That log is long. When I tried to post it it said the reply was too long. If you know who's in charge of the site, let them know more info would be appreciated (like what the limit is, so I know how much to break up the log). Here is an attached file. I will still try to paste it, but you have this in the event IE crashes on me here.
Scratch that. I can't attach it either it's that big.

RkU Version: 3.8.388.590, Type LE (SR2)
==============================================
OS Name: Windows XP
Version 5.1.2600 (Service Pack 3)
Number of processors #2
==============================================
>Drivers
==============================================
0xBF012000 C:\WINDOWS\System32\nv4_disp.dll 4276224 bytes (NVIDIA Corporation, NVIDIA Compatible Windows 2000 Display driver, Version 56.73 )
0x804D7000 C:\WINDOWS\system32\ntoskrnl.exe 2260992 bytes (Microsoft Corporation, NT Kernel & System)
0x804D7000 PnpManager 2260992 bytes
0x804D7000 RAW 2260992 bytes
0x804D7000 WMIxWDM 2260992 bytes
0xF69F6000 C:\WINDOWS\System32\DRIVERS\nv4_mini.sys 1900544 bytes (NVIDIA Corporation, NVIDIA Compatible Windows 2000 Miniport Driver, Version 56.73 )
0xBF800000 Win32k 1851392 bytes
0xBF800000 C:\WINDOWS\System32\win32k.sys 1851392 bytes (Microsoft Corporation, Multi-User Win32 Driver)
0xF15A2000 C:\WINDOWS\System32\drivers\ha10kx2k.sys 774144 bytes (Creative Technology Ltd, Creative EMU10KX HAL (WDM))
0xB6874000 C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20040310.005\NavEx15.Sys 593920 bytes (Symantec Corporation, AV Engine)
0xF72B9000 Ntfs.sys 577536 bytes (Microsoft Corporation, NT File System Driver)
0xF682B000 C:\WINDOWS\system32\drivers\smwdm.sys 540672 bytes (Analog Devices, Inc., SoundMAX Integrated Digital Audio )
0xF6935000 C:\WINDOWS\system32\drivers\ctaud2k.sys 458752 bytes (Creative Technology Ltd, Creative WDM Audio Device Driver)
0xF0831000 C:\WINDOWS\System32\DRIVERS\mrxsmb.sys 458752 bytes (Microsoft Corporation, Windows NT SMB Minirdr)
0xF6739000 C:\WINDOWS\System32\DRIVERS\update.sys 385024 bytes (Microsoft Corporation, Update Driver)
0xF095A000 C:\WINDOWS\System32\DRIVERS\tcpip.sys 364544 bytes (Microsoft Corporation, TCP/IP Protocol Driver)
0xB8150000 C:\WINDOWS\System32\DRIVERS\srv.sys 356352 bytes (Microsoft Corporation, Server driver)
0xBFFA0000 C:\WINDOWS\System32\ATMFD.DLL 286720 bytes (Adobe Systems Incorporated, Windows NT OpenType/Type 1 Font Driver)
0xB6833000 C:\WINDOWS\System32\Drivers\HTTP.sys 266240 bytes (Microsoft Corporation, HTTP Protocol Stack)
0xB6703000 C:\WINDOWS\System32\Drivers\SAVRT.SYS 262144 bytes (Symantec Corporation, AutoProtect)
0xF6797000 C:\WINDOWS\System32\Drivers\c2scsi.SYS 245760 bytes (Sonic Solutions, Roxio virtual SCSI miniport)
0xF67D3000 C:\WINDOWS\System32\DRIVERS\rdpdr.sys 196608 bytes (Microsoft Corporation, Microsoft RDP Device redirector)
0xF7438000 ACPI.sys 188416 bytes (Microsoft Corporation, ACPI Driver for NT)
0xB844F000 C:\WINDOWS\System32\DRIVERS\mrxdav.sys 184320 bytes (Microsoft Corporation, Windows NT WebDav Minirdr)
0xF728C000 NDIS.sys 184320 bytes (Microsoft Corporation, NDIS 5.1 wrapper driver)
0xF68C3000 C:\WINDOWS\system32\drivers\ctoss2k.sys 176128 bytes (Creative Technology Ltd., Creative OS Services Driver (WDM))
0xB63E3000 C:\WINDOWS\system32\drivers\kmixer.sys 176128 bytes (Microsoft Corporation, Kernel Mode Audio Mixer)
0xF08A1000 C:\WINDOWS\System32\DRIVERS\rdbss.sys 176128 bytes (Microsoft Corporation, Redirected Drive Buffering SubSystem Driver)
0xB96EF000 C:\WINDOWS\System32\Drivers\SYMTDI.SYS 176128 bytes (Symantec Corporation, Norton Internet Security Filter)
0xF0932000 C:\WINDOWS\System32\DRIVERS\netbt.sys 163840 bytes (Microsoft Corporation, MBT Transport driver)
0xF73E2000 dmio.sys 155648 bytes (Microsoft Corp., Veritas Software, NT Disk Manager I/O Driver)
0xF090C000 C:\WINDOWS\System32\DRIVERS\ipnat.sys 155648 bytes (Microsoft Corporation, IP Network Address Translator)
0xEC767000 C:\WINDOWS\System32\Drivers\Fastfat.SYS 147456 bytes (Microsoft Corporation, Fast FAT File System Driver)
0xF6911000 C:\WINDOWS\system32\drivers\portcls.sys 147456 bytes (Microsoft Corporation, Port Class (Class Driver for Port/Miniport Devices))
0xF69A5000 C:\WINDOWS\System32\DRIVERS\USBPORT.SYS 147456 bytes (Microsoft Corporation, USB 1.1 & 2.0 Port Driver)
0xEC744000 C:\WINDOWS\System32\Drivers\dump_fasttx2k.sys 143360 bytes
0xF73A7000 fasttx2k.sys 143360 bytes (Promise Technology, Inc., Promise FastTrak Series Driver for WindowsXP)
0xF68EE000 C:\WINDOWS\system32\drivers\ks.sys 143360 bytes (Microsoft Corporation, Kernel CSA Library)
0xF08D6000 C:\WINDOWS\System32\drivers\afd.sys 139264 bytes (Microsoft Corporation, Ancillary Function Driver for WinSock)
0x806FF000 ACPI_HAL 134400 bytes
0x806FF000 C:\WINDOWS\system32\hal.dll 134400 bytes (Microsoft Corporation, Hardware Abstraction Layer DLL)
0xF1548000 C:\WINDOWS\System32\drivers\ctac32k.sys 131072 bytes (Creative Technology Ltd, Creative AC3 SW Decoder Device Driver (WDM))
0xF736F000 fltmgr.sys 131072 bytes (Microsoft Corporation, Microsoft Filesystem Filter Manager)
0xF1528000 C:\WINDOWS\System32\drivers\hap16v2k.sys 131072 bytes (Creative Technology Ltd, Creative EMU10KX-P16v HAL (WDM))
0xF1568000 C:\WINDOWS\System32\drivers\ctsfm2k.sys 126976 bytes (Creative Technology Ltd, SoundFont® Manager (WDM))
0xF7408000 ftdisk.sys 126976 bytes (Microsoft Corporation, FT Disk Driver)
0xF1587000 C:\WINDOWS\System32\drivers\emupia2k.sys 110592 bytes (Creative Technology Ltd, E-mu Plug-in Architecture Driver (WDM))
0xF7272000 Mup.sys 106496 bytes (Microsoft Corporation, Multiple UNC Provider driver)
0xF69C9000 C:\WINDOWS\System32\DRIVERS\e1000325.sys 102400 bytes (Intel Corporation, Intel® PRO/1000 Adapter NDIS 5.1 deserialized driver)
0xF73CA000 atapi.sys 98304 bytes (Microsoft Corporation, IDE/ATAPI Port Driver)
0xF738F000 C:\WINDOWS\system32\drivers\SCSIPORT.SYS 98304 bytes (Microsoft Corporation, SCSI Port Driver)
0xF7346000 KSecDD.sys 94208 bytes (Microsoft Corporation, Kernel Security Support Provider Interface)
0xF6814000 C:\WINDOWS\System32\DRIVERS\ndiswan.sys 94208 bytes (Microsoft Corporation, MS PPP Framing Driver (Strong Encryption))
0xB8662000 C:\WINDOWS\system32\drivers\wdmaud.sys 86016 bytes (Microsoft Corporation, MMSYSTEM Wave/Midi API mapper)
0xF68AF000 C:\WINDOWS\System32\DRIVERS\parport.sys 81920 bytes (Microsoft Corporation, Parallel Port Driver)
0xF69E2000 C:\WINDOWS\System32\DRIVERS\VIDEOPRT.SYS 81920 bytes (Microsoft Corporation, Video Port Driver)
0xF09B3000 C:\WINDOWS\System32\DRIVERS\ipsec.sys 77824 bytes (Microsoft Corporation, IPSec Driver)
0xB69A5000 C:\Program Files\Symantec\SYMEVENT.SYS 77824 bytes (Symantec Corporation, Symantec Event Library)
0xBF000000 C:\WINDOWS\System32\drivers\dxg.sys 73728 bytes (Microsoft Corporation, DirectX Graphics Driver)
0xF735D000 sr.sys 73728 bytes (Microsoft Corporation, System Restore Filesystem Filter Driver)
0xF7427000 pci.sys 69632 bytes (Microsoft Corporation, NT Plug and Play PCI Enumerator)
0xF6803000 C:\WINDOWS\System32\DRIVERS\psched.sys 69632 bytes (Microsoft Corporation, MS QoS Packet Scheduler)
0xB6F55000 C:\WINDOWS\System32\Drivers\SAVRTPEL.SYS 69632 bytes (Symantec Corporation, SAVRTPEL)
0xB81B7000 C:\WINDOWS\System32\Drivers\Cdfs.SYS 65536 bytes (Microsoft Corporation, CD-ROM File System Driver)
0xF7607000 C:\WINDOWS\System32\DRIVERS\cdrom.sys 65536 bytes (Microsoft Corporation, SCSI CD-ROM Driver)
0xB82A7000 C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20040310.005\NAVENG.Sys 65536 bytes (Symantec Corporation, AV Engine)
0xF74F7000 ohci1394.sys 65536 bytes (Microsoft Corporation, 1394 OpenHCI Port Driver)
0xF75F7000 C:\WINDOWS\System32\DRIVERS\serial.sys 65536 bytes (Microsoft Corporation, Serial Device Driver)
0xF75D7000 C:\WINDOWS\system32\drivers\drmk.sys 61440 bytes (Microsoft Corporation, Microsoft Kernel DRM Descrambler Filter)
0xF7617000 C:\WINDOWS\System32\DRIVERS\redbook.sys 61440 bytes (Microsoft Corporation, Redbook Audio Filter Driver)
0xF7557000 C:\WINDOWS\system32\drivers\sysaudio.sys 61440 bytes (Microsoft Corporation, System Audio WDM Filter)
0xF3862000 C:\WINDOWS\System32\DRIVERS\usbhub.sys 61440 bytes (Microsoft Corporation, Default Hub Driver for USB)
0xF7507000 C:\WINDOWS\System32\DRIVERS\1394BUS.SYS 57344 bytes (Microsoft Corporation, 1394 Bus Device Driver)
0xF74C7000 C:\WINDOWS\System32\DRIVERS\CLASSPNP.SYS 53248 bytes (Microsoft Corporation, SCSI Class System Dll)
0xF75E7000 C:\WINDOWS\System32\DRIVERS\i8042prt.sys 53248 bytes (Microsoft Corporation, i8042 Port Driver)
0xF7637000 C:\WINDOWS\System32\DRIVERS\rasl2tp.sys 53248 bytes (Microsoft Corporation, RAS L2TP mini-port/call-manager driver)
0xF74A7000 VolSnap.sys 53248 bytes (Microsoft Corporation, Volume Shadow Copy Driver)
0xF7657000 C:\WINDOWS\System32\DRIVERS\raspptp.sys 49152 bytes (Microsoft Corporation, Peer-to-Peer Tunneling Protocol)
0xF7517000 agp440.sys 45056 bytes (Microsoft Corporation, 440 NT AGP Filter)
0xF1892000 C:\WINDOWS\System32\Drivers\Fips.SYS 45056 bytes (Microsoft Corporation, FIPS Crypto Driver)
0xF7627000 C:\WINDOWS\System32\DRIVERS\imapi.sys 45056 bytes (Microsoft Corporation, IMAPI Kernel Driver)
0xF7497000 MountMgr.sys 45056 bytes (Microsoft Corporation, Mount Manager)
0xF7647000 C:\WINDOWS\System32\DRIVERS\raspppoe.sys 45056 bytes (Microsoft Corporation, RAS PPPoE mini-port/call-manager driver)
0xF74E7000 sbp2port.sys 45056 bytes (Microsoft Corporation, SBP-2 Protocol Driver)
0xF7487000 isapnp.sys 40960 bytes (Microsoft Corporation, PNP ISA Bus Driver)
0xF6D83000 C:\WINDOWS\System32\Drivers\NDProxy.SYS 40960 bytes (Microsoft Corporation, NDIS Proxy)
0xF6DF3000 C:\WINDOWS\System32\DRIVERS\termdd.sys 40960 bytes (Microsoft Corporation, Terminal Server Driver)
0xF74B7000 disk.sys 36864 bytes (Microsoft Corporation, PnP Disk Driver)
0xF10B2000 C:\WINDOWS\System32\DRIVERS\HIDCLASS.SYS 36864 bytes (Microsoft Corporation, Hid Class Library)
0xF75C7000 C:\WINDOWS\System32\DRIVERS\intelppm.sys 36864 bytes (Microsoft Corporation, Processor Device Driver)
0xF6E03000 C:\WINDOWS\System32\DRIVERS\msgpc.sys 36864 bytes (Microsoft Corporation, MS General Packet Classifier)
0xF18D2000 C:\WINDOWS\System32\DRIVERS\netbios.sys 36864 bytes (Microsoft Corporation, NetBIOS interface driver)
0xB64FE000 C:\WINDOWS\System32\Drivers\Normandy.SYS 36864 bytes (RKU Driver)
0xF74D7000 PxHelp20.sys 36864 bytes (Sonic Solutions, Px Engine Device Driver for Windows 2000/XP)
0xF18E2000 C:\WINDOWS\System32\DRIVERS\wanarp.sys 36864 bytes (Microsoft Corporation, MS Remote Access and Routing ARP Driver)
0xF1BC5000 C:\WINDOWS\System32\Drivers\Npfs.SYS 32768 bytes (Microsoft Corporation, NPFS Driver)
0xF7737000 C:\WINDOWS\System32\DRIVERS\usbehci.sys 32768 bytes (Microsoft Corporation, EHCI eUSB Miniport Driver)
0xF773F000 C:\WINDOWS\System32\DRIVERS\fdc.sys 28672 bytes (Microsoft Corporation, Floppy Disk Controller Driver)
0xF14C5000 C:\WINDOWS\System32\DRIVERS\HIDPARSE.SYS 28672 bytes (Microsoft Corporation, Hid Parsing Library)
0xEFA96000 C:\WINDOWS\System32\drivers\NetAlrt.sys 28672 bytes (Intel Corporation, Netalrt Driver)
0xF7707000 C:\WINDOWS\System32\DRIVERS\PCIIDEX.SYS 28672 bytes (Microsoft Corporation, PCI IDE Bus Driver Extension)
0xF0A16000 C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS 28672 bytes (Microsoft Corporation, USB Mass Storage Class Driver)
0xF774F000 C:\WINDOWS\SYSTEM32\DRIVERS\GEARAspiWDM.sys 24576 bytes (GEAR Software Inc., CD DVD Filter)
0xF7747000 C:\WINDOWS\System32\DRIVERS\kbdclass.sys 24576 bytes (Microsoft Corporation, Keyboard Class Driver)
0xF776F000 C:\WINDOWS\System32\DRIVERS\mouclass.sys 24576 bytes (Microsoft Corporation, Mouse Class Driver)
0xF771F000 C:\WINDOWS\System32\DRIVERS\usbuhci.sys 24576 bytes (Microsoft Corporation, UHCI USB Miniport Driver)
0xF1BD5000 C:\WINDOWS\System32\drivers\vga.sys 24576 bytes (Microsoft Corporation, VGA/Super VGA Video Driver)
0xF375B000 C:\WINDOWS\System32\DRIVERS\flpydisk.sys 20480 bytes (Microsoft Corporation, Floppy Driver)
0xF1BCD000 C:\WINDOWS\System32\Drivers\Msfs.SYS 20480 bytes (Microsoft Corporation, Mailslot driver)
0xF7777000 C:\WINDOWS\System32\DRIVERS\omci.sys 20480 bytes (Dell Computer Corporation, OMCI Device Driver)
0xF770F000 PartMgr.sys 20480 bytes (Microsoft Corporation, Partition Manager)
0xF775F000 C:\WINDOWS\System32\DRIVERS\ptilink.sys 20480 bytes (Parallel Technologies, Inc., Parallel Technologies DirectParallel IO Library)
0xF7767000 C:\WINDOWS\System32\DRIVERS\raspti.sys 20480 bytes (Microsoft Corporation, PTI DirectParallel® mini-port/call-manager driver)
0xF7757000 C:\WINDOWS\System32\DRIVERS\TDI.SYS 20480 bytes (Microsoft Corporation, TDI Wrapper)
0xF7857000 C:\WINDOWS\System32\watchdog.sys 20480 bytes (Microsoft Corporation, Watchdog Driver)
0xF1F68000 C:\WINDOWS\System32\Drivers\ASPI32.SYS 16384 bytes (Adaptec, ASPI for WIN32 Kernel Driver)
0xF7947000 C:\WINDOWS\System32\Drivers\cdrbsdrv.SYS 16384 bytes (B.H.A Corporation, CD-ROM Filter Driver for Windows2000/xp)
0xF6405000 C:\WINDOWS\System32\Drivers\dump_diskdump.sys 16384 bytes
0xF796B000 C:\WINDOWS\System32\DRIVERS\mssmbios.sys 16384 bytes (Microsoft Corporation, System Management BIOS Driver)
0xF721D000 C:\WINDOWS\System32\DRIVERS\ndisuio.sys 16384 bytes (Microsoft Corporation, NDIS User mode I/O Driver)
0xB814C000 C:\WINDOWS\System32\drivers\PfModNT.sys 16384 bytes (Creative Technology Ltd., PCI/ISA Device Info. Service)
0xB810C000 C:\WINDOWS\System32\drivers\PlatAlrt.sys 16384 bytes (Intel Corporation, Platalrt Driver)
0xF7943000 C:\WINDOWS\System32\DRIVERS\serenum.sys 16384 bytes (Microsoft Corporation, Serial Port Enumerator)
0xF7897000 C:\WINDOWS\system32\BOOTVID.dll 12288 bytes (Microsoft Corporation, VGA Boot Driver)
0xF5C3B000 C:\WINDOWS\System32\drivers\Dxapi.sys 12288 bytes (Microsoft Corporation, DirectX API Driver)
0xF1F6C000 C:\WINDOWS\System32\DRIVERS\hidusb.sys 12288 bytes (Microsoft Corporation, USB Miniport Driver for Input Devices)
0xF37C3000 C:\WINDOWS\System32\Drivers\i2omgmt.SYS 12288 bytes (Microsoft Corporation, I2O Utility Filter)
0xB8134000 C:\WINDOWS\System32\DRIVERS\mdmxsdk.sys 12288 bytes (Conexant, Diagnostic Interface DRIVER)
0xF1F58000 C:\WINDOWS\System32\DRIVERS\mouhid.sys 12288 bytes (Microsoft Corporation, HID Mouse Filter Driver)
0xF7953000 C:\WINDOWS\System32\DRIVERS\ndistapi.sys 12288 bytes (Microsoft Corporation, NDIS 3.0 connection wrapper driver)
0xF37BB000 C:\WINDOWS\System32\DRIVERS\rasacd.sys 12288 bytes (Microsoft Corporation, RAS Automatic Connection Driver)
0xB7166000 C:\WINDOWS\System32\Drivers\SYMREDRV.SYS 12288 bytes (Symantec Corporation, Redirector Filter)
0xF79F7000 C:\WINDOWS\system32\drivers\aeaudio.sys 8192 bytes (Andrea Electronics Corporation, Andrea Audio Stub Driver)
0xF79C1000 C:\WINDOWS\System32\Drivers\Beep.SYS 8192 bytes (Microsoft Corporation, BEEP Driver)
0xF79F1000 C:\WINDOWS\System32\drivers\ctprxy2k.sys 8192 bytes (Creative Technology Ltd, Creative Proxy Device Driver (WDM))
0xF798B000 dmload.sys 8192 bytes (Microsoft Corp., Veritas Software., NT Disk Manager Startup Driver)
0xF79BF000 C:\WINDOWS\System32\Drivers\Fs_Rec.SYS 8192 bytes (Microsoft Corporation, File System Recognizer Driver)
0xF7987000 C:\WINDOWS\system32\KDCOM.DLL 8192 bytes (Microsoft Corporation, Kernel Debugger HW Extension DLL)
0xF79C3000 C:\WINDOWS\System32\Drivers\mnmdd.SYS 8192 bytes (Microsoft Corporation, Frame buffer simulator)
0xF79BB000 C:\WINDOWS\System32\Drivers\ParVdm.SYS 8192 bytes (Microsoft Corporation, VDM Parallel Driver)
0xF79C5000 C:\WINDOWS\System32\DRIVERS\RDPCDD.sys 8192 bytes (Microsoft Corporation, RDP Miniport)
0xF79FD000 C:\WINDOWS\System32\DRIVERS\swenum.sys 8192 bytes (Microsoft Corporation, Plug and Play Software Device Enumerator)
0xF7995000 C:\WINDOWS\System32\DRIVERS\USBD.SYS 8192 bytes (Microsoft Corporation, Universal Serial Bus Driver)
0xF7989000 C:\WINDOWS\System32\DRIVERS\WMILIB.SYS 8192 bytes (Microsoft Corporation, WMILIB WMI support library Dll)
0xF7A58000 C:\WINDOWS\System32\DRIVERS\audstub.sys 4096 bytes (Microsoft Corporation, AudStub Driver)
0xF1512000 C:\WINDOWS\System32\Drivers\Cdr4_xp.SYS 4096 bytes (Sonic Solutions, CDR4 CD and DVD Place Holder Driver (see PxHelp))
0xF1511000 C:\WINDOWS\System32\Drivers\Cdralw2k.SYS 4096 bytes (Sonic Solutions, CDRAL Place Holder Driver (see PxHelp))
0xF7ADD000 C:\WINDOWS\System32\drivers\dxgthk.sys 4096 bytes (Microsoft Corporation, DirectX Graphics Driver Thunk)
0xF1510000 C:\WINDOWS\System32\Drivers\Null.SYS 4096 bytes (Microsoft Corporation, NULL Driver)
0xF7A4F000 pciide.sys 4096 bytes (Microsoft Corporation, Generic PCI IDE Bus Driver)
==============================================
>Stealth
==============================================
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x898505A0 ] TID: 112
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B297020 ] TID: 116
0x80562520 Faked ServiceTable-->EvLstnr.exe [ ETHREAD 0x8A61FDA8 ] TID: 136
0x80562520 Faked ServiceTable-->EvLstnr.exe [ ETHREAD 0x8A6F75C8 ] TID: 180
0x80562520 Faked ServiceTable-->ccApp.exe [ ETHREAD 0x8A6D62C8 ] TID: 184
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A5B1350 ] TID: 188
0x80562520 Faked ServiceTable-->EvLstnr.exe [ ETHREAD 0x8B072020 ] TID: 196
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B1E8DA8 ] TID: 212, 8781945 bytes
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A697A70 ] TID: 252
0x80562520 Faked ServiceTable-->iTunesHelper.exe [ ETHREAD 0x8A66DB28 ] TID: 276
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89344598 ] TID: 304
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B229BE8 ] TID: 320
0x80562520 Faked ServiceTable-->iTunesHelper.exe [ ETHREAD 0x8B2D5508 ] TID: 324
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8A676B30 ] TID: 360
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A633208 ] TID: 372
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A65EDA8 ] TID: 384
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8B14F6F8 ] TID: 396
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8B14F480 ] TID: 400
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x893BB598 ] TID: 424
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89345598 ] TID: 432
0x80562520 Faked ServiceTable-->EvLstnr.exe [ ETHREAD 0x8B16A2F8 ] TID: 440
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B079820 ] TID: 448
0x80562520 Faked ServiceTable-->msmsgs.exe [ ETHREAD 0x8A6FD020 ] TID: 480
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8B19AA08 ] TID: 484
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A3E0848 ] TID: 492
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8933E598 ] TID: 500
0x80562520 Faked ServiceTable-->realsched.exe [ ETHREAD 0x8A6A6020 ] TID: 504
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B231DA8 ] TID: 520
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A5B15C8 ] TID: 528
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A5AD6A8 ] TID: 544
0x80562520 Faked ServiceTable-->McciTrayApp.exe [ ETHREAD 0x8AF21708 ] TID: 548
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B033288 ] TID: 552
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A5B2868 ] TID: 560
0x80562520 Faked ServiceTable-->ADVWindowsClientService.exe [ ETHREAD 0x8A6B5CB0 ] TID: 576
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A5AD270 ] TID: 584
0x80562520 Faked ServiceTable-->smss.exe [ ETHREAD 0x8B1C1AA8 ] TID: 596
0x80562520 Faked ServiceTable-->smss.exe [ ETHREAD 0x8B14C9B8 ] TID: 600
0x80562520 Faked ServiceTable-->smss.exe [ ETHREAD 0x8B04D5D0 ] TID: 604
0x80562520 Faked ServiceTable-->realsched.exe [ ETHREAD 0x8B1A9DA8 ] TID: 620, 1769107304 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89328598 ] TID: 624, 1498696012 bytes
0x80562520 Faked ServiceTable-->ADVWindowsClientService.exe [ ETHREAD 0x8B0A94E8 ] TID: 628, 34209795 bytes
0x80562520 Faked ServiceTable-->ADVWindowsClientService.exe [ ETHREAD 0x8B03D798 ] TID: 644, 4325379 bytes
0x80562520 Faked ServiceTable-->csrss.exe [ ETHREAD 0x8B02CDA8 ] TID: 660, 34209795 bytes
0x80562520 Faked ServiceTable-->csrss.exe [ ETHREAD 0x8A6D22C8 ] TID: 668, 1628524372 bytes
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8B0872E0 ] TID: 704, 34209795 bytes
0x80562520 Faked ServiceTable-->DMXLauncher.exe [ ETHREAD 0x8938B598 ] TID: 708
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8B259148 ] TID: 712
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8B2A9578 ] TID: 716
0x80562520 Faked ServiceTable-->AppleMobileDeviceService.exe [ ETHREAD 0x8B242B08 ] TID: 736
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8B08E6F0 ] TID: 748
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8A6CBC10 ] TID: 752
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8A63E020 ] TID: 756, 6488155 bytes
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8B190518 ] TID: 760
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8B080350 ] TID: 764
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8B048D68 ] TID: 776
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x8B085020 ] TID: 788
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x8B06EDA8 ] TID: 792
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x8B035DA8 ] TID: 796
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8B1B6488 ] TID: 816
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8B02B488 ] TID: 820
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8A61D020 ] TID: 824
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8AFD4C10 ] TID: 836
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8B14DDA8 ] TID: 856
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x8B09BA98 ] TID: 860
0x80562520 Faked ServiceTable-->AppleMobileDeviceService.exe [ ETHREAD 0x8B242D80 ] TID: 868
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x8B0605A8 ] TID: 876
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x8B04A540 ] TID: 884
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8B049DA8 ] TID: 888, 7340147 bytes
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x8B129020 ] TID: 892
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8B238020 ] TID: 908
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8AFD6460 ] TID: 912
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8AFD0460 ] TID: 916
0x80562520 Faked ServiceTable-->CTSVCCDA.EXE [ ETHREAD 0x8B24A608 ] TID: 920
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x8B245210 ] TID: 924
0x80562520 Faked ServiceTable-->mDNSResponder.exe [ ETHREAD 0x8AF24998 ] TID: 944
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8AF1A6F8 ] TID: 948
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B099020 ] TID: 956, 4259923 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B033DA8 ] TID: 960
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8931D598 ] TID: 964
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x8B09A4E0 ] TID: 968
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A657DA8 ] TID: 988
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B222300 ] TID: 992
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B250980 ] TID: 996
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A64A980 ] TID: 1000, 2097184 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B2425D0 ] TID: 1012
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B039680 ] TID: 1028
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8932A598 ] TID: 1036
0x80562520 Faked ServiceTable-->RKUnhookerLE.EXE [ ETHREAD 0x8A5A3DA8 ] TID: 1048
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x8A739B30 ] TID: 1056
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A7398B8 ] TID: 1060
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8931E598 ] TID: 1064
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A61DC10 ] TID: 1072, 7077998 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8AF21C10 ] TID: 1084
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8AF24C10 ] TID: 1088
0x80562520 Faked ServiceTable-->RoxWatchTray10.exe [ ETHREAD 0x8937F598 ] TID: 1100
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89300598 ] TID: 1116
0x80562520 Faked ServiceTable-->CTSysVol.exe [ ETHREAD 0x8B040020 ] TID: 1124
0x80562520 Faked ServiceTable-->NAVAPSVC.EXE [ ETHREAD 0x8930E598 ] TID: 1128
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8AF1B980 ] TID: 1132
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x89367598 ] TID: 1144, 7471204 bytes
0x80562520 Faked ServiceTable-->sesinetd.exe [ ETHREAD 0x8B04F2E0 ] TID: 1148
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8AFDAC10 ] TID: 1164
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8AFD16F0 ] TID: 1168
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A676708 ] TID: 1196
0x80562520 Faked ServiceTable-->hserver.exe [ ETHREAD 0x8A6A6840 ] TID: 1204
0x80562520 Faked ServiceTable-->jqs.exe [ ETHREAD 0x8B0B8858 ] TID: 1208
0x80562520 Faked ServiceTable-->RoxWatchTray10.exe [ ETHREAD 0x89330598 ] TID: 1220
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x892F6598 ] TID: 1224, 2949120 bytes
0x80562520 Faked ServiceTable-->hserver.exe [ ETHREAD 0x8A6FA990 ] TID: 1228
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A62E888 ] TID: 1236
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A618DA8 ] TID: 1240
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B16ADA8 ] TID: 1248
0x80562520 Faked ServiceTable-->mDNSResponder.exe [ ETHREAD 0x8AFCE380 ] TID: 1256
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89310598 ] TID: 1268
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B2361D0 ] TID: 1280
0x80562520 Faked ServiceTable-->CTSysVol.exe [ ETHREAD 0x8B0997C8 ] TID: 1284, 3539000 bytes
0x80562520 Faked ServiceTable-->ADVWindowsClientService.exe [ ETHREAD 0x8B1E9338 ] TID: 1288
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B2241F8 ] TID: 1292
0x80562520 Faked ServiceTable-->CCEVTMGR.EXE [ ETHREAD 0x8B099A40 ] TID: 1296
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8AFCEC10 ] TID: 1300
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8B2D03C0 ] TID: 1304
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B22DB10 ] TID: 1308
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B244BE8 ] TID: 1312
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B22D5E8 ] TID: 1316
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B24ADA8 ] TID: 1324
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B222820 ] TID: 1328
0x80562520 Faked ServiceTable-->iTunesHelper.exe [ ETHREAD 0x8A66D408 ] TID: 1336
0x80562520 Faked ServiceTable-->jqs.exe [ ETHREAD 0x8AFD68D8 ] TID: 1340
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8B2212F0 ] TID: 1360, 3801155 bytes
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8AFD3C10 ] TID: 1368, 5439580 bytes
0x80562520 Faked ServiceTable-->CTHELPER.EXE [ ETHREAD 0x8A7025C8 ] TID: 1372
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8AF206F0 ] TID: 1404
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8AA7B408 ] TID: 1408
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8AF2A980 ] TID: 1412
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8AFD56F0 ] TID: 1420
0x80562520 Faked ServiceTable-->ADVWindowsClientService.exe [ ETHREAD 0x8B09C7A8 ] TID: 1424
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A6C1988 ] TID: 1428
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8AFCF980 ] TID: 1432
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B23D8F0 ] TID: 1436
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B23F978 ] TID: 1440
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8AFCC980 ] TID: 1448
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8AF20988 ] TID: 1460
0x80562520 Faked ServiceTable-->spoolsv.exe [ ETHREAD 0x8AFE5400 ] TID: 1472
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A68FA30 ] TID: 1480
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A552DA8 ] TID: 1488
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8AFC7980 ] TID: 1492
0x80562520 Faked ServiceTable-->jqs.exe [ ETHREAD 0x8B0B8AD0 ] TID: 1504
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x893D7598 ] TID: 1528
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8AFE5980 ] TID: 1540
0x80562520 Faked ServiceTable-->McciCMService.exe [ ETHREAD 0x8A648670 ] TID: 1556
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8B097AE0 ] TID: 1600
0x80562520 Faked ServiceTable-->explorer.exe [ ETHREAD 0x8A5BAA90 ] TID: 1616
0x80562520 Faked ServiceTable-->iTunesHelper.exe [ ETHREAD 0x8A6A7330 ] TID: 1632
0x80562520 Faked ServiceTable-->McciCMService.exe [ ETHREAD 0x8B099550 ] TID: 1648, 28180610 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8932C598 ] TID: 1672
0x80562520 Faked ServiceTable-->CCEVTMGR.EXE [ ETHREAD 0x8B04EDA8 ] TID: 1676
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8AF234A8 ] TID: 1684
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A427578 ] TID: 1692
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8B0B8020 ] TID: 1704
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B05FC70 ] TID: 1724, 3211312 bytes
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x8A640DA8 ] TID: 1740, 6029413 bytes
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8B0928E8 ] TID: 1744
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8A65CDA8 ] TID: 1776
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8B1E9020 ] TID: 1788
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A630DA8 ] TID: 1856, 3145780 bytes
0x80562520 Faked ServiceTable-->explorer.exe [ ETHREAD 0x8B0A6DA8 ] TID: 1884
0x80562520 Faked ServiceTable-->explorer.exe [ ETHREAD 0x8A695020 ] TID: 1892
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x898269A0 ] TID: 1896
0x80562520 Faked ServiceTable-->CTSysVol.exe [ ETHREAD 0x8B057D68 ] TID: 1908
0x80562520 Faked ServiceTable-->ADVWindowsClientService.exe [ ETHREAD 0x8A6F9588 ] TID: 1952, 3801155 bytes
0x80562520 Faked ServiceTable-->ADVWindowsClientService.exe [ ETHREAD 0x8A6F9800 ] TID: 1956
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A566C08 ] TID: 1992
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A5A4020 ] TID: 2020
0x80562520 Faked ServiceTable-->ccApp.exe [ ETHREAD 0x8B247AC8 ] TID: 2032
0x80562520 Faked ServiceTable-->EvLstnr.exe [ ETHREAD 0x8A6FB3D8 ] TID: 2036
0x80562520 Faked ServiceTable-->iTunesHelper.exe [ ETHREAD 0x8A57C880 ] TID: 2044
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x899959A0 ] TID: 2068
0x80562520 Faked ServiceTable-->ADVWindowsClientService.exe [ ETHREAD 0x8A671970 ] TID: 2076
0x80562520 Faked ServiceTable-->alg.exe [ ETHREAD 0x89352598 ] TID: 2080
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x892F7598 ] TID: 2084, 184811521 bytes
0x80562520 Faked ServiceTable-->alg.exe [ ETHREAD 0x896D39A0 ] TID: 2096
0x80562520 Faked ServiceTable-->alg.exe [ ETHREAD 0x89376598 ] TID: 2100
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A556698 ] TID: 2116
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A634240 ] TID: 2124
0x80562520 Faked ServiceTable-->alg.exe [ ETHREAD 0x892F2598 ] TID: 2136, 151322625 bytes
0x80562520 Faked ServiceTable-->ADVWindowsClientService.exe [ ETHREAD 0x899BE598 ] TID: 2152
0x80562520 Faked ServiceTable-->MDM.EXE [ ETHREAD 0x899B4598 ] TID: 2184
0x80562520 Faked ServiceTable-->NAVAPSVC.EXE [ ETHREAD 0x899F5598 ] TID: 2224, 184811521 bytes
0x80562520 Faked ServiceTable-->NAVAPSVC.EXE [ ETHREAD 0x899A8598 ] TID: 2232
0x80562520 Faked ServiceTable-->NAVAPSVC.EXE [ ETHREAD 0x899A4598 ] TID: 2240
0x80562520 Faked ServiceTable-->lmgrd.exe [ ETHREAD 0x8B075668 ] TID: 2248, 168230913 bytes
0x80562520 Faked ServiceTable-->lmgrd.exe [ ETHREAD 0x8A54B1C0 ] TID: 2252
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8933A598 ] TID: 2264
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8B045CA8 ] TID: 2272, 34013185 bytes
0x80562520 Faked ServiceTable-->RKUnhookerLE.EXE [ ETHREAD 0x8B1E8B30 ] TID: 2276
0x80562520 Faked ServiceTable-->msmsgs.exe [ ETHREAD 0x8A5323F8 ] TID: 2280
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x892CB020 ] TID: 2284, 50790401 bytes
0x80562520 Faked ServiceTable-->ADVWindowsClientService.exe [ ETHREAD 0x8A0D05A0 ] TID: 2288
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8A5EEDA8 ] TID: 2292
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x89315598 ] TID: 2356
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x89AB5598 ] TID: 2380
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8998B598 ] TID: 2388
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x899A1598 ] TID: 2392
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x899CA598 ] TID: 2396
0x80562520 Faked ServiceTable-->lmgrd.exe [ ETHREAD 0x89EFE448 ] TID: 2412
0x80562520 Faked ServiceTable-->MsgAgt.exe [ ETHREAD 0x89A92448 ] TID: 2416
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89AA9448 ] TID: 2424
0x80562520 Faked ServiceTable-->MsgAgt.exe [ ETHREAD 0x89ABD448 ] TID: 2436
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x893AB598 ] TID: 2440
0x80562520 Faked ServiceTable-->lmgrd.exe [ ETHREAD 0x899A3598 ] TID: 2452
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8935A598 ] TID: 2484
0x80562520 Faked ServiceTable-->NAVAPSVC.EXE [ ETHREAD 0x89312598 ] TID: 2508
0x80562520 Faked ServiceTable-->ADVWindowsClientService.exe [ ETHREAD 0x8B1426F0 ] TID: 2532
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x89982598 ] TID: 2556
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x8997F598 ] TID: 2560
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x8997B598 ] TID: 2564
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x8997A598 ] TID: 2568, 588947207 bytes
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x89979598 ] TID: 2572, 1494786377 bytes
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x89978598 ] TID: 2576, 858798384 bytes
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x89977598 ] TID: 2580, 959722803 bytes
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x89976598 ] TID: 2584, 4148784144 bytes
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x89974598 ] TID: 2588, 301395396 bytes
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x89971598 ] TID: 2596, 806164260 bytes
0x80562520 Faked ServiceTable-->ADVWindowsClientService.exe [ ETHREAD 0x8A63AA50 ] TID: 2604, 808530485 bytes
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8B1DC020 ] TID: 2628, 939660564 bytes
0x80562520 Faked ServiceTable-->hserver.exe [ ETHREAD 0x8996A598 ] TID: 2644
0x80562520 Faked ServiceTable-->hserver.exe [ ETHREAD 0x89965598 ] TID: 2652, 16 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8AA9A9A0 ] TID: 2656, 168957194 bytes
0x80562520 Faked ServiceTable-->hserver.exe [ ETHREAD 0x89963598 ] TID: 2660
0x80562520 Faked ServiceTable-->hserver.exe [ ETHREAD 0x89962598 ] TID: 2664, 16 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89659DA8 ] TID: 2672, 220466701 bytes
0x80562520 Faked ServiceTable-->pixard.exe [ ETHREAD 0x8996F598 ] TID: 2680
0x80562520 Faked ServiceTable-->sesinetd.exe [ ETHREAD 0x89959598 ] TID: 2700, 16 bytes
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x89948598 ] TID: 2724, 674628881 bytes
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x89957598 ] TID: 2732
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x89969598 ] TID: 2736, 16 bytes
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x8995B598 ] TID: 2740
0x80562520 Faked ServiceTable-->ccApp.exe [ ETHREAD 0x8995A598 ] TID: 2744, 101187585 bytes
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A5B1AF8 ] TID: 2748
0x80562520 Faked ServiceTable-->ccApp.exe [ ETHREAD 0x8992F598 ] TID: 2764, 36865896 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89917598 ] TID: 2772, 1 bytes
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x8990D598 ] TID: 2792, 16 bytes
0x80562520 Faked ServiceTable-->ccApp.exe [ ETHREAD 0x8990A598 ] TID: 2800
0x80562520 Faked ServiceTable-->MsgAgt.exe [ ETHREAD 0x898FA598 ] TID: 2808
0x80562520 Faked ServiceTable-->ccApp.exe [ ETHREAD 0x89924598 ] TID: 2816, 168099841 bytes
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A711BE8 ] TID: 2828
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A5A1DA8 ] TID: 2832, 1018008 bytes
0x80562520 Faked ServiceTable-->ccApp.exe [ ETHREAD 0x8993F598 ] TID: 2836
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x8A587518 ] TID: 2848, 16 bytes
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x893D0598 ] TID: 2860
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x89944598 ] TID: 2876, 1057856 bytes
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x89947598 ] TID: 2880, 1316992 bytes
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8A69FDA8 ] TID: 2904, 785288 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A640610 ] TID: 2924, 16 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x899054C8 ] TID: 2944
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x89354598 ] TID: 2952, 36908152 bytes
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x898D5578 ] TID: 2976
0x80562520 Faked ServiceTable-->MsPMSPSv.exe [ ETHREAD 0x8995D598 ] TID: 2988, 134610945 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x898B7598 ] TID: 3004
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x898B4598 ] TID: 3012, 489690124 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x898B0598 ] TID: 3016
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x898AF598 ] TID: 3020, 1 bytes
0x80562520 Faked ServiceTable-->sesinetd.exe [ ETHREAD 0x898AE598 ] TID: 3024, 16 bytes
0x80562520 Faked ServiceTable-->sesinetd.exe [ ETHREAD 0x898AB598 ] TID: 3028
0x80562520 Faked ServiceTable-->ASFAgent.exe [ ETHREAD 0x898F9598 ] TID: 3044, 36873136 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x898F6598 ] TID: 3052
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x898BD460 ] TID: 3068, 201588737 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x898BC598 ] TID: 3072
0x80562520 Faked ServiceTable-->CTHELPER.EXE [ ETHREAD 0x898B3598 ] TID: 3076
0x80562520 Faked ServiceTable-->RoxWatchTray10.exe [ ETHREAD 0x8933C598 ] TID: 3080
0x80562520 Faked ServiceTable-->alfserver.exe [ ETHREAD 0x8A0D5598 ] TID: 3088
0x80562520 Faked ServiceTable-->CTHELPER.EXE [ ETHREAD 0x8A0D3598 ] TID: 3104
0x80562520 Faked ServiceTable-->CTHELPER.EXE [ ETHREAD 0x8A0D2598 ] TID: 3108
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x892C7AD8 ] TID: 3120
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8931C598 ] TID: 3148
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x897369A0 ] TID: 3160
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A3E4490 ] TID: 3164
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89831598 ] TID: 3172
0x80562520 Faked ServiceTable-->RKUnhookerLE.EXE [ ETHREAD 0x8A6947B0 ] TID: 3176
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x898BE598 ] TID: 3180
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A640398 ] TID: 3184
0x80562520 Faked ServiceTable-->spoolsv.exe [ ETHREAD 0x89810598 ] TID: 3208
0x80562520 Faked ServiceTable-->RoxWatchTray10.exe [ ETHREAD 0x897AD9A0 ] TID: 3232
0x80562520 Faked ServiceTable-->RoxWatchTray10.exe [ ETHREAD 0x896569A0 ] TID: 3236
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89878598 ] TID: 3244
0x80562520 Faked ServiceTable-->RoxWatchTray10.exe [ ETHREAD 0x8AA999A0 ] TID: 3248
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x892BFDA8 ] TID: 3252
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A3E6DA8 ] TID: 3260
0x80562520 Faked ServiceTable-->MDM.EXE [ ETHREAD 0x8AF1FC18 ] TID: 3276
0x80562520 Faked ServiceTable-->alfserver.exe [ ETHREAD 0x895A6598 ] TID: 3284
0x80562520 Faked ServiceTable-->spoolsv.exe [ ETHREAD 0x8A6952A0 ] TID: 3308
0x80562520 Faked ServiceTable-->ADVWindowsClientSystemTray.exe [ ETHREAD 0x8B14ADA8 ] TID: 3312
0x80562520 Faked ServiceTable-->ADVWindowsClientSystemTray.exe [ ETHREAD 0x897C4598 ] TID: 3316
0x80562520 Faked ServiceTable-->sqlservr.exe [ ETHREAD 0x8958E598 ] TID: 3320
0x80562520 Faked ServiceTable-->ADVWindowsClientSystemTray.exe [ ETHREAD 0x8973B598 ] TID: 3328
0x80562520 Faked ServiceTable-->ADVWindowsClientSystemTray.exe [ ETHREAD 0x89614598 ] TID: 3332
0x80562520 Faked ServiceTable-->ADVWindowsClientSystemTray.exe [ ETHREAD 0x89546598 ] TID: 3348
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x893F8598 ] TID: 3352
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x893F7598 ] TID: 3380
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x8A59E880 ] TID: 3388
0x80562520 Faked ServiceTable-->ADVWindowsClientSystemTray.exe [ ETHREAD 0x893EA598 ] TID: 3396
0x80562520 Faked ServiceTable-->spoolsv.exe [ ETHREAD 0x893E9598 ] TID: 3400
0x80562520 Faked ServiceTable-->spoolsv.exe [ ETHREAD 0x893E8598 ] TID: 3404
0x80562520 Faked ServiceTable-->spoolsv.exe [ ETHREAD 0x893E7598 ] TID: 3408
0x80562520 Faked ServiceTable-->spoolsv.exe [ ETHREAD 0x893DF598 ] TID: 3432
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8B1A5700 ] TID: 3456
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x898997C0 ] TID: 3464
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x893D9598 ] TID: 3472
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A5B1880 ] TID: 3480
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x89387598 ] TID: 3484
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8937C598 ] TID: 3492
0x80562520 Faked ServiceTable-->ADVWindowsClientService.exe [ ETHREAD 0x893CA598 ] TID: 3508
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8980E598 ] TID: 3512
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A3E4020 ] TID: 3524
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8A6AA020 ] TID: 3536
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8937A598 ] TID: 3552
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x892C3DA8 ] TID: 3572
0x80562520 Faked ServiceTable-->McciCMService.exe [ ETHREAD 0x8A5CD7B0 ] TID: 3588
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x89765DA8 ] TID: 3636
0x80562520 Faked ServiceTable-->GoogleToolbarNotifier.exe [ ETHREAD 0x8ACF9868 ] TID: 3652
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x893B6598 ] TID: 3664
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x893AF598 ] TID: 3668
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x8A59FDA8 ] TID: 3672
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x893C8598 ] TID: 3680
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x893C5598 ] TID: 3684
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x893C4598 ] TID: 3688
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x893C3598 ] TID: 3692
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x8A70F570 ] TID: 3700
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x8A6FC240 ] TID: 3704
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A6C13D8 ] TID: 3712
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89358598 ] TID: 3724
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8992E598 ] TID: 3728
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89AC7448 ] TID: 3736
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x893D4598 ] TID: 3740
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89394598 ] TID: 3744
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89393598 ] TID: 3748
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89373598 ] TID: 3756
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89372598 ] TID: 3760
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89370598 ] TID: 3768
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8936F598 ] TID: 3772
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8936E598 ] TID: 3776
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8936D598 ] TID: 3780
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A7047D8 ] TID: 3784
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8936B598 ] TID: 3788
0x80562520 Faked ServiceTable-->msmsgs.exe [ ETHREAD 0x8A5E2800 ] TID: 3792
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89369598 ] TID: 3796
0x80562520 Faked ServiceTable-->csrss.exe [ ETHREAD 0x89368598 ] TID: 3800
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x899C75A0 ] TID: 3816
0x80562520 Faked ServiceTable-->RKUnhookerLE.EXE [ ETHREAD 0x8B1E88B8 ] TID: 3868
0x80562520 Faked ServiceTable-->RKUnhookerLE.EXE [ ETHREAD 0x8B1E8640 ] TID: 3876
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8B030818 ] TID: 3928
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8939F598 ] TID: 3944
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8B02C7A0 ] TID: 3952
0x80562520 Faked ServiceTable-->iPodService.exe [ ETHREAD 0x89362598 ] TID: 3956
0x80562520 Faked ServiceTable-->iPodService.exe [ ETHREAD 0x8B229198 ] TID: 3960
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A5A1AD0 ] TID: 3964
0x80562520 Faked ServiceTable-->iPodService.exe [ ETHREAD 0x8939E598 ] TID: 3968
0x80562520 Faked ServiceTable-->iPodService.exe [ ETHREAD 0x89399598 ] TID: 3988
0x80562520 Faked ServiceTable-->iPodService.exe [ ETHREAD 0x89398598 ] TID: 3992
0x80562520 Faked ServiceTable-->iPodService.exe [ ETHREAD 0x89397598 ] TID: 3996
0x80562520 Faked ServiceTable-->iPodService.exe [ ETHREAD 0x89396598 ] TID: 4000
0x80562520 Faked ServiceTable-->iTunesHelper.exe [ ETHREAD 0x8938E598 ] TID: 4024
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x893BE598 ] TID: 4040
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89361598 ] TID: 4044
0x80562520 Faked ServiceTable-->iexplore.exe [ ETHREAD 0x8A68F6A8 ] TID: 4068
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A5789F8 ] TID: 4072
0x039A0000 Hidden Image-->LimelightDownloadManager.dll [ EPROCESS 0x8AFD1B78 ] PID: 572, 102400 bytes
WARNING: Virus alike driver modification [SymDNS.sys]
WARNING: Virus alike driver modification [ACPIEC.SYS]
WARNING: Virus alike driver modification [CPQDAP01.SYS]
WARNING: Virus alike driver modification [NIKEDRV.SYS]
WARNING: Virus alike driver modification [RIO8DRV.SYS]
WARNING: Virus alike driver modification [RIODRV.SYS]
WARNING: Virus alike driver modification [WS2IFSL.SYS]
WARNING: Virus alike driver modification [SymIDS.sys]
WARNING: Virus alike driver modification [FSVGA.SYS]
0x03840000 Hidden Image-->ADVWindowsClientDll.dll [ EPROCESS 0x8AFD1B78 ] PID: 572, 143360 bytes
WARNING: Virus alike driver modification [SMCLIB.SYS]
WARNING: Virus alike driver modification [TSBVCAP.SYS]
WARNING: Virus alike driver modification [Dot4usb.sys]
WARNING: Virus alike driver modification [NMSDD.SYS]
WARNING: Virus alike driver modification [CINEMST2.SYS]
0x058A0000 Hidden Image-->Interop.MSNETOBJLib.dll [ EPROCESS 0x8AFD1B78 ] PID: 572, 28672 bytes
0x00DE0000 Hidden Image-->Interop.WMPLib.dll [ EPROCESS 0x8AFD1B78 ] PID: 572, 299008 bytes
WARNING: Virus alike driver modification [ATMEPVC.SYS]
WARNING: Virus alike driver modification [SymNDIS.sys]
WARNING: Virus alike driver modification [RAWWAN.SYS]
WARNING: Virus alike driver modification [ATMUNI.SYS]
WARNING: Virus alike driver modification [WMILIB.SYS]
0x03920000 Hidden Image-->ADVWindowsClientAppRoot.dll [ EPROCESS 0x8AFD1B78 ] PID: 572, 471040 bytes
0x03720000 Hidden Image-->ADVWindowsClientAppRoot.dll [ EPROCESS 0x8972B590 ] PID: 3288, 471040 bytes
WARNING: Virus alike driver modification [TOSDVD.SYS]
WARNING: Virus alike driver modification [NWLNKSPX.SYS]
WARNING: Virus alike driver modification [VDMINDVD.SYS]
WARNING: Virus alike driver modification [NWLNKNB.SYS]
WARNING: Virus alike driver modification [enum1394.sys]
WARNING: Virus alike driver modification [SymFW.sys]
WARNING: Virus alike driver modification [MCD.SYS]
WARNING: Virus alike driver modification [SYMEVENT.SYS]
==============================================
>Files
==============================================
!-->[Hidden] C:\ATI\FireGL 7.96.2.1
!-->[Hidden] C:\C++ Projects\FlockSim
!-->[Hidden] C:\C++ Projects\PartSim\Release
!-->[Hidden] C:\c4226c5d242d763f288e1f1d31
!-->[Hidden] C:\cygwin
!-->[Hidden] C:\cygwin-pkgs
!-->[Hidden] C:\Documents and Settings\Administrator\Application Data\putty
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Adobe\AIR
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Apple Computer
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Apple\Installer Cache\Apple Mobile Device Support 2.6.0.32
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Apple\Installer Cache\Apple Software Update 2.1.1.116
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Apple\Lockdown
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\BVRP Software
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Google
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\InstallShield
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Microsoft\Media Player
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Connections\Cm
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Microsoft\Provisioning
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Microsoft\Windows NT
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Motive
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Office Genuine Advantage
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\PopCap\PopCapLoader\zone\bookwormadventures\images\arenas
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\PopCap\PopCapLoader\zone\bookwormadventures\images\mainmenu
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\PopCap\PopCapLoader\zone\bookwormadventures\images\pam\images
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\PopCap\PopCapLoader\zone\bookwormadventures\LuaApp
