
[Address] EAT @explorer.exe (GdipDrawCurve3) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2F374)
[Address] EAT @explorer.exe (GdipDrawCurve3I) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2F268)
[Address] EAT @explorer.exe (GdipDrawCurveI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2F6D0)
[Address] EAT @explorer.exe (GdipDrawDriverString) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2D9A8)
[Address] EAT @explorer.exe (GdipDrawEllipse) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2FB64)
[Address] EAT @explorer.exe (GdipDrawEllipseI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2FAD4)
[Address] EAT @explorer.exe (GdipDrawImage) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E2DF0)
[Address] EAT @explorer.exe (GdipDrawImageFX) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2D004)
[Address] EAT @explorer.exe (GdipDrawImageI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E2D6C)
[Address] EAT @explorer.exe (GdipDrawImagePointRect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0D77C)
[Address] EAT @explorer.exe (GdipDrawImagePointRectI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0D6B8)
[Address] EAT @explorer.exe (GdipDrawImagePoints) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2D658)
[Address] EAT @explorer.exe (GdipDrawImagePointsI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2D53C)
[Address] EAT @explorer.exe (GdipDrawImagePointsRect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2D2CC)
[Address] EAT @explorer.exe (GdipDrawImagePointsRectI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2D134)
[Address] EAT @explorer.exe (GdipDrawImageRect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D2664)
[Address] EAT @explorer.exe (GdipDrawImageRectI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D25C4)
[Address] EAT @explorer.exe (GdipDrawImageRectRect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0EFC4)
[Address] EAT @explorer.exe (GdipDrawImageRectRectI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0EE90)
[Address] EAT @explorer.exe (GdipDrawLine) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A305D8)
[Address] EAT @explorer.exe (GdipDrawLineI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A30548)
[Address] EAT @explorer.exe (GdipDrawLines) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DCA40)
[Address] EAT @explorer.exe (GdipDrawLinesI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DC958)
[Address] EAT @explorer.exe (GdipDrawPath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0AFA0)
[Address] EAT @explorer.exe (GdipDrawPie) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2F998)
[Address] EAT @explorer.exe (GdipDrawPieI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2F8EC)
[Address] EAT @explorer.exe (GdipDrawPolygon) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389F27D0)
[Address] EAT @explorer.exe (GdipDrawPolygonI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389F26E0)
[Address] EAT @explorer.exe (GdipDrawRectangle) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DCD30)
[Address] EAT @explorer.exe (GdipDrawRectangleI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DCC90)
[Address] EAT @explorer.exe (GdipDrawRectangles) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2FDC0)
[Address] EAT @explorer.exe (GdipDrawRectanglesI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2FC88)
[Address] EAT @explorer.exe (GdipDrawString) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2E018)
[Address] EAT @explorer.exe (GdipEmfToWmfBits) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389F6A28)
[Address] EAT @explorer.exe (GdipEndContainer) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2AF58)
[Address] EAT @explorer.exe (GdipEnumerateMetafileDestPoint) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2CE6C)
[Address] EAT @explorer.exe (GdipEnumerateMetafileDestPointI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2CDD0)
[Address] EAT @explorer.exe (GdipEnumerateMetafileDestPoints) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2C9D4)
[Address] EAT @explorer.exe (GdipEnumerateMetafileDestPointsI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2C894)
[Address] EAT @explorer.exe (GdipEnumerateMetafileDestRect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2CC38)
[Address] EAT @explorer.exe (GdipEnumerateMetafileDestRectI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2CB80)
[Address] EAT @explorer.exe (GdipEnumerateMetafileSrcRectDestPoint) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2C6D0)
[Address] EAT @explorer.exe (GdipEnumerateMetafileSrcRectDestPointI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2C5E0)
[Address] EAT @explorer.exe (GdipEnumerateMetafileSrcRectDestPoints) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2C15C)
[Address] EAT @explorer.exe (GdipEnumerateMetafileSrcRectDestPointsI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2BFD4)
[Address] EAT @explorer.exe (GdipEnumerateMetafileSrcRectDestRect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2C41C)
[Address] EAT @explorer.exe (GdipEnumerateMetafileSrcRectDestRectI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2C328)
[Address] EAT @explorer.exe (GdipFillClosedCurve) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2E524)
[Address] EAT @explorer.exe (GdipFillClosedCurve2) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2E310)
[Address] EAT @explorer.exe (GdipFillClosedCurve2I) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2E210)
[Address] EAT @explorer.exe (GdipFillClosedCurveI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2E440)
[Address] EAT @explorer.exe (GdipFillEllipse) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DF768)
[Address] EAT @explorer.exe (GdipFillEllipseI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2E990)
[Address] EAT @explorer.exe (GdipFillPath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2E654)
[Address] EAT @explorer.exe (GdipFillPie) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2E850)
[Address] EAT @explorer.exe (GdipFillPieI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2E79C)
[Address] EAT @explorer.exe (GdipFillPolygon) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389F29AC)
[Address] EAT @explorer.exe (GdipFillPolygon2) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2EB04)
[Address] EAT @explorer.exe (GdipFillPolygon2I) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2EA20)
[Address] EAT @explorer.exe (GdipFillPolygonI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389F28BC)
[Address] EAT @explorer.exe (GdipFillRectangle) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D5870)
[Address] EAT @explorer.exe (GdipFillRectangleI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D57DC)
[Address] EAT @explorer.exe (GdipFillRectangles) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2ED28)
[Address] EAT @explorer.exe (GdipFillRectanglesI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2EC28)
[Address] EAT @explorer.exe (GdipFillRegion) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0D354)
[Address] EAT @explorer.exe (GdipFindFirstImageItem) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A33730)
[Address] EAT @explorer.exe (GdipFindNextImageItem) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A33680)
[Address] EAT @explorer.exe (GdipFlattenPath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0AEC4)
[Address] EAT @explorer.exe (GdipFlush) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A31764)
[Address] EAT @explorer.exe (GdipFree) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389C9A74)
[Address] EAT @explorer.exe (GdipGetAdjustableArrowCapFillState) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A345B0)
[Address] EAT @explorer.exe (GdipGetAdjustableArrowCapHeight) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A34A10)
[Address] EAT @explorer.exe (GdipGetAdjustableArrowCapMiddleInset) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A34720)
[Address] EAT @explorer.exe (GdipGetAdjustableArrowCapWidth) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A34898)
[Address] EAT @explorer.exe (GdipGetAllPropertyItems) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E11D8)
[Address] EAT @explorer.exe (GdipGetBrushType) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3A27C)
[Address] EAT @explorer.exe (GdipGetCellAscent) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A29708)
[Address] EAT @explorer.exe (GdipGetCellDescent) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A29644)
[Address] EAT @explorer.exe (GdipGetClip) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E8424)

Uživatelský avatar
AngelikaB
Level 6
Level 6
Příspěvky: 3139
Registrován: červen 13
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu logu.. Pomalu najíždi do metra

Příspěvekod AngelikaB » 06 dub 2014 10:31

3 strana
[Address] EAT @explorer.exe (GdipGetClipBounds) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2B938)
[Address] EAT @explorer.exe (GdipGetClipBoundsI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D7B04)
[Address] EAT @explorer.exe (GdipGetCompositingMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0D0E0)
[Address] EAT @explorer.exe (GdipGetCompositingQuality) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A31478)
[Address] EAT @explorer.exe (GdipGetCustomLineCapBaseCap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A34EF4)
[Address] EAT @explorer.exe (GdipGetCustomLineCapBaseInset) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A34DBC)
[Address] EAT @explorer.exe (GdipGetCustomLineCapStrokeCaps) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A35198)
[Address] EAT @explorer.exe (GdipGetCustomLineCapStrokeJoin) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A35058)
[Address] EAT @explorer.exe (GdipGetCustomLineCapType) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3539C)
[Address] EAT @explorer.exe (GdipGetCustomLineCapWidthScale) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A34C84)
[Address] EAT @explorer.exe (GdipGetDC) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389F35E8)
[Address] EAT @explorer.exe (GdipGetDpiX) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A30A68)
[Address] EAT @explorer.exe (GdipGetDpiY) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E8AD8)
[Address] EAT @explorer.exe (GdipGetEffectParameterSize) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A32C8C)
