Prosím o kontrolu síť je zdrojem neobvyklého prov

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

thevalid
Level 1.5
Level 1.5
Příspěvky: 148
Registrován: říjen 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu síť je zdrojem neobvyklého prov

Příspěvekod thevalid » 12 dub 2014 10:33

RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : admin [Práva správce]
Mód : Odebrat -- Datum : 04/12/2014 10:32:17
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 4 ¤¤¤
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] EAT @explorer.exe (BeginBufferedAnimation) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E509AE)
[Address] EAT @explorer.exe (BeginBufferedPaint) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E449A1)
[Address] EAT @explorer.exe (BeginPanningFeedback) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E70731)
[Address] EAT @explorer.exe (BufferedPaintClear) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E46395)
[Address] EAT @explorer.exe (BufferedPaintInit) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E4940E)
[Address] EAT @explorer.exe (BufferedPaintRenderAnimation) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E508ED)
[Address] EAT @explorer.exe (BufferedPaintSetAlpha) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E5E6B3)
[Address] EAT @explorer.exe (BufferedPaintStopAllAnimations) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E5D395)
[Address] EAT @explorer.exe (BufferedPaintUnInit) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E494AB)
[Address] EAT @explorer.exe (CloseThemeData) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E46A18)
[Address] EAT @explorer.exe (DrawThemeBackground) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E43982)
[Address] EAT @explorer.exe (DrawThemeBackgroundEx) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E5D9DA)
[Address] EAT @explorer.exe (DrawThemeEdge) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E63B52)
[Address] EAT @explorer.exe (DrawThemeIcon) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E735E7)
[Address] EAT @explorer.exe (DrawThemeParentBackground) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E453E5)
[Address] EAT @explorer.exe (DrawThemeParentBackgroundEx) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E451BF)
[Address] EAT @explorer.exe (DrawThemeText) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E44EA1)
[Address] EAT @explorer.exe (DrawThemeTextEx) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E463E6)
[Address] EAT @explorer.exe (EnableThemeDialogTexture) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E4FCAF)
[Address] EAT @explorer.exe (EnableTheming) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E72FEB)
[Address] EAT @explorer.exe (EndBufferedAnimation) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E43F9A)
[Address] EAT @explorer.exe (EndBufferedPaint) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E43F9A)
[Address] EAT @explorer.exe (EndPanningFeedback) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E706CC)
[Address] EAT @explorer.exe (GetBufferedPaintBits) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E44BAF)
[Address] EAT @explorer.exe (GetBufferedPaintDC) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E504BC)
[Address] EAT @explorer.exe (GetBufferedPaintTargetDC) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E50473)
[Address] EAT @explorer.exe (GetBufferedPaintTargetRect) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E72E7F)
[Address] EAT @explorer.exe (GetCurrentThemeName) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E505DD)
[Address] EAT @explorer.exe (GetThemeAppProperties) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E50FB1)
[Address] EAT @explorer.exe (GetThemeBackgroundContentRect) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E4CD2E)
[Address] EAT @explorer.exe (GetThemeBackgroundExtent) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E4F8BF)
[Address] EAT @explorer.exe (GetThemeBackgroundRegion) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E5165D)
[Address] EAT @explorer.exe (GetThemeBitmap) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E4BF93)
[Address] EAT @explorer.exe (GetThemeBool) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E47C1F)
[Address] EAT @explorer.exe (GetThemeColor) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E4616C)
[Address] EAT @explorer.exe (GetThemeDocumentationProperty) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E72932)
[Address] EAT @explorer.exe (GetThemeEnumValue) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E4616C)
[Address] EAT @explorer.exe (GetThemeFilename) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E72412)
[Address] EAT @explorer.exe (GetThemeFont) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E4FF21)
[Address] EAT @explorer.exe (GetThemeInt) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E4616C)
[Address] EAT @explorer.exe (GetThemeIntList) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E723B1)
[Address] EAT @explorer.exe (GetThemeMargins) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E486E9)
[Address] EAT @explorer.exe (GetThemeMetric) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E506E2)
[Address] EAT @explorer.exe (GetThemePartSize) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E4CDB1)
[Address] EAT @explorer.exe (GetThemePosition) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E72350)
[Address] EAT @explorer.exe (GetThemePropertyOrigin) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E63FBB)
[Address] EAT @explorer.exe (GetThemeRect) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E53611)
[Address] EAT @explorer.exe (GetThemeStream) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E539D9)
[Address] EAT @explorer.exe (GetThemeString) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E722E4)
[Address] EAT @explorer.exe (GetThemeSysBool) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E73172)
[Address] EAT @explorer.exe (GetThemeSysColor) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E63274)
[Address] EAT @explorer.exe (GetThemeSysColorBrush) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E7301E)
[Address] EAT @explorer.exe (GetThemeSysFont) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E729C4)
[Address] EAT @explorer.exe (GetThemeSysInt) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E72BD3)
[Address] EAT @explorer.exe (GetThemeSysSize) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E7320B)
[Address] EAT @explorer.exe (GetThemeSysString) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E72B3F)
[Address] EAT @explorer.exe (GetThemeTextExtent) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E42D57)
[Address] EAT @explorer.exe (GetThemeTextMetrics) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E4F992)