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\PopCap\PopCapLoader\zone\bookwormadventures\scripts\creatures\Book1
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\PopCap\PopCapLoader\zone\bookwormadventures\scripts\effects
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\PopCap\PopCapLoader\zone\bookwormadventures\scripts\items
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\PopCap\PopCapLoader\zone\bookwormadventures\scripts\packs
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\PopCap\PopCapLoader\zone\bookwormadventures\scripts\tiles
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\PopCap\PopCapLoader\zone\bookwormadventures\scripts\treasures
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\PopCap\PopCapLoader\zone\peggle\images\game
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\PopCap\PopCapLoader\zone\peggle\images\interface
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\PopCap\PopCapLoader\zone\peggle\images\ip
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\PopCap\PopCapLoader\zone\peggle\images\levels
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\PopCap\PopCapLoader\zone\peggle\images\levelselect
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\PopCap\PopCapLoader\zone\peggle\images\mainmenu
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\PopCap\PopCapLoader\zone\peggle\images\upsell
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Real
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Roxio
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\SmartSound Software Inc
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Sonic
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Sun
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Ubisoft
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Ulead Systems\7.0
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Ulead Systems\Ulead VideoStudio\Ulead VideoStudio
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Viewpoint\Viewpoint Media Player\Resources
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Walgreens
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Winamp Toolbar
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}\x86
!-->[Hidden] C:\Documents and Settings\All Users\Documents\Config
!-->[Hidden] C:\Documents and Settings\All Users\Documents\Fonts
!-->[Hidden] C:\Documents and Settings\All Users\Documents\My Music\My Playlists
!-->[Hidden] C:\Documents and Settings\All Users\Documents\My Music\Sample Playlists
!-->[Hidden] C:\Documents and Settings\All Users\Documents\My Music\Sync Playlists
!-->[Hidden] C:\Documents and Settings\All Users\DRM\Cache
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Adobe
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\AGEIA
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\AliasWavefront\mental ray for Maya 1.5
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\AviSynth 2.5
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Canon PhotoRecord
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Canon Utilities
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Comcast
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Cygwin-X
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Diablo II
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\DivX\DivX Codec
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\DivX\DivX Converter
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\DivX\DivX Player
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\DivX\DivX Plus DirectShow Filters
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\DivX\DivX Plus Web Player
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\DivX\DivX Web Player
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\DivX\Helpful Links
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\DOSBox-0.73
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\DVD2SVCD Software bundle
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\FaxTools
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\GrabIt
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\iTunes
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Games
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Nikon View Ver.3
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Picture Package\First Step Guide
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Picture Package\Picture Package Duplicator
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Picture Package\Picture Package DVD Viewer
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Picture Package\Picture Package Menu
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Picture Package\Picture Package Producer2
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\PIXELA
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\QuickTime
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Roxio Easy Media Creator 10
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Spybot - Search & Destroy
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\SSH Secure Shell
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Ubisoft
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\verizon
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Walgreens
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\WinRAR
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Xvid
!-->[Hidden] C:\Documents and Settings\Default User\Application Data\Macromedia\Flash Player\www.macromedia.com
!-->[Hidden] C:\Documents and Settings\Default User\Local Settings\Application Data\Windows Server
!-->[Hidden] C:\Documents and Settings\LocalService\Application Data\Roxio
!-->[Hidden] C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows Media
!-->[Hidden] C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies
!-->[Hidden] C:\Documents and Settings\LocalService\Local Settings\Temp\History
!-->[Hidden] C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files
!-->[Hidden] C:\Documents and Settings\LocalService\Start Menu
!-->[Hidden] C:\Documents and Settings\Matthew Roach\.housecall6.6
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Adobe\Acrobat\6.0\Dictionaries
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Adobe\Adobe Encore DVD 1.5
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Adobe\AIR\CRLCache
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Adobe\AIR\ELS
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Adobe\Flash Player
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Adobe\Linguistics
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Apple Computer
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\CyberLink
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\DivX\DivX Player
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\drms
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Help
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Kontiki
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\#SharedObjects
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\korn.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#0.blogger.gmodules.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#2mdn.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#4porno.tv
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#@._V1_.swf
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#a.abc.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#a.ads2.msads.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#a.blip.tv
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#a.dolimg.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#a.ooyala.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#a1.soundcloud.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#a248.e.akamai.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#adbureau.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#adobe.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ads1.msn.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ads2.msads.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ak.c.ooyala.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#aka.zero.jibjab.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#americangladiators.permissiontv.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#analytics.atlrec.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#apps.pogo.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#as1.suitesmart.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#assets.cobaltnitra.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#atc.myview.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#atdmt.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#b.ads2.msads.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#babystrology.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#bankofamerica.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#bannerfarm.ace.advertising.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#bc.newsweek.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#blstc.msn.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#brightcove.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#c.mfcreative.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#c3metrics.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cache.theatre247.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cache.vevo.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdn-akm.vmixcore.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdn-static.viddler.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdn.euroclick.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdn.livestream.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdn.nhl.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdn.taboolasyndication.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdn1.telemetryverification.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdn1.ustream.tv
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdn2.specificmedia.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdn4.specificclick.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdns.gigya.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdntrivia.applatform.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#chatango.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#common.scrippsnetworks.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#content.longtailvideo.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#content.nordstrom.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#core.mochibot.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#core.videoegg.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#crateandbarrel.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#dailymotion.alice.it
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#dancejam.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#data.hfest.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#discovery.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#disney.go.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#dodger.fileburst.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#donsphotography.ifp3.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ds.serving-sys.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#e.stileproject.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ecx.images-amazon.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#emb.slutload.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#embed.redtube.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#espn-att.starwave.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#family.go.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#fans.nhl.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#feedjit.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#flash.mindjolt.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#flash.quantserve.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#flash2.ifriends.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#forbes.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#foxnews1.a.mms.mavenapps.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#foxsports.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#g-ecx.images-amazon.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#gallery.mac.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#gannett.a.mms.mavenapps.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#gdata.youtube.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#go.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#googleads.g.doubleclick.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#hk.video.yahoo.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#homedepot.shoplocal.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#host-d.oddcast.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#hs.interpolls.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#hub.guitarhero.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#i.ivillage.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#i2.current.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ia.media-imdb.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#image.com.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#image.ugo.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#images-na.ssl-images-amazon.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#images.amazon.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#images.blastro.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#images.delta.com.edgesuite.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#images.forbes.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#images.jambocast.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#images.roxwel.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#images.soapbox.msn.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#img.livejasmin.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#img.webmd.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#img.widgets.video.s-msn.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#img3.video.s-msn.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#inplay.tubemogul.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#kids.discovery.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#korn.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#l3.c.ooyala.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#lads.myspacecdn.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ll.media.abc.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ll.static.abc.go.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#load.tubemogul.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#m1.2mdn.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#macromedia.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mcstatic.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mechquest.battleon.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#media.jambocast.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#media.movieweb.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#media.mtvnservices.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#media.pampers.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#media.tattomedia.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#media.tbo.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#media.vmixcore.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#media1.break.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mediaforgews.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mediaonenetwork.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#megadeth.cdn.blipback.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mochiads.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mochibot.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#modules.nike.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#motifcdn2.doubleclick.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mpsnare.iesnare.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#msn.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#msnpremads.edgesuite.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#msntest.serving-sys.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#myhomeclip.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#na.llnet.cdn.ea.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#naiadsystems.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#natalie.feedroom.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#nhl.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#nhl.tv
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#nofeemortgageplus.bankofamerica.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#oddcast.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#opinionoutpost.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#optimusid.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#orders.webpower.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#otxresearch.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#p.ooyala.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pfiles.5min.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#phi.overcastmedia.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#places.ancestry.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#playback.rhapsody.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#player.cdn.targetspot.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#player.hulu.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#player.play.it
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pokemonchannel.tv
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#prod.thefifthnetwork.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pub.widgetbox.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pub.widgetserver.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#public0.ordienetworks.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#rd1.mktginc.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#redir.adap.tv
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#resources-p3.imeem.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#rmd.atdmt.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#s-sec.slutload-media.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#s.mcstatic.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#s0.2mdn.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#s3.amazonaws.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#s7d3.scene7.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#s7diod-isorigin.scene7.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#s9.addthis.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#seal.buysafe.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#secure-us.imrworldwide.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#secureinclude.ebaystatic.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#serve.a-widget.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#sites.target.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#slide.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#sodahead.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#spe.atdmt.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#spun.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#st.msn.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#stars.nhl.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.2mdn.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.ak.connect.facebook.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.ak.fbcdn.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.delvenetworks.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.espn.go.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.foxsports.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.onemorelevel.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.oprah.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.sevenload.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.snapfish.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.twitter.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#suitesmart.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#survey.otxresearch.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#surveydispatch.emisurveys.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#surveys.relevantid.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#swfs.ilike.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#tap-cdn.rubiconproject.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#tmz.vo.llnwd.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#totousa.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#tvguide.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#twitter.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#udn.specificclick.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ups.surveyrouter.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#video.bravotv.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#video.flashtalking.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#video.google.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#video.nbc.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#video.nbcuni.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#videos.video-loader.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#vidii.hardsextube.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#vizu.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#wanimoto.clearspring.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#weeklyad.target.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widget-cdn.meebo.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widget.tvloop.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widgets.clearspring.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widgets.nbc.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widgets.pogo.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.activision.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.alphabounce.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.babelgum.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.bankofamerica.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.billboardphotocontest.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.blinkx.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.bobthebuilder.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.borders.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.britaxusa.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.brutallegend.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.bustnow.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.cbs.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.celebsexvideo.org
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.comcast.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.crackle.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.cwtv.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.deviantclip.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.dreamworks.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.dreamworksanimation.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.etsy.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.everyotherdaydiet.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.evite.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.expo.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.glumbert.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.gm.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.gracobaby.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.heavy.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.hersheys.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.homestarrunner.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.justinbiebermusic.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.justteensite.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.kadokado.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.kia.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.krazytube.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.lordporn.co.uk
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.maytag.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.merriam-webster.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.miniclip.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.movieweb.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.mycokerewards.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.myfoxny.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.mypoints.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.nbcolympics.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.nhl.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.nick.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.nickjr.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.nude-hollywood.net
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.oceanicflight815.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.officialworldsex.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.onemorelevel.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.opinionoutpost.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.optimusid.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.pickle.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.pokeherstars.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.pornzapp.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.reddoorspas.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.refresheverything.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.retailmenot.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.rockband.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.roxwel.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.shaveeverywhere.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.sho.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.shotsexy.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.smartwool.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.snotr.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.sony.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.spiketv.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.tarrytownhouseestate.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.ted.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.thenewsroom.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.theonion.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.thomasandfriends.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.traileraddict.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.vh1.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.visualtour.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.vw.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.weather.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.westernunionperfectgift.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.wimp.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.xvideos.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.yourfilehost.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.yuvutu.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.ziporn.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#x.mochiads.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#xxvideo.us
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#zoom.jcpenney.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Flash Player\www.macromedia.com
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\DirectSound
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\FontAsset
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\FontXtra
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\Havok
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\Shockwave3dAsset
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\SoundControl
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\TextAsset
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\TextXtra
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Microsoft\CryptnetUrlCache\Content
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Microsoft\CryptnetUrlCache\MetaData
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Microsoft\Installer
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Microsoft\Movie Maker
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Microsoft\OIS
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Microsoft\Speech
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Motive\Verizon
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Move Networks
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Mozilla
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Office Genuine Advantage
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\quickhit.football.QHFootball.4D5206CA741FBF5FD6AAD1A97F5076E917382B34.1
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Real\Msg
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Real\RealPlayer\db\Backup\000
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Real\RealPlayer\DRM
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Real\RealPlayer\ErrorLogs
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Real\RealPlayer\History
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Real\RealPlayer\library
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Real\RealPlayer\PMP
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Real\RealShare
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Real\Update
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\RipIt4Me\PRETTYINPINK_0
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\RipIt4Me\TRON_0
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Roxio\Dragon
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Roxio\DVD
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Roxio\Label Creator
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Roxio\MediaManager10
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Roxio\MyDVD10
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Roxio\MyDVD9
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Roxio\RoxioCentral
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Roxio\Sidewinder
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Roxio\VideoUI10
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Snapfish
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\SSH
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Sun\Java\AU
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Sun\Java\Deployment\cache\6.0
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Sun\Java\Deployment\SystemCache
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Sun\Java\jre1.6.0_14
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Sun\Java\jre1.6.0_20
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\uTorrent
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Viewpoint
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\W Photo Studio
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\W Photo Studio Viewer
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\Walgreens
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Application Data\WinRAR
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Desktop\10_23accident
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Desktop\Furniture Pics
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Desktop\House
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Desktop\instructions.txt
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Desktop\Mortgage ReFi
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Desktop\Receipts
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Desktop\vsp
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Desktop\Will
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Favorites\Microsoft Websites
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Favorites\Paige Knits
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Favorites\PARKE
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Favorites\Verizon Supported Websites
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Favorites\Web Channels
!-->[Hidden] C:\Documents and Settings\Matthew Roach\InstallAnywhere
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\3DVIA
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\Apple
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\Apple Computer
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\Dell
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\DOSBox
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\Google
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\Help
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\Microsoft\Feeds
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\Microsoft\Feeds Cache
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\Microsoft\Media Player
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\Microsoft\OIS
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\Microsoft\Portable Devices
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\Microsoft\Speech
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\Microsoft\Windows Media
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\Microsoft\Windows NT
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\QuickPar
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\SupportSoft
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\TechSmith
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Application Data\Windows Server
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Apps
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\History\History.IE5\MSHist012010060120100602
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\History\History.IE5\MSHist012010060320100604
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\History\History.IE5\MSHist012010060420100605
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temporary Internet Files\Content.IE5\0LZCHYYN
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temporary Internet Files\Content.IE5\2W1433RO
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temporary Internet Files\Content.IE5\9EIZP4Q1
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temporary Internet Files\Content.IE5\GXEW06JX
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temporary Internet Files\Content.IE5\HITK3U9Y
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temporary Internet Files\Content.IE5\STYIAGBC
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temporary Internet Files\Content.IE5\TOYMADHT
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temporary Internet Files\Content.IE5\UOF9DKH7
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temporary Internet Files\Content.IE5\YCG5A4KR\index[8].htm
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temporary Internet Files\FrontPageTempDir
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temporary Internet Files\VP5Q9559
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\AGEIA
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\Arc24.tmp
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\Arc38.tmp
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\CAMEXP\TRANSFER
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\DC913
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\DC916
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\DC920
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\DC922
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\DC926
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\DC92B
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\DC92E
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\DC930
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\DC963
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\DC965
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\DC96D
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\DC974
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\Default
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\DX9
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\F-Secure
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\houdini6\desktop
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\Jgl_Rt
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\k.images
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\mayaDiskCache_16e0
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\mayaDiskCache_574
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\mayaDiskCache_c30
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\mayaDiskCache_e2c
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\mayaDiskCache_fc4
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\MovieDesk
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\MyDVD_Temp
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\OIS
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\particle_temp
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\rninst~0
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\RoxioLC
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\SFGbfbc.rra
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\SFGbfdb.rra
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\TCD1.tmp
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\TCD3E.tmp
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\TCD3F.tmp
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\VIDEO_TS
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\viewmgr
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\VTmp41
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\WASB164.tmp
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\WER09b3.dir00
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\WER2932.dir00
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\WER5E3.tmp.dir00
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\WER5E4.tmp.dir00
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\WER5E6.tmp.dir00
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\WER5E7.tmp.dir00
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\WER5E9.tmp.dir00
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\WERC.tmp.dir00
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\ZB
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\_is2C
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\{5DD0C5C2-D846-4468-9FDF-4900557562CF}
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\{609F7AC8-C510-11D4-A788-009027ABA5D0}
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\{64884FBC-D80F-4F68-B2EE-C32F7924C58C}
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\{8239A416-83A1-4CCD-84AD-51D1B47F8D35}
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\{FB754CB0-D585-4968-80E1-0D714F0D789E}
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\~nsu.tmp
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\~offfilt
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Local Settings\Temp\~RxTmp
!-->[Hidden] C:\Documents and Settings\Matthew Roach\My Documents\Camtasia Studio
!-->[Hidden] C:\Documents and Settings\Matthew Roach\My Documents\My Data Sources
!-->[Hidden] C:\Documents and Settings\Matthew Roach\My Documents\My Deliveries
!-->[Hidden] C:\Documents and Settings\Matthew Roach\My Documents\My Music\iTunes
!-->[Hidden] C:\Documents and Settings\Matthew Roach\My Documents\My Music\My Playlists
!-->[Hidden] C:\Documents and Settings\Matthew Roach\My Documents\My Videos
!-->[Hidden] C:\Documents and Settings\Matthew Roach\My Documents\RegRun2
!-->[Hidden] C:\Documents and Settings\Matthew Roach\My Documents\Roxio
!-->[Hidden] C:\Documents and Settings\Matthew Roach\My Documents\Visual Studio Projects\VSMacros\MyMacros
!-->[Hidden] C:\Documents and Settings\Matthew Roach\My Documents\Visual Studio Projects\VSMacros\Samples
!-->[Hidden] C:\Documents and Settings\Matthew Roach\NetHood\My Web Sites on MSN
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Recent\instructions.txt.lnk
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Start Menu\Programs\Accessories\System Tools
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Start Menu\Programs\Adobe
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Start Menu\Programs\AviSynth 2.5
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Start Menu\Programs\Diablo II
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Start Menu\Programs\DVD Decrypter
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Start Menu\Programs\HydraIRC
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Start Menu\Programs\JavaBBowl
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Start Menu\Programs\MagicISO
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Start Menu\Programs\QuickPar
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Start Menu\Programs\UFO Alien Invasion
!-->[Hidden] C:\Documents and Settings\Matthew Roach\Start Menu\Programs\WinRAR
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Adobe
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia
!-->[Hidden] C:\Documents and Settings\NetworkService\Favorites
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Internet Explorer
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Application Data\Windows Server
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\History\History.IE5
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\AntiPhishing
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5
!-->[Hidden] C:\Downloads\SONY PICTURE PACKAGE
!-->[Hidden] C:\DRIVERS\SonyUSB
!-->[Hidden] C:\Houdini
!-->[Hidden] C:\hymn
!-->[Hidden] C:\Maya Projects\Effects
!-->[Hidden] C:\Maya Projects\Maya 3 Projects
!-->[Hidden] C:\Maya Projects\Simulations\sourceimages\alienweights
!-->[Hidden] C:\MIRRORS_SPECIAL_EDITION_UNRATED
!-->[Hidden] C:\Netgear\Firmware
!-->[Hidden] C:\Parke\Cogeneration
!-->[Hidden] C:\Parke\Fuel Cell
!-->[Hidden] C:\Parke\harrypotter
!-->[Hidden] C:\Parke\partdiffeq
!-->[Hidden] C:\Parke\pics
!-->[Hidden] C:\Parke\TEMP_STUFF
!-->[Hidden] C:\Parke\therm
!-->[Hidden] C:\Parke\THESIS
!-->[Hidden] C:\Parke\Tiffany Pictures
!-->[Hidden] C:\Parke\WEDDING
!-->[Hidden] C:\Parke\WeddingPhotoWeb
!-->[Hidden] C:\Program Files\ABBYY FineReader 6.0
!-->[Hidden] C:\Program Files\Adobe\Acrobat 6.0\PDFMaker\Mail
!-->[Hidden] C:\Program Files\Adobe\Acrobat 6.0\PDFMaker\Office
!-->[Hidden] C:\Program Files\Adobe\After Effects 4.1
!-->[Hidden] C:\Program Files\Adobe\Encore DVD 1.5
!-->[Hidden] C:\Program Files\Adobe\FrameMaker+SGML6.0\clipart
!-->[Hidden] C:\Program Files\Adobe\FrameMaker+SGML6.0\fminit\color
!-->[Hidden] C:\Program Files\Adobe\FrameMaker+SGML6.0\fminit\configui
!-->[Hidden] C:\Program Files\Adobe\FrameMaker+SGML6.0\fminit\fmsgml
!-->[Hidden] C:\Program Files\Adobe\FrameMaker+SGML6.0\fminit\fonts
!-->[Hidden] C:\Program Files\Adobe\FrameMaker+SGML6.0\fminit\indexsort
!-->[Hidden] C:\Program Files\Adobe\FrameMaker+SGML6.0\fminit\Plugins
!-->[Hidden] C:\Program Files\Adobe\FrameMaker+SGML6.0\fminit\unicode
!-->[Hidden] C:\Program Files\Adobe\FrameMaker+SGML6.0\help
!-->[Hidden] C:\Program Files\Adobe\FrameMaker+SGML6.0\odma
!-->[Hidden] C:\Program Files\Adobe\FrameMaker+SGML6.0\OnlineManuals
!-->[Hidden] C:\Program Files\Adobe\FrameMaker+SGML6.0\ppds
!-->[Hidden] C:\Program Files\Adobe\FrameMaker+SGML6.0\samples
!-->[Hidden] C:\Program Files\Adobe\FrameMaker+SGML6.0\sgml
!-->[Hidden] C:\Program Files\Adobe\FrameMaker+SGML6.0\Templates
!-->[Hidden] C:\Program Files\Adobe\FrameMaker+SGML6.0\Tour
!-->[Hidden] C:\Program Files\AGEIA Technologies
!-->[Hidden] C:\Program Files\AliasWavefront\mental ray for Maya 1.5
!-->[Hidden] C:\Program Files\Apple Software Update
!-->[Hidden] C:\Program Files\ATI Technologies\UninstallAll
!-->[Hidden] C:\Program Files\Avi2Dvd\Programs\BeSweet
!-->[Hidden] C:\Program Files\Avi2Dvd\Programs\DvdAuthor Mikisofs VCDImager
!-->[Hidden] C:\Program Files\Avi2Dvd\Programs\Filters
!-->[Hidden] C:\Program Files\Avi2Dvd\Programs\FreeEnc
!-->[Hidden] C:\Program Files\Avi2Dvd\Programs\HCEnc
!-->[Hidden] C:\Program Files\Avi2Dvd\Programs\Menu
!-->[Hidden] C:\Program Files\Avi2Dvd\Programs\NuEnc
!-->[Hidden] C:\Program Files\Avi2Dvd\Programs\Pulldown
!-->[Hidden] C:\Program Files\Avi2Dvd\Programs\VMRSnapShot
!-->[Hidden] C:\Program Files\AviSynth 2.5
!-->[Hidden] C:\Program Files\BlastCode1.6
!-->[Hidden] C:\Program Files\Canon
!-->[Hidden] C:\Program Files\Common Files\Adobe AIR
!-->[Hidden] C:\Program Files\Common Files\AliasWavefront Shared\Modules
!-->[Hidden] C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\it.lproj
!-->[Hidden] C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\ja.lproj
!-->[Hidden] C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\ko.lproj
!-->[Hidden] C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\nb.lproj
!-->[Hidden] C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\nl.lproj
!-->[Hidden] C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\pl.lproj
!-->[Hidden] C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\pt.lproj
!-->[Hidden] C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\pt_PT.lproj
!-->[Hidden] C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\ru.lproj
!-->[Hidden] C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\sv.lproj
!-->[Hidden] C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\zh_CN.lproj
!-->[Hidden] C:\Program Files\Common Files\Apple\Apple Application Support\WebKit.resources\zh_TW.lproj
!-->[Hidden] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceHelper.app
!-->[Hidden] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileSync.app
!-->[Hidden] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\IESyncClient.app
!-->[Hidden] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\SafariSyncClient.app
!-->[Hidden] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\SyncServer.app
!-->[Hidden] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\WindowsContactsSync.app
!-->[Hidden] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\WindowsMailSync.app
!-->[Hidden] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\YahooSync.app
!-->[Hidden] C:\Program Files\Common Files\Apple\Mobile Device Support\Drivers
!-->[Hidden] C:\Program Files\Common Files\Apple\Mobile Device Support\etc\zoneinfo\US
!-->[Hidden] C:\Program Files\Common Files\Apple\Mobile Device Support\Frameworks\CFNetwork.framework\Resources\English.lproj
!-->[Hidden] C:\Program Files\Common Files\Apple\Mobile Device Support\NetDrivers
!-->[Hidden] C:\Program Files\Common Files\Apple\Mobile Device Support\SyncServices\Schemas\Notes.syncschema
!-->[Hidden] C:\Program Files\Common Files\Apple\Mobile Device Support\SyncServices\Schemas\Outlook.syncschema
!-->[Hidden] C:\Program Files\Common Files\DivX Shared
!-->[Hidden] C:\Program Files\Common Files\FotoNation
!-->[Hidden] C:\Program Files\Common Files\HP
!-->[Hidden] C:\Program Files\Common Files\InstallShield\Driver\8
!-->[Hidden] C:\Program Files\Common Files\InstallShield\Driver\9
!-->[Hidden] C:\Program Files\Common Files\InstallShield\Professional
!-->[Hidden] C:\Program Files\Common Files\InstallShield\UpdateService
!-->[Hidden] C:\Program Files\Common Files\Java\Java Update
!-->[Hidden] C:\Program Files\Common Files\Microsoft Shared\DW\1025
!-->[Hidden] C:\Program Files\Common Files\Microsoft Shared\DW\1028
!-->[Hidden] C:\Program Files\Common Files\Microsoft Shared\DW\1031
!-->[Hidden] C:\Program Files\Common Files\Microsoft Shared\DW\1036
!-->[Hidden] C:\Program Files\Common Files\Microsoft Shared\DW\1040
!-->[Hidden] C:\Program Files\Common Files\Microsoft Shared\DW\1041
!-->[Hidden] C:\Program Files\Common Files\Microsoft Shared\DW\1042
!-->[Hidden] C:\Program Files\Common Files\Microsoft Shared\DW\2052
!-->[Hidden] C:\Program Files\Common Files\Microsoft Shared\DW\3082
!-->[Hidden] C:\Program Files\Common Files\Motive
!-->[Hidden] C:\Program Files\Common Files\muvee Technologies
!-->[Hidden] C:\Program Files\Common Files\Real\Codecs
!-->[Hidden] C:\Program Files\Common Files\Real\RCAPlugins
!-->[Hidden] C:\Program Files\Common Files\Real\Visualizations
!-->[Hidden] C:\Program Files\Common Files\Roxio Shared
!-->[Hidden] C:\Program Files\Common Files\Sonic Shared
!-->[Hidden] C:\Program Files\Common Files\SupportSoft
!-->[Hidden] C:\Program Files\Common Files\Symantec Shared\VirusDefs\20040225.006
!-->[Hidden] C:\Program Files\Common Files\Symantec Shared\VirusDefs\20040310.005
!-->[Hidden] C:\Program Files\Common Files\Symantec Shared\VirusDefs\tmp13.tmp
!-->[Hidden] C:\Program Files\Common Files\Symantec Shared\VirusDefs\tmp14.tmp
!-->[Hidden] C:\Program Files\Common Files\Symantec Shared\VirusDefs\tmp15.tmp
!-->[Hidden] C:\Program Files\Common Files\Symantec Shared\VirusDefs\tmp6.tmp
!-->[Hidden] C:\Program Files\Common Files\Symantec Shared\VirusDefs\tmp7.tmp
!-->[Hidden] C:\Program Files\Common Files\Symantec Shared\VirusDefs\tmp8.tmp
!-->[Hidden] C:\Program Files\Common Files\Symantec Shared\VirusDefs\tmpDB2.tmp
!-->[Hidden] C:\Program Files\Common Files\Symantec Shared\VirusDefs\tmpDB3.tmp
!-->[Hidden] C:\Program Files\Common Files\Symantec Shared\VirusDefs\tmpDB4.tmp