[Address] EAT @explorer.exe (GdipGetEffectParameters) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A32C18)
[Address] EAT @explorer.exe (GdipGetEmHeight) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E9A70)
[Address] EAT @explorer.exe (GdipGetEncoderParameterList) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3419C)
[Address] EAT @explorer.exe (GdipGetEncoderParameterListSize) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A34260)
[Address] EAT @explorer.exe (GdipGetFamily) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E8C70)
[Address] EAT @explorer.exe (GdipGetFamilyName) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E9984)
[Address] EAT @explorer.exe (GdipGetFontCollectionFamilyCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A29178)
[Address] EAT @explorer.exe (GdipGetFontCollectionFamilyList) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A290BC)
[Address] EAT @explorer.exe (GdipGetFontHeight) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E9660)
[Address] EAT @explorer.exe (GdipGetFontHeightGivenDPI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A29A64)
[Address] EAT @explorer.exe (GdipGetFontSize) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E8CF0)
[Address] EAT @explorer.exe (GdipGetFontStyle) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E8B6C)
[Address] EAT @explorer.exe (GdipGetFontUnit) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E8BF0)
[Address] EAT @explorer.exe (GdipGetGenericFontFamilyMonospace) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A29DC4)
[Address] EAT @explorer.exe (GdipGetGenericFontFamilySansSerif) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A29EAC)
[Address] EAT @explorer.exe (GdipGetGenericFontFamilySerif) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A29E38)
[Address] EAT @explorer.exe (GdipGetHatchBackgroundColor) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3A030)
[Address] EAT @explorer.exe (GdipGetHatchForegroundColor) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A384E4)
[Address] EAT @explorer.exe (GdipGetHatchStyle) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3A0E4)
[Address] EAT @explorer.exe (GdipGetHemfFromMetafile) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389F5A24)
[Address] EAT @explorer.exe (GdipGetImageAttributesAdjustedPalette) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A31A18)
[Address] EAT @explorer.exe (GdipGetImageBounds) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A33CEC)
[Address] EAT @explorer.exe (GdipGetImageDecoders) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A09270)
[Address] EAT @explorer.exe (GdipGetImageDecodersSize) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A09428)
[Address] EAT @explorer.exe (GdipGetImageDimension) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A33C28)
[Address] EAT @explorer.exe (GdipGetImageEncoders) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389C6798)
[Address] EAT @explorer.exe (GdipGetImageEncodersSize) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389C69D8)
[Address] EAT @explorer.exe (GdipGetImageFlags) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3396C)
[Address] EAT @explorer.exe (GdipGetImageGraphicsContext) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D9214)
[Address] EAT @explorer.exe (GdipGetImageHeight) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389CB680)
[Address] EAT @explorer.exe (GdipGetImageHorizontalResolution) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A33B3C)
[Address] EAT @explorer.exe (GdipGetImageItemData) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A335D0)
[Address] EAT @explorer.exe (GdipGetImagePalette) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A105B4)
[Address] EAT @explorer.exe (GdipGetImagePaletteSize) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A1067C)
[Address] EAT @explorer.exe (GdipGetImagePixelFormat) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389CB588)
[Address] EAT @explorer.exe (GdipGetImageRawFormat) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E18F4)
[Address] EAT @explorer.exe (GdipGetImageThumbnail) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A337E0)
[Address] EAT @explorer.exe (GdipGetImageType) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E6EA0)
[Address] EAT @explorer.exe (GdipGetImageVerticalResolution) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A33A50)
[Address] EAT @explorer.exe (GdipGetImageWidth) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389CC344)
[Address] EAT @explorer.exe (GdipGetInterpolationMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A31108)
[Address] EAT @explorer.exe (GdipGetLineBlend) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A390C8)
[Address] EAT @explorer.exe (GdipGetLineBlendCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37A4C)
[Address] EAT @explorer.exe (GdipGetLineColors) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39360)
[Address] EAT @explorer.exe (GdipGetLineGammaCorrection) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39198)
[Address] EAT @explorer.exe (GdipGetLinePresetBlend) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A38E88)
[Address] EAT @explorer.exe (GdipGetLinePresetBlendCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39004)
[Address] EAT @explorer.exe (GdipGetLineRect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37C48)
[Address] EAT @explorer.exe (GdipGetLineRectI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39280)
[Address] EAT @explorer.exe (GdipGetLineSpacing) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E9B34)
[Address] EAT @explorer.exe (GdipGetLineTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39AD0)
[Address] EAT @explorer.exe (GdipGetLineWrapMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A38AA0)
[Address] EAT @explorer.exe (GdipGetLogFontA) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A29B0C)
[Address] EAT @explorer.exe (GdipGetLogFontW) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E8EEC)
[Address] EAT @explorer.exe (GdipGetMatrixElements) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D75F0)
[Address] EAT @explorer.exe (GdipGetMetafileDownLevelRasterizationLimit) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A29F20)
[Address] EAT @explorer.exe (GdipGetMetafileHeaderFromEmf) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2AE8C)
[Address] EAT @explorer.exe (GdipGetMetafileHeaderFromFile) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2AE34)
[Address] EAT @explorer.exe (GdipGetMetafileHeaderFromMetafile) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2AD14)
[Address] EAT @explorer.exe (GdipGetMetafileHeaderFromStream) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2ADC4)
[Address] EAT @explorer.exe (GdipGetMetafileHeaderFromWmf) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2AEE4)
[Address] EAT @explorer.exe (GdipGetNearestColor) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A306F8)
[Address] EAT @explorer.exe (GdipGetPageScale) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A30BD0)
[Address] EAT @explorer.exe (GdipGetPageUnit) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A30C84)
[Address] EAT @explorer.exe (GdipGetPathData) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3FB68)
[Address] EAT @explorer.exe (GdipGetPathFillMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3FC14)
[Address] EAT @explorer.exe (GdipGetPathGradientBlend) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3797C)
[Address] EAT @explorer.exe (GdipGetPathGradientBlendCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37A4C)
[Address] EAT @explorer.exe (GdipGetPathGradientCenterColor) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A384E4)
[Address] EAT @explorer.exe (GdipGetPathGradientCenterPoint) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A38034)
[Address] EAT @explorer.exe (GdipGetPathGradientCenterPointI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37F98)
[Address] EAT @explorer.exe (GdipGetPathGradientFocusScales) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A371BC)
[Address] EAT @explorer.exe (GdipGetPathGradientGammaCorrection) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37B00)
[Address] EAT @explorer.exe (GdipGetPathGradientPath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A380E0)
[Address] EAT @explorer.exe (GdipGetPathGradientPointCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37DB4)
[Address] EAT @explorer.exe (GdipGetPathGradientPresetBlend) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37764)
[Address] EAT @explorer.exe (GdipGetPathGradientPresetBlendCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39004)
[Address] EAT @explorer.exe (GdipGetPathGradientRect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37C48)
[Address] EAT @explorer.exe (GdipGetPathGradientRectI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39280)
[Address] EAT @explorer.exe (GdipGetPathGradientSurroundColorCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37CF8)
[Address] EAT @explorer.exe (GdipGetPathGradientSurroundColorsWithCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A382FC)
[Address] EAT @explorer.exe (GdipGetPathGradientTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39AD0)
[Address] EAT @explorer.exe (GdipGetPathGradientWrapMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A38AA0)
[Address] EAT @explorer.exe (GdipGetPathLastPoint) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3F6E0)
[Address] EAT @explorer.exe (GdipGetPathPoints) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3FE14)
[Address] EAT @explorer.exe (GdipGetPathPointsI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3FCC8)
[Address] EAT @explorer.exe (GdipGetPathTypes) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3FF24)
[Address] EAT @explorer.exe (GdipGetPathWorldBounds) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3D680)
[Address] EAT @explorer.exe (GdipGetPathWorldBoundsI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3D4FC)
[Address] EAT @explorer.exe (GdipGetPenBrushFill) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A35D44)
[Address] EAT @explorer.exe (GdipGetPenColor) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DF640)
[Address] EAT @explorer.exe (GdipGetPenCompoundArray) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A356CC)
[Address] EAT @explorer.exe (GdipGetPenCompoundCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3586C)
