Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Help


  • This topic is locked This topic is locked
35 replies to this topic

#1 repairit

repairit

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:03:38 AM

Posted 09 January 2010 - 03:09 PM

Hello, thcbytes asked me to post here about my computer problems. He said he would helpme.
Thanks

BC AdBot (Login to Remove)

 


#2 thcbytes

thcbytes

  • Malware Response Team
  • 14,790 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:38 AM

Posted 09 January 2010 - 04:24 PM

Hello,

Let's probe your computer and see what the problem is. thumbup2.gif

In the upper right hand corner of the topic you will see a button called Options. If you click on this in the drop-down menu you can choose Track this topic. By doing this and then choosing Immediate E-Mail notification and then clicking on Proceed you will be advised when I respond to your topic and facilitate the cleaning of your machine.

Copy and paste all the resultant logs directly into your reply. In order to reply you need to press the "Add Reply" tab, enter your logs then press the "Add Reply" tab at the bottom again.

Please do this....

We need to create an OTL Report
  1. Please download OTL from one of the following mirrors:
  2. Save it to your desktop.
  3. Double click on the icon on your desktop.
  4. Click the "Scan All Users" checkbox.
  5. Under "Extra Registry" please check "Use Safelist" and also check "LOP Check" and "Purity Check" as pictured.
  6. Copy and Paste the following code into the textbox. Do not include the word "Code"

    CODE
    netsvcs
    msconfig
    safebootminimal
    safebootnetwork
    activex
    drivers32
    %ALLUSERSPROFILE%\Application Data\*.
    %ALLUSERSPROFILE%\Application Data\*.exe /s
    %APPDATA%\*.
    %APPDATA%\*.exe /s
    %SYSTEMDRIVE%\*.exe
    /md5start
    eventlog.dll
    scecli.dll
    netlogon.dll
    cngaudit.dll
    sceclt.dll
    ntelogon.dll
    logevent.dll
    iaStor.sys
    nvstor.sys
    atapi.sys
    IdeChnDr.sys
    viasraid.sys
    AGP440.sys
    vaxscsi.sys
    nvatabus.sys
    viamraid.sys
    nvata.sys
    nvgts.sys
    iastorv.sys
    ViPrt.sys
    eNetHook.dll
    ahcix86.sys
    KR10N.sys
    nvstor32.sys
    ahcix86s.sys
    /md5stop
    %systemroot%\*. /mp /s
    CREATERESTOREPOINT

  7. Push
  8. A report will open. Copy and Paste that report in your next reply.
  9. Two reports will open, copy and paste them in a reply here:
    • OTListIt.txt <-- Will be opened
    • Extra.txt <-- Will be minimized

==========

Please download GMER from one of the following locations and save it to your desktop:
  • Main Mirror
    This version will download a randomly named file (Recommended)
  • Zipped Mirror
    This version will download a zip file you will need to extract first. If you use this mirror, please extract the zip file to your desktop.
  • Disconnect from the Internet and close all running programs.
  • Temporarily disable any real-time active protection so your security programs will not conflict with gmer's driver.
  • Double-click on the randomly named GMER file (i.e. n7gmo46c.exe) and allow the gmer.sys driver to load if asked.
  • Note: If you downloaded the zipped version, extract the file to its own folder such as C:\gmer and then double-click on gmer.exe.


  • GMER will open to the Rootkit/Malware tab and perform an automatic quick scan when first run. (do not use the computer while the scan is in progress)
  • If you receive a WARNING!!! about rootkit activity and are asked to fully scan your system...click NO.
  • Now click the Scan button. If you see a rootkit warning window, click OK.
  • When the scan is finished, click the Save... button to save the scan results to your Desktop. Save the file as gmer.log.
  • Click the Copy button and paste the results into your next reply.
  • Exit GMER and re-enable all active protection when done.
-- If you encounter any problems, try running GMER in Safe Mode.

==========

Please download HardwareInfo by Aommaster. Safe the download to your desktop! Double click the program and run it. A log will be placed on your desktop. Please copy and post it in your next reply.

==========

With your next post please provide:

* OTL.txt
* Extra.txt
* HardwareInfo.txt

Kind regards,
~t


Proud member - Unified Network of Instructors and Trained Eliminators
Posted Image

I do not accept personal donations for assistance provided. I would ask that you instead consider donating the greatest gift - Organ Donation. Your organs are of no use to you when your gone. You will save a life that would otherwise be lost!

http://donatelife.net/register-now/

#3 repairit

repairit
  • Topic Starter

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:03:38 AM

Posted 10 January 2010 - 01:09 PM

OTL logfile created on: 1/10/2010 10:23:17 AM - Run 2
OTL by OldTimer - Version 3.1.23.0 Folder = C:\Documents and Settings\Richard Super\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

511.00 Mb Total Physical Memory | 160.00 Mb Available Physical Memory | 31.00% Memory free
1.00 Gb Paging File | 1.00 Gb Available in Paging File | 60.00% Paging File free
Paging file location(s): c:\pagefile.sys 768 1536 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 55.88 Gb Total Space | 40.74 Gb Free Space | 72.91% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: SUPER-LAPTOP
Current User Name: Richard Super
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard

========== Processes (SafeList) ==========

PRC - [2010/01/10 10:19:42 | 00,543,744 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Richard Super\Desktop\OTL.exe
PRC - [2009/12/01 07:55:10 | 00,389,120 | ---- | M] (tzuk) -- C:\Program Files\Sandboxie\SbieCtrl.exe
PRC - [2009/12/01 07:55:10 | 00,066,560 | ---- | M] (tzuk) -- C:\Program Files\Sandboxie\SbieSvc.exe
PRC - [2009/12/01 07:55:10 | 00,015,360 | ---- | M] (tzuk) -- C:\Program Files\Sandboxie\SandboxieRpcSs.exe
PRC - [2009/12/01 07:55:10 | 00,013,312 | ---- | M] (tzuk) -- C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe
PRC - [2009/11/09 14:11:10 | 00,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jusched.exe
PRC - [2009/11/09 14:11:09 | 00,153,376 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe
PRC - [2009/08/05 20:29:49 | 00,185,089 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
PRC - [2009/06/24 02:51:12 | 00,803,176 | ---- | M] (Secunia) -- C:\Program Files\Secunia\PSI\psi.exe
PRC - [2009/05/13 15:48:22 | 00,108,289 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2009/03/08 13:09:26 | 00,638,816 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Internet Explorer\iexplore.exe
PRC - [2009/03/02 12:08:47 | 00,209,153 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
PRC - [2008/04/13 18:12:19 | 01,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007/04/12 15:23:31 | 00,042,032 | ---- | M] (AOL LLC) -- C:\Program Files\Common Files\AOL\1130190466\ee\aolsoftware.exe
PRC - [2006/10/23 06:50:35 | 00,046,640 | R--- | M] (AOL LLC) -- C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe
PRC - [2004/09/03 06:52:00 | 00,088,363 | ---- | M] (Agere Systems) -- C:\WINDOWS\AGRSMMSG.exe
PRC - [2004/07/09 07:41:36 | 00,045,056 | ---- | M] () -- C:\WINDOWS\system32\WLTRYSVC.EXE
PRC - [2004/07/09 07:41:34 | 00,671,846 | ---- | M] (Broadcom Corporation) -- C:\WINDOWS\system32\BCMWLTRY.EXE
PRC - [2004/04/07 13:22:00 | 00,073,728 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe
PRC - [2003/10/07 21:40:00 | 00,159,744 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\Apoint2K\Apoint.exe
PRC - [2003/10/07 21:40:00 | 00,045,056 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\Apoint2K\ApntEx.exe
PRC - [2003/08/27 10:29:46 | 00,065,536 | ---- | M] (America Online, Inc.) -- C:\WINDOWS\wanmpsvc.exe


========== Modules (SafeList) ==========

MOD - [2010/01/10 10:19:42 | 00,543,744 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Richard Super\Desktop\OTL.exe


========== Win32 Services (SafeList) ==========

SRV - [2009/12/01 07:55:10 | 00,066,560 | ---- | M] (tzuk) [Auto | Running] -- C:\Program Files\Sandboxie\SbieSvc.exe -- (SbieSvc)
SRV - [2009/11/09 14:11:09 | 00,153,376 | ---- | M] (Sun Microsystems, Inc.) [Auto | Running] -- C:\Program Files\Java\jre6\bin\jqs.exe -- (JavaQuickStarterService)
SRV - [2009/08/05 20:29:49 | 00,185,089 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2009/05/13 15:48:22 | 00,108,289 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2006/10/23 06:50:35 | 00,046,640 | R--- | M] (AOL LLC) [Auto | Running] -- C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe -- (AOL ACS)
SRV - [2005/04/04 00:41:10 | 00,069,632 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe -- (IDriverT)
SRV - [2004/07/27 17:25:24 | 00,098,304 | ---- | M] (Hewlett-Packard Development Company, L.P.) [On_Demand | Stopped] -- C:\Program Files\HPQ\shared\hpqwmi.exe -- (hpqwmi)
SRV - [2004/07/15 03:49:26 | 00,032,768 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe -- (aspnet_state)
SRV - [2004/07/09 07:41:36 | 00,045,056 | ---- | M] () [Auto | Running] -- C:\WINDOWS\System32\wltrysvc.exe -- (WLTRYSVC)
SRV - [2004/04/07 13:22:00 | 00,073,728 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\WINDOWS\system32\nvsvc32.exe -- (NVSvc)
SRV - [2003/08/27 10:29:46 | 00,065,536 | ---- | M] (America Online, Inc.) [Auto | Running] -- C:\WINDOWS\wanmpsvc.exe -- (WANMiniportService) WAN Miniport (ATW)
SRV - [2003/07/28 14:28:22 | 00,089,136 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose)


========== Driver Services (SafeList) ==========

DRV - [2009/12/11 10:41:40 | 00,056,816 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2009/12/01 07:55:10 | 00,119,296 | ---- | M] (tzuk) [Kernel | On_Demand | Running] -- C:\Program Files\Sandboxie\SbieDrv.sys -- (SbieDrv)
DRV - [2009/06/17 06:20:34 | 00,012,648 | ---- | M] (Secunia) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\psi_mf.sys -- (PSI)
DRV - [2009/05/11 09:12:24 | 00,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2009/03/30 09:33:07 | 00,096,104 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2009/02/13 11:35:05 | 00,011,608 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys -- (avgio)
DRV - [2008/04/28 09:49:52 | 00,047,360 | ---- | M] (VSO Software) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pcouffin.sys -- (pcouffin)
DRV - [2008/04/13 12:45:12 | 00,060,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbaudio.sys -- (usbaudio) USB Audio Driver (WDM)
DRV - [2007/11/13 02:47:45 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\secdrv.sys -- (Secdrv)
DRV - [2005/04/23 13:32:09 | 00,015,781 | ---- | M] (Meetinghouse Data Communications) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\mdc8021x.sys -- (MDC8021X) AEGIS Protocol (IEEE 802.1x)
DRV - [2005/02/14 10:00:38 | 00,008,552 | ---- | M] (Windows ® 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\asctrm.sys -- (ASCTRM)
DRV - [2005/02/02 01:21:04 | 00,014,408 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV - [2004/11/21 20:10:43 | 00,020,576 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\PxHelp20.sys -- (PxHelp20)
DRV - [2004/09/03 06:52:00 | 01,268,204 | ---- | M] (Agere Systems) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AGRSM.sys -- (AgereSoftModem)
DRV - [2004/08/04 12:05:20 | 00,341,760 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\BCMWL5.SYS -- (BCM43XX)
DRV - [2004/08/04 06:00:00 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ptilink.sys -- (Ptilink)
DRV - [2004/08/04 06:00:00 | 00,005,248 | ---- | M] (Acer Laboratories Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\aliide.sys -- (AliIde)
DRV - [2004/08/03 22:31:34 | 00,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) Realtek RTL8139(A/B/C)
DRV - [2004/05/27 09:47:16 | 00,019,968 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LVUSBSta.sys -- (LVUSBSta)
DRV - [2004/05/21 13:16:14 | 00,471,232 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\lvcm.sys -- (QCMerced)
DRV - [2004/05/08 12:21:44 | 00,035,840 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8)
DRV - [2004/04/14 10:36:50 | 00,007,432 | ---- | M] (Hewlett-Packard Company) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\eabfiltr.sys -- (eabfiltr)
DRV - [2004/04/07 13:22:00 | 01,382,634 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2004/02/01 17:22:00 | 00,612,032 | ---- | M] (Analog Devices, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\smwdm.sys -- (smwdm)
DRV - [2004/02/01 17:22:00 | 00,100,384 | ---- | M] (Andrea Electronics Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\aeaudio.sys -- (aeaudio)
DRV - [2003/12/02 08:27:00 | 00,021,120 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\nv_agp.sys -- (nv_agp)
DRV - [2003/10/07 21:40:00 | 00,094,601 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Apfiltr.sys -- (ApfiltrService)
DRV - [2003/08/08 18:00:00 | 00,008,448 | ---- | M] (Texas Instruments Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\tiumflt.sys -- (DevUpper)
DRV - [2003/06/06 14:46:16 | 00,005,220 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\EabUsb.sys -- (eabusb)
DRV - [2003/02/18 18:00:00 | 00,042,092 | ---- | M] (Texas Instruments Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\tiumfwl.sys -- (tiumfwl)
DRV - [2003/01/10 16:13:04 | 00,033,588 | ---- | M] (America Online, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\wanatw4.sys -- (wanatw) WAN Miniport (ATW)
DRV - [2001/08/17 14:10:28 | 00,035,913 | ---- | M] (SMC) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\smcirda.sys -- (SMCIRDA)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie


IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = localhost

IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = localhost



IE - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerm...tf8&oe=utf8
IE - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.aol.com/?flv=1
IE - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
IE - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\S-1-5-21-1467198363-3990250233-1503334692-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\S-1-5-21-1467198363-3990250233-1503334692-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = localhost



[2009/11/23 09:47:55 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Mozilla\Firefox\extensions
[2009/11/23 09:47:55 | 00,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Richard Super\Application Data\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}

O1 HOSTS File: (56 bytes) - C:\WINDOWS\system32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O2 - BHO: (AskBar BHO) - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar1.dll (Ask.com)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll (Yahoo! Inc)
O3 - HKLM\..\Toolbar: (Foxit Toolbar) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar1.dll (Ask.com)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O3 - HKLM\..\Toolbar: (no name) - SITEguard - No CLSID value found.
O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - No CLSID value found.
O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - No CLSID value found.
O3 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\..\Toolbar\ShellBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
O3 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\..\Toolbar\WebBrowser: (Foxit Toolbar) - {3041D03E-FD4B-44E0-B742-2D9B88305F98} - C:\Program Files\AskBarDis\bar\bin\askBar1.dll (Ask.com)
O4 - HKLM..\Run: [AGRSMMSG] C:\WINDOWS\AGRSMMSG.exe (Agere Systems)
O4 - HKLM..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe (Alps Electric Co., Ltd.)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [HostManager] C:\Program Files\Common Files\AOL\1130190466\ee\aolsoftware.exe (AOL LLC)
O4 - HKLM..\Run: [Malwarebytes Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)
O4 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006..\Run: [SandboxieControl] C:\Program Files\Sandboxie\SbieCtrl.exe (tzuk)
O4 - Startup: C:\Documents and Settings\Richard Super\Start Menu\Programs\Startup\Secunia PSI.lnk = C:\Program Files\Secunia\PSI\psi.exe (Secunia)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\control panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\control panel present
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\restrictions present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\control panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\restrictions present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\control panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\restrictions present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19_Classes\Software\Policies\Microsoft\Internet Explorer\control panel present
O7 - HKU\S-1-5-19_Classes\Software\Policies\Microsoft\Internet Explorer\restrictions present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\control panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\restrictions present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20_Classes\Software\Policies\Microsoft\Internet Explorer\control panel present
O7 - HKU\S-1-5-20_Classes\Software\Policies\Microsoft\Internet Explorer\restrictions present
O7 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\Software\Policies\Microsoft\Internet Explorer\control panel present
O7 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\Software\Policies\Microsoft\Internet Explorer\restrictions present
O7 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O7 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoThumbnailCache = 1
O7 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006_Classes\Software\Policies\Microsoft\Internet Explorer\control panel present
O7 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006_Classes\Software\Policies\Microsoft\Internet Explorer\restrictions present
O7 - HKU\Sandbox_Richard_Super_DefaultBox\Software\Policies\Microsoft\Internet Explorer\control panel present
O7 - HKU\Sandbox_Richard_Super_DefaultBox\Software\Policies\Microsoft\Internet Explorer\restrictions present
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\..Trusted Domains: aol.com ([objects] * is out of zone range - 5)
O15 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\..Trusted Domains: internet ([]about in Trusted sites)
O15 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\..Trusted Domains: mcafee.com ([]http in Trusted sites)
O15 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\..Trusted Domains: mcafee.com ([]https in Trusted sites)
O15 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\..Trusted Domains: 26 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microsoftu...b?1258991487453 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flash...r/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 () - https://www.trustinternational.com/booker/s...l/top_image.jpg
O24 - Desktop Components:1 (My Current Home Page) - About:Home
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/01/05 10:00:28 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{85f3ce20-bd4e-11dc-8497-00038a000015}\Shell\play\command - "" = C:\Program Files\VideoLAN\VLC\vlc.exe -- [2009/03/31 16:14:54 | 00,114,840 | ---- | M] ()
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\system32\ias [2009/01/05 09:59:26 | 00,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:\WINDOWS\system32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found

MsConfig - StartUpReg: AOLDeskbarDirRemoval - hkey= - key= - File not found
MsConfig - StartUpReg: iTunesHelper - hkey= - key= - C:\Program Files\iTunes\iTunesHelper.exe File not found
MsConfig - StartUpReg: RealTray - hkey= - key= - C:\Program Files\Real\RealPlayer\RealPlay.exe (RealNetworks, Inc.)
MsConfig - State: "system.ini" - 0
MsConfig - State: "win.ini" - 0
MsConfig - State: "bootini" - 0
MsConfig - State: "services" - 0
MsConfig - State: "startup" - 2

SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: sermouse.sys - Driver
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vds - Service
SafeBootMin: vga.sys - Driver
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: sermouse.sys - Driver
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vga.sys - Driver
SafeBootNet: vsmon - Service
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

ActiveX: {03F998B2-0E00-11D3-A498-00104B6EB52E} - Viewpoint Media Player
ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Java (Sun)
ActiveX: {10072CEC-8CC1-11D1-986E-00A0C955B42F} - Vector Graphics Rendering (VML)
ActiveX: {1B00725B-C455-4DE6-BFB6-AD540AD427CD} - Viewpoint Media Player
ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - NetShow
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 6.4
ActiveX: {283807B5-2C60-11D0-A31D-00AA00B92C03} - DirectAnimation
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {36f8ec70-c29a-11d1-b5c7-0000f8051515} - Dynamic HTML Data Binding for Java
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {3bf42070-b3b1-11d1-b5c5-0000f8051515} - Uniscribe
ActiveX: {411EDCF7-755D-414E-A74B-3DCD6583F589} - Microsoft .NET Framework 1.1 Service Pack 1 (KB867460)
ActiveX: {4278c270-a269-11d1-b5bf-0000f8051515} - Advanced Authoring
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install
ActiveX: {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT
ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - DirectShow
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f216970-c90c-11d1-b5c7-0000f8051515} - DirectAnimation Java Classes
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX: {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser
ActiveX: {5A8D6EE0-3E18-11D0-821E-444553540000} - ICW
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {73FA19D0-2D75-11D2-995D-00C04F98BBC9} - Web Folders
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\WINDOWS\system32\ie4uinit.exe -BaseSettings
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} - .NET Framework
ActiveX: {CC2A9BA0-3BDD-11D0-821E-444553540000} - Task Scheduler
ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1
ActiveX: {D27CDB6E-AE6D-11cf-96B8-444553540000} - Adobe Flash Player
ActiveX: {DAA94A2A-2A8D-4D3B-9DB8-56FBECED082D} - Microsoft .NET Framework 1.1 Security Update (KB953297)
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\WINDOWS\system32\ieudinit.exe
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\INF\unregmp2.exe /ShowWMP
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\WINDOWS\system32\ie4uinit.exe -UserIconConfig
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
ActiveX: >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - %systemroot%\system32\shmgrate.exe OCInstallUserConfigOE

Drivers32: msacm.enc - C:\WINDOWS\System32\ITIG726.acm (Ingenient Technologies, Inc.)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point (17173478272663552)

========== Files/Folders - Created Within 30 Days ==========

[2010/01/10 10:19:35 | 00,543,744 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Richard Super\Desktop\OTL.exe
[2010/01/09 12:59:46 | 00,000,000 | RH-D | C] -- C:\Documents and Settings\Richard Super\Recent
[2009/03/23 13:28:41 | 00,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Adobe
[2009/03/21 17:18:48 | 00,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2009/01/06 16:38:30 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\AOL
[2009/01/05 15:06:04 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data\Sun
[2009/01/03 14:32:58 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data\Google
[2009/01/03 14:07:39 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data\Macromedia
[2009/01/03 14:07:35 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data\Adobe
[2009/01/03 14:01:51 | 00,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2009/01/03 14:01:37 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Google
[2008/04/28 09:49:52 | 00,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Richard Super\Application Data\pcouffin.sys
[2008/01/15 17:16:13 | 00,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Application Data\Microsoft
[2006/12/23 12:18:34 | 00,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\AOL
[2005/02/19 12:03:50 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data\Symantec
[2004/11/21 19:45:59 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2010/01/10 10:19:42 | 00,543,744 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Richard Super\Desktop\OTL.exe
[2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At83.job
[2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At59.job
[2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At35.job
[2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At11.job
[2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At107.job
[2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At87.job
[2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At63.job
[2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At39.job
[2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At15.job
[2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At111.job
[2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At86.job
[2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At62.job
[2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At38.job
[2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At14.job
[2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At110.job
[2010/01/09 12:46:30 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/01/09 12:46:07 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/01/09 12:45:57 | 53,587,5584 | -HS- | M] () -- C:\hiberfil.sys
[2010/01/08 14:21:28 | 04,456,448 | ---- | M] () -- C:\Documents and Settings\Richard Super\NTUSER.DAT
[2010/01/08 14:21:28 | 00,000,278 | -HS- | M] () -- C:\Documents and Settings\Richard Super\ntuser.ini
[2010/01/08 13:43:56 | 00,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2009/12/31 16:24:44 | 00,001,898 | ---- | M] () -- C:\WINDOWS\Sandboxie.ini
[2009/12/21 11:00:02 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At84.job
[2009/12/21 11:00:02 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At60.job
[2009/12/21 11:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At36.job
[2009/12/21 11:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At12.job
[2009/12/21 11:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At108.job
[2009/12/21 10:37:20 | 00,385,256 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2009/12/21 10:37:19 | 00,054,850 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2009/12/21 10:37:14 | 00,445,886 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2009/12/11 10:41:40 | 00,056,816 | ---- | M] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntflt.sys
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2009/01/17 12:12:38 | 00,001,898 | ---- | C] () -- C:\WINDOWS\Sandboxie.ini
[2009/01/17 11:56:24 | 00,000,002 | ---- | C] () -- C:\WINDOWS\msoffice.ini
[2008/04/28 09:49:52 | 00,087,608 | ---- | C] () -- C:\Documents and Settings\Richard Super\Application Data\inst.exe
[2008/04/28 09:49:52 | 00,007,887 | ---- | C] () -- C:\Documents and Settings\Richard Super\Application Data\pcouffin.cat
[2008/04/28 09:49:52 | 00,001,144 | ---- | C] () -- C:\Documents and Settings\Richard Super\Application Data\pcouffin.inf
[2006/03/14 10:53:11 | 00,000,101 | ---- | C] () -- C:\WINDOWS\upst.ini
[2006/03/14 10:34:58 | 00,000,029 | ---- | C] () -- C:\WINDOWS\atid.ini
[2006/03/09 12:14:43 | 00,000,032 | ---- | C] () -- C:\WINDOWS\CD_Start.INI
[2006/02/27 12:58:24 | 00,001,359 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2006/01/14 11:57:19 | 00,005,632 | ---- | C] () -- C:\Documents and Settings\Richard Super\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2005/02/14 12:18:09 | 00,005,993 | ---- | C] () -- C:\WINDOWS\System32\lvcoinst.ini
[2005/02/14 12:18:08 | 00,019,968 | ---- | C] () -- C:\WINDOWS\System32\drivers\LVUSBSta.sys
[2005/02/14 12:18:04 | 00,471,232 | ---- | C] () -- C:\WINDOWS\System32\drivers\lvcm.sys
[2005/02/14 12:17:03 | 00,000,272 | ---- | C] () -- C:\WINDOWS\_delis32.ini
[2004/11/21 20:09:59 | 00,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2004/11/21 19:49:10 | 00,000,044 | ---- | C] () -- C:\WINDOWS\System32\msssc.dll
[2004/08/07 07:16:44 | 00,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2004/08/07 07:10:08 | 00,000,780 | ---- | C] () -- C:\WINDOWS\orun32.ini
[2003/01/07 17:05:08 | 00,002,695 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI
[1999/01/27 13:39:06 | 00,065,024 | ---- | C] () -- C:\WINDOWS\System32\indounin.dll
[1997/06/13 07:56:08 | 00,056,832 | ---- | C] () -- C:\WINDOWS\System32\Iyvu9_32.dll

========== LOP Check ==========

[2009/01/05 20:05:10 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Beanbag Studios
[2004/11/21 20:22:13 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\muvee Technologies
[2009/03/01 14:06:11 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SITEguard
[2009/03/01 15:21:52 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\STOPzilla!
[2009/11/23 15:18:10 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2008/02/27 09:49:49 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Viewpoint
[2009/03/08 15:14:54 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2006/03/09 12:26:01 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\FileMaker
[2005/02/14 12:19:58 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\FotoWire
[2009/03/08 14:08:25 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Foxit
[2008/01/06 11:19:31 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\ImgBurn
[2006/07/08 13:16:07 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\InterVideo
[2008/01/06 16:10:44 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Leadertech
[2005/11/03 16:00:36 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\MSNInstaller
[2008/04/13 11:27:43 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\RipIt4Me
[2006/06/04 16:41:09 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Snapfish
[2007/02/08 20:37:29 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Viewpoint
[2009/05/26 13:54:30 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Vso
[2006/06/04 13:01:53 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Walgreens
[2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At1.job
[2009/08/08 08:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At10.job
[2009/08/05 02:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At100.job
[2009/01/05 17:20:42 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At101.job
[2009/01/05 17:20:42 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At102.job
[2009/01/05 17:20:42 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At103.job
[2009/07/01 06:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At104.job
[2009/09/13 07:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At105.job
[2009/08/08 08:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At106.job
[2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At107.job
[2009/12/21 11:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At108.job
[2009/09/13 11:00:02 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At109.job
[2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At11.job
[2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At110.job
[2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At111.job
[2009/11/23 15:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At112.job
[2009/10/09 15:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At113.job
[2009/10/23 16:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At114.job
[2009/09/13 17:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At115.job
[2009/11/09 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At116.job
[2009/09/07 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At117.job
[2009/10/25 20:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At118.job
[2009/09/30 21:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At119.job
[2009/12/21 11:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At12.job
[2009/11/05 23:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At120.job
[2009/09/13 11:00:04 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At13.job
[2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At14.job
[2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At15.job
[2009/11/23 15:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At16.job
[2009/10/09 15:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At17.job
[2009/10/23 16:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At18.job
[2009/09/13 17:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At19.job
[2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At2.job
[2009/11/09 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At20.job
[2009/09/07 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At21.job
[2009/10/25 20:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At22.job
[2009/09/30 21:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At23.job
[2009/11/05 23:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At24.job
[2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At25.job
[2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At26.job
[2009/08/05 01:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At27.job
[2009/08/05 02:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At28.job
[2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At29.job
[2009/08/05 01:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At3.job
[2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At30.job
[2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At31.job
[2009/07/01 06:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At32.job
[2009/09/13 07:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At33.job
[2009/08/08 08:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At34.job
[2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At35.job
[2009/12/21 11:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At36.job
[2009/09/13 11:00:04 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At37.job
[2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At38.job
[2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At39.job
[2009/08/05 02:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At4.job
[2009/11/23 15:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At40.job
[2009/10/09 15:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At41.job
[2009/10/23 16:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At42.job
[2009/09/13 17:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At43.job
[2009/11/09 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At44.job
[2009/09/07 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At45.job
[2009/10/25 20:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At46.job
[2009/09/30 21:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At47.job
[2009/11/05 23:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At48.job
[2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At49.job
[2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At5.job
[2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At50.job
[2009/08/05 01:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At51.job
[2009/08/05 02:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At52.job
[2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At53.job
[2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At54.job
[2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At55.job
[2009/07/01 06:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At56.job
[2009/09/13 07:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At57.job
[2009/08/08 08:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At58.job
[2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At59.job
[2009/01/05 10:08:45 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At6.job
[2009/12/21 11:00:02 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At60.job
[2009/09/13 11:00:04 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At61.job
[2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At62.job
[2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At63.job
[2009/11/23 15:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At64.job
[2009/10/09 15:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At65.job
[2009/10/23 16:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At66.job
[2009/09/13 17:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At67.job
[2009/11/09 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At68.job
[2009/09/07 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At69.job
[2009/01/05 10:08:45 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At7.job
[2009/10/25 20:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At70.job
[2009/09/30 21:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At71.job
[2009/11/05 23:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At72.job
[2009/01/05 10:08:45 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At73.job
[2009/01/05 10:08:45 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At74.job
[2009/08/05 01:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At75.job
[2009/08/05 02:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At76.job
[2009/01/05 10:08:45 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At77.job
[2009/01/05 10:08:45 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At78.job
[2009/01/05 10:08:45 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At79.job
[2009/07/01 06:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At8.job
[2009/07/01 06:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At80.job
[2009/09/13 07:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At81.job
[2009/08/08 08:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At82.job
[2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At83.job
[2009/12/21 11:00:02 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At84.job
[2009/09/13 11:00:04 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At85.job
[2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At86.job
[2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At87.job
[2009/11/23 15:00:02 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At88.job
[2009/10/09 15:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At89.job
[2009/09/13 07:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At9.job
[2009/10/23 16:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At90.job
[2009/09/13 17:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At91.job
[2009/11/09 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At92.job
[2009/09/07 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At93.job
[2009/10/25 20:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At94.job
[2009/09/30 21:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At95.job
[2009/11/05 23:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At96.job
[2009/01/05 17:20:42 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At97.job
[2009/01/05 17:20:42 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At98.job
[2009/08/05 01:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At99.job

