Documenti di Didattica
Documenti di Professioni
Documenti di Cultura
813869/0x004f9990
[
1:07b0] :WRAPPER:
80ef71/0x004f99e0
[
1:07b0] :WRAPPER:
80eb0d/0x004f9b60
[
1:07b0] :WRAPPER:
80ee67/0x004f9cf0
[
1:07b0] :WRAPPER:
834ec9/0x004f9d20
[
1:07b0] :WRAPPER:
80efca/0x004f9d60
[
1:07b0] :WRAPPER:
82196a/0x004facb0
[
1:07b0] :WRAPPER:
85f738/0x004fad70
[
1:07b0] :WRAPPER:
834e7c/0x004fadc0
[
1:07b0] :WRAPPER:
8353e6/0x004fae70
[
1:07b0] :WRAPPER:
83541e/0x004fae20
[
1:07b0] :WRAPPER:
80b731/0x004fa4b0
[
1:07b0] :WRAPPER:
80e4cd/0x004fa4f0
[
1:07b0] :WRAPPER:
80e76c/0x004f9830
[
1:07b0] :WRAPPER:
8217d2/0x004f9790
[
1:07b0] :WRAPPER:
832b6e/0x004fa0c0
[
1:07b0] :WRAPPER:
83644c/0x004fa180
[
1:07b0] :WRAPPER:
832dbf/0x004fa220
[
1:07b0] :WRAPPER:
835f39/0x004fa280
[
1:07b0] :WRAPPER:
810cfd/0x004f9e30
[
1:07b0] :WRAPPER:
832379/0x004f9e70
[
1:07b0] :WRAPPER:
8322d4/0x004f9ec0
[
1:07b0] :WRAPPER:
80b55f/0x004fa070
[
1:07b0] :WRAPPER:
f0a005/0x004fa8b0
[
1:07b0] :WRAPPER:
f09d62/0x004fa8f0
[
1:07b0] :WRAPPER:
3a7c08/0x004fa840
[
3:07b0] :WRAPPER:
4d057e/0x004f84f0
[
3:07b0] :WRAPPER:
4d0526/0x004f88a0
[
3:07b0] :WRAPPER:
4e56c5/0x004f8b20
[
3:07b0] :WRAPPER:
139706/0x004f8dc0
[
3:07b0] :WRAPPER:
kernel32.dll
FindFirstFileW = 0x7c
kernel32.dll
FindFirstFileExW = 0x7c
kernel32.dll
FindClose = 0x7c
kernel32.dll
FindNextFileA = 0x7c
kernel32.dll
FindNextFileW = 0x7c
kernel32.dll
OpenFile = 0x7c
kernel32.dll
_lopen = 0x7c
kernel32.dll
_lclose = 0x7c
kernel32.dll
_lread = 0x7c
kernel32.dll
_llseek = 0x7c
kernel32.dll
GetModuleHandleA = 0x7c
kernel32.dll
GetModuleHandleW = 0x7c
kernel32.dll
SearchPathW = 0x7c
kernel32.dll
SearchPathA = 0x7c
kernel32.dll
GetPrivateProfileStringA = 0x7c
kernel32.dll
GetPrivateProfileIntA = 0x7c
kernel32.dll
GetPrivateProfileSectionNamesA = 0x7c
kernel32.dll
GetPrivateProfileSectionA = 0x7c
kernel32.dll
GetFileInformationByHandle = 0x7c
kernel32.dll
LockFile = 0x7c
kernel32.dll
UnlockFile = 0x7c
kernel32.dll
GetModuleFileNameA = 0x7c
gdi32.dll
AddFontResourceA = 0x77
gdi32.dll
RemoveFontResourceA = 0x77
user32.dll
LoadImageA = 0x7e
ole32.dll
CoCreateInstance = 0x77
ole32.dll
CoCreateInstanceEx = 0x77
ole32.dll
CoGetClassObject = 0x77
oleaut32.dll
GetRecordInfoFromGuids = 0x77
oleaut32.dll
LoadRegTypeLib = 0x77
0f9d5a/0x004f8fe0
[
3:07b0] :LAUNCHER: prepare 3 sections, packbits 0x2
[
3:07b0] :LAUNCHER:SECTION:(encrypted) raw_size: 0x0(0), virtual: 0x1000
[
3:07b0] :LAUNCHER:SECTION:(encrypted & compressed) raw_size: 0x41a00(26880
0), virtual: 0x8b000
[
29:07b0] :LAUNCHER:EXECUTABLE dynamic link to 'KERNEL32.DLL'
[
29:07b0] :LAUNCHER: EXECUTABLE->KERNEL32.DLL TimeDateStamp: 00000000, handl
e 7c800000
[
29:07b0] :WRAPPER:LoadLibrary: KERNEL32.DLL, handle is 7c800000
[
29:07b0] :LAUNCHER:EXECUTABLE:0x004e9624 -> 0x7c801d7b: LoadLibraryA!KERNEL
32.DLL
[
29:07b0] :LAUNCHER:WRAPPER: EXECUTABLE -> KERNEL32.DLL!0x7c801d7b = LoadLib
raryA
[
29:07b0] :LAUNCHER:EXECUTABLE:0x004e9628 -> 0x7c80ae30: GetProcAddress!KERN
EL32.DLL
[
29:07b0] :LAUNCHER:WRAPPER: EXECUTABLE -> KERNEL32.DLL!0x7c80ae30 = GetProc
Address
[
30:07b0] :LAUNCHER:EXECUTABLE:0x004e962c -> 0x7c801ad4: VirtualProtect!KERN
EL32.DLL
[
30:07b0] :LAUNCHER:EXECUTABLE:0x004e9630 -> 0x7c809ae1: VirtualAlloc!KERNEL
32.DLL
[
30:07b0] :LAUNCHER:EXECUTABLE:0x004e9634 -> 0x7c809b74: VirtualFree!KERNEL3
2.DLL
[
30:07b0] :LAUNCHER:EXECUTABLE:0x004e9638 -> 0x7c81cafa: ExitProcess!KERNEL3
2.DLL
[
30:07b0] :LAUNCHER:WRAPPER: EXECUTABLE -> KERNEL32.DLL!0x7c81cafa = ExitPro
cess
[
30:07b0] :LAUNCHER: EXECUTABLE->KERNEL32.DLL Stamped
[
30:07b0] :LAUNCHER:EXECUTABLE dynamic link to 'ADVAPI32.dll'
[
30:07b0] :LAUNCHER: EXECUTABLE->ADVAPI32.dll TimeDateStamp: 00000000, handl
e 77da0000
[
30:07b0] :LAUNCHER:WRAPPER: ADVAPI32.dll -> KERNEL32.dll!0x7c809bd7 = Close
Handle
[
30:07b0] :LAUNCHER:WRAPPER: ADVAPI32.dll -> KERNEL32.dll!0x7c801af5 = LoadL
ibraryExW
[
30:07b0] :LAUNCHER:WRAPPER: ADVAPI32.dll -> KERNEL32.dll!0x7c80eb0d = FindF
irstFileExW
[
30:07b0] :LAUNCHER:WRAPPER: ADVAPI32.dll -> KERNEL32.dll!0x7c80efca = FindN
extFileW
[
30:07b0] :LAUNCHER:WRAPPER: ADVAPI32.dll -> KERNEL32.dll!0x7c801a28 = Creat
eFileA
[
30:07b0] :LAUNCHER:WRAPPER: ADVAPI32.dll -> KERNEL32.dll!0x7c80e4cd = GetMo
duleHandleW
[
30:07b0] :LAUNCHER:WRAPPER: ADVAPI32.dll -> KERNEL32.dll!0x7c809420 = Creat
eFileMappingW
[
30:07b0] :LAUNCHER:WRAPPER: ADVAPI32.dll -> KERNEL32.dll!0x7c8449fd = SetUn
handledExceptionFilter
[
30:07b0] :LAUNCHER:WRAPPER: ADVAPI32.dll -> KERNEL32.dll!0x7c82196a = OpenF
ile
[
30:07b0] :LAUNCHER:WRAPPER: ADVAPI32.dll -> KERNEL32.dll!0x7c810b07 = GetFi
leSize
[
30:07b0] :LAUNCHER:WRAPPER: ADVAPI32.dll -> KERNEL32.dll!0x7c834e7c = _lclo
se
[
30:07b0] :LAUNCHER:WRAPPER: ADVAPI32.dll -> KERNEL32.dll!0x7c80e76c = Searc
hPathW
[
30:07b0] :LAUNCHER:WRAPPER: ADVAPI32.dll -> KERNEL32.dll!0x7c810c1e = SetFi
lePointer
[
30:07b0] :LAUNCHER:WRAPPER: ADVAPI32.dll -> KERNEL32.dll!0x7c80b731 = GetMo
duleHandleA
[
30:07b0] :LAUNCHER:WRAPPER: ADVAPI32.dll -> KERNEL32.dll!0x7c80aedb = LoadL
ibraryW
[
30:07b0] :LAUNCHER:WRAPPER:
ibrary
[
30:07b0] :LAUNCHER:WRAPPER:
ile
[
30:07b0] :LAUNCHER:WRAPPER:
ViewOfFile
[
30:07b0] :LAUNCHER:WRAPPER:
eFileW
[
30:07b0] :LAUNCHER:WRAPPER:
eFileMappingA
[
30:07b0] :LAUNCHER:WRAPPER:
ewOfFile
[
30:07b0] :LAUNCHER:WRAPPER:
ibraryA
[
30:07b0] :LAUNCHER:WRAPPER:
ocAddress
[
30:07b0] :LAUNCHER:WRAPPER:
leAttributesW
[
30:07b0] :LAUNCHER:WRAPPER:
irstFileW
[
30:07b0] :LAUNCHER:WRAPPER:
lose
[
30:07b0] :LAUNCHER:WRAPPER:
ileW
[
30:07b0] :LAUNCHER:WRAPPER:
leFileNameA
[
30:07b0] :LAUNCHER:WRAPPER:
raryA
[
30:07b0] :LAUNCHER:WRAPPER:
ewOfFile
[
30:07b0] :LAUNCHER:WRAPPER:
raryW
[
30:07b0] :LAUNCHER:WRAPPER:
Address
[
30:07b0] :LAUNCHER:WRAPPER:
ndle
[
30:07b0] :LAUNCHER:WRAPPER:
rary
[
30:07b0] :LAUNCHER:WRAPPER:
ndledExceptionFilter
[
30:07b0] :LAUNCHER:WRAPPER:
leHandleW
[
30:07b0] :LAUNCHER:WRAPPER:
andledExceptionFilter
[
30:07b0] :LAUNCHER:WRAPPER:
braryA
[
30:07b0] :LAUNCHER:WRAPPER:
uleHandleW
[
30:07b0] :LAUNCHER:WRAPPER:
PathW
[
30:07b0] :LAUNCHER:WRAPPER:
FileW
[
30:07b0] :LAUNCHER:WRAPPER:
andle
[
30:07b0] :LAUNCHER:WRAPPER:
braryW
[
30:07b0] :LAUNCHER:WRAPPER:
cAddress
[
30:07b0] :LAUNCHER:WRAPPER:
brary
[
30:07b0] :WRAPPER:LoadLibrary: ADVAPI32.dll, handle is 77da0000
[
30:07b0] :LAUNCHER:EXECUTABLE:0x004e9640 -> 0x77db4c13: GetAce!ADVAPI32.dll
[
30:07b0] :LAUNCHER: EXECUTABLE->ADVAPI32.dll Stamped
[
30:07b0] :LAUNCHER:EXECUTABLE dynamic link to 'COMCTL32.dll'
[
31:07b0] :LAUNCHER: EXECUTABLE->COMCTL32.dll TimeDateStamp: 00000000, handl
e 00000000
[
31:07b0] :WRAPPER:LoadLibrary: COMCTL32.dll
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c80ee67 = FindClo
se
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c813869 = FindFir
stFileA
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c834ec9 = FindNex
tFileA
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c80ef71 = FindFir
stFileW
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c80efca = FindNex
tFileW
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c8115cc = GetFile
AttributesA
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c80b7dc = GetFile
AttributesW
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c8449fd = SetUnha
ndledExceptionFilter
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c809bd7 = CloseHa
ndle
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c80ae30 = GetProc
Address
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c801d7b = LoadLib
raryA
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c80ac6e = FreeLib
rary
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c80b731 = GetModu
leHandleA
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c80b55f = GetModu
leFileNameA
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c810cfd = GetFile
InformationByHandle
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c832379 = LockFil
e
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c8322d4 = UnlockF
ile
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c810c1e = SetFile
Pointer
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c801a28 = CreateF
ileA
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c801812 = ReadFil
e
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c8107f0 = CreateF
ileW
[
35:07b0] :LAUNCHER:WRAPPER: msvcrt.dll -> KERNEL32.dll!0x7c81cafa = ExitPro
cess
[
36:07b0] :LAUNCHER:WRAPPER: GDI32.dll -> KERNEL32.dll!0x7c80ba04 = UnmapVie
wOfFile
[
36:07b0] :LAUNCHER:WRAPPER: GDI32.dll -> KERNEL32.dll!0x7c8449fd = SetUnhan
dledExceptionFilter
[
36:07b0] :LAUNCHER:WRAPPER: GDI32.dll -> KERNEL32.dll!0x7c801af5 = LoadLibr
aryExW
[
36:07b0] :LAUNCHER:WRAPPER: GDI32.dll -> KERNEL32.dll!0x7c801d7b = LoadLibr
aryA
[
36:07b0] :LAUNCHER:WRAPPER:
ointer
[
36:07b0] :LAUNCHER:WRAPPER:
leMappingW
[
36:07b0] :LAUNCHER:WRAPPER:
ary
[
36:07b0] :LAUNCHER:WRAPPER:
ddress
[
36:07b0] :LAUNCHER:WRAPPER:
aryW
[
36:07b0] :LAUNCHER:WRAPPER:
thW
[
36:07b0] :LAUNCHER:WRAPPER:
dle
[
36:07b0] :LAUNCHER:WRAPPER:
leW
[
36:07b0] :LAUNCHER:WRAPPER:
fFile
[
36:07b0] :LAUNCHER:WRAPPER:
leHandleW
[
36:07b0] :LAUNCHER:WRAPPER:
athW
[
36:07b0] :LAUNCHER:WRAPPER:
raryExW
[
36:07b0] :LAUNCHER:WRAPPER:
ndle
[
36:07b0] :LAUNCHER:WRAPPER:
ewOfFile
[
36:07b0] :LAUNCHER:WRAPPER:
OfFile
[
36:07b0] :LAUNCHER:WRAPPER:
ileMappingW
[
36:07b0] :LAUNCHER:WRAPPER:
Size
[
36:07b0] :LAUNCHER:WRAPPER:
e
[
36:07b0] :LAUNCHER:WRAPPER:
se
[
36:07b0] :LAUNCHER:WRAPPER:
tFileW
[
36:07b0] :LAUNCHER:WRAPPER:
stFileW
[
36:07b0] :LAUNCHER:WRAPPER:
leFileNameA
[
36:07b0] :LAUNCHER:WRAPPER:
leHandleA
[
36:07b0] :LAUNCHER:WRAPPER:
raryA
[
36:07b0] :LAUNCHER:WRAPPER:
ndledExceptionFilter
[
36:07b0] :LAUNCHER:WRAPPER:
Address
[
36:07b0] :LAUNCHER:WRAPPER:
raryW
[
36:07b0] :LAUNCHER:WRAPPER:
rary
[
36:07b0] :LAUNCHER:WRAPPER:
ileW
[
36:07b0] :LAUNCHER:WRAPPER:
handledExceptionFilter
[
36:07b0] :LAUNCHER:WRAPPER:
ocAddress
[
36:07b0] :LAUNCHER:WRAPPER:
ibrary
[
36:07b0] :LAUNCHER:WRAPPER:
ibraryA
[
36:07b0] :LAUNCHER:WRAPPER:
Handle
[
36:07b0] :LAUNCHER:WRAPPER:
ibraryW
[
36:07b0] :LAUNCHER:WRAPPER:
duleHandleW
[
36:07b0] :LAUNCHER:WRAPPER:
lose
[
36:07b0] :LAUNCHER:WRAPPER:
extFileW
[
36:07b0] :LAUNCHER:WRAPPER:
irstFileW
[
36:07b0] :LAUNCHER:WRAPPER:
ewOfFile
[
36:07b0] :LAUNCHER:WRAPPER:
eFileMappingW
[
36:07b0] :LAUNCHER:WRAPPER:
leSize
[
36:07b0] :LAUNCHER:WRAPPER:
eFileW
[
36:07b0] :LAUNCHER:WRAPPER:
ViewOfFile
[
36:07b0] :LAUNCHER:WRAPPER:
duleHandleA
[
36:07b0] :LAUNCHER:WRAPPER:
ePointer
[
36:07b0] :LAUNCHER:WRAPPER:
FileA
[
36:07b0] :LAUNCHER:WRAPPER:
andledExceptionFilter
[
36:07b0] :LAUNCHER:WRAPPER:
eAttributesA
[
36:07b0] :LAUNCHER:WRAPPER:
PathA
[
36:07b0] :LAUNCHER:WRAPPER:
ose
[
36:07b0] :LAUNCHER:WRAPPER:
xtFileA
[
36:07b0] :LAUNCHER:WRAPPER:
rstFileA
[
36:07b0] :LAUNCHER:WRAPPER:
xtFileW
[
36:07b0] :LAUNCHER:WRAPPER:
FileW
[
36:07b0] :LAUNCHER:WRAPPER:
rstFileW
[
36:07b0] :LAUNCHER:WRAPPER:
eAttributesW
[
36:07b0] :LAUNCHER:WRAPPER:
PathW
[
36:07b0] :LAUNCHER:WRAPPER:
uleHandleA
[
36:07b0] :LAUNCHER:WRAPPER:
uleHandleW
[
36:07b0] :LAUNCHER:WRAPPER: SHLWAPI.dll -> KERNEL32.dll!0x7c83644c = GetPri