[Address] EAT @explorer.exe (GetThemeTransitionDuration) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E51081)
[Address] EAT @explorer.exe (GetWindowTheme) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E4DF46)
[Address] EAT @explorer.exe (HitTestThemeBackground) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E53CE3)
[Address] EAT @explorer.exe (IsAppThemed) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E4F869)
[Address] EAT @explorer.exe (IsCompositionActive) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E42E9A)
[Address] EAT @explorer.exe (IsThemeActive) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E4F785)
[Address] EAT @explorer.exe (IsThemeBackgroundPartiallyTransparent) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E460AB)
[Address] EAT @explorer.exe (IsThemeDialogTextureEnabled) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E7312B)
[Address] EAT @explorer.exe (IsThemePartDefined) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E485B4)
[Address] EAT @explorer.exe (OpenThemeData) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E473D2)
[Address] EAT @explorer.exe (OpenThemeDataEx) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E63D43)
[Address] EAT @explorer.exe (SetThemeAppProperties) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E73296)
[Address] EAT @explorer.exe (SetWindowTheme) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E50134)
[Address] EAT @explorer.exe (SetWindowThemeAttribute) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E5CFE6)
[Address] EAT @explorer.exe (ThemeInitApiHook) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E4B176)
[Address] EAT @explorer.exe (UpdatePanningFeedback) : comctl32.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73E7068D)
[Address] EAT @explorer.exe (DllGetClassObject) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ECFAD)
[Address] EAT @explorer.exe (IEnumString_Next_WIC_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EE059)
[Address] EAT @explorer.exe (IEnumString_Reset_WIC_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EE082)
[Address] EAT @explorer.exe (IPropertyBag2_Write_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EE0A2)
[Address] EAT @explorer.exe (IWICBitmapClipper_Initialize_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDDA6)
[Address] EAT @explorer.exe (IWICBitmapCodecInfo_DoesSupportAnimation_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EEAD0)
[Address] EAT @explorer.exe (IWICBitmapCodecInfo_DoesSupportLossless_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EEAF3)
[Address] EAT @explorer.exe (IWICBitmapCodecInfo_DoesSupportMultiframe_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EEB16)
[Address] EAT @explorer.exe (IWICBitmapCodecInfo_GetContainerFormat_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED855)
[Address] EAT @explorer.exe (IWICBitmapCodecInfo_GetDeviceManufacturer_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EEA2C)
[Address] EAT @explorer.exe (IWICBitmapCodecInfo_GetDeviceModels_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EEA55)
[Address] EAT @explorer.exe (IWICBitmapCodecInfo_GetFileExtensions_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EEAA7)
[Address] EAT @explorer.exe (IWICBitmapCodecInfo_GetMimeTypes_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EEA7E)
[Address] EAT @explorer.exe (IWICBitmapDecoder_CopyPalette_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED832)
[Address] EAT @explorer.exe (IWICBitmapDecoder_GetColorContexts_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EEA03)
[Address] EAT @explorer.exe (IWICBitmapDecoder_GetDecoderInfo_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDCA1)
[Address] EAT @explorer.exe (IWICBitmapDecoder_GetFrameCount_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED9FB)
[Address] EAT @explorer.exe (IWICBitmapDecoder_GetFrame_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED89B)
[Address] EAT @explorer.exe (IWICBitmapDecoder_GetMetadataQueryReader_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED878)
[Address] EAT @explorer.exe (IWICBitmapDecoder_GetPreview_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDCF0)
[Address] EAT @explorer.exe (IWICBitmapDecoder_GetThumbnail_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED855)
[Address] EAT @explorer.exe (IWICBitmapEncoder_Commit_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDC81)
[Address] EAT @explorer.exe (IWICBitmapEncoder_CreateNewFrame_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDC03)
[Address] EAT @explorer.exe (IWICBitmapEncoder_GetEncoderInfo_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDBDA)
[Address] EAT @explorer.exe (IWICBitmapEncoder_GetMetadataQueryWriter_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED9FB)
[Address] EAT @explorer.exe (IWICBitmapEncoder_Initialize_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDBAE)
[Address] EAT @explorer.exe (IWICBitmapEncoder_SetPalette_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDC58)
[Address] EAT @explorer.exe (IWICBitmapEncoder_SetThumbnail_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDC2F)
[Address] EAT @explorer.exe (IWICBitmapFlipRotator_Initialize_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDDA6)
[Address] EAT @explorer.exe (IWICBitmapFrameDecode_GetColorContexts_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED8C1)
[Address] EAT @explorer.exe (IWICBitmapFrameDecode_GetMetadataQueryReader_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED878)
[Address] EAT @explorer.exe (IWICBitmapFrameDecode_GetThumbnail_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED8EA)
[Address] EAT @explorer.exe (IWICBitmapFrameEncode_Commit_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDA1E)
[Address] EAT @explorer.exe (IWICBitmapFrameEncode_GetMetadataQueryWriter_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDACA)
[Address] EAT @explorer.exe (IWICBitmapFrameEncode_Initialize_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EE010)
[Address] EAT @explorer.exe (IWICBitmapFrameEncode_SetColorContexts_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDB82)
[Address] EAT @explorer.exe (IWICBitmapFrameEncode_SetResolution_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDA70)
[Address] EAT @explorer.exe (IWICBitmapFrameEncode_SetSize_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDA3E)
[Address] EAT @explorer.exe (IWICBitmapFrameEncode_SetThumbnail_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDB59)
[Address] EAT @explorer.exe (IWICBitmapFrameEncode_WriteSource_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDAED)
[Address] EAT @explorer.exe (IWICBitmapLock_GetDataPointer_STA_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED80C)
[Address] EAT @explorer.exe (IWICBitmapLock_GetStride_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED92D)
[Address] EAT @explorer.exe (IWICBitmapScaler_Initialize_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDD7A)