========== Purity Check ==========



========== Custom Scans ==========


< %ALLUSERSPROFILE%\Application Data\*. >
[2009/04/09 15:17:37 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Adobe
[2009/01/17 11:56:55 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AOL
[2007/11/15 13:01:07 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AOL Downloads
[2007/11/15 12:39:05 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AOL OCP
[2006/02/14 12:05:09 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Apple Computer
[2009/06/25 14:08:14 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Avira
[2009/01/05 20:05:10 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Beanbag Studios
[2008/04/13 10:52:29 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DVD Shrink
[2009/01/06 13:54:14 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2009/11/09 14:01:22 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\McAfee
[2009/08/19 15:53:34 | 00,000,000 | --SD | M] -- C:\Documents and Settings\All Users\Application Data\Microsoft
[2004/11/21 20:22:13 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\muvee Technologies
[2009/08/04 21:51:22 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NOS
[2005/02/14 10:01:40 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Pure Networks
[2004/11/21 20:21:40 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\QuickTime
[2004/11/21 19:38:53 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SBSI
[2009/03/01 14:06:11 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SITEguard
[2009/03/01 15:21:52 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\STOPzilla!
[2006/03/21 11:55:12 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Symantec
[2009/11/23 15:18:10 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2008/02/27 09:49:49 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Viewpoint
[2006/04/26 19:26:26 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
[2007/12/24 15:54:23 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Windows Live Toolbar
[2009/04/15 20:38:26 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Yahoo! Companion

< %ALLUSERSPROFILE%\Application Data\*.exe /s >
[2007/11/15 13:01:27 | 00,081,176 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\AOLEXPLORER_1.5.22.1\alsetup.exe
[2007/11/15 13:01:12 | 00,164,080 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\AOLEXPLORER_1.5.22.1\iphinst.exe
[2007/11/15 13:01:35 | 00,547,984 | ---- | M] (America Online) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\AOLEXPLORER_1.5.22.1\muinst.exe
[2007/11/15 13:01:52 | 03,059,720 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\AOLEXPLORER_1.5.22.1\ocpinst.exe
[2007/11/15 13:01:24 | 00,034,896 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\AOLEXPLORER_1.5.22.1\postproc.exe
[2007/11/15 13:01:41 | 00,159,312 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\AOLEXPLORER_1.5.22.1\setup.exe
[2007/11/15 13:01:23 | 00,594,240 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\AOLEXPLORER_1.5.22.1\SLinst.exe
[2007/11/15 13:01:14 | 00,352,112 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\AOLEXPLORER_1.5.22.1\SLLang.exe
[2007/11/15 13:01:29 | 00,138,296 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\AOLEXPLORER_1.5.22.1\WDInst.exe
[2007/11/15 12:36:05 | 00,355,592 | ---- | M] (AOL LLC) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ccu_suite\4.3.38.1\ccu_suite_4.3.38.1\afixinst.exe
[2007/11/15 12:36:09 | 00,127,224 | ---- | M] (AOL LLC) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ccu_suite\4.3.38.1\ccu_suite_4.3.38.1\afixlang.exe
[2007/11/15 12:35:37 | 00,142,040 | ---- | M] (AOL LLC) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ccu_suite\4.3.38.1\ccu_suite_4.3.38.1\alsetup.exe
[2007/11/15 12:36:24 | 00,370,496 | ---- | M] (AOL LLC) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ccu_suite\4.3.38.1\ccu_suite_4.3.38.1\CCUInst.exe
[2007/11/15 12:35:55 | 00,282,056 | ---- | M] (AOL LLC) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ccu_suite\4.3.38.1\ccu_suite_4.3.38.1\cculang.exe
[2007/11/15 12:36:11 | 00,260,040 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ccu_suite\4.3.38.1\ccu_suite_4.3.38.1\ecuinst.exe
[2007/11/15 12:35:57 | 00,580,136 | ---- | M] (AOL LLC.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ccu_suite\4.3.38.1\ccu_suite_4.3.38.1\muinst.exe
[2007/11/15 12:36:19 | 02,439,824 | ---- | M] (AOL LLC) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ccu_suite\4.3.38.1\ccu_suite_4.3.38.1\ocpinsti.exe
[2007/11/15 12:35:51 | 03,147,256 | ---- | M] (AOL LLC) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ccu_suite\4.3.38.1\ccu_suite_4.3.38.1\ocpinsts.exe
[2007/11/15 12:35:53 | 00,036,912 | ---- | M] (AOL LLC.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ccu_suite\4.3.38.1\ccu_suite_4.3.38.1\postproc.exe
[2007/11/15 12:36:00 | 00,170,544 | ---- | M] (AOL LLC.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ccu_suite\4.3.38.1\ccu_suite_4.3.38.1\setup.exe
[2007/11/15 12:36:00 | 00,098,992 | ---- | M] (AOL LLC.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ccu_suite\4.3.38.1\ccu_suite_4.3.38.1\sminstlp.exe
[2007/11/15 12:35:39 | 00,174,752 | ---- | M] (AOL LLC.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ccu_suite\4.3.38.1\ccu_suite_4.3.38.1\stmninst.exe
[2007/11/15 12:35:52 | 00,359,184 | ---- | M] (AOL LLC) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ccu_suite\4.3.38.1\ccu_suite_4.3.38.1\tbsetup.exe
[2007/11/15 12:36:06 | 00,223,152 | ---- | M] (AOL, LLC) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ccu_suite\4.3.38.1\ccu_suite_4.3.38.1\wsfinst.exe
[2006/03/14 10:35:14 | 00,298,000 | ---- | M] (America Online) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\CCU_SUITE_1.0.48.1\afixinst.exe
[2006/03/14 10:35:04 | 00,188,776 | ---- | M] (America Online) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\CCU_SUITE_1.0.48.1\afixlang.exe
[2006/03/14 10:35:12 | 00,081,200 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\CCU_SUITE_1.0.48.1\alsetup.exe
[2006/03/14 10:35:39 | 00,261,464 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\CCU_SUITE_1.0.48.1\CCUInst.exe
[2006/03/14 10:35:11 | 00,191,984 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\CCU_SUITE_1.0.48.1\cculang.exe
[2006/03/14 10:35:23 | 00,164,104 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\CCU_SUITE_1.0.48.1\iphinst.exe
[2006/03/14 10:35:21 | 00,657,768 | ---- | M] (America Online) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\CCU_SUITE_1.0.48.1\muinst.exe
[2006/03/14 10:35:38 | 03,117,928 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\CCU_SUITE_1.0.48.1\ocpinst.exe
[2006/03/14 10:35:15 | 00,033,896 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\CCU_SUITE_1.0.48.1\postproc.exe
[2006/03/14 10:35:06 | 00,154,728 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\CCU_SUITE_1.0.48.1\setup.exe
[2006/03/14 10:35:41 | 00,306,192 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\CCU_SUITE_1.0.48.1\tbsetup.exe
[2006/04/04 16:37:06 | 00,422,386 | ---- | M] (America Online) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\IETOOLBAR_3.0.44.1\muinst.exe
[2006/04/04 16:36:58 | 00,155,240 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\IETOOLBAR_3.0.44.1\setup.exe
[2006/04/04 16:37:14 | 01,073,120 | ---- | M] (America Online) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\IETOOLBAR_3.0.44.1\toolbar.exe
[2006/03/21 11:49:58 | 00,033,896 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ssc_suite_installer_1.10.7.1\postproc.exe
[2006/03/21 11:49:52 | 00,452,200 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ssc_suite_installer_1.10.7.1\setup.exe
[2006/03/21 11:49:23 | 00,081,200 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ssc_suite_installer_1.10.7.1\comps\alsetup.exe
[2006/03/14 11:40:58 | 05,859,920 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ssc_suite_installer_1.10.7.1\comps\asp2inst.exe
[2006/03/21 11:49:06 | 08,086,128 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ssc_suite_installer_1.10.7.1\comps\avinst.exe
[2006/03/21 11:49:40 | 02,588,976 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ssc_suite_installer_1.10.7.1\comps\fwinst.exe
[2006/03/21 11:49:18 | 00,163,992 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ssc_suite_installer_1.10.7.1\comps\iphinst.exe
[2006/03/21 11:49:14 | 00,650,568 | ---- | M] (America Online) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ssc_suite_installer_1.10.7.1\comps\muinst.exe
[2006/03/21 11:50:28 | 03,409,104 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ssc_suite_installer_1.10.7.1\comps\ocpinst.exe
[2006/03/21 11:50:13 | 02,411,888 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ssc_suite_installer_1.10.7.1\comps\pwinst.exe
[2006/03/14 11:40:12 | 00,568,432 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ssc_suite_installer_1.10.7.1\comps\SLinst.exe
[2006/03/21 11:50:00 | 00,185,952 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ssc_suite_installer_1.10.7.1\comps\SLLang.exe
[2006/03/14 11:40:18 | 01,693,688 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ssc_suite_installer_1.10.7.1\comps\ssc_full.exe
[2006/03/21 11:50:04 | 00,527,544 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\ssc_suite_installer_1.10.7.1\comps\wbsetup.exe
[2006/11/20 16:04:14 | 00,160,304 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\inst.exe
[2006/11/20 16:04:22 | 00,033,840 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\postproc.exe
[2006/11/20 16:04:56 | 00,558,640 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\setup.exe
[2006/11/20 16:05:06 | 00,051,296 | ---- | M] (AOL LLC) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\comps\AcsXprFx.exe
[2006/11/20 16:04:06 | 00,081,144 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\comps\alsetup.exe
[2006/11/20 16:04:40 | 01,875,256 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\comps\asp2inst.exe
[2006/11/20 16:04:38 | 04,407,968 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\comps\avinst.exe
[2006/11/20 16:04:36 | 02,789,376 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\comps\fwinst.exe
[2006/11/20 16:04:54 | 00,182,592 | ---- | M] (AOL LLC) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\comps\iphinst.exe
[2006/11/20 16:04:46 | 00,555,704 | ---- | M] (America Online) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\comps\muinst.exe
[2006/11/20 16:04:48 | 10,111,400 | ---- | M] (AOL LLC) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\comps\ocpinst.exe
[2006/11/20 16:05:02 | 00,686,736 | ---- | M] (AOL LLC) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\comps\SinfInst.exe
[2006/11/20 16:05:06 | 00,099,128 | ---- | M] (AOL LLC.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\comps\sminstlp.exe
[2006/11/20 16:04:38 | 00,068,032 | ---- | M] (AOL LLC) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\comps\sscrunnr.exe
[2006/11/20 16:04:30 | 01,460,008 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\comps\ssc_full.exe
[2006/11/20 16:04:32 | 00,668,416 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\comps\ssc_us.exe
[2006/11/20 16:05:04 | 00,174,848 | ---- | M] (AOL LLC.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\comps\stmninst.exe
[2006/11/20 16:04:42 | 00,339,584 | ---- | M] (America Online, Inc.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\comps\tbsetup.exe
[2006/11/20 16:05:00 | 00,584,168 | ---- | M] (AOL LLC.) -- C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4028\comps\wbsetup.exe
[2007/09/13 16:42:53 | 00,505,245 | ---- | M] (Computer Associates Int'l ) -- C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\antiSpyware\dat\PPClean.exe
[2007/03/16 16:19:16 | 02,304,136 | ---- | M] (AOL, LLC) -- C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\antiSpyware\dat\updates\asprtpup.exe
[2009/09/12 07:33:26 | 04,045,528 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe

< %APPDATA%\*. >
[2009/01/11 11:42:51 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Adobe
[2007/01/16 19:13:37 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\AdobeUM
[2006/12/24 10:53:36 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\AOL
[2006/02/27 12:59:28 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Apple Computer
[2009/03/08 15:14:54 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2008/04/28 11:15:47 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\dvdcss
[2006/03/09 12:26:01 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\FileMaker
[2005/02/14 12:19:58 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\FotoWire
[2009/03/08 14:08:25 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Foxit
[2006/09/17 13:53:53 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Google
[2004/11/21 19:38:53 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Identities
[2008/01/06 11:19:31 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\ImgBurn
[2006/07/08 13:16:07 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\InterVideo
[2008/01/06 16:10:44 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Leadertech
[2005/02/14 09:54:40 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Macromedia
[2009/01/06 13:54:27 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Malwarebytes
[2009/03/23 09:30:33 | 00,000,000 | --SD | M] -- C:\Documents and Settings\Richard Super\Application Data\Microsoft
[2009/01/01 11:21:59 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Move Networks
[2009/11/23 09:47:55 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Mozilla
[2005/11/03 16:00:36 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\MSNInstaller
[2008/04/13 11:27:43 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\RipIt4Me
[2006/06/04 16:41:09 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Snapfish
[2008/01/06 16:11:09 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Sonic
[2004/11/21 19:51:49 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Sun
[2005/02/19 11:17:04 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Symantec
[2007/02/08 20:37:29 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Viewpoint
[2009/05/11 13:39:57 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\vlc
[2009/05/26 13:54:30 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Vso
[2006/06/04 13:01:53 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Walgreens
[2009/01/10 11:18:28 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\Yahoo!
[2005/02/14 10:01:22 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Richard Super\Application Data\You've Got Pictures Screensaver

< %APPDATA%\*.exe /s >
[2008/04/28 09:49:52 | 00,087,608 | ---- | M] () -- C:\Documents and Settings\Richard Super\Application Data\inst.exe
[2007/01/15 22:04:59 | 21,277,080 | ---- | M] ( ) -- C:\Documents and Settings\Richard Super\Application Data\Adobe\Acrobat\7.0\Updater\AdbeRdr709_en_US.exe
[2008/10/25 19:38:32 | 00,099,704 | ---- | M] () -- C:\Documents and Settings\Richard Super\Application Data\Move Networks\ie_bin\MovePlayerUpgrade.exe
[2009/01/01 11:20:09 | 00,034,062 | ---- | M] () -- C:\Documents and Settings\Richard Super\Application Data\Move Networks\ie_bin\Uninst.exe
[2008/01/06 11:20:07 | 00,643,072 | ---- | M] () -- C:\Documents and Settings\Richard Super\Application Data\RipIt4Me\updater\ri4mupdater.exe

< %SYSTEMDRIVE%\*.exe >
[2005/12/06 13:39:38 | 00,010,920 | ---- | M] () -- C:\aolconnfix.exe


< MD5 for: AGP440.SYS >
[2004/08/04 07:00:00 | 18,738,937 | ---- | M] () .cab file -- C:\I386\sp2.cab:AGP440.sys
[2004/08/04 06:00:00 | 18,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2009/01/05 12:53:43 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2009/01/05 12:53:43 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008/04/13 12:36:38 | 00,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008/04/13 12:36:38 | 00,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys
[2004/08/03 23:07:42 | 00,042,368 | ---- | M] (Microsoft Corporation) MD5=2C428FA0C3E3A01ED93C9B2A27D8D4BB -- C:\WINDOWS\$NtServicePackUninstall$\agp440.sys

< MD5 for: ATAPI.SYS >
[2004/08/04 07:00:00 | 18,738,937 | ---- | M] () .cab file -- C:\I386\sp2.cab:atapi.sys
[2004/08/04 06:00:00 | 18,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2009/01/05 12:53:43 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2009/01/05 12:53:43 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008/04/13 12:40:30 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008/04/13 12:40:30 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004/08/04 06:00:00 | 00,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys

< MD5 for: EVENTLOG.DLL >
[2008/04/13 18:11:53 | 00,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008/04/13 18:11:53 | 00,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\system32\eventlog.dll
[2004/08/04 06:00:00 | 00,055,808 | ---- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll

< MD5 for: NETLOGON.DLL >
[2008/04/13 18:12:01 | 00,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008/04/13 18:12:01 | 00,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\system32\netlogon.dll
[2004/08/04 06:00:00 | 00,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll

< MD5 for: SCECLI.DLL >
[2004/08/04 06:00:00 | 00,180,224 | ---- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008/04/13 18:12:05 | 00,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008/04/13 18:12:05 | 00,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\system32\scecli.dll

< %systemroot%\*. /mp /s >

< >

========== Alternate Data Streams ==========

@Alternate Data Stream - 98 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:0105A66F
@Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:5C321E34
@Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2
< End of report >

OTL Extras logfile created on: 1/10/2010 10:23:17 AM - Run 2
OTL by OldTimer - Version 3.1.23.0 Folder = C:\Documents and Settings\Richard Super\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

511.00 Mb Total Physical Memory | 160.00 Mb Available Physical Memory | 31.00% Memory free
1.00 Gb Paging File | 1.00 Gb Available in Paging File | 60.00% Paging File free
Paging file location(s): c:\pagefile.sys 768 1536 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 55.88 Gb Total Space | 40.74 Gb Free Space | 72.91% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: SUPER-LAPTOP
Current User Name: Richard Super
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-1467198363-3990250233-1503334692-1006\SOFTWARE\Classes\<extension>]
.hta [@ = htafile] -- Reg Error: Key error. File not found
.html [@ = htmlfile] -- Reg Error: Key error. File not found
.url [@ = InternetShortcut] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\OFFICE11\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\OFFICE11\msohtmed.exe" /p %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\America Online 9.0\waol.exe" = C:\Program Files\America Online 9.0\waol.exe:*:Enabled:America Online 9.0 -- File not found
"C:\Program Files\Common Files\AOL\ACS\AOLDial.exe" = C:\Program Files\Common Files\AOL\ACS\AOLDial.exe:*:Enabled:AOL -- (AOL LLC)
"C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe" = C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe:*:Enabled:AOL -- (AOL LLC)
"C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe" = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger -- (Logitech)
"C:\Program Files\MSN Messenger\msnmsgr.exe" = C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1 -- File not found
"C:\Program Files\MSN Messenger\livecall.exe" = C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone) -- File not found

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\America Online 9.0\waol.exe" = C:\Program Files\America Online 9.0\waol.exe:*:Enabled:America Online 9.0 -- File not found
"C:\Program Files\Common Files\AOL\ACS\AOLDial.exe" = C:\Program Files\Common Files\AOL\ACS\AOLDial.exe:*:Enabled:AOL -- (AOL LLC)
"C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe" = C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe:*:Enabled:AOL -- (AOL LLC)
"C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe" = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:*:Disabled:Logitech Desktop Messenger -- (Logitech)
"C:\Program Files\Common Files\AOL\TopSpeed\3.0\aoltpsd3.exe" = C:\Program Files\Common Files\AOL\TopSpeed\3.0\aoltpsd3.exe:*:Enabled:AOL TopSpeed -- File not found
"C:\Program Files\America Online 9.0b\waol.exe" = C:\Program Files\America Online 9.0b\waol.exe:*:Enabled:AOL -- File not found
"C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe" = C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe:*:Enabled:AOLTsMon -- File not found
"C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltpspd.exe" = C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltpspd.exe:*:Enabled:AOLTopSpeed -- File not found
"C:\Program Files\Common Files\AOL\1130190466\ee\AOLServiceHost.exe" = C:\Program Files\Common Files\AOL\1130190466\ee\AOLServiceHost.exe:*:Enabled:AOL -- (America Online, Inc.)
"C:\Program Files\Common Files\AOL\Loader\aolload.exe" = C:\Program Files\Common Files\AOL\Loader\aolload.exe:*:Enabled:AOL -- (AOL LLC)
"C:\Program Files\Common Files\AOL\System Information\sinf.exe" = C:\Program Files\Common Files\AOL\System Information\sinf.exe:*:Enabled:AOL -- (America Online, Inc.)
"C:\Program Files\Common Files\AolCoach\en_en\player\AOLNySEV.exe" = C:\Program Files\Common Files\AolCoach\en_en\player\AOLNySEV.exe:*:Enabled:AOL -- (Gteko Ltd.)
"C:\Program Files\Common Files\AOL\1130190466\ee\aolsoftware.exe" = C:\Program Files\Common Files\AOL\1130190466\ee\aolsoftware.exe:*:Enabled:AOL Shared Components -- (AOL LLC)
"C:\Program Files\MSN Messenger\msnmsgr.exe" = C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1 -- File not found
"C:\Program Files\MSN Messenger\livecall.exe" = C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone) -- File not found
"C:\Program Files\IncrediMail\bin\ImApp.exe" = C:\Program Files\IncrediMail\bin\ImApp.exe:*:Enabled:IncrediMail -- File not found
"C:\Program Files\IncrediMail\bin\IncMail.exe" = C:\Program Files\IncrediMail\bin\IncMail.exe:*:Enabled:IncrediMail -- File not found
"C:\Program Files\IncrediMail\bin\ImpCnt.exe" = C:\Program Files\IncrediMail\bin\ImpCnt.exe:*:Enabled:IncrediMail -- (IncrediMail, Ltd.)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{02E89EFC-7B07-4D5A-AA03-9EC0902914EE}" = VC 9.0 Runtime
"{0496D9E9-224B-4AFA-8F37-23B98D52F1EB}" = Logitech QuickCam
"{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java™ 6 Update 17
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{416D80BA-6F6D-4672-B7CF-F54DA2F80B44}" = Microsoft Works
"{76EFFC7C-17A6-479D-9E47-8E658C1695AE}" = Windows Backup Utility
"{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}" = Logitech Desktop Messenger
"{91120409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Standard Edition 2003
"{97355297-21C8-40CD-96D3-48E58037A9B8}" = TI1620/1520
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A040AC77-C1AA-4CC9-8931-9F648AF178F6}" = VC 9.0 Runtime
"{C151CE54-E7EA-4804-854B-F515368B0798}" = Athlon 64 Processor Driver
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CEB326EC-8F40-47B2-BA22-BB092565D66F}" = Quick Launch Buttons 5.00 C1
"{DB518BA6-CB74-4EB6-9ABD-880B6D6E1F38}" = HpSdpAppCoreApp
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Agere Systems Soft Modem" = Agere Systems AC'97 Modem
"AOL Uninstaller" = AOL Uninstaller (Choose which Products to Remove)
"AolCoach2_en" = AOL Coach Version 2.0(Build:20041026.5 en)
"Ask Toolbar_is1" = Foxit Toolbar
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"Broadcom 802.11 Application" = Broadcom 802.11 Control Panel
"CCleaner" = CCleaner
"DVDFab Platinum 4_is1" = DVDFab Platinum 4.1.0.2 Ghosthunter release
"Foxit Reader" = Foxit Reader
"HijackThis" = HijackThis 2.0.2
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"ie8" = Windows Internet Explorer 8
"InstallShield_{97355297-21C8-40CD-96D3-48E58037A9B8}" = PCI 1620 Cardbus Controller and Software
"Logitech Print Service" = Logitech Print Service
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Money2005b" = Microsoft Money 2005
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"NVIDIA" = NVIDIA Windows 2000/XP Display Drivers
"NVIDIA GART Driver" = NVIDIA GART Driver
"QcDrv" = Logitech® Camera Driver
"RealPlayer 6.0" = RealPlayer Basic
"Sandboxie" = Sandboxie 3.42
"Secunia PSI" = Secunia PSI
"SpywareBlaster_is1" = SpywareBlaster 4.2
"VLC media player" = VLC media player 0.9.9
"What's Running_is1" = What's Running 2.2
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 3
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Yahoo! Companion" = Yahoo! Toolbar

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-1467198363-3990250233-1503334692-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Move Networks Player - IE" = Move Networks Media Player for Internet Explorer

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 12/16/2009 12:10:50 PM | Computer Name = SUPER-LAPTOP | Source = MsiInstaller | ID = 1024
Description = Product: Microsoft Office Standard Edition 2003 - Update 'Update for
Outlook 2003: Junk E-mail Filter (KB976882): OUTLFLTR' could not be installed.
Error code 1603. Windows Installer can create logs to help troubleshoot issues with
installing software packages. Use the following link for instructions on turning
on logging support: http://go.microsoft.com/fwlink/?LinkId=23127

Error - 12/21/2009 12:35:10 PM | Computer Name = SUPER-LAPTOP | Source = MsiInstaller | ID = 1024
Description = Product: Microsoft Office Standard Edition 2003 - Update 'Update for
Outlook 2003: Junk E-mail Filter (KB974771): OUTLFLTR' could not be installed.
Error code 1603. Windows Installer can create logs to help troubleshoot issues with
installing software packages. Use the following link for instructions on turning
on logging support: http://go.microsoft.com/fwlink/?LinkId=23127

Error - 12/21/2009 12:46:31 PM | Computer Name = SUPER-LAPTOP | Source = MsiInstaller | ID = 1024
Description = Product: Microsoft Office Standard Edition 2003 - Update 'Office 2003
Service Pack 3 (SP3): MAINSP3' could not be installed. Error code 1603. Windows
Installer can create logs to help troubleshoot issues with installing software
packages. Use the following link for instructions on turning on logging support:
http://go.microsoft.com/fwlink/?LinkId=23127

Error - 12/21/2009 12:49:44 PM | Computer Name = SUPER-LAPTOP | Source = MsiInstaller | ID = 1024
Description = Product: Microsoft Office Standard Edition 2003 - Update 'Update for
Outlook 2003: Junk E-mail Filter (KB976882): OUTLFLTR' could not be installed.
Error code 1603. Windows Installer can create logs to help troubleshoot issues with
installing software packages. Use the following link for instructions on turning
on logging support: http://go.microsoft.com/fwlink/?LinkId=23127

Error - 1/9/2010 2:56:22 PM | Computer Name = SUPER-LAPTOP | Source = MsiInstaller | ID = 1024
Description = Product: Microsoft Office Standard Edition 2003 - Update 'Office 2003
Service Pack 3 (SP3): MAINSP3' could not be installed. Error code 1603. Windows
Installer can create logs to help troubleshoot issues with installing software
packages. Use the following link for instructions on turning on logging support:
http://go.microsoft.com/fwlink/?LinkId=23127

Error - 1/9/2010 2:58:16 PM | Computer Name = SUPER-LAPTOP | Source = MsiInstaller | ID = 1024
Description = Product: Microsoft Office Standard Edition 2003 - Update 'Update for
Outlook 2003: Junk E-mail Filter (KB976882): OUTLFLTR' could not be installed.
Error code 1603. Windows Installer can create logs to help troubleshoot issues with
installing software packages. Use the following link for instructions on turning
on logging support: http://go.microsoft.com/fwlink/?LinkId=23127

Error - 1/9/2010 3:05:08 PM | Computer Name = SUPER-LAPTOP | Source = MsiInstaller | ID = 1024
Description = Product: Microsoft Office Standard Edition 2003 - Update 'Office 2003
Service Pack 3 (SP3): MAINSP3' could not be installed. Error code 1603. Windows
Installer can create logs to help troubleshoot issues with installing software
packages. Use the following link for instructions on turning on logging support:
http://go.microsoft.com/fwlink/?LinkId=23127

Error - 1/9/2010 3:05:17 PM | Computer Name = SUPER-LAPTOP | Source = MsiInstaller | ID = 1024
Description = Product: Microsoft Office Standard Edition 2003 - Update 'Update for
Outlook 2003: Junk E-mail Filter (KB976882): OUTLFLTR' could not be installed.
Error code 1603. Windows Installer can create logs to help troubleshoot issues with
installing software packages. Use the following link for instructions on turning
on logging support: http://go.microsoft.com/fwlink/?LinkId=23127

Error - 1/10/2010 12:04:24 PM | Computer Name = SUPER-LAPTOP | Source = MsiInstaller | ID = 1024
Description = Product: Microsoft Office Standard Edition 2003 - Update 'Office 2003
Service Pack 3 (SP3): MAINSP3' could not be installed. Error code 1603. Windows
Installer can create logs to help troubleshoot issues with installing software
packages. Use the following link for instructions on turning on logging support:
http://go.microsoft.com/fwlink/?LinkId=23127

Error - 1/10/2010 12:04:38 PM | Computer Name = SUPER-LAPTOP | Source = MsiInstaller | ID = 1024
Description = Product: Microsoft Office Standard Edition 2003 - Update 'Update for
Outlook 2003: Junk E-mail Filter (KB976882): OUTLFLTR' could not be installed.
Error code 1603. Windows Installer can create logs to help troubleshoot issues with
installing software packages. Use the following link for instructions on turning
on logging support: http://go.microsoft.com/fwlink/?LinkId=23127

[ System Events ]
Error - 1/9/2010 4:00:00 PM | Computer Name = SUPER-LAPTOP | Source = Schedule | ID = 7901
Description = The At63.job command failed to start due to the following error: %%2147942402

Error - 1/9/2010 4:00:00 PM | Computer Name = SUPER-LAPTOP | Source = Schedule | ID = 7901
Description = The At87.job command failed to start due to the following error: %%2147942402

Error - 1/10/2010 11:59:37 AM | Computer Name = SUPER-LAPTOP | Source = Service Control Manager | ID = 7011
Description = Timeout (30000 milliseconds) waiting for a transaction response from
the WZCSVC service.