vateProfileIntA
[
36:07b0] :LAUNCHER:WRAPPER: SHLWAPI.dll -> KERNEL32.dll!0x7c801d53 = LoadLi
braryExA
[
36:07b0] :LAUNCHER:WRAPPER: SHLWAPI.dll -> KERNEL32.dll!0x7c801af5 = LoadLi
braryExW
[
36:07b0] :LAUNCHER:WRAPPER: SHLWAPI.dll -> KERNEL32.dll!0x7c80aedb = LoadLi
braryW
[
36:07b0] :LAUNCHER:WRAPPER: SHLWAPI.dll -> KERNEL32.dll!0x7c832b6e = GetPri
vateProfileStringA
[
36:07b0] :LAUNCHER:WRAPPER: SHLWAPI.dll -> KERNEL32.dll!0x7c80ac6e = FreeLi
brary
[
37:07b0] :LAUNCHER:WRAPPER: SHLWAPI.dll -> KERNEL32.dll!0x7c801812 = ReadFi
le
[
37:07b0] :LAUNCHER:WRAPPER: SHLWAPI.dll -> KERNEL32.dll!0x7c810b07 = GetFil
eSize
[
37:07b0] :LAUNCHER:WRAPPER: SHLWAPI.dll -> KERNEL32.dll!0x7c810cfd = GetFil
eInformationByHandle
[
37:07b0] :LAUNCHER:WRAPPER: SHLWAPI.dll -> KERNEL32.dll!0x7c801d7b = LoadLi
braryA
[
37:07b0] :LAUNCHER:WRAPPER: SHLWAPI.dll -> KERNEL32.dll!0x7c80ae30 = GetPro
cAddress
[
37:07b0] :LAUNCHER:WRAPPER: SHLWAPI.dll -> KERNEL32.dll!0x7c80b55f = GetMod
uleFileNameA
[
37:07b0] :LAUNCHER:WRAPPER: SHLWAPI.dll -> KERNEL32.dll!0x7c8094ee = Create
FileMappingA
[
37:07b0] :LAUNCHER:WRAPPER: SHLWAPI.dll -> KERNEL32.dll!0x7c80b995 = MapVie
wOfFile
[
37:07b0] :LAUNCHER:WRAPPER: SHLWAPI.dll -> KERNEL32.dll!0x7c80ba04 = UnmapV
iewOfFile
[
37:07b0] :LAUNCHER:WRAPPER: SHLWAPI.dll -> KERNEL32.dll!0x7c809bd7 = CloseH
andle
[
37:07b0] :LAUNCHER:WRAPPER: SHLWAPI.dll -> USER32.dll!0x7e3a7c08 = LoadImag
eA
[
37:07b0] :WRAPPER:LoadLibrary: COMCTL32.dll, handle is 773a0000
[
37:07b0] :LAUNCHER:EXECUTABLE:0x004e9648 -> 0x773b5582: ImageList_Remove!CO
MCTL32.dll
[
37:07b0] :LAUNCHER: EXECUTABLE->COMCTL32.dll Stamped
[
37:07b0] :LAUNCHER:EXECUTABLE dynamic link to 'COMDLG32.dll'
[
37:07b0] :LAUNCHER: EXECUTABLE->COMDLG32.dll TimeDateStamp: 00000000, handl
e 00000000
[
37:07b0] :WRAPPER:LoadLibrary: COMDLG32.dll
[
41:07b0] :LAUNCHER:WRAPPER: COMDLG32.dll -> KERNEL32.dll!0x7c80ae30 = GetPr
ocAddress
[
41:07b0] :LAUNCHER:WRAPPER: COMDLG32.dll -> KERNEL32.dll!0x7c80e4cd = GetMo
duleHandleW
[
41:07b0] :LAUNCHER:WRAPPER: COMDLG32.dll -> KERNEL32.dll!0x7c80ac6e = FreeL
ibrary
[
41:07b0] :LAUNCHER:WRAPPER: COMDLG32.dll -> KERNEL32.dll!0x7c801d7b = LoadL
ibraryA
[
41:07b0] :LAUNCHER:WRAPPER: COMDLG32.dll -> KERNEL32.dll!0x7c8449fd = SetUn
handledExceptionFilter
[
41:07b0] :LAUNCHER:WRAPPER: COMDLG32.dll -> KERNEL32.dll!0x7c80aedb = LoadL
ibraryW
[
41:07b0] :LAUNCHER:WRAPPER: COMDLG32.dll -> KERNEL32.dll!0x7c80b7dc = GetFi
leAttributesW
[
41:07b0] :LAUNCHER:WRAPPER: COMDLG32.dll -> KERNEL32.dll!0x7c80ef71 = FindF
irstFileW
[
41:07b0] :LAUNCHER:WRAPPER: COMDLG32.dll -> KERNEL32.dll!0x7c80efca = FindN
extFileW
[
41:07b0] :LAUNCHER:WRAPPER:
lose
[
41:07b0] :LAUNCHER:WRAPPER:
Handle
[
41:07b0] :LAUNCHER:WRAPPER:
duleHandleA
[
41:07b0] :LAUNCHER:WRAPPER:
eFileW
[
41:07b0] :LAUNCHER:WRAPPER:
uleHandleA
[
41:07b0] :LAUNCHER:WRAPPER:
rstFileA
[
41:07b0] :LAUNCHER:WRAPPER:
xtFileA
[
41:07b0] :LAUNCHER:WRAPPER:
eInformationByHandle
[
41:07b0] :LAUNCHER:WRAPPER:
ocess
[
41:07b0] :LAUNCHER:WRAPPER:
rstFileExW
[
41:07b0] :LAUNCHER:WRAPPER:
andledExceptionFilter
[
41:07b0] :LAUNCHER:WRAPPER:
braryA
[
41:07b0] :LAUNCHER:WRAPPER:
eAttributesA
[
41:07b0] :LAUNCHER:WRAPPER:
eSize
[
41:07b0] :LAUNCHER:WRAPPER:
FileMappingW
[
41:07b0] :LAUNCHER:WRAPPER:
wOfFile
[
41:07b0] :LAUNCHER:WRAPPER:
iewOfFile
[
41:07b0] :LAUNCHER:WRAPPER:
uleHandleW
[
41:07b0] :LAUNCHER:WRAPPER:
PathW
[
41:07b0] :LAUNCHER:WRAPPER:
e
[
41:07b0] :LAUNCHER:WRAPPER:
[
41:07b0] :LAUNCHER:WRAPPER:
braryW
[
41:07b0] :LAUNCHER:WRAPPER:
cAddress
[
41:07b0] :LAUNCHER:WRAPPER:
FileW
[
41:07b0] :LAUNCHER:WRAPPER:
le
[
41:07b0] :LAUNCHER:WRAPPER:
eAttributesW
[
41:07b0] :LAUNCHER:WRAPPER:
rstFileW
[
41:07b0] :LAUNCHER:WRAPPER:
xtFileW
[
41:07b0] :LAUNCHER:WRAPPER:
ose
[
41:07b0] :LAUNCHER:WRAPPER:
andle
[
41:07b0] :LAUNCHER:WRAPPER:
ePointer
[
41:07b0] :LAUNCHER:WRAPPER: SHELL32.dll -> KERNEL32.dll!0x7c801af5 = LoadLi
braryExW
[
41:07b0] :LAUNCHER:WRAPPER: SHELL32.dll -> KERNEL32.dll!0x7c80ac6e = FreeLi
brary
[
41:07b0] :LAUNCHER:WRAPPER: SHELL32.dll -> KERNEL32.dll!0x7c801d53 = LoadLi
braryExA
[
41:07b0] :WRAPPER:LoadLibrary: COMDLG32.dll, handle is 76360000
[
41:07b0] :LAUNCHER:EXECUTABLE:0x004e9650 -> 0x76377c2b: GetSaveFileNameW!CO
MDLG32.dll
[
41:07b0] :LAUNCHER: EXECUTABLE->COMDLG32.dll Stamped
[
41:07b0] :LAUNCHER:EXECUTABLE dynamic link to 'GDI32.dll'
[
41:07b0] :LAUNCHER: EXECUTABLE->GDI32.dll TimeDateStamp: 00000000, handle 7
7ef0000
[
41:07b0] :WRAPPER:LoadLibrary: GDI32.dll, handle is 77ef0000
[
41:07b0] :LAUNCHER:EXECUTABLE:0x004e9658 -> 0x77efd987: LineTo!GDI32.dll
[
41:07b0] :LAUNCHER: EXECUTABLE->GDI32.dll Stamped
[
41:07b0] :LAUNCHER:EXECUTABLE dynamic link to 'MPR.dll'
[
42:07b0] :LAUNCHER: EXECUTABLE->MPR.dll TimeDateStamp: 00000000, handle 000
00000
[
42:07b0] :WRAPPER:LoadLibrary: MPR.dll
[
42:07b0] :LAUNCHER:WRAPPER: MPR.dll -> KERNEL32.dll!0x7c801d7b = LoadLibrar
yA
[
42:07b0] :LAUNCHER:WRAPPER: MPR.dll -> KERNEL32.dll!0x7c8449fd = SetUnhandl
edExceptionFilter
[
42:07b0] :LAUNCHER:WRAPPER: MPR.dll -> KERNEL32.dll!0x7c80ac6e = FreeLibrar
y
[
42:07b0] :LAUNCHER:WRAPPER: MPR.dll -> KERNEL32.dll!0x7c801af5 = LoadLibrar
yExW
[
42:07b0] :LAUNCHER:WRAPPER: MPR.dll -> KERNEL32.dll!0x7c80ae30 = GetProcAdd
ress
[
42:07b0] :LAUNCHER:WRAPPER: MPR.dll -> KERNEL32.dll!0x7c809bd7 = CloseHandl
e
[
42:07b0] :WRAPPER:LoadLibrary: MPR.dll, handle is 71aa0000
[
42:07b0] :LAUNCHER:EXECUTABLE:0x004e9660 -> 0x71aa1e09: WNetGetConnectionW!
MPR.dll
[
42:07b0] :LAUNCHER: EXECUTABLE->MPR.dll Stamped
[
42:07b0] :LAUNCHER:EXECUTABLE dynamic link to 'ole32.dll'
[
42:07b0] :LAUNCHER: EXECUTABLE->ole32.dll TimeDateStamp: 00000000, handle 7
74b0000
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c80b7dc = GetFileA
ttributesW
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c80ae30 = GetProcA
ddress
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c801d7b = LoadLibr
aryA
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c809bd7 = CloseHan
dle
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c80ac6e = FreeLibr
ary
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c80aedb = LoadLibr
aryW
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c8107f0 = CreateFi
leW
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c80ee67 = FindClos
e
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c80ef71 = FindFirs
tFileW
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c80e4cd = GetModul
eHandleW
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c801af5 = LoadLibr
aryExW
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c801812 = ReadFile
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c810c1e = SetFileP
ointer
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c809420 = CreateFi
leMappingW
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c80b995 = MapViewO
fFile
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c80ba04 = UnmapVie
wOfFile
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c801d53 = LoadLibr
aryExA
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c80e76c = SearchPa
thW
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c832379 = LockFile
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c8322d4 = UnlockFi
le
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c810b07 = GetFileS
ize
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c810cfd = GetFileI
nformationByHandle
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c8094ee = CreateFi
leMappingA
[
42:07b0] :LAUNCHER:WRAPPER: ole32.dll -> KERNEL32.dll!0x7c8449fd = SetUnhan
dledExceptionFilter
[
43:07b0] :WRAPPER:LoadLibrary: ole32.dll, handle is 774b0000
[
43:07b0] :LAUNCHER:EXECUTABLE:0x004e9668 -> 0x774d2a53: CoInitialize!ole32.
dll
[
43:07b0] :LAUNCHER: EXECUTABLE->ole32.dll Stamped
[
43:07b0] :LAUNCHER:EXECUTABLE dynamic link to 'OLEAUT32.dll'
[
43:07b0] :LAUNCHER: EXECUTABLE->OLEAUT32.dll TimeDateStamp: 00000000, handl
e 770f0000
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c80ac6e = FreeL
ibrary
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c801d7b = LoadL
ibraryA
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c809bd7 = Close
Handle
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c834e7c = _lclo
se
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c8353e6 = _lrea
d
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c83541e = _llse
ek
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c801a28 = Creat
eFileA
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c8107f0 = Creat
eFileW
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c80aedb = LoadL
ibraryW
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c8217d2 = Searc
hPathA
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c80e76c = Searc
hPathW
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c80ba04 = Unmap
ViewOfFile
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c80b995 = MapVi
ewOfFile
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c8094ee = Creat
eFileMappingA
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c810b07 = GetFi
leSize
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c8449fd = SetUn
handledExceptionFilter
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c80ae30 = GetPr
ocAddress
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> KERNEL32.dll!0x7c80b731 = GetMo
duleHandleA
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> ole32.dll!0x774d057e = CoCreate
Instance
[
43:07b0] :LAUNCHER:WRAPPER: OLEAUT32.dll -> ole32.dll!0x774e56c5 = CoGetCla
ssObject
[
43:07b0] :WRAPPER:LoadLibrary: OLEAUT32.dll, handle is 770f0000
[
43:07b0] :LAUNCHER:EXECUTABLE:0x004e9670 -> 0x770f4950: 8!OLEAUT32.dll
[
43:07b0] :LAUNCHER: EXECUTABLE->OLEAUT32.dll Stamped
[
43:07b0] :LAUNCHER:EXECUTABLE dynamic link to 'PSAPI.DLL'
[
43:07b0] :LAUNCHER: EXECUTABLE->PSAPI.DLL TimeDateStamp: 00000000, handle 0
0000000
[
43:07b0] :WRAPPER:LoadLibrary: PSAPI.DLL
[
43:07b0] :LAUNCHER:WRAPPER: PSAPI.DLL -> KERNEL32.dll!0x7c801d7b = LoadLibr
aryA
[
43:07b0] :LAUNCHER:WRAPPER: PSAPI.DLL -> KERNEL32.dll!0x7c80ac6e = FreeLibr
ary
[
43:07b0] :LAUNCHER:WRAPPER: PSAPI.DLL -> KERNEL32.dll!0x7c80ae30 = GetProcA
ddress
[
43:07b0] :LAUNCHER:WRAPPER: PSAPI.DLL -> KERNEL32.dll!0x7c8449fd = SetUnhan
dledExceptionFilter
[
43:07b0] :LAUNCHER:WRAPPER: PSAPI.DLL -> KERNEL32.dll!0x7c80b995 = MapViewO
fFile
[
43:07b0] :LAUNCHER:WRAPPER: PSAPI.DLL -> KERNEL32.dll!0x7c80ba04 = UnmapVie
wOfFile
[
43:07b0] :LAUNCHER:WRAPPER: PSAPI.DLL -> KERNEL32.dll!0x7c801a28 = CreateFi
leA
[
43:07b0] :LAUNCHER:WRAPPER: PSAPI.DLL -> KERNEL32.dll!0x7c809bd7 = CloseHan
dle
[
44:07b0] :WRAPPER:LoadLibrary: PSAPI.DLL, handle is 76bb0000
[
44:07b0] :LAUNCHER:EXECUTABLE:0x004e9678 -> 0x76bb3a76: EnumProcesses!PSAPI
.DLL
[
44:07b0] :LAUNCHER: EXECUTABLE->PSAPI.DLL Stamped
[
44:07b0] :LAUNCHER:EXECUTABLE dynamic link to 'SHELL32.dll'
[
44:07b0] :LAUNCHER: EXECUTABLE->SHELL32.dll TimeDateStamp: 00000000, handle
7e6a0000
[
44:07b0] :WRAPPER:LoadLibrary: SHELL32.dll, handle is 7e6a0000
[
44:07b0] :LAUNCHER:EXECUTABLE:0x004e9680 -> 0x7e757c18: DragFinish!SHELL32.