[Address] EAT @explorer.exe (IWICBitmapSource_CopyPalette_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDCA1)
[Address] EAT @explorer.exe (IWICBitmapSource_CopyPixels_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDCC4)
[Address] EAT @explorer.exe (IWICBitmapSource_GetPixelFormat_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED92D)
[Address] EAT @explorer.exe (IWICBitmapSource_GetResolution_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED80C)
[Address] EAT @explorer.exe (IWICBitmapSource_GetSize_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED950)
[Address] EAT @explorer.exe (IWICBitmap_Lock_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EE9DA)
[Address] EAT @explorer.exe (IWICBitmap_SetPalette_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDCF0)
[Address] EAT @explorer.exe (IWICBitmap_SetResolution_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDD13)
[Address] EAT @explorer.exe (IWICColorContext_InitializeFromMemory_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED976)
[Address] EAT @explorer.exe (IWICComponentFactory_CreateMetadataWriterFromReader_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED7BA)
[Address] EAT @explorer.exe (IWICComponentFactory_CreateQueryWriterFromBlockWriter_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED7E3)
[Address] EAT @explorer.exe (IWICComponentInfo_GetAuthor_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EE9B1)
[Address] EAT @explorer.exe (IWICComponentInfo_GetCLSID_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED92D)
[Address] EAT @explorer.exe (IWICComponentInfo_GetFriendlyName_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EEA03)
[Address] EAT @explorer.exe (IWICComponentInfo_GetSpecVersion_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED8C1)
[Address] EAT @explorer.exe (IWICComponentInfo_GetVersion_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EE9DA)
[Address] EAT @explorer.exe (IWICFastMetadataEncoder_Commit_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED90D)
[Address] EAT @explorer.exe (IWICFastMetadataEncoder_GetMetadataQueryWriter_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED92D)
[Address] EAT @explorer.exe (IWICFormatConverter_Initialize_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDD43)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateBitmapClipper_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED567)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateBitmapFlipRotator_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED590)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateBitmapFromHBITMAP_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED6CA)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateBitmapFromHICON_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED6F6)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateBitmapFromMemory_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED666)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateBitmapFromSource_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED63D)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateBitmapScaler_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED53E)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateBitmap_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED69B)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateComponentInfo_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED4E9)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateDecoderFromFileHandle_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED4B1)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateDecoderFromFilename_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED476)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateDecoderFromStream_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED43E)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateEncoder_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED5E2)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateFastMetadataEncoderFromDecoder_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED71C)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateFastMetadataEncoderFromFrameDecode_ProxÞ7k›^ø"ñ) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED742)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateFormatConverter_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED515)
[Address] EAT @explorer.exe (IWICImagingFactory_CreatePalette_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDB59)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateQueryWriterFromReader_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED791)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateQueryWriter_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED768)
[Address] EAT @explorer.exe (IWICImagingFactory_CreateStream_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED5B9)
[Address] EAT @explorer.exe (IWICMetadataBlockReader_GetCount_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED92D)
[Address] EAT @explorer.exe (IWICMetadataBlockReader_GetReaderByIndex_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED80C)
[Address] EAT @explorer.exe (IWICMetadataQueryReader_GetContainerFormat_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EE010)
[Address] EAT @explorer.exe (IWICMetadataQueryReader_GetEnumerator_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDCA1)
[Address] EAT @explorer.exe (IWICMetadataQueryReader_GetLocation_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EE0A2)
[Address] EAT @explorer.exe (IWICMetadataQueryReader_GetMetadataByName_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED80C)
[Address] EAT @explorer.exe (IWICMetadataQueryWriter_RemoveMetadataByName_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED878)
[Address] EAT @explorer.exe (IWICMetadataQueryWriter_SetMetadataByName_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EE033)
[Address] EAT @explorer.exe (IWICPalette_GetColorCount_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED9C5)
[Address] EAT @explorer.exe (IWICPalette_GetColors_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED8C1)
[Address] EAT @explorer.exe (IWICPalette_GetType_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED832)
[Address] EAT @explorer.exe (IWICPalette_HasAlpha_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED9FB)
[Address] EAT @explorer.exe (IWICPalette_InitializeCustom_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED976)
[Address] EAT @explorer.exe (IWICPalette_InitializeFromBitmap_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED99C)
[Address] EAT @explorer.exe (IWICPalette_InitializeFromPalette_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDCA1)
[Address] EAT @explorer.exe (IWICPalette_InitializePredefined_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED950)