Error - 1/10/2010 12:00:00 PM | Computer Name = SUPER-LAPTOP | Source = Schedule | ID = 7901
Description = The At107.job command failed to start due to the following error:
%%2147942402

Error - 1/10/2010 12:00:00 PM | Computer Name = SUPER-LAPTOP | Source = Schedule | ID = 7901
Description = The At11.job command failed to start due to the following error: %%2147942402

Error - 1/10/2010 12:00:00 PM | Computer Name = SUPER-LAPTOP | Source = Schedule | ID = 7901
Description = The At35.job command failed to start due to the following error: %%2147942402

Error - 1/10/2010 12:00:00 PM | Computer Name = SUPER-LAPTOP | Source = Schedule | ID = 7901
Description = The At59.job command failed to start due to the following error: %%2147942402

Error - 1/10/2010 12:00:00 PM | Computer Name = SUPER-LAPTOP | Source = Schedule | ID = 7901
Description = The At83.job command failed to start due to the following error: %%2147942402

Error - 1/10/2010 12:04:30 PM | Computer Name = SUPER-LAPTOP | Source = Windows Update Agent | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Office 2003 Service Pack 3 (SP3).

Error - 1/10/2010 12:07:56 PM | Computer Name = SUPER-LAPTOP | Source = Windows Update Agent | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Update for Microsoft Office Outlook 2003 Junk Email Filter
(KB976882).


< End of report >


#4 thcbytes

thcbytes

  • Malware Response Team
  • 14,790 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:38 AM

Posted 10 January 2010 - 03:09 PM

Hi, smile.gif
How about the HarwareInfo log too.
Thanks...
Proud member - Unified Network of Instructors and Trained Eliminators
Posted Image

I do not accept personal donations for assistance provided. I would ask that you instead consider donating the greatest gift - Organ Donation. Your organs are of no use to you when your gone. You will save a life that would otherwise be lost!

http://donatelife.net/register-now/

#5 repairit

repairit
  • Topic Starter

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:03:38 AM

Posted 10 January 2010 - 05:15 PM

Logfile of Aommaster's HardwareInfo v.1.0.0
###############
Computer information
###############
Manufacturer: Hewlett-Packard
Model: Presario R3200
Type: Notebook

##############
Disk Drive information
##############
--------------
Drive \\.\PHYSICALDRIVE0
--------------
Manufacturer:(Standard disk drives)
Model:TOSHIBA MK6025GAS
Interface Type:IDE
Media Type:Fixed hard disk media
Partitions: 1
Total Space: 55.89 GB


##############
Partition information
##############
--------------
Drive C:
--------------
Media Type: Fixed
File System: NTFS
Total Space: 55.88 GB
Free Space: 40.72 GB
Used Space: 15.16 GB

###########
OS information
###########
----------------------------
Operating System: Microsoft Windows XP Home Edition
----------------------------
Version: 5.1.2600
Service Pack: SP3
Total Virtual Memory: 1.99 GB
Free Virtual Memory: 1.95 GB
RAM Available to OS: 510.98 MB
Free RAM: 119.86 MB
Pagefile Initial Size: 768 MB
Pagefile Maximum Size: 1536 MB


###########
RAM information
###########
----------------------------
Name: Physical Memory 0
----------------------------
RAM: 256 MB
Type: DRAM

----------------------------
Name: Physical Memory 1
----------------------------
RAM: 256 MB
Type: DRAM


###########
Motherboard information
###########
----------------------------
Name: Base Board
----------------------------
Description: Compal
Product: 08A0


###########
BIOS information
###########
----------------------------
Name: Ver 1.00PARTTBL
----------------------------
Description: Hewlett-Packard
BIOS Version: F.30


###########
CPU information
###########
----------------------------
Name: AMD Athlon™ XP Processor 2800+
----------------------------
Type: 64-bit
Cores: 1
Maximum Clock Speed: 797 MHz
Current Clock Speed: 398 MHz