dll
[
44:07b0] :LAUNCHER: EXECUTABLE->SHELL32.dll Stamped
[
44:07b0] :LAUNCHER:EXECUTABLE dynamic link to 'USER32.dll'
[
44:07b0] :LAUNCHER: EXECUTABLE->USER32.dll TimeDateStamp: 00000000, handle
7e390000
[
44:07b0] :WRAPPER:LoadLibrary: USER32.dll, handle is 7e390000
[
44:07b0] :LAUNCHER:EXECUTABLE:0x004e9688 -> 0x7e3986c7: GetDC!USER32.dll
[
44:07b0] :LAUNCHER: EXECUTABLE->USER32.dll Stamped
[
44:07b0] :LAUNCHER:EXECUTABLE dynamic link to 'USERENV.dll'
[
44:07b0] :LAUNCHER: EXECUTABLE->USERENV.dll TimeDateStamp: 00000000, handle
00000000
[
44:07b0] :WRAPPER:LoadLibrary: USERENV.dll
[
44:07b0] :LAUNCHER:WRAPPER: USERENV.dll -> KERNEL32.dll!0x7c80aedb = LoadLi
braryW
[
44:07b0] :LAUNCHER:WRAPPER: USERENV.dll -> KERNEL32.dll!0x7c810c1e = SetFil
ePointer
[
44:07b0] :LAUNCHER:WRAPPER: USERENV.dll -> KERNEL32.dll!0x7c8107f0 = Create
FileW
[
44:07b0] :LAUNCHER:WRAPPER: USERENV.dll -> KERNEL32.dll!0x7c801d53 = LoadLi
braryExA
[
44:07b0] :LAUNCHER:WRAPPER: USERENV.dll -> KERNEL32.dll!0x7c80b7dc = GetFil
eAttributesW
[
44:07b0] :LAUNCHER:WRAPPER: USERENV.dll -> KERNEL32.dll!0x7c80e76c = Search
PathW
[
44:07b0] :LAUNCHER:WRAPPER: USERENV.dll -> KERNEL32.dll!0x7c810b07 = GetFil
eSize
[
45:07b0] :LAUNCHER:WRAPPER: USERENV.dll -> KERNEL32.dll!0x7c809bd7 = CloseH
andle
[
45:07b0] :LAUNCHER:WRAPPER: USERENV.dll -> KERNEL32.dll!0x7c80ae30 = GetPro
cAddress
[
45:07b0] :LAUNCHER:WRAPPER: USERENV.dll -> KERNEL32.dll!0x7c80ac6e = FreeLi
brary
[
45:07b0] :LAUNCHER:WRAPPER: USERENV.dll -> KERNEL32.dll!0x7c801d7b = LoadLi
braryA
[
45:07b0] :LAUNCHER:WRAPPER: USERENV.dll -> KERNEL32.dll!0x7c8449fd = SetUnh
andledExceptionFilter
[
45:07b0] :LAUNCHER:WRAPPER: USERENV.dll -> KERNEL32.dll!0x7c80ee67 = FindCl
ose
[
45:07b0] :LAUNCHER:WRAPPER: USERENV.dll -> KERNEL32.dll!0x7c80efca = FindNe
xtFileW
[
45:07b0] :LAUNCHER:WRAPPER: USERENV.dll -> KERNEL32.dll!0x7c80ef71 = FindFi
rstFileW
[
45:07b0] :LAUNCHER:WRAPPER: USERENV.dll -> KERNEL32.dll!0x7c801812 = ReadFi
le
[
45:07b0] :WRAPPER:LoadLibrary: USERENV.dll, handle is 76630000
[
45:07b0] :LAUNCHER:EXECUTABLE:0x004e9690 -> 0x7663ad1c: LoadUserProfileW!US
ERENV.dll
[
45:07b0] :LAUNCHER: EXECUTABLE->USERENV.dll Stamped
[
45:07b0] :LAUNCHER:EXECUTABLE dynamic link to 'VERSION.dll'
[
45:07b0] :LAUNCHER: EXECUTABLE->VERSION.dll TimeDateStamp: 00000000, handle
00000000
[
45:07b0] :WRAPPER:LoadLibrary: VERSION.dll
[
45:07b0] :LAUNCHER:WRAPPER: VERSION.dll -> KERNEL32.dll!0x7c834e7c = _lclos
e
[
45:07b0] :LAUNCHER:WRAPPER: VERSION.dll -> KERNEL32.dll!0x7c85f738 = _lopen
[
45:07b0] :LAUNCHER:WRAPPER: VERSION.dll -> KERNEL32.dll!0x7c8353e6 = _lread
[
45:07b0] :LAUNCHER:WRAPPER: VERSION.dll -> KERNEL32.dll!0x7c83541e = _llsee
k
[
45:07b0] :LAUNCHER:WRAPPER: VERSION.dll -> KERNEL32.dll!0x7c810b07 = GetFil
eSize
[
45:07b0] :LAUNCHER:WRAPPER: VERSION.dll -> KERNEL32.dll!0x7c80ac6e = FreeLi
brary
[
45:07b0] :LAUNCHER:WRAPPER: VERSION.dll -> KERNEL32.dll!0x7c80ae30 = GetPro
cAddress
[
45:07b0] :LAUNCHER:WRAPPER: VERSION.dll -> KERNEL32.dll!0x7c80aedb = LoadLi
braryW
[
45:07b0] :LAUNCHER:WRAPPER: VERSION.dll -> KERNEL32.dll!0x7c801af5 = LoadLi
braryExW
[
45:07b0] :LAUNCHER:WRAPPER: VERSION.dll -> KERNEL32.dll!0x7c809bd7 = CloseH
andle
[
45:07b0] :LAUNCHER:WRAPPER: VERSION.dll -> KERNEL32.dll!0x7c8107f0 = Create
FileW
[
45:07b0] :LAUNCHER:WRAPPER: VERSION.dll -> KERNEL32.dll!0x7c80b7dc = GetFil
eAttributesW
[
45:07b0] :LAUNCHER:WRAPPER: VERSION.dll -> KERNEL32.dll!0x7c8449fd = SetUnh
andledExceptionFilter
[
45:07b0] :WRAPPER:LoadLibrary: VERSION.dll, handle is 77bd0000
[
45:07b0] :LAUNCHER:EXECUTABLE:0x004e9698 -> 0x77bd1805: VerQueryValueW!VERS
ION.dll
[
45:07b0] :LAUNCHER: EXECUTABLE->VERSION.dll Stamped
[
45:07b0] :LAUNCHER:EXECUTABLE dynamic link to 'WININET.dll'
[
45:07b0] :LAUNCHER: EXECUTABLE->WININET.dll TimeDateStamp: 00000000, handle
00000000
[
45:07b0] :WRAPPER:LoadLibrary: WININET.dll
[
50:07b0] :WRAPPER:LoadLibrary: comctl32.dll, handle is 773a0000
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c80ac6e = FreeLi
brary
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c80ae30 = GetPro
cAddress
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c801d7b = LoadLi
braryA
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c8449fd = SetUnh
andledExceptionFilter
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c801a28 = Create
FileA
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c8107f0 = Create
FileW
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c8115cc = GetFil
eAttributesA
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c80b7dc = GetFil
eAttributesW
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c801d53 = LoadLi
braryExA
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c801af5 = LoadLi
braryExW
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c813869 = FindFi
rstFileA
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c80ef71 = FindFi
rstFileW
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c834ec9 = FindNe
xtFileA
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c80efca = FindNe
xtFileW
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c809bd7 = CloseH
andle
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c801812 = ReadFi
le
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c810c1e = SetFil
ePointer
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c810b07 = GetFil
eSize
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c80ee67 = FindCl
ose
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c80b995 = MapVie
wOfFile
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c8094ee = Create
FileMappingA
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c80ba04 = UnmapV
iewOfFile
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c80b731 = GetMod
uleHandleA
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c809420 = Create
FileMappingW
[
50:07b0] :LAUNCHER:WRAPPER: CRYPT32.dll -> KERNEL32.dll!0x7c80b55f = GetMod
uleFileNameA
[
50:07b0] :LAUNCHER:WRAPPER: MSASN1.dll -> KERNEL32.dll!0x7c8449fd = SetUnha
ndledExceptionFilter
[
50:07b0] :LAUNCHER:WRAPPER: MSASN1.dll -> KERNEL32.dll!0x7c801d7b = LoadLib
raryA
[
50:07b0] :LAUNCHER:WRAPPER: MSASN1.dll -> KERNEL32.dll!0x7c80ae30 = GetProc
Address
[
50:07b0] :LAUNCHER:WRAPPER: MSASN1.dll -> KERNEL32.dll!0x7c809bd7 = CloseHa
ndle
[
50:07b0] :LAUNCHER:WRAPPER: MSASN1.dll -> KERNEL32.dll!0x7c80ac6e = FreeLib
rary
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c8449fd = SetUnh
andledExceptionFilter
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c80b55f = GetMod
uleFileNameA
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c810c1e = SetFil
ePointer
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c801812 = ReadFi
le
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c8115cc = GetFil
eAttributesA
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c832b6e = GetPri
vateProfileStringA
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c80ee67 = FindCl
ose
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c834ec9 = FindNe
xtFileA
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c813869 = FindFi
rstFileA
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c80ba04 = UnmapV
iewOfFile
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c8094ee = Create
FileMappingA
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c801d53 = LoadLi
braryExA
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c80aedb = LoadLi
braryW
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c80ae30 = GetPro
cAddress
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c801d7b = LoadLi
braryA
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c80ac6e = FreeLi
brary
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c809bd7 = CloseH
andle
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c810b07 = GetFil
eSize
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c801a28 = Create
FileA
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> KERNEL32.dll!0x7c80b731 = GetMod
uleHandleA
[
51:07b0] :LAUNCHER:WRAPPER: WININET.dll -> USER32.dll!0x7e3a7c08 = LoadImag
eA
[
51:07b0] :WRAPPER:LoadLibrary: WININET.dll, handle is 77180000
[
51:07b0] :LAUNCHER:EXECUTABLE:0x004e96a0 -> 0x771d5d0c: FtpOpenFileW!WININE
T.dll
[
51:07b0] :LAUNCHER: EXECUTABLE->WININET.dll Stamped
[
51:07b0] :LAUNCHER:EXECUTABLE dynamic link to 'WINMM.dll'
[
51:07b0] :LAUNCHER: EXECUTABLE->WINMM.dll TimeDateStamp: 00000000, handle 0
0000000
[
51:07b0] :WRAPPER:LoadLibrary: WINMM.dll
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c8449fd = SetUnhan
dledExceptionFilter
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c80b995 = MapViewO
fFile
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c80ba04 = UnmapVie
wOfFile
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c801d7b = LoadLibr
aryA
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c810b07 = GetFileS
ize
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c834e7c = _lclose
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c80b7dc = GetFileA
ttributesW
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c83541e = _llseek
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c8353e6 = _lread
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c801af5 = LoadLibr
aryExW
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c809bd7 = CloseHan
dle
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c80e76c = SearchPa
thW
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c8107f0 = CreateFi
leW
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c80ae30 = GetProcA
ddress
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c80e4cd = GetModul
eHandleW
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c80b55f = GetModul
eFileNameA
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c80aedb = LoadLibr
aryW
[
52:07b0] :LAUNCHER:WRAPPER: WINMM.dll -> KERNEL32.dll!0x7c80ac6e = FreeLibr
ary
[
52:07b0] :WRAPPER:LoadLibrary: WINMM.dll, handle is 76b00000
[
52:07b0] :LAUNCHER:EXECUTABLE:0x004e96a8 -> 0x76b04e4f: timeGetTime!WINMM.d
ll
[
52:07b0] :LAUNCHER: EXECUTABLE->WINMM.dll Stamped
[
52:07b0] :LAUNCHER:EXECUTABLE dynamic link to 'WSOCK32.dll'
[
52:07b0] :LAUNCHER: EXECUTABLE->WSOCK32.dll TimeDateStamp: 00000000, handle
00000000
[
52:07b0] :WRAPPER:LoadLibrary: WSOCK32.dll
[
52:07b0] :LAUNCHER:WRAPPER: WS2_32.dll -> KERNEL32.dll!0x7c80ae30 = GetProc
Address
[
52:07b0] :LAUNCHER:WRAPPER: WS2_32.dll -> KERNEL32.dll!0x7c80b55f = GetModu
leFileNameA
[
53:07b0] :LAUNCHER:WRAPPER: WS2_32.dll -> KERNEL32.dll!0x7c801d7b = LoadLib
raryA
[
53:07b0] :LAUNCHER:WRAPPER: WS2_32.dll -> KERNEL32.dll!0x7c80ac6e = FreeLib
rary
[
53:07b0] :LAUNCHER:WRAPPER: WS2_32.dll -> KERNEL32.dll!0x7c809bd7 = CloseHa
ndle
[
53:07b0] :LAUNCHER:WRAPPER: WS2_32.dll -> KERNEL32.dll!0x7c8449fd = SetUnha
ndledExceptionFilter
[
53:07b0] :LAUNCHER:WRAPPER: WS2HELP.dll -> KERNEL32.dll!0x7c80ac6e = FreeLi
brary
[
53:07b0] :LAUNCHER:WRAPPER: WS2HELP.dll -> KERNEL32.dll!0x7c8449fd = SetUnh
andledExceptionFilter
[
53:07b0] :LAUNCHER:WRAPPER: WS2HELP.dll -> KERNEL32.dll!0x7c80b731 = GetMod
uleHandleA
[
53:07b0] :LAUNCHER:WRAPPER: WS2HELP.dll -> KERNEL32.dll!0x7c809bd7 = CloseH
andle
[
53:07b0] :LAUNCHER:WRAPPER: WS2HELP.dll -> KERNEL32.dll!0x7c801d7b = LoadLi
braryA
[
53:07b0] :LAUNCHER:WRAPPER: WS2HELP.dll -> KERNEL32.dll!0x7c80b55f = GetMod
uleFileNameA
[
53:07b0] :LAUNCHER:WRAPPER: WS2HELP.dll -> KERNEL32.dll!0x7c80ae30 = GetPro
cAddress
[
53:07b0] :WRAPPER:LoadLibrary: WSOCK32.dll, handle is 71a50000
[
53:07b0] :LAUNCHER:EXECUTABLE:0x004e96b0 -> 0x71a52e70: 16!WSOCK32.dll
[
53:07b0] :LAUNCHER: EXECUTABLE->WSOCK32.dll Stamped
[
53:07b0] :LAUNCHER: Goto real entry point 0x4cce80
[
58:07b0] :WRAPPER:LoadLibrary: KERNEL32.DLL, handle is 7c800000
[
58:07b0] :WRAPPER:LoadLibrary: ADVAPI32.dll, handle is 77da0000
[
58:07b0] :WRAPPER:LoadLibrary: COMCTL32.dll, handle is 773a0000
[
59:07b0] :WRAPPER:LoadLibrary: COMDLG32.dll, handle is 76360000
[
59:07b0] :WRAPPER:LoadLibrary: GDI32.dll, handle is 77ef0000
[
59:07b0] :WRAPPER:LoadLibrary: MPR.dll, handle is 71aa0000
[
59:07b0] :WRAPPER:LoadLibrary: ole32.dll, handle is 774b0000
[
59:07b0] :WRAPPER:LoadLibrary: OLEAUT32.dll, handle is 770f0000
[
59:07b0] :WRAPPER:LoadLibrary: PSAPI.DLL, handle is 76bb0000
[
60:07b0] :WRAPPER:LoadLibrary: SHELL32.dll, handle is 7e6a0000
[
60:07b0] :WRAPPER:LoadLibrary: USER32.dll, handle is 7e390000
[
60:07b0] :WRAPPER:LoadLibrary: USERENV.dll, handle is 76630000
[
60:07b0] :WRAPPER:LoadLibrary: VERSION.dll, handle is 77bd0000
[
60:07b0] :WRAPPER:LoadLibrary: WININET.dll, handle is 77180000
[
60:07b0] :WRAPPER:LoadLibrary: WINMM.dll, handle is 76b00000
[
61:07b0] :WRAPPER:LoadLibrary: WSOCK32.dll, handle is 71a50000
[
61:07b0] :WRAPPER:SetUnhandledExceptionFilter: 0x0041f20e
[
61:07b0] :WRAPPER:LoadLibrary: kernel32.dll, handle is 7c800000
[
61:07b0] :WRAPPER:FreeLibrary:7c800000, 'C:\WINDOWS\system32\kernel32.dll'
[
61:07b0] :WRAPPER:LoadLibrary: uxtheme.dll
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c8449fd = SetUnh
andledExceptionFilter
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c80b7dc = GetFil
eAttributesW
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c801812 = ReadFi
le
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c810b07 = GetFil
eSize
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c80ae30 = GetPro
cAddress
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c80ef71 = FindFi
rstFileW
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c80efca = FindNe
xtFileW
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c80ee67 = FindCl
ose
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c809420 = Create
FileMappingW
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c80b995 = MapVie
wOfFile
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c80ba04 = UnmapV
iewOfFile
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c80e4cd = GetMod
uleHandleW
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c80aedb = LoadLi
braryW
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c80ac6e = FreeLi
brary
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c8107f0 = Create
FileW
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c809bd7 = CloseH
andle
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c801af5 = LoadLi
braryExW
[
62:07b0] :LAUNCHER:WRAPPER: uxtheme.dll -> KERNEL32.dll!0x7c810c1e = SetFil
ePointer
[
62:07b0] :WRAPPER:LoadLibrary: uxtheme.dll, handle is 5b150000
[
62:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\uxtheme.dll, handle is 5
b150000
[
63:07b0] :WRAPPER:LoadLibrary: uxtheme.dll, handle is 5b150000
[
63:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\uxtheme.dll, handle is 5
b150000
[
63:07b0] :WRAPPER:FreeLibrary:5b150000, 'C:\WINDOWS\system32\uxtheme.dll'
[
63:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\uxtheme.dll, handle is 5
b150000
[
63:07b0] :WRAPPER:FreeLibrary:5b150000, 'C:\WINDOWS\system32\uxtheme.dll'
[
64:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\uxtheme.dll, handle is 5
b150000
[
64:07b0] :WRAPPER:FreeLibrary:5b150000, 'C:\WINDOWS\system32\uxtheme.dll'
[
64:07b0] :BOX:OpenFile: found 'TRAINER V4.EXE' at 0x6df60, size 5702719(0x5
7043f)
[
64:07b0] :BOX: ReadFile 0x008ff834 <- 0x10000 bytes at 0x0 'TRAINER V4.EXE'
[
69:07b0] :BOX: ReadFile(OK) 0x10000 wasread 0x10000 offs 0x0 'TRAINER V4.EX
E'
[
69:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x10000->0x10000 'T
RAINER V4.EXE'
[
69:07b0] :BOX: SetFilePointer(OK): SET 65516(0xffec)/0x57043f, 0x10000->0xf
fec 'TRAINER V4.EXE'
[
69:07b0] :BOX: ReadFile 0x008ff834 <- 0x10000 bytes at 0xffec 'TRAINER V4.E
XE'
[
74:07b0] :BOX: ReadFile(OK) 0x10000 wasread 0x10000 offs 0xffec 'TRAINER V4
.EXE'
[
74:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x1ffec->0x1ffec 'T
RAINER V4.EXE'
[
74:07b0] :BOX: SetFilePointer(OK): SET 131032(0x1ffd8)/0x57043f, 0x1ffec->0
x1ffd8 'TRAINER V4.EXE'
[
74:07b0] :BOX: ReadFile 0x008ff834 <- 0x10000 bytes at 0x1ffd8 'TRAINER V4.
EXE'
[
79:07b0] :BOX: ReadFile(OK) 0x10000 wasread 0x10000 offs 0x1ffd8 'TRAINER V
4.EXE'
[
80:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x2ffd8->0x2ffd8 'T
RAINER V4.EXE'
[
80:07b0] :BOX: SetFilePointer(OK): SET 196548(0x2ffc4)/0x57043f, 0x2ffd8->0
x2ffc4 'TRAINER V4.EXE'
[
80:07b0] :BOX: ReadFile 0x008ff834 <- 0x10000 bytes at 0x2ffc4 'TRAINER V4.
EXE'
[
85:07b0] :BOX: ReadFile(OK) 0x10000 wasread 0x10000 offs 0x2ffc4 'TRAINER V
4.EXE'
[
85:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x3ffc4->0x3ffc4 'T
RAINER V4.EXE'
[
85:07b0] :BOX: SetFilePointer(OK): SET 262064(0x3ffb0)/0x57043f, 0x3ffc4->0
x3ffb0 'TRAINER V4.EXE'
[
85:07b0] :BOX: ReadFile 0x008ff834 <- 0x10000 bytes at 0x3ffb0 'TRAINER V4.
EXE'
[
90:07b0] :BOX: ReadFile(OK) 0x10000 wasread 0x10000 offs 0x3ffb0 'TRAINER V
4.EXE'
[
90:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x4ffb0->0x4ffb0 'T
RAINER V4.EXE'
[
90:07b0] :BOX: SetFilePointer(OK): SET 327580(0x4ff9c)/0x57043f, 0x4ffb0->0
'TRAINER V4.EXE'
[ 105:07b0] :BOX: SetFilePointer(OK): SET 5702711(0x570437)/0x57043f, 0x5670a1
->0x570437 'TRAINER V4.EXE'
[ 105:07b0] :BOX: ReadFile 0x011a4d18 <- 0x200 bytes at 0x570437 'TRAINER V4.E
XE'
[ 105:07b0] :BOX: ReadFile(OK) 0x200 wasread 0x8 offs 0x570437 'TRAINER V4.EXE
'
[ 105:07b0] :BOX:CloseFile: 'TRAINER V4.EXE'
[ 105:07b0] :WRAPPER:LoadLibrary: ole32.dll, handle is 774b0000
[ 106:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\SHELL32.dll, handle is 7
e6a0000
[ 106:07b0] :WRAPPER:LoadLibrary: SETUPAPI.dll
[ 106:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c80e4cd = GetMo
duleHandleW
[ 106:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c801d7b = LoadL
ibraryA
[ 106:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c8449fd = SetUn
handledExceptionFilter
[ 106:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c80efca = FindN
extFileW
[ 106:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c80e76c = Searc
hPathW
[ 106:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c80b7dc = GetFi
leAttributesW
[ 106:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c809bd7 = Close
Handle
[ 106:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c80ba04 = Unmap
ViewOfFile
[ 106:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c80b995 = MapVi
ewOfFile
[ 106:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c809420 = Creat
eFileMappingW
[ 106:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c810b07 = GetFi
leSize
[ 107:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c8107f0 = Creat
eFileW
[ 107:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c810c1e = SetFi
lePointer
[ 107:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c80ac6e = FreeL
ibrary
[ 107:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c80ae30 = GetPr
ocAddress
[ 107:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c80aedb = LoadL
ibraryW
[ 107:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c80ee67 = FindC
lose
[ 107:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c80ef71 = FindF
irstFileW
[ 107:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c801a28 = Creat
eFileA
[ 107:07b0] :LAUNCHER:WRAPPER: SETUPAPI.dll -> KERNEL32.dll!0x7c801812 = ReadF
ile
[ 107:07b0] :WRAPPER:LoadLibrary: SETUPAPI.dll, handle is 778f0000
[ 107:07b0] :WRAPPER:LoadLibrary: rpcrt4.dll, handle is 77e50000
[ 112:07b0] :WRAPPER:FindFirstFileExW C:\Documents and Settings,
[ 112:07b0] :WRAPPER:LoadLibrary: SHELL32.dll, handle is 7e6a0000
[ 113:07b0] :WRAPPER:LoadLibrary: ole32.dll, handle is 774b0000
[ 113:07b0] :WRAPPER:FindFirstFileExW C:\Documents and Settings\CABINA9,
[ 113:07b0] :WRAPPER:FindFirstFileExW C:\Documents and Settings\CABINA9\Mis do
cumentos,
XE'
[ 458:07b0] :BOX: ReadFile(OK) 0x10000 wasread 0x10000 offs 0xffec 'TRAINER V4
.EXE'
[ 458:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x1ffec->0x1ffec 'T
RAINER V4.EXE'
[ 458:07b0] :BOX: SetFilePointer(OK): SET 131032(0x1ffd8)/0x57043f, 0x1ffec->0
x1ffd8 'TRAINER V4.EXE'
[ 458:07b0] :BOX: ReadFile 0x008feafc <- 0x10000 bytes at 0x1ffd8 'TRAINER V4.