!-->[Hidden] C:\Program Files\Common Files\Verizon Online
!-->[Hidden] C:\Program Files\Common Files\Wise Installation Wizard
!-->[Hidden] C:\Program Files\Common Files\xing shared
!-->[Hidden] C:\Program Files\DGIndex
!-->[Hidden] C:\Program Files\Diablo II
!-->[Hidden] C:\Program Files\DivX\AutoUpdate
!-->[Hidden] C:\Program Files\DivX\DivX Converter\Images
!-->[Hidden] C:\Program Files\DivX\DivX Converter\Microsoft.VC80.ATL
!-->[Hidden] C:\Program Files\DivX\DivX Converter\Microsoft.VC80.MFC
!-->[Hidden] C:\Program Files\DivX\DivX Player\Skins
!-->[Hidden] C:\Program Files\DivX\DivX Plus DirectShow Filters
!-->[Hidden] C:\Program Files\DivX\DivX Plus Web Player
!-->[Hidden] C:\Program Files\DivX\DivX Stream Engine
!-->[Hidden] C:\Program Files\DivX\DivX Updater
!-->[Hidden] C:\Program Files\DivX\DivX Web Player\Skins
!-->[Hidden] C:\Program Files\DivX\Movies\Temporary Downloaded Files
!-->[Hidden] C:\Program Files\DOSBox-0.73
!-->[Hidden] C:\Program Files\DVD2SVCD\Avisynth
!-->[Hidden] C:\Program Files\DVD2SVCD\Avisynth2.5 Plugins
!-->[Hidden] C:\Program Files\DVD2SVCD\bbMPEG
!-->[Hidden] C:\Program Files\DVD2SVCD\BeSweet
!-->[Hidden] C:\Program Files\DVD2SVCD\dgindex
!-->[Hidden] C:\Program Files\DVD2SVCD\DVDAuthor
!-->[Hidden] C:\Program Files\DVD2SVCD\HuffYUV
!-->[Hidden] C:\Program Files\DVD2SVCD\MADPlay
!-->[Hidden] C:\Program Files\DVD2SVCD\MPEG5.1
!-->[Hidden] C:\Program Files\DVD2SVCD\Pulldown
!-->[Hidden] C:\Program Files\DVD2SVCD\ReadAVS
!-->[Hidden] C:\Program Files\DVD2SVCD\SubMux
!-->[Hidden] C:\Program Files\DVD2SVCD\VCDImager
!-->[Hidden] C:\Program Files\DVD2SVCD\VFAPI
!-->[Hidden] C:\Program Files\DVD2SVCD\vStrip
!-->[Hidden] C:\Program Files\DVD2SVCD\WinSubMux
!-->[Hidden] C:\Program Files\DVDFab Decrypter
!-->[Hidden] C:\Program Files\Exact Audio Copy\Profiles
!-->[Hidden] C:\Program Files\FaxTools
!-->[Hidden] C:\Program Files\Google
!-->[Hidden] C:\Program Files\GrabIt
!-->[Hidden] C:\Program Files\HydraIRC\sounds
!-->[Hidden] C:\Program Files\HydraIRC\themes
!-->[Hidden] C:\Program Files\HydraIRC\tools
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{001AB29C-5468-4972-8D24-2EBDB2B12133}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{001EB665-D9EC-415E-9E13-AD2125B2B992}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{1E2F8AE3-3437-44E6-BB75-E95751D6B83F}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{218BBBE3-FE63-4BB2-81A8-7435575A84FA}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{25EF00A0-F17B-11D6-88EA-000476CD2443}Verizon Online
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{32C32B46-41C3-438F-94F6-55FE150D50D8}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{3CB41017-F5CA-4C56-934C-ED02156251E6}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{47AF4245-CD81-4353-BFC0-0A21A6EF483A}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{59C4F14F-7590-45FC-BE9F-A67AB3590709}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{5C29CB8B-AC1E-4114-8D68-9CD080140D4A}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{5EC786D5-C0CA-42E0-AF88-5379EF9D91EC}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{68D27126-BF6A-457D-8DD0-5F35E8D41310}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{6B8BDABA-6737-4998-AEE4-E218EDE5FC7A}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{6BC47F60-E41B-11D3-BF8E-00E0295703D2}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{6BD31B80-7E9E-4FAF-B911-0AC31FB94BF6}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{74E2CD0C-D4A2-11D3-95A6-0000E86CFDE5}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{8239A416-83A1-4CCD-84AD-51D1B47F8D35}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{89EB3ED7-225A-412E-B048-623D502C000F}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{A1D0D14A-B776-4907-BC00-5149F2298086}
!-->[Hidden] C:\Program Files\InstallShield Installation Information\{F45298E5-0083-426F-A668-1A2C5F04B8A0}
!-->[Hidden] C:\Program Files\InterActual\Common
!-->[Hidden] C:\Program Files\InterActual\iakey
!-->[Hidden] C:\Program Files\InterActual\InterActual Player
!-->[Hidden] C:\Program Files\Internet Explorer\en-US
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\DevicePrefsWorkouts.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\DJIntro.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\DJPlacard.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\DownloadsPlacard.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\DuplicatesPlacard.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\EQWindow.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\EULA.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\GeniusBar.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\GeniusDone.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\GradientWindow.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\HomeSharing.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\HomeSharingOn.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\HomeSharingPlacard.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\iPhonePrefs.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\iPhoneRestore.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\iPhoneSetup.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\iPhoneWelcome.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\iPhoneWelcomeOffline.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\iPodPrefs.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\iPodRestore.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\iPodSetup.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\iPodSetupAssist.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\iPodWelcome.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\iPodWelcomeOffline.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\MobilePhonePrefs.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\MobilePhoneSetup.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\MoviesIntro.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\MusicIntro.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\PlaylistIntro.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\PodcastsIntro.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\PodcastsPlacard.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\RentedMoviesPlacard.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\Ringtone.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\ShufflePrefs.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\ShuffleSetup.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\StoreCancelPlacard.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\StoreCopyrightPlacard.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\StoreTracksPlacard.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\SummaryBar.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\TouchRemoteConfirm.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\TouchRemoteSetup.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\TVShowsIntro.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\VolumeLimitPanel.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\de.lproj\WelcomeWindow.nib
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\en.lproj
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\en_GB.lproj
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\es.lproj
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\fi.lproj
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\fr.lproj
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\it.lproj
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\ja.lproj
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\ko.lproj
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\nb.lproj
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\nl.lproj
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\pl.lproj
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\pt.lproj
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\pt_PT.lproj
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\ru.lproj
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\sv.lproj
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\zh_CN.lproj
!-->[Hidden] C:\Program Files\iTunes\iTunes.Resources\zh_TW.lproj
!-->[Hidden] C:\Program Files\iTunes\iTunesHelper.Resources
!-->[Hidden] C:\Program Files\iTunes\iTunesMiniPlayer.Resources
!-->[Hidden] C:\Program Files\iTunes\Mozilla Plugins
!-->[Hidden] C:\Program Files\JavaBBowl
!-->[Hidden] C:\Program Files\Java\jre6
!-->[Hidden] C:\Program Files\Kontiki
!-->[Hidden] C:\Program Files\MagicISO
!-->[Hidden] C:\Program Files\MFInstall
!-->[Hidden] C:\Program Files\Microsoft Games\MechCommander2\data\multiplayer\transcripts
!-->[Hidden] C:\Program Files\Microsoft Games\MechCommander2\data\savegame
!-->[Hidden] C:\Program Files\Motive
!-->[Hidden] C:\Program Files\Movie Maker\shared
!-->[Hidden] C:\Program Files\MSBuild
!-->[Hidden] C:\Program Files\MSN\MSNCoreFiles\install
!-->[Hidden] C:\Program Files\MSN\MSNCoreFiles\oobe
!-->[Hidden] C:\Program Files\MSXML 4.0
!-->[Hidden] C:\Program Files\MyWay
!-->[Hidden] C:\Program Files\Nikon
!-->[Hidden] C:\Program Files\PIXELA
!-->[Hidden] C:\Program Files\Quick Hit
!-->[Hidden] C:\Program Files\Quick Hit Football
!-->[Hidden] C:\Program Files\QuickPar
!-->[Hidden] C:\Program Files\QuickTime\Plugins
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources
!-->[Hidden] C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources
!-->[Hidden] C:\Program Files\QuickTime\QuickTimePlayer.Resources
!-->[Hidden] C:\Program Files\Real\RealPlayer\CDBurning
!-->[Hidden] C:\Program Files\Real\RealPlayer\converter
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\games
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\custsupport\prodsurvey
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\custsupport\sersupport
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\custsupport\techsupport
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\default
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\Devices
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\Error
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\Guide
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\Home
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\musicguide
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\musicstore
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\radio
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\rollingstone
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\search
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\skins
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\toc
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\trig
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\tutorials
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\upsell
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\visualizations
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\Web
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\wrn
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\loc\en\xpr
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GetMedia\page
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\GPFeat
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\Help
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\howto
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\keywords
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\library
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\Login
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\mstore
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\music
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\prefs
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\Radio
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\search
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\Update
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\UsageStats
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\video
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\web
!-->[Hidden] C:\Program Files\Real\RealPlayer\DataCache\webresources
!-->[Hidden] C:\Program Files\Real\RealPlayer\Devices
!-->[Hidden] C:\Program Files\Real\RealPlayer\plugins
!-->[Hidden] C:\Program Files\Real\RealPlayer\Producer
!-->[Hidden] C:\Program Files\Real\RealPlayer\templates
!-->[Hidden] C:\Program Files\Real\RealUpgrade
!-->[Hidden] C:\Program Files\Reference Assemblies
!-->[Hidden] C:\Program Files\Roxio\Audio Capture 10
!-->[Hidden] C:\Program Files\Roxio\Audio Master 10
!-->[Hidden] C:\Program Files\Roxio\AudioCodec31
!-->[Hidden] C:\Program Files\Roxio\AudioCodecCommon 10
!-->[Hidden] C:\Program Files\Roxio\BackupCentral
!-->[Hidden] C:\Program Files\Roxio\CinePlayer
!-->[Hidden] C:\Program Files\Roxio\Common 10
!-->[Hidden] C:\Program Files\Roxio\Creator Classic 10
!-->[Hidden] C:\Program Files\Roxio\Digital Home 10
!-->[Hidden] C:\Program Files\Roxio\Filters
!-->[Hidden] C:\Program Files\Roxio\Label Creator 10
!-->[Hidden] C:\Program Files\Roxio\Media Import 10
!-->[Hidden] C:\Program Files\Roxio\Media Manager 10
!-->[Hidden] C:\Program Files\Roxio\PhotoSuite 10
!-->[Hidden] C:\Program Files\Roxio\Retrieve 10
!-->[Hidden] C:\Program Files\Roxio\Sound Editor 10
!-->[Hidden] C:\Program Files\Roxio\Video Convert 10
!-->[Hidden] C:\Program Files\Roxio\VideoCore 10
!-->[Hidden] C:\Program Files\Roxio\VideoUI 10
!-->[Hidden] C:\Program Files\Roxio\Virtual Drive 10
!-->[Hidden] C:\Program Files\Side Effects Software\Houdini 6.0.272\mozilla
!-->[Hidden] C:\Program Files\Side Effects Software\Houdini 6.0.272\rollercoaster_tut
!-->[Hidden] C:\Program Files\SmartSound Software
!-->[Hidden] C:\Program Files\Sony Corporation\DI Portal
!-->[Hidden] C:\Program Files\Sony Corporation\Picture Package\First Step Guide
!-->[Hidden] C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications
!-->[Hidden] C:\Program Files\Sony Corporation\Picture Package\Picture Package DVD Applications
!-->[Hidden] C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu
!-->[Hidden] C:\Program Files\Sony Corporation\Picture Package\Picture Package Viewer
!-->[Hidden] C:\Program Files\Spybot - Search & Destroy
!-->[Hidden] C:\Program Files\SSH Communications Security
!-->[Hidden] C:\Program Files\TryMedia\ActiveMark
!-->[Hidden] C:\Program Files\Ubisoft
!-->[Hidden] C:\Program Files\UFOAI\base\maps
!-->[Hidden] C:\Program Files\UFOAI\base\music
!-->[Hidden] C:\Program Files\UFOAI\base\save
!-->[Hidden] C:\Program Files\UFOAI\base\textures\tex_base
!-->[Hidden] C:\Program Files\UFOAI\base\textures\tex_buildings
!-->[Hidden] C:\Program Files\UFOAI\base\textures\tex_doors
!-->[Hidden] C:\Program Files\UFOAI\base\textures\tex_effects
!-->[Hidden] C:\Program Files\UFOAI\base\textures\tex_furniture
!-->[Hidden] C:\Program Files\UFOAI\base\textures\tex_lights
!-->[Hidden] C:\Program Files\UFOAI\base\textures\tex_material
!-->[Hidden] C:\Program Files\UFOAI\base\textures\tex_misc
!-->[Hidden] C:\Program Files\UFOAI\base\textures\tex_nature
!-->[Hidden] C:\Program Files\UFOAI\base\textures\tex_streets
!-->[Hidden] C:\Program Files\UFOAI\base\textures\tex_tech
!-->[Hidden] C:\Program Files\UFOAI\base\textures\tex_ufo
!-->[Hidden] C:\Program Files\UFOAI\base\textures\tex_vehicles
!-->[Hidden] C:\Program Files\UFOAI\base\ufos
!-->[Hidden] C:\Program Files\UFOAI\howtoplay
!-->[Hidden] C:\Program Files\uTorrent
!-->[Hidden] C:\Program Files\Verizon
!-->[Hidden] C:\Program Files\Verizon Online
!-->[Hidden] C:\Program Files\Viewpoint\Viewpoint Media Player\DownloadedComponents\atmosphere_Win
!-->[Hidden] C:\Program Files\Viewpoint\Viewpoint Media Player\DownloadedComponents\VMgr_Win
!-->[Hidden] C:\Program Files\VirtualDub-1.6.5
!-->[Hidden] C:\Program Files\Walgreens
!-->[Hidden] C:\Program Files\Winamp
!-->[Hidden] C:\Program Files\Windows Live Safety Center
!-->[Hidden] C:\Program Files\Windows Media Components
!-->[Hidden] C:\Program Files\Windows Media Connect 2
!-->[Hidden] C:\Program Files\Windows Media Player\Icons
!-->[Hidden] C:\Program Files\Windows Media Player\Network Sharing
!-->[Hidden] C:\Program Files\Windows Media Player\sample playlists
!-->[Hidden] C:\Program Files\WINRAR
!-->[Hidden] C:\Program Files\Wizards of the Coast\Magic Online\decks\themedecks\Darksteel
!-->[Hidden] C:\Program Files\Zero G Registry
!-->[Hidden] C:\RECYCLER\S-1-5-21-496841122-1329331071-3097141638-1008\Dc13
!-->[Hidden] C:\RECYCLER\S-1-5-21-496841122-1329331071-3097141638-1008\Dc26.XviD-2HD
!-->[Hidden] C:\RECYCLER\S-1-5-21-496841122-1329331071-3097141638-1008\Dc44.XviD-P0W4
!-->[Hidden] C:\Renderman\Dust
!-->[Hidden] C:\Simulators\FlockSim
!-->[Hidden] C:\Simulators\Thesis\BigNuke
!-->[Hidden] C:\Simulators\Thesis\Final
!-->[Hidden] C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP2
!-->[Hidden] C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP3
!-->[Hidden] C:\System Volume Information\_restore{987E0331-0F01-427C-A58A-7A2E4AABF84D}\RP6
!-->[Hidden] C:\Taxes
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB867282
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB873333
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB873339
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB885250
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB885835
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB885836
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB887472
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB887742
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB888113
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB888302
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB890047
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB890859
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB890923\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB890923\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB891781
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB893066\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB893066\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB893086
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB893756
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB894391
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB896423
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB896424
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB896727
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB899587
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB899588
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB899589
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB899591
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB900485
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB901017\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB901017\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB901214
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB902400\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB902400\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB904706
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB905414
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB908519\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB908519\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB908531\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB908531\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB911280
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB911562
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB911567
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB911927
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB912812\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB912812\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB912919
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB913446
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB913580
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB914388\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB914388\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB914389
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB915865
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB916281
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB916595\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB916595\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB917159\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB917159\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB917344
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB917422\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB917953
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB918439
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB918899\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB918899\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB919007
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB920213\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB920213\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB920214\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB920214\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB920670\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB920670\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB920685
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB920872
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB921398\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB921398\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB921503\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB921503\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB921883
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB922582
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB922616\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB922616\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB922760\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB922760\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB922819
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB923414
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB923561
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB923980
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB924191
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB924270
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB924496
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB925486
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB927891
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB929123\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB929123\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB930916\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB930916\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB932823-v3
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB933729
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB935839\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB935839\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB935840\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB935840\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB936021\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB936021\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB936357\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB936357\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB937143\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB937143\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB937894\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB938127-IE7
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB938127\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB938127\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB938828\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB938828\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB938829\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB938829\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB939653
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB941202
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB941644
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB941693
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB942615-IE7
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB943055
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB943460
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB943485
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB944533-IE7
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB945553
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB946026
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB946648
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB947864-IE7
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB948590
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB948881
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB950749
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB950759-IE7
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB950760
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB950762
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB950974
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB951072-v2
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB951376
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB951376-v2
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB951698\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB951698\SP3GDR
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB951698\SP3QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB951698\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB951748
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB951978
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB952004
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB952287
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB952954
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB953838-IE7\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB953839
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB954211
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB954459
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB955069
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB955759
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB955839
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB956390-IE7
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB956391
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB956572
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB956744
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB956802
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB956803
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB956841
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB956844
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB957095
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB957097
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB958215-IE7
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB958644
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB958687
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB958690
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB959426
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB960225
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB960714-IE7
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB960715
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB960803
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB960859
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB961260-IE7\SP2QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB961260-IE7\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB961371
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB961373
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB961501
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB963027-IE7
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB967715
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB968389
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB968537
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB969059
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB969897-IE7
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB969898
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB969947
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB970238
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB970430
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB971468
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB971486
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB971557
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB971633
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB971657
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB971737
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB971961
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB971961-IE8
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB972260-IE7
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB972270
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB973346
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB973354
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB973507
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB973525
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB973687
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB973815
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB973869
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB973904
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB974112
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB974318
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB974392
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB974455-IE7
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB974571
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB975025
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB975467
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB975560
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB975561\SP3QFE
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB975561\update
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB975713
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB976325-IE7
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB976662-IE8
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB976749-IE7
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB977165
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB977816
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB977914
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB978037
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB978207-IE7
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB978251
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB978262
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB978338
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB978542
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB978601
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB978706
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB979309
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB979683
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB980182-IE7
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB980232
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB981332-IE8
!-->[Hidden] C:\WINDOWS\$hf_mig$\KB981349
!-->[Hidden] C:\WINDOWS\$MSI31Uninstall_KB893803$\spuninst
!-->[Hidden] C:\WINDOWS\$MSI31Uninstall_KB893803v2$
!-->[Hidden] C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
!-->[Hidden] C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB828028$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB833407$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB867282$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB873333$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB885250$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB887472$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB887742$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB888113$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB888302$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB890047$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB890859$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB890923$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB891781$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB893066$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB893086$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB899587$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB900485$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB901017$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB901214$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB902400$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB903235$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB908519$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB908531$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB911280$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB911562$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB911564$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB911565$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB911567$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB911927$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB912812$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB912919$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB913446$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB913580$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB914388$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB914389$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB915865$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB916281$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB917159$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB917344$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB917734_WMP9$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB917953$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB918439$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB918899$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB919007$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB920213$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB920214$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB920670$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB920685$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB920872$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB921398$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB921503$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB921883$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB922582$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB922616$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB922760$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB922819$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB923191$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB923414$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB923561$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB923980$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB924191$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB924270$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB924496$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB925486$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB929123$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB929399$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB930916$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB932823-v3$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB933729$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB935839$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB935840$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB936021$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB936357$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB936782_WMP9$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB937143$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB938127$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB938464-v2$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB938828$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB938829$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB939653$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB939683$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB941202$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB941644$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB941693$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB943055$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB943460$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB943485$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB945553$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB946026$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB946648_0$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB948590$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB948881$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB950749$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB950760$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB950762_0$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB950974$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB950974_0$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB951066$\spuninst
!-->[Hidden] C:\WINDOWS\$NtUninstallKB951072-v2$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB951376$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB951376-v2$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB951376-v2_0$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB951376_0$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB951698$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB951698_0$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB951748$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB951748_0$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB951978$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB952004$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB952069_WM9$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB952287$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB952287_0$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB952954$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB952954_0$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB953839$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB954154_WM11$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB954155_WM9$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB954211$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB954211_0$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB954459$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB954600$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB955069$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB955069_0$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB955759$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB955839$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB956391$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB956572$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB956744$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB956802$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB956803$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB956803_0$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB956841$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB956841_0$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB956844$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB957095$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB957095_0$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB957097$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB957097_0$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB958644$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB958644_0$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB958687$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB958690$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB958869$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB959426$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB960225$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB960715$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB960803$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB960859$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB961118$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB961371$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB961373$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB961501$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB967715$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB968389$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB968537$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB968816_WM9$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB969059$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB969898$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB969947$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB970238$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB970430$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB970653-v3$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB971468$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB971486$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB971557$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB971633$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB971657$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB971737$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB971961$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB972270$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB973346$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB973354$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB973507$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB973525$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB973540_WM9$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB973687$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB973869$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB973904$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB974112$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB974318$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB974392$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB975025$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB975467$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB975560$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB975561$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB975713$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB976098-v2$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB977165$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB977816$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB977914$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB978037$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB978251$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB978262$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB978338$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB978601$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB978706$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB979306$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB979309$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB979683$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB980232$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB981349$
!-->[Hidden] C:\WINDOWS\$NtUninstallKB981793$
!-->[Hidden] C:\WINDOWS\$NtUninstallMSCompPackV1$
!-->[Hidden] C:\WINDOWS\$NtUninstallWMFDist11$
!-->[Hidden] C:\WINDOWS\$NtUninstallwmp11$
!-->[Hidden] C:\WINDOWS\$NtUninstallWudf01000$
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.Office.Interop.Excel\11.0.0.0__71e9bce111e9429c
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.Office.Interop.Graph\11.0.0.0__71e9bce111e9429c
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.Office.Interop.OutlookViewCtl\11.0.0.0__71e9bce111e9429c
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.Office.Interop.Outlook\11.0.0.0__71e9bce111e9429c
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.Office.Interop.Owc11\11.0.0.0__71e9bce111e9429c
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.Office.Interop.PowerPoint\11.0.0.0__71e9bce111e9429c
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.Office.Interop.Publisher\11.0.0.0__71e9bce111e9429c
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.Office.Interop.SmartTag\11.0.0.0__71e9bce111e9429c
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.Office.Interop.Word\11.0.0.0__71e9bce111e9429c
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.Vbe.Interop.Forms\11.0.0.0__71e9bce111e9429c
!-->[Hidden] C:\WINDOWS\assembly\GAC\Microsoft.Vbe.Interop\11.0.0.0__71e9bce111e9429c
!-->[Hidden] C:\WINDOWS\assembly\GAC\office\11.0.0.0__71e9bce111e9429c
!-->[Hidden] C:\WINDOWS\assembly\GAC\System.Web\1.0.3300.0__b03f5f7f11d50a3a
!-->[Hidden] C:\WINDOWS\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a
!-->[Hidden] C:\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089
!-->[Hidden] C:\WINDOWS\assembly\GAC_32
!-->[Hidden] C:\WINDOWS\assembly\GAC_MSIL
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.0.3705\CustomMarshalers
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.0.3705\Microsoft.VisualStudio
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.0.3705\Microsoft.VSDesigner
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.0.3705\mscorlib
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Design
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing.Design
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Windows.Forms
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Xml
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_37c8b310
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_8f1e95e4
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_d49558a9
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_d96b7321
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_5a9c7cdb
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_b7daae86
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_c4b108c7
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_b6be3473
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_870518a6
!-->[Hidden] C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_569bcdf4
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Accessibility\e63d6d26b8a664cfdfbd4ad75e03c14d
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\AspNetMMCExt\85d7c111956b478766d90625b35d963f
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\a17c65f0cffaa4f792dd38d50df9d526
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\77688ce14f221ed94a9f442ae4736123
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\dfsvc\a664ccab020f93f1d533919f57131190
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Con#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\5dd4f58999eed37c12aee7ea9f9863ac
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\8c651f75bb741330370986dcad8e9e5b
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\96825c34d7e1f7df1923ff2123bed8da
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\c5d504724d7f351b1d034615dbb72a2a
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\d513fe1a81c441e7656a9b062cff4e9f
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\e9aba2eab90d647356f65e66053da02b
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\28c0730288453d57d5dcd62903c4d31b
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\9eec1cc7ac37e0c7f3205e8156149c5a
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\a47100d8f4574bed2d49d83d0ab8964e
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\bd241492d96db39f20e758c13c845033
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\4217124db1ea5de5f1a1f3eea75e8d32
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\4dd43724dd92026577c6f588270137a0
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\55b9eff9e23359faed4351386c062238
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\58ca3ecc52b7246b448c109817198a0b
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.JScript
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\f19e9b439636d0744597fff1331cad04
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\fc4d66e0a92b3767006a84f2519d2457
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\1c86afc399d0fdd8e069266ffbe748d1
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\6eee9b772b6d12d3dbd82f118c2ab2e5
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\MSBuild\eade8c1c9c1e8e5ffb50e6c9b9af0f6a
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationCore
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationUI
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\ReachFramework
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\ServiceModelReg\a23dc25782df04533a13e348203e4dc5
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\7602d7687fb9bd21cd9ae60d2b187c99
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\SMSvcHost\6af32fe5cbec0aa54e2efa6910c73651
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.AddIn
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuratio#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\7c743462baccf29b3567b0e3ec9ac134
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Core
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data.DataSet#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data.Entity
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data.Linq
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data.Service#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data.Services
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data.SqlXml\272152f0cc139490729e215611a4b244
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Deployment\a6b58624486714fa71e5e35186850ff0
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Deployment\c94a427baa7683f4221b91f90c18461b
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Design
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\543aced762f6b0c3f8e037955941afc6
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\8b3bb7a2c2f3ffe94c866283f1cd5957
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\a601f47a98ee67df424685c9a66ea449
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\c434a07332ce490711c27fd0edb7562f
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\c92fc19800e701c90f90ab7a2ab44c47
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\f47ebb9db460874b1bcbfc391dc970b1
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\4267bd908175603006c6c90bb5d900c7
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\8a7d0bd0057a8ed38291d5662248f7a1
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\7222db518afb4eaaa138824278249bc7
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\c3b18fef5c6dc3bcdbe5df699fd21a55
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.IO.Log\6c273eb9d1ee8b66b5ecb073de4b785d
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Management
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Management.I#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Net
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Printing
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\67ad55827f2542552b576170f0a7dc56
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\9bc34a79af9c3ed2cf17a0226c769b4c
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\bfd6e16d8c3589cd2bd3f8d46f0a5402
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Security\a9e9b885a6601469c4058375cc74d856
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\06d6eab93282d2b136a377bd50b7c5a9
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Speech
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Transactions\408e637346ef628a3f54fb1b9b83ac9f
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Transactions\5a555c9ae6984c40157cf940bb519f7c
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.Entity
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.Entity.D#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.Routing
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.Services
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\3963ce03d445a8619abbf388d590134b
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\5cea03cfb008f2eac1439a9905467f37
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Pres#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Workflow.Act#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Workflow.Com#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Workflow.Run#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP161.tmp
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP244.tmp
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP261.tmp
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP31.tmp
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\UIAutomationClient
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\UIAutomationClients#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\WindowsBase
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#
!-->[Hidden] C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\WsatConfig\e2098e43d115155d6ba91ba3a7e577cf
!-->[Hidden] C:\WINDOWS\assembly\temp\89ARGLMFWL
!-->[Hidden] C:\WINDOWS\BDOSCAN8
!-->[Hidden] C:\WINDOWS\Debug\Setup
!-->[Hidden] C:\WINDOWS\Debug\WPD
!-->[Hidden] C:\WINDOWS\Downloaded Installations
!-->[Hidden] C:\WINDOWS\EHome
!-->[Hidden] C:\WINDOWS\FIOS
!-->[Hidden] C:\WINDOWS\Help\mail
!-->[Hidden] C:\WINDOWS\ie7
!-->[Hidden] C:\WINDOWS\ie7updates\KB944533-IE7
!-->[Hidden] C:\WINDOWS\ie7updates\KB947864-IE7
!-->[Hidden] C:\WINDOWS\ie7updates\KB950759-IE7
!-->[Hidden] C:\WINDOWS\ie7updates\KB956390-IE7
!-->[Hidden] C:\WINDOWS\ie7updates\KB958215-IE7
!-->[Hidden] C:\WINDOWS\ie7updates\KB960714-IE7
!-->[Hidden] C:\WINDOWS\ie7updates\KB961260-IE7\spuninst
!-->[Hidden] C:\WINDOWS\ie7updates\KB963027-IE7
!-->[Hidden] C:\WINDOWS\ie7updates\KB969897-IE7
!-->[Hidden] C:\WINDOWS\ie7updates\KB972260-IE7
!-->[Hidden] C:\WINDOWS\ie7updates\KB974455-IE7\spuninst
!-->[Hidden] C:\WINDOWS\ie7updates\KB976325-IE7
!-->[Hidden] C:\WINDOWS\ie7updates\KB976749-IE7
!-->[Hidden] C:\WINDOWS\ie7updates\KB978207-IE7
!-->[Hidden] C:\WINDOWS\ie7updates\KB980182-IE7
!-->[Hidden] C:\WINDOWS\ie8updates\KB971961-IE8
!-->[Hidden] C:\WINDOWS\ie8updates\KB976662-IE8
!-->[Hidden] C:\WINDOWS\ie8updates\KB981332-IE8
!-->[Hidden] C:\WINDOWS\INF\IEM
!-->[Hidden] C:\WINDOWS\Installer\$PatchCache$\Managed\0DC1503A46F231838AD88BCDDC8E8F7C
!-->[Hidden] C:\WINDOWS\Installer\$PatchCache$\Managed\26DDC2EC4210AC63483DF9D4FCC5B59D
!-->[Hidden] C:\WINDOWS\Installer\$PatchCache$\Managed\9040AC1900063D11C8EF10054038389C\11.0.8173
!-->[Hidden] C:\WINDOWS\Installer\$PatchCache$\Managed\DC3BF90CC0D3D2F398A9A6D1762F70F3
!-->[Hidden] C:\WINDOWS\Installer\tsclientmsitrans
!-->[Hidden] C:\WINDOWS\Installer\{001AB29C-5468-4972-8D24-2EBDB2B12133}
!-->[Hidden] C:\WINDOWS\Installer\{001EB665-D9EC-415E-9E13-AD2125B2B992}
!-->[Hidden] C:\WINDOWS\Installer\{08E81ABD-79F7-49C2-881F-FD6CB0975693}
!-->[Hidden] C:\WINDOWS\Installer\{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}
!-->[Hidden] C:\WINDOWS\Installer\{1B683082-8791-4D00-8ADE-6C8986FCCC68}
!-->[Hidden] C:\WINDOWS\Installer\{1F54DAFA-9261-4A62-B59D-6C9F26B48FE4}
!-->[Hidden] C:\WINDOWS\Installer\{2266312B-3502-41EE-82CD-8DC62276D87B}
!-->[Hidden] C:\WINDOWS\Installer\{26A24AE4-039D-4CA4-87B4-2F83216014FF}
!-->[Hidden] C:\WINDOWS\Installer\{30465B6C-B53F-49A1-9EBA-A3F187AD502E}
!-->[Hidden] C:\WINDOWS\Installer\{3E67A8DA-FE7B-4160-8465-F5571EA18753}
!-->[Hidden] C:\WINDOWS\Installer\{3FA365DF-2D68-45ED-8F83-8C8A33E65143}
!-->[Hidden] C:\WINDOWS\Installer\{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}
!-->[Hidden] C:\WINDOWS\Installer\{5A06423A-210C-49FB-950E-CB0EB8C5CEC7}
!-->[Hidden] C:\WINDOWS\Installer\{60B2315F-680F-4EB3-B8DD-CCDC86A7CCAB}
!-->[Hidden] C:\WINDOWS\Installer\{68D27126-BF6A-457D-8DD0-5F35E8D41310}
!-->[Hidden] C:\WINDOWS\Installer\{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
!-->[Hidden] C:\WINDOWS\Installer\{6B8BDABA-6737-4998-AEE4-E218EDE5FC7A}
!-->[Hidden] C:\WINDOWS\Installer\{7032E73F-68A0-48F9-8100-E70E79169BAE}
!-->[Hidden] C:\WINDOWS\Installer\{73A4F29F-31AC-4EBD-AA1B-0CC5F18C8F83}
!-->[Hidden] C:\WINDOWS\Installer\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
!-->[Hidden] C:\WINDOWS\Installer\{89EB3ED7-225A-412E-B048-623D502C000F}
!-->[Hidden] C:\WINDOWS\Installer\{8D337F77-BE7F-41A2-A7CB-D5A63FD7049B}
!-->[Hidden] C:\WINDOWS\Installer\{95A890AA-B3B1-44B6-9C18-A8F7AB3EE7FC}
!-->[Hidden] C:\WINDOWS\Installer\{A1D0D14A-B776-4907-BC00-5149F2298086}
!-->[Hidden] C:\WINDOWS\Installer\{A6FDF86A-F541-4E7B-AEA0-8849A2A700D5}
!-->[Hidden] C:\WINDOWS\Installer\{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}
!-->[Hidden] C:\WINDOWS\Installer\{B6A26DE5-F2B5-4D58-9570-4FC760E00FCD}
!-->[Hidden] C:\WINDOWS\Installer\{BF83EFE2-C9F0-40D4-841C-2066668C1D7A}
!-->[Hidden] C:\WINDOWS\Installer\{C04E32E0-0416-434D-AFB9-6969D703A9EF}
!-->[Hidden] C:\WINDOWS\Installer\{C1D76D7A-F3BB-47EA-A746-5B1E2FFC1DF2}
!-->[Hidden] C:\WINDOWS\Installer\{CBF3C503-946E-45EA-B347-EACC41781989}
!-->[Hidden] C:\WINDOWS\Installer\{EC877639-07AB-495C-BFD1-D63AF9140810}
!-->[Hidden] C:\WINDOWS\Installer\{ED439A64-F018-4DD4-8BA5-328D85AB09AB}
!-->[Hidden] C:\WINDOWS\Installer\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
!-->[Hidden] C:\WINDOWS\Installer\{FDB46DE7-9045-47BB-970A-3E4ED5369E03}
!-->[Hidden] C:\WINDOWS\Java
!-->[Hidden] C:\WINDOWS\keys
!-->[Hidden] C:\WINDOWS\l2schemas
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\SHADOW1688
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\Updates\M928367
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M953297
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\AppConfig
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_Code
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_Data
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_GlobalResources
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_LocalResources
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Providers
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\App_LocalResources
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Permissions
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Roles
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Wizard
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CONFIG
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MSBuild
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MUI
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\RedistList
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\SubsetList
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Temporary ASP.NET Files
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v3.0
!-->[Hidden] C:\WINDOWS\Microsoft.NET\Framework\v3.5
!-->[Hidden] C:\WINDOWS\Motive
!-->[Hidden] C:\WINDOWS\msdownld.tmp
!-->[Hidden] C:\WINDOWS\network diagnostic
!-->[Hidden] C:\WINDOWS\PCHealth\ERRORREP\UserDumps
!-->[Hidden] C:\WINDOWS\PCHealth\HelpCtr\System\News
!-->[Hidden] C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Windows Component Publisher,L=Redmond,S=Washington,C=US
!-->[Hidden] C:\WINDOWS\peernet
!-->[Hidden] C:\WINDOWS\Prefetch
!-->[Hidden] C:\WINDOWS\provisioning
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{077ACEC7-979C-40AB-9835-435BA1511E0D}
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{077ACEC7-979C-40AB-9835-435BA1511E0D}$BACKUP$
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}$BACKUP$
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{3FDF25EE-E592-4495-8391-6E9C504DAC2B}
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{3FDF25EE-E592-4495-8391-6E9C504DAC2B}$BACKUP$
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{60204BB3-7078-4F70-8F69-68297621941C}
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{60204BB3-7078-4F70-8F69-68297621941C}$BACKUP$
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}$BACKUP$
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}$BACKUP$
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}$BACKUP$
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}$BACKUP$
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{CFB4B314-0328-45E1-94AF-45A3F5F48E0B}
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{CFB4B314-0328-45E1-94AF-45A3F5F48E0B}$BACKUP$
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{DD90D410-1823-43EB-9A16-A2331BF08799}
!-->[Hidden] C:\WINDOWS\RegisteredPackages\{DD90D410-1823-43EB-9A16-A2331BF08799}$BACKUP$
!-->[Hidden] C:\WINDOWS\ServicePackFiles
!-->[Hidden] C:\WINDOWS\SoftwareDistribution\Download\7dc77bad5469553a68ef5efe55070b06
!-->[Hidden] C:\WINDOWS\SoftwareDistribution\Download\d8c31dad31d8ff7642244bfeb1f25bc7
!-->[Hidden] C:\WINDOWS\SoftwareDistribution\Download\e639ef786ddd695030aad48a97363146
!-->[Hidden] C:\WINDOWS\SoftwareDistribution\Download\fbadf956b1f29cd6cc8927434ddbc900
!-->[Hidden] C:\WINDOWS\SoftwareDistribution\SelfUpdate\Default
!-->[Hidden] C:\WINDOWS\SoftwareDistribution\SelfUpdate\Registered
!-->[Hidden] C:\WINDOWS\SYSTEM32\AGEIA
!-->[Hidden] C:\WINDOWS\SYSTEM32\ar-SA
!-->[Hidden] C:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Local Settings\Application Data\Microsoft\Windows Media
!-->[Hidden] C:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Local Settings\Application Data\Windows Server
!-->[Hidden] C:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Local Settings\History\History.IE5\MSHist012008123120090101
!-->[Hidden] C:\WINDOWS\SYSTEM32\da-DK
!-->[Hidden] C:\WINDOWS\SYSTEM32\de-DE
!-->[Hidden] C:\WINDOWS\SYSTEM32\DRIVERS\UMDF
!-->[Hidden] C:\WINDOWS\SYSTEM32\DRVSTORE
!-->[Hidden] C:\WINDOWS\SYSTEM32\el-GR
!-->[Hidden] C:\WINDOWS\SYSTEM32\en
!-->[Hidden] C:\WINDOWS\SYSTEM32\en-US
!-->[Hidden] C:\WINDOWS\SYSTEM32\es-ES
!-->[Hidden] C:\WINDOWS\SYSTEM32\fi-FI
!-->[Hidden] C:\WINDOWS\SYSTEM32\FinePointLib
!-->[Hidden] C:\WINDOWS\SYSTEM32\fr-FR
!-->[Hidden] C:\WINDOWS\SYSTEM32\he-IL
!-->[Hidden] C:\WINDOWS\SYSTEM32\it-IT
!-->[Hidden] C:\WINDOWS\SYSTEM32\ko-KR
!-->[Hidden] C:\WINDOWS\SYSTEM32\LogFiles
!-->[Hidden] C:\WINDOWS\SYSTEM32\Macromed\Flash\FlashPlayerTrust
!-->[Hidden] C:\WINDOWS\SYSTEM32\nb-NO
!-->[Hidden] C:\WINDOWS\SYSTEM32\nl-NL
!-->[Hidden] C:\WINDOWS\SYSTEM32\pt-BR
!-->[Hidden] C:\WINDOWS\SYSTEM32\ReinstallBackups\0001
!-->[Hidden] C:\WINDOWS\SYSTEM32\ReinstallBackups\0002
!-->[Hidden] C:\WINDOWS\SYSTEM32\ReinstallBackups\0004
!-->[Hidden] C:\WINDOWS\SYSTEM32\ReinstallBackups\0005
!-->[Hidden] C:\WINDOWS\SYSTEM32\ReinstallBackups\0007
!-->[Hidden] C:\WINDOWS\SYSTEM32\ReinstallBackups\0008
!-->[Hidden] C:\WINDOWS\SYSTEM32\ReinstallBackups\0009
!-->[Hidden] C:\WINDOWS\SYSTEM32\ReinstallBackups\0010
!-->[Hidden] C:\WINDOWS\SYSTEM32\ReinstallBackups\0011
!-->[Hidden] C:\WINDOWS\SYSTEM32\scripting
!-->[Hidden] C:\WINDOWS\SYSTEM32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\7.2.6001.788
!-->[Hidden] C:\WINDOWS\SYSTEM32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\7.4.7600.226
!-->[Hidden] C:\WINDOWS\SYSTEM32\SoftwareDistribution\Setup\ServiceStartup\wups2.dll\7.2.6001.788
!-->[Hidden] C:\WINDOWS\SYSTEM32\SoftwareDistribution\Setup\ServiceStartup\wups2.dll\7.4.7600.226
!-->[Hidden] C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\WIN40
!-->[Hidden] C:\WINDOWS\SYSTEM32\SPOOL\PRTPROCS\x64
!-->[Hidden] C:\WINDOWS\SYSTEM32\SPOOL\XPSEP
!-->[Hidden] C:\WINDOWS\SYSTEM32\sv-SE
!-->[Hidden] C:\WINDOWS\SYSTEM32\tr-TR
!-->[Hidden] C:\WINDOWS\SYSTEM32\WBEM\AutoRecover
!-->[Hidden] C:\WINDOWS\SYSTEM32\WBEM\Repository
!-->[Hidden] C:\WINDOWS\SYSTEM32\XPSViewer
!-->[Hidden] C:\WINDOWS\SYSTEM32\zh-HK
!-->[Hidden] C:\WINDOWS\SYSTEM32\zh-TW
!-->[Hidden] C:\WINDOWS\Temp\BullGuard
!-->[Hidden] C:\WINDOWS\Temp\Google Toolbar
!-->[Hidden] C:\WINDOWS\Temp\History\Results
!-->[Hidden] C:\WINDOWS\Temp\NDP1.1sp1-KB953297-X86
!-->[Hidden] C:\WINDOWS\Temp\RtSigs
!-->[Hidden] C:\WINDOWS\Temp\_ISTMP4.DIR
!-->[Hidden] C:\WINDOWS\VerizonOnline
!-->[Hidden] C:\WINDOWS\WBEM
!-->[Hidden] C:\WINDOWS\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e
!-->[Hidden] C:\WINDOWS\WinSxS\Policies\x86_policy.4.1.Microsoft.MSXML2R_6bd6b9abf345378f_x-ww_679a1c95
!-->[Hidden] C:\WINDOWS\WinSxS\Policies\x86_policy.4.20.Microsoft.MSXML2_6bd6b9abf345378f_x-ww_88e8eab8
!-->[Hidden] C:\WINDOWS\WinSxS\Policies\x86_policy.5.1.Microsoft.Windows.SystemCompatible_6595b64144ccf1df_x-ww_a0111510
!-->[Hidden] C:\WINDOWS\WinSxS\Policies\x86_policy.5.2.Microsoft.Windows.Networking.Dxmrtp_6595b64144ccf1df_x-ww_362e60dd
!-->[Hidden] C:\WINDOWS\WinSxS\Policies\x86_policy.5.2.Microsoft.Windows.Networking.Rtcdll_6595b64144ccf1df_x-ww_c7b7206f
!-->[Hidden] C:\WINDOWS\WinSxS\Policies\x86_policy.9.0.Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_x-ww_b7353f75
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.MSXML2R_6bd6b9abf345378f_4.1.0.0_x-ww_29c3ad6a
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.MSXML2R_6bd6b9abf345378f_4.1.1.0_x-ww_2a41bceb
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9818.0_x-ww_8ff50c5d
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9848.0_x-ww_1b897e9a
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9870.0_x-ww_a32d74cf
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9876.0_x-ww_a621d1d5
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.3053_x-ww_b80fa8ca
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_d08d0375
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.2180_x-ww_b2505ed9
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.5512_x-ww_3fd60d63
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.5512_x-ww_dfb54e0c
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.5581_x-ww_dfbc4fc4
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6001.22319_x-ww_f0b4c2df
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Networking.Dxmrtp_6595b64144ccf1df_5.2.2.3_x-ww_468466a7
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Networking.RtcDll_6595b64144ccf1df_5.2.2.3_x-ww_d6bd8b95
!-->[Hidden] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Networking.RtcRes_6595b64144ccf1df_5.2.2.3_en_16a24bc0
!-->[Hidden] C:\WINDOWS\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790
!-->[Hidden] C:\xcom1dos
==============================================
>Hooks
==============================================
fastfat.sys-->ntoskrnl.exe-->CcCanIWrite, Type: IAT modification 0xEC769944-->804F836E [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcCopyRead, Type: IAT modification 0xEC76996C-->8057B042 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcCopyWrite, Type: IAT modification 0xEC7698A4-->804F8648 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcDeferWrite, Type: IAT modification 0xEC7699F0-->8052F7A5 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcFlushCache, Type: IAT modification 0xEC769750-->804ECEE7 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcGetFileObjectFromBcb, Type: IAT modification 0xEC76972C-->8052FD97 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcInitializeCacheMap, Type: IAT modification 0xEC7696E4-->804F5140 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcIsThereDirtyData, Type: IAT modification 0xEC7697C8-->8052FB37 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcMapData, Type: IAT modification 0xEC769714-->8057BE0A [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcMdlRead, Type: IAT modification 0xEC769968-->8061BE7D [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcMdlReadComplete, Type: IAT modification 0xEC769734-->8061C130 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcMdlWriteComplete, Type: IAT modification 0xEC769738-->8061C175 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcPinMappedData, Type: IAT modification 0xEC769748-->8057BFF4 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcPinRead, Type: IAT modification 0xEC76974C-->8058ACDD [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcPrepareMdlWrite, Type: IAT modification 0xEC7699E4-->8052FFC3 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcPurgeCacheSection, Type: IAT modification 0xEC769728-->804F7D86 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcRepinBcb, Type: IAT modification 0xEC7696B8-->8052F8A5 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcSetAdditionalCacheAttributes, Type: IAT modification 0xEC76971C-->8050242A [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcSetDirtyPinnedData, Type: IAT modification 0xEC769764-->804EF448 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcSetFileSizes, Type: IAT modification 0xEC7696E0-->804F7592 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcSetReadAheadGranularity, Type: IAT modification 0xEC769970-->804F549C [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcUninitializeCacheMap, Type: IAT modification 0xEC769740-->804F5570 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcUnpinData, Type: IAT modification 0xEC7696AC-->8057BDBC [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcUnpinRepinnedBcb, Type: IAT modification 0xEC7696B4-->8052FA44 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcWaitForCurrentLazyWriterActivity, Type: IAT modification 0xEC769924-->805302F1 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->CcZeroData, Type: IAT modification 0xEC769730-->805E656C [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExAcquireFastMutexUnsafe, Type: IAT modification 0xEC7696C0-->804DBE15 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExAcquireResourceExclusiveLite, Type: IAT modification 0xEC76970C-->804DA3A4 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExAcquireResourceSharedLite, Type: IAT modification 0xEC7696F4-->804E1980 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExAcquireSharedStarveExclusive, Type: IAT modification 0xEC7699EC-->804EF378 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExAcquireSharedWaitForExclusive, Type: IAT modification 0xEC769980-->804F2B23 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExAllocatePoolWithQuotaTag, Type: IAT modification 0xEC769834-->804E8782 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExAllocatePoolWithTag, Type: IAT modification 0xEC7696D8-->80551005 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExConvertExclusiveToSharedLite, Type: IAT modification 0xEC769868-->804F9ACA [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExDeleteNPagedLookasideList, Type: IAT modification 0xEC7698D0-->8054AA1B [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExDeleteResourceLite, Type: IAT modification 0xEC7698CC-->804E9E92 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExfInterlockedAddUlong, Type: IAT modification 0xEC76981C-->804E55BC [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExFreePoolWithTag, Type: IAT modification 0xEC7696A8-->805511E6 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExGetExclusiveWaiterCount, Type: IAT modification 0xEC7697AC-->80549D12 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExGetSharedWaiterCount, Type: IAT modification 0xEC7697A8-->80549D2D [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExInitializeNPagedLookasideList, Type: IAT modification 0xEC7698EC-->80508A00 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExInitializeResourceLite, Type: IAT modification 0xEC7698F0-->804E9EEF [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExIsResourceAcquiredExclusiveLite, Type: IAT modification 0xEC769940-->804F28C9 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExIsResourceAcquiredSharedLite, Type: IAT modification 0xEC769984-->804EB012 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExLocalTimeToSystemTime, Type: IAT modification 0xEC769850-->804F9AA0 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExQueueWorkItem, Type: IAT modification 0xEC769820-->804DA3FC [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExRaiseStatus, Type: IAT modification 0xEC7696B0-->804E31CC [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExReleaseFastMutexUnsafe, Type: IAT modification 0xEC7696BC-->804DBE35 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExReleaseResourceForThreadLite, Type: IAT modification 0xEC769818-->804EFF24 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExReleaseResourceLite, Type: IAT modification 0xEC7696F0-->804DC599 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ExSystemTimeToLocalTime, Type: IAT modification 0xEC769878-->805150DE [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlAddLargeMcbEntry, Type: IAT modification 0xEC769890-->804F7EB3 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlAddToTunnelCache, Type: IAT modification 0xEC76986C-->80589455 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlAreNamesEqual, Type: IAT modification 0xEC769884-->805796A1 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlBalanceReads, Type: IAT modification 0xEC7699D0-->805BBFE2 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlCheckLockForReadAccess, Type: IAT modification 0xEC769974-->804F45B3 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlCheckLockForWriteAccess, Type: IAT modification 0xEC7699E8-->804F7E6A [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlCheckOplock, Type: IAT modification 0xEC769778-->804E942F [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlCopyRead, Type: IAT modification 0xEC769904-->8061CC31 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlCopyWrite, Type: IAT modification 0xEC769900-->8061CF37 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlCurrentBatchOplock, Type: IAT modification 0xEC7697DC-->80579721 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlDeleteKeyFromTunnelCache, Type: IAT modification 0xEC769874-->805E5B4A [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlDeleteTunnelCache, Type: IAT modification 0xEC7699B8-->805D2CC5 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlDissectName, Type: IAT modification 0xEC7697FC-->8057B388 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlDoesNameContainWildCards, Type: IAT modification 0xEC769864-->8057B89A [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlFastCheckLockForRead, Type: IAT modification 0xEC7698B0-->804F7292 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlFastCheckLockForWrite, Type: IAT modification 0xEC7698AC-->8051655A [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlFastUnlockAll, Type: IAT modification 0xEC769780-->804F56F1 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlFastUnlockAllByKey, Type: IAT modification 0xEC769950-->80530F2F [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlFastUnlockSingle, Type: IAT modification 0xEC76994C-->805161CE [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlFindInTunnelCache, Type: IAT modification 0xEC7697E0-->80583E5B [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlGetNextLargeMcbEntry, Type: IAT modification 0xEC76988C-->804EC915 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlInitializeFileLock, Type: IAT modification 0xEC7699B4-->804F7E8F [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlInitializeLargeMcb, Type: IAT modification 0xEC769700-->804FBC7A [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlInitializeOplock, Type: IAT modification 0xEC7699B0-->80573E48 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlInitializeTunnelCache, Type: IAT modification 0xEC7699A4-->805D2C50 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlIsDbcsInExpression, Type: IAT modification 0xEC769958-->8061DB53 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlIsFatDbcsLegal, Type: IAT modification 0xEC7697EC-->805898AF [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlIsNameInExpression, Type: IAT modification 0xEC769888-->8057B8D3 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlIsNtstatusExpected, Type: IAT modification 0xEC76978C-->8050A382 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlIsTotalDeviceFailure, Type: IAT modification 0xEC769824-->805038F0 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlLegalAnsiCharacterArray, Type: IAT modification 0xEC7697BC-->804D8168 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlLookupLargeMcbEntry, Type: IAT modification 0xEC769914-->804ECD15 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlLookupLastLargeMcbEntryAndIndex, Type: IAT modification 0xEC769918-->8053067F [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlNormalizeNtstatus, Type: IAT modification 0xEC769720-->8050A3B5 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlNotifyCleanup, Type: IAT modification 0xEC769790-->805E2B73 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlNotifyFullChangeDirectory, Type: IAT modification 0xEC769794-->8061E173 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlNotifyFullReportChange, Type: IAT modification 0xEC769788-->8061E1EB [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlNotifyInitializeSync, Type: IAT modification 0xEC7699A0-->8059E2D8 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlNotifyUninitializeSync, Type: IAT modification 0xEC7699BC-->80583A91 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlNotifyVolumeEvent, Type: IAT modification 0xEC769770-->805AB55A [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlNumberOfRunsInLargeMcb, Type: IAT modification 0xEC7696F8-->804F91C1 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlOplockFsctrl, Type: IAT modification 0xEC769920-->805DCF14 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlOplockIsFastIoPossible, Type: IAT modification 0xEC769774-->8056FE85 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlPostPagingFileStackOverflow, Type: IAT modification 0xEC76997C-->80531DCB [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlPostStackOverflow, Type: IAT modification 0xEC769978-->80531DA8 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlPrivateLock, Type: IAT modification 0xEC769948-->80515D9A [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlProcessFileLock, Type: IAT modification 0xEC769954-->80500AA5 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlRemoveLargeMcbEntry, Type: IAT modification 0xEC76991C-->804FD568 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlTeardownPerStreamContexts, Type: IAT modification 0xEC76998C-->8057C788 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlTruncateLargeMcb, Type: IAT modification 0xEC769710-->804F8FCB [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlUninitializeFileLock, Type: IAT modification 0xEC7699A8-->804F99DB [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlUninitializeLargeMcb, Type: IAT modification 0xEC7696FC-->804FC2E9 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->FsRtlUninitializeOplock, Type: IAT modification 0xEC7699AC-->804FC241 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->InterlockedPopEntrySList, Type: IAT modification 0xEC7697B4-->804E131F [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->InterlockedPushEntrySList, Type: IAT modification 0xEC769990-->804E1343 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoAcquireVpbSpinLock, Type: IAT modification 0xEC76976C-->805058B0 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoAllocateMdl, Type: IAT modification 0xEC7697E8-->804EDDB1 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoAllocateWorkItem, Type: IAT modification 0xEC7698FC-->804FEB9D [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoBuildAsynchronousFsdRequest, Type: IAT modification 0xEC7699DC-->804FC57C [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoBuildDeviceIoControlRequest, Type: IAT modification 0xEC769838-->80518654 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoBuildPartialMdl, Type: IAT modification 0xEC769A00-->804EE132 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoBuildSynchronousFsdRequest, Type: IAT modification 0xEC769930-->80518D99 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoCheckEaBufferValidity, Type: IAT modification 0xEC769894-->8059E280 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoCheckShareAccess, Type: IAT modification 0xEC7697C4-->8057B23E [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoCreateDevice, Type: IAT modification 0xEC76990C-->805A170C [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoCreateStreamFileObject, Type: IAT modification 0xEC769718-->805D2CFC [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoDeleteDevice, Type: IAT modification 0xEC769908-->80505740 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IofCallDriver, Type: IAT modification 0xEC769808-->804E13B9 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IofCompleteRequest, Type: IAT modification 0xEC769798-->804E17CF [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoFileObjectType, Type: IAT modification 0xEC76992C-->80560D58 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoFreeIrp, Type: IAT modification 0xEC769814-->804EAF62 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoFreeMdl, Type: IAT modification 0xEC7697E4-->804EDE66 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoFreeWorkItem, Type: IAT modification 0xEC7698C8-->804FEB85 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoGetCurrentProcess, Type: IAT modification 0xEC7697B8-->804E5E36 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoGetDeviceToVerify, Type: IAT modification 0xEC7698C4-->8050A351 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoGetFileObjectGenericMapping, Type: IAT modification 0xEC769698-->80579683 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoGetRequestorProcess, Type: IAT modification 0xEC769784-->804F4331 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoGetStackLimits, Type: IAT modification 0xEC769964-->804DC214 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoGetTopLevelIrp, Type: IAT modification 0xEC7698A8-->804E84B2 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoIsOperationSynchronous, Type: IAT modification 0xEC76980C-->804EAFCE [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoIsSystemThread, Type: IAT modification 0xEC7698B8-->80514E4B [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoMakeAssociatedIrp, Type: IAT modification 0xEC769840-->80513B28 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoQueueWorkItem, Type: IAT modification 0xEC7697B0-->804E627F [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoRaiseHardError, Type: IAT modification 0xEC7698BC-->8050A441 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoRaiseInformationalHardError, Type: IAT modification 0xEC7698B4-->805324A7 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoRegisterFileSystem, Type: IAT modification 0xEC7698E8-->805AF1B5 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoReleaseVpbSpinLock, Type: IAT modification 0xEC769768-->805058CC [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoRemoveShareAccess, Type: IAT modification 0xEC76977C-->80579BF4 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoSetDeviceToVerify, Type: IAT modification 0xEC7698C0-->8050A368 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoSetHardErrorOrVerifyDevice, Type: IAT modification 0xEC769724-->80508929 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoSetShareAccess, Type: IAT modification 0xEC7697C0-->80579C54 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoSetTopLevelIrp, Type: IAT modification 0xEC7697A0-->804E8495 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoUnregisterFileSystem, Type: IAT modification 0xEC769988-->805B05C9 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoUpdateShareAccess, Type: IAT modification 0xEC7697D4-->8057BB20 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->IoVerifyVolume, Type: IAT modification 0xEC7699D8-->80620CB4 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeBugCheckEx, Type: IAT modification 0xEC7696C8-->8053767F [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeCancelTimer, Type: IAT modification 0xEC76975C-->804E61C5 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeClearEvent, Type: IAT modification 0xEC769810-->804E5AA4 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeDelayExecutionThread, Type: IAT modification 0xEC76983C-->804E14F6 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeEnterCriticalRegion, Type: IAT modification 0xEC7697A4-->804D95F2 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeGetCurrentThread, Type: IAT modification 0xEC769848-->804DB622 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeInitializeDpc, Type: IAT modification 0xEC769998-->804E7DB8 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeInitializeEvent, Type: IAT modification 0xEC769744-->804E7DE6 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeInitializeSpinLock, Type: IAT modification 0xEC7698F8-->804E2417 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeInitializeTimer, Type: IAT modification 0xEC76999C-->804EC4FB [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeLeaveCriticalRegion, Type: IAT modification 0xEC76979C-->804D9604 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeNumberProcessors, Type: IAT modification 0xEC769934-->8055BA60 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeQuerySystemTime, Type: IAT modification 0xEC769760-->804D95AF [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeRemoveQueueDpc, Type: IAT modification 0xEC769758-->80514F73 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeSetEvent, Type: IAT modification 0xEC769804-->804E20A9 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeSetTimer, Type: IAT modification 0xEC769754-->804E216F [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeTickCount, Type: IAT modification 0xEC7699F4-->8055A000 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->KeWaitForSingleObject, Type: IAT modification 0xEC76973C-->804DC400 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->memmove, Type: IAT modification 0xEC769800-->804DADC5 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->MmCanFileBeTruncated, Type: IAT modification 0xEC7697CC-->804F719D [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->MmFlushImageSection, Type: IAT modification 0xEC7697D8-->804F710E [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->MmMapLockedPagesSpecifyCache, Type: IAT modification 0xEC769830-->804EDF4C [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->MmProbeAndLockPages, Type: IAT modification 0xEC76982C-->804F6BFF [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->MmQuerySystemSize, Type: IAT modification 0xEC7698F4-->8050894A [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->MmUnlockPages, Type: IAT modification 0xEC76984C-->804F6EB5 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->MmUnmapLockedPages, Type: IAT modification 0xEC769828-->804EE0B8 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->NlsMbOemCodePageTag, Type: IAT modification 0xEC76985C-->8069A720 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->NlsOemLeadByteInfo, Type: IAT modification 0xEC7698A0-->8056C4C0 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ObfDereferenceObject, Type: IAT modification 0xEC769844-->804E1930 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ObfReferenceObject, Type: IAT modification 0xEC7698E4-->804DA06B [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ObReferenceObjectByHandle, Type: IAT modification 0xEC769928-->8056C559 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ProbeForRead, Type: IAT modification 0xEC76993C-->805838BB [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ProbeForWrite, Type: IAT modification 0xEC769938-->8056E89F [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlAreBitsClear, Type: IAT modification 0xEC769708-->804F8F41 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlClearBits, Type: IAT modification 0xEC7696D0-->804EA9A5 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlCompareMemory, Type: IAT modification 0xEC7698E0-->804E5080 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlCompareString, Type: IAT modification 0xEC76989C-->8063BFEB [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlDelete, Type: IAT modification 0xEC7699C0-->804F2FC1 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlDowncaseUnicodeString, Type: IAT modification 0xEC7697F4-->8063B7C7 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlEqualString, Type: IAT modification 0xEC7699D4-->8050370A [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlFindClearBits, Type: IAT modification 0xEC7696DC-->804F044D [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlFindLongestRunClear, Type: IAT modification 0xEC769704-->80543309 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlFreeOemString, Type: IAT modification 0xEC769860-->805E5654 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlFreeUnicodeString, Type: IAT modification 0xEC769994-->80582BB6 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlGenerate8dot3Name, Type: IAT modification 0xEC769960-->80588A90 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlInitializeBitMap, Type: IAT modification 0xEC7696D4-->8057BF4E [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlInitUnicodeString, Type: IAT modification 0xEC769910-->804DA2A5 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlOemStringToCountedUnicodeString, Type: IAT modification 0xEC769870-->8063BD83 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlOemToUnicodeN, Type: IAT modification 0xEC769854-->805E36C0 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlSetBits, Type: IAT modification 0xEC7696CC-->804F03FD [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlSplay, Type: IAT modification 0xEC7699C4-->804F345D [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlTimeFieldsToTime, Type: IAT modification 0xEC7699C8-->80506F59 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlTimeToTimeFields, Type: IAT modification 0xEC7699CC-->8050A913 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlUnicodeStringToCountedOemString, Type: IAT modification 0xEC76995C-->805899A0 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlUpcaseUnicodeString, Type: IAT modification 0xEC7697F0-->80570494 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlUpcaseUnicodeStringToCountedOemString, Type: IAT modification 0xEC7697F8-->8063BE4C [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlUpperString, Type: IAT modification 0xEC769898-->805C80F6 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->RtlxOemStringToUnicodeSize, Type: IAT modification 0xEC769858-->8063B947 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->SeAccessCheck, Type: IAT modification 0xEC769694-->8056C2C7 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->SeExports, Type: IAT modification 0xEC7699F8-->8069AD50 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->SeFilterToken, Type: IAT modification 0xEC7699FC-->8063FBBC [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->SeLockSubjectContext, Type: IAT modification 0xEC7696A0-->8056C39C [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->SePrivilegeCheck, Type: IAT modification 0xEC7696A4-->805738F5 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->SeReleaseSubjectContext, Type: IAT modification 0xEC76969C-->8056CA9C [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->SeSinglePrivilegeCheck, Type: IAT modification 0xEC7697D0-->8057898F [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->SeUnlockSubjectContext, Type: IAT modification 0xEC769690-->8056C3D1 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ZwClose, Type: IAT modification 0xEC7698D4-->804E3496 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ZwOpenKey, Type: IAT modification 0xEC7698DC-->804E3BEE [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->ZwQueryValueKey, Type: IAT modification 0xEC7698D8-->804E4076 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->_abnormal_termination, Type: IAT modification 0xEC7696C4-->804E30C4 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->_alldiv, Type: IAT modification 0xEC769880-->804DA42D [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->_allmul, Type: IAT modification 0xEC76987C-->804DA5B6 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->_allshl, Type: IAT modification 0xEC7696EC-->804DA6DB [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->_allshr, Type: IAT modification 0xEC7696E8-->804DA6FA [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->_except_handler3, Type: IAT modification 0xEC769A04-->804E2EF8 [ntoskrnl.exe]