###########
GPU information
###########
----------------------------
Name: NVIDIA GeForce4 420 Go 32M
----------------------------
Card Memory: 32 MB


~~~EOF~~~

#6 thcbytes

thcbytes

  • Malware Response Team
  • 14,790 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:38 AM

Posted 10 January 2010 - 08:40 PM

Good. smile.gif

Now take that gmer log and either click the browse button in the lower right and attach it or split it up over several posts. thumbup2.gif

After you post the Gmer log I will guide you as to your next step.

Talk to you soon.......


Proud member - Unified Network of Instructors and Trained Eliminators
Posted Image

I do not accept personal donations for assistance provided. I would ask that you instead consider donating the greatest gift - Organ Donation. Your organs are of no use to you when your gone. You will save a life that would otherwise be lost!

http://donatelife.net/register-now/

#7 repairit

repairit
  • Topic Starter

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:03:38 AM

Posted 10 January 2010 - 09:57 PM

GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-01-10 11:41:52
Windows 5.1.2600 Service Pack 3
Running: 6dqvop6u.exe; Driver: C:\DOCUME~1\RICHAR~1\LOCALS~1\Temp\kgtyrpob.sys


---- System - GMER 1.0.15 ----

SSDT F8B909F6 ZwCreateKey
SSDT F8B909EC ZwCreateThread
SSDT F8B909FB ZwDeleteKey
SSDT F8B90A05 ZwDeleteValueKey
SSDT F8B90A0A ZwLoadKey
SSDT F8B909D8 ZwOpenProcess
SSDT F8B909DD ZwOpenThread
SSDT F8B90A14 ZwReplaceKey
SSDT F8B90A0F ZwRestoreKey
SSDT F8B90A00 ZwSetValueKey
SSDT F8B909E7 ZwTerminateProcess

Code 81DA5BAC ZwRequestPort
Code 81DA5C4C ZwRequestWaitReplyPort
Code 81DA5B0C ZwTraceEvent
Code 81DA5BAB NtRequestPort
Code 81DA5C4B NtRequestWaitReplyPort
Code 81DA5B0B NtTraceEvent

---- Kernel code sections - GMER 1.0.15 ----

.text ntkrnlpa.exe!NtTraceEvent 80531838 5 Bytes JMP 81DA5B10
PAGE ntkrnlpa.exe!NtRequestPort 80597DE2 5 Bytes JMP 81DA5BB0
PAGE ntkrnlpa.exe!NtRequestWaitReplyPort 8059810E 5 Bytes JMP 81DA5C50
init C:\WINDOWS\system32\drivers\tiumflt.sys entry point in "init" section [0xF88B7E00]
init C:\WINDOWS\system32\drivers\tiumfwl.sys entry point in "init" section [0xF87D1F00]
.text C:\WINDOWS\system32\DRIVERS\nv4_mini.sys section is writeable [0xF7D5D340, 0x106FDF, 0xF8000020]
.text win32k.sys!EngAcquireSemaphore + 20E2 BF8082E1 5 Bytes JMP 81DA54D0
.text win32k.sys!EngFreeUserMem + 5BD2 BF80EE68 5 Bytes JMP 81DA5430
.text win32k.sys!BRUSHOBJ_pvAllocRbrush + 322E BF81E77A 5 Bytes JMP 81DA59D0
.text win32k.sys!EngSetLastError + 768F BF8286CB 5 Bytes JMP 81DA5610
.text win32k.sys!EngCreateBitmap + DDB2 BF845CCB 5 Bytes JMP 81DA56B0
.text win32k.sys!EngMultiByteToWideChar + 2F32 BF852C47 5 Bytes JMP 81DA5890
.text win32k.sys!XLATEOBJ_iXlate + 3A50 BF86368D 5 Bytes JMP 81DA5570
.text win32k.sys!FONTOBJ_pxoGetXform + CC3E BF8C31D6 5 Bytes JMP 81DA5750
.text win32k.sys!PATHOBJ_vGetBounds + 74EE BF8F00FB 5 Bytes JMP 81DA5930
.text win32k.sys!EngCreateClip + 19C1 BF91313E 5 Bytes JMP 81DA5A70
.text win32k.sys!EngCreateClip + 2597 BF913D14 5 Bytes JMP 81DA57F0
.text C:\WINDOWS\System32\nv4_disp.dll section is writeable [0xBF9D6300, 0x238E10, 0xF8000020]
? System32\Drivers\hiber_WMILIB.SYS The system cannot find the path specified. !

---- User code sections - GMER 1.0.15 ----

.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtAdjustPrivilegesToken 7C90CF0E 4 Bytes JMP 7D24ED30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtClose 7C90CFEE 4 Bytes JMP 7D2362E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtConnectPort 7C90D04E 4 Bytes JMP 7D240CE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtCreateEvent 7C90D08E 4 Bytes JMP 7D23FAF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtCreateFile 7C90D0AE 4 Bytes JMP 7D236A70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtCreateKey 7C90D0EE 4 Bytes JMP 7D243810 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtCreateMailslotFile 7C90D0FE 4 Bytes JMP 7D2344A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtCreateMutant 7C90D10E 4 Bytes JMP 7D23FE40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtCreateNamedPipeFile 7C90D11E 4 Bytes JMP 7D234640 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtCreatePort 7C90D13E 4 Bytes JMP 7D23F620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtCreateSection 7C90D17E 4 Bytes JMP 7D2404F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtCreateSemaphore 7C90D18E 4 Bytes JMP 7D2401A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtDeleteFile 7C90D23E 4 Bytes JMP 7D231AA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtDeleteKey 7C90D24E 4 Bytes JMP 7D244210 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtDeleteValueKey 7C90D26E 4 Bytes JMP 7D244EF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtDuplicateObject 7C90D29E 4 Bytes JMP 7D24E980 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtEnumerateKey 7C90D2CE 4 Bytes JMP 7D244590 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtEnumerateValueKey 7C90D2EE 4 Bytes JMP 7D244B30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtFsControlFile 7C90D39E 4 Bytes JMP 7D235ED0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtImpersonateClientOfPort 7C90D3FE 4 Bytes JMP 7D23FA90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtLoadDriver 7C90D46E 4 Bytes JMP 7D2456F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtLoadKey 7C90D47E 4 Bytes JMP 7D242EC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtNotifyChangeKey 7C90D54E 4 Bytes JMP 7D243620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtNotifyChangeMultipleKeys 7C90D55E 4 Bytes JMP 7D242B90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtOpenEvent 7C90D57E 4 Bytes JMP 7D23FC90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtOpenFile 7C90D59E 4 Bytes JMP 7D2377F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtOpenKey 7C90D5CE 4 Bytes JMP 7D244190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtOpenMutant 7C90D5DE 4 Bytes JMP 7D23FFF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtOpenProcess 7C90D5FE 4 Bytes JMP 7D24E8C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtOpenSection 7C90D62E 4 Bytes JMP 7D2406D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtOpenSemaphore 7C90D63E 4 Bytes JMP 7D240340 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtOpenThread 7C90D65E 4 Bytes JMP 7D24E920 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtQueryAttributesFile 7C90D70E 4 Bytes JMP 7D231A40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtQueryDirectoryFile 7C90D76E 4 Bytes JMP 7D236010 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtQueryFullAttributesFile 7C90D7AE 4 Bytes JMP 7D233BD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtQueryInformationFile 7C90D7CE 4 Bytes JMP 7D235650 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtQueryKey 7C90D85E 4 Bytes JMP 7D244230 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtQueryMultipleValueKey 7C90D86E 4 Bytes JMP 7D244CC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtQuerySecurityObject 7C90D8DE 4 Bytes JMP 7D24EA60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtQuerySystemInformation 7C90D92E 4 Bytes JMP 7D251FF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtQueryValueKey 7C90D96E 4 Bytes JMP 7D244960 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtQueryVolumeInformationFile 7C90D98E 4 Bytes JMP 7D236870 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtReadFile 7C90D9CE 4 Bytes JMP 7D22F510 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtRenameKey 7C90DA5E 4 Bytes JMP 7D242E90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtSaveKey 7C90DB4E 4 Bytes JMP 7D22CD00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtSecureConnectPort 7C90DB7E 4 Bytes JMP 7D240F10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtSetInformationFile 7C90DC5E 4 Bytes JMP 7D237600 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtSetInformationToken 7C90DCBE 4 Bytes JMP 7D24ECF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtSetSecurityObject 7C90DD2E 4 Bytes JMP 7D24EB80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtSetValueKey 7C90DDCE 4 Bytes JMP 7D2434E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!NtWriteFile 7C90DF7E 4 Bytes JMP 7D22F600 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!RtlGetFullPathName_U 7C9143A9 5 Bytes JMP 7D230460 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!RtlGetCurrentDirectory_U 7C914506 5 Bytes JMP 7D236580 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!LdrLoadDll 7C9163C3 4 Bytes JMP 7D245950 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!LdrUnloadDll 7C91738B 4 Bytes JMP 7D245A40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!RtlSetCurrentDirectory_U 7C91E7AA 5 Bytes JMP 7D2367F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ntdll.dll!RtlCreateProcessParameters 7C922E99 5 Bytes JMP 7D246920 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] kernel32.dll!CreateProcessW 7C802336 5 Bytes JMP 7D247F90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] kernel32.dll!CreateProcessA 7C80236B 5 Bytes JMP 7D247FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] kernel32.dll!GetModuleFileNameW 7C80B475 5 Bytes JMP 7D2455E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] kernel32.dll!CreateActCtxW 7C8154FC 4 Bytes JMP 7D253A60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] kernel32.dll!MoveFileWithProgressW 7C81F72E 4 Bytes JMP 7D232C80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] kernel32.dll!WaitNamedPipeW 7C82C674 5 Bytes JMP 7D231CE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] kernel32.dll!WinExec 7C86250D 5 Bytes JMP 7D247510 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] kernel32.dll!CreateActCtxA 7C86C8E5 5 Bytes JMP 7D253A80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] kernel32.dll!SetLocaleInfoA 7C876A0B 5 Bytes JMP 7D251FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] kernel32.dll!SetLocaleInfoW 7C877FB3 5 Bytes JMP 7D251FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!LookupAccountNameW 77DE5B59 5 Bytes JMP 7D2278F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CloseServiceHandle 77DE6CE5 5 Bytes JMP 7D24B790 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!QueryServiceStatus 77DE6D50 5 Bytes JMP 7D24BCE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!OpenSCManagerW 77DE6F55 5 Bytes JMP 7D24A500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!OpenServiceW 77DE6FFD 5 Bytes JMP 7D24CD50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CreateProcessAsUserW 77DEA8A9 5 Bytes JMP 7D247B10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!StartServiceA 77DEFB58 5 Bytes JMP 7D24CBC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!RegisterServiceCtrlHandlerExA 77DEFEAB 5 Bytes JMP 7D24A1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!QueryServiceStatusEx 77DF120A 5 Bytes JMP 7D24BC50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!QueryServiceConfigA 77DF1596 5 Bytes JMP 7D24BE60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!SetServiceStatus 77DF3251 5 Bytes JMP 7D24A350 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!StartServiceCtrlDispatcherW 77DF359D 5 Bytes JMP 7D24B750 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!ReportEventW 77DF3681 5 Bytes JMP 7D24A4E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!RegisterServiceCtrlHandlerExW 77DF3E49 5 Bytes JMP 7D24A1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!RegisterServiceCtrlHandlerW 77DF3E77 5 Bytes JMP 7D24A190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!StartServiceW 77DF3E94 5 Bytes JMP 7D24CB10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!ControlService 77DF4A09 5 Bytes JMP 7D24CBD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!OpenServiceA 77DF4C66 5 Bytes JMP 7D24CE20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!RegisterServiceCtrlHandlerA 77DF4EC6 5 Bytes JMP 7D24A190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!OpenSCManagerA 77DF69AE 5 Bytes JMP 7D24A500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!EnumServicesStatusA 77DF6B47 5 Bytes JMP 7D24D2B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!QueryServiceConfigW 77DF6F92 5 Bytes JMP 7D24BD50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!DeregisterEventSource 77DF79D3 5 Bytes JMP 7D2385F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!RegisterEventSourceA 77DF7B60 5 Bytes JMP 7D24A480 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!ReportEventA 77DF7CB2 5 Bytes JMP 7D24A4E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!RegisterEventSourceW 77DF803C 5 Bytes JMP 7D24A460 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!RegConnectRegistryW 77DF817A 5 Bytes JMP 7D2279C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CreateProcessAsUserA 77E10CE8 5 Bytes JMP 7D247D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CredWriteA 77E17CB9 5 Bytes JMP 7D22B150 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CredWriteW 77E17D59 5 Bytes JMP 7D22AB00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CredReadA 77E17DF9 5 Bytes JMP 7D22B210 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CredReadW 77E17ED1 5 Bytes JMP 7D22AB90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CredEnumerateA 77E17FA9 5 Bytes JMP 7D22B270 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CredEnumerateW 77E18099 5 Bytes JMP 7D22AEF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CredWriteDomainCredentialsA 77E18189 5 Bytes JMP 7D22B180 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CredWriteDomainCredentialsW 77E18259 5 Bytes JMP 7D22AC70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CredReadDomainCredentialsA 77E18329 5 Bytes JMP 7D22B240 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CredReadDomainCredentialsW 77E18419 5 Bytes JMP 7D22AD60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CredDeleteA 77E18509 5 Bytes JMP 7D22B1E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CredDeleteW 77E185B1 5 Bytes JMP 7D22AEA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CredRenameA 77E18659 5 Bytes JMP 7D22B1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CredRenameW 77E18731 5 Bytes JMP 7D22B120 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!RegConnectRegistryA 77E3512A 5 Bytes JMP 7D227980 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!EnumServicesStatusExW 77E369B8 5 Bytes JMP 7D24D2F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!EnumServicesStatusExA 77E36C2F 5 Bytes JMP 7D24D340 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!QueryServiceObjectSecurity 77E36D01 5 Bytes JMP 7D24AFA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!SetServiceObjectSecurity 77E36D81 5 Bytes JMP 7D24B0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!ChangeServiceConfigA 77E36E69 5 Bytes JMP 7D24C7D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!ChangeServiceConfigW 77E37001 5 Bytes JMP 7D24C5E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!ChangeServiceConfig2A 77E37101 5 Bytes JMP 7D24C990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!ChangeServiceConfig2W 77E37189 5 Bytes JMP 7D24C990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CreateServiceA 77E37211 5 Bytes JMP 7D24D680 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!CreateServiceW 77E373A9 5 Bytes JMP 7D24D390 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!DeleteService 77E374B1 5 Bytes JMP 7D24C9E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!EnumDependentServicesA 77E37529 5 Bytes JMP 7D24A070 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!EnumDependentServicesW 77E375E1 5 Bytes JMP 7D24A070 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!GetServiceDisplayNameA 77E37699 5 Bytes JMP 7D24C300 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!GetServiceDisplayNameW 77E37739 5 Bytes JMP 7D24C260 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!GetServiceKeyNameA 77E377D9 5 Bytes JMP 7D24C4C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!GetServiceKeyNameW 77E37879 5 Bytes JMP 7D24C3C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!LockServiceDatabase 77E37919 5 Bytes JMP 7D24A0A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!QueryServiceConfig2A 77E37999 5 Bytes JMP 7D24C0F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!QueryServiceConfig2W 77E37AB1 5 Bytes JMP 7D24C020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!QueryServiceLockStatusA 77E37BC9 5 Bytes JMP 7D24A020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!QueryServiceLockStatusW 77E37C59 5 Bytes JMP 7D24A020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!UnlockServiceDatabase 77E37CE9 5 Bytes JMP 7D24A0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!EnumServicesStatusW 77E37D61 2 Bytes JMP 7D24D270 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!EnumServicesStatusW + 3 77E37D64 2 Bytes [41, 05]
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ADVAPI32.dll!StartServiceCtrlDispatcherA 77E37F09 5 Bytes JMP 7D24B770 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] RPCRT4.dll!RpcBindingInqAuthClientExW 77E8A906 5 Bytes JMP 7D228220 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] Secur32.dll!LsaRegisterLogonProcess 77FE4D17 5 Bytes JMP 7D245C70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!GetWindowLongW 7E4188A6 5 Bytes JMP 7D23BF60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!DispatchMessageW 7E418A01 5 Bytes JMP 7D23C500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!PostMessageW 7E418CCB 5 Bytes JMP 7D23CA40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!GetShellWindow 7E419252 5 Bytes JMP 7D23BA60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!GetWindowLongA 7E41945D 5 Bytes JMP 7D23C000 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!DispatchMessageA 7E4196B8 5 Bytes JMP 7D23C4B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!UnregisterClassW 7E419AA4 5 Bytes JMP 7D23A610 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!RegisterClassW 7E41A39A 5 Bytes JMP 7D23A470 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!RegisterClassExW 7E41AF7F 5 Bytes JMP 7D23A2D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!GetClassInfoExA 7E41DD58 5 Bytes JMP 7D23A740 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!GetClassInfoExW 7E41DEBC 5 Bytes JMP 7D23A6D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!FindWindowExW 7E41E0E3 5 Bytes JMP 7D23B8E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!RegisterDeviceNotificationW 7E41E8B9 5 Bytes JMP 7D2385D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!UnregisterDeviceNotification 7E41E8D7 5 Bytes JMP 7D2385F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!CreateDialogParamW 7E41EA3B 5 Bytes JMP 7D23DCC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!RegisterDeviceNotificationA 7E421B3B 5 Bytes JMP 7D2385D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!DialogBoxParamW 7E4247AB 5 Bytes JMP 3E21541D C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!DialogBoxIndirectParamAorW 7E4249D0 5 Bytes JMP 7D23DB80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!CreateDialogIndirectParamAorW 7E42680B 5 Bytes JMP 7D23DB10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!RegisterClassExA 7E427C39 5 Bytes JMP 7D23A3A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!SetWindowsHookExW 7E42820F 5 Bytes JMP 3E2E9865 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!FindWindowA 7E4282E1 5 Bytes JMP 7D23B820 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!EnumDesktopWindows 7E42851A 5 Bytes JMP 7D23B670 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!UnregisterClassA 7E4289A3 5 Bytes JMP 7D23A670 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!DefWindowProcW 7E428D20 5 Bytes JMP 7D238390 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!SendMessageW 7E42929A 5 Bytes JMP 7D23C750 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!GetPropW 7E4294B3 5 Bytes JMP 7D23BDC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!SetWindowPos 7E4299F3 5 Bytes JMP 7D238540 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!GetClassNameW 7E429D12 5 Bytes JMP 7D23A890 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!EnumWindows 7E42A5AE 5 Bytes JMP 7D23B5C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!GetWindowTextW 7E42A5CD 5 Bytes JMP 7D23B3C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!PostMessageA 7E42AAFD 5 Bytes JMP 7D23C9C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!EnumChildWindows 7E42B0F0 5 Bytes JMP 7D23B610 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!MoveWindow 7E42B29E 5 Bytes JMP 7D2384F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!CallNextHookEx 7E42B3C6 5 Bytes JMP 3E2DCEE9 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!RemovePropW 7E42C076 5 Bytes JMP 7D23BEE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!SetPropW 7E42C0B9 5 Bytes JMP 7D23BE40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!DefWindowProcA 7E42C17E 5 Bytes JMP 7D238400 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!SetWindowLongA 7E42C29D 5 Bytes JMP 7D23C230 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!SetWindowLongW 7E42C2BB 5 Bytes JMP 7D23C180 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!SetParent 7E42C7F9 5 Bytes JMP 7D2384B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!FindWindowW 7E42C9C3 5 Bytes JMP 7D23B780 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!SendMessageTimeoutW 7E42CDAA 5 Bytes JMP 7D23C850 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!CreateWindowExW 7E42D0A3 5 Bytes JMP 3E2ED6EC C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!UnhookWindowsHookEx 7E42D5F3 5 Bytes JMP 3E254602 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!SendNotifyMessageW 7E42D64F 5 Bytes JMP 7D23C960 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!CreateWindowExA 7E42E4A9 5 Bytes JMP 7D2380F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!GetClassInfoW 7E42E81E 5 Bytes JMP 7D23A7B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!RegisterClassA 7E42EA5E 5 Bytes JMP 7D23A540 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!SendMessageA 7E42F3C2 5 Bytes JMP 7D23C6E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!GetClassNameA 7E42F45F 3 Bytes JMP 7D23A970 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!GetClassNameA + 4 7E42F463 1 Byte [FE]
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!EnumThreadWindows 7E42F539 5 Bytes JMP 7D23B640 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!SendMessageTimeoutA 7E42FB6B 5 Bytes JMP 7D23C7F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!SetPropA 7E430000 5 Bytes JMP 7D23BE90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!GetPropA 7E430042 5 Bytes JMP 7D23BE00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!RemovePropA 7E430094 5 Bytes JMP 7D23BF20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!SetWindowsHookExA 7E431211 5 Bytes JMP 7D23D080 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!DialogBoxIndirectParamW 7E432072 5 Bytes JMP 3E3E441F C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!FindWindowExA 7E43214A 5 Bytes JMP 7D23B990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!GetWindowTextA 7E43216B 5 Bytes JMP 7D23B3F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!CreateDialogIndirectParamA 7E439B28 5 Bytes JMP 7D23DC30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!MessageBoxIndirectA 7E43A082 5 Bytes JMP 3E3E4351 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!DialogBoxParamA 7E43B144 5 Bytes JMP 3E3E43BC C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!CreateDialogParamA 7E43C7DB 5 Bytes JMP 7D23DD20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!GetClassInfoA 7E43EBFF 5 Bytes JMP 7D23A820 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!CreateDialogIndirectParamW 7E43F01F 5 Bytes JMP 7D23DC00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!MessageBoxExW 7E450838 5 Bytes JMP 3E3E4222 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!MessageBoxExA 7E45085C 5 Bytes JMP 3E3E4284 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!SendNotifyMessageA 7E453948 5 Bytes JMP 7D23C900 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!DialogBoxIndirectParamA 7E456D7D 5 Bytes JMP 3E3E4482 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!EndTask 7E45A0A5 5 Bytes JMP 7D238590 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!ExitWindowsEx 7E45A275 5 Bytes JMP 7D238470 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] USER32.dll!MessageBoxIndirectW 7E4664D5 5 Bytes JMP 3E3E42E6 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] GDI32.dll!GdiAddFontResourceW 77F1CE11 5 Bytes JMP 7D237CC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] GDI32.dll!RemoveFontResourceExW 77F29281 5 Bytes JMP 7D237D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] GDI32.dll!GetFontResourceInfoW 77F3FFF4 5 Bytes JMP 7D237D60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] GDI32.dll!CreateScalableFontResourceW 77F40160 5 Bytes JMP 7D237DB0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] SHELL32.dll!SHChangeNotifyRegister 7C9FEB5B 5 Bytes JMP 7D251620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] SHELL32.dll!ShellExecuteExW 7CA0996B 5 Bytes JMP 7D251480 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] SHELL32.dll!SHSetInstanceExplorer 7CAC4148 5 Bytes JMP 7D251E40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ole32.dll!CoInitializeEx 774FEF7B 5 Bytes JMP 7D254F70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ole32.dll!RegisterDragDrop 774FF62A 5 Bytes JMP 7D255050 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ole32.dll!CoCreateInstanceEx 77500526 5 Bytes JMP 7D229D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ole32.dll!CoCreateInstance 7750057E 5 Bytes JMP 3E2ED748 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ole32.dll!CoMarshalInterface 7750EA71 5 Bytes JMP 7D2284D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ole32.dll!CoGetClassObject 775156C5 5 Bytes JMP 7D229BA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ole32.dll!OleLoadFromStream 77529C85 5 Bytes JMP 3E3E47A0 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ole32.dll!CoUnmarshalInterface 7752D7F4 5 Bytes JMP 7D229E90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ole32.dll!RevokeDragDrop 77532B55 5 Bytes JMP 7D2550D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] ws2_32.dll!WSANSPIoctl 71AB5086 5 Bytes JMP 7D246520 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] CRYPT32.dll!CryptProtectData 77A8B942 5 Bytes JMP 7D22B7B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[220] CRYPT32.dll!CryptUnprotectData 77A8BAF0 5 Bytes JMP 7D22B5C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtAdjustPrivilegesToken 7C90CF0E 4 Bytes JMP 7D24ED30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtClose 7C90CFEE 4 Bytes JMP 7D2362E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtConnectPort 7C90D04E 4 Bytes JMP 7D240CE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtCreateEvent 7C90D08E 4 Bytes JMP 7D23FAF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtCreateFile 7C90D0AE 4 Bytes JMP 7D236A70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtCreateKey 7C90D0EE 4 Bytes JMP 7D243810 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtCreateMailslotFile 7C90D0FE 4 Bytes JMP 7D2344A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtCreateMutant 7C90D10E 4 Bytes JMP 7D23FE40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtCreateNamedPipeFile 7C90D11E 4 Bytes JMP 7D234640 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtCreatePort 7C90D13E 4 Bytes JMP 7D23F620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtCreateSection 7C90D17E 4 Bytes JMP 7D2404F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtCreateSemaphore 7C90D18E 4 Bytes JMP 7D2401A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtDeleteFile 7C90D23E 4 Bytes JMP 7D231AA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtDeleteKey 7C90D24E 4 Bytes JMP 7D244210 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtDeleteValueKey 7C90D26E 4 Bytes JMP 7D244EF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtDuplicateObject 7C90D29E 4 Bytes JMP 7D24E980 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtEnumerateKey 7C90D2CE 4 Bytes JMP 7D244590 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtEnumerateValueKey 7C90D2EE 4 Bytes JMP 7D244B30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtFsControlFile 7C90D39E 4 Bytes JMP 7D235ED0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtImpersonateClientOfPort 7C90D3FE 4 Bytes JMP 7D23FA90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtLoadDriver 7C90D46E 4 Bytes JMP 7D2456F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtLoadKey 7C90D47E 4 Bytes JMP 7D242EC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtNotifyChangeKey 7C90D54E 4 Bytes JMP 7D243620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtNotifyChangeMultipleKeys 7C90D55E 4 Bytes JMP 7D242B90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtOpenEvent 7C90D57E 4 Bytes JMP 7D23FC90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtOpenFile 7C90D59E 4 Bytes JMP 7D2377F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtOpenKey 7C90D5CE 4 Bytes JMP 7D244190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtOpenMutant 7C90D5DE 4 Bytes JMP 7D23FFF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtOpenProcess 7C90D5FE 4 Bytes JMP 7D24E8C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtOpenSection 7C90D62E 4 Bytes JMP 7D2406D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtOpenSemaphore 7C90D63E 4 Bytes JMP 7D240340 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtOpenThread 7C90D65E 4 Bytes JMP 7D24E920 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtQueryAttributesFile 7C90D70E 4 Bytes JMP 7D231A40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtQueryDirectoryFile 7C90D76E 4 Bytes JMP 7D236010 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtQueryFullAttributesFile 7C90D7AE 4 Bytes JMP 7D233BD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtQueryInformationFile 7C90D7CE 4 Bytes JMP 7D235650 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtQueryKey 7C90D85E 4 Bytes JMP 7D244230 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtQueryMultipleValueKey 7C90D86E 4 Bytes JMP 7D244CC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtQuerySecurityObject 7C90D8DE 4 Bytes JMP 7D24EA60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtQuerySystemInformation 7C90D92E 4 Bytes JMP 7D251FF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtQueryValueKey 7C90D96E 4 Bytes JMP 7D244960 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtQueryVolumeInformationFile 7C90D98E 4 Bytes JMP 7D236870 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtReadFile 7C90D9CE 4 Bytes JMP 7D22F510 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtRenameKey 7C90DA5E 4 Bytes JMP 7D242E90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtSaveKey 7C90DB4E 4 Bytes JMP 7D22CD00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtSecureConnectPort 7C90DB7E 4 Bytes JMP 7D240F10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtSetInformationFile 7C90DC5E 4 Bytes JMP 7D237600 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtSetInformationToken 7C90DCBE 4 Bytes JMP 7D24ECF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtSetSecurityObject 7C90DD2E 4 Bytes JMP 7D24EB80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtSetValueKey 7C90DDCE 4 Bytes JMP 7D2434E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!NtWriteFile 7C90DF7E 4 Bytes JMP 7D22F600 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!RtlGetFullPathName_U 7C9143A9 5 Bytes JMP 7D230460 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!RtlGetCurrentDirectory_U 7C914506 5 Bytes JMP 7D236580 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!LdrLoadDll 7C9163C3 4 Bytes JMP 7D245950 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!LdrUnloadDll 7C91738B 4 Bytes JMP 7D245A40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!RtlSetCurrentDirectory_U 7C91E7AA 5 Bytes JMP 7D2367F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ntdll.dll!RtlCreateProcessParameters 7C922E99 5 Bytes JMP 7D246920 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] kernel32.dll!CreateProcessW 7C802336 5 Bytes JMP 7D247F90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] kernel32.dll!CreateProcessA 7C80236B 5 Bytes JMP 7D247FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] kernel32.dll!GetModuleFileNameW 7C80B475 5 Bytes JMP 7D2455E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] kernel32.dll!CreateActCtxW 7C8154FC 4 Bytes JMP 7D253A60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] kernel32.dll!MoveFileWithProgressW 7C81F72E 4 Bytes JMP 7D232C80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] kernel32.dll!WaitNamedPipeW 7C82C674 5 Bytes JMP 7D231CE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] kernel32.dll!WinExec 7C86250D 5 Bytes JMP 7D247510 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] kernel32.dll!CreateActCtxA 7C86C8E5 5 Bytes JMP 7D253A80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] kernel32.dll!SetLocaleInfoA 7C876A0B 5 Bytes JMP 7D251FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] kernel32.dll!SetLocaleInfoW 7C877FB3 5 Bytes JMP 7D251FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!LookupAccountNameW 77DE5B59 5 Bytes JMP 7D2278F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CloseServiceHandle 77DE6CE5 5 Bytes JMP 7D24B790 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!QueryServiceStatus 77DE6D50 5 Bytes JMP 7D24BCE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!OpenSCManagerW 77DE6F55 5 Bytes JMP 7D24A500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!OpenServiceW 77DE6FFD 5 Bytes JMP 7D24CD50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CreateProcessAsUserW 77DEA8A9 5 Bytes JMP 7D247B10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!StartServiceA 77DEFB58 5 Bytes JMP 7D24CBC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!RegisterServiceCtrlHandlerExA 77DEFEAB 5 Bytes JMP 7D24A1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!QueryServiceStatusEx 77DF120A 5 Bytes JMP 7D24BC50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!QueryServiceConfigA 77DF1596 5 Bytes JMP 7D24BE60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!SetServiceStatus 77DF3251 5 Bytes JMP 7D24A350 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!StartServiceCtrlDispatcherW 77DF359D 5 Bytes JMP 7D24B750 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!ReportEventW 77DF3681 5 Bytes JMP 7D24A4E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!RegisterServiceCtrlHandlerExW 77DF3E49 5 Bytes JMP 7D24A1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!RegisterServiceCtrlHandlerW 77DF3E77 5 Bytes JMP 7D24A190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!StartServiceW 77DF3E94 5 Bytes JMP 7D24CB10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!ControlService 77DF4A09 5 Bytes JMP 7D24CBD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!OpenServiceA 77DF4C66 5 Bytes JMP 7D24CE20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!RegisterServiceCtrlHandlerA 77DF4EC6 5 Bytes JMP 7D24A190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!OpenSCManagerA 77DF69AE 5 Bytes JMP 7D24A500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!EnumServicesStatusA 77DF6B47 5 Bytes JMP 7D24D2B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!QueryServiceConfigW 77DF6F92 5 Bytes JMP 7D24BD50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!DeregisterEventSource 77DF79D3 5 Bytes JMP 7D2385F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!RegisterEventSourceA 77DF7B60 5 Bytes JMP 7D24A480 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!ReportEventA 77DF7CB2 5 Bytes JMP 7D24A4E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!RegisterEventSourceW 77DF803C 5 Bytes JMP 7D24A460 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!RegConnectRegistryW 77DF817A 5 Bytes JMP 7D2279C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CreateProcessAsUserA 77E10CE8 5 Bytes JMP 7D247D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CredWriteA 77E17CB9 5 Bytes JMP 7D22B150 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CredWriteW 77E17D59 5 Bytes JMP 7D22AB00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CredReadA 77E17DF9 5 Bytes JMP 7D22B210 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CredReadW 77E17ED1 5 Bytes JMP 7D22AB90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CredEnumerateA 77E17FA9 5 Bytes JMP 7D22B270 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CredEnumerateW 77E18099 5 Bytes JMP 7D22AEF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CredWriteDomainCredentialsA 77E18189 5 Bytes JMP 7D22B180 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CredWriteDomainCredentialsW 77E18259 5 Bytes JMP 7D22AC70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CredReadDomainCredentialsA 77E18329 5 Bytes JMP 7D22B240 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CredReadDomainCredentialsW 77E18419 5 Bytes JMP 7D22AD60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CredDeleteA 77E18509 5 Bytes JMP 7D22B1E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CredDeleteW 77E185B1 5 Bytes JMP 7D22AEA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CredRenameA 77E18659 5 Bytes JMP 7D22B1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CredRenameW 77E18731 5 Bytes JMP 7D22B120 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!RegConnectRegistryA 77E3512A 5 Bytes JMP 7D227980 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!EnumServicesStatusExW 77E369B8 5 Bytes JMP 7D24D2F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!EnumServicesStatusExA 77E36C2F 5 Bytes JMP 7D24D340 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!QueryServiceObjectSecurity 77E36D01 5 Bytes JMP 7D24AFA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!SetServiceObjectSecurity 77E36D81 5 Bytes JMP 7D24B0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!ChangeServiceConfigA 77E36E69 5 Bytes JMP 7D24C7D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!ChangeServiceConfigW 77E37001 5 Bytes JMP 7D24C5E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!ChangeServiceConfig2A 77E37101 5 Bytes JMP 7D24C990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!ChangeServiceConfig2W 77E37189 5 Bytes JMP 7D24C990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CreateServiceA 77E37211 5 Bytes JMP 7D24D680 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!CreateServiceW 77E373A9 5 Bytes JMP 7D24D390 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!DeleteService 77E374B1 5 Bytes JMP 7D24C9E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!EnumDependentServicesA 77E37529 5 Bytes JMP 7D24A070 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!EnumDependentServicesW 77E375E1 5 Bytes JMP 7D24A070 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!GetServiceDisplayNameA 77E37699 5 Bytes JMP 7D24C300 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!GetServiceDisplayNameW 77E37739 5 Bytes JMP 7D24C260 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!GetServiceKeyNameA 77E377D9 5 Bytes JMP 7D24C4C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!GetServiceKeyNameW 77E37879 5 Bytes JMP 7D24C3C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!LockServiceDatabase 77E37919 5 Bytes JMP 7D24A0A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!QueryServiceConfig2A 77E37999 5 Bytes JMP 7D24C0F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!QueryServiceConfig2W 77E37AB1 5 Bytes JMP 7D24C020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!QueryServiceLockStatusA 77E37BC9 5 Bytes JMP 7D24A020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!QueryServiceLockStatusW 77E37C59 5 Bytes JMP 7D24A020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!UnlockServiceDatabase 77E37CE9 5 Bytes JMP 7D24A0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!EnumServicesStatusW 77E37D61 2 Bytes JMP 7D24D270 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!EnumServicesStatusW + 3 77E37D64 2 Bytes [41, 05]