[Address] EAT @explorer.exe (IWICPixelFormatInfo_GetBitsPerPixel_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDACA)
[Address] EAT @explorer.exe (IWICPixelFormatInfo_GetChannelCount_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EEB39)
[Address] EAT @explorer.exe (IWICPixelFormatInfo_GetChannelMask_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EEB5C)
[Address] EAT @explorer.exe (IWICStream_InitializeFromIStream_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EEB39)
[Address] EAT @explorer.exe (IWICStream_InitializeFromMemory_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDDCC)
[Address] EAT @explorer.exe (WICConvertBitmapSource) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDE11)
[Address] EAT @explorer.exe (WICCreateBitmapFromSection) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDFE6)
[Address] EAT @explorer.exe (WICCreateBitmapFromSectionEx) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDEE5)
[Address] EAT @explorer.exe (WICCreateColorContext_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EEB88)
[Address] EAT @explorer.exe (WICCreateImagingFactory_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED03B)
[Address] EAT @explorer.exe (WICGetMetadataContentSize) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EE676)
[Address] EAT @explorer.exe (WICMapGuidToShortName) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED0FC)
[Address] EAT @explorer.exe (WICMapSchemaToName) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED2F0)
[Address] EAT @explorer.exe (WICMapShortNameToGuid) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737ED227)
[Address] EAT @explorer.exe (WICMatchMetadataContent) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EE0CB)
[Address] EAT @explorer.exe (WICSerializeMetadataContent) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EE20D)
[Address] EAT @explorer.exe (WICSetEncoderFormat_Proxy) : XmlLite.dll -> HOOKED (C:\Windows\system32\WindowsCodecs.dll @ 0x737EDDF2)
[Address] EAT @explorer.exe (DllCanUnloadNow) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A762B3B)
[Address] EAT @explorer.exe (DllGetClassObject) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A77188E)
[Address] EAT @explorer.exe (DllGetVersion) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A762982)
[Address] EAT @explorer.exe (DllRegisterServer) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7F7DC5)
[Address] EAT @explorer.exe (DllUnregisterServer) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7F818F)
[Address] EAT @explorer.exe (Migrate10CachedPackagesA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FC744)
[Address] EAT @explorer.exe (Migrate10CachedPackagesW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FE1AC)
[Address] EAT @explorer.exe (MsiAdvertiseProductA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80257F)
[Address] EAT @explorer.exe (MsiAdvertiseProductExA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8027D7)
[Address] EAT @explorer.exe (MsiAdvertiseProductExW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FD6C1)
[Address] EAT @explorer.exe (MsiAdvertiseProductW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FD46F)
[Address] EAT @explorer.exe (MsiAdvertiseScriptA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A808A3F)
[Address] EAT @explorer.exe (MsiAdvertiseScriptW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80B641)
[Address] EAT @explorer.exe (MsiApplyMultiplePatchesA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A815903)
[Address] EAT @explorer.exe (MsiApplyMultiplePatchesW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A811057)
[Address] EAT @explorer.exe (MsiApplyPatchA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A802D5D)
[Address] EAT @explorer.exe (MsiApplyPatchW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FD943)
[Address] EAT @explorer.exe (MsiBeginTransactionA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A819441)
[Address] EAT @explorer.exe (MsiBeginTransactionW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8139D4)
[Address] EAT @explorer.exe (MsiCloseAllHandles) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8200C3)
[Address] EAT @explorer.exe (MsiCloseHandle) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A820015)
[Address] EAT @explorer.exe (MsiCollectUserInfoA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A801C3A)
[Address] EAT @explorer.exe (MsiCollectUserInfoW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FD16F)
[Address] EAT @explorer.exe (MsiConfigureFeatureA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A801D5A)
[Address] EAT @explorer.exe (MsiConfigureFeatureFromDescriptorA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80D70A)
[Address] EAT @explorer.exe (MsiConfigureFeatureFromDescriptorW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80E41B)
[Address] EAT @explorer.exe (MsiConfigureFeatureW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FD2B7)
[Address] EAT @explorer.exe (MsiConfigureProductA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80F256)
[Address] EAT @explorer.exe (MsiConfigureProductExA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80DACA)
[Address] EAT @explorer.exe (MsiConfigureProductExW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80E891)
[Address] EAT @explorer.exe (MsiConfigureProductW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80F581)
[Address] EAT @explorer.exe (MsiCreateAndVerifyInstallerDirectory) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A77B2E1)
[Address] EAT @explorer.exe (MsiCreateRecord) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A821514)
[Address] EAT @explorer.exe (MsiCreateTransformSummaryInfoA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8255D1)
[Address] EAT @explorer.exe (MsiCreateTransformSummaryInfoW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8248EF)
[Address] EAT @explorer.exe (MsiDatabaseApplyTransformA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8248A9)
[Address] EAT @explorer.exe (MsiDatabaseApplyTransformW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A821397)
[Address] EAT @explorer.exe (MsiDatabaseCommit) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A820DEB)
[Address] EAT @explorer.exe (MsiDatabaseExportA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A824792)
[Address] EAT @explorer.exe (MsiDatabaseExportW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A821008)
[Address] EAT @explorer.exe (MsiDatabaseGenerateTransformA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A82485D)
[Address] EAT @explorer.exe (MsiDatabaseGenerateTransformW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A821270)
[Address] EAT @explorer.exe (MsiDatabaseGetPrimaryKeysA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8245FD)
[Address] EAT @explorer.exe (MsiDatabaseGetPrimaryKeysW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A823C54)