fastfat.sys-->ntoskrnl.exe-->_local_unwind2, Type: IAT modification 0xEC7699E0-->804E3054 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->DbgPrint, Type: IAT modification 0xF7409ACC-->80501EE9 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->ExAllocatePoolWithTag, Type: IAT modification 0xF7409A98-->80551005 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->ExFreePoolWithTag, Type: IAT modification 0xF7409C60-->805511E6 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->ExInitializeNPagedLookasideList, Type: IAT modification 0xF7409BE0-->80508A00 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->ExQueueWorkItem, Type: IAT modification 0xF7409B40-->804DA3FC [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->ExUuidCreate, Type: IAT modification 0xF7409AB0-->805E9C7C [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->FsRtlIsTotalDeviceFailure, Type: IAT modification 0xF7409BF4-->805038F0 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->HalExamineMBR, Type: IAT modification 0xF7409A9C-->8050D42B [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->InterlockedPopEntrySList, Type: IAT modification 0xF7409BD8-->804E131F [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->InterlockedPushEntrySList, Type: IAT modification 0xF7409BDC-->804E1343 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoAcquireCancelSpinLock, Type: IAT modification 0xF7409B68-->804E81D7 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoAllocateErrorLogEntry, Type: IAT modification 0xF7409BA0-->8050BB4D [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoAllocateIrp, Type: IAT modification 0xF7409BF0-->804EAFBD [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoAllocateMdl, Type: IAT modification 0xF7409BE8-->804EDDB1 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoAllocateWorkItem, Type: IAT modification 0xF7409B24-->804FEB9D [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoAttachDeviceToDeviceStack, Type: IAT modification 0xF7409B54-->80506BD6 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoBuildDeviceIoControlRequest, Type: IAT modification 0xF7409AA0-->80518654 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoBuildPartialMdl, Type: IAT modification 0xF7409C00-->804EE132 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoBuildSynchronousFsdRequest, Type: IAT modification 0xF7409C4C-->80518D99 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoCreateDevice, Type: IAT modification 0xF7409B5C-->805A170C [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoCreateSymbolicLink, Type: IAT modification 0xF7409AE8-->805D2EFF [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoDeleteDevice, Type: IAT modification 0xF7409B4C-->80505740 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoDeleteSymbolicLink, Type: IAT modification 0xF7409AEC-->805D7E64 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoDetachDevice, Type: IAT modification 0xF7409B50-->80507FA4 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IofCallDriver, Type: IAT modification 0xF7409C50-->804E13B9 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IofCompleteRequest, Type: IAT modification 0xF7409AF8-->804E17CF [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoFreeIrp, Type: IAT modification 0xF7409BF8-->804EAF62 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoFreeMdl, Type: IAT modification 0xF7409BE4-->804EDE66 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoFreeWorkItem, Type: IAT modification 0xF7409B1C-->804FEB85 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoGetAttachedDeviceReference, Type: IAT modification 0xF7409AA4-->8051525F [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoGetBootDiskInformation, Type: IAT modification 0xF7409BAC-->805CC72D [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoGetDeviceObjectPointer, Type: IAT modification 0xF7409ADC-->805E3B29 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoGetDeviceProperty, Type: IAT modification 0xF7409BBC-->8059BFB5 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoGetFileObjectGenericMapping, Type: IAT modification 0xF7409B08-->80579683 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoInvalidateDeviceRelations, Type: IAT modification 0xF7409B8C-->80505DBD [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoInvalidateDeviceState, Type: IAT modification 0xF7409BB4-->8050BABF [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoQueueWorkItem, Type: IAT modification 0xF7409B20-->804E627F [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoRaiseInformationalHardError, Type: IAT modification 0xF7409C18-->805324A7 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoReadPartitionTableEx, Type: IAT modification 0xF7409C5C-->805CC6CD [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoRegisterBootDriverReinitialization, Type: IAT modification 0xF7409BCC-->805C6911 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoRegisterDeviceInterface, Type: IAT modification 0xF7409AF0-->805DCC64 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoRegisterDriverReinitialization, Type: IAT modification 0xF7409BC8-->805C5D02 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoRegisterShutdownNotification, Type: IAT modification 0xF7409B44-->805BB902 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoReleaseCancelSpinLock, Type: IAT modification 0xF7409B2C-->804E81BD [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoReportDetectedDevice, Type: IAT modification 0xF7409BD4-->805CDE34 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoReportTargetDeviceChangeAsynchronous, Type: IAT modification 0xF7409B6C-->805054B9 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoReuseIrp, Type: IAT modification 0xF7409BFC-->804ECE58 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoSetDeviceInterfaceState, Type: IAT modification 0xF7409BB8-->805D7867 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoSetSystemPartition, Type: IAT modification 0xF7409B7C-->8053292B [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoUnregisterShutdownNotification, Type: IAT modification 0xF7409BC0-->80665347 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoWMIRegistrationControl, Type: IAT modification 0xF7409AF4-->805A218B [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->IoWriteErrorLogEntry, Type: IAT modification 0xF7409B9C-->8050BDAD [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->KeBugCheckEx, Type: IAT modification 0xF7409BA8-->8053767F [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->KeClearEvent, Type: IAT modification 0xF7409B74-->804E5AA4 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->KeGetCurrentThread, Type: IAT modification 0xF7409C1C-->804DB622 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->KeInitializeEvent, Type: IAT modification 0xF7409B70-->804E7DE6 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->KeInitializeSemaphore, Type: IAT modification 0xF7409B48-->804E88F1 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->KeInitializeSpinLock, Type: IAT modification 0xF7409B58-->804E2417 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->KeQuerySystemTime, Type: IAT modification 0xF7409AAC-->804D95AF [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->KeReleaseSemaphore, Type: IAT modification 0xF7409B28-->804E90CE [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->KeSetEvent, Type: IAT modification 0xF7409B30-->804E20A9 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->KeWaitForSingleObject, Type: IAT modification 0xF7409C54-->804DC400 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->memmove, Type: IAT modification 0xF7409ABC-->804DADC5 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->MmBuildMdlForNonPagedPool, Type: IAT modification 0xF7409BEC-->804EDEBC [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->MmLockPagableDataSection, Type: IAT modification 0xF7409BB0-->805E7DA9 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->MmMapLockedPages, Type: IAT modification 0xF7409C14-->804F97B4 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->MmUnmapLockedPages, Type: IAT modification 0xF7409C04-->804EE0B8 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->ObfDereferenceObject, Type: IAT modification 0xF7409AA8-->804E1930 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->ObfReferenceObject, Type: IAT modification 0xF7409B98-->804DA06B [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->ObReferenceObjectByHandle, Type: IAT modification 0xF7409AD0-->8056C559 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->PoCallDriver, Type: IAT modification 0xF7409B34-->80507283 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->PoRequestPowerIrp, Type: IAT modification 0xF7409B60-->80507335 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->PoSetPowerState, Type: IAT modification 0xF7409B64-->80507E05 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->PoStartNextPowerIrp, Type: IAT modification 0xF7409B38-->80507149 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->PsCreateSystemThread, Type: IAT modification 0xF7409B90-->805762A6 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->PsTerminateSystemThread, Type: IAT modification 0xF7409B3C-->80583248 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->RtlAddAccessAllowedAce, Type: IAT modification 0xF7409C38-->805852BE [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->RtlCompareMemory, Type: IAT modification 0xF7409AC8-->804E5080 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->RtlCompareUnicodeString, Type: IAT modification 0xF7409AD8-->80574887 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->RtlCopyUnicodeString, Type: IAT modification 0xF7409BD0-->804F2DB1 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->RtlCreateAcl, Type: IAT modification 0xF7409C3C-->8057545D [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->RtlCreateRegistryKey, Type: IAT modification 0xF7409B18-->805B66DD [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->RtlCreateSecurityDescriptor, Type: IAT modification 0xF7409C34-->8056FC49 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->RtlDeleteRegistryValue, Type: IAT modification 0xF7409B14-->805C2D41 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->RtlEqualUnicodeString, Type: IAT modification 0xF7409B94-->8056C684 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->RtlInitUnicodeString, Type: IAT modification 0xF7409AE0-->804DA2A5 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->RtlLengthSid, Type: IAT modification 0xF7409C40-->805DF5CA [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->RtlQueryRegistryValues, Type: IAT modification 0xF7409AC4-->8059B907 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->RtlSetDaclSecurityDescriptor, Type: IAT modification 0xF7409C30-->80585052 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->RtlStringFromGUID, Type: IAT modification 0xF7409B78-->8059CA05 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->RtlVolumeDeviceToDosName, Type: IAT modification 0xF7409BA4-->80534DC2 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->RtlWriteRegistryValue, Type: IAT modification 0xF7409AC0-->805B61D7 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->SeAccessCheck, Type: IAT modification 0xF7409B04-->8056C2C7 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->SeCaptureSubjectContext, Type: IAT modification 0xF7409B10-->80573991 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->SeExports, Type: IAT modification 0xF7409C44-->8069AD50 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->SeLockSubjectContext, Type: IAT modification 0xF7409B0C-->8056C39C [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->SeReleaseSubjectContext, Type: IAT modification 0xF7409AFC-->8056CA9C [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->SeUnlockSubjectContext, Type: IAT modification 0xF7409B00-->8056C3D1 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->strncmp, Type: IAT modification 0xF7409C58-->804DB478 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->swprintf, Type: IAT modification 0xF7409AE4-->804FCA31 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->wcslen, Type: IAT modification 0xF7409C20-->804EA4A9 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->ZwClose, Type: IAT modification 0xF7409B80-->804E3496 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->ZwFsControlFile, Type: IAT modification 0xF7409B84-->804E3932 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->ZwOpenFile, Type: IAT modification 0xF7409B88-->804E3BB2 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->ZwOpenKey, Type: IAT modification 0xF7409C28-->804E3BEE [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->ZwQueryValueKey, Type: IAT modification 0xF7409C24-->804E4076 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->ZwSetSecurityObject, Type: IAT modification 0xF7409C2C-->804E4526 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->_alldiv, Type: IAT modification 0xF7409BC4-->804DA42D [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->_alldvrm, Type: IAT modification 0xF7409C0C-->804DA4D7 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->_allmul, Type: IAT modification 0xF7409AB8-->804DA5B6 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->_allrem, Type: IAT modification 0xF7409C08-->804DA627 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->_allshl, Type: IAT modification 0xF7409C10-->804DA6DB [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->_allshr, Type: IAT modification 0xF7409AB4-->804DA6FA [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->_except_handler3, Type: IAT modification 0xF7409C48-->804E2EF8 [ntoskrnl.exe]
ftdisk.sys-->ntoskrnl.exe-->_purecall, Type: IAT modification 0xF7409AD4-->8054AEF7 [ntoskrnl.exe]
IDT-->Int 06h-->Invalid Opcode, Type: Inline - RelativeJump 0x804DEF1A-->804DF39A [ntoskrnl.exe]
IDT-->Int 30h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCE90-->804DD677 [ntoskrnl.exe]
IDT-->Int 32h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCEA4-->804DD677 [ntoskrnl.exe]
IDT-->Int 34h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCEB8-->804DD677 [ntoskrnl.exe]
IDT-->Int 36h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCECC-->804DD677 [ntoskrnl.exe]
IDT-->Int 38h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCEE0-->804DD677 [ntoskrnl.exe]
IDT-->Int 3Ah-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCEF4-->804DD677 [ntoskrnl.exe]
IDT-->Int 3Ch-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCF08-->804DD677 [ntoskrnl.exe]
IDT-->Int 3Eh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCF1C-->804DD677 [ntoskrnl.exe]
IDT-->Int 40h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCF30-->804DD677 [ntoskrnl.exe]
IDT-->Int 42h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCF44-->804DD677 [ntoskrnl.exe]
IDT-->Int 44h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCF58-->804DD677 [ntoskrnl.exe]
IDT-->Int 46h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCF6C-->804DD677 [ntoskrnl.exe]
IDT-->Int 48h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCF80-->804DD677 [ntoskrnl.exe]
IDT-->Int 4Ah-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCF94-->804DD677 [ntoskrnl.exe]
IDT-->Int 4Ch-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCFA8-->804DD677 [ntoskrnl.exe]
IDT-->Int 4Eh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCFBC-->804DD677 [ntoskrnl.exe]
IDT-->Int 52h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCFE4-->804DD677 [ntoskrnl.exe]
IDT-->Int 54h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DCFF8-->804DD677 [ntoskrnl.exe]
IDT-->Int 56h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD00C-->804DD677 [ntoskrnl.exe]
IDT-->Int 58h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD020-->804DD677 [ntoskrnl.exe]
IDT-->Int 5Ah-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD034-->804DD677 [ntoskrnl.exe]
IDT-->Int 5Ch-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD048-->804DD677 [ntoskrnl.exe]
IDT-->Int 5Eh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD05C-->804DD677 [ntoskrnl.exe]
IDT-->Int 60h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD070-->804DD677 [ntoskrnl.exe]
IDT-->Int 62h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD084-->804DD677 [ntoskrnl.exe]
IDT-->Int 64h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD098-->804DD677 [ntoskrnl.exe]
IDT-->Int 66h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD0AC-->804DD677 [ntoskrnl.exe]
IDT-->Int 68h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD0C0-->804DD677 [ntoskrnl.exe]
IDT-->Int 6Ah-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD0D4-->804DD677 [ntoskrnl.exe]
IDT-->Int 6Ch-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD0E8-->804DD677 [ntoskrnl.exe]
IDT-->Int 6Eh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD0FC-->804DD677 [ntoskrnl.exe]
IDT-->Int 70h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD110-->804DD677 [ntoskrnl.exe]
IDT-->Int 72h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD124-->804DD677 [ntoskrnl.exe]
IDT-->Int 76h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD14C-->804DD677 [ntoskrnl.exe]
IDT-->Int 78h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD160-->804DD677 [ntoskrnl.exe]
IDT-->Int 7Ah-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD174-->804DD677 [ntoskrnl.exe]
IDT-->Int 7Ch-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD188-->804DD677 [ntoskrnl.exe]
IDT-->Int 7Eh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD19C-->804DD677 [ntoskrnl.exe]
IDT-->Int 80h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD1B0-->804DD677 [ntoskrnl.exe]
IDT-->Int 86h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD1EC-->804DD677 [ntoskrnl.exe]
IDT-->Int 88h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD200-->804DD677 [ntoskrnl.exe]
IDT-->Int 8Ah-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD214-->804DD677 [ntoskrnl.exe]
IDT-->Int 8Ch-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD228-->804DD677 [ntoskrnl.exe]
IDT-->Int 8Eh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD23C-->804DD677 [ntoskrnl.exe]
IDT-->Int 90h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD250-->804DD677 [ntoskrnl.exe]
IDT-->Int 96h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD28C-->804DD677 [ntoskrnl.exe]
IDT-->Int 98h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD2A0-->804DD677 [ntoskrnl.exe]
IDT-->Int 9Ah-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD2B4-->804DD677 [ntoskrnl.exe]
IDT-->Int 9Ch-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD2C8-->804DD677 [ntoskrnl.exe]
IDT-->Int 9Eh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD2DC-->804DD677 [ntoskrnl.exe]
IDT-->Int A0h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD2F0-->804DD677 [ntoskrnl.exe]
IDT-->Int A2h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD304-->804DD677 [ntoskrnl.exe]
IDT-->Int A6h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD32C-->804DD677 [ntoskrnl.exe]
IDT-->Int A8h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD340-->804DD677 [ntoskrnl.exe]
IDT-->Int AAh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD354-->804DD677 [ntoskrnl.exe]
IDT-->Int ACh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD368-->804DD677 [ntoskrnl.exe]
IDT-->Int AEh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD37C-->804DD677 [ntoskrnl.exe]
IDT-->Int B0h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD390-->804DD677 [ntoskrnl.exe]
IDT-->Int B6h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD3CC-->804DD677 [ntoskrnl.exe]
IDT-->Int B8h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD3E0-->804DD677 [ntoskrnl.exe]
IDT-->Int BAh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD3F4-->804DD677 [ntoskrnl.exe]
IDT-->Int BCh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD408-->804DD677 [ntoskrnl.exe]
IDT-->Int BEh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD41C-->804DD677 [ntoskrnl.exe]
IDT-->Int C0h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD430-->804DD677 [ntoskrnl.exe]
IDT-->Int C2h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD444-->804DD677 [ntoskrnl.exe]
IDT-->Int C4h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD458-->804DD677 [ntoskrnl.exe]
IDT-->Int C6h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD46C-->804DD677 [ntoskrnl.exe]
IDT-->Int C8h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD480-->804DD677 [ntoskrnl.exe]
IDT-->Int CAh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD494-->804DD677 [ntoskrnl.exe]
IDT-->Int CCh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD4A8-->804DD677 [ntoskrnl.exe]
IDT-->Int CEh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD4BC-->804DD677 [ntoskrnl.exe]
IDT-->Int D0h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD4D0-->804DD677 [ntoskrnl.exe]
IDT-->Int D2h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD4E4-->804DD677 [ntoskrnl.exe]
IDT-->Int D4h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD4F8-->804DD677 [ntoskrnl.exe]
IDT-->Int D6h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD50C-->804DD677 [ntoskrnl.exe]
IDT-->Int D8h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD520-->804DD677 [ntoskrnl.exe]
IDT-->Int DAh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD534-->804DD677 [ntoskrnl.exe]
IDT-->Int DCh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD548-->804DD677 [ntoskrnl.exe]
IDT-->Int DEh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD55C-->804DD677 [ntoskrnl.exe]
IDT-->Int E0h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD570-->804DD677 [ntoskrnl.exe]
IDT-->Int E2h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD584-->804DD677 [ntoskrnl.exe]
IDT-->Int E4h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD598-->804DD677 [ntoskrnl.exe]
IDT-->Int E6h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD5AC-->804DD677 [ntoskrnl.exe]
IDT-->Int E8h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD5C0-->804DD677 [ntoskrnl.exe]
IDT-->Int EAh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD5D4-->804DD677 [ntoskrnl.exe]
IDT-->Int ECh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD5E8-->804DD677 [ntoskrnl.exe]
IDT-->Int EFh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD600-->804DD67B [ntoskrnl.exe]
IDT-->Int F2h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD615-->804DD67B [ntoskrnl.exe]
IDT-->Int F4h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD623-->804DD67B [ntoskrnl.exe]
IDT-->Int F7h-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD638-->804DD67B [ntoskrnl.exe]
IDT-->Int FAh-->Unexpected Interrupt, Type: Inline - RelativeJump 0x804DD64D-->804DD67B [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->DbgPrint, Type: IAT modification 0xF7291BF0-->80501EE9 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExAcquireResourceExclusiveLite, Type: IAT modification 0xF7291D3C-->804DA3A4 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExAllocatePoolWithTag, Type: IAT modification 0xF7291E50-->80551005 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExAllocatePoolWithTagPriority, Type: IAT modification 0xF7291DAC-->804F3C7E [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExCreateCallback, Type: IAT modification 0xF7291BF4-->805BBD83 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExDeleteNPagedLookasideList, Type: IAT modification 0xF7291D5C-->8054AA1B [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExfInterlockedAddUlong, Type: IAT modification 0xF7291CF4-->804E55BC [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExfInterlockedInsertHeadList, Type: IAT modification 0xF7291CE0-->804E55E8 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExfInterlockedInsertTailList, Type: IAT modification 0xF7291CF8-->804E5620 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExfInterlockedPopEntryList, Type: IAT modification 0xF7291D04-->804E568C [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExfInterlockedPushEntryList, Type: IAT modification 0xF7291D00-->804E56BC [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExfInterlockedRemoveHeadList, Type: IAT modification 0xF7291CFC-->804E5658 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExFreePoolWithTag, Type: IAT modification 0xF7291E58-->805511E6 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExGetCurrentProcessorCounts, Type: IAT modification 0xF7291C9C-->8054ADC1 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExGetCurrentProcessorCpuUsage, Type: IAT modification 0xF7291C98-->8054AD7A [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExInitializeNPagedLookasideList, Type: IAT modification 0xF7291DB0-->80508A00 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExInitializeResourceLite, Type: IAT modification 0xF7291C00-->804E9EEF [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExInterlockedAddLargeInteger, Type: IAT modification 0xF7291CDC-->804DBE49 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExNotifyCallback, Type: IAT modification 0xF7291BBC-->80519100 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExQueueWorkItem, Type: IAT modification 0xF7291E4C-->804DA3FC [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExRegisterCallback, Type: IAT modification 0xF7291BEC-->8050D094 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ExReleaseResourceLite, Type: IAT modification 0xF7291D38-->804DC599 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->InterlockedPopEntrySList, Type: IAT modification 0xF7291CAC-->804E131F [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->InterlockedPushEntrySList, Type: IAT modification 0xF7291C6C-->804E1343 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoAcquireCancelSpinLock, Type: IAT modification 0xF7291D0C-->804E81D7 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoAllocateDriverObjectExtension, Type: IAT modification 0xF7291D6C-->8050997B [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoAllocateErrorLogEntry, Type: IAT modification 0xF7291D14-->8050BB4D [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoAllocateIrp, Type: IAT modification 0xF7291D74-->804EAFBD [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoAllocateMdl, Type: IAT modification 0xF7291C74-->804EDDB1 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoAttachDeviceToDeviceStack, Type: IAT modification 0xF7291D64-->80506BD6 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoBuildPartialMdl, Type: IAT modification 0xF7291C78-->804EE132 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoBuildSynchronousFsdRequest, Type: IAT modification 0xF7291D50-->80518D99 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoCancelIrp, Type: IAT modification 0xF7291D54-->805184A1 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoConnectInterrupt, Type: IAT modification 0xF7291D7C-->805B07B1 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoCreateDevice, Type: IAT modification 0xF7291C10-->805A170C [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoCreateSymbolicLink, Type: IAT modification 0xF7291C0C-->805D2EFF [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoDeleteDevice, Type: IAT modification 0xF7291D34-->80505740 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoDeleteSymbolicLink, Type: IAT modification 0xF7291D1C-->805D7E64 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoDetachDevice, Type: IAT modification 0xF7291D60-->80507FA4 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoDisconnectInterrupt, Type: IAT modification 0xF7291D84-->805AF3E9 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IofCallDriver, Type: IAT modification 0xF7291D4C-->804E13B9 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IofCompleteRequest, Type: IAT modification 0xF7291BE0-->804E17CF [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoFreeIrp, Type: IAT modification 0xF7291D70-->804EAF62 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoFreeMdl, Type: IAT modification 0xF7291E54-->804EDE66 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoGetDeviceProperty, Type: IAT modification 0xF7291C3C-->8059BFB5 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoGetDmaAdapter, Type: IAT modification 0xF7291D40-->805C3C25 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoGetDriverObjectExtension, Type: IAT modification 0xF7291CC0-->8050580A [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoGetFileObjectGenericMapping, Type: IAT modification 0xF7291DD0-->80579683 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoInvalidateDeviceState, Type: IAT modification 0xF7291C48-->8050BABF [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoOpenDeviceRegistryKey, Type: IAT modification 0xF7291C24-->8059D062 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoRegisterDeviceInterface, Type: IAT modification 0xF7291D20-->805DCC64 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoReleaseCancelSpinLock, Type: IAT modification 0xF7291D08-->804E81BD [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoSetDeviceInterfaceState, Type: IAT modification 0xF7291C40-->805D7867 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoUnregisterShutdownNotification, Type: IAT modification 0xF7291CBC-->80665347 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoWMIRegistrationControl, Type: IAT modification 0xF7291CD4-->805A218B [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoWMIWriteEvent, Type: IAT modification 0xF7291BB8-->805094AA [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->IoWriteErrorLogEntry, Type: IAT modification 0xF7291D10-->8050BDAD [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeBugCheckEx, Type: IAT modification 0xF7291CD0-->8053767F [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeCancelTimer, Type: IAT modification 0xF7291D30-->804E61C5 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeDeregisterBugCheckCallback, Type: IAT modification 0xF7291D48-->80536897 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KefAcquireSpinLockAtDpcLevel, Type: IAT modification 0xF7291E30-->804E2427 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KefReleaseSpinLockFromDpcLevel, Type: IAT modification 0xF7291E34-->804E2468 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeGetRecommendedSharedDataAlignment, Type: IAT modification 0xF7291D58-->80508911 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeInitializeDpc, Type: IAT modification 0xF7291D24-->804E7DB8 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeInitializeEvent, Type: IAT modification 0xF7291BC8-->804E7DE6 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeInitializeMutex, Type: IAT modification 0xF7291BE4-->80518BC3 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeInitializeQueue, Type: IAT modification 0xF7291BFC-->804FE870 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeInitializeSpinLock, Type: IAT modification 0xF7291C08-->804E2417 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeInitializeTimer, Type: IAT modification 0xF7291D2C-->804EC4FB [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeInitializeTimerEx, Type: IAT modification 0xF7291CCC-->804EC513 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeInsertQueue, Type: IAT modification 0xF7291CD8-->804E5AB9 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeInsertQueueDpc, Type: IAT modification 0xF7291D18-->804D968D [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeNumberProcessors, Type: IAT modification 0xF7291C14-->8055BA60 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeQuerySystemTime, Type: IAT modification 0xF7291BF8-->804D95AF [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeQueryTimeIncrement, Type: IAT modification 0xF7291C04-->804E5A3E [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeRegisterBugCheckCallback, Type: IAT modification 0xF7291D44-->8050DB0A [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeReleaseMutex, Type: IAT modification 0xF7291BC4-->804E8508 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeRemoveQueue, Type: IAT modification 0xF7291E40-->804E21B4 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeResetEvent, Type: IAT modification 0xF7291CA0-->804E8525 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeSetEvent, Type: IAT modification 0xF7291CEC-->804E20A9 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeSetImportanceDpc, Type: IAT modification 0xF7291D28-->804EC82B [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeSetTargetProcessorDpc, Type: IAT modification 0xF7291D80-->80509673 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeSetTimer, Type: IAT modification 0xF7291CC8-->804E216F [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeSetTimerEx, Type: IAT modification 0xF7291CC4-->804E210E [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeSynchronizeExecution, Type: IAT modification 0xF7291D78-->804DB68A [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeTickCount, Type: IAT modification 0xF7291C68-->8055A000 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->KeWaitForSingleObject, Type: IAT modification 0xF7291BCC-->804DC400 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->memmove, Type: IAT modification 0xF7291CE8-->804DADC5 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->MmAddVerifierThunks, Type: IAT modification 0xF7291DA4-->8062BAF4 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->MmAllocateContiguousMemory, Type: IAT modification 0xF7291C58-->8050C3C2 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->MmAllocateNonCachedMemory, Type: IAT modification 0xF7291C5C-->8062CC8A [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->MmBuildMdlForNonPagedPool, Type: IAT modification 0xF7291C70-->804EDEBC [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->MmFreeContiguousMemory, Type: IAT modification 0xF7291C60-->80504EF9 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->MmFreeNonCachedMemory, Type: IAT modification 0xF7291C64-->8062CDBB [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->MmIsDriverVerifying, Type: IAT modification 0xF7291D68-->8050E205 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->MmIsVerifierEnabled, Type: IAT modification 0xF7291DA8-->805B84D1 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->MmLockPagableDataSection, Type: IAT modification 0xF7291C50-->805E7DA9 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->MmLockPagableSectionByHandle, Type: IAT modification 0xF7291C54-->805E09D2 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->MmMapIoSpace, Type: IAT modification 0xF7291C80-->8050B5AA [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->MmMapLockedPages, Type: IAT modification 0xF7291C7C-->804F97B4 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->MmMapLockedPagesSpecifyCache, Type: IAT modification 0xF7291CA8-->804EDF4C [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->MmUnlockPagableImageSection, Type: IAT modification 0xF7291C4C-->8051A18B [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->MmUnmapIoSpace, Type: IAT modification 0xF7291C84-->8050B701 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->NtClose, Type: IAT modification 0xF7291E48-->8056F8D7 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ObfDereferenceObject, Type: IAT modification 0xF7291CB4-->804E1930 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ObfReferenceObject, Type: IAT modification 0xF7291E3C-->804DA06B [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ObGetObjectSecurity, Type: IAT modification 0xF7291DF4-->8056C287 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ObReleaseObjectSecurity, Type: IAT modification 0xF7291DD4-->8056C241 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ObSetSecurityObjectByPointer, Type: IAT modification 0xF7291DD8-->805DFBEF [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->PoCallDriver, Type: IAT modification 0xF7291D94-->80507283 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->PoRequestPowerIrp, Type: IAT modification 0xF7291D8C-->80507335 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->PoSetPowerState, Type: IAT modification 0xF7291D98-->80507E05 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->PoStartNextPowerIrp, Type: IAT modification 0xF7291D90-->80507149 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->PsCreateSystemThread, Type: IAT modification 0xF7291E44-->805762A6 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->PsGetCurrentThread, Type: IAT modification 0xF7291E38-->804E5DA7 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlAddAccessAllowedAce, Type: IAT modification 0xF7291DB8-->805852BE [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlAnsiStringToUnicodeString, Type: IAT modification 0xF7291CF0-->8058DB92 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlAppendUnicodeStringToString, Type: IAT modification 0xF7291BD0-->804F7BCC [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlAppendUnicodeToString, Type: IAT modification 0xF7291C38-->804F5F19 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlCharToInteger, Type: IAT modification 0xF7291C28-->8063C903 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlCopyUnicodeString, Type: IAT modification 0xF7291BD4-->804F2DB1 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlCreateAcl, Type: IAT modification 0xF7291DBC-->8057545D [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlCreateSecurityDescriptor, Type: IAT modification 0xF7291E04-->8056FC49 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlEqualUnicodeString, Type: IAT modification 0xF7291C34-->8056C684 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlExtendedIntegerMultiply, Type: IAT modification 0xF7291C94-->804DBD08 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlFreeAnsiString, Type: IAT modification 0xF7291BD8-->80582BB6 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlFreeUnicodeString, Type: IAT modification 0xF7291CB8-->80582BB6 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlGetAce, Type: IAT modification 0xF7291DB4-->805AEF9A [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlGetCallersAddress, Type: IAT modification 0xF7291CB0-->804DA198 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlGetDaclSecurityDescriptor, Type: IAT modification 0xF7291DF0-->805B1763 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlGetGroupSecurityDescriptor, Type: IAT modification 0xF7291DE8-->805BBF77 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlGetOwnerSecurityDescriptor, Type: IAT modification 0xF7291DEC-->805BBF35 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlGetSaclSecurityDescriptor, Type: IAT modification 0xF7291DE4-->805BBF00 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlImageDirectoryEntryToData, Type: IAT modification 0xF7291BC0-->804FE273 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlInitAnsiString, Type: IAT modification 0xF7291DA0-->804DA26D [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlInitializeSid, Type: IAT modification 0xF7291DC4-->80588972 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlInitUnicodeString, Type: IAT modification 0xF7291E28-->804DA2A5 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlLengthRequiredSid, Type: IAT modification 0xF7291DC8-->80581CA2 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlLengthSecurityDescriptor, Type: IAT modification 0xF7291E00-->805753C9 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlLengthSid, Type: IAT modification 0xF7291DC0-->805DF5CA [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlMapGenericMask, Type: IAT modification 0xF7291DCC-->8056FDCA [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlQueryRegistryValues, Type: IAT modification 0xF7291E24-->8059B907 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlSelfRelativeToAbsoluteSD, Type: IAT modification 0xF7291DE0-->805BEC83 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlSetDaclSecurityDescriptor, Type: IAT modification 0xF7291DDC-->80585052 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlSetGroupSecurityDescriptor, Type: IAT modification 0xF7291E1C-->805D347C [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlSetOwnerSecurityDescriptor, Type: IAT modification 0xF7291E20-->805DFC36 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlUnicodeStringToAnsiString, Type: IAT modification 0xF7291BDC-->8058C6CD [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlUnicodeStringToInteger, Type: IAT modification 0xF7291C30-->805E4C39 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlUpcaseUnicodeString, Type: IAT modification 0xF7291E2C-->80570494 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->RtlWriteRegistryValue, Type: IAT modification 0xF7291C18-->805B61D7 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->SeAccessCheck, Type: IAT modification 0xF7291E14-->8056C2C7 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->SeAppendPrivileges, Type: IAT modification 0xF7291E10-->8058AF21 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->SeExports, Type: IAT modification 0xF7291DF8-->8069AD50 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->SeFreePrivileges, Type: IAT modification 0xF7291E0C-->80581CCE [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->SeLockSubjectContext, Type: IAT modification 0xF7291E18-->8056C39C [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->SeSetSecurityDescriptorInfo, Type: IAT modification 0xF7291DFC-->805DFAD7 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->SeSinglePrivilegeCheck, Type: IAT modification 0xF7291D9C-->8057898F [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->SeUnlockSubjectContext, Type: IAT modification 0xF7291E08-->8056C3D1 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ZwClose, Type: IAT modification 0xF7291C1C-->804E3496 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ZwCreateFile, Type: IAT modification 0xF7291C90-->804E3586 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ZwEnumerateKey, Type: IAT modification 0xF7291C2C-->804E382E [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ZwLoadDriver, Type: IAT modification 0xF7291D88-->804E3A36 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ZwOpenKey, Type: IAT modification 0xF7291C20-->804E3BEE [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ZwPowerInformation, Type: IAT modification 0xF7291BE8-->804E3D06 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ZwQueryInformationFile, Type: IAT modification 0xF7291C8C-->804E3E6E [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->ZwReadFile, Type: IAT modification 0xF7291C88-->804E40EE [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->_alldiv, Type: IAT modification 0xF7291C44-->804DA42D [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->_allmul, Type: IAT modification 0xF7291CA4-->804DA5B6 [ntoskrnl.exe]
ndis.sys-->ntoskrnl.exe-->_except_handler3, Type: IAT modification 0xF7291CE4-->804E2EF8 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcCanIWrite, Type: IAT modification 0xF72D0C0C-->804F836E [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcCopyRead, Type: IAT modification 0xF72D103C-->8057B042 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcCopyWrite, Type: IAT modification 0xF72D0C08-->804F8648 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcDeferWrite, Type: IAT modification 0xF72D0DFC-->8052F7A5 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcFastCopyRead, Type: IAT modification 0xF72D0E58-->8058B0E9 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcFastCopyWrite, Type: IAT modification 0xF72D0E64-->805143F9 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcFastMdlReadWait, Type: IAT modification 0xF72D0E68-->8055F5C4 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcFlushCache, Type: IAT modification 0xF72D0BC8-->804ECEE7 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcGetDirtyPages, Type: IAT modification 0xF72D0E9C-->804F0014 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcInitializeCacheMap, Type: IAT modification 0xF72D0C70-->804F5140 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcMapData, Type: IAT modification 0xF72D0C7C-->8057BE0A [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcMdlRead, Type: IAT modification 0xF72D0DF4-->8061BE7D [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcMdlReadComplete, Type: IAT modification 0xF72D0C8C-->8061C130 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcMdlWriteAbort, Type: IAT modification 0xF72D0EE4-->8052FF0F [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcMdlWriteComplete, Type: IAT modification 0xF72D0C10-->8061C175 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcPinMappedData, Type: IAT modification 0xF72D0C80-->8057BFF4 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcPinRead, Type: IAT modification 0xF72D0C84-->8058ACDD [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcPrepareMdlWrite, Type: IAT modification 0xF72D0C18-->8052FFC3 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcPreparePinWrite, Type: IAT modification 0xF72D0C88-->80572491 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcPurgeCacheSection, Type: IAT modification 0xF72D0DE0-->804F7D86 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcRemapBcb, Type: IAT modification 0xF72D0EB4-->804F2AD9 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcSetAdditionalCacheAttributes, Type: IAT modification 0xF72D0E3C-->8050242A [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcSetBcbOwnerPointer, Type: IAT modification 0xF72D0D88-->80572572 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcSetDirtyPinnedData, Type: IAT modification 0xF72D0BF4-->804EF448 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcSetFileSizes, Type: IAT modification 0xF72D1040-->804F7592 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcSetLogHandleForFile, Type: IAT modification 0xF72D0C6C-->80582D00 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcSetReadAheadGranularity, Type: IAT modification 0xF72D0F7C-->804F549C [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcUninitializeCacheMap, Type: IAT modification 0xF72D0C68-->804F5570 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcUnpinData, Type: IAT modification 0xF72D1038-->8057BDBC [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcUnpinDataForThread, Type: IAT modification 0xF72D0D84-->8057259C [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcWaitForCurrentLazyWriterActivity, Type: IAT modification 0xF72D0D24-->805302F1 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->CcZeroData, Type: IAT modification 0xF72D0C94-->805E656C [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->DbgBreakPoint, Type: IAT modification 0xF72D0C9C-->804E2A66 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->DbgPrint, Type: IAT modification 0xF72D0CA0-->80501EE9 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExAcquireFastMutexUnsafe, Type: IAT modification 0xF72D1010-->804DBE15 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExAcquireResourceExclusiveLite, Type: IAT modification 0xF72D1034-->804DA3A4 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExAcquireResourceSharedLite, Type: IAT modification 0xF72D1030-->804E1980 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExAcquireSharedStarveExclusive, Type: IAT modification 0xF72D0E98-->804EF378 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExAcquireSharedWaitForExclusive, Type: IAT modification 0xF72D0F84-->804F2B23 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExAllocatePoolWithTag, Type: IAT modification 0xF72D1014-->80551005 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExDeleteNPagedLookasideList, Type: IAT modification 0xF72D1058-->8054AA1B [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExDeletePagedLookasideList, Type: IAT modification 0xF72D1054-->8054AA70 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExDeleteResourceLite, Type: IAT modification 0xF72D0E84-->804E9E92 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExFreePoolWithTag, Type: IAT modification 0xF72D101C-->805511E6 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExGetExclusiveWaiterCount, Type: IAT modification 0xF72D0D98-->80549D12 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExInitializeNPagedLookasideList, Type: IAT modification 0xF72D0F14-->80508A00 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExInitializePagedLookasideList, Type: IAT modification 0xF72D0F10-->805B6911 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExInitializeResourceLite, Type: IAT modification 0xF72D0E88-->804E9EEF [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExIsResourceAcquiredExclusiveLite, Type: IAT modification 0xF72D0BCC-->804F28C9 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExIsResourceAcquiredSharedLite, Type: IAT modification 0xF72D0CF8-->804EB012 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExQueueWorkItem, Type: IAT modification 0xF72D0CE4-->804DA3FC [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExRaiseStatus, Type: IAT modification 0xF72D0BC0-->804E31CC [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExReinitializeResourceLite, Type: IAT modification 0xF72D0FC8-->804FC287 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExReleaseFastMutexUnsafe, Type: IAT modification 0xF72D1024-->804DBE35 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExReleaseResourceForThreadLite, Type: IAT modification 0xF72D0D80-->804EFF24 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExReleaseResourceLite, Type: IAT modification 0xF72D1028-->804DC599 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ExUuidCreate, Type: IAT modification 0xF72D0F50-->805E9C7C [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlAddLargeMcbEntry, Type: IAT modification 0xF72D0C5C-->804F7EB3 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlAddToTunnelCache, Type: IAT modification 0xF72D0CB4-->80589455 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlAllocateFileLock, Type: IAT modification 0xF72D0FC4-->805167A9 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlAreNamesEqual, Type: IAT modification 0xF72D0BE4-->805796A1 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlBalanceReads, Type: IAT modification 0xF72D0E40-->805BBFE2 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlCheckLockForReadAccess, Type: IAT modification 0xF72D0F80-->804F45B3 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlCheckLockForWriteAccess, Type: IAT modification 0xF72D0BE8-->804F7E6A [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlCheckOplock, Type: IAT modification 0xF72D0BF0-->804E942F [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlCurrentBatchOplock, Type: IAT modification 0xF72D0D14-->80579721 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlDeleteKeyFromTunnelCache, Type: IAT modification 0xF72D0CC4-->805E5B4A [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlDeleteTunnelCache, Type: IAT modification 0xF72D0FE8-->805D2CC5 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlDissectName, Type: IAT modification 0xF72D0D38-->8057B388 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlDoesNameContainWildCards, Type: IAT modification 0xF72D0CF0-->8057B89A [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlFastCheckLockForRead, Type: IAT modification 0xF72D0EC8-->804F7292 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlFastCheckLockForWrite, Type: IAT modification 0xF72D0EC4-->8051655A [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlFastUnlockAll, Type: IAT modification 0xF72D0CB8-->804F56F1 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlFastUnlockAllByKey, Type: IAT modification 0xF72D0E7C-->80530F2F [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlFastUnlockSingle, Type: IAT modification 0xF72D0E78-->805161CE [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlFindInTunnelCache, Type: IAT modification 0xF72D0D2C-->80583E5B [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlFreeFileLock, Type: IAT modification 0xF72D0FC0-->804FE969 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlGetNextLargeMcbEntry, Type: IAT modification 0xF72D0C34-->804EC915 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlIncrementCcFastReadNotPossible, Type: IAT modification 0xF72D0E54-->8061CC15 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlIncrementCcFastReadNoWait, Type: IAT modification 0xF72D0E5C-->805305CE [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlIncrementCcFastReadResourceMiss, Type: IAT modification 0xF72D0E50-->805305E5 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlIncrementCcFastReadWait, Type: IAT modification 0xF72D0E60-->80574B0D [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlInitializeLargeMcb, Type: IAT modification 0xF72D0E70-->804FBC7A [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlInitializeOplock, Type: IAT modification 0xF72D0FDC-->80573E48 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlInitializeTunnelCache, Type: IAT modification 0xF72D0FD0-->805D2C50 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlIsFatDbcsLegal, Type: IAT modification 0xF72D0EC0-->805898AF [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlIsNameInExpression, Type: IAT modification 0xF72D0CEC-->8057B8D3 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlIsNtstatusExpected, Type: IAT modification 0xF72D0C98-->8050A382 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlIsTotalDeviceFailure, Type: IAT modification 0xF72D0D8C-->805038F0 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlLegalAnsiCharacterArray, Type: IAT modification 0xF72D0DCC-->804D8168 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlLookupLargeMcbEntry, Type: IAT modification 0xF72D0C58-->804ECD15 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlLookupLastLargeMcbEntry, Type: IAT modification 0xF72D0EA4-->804F910E [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlMdlReadCompleteDev, Type: IAT modification 0xF72D0F4C-->8053059D [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlMdlWriteCompleteDev, Type: IAT modification 0xF72D0F48-->8061CBC3 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlNormalizeNtstatus, Type: IAT modification 0xF72D0BC4-->8050A3B5 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlNotifyCleanup, Type: IAT modification 0xF72D0CC8-->805E2B73 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlNotifyFilterChangeDirectory, Type: IAT modification 0xF72D0CCC-->80587F0F [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlNotifyFilterReportChange, Type: IAT modification 0xF72D0CC0-->8057C0FA [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlNotifyInitializeSync, Type: IAT modification 0xF72D0FCC-->8059E2D8 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlNotifyUninitializeSync, Type: IAT modification 0xF72D0FEC-->80583A91 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlNotifyVolumeEvent, Type: IAT modification 0xF72D0CA8-->805AB55A [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlNumberOfRunsInLargeMcb, Type: IAT modification 0xF72D0EA8-->804F91C1 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlOplockFsctrl, Type: IAT modification 0xF72D0D04-->805DCF14 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlOplockIsFastIoPossible, Type: IAT modification 0xF72D0BEC-->8056FE85 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlPostPagingFileStackOverflow, Type: IAT modification 0xF72D0F8C-->80531DCB [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlPostStackOverflow, Type: IAT modification 0xF72D0F88-->80531DA8 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlPrivateLock, Type: IAT modification 0xF72D0E74-->80515D9A [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlProcessFileLock, Type: IAT modification 0xF72D0E80-->80500AA5 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlRemoveLargeMcbEntry, Type: IAT modification 0xF72D0C54-->804FD568 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlResetLargeMcb, Type: IAT modification 0xF72D0E90-->804ECA20 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlSplitLargeMcb, Type: IAT modification 0xF72D0EAC-->8053083B [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlTeardownPerStreamContexts, Type: IAT modification 0xF72D0FE0-->8057C788 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlTruncateLargeMcb, Type: IAT modification 0xF72D0EB0-->804F8FCB [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlUninitializeLargeMcb, Type: IAT modification 0xF72D0E6C-->804FC2E9 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->FsRtlUninitializeOplock, Type: IAT modification 0xF72D0FD8-->804FC241 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->InterlockedPopEntrySList, Type: IAT modification 0xF72D0BD4-->804E131F [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->InterlockedPushEntrySList, Type: IAT modification 0xF72D0BD8-->804E1343 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoAcquireCancelSpinLock, Type: IAT modification 0xF72D0EE0-->804E81D7 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoAcquireVpbSpinLock, Type: IAT modification 0xF72D0F94-->805058B0 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoAllocateErrorLogEntry, Type: IAT modification 0xF72D0FF8-->8050BB4D [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoAllocateMdl, Type: IAT modification 0xF72D0D64-->804EDDB1 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoBuildAsynchronousFsdRequest, Type: IAT modification 0xF72D0DB4-->804FC57C [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoBuildDeviceIoControlRequest, Type: IAT modification 0xF72D0DF0-->80518654 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoBuildPartialMdl, Type: IAT modification 0xF72D0D58-->804EE132 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoBuildSynchronousFsdRequest, Type: IAT modification 0xF72D0E0C-->80518D99 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoCancelIrp, Type: IAT modification 0xF72D0D40-->805184A1 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoCheckEaBufferValidity, Type: IAT modification 0xF72D0CF4-->8059E280 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoCheckQuotaBufferValidity, Type: IAT modification 0xF72D0F74-->8061FFC4 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoCheckShareAccess, Type: IAT modification 0xF72D0D10-->8057B23E [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoCreateDevice, Type: IAT modification 0xF72D0E4C-->805A170C [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoCreateStreamFileObjectLite, Type: IAT modification 0xF72D0C74-->8057BB83 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoDeleteDevice, Type: IAT modification 0xF72D0FE4-->80505740 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IofCallDriver, Type: IAT modification 0xF72D0D50-->804E13B9 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IofCompleteRequest, Type: IAT modification 0xF72D0CE0-->804E17CF [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoFileObjectType, Type: IAT modification 0xF72D0DA4-->80560D58 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoFreeErrorLogEntry, Type: IAT modification 0xF72D104C-->805322F5 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoFreeIrp, Type: IAT modification 0xF72D0D7C-->804EAF62 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoFreeMdl, Type: IAT modification 0xF72D0D5C-->804EDE66 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoGetCurrentProcess, Type: IAT modification 0xF72D0CE8-->804E5E36 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoGetDeviceObjectPointer, Type: IAT modification 0xF72D105C-->805E3B29 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoGetFileObjectGenericMapping, Type: IAT modification 0xF72D0E38-->80579683 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoGetRelatedDeviceObject, Type: IAT modification 0xF72D0E10-->804E8430 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoGetRequestorProcess, Type: IAT modification 0xF72D0CBC-->804F4331 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoGetStackLimits, Type: IAT modification 0xF72D0C28-->804DC214 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoGetTopLevelIrp, Type: IAT modification 0xF72D0C1C-->804E84B2 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoIsOperationSynchronous, Type: IAT modification 0xF72D0D4C-->804EAFCE [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoIsSystemThread, Type: IAT modification 0xF72D0EE8-->80514E4B [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoMakeAssociatedIrp, Type: IAT modification 0xF72D0D90-->80513B28 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoPageRead, Type: IAT modification 0xF72D1048-->804FB20C [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoRaiseInformationalHardError, Type: IAT modification 0xF72D0ECC-->805324A7 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoRegisterDriverReinitialization, Type: IAT modification 0xF72D0F30-->805C5D02 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoRegisterFileSystem, Type: IAT modification 0xF72D0F3C-->805AF1B5 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoReleaseCancelSpinLock, Type: IAT modification 0xF72D0EDC-->804E81BD [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoReleaseVpbSpinLock, Type: IAT modification 0xF72D0F90-->805058CC [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoRemoveShareAccess, Type: IAT modification 0xF72D0CB0-->80579BF4 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoSetDeviceToVerify, Type: IAT modification 0xF72D0FFC-->8050A368 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoSetInformation, Type: IAT modification 0xF72D0D00-->8062098F [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoSetShareAccess, Type: IAT modification 0xF72D0D0C-->80579C54 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoSetTopLevelIrp, Type: IAT modification 0xF72D0CD8-->804E8495 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoSynchronousPageWrite, Type: IAT modification 0xF72D1050-->804EEC16 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoUpdateShareAccess, Type: IAT modification 0xF72D0D08-->8057BB20 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoVolumeDeviceToDosName, Type: IAT modification 0xF72D0ED8-->80534DC2 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->IoWriteErrorLogEntry, Type: IAT modification 0xF72D0FF4-->8050BDAD [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KdDebuggerEnabled, Type: IAT modification 0xF72D0CA4-->8055BA41 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeBugCheck, Type: IAT modification 0xF72D0F40-->80537659 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeBugCheckEx, Type: IAT modification 0xF72D0C90-->8053767F [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeClearEvent, Type: IAT modification 0xF72D0D34-->804E5AA4 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeDelayExecutionThread, Type: IAT modification 0xF72D0D9C-->804E14F6 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeEnterCriticalRegion, Type: IAT modification 0xF72D0CDC-->804D95F2 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeGetCurrentThread, Type: IAT modification 0xF72D0D68-->804DB622 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeInitializeDpc, Type: IAT modification 0xF72D0F34-->804E7DB8 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeInitializeEvent, Type: IAT modification 0xF72D0D48-->804E7DE6 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeInitializeMutant, Type: IAT modification 0xF72D0F44-->804FA7EC [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeInitializeSpinLock, Type: IAT modification 0xF72D0E8C-->804E2417 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeInitializeTimer, Type: IAT modification 0xF72D0F38-->804EC4FB [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeLeaveCriticalRegion, Type: IAT modification 0xF72D0CD4-->804D9604 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeNumberProcessors, Type: IAT modification 0xF72D0DF8-->8055BA60 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeQuerySystemTime, Type: IAT modification 0xF72D0BDC-->804D95AF [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeReleaseMutant, Type: IAT modification 0xF72D0C60-->804D9B4C [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeSetEvent, Type: IAT modification 0xF72D0CFC-->804E20A9 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeSetKernelStackSwapEnable, Type: IAT modification 0xF72D0D44-->804F45DC [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeSetPriorityThread, Type: IAT modification 0xF72D0EA0-->804EC21C [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeSetTimer, Type: IAT modification 0xF72D0E94-->804E216F [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeStackAttachProcess, Type: IAT modification 0xF72D1064-->804F3FC5 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeTickCount, Type: IAT modification 0xF72D1000-->8055A000 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeUnstackDetachProcess, Type: IAT modification 0xF72D1060-->804F4029 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->KeWaitForSingleObject, Type: IAT modification 0xF72D0C78-->804DC400 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->memmove, Type: IAT modification 0xF72D1020-->804DADC5 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->MmBuildMdlForNonPagedPool, Type: IAT modification 0xF72D0D78-->804EDEBC [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->MmCanFileBeTruncated, Type: IAT modification 0xF72D0BFC-->804F719D [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->MmFlushImageSection, Type: IAT modification 0xF72D0CD0-->804F710E [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->MmIsThisAnNtAsSystem, Type: IAT modification 0xF72D0F18-->80509655 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->MmMapLockedPagesSpecifyCache, Type: IAT modification 0xF72D0C14-->804EDF4C [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->MmPrefetchPages, Type: IAT modification 0xF72D0E14-->8059AB16 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->MmProbeAndLockPages, Type: IAT modification 0xF72D0D60-->804F6BFF [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->MmQuerySystemSize, Type: IAT modification 0xF72D0F1C-->8050894A [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->MmSetAddressRangeModified, Type: IAT modification 0xF72D0BF8-->804EF03B [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->MmUnlockPages, Type: IAT modification 0xF72D0DB0-->804F6EB5 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->MmUnmapLockedPages, Type: IAT modification 0xF72D0D54-->804EE0B8 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->NlsMbOemCodePageTag, Type: IAT modification 0xF72D0DD4-->8069A720 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->NlsOemLeadByteInfo, Type: IAT modification 0xF72D0DD0-->8056C4C0 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ObfDereferenceObject, Type: IAT modification 0xF72D0C64-->804E1930 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ObfReferenceObject, Type: IAT modification 0xF72D0D94-->804DA06B [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ObGetObjectSecurity, Type: IAT modification 0xF72D0D1C-->8056C287 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ObQueryNameString, Type: IAT modification 0xF72D0E44-->8058F2D9 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ObQueryObjectAuditingByHandle, Type: IAT modification 0xF72D0DDC-->80589506 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ObReferenceObjectByHandle, Type: IAT modification 0xF72D0DA0-->8056C559 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ObReferenceObjectByPointer, Type: IAT modification 0xF72D1094-->804EA5A1 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ObReleaseObjectSecurity, Type: IAT modification 0xF72D0D18-->8056C241 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->PoQueueShutdownWorkItem, Type: IAT modification 0xF72D1078-->805C5BB2 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ProbeForRead, Type: IAT modification 0xF72D0E08-->805838BB [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ProbeForWrite, Type: IAT modification 0xF72D0E18-->8056E89F [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->PsCreateSystemThread, Type: IAT modification 0xF72D1070-->805762A6 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->PsDereferenceImpersonationToken, Type: IAT modification 0xF72D1084-->80635413 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->PsImpersonateClient, Type: IAT modification 0xF72D1088-->80580C82 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->PsLookupProcessByProcessId, Type: IAT modification 0xF72D1068-->8057F50F [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->PsReferenceImpersonationToken, Type: IAT modification 0xF72D108C-->8056C2A5 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->PsRevertToSelf, Type: IAT modification 0xF72D1080-->805B1467 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlAddAccessAllowedAce, Type: IAT modification 0xF72D0EFC-->805852BE [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlAppendUnicodeStringToString, Type: IAT modification 0xF72D0ED0-->804F7BCC [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlAreBitsClear, Type: IAT modification 0xF72D0C48-->804F8F41 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlAreBitsSet, Type: IAT modification 0xF72D0C38-->804F9056 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlClearBits, Type: IAT modification 0xF72D0C30-->804EA9A5 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlCompareMemory, Type: IAT modification 0xF72D0BE0-->804E5080 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlCompareString, Type: IAT modification 0xF72D0DC4-->8063BFEB [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlCompressBuffer, Type: IAT modification 0xF72D0DAC-->80671217 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlCopyUnicodeString, Type: IAT modification 0xF72D0ED4-->804F2DB1 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlCreateAcl, Type: IAT modification 0xF72D0F00-->8057545D [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlCreateSecurityDescriptor, Type: IAT modification 0xF72D0EF8-->8056FC49 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlDecompressBuffer, Type: IAT modification 0xF72D0D6C-->8063D129 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlDecompressFragment, Type: IAT modification 0xF72D0D70-->805DD2DD [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlDelete, Type: IAT modification 0xF72D0F54-->804F2FC1 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlDeleteElementGenericTableAvl, Type: IAT modification 0xF72D0CAC-->804FC1C2 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlEnumerateGenericTableAvl, Type: IAT modification 0xF72D0FF0-->80500A63 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlEnumerateGenericTableWithoutSplayingAvl, Type: IAT modification 0xF72D0FBC-->80500A88 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlEqualSid, Type: IAT modification 0xF72D0F6C-->80573938 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlFillMemoryUlong, Type: IAT modification 0xF72D1044-->804E5170 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlFindClearBits, Type: IAT modification 0xF72D0C4C-->804F044D [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlFindClearRuns, Type: IAT modification 0xF72D0C50-->80503A22 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlFindLastBackwardRunClear, Type: IAT modification 0xF72D0C3C-->80503591 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlFindNextForwardRunClear, Type: IAT modification 0xF72D100C-->80513454 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlFreeOemString, Type: IAT modification 0xF72D0EB8-->805E5654 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlGenerate8dot3Name, Type: IAT modification 0xF72D0C00-->80588A90 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlGetCompressionWorkSpaceSize, Type: IAT modification 0xF72D0D74-->80665146 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlGetOwnerSecurityDescriptor, Type: IAT modification 0xF72D0D28-->805BBF35 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlInitializeBitMap, Type: IAT modification 0xF72D1018-->8057BF4E [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlInitializeGenericTableAvl, Type: IAT modification 0xF72D0F78-->804FF785 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlInitializeSid, Type: IAT modification 0xF72D0F08-->80588972 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlInitString, Type: IAT modification 0xF72D0DC8-->804DA235 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlInitUnicodeString, Type: IAT modification 0xF72D0BD0-->804DA2A5 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlInsertElementGenericTableAvl, Type: IAT modification 0xF72D0FD4-->80519407 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlInsertElementGenericTableFullAvl, Type: IAT modification 0xF72D0F60-->804FBBEB [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlLengthRequiredSid, Type: IAT modification 0xF72D0F0C-->80581CA2 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlLengthSecurityDescriptor, Type: IAT modification 0xF72D0EEC-->805753C9 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlLengthSid, Type: IAT modification 0xF72D0E20-->805DF5CA [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlLookupElementGenericTableAvl, Type: IAT modification 0xF72D0DB8-->8051529A [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlLookupElementGenericTableFullAvl, Type: IAT modification 0xF72D0F64-->804F5BDE [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlMapGenericMask, Type: IAT modification 0xF72D0E34-->8056FDCA [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlNumberOfClearBits, Type: IAT modification 0xF72D0C40-->80503644 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlSetBits, Type: IAT modification 0xF72D0C2C-->804F03FD [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlSetDaclSecurityDescriptor, Type: IAT modification 0xF72D0EF4-->80585052 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlSplay, Type: IAT modification 0xF72D0F58-->804F345D [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlSubAuthoritySid, Type: IAT modification 0xF72D0F04-->805DC816 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlUnicodeStringToCountedOemString, Type: IAT modification 0xF72D0EBC-->805899A0 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlUpcaseUnicodeString, Type: IAT modification 0xF72D0C04-->80570494 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlUpperString, Type: IAT modification 0xF72D0DC0-->805C80F6 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlValidSid, Type: IAT modification 0xF72D0F5C-->8057537B [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->RtlVerifyVersionInfo, Type: IAT modification 0xF72D0F28-->80509ACC [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeAccessCheck, Type: IAT modification 0xF72D0E2C-->8056C2C7 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeAppendPrivileges, Type: IAT modification 0xF72D0FB4-->8058AF21 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeAssignSecurity, Type: IAT modification 0xF72D0EF0-->805751E4 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeAuditHardLinkCreation, Type: IAT modification 0xF72D0DE8-->806409AB [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeAuditingFileEventsWithContext, Type: IAT modification 0xF72D0FB8-->80579876 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeAuditingHardLinkEventsWithContext, Type: IAT modification 0xF72D0DEC-->80642112 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeCaptureSubjectContext, Type: IAT modification 0xF72D0DBC-->80573991 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeDeassignSecurity, Type: IAT modification 0xF72D0FA0-->805884D4 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeDeleteObjectAuditAlarm, Type: IAT modification 0xF72D0DD8-->80641AB3 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeExports, Type: IAT modification 0xF72D0F70-->8069AD50 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeFreePrivileges, Type: IAT modification 0xF72D0F9C-->80581CCE [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeLockSubjectContext, Type: IAT modification 0xF72D0E30-->8056C39C [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeOpenObjectAuditAlarm, Type: IAT modification 0xF72D0FAC-->8056DCB2 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeOpenObjectForDeleteAuditAlarm, Type: IAT modification 0xF72D0FB0-->8064236F [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SePrivilegeCheck, Type: IAT modification 0xF72D0D20-->805738F5 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeQueryInformationToken, Type: IAT modification 0xF72D0F68-->8058FB61 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeQuerySecurityDescriptorInfo, Type: IAT modification 0xF72D0FA8-->805734CB [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeReleaseSubjectContext, Type: IAT modification 0xF72D0E24-->8056CA9C [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeSetSecurityDescriptorInfo, Type: IAT modification 0xF72D0FA4-->805DFAD7 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeSinglePrivilegeCheck, Type: IAT modification 0xF72D0D30-->8057898F [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeUnlockSubjectContext, Type: IAT modification 0xF72D0E28-->8056C3D1 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->SeValidSecurityDescriptor, Type: IAT modification 0xF72D0F98-->80583CA1 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->VerSetConditionMask, Type: IAT modification 0xF72D0F2C-->80509A5D [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->wcslen, Type: IAT modification 0xF72D0E48-->804EA4A9 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ZwAllocateVirtualMemory, Type: IAT modification 0xF72D1090-->804E33F6 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ZwClose, Type: IAT modification 0xF72D0E00-->804E3496 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ZwCreateEvent, Type: IAT modification 0xF72D1074-->804E355E [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ZwCreateFile, Type: IAT modification 0xF72D0E04-->804E3586 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ZwFreeVirtualMemory, Type: IAT modification 0xF72D107C-->804E391E [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ZwOpenKey, Type: IAT modification 0xF72D0F24-->804E3BEE [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ZwQueryValueKey, Type: IAT modification 0xF72D0F20-->804E4076 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->ZwWaitForSingleObject, Type: IAT modification 0xF72D106C-->804E47CE [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->_abnormal_termination, Type: IAT modification 0xF72D1004-->804E30C4 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->_alldiv, Type: IAT modification 0xF72D0E1C-->804DA42D [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->_allmul, Type: IAT modification 0xF72D0C44-->804DA5B6 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->_alloca_probe, Type: IAT modification 0xF72D0D3C-->804DA5EA [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->_allrem, Type: IAT modification 0xF72D0DE4-->804DA627 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->_allshl, Type: IAT modification 0xF72D0C24-->804DA6DB [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->_allshr, Type: IAT modification 0xF72D102C-->804DA6FA [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->_aullshr, Type: IAT modification 0xF72D0C20-->804DA88D [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->_except_handler3, Type: IAT modification 0xF72D1008-->804E2EF8 [ntoskrnl.exe]
ntfs.sys-->ntoskrnl.exe-->_local_unwind2, Type: IAT modification 0xF72D0DA8-->804E3054 [ntoskrnl.exe]
ntoskrnl.exe+0x00001398, Type: Inline - RelativeJump 0x804D8398-->804D839E [ntoskrnl.exe]
ntoskrnl.exe+0x000017BD, Type: Inline - RelativeJump 0x804D87BD-->804D8838 [ntoskrnl.exe]
ntoskrnl.exe+0x000017CE, Type: Inline - RelativeJump 0x804D87CE-->804D8845 [ntoskrnl.exe]
ntoskrnl.exe+0x000017D4, Type: Inline - RelativeJump 0x804D87D4-->804D880C [ntoskrnl.exe]
ntoskrnl.exe+0x000017DC, Type: Inline - RelativeJump 0x804D87DC-->804D8847 [ntoskrnl.exe]
ntoskrnl.exe+0x000017E2, Type: Inline - RelativeJump 0x804D87E2-->804D8864 [ntoskrnl.exe]
ntoskrnl.exe+0x000017FA, Type: Inline - RelativeJump 0x804D87FA-->804D8873 [ntoskrnl.exe]
ntoskrnl.exe+0x00001814, Type: Inline - RelativeJump 0x804D8814-->804D881E [ntoskrnl.exe]
ntoskrnl.exe+0x0000182C, Type: Inline - RelativeJump 0x804D882C-->804D889B [ntoskrnl.exe]
ntoskrnl.exe+0x00001830, Type: Inline - RelativeJump 0x804D8830-->804D88A7 [ntoskrnl.exe]
ntoskrnl.exe+0x0000187C, Type: Inline - RelativeJump 0x804D887C-->804D88F1 [ntoskrnl.exe]
ntoskrnl.exe+0x00001892, Type: Inline - RelativeJump 0x804D8892-->804D8898 [ntoskrnl.exe]
ntoskrnl.exe+0x00001894, Type: Inline - RelativeJump 0x804D8894-->804D889A [ntoskrnl.exe]
ntoskrnl.exe+0x00001896, Type: Inline - RelativeJump 0x804D8896-->804D889C [ntoskrnl.exe]
ntoskrnl.exe+0x0000189E, Type: Inline - RelativeJump 0x804D889E-->804D88A4 [ntoskrnl.exe]
ntoskrnl.exe+0x000018A8, Type: Inline - RelativeJump 0x804D88A8-->804D88AE [ntoskrnl.exe]
ntoskrnl.exe+0x000018AC, Type: Inline - RelativeJump 0x804D88AC-->804D88B2 [ntoskrnl.exe]
ntoskrnl.exe+0x000018C2, Type: Inline - RelativeJump 0x804D88C2-->804D88C8 [ntoskrnl.exe]
ntoskrnl.exe+0x000018F2, Type: Inline - RelativeJump 0x804D88F2-->804D88F8 [ntoskrnl.exe]
ntoskrnl.exe+0x000018FE, Type: Inline - RelativeJump 0x804D88FE-->804D8904 [ntoskrnl.exe]
ntoskrnl.exe+0x00001904, Type: Inline - RelativeJump 0x804D8904-->804D890A [ntoskrnl.exe]
ntoskrnl.exe+0x00001908, Type: Inline - RelativeJump 0x804D8908-->804D890E [ntoskrnl.exe]
ntoskrnl.exe+0x0000191A, Type: Inline - RelativeJump 0x804D891A-->804D8920 [ntoskrnl.exe]
ntoskrnl.exe+0x00001920, Type: Inline - RelativeJump 0x804D8920-->804D8926 [ntoskrnl.exe]
ntoskrnl.exe+0x00001938, Type: Inline - RelativeJump 0x804D8938-->804D893E [ntoskrnl.exe]
ntoskrnl.exe+0x0000193C, Type: Inline - RelativeJump 0x804D893C-->804D8942 [ntoskrnl.exe]
ntoskrnl.exe+0x00001940, Type: Inline - RelativeJump 0x804D8940-->804D8946 [ntoskrnl.exe]
ntoskrnl.exe+0x00001942, Type: Inline - RelativeJump 0x804D8942-->804D8948 [ntoskrnl.exe]
ntoskrnl.exe+0x0000194E, Type: Inline - RelativeJump 0x804D894E-->804D8954 [ntoskrnl.exe]
ntoskrnl.exe+0x00001954, Type: Inline - RelativeJump 0x804D8954-->804D895A [ntoskrnl.exe]
ntoskrnl.exe+0x00001958, Type: Inline - RelativeJump 0x804D8958-->804D895E [ntoskrnl.exe]
ntoskrnl.exe+0x0000195E, Type: Inline - RelativeJump 0x804D895E-->804D8964 [ntoskrnl.exe]
ntoskrnl.exe+0x00001960, Type: Inline - RelativeJump 0x804D8960-->804D8966 [ntoskrnl.exe]
ntoskrnl.exe+0x0000254E, Type: Inline - RelativeJump 0x804D954E-->804D9554 [ntoskrnl.exe]
ntoskrnl.exe+0x00002B4D, Type: Inline - DirectCall 0x804D9B4D-->804D8088 [ntoskrnl.exe]
ntoskrnl.exe+0x00002B5D, Type: Inline - RelativeJump 0x804D9B5D-->804D9B6B [ntoskrnl.exe]
ntoskrnl.exe+0x000031FA, Type: Inline - PushRet 0x804DA1FA-->83640008 [unknown_code_page]
ntoskrnl.exe+0x000032A7, Type: Inline - RelativeJump 0x804DA2A7-->804DA2D1 [ntoskrnl.exe]
ntoskrnl.exe+0x000032B7, Type: Inline - RelativeJump 0x804DA2B7-->804DA2E1 [ntoskrnl.exe]
ntoskrnl.exe+0x00003882, Type: Inline - PushRet 0x804DA882-->F9800010 [unknown_code_page]
ntoskrnl.exe+0x00003D93, Type: Inline - PushRet 0x804DAD93-->8A00498D [unknown_code_page]
ntoskrnl.exe+0x00003DD4, Type: Inline - RelativeJump 0x804DADD4-->804DADE9 [ntoskrnl.exe]
ntoskrnl.exe+0x00004199, Type: Inline - RelativeJump 0x804DB199-->804DB1D1 [ntoskrnl.exe]
ntoskrnl.exe+0x00004569, Type: Inline - RelativeJump 0x804DB569-->804DB57D [ntoskrnl.exe]
ntoskrnl.exe+0x00004572, Type: Inline - RelativeJump 0x804DB572-->804DB595 [ntoskrnl.exe]
ntoskrnl.exe+0x000046AE, Type: Inline - DirectCall 0x804DB6AE-->804D8030 [ntoskrnl.exe]
ntoskrnl.exe+0x000046E0, Type: Inline - DirectCall 0x804DB6E0-->804D8090 [ntoskrnl.exe]
ntoskrnl.exe+0x000046E6, Type: Inline - RelativeJump 0x804DB6E6-->804DB92A [ntoskrnl.exe]
ntoskrnl.exe+0x000046EE, Type: Inline - RelativeCall 0x804DB6EE-->804DB702 [ntoskrnl.exe]
ntoskrnl.exe+0x00004718, Type: Inline - RelativeJump 0x804DB718-->804DB7BA [ntoskrnl.exe]
ntoskrnl.exe+0x000047CD, Type: Inline - RelativeJump 0x804DB7CD-->804DB720 [ntoskrnl.exe]
ntoskrnl.exe+0x00004963, Type: Inline - RelativeJump 0x804DB963-->804DB901 [ntoskrnl.exe]
ntoskrnl.exe+0x00004C5E, Type: Inline - PushRet 0x804DBC5E-->94680010 [unknown_code_page]
ntoskrnl.exe+0x00004D61, Type: Inline - RelativeJump 0x804DBD61-->804DBD80 [ntoskrnl.exe]
ntoskrnl.exe+0x00004E35, Type: Inline - RelativeJump 0x804DBE35-->804DBE40 [ntoskrnl.exe]
ntoskrnl.exe+0x00004E47, Type: Inline - PushRet 0x804DBE47-->EC8B55CC [unknown_code_page]
ntoskrnl.exe+0x00005126, Type: Inline - RelativeJump 0x804DC126-->804DC143 [ntoskrnl.exe]
ntoskrnl.exe+0x000052BB, Type: Inline - RelativeJump 0x804DC2BB-->805188D9 [ntoskrnl.exe]
ntoskrnl.exe+0x00005429, Type: Inline - RelativeJump 0x804DC429-->80515C15 [ntoskrnl.exe]
ntoskrnl.exe+0x00005447, Type: Inline - RelativeJump 0x804DC447-->804E5B2F [ntoskrnl.exe]
ntoskrnl.exe+0x00005486, Type: Inline - RelativeJump 0x804DC486-->804DC538 [ntoskrnl.exe]
ntoskrnl.exe+0x0000548E, Type: Inline - RelativeJump 0x804DC48E-->804DC538 [ntoskrnl.exe]
ntoskrnl.exe+0x00005581, Type: Inline - RelativeCall 0x804DC581-->804E68BC [ntoskrnl.exe]
ntoskrnl.exe+0x000055E4, Type: Inline - RelativeJump 0x804DC5E4-->804DC56F [ntoskrnl.exe]
ntoskrnl.exe+0x000055FD, Type: Inline - DirectCall 0x804DC5FD-->804D8114 [ntoskrnl.exe]
ntoskrnl.exe+0x0000562A, Type: Inline - RelativeJump 0x804DC62A-->8052C6D6 [ntoskrnl.exe]
ntoskrnl.exe+0x00005634, Type: Inline - RelativeJump 0x804DC634-->804F9524 [ntoskrnl.exe]
ntoskrnl.exe+0x0000563F, Type: Inline - RelativeJump 0x804DC63F-->804F9524 [ntoskrnl.exe]
ntoskrnl.exe+0x0000564A, Type: Inline - RelativeJump 0x804DC64A-->804DC540 [ntoskrnl.exe]
ntoskrnl.exe+0x00005651, Type: Inline - RelativeJump 0x804DC651-->804DC73B [ntoskrnl.exe]
ntoskrnl.exe+0x000056CC, Type: Inline - RelativeJump 0x804DC6CC-->804DC6D6 [ntoskrnl.exe]
ntoskrnl.exe+0x000056E0, Type: Inline - RelativeJump 0x804DC6E0-->80518963 [ntoskrnl.exe]
ntoskrnl.exe+0x00005761, Type: Inline - RelativeCall 0x804DC761-->804E2554 [ntoskrnl.exe]
ntoskrnl.exe+0x00005766, Type: Inline - DirectJump 0x804DC766-->804D8030 [ntoskrnl.exe]
ntoskrnl.exe+0x00005784, Type: Inline - RelativeCall 0x804DC784-->804E2554 [ntoskrnl.exe]
ntoskrnl.exe+0x000057D1, Type: Inline - RelativeCall 0x804DC7D1-->804DC667 [ntoskrnl.exe]
ntoskrnl.exe+0x000057E0, Type: Inline - RelativeCall 0x804DC7E0-->804DC942 [ntoskrnl.exe]
ntoskrnl.exe+0x00005835, Type: Inline - RelativeCall 0x804DC835-->804DC942 [ntoskrnl.exe]
ntoskrnl.exe+0x00005885, Type: Inline - RelativeCall 0x804DC885-->804DCCC1 [ntoskrnl.exe]
ntoskrnl.exe+0x00005899, Type: Inline - RelativeJump 0x804DC899-->804DC920 [ntoskrnl.exe]
ntoskrnl.exe+0x00005950, Type: Inline - RelativeCall 0x804DC950-->804E2528 [ntoskrnl.exe]
ntoskrnl.exe+0x000059B7, Type: Inline - RelativeJump 0x804DC9B7-->804DCA9C [ntoskrnl.exe]
ntoskrnl.exe+0x00005A08, Type: Inline - RelativeCall 0x804DCA08-->804E2554 [ntoskrnl.exe]
ntoskrnl.exe+0x00005A11, Type: Inline - RelativeJump 0x804DCA11-->804DCA38 [ntoskrnl.exe]
ntoskrnl.exe+0x00005AE0, Type: Inline - RelativeJump 0x804DCAE0-->804DC97D [ntoskrnl.exe]
ntoskrnl.exe+0x00005AE8, Type: Inline - RelativeCall 0x804DCAE8-->806842FF [ntoskrnl.exe]
ntoskrnl.exe+0x00005AED, Type: Inline - RelativeJump 0x804DCAED-->804DC97D [ntoskrnl.exe]
ntoskrnl.exe+0x00005B49, Type: Inline - RelativeCall 0x804DCB49-->804E2528 [ntoskrnl.exe]
ntoskrnl.exe+0x00005C84, Type: Inline - DirectCall 0x804DCC84-->804D8030 [ntoskrnl.exe]
ntoskrnl.exe+0x00005C8C, Type: Inline - RelativeJump 0x804DCC8C-->804DCBEF [ntoskrnl.exe]
ntoskrnl.exe+0x00005C9D, Type: Inline - RelativeCall 0x804DCC9D-->804E2554 [ntoskrnl.exe]
ntoskrnl.exe+0x00005CA8, Type: Inline - RelativeCall 0x804DCCA8-->804E2528 [ntoskrnl.exe]
ntoskrnl.exe+0x00005CAD, Type: Inline - RelativeJump 0x804DCCAD-->804DCC80 [ntoskrnl.exe]
ntoskrnl.exe+0x00005CBD, Type: Inline - RelativeJump 0x804DCCBD-->804DCC80 [ntoskrnl.exe]
ntoskrnl.exe+0x00005D15, Type: Inline - RelativeJump 0x804DCD15-->804DCD8B [ntoskrnl.exe]
ntoskrnl.exe+0x00005D27, Type: Inline - RelativeJump 0x804DCD27-->804DCDA4 [ntoskrnl.exe]
ntoskrnl.exe+0x00005D4B, Type: Inline - PushRet 0x804DCD4B-->EB0006C6 [unknown_code_page]
ntoskrnl.exe+0x00005DC9, Type: Inline - RelativeJump 0x804DCDC9-->804DCDD4 [ntoskrnl.exe]
ntoskrnl.exe+0x00005E49, Type: Inline - DirectCall 0x804DCE49-->804D8110 [ntoskrnl.exe]
ntoskrnl.exe+0x00005E90, Type: Inline - RelativeJump 0x804DCE90-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005E9D, Type: Inline - RelativeJump 0x804DCE9D-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005EA4, Type: Inline - RelativeJump 0x804DCEA4-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005EB1, Type: Inline - RelativeJump 0x804DCEB1-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005EB8, Type: Inline - RelativeJump 0x804DCEB8-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005EC5, Type: Inline - RelativeJump 0x804DCEC5-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005ECC, Type: Inline - RelativeJump 0x804DCECC-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005ED9, Type: Inline - RelativeJump 0x804DCED9-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005EE0, Type: Inline - RelativeJump 0x804DCEE0-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005EED, Type: Inline - RelativeJump 0x804DCEED-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005F01, Type: Inline - RelativeJump 0x804DCF01-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005F08, Type: Inline - RelativeJump 0x804DCF08-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005F15, Type: Inline - RelativeJump 0x804DCF15-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005F1C, Type: Inline - RelativeJump 0x804DCF1C-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005F29, Type: Inline - RelativeJump 0x804DCF29-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005F3D, Type: Inline - RelativeJump 0x804DCF3D-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005F44, Type: Inline - RelativeJump 0x804DCF44-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005F51, Type: Inline - RelativeJump 0x804DCF51-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005F58, Type: Inline - RelativeJump 0x804DCF58-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005F65, Type: Inline - RelativeJump 0x804DCF65-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005F79, Type: Inline - RelativeJump 0x804DCF79-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005F80, Type: Inline - RelativeJump 0x804DCF80-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005F8D, Type: Inline - RelativeJump 0x804DCF8D-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005FA1, Type: Inline - RelativeJump 0x804DCFA1-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005FB5, Type: Inline - RelativeJump 0x804DCFB5-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005FBC, Type: Inline - RelativeJump 0x804DCFBC-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005FC9, Type: Inline - RelativeJump 0x804DCFC9-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005FDD, Type: Inline - RelativeJump 0x804DCFDD-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005FE4, Type: Inline - RelativeJump 0x804DCFE4-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00005FF1, Type: Inline - RelativeJump 0x804DCFF1-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006005, Type: Inline - RelativeJump 0x804DD005-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006019, Type: Inline - RelativeJump 0x804DD019-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006020, Type: Inline - RelativeJump 0x804DD020-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000602D, Type: Inline - RelativeJump 0x804DD02D-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006034, Type: Inline - RelativeJump 0x804DD034-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006041, Type: Inline - RelativeJump 0x804DD041-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006055, Type: Inline - RelativeJump 0x804DD055-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006069, Type: Inline - RelativeJump 0x804DD069-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000607D, Type: Inline - RelativeJump 0x804DD07D-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006091, Type: Inline - RelativeJump 0x804DD091-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006098, Type: Inline - RelativeJump 0x804DD098-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000060A5, Type: Inline - RelativeJump 0x804DD0A5-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000060B9, Type: Inline - RelativeJump 0x804DD0B9-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000060CD, Type: Inline - RelativeJump 0x804DD0CD-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000060E1, Type: Inline - RelativeJump 0x804DD0E1-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000060F5, Type: Inline - RelativeJump 0x804DD0F5-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006109, Type: Inline - RelativeJump 0x804DD109-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006110, Type: Inline - RelativeJump 0x804DD110-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000611D, Type: Inline - RelativeJump 0x804DD11D-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006131, Type: Inline - RelativeJump 0x804DD131-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006138, Type: Inline - RelativeJump 0x804DD138-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006145, Type: Inline - RelativeJump 0x804DD145-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000614C, Type: Inline - RelativeJump 0x804DD14C-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006159, Type: Inline - RelativeJump 0x804DD159-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006160, Type: Inline - RelativeJump 0x804DD160-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000616D, Type: Inline - RelativeJump 0x804DD16D-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006174, Type: Inline - RelativeJump 0x804DD174-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006181, Type: Inline - RelativeJump 0x804DD181-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006195, Type: Inline - RelativeJump 0x804DD195-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000619C, Type: Inline - RelativeJump 0x804DD19C-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000061A9, Type: Inline - RelativeJump 0x804DD1A9-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000061BD, Type: Inline - RelativeJump 0x804DD1BD-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000061D1, Type: Inline - RelativeJump 0x804DD1D1-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000061D8, Type: Inline - RelativeJump 0x804DD1D8-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000061E5, Type: Inline - RelativeJump 0x804DD1E5-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000061F9, Type: Inline - RelativeJump 0x804DD1F9-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000620D, Type: Inline - RelativeJump 0x804DD20D-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006221, Type: Inline - RelativeJump 0x804DD221-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006235, Type: Inline - RelativeJump 0x804DD235-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006249, Type: Inline - RelativeJump 0x804DD249-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006250, Type: Inline - RelativeJump 0x804DD250-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000625D, Type: Inline - RelativeJump 0x804DD25D-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006271, Type: Inline - RelativeJump 0x804DD271-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006278, Type: Inline - RelativeJump 0x804DD278-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006285, Type: Inline - RelativeJump 0x804DD285-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006299, Type: Inline - RelativeJump 0x804DD299-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000062AD, Type: Inline - RelativeJump 0x804DD2AD-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000062B4, Type: Inline - RelativeJump 0x804DD2B4-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000062C1, Type: Inline - RelativeJump 0x804DD2C1-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000062D5, Type: Inline - RelativeJump 0x804DD2D5-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000062E9, Type: Inline - RelativeJump 0x804DD2E9-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000062FD, Type: Inline - RelativeJump 0x804DD2FD-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006311, Type: Inline - RelativeJump 0x804DD311-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006318, Type: Inline - RelativeJump 0x804DD318-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006325, Type: Inline - RelativeJump 0x804DD325-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000632C, Type: Inline - RelativeJump 0x804DD32C-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006339, Type: Inline - RelativeJump 0x804DD339-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000634D, Type: Inline - RelativeJump 0x804DD34D-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006354, Type: Inline - RelativeJump 0x804DD354-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006361, Type: Inline - RelativeJump 0x804DD361-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006368, Type: Inline - RelativeJump 0x804DD368-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006375, Type: Inline - RelativeJump 0x804DD375-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006389, Type: Inline - RelativeJump 0x804DD389-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006390, Type: Inline - RelativeJump 0x804DD390-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000639D, Type: Inline - RelativeJump 0x804DD39D-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000063A4, Type: Inline - RelativeJump 0x804DD3A4-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000063B1, Type: Inline - RelativeJump 0x804DD3B1-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000063B8, Type: Inline - RelativeJump 0x804DD3B8-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000063C5, Type: Inline - RelativeJump 0x804DD3C5-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000063D9, Type: Inline - RelativeJump 0x804DD3D9-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000063ED, Type: Inline - RelativeJump 0x804DD3ED-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000063F4, Type: Inline - RelativeJump 0x804DD3F4-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006401, Type: Inline - RelativeJump 0x804DD401-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006415, Type: Inline - RelativeJump 0x804DD415-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000641C, Type: Inline - RelativeJump 0x804DD41C-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006429, Type: Inline - RelativeJump 0x804DD429-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006430, Type: Inline - RelativeJump 0x804DD430-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000643D, Type: Inline - RelativeJump 0x804DD43D-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006451, Type: Inline - RelativeJump 0x804DD451-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006458, Type: Inline - RelativeJump 0x804DD458-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006465, Type: Inline - RelativeJump 0x804DD465-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000646C, Type: Inline - RelativeJump 0x804DD46C-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006479, Type: Inline - RelativeJump 0x804DD479-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006480, Type: Inline - RelativeJump 0x804DD480-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000648D, Type: Inline - RelativeJump 0x804DD48D-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000064A1, Type: Inline - RelativeJump 0x804DD4A1-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000064A8, Type: Inline - RelativeJump 0x804DD4A8-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000064B5, Type: Inline - RelativeJump 0x804DD4B5-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000064C9, Type: Inline - RelativeJump 0x804DD4C9-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000064D0, Type: Inline - RelativeJump 0x804DD4D0-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000064DD, Type: Inline - RelativeJump 0x804DD4DD-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000064E4, Type: Inline - RelativeJump 0x804DD4E4-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000064F1, Type: Inline - RelativeJump 0x804DD4F1-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000064F8, Type: Inline - RelativeJump 0x804DD4F8-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006505, Type: Inline - RelativeJump 0x804DD505-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006519, Type: Inline - RelativeJump 0x804DD519-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006520, Type: Inline - RelativeJump 0x804DD520-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000652D, Type: Inline - RelativeJump 0x804DD52D-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006534, Type: Inline - RelativeJump 0x804DD534-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006541, Type: Inline - RelativeJump 0x804DD541-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006548, Type: Inline - RelativeJump 0x804DD548-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006555, Type: Inline - RelativeJump 0x804DD555-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000655C, Type: Inline - RelativeJump 0x804DD55C-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006569, Type: Inline - RelativeJump 0x804DD569-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006570, Type: Inline - RelativeJump 0x804DD570-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x0000657D, Type: Inline - RelativeJump 0x804DD57D-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006584, Type: Inline - RelativeJump 0x804DD584-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006591, Type: Inline - RelativeJump 0x804DD591-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x00006598, Type: Inline - RelativeJump 0x804DD598-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000065A5, Type: Inline - RelativeJump 0x804DD5A5-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000065AC, Type: Inline - RelativeJump 0x804DD5AC-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000065B9, Type: Inline - RelativeJump 0x804DD5B9-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000065C0, Type: Inline - RelativeJump 0x804DD5C0-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000065CD, Type: Inline - RelativeJump 0x804DD5CD-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000065E1, Type: Inline - RelativeJump 0x804DD5E1-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000065E8, Type: Inline - RelativeJump 0x804DD5E8-->804DD677 [ntoskrnl.exe]
ntoskrnl.exe+0x000065F5, Type: Inline - RelativeJump 0x804DD5F5-->804DD67B [ntoskrnl.exe]
ntoskrnl.exe+0x000065FD, Type: Inline - RelativeJump 0x804DD5FD-->804DD66D [ntoskrnl.exe]
ntoskrnl.exe+0x0000660C, Type: Inline - RelativeJump 0x804DD60C-->804DD67B [ntoskrnl.exe]
ntoskrnl.exe+0x00006611, Type: Inline - RelativeJump 0x804DD611-->804DD67B [ntoskrnl.exe]
ntoskrnl.exe+0x00006620, Type: Inline - RelativeJump 0x804DD620-->804DD67B [ntoskrnl.exe]