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ADVAPI32.dll!StartServiceCtrlDispatcherA 77E37F09 5 Bytes JMP 7D24B770 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] RPCRT4.dll!RpcBindingInqAuthClientExW 77E8A906 5 Bytes JMP 7D228220 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] Secur32.dll!LsaRegisterLogonProcess 77FE4D17 5 Bytes JMP 7D245C70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!GetWindowLongW 7E4188A6 5 Bytes JMP 7D23BF60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!DispatchMessageW 7E418A01 5 Bytes JMP 7D23C500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!PostMessageW 7E418CCB 5 Bytes JMP 7D23CA40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!GetShellWindow 7E419252 5 Bytes JMP 7D23BA60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!GetWindowLongA 7E41945D 5 Bytes JMP 7D23C000 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!DispatchMessageA 7E4196B8 5 Bytes JMP 7D23C4B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!UnregisterClassW 7E419AA4 5 Bytes JMP 7D23A610 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!RegisterClassW 7E41A39A 5 Bytes JMP 7D23A470 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!RegisterClassExW 7E41AF7F 5 Bytes JMP 7D23A2D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!GetClassInfoExA 7E41DD58 5 Bytes JMP 7D23A740 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!GetClassInfoExW 7E41DEBC 5 Bytes JMP 7D23A6D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!FindWindowExW 7E41E0E3 5 Bytes JMP 7D23B8E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!RegisterDeviceNotificationW 7E41E8B9 5 Bytes JMP 7D2385D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!UnregisterDeviceNotification 7E41E8D7 5 Bytes JMP 7D2385F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!CreateDialogParamW 7E41EA3B 5 Bytes JMP 7D23DCC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!RegisterDeviceNotificationA 7E421B3B 5 Bytes JMP 7D2385D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!DialogBoxParamW 7E4247AB 5 Bytes JMP 3E21541D C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!DialogBoxIndirectParamAorW 7E4249D0 5 Bytes JMP 7D23DB80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!CreateDialogIndirectParamAorW 7E42680B 5 Bytes JMP 7D23DB10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!RegisterClassExA 7E427C39 5 Bytes JMP 7D23A3A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!SetWindowsHookExW 7E42820F 5 Bytes JMP 7D23D0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!FindWindowA 7E4282E1 5 Bytes JMP 7D23B820 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!EnumDesktopWindows 7E42851A 5 Bytes JMP 7D23B670 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!UnregisterClassA 7E4289A3 5 Bytes JMP 7D23A670 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!DefWindowProcW 7E428D20 5 Bytes JMP 7D238390 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!SendMessageW 7E42929A 5 Bytes JMP 7D23C750 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!GetPropW 7E4294B3 5 Bytes JMP 7D23BDC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!SetWindowPos 7E4299F3 5 Bytes JMP 7D238540 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!GetClassNameW 7E429D12 5 Bytes JMP 7D23A890 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!EnumWindows 7E42A5AE 5 Bytes JMP 7D23B5C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!GetWindowTextW 7E42A5CD 5 Bytes JMP 7D23B3C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!PostMessageA 7E42AAFD 5 Bytes JMP 7D23C9C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!EnumChildWindows 7E42B0F0 5 Bytes JMP 7D23B610 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!MoveWindow 7E42B29E 5 Bytes JMP 7D2384F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!RemovePropW 7E42C076 5 Bytes JMP 7D23BEE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!SetPropW 7E42C0B9 5 Bytes JMP 7D23BE40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!DefWindowProcA 7E42C17E 5 Bytes JMP 7D238400 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!SetWindowLongA 7E42C29D 5 Bytes JMP 7D23C230 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!SetWindowLongW 7E42C2BB 5 Bytes JMP 7D23C180 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!SetParent 7E42C7F9 5 Bytes JMP 7D2384B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!FindWindowW 7E42C9C3 5 Bytes JMP 7D23B780 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!SendMessageTimeoutW 7E42CDAA 5 Bytes JMP 7D23C850 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!CreateWindowExW 7E42D0A3 5 Bytes JMP 3E2ED6EC C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!UnhookWindowsHookEx 7E42D5F3 5 Bytes JMP 7D23CDB0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!SendNotifyMessageW 7E42D64F 5 Bytes JMP 7D23C960 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!CreateWindowExA 7E42E4A9 5 Bytes JMP 7D2380F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!GetClassInfoW 7E42E81E 5 Bytes JMP 7D23A7B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!RegisterClassA 7E42EA5E 5 Bytes JMP 7D23A540 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!SendMessageA 7E42F3C2 5 Bytes JMP 7D23C6E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!GetClassNameA 7E42F45F 3 Bytes JMP 7D23A970 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!GetClassNameA + 4 7E42F463 1 Byte [FE]
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!EnumThreadWindows 7E42F539 5 Bytes JMP 7D23B640 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!SendMessageTimeoutA 7E42FB6B 5 Bytes JMP 7D23C7F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!SetPropA 7E430000 5 Bytes JMP 7D23BE90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!GetPropA 7E430042 5 Bytes JMP 7D23BE00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!RemovePropA 7E430094 5 Bytes JMP 7D23BF20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!SetWindowsHookExA 7E431211 5 Bytes JMP 7D23D080 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!DialogBoxIndirectParamW 7E432072 5 Bytes JMP 3E3E441F C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!FindWindowExA 7E43214A 5 Bytes JMP 7D23B990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!GetWindowTextA 7E43216B 5 Bytes JMP 7D23B3F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!CreateDialogIndirectParamA 7E439B28 5 Bytes JMP 7D23DC30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!MessageBoxIndirectA 7E43A082 5 Bytes JMP 3E3E4351 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!DialogBoxParamA 7E43B144 5 Bytes JMP 3E3E43BC C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!CreateDialogParamA 7E43C7DB 5 Bytes JMP 7D23DD20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!GetClassInfoA 7E43EBFF 5 Bytes JMP 7D23A820 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!CreateDialogIndirectParamW 7E43F01F 5 Bytes JMP 7D23DC00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!MessageBoxExW 7E450838 5 Bytes JMP 3E3E4222 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!MessageBoxExA 7E45085C 5 Bytes JMP 3E3E4284 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!SendNotifyMessageA 7E453948 5 Bytes JMP 7D23C900 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!DialogBoxIndirectParamA 7E456D7D 5 Bytes JMP 3E3E4482 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!EndTask 7E45A0A5 5 Bytes JMP 7D238590 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!ExitWindowsEx 7E45A275 5 Bytes JMP 7D238470 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] USER32.dll!MessageBoxIndirectW 7E4664D5 5 Bytes JMP 3E3E42E6 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] GDI32.dll!GdiAddFontResourceW 77F1CE11 5 Bytes JMP 7D237CC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] GDI32.dll!RemoveFontResourceExW 77F29281 5 Bytes JMP 7D237D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] GDI32.dll!GetFontResourceInfoW 77F3FFF4 5 Bytes JMP 7D237D60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] GDI32.dll!CreateScalableFontResourceW 77F40160 5 Bytes JMP 7D237DB0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] SHELL32.dll!SHChangeNotifyRegister 7C9FEB5B 5 Bytes JMP 7D251620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] SHELL32.dll!ShellExecuteExW 7CA0996B 5 Bytes JMP 7D251480 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] SHELL32.dll!SHSetInstanceExplorer 7CAC4148 5 Bytes JMP 7D251E40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ole32.dll!CoInitializeEx 774FEF7B 5 Bytes JMP 7D254F70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ole32.dll!RegisterDragDrop 774FF62A 5 Bytes JMP 7D255050 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ole32.dll!CoCreateInstanceEx 77500526 5 Bytes JMP 7D229D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ole32.dll!CoCreateInstance 7750057E 5 Bytes JMP 7D229C50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ole32.dll!CoMarshalInterface 7750EA71 5 Bytes JMP 7D2284D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ole32.dll!CoGetClassObject 775156C5 5 Bytes JMP 7D229BA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ole32.dll!CoUnmarshalInterface 7752D7F4 5 Bytes JMP 7D229E90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ole32.dll!RevokeDragDrop 77532B55 5 Bytes JMP 7D2550D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] ws2_32.dll!WSANSPIoctl 71AB5086 5 Bytes JMP 7D246520 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] CRYPT32.dll!CryptProtectData 77A8B942 5 Bytes JMP 7D22B7B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[912] CRYPT32.dll!CryptUnprotectData 77A8BAF0 5 Bytes JMP 7D22B5C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtAdjustPrivilegesToken 7C90CF0E 4 Bytes JMP 7D24ED30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtClose 7C90CFEE 4 Bytes JMP 7D2362E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtConnectPort 7C90D04E 4 Bytes JMP 7D240CE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtCreateEvent 7C90D08E 4 Bytes JMP 7D23FAF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtCreateFile 7C90D0AE 4 Bytes JMP 7D236A70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtCreateKey 7C90D0EE 4 Bytes JMP 7D243810 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtCreateMailslotFile 7C90D0FE 4 Bytes JMP 7D2344A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtCreateMutant 7C90D10E 4 Bytes JMP 7D23FE40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtCreateNamedPipeFile 7C90D11E 4 Bytes JMP 7D234640 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtCreatePort 7C90D13E 4 Bytes JMP 7D23F620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtCreateSection 7C90D17E 4 Bytes JMP 7D2404F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtCreateSemaphore 7C90D18E 4 Bytes JMP 7D2401A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtDeleteFile 7C90D23E 4 Bytes JMP 7D231AA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtDeleteKey 7C90D24E 4 Bytes JMP 7D244210 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtDeleteValueKey 7C90D26E 4 Bytes JMP 7D244EF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtDuplicateObject 7C90D29E 4 Bytes JMP 7D24E980 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtEnumerateKey 7C90D2CE 4 Bytes JMP 7D244590 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtEnumerateValueKey 7C90D2EE 4 Bytes JMP 7D244B30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtFsControlFile 7C90D39E 4 Bytes JMP 7D235ED0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtImpersonateClientOfPort 7C90D3FE 4 Bytes JMP 7D23FA90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtLoadDriver 7C90D46E 4 Bytes JMP 7D2456F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtLoadKey 7C90D47E 4 Bytes JMP 7D242EC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtNotifyChangeKey 7C90D54E 4 Bytes JMP 7D243620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtNotifyChangeMultipleKeys 7C90D55E 4 Bytes JMP 7D242B90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtOpenEvent 7C90D57E 4 Bytes JMP 7D23FC90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtOpenFile 7C90D59E 4 Bytes JMP 7D2377F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtOpenKey 7C90D5CE 4 Bytes JMP 7D244190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtOpenMutant 7C90D5DE 4 Bytes JMP 7D23FFF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtOpenProcess 7C90D5FE 4 Bytes JMP 7D24E8C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtOpenSection 7C90D62E 4 Bytes JMP 7D2406D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtOpenSemaphore 7C90D63E 4 Bytes JMP 7D240340 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtOpenThread 7C90D65E 4 Bytes JMP 7D24E920 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtQueryAttributesFile 7C90D70E 4 Bytes JMP 7D231A40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtQueryDirectoryFile 7C90D76E 4 Bytes JMP 7D236010 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtQueryFullAttributesFile 7C90D7AE 4 Bytes JMP 7D233BD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtQueryInformationFile 7C90D7CE 4 Bytes JMP 7D235650 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtQueryKey 7C90D85E 4 Bytes JMP 7D244230 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtQueryMultipleValueKey 7C90D86E 4 Bytes JMP 7D244CC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtQuerySecurityObject 7C90D8DE 4 Bytes JMP 7D24EA60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtQuerySystemInformation 7C90D92E 4 Bytes JMP 7D251FF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtQueryValueKey 7C90D96E 4 Bytes JMP 7D244960 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtQueryVolumeInformationFile 7C90D98E 4 Bytes JMP 7D236870 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtReadFile 7C90D9CE 4 Bytes JMP 7D22F510 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtRenameKey 7C90DA5E 4 Bytes JMP 7D242E90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtSaveKey 7C90DB4E 4 Bytes JMP 7D22CD00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtSecureConnectPort 7C90DB7E 4 Bytes JMP 7D240F10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtSetInformationFile 7C90DC5E 4 Bytes JMP 7D237600 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtSetInformationProcess 7C90DC9E 5 Bytes JMP 00402710 C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe (Sandboxie COM Services (DCOM)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtSetInformationToken 7C90DCBE 4 Bytes JMP 7D24ECF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtSetSecurityObject 7C90DD2E 4 Bytes JMP 7D24EB80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtSetValueKey 7C90DDCE 4 Bytes JMP 7D2434E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!NtWriteFile 7C90DF7E 4 Bytes JMP 7D22F600 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!RtlGetFullPathName_U 7C9143A9 5 Bytes JMP 7D230460 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!RtlGetCurrentDirectory_U 7C914506 5 Bytes JMP 7D236580 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!LdrLoadDll 7C9163C3 4 Bytes JMP 7D245950 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!LdrUnloadDll 7C91738B 4 Bytes JMP 7D245A40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!RtlSetCurrentDirectory_U 7C91E7AA 5 Bytes JMP 7D2367F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!RtlCreateProcessParameters 7C922E99 5 Bytes JMP 7D246920 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ntdll.dll!RtlAdjustPrivilege 7C929A6D 5 Bytes JMP 004026D0 C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe (Sandboxie COM Services (DCOM)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] kernel32.dll!CreateProcessW 7C802336 5 Bytes JMP 7D247F90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] kernel32.dll!CreateProcessA 7C80236B 5 Bytes JMP 7D247FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] kernel32.dll!CreateFileMappingW 7C80943C 5 Bytes JMP 00402A00 C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe (Sandboxie COM Services (DCOM)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] kernel32.dll!GetModuleFileNameW 7C80B475 5 Bytes JMP 7D2455E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] kernel32.dll!CreateActCtxW 7C8154FC 4 Bytes JMP 7D253A60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] kernel32.dll!MoveFileWithProgressW 7C81F72E 4 Bytes JMP 7D232C80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] kernel32.dll!WaitNamedPipeW 7C82C674 5 Bytes JMP 7D231CE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] kernel32.dll!WinExec 7C86250D 5 Bytes JMP 7D247510 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] kernel32.dll!CreateActCtxA 7C86C8E5 5 Bytes JMP 7D253A80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] kernel32.dll!SetLocaleInfoA 7C876A0B 5 Bytes JMP 7D251FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] kernel32.dll!SetLocaleInfoW 7C877FB3 5 Bytes JMP 7D251FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!GetTokenInformation 77DD7305 5 Bytes JMP 00402850 C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe (Sandboxie COM Services (DCOM)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!SetThreadToken 77DDF193 5 Bytes JMP 00402780 C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe (Sandboxie COM Services (DCOM)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!AccessCheckByType 77DDF1C9 5 Bytes JMP 00402750 C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe (Sandboxie COM Services (DCOM)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!LookupAccountNameW 77DE5B59 5 Bytes JMP 7D2278F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CloseServiceHandle 77DE6CE5 5 Bytes JMP 00401D10 C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe (Sandboxie COM Services (DCOM)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!QueryServiceStatus 77DE6D50 5 Bytes JMP 00401E40 C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe (Sandboxie COM Services (DCOM)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!OpenSCManagerW 77DE6F55 5 Bytes JMP 7D24A500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!OpenServiceW 77DE6FFD 5 Bytes JMP 00401C50 C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe (Sandboxie COM Services (DCOM)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CreateProcessAsUserW 77DEA8A9 5 Bytes JMP 7D247B10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!StartServiceA 77DEFB58 5 Bytes JMP 7D24CBC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!RegisterServiceCtrlHandlerExA 77DEFEAB 5 Bytes JMP 7D24A1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!QueryServiceStatusEx 77DF120A 5 Bytes JMP 00401D50 C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe (Sandboxie COM Services (DCOM)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!QueryServiceConfigA 77DF1596 5 Bytes JMP 7D24BE60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!SetServiceStatus 77DF3251 5 Bytes JMP 00401B10 C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe (Sandboxie COM Services (DCOM)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!StartServiceCtrlDispatcherW 77DF359D 5 Bytes JMP 00401C10 C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe (Sandboxie COM Services (DCOM)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!ReportEventW 77DF3681 5 Bytes JMP 7D24A4E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!RegisterServiceCtrlHandlerExW 77DF3E49 5 Bytes JMP 7D24A1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!RegisterServiceCtrlHandlerW 77DF3E77 5 Bytes JMP 7D24A190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!StartServiceW 77DF3E94 5 Bytes JMP 00401EA0 C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe (Sandboxie COM Services (DCOM)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!ControlService 77DF4A09 5 Bytes JMP 00401EF0 C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe (Sandboxie COM Services (DCOM)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!OpenServiceA 77DF4C66 5 Bytes JMP 7D24CE20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!RegisterServiceCtrlHandlerA 77DF4EC6 5 Bytes JMP 7D24A190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!OpenSCManagerA 77DF69AE 5 Bytes JMP 7D24A500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!EnumServicesStatusA 77DF6B47 5 Bytes JMP 7D24D2B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!QueryServiceConfigW 77DF6F92 5 Bytes JMP 7D24BD50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!DeregisterEventSource 77DF79D3 5 Bytes JMP 7D2385F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!RegisterEventSourceA 77DF7B60 5 Bytes JMP 7D24A480 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!ReportEventA 77DF7CB2 5 Bytes JMP 7D24A4E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!RegisterEventSourceW 77DF803C 5 Bytes JMP 7D24A460 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!RegConnectRegistryW 77DF817A 5 Bytes JMP 7D2279C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CreateProcessAsUserA 77E10CE8 5 Bytes JMP 7D247D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CredWriteA 77E17CB9 5 Bytes JMP 7D22B150 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CredWriteW 77E17D59 5 Bytes JMP 7D22AB00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CredReadA 77E17DF9 5 Bytes JMP 7D22B210 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CredReadW 77E17ED1 5 Bytes JMP 7D22AB90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CredEnumerateA 77E17FA9 5 Bytes JMP 7D22B270 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CredEnumerateW 77E18099 5 Bytes JMP 7D22AEF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CredWriteDomainCredentialsA 77E18189 5 Bytes JMP 7D22B180 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CredWriteDomainCredentialsW 77E18259 5 Bytes JMP 7D22AC70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CredReadDomainCredentialsA 77E18329 5 Bytes JMP 7D22B240 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CredReadDomainCredentialsW 77E18419 5 Bytes JMP 7D22AD60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CredDeleteA 77E18509 5 Bytes JMP 7D22B1E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CredDeleteW 77E185B1 5 Bytes JMP 7D22AEA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CredRenameA 77E18659 5 Bytes JMP 7D22B1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CredRenameW 77E18731 5 Bytes JMP 7D22B120 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!RegConnectRegistryA 77E3512A 5 Bytes JMP 7D227980 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!EnumServicesStatusExW 77E369B8 5 Bytes JMP 7D24D2F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!EnumServicesStatusExA 77E36C2F 5 Bytes JMP 7D24D340 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!QueryServiceObjectSecurity 77E36D01 5 Bytes JMP 7D24AFA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!SetServiceObjectSecurity 77E36D81 5 Bytes JMP 7D24B0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!ChangeServiceConfigA 77E36E69 5 Bytes JMP 7D24C7D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!ChangeServiceConfigW 77E37001 5 Bytes JMP 7D24C5E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!ChangeServiceConfig2A 77E37101 5 Bytes JMP 7D24C990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!ChangeServiceConfig2W 77E37189 5 Bytes JMP 7D24C990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CreateServiceA 77E37211 5 Bytes JMP 7D24D680 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!CreateServiceW 77E373A9 5 Bytes JMP 7D24D390 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!DeleteService 77E374B1 5 Bytes JMP 7D24C9E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!EnumDependentServicesA 77E37529 5 Bytes JMP 7D24A070 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!EnumDependentServicesW 77E375E1 5 Bytes JMP 7D24A070 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!GetServiceDisplayNameA 77E37699 5 Bytes JMP 7D24C300 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!GetServiceDisplayNameW 77E37739 5 Bytes JMP 7D24C260 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!GetServiceKeyNameA 77E377D9 5 Bytes JMP 7D24C4C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!GetServiceKeyNameW 77E37879 5 Bytes JMP 7D24C3C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!LockServiceDatabase 77E37919 5 Bytes JMP 7D24A0A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!QueryServiceConfig2A 77E37999 5 Bytes JMP 7D24C0F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!QueryServiceConfig2W 77E37AB1 5 Bytes JMP 7D24C020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!QueryServiceLockStatusA 77E37BC9 5 Bytes JMP 7D24A020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!QueryServiceLockStatusW 77E37C59 5 Bytes JMP 7D24A020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!UnlockServiceDatabase 77E37CE9 5 Bytes JMP 7D24A0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!EnumServicesStatusW 77E37D61 2 Bytes JMP 7D24D270 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!EnumServicesStatusW + 3 77E37D64 2 Bytes [41, 05]
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ADVAPI32.dll!StartServiceCtrlDispatcherA 77E37F09 5 Bytes JMP 7D24B770 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] RPCRT4.dll!RpcBindingInqAuthClientExW 77E8A906 5 Bytes JMP 7D228220 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] Secur32.dll!LsaRegisterLogonProcess 77FE4D17 5 Bytes JMP 7D245C70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!GetWindowLongW 7E4188A6 5 Bytes JMP 7D23BF60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!DispatchMessageW 7E418A01 5 Bytes JMP 7D23C500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!PostMessageW 7E418CCB 5 Bytes JMP 7D23CA40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!GetShellWindow 7E419252 5 Bytes JMP 7D23BA60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!GetWindowLongA 7E41945D 5 Bytes JMP 7D23C000 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!DispatchMessageA 7E4196B8 5 Bytes JMP 7D23C4B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!UnregisterClassW 7E419AA4 5 Bytes JMP 7D23A610 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!RegisterClassW 7E41A39A 5 Bytes JMP 7D23A470 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!RegisterClassExW 7E41AF7F 5 Bytes JMP 7D23A2D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!GetClassInfoExA 7E41DD58 5 Bytes JMP 7D23A740 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!GetClassInfoExW 7E41DEBC 5 Bytes JMP 7D23A6D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!FindWindowExW 7E41E0E3 5 Bytes JMP 7D23B8E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!RegisterDeviceNotificationW 7E41E8B9 5 Bytes JMP 7D2385D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!UnregisterDeviceNotification 7E41E8D7 5 Bytes JMP 7D2385F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!CreateDialogParamW 7E41EA3B 5 Bytes JMP 7D23DCC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!RegisterDeviceNotificationA 7E421B3B 5 Bytes JMP 7D2385D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!DialogBoxParamW 7E4247AB 5 Bytes JMP 7D23DD80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!DialogBoxIndirectParamAorW 7E4249D0 5 Bytes JMP 7D23DB80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!CreateDialogIndirectParamAorW 7E42680B 5 Bytes JMP 7D23DB10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!RegisterClassExA 7E427C39 5 Bytes JMP 7D23A3A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!SetWindowsHookExW 7E42820F 5 Bytes JMP 7D23D0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!FindWindowA 7E4282E1 5 Bytes JMP 7D23B820 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!EnumDesktopWindows 7E42851A 5 Bytes JMP 7D23B670 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!UnregisterClassA 7E4289A3 5 Bytes JMP 7D23A670 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!DefWindowProcW 7E428D20 5 Bytes JMP 7D238390 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!SendMessageW 7E42929A 5 Bytes JMP 7D23C750 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!GetPropW 7E4294B3 5 Bytes JMP 7D23BDC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!SetWindowPos 7E4299F3 5 Bytes JMP 7D238540 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!GetClassNameW 7E429D12 5 Bytes JMP 7D23A890 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!EnumWindows 7E42A5AE 5 Bytes JMP 7D23B5C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!GetWindowTextW 7E42A5CD 5 Bytes JMP 7D23B3C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!PostMessageA 7E42AAFD 5 Bytes JMP 7D23C9C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!EnumChildWindows 7E42B0F0 5 Bytes JMP 7D23B610 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!MoveWindow 7E42B29E 5 Bytes JMP 7D2384F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!RemovePropW 7E42C076 5 Bytes JMP 7D23BEE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!SetPropW 7E42C0B9 5 Bytes JMP 7D23BE40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!DefWindowProcA 7E42C17E 5 Bytes JMP 7D238400 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!SetWindowLongA 7E42C29D 5 Bytes JMP 7D23C230 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!SetWindowLongW 7E42C2BB 5 Bytes JMP 7D23C180 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!SetParent 7E42C7F9 5 Bytes JMP 7D2384B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!FindWindowW 7E42C9C3 5 Bytes JMP 7D23B780 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!SendMessageTimeoutW 7E42CDAA 5 Bytes JMP 7D23C850 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!CreateWindowExW 7E42D0A3 5 Bytes JMP 7D237FC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!UnhookWindowsHookEx 7E42D5F3 5 Bytes JMP 7D23CDB0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!SendNotifyMessageW 7E42D64F 5 Bytes JMP 7D23C960 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!CreateWindowExA 7E42E4A9 5 Bytes JMP 7D2380F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!GetClassInfoW 7E42E81E 5 Bytes JMP 7D23A7B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!RegisterClassA 7E42EA5E 5 Bytes JMP 7D23A540 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!SendMessageA 7E42F3C2 5 Bytes JMP 7D23C6E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!GetClassNameA 7E42F45F 3 Bytes JMP 7D23A970 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!GetClassNameA + 4 7E42F463 1 Byte [FE]
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!EnumThreadWindows 7E42F539 5 Bytes JMP 7D23B640 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!SendMessageTimeoutA 7E42FB6B 5 Bytes JMP 7D23C7F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!SetPropA 7E430000 5 Bytes JMP 7D23BE90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!GetPropA 7E430042 5 Bytes JMP 7D23BE00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!RemovePropA 7E430094 5 Bytes JMP 7D23BF20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!SetWindowsHookExA 7E431211 5 Bytes JMP 7D23D080 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!DialogBoxIndirectParamW 7E432072 5 Bytes JMP 7D23DC60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!FindWindowExA 7E43214A 5 Bytes JMP 7D23B990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!GetWindowTextA 7E43216B 5 Bytes JMP 7D23B3F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!CreateDialogIndirectParamA 7E439B28 5 Bytes JMP 7D23DC30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!DialogBoxParamA 7E43B144 5 Bytes JMP 7D23DDE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!CreateDialogParamA 7E43C7DB 5 Bytes JMP 7D23DD20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!GetClassInfoA 7E43EBFF 5 Bytes JMP 7D23A820 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!CreateDialogIndirectParamW 7E43F01F 5 Bytes JMP 7D23DC00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!SendNotifyMessageA 7E453948 5 Bytes JMP 7D23C900 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!DialogBoxIndirectParamA 7E456D7D 5 Bytes JMP 7D23DC90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!EndTask 7E45A0A5 5 Bytes JMP 7D238590 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] USER32.dll!ExitWindowsEx 7E45A275 5 Bytes JMP 7D238470 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] GDI32.dll!GdiAddFontResourceW 77F1CE11 5 Bytes JMP 7D237CC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] GDI32.dll!RemoveFontResourceExW 77F29281 5 Bytes JMP 7D237D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] GDI32.dll!GetFontResourceInfoW 77F3FFF4 5 Bytes JMP 7D237D60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] GDI32.dll!CreateScalableFontResourceW 77F40160 5 Bytes JMP 7D237DB0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] WS2_32.dll!WSANSPIoctl 71AB5086 5 Bytes JMP 7D246520 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ole32.dll!CoInitializeEx 774FEF7B 5 Bytes JMP 7D254F70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ole32.dll!RegisterDragDrop 774FF62A 5 Bytes JMP 7D255050 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ole32.dll!CoCreateInstanceEx 77500526 5 Bytes JMP 7D229D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ole32.dll!CoCreateInstance 7750057E 5 Bytes JMP 7D229C50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ole32.dll!CoMarshalInterface 7750EA71 5 Bytes JMP 7D2284D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ole32.dll!CoGetClassObject 775156C5 5 Bytes JMP 7D229BA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ole32.dll!CoUnmarshalInterface 7752D7F4 5 Bytes JMP 7D229E90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieDcomLaunch.exe[2644] ole32.dll!RevokeDragDrop 77532B55 5 Bytes JMP 7D2550D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtAdjustPrivilegesToken 7C90CF0E 4 Bytes JMP 7D24ED30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtClose 7C90CFEE 4 Bytes JMP 7D2362E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtConnectPort 7C90D04E 4 Bytes JMP 7D240CE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreateEvent 7C90D08E 4 Bytes JMP 7D23FAF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreateFile 7C90D0AE 4 Bytes JMP 7D236A70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreateKey 7C90D0EE 4 Bytes JMP 7D243810 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreateMailslotFile 7C90D0FE 4 Bytes JMP 7D2344A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreateMutant 7C90D10E 4 Bytes JMP 7D23FE40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreateNamedPipeFile 7C90D11E 4 Bytes JMP 7D234640 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreatePort 7C90D13E 4 Bytes JMP 7D23F620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreateSection 7C90D17E 4 Bytes JMP 7D2404F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreateSemaphore 7C90D18E 4 Bytes JMP 7D2401A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtDeleteFile 7C90D23E 4 Bytes JMP 7D231AA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtDeleteKey 7C90D24E 4 Bytes JMP 7D244210 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtDeleteValueKey 7C90D26E 4 Bytes JMP 7D244EF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtDuplicateObject 7C90D29E 4 Bytes JMP 7D24E980 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtEnumerateKey 7C90D2CE 4 Bytes JMP 7D244590 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtEnumerateValueKey 7C90D2EE 4 Bytes JMP 7D244B30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtFsControlFile 7C90D39E 4 Bytes JMP 7D235ED0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtImpersonateClientOfPort 7C90D3FE 4 Bytes JMP 7D23FA90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtLoadDriver 7C90D46E 4 Bytes JMP 7D2456F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtLoadKey 7C90D47E 4 Bytes JMP 7D242EC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtNotifyChangeKey 7C90D54E 4 Bytes JMP 7D243620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtNotifyChangeMultipleKeys 7C90D55E 4 Bytes JMP 7D242B90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtOpenEvent 7C90D57E 4 Bytes JMP 7D23FC90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtOpenFile 7C90D59E 4 Bytes JMP 7D2377F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtOpenKey 7C90D5CE 4 Bytes JMP 7D244190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtOpenMutant 7C90D5DE 4 Bytes JMP 7D23FFF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtOpenProcess 7C90D5FE 4 Bytes JMP 7D24E8C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtOpenSection

#8 repairit

repairit
  • Topic Starter

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:03:38 AM

Posted 10 January 2010 - 10:01 PM