[Address] EAT @explorer.exe (MsiDatabaseImportA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A82472E)
[Address] EAT @explorer.exe (MsiDatabaseImportW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A820F1E)
[Address] EAT @explorer.exe (MsiDatabaseIsTablePersistentA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A824643)
[Address] EAT @explorer.exe (MsiDatabaseIsTablePersistentW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A820C8F)
[Address] EAT @explorer.exe (MsiDatabaseMergeA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A824817)
[Address] EAT @explorer.exe (MsiDatabaseMergeW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A821111)
[Address] EAT @explorer.exe (MsiDatabaseOpenViewA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8245B7)
[Address] EAT @explorer.exe (MsiDatabaseOpenViewW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8202B7)
[Address] EAT @explorer.exe (MsiDecomposeDescriptorA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80DA7B)
[Address] EAT @explorer.exe (MsiDecomposeDescriptorW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A756286)
[Address] EAT @explorer.exe (MsiDeleteUserDataA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80A367)
[Address] EAT @explorer.exe (MsiDeleteUserDataW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8069EB)
[Address] EAT @explorer.exe (MsiDetermineApplicablePatchesA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A81D4C5)
[Address] EAT @explorer.exe (MsiDetermineApplicablePatchesW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A81C559)
[Address] EAT @explorer.exe (MsiDeterminePatchSequenceA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A81D9D9)
[Address] EAT @explorer.exe (MsiDeterminePatchSequenceW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A81C9E1)
[Address] EAT @explorer.exe (MsiDoActionA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A82613D)
[Address] EAT @explorer.exe (MsiDoActionW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A822D61)
[Address] EAT @explorer.exe (MsiEnableLogA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80189B)
[Address] EAT @explorer.exe (MsiEnableLogW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FFBE9)
[Address] EAT @explorer.exe (MsiEnableUIPreview) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8239CD)
[Address] EAT @explorer.exe (MsiEndTransaction) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A813E11)
[Address] EAT @explorer.exe (MsiEnumClientsA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A77EC96)
[Address] EAT @explorer.exe (MsiEnumClientsExA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A815D6E)
[Address] EAT @explorer.exe (MsiEnumClientsExW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8113A7)
[Address] EAT @explorer.exe (MsiEnumClientsW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A763647)
[Address] EAT @explorer.exe (MsiEnumComponentCostsA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A827847)
[Address] EAT @explorer.exe (MsiEnumComponentCostsW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A827A95)
[Address] EAT @explorer.exe (MsiEnumComponentQualifiersA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80CD6D)
[Address] EAT @explorer.exe (MsiEnumComponentQualifiersW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A76384D)
[Address] EAT @explorer.exe (MsiEnumComponentsA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8091B9)
[Address] EAT @explorer.exe (MsiEnumComponentsExA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A815B08)
[Address] EAT @explorer.exe (MsiEnumComponentsExW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A81121D)
[Address] EAT @explorer.exe (MsiEnumComponentsW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80BA57)
[Address] EAT @explorer.exe (MsiEnumFeaturesA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A809C04)
[Address] EAT @explorer.exe (MsiEnumFeaturesW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80C259)
[Address] EAT @explorer.exe (MsiEnumPatchesA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8197EB)
[Address] EAT @explorer.exe (MsiEnumPatchesExA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A814897)
[Address] EAT @explorer.exe (MsiEnumPatchesExW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A810E79)
[Address] EAT @explorer.exe (MsiEnumPatchesW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A81468E)
[Address] EAT @explorer.exe (MsiEnumProductsA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A809175)
[Address] EAT @explorer.exe (MsiEnumProductsExA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A816313)
[Address] EAT @explorer.exe (MsiEnumProductsExW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A811729)
[Address] EAT @explorer.exe (MsiEnumProductsW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A76559D)
[Address] EAT @explorer.exe (MsiEnumRelatedProductsA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A809109)
[Address] EAT @explorer.exe (MsiEnumRelatedProductsW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80B9EB)
[Address] EAT @explorer.exe (MsiEvaluateConditionA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8261C6)
[Address] EAT @explorer.exe (MsiEvaluateConditionW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8230C1)
[Address] EAT @explorer.exe (MsiExtractPatchXMLDataA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A814FAE)
[Address] EAT @explorer.exe (MsiExtractPatchXMLDataW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A814C22)
[Address] EAT @explorer.exe (MsiFormatRecordA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A822A73)
[Address] EAT @explorer.exe (MsiFormatRecordW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A822BF9)
[Address] EAT @explorer.exe (MsiGetActiveDatabase) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A822639)
[Address] EAT @explorer.exe (MsiGetComponentPathA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80EEBD)
[Address] EAT @explorer.exe (MsiGetComponentPathExA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A816053)
[Address] EAT @explorer.exe (MsiGetComponentPathExW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A811559)
[Address] EAT @explorer.exe (MsiGetComponentPathW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7562DD)
[Address] EAT @explorer.exe (MsiGetComponentStateA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8271E3)
[Address] EAT @explorer.exe (MsiGetComponentStateW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8272DC)
[Address] EAT @explorer.exe (MsiGetDatabaseState) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A820ED9)
[Address] EAT @explorer.exe (MsiGetFeatureCostA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8275FD)
[Address] EAT @explorer.exe (MsiGetFeatureCostW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A827702)