EXE'
[ 463:07b0] :BOX: ReadFile(OK) 0x10000 wasread 0x10000 offs 0x1ffd8 'TRAINER V
4.EXE'
[ 463:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x2ffd8->0x2ffd8 'T
RAINER V4.EXE'
[ 463:07b0] :BOX: SetFilePointer(OK): SET 196548(0x2ffc4)/0x57043f, 0x2ffd8->0
x2ffc4 'TRAINER V4.EXE'
[ 463:07b0] :BOX: ReadFile 0x008feafc <- 0x10000 bytes at 0x2ffc4 'TRAINER V4.
EXE'
[ 468:07b0] :BOX: ReadFile(OK) 0x10000 wasread 0x10000 offs 0x2ffc4 'TRAINER V
4.EXE'
[ 468:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x3ffc4->0x3ffc4 'T
RAINER V4.EXE'
[ 468:07b0] :BOX: SetFilePointer(OK): SET 262064(0x3ffb0)/0x57043f, 0x3ffc4->0
x3ffb0 'TRAINER V4.EXE'
[ 468:07b0] :BOX: ReadFile 0x008feafc <- 0x10000 bytes at 0x3ffb0 'TRAINER V4.
EXE'
[ 473:07b0] :BOX: ReadFile(OK) 0x10000 wasread 0x10000 offs 0x3ffb0 'TRAINER V
4.EXE'
[ 473:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x4ffb0->0x4ffb0 'T
RAINER V4.EXE'
[ 473:07b0] :BOX: SetFilePointer(OK): SET 327580(0x4ff9c)/0x57043f, 0x4ffb0->0
x4ff9c 'TRAINER V4.EXE'
[ 473:07b0] :BOX: ReadFile 0x008feafc <- 0x10000 bytes at 0x4ff9c 'TRAINER V4.
EXE'
[ 477:07b0] :BOX: ReadFile(OK) 0x10000 wasread 0x10000 offs 0x4ff9c 'TRAINER V
4.EXE'
[ 478:07b0] :BOX: SetFilePointer(OK): SET 385044(0x5e014)/0x57043f, 0x5ff9c->0
x5e014 'TRAINER V4.EXE'
[ 478:07b0] :BOX: ReadFile 0x0201d8a0 <- 0x1000 bytes at 0x5e014 'TRAINER V4.E
XE'
[ 478:07b0] :BOX: ReadFile(OK) 0x1000 wasread 0x1000 offs 0x5e014 'TRAINER V4.
EXE'
[ 478:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x5f014->0x5f014 'T
RAINER V4.EXE'
[ 478:07b0] :WRAPPER:FindFirstFileW C:\DOCUME~1\CABINA9\CONFIG~1\Temp\vscfnjs
[ 478:07b0] :BOX: SetFilePointer(OK): SET 385064(0x5e028)/0x57043f, 0x5f014->0
x5e028 'TRAINER V4.EXE'
[ 478:07b0] :BOX: ReadFile 0x0201d8a0 <- 0x200 bytes at 0x5e028 'TRAINER V4.EX
E'
[ 478:07b0] :BOX: ReadFile(OK) 0x200 wasread 0x200 offs 0x5e028 'TRAINER V4.EX
E'
[ 478:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x5e228->0x5e228 'T
RAINER V4.EXE'
[ 478:07b0] :BOX: SetFilePointer(OK): SET 385207(0x5e0b7)/0x57043f, 0x5e228->0
x5e0b7 'TRAINER V4.EXE'
[ 478:07b0] :BOX: ReadFile 0x0201d8a0 <- 0x200 bytes at 0x5e0b7 'TRAINER V4.EX
E'
[ 478:07b0] :BOX: ReadFile(OK) 0x200 wasread 0x200 offs 0x5e0b7 'TRAINER V4.EX
E'
[ 478:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x5e2b7->0x5e2b7 'T
RAINER V4.EXE'
irstFileW
[ 741:07b0] :LAUNCHER:WRAPPER:
ibraryA
[ 741:07b0] :LAUNCHER:WRAPPER:
handledExceptionFilter
[ 741:07b0] :LAUNCHER:WRAPPER:
lePointer
[ 741:07b0] :LAUNCHER:WRAPPER:
raryW
[ 741:07b0] :LAUNCHER:WRAPPER:
Address
[ 741:07b0] :LAUNCHER:WRAPPER:
raryA
[ 741:07b0] :LAUNCHER:WRAPPER:
ndle
[ 741:07b0] :LAUNCHER:WRAPPER:
ndledExceptionFilter
[ 741:07b0] :LAUNCHER:WRAPPER:
rary
[ 741:07b0] :LAUNCHER:WRAPPER:
ibraryW
[ 741:07b0] :LAUNCHER:WRAPPER:
leAttributesW
[ 741:07b0] :LAUNCHER:WRAPPER:
lePointer
[ 741:07b0] :LAUNCHER:WRAPPER:
handledExceptionFilter
[ 741:07b0] :LAUNCHER:WRAPPER:
ibraryA
[ 741:07b0] :LAUNCHER:WRAPPER:
ibrary
[ 741:07b0] :LAUNCHER:WRAPPER:
ocAddress
[ 741:07b0] :LAUNCHER:WRAPPER:
eFileW
[ 741:07b0] :LAUNCHER:WRAPPER:
Handle
[ 742:07b0] :LAUNCHER:WRAPPER:
ile
[ 742:07b0] :LAUNCHER:WRAPPER:
duleFileNameA
[ 742:07b0] :LAUNCHER:WRAPPER:
Address
[ 742:07b0] :LAUNCHER:WRAPPER:
raryW
[ 742:07b0] :LAUNCHER:WRAPPER:
leHandleW
[ 742:07b0] :LAUNCHER:WRAPPER:
ndle
[ 742:07b0] :LAUNCHER:WRAPPER:
rary
[ 742:07b0] :LAUNCHER:WRAPPER:
tFileW
[ 742:07b0] :LAUNCHER:WRAPPER:
stFileW
[ 742:07b0] :LAUNCHER:WRAPPER:
ndledExceptionFilter
[ 742:07b0] :LAUNCHER:WRAPPER:
andledExceptionFilter
[ 742:07b0] :LAUNCHER:WRAPPER:
andle
[ 742:07b0] :LAUNCHER:WRAPPER: rtutils.dll -> KERNEL32.dll!0x7c810c1e = SetFil
ePointer
[ 742:07b0] :LAUNCHER:WRAPPER: rtutils.dll -> KERNEL32.dll!0x7c801a28 = Create
FileA
[ 742:07b0] :LAUNCHER:WRAPPER: rtutils.dll -> KERNEL32.dll!0x7c810b07 = GetFil
eSize
[ 742:07b0] :LAUNCHER:WRAPPER: rtutils.dll -> KERNEL32.dll!0x7c8107f0 = Create
FileW
[ 742:07b0] :LAUNCHER:WRAPPER: rtutils.dll -> KERNEL32.dll!0x7c801d7b = LoadLi
braryA
[ 742:07b0] :LAUNCHER:WRAPPER: rtutils.dll -> KERNEL32.dll!0x7c80aedb = LoadLi
braryW
[ 742:07b0] :LAUNCHER:WRAPPER: rtutils.dll -> KERNEL32.dll!0x7c80b55f = GetMod
uleFileNameA
[ 742:07b0] :LAUNCHER:WRAPPER: rtutils.dll -> KERNEL32.dll!0x7c80ac6e = FreeLi
brary
[ 742:07b0] :WRAPPER:LoadLibrary: RASAPI32.DLL, handle is 76ea0000
[ 742:07b0] :WRAPPER:LoadLibrary: RTUTILS.DLL, handle is 76e40000
[ 743:07b0] :WRAPPER:LoadLibrary: RASMAN.DLL, handle is 76e50000
[ 743:07b0] :WRAPPER:LoadLibrary: secur32.dll, handle is 77fc0000
[ 744:07b0] :WRAPPER: Search msapsspc.dll in NULL
[ 744:07b0] :WRAPPER: Search schannel.dll in NULL
[ 744:07b0] :WRAPPER: Search digest.dll in NULL
[ 744:07b0] :WRAPPER: Search msnsspc.dll in NULL
[ 744:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\msv1_0.dll
[ 746:07b0] :LAUNCHER:WRAPPER: iphlpapi.dll -> KERNEL32.dll!0x7c8449fd = SetUn
handledExceptionFilter
[ 746:07b0] :LAUNCHER:WRAPPER: iphlpapi.dll -> KERNEL32.dll!0x7c80ac6e = FreeL
ibrary
[ 746:07b0] :LAUNCHER:WRAPPER: iphlpapi.dll -> KERNEL32.dll!0x7c8107f0 = Creat
eFileW
[ 746:07b0] :LAUNCHER:WRAPPER: iphlpapi.dll -> KERNEL32.dll!0x7c801a28 = Creat
eFileA
[ 746:07b0] :LAUNCHER:WRAPPER: iphlpapi.dll -> KERNEL32.dll!0x7c809bd7 = Close
Handle
[ 746:07b0] :LAUNCHER:WRAPPER: iphlpapi.dll -> KERNEL32.dll!0x7c80ae30 = GetPr
ocAddress
[ 746:07b0] :LAUNCHER:WRAPPER: iphlpapi.dll -> KERNEL32.dll!0x7c801d7b = LoadL
ibraryA
[ 746:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\msv1_0.dll -> KERNEL32.dll!
0x7c8449fd = SetUnhandledExceptionFilter
[ 746:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\msv1_0.dll -> KERNEL32.dll!
0x7c80e4cd = GetModuleHandleW
[ 746:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\msv1_0.dll -> KERNEL32.dll!
0x7c801d7b = LoadLibraryA
[ 746:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\msv1_0.dll -> KERNEL32.dll!
0x7c80aedb = LoadLibraryW
[ 746:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\msv1_0.dll -> KERNEL32.dll!
0x7c80ae30 = GetProcAddress
[ 746:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\msv1_0.dll -> KERNEL32.dll!
0x7c80ac6e = FreeLibrary
[ 746:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\msv1_0.dll -> KERNEL32.dll!
0x7c8107f0 = CreateFileW
[ 746:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\msv1_0.dll -> KERNEL32.dll!
0x7c810c1e = SetFilePointer
[ 746:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\msv1_0.dll -> KERNEL32.dll!
0x7c809bd7 = CloseHandle
[ 746:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\msv1_0.dll, handle is 77
c40000
e
[ 769:07b0] :LAUNCHER:WRAPPER: urlmon.dll -> KERNEL32.dll!0x7c810b07 = GetFile
Size
[ 769:07b0] :LAUNCHER:WRAPPER: urlmon.dll -> KERNEL32.dll!0x7c80ee67 = FindClo
se
[ 769:07b0] :LAUNCHER:WRAPPER: urlmon.dll -> KERNEL32.dll!0x7c809bd7 = CloseHa
ndle
[ 769:07b0] :LAUNCHER:WRAPPER: urlmon.dll -> KERNEL32.dll!0x7c801d53 = LoadLib
raryExA
[ 769:07b0] :LAUNCHER:WRAPPER: urlmon.dll -> KERNEL32.dll!0x7c80b55f = GetModu
leFileNameA
[ 769:07b0] :LAUNCHER:WRAPPER: urlmon.dll -> KERNEL32.dll!0x7c801d7b = LoadLib
raryA
[ 769:07b0] :LAUNCHER:WRAPPER: urlmon.dll -> KERNEL32.dll!0x7c80b731 = GetModu
leHandleA
[ 769:07b0] :LAUNCHER:WRAPPER: urlmon.dll -> KERNEL32.dll!0x7c80ae30 = GetProc
Address
[ 769:07b0] :LAUNCHER:WRAPPER: urlmon.dll -> KERNEL32.dll!0x7c80ac6e = FreeLib
rary
[ 769:07b0] :LAUNCHER:WRAPPER: urlmon.dll -> KERNEL32.dll!0x7c80aedb = LoadLib
raryW
[ 769:07b0] :LAUNCHER:WRAPPER: urlmon.dll -> KERNEL32.dll!0x7c8449fd = SetUnha
ndledExceptionFilter
[ 769:07b0] :LAUNCHER:WRAPPER: urlmon.dll -> ole32.dll!0x774d057e = CoCreateIn
stance
[ 769:07b0] :LAUNCHER:WRAPPER: urlmon.dll -> ole32.dll!0x774e56c5 = CoGetClass
Object
[ 769:07b0] :WRAPPER:LoadLibrary: urlmon.dll, handle is 7df20000
[ 771:07b0] :WRAPPER:LoadLibrary: WININET.dll, handle is 77180000
[ 771:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\System32\mswsock.dll
[ 771:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\System32\mswsock.dll -> KERNEL32.dll
!0x7c801812 = ReadFile
[ 772:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\System32\mswsock.dll -> KERNEL32.dll
!0x7c801a28 = CreateFileA
[ 772:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\System32\mswsock.dll -> KERNEL32.dll
!0x7c8449fd = SetUnhandledExceptionFilter
[ 772:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\System32\mswsock.dll -> KERNEL32.dll
!0x7c8094ee = CreateFileMappingA
[ 772:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\System32\mswsock.dll -> KERNEL32.dll
!0x7c80b995 = MapViewOfFile
[ 772:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\System32\mswsock.dll -> KERNEL32.dll
!0x7c80ba04 = UnmapViewOfFile
[ 772:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\System32\mswsock.dll -> KERNEL32.dll
!0x7c80ae30 = GetProcAddress
[ 772:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\System32\mswsock.dll -> KERNEL32.dll
!0x7c80ac6e = FreeLibrary
[ 772:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\System32\mswsock.dll -> KERNEL32.dll
!0x7c801d7b = LoadLibraryA
[ 772:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\System32\mswsock.dll -> KERNEL32.dll
!0x7c80b55f = GetModuleFileNameA
[ 772:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\System32\mswsock.dll -> KERNEL32.dll
!0x7c80aedb = LoadLibraryW
[ 772:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\System32\mswsock.dll -> KERNEL32.dll
!0x7c809bd7 = CloseHandle
[ 772:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\System32\mswsock.dll, handle is 7
19d0000
[ 772:07b0] :WRAPPER:LoadLibrary: DNSAPI.dll
[ 773:07b0] :LAUNCHER:WRAPPER: DNSAPI.dll -> KERNEL32.dll!0x7c801af5 = LoadLib
raryExW
[ 773:07b0] :LAUNCHER:WRAPPER: DNSAPI.dll -> KERNEL32.dll!0x7c809bd7 = CloseHa
ndle
[ 773:07b0] :LAUNCHER:WRAPPER: DNSAPI.dll -> KERNEL32.dll!0x7c80b55f = GetModu
leFileNameA
[ 773:07b0] :LAUNCHER:WRAPPER: DNSAPI.dll -> KERNEL32.dll!0x7c80b731 = GetModu
leHandleA
[ 773:07b0] :LAUNCHER:WRAPPER: DNSAPI.dll -> KERNEL32.dll!0x7c80ae30 = GetProc
Address
[ 773:07b0] :LAUNCHER:WRAPPER: DNSAPI.dll -> KERNEL32.dll!0x7c80ac6e = FreeLib
rary
[ 773:07b0] :LAUNCHER:WRAPPER: DNSAPI.dll -> KERNEL32.dll!0x7c801d7b = LoadLib
raryA
[ 773:07b0] :LAUNCHER:WRAPPER: DNSAPI.dll -> KERNEL32.dll!0x7c8449fd = SetUnha
ndledExceptionFilter
[ 773:07b0] :WRAPPER:LoadLibrary: DNSAPI.dll, handle is 76ee0000
[ 773:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\System32\winrnr.dll
[ 774:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\System32\winrnr.dll -> KERNEL32.dll!