.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtAdjustPrivilegesToken 7C90CF0E 4 Bytes JMP 7D24ED30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtClose 7C90CFEE 4 Bytes JMP 7D2362E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtConnectPort 7C90D04E 4 Bytes JMP 7D240CE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreateEvent 7C90D08E 4 Bytes JMP 7D23FAF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreateFile 7C90D0AE 4 Bytes JMP 7D236A70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreateKey 7C90D0EE 4 Bytes JMP 7D243810 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreateMailslotFile 7C90D0FE 4 Bytes JMP 7D2344A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreateMutant 7C90D10E 4 Bytes JMP 7D23FE40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreateNamedPipeFile 7C90D11E 4 Bytes JMP 7D234640 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreatePort 7C90D13E 4 Bytes JMP 7D23F620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreateSection 7C90D17E 4 Bytes JMP 7D2404F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtCreateSemaphore 7C90D18E 4 Bytes JMP 7D2401A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtDeleteFile 7C90D23E 4 Bytes JMP 7D231AA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtDeleteKey 7C90D24E 4 Bytes JMP 7D244210 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtDeleteValueKey 7C90D26E 4 Bytes JMP 7D244EF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtDuplicateObject 7C90D29E 4 Bytes JMP 7D24E980 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtEnumerateKey 7C90D2CE 4 Bytes JMP 7D244590 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtEnumerateValueKey 7C90D2EE 4 Bytes JMP 7D244B30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtFsControlFile 7C90D39E 4 Bytes JMP 7D235ED0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtImpersonateClientOfPort 7C90D3FE 4 Bytes JMP 7D23FA90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtLoadDriver 7C90D46E 4 Bytes JMP 7D2456F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtLoadKey 7C90D47E 4 Bytes JMP 7D242EC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtNotifyChangeKey 7C90D54E 4 Bytes JMP 7D243620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtNotifyChangeMultipleKeys 7C90D55E 4 Bytes JMP 7D242B90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtOpenEvent 7C90D57E 4 Bytes JMP 7D23FC90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtOpenFile 7C90D59E 4 Bytes JMP 7D2377F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtOpenKey 7C90D5CE 4 Bytes JMP 7D244190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtOpenMutant 7C90D5DE 4 Bytes JMP 7D23FFF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtOpenProcess 7C90D5FE 4 Bytes JMP 7D24E8C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtOpenSection 7C90D62E 4 Bytes JMP 7D2406D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtOpenSemaphore 7C90D63E 4 Bytes JMP 7D240340 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtOpenThread 7C90D65E 4 Bytes JMP 7D24E920 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtQueryAttributesFile 7C90D70E 4 Bytes JMP 7D231A40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtQueryDirectoryFile 7C90D76E 4 Bytes JMP 7D236010 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtQueryFullAttributesFile 7C90D7AE 4 Bytes JMP 7D233BD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtQueryInformationFile 7C90D7CE 4 Bytes JMP 7D235650 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtQueryKey 7C90D85E 4 Bytes JMP 7D244230 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtQueryMultipleValueKey 7C90D86E 4 Bytes JMP 7D244CC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtQuerySecurityObject 7C90D8DE 4 Bytes JMP 7D24EA60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtQuerySystemInformation 7C90D92E 4 Bytes JMP 7D251FF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtQueryValueKey 7C90D96E 4 Bytes JMP 7D244960 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtQueryVolumeInformationFile 7C90D98E 4 Bytes JMP 7D236870 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtReadFile 7C90D9CE 4 Bytes JMP 7D22F510 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtRenameKey 7C90DA5E 4 Bytes JMP 7D242E90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtSaveKey 7C90DB4E 4 Bytes JMP 7D22CD00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtSecureConnectPort 7C90DB7E 4 Bytes JMP 7D240F10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtSetInformationFile 7C90DC5E 4 Bytes JMP 7D237600 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtSetInformationToken 7C90DCBE 4 Bytes JMP 7D24ECF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtSetSecurityObject 7C90DD2E 4 Bytes JMP 7D24EB80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtSetValueKey 7C90DDCE 4 Bytes JMP 7D2434E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!NtWriteFile 7C90DF7E 4 Bytes JMP 7D22F600 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!RtlGetFullPathName_U 7C9143A9 5 Bytes JMP 7D230460 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!RtlGetCurrentDirectory_U 7C914506 5 Bytes JMP 7D236580 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!LdrLoadDll 7C9163C3 4 Bytes JMP 7D245950 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!LdrUnloadDll 7C91738B 4 Bytes JMP 7D245A40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!RtlSetCurrentDirectory_U 7C91E7AA 5 Bytes JMP 7D2367F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ntdll.dll!RtlCreateProcessParameters 7C922E99 5 Bytes JMP 7D246920 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] kernel32.dll!CreateProcessW 7C802336 5 Bytes JMP 7D247F90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] kernel32.dll!CreateProcessA 7C80236B 5 Bytes JMP 7D247FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] kernel32.dll!GetModuleFileNameW 7C80B475 5 Bytes JMP 7D2455E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] kernel32.dll!CreateActCtxW 7C8154FC 4 Bytes JMP 7D253A60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] kernel32.dll!MoveFileWithProgressW 7C81F72E 4 Bytes JMP 7D232C80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] kernel32.dll!WaitNamedPipeW 7C82C674 5 Bytes JMP 7D231CE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] kernel32.dll!WinExec 7C86250D 5 Bytes JMP 7D247510 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] kernel32.dll!CreateActCtxA 7C86C8E5 5 Bytes JMP 7D253A80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] kernel32.dll!SetLocaleInfoA 7C876A0B 5 Bytes JMP 7D251FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] kernel32.dll!SetLocaleInfoW 7C877FB3 5 Bytes JMP 7D251FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!LookupAccountNameW 77DE5B59 5 Bytes JMP 7D2278F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CloseServiceHandle 77DE6CE5 5 Bytes JMP 7D24B790 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!QueryServiceStatus 77DE6D50 5 Bytes JMP 7D24BCE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!OpenSCManagerW 77DE6F55 5 Bytes JMP 7D24A500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!OpenServiceW 77DE6FFD 5 Bytes JMP 7D24CD50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CreateProcessAsUserW 77DEA8A9 5 Bytes JMP 7D247B10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!StartServiceA 77DEFB58 5 Bytes JMP 7D24CBC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!RegisterServiceCtrlHandlerExA 77DEFEAB 5 Bytes JMP 7D24A1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!QueryServiceStatusEx 77DF120A 5 Bytes JMP 7D24BC50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!QueryServiceConfigA 77DF1596 5 Bytes JMP 7D24BE60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!SetServiceStatus 77DF3251 5 Bytes JMP 7D24A350 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!StartServiceCtrlDispatcherW 77DF359D 5 Bytes JMP 7D24B750 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!ReportEventW 77DF3681 5 Bytes JMP 7D24A4E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!RegisterServiceCtrlHandlerExW 77DF3E49 5 Bytes JMP 7D24A1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!RegisterServiceCtrlHandlerW 77DF3E77 5 Bytes JMP 7D24A190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!StartServiceW 77DF3E94 5 Bytes JMP 7D24CB10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!ControlService 77DF4A09 5 Bytes JMP 7D24CBD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!OpenServiceA 77DF4C66 5 Bytes JMP 7D24CE20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!RegisterServiceCtrlHandlerA 77DF4EC6 5 Bytes JMP 7D24A190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!OpenSCManagerA 77DF69AE 5 Bytes JMP 7D24A500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!EnumServicesStatusA 77DF6B47 5 Bytes JMP 7D24D2B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!QueryServiceConfigW 77DF6F92 5 Bytes JMP 7D24BD50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!DeregisterEventSource 77DF79D3 5 Bytes JMP 7D2385F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!RegisterEventSourceA 77DF7B60 5 Bytes JMP 7D24A480 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!ReportEventA 77DF7CB2 5 Bytes JMP 7D24A4E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!RegisterEventSourceW 77DF803C 5 Bytes JMP 7D24A460 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!RegConnectRegistryW 77DF817A 5 Bytes JMP 7D2279C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CreateProcessAsUserA 77E10CE8 5 Bytes JMP 7D247D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CredWriteA 77E17CB9 5 Bytes JMP 7D22B150 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CredWriteW 77E17D59 5 Bytes JMP 7D22AB00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CredReadA 77E17DF9 5 Bytes JMP 7D22B210 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CredReadW 77E17ED1 5 Bytes JMP 7D22AB90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CredEnumerateA 77E17FA9 5 Bytes JMP 7D22B270 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CredEnumerateW 77E18099 5 Bytes JMP 7D22AEF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CredWriteDomainCredentialsA 77E18189 5 Bytes JMP 7D22B180 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CredWriteDomainCredentialsW 77E18259 5 Bytes JMP 7D22AC70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CredReadDomainCredentialsA 77E18329 5 Bytes JMP 7D22B240 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CredReadDomainCredentialsW 77E18419 5 Bytes JMP 7D22AD60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CredDeleteA 77E18509 5 Bytes JMP 7D22B1E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CredDeleteW 77E185B1 5 Bytes JMP 7D22AEA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CredRenameA 77E18659 5 Bytes JMP 7D22B1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CredRenameW 77E18731 5 Bytes JMP 7D22B120 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!RegConnectRegistryA 77E3512A 5 Bytes JMP 7D227980 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!EnumServicesStatusExW 77E369B8 5 Bytes JMP 7D24D2F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!EnumServicesStatusExA 77E36C2F 5 Bytes JMP 7D24D340 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!QueryServiceObjectSecurity 77E36D01 5 Bytes JMP 7D24AFA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!SetServiceObjectSecurity 77E36D81 5 Bytes JMP 7D24B0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!ChangeServiceConfigA 77E36E69 5 Bytes JMP 7D24C7D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!ChangeServiceConfigW 77E37001 5 Bytes JMP 7D24C5E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!ChangeServiceConfig2A 77E37101 5 Bytes JMP 7D24C990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!ChangeServiceConfig2W 77E37189 5 Bytes JMP 7D24C990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CreateServiceA 77E37211 5 Bytes JMP 7D24D680 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!CreateServiceW 77E373A9 5 Bytes JMP 7D24D390 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!DeleteService 77E374B1 5 Bytes JMP 7D24C9E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!EnumDependentServicesA 77E37529 5 Bytes JMP 7D24A070 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!EnumDependentServicesW 77E375E1 5 Bytes JMP 7D24A070 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!GetServiceDisplayNameA 77E37699 5 Bytes JMP 7D24C300 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!GetServiceDisplayNameW 77E37739 5 Bytes JMP 7D24C260 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!GetServiceKeyNameA 77E377D9 5 Bytes JMP 7D24C4C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!GetServiceKeyNameW 77E37879 5 Bytes JMP 7D24C3C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!LockServiceDatabase 77E37919 5 Bytes JMP 7D24A0A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!QueryServiceConfig2A 77E37999 5 Bytes JMP 7D24C0F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!QueryServiceConfig2W 77E37AB1 5 Bytes JMP 7D24C020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!QueryServiceLockStatusA 77E37BC9 5 Bytes JMP 7D24A020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!QueryServiceLockStatusW 77E37C59 5 Bytes JMP 7D24A020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!UnlockServiceDatabase 77E37CE9 5 Bytes JMP 7D24A0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!EnumServicesStatusW 77E37D61 2 Bytes JMP 7D24D270 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!EnumServicesStatusW + 3 77E37D64 2 Bytes [41, 05]
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ADVAPI32.dll!StartServiceCtrlDispatcherA 77E37F09 5 Bytes JMP 7D24B770 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] RPCRT4.dll!RpcBindingInqAuthClientExW 77E8A906 5 Bytes JMP 7D228220 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] Secur32.dll!LsaRegisterLogonProcess 77FE4D17 5 Bytes JMP 7D245C70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!GetWindowLongW 7E4188A6 5 Bytes JMP 7D23BF60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!DispatchMessageW 7E418A01 5 Bytes JMP 7D23C500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!PostMessageW 7E418CCB 5 Bytes JMP 7D23CA40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!GetShellWindow 7E419252 5 Bytes JMP 7D23BA60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!GetWindowLongA 7E41945D 5 Bytes JMP 7D23C000 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!DispatchMessageA 7E4196B8 5 Bytes JMP 7D23C4B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!UnregisterClassW 7E419AA4 5 Bytes JMP 7D23A610 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!RegisterClassW 7E41A39A 5 Bytes JMP 7D23A470 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!RegisterClassExW 7E41AF7F 5 Bytes JMP 7D23A2D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!GetClassInfoExA 7E41DD58 5 Bytes JMP 7D23A740 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!GetClassInfoExW 7E41DEBC 5 Bytes JMP 7D23A6D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!FindWindowExW 7E41E0E3 5 Bytes JMP 7D23B8E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!RegisterDeviceNotificationW 7E41E8B9 5 Bytes JMP 7D2385D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!UnregisterDeviceNotification 7E41E8D7 5 Bytes JMP 7D2385F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!CreateDialogParamW 7E41EA3B 5 Bytes JMP 7D23DCC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!RegisterDeviceNotificationA 7E421B3B 5 Bytes JMP 7D2385D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!DialogBoxParamW 7E4247AB 5 Bytes JMP 3E21541D C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!DialogBoxIndirectParamAorW 7E4249D0 5 Bytes JMP 7D23DB80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!CreateDialogIndirectParamAorW 7E42680B 5 Bytes JMP 7D23DB10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!RegisterClassExA 7E427C39 5 Bytes JMP 7D23A3A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!SetWindowsHookExW 7E42820F 5 Bytes JMP 3E2E9865 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!FindWindowA 7E4282E1 5 Bytes JMP 7D23B820 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!EnumDesktopWindows 7E42851A 5 Bytes JMP 7D23B670 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!UnregisterClassA 7E4289A3 5 Bytes JMP 7D23A670 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!DefWindowProcW 7E428D20 5 Bytes JMP 7D238390 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!SendMessageW 7E42929A 5 Bytes JMP 7D23C750 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!GetPropW 7E4294B3 5 Bytes JMP 7D23BDC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!SetWindowPos 7E4299F3 5 Bytes JMP 7D238540 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!GetClassNameW 7E429D12 5 Bytes JMP 7D23A890 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!EnumWindows 7E42A5AE 5 Bytes JMP 7D23B5C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!GetWindowTextW 7E42A5CD 5 Bytes JMP 7D23B3C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!PostMessageA 7E42AAFD 5 Bytes JMP 7D23C9C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!EnumChildWindows 7E42B0F0 5 Bytes JMP 7D23B610 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!MoveWindow 7E42B29E 5 Bytes JMP 7D2384F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!CallNextHookEx 7E42B3C6 5 Bytes JMP 3E2DCEE9 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!RemovePropW 7E42C076 5 Bytes JMP 7D23BEE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!SetPropW 7E42C0B9 5 Bytes JMP 7D23BE40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!DefWindowProcA 7E42C17E 5 Bytes JMP 7D238400 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!SetWindowLongA 7E42C29D 5 Bytes JMP 7D23C230 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!SetWindowLongW 7E42C2BB 5 Bytes JMP 7D23C180 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!SetParent 7E42C7F9 5 Bytes JMP 7D2384B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!FindWindowW 7E42C9C3 5 Bytes JMP 7D23B780 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!SendMessageTimeoutW 7E42CDAA 5 Bytes JMP 7D23C850 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!CreateWindowExW 7E42D0A3 5 Bytes JMP 3E2ED6EC C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!UnhookWindowsHookEx 7E42D5F3 5 Bytes JMP 3E254602 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!SendNotifyMessageW 7E42D64F 5 Bytes JMP 7D23C960 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!CreateWindowExA 7E42E4A9 5 Bytes JMP 7D2380F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!GetClassInfoW 7E42E81E 5 Bytes JMP 7D23A7B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!RegisterClassA 7E42EA5E 5 Bytes JMP 7D23A540 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!SendMessageA 7E42F3C2 5 Bytes JMP 7D23C6E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!GetClassNameA 7E42F45F 3 Bytes JMP 7D23A970 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!GetClassNameA + 4 7E42F463 1 Byte [FE]
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!EnumThreadWindows 7E42F539 5 Bytes JMP 7D23B640 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!SendMessageTimeoutA 7E42FB6B 5 Bytes JMP 7D23C7F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!SetPropA 7E430000 5 Bytes JMP 7D23BE90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!GetPropA 7E430042 5 Bytes JMP 7D23BE00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!RemovePropA 7E430094 5 Bytes JMP 7D23BF20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!SetWindowsHookExA 7E431211 5 Bytes JMP 7D23D080 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!DialogBoxIndirectParamW 7E432072 5 Bytes JMP 3E3E441F C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!FindWindowExA 7E43214A 5 Bytes JMP 7D23B990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!GetWindowTextA 7E43216B 5 Bytes JMP 7D23B3F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!CreateDialogIndirectParamA 7E439B28 5 Bytes JMP 7D23DC30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!MessageBoxIndirectA 7E43A082 5 Bytes JMP 3E3E4351 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!DialogBoxParamA 7E43B144 5 Bytes JMP 3E3E43BC C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!CreateDialogParamA 7E43C7DB 5 Bytes JMP 7D23DD20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!GetClassInfoA 7E43EBFF 5 Bytes JMP 7D23A820 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!CreateDialogIndirectParamW 7E43F01F 5 Bytes JMP 7D23DC00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!MessageBoxExW 7E450838 5 Bytes JMP 3E3E4222 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!MessageBoxExA 7E45085C 5 Bytes JMP 3E3E4284 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!SendNotifyMessageA 7E453948 5 Bytes JMP 7D23C900 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!DialogBoxIndirectParamA 7E456D7D 5 Bytes JMP 3E3E4482 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!EndTask 7E45A0A5 5 Bytes JMP 7D238590 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!ExitWindowsEx 7E45A275 5 Bytes JMP 7D238470 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] USER32.dll!MessageBoxIndirectW 7E4664D5 5 Bytes JMP 3E3E42E6 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] GDI32.dll!GdiAddFontResourceW 77F1CE11 5 Bytes JMP 7D237CC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] GDI32.dll!RemoveFontResourceExW 77F29281 5 Bytes JMP 7D237D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] GDI32.dll!GetFontResourceInfoW 77F3FFF4 5 Bytes JMP 7D237D60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] GDI32.dll!CreateScalableFontResourceW 77F40160 5 Bytes JMP 7D237DB0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] SHELL32.dll!SHChangeNotifyRegister 7C9FEB5B 5 Bytes JMP 7D251620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] SHELL32.dll!ShellExecuteExW 7CA0996B 5 Bytes JMP 7D251480 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] SHELL32.dll!SHSetInstanceExplorer 7CAC4148 5 Bytes JMP 7D251E40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ole32.dll!CoInitializeEx 774FEF7B 5 Bytes JMP 7D254F70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ole32.dll!RegisterDragDrop 774FF62A 5 Bytes JMP 7D255050 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ole32.dll!CoCreateInstanceEx 77500526 5 Bytes JMP 7D229D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ole32.dll!CoCreateInstance 7750057E 5 Bytes JMP 3E2ED748 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ole32.dll!CoMarshalInterface 7750EA71 5 Bytes JMP 7D2284D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ole32.dll!CoGetClassObject 775156C5 5 Bytes JMP 7D229BA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ole32.dll!OleLoadFromStream 77529C85 5 Bytes JMP 3E3E47A0 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ole32.dll!CoUnmarshalInterface 7752D7F4 5 Bytes JMP 7D229E90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ole32.dll!RevokeDragDrop 77532B55 5 Bytes JMP 7D2550D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] ws2_32.dll!WSANSPIoctl 71AB5086 5 Bytes JMP 7D246520 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] CRYPT32.dll!CryptProtectData 77A8B942 5 Bytes JMP 7D22B7B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3324] CRYPT32.dll!CryptUnprotectData 77A8BAF0 5 Bytes JMP 7D22B5C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtAdjustPrivilegesToken 7C90CF0E 4 Bytes JMP 7D24ED30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtClose 7C90CFEE 4 Bytes JMP 7D2362E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtConnectPort 7C90D04E 4 Bytes JMP 7D240CE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtCreateEvent 7C90D08E 4 Bytes JMP 7D23FAF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtCreateFile 7C90D0AE 4 Bytes JMP 7D236A70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtCreateKey 7C90D0EE 4 Bytes JMP 7D243810 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtCreateMailslotFile 7C90D0FE 4 Bytes JMP 7D2344A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtCreateMutant 7C90D10E 4 Bytes JMP 7D23FE40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtCreateNamedPipeFile 7C90D11E 4 Bytes JMP 7D234640 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtCreatePort 7C90D13E 4 Bytes JMP 7D23F620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtCreateSection 7C90D17E 4 Bytes JMP 7D2404F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtCreateSemaphore 7C90D18E 4 Bytes JMP 7D2401A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtDeleteFile 7C90D23E 4 Bytes JMP 7D231AA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtDeleteKey 7C90D24E 4 Bytes JMP 7D244210 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtDeleteValueKey 7C90D26E 4 Bytes JMP 7D244EF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtDuplicateObject 7C90D29E 4 Bytes JMP 7D24E980 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtEnumerateKey 7C90D2CE 4 Bytes JMP 7D244590 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtEnumerateValueKey 7C90D2EE 4 Bytes JMP 7D244B30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtFsControlFile 7C90D39E 4 Bytes JMP 7D235ED0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtImpersonateClientOfPort 7C90D3FE 4 Bytes JMP 7D23FA90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtLoadDriver 7C90D46E 4 Bytes JMP 7D2456F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtLoadKey 7C90D47E 4 Bytes JMP 7D242EC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtNotifyChangeKey 7C90D54E 4 Bytes JMP 7D243620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtNotifyChangeMultipleKeys 7C90D55E 4 Bytes JMP 7D242B90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtOpenEvent 7C90D57E 4 Bytes JMP 7D23FC90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtOpenFile 7C90D59E 4 Bytes JMP 7D2377F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtOpenKey 7C90D5CE 4 Bytes JMP 7D244190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtOpenMutant 7C90D5DE 4 Bytes JMP 7D23FFF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtOpenProcess 7C90D5FE 4 Bytes JMP 7D24E8C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtOpenSection 7C90D62E 4 Bytes JMP 7D2406D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtOpenSemaphore 7C90D63E 4 Bytes JMP 7D240340 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtOpenThread 7C90D65E 4 Bytes JMP 7D24E920 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtQueryAttributesFile 7C90D70E 4 Bytes JMP 7D231A40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtQueryDirectoryFile 7C90D76E 4 Bytes JMP 7D236010 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtQueryFullAttributesFile 7C90D7AE 4 Bytes JMP 7D233BD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtQueryInformationFile 7C90D7CE 4 Bytes JMP 7D235650 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtQueryKey 7C90D85E 4 Bytes JMP 7D244230 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtQueryMultipleValueKey 7C90D86E 4 Bytes JMP 7D244CC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtQuerySecurityObject 7C90D8DE 4 Bytes JMP 7D24EA60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtQuerySystemInformation 7C90D92E 4 Bytes JMP 7D251FF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtQueryValueKey 7C90D96E 4 Bytes JMP 7D244960 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtQueryVolumeInformationFile 7C90D98E 4 Bytes JMP 7D236870 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtReadFile 7C90D9CE 4 Bytes JMP 7D22F510 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtRenameKey 7C90DA5E 4 Bytes JMP 7D242E90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtSaveKey 7C90DB4E 4 Bytes JMP 7D22CD00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtSecureConnectPort 7C90DB7E 4 Bytes JMP 7D240F10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtSetInformationFile 7C90DC5E 4 Bytes JMP 7D237600 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtSetInformationProcess 7C90DC9E 5 Bytes JMP 00402830 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtSetInformationToken 7C90DCBE 4 Bytes JMP 7D24ECF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtSetSecurityObject 7C90DD2E 4 Bytes JMP 7D24EB80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtSetValueKey 7C90DDCE 4 Bytes JMP 7D2434E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!NtWriteFile 7C90DF7E 4 Bytes JMP 7D22F600 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!RtlGetFullPathName_U 7C9143A9 5 Bytes JMP 7D230460 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!RtlGetCurrentDirectory_U 7C914506 5 Bytes JMP 7D236580 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!LdrLoadDll 7C9163C3 4 Bytes JMP 7D245950 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!LdrUnloadDll 7C91738B 4 Bytes JMP 7D245A40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!RtlSetCurrentDirectory_U 7C91E7AA 5 Bytes JMP 7D2367F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!RtlCreateProcessParameters 7C922E99 5 Bytes JMP 7D246920 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ntdll.dll!RtlAdjustPrivilege 7C929A6D 5 Bytes JMP 004027F0 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] kernel32.dll!CreateProcessW 7C802336 5 Bytes JMP 7D247F90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] kernel32.dll!CreateProcessA 7C80236B 5 Bytes JMP 7D247FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] kernel32.dll!CreateFileMappingW 7C80943C 5 Bytes JMP 00402B20 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] kernel32.dll!GetModuleFileNameW 7C80B475 5 Bytes JMP 7D2455E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] kernel32.dll!CreateActCtxW 7C8154FC 4 Bytes JMP 7D253A60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] kernel32.dll!MoveFileWithProgressW 7C81F72E 4 Bytes JMP 7D232C80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] kernel32.dll!WaitNamedPipeW 7C82C674 5 Bytes JMP 7D231CE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] kernel32.dll!WinExec 7C86250D 5 Bytes JMP 7D247510 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] kernel32.dll!CreateActCtxA 7C86C8E5 5 Bytes JMP 7D253A80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] kernel32.dll!SetLocaleInfoA 7C876A0B 5 Bytes JMP 7D251FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] kernel32.dll!SetLocaleInfoW 7C877FB3 5 Bytes JMP 7D251FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!RegOpenKeyExW 77DD6AAF 5 Bytes JMP 00402C10 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!RegQueryValueExW 77DD6FFF 5 Bytes JMP 00402CB0 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!OpenThreadToken 77DD72CC 5 Bytes JMP 00402BB0 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!GetTokenInformation 77DD7305 5 Bytes JMP 00402970 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!SetThreadToken 77DDF193 5 Bytes JMP 004028A0 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!AccessCheckByType 77DDF1C9 5 Bytes JMP 00402870 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!LookupAccountNameW 77DE5B59 5 Bytes JMP 7D2278F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CloseServiceHandle 77DE6CE5 5 Bytes JMP 00401E30 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!QueryServiceStatus 77DE6D50 5 Bytes JMP 00401F60 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!OpenSCManagerW 77DE6F55 5 Bytes JMP 7D24A500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!OpenServiceW 77DE6FFD 5 Bytes JMP 00401D70 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CreateProcessAsUserW 77DEA8A9 5 Bytes JMP 7D247B10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!StartServiceA 77DEFB58 5 Bytes JMP 7D24CBC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!RegisterServiceCtrlHandlerExA 77DEFEAB 5 Bytes JMP 7D24A1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!QueryServiceStatusEx 77DF120A 5 Bytes JMP 00401E70 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!QueryServiceConfigA 77DF1596 5 Bytes JMP 7D24BE60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!SetServiceStatus 77DF3251 5 Bytes JMP 00401C30 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!StartServiceCtrlDispatcherW 77DF359D 5 Bytes JMP 00401D30 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!ReportEventW 77DF3681 5 Bytes JMP 7D24A4E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!RegisterServiceCtrlHandlerExW 77DF3E49 5 Bytes JMP 7D24A1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!RegisterServiceCtrlHandlerW 77DF3E77 5 Bytes JMP 7D24A190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!StartServiceW 77DF3E94 5 Bytes JMP 00401FC0 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!ControlService 77DF4A09 5 Bytes JMP 00402010 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!OpenServiceA 77DF4C66 5 Bytes JMP 7D24CE20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!RegisterServiceCtrlHandlerA 77DF4EC6 5 Bytes JMP 7D24A190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!OpenSCManagerA 77DF69AE 5 Bytes JMP 7D24A500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!EnumServicesStatusA 77DF6B47 5 Bytes JMP 7D24D2B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!QueryServiceConfigW 77DF6F92 5 Bytes JMP 7D24BD50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!DeregisterEventSource 77DF79D3 5 Bytes JMP 7D2385F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!RegisterEventSourceA 77DF7B60 5 Bytes JMP 7D24A480 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!ReportEventA 77DF7CB2 5 Bytes JMP 7D24A4E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!RegisterEventSourceW 77DF803C 5 Bytes JMP 7D24A460 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!RegConnectRegistryW 77DF817A 5 Bytes JMP 7D2279C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CreateProcessAsUserA 77E10CE8 5 Bytes JMP 7D247D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CredWriteA 77E17CB9 5 Bytes JMP 7D22B150 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CredWriteW 77E17D59 5 Bytes JMP 7D22AB00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CredReadA 77E17DF9 5 Bytes JMP 7D22B210 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CredReadW 77E17ED1 5 Bytes JMP 7D22AB90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CredEnumerateA 77E17FA9 5 Bytes JMP 7D22B270 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CredEnumerateW 77E18099 5 Bytes JMP 7D22AEF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CredWriteDomainCredentialsA 77E18189 5 Bytes JMP 7D22B180 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CredWriteDomainCredentialsW 77E18259 5 Bytes JMP 7D22AC70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CredReadDomainCredentialsA 77E18329 5 Bytes JMP 7D22B240 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CredReadDomainCredentialsW 77E18419 5 Bytes JMP 7D22AD60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CredDeleteA 77E18509 5 Bytes JMP 7D22B1E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CredDeleteW 77E185B1 5 Bytes JMP 7D22AEA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CredRenameA 77E18659 5 Bytes JMP 7D22B1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CredRenameW 77E18731 5 Bytes JMP 7D22B120 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!RegConnectRegistryA 77E3512A 5 Bytes JMP 7D227980 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!EnumServicesStatusExW 77E369B8 5 Bytes JMP 7D24D2F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!EnumServicesStatusExA 77E36C2F 5 Bytes JMP 7D24D340 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!QueryServiceObjectSecurity 77E36D01 5 Bytes JMP 7D24AFA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!SetServiceObjectSecurity 77E36D81 5 Bytes JMP 7D24B0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!ChangeServiceConfigA 77E36E69 5 Bytes JMP 7D24C7D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!ChangeServiceConfigW 77E37001 5 Bytes JMP 7D24C5E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!ChangeServiceConfig2A 77E37101 5 Bytes JMP 7D24C990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!ChangeServiceConfig2W 77E37189 5 Bytes JMP 7D24C990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CreateServiceA 77E37211 5 Bytes JMP 7D24D680 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!CreateServiceW 77E373A9 5 Bytes JMP 7D24D390 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!DeleteService 77E374B1 5 Bytes JMP 7D24C9E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!EnumDependentServicesA 77E37529 5 Bytes JMP 7D24A070 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!EnumDependentServicesW 77E375E1 5 Bytes JMP 7D24A070 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!GetServiceDisplayNameA 77E37699 5 Bytes JMP 7D24C300 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!GetServiceDisplayNameW 77E37739 5 Bytes JMP 7D24C260 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!GetServiceKeyNameA 77E377D9 5 Bytes JMP 7D24C4C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!GetServiceKeyNameW 77E37879 5 Bytes JMP 7D24C3C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!LockServiceDatabase 77E37919 5 Bytes JMP 7D24A0A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!QueryServiceConfig2A 77E37999 5 Bytes JMP 7D24C0F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!QueryServiceConfig2W 77E37AB1 5 Bytes JMP 7D24C020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!QueryServiceLockStatusA 77E37BC9 5 Bytes JMP 7D24A020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!QueryServiceLockStatusW 77E37C59 5 Bytes JMP 7D24A020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!UnlockServiceDatabase 77E37CE9 5 Bytes JMP 7D24A0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!EnumServicesStatusW 77E37D61 2 Bytes JMP 7D24D270 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!EnumServicesStatusW + 3 77E37D64 2 Bytes [41, 05]
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ADVAPI32.dll!StartServiceCtrlDispatcherA 77E37F09 5 Bytes JMP 7D24B770 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] RPCRT4.dll!RpcBindingInqAuthClientExW 77E8A906 5 Bytes JMP 7D228220 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] Secur32.dll!LsaRegisterLogonProcess 77FE4D17 5 Bytes JMP 7D245C70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!GetWindowLongW 7E4188A6 5 Bytes JMP 7D23BF60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!DispatchMessageW 7E418A01 5 Bytes JMP 7D23C500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!PostMessageW 7E418CCB 5 Bytes JMP 7D23CA40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!GetShellWindow 7E419252 5 Bytes JMP 7D23BA60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!GetWindowLongA 7E41945D 5 Bytes JMP 7D23C000 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!DispatchMessageA 7E4196B8 5 Bytes JMP 7D23C4B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!UnregisterClassW 7E419AA4 5 Bytes JMP 7D23A610 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!RegisterClassW 7E41A39A 5 Bytes JMP 7D23A470 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!RegisterClassExW 7E41AF7F 5 Bytes JMP 7D23A2D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!GetClassInfoExA 7E41DD58 5 Bytes JMP 7D23A740 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!GetClassInfoExW 7E41DEBC 5 Bytes JMP 7D23A6D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!FindWindowExW 7E41E0E3 5 Bytes JMP 7D23B8E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!RegisterDeviceNotificationW 7E41E8B9 5 Bytes JMP 7D2385D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!UnregisterDeviceNotification 7E41E8D7 5 Bytes JMP 7D2385F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!CreateDialogParamW 7E41EA3B 5 Bytes JMP 7D23DCC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!RegisterDeviceNotificationA 7E421B3B 5 Bytes JMP 7D2385D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!DialogBoxParamW 7E4247AB 5 Bytes JMP 7D23DD80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!DialogBoxIndirectParamAorW 7E4249D0 5 Bytes JMP 7D23DB80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!CreateDialogIndirectParamAorW 7E42680B 5 Bytes JMP 7D23DB10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!RegisterClassExA 7E427C39 5 Bytes JMP 7D23A3A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!SetWindowsHookExW 7E42820F 5 Bytes JMP 7D23D0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!FindWindowA 7E4282E1 5 Bytes JMP 7D23B820 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!EnumDesktopWindows 7E42851A 5 Bytes JMP 7D23B670 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!UnregisterClassA 7E4289A3 5 Bytes JMP 7D23A670 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!DefWindowProcW 7E428D20 5 Bytes JMP 7D238390 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!SendMessageW 7E42929A 5 Bytes JMP 7D23C750 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!GetPropW 7E4294B3 5 Bytes JMP 7D23BDC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!SetWindowPos 7E4299F3 5 Bytes JMP 7D238540 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!GetClassNameW 7E429D12 5 Bytes JMP 7D23A890 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!EnumWindows 7E42A5AE 5 Bytes JMP 7D23B5C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!GetWindowTextW 7E42A5CD 5 Bytes JMP 7D23B3C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!PostMessageA 7E42AAFD 5 Bytes JMP 7D23C9C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!EnumChildWindows 7E42B0F0 5 Bytes JMP 7D23B610 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!MoveWindow 7E42B29E 5 Bytes JMP 7D2384F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!RemovePropW 7E42C076 5 Bytes JMP 7D23BEE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!SetPropW 7E42C0B9 5 Bytes JMP 7D23BE40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!DefWindowProcA 7E42C17E 5 Bytes JMP 7D238400 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!SetWindowLongA 7E42C29D 5 Bytes JMP 7D23C230 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!SetWindowLongW 7E42C2BB 5 Bytes JMP 7D23C180 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!SetParent 7E42C7F9 5 Bytes JMP 7D2384B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!FindWindowW 7E42C9C3 5 Bytes JMP 7D23B780 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!SendMessageTimeoutW 7E42CDAA 5 Bytes JMP 7D23C850 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!CreateWindowExW 7E42D0A3 5 Bytes JMP 7D237FC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!UnhookWindowsHookEx 7E42D5F3 5 Bytes JMP 7D23CDB0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!SendNotifyMessageW 7E42D64F 5 Bytes JMP 7D23C960 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!CreateWindowExA 7E42E4A9 5 Bytes JMP 7D2380F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!GetClassInfoW 7E42E81E 5 Bytes JMP 7D23A7B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!RegisterClassA 7E42EA5E 5 Bytes JMP 7D23A540 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!SendMessageA 7E42F3C2 5 Bytes JMP 7D23C6E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!GetClassNameA 7E42F45F 3 Bytes JMP 7D23A970 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!GetClassNameA + 4 7E42F463 1 Byte [FE]