[Address] EAT @explorer.exe (GdipGetPenCustomEndCap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3674C)
[Address] EAT @explorer.exe (GdipGetPenCustomStartCap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A368FC)
[Address] EAT @explorer.exe (GdipGetPenDashArray) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3591C)
[Address] EAT @explorer.exe (GdipGetPenDashCap197819) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A36B5C)
[Address] EAT @explorer.exe (GdipGetPenDashCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A35A94)
[Address] EAT @explorer.exe (GdipGetPenDashOffset) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A35BE4)
[Address] EAT @explorer.exe (GdipGetPenDashStyle) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A35C94)
[Address] EAT @explorer.exe (GdipGetPenEndCap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A36C10)
[Address] EAT @explorer.exe (GdipGetPenFillType) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DFB50)
[Address] EAT @explorer.exe (GdipGetPenLineJoin) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A36AAC)
[Address] EAT @explorer.exe (GdipGetPenMiterLimit) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A365F0)
[Address] EAT @explorer.exe (GdipGetPenMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A36498)
[Address] EAT @explorer.exe (GdipGetPenStartCap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A36CC0)
[Address] EAT @explorer.exe (GdipGetPenTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3624C)
[Address] EAT @explorer.exe (GdipGetPenUnit) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A36EE4)
[Address] EAT @explorer.exe (GdipGetPenWidth) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DF6E0)
[Address] EAT @explorer.exe (GdipGetPixelOffsetMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A313C4)
[Address] EAT @explorer.exe (GdipGetPointCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A40030)
[Address] EAT @explorer.exe (GdipGetPropertyCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A33F08)
[Address] EAT @explorer.exe (GdipGetPropertyIdList) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A33E6C)
[Address] EAT @explorer.exe (GdipGetPropertyItem) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E57EC)
[Address] EAT @explorer.exe (GdipGetPropertyItemSize) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E5760)
[Address] EAT @explorer.exe (GdipGetPropertySize) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DFEF0)
[Address] EAT @explorer.exe (GdipGetRegionBounds) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3B260)
[Address] EAT @explorer.exe (GdipGetRegionBoundsI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3B0C4)
[Address] EAT @explorer.exe (GdipGetRegionData) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3ABA8)
[Address] EAT @explorer.exe (GdipGetRegionDataSize) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3AC7C)
[Address] EAT @explorer.exe (GdipGetRegionHRgn) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E866C)
[Address] EAT @explorer.exe (GdipGetRegionScans) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3A4EC)
[Address] EAT @explorer.exe (GdipGetRegionScansCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3A60C)
[Address] EAT @explorer.exe (GdipGetRegionScansI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3A3EC)
[Address] EAT @explorer.exe (GdipGetRenderingOrigin) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A315D4)
[Address] EAT @explorer.exe (GdipGetSmoothingMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DAA70)
[Address] EAT @explorer.exe (GdipGetSolidFillColor) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39964)
[Address] EAT @explorer.exe (GdipGetStringFormatAlign) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A28A30)
[Address] EAT @explorer.exe (GdipGetStringFormatDigitSubstitution) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A28390)
[Address] EAT @explorer.exe (GdipGetStringFormatFlags) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A28B58)
[Address] EAT @explorer.exe (GdipGetStringFormatHotkeyPrefix) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A287E0)
[Address] EAT @explorer.exe (GdipGetStringFormatLineAlign) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A28908)
[Address] EAT @explorer.exe (GdipGetStringFormatMeasurableCharacterRangeCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2856C)
[Address] EAT @explorer.exe (GdipGetStringFormatTabStopCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A28698)
[Address] EAT @explorer.exe (GdipGetStringFormatTabStops) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A285DC)
[Address] EAT @explorer.exe (GdipGetStringFormatTrimming) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A28260)
[Address] EAT @explorer.exe (GdipGetTextContrast) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A311B0)
[Address] EAT @explorer.exe (GdipGetTextRenderingHint) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E8160)
[Address] EAT @explorer.exe (GdipGetTextureImage) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0DE20)
[Address] EAT @explorer.exe (GdipGetTextureTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39AD0)
[Address] EAT @explorer.exe (GdipGetTextureWrapMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0DCCC)
[Address] EAT @explorer.exe (GdipGetVisibleClipBounds) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2B7D0)
[Address] EAT @explorer.exe (GdipGetVisibleClipBoundsI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2B690)
[Address] EAT @explorer.exe (GdipGetWorldTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D780C)
[Address] EAT @explorer.exe (GdipGraphicsClear) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E19E8)
[Address] EAT @explorer.exe (GdipGraphicsSetAbort) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A325EC)
[Address] EAT @explorer.exe (GdipImageForceValidation) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E6F4C)
[Address] EAT @explorer.exe (GdipImageGetFrameCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A10478)
[Address] EAT @explorer.exe (GdipImageGetFrameDimensionsCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A10204)
[Address] EAT @explorer.exe (GdipImageGetFrameDimensionsList) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A102A4)
[Address] EAT @explorer.exe (GdipImageRotateFlip) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A13500)
[Address] EAT @explorer.exe (GdipImageSelectActiveFrame) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A33F94)
[Address] EAT @explorer.exe (GdipImageSetAbort) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A32690)
[Address] EAT @explorer.exe (GdipInitializePalette) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A32A30)
[Address] EAT @explorer.exe (GdipInvertMatrix) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3C100)
[Address] EAT @explorer.exe (GdipIsClipEmpty) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2B884)
[Address] EAT @explorer.exe (GdipIsEmptyRegion) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3AF40)
[Address] EAT @explorer.exe (GdipIsEqualRegion) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3AD48)
[Address] EAT @explorer.exe (GdipIsInfiniteRegion) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E8268)
[Address] EAT @explorer.exe (GdipIsMatrixEqual) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3BCA0)
[Address] EAT @explorer.exe (GdipIsMatrixIdentity) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D7760)
[Address] EAT @explorer.exe (GdipIsMatrixInvertible) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3BDC4)
[Address] EAT @explorer.exe (GdipIsOutlineVisiblePathPoint) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3D080)
[Address] EAT @explorer.exe (GdipIsOutlineVisiblePathPointI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3CFF8)
[Address] EAT @explorer.exe (GdipIsStyleAvailable) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A297B8)
[Address] EAT @explorer.exe (GdipIsVisibleClipEmpty) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2B5D4)
[Address] EAT @explorer.exe (GdipIsVisiblePathPoint) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3D344)
[Address] EAT @explorer.exe (GdipIsVisiblePathPointI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3D2C8)
[Address] EAT @explorer.exe (GdipIsVisiblePoint) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2B4F0)
[Address] EAT @explorer.exe (GdipIsVisiblePointI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2B480)
[Address] EAT @explorer.exe (GdipIsVisibleRect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2B37C)
[Address] EAT @explorer.exe (GdipIsVisibleRectI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2B2F0)
[Address] EAT @explorer.exe (GdipIsVisibleRegionPoint) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3AA08)
[Address] EAT @explorer.exe (GdipIsVisibleRegionPointI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3A98C)
[Address] EAT @explorer.exe (GdipIsVisibleRegionRect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3A7A8)
[Address] EAT @explorer.exe (GdipIsVisibleRegionRectI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3A70C)
[Address] EAT @explorer.exe (GdipLoadImageFromFile) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A344D4)
[Address] EAT @explorer.exe (GdipLoadImageFromFileICM) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A34314)
[Address] EAT @explorer.exe (GdipLoadImageFromStream) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D9F24)
[Address] EAT @explorer.exe (GdipLoadImageFromStreamICM) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A343F4)
[Address] EAT @explorer.exe (GdipMeasureCharacterRanges) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2DC28)
[Address] EAT @explorer.exe (GdipMeasureDriverString) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2D7D0)
[Address] EAT @explorer.exe (GdipMeasureString) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2DDF0)

Uživatelský avatar
AngelikaB
Level 6
Level 6
Příspěvky: 3139
Registrován: červen 13
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu logu.. Pomalu najíždi do metra

Příspěvekod AngelikaB » 06 dub 2014 10:32

4 strana
[Address] EAT @explorer.exe (GdipMultiplyLineTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37354)
[Address] EAT @explorer.exe (GdipMultiplyMatrix) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0A8BC)
[Address] EAT @explorer.exe (GdipMultiplyPathGradientTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37354)