0x7c8449fd = SetUnhandledExceptionFilter
[ 774:07b0] :LAUNCHER:WRAPPER: WLDAP32.dll -> KERNEL32.dll!0x7c8449fd = SetUnh
andledExceptionFilter
[ 774:07b0] :LAUNCHER:WRAPPER: WLDAP32.dll -> KERNEL32.dll!0x7c80ac6e = FreeLi
brary
[ 774:07b0] :LAUNCHER:WRAPPER: WLDAP32.dll -> KERNEL32.dll!0x7c80ae30 = GetPro
cAddress
[ 774:07b0] :LAUNCHER:WRAPPER: WLDAP32.dll -> KERNEL32.dll!0x7c801d7b = LoadLi
braryA
[ 774:07b0] :LAUNCHER:WRAPPER: WLDAP32.dll -> KERNEL32.dll!0x7c809bd7 = CloseH
andle
[ 774:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\System32\winrnr.dll, handle is 76
f70000
[ 774:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\System32\mswsock.dll, handle is 7
19d0000
[ 775:07b0] :WRAPPER:LoadLibrary: rasadhlp.dll
[ 775:07b0] :LAUNCHER:WRAPPER: rasadhlp.dll -> KERNEL32.dll!0x7c8449fd = SetUn
handledExceptionFilter
[ 775:07b0] :LAUNCHER:WRAPPER: rasadhlp.dll -> KERNEL32.dll!0x7c809bd7 = Close
Handle
[ 775:07b0] :LAUNCHER:WRAPPER: rasadhlp.dll -> KERNEL32.dll!0x7c80aedb = LoadL
ibraryW
[ 775:07b0] :LAUNCHER:WRAPPER: rasadhlp.dll -> KERNEL32.dll!0x7c80ac6e = FreeL
ibrary
[ 775:07b0] :LAUNCHER:WRAPPER: rasadhlp.dll -> KERNEL32.dll!0x7c80ae30 = GetPr
ocAddress
[ 775:07b0] :WRAPPER:LoadLibrary: rasadhlp.dll, handle is 76f80000
[ 775:07b0] :WRAPPER:LoadLibrary: iphlpapi.dll, handle is 76d20000
[ 776:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\mswsock.dll, handle is 7
19d0000
[ 776:07b0] :WRAPPER:LoadLibrary: hnetcfg.dll
[ 776:07b0] :LAUNCHER:WRAPPER: hnetcfg.dll -> KERNEL32.dll!0x7c80e4cd = GetMod
uleHandleW
[ 776:07b0] :LAUNCHER:WRAPPER: hnetcfg.dll -> KERNEL32.dll!0x7c801d7b = LoadLi
braryA
[ 776:07b0] :LAUNCHER:WRAPPER: hnetcfg.dll -> KERNEL32.dll!0x7c8449fd = SetUnh
andledExceptionFilter
[ 776:07b0] :LAUNCHER:WRAPPER: hnetcfg.dll -> KERNEL32.dll!0x7c8107f0 = Create
FileW
[ 776:07b0] :LAUNCHER:WRAPPER: hnetcfg.dll -> KERNEL32.dll!0x7c80ac6e = FreeLi
brary
[ 776:07b0] :LAUNCHER:WRAPPER: hnetcfg.dll -> KERNEL32.dll!0x7c80ae30 = GetPro
cAddress
[ 776:07b0] :LAUNCHER:WRAPPER: hnetcfg.dll -> KERNEL32.dll!0x7c80aedb = LoadLi
braryW
[ 776:07b0] :LAUNCHER:WRAPPER: hnetcfg.dll -> KERNEL32.dll!0x7c801af5 = LoadLi
braryExW
[ 776:07b0] :LAUNCHER:WRAPPER: hnetcfg.dll -> KERNEL32.dll!0x7c809bd7 = CloseH
andle
[ 776:07b0] :WRAPPER:LoadLibrary: hnetcfg.dll, handle is 66740000
[ 776:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\System32\mswsock.dll, handle is 7
19d0000
[ 776:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\System32\wshtcpip.dll
[ 777:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\System32\wshtcpip.dll -> KERNEL32.dl
l!0x7c8449fd = SetUnhandledExceptionFilter
[ 777:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\System32\wshtcpip.dll, handle is
71a10000
[ 1501:07b0] :BOX:OpenFile: found 'TRAINER V4.EXE' at 0x6df60, size 5702719(0x5
7043f)
[ 1501:07b0] :BOX: ReadFile 0x008fecb4 <- 0x10000 bytes at 0x0 'TRAINER V4.EXE'
[ 1508:07b0] :BOX: ReadFile(OK) 0x10000 wasread 0x10000 offs 0x0 'TRAINER V4.EX
E'
[ 1509:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x10000->0x10000 'T
RAINER V4.EXE'
[ 1509:07b0] :BOX: SetFilePointer(OK): SET 65516(0xffec)/0x57043f, 0x10000->0xf
fec 'TRAINER V4.EXE'
[ 1509:07b0] :BOX: ReadFile 0x008fecb4 <- 0x10000 bytes at 0xffec 'TRAINER V4.E
XE'
[ 1514:07b0] :BOX: ReadFile(OK) 0x10000 wasread 0x10000 offs 0xffec 'TRAINER V4
.EXE'
[ 1515:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x1ffec->0x1ffec 'T
RAINER V4.EXE'
[ 1515:07b0] :BOX: SetFilePointer(OK): SET 131032(0x1ffd8)/0x57043f, 0x1ffec->0
x1ffd8 'TRAINER V4.EXE'
[ 1515:07b0] :BOX: ReadFile 0x008fecb4 <- 0x10000 bytes at 0x1ffd8 'TRAINER V4.
EXE'
[ 1520:07b0] :BOX: ReadFile(OK) 0x10000 wasread 0x10000 offs 0x1ffd8 'TRAINER V
4.EXE'
[ 1520:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x2ffd8->0x2ffd8 'T
RAINER V4.EXE'
[ 1520:07b0] :BOX: SetFilePointer(OK): SET 196548(0x2ffc4)/0x57043f, 0x2ffd8->0
x2ffc4 'TRAINER V4.EXE'
[ 1520:07b0] :BOX: ReadFile 0x008fecb4 <- 0x10000 bytes at 0x2ffc4 'TRAINER V4.
EXE'
[ 1528:07b0] :BOX: ReadFile(OK) 0x10000 wasread 0x10000 offs 0x2ffc4 'TRAINER V
4.EXE'
[ 1528:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x3ffc4->0x3ffc4 'T
RAINER V4.EXE'
[ 1528:07b0] :BOX: SetFilePointer(OK): SET 262064(0x3ffb0)/0x57043f, 0x3ffc4->0
x3ffb0 'TRAINER V4.EXE'
[ 1528:07b0] :BOX: ReadFile 0x008fecb4 <- 0x10000 bytes at 0x3ffb0 'TRAINER V4.
EXE'
[ 1533:07b0] :BOX: ReadFile(OK) 0x10000 wasread 0x10000 offs 0x3ffb0 'TRAINER V
4.EXE'
[ 1533:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x4ffb0->0x4ffb0 'T
RAINER V4.EXE'
[ 1533:07b0] :BOX: SetFilePointer(OK): SET 327580(0x4ff9c)/0x57043f, 0x4ffb0->0
x4ff9c 'TRAINER V4.EXE'
[ 1533:07b0] :BOX: ReadFile 0x008fecb4 <- 0x10000 bytes at 0x4ff9c 'TRAINER V4.
EXE'
[ 1544:07b0] :BOX: ReadFile(OK) 0x10000 wasread 0x10000 offs 0x4ff9c 'TRAINER V
4.EXE'
[ 1544:07b0] :BOX: SetFilePointer(OK): SET 385044(0x5e014)/0x57043f, 0x5ff9c->0
x5e014 'TRAINER V4.EXE'
[ 1544:07b0] :BOX: ReadFile 0x022d1ee8 <- 0x1000 bytes at 0x5e014 'TRAINER V4.E
XE'
[ 1544:07b0] :BOX: ReadFile(OK) 0x1000 wasread 0x1000 offs 0x5e014 'TRAINER V4.
EXE'
[ 1544:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x5f014->0x5f014 'T
RAINER V4.EXE'
[ 1544:07b0] :BOX: SetFilePointer(OK): SET 385064(0x5e028)/0x57043f, 0x5f014->0
x5e028 'TRAINER V4.EXE'
[ 1544:07b0] :BOX: ReadFile 0x022d1ee8 <- 0x200 bytes at 0x5e028 'TRAINER V4.EX
E'
[ 1544:07b0] :BOX: ReadFile(OK) 0x200 wasread 0x200 offs 0x5e028 'TRAINER V4.EX
E'
[ 1544:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x5e228->0x5e228 'T
RAINER V4.EXE'
[ 1544:07b0] :BOX: SetFilePointer(OK): SET 385207(0x5e0b7)/0x57043f, 0x5e228->0
x5e0b7 'TRAINER V4.EXE'
[ 1544:07b0] :BOX: ReadFile 0x022d1ee8 <- 0x200 bytes at 0x5e0b7 'TRAINER V4.EX
E'
[ 1544:07b0] :BOX: ReadFile(OK) 0x200 wasread 0x200 offs 0x5e0b7 'TRAINER V4.EX
E'
[ 1544:07b0] :BOX: SetFilePointer(OK): CUR 0(0x0)/0x57043f, 0x5e2b7->0x5e2b7 'T
RAINER V4.EXE'
[ 1544:07b0] :BOX: SetFilePointer(OK): SET 774007(0xbcf77)/0x57043f, 0x5e2b7->0
xbcf77 'TRAINER V4.EXE'
[ 1544:07b0] :BOX: ReadFile 0x022d1ee8 <- 0x200 bytes at 0xbcf77 'TRAINER V4.EX
E'
[ 1550:07b0] :BOX: ReadFile(OK) 0x200 wasread 0x200 offs 0xbcf77 'TRAINER V4.EX
E'
[ 1550:07b0] :BOX: ReadFile 0x008ff03b <- 0xf000 bytes at 0xbd177 'TRAINER V4.E
XE'
[ 1555:07b0] :BOX: ReadFile(OK) 0xf000 wasread 0xf000 offs 0xbd177 'TRAINER V4.
EXE'
[ 1555:07b0] :BOX: ReadFile 0x022d1ee8 <- 0x1000 bytes at 0xcc177 'TRAINER V4.E
XE'
[ 1555:07b0] :BOX: ReadFile(OK) 0x1000 wasread 0x1000 offs 0xcc177 'TRAINER V4.
EXE'
[ 1559:07b0] :BOX: ReadFile 0x008ff03b <- 0xf000 bytes at 0xcd177 'TRAINER V4.E
XE'
[ 1565:07b0] :BOX: ReadFile(OK) 0xf000 wasread 0xf000 offs 0xcd177 'TRAINER V4.
EXE'
[ 1565:07b0] :BOX: ReadFile 0x022d1ee8 <- 0x1000 bytes at 0xdc177 'TRAINER V4.E
XE'
[ 1565:07b0] :BOX: ReadFile(OK) 0x1000 wasread 0x1000 offs 0xdc177 'TRAINER V4.
EXE'
[ 1569:07b0] :BOX: ReadFile 0x008ff03b <- 0xf000 bytes at 0xdd177 'TRAINER V4.E
XE'
[ 1574:07b0] :BOX: ReadFile(OK) 0xf000 wasread 0xf000 offs 0xdd177 'TRAINER V4.
EXE'
[ 1574:07b0] :BOX: ReadFile 0x022d1ee8 <- 0x1000 bytes at 0xec177 'TRAINER V4.E
XE'
[ 1574:07b0] :BOX: ReadFile(OK) 0x1000 wasread 0x1000 offs 0xec177 'TRAINER V4.
EXE'
[ 1578:07b0] :BOX: ReadFile 0x008ff03b <- 0xf000 bytes at 0xed177 'TRAINER V4.E
XE'
[ 1583:07b0] :BOX: ReadFile(OK) 0xf000 wasread 0xf000 offs 0xed177 'TRAINER V4.
EXE'
[ 1583:07b0] :BOX: ReadFile 0x022d1ee8 <- 0x1000 bytes at 0xfc177 'TRAINER V4.E
XE'
[ 1583:07b0] :BOX: ReadFile(OK) 0x1000 wasread 0x1000 offs 0xfc177 'TRAINER V4.
EXE'
[ 1587:07b0]
XE'
[ 1592:07b0]
EXE'
[ 1592:07b0]
EXE'
[ 1592:07b0]
.EXE'
[ 1596:07b0]
EXE'
[ 1601:07b0]
.EXE'
[ 1601:07b0]
EXE'
[ 1601:07b0]
.EXE'
[ 1605:07b0]
EXE'
[ 1610:07b0]
.EXE'
[ 1610:07b0]
EXE'
[ 1610:07b0]
.EXE'
[ 1614:07b0]
EXE'
[ 1619:07b0]
.EXE'
[ 1619:07b0]
EXE'
[ 1619:07b0]
.EXE'
[ 1623:07b0]
EXE'
[ 1629:07b0]
.EXE'
[ 1629:07b0]
EXE'
[ 1629:07b0]
.EXE'
[ 1633:07b0]
EXE'
[ 1638:07b0]
.EXE'
[ 1638:07b0]
EXE'
[ 1638:07b0]
.EXE'
[ 1642:07b0]
EXE'
[ 1647:07b0]
.EXE'
[ 1647:07b0]
EXE'
[ 1647:07b0]
.EXE'
[ 1651:07b0]
EXE'
[ 1656:07b0]
.EXE'
[ 1656:07b0]
EXE'
[ 1656:07b0]
.EXE'
[ 1660:07b0]
EXE'
[ 1665:07b0]
.EXE'
[ 1665:07b0]
EXE'
[ 1665:07b0]
.EXE'
[ 1669:07b0]
EXE'
[ 1674:07b0]
.EXE'
[ 1674:07b0]
EXE'
[ 1674:07b0]
.EXE'
[ 1678:07b0]
EXE'
[ 1683:07b0]
.EXE'
[ 1683:07b0]
EXE'
[ 1683:07b0]
.EXE'
[ 1687:07b0]
EXE'
[ 1692:07b0]
.EXE'
[ 1692:07b0]
EXE'
[ 1692:07b0]
.EXE'
[ 1696:07b0]
EXE'
[ 1701:07b0]
.EXE'
[ 1701:07b0]
EXE'
[ 1701:07b0]
.EXE'
[ 1705:07b0]
EXE'
[ 1710:07b0]
.EXE'
[ 1710:07b0]
EXE'
[ 1710:07b0]
.EXE'
[ 1714:07b0]
EXE'
[ 1719:07b0]
.EXE'
[ 1719:07b0]
EXE'
[ 1719:07b0]
.EXE'
[ 1723:07b0]
EXE'
[ 1728:07b0]
.EXE'
[ 1728:07b0]
EXE'
[ 1728:07b0]
.EXE'
[ 1732:07b0]
EXE'
[ 1737:07b0]
.EXE'
[ 1737:07b0]
EXE'
[ 1737:07b0]
.EXE'
[ 1741:07b0]
EXE'
[ 1746:07b0]
.EXE'
[ 1746:07b0]
EXE'
[ 1746:07b0]
.EXE'
[ 1750:07b0]
EXE'
[ 1755:07b0]
.EXE'
[ 1755:07b0]
EXE'
[ 1755:07b0]
.EXE'
[ 1759:07b0]
EXE'
[ 1764:07b0]
.EXE'
[ 1764:07b0]
EXE'
[ 1764:07b0]
.EXE'
[ 1768:07b0]
EXE'
[ 1773:07b0]
.EXE'
[ 1773:07b0]
EXE'
[ 1773:07b0]
.EXE'
[ 1777:07b0]
EXE'
[ 1782:07b0]
.EXE'
[ 1782:07b0]
EXE'
[ 1782:07b0]
.EXE'
[ 1786:07b0]
EXE'
[ 1791:07b0]
.EXE'
[ 1791:07b0]
EXE'
[ 1791:07b0]
.EXE'
[ 1794:07b0]
EXE'
[ 1800:07b0]
.EXE'
[ 1800:07b0]
EXE'
[ 1800:07b0]
.EXE'
[ 1804:07b0]
EXE'
[ 1809:07b0]
.EXE'
[ 1809:07b0]
EXE'
[ 1809:07b0]
.EXE'
[ 1813:07b0]
EXE'
[ 1818:07b0]
.EXE'
[ 1818:07b0]
EXE'
[ 1818:07b0]
.EXE'
[ 1822:07b0]
EXE'
[ 1827:07b0]
.EXE'
[ 1827:07b0]
EXE'
[ 1827:07b0]
.EXE'
[ 1831:07b0]
EXE'
[ 1836:07b0]
.EXE'
[ 1836:07b0]
EXE'
[ 1836:07b0]
.EXE'
[ 1840:07b0]
EXE'
[ 1845:07b0]
.EXE'
[ 1845:07b0]
EXE'
[ 1845:07b0]
.EXE'
[ 1849:07b0]
EXE'
[ 1854:07b0]
.EXE'
[ 1854:07b0]
EXE'
[ 1854:07b0]
.EXE'
[ 1858:07b0]
EXE'
[ 1863:07b0]
.EXE'
[ 1863:07b0]
EXE'
[ 1863:07b0]
.EXE'
[ 1867:07b0]
EXE'
[ 1872:07b0]
.EXE'
[ 1872:07b0]
EXE'
[ 1872:07b0]
.EXE'
[ 1876:07b0]
EXE'
[ 1881:07b0]
.EXE'
[ 1881:07b0]
EXE'
[ 1881:07b0]
.EXE'
[ 1884:07b0]
EXE'
[ 1889:07b0]
.EXE'
[ 1889:07b0]
EXE'
[ 1889:07b0]
.EXE'
[ 1893:07b0]
EXE'
[ 1898:07b0]
.EXE'
[ 1898:07b0]
EXE'
[ 1898:07b0]
.EXE'
[ 1902:07b0]
EXE'
[ 1907:07b0]
.EXE'
[ 1907:07b0]
EXE'
[ 1907:07b0]
.EXE'
[ 1911:07b0]
EXE'
[ 1916:07b0]
.EXE'
[ 1916:07b0]
EXE'
[ 1916:07b0]
.EXE'
[ 1920:07b0]
EXE'
[ 1925:07b0]
.EXE'
[ 1925:07b0]
EXE'
[ 1925:07b0]
.EXE'
[ 1929:07b0]
EXE'
[ 1934:07b0]
.EXE'
[ 1934:07b0]
EXE'
[ 1934:07b0]
.EXE'
[ 1938:07b0]
EXE'
[ 1943:07b0]
.EXE'
[ 1943:07b0]
EXE'
[ 1943:07b0]
.EXE'
[ 1947:07b0]
EXE'
[ 1952:07b0]
.EXE'
[ 1952:07b0]
EXE'
[ 1952:07b0]
.EXE'
[ 1956:07b0]
EXE'
[ 1961:07b0]
.EXE'
[ 1961:07b0]
EXE'
[ 1961:07b0]
.EXE'
[ 1965:07b0]
EXE'
[ 1970:07b0]
.EXE'
[ 1970:07b0]
EXE'
[ 1970:07b0]
.EXE'
[ 1974:07b0]
EXE'
[ 1979:07b0]
.EXE'
[ 1979:07b0]
EXE'
[ 1979:07b0]
.EXE'
[ 1983:07b0]
EXE'
[ 1988:07b0]
.EXE'
[ 1988:07b0]
EXE'
[ 1988:07b0]
.EXE'
[ 1992:07b0]
EXE'
[ 1998:07b0]
.EXE'
[ 1998:07b0]
EXE'
[ 1998:07b0]
.EXE'
[ 2001:07b0]
EXE'
[ 2007:07b0]
.EXE'
[ 2007:07b0]
EXE'
[ 2007:07b0]
.EXE'
[ 2011:07b0]
EXE'
[ 2016:07b0]
.EXE'
[ 2016:07b0]
EXE'
[ 2016:07b0]
.EXE'
[ 2020:07b0]
EXE'
[ 2025:07b0]
.EXE'
[ 2025:07b0]
EXE'
[ 2025:07b0]
.EXE'
[ 2029:07b0]
EXE'
[ 2034:07b0]
.EXE'
[ 2034:07b0]
EXE'
[ 2034:07b0]
.EXE'
[ 2038:07b0]
EXE'
[ 2043:07b0]
.EXE'
[ 2043:07b0]
EXE'
[ 2043:07b0]
.EXE'
[ 2047:07b0]
EXE'
[ 2051:07b0]
.EXE'
[ 2052:07b0]
EXE'
[ 2052:07b0]
.EXE'
[ 2055:07b0]
EXE'
[ 2061:07b0]
.EXE'
[ 2061:07b0]
EXE'
[ 2061:07b0]
.EXE'
[ 2064:07b0]
EXE'
[ 2069:07b0]
.EXE'
[ 2069:07b0]
EXE'
[ 2069:07b0]
.EXE'
[ 2073:07b0]
EXE'
[ 2078:07b0]
.EXE'
[ 2078:07b0]
EXE'
[ 2078:07b0]
.EXE'
[ 2082:07b0]
EXE'
[ 2087:07b0]
.EXE'
[ 2087:07b0]
EXE'
[ 2087:07b0]
.EXE'
[ 2090:07b0]
EXE'
[ 2095:07b0]
.EXE'
[ 2095:07b0]
EXE'
[ 2095:07b0]
.EXE'
[ 2099:07b0]
EXE'
[ 2104:07b0]
.EXE'
[ 2104:07b0]
EXE'
[ 2104:07b0]
.EXE'
[ 2108:07b0]
EXE'
[ 2113:07b0]
.EXE'
[ 2113:07b0]
EXE'
[ 2113:07b0]
.EXE'
[ 2117:07b0]
EXE'
[ 2122:07b0]
.EXE'
[ 2122:07b0]
EXE'
[ 2122:07b0]
.EXE'
[ 2126:07b0]
EXE'
[ 2131:07b0]
.EXE'
[ 2131:07b0]
EXE'
[ 2131:07b0]
.EXE'
[ 2135:07b0]
EXE'
[ 2140:07b0]
.EXE'
[ 2140:07b0]
EXE'
[ 2140:07b0]
.EXE'
[ 2143:07b0]
EXE'
[ 2149:07b0]
.EXE'
[ 2149:07b0]
EXE'
[ 2149:07b0]
.EXE'
[ 2152:07b0]
EXE'
[ 2157:07b0]
.EXE'
[ 2157:07b0]
EXE'
[ 2158:07b0]
.EXE'
[ 2161:07b0]
EXE'
[ 2166:07b0]
.EXE'
[ 2166:07b0]
EXE'
[ 2166:07b0]
.EXE'
[ 2170:07b0]
EXE'
[ 2175:07b0]
.EXE'
[ 2175:07b0]
EXE'
[ 2175:07b0]
.EXE'
[ 2179:07b0]
EXE'
[ 2184:07b0]
.EXE'
[ 2184:07b0]
EXE'
[ 2184:07b0]
.EXE'
[ 2188:07b0]
EXE'
[ 2193:07b0]
.EXE'
[ 2193:07b0] :BOX: ReadFile 0x022d1ee8 <- 0x1000 bytes at 0x53c177 'TRAINER V4.