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!EnumThreadWindows 7E42F539 5 Bytes JMP 7D23B640 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!SendMessageTimeoutA 7E42FB6B 5 Bytes JMP 7D23C7F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!SetPropA 7E430000 5 Bytes JMP 7D23BE90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!GetPropA 7E430042 5 Bytes JMP 7D23BE00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!RemovePropA 7E430094 5 Bytes JMP 7D23BF20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!SetWindowsHookExA 7E431211 5 Bytes JMP 7D23D080 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!DialogBoxIndirectParamW 7E432072 5 Bytes JMP 7D23DC60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!FindWindowExA 7E43214A 5 Bytes JMP 7D23B990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!GetWindowTextA 7E43216B 5 Bytes JMP 7D23B3F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!CreateDialogIndirectParamA 7E439B28 5 Bytes JMP 7D23DC30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!DialogBoxParamA 7E43B144 5 Bytes JMP 7D23DDE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!CreateDialogParamA 7E43C7DB 5 Bytes JMP 7D23DD20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!GetClassInfoA 7E43EBFF 5 Bytes JMP 7D23A820 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!CreateDialogIndirectParamW 7E43F01F 5 Bytes JMP 7D23DC00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!SendNotifyMessageA 7E453948 5 Bytes JMP 7D23C900 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!DialogBoxIndirectParamA 7E456D7D 5 Bytes JMP 7D23DC90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!EndTask 7E45A0A5 5 Bytes JMP 7D238590 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] USER32.dll!ExitWindowsEx 7E45A275 5 Bytes JMP 7D238470 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] GDI32.dll!GdiAddFontResourceW 77F1CE11 5 Bytes JMP 7D237CC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] GDI32.dll!RemoveFontResourceExW 77F29281 5 Bytes JMP 7D237D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] GDI32.dll!GetFontResourceInfoW 77F3FFF4 5 Bytes JMP 7D237D60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] GDI32.dll!CreateScalableFontResourceW 77F40160 5 Bytes JMP 7D237DB0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] WS2_32.dll!WSASocketW 71AB404E 5 Bytes JMP 00402B90 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] WS2_32.dll!bind 71AB4480 5 Bytes JMP 00402B70 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] WS2_32.dll!WSANSPIoctl 71AB5086 5 Bytes JMP 7D246520 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] WS2_32.dll!listen 71AB8CD3 5 Bytes JMP 00402B80 C:\Program Files\Sandboxie\SandboxieRpcSs.exe (Sandboxie COM Services (RPC)/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ole32.dll!CoInitializeEx 774FEF7B 5 Bytes JMP 7D254F70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ole32.dll!RegisterDragDrop 774FF62A 5 Bytes JMP 7D255050 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ole32.dll!CoCreateInstanceEx 77500526 5 Bytes JMP 7D229D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ole32.dll!CoCreateInstance 7750057E 5 Bytes JMP 7D229C50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ole32.dll!CoMarshalInterface 7750EA71 5 Bytes JMP 7D2284D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ole32.dll!CoGetClassObject 775156C5 5 Bytes JMP 7D229BA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ole32.dll!CoUnmarshalInterface 7752D7F4 5 Bytes JMP 7D229E90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Sandboxie\SandboxieRpcSs.exe[3732] ole32.dll!RevokeDragDrop 77532B55 5 Bytes JMP 7D2550D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtAdjustPrivilegesToken 7C90CF0E 4 Bytes JMP 7D24ED30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtClose 7C90CFEE 4 Bytes JMP 7D2362E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtConnectPort 7C90D04E 4 Bytes JMP 7D240CE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtCreateEvent 7C90D08E 4 Bytes JMP 7D23FAF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtCreateFile 7C90D0AE 4 Bytes JMP 7D236A70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtCreateKey 7C90D0EE 4 Bytes JMP 7D243810 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtCreateMailslotFile 7C90D0FE 4 Bytes JMP 7D2344A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtCreateMutant 7C90D10E 4 Bytes JMP 7D23FE40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtCreateNamedPipeFile 7C90D11E 4 Bytes JMP 7D234640 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtCreatePort 7C90D13E 4 Bytes JMP 7D23F620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtCreateSection 7C90D17E 4 Bytes JMP 7D2404F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtCreateSemaphore 7C90D18E 4 Bytes JMP 7D2401A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtDeleteFile 7C90D23E 4 Bytes JMP 7D231AA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtDeleteKey 7C90D24E 4 Bytes JMP 7D244210 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtDeleteValueKey 7C90D26E 4 Bytes JMP 7D244EF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtDuplicateObject 7C90D29E 4 Bytes JMP 7D24E980 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtEnumerateKey 7C90D2CE 4 Bytes JMP 7D244590 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtEnumerateValueKey 7C90D2EE 4 Bytes JMP 7D244B30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtFsControlFile 7C90D39E 4 Bytes JMP 7D235ED0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtImpersonateClientOfPort 7C90D3FE 4 Bytes JMP 7D23FA90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtLoadDriver 7C90D46E 4 Bytes JMP 7D2456F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtLoadKey 7C90D47E 4 Bytes JMP 7D242EC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtNotifyChangeKey 7C90D54E 4 Bytes JMP 7D243620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtNotifyChangeMultipleKeys 7C90D55E 4 Bytes JMP 7D242B90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtOpenEvent 7C90D57E 4 Bytes JMP 7D23FC90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtOpenFile 7C90D59E 4 Bytes JMP 7D2377F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtOpenKey 7C90D5CE 4 Bytes JMP 7D244190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtOpenMutant 7C90D5DE 4 Bytes JMP 7D23FFF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtOpenProcess 7C90D5FE 4 Bytes JMP 7D24E8C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtOpenSection 7C90D62E 4 Bytes JMP 7D2406D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtOpenSemaphore 7C90D63E 4 Bytes JMP 7D240340 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtOpenThread 7C90D65E 4 Bytes JMP 7D24E920 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtQueryAttributesFile 7C90D70E 4 Bytes JMP 7D231A40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtQueryDirectoryFile 7C90D76E 4 Bytes JMP 7D236010 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtQueryFullAttributesFile 7C90D7AE 4 Bytes JMP 7D233BD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtQueryInformationFile 7C90D7CE 4 Bytes JMP 7D235650 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtQueryKey 7C90D85E 4 Bytes JMP 7D244230 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtQueryMultipleValueKey 7C90D86E 4 Bytes JMP 7D244CC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtQuerySecurityObject 7C90D8DE 4 Bytes JMP 7D24EA60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtQuerySystemInformation 7C90D92E 4 Bytes JMP 7D251FF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtQueryValueKey 7C90D96E 4 Bytes JMP 7D244960 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtQueryVolumeInformationFile 7C90D98E 4 Bytes JMP 7D236870 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtReadFile 7C90D9CE 4 Bytes JMP 7D22F510 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtRenameKey 7C90DA5E 4 Bytes JMP 7D242E90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtSaveKey 7C90DB4E 4 Bytes JMP 7D22CD00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtSecureConnectPort 7C90DB7E 4 Bytes JMP 7D240F10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtSetInformationFile 7C90DC5E 4 Bytes JMP 7D237600 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtSetInformationToken 7C90DCBE 4 Bytes JMP 7D24ECF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtSetSecurityObject 7C90DD2E 4 Bytes JMP 7D24EB80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtSetValueKey 7C90DDCE 4 Bytes JMP 7D2434E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!NtWriteFile 7C90DF7E 4 Bytes JMP 7D22F600 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!RtlGetFullPathName_U 7C9143A9 5 Bytes JMP 7D230460 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!RtlGetCurrentDirectory_U 7C914506 5 Bytes JMP 7D236580 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!LdrLoadDll 7C9163C3 4 Bytes JMP 7D245950 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!LdrUnloadDll 7C91738B 4 Bytes JMP 7D245A40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!RtlSetCurrentDirectory_U 7C91E7AA 5 Bytes JMP 7D2367F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ntdll.dll!RtlCreateProcessParameters 7C922E99 5 Bytes JMP 7D246920 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] kernel32.dll!CreateProcessW 7C802336 5 Bytes JMP 7D247F90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] kernel32.dll!CreateProcessA 7C80236B 5 Bytes JMP 7D247FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] kernel32.dll!GetModuleFileNameW 7C80B475 5 Bytes JMP 7D2455E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] kernel32.dll!CreateActCtxW 7C8154FC 4 Bytes JMP 7D253A60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] kernel32.dll!MoveFileWithProgressW 7C81F72E 4 Bytes JMP 7D232C80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] kernel32.dll!WaitNamedPipeW 7C82C674 5 Bytes JMP 7D231CE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] kernel32.dll!WinExec 7C86250D 5 Bytes JMP 7D247510 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] kernel32.dll!CreateActCtxA 7C86C8E5 5 Bytes JMP 7D253A80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)


#9 repairit

repairit
  • Topic Starter

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:03:38 AM

Posted 10 January 2010 - 10:04 PM

.text C:\Program Files\Internet Explorer\iexplore.exe[3884] kernel32.dll!SetLocaleInfoA 7C876A0B 5 Bytes JMP 7D251FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] kernel32.dll!SetLocaleInfoW 7C877FB3 5 Bytes JMP 7D251FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!LookupAccountNameW 77DE5B59 5 Bytes JMP 7D2278F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CloseServiceHandle 77DE6CE5 5 Bytes JMP 7D24B790 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!QueryServiceStatus 77DE6D50 5 Bytes JMP 7D24BCE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!OpenSCManagerW 77DE6F55 5 Bytes JMP 7D24A500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!OpenServiceW 77DE6FFD 5 Bytes JMP 7D24CD50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CreateProcessAsUserW 77DEA8A9 5 Bytes JMP 7D247B10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!StartServiceA 77DEFB58 5 Bytes JMP 7D24CBC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!RegisterServiceCtrlHandlerExA 77DEFEAB 5 Bytes JMP 7D24A1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!QueryServiceStatusEx 77DF120A 5 Bytes JMP 7D24BC50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!QueryServiceConfigA 77DF1596 5 Bytes JMP 7D24BE60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!SetServiceStatus 77DF3251 5 Bytes JMP 7D24A350 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!StartServiceCtrlDispatcherW 77DF359D 5 Bytes JMP 7D24B750 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!ReportEventW 77DF3681 5 Bytes JMP 7D24A4E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!RegisterServiceCtrlHandlerExW 77DF3E49 5 Bytes JMP 7D24A1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!RegisterServiceCtrlHandlerW 77DF3E77 5 Bytes JMP 7D24A190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!StartServiceW 77DF3E94 5 Bytes JMP 7D24CB10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!ControlService 77DF4A09 5 Bytes JMP 7D24CBD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!OpenServiceA 77DF4C66 5 Bytes JMP 7D24CE20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!RegisterServiceCtrlHandlerA 77DF4EC6 5 Bytes JMP 7D24A190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!OpenSCManagerA 77DF69AE 5 Bytes JMP 7D24A500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!EnumServicesStatusA 77DF6B47 5 Bytes JMP 7D24D2B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!QueryServiceConfigW 77DF6F92 5 Bytes JMP 7D24BD50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!DeregisterEventSource 77DF79D3 5 Bytes JMP 7D2385F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!RegisterEventSourceA 77DF7B60 5 Bytes JMP 7D24A480 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!ReportEventA 77DF7CB2 5 Bytes JMP 7D24A4E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!RegisterEventSourceW 77DF803C 5 Bytes JMP 7D24A460 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!RegConnectRegistryW 77DF817A 5 Bytes JMP 7D2279C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CreateProcessAsUserA 77E10CE8 5 Bytes JMP 7D247D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CredWriteA 77E17CB9 5 Bytes JMP 7D22B150 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CredWriteW 77E17D59 5 Bytes JMP 7D22AB00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CredReadA 77E17DF9 5 Bytes JMP 7D22B210 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CredReadW 77E17ED1 5 Bytes JMP 7D22AB90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CredEnumerateA 77E17FA9 5 Bytes JMP 7D22B270 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CredEnumerateW 77E18099 5 Bytes JMP 7D22AEF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CredWriteDomainCredentialsA 77E18189 5 Bytes JMP 7D22B180 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CredWriteDomainCredentialsW 77E18259 5 Bytes JMP 7D22AC70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CredReadDomainCredentialsA 77E18329 5 Bytes JMP 7D22B240 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CredReadDomainCredentialsW 77E18419 5 Bytes JMP 7D22AD60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CredDeleteA 77E18509 5 Bytes JMP 7D22B1E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CredDeleteW 77E185B1 5 Bytes JMP 7D22AEA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CredRenameA 77E18659 5 Bytes JMP 7D22B1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CredRenameW 77E18731 5 Bytes JMP 7D22B120 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!RegConnectRegistryA 77E3512A 5 Bytes JMP 7D227980 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!EnumServicesStatusExW 77E369B8 5 Bytes JMP 7D24D2F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!EnumServicesStatusExA 77E36C2F 5 Bytes JMP 7D24D340 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!QueryServiceObjectSecurity 77E36D01 5 Bytes JMP 7D24AFA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!SetServiceObjectSecurity 77E36D81 5 Bytes JMP 7D24B0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!ChangeServiceConfigA 77E36E69 5 Bytes JMP 7D24C7D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!ChangeServiceConfigW 77E37001 5 Bytes JMP 7D24C5E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!ChangeServiceConfig2A 77E37101 5 Bytes JMP 7D24C990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!ChangeServiceConfig2W 77E37189 5 Bytes JMP 7D24C990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CreateServiceA 77E37211 5 Bytes JMP 7D24D680 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!CreateServiceW 77E373A9 5 Bytes JMP 7D24D390 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!DeleteService 77E374B1 5 Bytes JMP 7D24C9E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!EnumDependentServicesA 77E37529 5 Bytes JMP 7D24A070 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!EnumDependentServicesW 77E375E1 5 Bytes JMP 7D24A070 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!GetServiceDisplayNameA 77E37699 5 Bytes JMP 7D24C300 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!GetServiceDisplayNameW 77E37739 5 Bytes JMP 7D24C260 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!GetServiceKeyNameA 77E377D9 5 Bytes JMP 7D24C4C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!GetServiceKeyNameW 77E37879 5 Bytes JMP 7D24C3C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!LockServiceDatabase 77E37919 5 Bytes JMP 7D24A0A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!QueryServiceConfig2A 77E37999 5 Bytes JMP 7D24C0F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!QueryServiceConfig2W 77E37AB1 5 Bytes JMP 7D24C020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!QueryServiceLockStatusA 77E37BC9 5 Bytes JMP 7D24A020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!QueryServiceLockStatusW 77E37C59 5 Bytes JMP 7D24A020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!UnlockServiceDatabase 77E37CE9 5 Bytes JMP 7D24A0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!EnumServicesStatusW 77E37D61 2 Bytes JMP 7D24D270 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!EnumServicesStatusW + 3 77E37D64 2 Bytes [41, 05]
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ADVAPI32.dll!StartServiceCtrlDispatcherA 77E37F09 5 Bytes JMP 7D24B770 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] RPCRT4.dll!RpcBindingInqAuthClientExW 77E8A906 5 Bytes JMP 7D228220 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] Secur32.dll!LsaRegisterLogonProcess 77FE4D17 5 Bytes JMP 7D245C70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!GetWindowLongW 7E4188A6 5 Bytes JMP 7D23BF60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!DispatchMessageW 7E418A01 5 Bytes JMP 7D23C500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!PostMessageW 7E418CCB 5 Bytes JMP 7D23CA40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!GetShellWindow 7E419252 5 Bytes JMP 7D23BA60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!GetWindowLongA 7E41945D 5 Bytes JMP 7D23C000 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!DispatchMessageA 7E4196B8 5 Bytes JMP 7D23C4B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!UnregisterClassW 7E419AA4 5 Bytes JMP 7D23A610 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!RegisterClassW 7E41A39A 5 Bytes JMP 7D23A470 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!RegisterClassExW 7E41AF7F 5 Bytes JMP 7D23A2D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!GetClassInfoExA 7E41DD58 5 Bytes JMP 7D23A740 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!GetClassInfoExW 7E41DEBC 5 Bytes JMP 7D23A6D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!FindWindowExW 7E41E0E3 5 Bytes JMP 7D23B8E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!RegisterDeviceNotificationW 7E41E8B9 5 Bytes JMP 7D2385D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!UnregisterDeviceNotification 7E41E8D7 5 Bytes JMP 7D2385F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!CreateDialogParamW 7E41EA3B 5 Bytes JMP 7D23DCC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!RegisterDeviceNotificationA 7E421B3B 5 Bytes JMP 7D2385D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!DialogBoxParamW 7E4247AB 5 Bytes JMP 3E21541D C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!DialogBoxIndirectParamAorW 7E4249D0 5 Bytes JMP 7D23DB80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!CreateDialogIndirectParamAorW 7E42680B 5 Bytes JMP 7D23DB10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!RegisterClassExA 7E427C39 5 Bytes JMP 7D23A3A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!SetWindowsHookExW 7E42820F 5 Bytes JMP 7D23D0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!FindWindowA 7E4282E1 5 Bytes JMP 7D23B820 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!EnumDesktopWindows 7E42851A 5 Bytes JMP 7D23B670 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!UnregisterClassA 7E4289A3 5 Bytes JMP 7D23A670 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!DefWindowProcW 7E428D20 5 Bytes JMP 7D238390 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!SendMessageW 7E42929A 5 Bytes JMP 7D23C750 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!GetPropW 7E4294B3 5 Bytes JMP 7D23BDC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!SetWindowPos 7E4299F3 5 Bytes JMP 7D238540 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!GetClassNameW 7E429D12 5 Bytes JMP 7D23A890 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!EnumWindows 7E42A5AE 5 Bytes JMP 7D23B5C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!GetWindowTextW 7E42A5CD 5 Bytes JMP 7D23B3C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!PostMessageA 7E42AAFD 5 Bytes JMP 7D23C9C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!EnumChildWindows 7E42B0F0 5 Bytes JMP 7D23B610 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!MoveWindow 7E42B29E 5 Bytes JMP 7D2384F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!RemovePropW 7E42C076 5 Bytes JMP 7D23BEE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!SetPropW 7E42C0B9 5 Bytes JMP 7D23BE40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!DefWindowProcA 7E42C17E 5 Bytes JMP 7D238400 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!SetWindowLongA 7E42C29D 5 Bytes JMP 7D23C230 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!SetWindowLongW 7E42C2BB 5 Bytes JMP 7D23C180 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!SetParent 7E42C7F9 5 Bytes JMP 7D2384B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!FindWindowW 7E42C9C3 5 Bytes JMP 7D23B780 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!SendMessageTimeoutW 7E42CDAA 5 Bytes JMP 7D23C850 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!CreateWindowExW 7E42D0A3 5 Bytes JMP 3E2ED6EC C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!UnhookWindowsHookEx 7E42D5F3 5 Bytes JMP 7D23CDB0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!SendNotifyMessageW 7E42D64F 5 Bytes JMP 7D23C960 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!CreateWindowExA 7E42E4A9 5 Bytes JMP 7D2380F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!GetClassInfoW 7E42E81E 5 Bytes JMP 7D23A7B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!RegisterClassA 7E42EA5E 5 Bytes JMP 7D23A540 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!SendMessageA 7E42F3C2 5 Bytes JMP 7D23C6E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!GetClassNameA 7E42F45F 3 Bytes JMP 7D23A970 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!GetClassNameA + 4 7E42F463 1 Byte [FE]
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!EnumThreadWindows 7E42F539 5 Bytes JMP 7D23B640 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!SendMessageTimeoutA 7E42FB6B 5 Bytes JMP 7D23C7F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!SetPropA 7E430000 5 Bytes JMP 7D23BE90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!GetPropA 7E430042 5 Bytes JMP 7D23BE00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!RemovePropA 7E430094 5 Bytes JMP 7D23BF20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!SetWindowsHookExA 7E431211 5 Bytes JMP 7D23D080 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!DialogBoxIndirectParamW 7E432072 5 Bytes JMP 3E3E441F C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!FindWindowExA 7E43214A 5 Bytes JMP 7D23B990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!GetWindowTextA 7E43216B 5 Bytes JMP 7D23B3F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!CreateDialogIndirectParamA 7E439B28 5 Bytes JMP 7D23DC30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!MessageBoxIndirectA 7E43A082 5 Bytes JMP 3E3E4351 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!DialogBoxParamA 7E43B144 5 Bytes JMP 3E3E43BC C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!CreateDialogParamA 7E43C7DB 5 Bytes JMP 7D23DD20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!GetClassInfoA 7E43EBFF 5 Bytes JMP 7D23A820 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!CreateDialogIndirectParamW 7E43F01F 5 Bytes JMP 7D23DC00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!MessageBoxExW 7E450838 5 Bytes JMP 3E3E4222 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!MessageBoxExA 7E45085C 5 Bytes JMP 3E3E4284 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!SendNotifyMessageA 7E453948 5 Bytes JMP 7D23C900 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!DialogBoxIndirectParamA 7E456D7D 5 Bytes JMP 3E3E4482 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!EndTask 7E45A0A5 5 Bytes JMP 7D238590 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!ExitWindowsEx 7E45A275 5 Bytes JMP 7D238470 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] USER32.dll!MessageBoxIndirectW 7E4664D5 5 Bytes JMP 3E3E42E6 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] GDI32.dll!GdiAddFontResourceW 77F1CE11 5 Bytes JMP 7D237CC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] GDI32.dll!RemoveFontResourceExW 77F29281 5 Bytes JMP 7D237D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] GDI32.dll!GetFontResourceInfoW 77F3FFF4 5 Bytes JMP 7D237D60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] GDI32.dll!CreateScalableFontResourceW 77F40160 5 Bytes JMP 7D237DB0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] SHELL32.dll!SHChangeNotifyRegister 7C9FEB5B 5 Bytes JMP 7D251620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] SHELL32.dll!ShellExecuteExW 7CA0996B 5 Bytes JMP 7D251480 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] SHELL32.dll!SHSetInstanceExplorer 7CAC4148 5 Bytes JMP 7D251E40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ole32.dll!CoInitializeEx 774FEF7B 5 Bytes JMP 7D254F70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ole32.dll!RegisterDragDrop 774FF62A 5 Bytes JMP 7D255050 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ole32.dll!CoCreateInstanceEx 77500526 5 Bytes JMP 7D229D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ole32.dll!CoCreateInstance 7750057E 5 Bytes JMP 7D229C50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ole32.dll!CoMarshalInterface 7750EA71 5 Bytes JMP 7D2284D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ole32.dll!CoGetClassObject 775156C5 5 Bytes JMP 7D229BA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ole32.dll!CoUnmarshalInterface 7752D7F4 5 Bytes JMP 7D229E90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ole32.dll!RevokeDragDrop 77532B55 5 Bytes JMP 7D2550D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] ws2_32.dll!WSANSPIoctl 71AB5086 5 Bytes JMP 7D246520 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] CRYPT32.dll!CryptProtectData 77A8B942 5 Bytes JMP 7D22B7B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3884] CRYPT32.dll!CryptUnprotectData 77A8BAF0 5 Bytes JMP 7D22B5C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtAdjustPrivilegesToken 7C90CF0E 4 Bytes JMP 7D24ED30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtClose 7C90CFEE 4 Bytes JMP 7D2362E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtConnectPort 7C90D04E 4 Bytes JMP 7D240CE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtCreateEvent 7C90D08E 4 Bytes JMP 7D23FAF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtCreateFile 7C90D0AE 4 Bytes JMP 7D236A70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtCreateKey 7C90D0EE 4 Bytes JMP 7D243810 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtCreateMailslotFile 7C90D0FE 4 Bytes JMP 7D2344A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtCreateMutant 7C90D10E 4 Bytes JMP 7D23FE40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtCreateNamedPipeFile 7C90D11E 4 Bytes JMP 7D234640 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtCreatePort 7C90D13E 4 Bytes JMP 7D23F620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtCreateSection 7C90D17E 4 Bytes JMP 7D2404F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtCreateSemaphore 7C90D18E 4 Bytes JMP 7D2401A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtDeleteFile 7C90D23E 4 Bytes JMP 7D231AA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtDeleteKey 7C90D24E 4 Bytes JMP 7D244210 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtDeleteValueKey 7C90D26E 4 Bytes JMP 7D244EF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtDuplicateObject 7C90D29E 4 Bytes JMP 7D24E980 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtEnumerateKey 7C90D2CE 4 Bytes JMP 7D244590 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtEnumerateValueKey 7C90D2EE 4 Bytes JMP 7D244B30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtFsControlFile 7C90D39E 4 Bytes JMP 7D235ED0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtImpersonateClientOfPort 7C90D3FE 4 Bytes JMP 7D23FA90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtLoadDriver 7C90D46E 4 Bytes JMP 7D2456F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtLoadKey 7C90D47E 4 Bytes JMP 7D242EC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtNotifyChangeKey 7C90D54E 4 Bytes JMP 7D243620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtNotifyChangeMultipleKeys 7C90D55E 4 Bytes JMP 7D242B90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtOpenEvent 7C90D57E 4 Bytes JMP 7D23FC90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtOpenFile 7C90D59E 4 Bytes JMP 7D2377F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtOpenKey 7C90D5CE 4 Bytes JMP 7D244190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtOpenMutant 7C90D5DE 4 Bytes JMP 7D23FFF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtOpenProcess 7C90D5FE 4 Bytes JMP 7D24E8C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtOpenSection 7C90D62E 4 Bytes JMP 7D2406D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtOpenSemaphore 7C90D63E 4 Bytes JMP 7D240340 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtOpenThread 7C90D65E 4 Bytes JMP 7D24E920 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtQueryAttributesFile 7C90D70E 4 Bytes JMP 7D231A40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtQueryDirectoryFile 7C90D76E 4 Bytes JMP 7D236010 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtQueryFullAttributesFile 7C90D7AE 4 Bytes JMP 7D233BD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtQueryInformationFile 7C90D7CE 4 Bytes JMP 7D235650 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtQueryKey 7C90D85E 4 Bytes JMP 7D244230 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtQueryMultipleValueKey 7C90D86E 4 Bytes JMP 7D244CC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtQuerySecurityObject 7C90D8DE 4 Bytes JMP 7D24EA60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtQuerySystemInformation 7C90D92E 4 Bytes JMP 7D251FF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtQueryValueKey 7C90D96E 4 Bytes JMP 7D244960 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtQueryVolumeInformationFile 7C90D98E 4 Bytes JMP 7D236870 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtReadFile 7C90D9CE 4 Bytes JMP 7D22F510 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtRenameKey 7C90DA5E 4 Bytes JMP 7D242E90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtSaveKey 7C90DB4E 4 Bytes JMP 7D22CD00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtSecureConnectPort 7C90DB7E 4 Bytes JMP 7D240F10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtSetInformationFile 7C90DC5E 4 Bytes JMP 7D237600 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtSetInformationToken 7C90DCBE 4 Bytes JMP 7D24ECF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtSetSecurityObject 7C90DD2E 4 Bytes JMP 7D24EB80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtSetValueKey 7C90DDCE 4 Bytes JMP 7D2434E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!NtWriteFile 7C90DF7E 4 Bytes JMP 7D22F600 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!RtlGetFullPathName_U 7C9143A9 5 Bytes JMP 7D230460 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!RtlGetCurrentDirectory_U 7C914506 5 Bytes JMP 7D236580 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!LdrLoadDll 7C9163C3 4 Bytes JMP 7D245950 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!LdrUnloadDll 7C91738B 4 Bytes JMP 7D245A40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!RtlSetCurrentDirectory_U 7C91E7AA 5 Bytes JMP 7D2367F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ntdll.dll!RtlCreateProcessParameters 7C922E99 5 Bytes JMP 7D246920 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] kernel32.dll!CreateProcessW 7C802336 5 Bytes JMP 7D247F90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] kernel32.dll!CreateProcessA 7C80236B 5 Bytes JMP 7D247FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] kernel32.dll!GetModuleFileNameW 7C80B475 5 Bytes JMP 7D2455E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] kernel32.dll!CreateActCtxW 7C8154FC 4 Bytes JMP 7D253A60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] kernel32.dll!MoveFileWithProgressW 7C81F72E 4 Bytes JMP 7D232C80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] kernel32.dll!WaitNamedPipeW 7C82C674 5 Bytes JMP 7D231CE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] kernel32.dll!WinExec 7C86250D 5 Bytes JMP 7D247510 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] kernel32.dll!CreateActCtxA 7C86C8E5 5 Bytes JMP 7D253A80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] kernel32.dll!SetLocaleInfoA 7C876A0B 5 Bytes JMP 7D251FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] kernel32.dll!SetLocaleInfoW 7C877FB3 5 Bytes JMP 7D251FD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!LookupAccountNameW 77DE5B59 5 Bytes JMP 7D2278F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CloseServiceHandle 77DE6CE5 5 Bytes JMP 7D24B790 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!QueryServiceStatus 77DE6D50 5 Bytes JMP 7D24BCE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!OpenSCManagerW 77DE6F55 5 Bytes JMP 7D24A500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!OpenServiceW 77DE6FFD 5 Bytes JMP 7D24CD50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CreateProcessAsUserW 77DEA8A9 5 Bytes JMP 7D247B10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!StartServiceA 77DEFB58 5 Bytes JMP 7D24CBC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!RegisterServiceCtrlHandlerExA 77DEFEAB 5 Bytes JMP 7D24A1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!QueryServiceStatusEx 77DF120A 5 Bytes JMP 7D24BC50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!QueryServiceConfigA 77DF1596 5 Bytes JMP 7D24BE60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!SetServiceStatus 77DF3251 5 Bytes JMP 7D24A350 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!StartServiceCtrlDispatcherW 77DF359D 5 Bytes JMP 7D24B750 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!ReportEventW 77DF3681 5 Bytes JMP 7D24A4E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!RegisterServiceCtrlHandlerExW 77DF3E49 5 Bytes JMP 7D24A1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!RegisterServiceCtrlHandlerW 77DF3E77 5 Bytes JMP 7D24A190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!StartServiceW 77DF3E94 5 Bytes JMP 7D24CB10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!ControlService 77DF4A09 5 Bytes JMP 7D24CBD0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!OpenServiceA 77DF4C66 5 Bytes JMP 7D24CE20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!RegisterServiceCtrlHandlerA 77DF4EC6 5 Bytes JMP 7D24A190 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!OpenSCManagerA 77DF69AE 5 Bytes JMP 7D24A500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!EnumServicesStatusA 77DF6B47 5 Bytes JMP 7D24D2B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!QueryServiceConfigW 77DF6F92 5 Bytes JMP 7D24BD50 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!DeregisterEventSource 77DF79D3 5 Bytes JMP 7D2385F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!RegisterEventSourceA 77DF7B60 5 Bytes JMP 7D24A480 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!ReportEventA 77DF7CB2 5 Bytes JMP 7D24A4E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!RegisterEventSourceW 77DF803C 5 Bytes JMP 7D24A460 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!RegConnectRegistryW 77DF817A 5 Bytes JMP 7D2279C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CreateProcessAsUserA 77E10CE8 5 Bytes JMP 7D247D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CredWriteA 77E17CB9 5 Bytes JMP 7D22B150 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CredWriteW 77E17D59 5 Bytes JMP 7D22AB00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CredReadA 77E17DF9 5 Bytes JMP 7D22B210 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CredReadW 77E17ED1 5 Bytes JMP 7D22AB90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CredEnumerateA 77E17FA9 5 Bytes JMP 7D22B270 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CredEnumerateW 77E18099 5 Bytes JMP 7D22AEF0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CredWriteDomainCredentialsA 77E18189 5 Bytes JMP 7D22B180 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CredWriteDomainCredentialsW 77E18259 5 Bytes JMP 7D22AC70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CredReadDomainCredentialsA 77E18329 5 Bytes JMP 7D22B240 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CredReadDomainCredentialsW 77E18419 5 Bytes JMP 7D22AD60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CredDeleteA 77E18509 5 Bytes JMP 7D22B1E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CredDeleteW 77E185B1 5 Bytes JMP 7D22AEA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CredRenameA 77E18659 5 Bytes JMP 7D22B1B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CredRenameW 77E18731 5 Bytes JMP 7D22B120 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!RegConnectRegistryA 77E3512A 5 Bytes JMP 7D227980 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!EnumServicesStatusExW 77E369B8 5 Bytes JMP 7D24D2F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!EnumServicesStatusExA 77E36C2F 5 Bytes JMP 7D24D340 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!QueryServiceObjectSecurity 77E36D01 5 Bytes JMP 7D24AFA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!SetServiceObjectSecurity 77E36D81 5 Bytes JMP 7D24B0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!ChangeServiceConfigA 77E36E69 5 Bytes JMP 7D24C7D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!ChangeServiceConfigW 77E37001 5 Bytes JMP 7D24C5E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!ChangeServiceConfig2A 77E37101 5 Bytes JMP 7D24C990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!ChangeServiceConfig2W 77E37189 5 Bytes JMP 7D24C990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CreateServiceA 77E37211 5 Bytes JMP 7D24D680 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!CreateServiceW 77E373A9 5 Bytes JMP 7D24D390 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!DeleteService 77E374B1 5 Bytes JMP 7D24C9E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!EnumDependentServicesA 77E37529 5 Bytes JMP 7D24A070 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!EnumDependentServicesW 77E375E1 5 Bytes JMP 7D24A070 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!GetServiceDisplayNameA 77E37699 5 Bytes JMP 7D24C300 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!GetServiceDisplayNameW 77E37739 5 Bytes JMP 7D24C260 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!GetServiceKeyNameA 77E377D9 5 Bytes JMP 7D24C4C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!GetServiceKeyNameW 77E37879 5 Bytes JMP 7D24C3C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!LockServiceDatabase 77E37919 5 Bytes JMP 7D24A0A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!QueryServiceConfig2A 77E37999 5 Bytes JMP 7D24C0F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!QueryServiceConfig2W 77E37AB1 5 Bytes JMP 7D24C020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!QueryServiceLockStatusA 77E37BC9 5 Bytes JMP 7D24A020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!QueryServiceLockStatusW 77E37C59 5 Bytes JMP 7D24A020 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!UnlockServiceDatabase 77E37CE9 5 Bytes JMP 7D24A0D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!EnumServicesStatusW 77E37D61 2 Bytes JMP 7D24D270 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!EnumServicesStatusW + 3 77E37D64 2 Bytes [41, 05]