[Address] EAT @explorer.exe (GdipMultiplyPenTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A36094)
[Address] EAT @explorer.exe (GdipMultiplyTextureTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37354)
[Address] EAT @explorer.exe (GdipMultiplyWorldTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A30F58)
[Address] EAT @explorer.exe (GdipNewInstalledFontCollection) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A293A0)
[Address] EAT @explorer.exe (GdipNewPrivateFontCollection) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A292EC)
[Address] EAT @explorer.exe (GdipPathIterCopyData) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3C4A8)
[Address] EAT @explorer.exe (GdipPathIterEnumerate) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3C598)
[Address] EAT @explorer.exe (GdipPathIterGetCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3C93C)
[Address] EAT @explorer.exe (GdipPathIterGetSubpathCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3C888)
[Address] EAT @explorer.exe (GdipPathIterHasCurve) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3C728)
[Address] EAT @explorer.exe (GdipPathIterIsValid) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3C7D4)
[Address] EAT @explorer.exe (GdipPathIterNextMarker) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3CAB4)
[Address] EAT @explorer.exe (GdipPathIterNextMarkerPath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3C9F0)
[Address] EAT @explorer.exe (GdipPathIterNextPathType) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3CB98)
[Address] EAT @explorer.exe (GdipPathIterNextSubpath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3CD5C)
[Address] EAT @explorer.exe (GdipPathIterNextSubpathPath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3CC84)
[Address] EAT @explorer.exe (GdipPathIterRewind) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3C680)
[Address] EAT @explorer.exe (GdipPlayMetafileRecord) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2BEF4)
[Address] EAT @explorer.exe (GdipPlayTSClientRecord) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A279F8)
[Address] EAT @explorer.exe (GdipPrivateAddFontFile) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A29020)
[Address] EAT @explorer.exe (GdipPrivateAddMemoryFont) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A28F74)
[Address] EAT @explorer.exe (GdipRecordMetafile) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A02A54)
[Address] EAT @explorer.exe (GdipRecordMetafileFileName) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2A510)
[Address] EAT @explorer.exe (GdipRecordMetafileFileNameI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2A40C)
[Address] EAT @explorer.exe (GdipRecordMetafileI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2A66C)
[Address] EAT @explorer.exe (GdipRecordMetafileStream) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2A2B0)
[Address] EAT @explorer.exe (GdipRecordMetafileStreamI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2A1AC)
[Address] EAT @explorer.exe (GdipReleaseDC) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389F3508)
[Address] EAT @explorer.exe (GdipRemovePropertyItem) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A33DE0)
[Address] EAT @explorer.exe (GdipResetClip) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389F2D60)
[Address] EAT @explorer.exe (GdipResetImageAttributes) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A32358)
[Address] EAT @explorer.exe (GdipResetLineTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A38914)
[Address] EAT @explorer.exe (GdipResetPageTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A30D38)
[Address] EAT @explorer.exe (GdipResetPath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A400E0)
[Address] EAT @explorer.exe (GdipResetPathGradientTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A38914)
[Address] EAT @explorer.exe (GdipResetPenTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A36198)
[Address] EAT @explorer.exe (GdipResetTextureTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A38914)
[Address] EAT @explorer.exe (GdipResetWorldTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3106C)
[Address] EAT @explorer.exe (GdipRestoreGraphics) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E81E8)
[Address] EAT @explorer.exe (GdipReversePath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3F7A8)
[Address] EAT @explorer.exe (GdipRotateLineTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39A18)
[Address] EAT @explorer.exe (GdipRotateMatrix) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0B700)
[Address] EAT @explorer.exe (GdipRotatePathGradientTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39A18)
[Address] EAT @explorer.exe (GdipRotatePenTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A35E0C)
[Address] EAT @explorer.exe (GdipRotateTextureTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39A18)
[Address] EAT @explorer.exe (GdipRotateWorldTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A30DE0)
[Address] EAT @explorer.exe (GdipSaveAdd) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A340F8)
[Address] EAT @explorer.exe (GdipSaveAddImage) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A34040)
[Address] EAT @explorer.exe (GdipSaveGraphics) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E7F9C)
[Address] EAT @explorer.exe (GdipSaveImageToFile) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389C5FD0)
[Address] EAT @explorer.exe (GdipSaveImageToStream) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DFC80)
[Address] EAT @explorer.exe (GdipScaleLineTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3728C)
[Address] EAT @explorer.exe (GdipScaleMatrix) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0A738)
[Address] EAT @explorer.exe (GdipScalePathGradientTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3728C)
[Address] EAT @explorer.exe (GdipScalePenTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A35EDC)
[Address] EAT @explorer.exe (GdipScaleTextureTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3728C)
[Address] EAT @explorer.exe (GdipScaleWorldTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A30E94)
[Address] EAT @explorer.exe (GdipSetAdjustableArrowCapFillState) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A34660)
[Address] EAT @explorer.exe (GdipSetAdjustableArrowCapHeight) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A34AC0)
[Address] EAT @explorer.exe (GdipSetAdjustableArrowCapMiddleInset) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A347D0)
[Address] EAT @explorer.exe (GdipSetAdjustableArrowCapWidth) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A34948)
[Address] EAT @explorer.exe (GdipSetClipGraphics) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2BDEC)
[Address] EAT @explorer.exe (GdipSetClipHrgn) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2BB08)
[Address] EAT @explorer.exe (GdipSetClipPath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2BCDC)
[Address] EAT @explorer.exe (GdipSetClipRect) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D69B0)
[Address] EAT @explorer.exe (GdipSetClipRectI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D6910)
[Address] EAT @explorer.exe (GdipSetClipRegion) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2BBD4)
[Address] EAT @explorer.exe (GdipSetCompositingMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E3358)
[Address] EAT @explorer.exe (GdipSetCompositingQuality) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3152C)
[Address] EAT @explorer.exe (GdipSetCustomLineCapBaseCap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A34FA0)
[Address] EAT @explorer.exe (GdipSetCustomLineCapBaseInset) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A34E5C)
[Address] EAT @explorer.exe (GdipSetCustomLineCapStrokeCaps) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A35250)
[Address] EAT @explorer.exe (GdipSetCustomLineCapStrokeJoin) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A35104)
[Address] EAT @explorer.exe (GdipSetCustomLineCapWidthScale) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A34D24)
[Address] EAT @explorer.exe (GdipSetEffectParameters) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A32CEC)
[Address] EAT @explorer.exe (GdipSetEmpty) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3B7C4)
[Address] EAT @explorer.exe (GdipSetImageAttributesCachedBackground) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A31BC8)
[Address] EAT @explorer.exe (GdipSetImageAttributesColorKeys) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E7460)
[Address] EAT @explorer.exe (GdipSetImageAttributesColorMatrix) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A32284)
[Address] EAT @explorer.exe (GdipSetImageAttributesGamma) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3205C)
[Address] EAT @explorer.exe (GdipSetImageAttributesNoOp) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A31F54)
[Address] EAT @explorer.exe (GdipSetImageAttributesOutputChannel) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A31E38)
[Address] EAT @explorer.exe (GdipSetImageAttributesOutputChannelColorProfile) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A31D74)
[Address] EAT @explorer.exe (GdipSetImageAttributesRemapTable) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A31C70)
[Address] EAT @explorer.exe (GdipSetImageAttributesThreshold) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A32164)
[Address] EAT @explorer.exe (GdipSetImageAttributesToIdentity) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A32448)
[Address] EAT @explorer.exe (GdipSetImageAttributesWrapMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A31B10)
[Address] EAT @explorer.exe (GdipSetImagePalette) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A338AC)
[Address] EAT @explorer.exe (GdipSetInfinite) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3B860)
[Address] EAT @explorer.exe (GdipSetInterpolationMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A11170)
[Address] EAT @explorer.exe (GdipSetLineBlend) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A1273C)
[Address] EAT @explorer.exe (GdipSetLineColors) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39454)
[Address] EAT @explorer.exe (GdipSetLineGammaCorrection) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A39214)