EXE'
[ 2193:07b0] :BOX: ReadFile(OK) 0x1000 wasread 0x1000 offs 0x53c177 'TRAINER V4
.EXE'
[ 2197:07b0] :BOX: ReadFile 0x008ff03b <- 0xf000 bytes at 0x53d177 'TRAINER V4.
EXE'
[ 2202:07b0] :BOX: ReadFile(OK) 0xf000 wasread 0xf000 offs 0x53d177 'TRAINER V4
.EXE'
[ 2202:07b0] :BOX: ReadFile 0x022d1ee8 <- 0x1000 bytes at 0x54c177 'TRAINER V4.
EXE'
[ 2202:07b0] :BOX: ReadFile(OK) 0x1000 wasread 0x1000 offs 0x54c177 'TRAINER V4
.EXE'
[ 2206:07b0] :BOX: ReadFile 0x008ff03b <- 0xf000 bytes at 0x54d177 'TRAINER V4.
EXE'
[ 2211:07b0] :BOX: ReadFile(OK) 0xf000 wasread 0xf000 offs 0x54d177 'TRAINER V4
.EXE'
[ 2211:07b0] :BOX: ReadFile 0x022d1ee8 <- 0x1000 bytes at 0x55c177 'TRAINER V4.
EXE'
[ 2211:07b0] :BOX: ReadFile(OK) 0x1000 wasread 0x1000 offs 0x55c177 'TRAINER V4
.EXE'
[ 2215:07b0] :BOX: ReadFile 0x008ff03b <- 0x9000 bytes at 0x55d177 'TRAINER V4.
EXE'
[ 2220:07b0] :BOX: ReadFile(OK) 0x9000 wasread 0x9000 offs 0x55d177 'TRAINER V4
.EXE'
[ 2220:07b0] :BOX: ReadFile 0x022d1ee8 <- 0x1000 bytes at 0x566177 'TRAINER V4.
EXE'
[ 2220:07b0] :BOX: ReadFile(OK) 0x1000 wasread 0x1000 offs 0x566177 'TRAINER V4
.EXE'
[ 2232:07b0] :BOX:CloseFile: 'TRAINER V4.EXE'
[ 2234:0ca0] :WRAPPER: Search wdmaud.drv in NULL
[ 2235:0ca0] :WRAPPER: Search wdmaud.drv in NULL
[ 2235:0ca0] :WRAPPER:LoadLibrary: wdmaud.drv
[ 2235:0ca0] :LAUNCHER:WRAPPER: wdmaud.drv -> KERNEL32.dll!0x7c809bd7 = CloseHa
ndle
[ 2235:0ca0] :LAUNCHER:WRAPPER: wdmaud.drv -> KERNEL32.dll!0x7c80ac6e = FreeLib
rary
[ 2235:0ca0] :LAUNCHER:WRAPPER: wdmaud.drv -> KERNEL32.dll!0x7c80ae30 = GetProc
Address
[ 2235:0ca0] :LAUNCHER:WRAPPER: wdmaud.drv -> KERNEL32.dll!0x7c80aedb = LoadLib
raryW
[ 2235:0ca0] :LAUNCHER:WRAPPER: wdmaud.drv -> KERNEL32.dll!0x7c80b995 = MapView
OfFile
[ 2235:0ca0] :LAUNCHER:WRAPPER: wdmaud.drv -> KERNEL32.dll!0x7c809420 = CreateF
ileMappingW
[ 2235:0ca0] :LAUNCHER:WRAPPER: wdmaud.drv -> KERNEL32.dll!0x7c8107f0 = CreateF
ileW
[ 2235:0ca0] :LAUNCHER:WRAPPER: wdmaud.drv -> KERNEL32.dll!0x7c80ba04 = UnmapVi
ewOfFile
[ 2235:0ca0] :LAUNCHER:WRAPPER: wdmaud.drv -> KERNEL32.dll!0x7c8449fd = SetUnha
ndledExceptionFilter
[ 2235:0ca0] :WRAPPER:LoadLibrary: wdmaud.drv, handle is 72ca0000
[ 2235:0ca0] :WRAPPER:LoadLibrary: setupapi.dll, handle is 778f0000
[ 2236:0ca0] :WRAPPER:LoadLibrary: WINTRUST.dll
[ 2236:0ca0] :LAUNCHER:WRAPPER: IMAGEHLP.dll -> KERNEL32.dll!0x7c8115cc = GetFi
leAttributesA
[ 2236:0ca0] :LAUNCHER:WRAPPER: IMAGEHLP.dll -> KERNEL32.dll!0x7c80ae30 = GetPr
ocAddress
[ 2236:0ca0] :LAUNCHER:WRAPPER: IMAGEHLP.dll -> KERNEL32.dll!0x7c80b731 = GetMo
duleHandleA
[ 2236:0ca0] :LAUNCHER:WRAPPER: IMAGEHLP.dll -> KERNEL32.dll!0x7c809bd7 = Close
Handle
[ 2236:0ca0] :LAUNCHER:WRAPPER:
ViewOfFile
[ 2236:0ca0] :LAUNCHER:WRAPPER:
eFileMappingA
[ 2236:0ca0] :LAUNCHER:WRAPPER:
leSize
[ 2236:0ca0] :LAUNCHER:WRAPPER:
ewOfFile
[ 2236:0ca0] :LAUNCHER:WRAPPER:
eFileA
[ 2236:0ca0] :LAUNCHER:WRAPPER:
ibraryA
[ 2236:0ca0] :LAUNCHER:WRAPPER:
duleFileNameA
[ 2236:0ca0] :LAUNCHER:WRAPPER:
lePointer
[ 2236:0ca0] :LAUNCHER:WRAPPER:
hPathA
[ 2236:0ca0] :LAUNCHER:WRAPPER:
handledExceptionFilter
[ 2236:0ca0] :LAUNCHER:WRAPPER:
ibrary
[ 2236:0ca0] :LAUNCHER:WRAPPER:
eFileW
[ 2236:0ca0] :LAUNCHER:WRAPPER:
leAttributesW
[ 2236:0ca0] :LAUNCHER:WRAPPER:
ibrary
[ 2236:0ca0] :LAUNCHER:WRAPPER:
ocAddress
[ 2236:0ca0] :LAUNCHER:WRAPPER:
ibraryA
[ 2236:0ca0] :LAUNCHER:WRAPPER:
ile
[ 2236:0ca0] :LAUNCHER:WRAPPER:
lePointer
[ 2236:0ca0] :LAUNCHER:WRAPPER:
handledExceptionFilter
[ 2237:0ca0] :LAUNCHER:WRAPPER:
duleHandleA
[ 2237:0ca0] :LAUNCHER:WRAPPER:
leSize
[ 2237:0ca0] :LAUNCHER:WRAPPER:
ViewOfFile
[ 2237:0ca0] :LAUNCHER:WRAPPER:
ewOfFile
[ 2237:0ca0] :LAUNCHER:WRAPPER:
eFileMappingA
[ 2237:0ca0] :LAUNCHER:WRAPPER:
lose
[ 2237:0ca0] :LAUNCHER:WRAPPER:
eFileA
[ 2237:0ca0] :LAUNCHER:WRAPPER:
eFileW
[ 2237:0ca0] :LAUNCHER:WRAPPER:
leAttributesA
[ 2237:0ca0] :LAUNCHER:WRAPPER:
leAttributesW
[ 2237:0ca0] :LAUNCHER:WRAPPER:
ibraryW
[ 2237:0ca0] :LAUNCHER:WRAPPER: WINTRUST.dll -> KERNEL32.dll!0x7c813869 = FindF
irstFileA
[ 2237:0ca0] :LAUNCHER:WRAPPER: WINTRUST.dll -> KERNEL32.dll!0x7c80ef71 = FindF
irstFileW
[ 2237:0ca0] :LAUNCHER:WRAPPER: WINTRUST.dll -> KERNEL32.dll!0x7c834ec9 = FindN
extFileA
[ 2237:0ca0] :LAUNCHER:WRAPPER: WINTRUST.dll -> KERNEL32.dll!0x7c80efca = FindN
extFileW
[ 2237:0ca0] :LAUNCHER:WRAPPER: WINTRUST.dll -> KERNEL32.dll!0x7c809bd7 = Close
Handle
[ 2237:0ca0] :WRAPPER:LoadLibrary: WINTRUST.dll, handle is 76bf0000
[ 2237:0ca0] :WRAPPER:FreeLibrary:778f0000, 'C:\WINDOWS\system32\SETUPAPI.dll'
[ 2239:0ca0] :WRAPPER: Search wdmaud.drv in NULL
[ 2239:0ca0] :WRAPPER: Search wdmaud.drv in NULL
[ 2239:0ca0] :WRAPPER:LoadLibrary: wdmaud.drv, handle is 72ca0000
[ 2242:0ca0] :WRAPPER: Search wdmaud.drv in NULL
[ 2242:0ca0] :WRAPPER: Search wdmaud.drv in NULL
[ 2243:0ca0] :WRAPPER:LoadLibrary: wdmaud.drv, handle is 72ca0000
[ 2243:0ca0] :WRAPPER: Search wdmaud.drv in NULL
[ 2244:0ca0] :WRAPPER: Search wdmaud.drv in NULL
[ 2244:0ca0] :WRAPPER:LoadLibrary: wdmaud.drv, handle is 72ca0000
[ 2245:0ca0] :WRAPPER: Search wdmaud.drv in NULL
[ 2245:0ca0] :WRAPPER: Search wdmaud.drv in NULL
[ 2246:0ca0] :WRAPPER:LoadLibrary: wdmaud.drv, handle is 72ca0000
[ 2249:0ca0] :WRAPPER: Search wdmaud.drv in NULL
[ 2249:0ca0] :WRAPPER: Search wdmaud.drv in NULL
[ 2250:0ca0] :WRAPPER:LoadLibrary: wdmaud.drv, handle is 72ca0000
[ 2252:0ca0] :WRAPPER:FreeLibrary:72ca0000, 'C:\WINDOWS\system32\wdmaud.drv'
[ 2253:0ca0] :WRAPPER: Search wdmaud.drv in NULL
[ 2253:0ca0] :WRAPPER: Search wdmaud.drv in NULL
[ 2253:0ca0] :WRAPPER:LoadLibrary: wdmaud.drv, handle is 72ca0000
[ 2256:0ca0] :WRAPPER:FreeLibrary:72ca0000, 'C:\WINDOWS\system32\wdmaud.drv'
[ 2259:0ca0] :WRAPPER:LoadLibrary: msacm32.drv
[ 2260:0ca0] :LAUNCHER:WRAPPER: msacm32.drv -> KERNEL32.dll!0x7c809bd7 = CloseH
andle
[ 2260:0ca0] :LAUNCHER:WRAPPER: MSACM32.dll -> KERNEL32.dll!0x7c80ba04 = UnmapV
iewOfFile
[ 2260:0ca0] :LAUNCHER:WRAPPER: MSACM32.dll -> KERNEL32.dll!0x7c809420 = Create
FileMappingW
[ 2260:0ca0] :LAUNCHER:WRAPPER: MSACM32.dll -> KERNEL32.dll!0x7c80b995 = MapVie
wOfFile
[ 2260:0ca0] :LAUNCHER:WRAPPER: MSACM32.dll -> KERNEL32.dll!0x7c80e4cd = GetMod
uleHandleW
[ 2260:0ca0] :LAUNCHER:WRAPPER: MSACM32.dll -> KERNEL32.dll!0x7c80ae30 = GetPro
cAddress
[ 2260:0ca0] :LAUNCHER:WRAPPER: MSACM32.dll -> KERNEL32.dll!0x7c809bd7 = CloseH
andle
[ 2260:0ca0] :LAUNCHER:WRAPPER: MSACM32.dll -> KERNEL32.dll!0x7c8449fd = SetUnh
andledExceptionFilter
[ 2261:0ca0] :WRAPPER:LoadLibrary: msacm32.drv, handle is 72c90000
[ 2261:0ca0] :WRAPPER:LoadLibrary: msacm32.drv, handle is 72c90000
[ 2261:0ca0] :WRAPPER:FreeLibrary:72c90000, 'C:\WINDOWS\system32\msacm32.drv'
[ 2261:0ca0] :WRAPPER:LoadLibrary: msacm32.drv, handle is 72c90000
[ 2261:0ca0] :WRAPPER:FreeLibrary:72c90000, 'C:\WINDOWS\system32\msacm32.drv'
[ 2261:0ca0] :WRAPPER:LoadLibrary: msacm32.drv, handle is 72c90000
[ 2261:0ca0] :WRAPPER:FreeLibrary:72c90000, 'C:\WINDOWS\system32\msacm32.drv'
[ 2262:0ca0] :WRAPPER:LoadLibrary: msacm32.drv, handle is 72c90000
[ 2262:0ca0] :WRAPPER:FreeLibrary:72c90000, 'C:\WINDOWS\system32\msacm32.drv'
[ 2263:0ca0] :WRAPPER:LoadLibrary: msacm32.drv, handle is 72c90000
046}
[ 2344:0b60] :WRAPPER: INPROC SERVER C:\WINDOWS\system32\quartz.dll
[ 2344:07b0] :WRAPPER:CoCreateInstance: {4315d437-5b8c-11d0-bd3b-00a0c911ce86}
[ 2344:07b0] :WRAPPER:CoCreateInstance/RIID: {0000011a-0000-0000-c000-000000000
046}
[ 2344:07b0] :WRAPPER: INPROC SERVER C:\WINDOWS\system32\devenum.dll
[ 2344:0b60] :WRAPPER:CoCreateInstance: {38be3000-dbf4-11d0-860e-00a024cfef6d}
[ 2344:0b60] :WRAPPER:CoCreateInstance/RIID: {00000000-0000-0000-c000-000000000
046}
[ 2345:0b60] :WRAPPER: INPROC SERVER C:\WINDOWS\system32\l3codecx.ax
[ 2345:0b60] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\l3codecx.ax
[ 2346:0b60] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\l3codecx.ax -> KERNEL32.dll
!0x7c80ac6e = FreeLibrary
[ 2346:0b60] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\l3codecx.ax -> KERNEL32.dll
!0x7c80b55f = GetModuleFileNameA
[ 2346:0b60] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\l3codecx.ax -> ole32.dll!0x
774d057e = CoCreateInstance
[ 2346:0b60] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\l3codecx.ax, handle is 7
2c50000
[ 2346:0b60] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\l3codecx.ax, handle is 7
2c50000
[ 2346:0b60] :DLL_LOADER: fixuping imports of C:\WINDOWS\system32\l3codecx.ax
[ 2347:07b0] :WRAPPER:CoCreateInstance: {4315d437-5b8c-11d0-bd3b-00a0c911ce86}
[ 2347:07b0] :WRAPPER:CoCreateInstance/RIID: {0000011a-0000-0000-c000-000000000
046}
[ 2347:07b0] :WRAPPER: INPROC SERVER C:\WINDOWS\system32\devenum.dll
[ 2347:0b60] :WRAPPER:CoCreateInstance: {79376820-07d0-11cf-a24d-0020afd79767}
[ 2347:0b60] :WRAPPER:CoCreateInstance/RIID: {00000000-0000-0000-c000-000000000
046}
[ 2347:0b60] :WRAPPER: INPROC SERVER C:\WINDOWS\system32\quartz.dll
[ 2348:07b0] :WRAPPER:LoadLibrary: DSOUND.DLL
[ 2348:07b0] :LAUNCHER:WRAPPER: DSOUND.DLL -> KERNEL32.dll!0x7c809bd7 = CloseHa
ndle
[ 2348:07b0] :LAUNCHER:WRAPPER: DSOUND.DLL -> KERNEL32.dll!0x7c80e4cd = GetModu
leHandleW
[ 2348:07b0] :LAUNCHER:WRAPPER: DSOUND.DLL -> KERNEL32.dll!0x7c810b07 = GetFile
Size
[ 2348:07b0] :LAUNCHER:WRAPPER: DSOUND.DLL -> KERNEL32.dll!0x7c810c1e = SetFile
Pointer
[ 2348:07b0] :LAUNCHER:WRAPPER: DSOUND.DLL -> KERNEL32.dll!0x7c801812 = ReadFil
e
[ 2348:07b0] :LAUNCHER:WRAPPER: DSOUND.DLL -> KERNEL32.dll!0x7c8107f0 = CreateF
ileW
[ 2348:07b0] :LAUNCHER:WRAPPER: DSOUND.DLL -> KERNEL32.dll!0x7c80ac6e = FreeLib
rary
[ 2348:07b0] :LAUNCHER:WRAPPER: DSOUND.DLL -> KERNEL32.dll!0x7c80ae30 = GetProc
Address
[ 2348:07b0] :LAUNCHER:WRAPPER: DSOUND.DLL -> KERNEL32.dll!0x7c80aedb = LoadLib
raryW
[ 2348:07b0] :LAUNCHER:WRAPPER: DSOUND.DLL -> KERNEL32.dll!0x7c80ba04 = UnmapVi
ewOfFile
[ 2348:07b0] :LAUNCHER:WRAPPER: DSOUND.DLL -> KERNEL32.dll!0x7c80b995 = MapView
OfFile
[ 2348:07b0] :LAUNCHER:WRAPPER: DSOUND.DLL -> KERNEL32.dll!0x7c809420 = CreateF
ileMappingW
[ 2348:07b0] :LAUNCHER:WRAPPER: DSOUND.DLL -> KERNEL32.dll!0x7c8449fd = SetUnha
ndledExceptionFilter
[ 2348:07b0] :LAUNCHER:WRAPPER: DSOUND.DLL -> ole32.dll!0x774d057e = CoCreateIn
stance
[ 2349:07b0] :WRAPPER:LoadLibrary: DSOUND.DLL, handle is 73e90000
ULL
[ 13719:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\rundll32.exe
[ 13719:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\rundll32.exe, handle is
055d0001
[ 13719:07b0] :WRAPPER:FreeLibrary:055d0001, '???'