ntoskrnl.exe+0x00006634, Type: Inline - RelativeJump 0x804DD634-->804DD67B [ntoskrnl.exe]
ntoskrnl.exe+0x00006644, Type: Inline - RelativeJump 0x804DD644-->804DD67B [ntoskrnl.exe]
ntoskrnl.exe+0x0000664B, Type: Inline - RelativeJump 0x804DD64B-->804DD67B [ntoskrnl.exe]
ntoskrnl.exe+0x00006659, Type: Inline - RelativeJump 0x804DD659-->804DD67B [ntoskrnl.exe]
ntoskrnl.exe+0x000066D1, Type: Inline - RelativeJump 0x804DD6D1-->804DD6E6 [ntoskrnl.exe]
ntoskrnl.exe+0x00006760, Type: Inline - RelativeJump 0x804DD760-->804DD91B [ntoskrnl.exe]
ntoskrnl.exe+0x00006915, Type: Inline - RelativeJump 0x804DD915-->804DD750 [ntoskrnl.exe]
ntoskrnl.exe+0x00006952, Type: Inline - RelativeJump 0x804DD952-->804DD976 [ntoskrnl.exe]
ntoskrnl.exe+0x00006965, Type: Inline - DirectCall 0x804DD965-->80562568 [ntoskrnl.exe]
ntoskrnl.exe+0x00006A40, Type: Inline - RelativeJump 0x804DDA40-->804DDABF [ntoskrnl.exe]
ntoskrnl.exe+0x00006A48, Type: Inline - RelativeJump 0x804DDA48-->804DE356 [ntoskrnl.exe]
ntoskrnl.exe+0x00006A50, Type: Inline - RelativeJump 0x804DDA50-->804DDB11 [ntoskrnl.exe]
ntoskrnl.exe+0x00006A5D, Type: Inline - RelativeJump 0x804DDA5D-->804DDAFF [ntoskrnl.exe]
ntoskrnl.exe+0x00006A71, Type: Inline - RelativeJump 0x804DDA71-->804DDA81 [ntoskrnl.exe]
ntoskrnl.exe+0x00006B5C, Type: Inline - RelativeJump 0x804DDB5C-->804DDB9F [ntoskrnl.exe]
ntoskrnl.exe+0x00006BC4, Type: Inline - RelativeJump 0x804DDBC4-->804DDC1B [ntoskrnl.exe]
ntoskrnl.exe+0x00006C87, Type: Inline - PushRet 0x804DDC87-->A48DCCC3 [unknown_code_page]
ntoskrnl.exe+0x00006D18, Type: Inline - RelativeJump 0x804DDD18-->804DDE14 [ntoskrnl.exe]
ntoskrnl.exe+0x00006D3B, Type: Inline - RelativeJump 0x804DDD3B-->804DDDEF [ntoskrnl.exe]
ntoskrnl.exe+0x00006D72, Type: Inline - RelativeJump 0x804DDD72-->804DDE44 [ntoskrnl.exe]
ntoskrnl.exe+0x00006D80, Type: Inline - RelativeJump 0x804DDD80-->804DDD5C [ntoskrnl.exe]
ntoskrnl.exe+0x00006DE9, Type: Inline - RelativeJump 0x804DDDE9-->804DDD27 [ntoskrnl.exe]
ntoskrnl.exe+0x00006E35, Type: Inline - RelativeJump 0x804DDE35-->804DE229 [ntoskrnl.exe]
ntoskrnl.exe+0x00006E44, Type: Inline - RelativeJump 0x804DDE44-->804E014C [ntoskrnl.exe]
ntoskrnl.exe+0x00006E6B, Type: Inline - RelativeJump 0x804DDE6B-->804DDF6C [ntoskrnl.exe]
ntoskrnl.exe+0x00006EC1, Type: Inline - RelativeJump 0x804DDEC1-->804DDECE [ntoskrnl.exe]
ntoskrnl.exe+0x00006EDA, Type: Inline - RelativeJump 0x804DDEDA-->804DDEE3 [ntoskrnl.exe]
ntoskrnl.exe+0x00006EEE, Type: Inline - DirectJump 0x804DDEEE-->FFFFFFFF [unknown_code_page]
ntoskrnl.exe+0x00006F61, Type: Inline - RelativeJump 0x804DDF61-->804DDEE8 [ntoskrnl.exe]
ntoskrnl.exe+0x00006F75, Type: Inline - RelativeJump 0x804DDF75-->804DDF7F [ntoskrnl.exe]
ntoskrnl.exe+0x00006F7E, Type: Inline - RelativeJump 0x804DDF7E-->804DDF91 [ntoskrnl.exe]
ntoskrnl.exe+0x00006F87, Type: Inline - RelativeJump 0x804DDF87-->804DE070 [ntoskrnl.exe]
ntoskrnl.exe+0x00006FED, Type: Inline - RelativeJump 0x804DDFED-->804DE074 [ntoskrnl.exe]
ntoskrnl.exe+0x0000708C, Type: Inline - RelativeJump 0x804DE08C-->804DE0A1 [ntoskrnl.exe]
ntoskrnl.exe+0x00007097, Type: Inline - RelativeJump 0x804DE097-->804DE202 [ntoskrnl.exe]
ntoskrnl.exe+0x0000711E, Type: Inline - RelativeJump 0x804DE11E-->804DE1DC [ntoskrnl.exe]
ntoskrnl.exe+0x000071CC, Type: Inline - RelativeJump 0x804DE1CC-->804DE10B [ntoskrnl.exe]
ntoskrnl.exe+0x000071FA, Type: Inline - RelativeJump 0x804DE1FA-->804DE087 [ntoskrnl.exe]
ntoskrnl.exe+0x00007231, Type: Inline - RelativeJump 0x804DE231-->804DE23D [ntoskrnl.exe]
ntoskrnl.exe+0x00007244, Type: Inline - RelativeJump 0x804DE244-->804DE271 [ntoskrnl.exe]
ntoskrnl.exe+0x00007285, Type: Inline - RelativeJump 0x804DE285-->804DE2D9 [ntoskrnl.exe]
ntoskrnl.exe+0x0000728F, Type: Inline - RelativeJump 0x804DE28F-->804DE356 [ntoskrnl.exe]
ntoskrnl.exe+0x000072CB, Type: Inline - RelativeJump 0x804DE2CB-->804DE372 [ntoskrnl.exe]
ntoskrnl.exe+0x000072DA, Type: Inline - RelativeJump 0x804DE2DA-->804DE2EB [ntoskrnl.exe]
ntoskrnl.exe+0x000073A3, Type: Inline - RelativeCall 0x804DE3A3-->804DE3B6 [ntoskrnl.exe]
ntoskrnl.exe+0x000073AD, Type: Inline - RelativeCall 0x804DE3AD-->804DE3B6 [ntoskrnl.exe]
ntoskrnl.exe+0x000073E8, Type: Inline - RelativeJump 0x804DE3E8-->804DE3F5 [ntoskrnl.exe]
ntoskrnl.exe+0x000073FD, Type: Inline - RelativeCall 0x804DE3FD-->804F9C8D [ntoskrnl.exe]
ntoskrnl.exe+0x00007403, Type: Inline - RelativeJump 0x804DE403-->804DE229 [ntoskrnl.exe]
ntoskrnl.exe+0x00007479, Type: Inline - RelativeJump 0x804DE479-->804DE48C [ntoskrnl.exe]
ntoskrnl.exe+0x00007571, Type: Inline - RelativeJump 0x804DE571-->804DE472 [ntoskrnl.exe]
ntoskrnl.exe+0x000075F6, Type: Inline - RelativeJump 0x804DE5F6-->804DE60B [ntoskrnl.exe]
ntoskrnl.exe+0x0000771F, Type: Inline - RelativeJump 0x804DE71F-->804DE74B [ntoskrnl.exe]
ntoskrnl.exe+0x0000777D, Type: Inline - RelativeJump 0x804DE77D-->804DE229 [ntoskrnl.exe]
ntoskrnl.exe+0x0000784E, Type: Inline - RelativeJump 0x804DE84E-->804DE878 [ntoskrnl.exe]
ntoskrnl.exe+0x000078DE, Type: Inline - RelativeJump 0x804DE8DE-->804DE8EC [ntoskrnl.exe]
ntoskrnl.exe+0x000079CB, Type: Inline - RelativeJump 0x804DE9CB-->804DE96C [ntoskrnl.exe]
ntoskrnl.exe+0x000079FB, Type: Inline - RelativeJump 0x804DE9FB-->804DEB2A [ntoskrnl.exe]
ntoskrnl.exe+0x00007A0A, Type: Inline - RelativeJump 0x804DEA0A-->804DEA1F [ntoskrnl.exe]
ntoskrnl.exe+0x00007B15, Type: Inline - RelativeJump 0x804DEB15-->804DEB29 [ntoskrnl.exe]
ntoskrnl.exe+0x00007C90, Type: Inline - RelativeJump 0x804DEC90-->804DEB88 [ntoskrnl.exe]
ntoskrnl.exe+0x00007DF6, Type: Inline - RelativeJump 0x804DEDF6-->804DEE05 [ntoskrnl.exe]
ntoskrnl.exe+0x00007F16, Type: Inline - RelativeJump 0x804DEF16-->804DF39A [ntoskrnl.exe]
ntoskrnl.exe+0x000082AB, Type: Inline - RelativeJump 0x804DF2AB-->804DEE54 [ntoskrnl.exe]
ntoskrnl.exe+0x00008307, Type: Inline - RelativeJump 0x804DF307-->804DE229 [ntoskrnl.exe]
ntoskrnl.exe+0x0000838A, Type: Inline - RelativeJump 0x804DF38A-->804DE229 [ntoskrnl.exe]
ntoskrnl.exe+0x00008390, Type: Inline - RelativeJump 0x804DF390-->804DF30D [ntoskrnl.exe]
ntoskrnl.exe+0x00008395, Type: Inline - RelativeJump 0x804DF395-->804DE229 [ntoskrnl.exe]
ntoskrnl.exe+0x000084D4, Type: Inline - RelativeJump 0x804DF4D4-->804DF466 [ntoskrnl.exe]
ntoskrnl.exe+0x000084DF, Type: Inline - RelativeCall 0x804DF4DF-->80536B12 [ntoskrnl.exe]
ntoskrnl.exe+0x000084E6, Type: Inline - RelativeJump 0x804DF4E6-->804DF501 [ntoskrnl.exe]
ntoskrnl.exe+0x00008740, Type: Inline - RelativeJump 0x804DF740-->804DF763 [ntoskrnl.exe]
ntoskrnl.exe+0x00008759, Type: Inline - RelativeJump 0x804DF759-->804DF774 [ntoskrnl.exe]
ntoskrnl.exe+0x00008797, Type: Inline - RelativeJump 0x804DF797-->804DF7A7 [ntoskrnl.exe]
ntoskrnl.exe+0x000087A8, Type: Inline - RelativeJump 0x804DF7A8-->804DF7B8 [ntoskrnl.exe]
ntoskrnl.exe+0x0000884F, Type: Inline - RelativeJump 0x804DF84F-->804DF7B4 [ntoskrnl.exe]
ntoskrnl.exe+0x00008860, Type: Inline - RelativeCall 0x804DF860-->804E12D0 [ntoskrnl.exe]
ntoskrnl.exe+0x00008867, Type: Inline - RelativeJump 0x804DF867-->804DE229 [ntoskrnl.exe]
ntoskrnl.exe+0x000088D8, Type: Inline - RelativeCall 0x804DF8D8-->80536B12 [ntoskrnl.exe]
ntoskrnl.exe+0x000088E9, Type: Inline - RelativeJump 0x804DF8E9-->804DF8DD [ntoskrnl.exe]
ntoskrnl.exe+0x00008A9B, Type: Inline - RelativeJump 0x804DFA9B-->804DFA2D [ntoskrnl.exe]
ntoskrnl.exe+0x00008B7C, Type: Inline - RelativeJump 0x804DFB7C-->804DFBB3 [ntoskrnl.exe]
ntoskrnl.exe+0x00008C29, Type: Inline - RelativeJump 0x804DFC29-->804DFC2F [ntoskrnl.exe]
ntoskrnl.exe+0x00008DB4, Type: Inline - RelativeJump 0x804DFDB4-->804DFEB2 [ntoskrnl.exe]
ntoskrnl.exe+0x00008E14, Type: Inline - RelativeJump 0x804DFE14-->804DFEB2 [ntoskrnl.exe]
ntoskrnl.exe+0x00008EAB, Type: Inline - RelativeJump 0x804DFEAB-->804DFEBA [ntoskrnl.exe]
ntoskrnl.exe+0x00008EB9, Type: Inline - RelativeJump 0x804DFEB9-->804DFF6A [ntoskrnl.exe]
ntoskrnl.exe+0x00008EBF, Type: Inline - RelativeJump 0x804DFEBF-->804DFF02 [ntoskrnl.exe]
ntoskrnl.exe+0x00008ED8, Type: Inline - RelativeJump 0x804DFED8-->804DFF48 [ntoskrnl.exe]
ntoskrnl.exe+0x000091A3, Type: Inline - RelativeJump 0x804E01A3-->804E0087 [ntoskrnl.exe]
ntoskrnl.exe+0x000091B2, Type: Inline - RelativeJump 0x804E01B2-->804E01C8 [ntoskrnl.exe]
ntoskrnl.exe+0x00009212, Type: Inline - RelativeJump 0x804E0212-->804E0262 [ntoskrnl.exe]
ntoskrnl.exe+0x0000934E, Type: Inline - RelativeJump 0x804E034E-->804E0451 [ntoskrnl.exe]
ntoskrnl.exe+0x000093DD, Type: Inline - RelativeCall 0x804E03DD-->804DFD2C [ntoskrnl.exe]
ntoskrnl.exe+0x00009484, Type: Inline - RelativeJump 0x804E0484-->804E051A [ntoskrnl.exe]
ntoskrnl.exe+0x0000958B, Type: Inline - RelativeJump 0x804E058B-->804E05DD [ntoskrnl.exe]
ntoskrnl.exe+0x00009642, Type: Inline - RelativeJump 0x804E0642-->804E0739 [ntoskrnl.exe]
ntoskrnl.exe+0x0000964E, Type: Inline - RelativeJump 0x804E064E-->804E0722 [ntoskrnl.exe]
ntoskrnl.exe+0x00009653, Type: Inline - RelativeJump 0x804E0653-->804E0739 [ntoskrnl.exe]
ntoskrnl.exe+0x00009681, Type: Inline - RelativeJump 0x804E0681-->804E0722 [ntoskrnl.exe]
ntoskrnl.exe+0x00009689, Type: Inline - RelativeJump 0x804E0689-->804E0722 [ntoskrnl.exe]
ntoskrnl.exe+0x0000970C, Type: Inline - RelativeJump 0x804E070C-->804E0726 [ntoskrnl.exe]
ntoskrnl.exe+0x00009729, Type: Inline - RelativeJump 0x804E0729-->804DE395 [ntoskrnl.exe]
ntoskrnl.exe+0x00009740, Type: Inline - RelativeJump 0x804E0740-->804DE3A8 [ntoskrnl.exe]
ntoskrnl.exe+0x00009773, Type: Inline - RelativeJump 0x804E0773-->804E0784 [ntoskrnl.exe]
ntoskrnl.exe+0x000097CA, Type: Inline - RelativeJump 0x804E07CA-->804DF2B3 [ntoskrnl.exe]
ntoskrnl.exe+0x000097D8, Type: Inline - RelativeJump 0x804E07D8-->804DF402 [ntoskrnl.exe]
ntoskrnl.exe+0x00009852, Type: Inline - RelativeJump 0x804E0852-->804E08EB [ntoskrnl.exe]
ntoskrnl.exe+0x00009876, Type: Inline - RelativeJump 0x804E0876-->804E08CA [ntoskrnl.exe]
ntoskrnl.exe+0x00009914, Type: Inline - RelativeJump 0x804E0914-->804E0922 [ntoskrnl.exe]
ntoskrnl.exe+0x00009936, Type: Inline - RelativeJump 0x804E0936-->804E0ABE [ntoskrnl.exe]
ntoskrnl.exe+0x000099A8, Type: Inline - RelativeJump 0x804E09A8-->804E09EB [ntoskrnl.exe]
ntoskrnl.exe+0x000099C8, Type: Inline - RelativeJump 0x804E09C8-->804E09EB [ntoskrnl.exe]
ntoskrnl.exe+0x000099E0, Type: Inline - RelativeJump 0x804E09E0-->804DE229 [ntoskrnl.exe]
ntoskrnl.exe+0x000099F1, Type: Inline - RelativeJump 0x804E09F1-->804E09FA [ntoskrnl.exe]
ntoskrnl.exe+0x000099F9, Type: Inline - RelativeJump 0x804E09F9-->804E0A22 [ntoskrnl.exe]
ntoskrnl.exe+0x00009AB0, Type: Inline - RelativeJump 0x804E0AB0-->804E0B1E [ntoskrnl.exe]
ntoskrnl.exe+0x00009B19, Type: Inline - RelativeJump 0x804E0B19-->804E0B2C [ntoskrnl.exe]
ntoskrnl.exe+0x00009B8D, Type: Inline - RelativeJump 0x804E0B8D-->804E0C22 [ntoskrnl.exe]
ntoskrnl.exe+0x00009BF9, Type: Inline - RelativeJump 0x804E0BF9-->804E0B9A [ntoskrnl.exe]
ntoskrnl.exe+0x00009C1A, Type: Inline - RelativeJump 0x804E0C1A-->804E0B12 [ntoskrnl.exe]
ntoskrnl.exe+0x00009C26, Type: Inline - RelativeJump 0x804E0C26-->804E122F [ntoskrnl.exe]
ntoskrnl.exe+0x00009CCE, Type: Inline - RelativeJump 0x804E0CCE-->804E0D1F [ntoskrnl.exe]
ntoskrnl.exe+0x00009D78, Type: Inline - RelativeJump 0x804E0D78-->804E0E78 [ntoskrnl.exe]
ntoskrnl.exe+0x00009DDF, Type: Inline - RelativeJump 0x804E0DDF-->804E0E78 [ntoskrnl.exe]
ntoskrnl.exe+0x00009E67, Type: Inline - RelativeJump 0x804E0E67-->804E0D6A [ntoskrnl.exe]
ntoskrnl.exe+0x00009EA3, Type: Inline - RelativeJump 0x804E0EA3-->804E0F1B [ntoskrnl.exe]
ntoskrnl.exe+0x00009EBE, Type: Inline - RelativeJump 0x804E0EBE-->804E122F [ntoskrnl.exe]
ntoskrnl.exe+0x00009ED6, Type: Inline - RelativeJump 0x804E0ED6-->804E0EE9 [ntoskrnl.exe]
ntoskrnl.exe+0x00009F45, Type: Inline - RelativeJump 0x804E0F45-->804E0FDF [ntoskrnl.exe]
ntoskrnl.exe+0x0000A068, Type: Inline - RelativeJump 0x804E1068-->804E1082 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A082, Type: Inline - RelativeJump 0x804E1082-->804DE39C [ntoskrnl.exe]
ntoskrnl.exe+0x0000A094, Type: Inline - RelativeJump 0x804E1094-->804E10A4 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A0A5, Type: Inline - RelativeJump 0x804E10A5-->804E10B5 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A0AC, Type: Inline - RelativeJump 0x804E10AC-->804DE39C [ntoskrnl.exe]
ntoskrnl.exe+0x0000A178, Type: Inline - RelativeJump 0x804E1178-->804E1220 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A196, Type: Inline - RelativeJump 0x804E1196-->804E11C3 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A1AD, Type: Inline - RelativeJump 0x804E11AD-->804E11C3 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A232, Type: Inline - RelativeCall 0x804E1232-->80536B12 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A313, Type: Inline - PushRet 0x804E1313-->8B66CA8B [unknown_code_page]
ntoskrnl.exe+0x0000A314, Type: Inline - RelativeJump 0x804E1314-->804E130F [ntoskrnl.exe]
ntoskrnl.exe+0x0000A3FF, Type: Inline - RelativeJump 0x804E13FF-->804E5A54 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A405, Type: Inline - RelativeJump 0x804E1405-->804E1493 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A46D, Type: Inline - RelativeJump 0x804E146D-->804E5A44 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A4AA, Type: Inline - RelativeJump 0x804E14AA-->804E14D4 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A565, Type: Inline - RelativeJump 0x804E1565-->804E1635 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A5A5, Type: Inline - RelativeJump 0x804E15A5-->804E8698 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A5AF, Type: Inline - RelativeJump 0x804E15AF-->804E15C1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A5C6, Type: Inline - RelativeCall 0x804E15C6-->804E14A2 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A61A, Type: Inline - RelativeJump 0x804E161A-->804FA94D [ntoskrnl.exe]
ntoskrnl.exe+0x0000A625, Type: Inline - RelativeJump 0x804E1625-->804E1632 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A635, Type: Inline - RelativeJump 0x804E1635-->804E157C [ntoskrnl.exe]
ntoskrnl.exe+0x0000A673, Type: Inline - RelativeJump 0x804E1673-->804E5DF9 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A67C, Type: Inline - RelativeJump 0x804E167C-->804E62AA [ntoskrnl.exe]
ntoskrnl.exe+0x0000A68A, Type: Inline - PushRet 0x804E168A-->90909090 [unknown_code_page]
ntoskrnl.exe+0x0000A6DB, Type: Inline - RelativeJump 0x804E16DB-->804E5F33 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A6E6, Type: Inline - RelativeJump 0x804E16E6-->804D9F72 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A766, Type: Inline - RelativeJump 0x804E1766-->804E1793 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A777, Type: Inline - RelativeJump 0x804E1777-->804E9135 [ntoskrnl.exe]
ntoskrnl.exe+0x0000A963, Type: Inline - RelativeJump 0x804E1963-->8052A40B [ntoskrnl.exe]
ntoskrnl.exe+0x0000AA44, Type: Inline - RelativeJump 0x804E1A44-->804E1A27 [ntoskrnl.exe]
ntoskrnl.exe+0x0000AA5D, Type: Inline - RelativeJump 0x804E1A5D-->804EB912 [ntoskrnl.exe]
ntoskrnl.exe+0x0000AA71, Type: Inline - DirectCall 0x804E1A71-->804D80A8 [ntoskrnl.exe]
ntoskrnl.exe+0x0000AB3D, Type: Inline - RelativeJump 0x804E1B3D-->804E6C33 [ntoskrnl.exe]
ntoskrnl.exe+0x0000AB79, Type: Inline - RelativeJump 0x804E1B79-->804E1B87 [ntoskrnl.exe]
ntoskrnl.exe+0x0000AB91, Type: Inline - RelativeJump 0x804E1B91-->804E736C [ntoskrnl.exe]
ntoskrnl.exe+0x0000AB9E, Type: Inline - RelativeCall 0x804E1B9E-->804E1BBA [ntoskrnl.exe]
ntoskrnl.exe+0x0000ABA5, Type: Inline - PushRet 0x804E1BA5-->90900020 [unknown_code_page]
ntoskrnl.exe+0x0000AC3D, Type: Inline - RelativeJump 0x804E1C3D-->804DC531 [ntoskrnl.exe]
ntoskrnl.exe+0x0000AC49, Type: Inline - RelativeJump 0x804E1C49-->804DC42F [ntoskrnl.exe]
ntoskrnl.exe+0x0000AC54, Type: Inline - RelativeCall 0x804E1C54-->804F3B31 [ntoskrnl.exe]
ntoskrnl.exe+0x0000AC62, Type: Inline - RelativeJump 0x804E1C62-->804DC42F [ntoskrnl.exe]
ntoskrnl.exe+0x0000AC98, Type: Inline - RelativeJump 0x804E1C98-->804E1CBE [ntoskrnl.exe]
ntoskrnl.exe+0x0000ACA9, Type: Inline - RelativeJump 0x804E1CA9-->804F17FC [ntoskrnl.exe]
ntoskrnl.exe+0x0000AD85, Type: Inline - RelativeJump 0x804E1D85-->804F7AF5 [ntoskrnl.exe]
ntoskrnl.exe+0x0000AE1C, Type: Inline - RelativeJump 0x804E1E1C-->804E1E47 [ntoskrnl.exe]
ntoskrnl.exe+0x0000AE2F, Type: Inline - RelativeJump 0x804E1E2F-->804F6780 [ntoskrnl.exe]
ntoskrnl.exe+0x0000AF8D, Type: Inline - RelativeJump 0x804E1F8D-->804F5DE7 [ntoskrnl.exe]
ntoskrnl.exe+0x0000AF99, Type: Inline - RelativeJump 0x804E1F99-->804E1FC5 [ntoskrnl.exe]
ntoskrnl.exe+0x0000AFB8, Type: Inline - PushRet 0x804E1FB8-->90900004 [unknown_code_page]
ntoskrnl.exe+0x0000B267, Type: Inline - RelativeJump 0x804E2267-->804E9598 [ntoskrnl.exe]
ntoskrnl.exe+0x0000B2B2, Type: Inline - RelativeCall 0x804E22B2-->804E14A2 [ntoskrnl.exe]
ntoskrnl.exe+0x0000B2B9, Type: Inline - RelativeJump 0x804E22B9-->804E92D0 [ntoskrnl.exe]
ntoskrnl.exe+0x0000B3DE, Type: Inline - RelativeJump 0x804E23DE-->8052CC02 [ntoskrnl.exe]
ntoskrnl.exe+0x0000B3E4, Type: Inline - DirectCall 0x804E23E4-->FFFFFFFF [unknown_code_page]
ntoskrnl.exe+0x0000B3EC, Type: Inline - RelativeJump 0x804E23EC-->8052CC1E [ntoskrnl.exe]
ntoskrnl.exe+0x0000B478, Type: Inline - RelativeJump 0x804E2478-->804E2484 [ntoskrnl.exe]
ntoskrnl.exe+0x0000B485, Type: Inline - RelativeJump 0x804E2485-->804E2484 [ntoskrnl.exe]
ntoskrnl.exe+0x0000B500, Type: Inline - RelativeJump 0x804E2500-->804E2512 [ntoskrnl.exe]
ntoskrnl.exe+0x0000BC70, Type: Inline - RelativeJump 0x804E2C70-->804E2D26 [ntoskrnl.exe]
ntoskrnl.exe+0x0000BCB4, Type: Inline - RelativeJump 0x804E2CB4-->804E2CC5 [ntoskrnl.exe]
ntoskrnl.exe+0x0000C333, Type: Inline - RelativeCall 0x804E3333-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000C384, Type: Inline - RelativeCall 0x804E3384-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000C3AB, Type: Inline - RelativeCall 0x804E33AB-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000C40D, Type: Inline - RelativeCall 0x804E340D-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000C446, Type: Inline - RelativeCall 0x804E3446-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000C45A, Type: Inline - RelativeCall 0x804E345A-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000C471, Type: Inline - RelativeCall 0x804E3471-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000C66B, Type: Inline - RelativeCall 0x804E366B-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000C742, Type: Inline - RelativeCall 0x804E3742-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000C8E5, Type: Inline - RelativeCall 0x804E38E5-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000C916, Type: Inline - RelativeCall 0x804E3916-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000C921, Type: Inline - RelativeCall 0x804E3921-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000C935, Type: Inline - RelativeCall 0x804E3935-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000C94B, Type: Inline - RelativeCall 0x804E394B-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000CA0E, Type: Inline - RelativeCall 0x804E3A0E-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000CA42, Type: Inline - RelativeCall 0x804E3A42-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000CA4D, Type: Inline - RelativeCall 0x804E3A4D-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000CAC7, Type: Inline - RelativeCall 0x804E3AC7-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000CB12, Type: Inline - RelativeCall 0x804E3B12-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000CB7B, Type: Inline - RelativeCall 0x804E3B7B-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000CBC9, Type: Inline - RelativeCall 0x804E3BC9-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000CBDA, Type: Inline - RelativeCall 0x804E3BDA-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000CBEE, Type: Inline - RelativeCall 0x804E3BEE-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000CC02, Type: Inline - RelativeCall 0x804E3C02-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000CC6B, Type: Inline - RelativeCall 0x804E3C6B-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000CD76, Type: Inline - RelativeCall 0x804E3D76-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000CD7B, Type: Inline - PushRet 0x804E3D7B-->8BB80008 [unknown_code_page]
ntoskrnl.exe+0x0000CDA8, Type: Inline - RelativeCall 0x804E3DA8-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000CDB7, Type: Inline - PushRet 0x804E3DB7-->8EB80008 [unknown_code_page]
ntoskrnl.exe+0x0000CE85, Type: Inline - RelativeCall 0x804E3E85-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000CE93, Type: Inline - PushRet 0x804E3E93-->99B80014 [unknown_code_page]
ntoskrnl.exe+0x0000CF75, Type: Inline - RelativeCall 0x804E3F75-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000CF83, Type: Inline - PushRet 0x804E3F83-->A5B80008 [unknown_code_page]
ntoskrnl.exe+0x0000D03F, Type: Inline - RelativeCall 0x804E403F-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000D04B, Type: Inline - PushRet 0x804E404B-->AFB80004 [unknown_code_page]
ntoskrnl.exe+0x0000D06E, Type: Inline - RelativeCall 0x804E406E-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000D073, Type: Inline - PushRet 0x804E4073-->B1B8000C [unknown_code_page]
ntoskrnl.exe+0x0000D0DF, Type: Inline - RelativeCall 0x804E40DF-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000D0EB, Type: Inline - PushRet 0x804E40EB-->B7B80018 [unknown_code_page]
ntoskrnl.exe+0x0000D113, Type: Inline - PushRet 0x804E4113-->B9B80024 [unknown_code_page]
ntoskrnl.exe+0x0000D152, Type: Inline - RelativeCall 0x804E4152-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000D163, Type: Inline - PushRet 0x804E4163-->BDB80008 [unknown_code_page]
ntoskrnl.exe+0x0000D2AA, Type: Inline - RelativeCall 0x804E42AA-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000D2B7, Type: Inline - PushRet 0x804E42B7-->CEB80004 [unknown_code_page]
ntoskrnl.exe+0x0000D2BA, Type: Inline - RelativeCall 0x804E42BA-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000D2F3, Type: Inline - PushRet 0x804E42F3-->D1B8000C [unknown_code_page]
ntoskrnl.exe+0x0000D2F6, Type: Inline - RelativeCall 0x804E42F6-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000D307, Type: Inline - PushRet 0x804E4307-->D2B8000C [unknown_code_page]
ntoskrnl.exe+0x0000D30A, Type: Inline - RelativeCall 0x804E430A-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000D3FF, Type: Inline - RelativeCall 0x804E43FF-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000D40B, Type: Inline - PushRet 0x804E440B-->DFB80004 [unknown_code_page]
ntoskrnl.exe+0x0000D44A, Type: Inline - RelativeCall 0x804E444A-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000D45B, Type: Inline - PushRet 0x804E445B-->E3B80010 [unknown_code_page]
ntoskrnl.exe+0x0000D6A5, Type: Inline - RelativeCall 0x804E46A5-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000D7FA, Type: Inline - RelativeCall 0x804E47FA-->804DD7D1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000DFA5, Type: Inline - RelativeJump 0x804E4FA5-->804E4FAE [ntoskrnl.exe]
ntoskrnl.exe+0x0000E4FF, Type: Inline - RelativeJump 0x804E54FF-->804E54F0 [ntoskrnl.exe]
ntoskrnl.exe+0x0000E5FA, Type: Inline - RelativeJump 0x804E55FA-->804E5611 [ntoskrnl.exe]
ntoskrnl.exe+0x0000E610, Type: Inline - RelativeJump 0x804E5610-->804E55F2 [ntoskrnl.exe]
ntoskrnl.exe+0x0000E737, Type: Inline - RelativeJump 0x804E5737-->CAD971C7 [unknown_code_page]
ntoskrnl.exe+0x0000E77E, Type: Inline - RelativeCall 0x804E577E-->804E5790 [ntoskrnl.exe]
ntoskrnl.exe+0x0000E78B, Type: Inline - RelativeCall 0x804E578B-->804E2CCD [ntoskrnl.exe]
ntoskrnl.exe+0x0000EAD6, Type: Inline - PushRet 0x804E5AD6-->90900008 [unknown_code_page]
ntoskrnl.exe+0x0000EC49, Type: Inline - RelativeJump 0x804E5C49-->80518880 [ntoskrnl.exe]
ntoskrnl.exe+0x0000ECAD, Type: Inline - RelativeJump 0x804E5CAD-->804E6C28 [ntoskrnl.exe]
ntoskrnl.exe+0x0000ED06, Type: Inline - DirectCall 0x804E5D06-->804D812C [ntoskrnl.exe]
ntoskrnl.exe+0x0000EDCA, Type: Inline - RelativeCall 0x804E5DCA-->804E14A2 [ntoskrnl.exe]
ntoskrnl.exe+0x0000EDDA, Type: Inline - RelativeJump 0x804E5DDA-->804DC51C [ntoskrnl.exe]
ntoskrnl.exe+0x0000EF5D, Type: Inline - RelativeJump 0x804E5F5D-->804D9D1A [ntoskrnl.exe]
ntoskrnl.exe+0x0000EF70, Type: Inline - RelativeJump 0x804E5F70-->804D9D1A [ntoskrnl.exe]
ntoskrnl.exe+0x0000EF76, Type: Inline - RelativeJump 0x804E5F76-->804F374F [ntoskrnl.exe]
ntoskrnl.exe+0x0000F00A, Type: Inline - RelativeCall 0x804E600A-->804E2550 [ntoskrnl.exe]
ntoskrnl.exe+0x0000F014, Type: Inline - PushRet 0x804E6014-->90900004 [unknown_code_page]
ntoskrnl.exe+0x0000F112, Type: Inline - RelativeCall 0x804E6112-->804DC74A [ntoskrnl.exe]
ntoskrnl.exe+0x0000F14F, Type: Inline - RelativeJump 0x804E614F-->8050D660 [ntoskrnl.exe]
ntoskrnl.exe+0x0000F165, Type: Inline - RelativeJump 0x804E6165-->804E616E [ntoskrnl.exe]
ntoskrnl.exe+0x0000F17C, Type: Inline - RelativeCall 0x804E617C-->804D9DFE [ntoskrnl.exe]
ntoskrnl.exe+0x0000F193, Type: Inline - RelativeJump 0x804E6193-->804D9763 [ntoskrnl.exe]
ntoskrnl.exe+0x0000F266, Type: Inline - RelativeCall 0x804E6266-->804DC400 [ntoskrnl.exe]
ntoskrnl.exe+0x0000F509, Type: Inline - DirectCall 0x804E6509-->804D8124 [ntoskrnl.exe]
ntoskrnl.exe+0x0000F511, Type: Inline - PushRet 0x804E6511-->90900010 [unknown_code_page]
ntoskrnl.exe+0x0000F58B, Type: Inline - RelativeJump 0x804E658B-->804E6597 [ntoskrnl.exe]
ntoskrnl.exe+0x0000F70B, Type: Inline - RelativeJump 0x804E670B-->8050E2C8 [ntoskrnl.exe]
ntoskrnl.exe+0x0000F71E, Type: Inline - RelativeCall 0x804E671E-->804E216F [ntoskrnl.exe]
ntoskrnl.exe+0x0000F72E, Type: Inline - PushRet 0x804E672E-->90900004 [unknown_code_page]
ntoskrnl.exe+0x0000F75B, Type: Inline - RelativeJump 0x804E675B-->8051E111 [ntoskrnl.exe]
ntoskrnl.exe+0x0000F7A8, Type: Inline - DirectCall 0x804E67A8-->804D8130 [ntoskrnl.exe]
ntoskrnl.exe+0x0000FAB6, Type: Inline - RelativeJump 0x804E6AB6-->804EDBB1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000FAC2, Type: Inline - RelativeJump 0x804E6AC2-->804EDBB1 [ntoskrnl.exe]
ntoskrnl.exe+0x0000FBA3, Type: Inline - RelativeCall 0x804E6BA3-->804E131F [ntoskrnl.exe]
ntoskrnl.exe+0x0000FBA8, Type: Inline - RelativeJump 0x804E6BA8-->804EA144 [ntoskrnl.exe]
ntoskrnl.exe+0x0000FC4C, Type: Inline - RelativeJump 0x804E6C4C-->804E1B51 [ntoskrnl.exe]
ntoskrnl.exe+0x0000FC52, Type: Inline - RelativeJump 0x804E6C52-->80521B5D [ntoskrnl.exe]
ntoskrnl.exe+0x0000FDB8, Type: Inline - RelativeCall 0x804E6DB8-->805511E6 [ntoskrnl.exe]
ntoskrnl.exe+0x0000FDC4, Type: Inline - RelativeCall 0x804E6DC4-->805511E6 [ntoskrnl.exe]
ntoskrnl.exe+0x0001012E, Type: Inline - RelativeJump 0x804E712E-->804E717C [ntoskrnl.exe]
ntoskrnl.exe+0x000101C8, Type: Inline - RelativeJump 0x804E71C8-->804E720C [ntoskrnl.exe]
ntoskrnl.exe+0x0001021E, Type: Inline - RelativeJump 0x804E721E-->804F9BF8 [ntoskrnl.exe]
ntoskrnl.exe+0x00010274, Type: Inline - RelativeJump 0x804E7274-->804F9C7D [ntoskrnl.exe]
ntoskrnl.exe+0x000103BD, Type: Inline - RelativeJump 0x804E73BD-->804E73D8 [ntoskrnl.exe]
ntoskrnl.exe+0x000103DA, Type: Inline - RelativeJump 0x804E73DA-->804E5E9A [ntoskrnl.exe]
ntoskrnl.exe+0x00010828, Type: Inline - RelativeJump 0x804E7828-->804E1BEA [ntoskrnl.exe]
ntoskrnl.exe+0x00010838, Type: Inline - RelativeJump 0x804E7838-->80522906 [ntoskrnl.exe]
ntoskrnl.exe+0x000108D4, Type: Inline - RelativeJump 0x804E78D4-->804E78E1 [ntoskrnl.exe]
ntoskrnl.exe+0x000108E9, Type: Inline - RelativeJump 0x804E78E9-->804E779B [ntoskrnl.exe]
ntoskrnl.exe+0x000109B6, Type: Inline - RelativeJump 0x804E79B6-->804FB7A3 [ntoskrnl.exe]
ntoskrnl.exe+0x000109C7, Type: Inline - RelativeJump 0x804E79C7-->804E793E [ntoskrnl.exe]
ntoskrnl.exe+0x00010B17, Type: Inline - RelativeCall 0x804E7B17-->804E6C19 [ntoskrnl.exe]
ntoskrnl.exe+0x00010D16, Type: Inline - RelativeCall 0x804E7D16-->804E2468 [ntoskrnl.exe]
ntoskrnl.exe+0x00010E23, Type: Inline - RelativeJump 0x804E7E23-->804E7E35 [ntoskrnl.exe]
ntoskrnl.exe+0x00010F3C, Type: Inline - RelativeJump 0x804E7F3C-->804E7FF7 [ntoskrnl.exe]
ntoskrnl.exe+0x00010FB7, Type: Inline - PushRet 0x804E7FB7-->90909090 [unknown_code_page]
ntoskrnl.exe+0x000111E0, Type: Inline - PushRet 0x804E81E0-->90900004 [unknown_code_page]
ntoskrnl.exe+0x000114D9, Type: Inline - RelativeJump 0x804E84D9-->804D9C5C [ntoskrnl.exe]
ntoskrnl.exe+0x000114EC, Type: Inline - RelativeJump 0x804E84EC-->804E65B5 [ntoskrnl.exe]
ntoskrnl.exe+0x000114F8, Type: Inline - RelativeJump 0x804E84F8-->804E6576 [ntoskrnl.exe]
ntoskrnl.exe+0x0001174E, Type: Inline - RelativeJump 0x804E874E-->804F9BB5 [ntoskrnl.exe]
ntoskrnl.exe+0x00011A35, Type: Inline - RelativeJump 0x804E8A35-->804E8C29 [ntoskrnl.exe]
ntoskrnl.exe+0x00011A40, Type: Inline - RelativeJump 0x804E8A40-->804EAB6D [ntoskrnl.exe]
ntoskrnl.exe+0x00011B39, Type: Inline - DirectCall 0x804E8B39-->804D8130 [ntoskrnl.exe]
ntoskrnl.exe+0x00011B62, Type: Inline - RelativeJump 0x804E8B62-->804F9B80 [ntoskrnl.exe]
ntoskrnl.exe+0x00011BF7, Type: Inline - RelativeJump 0x804E8BF7-->804E8C13 [ntoskrnl.exe]
ntoskrnl.exe+0x00011C7B, Type: Inline - RelativeJump 0x804E8C7B-->804E8C1E [ntoskrnl.exe]
ntoskrnl.exe+0x00011F1D, Type: Inline - PushRet 0x804E8F1D-->9090000C [unknown_code_page]
ntoskrnl.exe+0x00012154, Type: Inline - RelativeCall 0x804E9154-->804E90CE [ntoskrnl.exe]
ntoskrnl.exe+0x00012164, Type: Inline - RelativeJump 0x804E9164-->804DC605 [ntoskrnl.exe]
ntoskrnl.exe+0x00012169, Type: Inline - RelativeJump 0x804E9169-->804E19B7 [ntoskrnl.exe]
ntoskrnl.exe+0x000121F6, Type: Inline - RelativeJump 0x804E91F6-->804E2276 [ntoskrnl.exe]
ntoskrnl.exe+0x000121FE, Type: Inline - RelativeCall 0x804E91FE-->804E7E0F [ntoskrnl.exe]
ntoskrnl.exe+0x00012203, Type: Inline - RelativeJump 0x804E9203-->804E15F5 [ntoskrnl.exe]
ntoskrnl.exe+0x00012318, Type: Inline - RelativeJump 0x804E9318-->8051538D [ntoskrnl.exe]
ntoskrnl.exe+0x00012323, Type: Inline - RelativeJump 0x804E9323-->8051539B [ntoskrnl.exe]
ntoskrnl.exe+0x0001244A, Type: Inline - PushRet 0x804E944A-->E8560014 [unknown_code_page]
ntoskrnl.exe+0x0001244F, Type: Inline - RelativeCall 0x804E944F-->804DC3C0 [ntoskrnl.exe]
ntoskrnl.exe+0x00012455, Type: Inline - RelativeJump 0x804E9455-->804E6118 [ntoskrnl.exe]
ntoskrnl.exe+0x0001245A, Type: Inline - RelativeJump 0x804E945A-->80504F3C [ntoskrnl.exe]
ntoskrnl.exe+0x000125CB, Type: Inline - RelativeCall 0x804E95CB-->804E1930 [ntoskrnl.exe]
ntoskrnl.exe+0x000125DD, Type: Inline - RelativeJump 0x804E95DD-->80514DAA [ntoskrnl.exe]
ntoskrnl.exe+0x0001268A, Type: Inline - RelativeJump 0x804E968A-->804E9699 [ntoskrnl.exe]
ntoskrnl.exe+0x00012727, Type: Inline - RelativeJump 0x804E9727-->80529BBE [ntoskrnl.exe]
ntoskrnl.exe+0x0001272D, Type: Inline - RelativeJump 0x804E972D-->804E97E6 [ntoskrnl.exe]
ntoskrnl.exe+0x000127B1, Type: Inline - RelativeJump 0x804E97B1-->804E97E6 [ntoskrnl.exe]
ntoskrnl.exe+0x000128CE, Type: Inline - RelativeJump 0x804E98CE-->805299AD [ntoskrnl.exe]
ntoskrnl.exe+0x000128E5, Type: Inline - RelativeJump 0x804E98E5-->804E98F0 [ntoskrnl.exe]
ntoskrnl.exe+0x000129AB, Type: Inline - RelativeJump 0x804E99AB-->80529C55 [ntoskrnl.exe]
ntoskrnl.exe+0x00012B23, Type: Inline - RelativeJump 0x804E9B23-->8052856A [ntoskrnl.exe]
ntoskrnl.exe+0x00012FB0, Type: Inline - RelativeJump 0x804E9FB0-->804E8735 [ntoskrnl.exe]
ntoskrnl.exe+0x00013013, Type: Inline - RelativeCall 0x804EA013-->804FE7AD [ntoskrnl.exe]
ntoskrnl.exe+0x0001301C, Type: Inline - RelativeJump 0x804EA01C-->804E8735 [ntoskrnl.exe]
ntoskrnl.exe+0x00013225, Type: Inline - RelativeCall 0x804EA225-->804EA23B [ntoskrnl.exe]
ntoskrnl.exe+0x000132CA, Type: Inline - PushRet 0x804EA2CA-->DA805FAE [unknown_code_page]
ntoskrnl.exe+0x0001330C, Type: Inline - RelativeJump 0x804EA30C-->804F5DEE [ntoskrnl.exe]
ntoskrnl.exe+0x00013453, Type: Inline - RelativeJump 0x804EA453-->804EA438 [ntoskrnl.exe]
ntoskrnl.exe+0x000134CA, Type: Inline - PushRet 0x804EA4CA-->9E880004 [unknown_code_page]
ntoskrnl.exe+0x000134DA, Type: Inline - RelativeJump 0x804EA4DA-->804EA434 [ntoskrnl.exe]
ntoskrnl.exe+0x000134E5, Type: Inline - RelativeJump 0x804EA4E5-->804EA434 [ntoskrnl.exe]
ntoskrnl.exe+0x000134FC, Type: Inline - RelativeJump 0x804EA4FC-->804EA537 [ntoskrnl.exe]
ntoskrnl.exe+0x00013504, Type: Inline - RelativeJump 0x804EA504-->804E6957 [ntoskrnl.exe]
ntoskrnl.exe+0x000135C0, Type: Inline - RelativeJump 0x804EA5C0-->8052A3BB [ntoskrnl.exe]
ntoskrnl.exe+0x000135C6, Type: Inline - PushRet 0x804EA5C6-->90900010 [unknown_code_page]
ntoskrnl.exe+0x000138C2, Type: Inline - RelativeJump 0x804EA8C2-->804F5D95 [ntoskrnl.exe]
ntoskrnl.exe+0x00013974, Type: Inline - RelativeJump 0x804EA974-->804F0DE5 [ntoskrnl.exe]
ntoskrnl.exe+0x00013980, Type: Inline - RelativeJump 0x804EA980-->804EA952 [ntoskrnl.exe]
ntoskrnl.exe+0x00013988, Type: Inline - RelativeJump 0x804EA988-->804EA994 [ntoskrnl.exe]
ntoskrnl.exe+0x00013C0F, Type: Inline - RelativeJump 0x804EAC0F-->804F1289 [ntoskrnl.exe]
ntoskrnl.exe+0x00013D08, Type: Inline - RelativeJump 0x804EAD08-->80520FDC [ntoskrnl.exe]
ntoskrnl.exe+0x00013D3C, Type: Inline - RelativeJump 0x804EAD3C-->80520F28 [ntoskrnl.exe]
ntoskrnl.exe+0x00013D42, Type: Inline - RelativeJump 0x804EAD42-->80520EC2 [ntoskrnl.exe]
ntoskrnl.exe+0x00013EE0, Type: Inline - RelativeJump 0x804EAEE0-->804F950A [ntoskrnl.exe]
ntoskrnl.exe+0x00013EEC, Type: Inline - RelativeJump 0x804EAEEC-->804F950A [ntoskrnl.exe]
ntoskrnl.exe+0x00013F11, Type: Inline - RelativeJump 0x804EAF11-->804F3ADA [ntoskrnl.exe]
ntoskrnl.exe+0x00013F1A, Type: Inline - RelativeJump 0x804EAF1A-->804EAF2E [ntoskrnl.exe]
ntoskrnl.exe+0x00013F31, Type: Inline - RelativeJump 0x804EAF31-->804EB064 [ntoskrnl.exe]
ntoskrnl.exe+0x00013F42, Type: Inline - RelativeJump 0x804EAF42-->804F964B [ntoskrnl.exe]
ntoskrnl.exe+0x0001407E, Type: Inline - RelativeCall 0x804EB07E-->805511E6 [ntoskrnl.exe]
ntoskrnl.exe+0x0001408A, Type: Inline - RelativeJump 0x804EB08A-->804EAF56 [ntoskrnl.exe]
ntoskrnl.exe+0x00014373, Type: Inline - RelativeJump 0x804EB373-->804EB2EC [ntoskrnl.exe]
ntoskrnl.exe+0x000145FA, Type: Inline - RelativeJump 0x804EB5FA-->804EB62C [ntoskrnl.exe]
ntoskrnl.exe+0x0001482B, Type: Inline - RelativeJump 0x804EB82B-->804EB8E3 [ntoskrnl.exe]
ntoskrnl.exe+0x00014845, Type: Inline - RelativeCall 0x804EB845-->8B37795B [unknown_code_page]
ntoskrnl.exe+0x00014C84, Type: Inline - RelativeJump 0x804EBC84-->80501578 [ntoskrnl.exe]
ntoskrnl.exe+0x00014E85, Type: Inline - RelativeJump 0x804EBE85-->80504720 [ntoskrnl.exe]
ntoskrnl.exe+0x00014E8E, Type: Inline - RelativeJump 0x804EBE8E-->80526BD0 [ntoskrnl.exe]
ntoskrnl.exe+0x00014EBC, Type: Inline - RelativeJump 0x804EBEBC-->804E8AD1 [ntoskrnl.exe]
ntoskrnl.exe+0x00015069, Type: Inline - RelativeJump 0x804EC069-->804EC077 [ntoskrnl.exe]
ntoskrnl.exe+0x000150C5, Type: Inline - RelativeJump 0x804EC0C5-->804F24EA [ntoskrnl.exe]
ntoskrnl.exe+0x00015374, Type: Inline - RelativeJump 0x804EC374-->804EC392 [ntoskrnl.exe]
ntoskrnl.exe+0x000153D7, Type: Inline - RelativeJump 0x804EC3D7-->805004E4 [ntoskrnl.exe]
ntoskrnl.exe+0x000153EA, Type: Inline - RelativeCall 0x804EC3EA-->804E1BBA [ntoskrnl.exe]
ntoskrnl.exe+0x000153EF, Type: Inline - PushRet 0x804EC3EF-->90900004 [unknown_code_page]
ntoskrnl.exe+0x00015407, Type: Inline - RelativeJump 0x804EC407-->804EC475 [ntoskrnl.exe]
ntoskrnl.exe+0x00015420, Type: Inline - DirectCall 0x804EC420-->FFFFFFFF [unknown_code_page]
ntoskrnl.exe+0x0001543E, Type: Inline - RelativeCall 0x804EC43E-->804E891D [ntoskrnl.exe]
ntoskrnl.exe+0x00015552, Type: Inline - RelativeCall 0x804EC552-->804DC667 [ntoskrnl.exe]
ntoskrnl.exe+0x00015590, Type: Inline - RelativeJump 0x804EC590-->804EC5E3 [ntoskrnl.exe]
ntoskrnl.exe+0x00015594, Type: Inline - RelativeJump 0x804EC594-->804EC5E7 [ntoskrnl.exe]
ntoskrnl.exe+0x000155E4, Type: Inline - RelativeJump 0x804EC5E4-->804F3714 [ntoskrnl.exe]
ntoskrnl.exe+0x000155EC, Type: Inline - PushRet 0x804EC5EC-->90900008 [unknown_code_page]
ntoskrnl.exe+0x000156DF, Type: Inline - PushRet 0x804EC6DF-->DB330014 [unknown_code_page]
ntoskrnl.exe+0x000156E9, Type: Inline - DirectCall 0x804EC6E9-->804D8030 [ntoskrnl.exe]
ntoskrnl.exe+0x000156F8, Type: Inline - RelativeJump 0x804EC6F8-->804EC709 [ntoskrnl.exe]
ntoskrnl.exe+0x00015780, Type: Inline - RelativeCall 0x804EC780-->804E2528 [ntoskrnl.exe]
ntoskrnl.exe+0x00015812, Type: Inline - RelativeJump 0x804EC812-->8052274A [ntoskrnl.exe]
ntoskrnl.exe+0x0001587B, Type: Inline - RelativeJump 0x804EC87B-->804EC889 [ntoskrnl.exe]
ntoskrnl.exe+0x00015892, Type: Inline - DirectCall 0x804EC892-->804D8120 [ntoskrnl.exe]
ntoskrnl.exe+0x0001594B, Type: Inline - RelativeJump 0x804EC94B-->804EC921 [ntoskrnl.exe]
ntoskrnl.exe+0x00015B36, Type: Inline - PushRet 0x804ECB36-->90900004 [unknown_code_page]
ntoskrnl.exe+0x00015B88, Type: Inline - RelativeJump 0x804ECB88-->804ED68B [ntoskrnl.exe]
ntoskrnl.exe+0x00015DA1, Type: Inline - PushRet 0x804ECDA1-->E25B850F [unknown_code_page]
ntoskrnl.exe+0x00015DA5, Type: Inline - RelativeJump 0x804ECDA5-->804EB006 [ntoskrnl.exe]
ntoskrnl.exe+0x00015DAB, Type: Inline - RelativeCall 0x804ECDAB-->804ECDD9 [ntoskrnl.exe]
ntoskrnl.exe+0x00015DE6, Type: Inline - RelativeJump 0x804ECDE6-->804ECCF8 [ntoskrnl.exe]
ntoskrnl.exe+0x00015F27, Type: Inline - DirectCall 0x804ECF27-->804D8128 [ntoskrnl.exe]
ntoskrnl.exe+0x00016375, Type: Inline - RelativeJump 0x804ED375-->805045D8 [ntoskrnl.exe]
ntoskrnl.exe+0x00016458, Type: Inline - RelativeJump 0x804ED458-->804ED460 [ntoskrnl.exe]
ntoskrnl.exe+0x00016507, Type: Inline - RelativeCall 0x804ED507-->804ED5CD [ntoskrnl.exe]
ntoskrnl.exe+0x00016510, Type: Inline - RelativeJump 0x804ED510-->804ECCA3 [ntoskrnl.exe]
ntoskrnl.exe+0x000167D1, Type: Inline - RelativeCall 0x804ED7D1-->804E2554 [ntoskrnl.exe]
ntoskrnl.exe+0x000168A2, Type: Inline - RelativeJump 0x804ED8A2-->804ED91D [ntoskrnl.exe]
ntoskrnl.exe+0x0001691F, Type: Inline - DirectCall 0x804ED91F-->FFFFFFFF [unknown_code_page]
ntoskrnl.exe+0x00016A92, Type: Inline - RelativeJump 0x804EDA92-->804EDAAC [ntoskrnl.exe]
ntoskrnl.exe+0x00016C11, Type: Inline - RelativeJump 0x804EDC11-->804EDC07 [ntoskrnl.exe]
ntoskrnl.exe+0x00016C14, Type: Inline - RelativeJump 0x804EDC14-->804EDC12 [ntoskrnl.exe]
ntoskrnl.exe+0x00016F0B, Type: Inline - RelativeJump 0x804EDF0B-->804F35F8 [ntoskrnl.exe]
ntoskrnl.exe+0x00016F43, Type: Inline - PushRet 0x804EDF43-->90900004 [unknown_code_page]
ntoskrnl.exe+0x000170D4, Type: Inline - RelativeJump 0x804EE0D4-->804EE0E7 [ntoskrnl.exe]
ntoskrnl.exe+0x000172C9, Type: Inline - RelativeJump 0x804EE2C9-->804EDE1B [ntoskrnl.exe]
ntoskrnl.exe+0x00017504, Type: Inline - PushRet 0x804EE504-->90900014 [unknown_code_page]
ntoskrnl.exe+0x00017651, Type: Inline - RelativeJump 0x804EE651-->8051AC50 [ntoskrnl.exe]
ntoskrnl.exe+0x0001765C, Type: Inline - RelativeJump 0x804EE65C-->804EE652 [ntoskrnl.exe]
ntoskrnl.exe+0x00017914, Type: Inline - RelativeJump 0x804EE914-->804EE94F [ntoskrnl.exe]
ntoskrnl.exe+0x00017AEC, Type: Inline - RelativeCall 0x804EEAEC-->804EECCE [ntoskrnl.exe]
ntoskrnl.exe+0x00017B02, Type: Inline - RelativeJump 0x804EEB02-->804F757C [ntoskrnl.exe]
ntoskrnl.exe+0x00017B5D, Type: Inline - RelativeJump 0x804EEB5D-->80514157 [ntoskrnl.exe]
ntoskrnl.exe+0x00017C95, Type: Inline - RelativeJump 0x804EEC95-->804EECFF [ntoskrnl.exe]
ntoskrnl.exe+0x00017EA2, Type: Inline - RelativeJump 0x804EEEA2-->804EE669 [ntoskrnl.exe]
ntoskrnl.exe+0x00017EAC, Type: Inline - RelativeJump 0x804EEEAC-->804EE424 [ntoskrnl.exe]
ntoskrnl.exe+0x0001826D, Type: Inline - RelativeJump 0x804EF26D-->804EF27B [ntoskrnl.exe]
ntoskrnl.exe+0x0001857D, Type: Inline - RelativeJump 0x804EF57D-->804EF55B [ntoskrnl.exe]
ntoskrnl.exe+0x00018713, Type: Inline - RelativeJump 0x804EF713-->80513E46 [ntoskrnl.exe]
ntoskrnl.exe+0x00018751, Type: Inline - PushRet 0x804EF751-->FF0002E0 [unknown_code_page]
ntoskrnl.exe+0x00018755, Type: Inline - DirectCall 0x804EF755-->804D8114 [ntoskrnl.exe]
ntoskrnl.exe+0x000187E8, Type: Inline - RelativeCall 0x804EF7E8-->804EF336 [ntoskrnl.exe]
ntoskrnl.exe+0x000187F1, Type: Inline - RelativeCall 0x804EF7F1-->804E2EDE [ntoskrnl.exe]
ntoskrnl.exe+0x000187F9, Type: Inline - PushRet 0x804EF7F9-->90900024 [unknown_code_page]
ntoskrnl.exe+0x00018853, Type: Inline - RelativeJump 0x804EF853-->804EFBE3 [ntoskrnl.exe]
ntoskrnl.exe+0x00018902, Type: Inline - DirectCall 0x804EF902-->804D8110 [ntoskrnl.exe]
ntoskrnl.exe+0x0001890D, Type: Inline - RelativeJump 0x804EF90D-->804EF926 [ntoskrnl.exe]
ntoskrnl.exe+0x00018916, Type: Inline - RelativeJump 0x804EF916-->804EF8A8 [ntoskrnl.exe]
ntoskrnl.exe+0x0001896E, Type: Inline - RelativeCall 0x804EF96E-->804DA6DB [ntoskrnl.exe]
ntoskrnl.exe+0x0001897A, Type: Inline - RelativeJump 0x804EF97A-->804EF96A [ntoskrnl.exe]
ntoskrnl.exe+0x00018A10, Type: Inline - RelativeJump 0x804EFA10-->804EFA30 [ntoskrnl.exe]
ntoskrnl.exe+0x00018A50, Type: Inline - PushRet 0x804EFA50-->9090000C [unknown_code_page]
ntoskrnl.exe+0x00018AFE, Type: Inline - RelativeJump 0x804EFAFE-->804EFAA3 [ntoskrnl.exe]
ntoskrnl.exe+0x00018B0F, Type: Inline - RelativeJump 0x804EFB0F-->804FBF70 [ntoskrnl.exe]
ntoskrnl.exe+0x00018B8A, Type: Inline - RelativeJump 0x804EFB8A-->804EFB88 [ntoskrnl.exe]
ntoskrnl.exe+0x00018BF5, Type: Inline - RelativeJump 0x804EFBF5-->804EFC02 [ntoskrnl.exe]
ntoskrnl.exe+0x00018D0D, Type: Inline - DirectCall 0x804EFD0D-->804D8110 [ntoskrnl.exe]
ntoskrnl.exe+0x00018E37, Type: Inline - RelativeJump 0x804EFE37-->804EFFE9 [ntoskrnl.exe]
ntoskrnl.exe+0x00018EB3, Type: Inline - RelativeCall 0x804EFEB3-->804E2554 [ntoskrnl.exe]
ntoskrnl.exe+0x00019496, Type: Inline - RelativeJump 0x804F0496-->805038C0 [ntoskrnl.exe]
ntoskrnl.exe+0x0001976A, Type: Inline - RelativeJump 0x804F076A-->804F68A9 [ntoskrnl.exe]
ntoskrnl.exe+0x0001992A, Type: Inline - DirectCall 0x804F092A-->804D8128 [ntoskrnl.exe]
ntoskrnl.exe+0x00019933, Type: Inline - RelativeCall 0x804F0933-->804E803A [ntoskrnl.exe]
ntoskrnl.exe+0x00019940, Type: Inline - RelativeJump 0x804F0940-->805292D8 [ntoskrnl.exe]
ntoskrnl.exe+0x0001996F, Type: Inline - RelativeJump 0x804F096F-->805179D2 [ntoskrnl.exe]
ntoskrnl.exe+0x00019975, Type: Inline - RelativeCall 0x804F0975-->804E8F37 [ntoskrnl.exe]
ntoskrnl.exe+0x00019A4F, Type: Inline - RelativeJump 0x804F0A4F-->804EA638 [ntoskrnl.exe]
ntoskrnl.exe+0x00019AF0, Type: Inline - RelativeJump 0x804F0AF0-->804F0B56 [ntoskrnl.exe]
ntoskrnl.exe+0x00019B0C, Type: Inline - RelativeJump 0x804F0B0C-->804F0B2D [ntoskrnl.exe]
ntoskrnl.exe+0x00019CB4, Type: Inline - DirectCall 0x804F0CB4-->804D8128 [ntoskrnl.exe]
ntoskrnl.exe+0x00019DB0, Type: Inline - PushRet 0x804F0DB0-->CB8A0014 [unknown_code_page]
ntoskrnl.exe+0x00019DB6, Type: Inline - DirectCall 0x804F0DB6-->804D802C [ntoskrnl.exe]
ntoskrnl.exe+0x00019E58, Type: Inline - RelativeCall 0x804F0E58-->804E2468 [ntoskrnl.exe]
ntoskrnl.exe+0x00019E60, Type: Inline - RelativeJump 0x804F0E60-->804F67F7 [ntoskrnl.exe]
ntoskrnl.exe+0x00019E65, Type: Inline - RelativeJump 0x804F0E65-->804F67F4 [ntoskrnl.exe]
ntoskrnl.exe+0x0001A0DF, Type: Inline - RelativeJump 0x804F10DF-->804F61E8 [ntoskrnl.exe]
ntoskrnl.exe+0x0001A150, Type: Inline - RelativeCall 0x804F1150-->804EA92B [ntoskrnl.exe]
ntoskrnl.exe+0x0001A229, Type: Inline - RelativeJump 0x804F1229-->804F121B [ntoskrnl.exe]
ntoskrnl.exe+0x0001A29A, Type: Inline - RelativeJump 0x804F129A-->804F1284 [ntoskrnl.exe]
ntoskrnl.exe+0x0001A3FF, Type: Inline - RelativeJump 0x804F13FF-->804EAC5E [ntoskrnl.exe]
ntoskrnl.exe+0x0001A40F, Type: Inline - RelativeJump 0x804F140F-->804F1421 [ntoskrnl.exe]
ntoskrnl.exe+0x0001A41F, Type: Inline - PushRet 0x804F141F-->90900004 [unknown_code_page]
ntoskrnl.exe+0x0001A453, Type: Inline - RelativeJump 0x804F1453-->804EA02F [ntoskrnl.exe]
ntoskrnl.exe+0x0001A54D, Type: Inline - RelativeJump 0x804F154D-->805218DA [ntoskrnl.exe]
ntoskrnl.exe+0x0001A553, Type: Inline - RelativeJump 0x804F1553-->805218B7 [ntoskrnl.exe]
ntoskrnl.exe+0x0001A5E3, Type: Inline - RelativeJump 0x804F15E3-->80521961 [ntoskrnl.exe]
ntoskrnl.exe+0x0001A5EE, Type: Inline - DirectCall 0x804F15EE-->804D8088 [ntoskrnl.exe]
ntoskrnl.exe+0x0001A699, Type: Inline - RelativeJump 0x804F1699-->804F16E3 [ntoskrnl.exe]
ntoskrnl.exe+0x0001A6A9, Type: Inline - PushRet 0x804F16A9-->80FF4D8A [unknown_code_page]
ntoskrnl.exe+0x0001A6B0, Type: Inline - RelativeJump 0x804F16B0-->80521773 [ntoskrnl.exe]
ntoskrnl.exe+0x0001A6DB, Type: Inline - RelativeJump 0x804F16DB-->804F16E1 [ntoskrnl.exe]
ntoskrnl.exe+0x0001A6EA, Type: Inline - PushRet 0x804F16EA-->FFFFFFFF [unknown_code_page]
ntoskrnl.exe+0x0001A7E4, Type: Inline - RelativeJump 0x804F17E4-->804F17D2 [ntoskrnl.exe]
ntoskrnl.exe+0x0001A7FC, Type: Inline - RelativeJump 0x804F17FC-->804E1CBA [ntoskrnl.exe]
ntoskrnl.exe+0x0001A805, Type: Inline - RelativeJump 0x804F1805-->804E1CAF [ntoskrnl.exe]
ntoskrnl.exe+0x0001A810, Type: Inline - RelativeJump 0x804F1810-->804E6DED [ntoskrnl.exe]
ntoskrnl.exe+0x0001A81D, Type: Inline - DirectCall 0x804F181D-->804D8030 [ntoskrnl.exe]
ntoskrnl.exe+0x0001A823, Type: Inline - RelativeJump 0x804F1823-->804E6FFE [ntoskrnl.exe]
ntoskrnl.exe+0x0001A830, Type: Inline - RelativeJump 0x804F1830-->804F18A6 [ntoskrnl.exe]
ntoskrnl.exe+0x0001A8A0, Type: Inline - RelativeJump 0x804F18A0-->804F1902 [ntoskrnl.exe]
ntoskrnl.exe+0x0001A8B8, Type: Inline - RelativeJump 0x804F18B8-->804F191A [ntoskrnl.exe]
ntoskrnl.exe+0x0001A8CC, Type: Inline - RelativeJump 0x804F18CC-->804F192A [ntoskrnl.exe]
ntoskrnl.exe+0x0001A8D8, Type: Inline - RelativeJump 0x804F18D8-->804F193E [ntoskrnl.exe]
ntoskrnl.exe+0x0001A8E4, Type: Inline - RelativeJump 0x804F18E4-->804F1960 [ntoskrnl.exe]
ntoskrnl.exe+0x0001A8F0, Type: Inline - RelativeJump 0x804F18F0-->804F194E [ntoskrnl.exe]
ntoskrnl.exe+0x0001A8FC, Type: Inline - RelativeJump 0x804F18FC-->804F1962 [ntoskrnl.exe]
ntoskrnl.exe+0x0001A908, Type: Inline - RelativeJump 0x804F1908-->804F196E [ntoskrnl.exe]
ntoskrnl.exe+0x0001A91C, Type: Inline - PushRet 0x804F191C-->E5805777 [unknown_code_page]
ntoskrnl.exe+0x0001A929, Type: Inline - RelativeJump 0x804F1929-->804F1986 [ntoskrnl.exe]
ntoskrnl.exe+0x0001A930, Type: Inline - RelativeJump 0x804F1930-->804F19B1 [ntoskrnl.exe]
ntoskrnl.exe+0x0001AD6E, Type: Inline - RelativeJump 0x804F1D6E-->8051435C [ntoskrnl.exe]
ntoskrnl.exe+0x0001ADC0, Type: Inline - RelativeJump 0x804F1DC0-->804F1DD8 [ntoskrnl.exe]
ntoskrnl.exe+0x0001ADC6, Type: Inline - RelativeJump 0x804F1DC6-->805143BF [ntoskrnl.exe]
ntoskrnl.exe+0x0001ADCC, Type: Inline - RelativeCall 0x804F1DCC-->804ECAAA [ntoskrnl.exe]
ntoskrnl.exe+0x0001ADD4, Type: Inline - PushRet 0x804F1DD4-->90900010 [unknown_code_page]
ntoskrnl.exe+0x0001AFAE, Type: Inline - RelativeCall 0x804F1FAE-->804EA895 [ntoskrnl.exe]
ntoskrnl.exe+0x0001AFB6, Type: Inline - RelativeJump 0x804F1FB6-->804F2087 [ntoskrnl.exe]
ntoskrnl.exe+0x0001AFBF, Type: Inline - RelativeJump 0x804F1FBF-->8051507E [ntoskrnl.exe]
ntoskrnl.exe+0x0001AFDA, Type: Inline - RelativeJump 0x804F1FDA-->8051BAD3 [ntoskrnl.exe]
ntoskrnl.exe+0x0001B088, Type: Inline - PushRet 0x804F2088-->90900010 [unknown_code_page]
ntoskrnl.exe+0x0001B212, Type: Inline - RelativeJump 0x804F2212-->805151FB [ntoskrnl.exe]
ntoskrnl.exe+0x0001B29E, Type: Inline - RelativeJump 0x804F229E-->804F22EE [ntoskrnl.exe]
ntoskrnl.exe+0x0001B4C1, Type: Inline - RelativeJump 0x804F24C1-->805291F3 [ntoskrnl.exe]
ntoskrnl.exe+0x0001B4C6, Type: Inline - DirectCall 0x804F24C6-->804D8130 [ntoskrnl.exe]
ntoskrnl.exe+0x0001B51D, Type: Inline - RelativeJump 0x804F251D-->80526C64 [ntoskrnl.exe]
ntoskrnl.exe+0x0001B522, Type: Inline - RelativeJump 0x804F2522-->804F2560 [ntoskrnl.exe]
ntoskrnl.exe+0x0001B575, Type: Inline - RelativeJump 0x804F2575-->804EAC55 [ntoskrnl.exe]
ntoskrnl.exe+0x0001B57D, Type: Inline - RelativeJump 0x804F257D-->804F25C7 [ntoskrnl.exe]
ntoskrnl.exe+0x0001B802, Type: Inline - RelativeJump 0x804F2802-->804EAE27 [ntoskrnl.exe]
ntoskrnl.exe+0x0001B86A, Type: Inline - DirectCall 0x804F286A-->804D8128 [ntoskrnl.exe]
ntoskrnl.exe+0x0001B873, Type: Inline - RelativeJump 0x804F2873-->804F2EE9 [ntoskrnl.exe]
ntoskrnl.exe+0x0001B8DB, Type: Inline - RelativeJump 0x804F28DB-->804F28E9 [ntoskrnl.exe]
ntoskrnl.exe+0x0001BED7, Type: Inline - DirectCall 0x804F2ED7-->804D8130 [ntoskrnl.exe]
ntoskrnl.exe+0x0001BEE9, Type: Inline - RelativeJump 0x804F2EE9-->804F2F03 [ntoskrnl.exe]
ntoskrnl.exe+0x0001C0D8, Type: Inline - RelativeJump 0x804F30D8-->804F30E9 [ntoskrnl.exe]
ntoskrnl.exe+0x0001C28C, Type: Inline - RelativeJump 0x804F328C-->804F3050 [ntoskrnl.exe]
ntoskrnl.exe+0x0001C29D, Type: Inline - RelativeJump 0x804F329D-->804ED15D [ntoskrnl.exe]
ntoskrnl.exe+0x0001C5A1, Type: Inline - RelativeJump 0x804F35A1-->804F35C7 [ntoskrnl.exe]
ntoskrnl.exe+0x0001C5BF, Type: Inline - RelativeJump 0x804F35BF-->804FB0A7 [ntoskrnl.exe]
ntoskrnl.exe+0x0001C5CB, Type: Inline - RelativeJump 0x804F35CB-->804EB5A8 [ntoskrnl.exe]
ntoskrnl.exe+0x0001C5D6, Type: Inline - RelativeJump 0x804F35D6-->804F5C03 [ntoskrnl.exe]
ntoskrnl.exe+0x0001C5E0, Type: Inline - RelativeJump 0x804F35E0-->804E5F3C [ntoskrnl.exe]
ntoskrnl.exe+0x0001C676, Type: Inline - RelativeJump 0x804F3676-->804F368E [ntoskrnl.exe]
ntoskrnl.exe+0x0001C6A8, Type: Inline - RelativeJump 0x804F36A8-->804E8BA0 [ntoskrnl.exe]
ntoskrnl.exe+0x0001CB77, Type: Inline - RelativeJump 0x804F3B77-->80503914 [ntoskrnl.exe]
ntoskrnl.exe+0x0001CB80, Type: Inline - RelativeJump 0x804F3B80-->804F298D [ntoskrnl.exe]
ntoskrnl.exe+0x0001CC0F, Type: Inline - RelativeJump 0x804F3C0F-->804F3C21 [ntoskrnl.exe]
ntoskrnl.exe+0x0001CC68, Type: Inline - RelativeJump 0x804F3C68-->805288B9 [ntoskrnl.exe]