[Address] EAT @explorer.exe (MsiGetFeatureInfoA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A800D1A)
[Address] EAT @explorer.exe (MsiGetFeatureInfoW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FF5EE)
[Address] EAT @explorer.exe (MsiGetFeatureStateA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A826CD5)
[Address] EAT @explorer.exe (MsiGetFeatureStateW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A826DC3)
[Address] EAT @explorer.exe (MsiGetFeatureUsageA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80A111)
[Address] EAT @explorer.exe (MsiGetFeatureUsageW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80C9BD)
[Address] EAT @explorer.exe (MsiGetFeatureValidStatesA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A827CC5)
[Address] EAT @explorer.exe (MsiGetFeatureValidStatesW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8236EC)
[Address] EAT @explorer.exe (MsiGetFileHashA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A801214)
[Address] EAT @explorer.exe (MsiGetFileHashW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FCA49)
[Address] EAT @explorer.exe (MsiGetFileSignatureInformationA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80128C)
[Address] EAT @explorer.exe (MsiGetFileSignatureInformationW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FCA9F)
[Address] EAT @explorer.exe (MsiGetFileVersionA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A800EF8)
[Address] EAT @explorer.exe (MsiGetFileVersionW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A803D2F)
[Address] EAT @explorer.exe (MsiGetLanguage) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A822727)
[Address] EAT @explorer.exe (MsiGetLastErrorRecord) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A821D69)
[Address] EAT @explorer.exe (MsiGetMode) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A82279F)
[Address] EAT @explorer.exe (MsiGetPatchFileListA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A81D25D)
[Address] EAT @explorer.exe (MsiGetPatchFileListW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A818B6E)
[Address] EAT @explorer.exe (MsiGetPatchInfoA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80A24F)
[Address] EAT @explorer.exe (MsiGetPatchInfoExA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8155E9)
[Address] EAT @explorer.exe (MsiGetPatchInfoExW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A815177)
[Address] EAT @explorer.exe (MsiGetPatchInfoW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80CAFB)
[Address] EAT @explorer.exe (MsiGetProductCodeA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A77EADC)
[Address] EAT @explorer.exe (MsiGetProductCodeFromPackageCodeA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80ED5F)
[Address] EAT @explorer.exe (MsiGetProductCodeFromPackageCodeW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80F353)
[Address] EAT @explorer.exe (MsiGetProductCodeW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A77EE6C)
[Address] EAT @explorer.exe (MsiGetProductInfoA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80D362)
[Address] EAT @explorer.exe (MsiGetProductInfoExA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8165DE)
[Address] EAT @explorer.exe (MsiGetProductInfoExW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8118FF)
[Address] EAT @explorer.exe (MsiGetProductInfoFromScriptA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A800880)
[Address] EAT @explorer.exe (MsiGetProductInfoFromScriptW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FF132)
[Address] EAT @explorer.exe (MsiGetProductInfoW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A764273)
[Address] EAT @explorer.exe (MsiGetProductPropertyA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A800B90)
[Address] EAT @explorer.exe (MsiGetProductPropertyW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FF48B)
[Address] EAT @explorer.exe (MsiGetPropertyA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A82596D)
[Address] EAT @explorer.exe (MsiGetPropertyW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A825BA3)
[Address] EAT @explorer.exe (MsiGetShortcutTargetA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A802A58)
[Address] EAT @explorer.exe (MsiGetShortcutTargetW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A804689)
[Address] EAT @explorer.exe (MsiGetSourcePathA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A826209)
[Address] EAT @explorer.exe (MsiGetSourcePathW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A82640D)
[Address] EAT @explorer.exe (MsiGetSummaryInformationA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8258BD)
[Address] EAT @explorer.exe (MsiGetSummaryInformationW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A824293)
[Address] EAT @explorer.exe (MsiGetTargetPathA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8265F5)
[Address] EAT @explorer.exe (MsiGetTargetPathW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8267F9)
[Address] EAT @explorer.exe (MsiGetUserInfoA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8091FE)
[Address] EAT @explorer.exe (MsiGetUserInfoW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A77E466)
[Address] EAT @explorer.exe (MsiInstallMissingComponentA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8022C7)
[Address] EAT @explorer.exe (MsiInstallMissingComponentW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8043D9)
[Address] EAT @explorer.exe (MsiInstallMissingFileA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A802067)
[Address] EAT @explorer.exe (MsiInstallMissingFileW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A804179)
[Address] EAT @explorer.exe (MsiInstallProductA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80197E)
[Address] EAT @explorer.exe (MsiInstallProductW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FCE4B)
[Address] EAT @explorer.exe (MsiInvalidateFeatureCache) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7BD1D3)
[Address] EAT @explorer.exe (MsiIsProductElevatedA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A803306)
[Address] EAT @explorer.exe (MsiIsProductElevatedW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A804A5D)
[Address] EAT @explorer.exe (MsiJoinTransaction) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A813FEB)
[Address] EAT @explorer.exe (MsiLoadStringA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80141F)
[Address] EAT @explorer.exe (MsiLoadStringW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A76AE09)
[Address] EAT @explorer.exe (MsiLocateComponentA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80F19F)
[Address] EAT @explorer.exe (MsiLocateComponentW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80F4CA)
[Address] EAT @explorer.exe (MsiMessageBoxA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8016DA)
[Address] EAT @explorer.exe (MsiMessageBoxExA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A801528)