[ 13719:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\rundll32.exe
[ 13720:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\rundll32.exe, handle is
055d0001
[ 13720:07b0] :WRAPPER:FreeLibrary:055d0001, '???'
[ 13722:07b0] :WRAPPER:CoCreateInstance: {8856f961-340a-11d0-a96b-00c04fd705a2}
[ 13722:07b0] :WRAPPER:CoCreateInstance/RIID: {00000000-0000-0000-c000-000000000
046}
[ 13722:07b0] :WRAPPER: INPROC SERVER C:\WINDOWS\system32\shdocvw.dll
[ 13723:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\shdocvw.dll
[ 13732:07b0] :WRAPPER:LoadLibrary: comctl32.dll, handle is 773a0000
[ 13732:07b0] :LAUNCHER:WRAPPER: CRYPTUI.dll -> KERNEL32.dll!0x7c80b995 = MapVie
wOfFile
[ 13732:07b0] :LAUNCHER:WRAPPER: CRYPTUI.dll -> KERNEL32.dll!0x7c801d53 = LoadLi
braryExA
[ 13732:07b0] :LAUNCHER:WRAPPER: CRYPTUI.dll -> KERNEL32.dll!0x7c8449fd = SetUnh
andledExceptionFilter
[ 13732:07b0] :LAUNCHER:WRAPPER: CRYPTUI.dll -> KERNEL32.dll!0x7c801d7b = LoadLi
braryA
[ 13732:07b0] :LAUNCHER:WRAPPER: CRYPTUI.dll -> KERNEL32.dll!0x7c80ac6e = FreeLi
brary
[ 13732:07b0] :LAUNCHER:WRAPPER: CRYPTUI.dll -> KERNEL32.dll!0x7c80aedb = LoadLi
braryW
[ 13732:07b0] :LAUNCHER:WRAPPER: CRYPTUI.dll -> KERNEL32.dll!0x7c8094ee = Create
FileMappingA
[ 13732:07b0] :LAUNCHER:WRAPPER: CRYPTUI.dll -> KERNEL32.dll!0x7c809bd7 = CloseH
andle
[ 13732:07b0] :LAUNCHER:WRAPPER: CRYPTUI.dll -> KERNEL32.dll!0x7c80ae30 = GetPro
cAddress
[ 13732:07b0] :LAUNCHER:WRAPPER: CRYPTUI.dll -> KERNEL32.dll!0x7c80e4cd = GetMod
uleHandleW
[ 13732:07b0] :LAUNCHER:WRAPPER: CRYPTUI.dll -> KERNEL32.dll!0x7c80b731 = GetMod
uleHandleA
[ 13732:07b0] :LAUNCHER:WRAPPER: CRYPTUI.dll -> KERNEL32.dll!0x7c810c1e = SetFil
ePointer
[ 13732:07b0] :LAUNCHER:WRAPPER: CRYPTUI.dll -> KERNEL32.dll!0x7c801a28 = Create
FileA
[ 13732:07b0] :LAUNCHER:WRAPPER: CRYPTUI.dll -> KERNEL32.dll!0x7c810b07 = GetFil
eSize
[ 13732:07b0] :LAUNCHER:WRAPPER: CRYPTUI.dll -> KERNEL32.dll!0x7c80ba04 = UnmapV
iewOfFile
[ 13732:07b0] :LAUNCHER:WRAPPER: CRYPTUI.dll -> KERNEL32.dll!0x7c8107f0 = Create
FileW
[ 13732:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\shdocvw.dll -> KERNEL32.dll
!0x7c810c1e = SetFilePointer
[ 13733:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\shdocvw.dll -> KERNEL32.dll
!0x7c801812 = ReadFile
[ 13733:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\shdocvw.dll -> KERNEL32.dll
!0x7c810b07 = GetFileSize
[ 13733:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\shdocvw.dll -> KERNEL32.dll
!0x7c80ee67 = FindClose
[ 13733:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\shdocvw.dll -> KERNEL32.dll
!0x7c801a28 = CreateFileA
[ 13733:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\shdocvw.dll -> KERNEL32.dll
!0x7c81cafa = ExitProcess
[ 13733:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\shdocvw.dll -> KERNEL32.dll
!0x7c8449fd =
[ 13733:07b0]
!0x7c80aedb =
[ 13733:07b0]
!0x7c80e4cd =
[ 13733:07b0]
!0x7c801d7b =
[ 13733:07b0]
!0x7c80ac6e =
[ 13733:07b0]
!0x7c80b731 =
[ 13733:07b0]
!0x7c80ae30 =
[ 13733:07b0]
!0x7c801d53 =
[ 13733:07b0]
!0x7c809bd7 =
[ 13733:07b0]
e210000
[ 13735:07b0]
e210000
[ 13735:07b0]
[ 13735:07b0]
[ 13736:07b0]
[ 13736:07b0]
[ 13736:07b0]
[ 13736:07b0]
[ 13737:07b0]
[ 13752:07b0]
[ 13752:07b0]
yW
[ 13752:07b0]
W
[ 13752:07b0]
ress
[ 13752:07b0]
y
[ 13752:07b0]
yA
[ 13752:07b0]
andleW
[ 13752:07b0]
[ 13752:07b0]
ileW
[ 13752:07b0]
leW
[ 13752:07b0]
ributesW
[ 13752:07b0]
e
[ 13752:07b0]
e
[ 13752:07b0]
fFile
[ 13752:07b0]
W
[ 13752:07b0]
MappingW
[ 13752:07b0]
ile
SetUnhandledExceptionFilter
:LAUNCHER:WRAPPER: C:\WINDOWS\system32\shdocvw.dll -> KERNEL32.dll
LoadLibraryW
:LAUNCHER:WRAPPER: C:\WINDOWS\system32\shdocvw.dll -> KERNEL32.dll
GetModuleHandleW
:LAUNCHER:WRAPPER: C:\WINDOWS\system32\shdocvw.dll -> KERNEL32.dll
LoadLibraryA
:LAUNCHER:WRAPPER: C:\WINDOWS\system32\shdocvw.dll -> KERNEL32.dll
FreeLibrary
:LAUNCHER:WRAPPER: C:\WINDOWS\system32\shdocvw.dll -> KERNEL32.dll
GetModuleHandleA
:LAUNCHER:WRAPPER: C:\WINDOWS\system32\shdocvw.dll -> KERNEL32.dll
GetProcAddress
:LAUNCHER:WRAPPER: C:\WINDOWS\system32\shdocvw.dll -> KERNEL32.dll
LoadLibraryExA
:LAUNCHER:WRAPPER: C:\WINDOWS\system32\shdocvw.dll -> KERNEL32.dll
CloseHandle
:WRAPPER:LoadLibrary: C:\WINDOWS\system32\shdocvw.dll, handle is 7
:WRAPPER:LoadLibrary: C:\WINDOWS\system32\shdocvw.dll, handle is 7
:DLL_LOADER: fixuping imports of C:\WINDOWS\system32\shdocvw.dll
:WRAPPER:LoadLibrary: SHELL32.dll, handle is 7e6a0000
:WRAPPER:LoadLibrary: OLEAUT32.dll, handle is 770f0000
:WRAPPER:LoadLibrary: ole32.dll, handle is 774b0000
:WRAPPER:LoadLibrary: SHELL32.DLL, handle is 7e6a0000
:WRAPPER:FreeLibrary:7e6a0000, 'C:\WINDOWS\system32\SHELL32.dll'
:WRAPPER:LoadLibrary: WININET.dll, handle is 77180000
:WRAPPER:LoadLibrary: SXS.DLL
:LAUNCHER:WRAPPER: SXS.DLL -> KERNEL32.dll!0x7c80aedb = LoadLibrar
:LAUNCHER:WRAPPER: SXS.DLL -> KERNEL32.dll!0x7c80e76c = SearchPath
:LAUNCHER:WRAPPER: SXS.DLL -> KERNEL32.dll!0x7c80ae30 = GetProcAdd
:LAUNCHER:WRAPPER: SXS.DLL -> KERNEL32.dll!0x7c80ac6e = FreeLibrar
:LAUNCHER:WRAPPER: SXS.DLL -> KERNEL32.dll!0x7c801d7b = LoadLibrar
:LAUNCHER:WRAPPER: SXS.DLL -> KERNEL32.dll!0x7c80e4cd = GetModuleH
:LAUNCHER:WRAPPER: SXS.DLL -> KERNEL32.dll!0x7c80ee67 = FindClose
:LAUNCHER:WRAPPER: SXS.DLL -> KERNEL32.dll!0x7c80ef71 = FindFirstF
:LAUNCHER:WRAPPER: SXS.DLL -> KERNEL32.dll!0x7c80efca = FindNextFi
:LAUNCHER:WRAPPER: SXS.DLL -> KERNEL32.dll!0x7c80b7dc = GetFileAtt
:LAUNCHER:WRAPPER: SXS.DLL -> KERNEL32.dll!0x7c810b07 = GetFileSiz
:LAUNCHER:WRAPPER: SXS.DLL -> KERNEL32.dll!0x7c809bd7 = CloseHandl
:LAUNCHER:WRAPPER: SXS.DLL -> KERNEL32.dll!0x7c80ba04 = UnmapViewO
:LAUNCHER:WRAPPER: SXS.DLL -> KERNEL32.dll!0x7c8107f0 = CreateFile
:LAUNCHER:WRAPPER: SXS.DLL -> KERNEL32.dll!0x7c809420 = CreateFile
:LAUNCHER:WRAPPER: SXS.DLL -> KERNEL32.dll!0x7c80b995 = MapViewOfF
hPathW
[ 15711:07b0] :LAUNCHER:WRAPPER: WINSPOOL.DRV -> KERNEL32.dll!0x7c80ee67 = FindC
lose
[ 15711:07b0] :LAUNCHER:WRAPPER: WINSPOOL.DRV -> KERNEL32.dll!0x7c80ef71 = FindF
irstFileW
[ 15711:07b0] :LAUNCHER:WRAPPER: WINSPOOL.DRV -> KERNEL32.dll!0x7c810b07 = GetFi
leSize
[ 15711:07b0] :LAUNCHER:WRAPPER: WINSPOOL.DRV -> KERNEL32.dll!0x7c801812 = ReadF
ile
[ 15712:07b0] :LAUNCHER:WRAPPER: WINSPOOL.DRV -> KERNEL32.dll!0x7c810c1e = SetFi
lePointer
[ 15712:07b0] :LAUNCHER:WRAPPER: WINSPOOL.DRV -> KERNEL32.dll!0x7c8449fd = SetUn
handledExceptionFilter
[ 15712:07b0] :LAUNCHER:WRAPPER: WINSPOOL.DRV -> KERNEL32.dll!0x7c80b995 = MapVi
ewOfFile
[ 15712:07b0] :LAUNCHER:WRAPPER: WINSPOOL.DRV -> KERNEL32.dll!0x7c80ba04 = Unmap
ViewOfFile
[ 15712:07b0] :LAUNCHER:WRAPPER: WINSPOOL.DRV -> KERNEL32.dll!0x7c809420 = Creat
eFileMappingW
[ 15712:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\Macromed\Flash\Flash32_1
1_2_202_228.ocx, handle is 10000000
[ 15713:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\Macromed\Flash\Flash32_1
1_2_202_228.ocx, handle is 10000000
[ 15713:07b0] :DLL_LOADER: fixuping imports of C:\WINDOWS\system32\Macromed\Flas
h\Flash32_11_2_202_228.ocx
[ 15713:07b0] :WRAPPER:LoadLibrary: kernel32.dll, handle is 7c800000
[ 15714:07b0] :WRAPPER:LoadLibrary: kernel32.dll, handle is 7c800000
[ 15714:07b0] :WRAPPER:LoadLibrary: user32.dll, handle is 7e390000
[ 15714:07b0] :WRAPPER:LoadLibrary: shell32.dll, handle is 7e6a0000
[ 15714:07b0] :WRAPPER:LoadLibrary: version.dll, handle is 77bd0000
[ 15714:07b0] :WRAPPER:FindFirstFileW \\?\C:\WINDOWS\system32\Macromed\Flash\ss.
sgn
[ 15714:07b0] :WRAPPER:FindFirstFileW \\?\C:\WINDOWS\system32\Macromed\Flash\ss.
cfg
[ 15715:07b0] :WRAPPER:FindFirstFileW \\?\C:\WINDOWS\system32\Macromed\Flash\ss.
sgn
[ 15715:07b0] :WRAPPER:FreeLibrary:77bd0000, 'C:\WINDOWS\system32\VERSION.dll'
[ 15715:07b0] :WRAPPER:FreeLibrary:7e6a0000, 'C:\WINDOWS\system32\SHELL32.dll'
[ 15715:07b0] :WRAPPER:FreeLibrary:7e390000, 'C:\WINDOWS\system32\USER32.dll'
[ 15715:07b0] :WRAPPER:FreeLibrary:7c800000, 'C:\WINDOWS\system32\kernel32.dll'
[ 15715:07b0] :WRAPPER:LoadLibrary: kernel32.dll, handle is 7c800000
[ 15716:07b0] :WRAPPER:LoadLibrary: user32.dll, handle is 7e390000
[ 15716:07b0] :WRAPPER:LoadLibrary: shell32.dll, handle is 7e6a0000
[ 15716:07b0] :WRAPPER:LoadLibrary: version.dll, handle is 77bd0000
[ 15716:07b0] :WRAPPER:LoadLibrary: kernel32.dll, handle is 7c800000
[ 15716:07b0] :WRAPPER:LoadLibrary: user32.dll, handle is 7e390000
[ 15716:07b0] :WRAPPER:LoadLibrary: shell32.dll, handle is 7e6a0000
[ 15716:07b0] :WRAPPER:LoadLibrary: version.dll, handle is 77bd0000
[ 15718:07b0] :WRAPPER:FindFirstFileW \\?\C:\Documents and Settings\CABINA9\Dato
s de programa\Adobe\Flash Player\AssetCache
[ 15718:07b0] :WRAPPER:FindFirstFileW \\?\C:\Documents and Settings\CABINA9\Dato
s de programa\Adobe\Flash Player\AssetCache\*
[ 15718:07b0] :WRAPPER:LoadLibrary: ieframe.dll
[ 15719:07b0] :WRAPPER:LoadLibrary: ieframe.dll, error 126
[ 15719:07b0] :WRAPPER:CoCreateInstance: {0002e005-0000-0000-c000-000000000046}
[ 15719:07b0] :WRAPPER:CoCreateInstance/RIID: {0002e013-0000-0000-c000-000000000
046}
[ 15719:07b0] :WRAPPER: INPROC SERVER OLE32.DLL
[ 15724:07b0] :WRAPPER:LoadLibrary: oleaut32.dll, handle is 770f0000
[ 15725:07b0] :WRAPPER:LoadLibrary: WININET.dll, handle is 77180000
2_11_2_202_228.ocx
[ 15864:07b0] :WRAPPER:LoadLibrary: kernel32.dll, handle is 7c800000
[ 15865:07b0] :WRAPPER:LoadLibrary: user32.dll, handle is 7e390000
[ 15865:07b0] :WRAPPER:LoadLibrary: shell32.dll, handle is 7e6a0000
[ 15865:07b0] :WRAPPER:LoadLibrary: version.dll, handle is 77bd0000
[ 15865:07b0] :WRAPPER:FindFirstFileW \\?\C:\WINDOWS\system32\Macromed\Flash\ss.
sgn
[ 15865:07b0] :WRAPPER:FindFirstFileW \\?\C:\WINDOWS\system32\Macromed\Flash\ss.
cfg
[ 15865:07b0] :WRAPPER:FindFirstFileW \\?\C:\WINDOWS\system32\Macromed\Flash\ss.