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ADVAPI32.dll!StartServiceCtrlDispatcherA 77E37F09 5 Bytes JMP 7D24B770 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] RPCRT4.dll!RpcBindingInqAuthClientExW 77E8A906 5 Bytes JMP 7D228220 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] Secur32.dll!LsaRegisterLogonProcess 77FE4D17 5 Bytes JMP 7D245C70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!GetWindowLongW 7E4188A6 5 Bytes JMP 7D23BF60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!DispatchMessageW 7E418A01 5 Bytes JMP 7D23C500 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!PostMessageW 7E418CCB 5 Bytes JMP 7D23CA40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!GetShellWindow 7E419252 5 Bytes JMP 7D23BA60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!GetWindowLongA 7E41945D 5 Bytes JMP 7D23C000 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!DispatchMessageA 7E4196B8 5 Bytes JMP 7D23C4B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!UnregisterClassW 7E419AA4 5 Bytes JMP 7D23A610 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!RegisterClassW 7E41A39A 5 Bytes JMP 7D23A470 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!RegisterClassExW 7E41AF7F 5 Bytes JMP 7D23A2D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!GetClassInfoExA 7E41DD58 5 Bytes JMP 7D23A740 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!GetClassInfoExW 7E41DEBC 5 Bytes JMP 7D23A6D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!FindWindowExW 7E41E0E3 5 Bytes JMP 7D23B8E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!RegisterDeviceNotificationW 7E41E8B9 5 Bytes JMP 7D2385D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!UnregisterDeviceNotification 7E41E8D7 5 Bytes JMP 7D2385F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!CreateDialogParamW 7E41EA3B 5 Bytes JMP 7D23DCC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!RegisterDeviceNotificationA 7E421B3B 5 Bytes JMP 7D2385D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!DialogBoxParamW 7E4247AB 5 Bytes JMP 3E21541D C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!DialogBoxIndirectParamAorW 7E4249D0 5 Bytes JMP 7D23DB80 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!CreateDialogIndirectParamAorW 7E42680B 5 Bytes JMP 7D23DB10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!RegisterClassExA 7E427C39 5 Bytes JMP 7D23A3A0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!SetWindowsHookExW 7E42820F 5 Bytes JMP 3E2E9865 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!FindWindowA 7E4282E1 5 Bytes JMP 7D23B820 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!EnumDesktopWindows 7E42851A 5 Bytes JMP 7D23B670 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!UnregisterClassA 7E4289A3 5 Bytes JMP 7D23A670 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!DefWindowProcW 7E428D20 5 Bytes JMP 7D238390 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!SendMessageW 7E42929A 5 Bytes JMP 7D23C750 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!GetPropW 7E4294B3 5 Bytes JMP 7D23BDC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!SetWindowPos 7E4299F3 5 Bytes JMP 7D238540 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!GetClassNameW 7E429D12 5 Bytes JMP 7D23A890 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!EnumWindows 7E42A5AE 5 Bytes JMP 7D23B5C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!GetWindowTextW 7E42A5CD 5 Bytes JMP 7D23B3C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!PostMessageA 7E42AAFD 5 Bytes JMP 7D23C9C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!EnumChildWindows 7E42B0F0 5 Bytes JMP 7D23B610 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!MoveWindow 7E42B29E 5 Bytes JMP 7D2384F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!CallNextHookEx 7E42B3C6 5 Bytes JMP 3E2DCEE9 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!RemovePropW 7E42C076 5 Bytes JMP 7D23BEE0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!SetPropW 7E42C0B9 5 Bytes JMP 7D23BE40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!DefWindowProcA 7E42C17E 5 Bytes JMP 7D238400 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!SetWindowLongA 7E42C29D 5 Bytes JMP 7D23C230 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!SetWindowLongW 7E42C2BB 5 Bytes JMP 7D23C180 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!SetParent 7E42C7F9 5 Bytes JMP 7D2384B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!FindWindowW 7E42C9C3 5 Bytes JMP 7D23B780 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!SendMessageTimeoutW 7E42CDAA 5 Bytes JMP 7D23C850 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!CreateWindowExW 7E42D0A3 5 Bytes JMP 3E2ED6EC C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!UnhookWindowsHookEx 7E42D5F3 5 Bytes JMP 3E254602 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!SendNotifyMessageW 7E42D64F 5 Bytes JMP 7D23C960 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!CreateWindowExA 7E42E4A9 5 Bytes JMP 7D2380F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!GetClassInfoW 7E42E81E 5 Bytes JMP 7D23A7B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!RegisterClassA 7E42EA5E 5 Bytes JMP 7D23A540 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!SendMessageA 7E42F3C2 5 Bytes JMP 7D23C6E0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!GetClassNameA 7E42F45F 3 Bytes JMP 7D23A970 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!GetClassNameA + 4 7E42F463 1 Byte [FE]
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!EnumThreadWindows 7E42F539 5 Bytes JMP 7D23B640 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!SendMessageTimeoutA 7E42FB6B 5 Bytes JMP 7D23C7F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!SetPropA 7E430000 5 Bytes JMP 7D23BE90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!GetPropA 7E430042 5 Bytes JMP 7D23BE00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!RemovePropA 7E430094 5 Bytes JMP 7D23BF20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!SetWindowsHookExA 7E431211 5 Bytes JMP 7D23D080 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!DialogBoxIndirectParamW 7E432072 5 Bytes JMP 3E3E441F C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!FindWindowExA 7E43214A 5 Bytes JMP 7D23B990 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!GetWindowTextA 7E43216B 5 Bytes JMP 7D23B3F0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!CreateDialogIndirectParamA 7E439B28 5 Bytes JMP 7D23DC30 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!MessageBoxIndirectA 7E43A082 5 Bytes JMP 3E3E4351 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!DialogBoxParamA 7E43B144 5 Bytes JMP 3E3E43BC C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!CreateDialogParamA 7E43C7DB 5 Bytes JMP 7D23DD20 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!GetClassInfoA 7E43EBFF 5 Bytes JMP 7D23A820 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!CreateDialogIndirectParamW 7E43F01F 5 Bytes JMP 7D23DC00 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!MessageBoxExW 7E450838 5 Bytes JMP 3E3E4222 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!MessageBoxExA 7E45085C 5 Bytes JMP 3E3E4284 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!SendNotifyMessageA 7E453948 5 Bytes JMP 7D23C900 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!DialogBoxIndirectParamA 7E456D7D 5 Bytes JMP 3E3E4482 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!EndTask 7E45A0A5 5 Bytes JMP 7D238590 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!ExitWindowsEx 7E45A275 5 Bytes JMP 7D238470 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] USER32.dll!MessageBoxIndirectW 7E4664D5 5 Bytes JMP 3E3E42E6 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] GDI32.dll!GdiAddFontResourceW 77F1CE11 5 Bytes JMP 7D237CC0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] GDI32.dll!RemoveFontResourceExW 77F29281 5 Bytes JMP 7D237D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] GDI32.dll!GetFontResourceInfoW 77F3FFF4 5 Bytes JMP 7D237D60 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] GDI32.dll!CreateScalableFontResourceW 77F40160 5 Bytes JMP 7D237DB0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] SHELL32.dll!SHChangeNotifyRegister 7C9FEB5B 5 Bytes JMP 7D251620 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] SHELL32.dll!ShellExecuteExW 7CA0996B 5 Bytes JMP 7D251480 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] SHELL32.dll!SHSetInstanceExplorer 7CAC4148 5 Bytes JMP 7D251E40 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ole32.dll!CoInitializeEx 774FEF7B 5 Bytes JMP 7D254F70 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ole32.dll!RegisterDragDrop 774FF62A 5 Bytes JMP 7D255050 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ole32.dll!CoCreateInstanceEx 77500526 5 Bytes JMP 7D229D10 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ole32.dll!CoCreateInstance 7750057E 5 Bytes JMP 3E2ED748 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ole32.dll!CoMarshalInterface 7750EA71 5 Bytes JMP 7D2284D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ole32.dll!CoGetClassObject 775156C5 5 Bytes JMP 7D229BA0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ole32.dll!OleLoadFromStream 77529C85 5 Bytes JMP 3E3E47A0 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ole32.dll!CoUnmarshalInterface 7752D7F4 5 Bytes JMP 7D229E90 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ole32.dll!RevokeDragDrop 77532B55 5 Bytes JMP 7D2550D0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] ws2_32.dll!WSANSPIoctl 71AB5086 5 Bytes JMP 7D246520 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] CRYPT32.dll!CryptProtectData 77A8B942 5 Bytes JMP 7D22B7B0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)
.text C:\Program Files\Internet Explorer\iexplore.exe[3892] CRYPT32.dll!CryptUnprotectData 77A8BAF0 5 Bytes JMP 7D22B5C0 C:\Program Files\Sandboxie\SbieDll.dll (Sandboxie User Mode DLL/tzuk)

---- User IAT/EAT - GMER 1.0.15 ----

IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryExW] [6BFA9BE7] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryExW] [6BFA9BE7] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryExW] [6BFA9BE7] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\msvcrt.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6BFA9B5A] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExW] [6BFA9BE7] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExW] [6BFA9BE7] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6BFA9B5A] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExW] [6BFA9BE7] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6BFA9B5A] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\psapi.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\psapi.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!LoadLibraryExA] [6BFA9B5A] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe[132] @ C:\WINDOWS\system32\userenv.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Internet Explorer\iexplore.exe[220] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExW] [451F1ACB] C:\Program Files\Internet Explorer\xpshims.dll (Internet Explorer Compatibility Shims for XP/Microsoft Corporation)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryExW] [6BFA9BE7] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\MSVCRT.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\MSVCRT.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryExW] [6BFA9BE7] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\USER32.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryExW] [6BFA9BE7] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\GDI32.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExW] [6BFA9BE7] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6BFA9B5A] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExW] [6BFA9BE7] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6BFA9B5A] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6BFA9B5A] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExW] [6BFA9BE7] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryExW] [6BFA9BE7] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryW] [6BFA9AD3] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryExA] [6BFA9B5A] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryA] [6BFA9A4C] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!SetUnhandledExceptionFilter] [6BFA9C74] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryExA] [6BFA9B5A] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Common Files\AOL\1130190466\ee\AOLSoftware.exe[2032] @ C:\WINDOWS\system32\CRYPT32.dll [KERNEL32.dll!LoadLibraryExW] [6BFA9BE7] C:\Program Files\Common Files\AOL\AOLDiag\tbdiag.dll (AOL Diagnostics/AOL LLC)
IAT C:\Program Files\Internet Explorer\iexplore.exe[3324] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExW] [451F1ACB] C:\Program Files\Internet Explorer\xpshims.dll (Internet Explorer Compatibility Shims for XP/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[3892] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExW] [451F1ACB] C:\Program Files\Internet Explorer\xpshims.dll (Internet Explorer Compatibility Shims for XP/Microsoft Corporation)

---- Devices - GMER 1.0.15 ----

AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 EABFiltr.sys (QLB PS/2 Keyboard filter driver/Hewlett-Packard Company)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 EABFiltr.sys (QLB PS/2 Keyboard filter driver/Hewlett-Packard Company)

---- EOF - GMER 1.0.15 ----


#10 repairit

repairit
  • Topic Starter

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:03:38 AM

Posted 10 January 2010 - 10:05 PM

Gmer has been posted in the three previous reply's

#11 thcbytes

thcbytes

  • Malware Response Team
  • 14,790 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:38 AM

Posted 11 January 2010 - 12:20 PM

Great. thumbup2.gif

I see a few problems.

Please do not try to perform any Microsoft updates till I tell you to do so.

Let's get it fixed. Please do this.........

Click "start" on the taskbar and then click on the "Control Panel" icon.
Please doubleclick the "Add or Remove Programs" icon
A list of programs installed will be "populated" this may take a bit of time.
If they exist, uninstall the following by clicking on the following entries and selecting "remove":

"Ask Toolbar" = Foxit Toolbar

Additional instructions can be found here if needed.

===========

Download and Run ComboFix (by sUBs)

You must rename it before saving it.





Please download ComboFix from one of these locations:

Link 1
Link 2

Save thcbytes.exe to your Desktop <-- Important!!!
  • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. Please refer to this link for instructions. Do not ignore this very important step.

  • Double click on thcbytes.exe & follow the prompts.

  • As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.

  • Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.

**Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.



Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:



Click on Yes, to continue scanning for malware.

When finished, it will produce a log for you. Please include the C:\ComboFix.txt in your next reply

A word of warning: Neither I nor sUBs are responsible for any damage you may have caused your machine by running ComboFix on your own.
This tool is not a toy and not for everyday use.
ComboFix SHOULD NOT be used unless requested by a forum helper


==========

With your next post please provide:

* Combofix.txt

Kind regards,
~ t
Proud member - Unified Network of Instructors and Trained Eliminators
Posted Image

I do not accept personal donations for assistance provided. I would ask that you instead consider donating the greatest gift - Organ Donation. Your organs are of no use to you when your gone. You will save a life that would otherwise be lost!

http://donatelife.net/register-now/

#12 repairit

repairit
  • Topic Starter

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:03:38 AM

Posted 11 January 2010 - 08:24 PM

followed your instructions - removed foxit toolbar - disable antivir - downloaded ComboFix from link1 - renamed it thcbytes.exe - double clicked icon on desktop - window appears stating "ComboFix is preparing to run"- it then diasppears and my system is quiet - there are no additional prompts or windows. please advise wacko.gif

#13 repairit

repairit
  • Topic Starter

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:03:38 AM

Posted 11 January 2010 - 09:11 PM

reloaded ComboFix and re named it "thcbytes1.exe" - re executed the progran and it ran to completion - please see following log: thumbup.gif

ComboFix 10-01-11.01 - Richard Super 01/11/2010 19:57:08.1.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.511.264 [GMT -6:00]
Running from: c:\documents and settings\Richard Super\Desktop\thcbytes1.exe
AV: AntiVir Desktop *On-access scanning disabled* (Outdated) {AD166499-45F9-482A-A743-FDD3350758C7}
FW: ZoneAlarm Firewall *disabled* {829BDA32-94B3-44F4-8446-F8FCFF809F8B}
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\Richard Super\Application Data\inst.exe
c:\recycler\S-1-5-21-1708537768-308236825-839522115-1003
c:\recycler\S-1-5-21-218393345-2003623548-256203101-1003

.
((((((((((((((((((((((((( Files Created from 2009-12-12 to 2010-01-12 )))))))))))))))))))))))))))))))
.

No new files created in this timespan

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-12-11 16:41 . 2009-06-25 20:08 56816 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2009-11-23 21:18 . 2009-01-06 02:03 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2009-11-23 21:17 . 2009-03-24 20:43 -------- d-----w- c:\program files\SpywareBlaster
2009-11-09 20:11 . 2008-11-25 23:32 411368 ----a-w- c:\windows\system32\deploytk.dll
2009-11-09 20:00 . 2009-11-06 04:36 152576 ----a-w- c:\documents and settings\Richard Super\Application Data\Sun\Java\jre1.6.0_17\lzma.dll
2009-10-29 07:45 . 2004-08-04 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
2009-10-21 05:38 . 2004-08-04 12:00 75776 ----a-w- c:\windows\system32\strmfilt.dll
2009-10-21 05:38 . 2004-08-04 12:00 25088 ----a-w- c:\windows\system32\httpapi.dll
2009-10-20 16:20 . 2004-08-04 12:00 265728 ----a-w- c:\windows\system32\drivers\http.sys
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SandboxieControl"="c:\program files\Sandboxie\SbieCtrl.exe" [2009-12-01 389120]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Apoint"="c:\program files\Apoint2K\Apoint.exe" [2003-10-08 159744]
"AGRSMMSG"="AGRSMMSG.exe" [2004-09-03 88363]
"HostManager"="c:\program files\Common Files\AOL\1130190466\ee\AOLSoftware.exe" [2007-04-12 42032]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2009-03-02 209153]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-11-09 149280]
"Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2009-09-10 1312080]

c:\documents and settings\Richard Super\Start Menu\Programs\Startup\
Secunia PSI.lnk - c:\program files\Secunia\PSI\psi.exe [2009-6-24 803176]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoResolveTrack"= 1 (0x1)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoResolveTrack"= 1 (0x1)
"NoThumbnailCache"= 1 (0x1)

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AOLDeskbarDirRemoval]
rd [X]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RealTray]
2005-02-14 16:00 26112 ----a-w- c:\program files\Real\RealPlayer\realplay.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"=
"c:\\Program Files\\Common Files\\AOL\\ACS\\AOLAcsd.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe"=
"c:\\Program Files\\Common Files\\AOL\\1130190466\\ee\\AOLServiceHost.exe"=
"c:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"=
"c:\\Program Files\\Common Files\\AOL\\System Information\\sinf.exe"=
"c:\\Program Files\\Common Files\\AolCoach\\en_en\\player\\AOLNySEV.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Common Files\\AOL\\1130190466\\ee\\aolsoftware.exe"=
"c:\\Program Files\\IncrediMail\\bin\\ImpCnt.exe"=

R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [6/25/2009 2:08 PM 108289]
R3 PSI;PSI;c:\windows\system32\drivers\psi_mf.sys [6/17/2009 6:20 AM 12648]
R3 SbieDrv;SbieDrv;c:\program files\Sandboxie\SbieDrv.sys [12/1/2009 7:55 AM 119296]
S3 el575nd5;3Com Megahertz 10/100 LAN CardBus PC Card Driver;c:\windows\system32\DRIVERS\el575nd5.sys --> c:\windows\system32\DRIVERS\el575nd5.sys [?]
.
Contents of the 'Scheduled Tasks' folder
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.aol.com/?flv=1
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uInternet Connection Wizard,ShellNext = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=Q105&bd=presario&pf=laptop
uInternet Settings,ProxyOverride = localhost
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
Trusted Zone: internet
Trusted Zone: mcafee.com
.
- - - - ORPHANS REMOVED - - - -

Toolbar-SITEguard - (no file)
MSConfigStartUp-iTunesHelper - c:\program files\iTunes\iTunesHelper.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-11 20:06
Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(684)
c:\windows\System32\BCMLogon.dll

- - - - - - - > 'explorer.exe'(408)
c:\windows\system32\WININET.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Avira\AntiVir Desktop\avguard.exe
c:\program files\Common Files\AOL\ACS\AOLAcsd.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\windows\system32\nvsvc32.exe
c:\program files\Sandboxie\SbieSvc.exe
c:\windows\wanmpsvc.exe
c:\windows\System32\wltrysvc.exe
c:\windows\System32\bcmwltry.exe
c:\windows\AGRSMMSG.exe
c:\program files\Apoint2K\Apntex.exe
.
**************************************************************************
.
Completion time: 2010-01-11 20:13:01 - machine was rebooted
ComboFix-quarantined-files.txt 2010-01-12 02:12

Pre-Run: 43,459,420,160 bytes free
Post-Run: 43,365,908,480 bytes free

WindowsXP-KB310994-SP2-Home-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect

- - End Of File - - 61942A6C4295A90E7F0EE858D5EC75F8


#14 thcbytes

thcbytes

  • Malware Response Team
  • 14,790 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:38 AM

Posted 11 January 2010 - 09:58 PM

Well done. smile.gif
Home stretch.
Almost done.

We need to run an OTL Fix
  1. Please reopen on your desktop.
  2. Copy and Paste the following code into the textbox. Do not include the word "Code"
    CODE
    :OTL
    PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
    O2 - BHO: (AskBar BHO) - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar1.dll (Ask.com)
    O3 - HKLM\..\Toolbar: (Foxit Toolbar) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar1.dll (Ask.com)
    O3 - HKLM\..\Toolbar: (no name) - SITEguard - No CLSID value found.
    O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
    O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - No CLSID value found.
    O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
    O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - No CLSID value found.
    O3 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\..\Toolbar\ShellBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
    O3 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\..\Toolbar\WebBrowser: (Foxit Toolbar) - {3041D03E-FD4B-44E0-B742-2D9B88305F98} - C:\Program Files\AskBarDis\bar\bin\askBar1.dll (Ask.com)
    O15 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\..Trusted Domains: aol.com ([objects] * is out of zone range - 5)
    O15 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\..Trusted Domains: internet ([]about in Trusted sites)
    O15 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\..Trusted Domains: mcafee.com ([]http in Trusted sites)
    O15 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\..Trusted Domains: mcafee.com ([]https in Trusted sites)
    O15 - HKU\S-1-5-21-1467198363-3990250233-1503334692-1006\..Trusted Domains: 26 domain(s) and sub-domain(s) not assigned to a zone.
    [2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At83.job
    [2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At59.job
    [2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At35.job
    [2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At11.job
    [2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At107.job
    [2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At87.job
    [2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At63.job
    [2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At39.job
    [2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At15.job
    [2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At111.job
    [2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At86.job
    [2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At62.job
    [2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At38.job
    [2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At14.job
    [2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At110.job
    [2009/12/21 11:00:02 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At84.job
    [2009/12/21 11:00:02 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At60.job
    [2009/12/21 11:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At36.job
    [2009/12/21 11:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At12.job
    [2009/12/21 11:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\At108.job
    [2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At1.job
    [2009/08/08 08:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At10.job
    [2009/08/05 02:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At100.job
    [2009/01/05 17:20:42 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At101.job
    [2009/01/05 17:20:42 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At102.job
    [2009/01/05 17:20:42 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At103.job
    [2009/07/01 06:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At104.job
    [2009/09/13 07:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At105.job
    [2009/08/08 08:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At106.job
    [2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At107.job
    [2009/12/21 11:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At108.job
    [2009/09/13 11:00:02 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At109.job
    [2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At11.job
    [2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At110.job
    [2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At111.job
    [2009/11/23 15:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At112.job
    [2009/10/09 15:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At113.job
    [2009/10/23 16:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At114.job
    [2009/09/13 17:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At115.job
    [2009/11/09 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At116.job
    [2009/09/07 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At117.job
    [2009/10/25 20:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At118.job
    [2009/09/30 21:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At119.job
    [2009/12/21 11:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At12.job
    [2009/11/05 23:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At120.job
    [2009/09/13 11:00:04 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At13.job
    [2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At14.job
    [2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At15.job
    [2009/11/23 15:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At16.job
    [2009/10/09 15:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At17.job
    [2009/10/23 16:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At18.job
    [2009/09/13 17:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At19.job
    [2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At2.job
    [2009/11/09 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At20.job
    [2009/09/07 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At21.job
    [2009/10/25 20:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At22.job
    [2009/09/30 21:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At23.job
    [2009/11/05 23:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At24.job
    [2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At25.job
    [2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At26.job
    [2009/08/05 01:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At27.job
    [2009/08/05 02:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At28.job
    [2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At29.job
    [2009/08/05 01:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At3.job
    [2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At30.job
    [2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At31.job
    [2009/07/01 06:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At32.job
    [2009/09/13 07:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At33.job
    [2009/08/08 08:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At34.job
    [2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At35.job
    [2009/12/21 11:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At36.job
    [2009/09/13 11:00:04 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At37.job
    [2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At38.job
    [2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At39.job
    [2009/08/05 02:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At4.job
    [2009/11/23 15:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At40.job
    [2009/10/09 15:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At41.job
    [2009/10/23 16:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At42.job
    [2009/09/13 17:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At43.job
    [2009/11/09 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At44.job
    [2009/09/07 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At45.job
    [2009/10/25 20:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At46.job
    [2009/09/30 21:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At47.job
    [2009/11/05 23:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At48.job
    [2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At49.job
    [2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At5.job
    [2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At50.job
    [2009/08/05 01:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At51.job
    [2009/08/05 02:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At52.job
    [2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At53.job
    [2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At54.job
    [2009/01/05 10:08:44 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At55.job
    [2009/07/01 06:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At56.job
    [2009/09/13 07:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At57.job
    [2009/08/08 08:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At58.job
    [2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At59.job
    [2009/01/05 10:08:45 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At6.job
    [2009/12/21 11:00:02 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At60.job
    [2009/09/13 11:00:04 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At61.job
    [2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At62.job
    [2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At63.job
    [2009/11/23 15:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At64.job
    [2009/10/09 15:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At65.job
    [2009/10/23 16:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At66.job
    [2009/09/13 17:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At67.job
    [2009/11/09 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At68.job
    [2009/09/07 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At69.job
    [2009/01/05 10:08:45 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At7.job
    [2009/10/25 20:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At70.job
    [2009/09/30 21:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At71.job
    [2009/11/05 23:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At72.job
    [2009/01/05 10:08:45 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At73.job
    [2009/01/05 10:08:45 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At74.job
    [2009/08/05 01:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At75.job
    [2009/08/05 02:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At76.job
    [2009/01/05 10:08:45 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At77.job
    [2009/01/05 10:08:45 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At78.job
    [2009/01/05 10:08:45 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At79.job
    [2009/07/01 06:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At8.job
    [2009/07/01 06:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At80.job
    [2009/09/13 07:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At81.job
    [2009/08/08 08:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At82.job
    [2010/01/10 10:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At83.job
    [2009/12/21 11:00:02 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At84.job
    [2009/09/13 11:00:04 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At85.job
    [2010/01/09 13:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At86.job
    [2010/01/09 14:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At87.job
    [2009/11/23 15:00:02 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At88.job
    [2009/10/09 15:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At89.job
    [2009/09/13 07:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At9.job
    [2009/10/23 16:00:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At90.job
    [2009/09/13 17:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At91.job
    [2009/11/09 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At92.job
    [2009/09/07 19:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At93.job
    [2009/10/25 20:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At94.job
    [2009/09/30 21:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At95.job
    [2009/11/05 23:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At96.job
    [2009/01/05 17:20:42 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At97.job
    [2009/01/05 17:20:42 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At98.job
    [2009/08/05 01:00:00 | 00,000,350 | ---- | M] () -- C:\WINDOWS\Tasks\At99.job

    :Commands
    [CREATERESTOREPOINT]
    [resethosts]
    [emptytemp]
    [Reboot]
  3. Push
  4. OTL may ask to reboot the machine. Please do so if asked.
  5. Click .
  6. A report will open. Copy and Paste that report in your next reply.

==========

Please rerun MBAM.

MBAM may "make changes to your registry" as part of its disinfection routine. If using other security programs that detect registry changes (ie Spybot's Teatimer), they may interfere or alert you. Temporarily disable such programs or permit them to allow the changes.
  • Make sure you are connected to the Internet.
    • Update Malwarebytes' Anti-Malware <--- Important!!
    • Launch Malwarebytes' Anti-Malware
  • Then click Finish.
MBAM will automatically start and you will be asked to update the program before performing a scan.
  • If an update is found, the program will automatically update itself. Press the OK button to close that box and continue.
  • If you encounter any problems while downloading the definition updates, manually download them from here and just double-click on mbam-rules.exe to install.
On the Scanner tab:
  • Make sure the "Perform Quick Scan" option is selected.
  • Then click on the Scan button.
  • If asked to select the drives to scan, leave all the drives selected and click on the Start Scan button.
  • The scan will begin and "Scan in progress" will show at the top. It may take some time to complete so please be patient.
  • When the scan is finished, a message box will say "The scan completed successfully. Click 'Show Results' to display all objects found".
  • Click OK to close the message box and continue with the removal process.
Back at the main Scanner screen:
  • Click on the Show Results button to see a list of any malware that was found.
  • Make sure that everything is checked, and click Remove Selected.
  • When removal is completed, a log report will open in Notepad.
  • The log is automatically saved and can be viewed by clicking the Logs tab in MBAM.
  • Copy and paste the contents of that report in your next reply. Be sure to post the complete log to include the top portion which shows MBAM's database version and your operating system.
  • Exit MBAM when done.
Note: If MBAM encounters a file that is difficult to remove, you will be asked to reboot your computer so MBAM can proceed with the disinfection process. If asked to restart the computer, please do so immediately. Failure to reboot normally (not into safe mode) will prevent MBAM from removing all the malware.

==========

Finally......

In order for you to successfully update your computer to sp3 you must apply this patch 1st! Due to incompatibilities with your computers processor and this important update (sp3) your computer will at best not allow the download and at worst crash and become unbootable if you do not apply the patch 1st.

If your interested details can be found here.

So download, install and apply the patch. Reboot and then install the Microsoft updates. Let me know if you encounter any troubles.

==========

With your next post please provide:

* OTL fix log
* MBAM log
* Updated successful?

Kind regards,
~t

Proud member - Unified Network of Instructors and Trained Eliminators
Posted Image

I do not accept personal donations for assistance provided. I would ask that you instead consider donating the greatest gift - Organ Donation. Your organs are of no use to you when your gone. You will save a life that would otherwise be lost!

http://donatelife.net/register-now/

#15 repairit

repairit
  • Topic Starter

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:03:38 AM

Posted 11 January 2010 - 11:38 PM

patch was cancelled - could not be applied - message said the system does not meet the minimum configuration requirements! please advise!




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users