[Address] EAT @explorer.exe (MsiMessageBoxExW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FCCB1)
[Address] EAT @explorer.exe (MsiMessageBoxW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FCE24)
[Address] EAT @explorer.exe (MsiNotifySidChangeA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80A306)
[Address] EAT @explorer.exe (MsiNotifySidChangeW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80501B)
[Address] EAT @explorer.exe (MsiOpenDatabaseA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A824691)
[Address] EAT @explorer.exe (MsiOpenDatabaseW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A823D8D)
[Address] EAT @explorer.exe (MsiOpenPackageA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FEDC0)
[Address] EAT @explorer.exe (MsiOpenPackageExA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FC63E)
[Address] EAT @explorer.exe (MsiOpenPackageExW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FC8E9)
[Address] EAT @explorer.exe (MsiOpenPackageW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FF7AB)
[Address] EAT @explorer.exe (MsiOpenProductA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A808BF2)
[Address] EAT @explorer.exe (MsiOpenProductW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80B857)
[Address] EAT @explorer.exe (MsiPreviewBillboardA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A827D4E)
[Address] EAT @explorer.exe (MsiPreviewBillboardW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A823AEA)
[Address] EAT @explorer.exe (MsiPreviewDialogA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A827D0B)
[Address] EAT @explorer.exe (MsiPreviewDialogW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A823A96)
[Address] EAT @explorer.exe (MsiProcessAdvertiseScriptA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80CBB2)
[Address] EAT @explorer.exe (MsiProcessAdvertiseScriptW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80DF39)
[Address] EAT @explorer.exe (MsiProcessMessage) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A822F51)
[Address] EAT @explorer.exe (MsiProvideAssemblyA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80FD5D)
[Address] EAT @explorer.exe (MsiProvideAssemblyW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A810765)
[Address] EAT @explorer.exe (MsiProvideComponentA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80F7B9)
[Address] EAT @explorer.exe (MsiProvideComponentFromDescriptorA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80FAB3)
[Address] EAT @explorer.exe (MsiProvideComponentFromDescriptorW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A764F84)
[Address] EAT @explorer.exe (MsiProvideComponentW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A81030C)
[Address] EAT @explorer.exe (MsiProvideQualifiedComponentA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A77C385)
[Address] EAT @explorer.exe (MsiProvideQualifiedComponentExA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A77D411)
[Address] EAT @explorer.exe (MsiProvideQualifiedComponentExW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A758A47)
[Address] EAT @explorer.exe (MsiProvideQualifiedComponentW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A758C86)
[Address] EAT @explorer.exe (MsiQueryComponentStateA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A81687C)
[Address] EAT @explorer.exe (MsiQueryComponentStateW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A811AE1)
[Address] EAT @explorer.exe (MsiQueryFeatureStateA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80F6F1)
[Address] EAT @explorer.exe (MsiQueryFeatureStateExA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A816A94)
[Address] EAT @explorer.exe (MsiQueryFeatureStateExW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A811CD9)
[Address] EAT @explorer.exe (MsiQueryFeatureStateFromDescriptorA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80FC02)
[Address] EAT @explorer.exe (MsiQueryFeatureStateFromDescriptorW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A81057D)
[Address] EAT @explorer.exe (MsiQueryFeatureStateW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A75617D)
[Address] EAT @explorer.exe (MsiQueryProductStateA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80D45D)
[Address] EAT @explorer.exe (MsiQueryProductStateW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7649FE)
[Address] EAT @explorer.exe (MsiRecordClearData) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A821D27)
[Address] EAT @explorer.exe (MsiRecordDataSize) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8216E5)
[Address] EAT @explorer.exe (MsiRecordGetFieldCount) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A821916)
[Address] EAT @explorer.exe (MsiRecordGetInteger) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8218B5)
[Address] EAT @explorer.exe (MsiRecordGetStringA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A823F1D)
[Address] EAT @explorer.exe (MsiRecordGetStringW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8240CC)
[Address] EAT @explorer.exe (MsiRecordIsNull) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8215F5)
[Address] EAT @explorer.exe (MsiRecordReadStream) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A821B6D)
[Address] EAT @explorer.exe (MsiRecordSetInteger) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8217C2)
[Address] EAT @explorer.exe (MsiRecordSetStreamA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A825877)
[Address] EAT @explorer.exe (MsiRecordSetStreamW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A821A03)
[Address] EAT @explorer.exe (MsiRecordSetStringA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A82561D)
[Address] EAT @explorer.exe (MsiRecordSetStringW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A82572E)
[Address] EAT @explorer.exe (MsiReinstallFeatureA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A801EDE)
[Address] EAT @explorer.exe (MsiReinstallFeatureFromDescriptorA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80D8C2)
[Address] EAT @explorer.exe (MsiReinstallFeatureFromDescriptorW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80E657)
[Address] EAT @explorer.exe (MsiReinstallFeatureW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A768C24)
[Address] EAT @explorer.exe (MsiReinstallProductA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A801AFE)
[Address] EAT @explorer.exe (MsiReinstallProductW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FCFF1)
[Address] EAT @explorer.exe (MsiRemovePatchesA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A819606)
[Address] EAT @explorer.exe (MsiRemovePatchesW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A813702)
[Address] EAT @explorer.exe (MsiSequenceA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A826180)
[Address] EAT @explorer.exe (MsiSequenceW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A822E4B)