[Address] EAT @explorer.exe (GdipSetLineLinearBlend) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A38C10)
[Address] EAT @explorer.exe (GdipSetLinePresetBlend) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A38CD0)
[Address] EAT @explorer.exe (GdipSetLineSigmaBlend) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A12A58)
[Address] EAT @explorer.exe (GdipSetLineTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A389B4)
[Address] EAT @explorer.exe (GdipSetLineWrapMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A38B50)
[Address] EAT @explorer.exe (GdipSetMatrixElements) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0A7E0)
[Address] EAT @explorer.exe (GdipSetMetafileDownLevelRasterizationLimit) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2A068)
[Address] EAT @explorer.exe (GdipSetPageScale) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A30B1C)
[Address] EAT @explorer.exe (GdipSetPageUnit) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E9E40)
[Address] EAT @explorer.exe (GdipSetPathFillMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DF4BC)
[Address] EAT @explorer.exe (GdipSetPathGradientBlend) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A378A8)
[Address] EAT @explorer.exe (GdipSetPathGradientCenterColor) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A38444)
[Address] EAT @explorer.exe (GdipSetPathGradientCenterPoint) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37EDC)
[Address] EAT @explorer.exe (GdipSetPathGradientCenterPointI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37E68)
[Address] EAT @explorer.exe (GdipSetPathGradientFocusScales) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37104)
[Address] EAT @explorer.exe (GdipSetPathGradientGammaCorrection) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37BB0)
[Address] EAT @explorer.exe (GdipSetPathGradientLinearBlend) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A38C10)
[Address] EAT @explorer.exe (GdipSetPathGradientPath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A380E0)
[Address] EAT @explorer.exe (GdipSetPathGradientPresetBlend) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A375C4)
[Address] EAT @explorer.exe (GdipSetPathGradientSigmaBlend) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37504)
[Address] EAT @explorer.exe (GdipSetPathGradientSurroundColorsWithCount) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A38110)
[Address] EAT @explorer.exe (GdipSetPathGradientTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A389B4)
[Address] EAT @explorer.exe (GdipSetPathGradientWrapMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A37458)
[Address] EAT @explorer.exe (GdipSetPathMarker) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3F8E8)
[Address] EAT @explorer.exe (GdipSetPenBrushFill) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D7974)
[Address] EAT @explorer.exe (GdipSetPenColor) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389F08F8)
[Address] EAT @explorer.exe (GdipSetPenCompoundArray) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A357B0)
[Address] EAT @explorer.exe (GdipSetPenCustomEndCap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A36814)
[Address] EAT @explorer.exe (GdipSetPenCustomStartCap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A369C4)
[Address] EAT @explorer.exe (GdipSetPenDashArray) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A359D8)
[Address] EAT @explorer.exe (GdipSetPenDashCap197819) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A36D70)
[Address] EAT @explorer.exe (GdipSetPenDashOffset) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A35B44)
[Address] EAT @explorer.exe (GdipSetPenDashStyle) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389F0860)
[Address] EAT @explorer.exe (GdipSetPenEndCap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DABC0)
[Address] EAT @explorer.exe (GdipSetPenLineCap197819) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A36E18)
[Address] EAT @explorer.exe (GdipSetPenLineJoin) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DAC50)
[Address] EAT @explorer.exe (GdipSetPenMiterLimit) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A366A0)
[Address] EAT @explorer.exe (GdipSetPenMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A36548)
[Address] EAT @explorer.exe (GdipSetPenStartCap) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389DAB30)
[Address] EAT @explorer.exe (GdipSetPenTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A36368)
[Address] EAT @explorer.exe (GdipSetPenUnit) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A36F94)
[Address] EAT @explorer.exe (GdipSetPenWidth) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D6B50)
[Address] EAT @explorer.exe (GdipSetPixelOffsetMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A1346C)
[Address] EAT @explorer.exe (GdipSetPropertyItem) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E4558)
[Address] EAT @explorer.exe (GdipSetRenderingOrigin) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A316AC)
[Address] EAT @explorer.exe (GdipSetSmoothingMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D1DB8)
[Address] EAT @explorer.exe (GdipSetSolidFillColor) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389D6C1C)
[Address] EAT @explorer.exe (GdipSetStringFormatAlign) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A28AC0)
[Address] EAT @explorer.exe (GdipSetStringFormatDigitSubstitution) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2843C)
[Address] EAT @explorer.exe (GdipSetStringFormatFlags) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A28BE8)
[Address] EAT @explorer.exe (GdipSetStringFormatHotkeyPrefix) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A28870)
[Address] EAT @explorer.exe (GdipSetStringFormatLineAlign) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A28998)
[Address] EAT @explorer.exe (GdipSetStringFormatMeasurableCharacterRanges) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A284E8)
[Address] EAT @explorer.exe (GdipSetStringFormatTabStops) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A28728)
[Address] EAT @explorer.exe (GdipSetStringFormatTrimming) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A282F8)
[Address] EAT @explorer.exe (GdipSetTextContrast) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A31264)
[Address] EAT @explorer.exe (GdipSetTextRenderingHint) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3130C)
[Address] EAT @explorer.exe (GdipSetTextureTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A389B4)
[Address] EAT @explorer.exe (GdipSetTextureWrapMode) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0DF10)
[Address] EAT @explorer.exe (GdipSetWorldTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0D014)
[Address] EAT @explorer.exe (GdipShearMatrix) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3C19C)
[Address] EAT @explorer.exe (GdipStartPathFigure) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3FAC8)
[Address] EAT @explorer.exe (GdipStringFormatGetGenericDefault) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A28DF8)
[Address] EAT @explorer.exe (GdipStringFormatGetGenericTypographic) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A28D90)
[Address] EAT @explorer.exe (GdipTestControl) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A281EC)
[Address] EAT @explorer.exe (GdipTransformMatrixPoints) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0C110)
[Address] EAT @explorer.exe (GdipTransformMatrixPointsI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0BFE4)
[Address] EAT @explorer.exe (GdipTransformPath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3D804)
[Address] EAT @explorer.exe (GdipTransformPoints) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3098C)
[Address] EAT @explorer.exe (GdipTransformPointsI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A307AC)
[Address] EAT @explorer.exe (GdipTransformRegion) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3B374)

Uživatelský avatar
AngelikaB
Level 6
Level 6
Příspěvky: 3139
Registrován: červen 13
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu logu.. Pomalu najíždi do metra

Příspěvekod AngelikaB » 06 dub 2014 10:32

5 strana
[Address] EAT @explorer.exe (GdipTranslateClip) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2BA4C)
[Address] EAT @explorer.exe (GdipTranslateClipI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A2B9EC)
[Address] EAT @explorer.exe (GdipTranslateLineTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3884C)
[Address] EAT @explorer.exe (GdipTranslateMatrix) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A0A68C)
[Address] EAT @explorer.exe (GdipTranslatePathGradientTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3884C)
[Address] EAT @explorer.exe (GdipTranslatePenTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A35FB8)
[Address] EAT @explorer.exe (GdipTranslateRegion) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3B4BC)
[Address] EAT @explorer.exe (GdipTranslateRegionI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3B45C)
[Address] EAT @explorer.exe (GdipTranslateTextureTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3884C)
[Address] EAT @explorer.exe (GdipTranslateWorldTransform) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389E7EEC)
[Address] EAT @explorer.exe (GdipVectorTransformMatrixPoints) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3C038)
[Address] EAT @explorer.exe (GdipVectorTransformMatrixPointsI) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3BE78)
[Address] EAT @explorer.exe (GdipWarpPath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3D914)
[Address] EAT @explorer.exe (GdipWidenPath) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3DA68)
[Address] EAT @explorer.exe (GdipWindingModeOutline) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A3DBD0)
[Address] EAT @explorer.exe (GdiplusNotificationHook) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A40510)
[Address] EAT @explorer.exe (GdiplusNotificationUnhook) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x38A404AC)
[Address] EAT @explorer.exe (GdiplusShutdown) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389C88CC)
[Address] EAT @explorer.exe (GdiplusStartup) : ntmarta.dll -> HOOKED (C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16518_none_726fbfe0cc22f012\gdiplus.dll @ 0x389C32B0)
[Address] EAT @explorer.exe (BiChangeApplicationStateForPackageName) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F7AB80)