sgn
[ 15866:07b0] :WRAPPER:FreeLibrary:77bd0000, 'C:\WINDOWS\system32\VERSION.dll'
[ 15866:07b0] :WRAPPER:FreeLibrary:7e6a0000, 'C:\WINDOWS\system32\SHELL32.dll'
[ 15866:07b0] :WRAPPER:FreeLibrary:7e390000, 'C:\WINDOWS\system32\USER32.dll'
[ 15866:07b0] :WRAPPER:FreeLibrary:7c800000, 'C:\WINDOWS\system32\kernel32.dll'
[ 15866:07b0] :WRAPPER:LoadLibrary: kernel32.dll, handle is 7c800000
[ 15866:07b0] :WRAPPER:LoadLibrary: user32.dll, handle is 7e390000
[ 15866:07b0] :WRAPPER:LoadLibrary: shell32.dll, handle is 7e6a0000
[ 15866:07b0] :WRAPPER:LoadLibrary: version.dll, handle is 77bd0000
[ 15866:07b0] :WRAPPER:LoadLibrary: kernel32.dll, handle is 7c800000
[ 15867:07b0] :WRAPPER:LoadLibrary: user32.dll, handle is 7e390000
[ 15867:07b0] :WRAPPER:LoadLibrary: shell32.dll, handle is 7e6a0000
[ 15867:07b0] :WRAPPER:LoadLibrary: version.dll, handle is 77bd0000
[ 15867:07b0] :WRAPPER:FindFirstFileW \\?\C:\Documents and Settings\CABINA9\Dato
s de programa\Adobe\Flash Player\AssetCache
[ 15867:07b0] :WRAPPER:FindFirstFileW \\?\C:\Documents and Settings\CABINA9\Dato
s de programa\Adobe\Flash Player\AssetCache\*
[ 15867:07b0] :WRAPPER:LoadLibrary: ieframe.dll
[ 15868:07b0] :WRAPPER:LoadLibrary: ieframe.dll, error 126
[ 15869:07b0] :WRAPPER:LoadLibrary: \\?\C:\Documents and Settings\CABINA9\Mis do
cumentos\Downloads\trainer v4\trainer v4.exe, handle is 00400000
[ 15869:07b0] :WRAPPER:FreeLibrary:00400000, 'C:\Documents and Settings\CABINA9\
Mis documentos\Downloads\trainer v4\trainer v4.exe'
[ 15869:07b0] :WRAPPER:LoadLibrary: \\?\C:\Documents and Settings\CABINA9\Mis do
cumentos\Downloads\trainer v4\trainer v4.exe, handle is 00400000
[ 15869:07b0] :WRAPPER:FreeLibrary:00400000, 'C:\Documents and Settings\CABINA9\
Mis documentos\Downloads\trainer v4\trainer v4.exe'
[ 15877:07b0] :WRAPPER:CoCreateInstance: {4fd2a832-86c8-11d0-8fca-00c04fd9189d}
[ 15877:07b0] :WRAPPER:CoCreateInstance/RIID: {4fd2a833-86c8-11d0-8fca-00c04fd91
89d}
[ 15877:07b0] :WRAPPER: INPROC SERVER C:\WINDOWS\system32\ddrawex.dll
[ 15882:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\ddrawex.dll
[ 15886:07b0] :LAUNCHER:WRAPPER: DCIMAN32.dll -> KERNEL32.dll!0x7c8449fd = SetUn
handledExceptionFilter
[ 15886:07b0] :LAUNCHER:WRAPPER: DCIMAN32.dll -> KERNEL32.dll!0x7c80ae30 = GetPr
ocAddress
[ 15886:07b0] :LAUNCHER:WRAPPER: DCIMAN32.dll -> KERNEL32.dll!0x7c80b731 = GetMo
duleHandleA
[ 15886:07b0] :LAUNCHER:WRAPPER: DDRAW.dll -> KERNEL32.dll!0x7c801a28 = CreateFi
leA
[ 15886:07b0] :LAUNCHER:WRAPPER: DDRAW.dll -> KERNEL32.dll!0x7c801812 = ReadFile
[ 15886:07b0] :LAUNCHER:WRAPPER: DDRAW.dll -> KERNEL32.dll!0x7c810c1e = SetFileP
ointer
[ 15886:07b0] :LAUNCHER:WRAPPER: DDRAW.dll -> KERNEL32.dll!0x7c80b55f = GetModul
eFileNameA
[ 15886:07b0] :LAUNCHER:WRAPPER: DDRAW.dll -> KERNEL32.dll!0x7c8449fd = SetUnhan
dledExceptionFilter
[ 15886:07b0] :LAUNCHER:WRAPPER: DDRAW.dll -> KERNEL32.dll!0x7c809bd7 = CloseHan
dle
[ 15886:07b0] :LAUNCHER:WRAPPER: DDRAW.dll -> KERNEL32.dll!0x7c80ac6e = FreeLibr
ary
[ 15886:07b0] :LAUNCHER:WRAPPER: DDRAW.dll -> KERNEL32.dll!0x7c80ae30 = GetProcA
ddress
[ 15887:07b0] :LAUNCHER:WRAPPER: DDRAW.dll -> KERNEL32.dll!0x7c801d7b = LoadLibr
aryA
[ 15887:07b0] :LAUNCHER:WRAPPER: DDRAW.dll -> KERNEL32.dll!0x7c80b731 = GetModul
eHandleA
[ 15887:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\ddrawex.dll -> KERNEL32.dll
!0x7c80ac6e = FreeLibrary
[ 15887:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\ddrawex.dll -> KERNEL32.dll
!0x7c801d7b = LoadLibraryA
[ 15887:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\ddrawex.dll -> KERNEL32.dll
!0x7c8449fd = SetUnhandledExceptionFilter
[ 15887:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\ddrawex.dll -> KERNEL32.dll
!0x7c80b55f = GetModuleFileNameA
[ 15887:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\ddrawex.dll -> KERNEL32.dll
!0x7c80ae30 = GetProcAddress
[ 15887:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\ddrawex.dll, handle is 6
d940000
[ 15888:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\ddrawex.dll, handle is 6
d940000
[ 15888:07b0] :DLL_LOADER: fixuping imports of C:\WINDOWS\system32\ddrawex.dll
[ 15888:07b0] :WRAPPER:LoadLibrary: ddraw.dll, handle is 736e0000
[ 15888:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\DDRAW.dll, handle is 736
e0000
[ 15888:07b0] :WRAPPER:FreeLibrary:736e0000, 'C:\WINDOWS\system32\DDRAW.dll'
[ 15889:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\DDRAW.dll, handle is 736
e0000
[ 15889:07b0] :WRAPPER:FreeLibrary:736e0000, 'C:\WINDOWS\system32\DDRAW.dll'
[ 15892:07b0] :BOX:OpenFile: found 'TRAINER V4.EXE' at 0x6df60, size 5702719(0x5
7043f)
[ 15892:07b0] :BOX: ReadFile 0x0090e0c4 <- 0x40 bytes at 0x0 'TRAINER V4.EXE'
[ 15892:07b0] :BOX: ReadFile(OK) 0x40 wasread 0x40 offs 0x0 'TRAINER V4.EXE'
[ 15892:07b0] :BOX: SetFilePointer(OK): SET 248(0xf8)/0x57043f, 0x40->0xf8 'TRAI
NER V4.EXE'
[ 15892:07b0] :BOX: ReadFile 0x0090dfa8 <- 0xf8 bytes at 0xf8 'TRAINER V4.EXE'
[ 15892:07b0] :BOX: ReadFile(OK) 0xf8 wasread 0xf8 offs 0xf8 'TRAINER V4.EXE'
[ 15892:07b0] :BOX:CloseFile: 'TRAINER V4.EXE'
[ 15898:07b0] :WRAPPER:LoadLibrary: Secur32.dll, handle is 77fc0000
[ 15898:07b0] :WRAPPER:LoadLibrary: crypt32.dll, handle is 77a50000
[ 15898:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\schannel.dll
[ 15899:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\schannel.dll -> KERNEL32.dl
l!0x7c80ac6e = FreeLibrary
[ 15899:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\schannel.dll -> KERNEL32.dl
l!0x7c80aedb = LoadLibraryW
[ 15899:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\schannel.dll -> KERNEL32.dl
l!0x7c80ae30 = GetProcAddress
[ 15899:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\schannel.dll -> KERNEL32.dl
l!0x7c809bd7 = CloseHandle
[ 15899:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\schannel.dll -> KERNEL32.dl
l!0x7c8449fd = SetUnhandledExceptionFilter
[ 15899:07b0] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\schannel.dll -> KERNEL32.dl
l!0x7c801d7b = LoadLibraryA
[ 15899:07b0] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\schannel.dll, handle is
767b0000
[ 15922:07b0] :WRAPPER:FindFirstFileW \\?\C:\Documents and Settings\CABINA9\Dato
s de programa\Macromedia\Flash Player\#SharedObjects
[ 15922:07b0] :WRAPPER:FindFirstFileW \\?\C:\Documents and Settings\CABINA9\Dato
s de programa\Macromedia\Flash Player\#SharedObjects\*
[ 15922:07b0] :WRAPPER:FindFirstFileW \\?\C:\Documents and Settings\CABINA9\Dato
s de programa\Macromedia\Flash Player\#SharedObjects\453B56FV\macromedia.com\sup
port\flashplayer\sys\settings.sol
[ 16392:0898] :WRAPPER:LoadLibrary: ImgUtil.dll
[ 16400:0898] :LAUNCHER:WRAPPER: ImgUtil.dll -> KERNEL32.dll!0x7c8449fd = SetUnh
andledExceptionFilter
[ 16400:0898] :LAUNCHER:WRAPPER: ImgUtil.dll -> KERNEL32.dll!0x7c80b55f = GetMod
uleFileNameA
[ 16400:0898] :LAUNCHER:WRAPPER: ImgUtil.dll -> KERNEL32.dll!0x7c80b731 = GetMod
uleHandleA
[ 16400:0898] :LAUNCHER:WRAPPER: ImgUtil.dll -> KERNEL32.dll!0x7c80ae30 = GetPro
cAddress
[ 16400:0898] :LAUNCHER:WRAPPER: ImgUtil.dll -> KERNEL32.dll!0x7c801d7b = LoadLi
braryA
[ 16400:0898] :LAUNCHER:WRAPPER: ImgUtil.dll -> KERNEL32.dll!0x7c80ac6e = FreeLi
brary
[ 16400:0898] :LAUNCHER:WRAPPER: ImgUtil.dll -> ole32.dll!0x774d057e = CoCreateI
nstance
[ 16400:0898] :WRAPPER:LoadLibrary: ImgUtil.dll, handle is 66d30000
[ 16400:0898] :WRAPPER:CoCreateInstance: {30c3b080-30fb-11d0-b724-00aa006c1a01}
[ 16400:0898] :WRAPPER:CoCreateInstance/RIID: {d9e89500-30fa-11d0-b724-00aa006c1
a01}
[ 16400:0898] :WRAPPER: INPROC SERVER C:\WINDOWS\system32\imgutil.dll
[ 16401:0898] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\imgutil.dll, handle is 6
6d30000
[ 16401:0898] :DLL_LOADER: fixuping imports of C:\WINDOWS\system32\ImgUtil.dll
[ 16401:0898] :WRAPPER:CoCreateInstance: {6a01fda0-30df-11d0-b724-00aa006c1a01}
[ 16401:0898] :WRAPPER:CoCreateInstance/RIID: {4ef17940-30e0-11d0-b724-00aa006c1
a01}
[ 16401:0898] :WRAPPER: INPROC SERVER C:\WINDOWS\system32\imgutil.dll
[ 16409:0898] :WRAPPER:CoCreateInstance: {a3ccedf7-2de2-11d0-86f4-00a0c913f750}
[ 16409:0898] :WRAPPER:CoCreateInstance/RIID: {a3ccedf3-2de2-11d0-86f4-00a0c913f
750}
[ 16409:0898] :WRAPPER: INPROC SERVER C:\WINDOWS\system32\pngfilt.dll
[ 16409:0898] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\pngfilt.dll
[ 16410:0898] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\pngfilt.dll -> KERNEL32.dll
!0x7c8449fd = SetUnhandledExceptionFilter
[ 16410:0898] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\pngfilt.dll -> KERNEL32.dll
!0x7c80ac6e = FreeLibrary
[ 16410:0898] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\pngfilt.dll -> KERNEL32.dll
!0x7c80b731 = GetModuleHandleA
[ 16410:0898] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\pngfilt.dll -> KERNEL32.dll
!0x7c80ae30 = GetProcAddress
[ 16410:0898] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\pngfilt.dll -> KERNEL32.dll
!0x7c801d7b = LoadLibraryA
[ 16410:0898] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\pngfilt.dll -> KERNEL32.dll
!0x7c80b55f = GetModuleFileNameA
[ 16410:0898] :LAUNCHER:WRAPPER: C:\WINDOWS\system32\pngfilt.dll -> ole32.dll!0x
774d057e = CoCreateInstance
[ 16410:0898] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\pngfilt.dll, handle is 5
e730000
[ 16411:0898] :WRAPPER:LoadLibrary: C:\WINDOWS\system32\pngfilt.dll, handle is 5
e730000
[ 16411:0898] :DLL_LOADER: fixuping imports of C:\WINDOWS\system32\pngfilt.dll
[ 16982:07b0] :WRAPPER:CoCreateInstance: {f414c260-6ac0-11cf-b6d1-00aa00bbbb58}
[ 16982:07b0] :WRAPPER:CoCreateInstance/RIID: {bb1a2ae1-a4f9-11cf-8f20-00805f2cd
064}
[ 16982:07b0] :WRAPPER: INPROC SERVER C:\WINDOWS\system32\jscript.dll
[ 16983:07b0] :WRAPPER:LoadLibrary: kernel32.dll, handle is 7c800000
[ 16983:07b0] :WRAPPER:FreeLibrary:7c800000, 'C:\WINDOWS\system32\kernel32.dll'
[ 16983:07b0] :WRAPPER:CoCreateInstance: {6c736db1-bd94-11d0-8a23-00aa00b58e10}
[ 16983:07b0]
7e8}
[ 16984:07b0]
[ 16984:07b0]
[ 17686:0898]
[ 17686:0898]
a01}
[ 17686:0898]
[ 17687:0898]
[ 17687:0898]
a01}
[ 17687:0898]
[ 17687:0898]
[ 17687:0898]
750}
[ 17687:0898]
[ 17803:07b0]
5c00000
[ 17803:07b0]
[ 17810:07b0]
[ 17811:092c]
[ 17811:092c]
[ 17812:092c]
[ 17812:092c]
[ 17812:092c]
[ 17812:092c]
[ 17812:092c]
[ 17812:092c]
[ 18245:0898]
[ 18245:0898]
a01}
[ 18245:0898]
[ 18245:0898]
[ 18245:0898]
a01}
[ 18245:0898]
[ 18245:0898]
[ 18245:0898]
750}
[ 18245:0898]
[ 18687:07b0]
[ 18687:07b0]
064}
[ 18687:07b0]
[ 18687:07b0]
[ 18687:07b0]
[ 18687:07b0]
[ 18687:07b0]
7e8}
[ 18706:07b0]
[ 18707:07b0]
[ 18820:0898]
[ 18821:0898]
a01}
[ 18821:0898]
[ 18821:0898]
[ 18821:0898]
a01}
[ 18821:0898]
[ 18821:0898]
:WRAPPER:CoCreateInstance/RIID: {6c736dc1-ab0d-11d0-a2ad-00a0c90f2
:WRAPPER:LoadLibrary: URLMON.DLL, handle is 7df20000
:WRAPPER:FreeLibrary:7df20000, 'C:\WINDOWS\system32\urlmon.dll'
:WRAPPER:CoCreateInstance: {30c3b080-30fb-11d0-b724-00aa006c1a01}
:WRAPPER:CoCreateInstance/RIID: {d9e89500-30fa-11d0-b724-00aa006c1
:WRAPPER: INPROC SERVER C:\WINDOWS\system32\imgutil.dll
:WRAPPER:CoCreateInstance: {6a01fda0-30df-11d0-b724-00aa006c1a01}
:WRAPPER:CoCreateInstance/RIID: {4ef17940-30e0-11d0-b724-00aa006c1
:WRAPPER: INPROC SERVER C:\WINDOWS\system32\imgutil.dll
:WRAPPER:CoCreateInstance: {a3ccedf7-2de2-11d0-86f4-00a0c913f750}
:WRAPPER:CoCreateInstance/RIID: {a3ccedf3-2de2-11d0-86f4-00a0c913f
:WRAPPER: INPROC SERVER C:\WINDOWS\system32\pngfilt.dll
:WRAPPER:LoadLibrary: C:\WINDOWS\system32\jscript.dll, handle is 7
:WRAPPER: Search C:\WINDOWS\system32\jscript.dll in NULL
:WRAPPER:FreeLibrary:75c00000, 'C:\WINDOWS\system32\jscript.dll'
:WRAPPER:LoadLibrary: kernel32.dll, handle is 7c800000
:WRAPPER:LoadLibrary: user32.dll, handle is 7e390000
:WRAPPER:LoadLibrary: shell32.dll, handle is 7e6a0000
:WRAPPER:LoadLibrary: version.dll, handle is 77bd0000
:WRAPPER:FreeLibrary:77bd0000, 'C:\WINDOWS\system32\VERSION.dll'
:WRAPPER:FreeLibrary:7e6a0000, 'C:\WINDOWS\system32\SHELL32.dll'
:WRAPPER:FreeLibrary:7e390000, 'C:\WINDOWS\system32\USER32.dll'
:WRAPPER:FreeLibrary:7c800000, 'C:\WINDOWS\system32\kernel32.dll'
:WRAPPER:CoCreateInstance: {30c3b080-30fb-11d0-b724-00aa006c1a01}
:WRAPPER:CoCreateInstance/RIID: {d9e89500-30fa-11d0-b724-00aa006c1
:WRAPPER: INPROC SERVER C:\WINDOWS\system32\imgutil.dll
:WRAPPER:CoCreateInstance: {6a01fda0-30df-11d0-b724-00aa006c1a01}
:WRAPPER:CoCreateInstance/RIID: {4ef17940-30e0-11d0-b724-00aa006c1
:WRAPPER: INPROC SERVER C:\WINDOWS\system32\imgutil.dll
:WRAPPER:CoCreateInstance: {a3ccedf7-2de2-11d0-86f4-00a0c913f750}
:WRAPPER:CoCreateInstance/RIID: {a3ccedf3-2de2-11d0-86f4-00a0c913f
:WRAPPER: INPROC SERVER C:\WINDOWS\system32\pngfilt.dll
:WRAPPER:CoCreateInstance: {f414c260-6ac0-11cf-b6d1-00aa00bbbb58}
:WRAPPER:CoCreateInstance/RIID: {bb1a2ae1-a4f9-11cf-8f20-00805f2cd
:WRAPPER: INPROC SERVER C:\WINDOWS\system32\jscript.dll
:WRAPPER:LoadLibrary: kernel32.dll, handle is 7c800000
:WRAPPER:FreeLibrary:7c800000, 'C:\WINDOWS\system32\kernel32.dll'
:WRAPPER:CoCreateInstance: {6c736db1-bd94-11d0-8a23-00aa00b58e10}
:WRAPPER:CoCreateInstance/RIID: {6c736dc1-ab0d-11d0-a2ad-00a0c90f2
:WRAPPER:LoadLibrary: USER32.DLL, handle is 7e390000
:WRAPPER:LoadLibrary: UxTheme.dll, handle is 5b150000
:WRAPPER:CoCreateInstance: {30c3b080-30fb-11d0-b724-00aa006c1a01}
:WRAPPER:CoCreateInstance/RIID: {d9e89500-30fa-11d0-b724-00aa006c1
:WRAPPER: INPROC SERVER C:\WINDOWS\system32\imgutil.dll
:WRAPPER:CoCreateInstance: {6a01fda0-30df-11d0-b724-00aa006c1a01}
:WRAPPER:CoCreateInstance/RIID: {4ef17940-30e0-11d0-b724-00aa006c1
:WRAPPER: INPROC SERVER C:\WINDOWS\system32\imgutil.dll
:WRAPPER:CoCreateInstance: {a3ccedf7-2de2-11d0-86f4-00a0c913f750}
and Settings\CABINA9\
and Settings\CABINA9\
and Settings\CABINA9\
and Settings\CABINA9\