Reklama
thevalid
Level 1.5
Level 1.5
Příspěvky: 148
Registrován: říjen 11
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu síť je zdrojem neobvyklého prov

Příspěvekod thevalid » 12 dub 2014 10:33

[Address] EAT @explorer.exe (MsiSetComponentStateA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8273EB)
[Address] EAT @explorer.exe (MsiSetComponentStateW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8274E5)
[Address] EAT @explorer.exe (MsiSetExternalUIA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FC72F)
[Address] EAT @explorer.exe (MsiSetExternalUIRecord) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A81336B)
[Address] EAT @explorer.exe (MsiSetExternalUIW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A764E86)
[Address] EAT @explorer.exe (MsiSetFeatureAttributesA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A827001)
[Address] EAT @explorer.exe (MsiSetFeatureAttributesW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8270B4)
[Address] EAT @explorer.exe (MsiSetFeatureStateA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A826E2D)
[Address] EAT @explorer.exe (MsiSetFeatureStateW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A826EDF)
[Address] EAT @explorer.exe (MsiSetInstallLevel) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A823424)
[Address] EAT @explorer.exe (MsiSetInternalUI) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A764FE6)
[Address] EAT @explorer.exe (MsiSetMode) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8228BB)
[Address] EAT @explorer.exe (MsiSetOfflineContextW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A828485)
[Address] EAT @explorer.exe (MsiSetPropertyA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A825DC1)
[Address] EAT @explorer.exe (MsiSetPropertyW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A825F85)
[Address] EAT @explorer.exe (MsiSetTargetPathA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8269DD)
[Address] EAT @explorer.exe (MsiSetTargetPathW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A826B61)
[Address] EAT @explorer.exe (MsiSourceListAddMediaDiskA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A817136)
[Address] EAT @explorer.exe (MsiSourceListAddMediaDiskW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A812165)
[Address] EAT @explorer.exe (MsiSourceListAddSourceA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A803037)
[Address] EAT @explorer.exe (MsiSourceListAddSourceExA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A816F13)
[Address] EAT @explorer.exe (MsiSourceListAddSourceExW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A811F43)
[Address] EAT @explorer.exe (MsiSourceListAddSourceW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FDC51)
[Address] EAT @explorer.exe (MsiSourceListClearAllA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A802EF0)
[Address] EAT @explorer.exe (MsiSourceListClearAllExA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A817875)
[Address] EAT @explorer.exe (MsiSourceListClearAllExW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A81281B)
[Address] EAT @explorer.exe (MsiSourceListClearAllW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FDAEB)
[Address] EAT @explorer.exe (MsiSourceListClearMediaDiskA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A81764A)
[Address] EAT @explorer.exe (MsiSourceListClearMediaDiskW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A81260D)
[Address] EAT @explorer.exe (MsiSourceListClearSourceA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A817436)
[Address] EAT @explorer.exe (MsiSourceListClearSourceW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A812405)
[Address] EAT @explorer.exe (MsiSourceListEnumMediaDisksA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A81834E)
[Address] EAT @explorer.exe (MsiSourceListEnumMediaDisksW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8131B5)
[Address] EAT @explorer.exe (MsiSourceListEnumSourcesA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A817C4B)
[Address] EAT @explorer.exe (MsiSourceListEnumSourcesW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A812C07)
[Address] EAT @explorer.exe (MsiSourceListForceResolutionA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8031B8)
[Address] EAT @explorer.exe (MsiSourceListForceResolutionExA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A817A6C)
[Address] EAT @explorer.exe (MsiSourceListForceResolutionExW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A812A09)
[Address] EAT @explorer.exe (MsiSourceListForceResolutionW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FDDDB)
[Address] EAT @explorer.exe (MsiSourceListGetInfoA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A817E30)
[Address] EAT @explorer.exe (MsiSourceListGetInfoW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A812DB5)
[Address] EAT @explorer.exe (MsiSourceListSetInfoA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8180F8)
[Address] EAT @explorer.exe (MsiSourceListSetInfoW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A812FAB)
[Address] EAT @explorer.exe (MsiSummaryInfoGetPropertyA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8221B9)
[Address] EAT @explorer.exe (MsiSummaryInfoGetPropertyCount) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A821E3D)
[Address] EAT @explorer.exe (MsiSummaryInfoGetPropertyW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A82238B)
[Address] EAT @explorer.exe (MsiSummaryInfoPersist) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A822551)
[Address] EAT @explorer.exe (MsiSummaryInfoSetPropertyA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A825906)
[Address] EAT @explorer.exe (MsiSummaryInfoSetPropertyW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A821F2B)
[Address] EAT @explorer.exe (MsiUseFeatureA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A810D83)
[Address] EAT @explorer.exe (MsiUseFeatureExA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A80F9E8)
[Address] EAT @explorer.exe (MsiUseFeatureExW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A764D3A)
[Address] EAT @explorer.exe (MsiUseFeatureW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A810DA0)
[Address] EAT @explorer.exe (MsiVerifyDiskSpace) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A823863)
[Address] EAT @explorer.exe (MsiVerifyPackageA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8007AA)
[Address] EAT @explorer.exe (MsiVerifyPackageW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A7FF097)
[Address] EAT @explorer.exe (MsiViewClose) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A820BAF)
[Address] EAT @explorer.exe (MsiViewExecute) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A82070F)
[Address] EAT @explorer.exe (MsiViewFetch) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A820833)
[Address] EAT @explorer.exe (MsiViewGetColumnInfo) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A820A91)
[Address] EAT @explorer.exe (MsiViewGetErrorA) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8203F1)
[Address] EAT @explorer.exe (MsiViewGetErrorW) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A8205CE)
[Address] EAT @explorer.exe (MsiViewModify) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A82093F)
[Address] EAT @explorer.exe (QueryInstanceCount) : msiltcfg.dll -> HOOKED (C:\Windows\system32\msi.dll @ 0x6A762B2A)

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ SCSI) WDC WD32 00AAKS-00B3A SCSI Disk Device +++++
--- User ---
[MBR] 2994c85755f6acff0cad4bd53275dcc6
[BSP] be92604706e2c7bc6e6fc7b708001c1d : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 305243 MB
User = LL1 ... OK!
Error reading LL2 MBR! ([0x1] Nesprávná funkce. )

+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ USB) Generic USB SD Reader USB Device +++++
Error reading User MBR! ([0x15] Za?ízení není p?ipraveno. )
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Po?adavek není podporován. )

+++++ PhysicalDrive2: (\\.\PHYSICALDRIVE2 @ USB) Generic USB CF Reader USB Device +++++
Error reading User MBR! ([0x15] Za?ízení není p?ipraveno. )
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Po?adavek není podporován. )

+++++ PhysicalDrive3: (\\.\PHYSICALDRIVE3 @ USB) Generic USB SM Reader USB Device +++++
Error reading User MBR! ([0x15] Za?ízení není p?ipraveno. )
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Po?adavek není podporován. )

+++++ PhysicalDrive4: (\\.\PHYSICALDRIVE4 @ USB) Generic USB MS Reader USB Device +++++
Error reading User MBR! ([0x15] Za?ízení není p?ipraveno. )
User = LL1 ... OK!
Error reading LL2 MBR! ([0x32] Po?adavek není podporován. )

Dokončeno : << RKreport[0]_D_04122014_103217.txt >>
RKreport[0]_S_04122014_103211.txt

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu síť je zdrojem neobvyklého prov

Příspěvekod jaro3 » 12 dub 2014 10:35

Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..

Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 51 hostů