[Address] EAT @explorer.exe (BiChangeSessionState) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F953D8)
[Address] EAT @explorer.exe (BiNotifyNewSession) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F96F0C)
[Address] EAT @explorer.exe (BiPtActivateWorkItem) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35FEBCE0)
[Address] EAT @explorer.exe (BiPtAssociateActivationProxy) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F9A7EC)
[Address] EAT @explorer.exe (BiPtAssociateApplicationExtensionClass) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35FEBBD0)
[Address] EAT @explorer.exe (BiPtCreateEventForPackageName) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35FEBAC0)
[Address] EAT @explorer.exe (BiPtDeleteEvent) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35FEBA50)
[Address] EAT @explorer.exe (BiPtDisassociateWorkItem) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35FEB9B0)
[Address] EAT @explorer.exe (BiPtEnumerateBrokeredEvents) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F96A70)
[Address] EAT @explorer.exe (BiPtEnumerateWorkItemsForPackageName) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35FEB8C0)
[Address] EAT @explorer.exe (BiPtFreeMemory) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F75FE0)
[Address] EAT @explorer.exe (BiPtQueryBrokeredEvent) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F75DF0)
[Address] EAT @explorer.exe (BiPtQuerySystemStateBroadcastChannels) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F96A0C)
[Address] EAT @explorer.exe (BiPtQueryWorkItem) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35FEB804)
[Address] EAT @explorer.exe (BiPtSignalEvent) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35FEB738)
[Address] EAT @explorer.exe (BiPtSignalMultipleEvents) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35FEB660)
[Address] EAT @explorer.exe (BiResetActiveSessionForPackage) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35FEB57C)
[Address] EAT @explorer.exe (BiSetActiveSessionForPackage) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35FEB4E0)
[Address] EAT @explorer.exe (BiUpdateLockScreenApplications) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35FEB430)
[Address] EAT @explorer.exe (DllCanUnloadNow) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F71340)
[Address] EAT @explorer.exe (DllGetActivationFactory) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F72F60)
[Address] EAT @explorer.exe (DllGetClassObject) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F72110)
[Address] EAT @explorer.exe (PsmBlockAppStateChangeCompletion) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35FEBDD4)
[Address] EAT @explorer.exe (PsmIsProcessInApplication) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F87D60)
[Address] EAT @explorer.exe (PsmQueryApplicationInformation) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F773F0)
[Address] EAT @explorer.exe (PsmQueryApplicationList) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F72770)
[Address] EAT @explorer.exe (PsmQueryCurrentAppState) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35FEBD70)
[Address] EAT @explorer.exe (PsmQueryProcessList) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F724F0)
[Address] EAT @explorer.exe (PsmRegisterAppStateChangeNotification) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F7CF00)
[Address] EAT @explorer.exe (PsmRegisterApplicationNotification) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F771E0)
[Address] EAT @explorer.exe (PsmSetApplicationState) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F7A870)
[Address] EAT @explorer.exe (PsmShutdownApplication) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35FEBEC0)
[Address] EAT @explorer.exe (PsmUnblockAppStateChangeCompletion) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35FEBE0C)
[Address] EAT @explorer.exe (PsmUnregisterAppStateChangeNotification) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35F80A68)
[Address] EAT @explorer.exe (PsmWaitForAppResume) : MSVCR110_CLR0400.dll -> HOOKED (C:\Windows\System32\twinapi.dll @ 0x35FEBE5C)
[Address] EAT @firefox.exe (AddIPAddress) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD1337)
[Address] EAT @firefox.exe (AllocateAndGetInterfaceInfoFromStack) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCFD7C)
[Address] EAT @firefox.exe (AllocateAndGetIpAddrTableFromStack) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0AAE)
[Address] EAT @firefox.exe (CancelIPChangeNotify) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC5D4C)
[Address] EAT @firefox.exe (CancelMibChangeNotify2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCA4DE)
[Address] EAT @firefox.exe (CloseGetIPPhysicalInterfaceForDestination) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC891C)
[Address] EAT @firefox.exe (ConvertGuidToStringA) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC6C9B)
[Address] EAT @firefox.exe (ConvertGuidToStringW) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC3525)
[Address] EAT @firefox.exe (ConvertInterfaceAliasToLuid) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD563B)
[Address] EAT @firefox.exe (ConvertInterfaceGuidToLuid) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC3599)
[Address] EAT @firefox.exe (ConvertInterfaceIndexToLuid) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC3667)
[Address] EAT @firefox.exe (ConvertInterfaceLuidToAlias) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC8B48)
[Address] EAT @firefox.exe (ConvertInterfaceLuidToGuid) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC36A6)
[Address] EAT @firefox.exe (ConvertInterfaceLuidToIndex) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC6DDD)
[Address] EAT @firefox.exe (ConvertInterfaceLuidToNameA) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD543E)
[Address] EAT @firefox.exe (ConvertInterfaceLuidToNameW) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC6D45)
[Address] EAT @firefox.exe (ConvertInterfaceNameToLuidA) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD54B6)
[Address] EAT @firefox.exe (ConvertInterfaceNameToLuidW) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC37D2)
[Address] EAT @firefox.exe (ConvertInterfacePhysicalAddressToLuid) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD524A)
[Address] EAT @firefox.exe (ConvertIpv4MaskToLength) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD5185)
[Address] EAT @firefox.exe (ConvertLengthToIpv4Mask) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCE6BE)
[Address] EAT @firefox.exe (ConvertRemoteInterfaceAliasToLuid) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD04B8)
[Address] EAT @firefox.exe (ConvertRemoteInterfaceGuidToLuid) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD033F)
[Address] EAT @firefox.exe (ConvertRemoteInterfaceIndexToLuid) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD071C)
[Address] EAT @firefox.exe (ConvertRemoteInterfaceLuidToAlias) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0620)
[Address] EAT @firefox.exe (ConvertRemoteInterfaceLuidToGuid) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD043D)
[Address] EAT @firefox.exe (ConvertRemoteInterfaceLuidToIndex) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD076B)
[Address] EAT @firefox.exe (ConvertStringToGuidA) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD07CE)
[Address] EAT @firefox.exe (ConvertStringToGuidW) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC789F)
[Address] EAT @firefox.exe (ConvertStringToInterfacePhysicalAddress) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD537F)
[Address] EAT @firefox.exe (CreateAnycastIpAddressEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD5FEB)
[Address] EAT @firefox.exe (CreateIpForwardEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD2347)
[Address] EAT @firefox.exe (CreateIpForwardEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD6E3D)
[Address] EAT @firefox.exe (CreateIpNetEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD226D)
[Address] EAT @firefox.exe (CreateIpNetEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD75F5)
[Address] EAT @firefox.exe (CreatePersistentTcpPortReservation) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD34E8)
[Address] EAT @firefox.exe (CreatePersistentUdpPortReservation) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD34C3)
[Address] EAT @firefox.exe (CreateProxyArpEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD16E9)
[Address] EAT @firefox.exe (CreateSortedAddressPairs) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD7640)
[Address] EAT @firefox.exe (CreateUnicastIpAddressEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD60AB)
[Address] EAT @firefox.exe (DeleteAnycastIpAddressEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD5FD3)
[Address] EAT @firefox.exe (DeleteIPAddress) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD12A1)
[Address] EAT @firefox.exe (DeleteIpForwardEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD235F)
[Address] EAT @firefox.exe (DeleteIpForwardEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD6E25)
[Address] EAT @firefox.exe (DeleteIpNetEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD2285)
[Address] EAT @firefox.exe (DeleteIpNetEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD75DD)
[Address] EAT @firefox.exe (DeletePersistentTcpPortReservation) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD349F)
[Address] EAT @firefox.exe (DeletePersistentUdpPortReservation) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD347B)
[Address] EAT @firefox.exe (DeleteProxyArpEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD16CB)
[Address] EAT @firefox.exe (DeleteUnicastIpAddressEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD6093)
[Address] EAT @firefox.exe (DisableMediaSense) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD1056)
[Address] EAT @firefox.exe (EnableRouter) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD10B3)
[Address] EAT @firefox.exe (FlushIpNetTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD18B8)
[Address] EAT @firefox.exe (FlushIpNetTable2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD7040)
[Address] EAT @firefox.exe (FlushIpPathTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD78A2)
[Address] EAT @firefox.exe (FreeMibTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC347D)
[Address] EAT @firefox.exe (GetAdapterIndex) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCFCF0)
[Address] EAT @firefox.exe (GetAdapterOrderMap) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCFC03)
[Address] EAT @firefox.exe (GetAdaptersAddresses) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC4114)
[Address] EAT @firefox.exe (GetAdaptersInfo) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCA92C)
[Address] EAT @firefox.exe (GetAnycastIpAddressEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD5FB4)
[Address] EAT @firefox.exe (GetAnycastIpAddressTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD5F97)
[Address] EAT @firefox.exe (GetBestInterface) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCBDA3)
[Address] EAT @firefox.exe (GetBestInterfaceEx) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC3329)
[Address] EAT @firefox.exe (GetBestRoute) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD1448)
[Address] EAT @firefox.exe (GetBestRoute2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC7153)
[Address] EAT @firefox.exe (GetCurrentThreadCompartmentId) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC32E2)
[Address] EAT @firefox.exe (GetExtendedTcpTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCA369)
[Address] EAT @firefox.exe (GetExtendedUdpTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCA485)
[Address] EAT @firefox.exe (GetFriendlyIfIndex) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCFBED)
[Address] EAT @firefox.exe (GetIcmpStatistics) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD1D15)
[Address] EAT @firefox.exe (GetIcmpStatisticsEx) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC9439)
[Address] EAT @firefox.exe (GetIfEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCB9B3)
[Address] EAT @firefox.exe (GetIfEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC5429)
[Address] EAT @firefox.exe (GetIfStackTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCC357)
[Address] EAT @firefox.exe (GetIfTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0197)
[Address] EAT @firefox.exe (GetIfTable2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC5B41)
[Address] EAT @firefox.exe (GetIfTable2Ex) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC5B5B)
[Address] EAT @firefox.exe (GetInterfaceInfo) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCFF5D)
[Address] EAT @firefox.exe (GetInvertedIfStackTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD80F9)
[Address] EAT @firefox.exe (GetIpAddrTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD1E93)
[Address] EAT @firefox.exe (GetIpErrorString) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCF8D7)
[Address] EAT @firefox.exe (GetIpForwardEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD6E6D)
[Address] EAT @firefox.exe (GetIpForwardTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCB8AB)
[Address] EAT @firefox.exe (GetIpForwardTable2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC79B4)
[Address] EAT @firefox.exe (GetIpInterfaceEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC63E4)
[Address] EAT @firefox.exe (GetIpInterfaceTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC6EC4)
[Address] EAT @firefox.exe (GetIpNetEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC8050)
[Address] EAT @firefox.exe (GetIpNetTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD205C)
[Address] EAT @firefox.exe (GetIpNetTable2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD7625)
[Address] EAT @firefox.exe (GetIpNetworkConnectionBandwidthEstimates) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD8008)
[Address] EAT @firefox.exe (GetIpPathEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD794A)
[Address] EAT @firefox.exe (GetIpPathTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD7AF6)
[Address] EAT @firefox.exe (GetIpStatistics) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD2435)
[Address] EAT @firefox.exe (GetIpStatisticsEx) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC65B9)
[Address] EAT @firefox.exe (GetMulticastIpAddressEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD5F3A)
[Address] EAT @firefox.exe (GetMulticastIpAddressTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD5F1D)
[Address] EAT @firefox.exe (GetNetworkInformation) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD7ECC)
[Address] EAT @firefox.exe (GetNetworkParams) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC67E0)
[Address] EAT @firefox.exe (GetNumberOfInterfaces) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC93E1)
[Address] EAT @firefox.exe (GetOwnerModuleFromPidAndInfo) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCEE7E)
[Address] EAT @firefox.exe (GetOwnerModuleFromTcp6Entry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD37F8)
[Address] EAT @firefox.exe (GetOwnerModuleFromTcpEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD3835)
[Address] EAT @firefox.exe (GetOwnerModuleFromUdp6Entry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD48FC)
[Address] EAT @firefox.exe (GetOwnerModuleFromUdpEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD4939)
[Address] EAT @firefox.exe (GetPerAdapterInfo) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCF5AD)
[Address] EAT @firefox.exe (GetPerTcp6ConnectionEStats) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC9503)
[Address] EAT @firefox.exe (GetPerTcp6ConnectionStats) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD392E)
[Address] EAT @firefox.exe (GetPerTcpConnectionEStats) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC96FE)
[Address] EAT @firefox.exe (GetPerTcpConnectionStats) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD3A39)
[Address] EAT @firefox.exe (GetRTTAndHopCount) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD2AA7)
[Address] EAT @firefox.exe (GetSessionCompartmentId) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC3422)
[Address] EAT @firefox.exe (GetTcp6Table) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD3FD6)
[Address] EAT @firefox.exe (GetTcp6Table2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD45F5)
[Address] EAT @firefox.exe (GetTcpStatistics) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD3872)
[Address] EAT @firefox.exe (GetTcpStatisticsEx) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC920F)
[Address] EAT @firefox.exe (GetTcpTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD422D)
[Address] EAT @firefox.exe (GetTcpTable2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD42F5)
[Address] EAT @firefox.exe (GetTeredoPort) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD8536)
[Address] EAT @firefox.exe (GetUdp6Table) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD49C6)
[Address] EAT @firefox.exe (GetUdpStatistics) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD4976)
[Address] EAT @firefox.exe (GetUdpStatisticsEx) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC9318)
[Address] EAT @firefox.exe (GetUdpTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD4B74)
[Address] EAT @firefox.exe (GetUniDirectionalAdapterInfo) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD15E1)
[Address] EAT @firefox.exe (GetUnicastIpAddressEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC844A)
[Address] EAT @firefox.exe (GetUnicastIpAddressTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC8CC8)
[Address] EAT @firefox.exe (Icmp6CreateFile) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD31AF)
[Address] EAT @firefox.exe (Icmp6ParseReplies) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD2DB6)
[Address] EAT @firefox.exe (Icmp6SendEcho2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD2DFF)
[Address] EAT @firefox.exe (IcmpCloseHandle) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCB2C3)
[Address] EAT @firefox.exe (IcmpCreateFile) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCB383)
[Address] EAT @firefox.exe (IcmpParseReplies) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCB86D)
[Address] EAT @firefox.exe (IcmpSendEcho) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCBE6F)
[Address] EAT @firefox.exe (IcmpSendEcho2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCBEA0)
[Address] EAT @firefox.exe (IcmpSendEcho2Ex) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCB5B9)
[Address] EAT @firefox.exe (InitializeIpForwardEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCC11A)
[Address] EAT @firefox.exe (InitializeIpInterfaceEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD8109)
[Address] EAT @firefox.exe (InitializeUnicastIpAddressEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD5950)
[Address] EAT @firefox.exe (InternalCleanupPersistentStore) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD8484)
[Address] EAT @firefox.exe (InternalCreateAnycastIpAddressEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD605E)
[Address] EAT @firefox.exe (InternalCreateIpForwardEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0B24)

Uživatelský avatar
AngelikaB
Level 6
Level 6
Příspěvky: 3139
Registrován: červen 13
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu logu.. Pomalu najíždi do metra

Příspěvekod AngelikaB » 06 dub 2014 10:33

6 strana
[Address] EAT @firefox.exe (InternalCreateIpForwardEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD6893)
[Address] EAT @firefox.exe (InternalCreateIpNetEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0B76)
[Address] EAT @firefox.exe (InternalCreateIpNetEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD711B)
[Address] EAT @firefox.exe (InternalCreateUnicastIpAddressEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD6138)
[Address] EAT @firefox.exe (InternalDeleteAnycastIpAddressEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD6041)
[Address] EAT @firefox.exe (InternalDeleteIpForwardEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0B0A)
[Address] EAT @firefox.exe (InternalDeleteIpForwardEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD686A)
[Address] EAT @firefox.exe (InternalDeleteIpNetEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0B5C)
[Address] EAT @firefox.exe (InternalDeleteIpNetEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD70F2)
[Address] EAT @firefox.exe (InternalDeleteUnicastIpAddressEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD611B)
[Address] EAT @firefox.exe (InternalFindInterfaceByAddress) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD58A8)
[Address] EAT @firefox.exe (InternalGetAnycastIpAddressEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD6021)
[Address] EAT @firefox.exe (InternalGetAnycastIpAddressTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD6003)
[Address] EAT @firefox.exe (InternalGetForwardIpTable2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC7BD0)
[Address] EAT @firefox.exe (InternalGetIPPhysicalInterfaceForDestination) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC85F3)
[Address] EAT @firefox.exe (InternalGetIfEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC5441)
[Address] EAT @firefox.exe (InternalGetIfTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0E49)
[Address] EAT @firefox.exe (InternalGetIfTable2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD8469)
[Address] EAT @firefox.exe (InternalGetIpAddrTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0E24)
[Address] EAT @firefox.exe (InternalGetIpForwardEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD6B43)
[Address] EAT @firefox.exe (InternalGetIpForwardTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0DDA)
[Address] EAT @firefox.exe (InternalGetIpInterfaceEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC63FC)
[Address] EAT @firefox.exe (InternalGetIpInterfaceTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC6EF5)
[Address] EAT @firefox.exe (InternalGetIpNetEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC8068)
[Address] EAT @firefox.exe (InternalGetIpNetTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0DFF)
[Address] EAT @firefox.exe (InternalGetIpNetTable2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD737D)
[Address] EAT @firefox.exe (InternalGetMulticastIpAddressEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD5F77)
[Address] EAT @firefox.exe (InternalGetMulticastIpAddressTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD5F59)
[Address] EAT @firefox.exe (InternalGetTcp6Table2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0CF9)
[Address] EAT @firefox.exe (InternalGetTcp6TableWithOwnerModule) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0CAC)
[Address] EAT @firefox.exe (InternalGetTcp6TableWithOwnerPid) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0CD4)
[Address] EAT @firefox.exe (InternalGetTcpTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0DB5)
[Address] EAT @firefox.exe (InternalGetTcpTable2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0D90)
[Address] EAT @firefox.exe (InternalGetTcpTableEx) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0D1E)
[Address] EAT @firefox.exe (InternalGetTcpTableWithOwnerModule) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0D43)
[Address] EAT @firefox.exe (InternalGetTcpTableWithOwnerPid) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0D6B)
[Address] EAT @firefox.exe (InternalGetTunnelPhysicalAdapter) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC6328)
[Address] EAT @firefox.exe (InternalGetUdp6TableWithOwnerModule) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0BC8)
[Address] EAT @firefox.exe (InternalGetUdp6TableWithOwnerPid) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0BF0)
[Address] EAT @firefox.exe (InternalGetUdpTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0C87)
[Address] EAT @firefox.exe (InternalGetUdpTableEx) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0C62)
[Address] EAT @firefox.exe (InternalGetUdpTableWithOwnerModule) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0C15)
[Address] EAT @firefox.exe (InternalGetUdpTableWithOwnerPid) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0C3D)
[Address] EAT @firefox.exe (InternalGetUnicastIpAddressEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD60FE)
[Address] EAT @firefox.exe (InternalGetUnicastIpAddressTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD60C3)
[Address] EAT @firefox.exe (InternalSetIfEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0BAE)
[Address] EAT @firefox.exe (InternalSetIpForwardEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0AEE)
[Address] EAT @firefox.exe (InternalSetIpForwardEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD68BC)
[Address] EAT @firefox.exe (InternalSetIpInterfaceEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD8164)
[Address] EAT @firefox.exe (InternalSetIpNetEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0B40)
[Address] EAT @firefox.exe (InternalSetIpNetEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD7144)
[Address] EAT @firefox.exe (InternalSetIpStats) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0B92)
[Address] EAT @firefox.exe (InternalSetTcpEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD0AD4)
[Address] EAT @firefox.exe (InternalSetTeredoPort) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD8505)
[Address] EAT @firefox.exe (InternalSetUnicastIpAddressEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD60E1)
[Address] EAT @firefox.exe (IpReleaseAddress) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD11D1)
[Address] EAT @firefox.exe (IpRenewAddress) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD10FB)
[Address] EAT @firefox.exe (LookupPersistentTcpPortReservation) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD3456)
[Address] EAT @firefox.exe (LookupPersistentUdpPortReservation) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD3431)
[Address] EAT @firefox.exe (NTPTimeToNTFileTime) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD244D)
[Address] EAT @firefox.exe (NTTimeToNTPTime) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD24C8)
[Address] EAT @firefox.exe (NhGetGuidFromInterfaceName) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCFBBE)
[Address] EAT @firefox.exe (NhGetInterfaceDescriptionFromGuid) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCFB00)
[Address] EAT @firefox.exe (NhGetInterfaceNameFromDeviceGuid) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC90CC)
[Address] EAT @firefox.exe (NhGetInterfaceNameFromGuid) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC90CC)
[Address] EAT @firefox.exe (NhpAllocateAndGetInterfaceInfoFromStack) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCFD7C)
[Address] EAT @firefox.exe (NotifyAddrChange) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCEB39)
[Address] EAT @firefox.exe (NotifyIpInterfaceChange) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC55D3)
[Address] EAT @firefox.exe (NotifyRouteChange) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD1425)
[Address] EAT @firefox.exe (NotifyRouteChange2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCBED6)
[Address] EAT @firefox.exe (NotifyStableUnicastIpAddressTable) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD5992)
[Address] EAT @firefox.exe (NotifyTeredoPortChange) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD85BD)
[Address] EAT @firefox.exe (NotifyUnicastIpAddressChange) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FC578A)
[Address] EAT @firefox.exe (ParseNetworkString) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCE6F1)
[Address] EAT @firefox.exe (ResolveIpNetEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCC180)
[Address] EAT @firefox.exe (ResolveNeighbor) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD18AB)
[Address] EAT @firefox.exe (RestoreMediaSense) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD1056)
[Address] EAT @firefox.exe (SendARP) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD1794)
[Address] EAT @firefox.exe (SetAdapterIpAddress) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD094D)
[Address] EAT @firefox.exe (SetCurrentThreadCompartmentId) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD7FD9)
[Address] EAT @firefox.exe (SetIfEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD013A)
[Address] EAT @firefox.exe (SetIpForwardEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD241D)
[Address] EAT @firefox.exe (SetIpForwardEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD6E55)
[Address] EAT @firefox.exe (SetIpInterfaceEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD814C)
[Address] EAT @firefox.exe (SetIpNetEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD232F)
[Address] EAT @firefox.exe (SetIpNetEntry2) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD760D)
[Address] EAT @firefox.exe (SetIpStatistics) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD2255)
[Address] EAT @firefox.exe (SetIpStatisticsEx) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD1AF6)
[Address] EAT @firefox.exe (SetIpTTL) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD1A89)
[Address] EAT @firefox.exe (SetNetworkInformation) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD7DF7)
[Address] EAT @firefox.exe (SetPerTcp6ConnectionEStats) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCA5F0)
[Address] EAT @firefox.exe (SetPerTcp6ConnectionStats) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD388A)
[Address] EAT @firefox.exe (SetPerTcpConnectionEStats) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FCA55A)
[Address] EAT @firefox.exe (SetPerTcpConnectionStats) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD39D7)
[Address] EAT @firefox.exe (SetSessionCompartmentId) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD7FA4)
[Address] EAT @firefox.exe (SetTcpEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD488B)
[Address] EAT @firefox.exe (SetUnicastIpAddressEntry) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD607B)
[Address] EAT @firefox.exe (UnenableRouter) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD1060)
[Address] EAT @firefox.exe (do_echo_rep) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD27BB)
[Address] EAT @firefox.exe (do_echo_req) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD29AD)
[Address] EAT @firefox.exe (if_indextoname) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD51BD)
[Address] EAT @firefox.exe (if_nametoindex) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD5202)
[Address] EAT @firefox.exe (register_icmp) : winhxxp.dll -> HOOKED (C:\Windows\SysWOW64\IPHLPAPI.DLL @ 0x71FD2A8A)

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) TOSHIBA MQ01ABD075 +++++
--- User ---
[MBR] 895a614674165d7061e853838f0847bc
[BSP] dcb18d0c23a25d65eaced314145dabaf : Empty MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0x00) [VISIBLE] Offset (sectors): 1 | Size: 2097152 MB
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_04062014_102621.txt >>
RKreport[0]_S_04062014_102616.txt


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: DotNetDotCom.org [Bot] a 61 hostů