ntoskrnl.exe+0x0001CC70, Type: Inline - PushRet 0x804F3C70-->9090000C [unknown_code_page]
ntoskrnl.exe+0x0001CDA5, Type: Inline - RelativeJump 0x804F3DA5-->80502647 [ntoskrnl.exe]
ntoskrnl.exe+0x0001CE02, Type: Inline - PushRet 0x804F3E02-->9090000C [unknown_code_page]
ntoskrnl.exe+0x0001D0A6, Type: Inline - RelativeJump 0x804F40A6-->80508CB5 [ntoskrnl.exe]
ntoskrnl.exe+0x0001D0AC, Type: Inline - RelativeCall 0x804F40AC-->804F1580 [ntoskrnl.exe]
ntoskrnl.exe+0x0001D15E, Type: Inline - RelativeJump 0x804F415E-->804DCE6B [ntoskrnl.exe]
ntoskrnl.exe+0x0001D1E4, Type: Inline - PushRet 0x804F41E4-->90900004 [unknown_code_page]
ntoskrnl.exe+0x0001D1F4, Type: Inline - PushRet 0x804F41F4-->90900004 [unknown_code_page]
ntoskrnl.exe+0x0001D335, Type: Inline - RelativeJump 0x804F4335-->804F434B [ntoskrnl.exe]
ntoskrnl.exe+0x0001D3CD, Type: Inline - RelativeJump 0x804F43CD-->8052223E [ntoskrnl.exe]
ntoskrnl.exe+0x0001D3DC, Type: Inline - RelativeJump 0x804F43DC-->804F4587 [ntoskrnl.exe]
ntoskrnl.exe+0x0001D412, Type: Inline - RelativeJump 0x804F4412-->804F4449 [ntoskrnl.exe]
ntoskrnl.exe+0x0001D5EF, Type: Inline - PushRet 0x804F45EF-->FFFF0004 [unknown_code_page]
ntoskrnl.exe+0x0001D6FD, Type: Inline - RelativeCall 0x804F46FD-->804E81BD [ntoskrnl.exe]
ntoskrnl.exe+0x0001D705, Type: Inline - PushRet 0x804F4705-->90900008 [unknown_code_page]
ntoskrnl.exe+0x0001D819, Type: Inline - RelativeJump 0x804F4819-->8051E434 [ntoskrnl.exe]
ntoskrnl.exe+0x0001D828, Type: Inline - RelativeJump 0x804F4828-->804F4837 [ntoskrnl.exe]
ntoskrnl.exe+0x0001D976, Type: Inline - RelativeJump 0x804F4976-->804F74B6 [ntoskrnl.exe]
ntoskrnl.exe+0x0001DA9E, Type: Inline - RelativeJump 0x804F4A9E-->8051AE18 [ntoskrnl.exe]
ntoskrnl.exe+0x0001DAAA, Type: Inline - RelativeCall 0x804F4AAA-->804E9865 [ntoskrnl.exe]
ntoskrnl.exe+0x0001DC2C, Type: Inline - RelativeJump 0x804F4C2C-->804F4C4A [ntoskrnl.exe]
ntoskrnl.exe+0x0001DC3F, Type: Inline - RelativeCall 0x804F4C3F-->804DC599 [ntoskrnl.exe]
ntoskrnl.exe+0x0001DC50, Type: Inline - DirectCall 0x804F4C50-->804D8030 [ntoskrnl.exe]
ntoskrnl.exe+0x0001DC59, Type: Inline - RelativeJump 0x804F4C59-->804F4B9E [ntoskrnl.exe]
ntoskrnl.exe+0x0001DC62, Type: Inline - RelativeJump 0x804F4C62-->804F5AC3 [ntoskrnl.exe]
ntoskrnl.exe+0x0001DC6C, Type: Inline - RelativeCall 0x804F4C6C-->804E7E4C [ntoskrnl.exe]
ntoskrnl.exe+0x0001E02A, Type: Inline - RelativeJump 0x804F502A-->805284BC [ntoskrnl.exe]
ntoskrnl.exe+0x0001E1EC, Type: Inline - RelativeCall 0x804F51EC-->804E2417 [ntoskrnl.exe]
ntoskrnl.exe+0x0001E205, Type: Inline - RelativeCall 0x804F5205-->804E2417 [ntoskrnl.exe]
ntoskrnl.exe+0x0001E216, Type: Inline - RelativeJump 0x804F5216-->804F5220 [ntoskrnl.exe]
ntoskrnl.exe+0x0001E3CF, Type: Inline - DirectCall 0x804F53CF-->804D8128 [ntoskrnl.exe]
ntoskrnl.exe+0x0001E3D9, Type: Inline - RelativeJump 0x804F53D9-->804F53F9 [ntoskrnl.exe]
ntoskrnl.exe+0x0001E570, Type: Inline - DirectCall 0x804F5570-->804D8128 [ntoskrnl.exe]
ntoskrnl.exe+0x0001E596, Type: Inline - RelativeJump 0x804F5596-->804F55A0 [ntoskrnl.exe]
ntoskrnl.exe+0x0001E5B1, Type: Inline - RelativeJump 0x804F55B1-->804F55BF [ntoskrnl.exe]
ntoskrnl.exe+0x0001E5C8, Type: Inline - RelativeJump 0x804F55C8-->804F9245 [ntoskrnl.exe]
ntoskrnl.exe+0x0001E5D2, Type: Inline - RelativeJump 0x804F55D2-->804F91E6 [ntoskrnl.exe]
ntoskrnl.exe+0x0001E68B, Type: Inline - RelativeJump 0x804F568B-->804F56FD [ntoskrnl.exe]
ntoskrnl.exe+0x0001E695, Type: Inline - DirectCall 0x804F5695-->804D8130 [ntoskrnl.exe]
ntoskrnl.exe+0x0001E6E3, Type: Inline - RelativeJump 0x804F56E3-->804F56E9 [ntoskrnl.exe]
ntoskrnl.exe+0x0001E7FA, Type: Inline - RelativeJump 0x804F57FA-->8051F0C4 [ntoskrnl.exe]
ntoskrnl.exe+0x0001E809, Type: Inline - RelativeJump 0x804F5809-->80515F1C [ntoskrnl.exe]
ntoskrnl.exe+0x0001E911, Type: Inline - RelativeJump 0x804F5911-->805240B4 [ntoskrnl.exe]
ntoskrnl.exe+0x0001E93E, Type: Inline - RelativeJump 0x804F593E-->8051C83E [ntoskrnl.exe]
ntoskrnl.exe+0x0001EA9C, Type: Inline - RelativeJump 0x804F5A9C-->804F4B8E [ntoskrnl.exe]
ntoskrnl.exe+0x0001EB26, Type: Inline - RelativeJump 0x804F5B26-->8051E504 [ntoskrnl.exe]
ntoskrnl.exe+0x0001EB80, Type: Inline - RelativeJump 0x804F5B80-->804F5BD4 [ntoskrnl.exe]
ntoskrnl.exe+0x0001EC35, Type: Inline - RelativeJump 0x804F5C35-->804F2FD4 [ntoskrnl.exe]
ntoskrnl.exe+0x0001ECF0, Type: Inline - RelativeJump 0x804F5CF0-->804F5D26 [ntoskrnl.exe]
ntoskrnl.exe+0x0001ECF3, Type: Inline - RelativeJump 0x804F5CF3-->804F5D01 [ntoskrnl.exe]
ntoskrnl.exe+0x0001ED9A, Type: Inline - RelativeJump 0x804F5D9A-->80526FD6 [ntoskrnl.exe]
ntoskrnl.exe+0x0001EE16, Type: Inline - RelativeJump 0x804F5E16-->8052630D [ntoskrnl.exe]
ntoskrnl.exe+0x0001EFA8, Type: Inline - RelativeCall 0x804F5FA8-->804E9BF5 [ntoskrnl.exe]
ntoskrnl.exe+0x0001EFAD, Type: Inline - RelativeJump 0x804F5FAD-->804FA9A5 [ntoskrnl.exe]
ntoskrnl.exe+0x0001EFB7, Type: Inline - RelativeCall 0x804F5FB7-->804E172F [ntoskrnl.exe]
ntoskrnl.exe+0x0001EFBC, Type: Inline - RelativeJump 0x804F5FBC-->804EC3BF [ntoskrnl.exe]
ntoskrnl.exe+0x0001F2FC, Type: Inline - PushRet 0x804F62FC-->FF85FFFF [unknown_code_page]
ntoskrnl.exe+0x0001F301, Type: Inline - RelativeJump 0x804F6301-->80527D08 [ntoskrnl.exe]
ntoskrnl.exe+0x0001F40A, Type: Inline - PushRet 0x804F640A-->FF909090 [unknown_code_page]
ntoskrnl.exe+0x0001F6A0, Type: Inline - RelativeCall 0x804F66A0-->804E1930 [ntoskrnl.exe]
ntoskrnl.exe+0x0001F6CB, Type: Inline - RelativeJump 0x804F66CB-->804E1D8C [ntoskrnl.exe]
ntoskrnl.exe+0x0001F6D8, Type: Inline - RelativeJump 0x804F66D8-->804FA6EB [ntoskrnl.exe]
ntoskrnl.exe+0x0001F932, Type: Inline - RelativeJump 0x804F6932-->804F6940 [ntoskrnl.exe]
ntoskrnl.exe+0x0001FA54, Type: Inline - RelativeJump 0x804F6A54-->804F6A62 [ntoskrnl.exe]
ntoskrnl.exe+0x0001FA9B, Type: Inline - RelativeJump 0x804F6A9B-->804F6B6C [ntoskrnl.exe]
ntoskrnl.exe+0x0001FCAB, Type: Inline - RelativeJump 0x804F6CAB-->804F9A22 [ntoskrnl.exe]
ntoskrnl.exe+0x0001FEF6, Type: Inline - RelativeJump 0x804F6EF6-->8052377D [ntoskrnl.exe]
ntoskrnl.exe+0x0001FF09, Type: Inline - RelativeJump 0x804F6F09-->804F33A2 [ntoskrnl.exe]
ntoskrnl.exe+0x0001FF11, Type: Inline - RelativeJump 0x804F6F11-->805237EA [ntoskrnl.exe]
ntoskrnl.exe+0x000201BE, Type: Inline - RelativeJump 0x804F71BE-->8050114C [ntoskrnl.exe]
ntoskrnl.exe+0x00020204, Type: Inline - RelativeCall 0x804F7204-->828FFB94 [unknown_code_page]
ntoskrnl.exe+0x00020209, Type: Inline - RelativeJump 0x804F7209-->804FB55A [ntoskrnl.exe]
ntoskrnl.exe+0x000202C9, Type: Inline - RelativeJump 0x804F72C9-->804F72E9 [ntoskrnl.exe]
ntoskrnl.exe+0x000202EA, Type: Inline - RelativeJump 0x804F72EA-->804F11B8 [ntoskrnl.exe]
ntoskrnl.exe+0x000202F2, Type: Inline - RelativeJump 0x804F72F2-->804F11B8 [ntoskrnl.exe]
ntoskrnl.exe+0x00020547, Type: Inline - RelativeJump 0x804F7547-->804F755E [ntoskrnl.exe]
ntoskrnl.exe+0x000208CD, Type: Inline - RelativeJump 0x804F78CD-->8051D32B [ntoskrnl.exe]
ntoskrnl.exe+0x000209A9, Type: Inline - RelativeCall 0x804F79A9-->804E13B9 [ntoskrnl.exe]
ntoskrnl.exe+0x000209AE, Type: Inline - RelativeJump 0x804F79AE-->8051D285 [ntoskrnl.exe]
ntoskrnl.exe+0x00020A82, Type: Inline - RelativeJump 0x804F7A82-->804E846C [ntoskrnl.exe]
ntoskrnl.exe+0x00020CA3, Type: Inline - RelativeJump 0x804F7CA3-->80521FAA [ntoskrnl.exe]
ntoskrnl.exe+0x00020D14, Type: Inline - DirectCall 0x804F7D14-->804D8128 [ntoskrnl.exe]
ntoskrnl.exe+0x00020D1D, Type: Inline - RelativeJump 0x804F7D1D-->804F8CCF [ntoskrnl.exe]
ntoskrnl.exe+0x00020E35, Type: Inline - RelativeCall 0x804F7E35-->804E20A9 [ntoskrnl.exe]
ntoskrnl.exe+0x00020E42, Type: Inline - RelativeJump 0x804F7E42-->804F56A9 [ntoskrnl.exe]
ntoskrnl.exe+0x00020F55, Type: Inline - PushRet 0x804F7F55-->FFFF001C [unknown_code_page]
ntoskrnl.exe+0x000210E6, Type: Inline - RelativeJump 0x804F80E6-->804F80E0 [ntoskrnl.exe]
ntoskrnl.exe+0x00021194, Type: Inline - RelativeJump 0x804F8194-->804F73F6 [ntoskrnl.exe]
ntoskrnl.exe+0x000212D0, Type: Inline - RelativeCall 0x804F82D0-->804F8050 [ntoskrnl.exe]
ntoskrnl.exe+0x000212D5, Type: Inline - RelativeCall 0x804F82D5-->804ECAAA [ntoskrnl.exe]
ntoskrnl.exe+0x000212DD, Type: Inline - RelativeJump 0x804F82DD-->804F7408 [ntoskrnl.exe]
ntoskrnl.exe+0x000212E9, Type: Inline - RelativeJump 0x804F82E9-->8051AADD [ntoskrnl.exe]
ntoskrnl.exe+0x000213C5, Type: Inline - RelativeJump 0x804F83C5-->8051B256 [ntoskrnl.exe]
ntoskrnl.exe+0x00021582, Type: Inline - RelativeJump 0x804F8582-->8051D6CA [ntoskrnl.exe]
ntoskrnl.exe+0x0002158D, Type: Inline - RelativeJump 0x804F858D-->804F8302 [ntoskrnl.exe]
ntoskrnl.exe+0x00021746, Type: Inline - RelativeCall 0x804F8746-->804E2EDE [ntoskrnl.exe]
ntoskrnl.exe+0x0002180D, Type: Inline - RelativeJump 0x804F880D-->80528129 [ntoskrnl.exe]
ntoskrnl.exe+0x00021952, Type: Inline - RelativeJump 0x804F8952-->8051BACB [ntoskrnl.exe]
ntoskrnl.exe+0x00021AC8, Type: Inline - RelativeJump 0x804F8AC8-->804F8A52 [ntoskrnl.exe]
ntoskrnl.exe+0x00021B6A, Type: Inline - RelativeJump 0x804F8B6A-->804F8B7C [ntoskrnl.exe]
ntoskrnl.exe+0x00021BA4, Type: Inline - RelativeJump 0x804F8BA4-->804F8BB5 [ntoskrnl.exe]
ntoskrnl.exe+0x00021BAB, Type: Inline - RelativeJump 0x804F8BAB-->8052519C [ntoskrnl.exe]
ntoskrnl.exe+0x00021BB3, Type: Inline - RelativeJump 0x804F8BB3-->804F90F8 [ntoskrnl.exe]
ntoskrnl.exe+0x00021BBC, Type: Inline - RelativeCall 0x804F8BBC-->804E1F76 [ntoskrnl.exe]
ntoskrnl.exe+0x00021BCA, Type: Inline - RelativeJump 0x804F8BCA-->804F8BDC [ntoskrnl.exe]
ntoskrnl.exe+0x00021C73, Type: Inline - RelativeJump 0x804F8C73-->804F8C75 [ntoskrnl.exe]
ntoskrnl.exe+0x00021D2C, Type: Inline - RelativeJump 0x804F8D2C-->804F8CAD [ntoskrnl.exe]
ntoskrnl.exe+0x00021E3C, Type: Inline - RelativeJump 0x804F8E3C-->804F7684 [ntoskrnl.exe]
ntoskrnl.exe+0x0002204B, Type: Inline - PushRet 0x804F904B-->90909090 [unknown_code_page]
ntoskrnl.exe+0x000221AE, Type: Inline - DirectCall 0x804F91AE-->804D811C [ntoskrnl.exe]
ntoskrnl.exe+0x000224A4, Type: Inline - RelativeJump 0x804F94A4-->80522DB1 [ntoskrnl.exe]
ntoskrnl.exe+0x000224AD, Type: Inline - RelativeJump 0x804F94AD-->804E8E04 [ntoskrnl.exe]
ntoskrnl.exe+0x0002253B, Type: Inline - RelativeJump 0x804F953B-->804E752C [ntoskrnl.exe]
ntoskrnl.exe+0x00022544, Type: Inline - RelativeJump 0x804F9544-->804F16CC [ntoskrnl.exe]
ntoskrnl.exe+0x00022645, Type: Inline - RelativeJump 0x804F9645-->804F95FB [ntoskrnl.exe]
ntoskrnl.exe+0x000226CA, Type: Inline - RelativeJump 0x804F96CA-->80513ABA [ntoskrnl.exe]
ntoskrnl.exe+0x00022A07, Type: Inline - RelativeJump 0x804F9A07-->804F1222 [ntoskrnl.exe]
ntoskrnl.exe+0x00022B21, Type: Inline - RelativeCall 0x804F9B21-->804E20A9 [ntoskrnl.exe]
ntoskrnl.exe+0x00022B41, Type: Inline - RelativeJump 0x804F9B41-->804F9B30 [ntoskrnl.exe]
ntoskrnl.exe+0x00022B78, Type: Inline - PushRet 0x804F9B78-->C0330004 [unknown_code_page]
ntoskrnl.exe+0x00022BA0, Type: Inline - RelativeJump 0x804F9BA0-->804F0811 [ntoskrnl.exe]
ntoskrnl.exe+0x00022BA7, Type: Inline - RelativeJump 0x804F9BA7-->804F1469 [ntoskrnl.exe]
ntoskrnl.exe+0x00022BAF, Type: Inline - RelativeJump 0x804F9BAF-->804F9BA9 [ntoskrnl.exe]
ntoskrnl.exe+0x00022E71, Type: Inline - PushRet 0x804F9E71-->E9FFFED0 [unknown_code_page]
ntoskrnl.exe+0x00023026, Type: Inline - RelativeJump 0x804FA026-->804FA04A [ntoskrnl.exe]
ntoskrnl.exe+0x0002303E, Type: Inline - RelativeJump 0x804FA03E-->80521E36 [ntoskrnl.exe]
ntoskrnl.exe+0x00023046, Type: Inline - RelativeCall 0x804FA046-->804E2554 [ntoskrnl.exe]
ntoskrnl.exe+0x000230E4, Type: Inline - PushRet 0x804FA0E4-->9090000C [unknown_code_page]
ntoskrnl.exe+0x00023189, Type: Inline - RelativeJump 0x804FA189-->804FA1E7 [ntoskrnl.exe]
ntoskrnl.exe+0x0002319A, Type: Inline - RelativeCall 0x804FA19A-->804E7FC0 [ntoskrnl.exe]
ntoskrnl.exe+0x00023204, Type: Inline - RelativeJump 0x804FA204-->804FA1C1 [ntoskrnl.exe]
ntoskrnl.exe+0x00023342, Type: Inline - RelativeCall 0x804FA342-->804E5B3C [ntoskrnl.exe]
ntoskrnl.exe+0x00023347, Type: Inline - RelativeJump 0x804FA347-->804FA2AE [ntoskrnl.exe]
ntoskrnl.exe+0x000233D0, Type: Inline - PushRet 0x804FA3D0-->90900004 [unknown_code_page]
ntoskrnl.exe+0x0002356F, Type: Inline - RelativeCall 0x804FA56F-->804FA3E5 [ntoskrnl.exe]
ntoskrnl.exe+0x0002359A, Type: Inline - RelativeJump 0x804FA59A-->804FA580 [ntoskrnl.exe]
ntoskrnl.exe+0x00023646, Type: Inline - DirectCall 0x804FA646-->804D8128 [ntoskrnl.exe]
ntoskrnl.exe+0x000237CE, Type: Inline - RelativeCall 0x804FA7CE-->804E1E90 [ntoskrnl.exe]
ntoskrnl.exe+0x000237E3, Type: Inline - PushRet 0x804FA7E3-->90900004 [unknown_code_page]
ntoskrnl.exe+0x000238A3, Type: Inline - RelativeCall 0x804FA8A3-->804EA45A [ntoskrnl.exe]
ntoskrnl.exe+0x000238AB, Type: Inline - RelativeJump 0x804FA8AB-->804FA6D8 [ntoskrnl.exe]
ntoskrnl.exe+0x000238B4, Type: Inline - RelativeJump 0x804FA8B4-->805247FD [ntoskrnl.exe]
ntoskrnl.exe+0x0002394D, Type: Inline - RelativeCall 0x804FA94D-->804F3B31 [ntoskrnl.exe]
ntoskrnl.exe+0x0002395C, Type: Inline - RelativeJump 0x804FA95C-->804E151F [ntoskrnl.exe]
ntoskrnl.exe+0x00023A72, Type: Inline - RelativeCall 0x804FAA72-->804E2EA3 [ntoskrnl.exe]
ntoskrnl.exe+0x00023A89, Type: Inline - RelativeJump 0x804FAA89-->804FAB3F [ntoskrnl.exe]
ntoskrnl.exe+0x00023B3C, Type: Inline - RelativeJump 0x804FAB3C-->804FAB2F [ntoskrnl.exe]
ntoskrnl.exe+0x00023C47, Type: Inline - PushRet 0x804FAC47-->DB320004 [unknown_code_page]
ntoskrnl.exe+0x00023C53, Type: Inline - RelativeJump 0x804FAC53-->804FAC45 [ntoskrnl.exe]
ntoskrnl.exe+0x00023E11, Type: Inline - RelativeJump 0x804FAE11-->805045CE [ntoskrnl.exe]
ntoskrnl.exe+0x00023E59, Type: Inline - RelativeJump 0x804FAE59-->804FAEB5 [ntoskrnl.exe]
ntoskrnl.exe+0x00024034, Type: Inline - RelativeJump 0x804FB034-->804FAFD5 [ntoskrnl.exe]
ntoskrnl.exe+0x000240B7, Type: Inline - RelativeJump 0x804FB0B7-->804FB0D1 [ntoskrnl.exe]
ntoskrnl.exe+0x00024171, Type: Inline - RelativeCall 0x804FB171-->804E8430 [ntoskrnl.exe]
ntoskrnl.exe+0x000241A5, Type: Inline - RelativeJump 0x804FB1A5-->804FB1B3 [ntoskrnl.exe]
ntoskrnl.exe+0x000243E9, Type: Inline - RelativeJump 0x804FB3E9-->95148D0C [unknown_code_page]
ntoskrnl.exe+0x00024545, Type: Inline - RelativeJump 0x804FB545-->804FB55E [ntoskrnl.exe]
ntoskrnl.exe+0x000249A7, Type: Inline - RelativeCall 0x804FB9A7-->804E2554 [ntoskrnl.exe]
ntoskrnl.exe+0x000249AC, Type: Inline - RelativeJump 0x804FB9AC-->804F820A [ntoskrnl.exe]
ntoskrnl.exe+0x00024B47, Type: Inline - PushRet 0x804FBB47-->90900018 [unknown_code_page]
ntoskrnl.exe+0x00024B71, Type: Inline - RelativeJump 0x804FBB71-->804FBB87 [ntoskrnl.exe]
ntoskrnl.exe+0x00024B82, Type: Inline - RelativeJump 0x804FBB82-->804FBB98 [ntoskrnl.exe]
ntoskrnl.exe+0x00024C58, Type: Inline - RelativeJump 0x804FBC58-->804FBC42 [ntoskrnl.exe]
ntoskrnl.exe+0x00024CF3, Type: Inline - RelativeCall 0x804FBCF3-->804FBD19 [ntoskrnl.exe]
ntoskrnl.exe+0x00025025, Type: Inline - RelativeJump 0x804FC025-->804FBFA1 [ntoskrnl.exe]
ntoskrnl.exe+0x0002508F, Type: Inline - DirectCall 0x804FC08F-->804D8130 [ntoskrnl.exe]
ntoskrnl.exe+0x0002511E, Type: Inline - RelativeJump 0x804FC11E-->804FC12A [ntoskrnl.exe]
ntoskrnl.exe+0x00025130, Type: Inline - RelativeJump 0x804FC130-->804EB48C [ntoskrnl.exe]
ntoskrnl.exe+0x0002513E, Type: Inline - RelativeJump 0x804FC13E-->804FC382 [ntoskrnl.exe]
ntoskrnl.exe+0x000251B2, Type: Inline - PushRet 0x804FC1B2-->90900008 [unknown_code_page]
ntoskrnl.exe+0x0002526C, Type: Inline - RelativeJump 0x804FC26C-->804FC26F [ntoskrnl.exe]
ntoskrnl.exe+0x0002527B, Type: Inline - PushRet 0x804FC27B-->9090FFFE [unknown_code_page]
ntoskrnl.exe+0x000253BF, Type: Inline - RelativeJump 0x804FC3BF-->804FC3BC [ntoskrnl.exe]
ntoskrnl.exe+0x000253D5, Type: Inline - RelativeJump 0x804FC3D5-->804FC210 [ntoskrnl.exe]
ntoskrnl.exe+0x000257C1, Type: Inline - RelativeJump 0x804FC7C1-->804FC837 [ntoskrnl.exe]
ntoskrnl.exe+0x0002586F, Type: Inline - RelativeJump 0x804FC86F-->804FC899 [ntoskrnl.exe]
ntoskrnl.exe+0x00025894, Type: Inline - RelativeJump 0x804FC894-->804FC937 [ntoskrnl.exe]
ntoskrnl.exe+0x000259D4, Type: Inline - RelativeJump 0x804FC9D4-->804FC9C2 [ntoskrnl.exe]
ntoskrnl.exe+0x000259EA, Type: Inline - RelativeJump 0x804FC9EA-->804FD0DE [ntoskrnl.exe]
ntoskrnl.exe+0x000259F7, Type: Inline - PushRet 0x804FC9F7-->8D83C033 [unknown_code_page]
ntoskrnl.exe+0x00025A9F, Type: Inline - RelativeJump 0x804FCA9F-->805151B7 [ntoskrnl.exe]
ntoskrnl.exe+0x00025AAA, Type: Inline - RelativeJump 0x804FCAAA-->804FC895 [ntoskrnl.exe]
ntoskrnl.exe+0x00025AB8, Type: Inline - RelativeJump 0x804FCAB8-->804FC895 [ntoskrnl.exe]
ntoskrnl.exe+0x00025ABF, Type: Inline - RelativeJump 0x804FCABF-->804FCBE5 [ntoskrnl.exe]
ntoskrnl.exe+0x00025AC8, Type: Inline - RelativeJump 0x804FCAC8-->804F5C54 [ntoskrnl.exe]
ntoskrnl.exe+0x00025AD1, Type: Inline - RelativeJump 0x804FCAD1-->8050D7E5 [ntoskrnl.exe]
ntoskrnl.exe+0x00025AD7, Type: Inline - RelativeJump 0x804FCAD7-->804F9793 [ntoskrnl.exe]
ntoskrnl.exe+0x00025AEE, Type: Inline - RelativeJump 0x804FCAEE-->804FC895 [ntoskrnl.exe]
ntoskrnl.exe+0x00025AFA, Type: Inline - RelativeJump 0x804FCAFA-->804FC895 [ntoskrnl.exe]
ntoskrnl.exe+0x00025C88, Type: Inline - RelativeJump 0x804FCC88-->804FCD81 [ntoskrnl.exe]
ntoskrnl.exe+0x00025C91, Type: Inline - RelativeJump 0x804FCC91-->804FCC8A [ntoskrnl.exe]
ntoskrnl.exe+0x00025D24, Type: Inline - RelativeJump 0x804FCD24-->804FCD41 [ntoskrnl.exe]
ntoskrnl.exe+0x00025DE1, Type: Inline - RelativeJump 0x804FCDE1-->804FCF13 [ntoskrnl.exe]
ntoskrnl.exe+0x000261F8, Type: Inline - RelativeJump 0x804FD1F8-->804E7342 [ntoskrnl.exe]
ntoskrnl.exe+0x0002630E, Type: Inline - RelativeJump 0x804FD30E-->8052C095 [ntoskrnl.exe]
ntoskrnl.exe+0x00026314, Type: Inline - RelativeJump 0x804FD314-->804FD379 [ntoskrnl.exe]
ntoskrnl.exe+0x000263D0, Type: Inline - RelativeCall 0x804FD3D0-->804FD202 [ntoskrnl.exe]
ntoskrnl.exe+0x000263D5, Type: Inline - RelativeJump 0x804FD3D5-->804FD445 [ntoskrnl.exe]
ntoskrnl.exe+0x000263E0, Type: Inline - RelativeJump 0x804FD3E0-->8052BFA2 [ntoskrnl.exe]
ntoskrnl.exe+0x00026479, Type: Inline - RelativeCall 0x804FD479-->804ECCAE [ntoskrnl.exe]
ntoskrnl.exe+0x0002647E, Type: Inline - RelativeJump 0x804FD47E-->804FD53C [ntoskrnl.exe]
ntoskrnl.exe+0x0002651C, Type: Inline - RelativeJump 0x804FD51C-->8051492B [ntoskrnl.exe]
ntoskrnl.exe+0x00026525, Type: Inline - RelativeCall 0x804FD525-->8051495F [ntoskrnl.exe]
ntoskrnl.exe+0x00026714, Type: Inline - RelativeJump 0x804FD714-->8051EB59 [ntoskrnl.exe]
ntoskrnl.exe+0x00026721, Type: Inline - RelativeJump 0x804FD721-->804F7F75 [ntoskrnl.exe]
ntoskrnl.exe+0x0002677E, Type: Inline - RelativeJump 0x804FD77E-->804F5B46 [ntoskrnl.exe]
ntoskrnl.exe+0x00026A99, Type: Inline - RelativeCall 0x804FDA99-->804E8E10 [ntoskrnl.exe]
ntoskrnl.exe+0x00026AAC, Type: Inline - RelativeJump 0x804FDAAC-->804F94AD [ntoskrnl.exe]
ntoskrnl.exe+0x00026AB1, Type: Inline - RelativeJump 0x804FDAB1-->804E8D88 [ntoskrnl.exe]
ntoskrnl.exe+0x00026ACA, Type: Inline - RelativeJump 0x804FDACA-->80522E59 [ntoskrnl.exe]
ntoskrnl.exe+0x00026E1C, Type: Inline - RelativeJump 0x804FDE1C-->804FDE28 [ntoskrnl.exe]
ntoskrnl.exe+0x00026E4D, Type: Inline - RelativeCall 0x804FDE4D-->C0546B60 [unknown_code_page]
ntoskrnl.exe+0x00026E54, Type: Inline - RelativeJump 0x804FDE54-->805255AF [ntoskrnl.exe]
ntoskrnl.exe+0x00026EDB, Type: Inline - RelativeJump 0x804FDEDB-->804FDEED [ntoskrnl.exe]
ntoskrnl.exe+0x00027421, Type: Inline - RelativeJump 0x804FE421-->804ED69E [ntoskrnl.exe]
ntoskrnl.exe+0x00027429, Type: Inline - RelativeJump 0x804FE429-->804ED69E [ntoskrnl.exe]
ntoskrnl.exe+0x0002779E, Type: Inline - PushRet 0x804FE79E-->90900008 [unknown_code_page]
ntoskrnl.exe+0x000278A2, Type: Inline - RelativeJump 0x804FE8A2-->804FE8B1 [ntoskrnl.exe]
ntoskrnl.exe+0x00027A1D, Type: Inline - RelativeJump 0x804FEA1D-->80500077 [ntoskrnl.exe]
ntoskrnl.exe+0x00027A48, Type: Inline - RelativeJump 0x804FEA48-->804FEA39 [ntoskrnl.exe]
ntoskrnl.exe+0x00027C68, Type: Inline - RelativeJump 0x804FEC68-->8051AA98 [ntoskrnl.exe]
ntoskrnl.exe+0x00027CA0, Type: Inline - RelativeJump 0x804FECA0-->804FF57B [ntoskrnl.exe]
ntoskrnl.exe+0x00027D20, Type: Inline - RelativeJump 0x804FED20-->80524E8D [ntoskrnl.exe]
ntoskrnl.exe+0x00027D6D, Type: Inline - RelativeCall 0x804FED6D-->804E5C99 [ntoskrnl.exe]
ntoskrnl.exe+0x00027D85, Type: Inline - RelativeJump 0x804FED85-->804F2C69 [ntoskrnl.exe]
ntoskrnl.exe+0x00028274, Type: Inline - RelativeJump 0x804FF274-->80502F80 [ntoskrnl.exe]
ntoskrnl.exe+0x00028314, Type: Inline - RelativeJump 0x804FF314-->804FF0DC [ntoskrnl.exe]
ntoskrnl.exe+0x0002835C, Type: Inline - RelativeJump 0x804FF35C-->80524D27 [ntoskrnl.exe]
ntoskrnl.exe+0x00028395, Type: Inline - RelativeJump 0x804FF395-->80524D4D [ntoskrnl.exe]
ntoskrnl.exe+0x000283A8, Type: Inline - RelativeJump 0x804FF3A8-->80524DA4 [ntoskrnl.exe]
ntoskrnl.exe+0x0002845E, Type: Inline - RelativeJump 0x804FF45E-->804FF483 [ntoskrnl.exe]
ntoskrnl.exe+0x0002862C, Type: Inline - RelativeJump 0x804FF62C-->804FF668 [ntoskrnl.exe]
ntoskrnl.exe+0x00028638, Type: Inline - RelativeJump 0x804FF638-->804FF664 [ntoskrnl.exe]
ntoskrnl.exe+0x00028756, Type: Inline - RelativeJump 0x804FF756-->804E8ECB [ntoskrnl.exe]
ntoskrnl.exe+0x00028764, Type: Inline - RelativeJump 0x804FF764-->80526329 [ntoskrnl.exe]
ntoskrnl.exe+0x0002888F, Type: Inline - DirectCall 0x804FF88F-->804D8118 [ntoskrnl.exe]
ntoskrnl.exe+0x0002893B, Type: Inline - RelativeCall 0x804FF93B-->804E803A [ntoskrnl.exe]
ntoskrnl.exe+0x00028DFE, Type: Inline - RelativeJump 0x804FFDFE-->804FFE1E [ntoskrnl.exe]
ntoskrnl.exe+0x00028F1F, Type: Inline - RelativeJump 0x804FFF1F-->8052CA3C [ntoskrnl.exe]
ntoskrnl.exe+0x00028F30, Type: Inline - RelativeCall 0x804FFF30-->804EA45A [ntoskrnl.exe]
ntoskrnl.exe+0x000290B1, Type: Inline - RelativeJump 0x805000B1-->804FFF11 [ntoskrnl.exe]
ntoskrnl.exe+0x0002914E, Type: Inline - RelativeJump 0x8050014E-->8050015C [ntoskrnl.exe]
ntoskrnl.exe+0x00029158, Type: Inline - RelativeJump 0x80500158-->80500166 [ntoskrnl.exe]
ntoskrnl.exe+0x0002925B, Type: Inline - PushRet 0x8050025B-->90900014 [unknown_code_page]
ntoskrnl.exe+0x0002925E, Type: Inline - RelativeJump 0x8050025E-->80500274 [ntoskrnl.exe]
ntoskrnl.exe+0x00029270, Type: Inline - PushRet 0x80500270-->90909090 [unknown_code_page]
ntoskrnl.exe+0x000292AB, Type: Inline - RelativeCall 0x805002AB-->80591177 [ntoskrnl.exe]
ntoskrnl.exe+0x00029400, Type: Inline - RelativeJump 0x80500400-->8050040D [ntoskrnl.exe]
ntoskrnl.exe+0x0002941B, Type: Inline - RelativeJump 0x8050041B-->80525956 [ntoskrnl.exe]
ntoskrnl.exe+0x00029421, Type: Inline - DirectCall 0x80500421-->804D8130 [ntoskrnl.exe]
ntoskrnl.exe+0x0002943E, Type: Inline - RelativeJump 0x8050043E-->8052593D [ntoskrnl.exe]
ntoskrnl.exe+0x00029710, Type: Inline - RelativeJump 0x80500710-->8050073E [ntoskrnl.exe]
ntoskrnl.exe+0x00029799, Type: Inline - RelativeJump 0x80500799-->8050079B [ntoskrnl.exe]
ntoskrnl.exe+0x00029A5E, Type: Inline - RelativeJump 0x80500A5E-->80500A79 [ntoskrnl.exe]
ntoskrnl.exe+0x00029A75, Type: Inline - RelativeCall 0x80500A75-->80500A88 [ntoskrnl.exe]
ntoskrnl.exe+0x00029A7F, Type: Inline - PushRet 0x80500A7F-->90900008 [unknown_code_page]
ntoskrnl.exe+0x00029A8B, Type: Inline - RelativeJump 0x80500A8B-->80512D31 [ntoskrnl.exe]
ntoskrnl.exe+0x00029A9A, Type: Inline - PushRet 0x80500A9A-->90900008 [unknown_code_page]
ntoskrnl.exe+0x00029C8A, Type: Inline - RelativeJump 0x80500C8A-->80500D90 [ntoskrnl.exe]
ntoskrnl.exe+0x00029D25, Type: Inline - RelativeJump 0x80500D25-->80500D59 [ntoskrnl.exe]
ntoskrnl.exe+0x00029D37, Type: Inline - RelativeJump 0x80500D37-->80500D59 [ntoskrnl.exe]
ntoskrnl.exe+0x00029DB7, Type: Inline - RelativeJump 0x80500DB7-->80500DDD [ntoskrnl.exe]
ntoskrnl.exe+0x00029F40, Type: Inline - RelativeJump 0x80500F40-->80500F4E [ntoskrnl.exe]
ntoskrnl.exe+0x00029FF4, Type: Inline - RelativeJump 0x80500FF4-->805236B9 [ntoskrnl.exe]
ntoskrnl.exe+0x0002A153, Type: Inline - RelativeJump 0x80501153-->804F7DEE [ntoskrnl.exe]
ntoskrnl.exe+0x0002A311, Type: Inline - RelativeJump 0x80501311-->8051C6DD [ntoskrnl.exe]
ntoskrnl.exe+0x0002A603, Type: Inline - RelativeJump 0x80501603-->804ED5B5 [ntoskrnl.exe]
ntoskrnl.exe+0x0002A60D, Type: Inline - RelativeJump 0x8050160D-->804ED5AA [ntoskrnl.exe]
ntoskrnl.exe+0x0002A625, Type: Inline - RelativeJump 0x80501625-->80501632 [ntoskrnl.exe]
ntoskrnl.exe+0x0002A7AF, Type: Inline - PushRet 0x805017AF-->D08AD3FF [unknown_code_page]
ntoskrnl.exe+0x0002A7B0, Type: Inline - DirectCall 0x805017B0-->FFFFFFFF [unknown_code_page]
ntoskrnl.exe+0x0002A840, Type: Inline - RelativeJump 0x80501840-->80512CFC [ntoskrnl.exe]
ntoskrnl.exe+0x0002AA3D, Type: Inline - PushRet 0x80501A3D-->90909090 [unknown_code_page]
ntoskrnl.exe+0x0002AB3F, Type: Inline - RelativeJump 0x80501B3F-->80501B36 [ntoskrnl.exe]
ntoskrnl.exe+0x0002AC89, Type: Inline - RelativeJump 0x80501C89-->80501D3C [ntoskrnl.exe]
ntoskrnl.exe+0x0002AEA7, Type: Inline - RelativeJump 0x80501EA7-->80501EBB [ntoskrnl.exe]
ntoskrnl.exe+0x0002AEAE, Type: Inline - RelativeCall 0x80501EAE-->80501A73 [ntoskrnl.exe]
ntoskrnl.exe+0x0002AEBC, Type: Inline - RelativeJump 0x80501EBC-->8052B79A [ntoskrnl.exe]
ntoskrnl.exe+0x0002AEC2, Type: Inline - RelativeCall 0x80501EC2-->804D9C6A [ntoskrnl.exe]
ntoskrnl.exe+0x0002AECA, Type: Inline - RelativeCall 0x80501ECA-->804E2EDE [ntoskrnl.exe]
ntoskrnl.exe+0x0002AECF, Type: Inline - PushRet 0x80501ECF-->90900014 [unknown_code_page]
ntoskrnl.exe+0x0002AEF3, Type: Inline - RelativeJump 0x80501EF3-->80501F01 [ntoskrnl.exe]
ntoskrnl.exe+0x0002AF03, Type: Inline - PushRet 0x80501F03-->CCCC0090 [unknown_code_page]
ntoskrnl.exe+0x0002AF3C, Type: Inline - RelativeJump 0x80501F3C-->805019E6 [ntoskrnl.exe]
ntoskrnl.exe+0x0002AF4E, Type: Inline - RelativeJump 0x80501F4E-->805019E6 [ntoskrnl.exe]
ntoskrnl.exe+0x0002AF79, Type: Inline - RelativeJump 0x80501F79-->805019E6 [ntoskrnl.exe]
ntoskrnl.exe+0x0002AFB4, Type: Inline - RelativeJump 0x80501FB4-->805019E6 [ntoskrnl.exe]
ntoskrnl.exe+0x0002AFBC, Type: Inline - RelativeJump 0x80501FBC-->805019E6 [ntoskrnl.exe]
ntoskrnl.exe+0x0002AFC4, Type: Inline - RelativeJump 0x80501FC4-->805019E6 [ntoskrnl.exe]
ntoskrnl.exe+0x0002AFCC, Type: Inline - RelativeJump 0x80501FCC-->805019E6 [ntoskrnl.exe]
ntoskrnl.exe+0x0002AFDA, Type: Inline - RelativeCall 0x80501FDA-->80501A15 [ntoskrnl.exe]
ntoskrnl.exe+0x0002B223, Type: Inline - RelativeJump 0x80502223-->8050223A [ntoskrnl.exe]
ntoskrnl.exe+0x0002B242, Type: Inline - RelativeJump 0x80502242-->80518F0B [ntoskrnl.exe]
ntoskrnl.exe+0x0002B263, Type: Inline - RelativeJump 0x80502263-->80518FA7 [ntoskrnl.exe]
ntoskrnl.exe+0x0002B2DB, Type: Inline - RelativeJump 0x805022DB-->805023B6 [ntoskrnl.exe]
ntoskrnl.exe+0x0002B344, Type: Inline - RelativeJump 0x80502344-->8050246B [ntoskrnl.exe]
ntoskrnl.exe+0x0002B350, Type: Inline - RelativeJump 0x80502350-->8050246B [ntoskrnl.exe]
ntoskrnl.exe+0x0002B361, Type: Inline - RelativeJump 0x80502361-->8050246B [ntoskrnl.exe]
ntoskrnl.exe+0x0002B36D, Type: Inline - RelativeJump 0x8050236D-->8050246B [ntoskrnl.exe]
ntoskrnl.exe+0x0002B37E, Type: Inline - RelativeJump 0x8050237E-->80502784 [ntoskrnl.exe]
ntoskrnl.exe+0x0002B389, Type: Inline - RelativeJump 0x80502389-->8050277F [ntoskrnl.exe]
ntoskrnl.exe+0x0002B39F, Type: Inline - RelativeJump 0x8050239F-->8050277F [ntoskrnl.exe]
ntoskrnl.exe+0x0002B3A8, Type: Inline - DirectCall 0x805023A8-->804D8124 [ntoskrnl.exe]
ntoskrnl.exe+0x0002B40E, Type: Inline - RelativeJump 0x8050240E-->80502452 [ntoskrnl.exe]
ntoskrnl.exe+0x0002B4E3, Type: Inline - RelativeJump 0x805024E3-->80501221 [ntoskrnl.exe]
ntoskrnl.exe+0x0002B56E, Type: Inline - RelativeJump 0x8050256E-->8052D28B [ntoskrnl.exe]
ntoskrnl.exe+0x0002B6CC, Type: Inline - RelativeJump 0x805026CC-->8051D255 [ntoskrnl.exe]
ntoskrnl.exe+0x0002B78B, Type: Inline - RelativeJump 0x8050278B-->80502389 [ntoskrnl.exe]
ntoskrnl.exe+0x0002B793, Type: Inline - RelativeJump 0x80502793-->80502389 [ntoskrnl.exe]
ntoskrnl.exe+0x0002B7A3, Type: Inline - RelativeJump 0x805027A3-->80502396 [ntoskrnl.exe]
ntoskrnl.exe+0x0002B7AF, Type: Inline - RelativeJump 0x805027AF-->805023A8 [ntoskrnl.exe]
ntoskrnl.exe+0x0002B7BC, Type: Inline - DirectCall 0x805027BC-->804D8124 [ntoskrnl.exe]
ntoskrnl.exe+0x0002B9EC, Type: Inline - RelativeJump 0x805029EC-->80502A35 [ntoskrnl.exe]
ntoskrnl.exe+0x0002BAB3, Type: Inline - RelativeJump 0x80502AB3-->8050271A [ntoskrnl.exe]
ntoskrnl.exe+0x0002BBCD, Type: Inline - RelativeJump 0x80502BCD-->80502BC3 [ntoskrnl.exe]
ntoskrnl.exe+0x0002BD51, Type: Inline - RelativeCall 0x80502D51-->804E8430 [ntoskrnl.exe]
ntoskrnl.exe+0x0002BD5A, Type: Inline - RelativeCall 0x80502D5A-->804ED31D [ntoskrnl.exe]
ntoskrnl.exe+0x0002BD73, Type: Inline - RelativeJump 0x80502D73-->8051E848 [ntoskrnl.exe]
ntoskrnl.exe+0x0002BD7D, Type: Inline - RelativeJump 0x80502D7D-->8050CFAD [ntoskrnl.exe]
ntoskrnl.exe+0x0002BD89, Type: Inline - RelativeJump 0x80502D89-->80502D97 [ntoskrnl.exe]
ntoskrnl.exe+0x0002BE67, Type: Inline - PushRet 0x80502E67-->9090000C [unknown_code_page]
ntoskrnl.exe+0x0002C026, Type: Inline - RelativeCall 0x80503026-->804F173E [ntoskrnl.exe]
ntoskrnl.exe+0x0002C033, Type: Inline - RelativeJump 0x80503033-->80503064 [ntoskrnl.exe]
ntoskrnl.exe+0x0002C04A, Type: Inline - RelativeJump 0x8050304A-->8050305C [ntoskrnl.exe]
ntoskrnl.exe+0x0002C0D2, Type: Inline - RelativeJump 0x805030D2-->805030E6 [ntoskrnl.exe]
ntoskrnl.exe+0x0002C0F2, Type: Inline - RelativeJump 0x805030F2-->80515F1B [ntoskrnl.exe]
ntoskrnl.exe+0x0002C0F8, Type: Inline - RelativeCall 0x805030F8-->804DA06B [ntoskrnl.exe]
ntoskrnl.exe+0x0002C10A, Type: Inline - RelativeJump 0x8050310A-->8050313C [ntoskrnl.exe]
ntoskrnl.exe+0x0002C250, Type: Inline - RelativeJump 0x80503250-->80503252 [ntoskrnl.exe]
ntoskrnl.exe+0x0002C28A, Type: Inline - RelativeJump 0x8050328A-->804E1E81 [ntoskrnl.exe]
ntoskrnl.exe+0x0002C295, Type: Inline - RelativeJump 0x80503295-->805249D9 [ntoskrnl.exe]
ntoskrnl.exe+0x0002C2A9, Type: Inline - RelativeCall 0x805032A9-->804E9997 [ntoskrnl.exe]
ntoskrnl.exe+0x0002C369, Type: Inline - RelativeJump 0x80503369-->80519444 [ntoskrnl.exe]
ntoskrnl.exe+0x0002C3CE, Type: Inline - RelativeJump 0x805033CE-->8050331C [ntoskrnl.exe]
ntoskrnl.exe+0x0002C599, Type: Inline - RelativeJump 0x80503599-->8052B94C [ntoskrnl.exe]
ntoskrnl.exe+0x0002C779, Type: Inline - RelativeJump 0x80503779-->8050378E [ntoskrnl.exe]
ntoskrnl.exe+0x0002C7FE, Type: Inline - RelativeJump 0x805037FE-->8051EB95 [ntoskrnl.exe]
ntoskrnl.exe+0x0002C841, Type: Inline - RelativeJump 0x80503841-->8051EBA4 [ntoskrnl.exe]
ntoskrnl.exe+0x0002C894, Type: Inline - RelativeJump 0x80503894-->80503EF5 [ntoskrnl.exe]
ntoskrnl.exe+0x0002C8F2, Type: Inline - RelativeJump 0x805038F2-->80508AFC [ntoskrnl.exe]
ntoskrnl.exe+0x0002C905, Type: Inline - RelativeJump 0x80503905-->804F7A61 [ntoskrnl.exe]
ntoskrnl.exe+0x0002CB49, Type: Inline - RelativeJump 0x80503B49-->80503BE8 [ntoskrnl.exe]
ntoskrnl.exe+0x0002CE0A, Type: Inline - RelativeJump 0x80503E0A-->80503E08 [ntoskrnl.exe]
ntoskrnl.exe+0x0002CF7D, Type: Inline - RelativeJump 0x80503F7D-->80503F9C [ntoskrnl.exe]
ntoskrnl.exe+0x0002D3F1, Type: Inline - RelativeCall 0x805043F1-->804E7FC0 [ntoskrnl.exe]
ntoskrnl.exe+0x0002D463, Type: Inline - RelativeJump 0x80504463-->80504471 [ntoskrnl.exe]
ntoskrnl.exe+0x0002D465, Type: Inline - RelativeJump 0x80504465-->80504281 [ntoskrnl.exe]
ntoskrnl.exe+0x0002D533, Type: Inline - RelativeJump 0x80504533-->80504556 [ntoskrnl.exe]
ntoskrnl.exe+0x0002D549, Type: Inline - RelativeCall 0x80504549-->804DC599 [ntoskrnl.exe]
ntoskrnl.exe+0x0002D873, Type: Inline - RelativeJump 0x80504873-->8050488D [ntoskrnl.exe]
ntoskrnl.exe+0x0002D8AD, Type: Inline - RelativeCall 0x805048AD-->804F087E [ntoskrnl.exe]
ntoskrnl.exe+0x0002D8B5, Type: Inline - RelativeJump 0x805048B5-->80504D8D [ntoskrnl.exe]
ntoskrnl.exe+0x0002DA1F, Type: Inline - RelativeCall 0x80504A1F-->804E7FE8 [ntoskrnl.exe]
ntoskrnl.exe+0x0002E2D8, Type: Inline - RelativeJump 0x805052D8-->805051A0 [ntoskrnl.exe]
ntoskrnl.exe+0x0002E2E0, Type: Inline - RelativeJump 0x805052E0-->80527C9A [ntoskrnl.exe]
ntoskrnl.exe+0x0002E557, Type: Inline - RelativeJump 0x80505557-->805055DC [ntoskrnl.exe]
ntoskrnl.exe+0x0002E673, Type: Inline - RelativeJump 0x80505673-->8052AA01 [ntoskrnl.exe]
ntoskrnl.exe+0x0002E948, Type: Inline - RelativeCall 0x80505948-->805058CC [ntoskrnl.exe]
ntoskrnl.exe+0x0002E956, Type: Inline - PushRet 0x80505956-->9090000C [unknown_code_page]
ntoskrnl.exe+0x0002E963, Type: Inline - DirectCall 0x80505963-->804D8130 [ntoskrnl.exe]
ntoskrnl.exe+0x0002E975, Type: Inline - RelativeJump 0x80505975-->805057AC [ntoskrnl.exe]
ntoskrnl.exe+0x0002E97A, Type: Inline - RelativeJump 0x8050597A-->80505867 [ntoskrnl.exe]
ntoskrnl.exe+0x0002E986, Type: Inline - RelativeJump 0x80505986-->80505869 [ntoskrnl.exe]
ntoskrnl.exe+0x0002E9A8, Type: Inline - RelativeJump 0x805059A8-->8052B697 [ntoskrnl.exe]
ntoskrnl.exe+0x0002EA45, Type: Inline - RelativeJump 0x80505A45-->80505A27 [ntoskrnl.exe]
ntoskrnl.exe+0x0002EBB4, Type: Inline - RelativeJump 0x80505BB4-->80510C68 [ntoskrnl.exe]
ntoskrnl.exe+0x0002EBC2, Type: Inline - RelativeJump 0x80505BC2-->80510C68 [ntoskrnl.exe]
ntoskrnl.exe+0x0002EF78, Type: Inline - RelativeCall 0x80505F78-->805A21F1 [ntoskrnl.exe]
ntoskrnl.exe+0x0002EF88, Type: Inline - RelativeJump 0x80505F88-->805060C5 [ntoskrnl.exe]
ntoskrnl.exe+0x0002F079, Type: Inline - RelativeJump 0x80506079-->80505F82 [ntoskrnl.exe]
ntoskrnl.exe+0x0002F07E, Type: Inline - RelativeCall 0x8050607E-->806260F5 [ntoskrnl.exe]
ntoskrnl.exe+0x0002F084, Type: Inline - RelativeJump 0x80506084-->80505F82 [ntoskrnl.exe]
ntoskrnl.exe+0x0002F089, Type: Inline - RelativeJump 0x80506089-->80505F82 [ntoskrnl.exe]
ntoskrnl.exe+0x0002F33A, Type: Inline - RelativeJump 0x8050633A-->80506340 [ntoskrnl.exe]
ntoskrnl.exe+0x0002F477, Type: Inline - RelativeJump 0x80506477-->80506496 [ntoskrnl.exe]
ntoskrnl.exe+0x0002F6B5, Type: Inline - RelativeJump 0x805066B5-->80506683 [ntoskrnl.exe]
ntoskrnl.exe+0x0002F6C4, Type: Inline - RelativeJump 0x805066C4-->80518F8F [ntoskrnl.exe]
ntoskrnl.exe+0x0002F757, Type: Inline - RelativeJump 0x80506757-->80518F0B [ntoskrnl.exe]
ntoskrnl.exe+0x0002F888, Type: Inline - RelativeJump 0x80506888-->805068A0 [ntoskrnl.exe]
ntoskrnl.exe+0x0002F93C, Type: Inline - RelativeJump 0x8050693C-->80506702 [ntoskrnl.exe]
ntoskrnl.exe+0x0002FABA, Type: Inline - RelativeCall 0x80506ABA-->805A6293 [ntoskrnl.exe]
ntoskrnl.exe+0x0002FACE, Type: Inline - RelativeJump 0x80506ACE-->8050D77D [ntoskrnl.exe]
ntoskrnl.exe+0x0002FBDE, Type: Inline - RelativeJump 0x80506BDE-->80506BF0 [ntoskrnl.exe]
ntoskrnl.exe+0x0002FC14, Type: Inline - RelativeJump 0x80506C14-->805211AC [ntoskrnl.exe]
ntoskrnl.exe+0x0002FC6D, Type: Inline - RelativeJump 0x80506C6D-->8052D31E [ntoskrnl.exe]
ntoskrnl.exe+0x0002FC7D, Type: Inline - RelativeCall 0x80506C7D-->80506559 [ntoskrnl.exe]
ntoskrnl.exe+0x0002FC88, Type: Inline - PushRet 0x80506C88-->90900008 [unknown_code_page]
ntoskrnl.exe+0x0002FDDF, Type: Inline - RelativeJump 0x80506DDF-->804DC74A [ntoskrnl.exe]
ntoskrnl.exe+0x0002FFFA, Type: Inline - RelativeCall 0x80506FFA-->ABD0C07C [unknown_code_page]
ntoskrnl.exe+0x00030118, Type: Inline - RelativeCall 0x80507118-->804DA5B6 [ntoskrnl.exe]
ntoskrnl.exe+0x000303CF, Type: Inline - RelativeJump 0x805073CF-->8050D690 [ntoskrnl.exe]
ntoskrnl.exe+0x0003069B, Type: Inline - RelativeJump 0x8050769B-->80519225 [ntoskrnl.exe]
ntoskrnl.exe+0x000306A7, Type: Inline - RelativeJump 0x805076A7-->805072F2 [ntoskrnl.exe]
ntoskrnl.exe+0x000306B0, Type: Inline - RelativeJump 0x805076B0-->805072CC [ntoskrnl.exe]
ntoskrnl.exe+0x00030730, Type: Inline - RelativeJump 0x80507730-->805076B5 [ntoskrnl.exe]
ntoskrnl.exe+0x00030742, Type: Inline - PushRet 0x80507742-->812415FF [unknown_code_page]
ntoskrnl.exe+0x00030743, Type: Inline - DirectCall 0x80507743-->804D8124 [ntoskrnl.exe]
ntoskrnl.exe+0x00030945, Type: Inline - RelativeJump 0x80507945-->805079AD [ntoskrnl.exe]
ntoskrnl.exe+0x00030A37, Type: Inline - RelativeJump 0x80507A37-->8051D6B0 [ntoskrnl.exe]
ntoskrnl.exe+0x00030AEA, Type: Inline - RelativeJump 0x80507AEA-->80507AF4 [ntoskrnl.exe]
ntoskrnl.exe+0x00030B7F, Type: Inline - RelativeJump 0x80507B7F-->80507BB4 [ntoskrnl.exe]
ntoskrnl.exe+0x00030CAB, Type: Inline - PushRet 0x80507CAB-->90909090 [unknown_code_page]
ntoskrnl.exe+0x00030E47, Type: Inline - RelativeJump 0x80507E47-->8050BA7F [ntoskrnl.exe]
ntoskrnl.exe+0x00030F3E, Type: Inline - DirectCall 0x80507F3E-->804D8124 [ntoskrnl.exe]
ntoskrnl.exe+0x00030F48, Type: Inline - PushRet 0x80507F48-->E8570004 [unknown_code_page]
ntoskrnl.exe+0x00030F4F, Type: Inline - RelativeCall 0x80507F4F-->80507F10 [ntoskrnl.exe]
ntoskrnl.exe+0x00030F91, Type: Inline - RelativeJump 0x80507F91-->80514190 [ntoskrnl.exe]
ntoskrnl.exe+0x000310EE, Type: Inline - RelativeJump 0x805080EE-->80508104 [ntoskrnl.exe]
ntoskrnl.exe+0x0003113F, Type: Inline - RelativeJump 0x8050813F-->805081B0 [ntoskrnl.exe]
ntoskrnl.exe+0x00031231, Type: Inline - RelativeJump 0x80508231-->8050822F [ntoskrnl.exe]
ntoskrnl.exe+0x00031245, Type: Inline - RelativeCall 0x80508245-->805AE857 [ntoskrnl.exe]
ntoskrnl.exe+0x0003129B, Type: Inline - RelativeCall 0x8050829B-->805A2904 [ntoskrnl.exe]
ntoskrnl.exe+0x0003130E, Type: Inline - PushRet 0x8050830E-->CE8B000C [unknown_code_page]
ntoskrnl.exe+0x00031315, Type: Inline - RelativeCall 0x80508315-->804DA06B [ntoskrnl.exe]
ntoskrnl.exe+0x000313B5, Type: Inline - RelativeJump 0x805083B5-->80508379 [ntoskrnl.exe]
ntoskrnl.exe+0x0003147B, Type: Inline - RelativeJump 0x8050847B-->80508564 [ntoskrnl.exe]
ntoskrnl.exe+0x00031481, Type: Inline - RelativeCall 0x80508481-->805A1AC8 [ntoskrnl.exe]
ntoskrnl.exe+0x000315F1, Type: Inline - DirectCall 0x805085F1-->FFFFFFFF [unknown_code_page]
ntoskrnl.exe+0x000319E4, Type: Inline - RelativeCall 0x805089E4-->804E2554 [ntoskrnl.exe]
ntoskrnl.exe+0x00031E89, Type: Inline - RelativeJump 0x80508E89-->80508E9F [ntoskrnl.exe]
ntoskrnl.exe+0x00031FC9, Type: Inline - RelativeJump 0x80508FC9-->80508FDB [ntoskrnl.exe]
ntoskrnl.exe+0x00032062, Type: Inline - RelativeCall 0x80509062-->81183950 [unknown_code_page]
ntoskrnl.exe+0x000321DF, Type: Inline - RelativeJump 0x805091DF-->805091F5 [ntoskrnl.exe]
ntoskrnl.exe+0x000322CF, Type: Inline - PushRet 0x805092CF-->E8560875 [unknown_code_page]
ntoskrnl.exe+0x000322D3, Type: Inline - RelativeJump 0x805092D3-->805093C9 [ntoskrnl.exe]
ntoskrnl.exe+0x00032341, Type: Inline - RelativeJump 0x80509341-->80509356 [ntoskrnl.exe]
ntoskrnl.exe+0x00032356, Type: Inline - RelativeJump 0x80509356-->80509371 [ntoskrnl.exe]
ntoskrnl.exe+0x00032391, Type: Inline - DirectCall 0x80509391-->FFFFFFFF [unknown_code_page]
ntoskrnl.exe+0x00032393, Type: Inline - RelativeCall 0x80509393-->804FAC19 [ntoskrnl.exe]
ntoskrnl.exe+0x0003239E, Type: Inline - RelativeJump 0x8050939E-->805093BB [ntoskrnl.exe]
ntoskrnl.exe+0x0003248B, Type: Inline - RelativeJump 0x8050948B-->805159C5 [ntoskrnl.exe]
ntoskrnl.exe+0x00032490, Type: Inline - RelativeCall 0x80509490-->804F4939 [ntoskrnl.exe]
ntoskrnl.exe+0x00032499, Type: Inline - RelativeJump 0x80509499-->80509470 [ntoskrnl.exe]
ntoskrnl.exe+0x000324AC, Type: Inline - RelativeJump 0x805094AC-->8052C634 [ntoskrnl.exe]
ntoskrnl.exe+0x00032667, Type: Inline - RelativeJump 0x80509667-->805096A9 [ntoskrnl.exe]
ntoskrnl.exe+0x0003279C, Type: Inline - RelativeJump 0x8050979C-->80509774 [ntoskrnl.exe]
ntoskrnl.exe+0x000327F5, Type: Inline - RelativeJump 0x805097F5-->8052AD4F [ntoskrnl.exe]
ntoskrnl.exe+0x00032811, Type: Inline - RelativeCall 0x80509811-->80509734 [ntoskrnl.exe]
ntoskrnl.exe+0x000328DC, Type: Inline - RelativeJump 0x805098DC-->80525C78 [ntoskrnl.exe]
ntoskrnl.exe+0x00032B66, Type: Inline - DirectCall 0x80509B66-->FFFFFFFF [unknown_code_page]
ntoskrnl.exe+0x00032B68, Type: Inline - RelativeJump 0x80509B68-->80509B50 [ntoskrnl.exe]
ntoskrnl.exe+0x00032B6D, Type: Inline - RelativeJump 0x80509B6D-->80509B87 [ntoskrnl.exe]
ntoskrnl.exe+0x00032BE0, Type: Inline - RelativeJump 0x80509BE0-->80509B91 [ntoskrnl.exe]
ntoskrnl.exe+0x00032C9A, Type: Inline - RelativeJump 0x80509C9A-->80509C99 [ntoskrnl.exe]
ntoskrnl.exe+0x00032E8A, Type: Inline - RelativeJump 0x80509E8A-->8050A056 [ntoskrnl.exe]
ntoskrnl.exe+0x000330EC, Type: Inline - PushRet 0x8050A0EC-->9090002C [unknown_code_page]
ntoskrnl.exe+0x00033158, Type: Inline - RelativeJump 0x8050A158-->8050DBA3 [ntoskrnl.exe]
ntoskrnl.exe+0x000331D8, Type: Inline - RelativeJump 0x8050A1D8-->804FA699 [ntoskrnl.exe]
ntoskrnl.exe+0x0003321B, Type: Inline - RelativeJump 0x8050A21B-->8050A1B7 [ntoskrnl.exe]
ntoskrnl.exe+0x00033258, Type: Inline - RelativeJump 0x8050A258-->804E7B17 [ntoskrnl.exe]
ntoskrnl.exe+0x0003325D, Type: Inline - RelativeCall 0x8050A25D-->804E1930 [ntoskrnl.exe]
ntoskrnl.exe+0x00033264, Type: Inline - RelativeJump 0x8050A264-->804E7BE8 [ntoskrnl.exe]
ntoskrnl.exe+0x00033401, Type: Inline - RelativeJump 0x8050A401-->80520443 [ntoskrnl.exe]
ntoskrnl.exe+0x000334D2, Type: Inline - PushRet 0x8050A4D2-->9090000C [unknown_code_page]
ntoskrnl.exe+0x0003359C, Type: Inline - RelativeCall 0x8050A59C-->8056DA64 [ntoskrnl.exe]
ntoskrnl.exe+0x00033762, Type: Inline - DirectCall 0x8050A762-->804D8128 [ntoskrnl.exe]
ntoskrnl.exe+0x0003376F, Type: Inline - RelativeCall 0x8050A76F-->80508ACE [ntoskrnl.exe]
ntoskrnl.exe+0x00033D52, Type: Inline - RelativeCall 0x8050AD52-->804F23E1 [ntoskrnl.exe]
ntoskrnl.exe+0x00033DBB, Type: Inline - RelativeCall 0x8050ADBB-->804E81F3 [ntoskrnl.exe]
ntoskrnl.exe+0x00033F24, Type: Inline - RelativeCall 0x8050AF24-->804E9865 [ntoskrnl.exe]
ntoskrnl.exe+0x00033F29, Type: Inline - RelativeJump 0x8050AF29-->804F0D04 [ntoskrnl.exe]
ntoskrnl.exe+0x00034097, Type: Inline - PushRet 0x8050B097-->FFFF0004 [unknown_code_page]
ntoskrnl.exe+0x00034106, Type: Inline - RelativeJump 0x8050B106-->8050B11A [ntoskrnl.exe]
ntoskrnl.exe+0x00034115, Type: Inline - RelativeJump 0x8050B115-->8050B10C [ntoskrnl.exe]
ntoskrnl.exe+0x000341AC, Type: Inline - RelativeJump 0x8050B1AC-->8050B27F [ntoskrnl.exe]
ntoskrnl.exe+0x000343EC, Type: Inline - RelativeJump 0x8050B3EC-->8050B3D2 [ntoskrnl.exe]
ntoskrnl.exe+0x000343FA, Type: Inline - RelativeJump 0x8050B3FA-->804FA39C [ntoskrnl.exe]
ntoskrnl.exe+0x00034401, Type: Inline - RelativeJump 0x8050B401-->804FE2B2 [ntoskrnl.exe]
ntoskrnl.exe+0x00034532, Type: Inline - RelativeCall 0x8050B532-->8050B552 [ntoskrnl.exe]
ntoskrnl.exe+0x000345DF, Type: Inline - RelativeCall 0x8050B5DF-->80504CFA [ntoskrnl.exe]
ntoskrnl.exe+0x000345EC, Type: Inline - RelativeJump 0x8050B5EC-->8050B811 [ntoskrnl.exe]
ntoskrnl.exe+0x000346F6, Type: Inline - DirectJump 0x8050B6F6-->804D8020 [ntoskrnl.exe]
ntoskrnl.exe+0x0003484A, Type: Inline - RelativeJump 0x8050B84A-->80523019 [ntoskrnl.exe]
ntoskrnl.exe+0x00034850, Type: Inline - RelativeJump 0x8050B850-->8050B698 [ntoskrnl.exe]
ntoskrnl.exe+0x0003489C, Type: Inline - RelativeJump 0x8050B89C-->80504EA2 [ntoskrnl.exe]
ntoskrnl.exe+0x000349F4, Type: Inline - RelativeCall 0x8050B9F4-->8050D045 [ntoskrnl.exe]
ntoskrnl.exe+0x00034A37, Type: Inline - RelativeJump 0x8050BA37-->8050BA1D [ntoskrnl.exe]
ntoskrnl.exe+0x00034AC4, Type: Inline - RelativeJump 0x8050BAC4-->80521016 [ntoskrnl.exe]
ntoskrnl.exe+0x00034CB3, Type: Inline - RelativeCall 0x8050BCB3-->805077F4 [ntoskrnl.exe]
ntoskrnl.exe+0x00034CB9, Type: Inline - RelativeJump 0x8050BCB9-->8052BCEB [ntoskrnl.exe]
ntoskrnl.exe+0x00034FCA, Type: Inline - RelativeCall 0x8050BFCA-->80515795 [ntoskrnl.exe]
ntoskrnl.exe+0x0003517E, Type: Inline - RelativeCall 0x8050C17E-->804DA06B [ntoskrnl.exe]
ntoskrnl.exe+0x0003536B, Type: Inline - RelativeJump 0x8050C36B-->8050C360 [ntoskrnl.exe]
ntoskrnl.exe+0x00035423, Type: Inline - PushRet 0x8050C423-->C25D0001 [unknown_code_page]
ntoskrnl.exe+0x0003542E, Type: Inline - RelativeJump 0x8050C42E-->8050C4B1 [ntoskrnl.exe]
ntoskrnl.exe+0x0003543B, Type: Inline - RelativeCall 0x8050C43B-->805511E6 [ntoskrnl.exe]
ntoskrnl.exe+0x00035668, Type: Inline - RelativeCall 0x8050C668-->8214BD7D [unknown_code_page]
ntoskrnl.exe+0x00035788, Type: Inline - RelativeJump 0x8050C788-->80518FEB [ntoskrnl.exe]
ntoskrnl.exe+0x00035790, Type: Inline - RelativeJump 0x8050C790-->80518F11 [ntoskrnl.exe]
ntoskrnl.exe+0x000359A4, Type: Inline - RelativeCall 0x8050C9A4-->8050C95B [ntoskrnl.exe]
ntoskrnl.exe+0x000359B5, Type: Inline - RelativeJump 0x8050C9B5-->8050C9CF [ntoskrnl.exe]
ntoskrnl.exe+0x00035B5D, Type: Inline - RelativeJump 0x8050CB5D-->8050CB88 [ntoskrnl.exe]
ntoskrnl.exe+0x00035FB7, Type: Inline - RelativeJump 0x8050CFB7-->80502DF6 [ntoskrnl.exe]
ntoskrnl.exe+0x00036101, Type: Inline - PushRet 0x8050D101-->8BD08A04 [unknown_code_page]
ntoskrnl.exe+0x00036102, Type: Inline - DirectCall 0x8050D102-->804D8124 [ntoskrnl.exe]
ntoskrnl.exe+0x000362B3, Type: Inline - DirectCall 0x8050D2B3-->804D8128 [ntoskrnl.exe]
ntoskrnl.exe+0x0003664A, Type: Inline - RelativeCall 0x8050D64A-->8050D045 [ntoskrnl.exe]
ntoskrnl.exe+0x00036786, Type: Inline - RelativeJump 0x8050D786-->8050D790 [ntoskrnl.exe]
ntoskrnl.exe+0x00036793, Type: Inline - RelativeCall 0x8050D793-->805511E6 [ntoskrnl.exe]
ntoskrnl.exe+0x00036936, Type: Inline - RelativeJump 0x8050D936-->80505EFB [ntoskrnl.exe]
ntoskrnl.exe+0x0003693B, Type: Inline - RelativeJump 0x8050D93B-->80505F85 [ntoskrnl.exe]
ntoskrnl.exe+0x00036944, Type: Inline - RelativeJump 0x8050D944-->80505F5C [ntoskrnl.exe]
ntoskrnl.exe+0x00036956, Type: Inline - RelativeJump 0x8050D956-->80505B65 [ntoskrnl.exe]
ntoskrnl.exe+0x0003695B, Type: Inline - RelativeJump 0x8050D95B-->80505BF6 [ntoskrnl.exe]
ntoskrnl.exe+0x00036A5A, Type: Inline - RelativeCall 0x8050DA5A-->805511E6 [ntoskrnl.exe]
ntoskrnl.exe+0x00036CA2, Type: Inline - RelativeJump 0x8050DCA2-->8050DCBB [ntoskrnl.exe]
ntoskrnl.exe+0x00036CB0, Type: Inline - RelativeJump 0x8050DCB0-->80521758 [ntoskrnl.exe]
ntoskrnl.exe+0x00036CC4, Type: Inline - DirectCall 0x8050DCC4-->804D8130 [ntoskrnl.exe]
ntoskrnl.exe+0x00036CCF, Type: Inline - PushRet 0x8050DCCF-->FA800008 [unknown_code_page]
ntoskrnl.exe+0x00036D14, Type: Inline - RelativeJump 0x8050DD14-->8050DDA5 [ntoskrnl.exe]
ntoskrnl.exe+0x00036D1C, Type: Inline - DirectCall 0x8050DD1C-->804D8088 [ntoskrnl.exe]
ntoskrnl.exe+0x00036D2C, Type: Inline - RelativeJump 0x8050DD2C-->8050DD53 [ntoskrnl.exe]
ntoskrnl.exe+0x00036D42, Type: Inline - RelativeCall 0x8050DD42-->804D9E2A [ntoskrnl.exe]
ntoskrnl.exe+0x00036E0B, Type: Inline - RelativeJump 0x8050DE0B-->804F4D5A [ntoskrnl.exe]
ntoskrnl.exe+0x00036E10, Type: Inline - RelativeCall 0x8050DE10-->805303E5 [ntoskrnl.exe]
ntoskrnl.exe+0x00036E16, Type: Inline - RelativeJump 0x8050DE16-->8050D2AF [ntoskrnl.exe]
ntoskrnl.exe+0x00036E1B, Type: Inline - DirectCall 0x8050DE1B-->804D8110 [ntoskrnl.exe]
ntoskrnl.exe+0x00036E36, Type: Inline - RelativeCall 0x8050DE36-->804E2528 [ntoskrnl.exe]
ntoskrnl.exe+0x00036E3B, Type: Inline - RelativeJump 0x8050DE3B-->80503D7A [ntoskrnl.exe]
ntoskrnl.exe+0x00036E88, Type: Inline - RelativeJump 0x8050DE88-->8050DEBB [ntoskrnl.exe]
ntoskrnl.exe+0x00036E93, Type: Inline - RelativeJump 0x8050DE93-->8051BD2C [ntoskrnl.exe]
ntoskrnl.exe+0x00036EAA, Type: Inline - RelativeJump 0x8050DEAA-->8050DEBB [ntoskrnl.exe]
ntoskrnl.exe+0x00036F99, Type: Inline - RelativeJump 0x8050DF99-->804F7F44 [ntoskrnl.exe]
ntoskrnl.exe+0x00036F9E, Type: Inline - RelativeJump 0x8050DF9E-->804F7F8E [ntoskrnl.exe]
ntoskrnl.exe+0x00036FA6, Type: Inline - RelativeJump 0x8050DFA6-->8051EBAD [ntoskrnl.exe]
ntoskrnl.exe+0x00036FB2, Type: Inline - RelativeJump 0x8050DFB2-->8051EBB6 [ntoskrnl.exe]
ntoskrnl.exe+0x00036FFE, Type: Inline - RelativeJump 0x8050DFFE-->804F7F40 [ntoskrnl.exe]
ntoskrnl.exe+0x0003700A, Type: Inline - RelativeJump 0x8050E00A-->80523024 [ntoskrnl.exe]
ntoskrnl.exe+0x0003705A, Type: Inline - RelativeCall 0x8050E05A-->80550010 [ntoskrnl.exe]
ntoskrnl.exe+0x00037062, Type: Inline - PushRet 0x8050E062-->9090000C [unknown_code_page]
ntoskrnl.exe+0x000370C0, Type: Inline - PushRet 0x8050E0C0-->90909090 [unknown_code_page]
ntoskrnl.exe+0x000370CB, Type: Inline - RelativeJump 0x8050E0CB-->8050E1EA [ntoskrnl.exe]
ntoskrnl.exe+0x000370D9, Type: Inline - RelativeJump 0x8050E0D9-->8050E1DD [ntoskrnl.exe]
ntoskrnl.exe+0x000370E2, Type: Inline - PushRet 0x8050E0E2-->90900004 [unknown_code_page]
ntoskrnl.exe+0x000371B2, Type: Inline - RelativeJump 0x8050E1B2-->80510AAA [ntoskrnl.exe]
ntoskrnl.exe+0x00037337, Type: Inline - RelativeJump 0x8050E337-->8050E324 [ntoskrnl.exe]
ntoskrnl.exe+0x0003735A, Type: Inline - RelativeJump 0x8050E35A-->8050E36A [ntoskrnl.exe]
ntoskrnl.exe+0x00037362, Type: Inline - PushRet 0x8050E362-->9090000C [unknown_code_page]
ntoskrnl.exe+0x00037378, Type: Inline - RelativeCall 0x8050E378-->804E20A9 [ntoskrnl.exe]
ntoskrnl.exe+0x000373F9, Type: Inline - DirectCall 0x8050E3F9-->804D802C [ntoskrnl.exe]
ntoskrnl.exe+0x00037418, Type: Inline - RelativeJump 0x8050E418-->8050E42F [ntoskrnl.exe]
ntoskrnl.exe+0x00037444, Type: Inline - PushRet 0x8050E444-->FF850F00 [unknown_code_page]
ntoskrnl.exe+0x00037450, Type: Inline - RelativeJump 0x8050E450-->8050E465 [ntoskrnl.exe]
ntoskrnl.exe+0x00037482, Type: Inline - PushRet 0x8050E482-->E4850F00 [unknown_code_page]
ntoskrnl.exe+0x00037487, Type: Inline - RelativeJump 0x8050E487-->8052B086 [ntoskrnl.exe]
ntoskrnl.exe+0x000374EE, Type: Inline - RelativeJump 0x8050E4EE-->8052B203 [ntoskrnl.exe]
ntoskrnl.exe+0x000374F7, Type: Inline - PushRet 0x8050E4F7-->90900004 [unknown_code_page]
ntoskrnl.exe+0x00037503, Type: Inline - RelativeJump 0x8050E503-->8050E55B [ntoskrnl.exe]
ntoskrnl.exe+0x00037518, Type: Inline - RelativeJump 0x8050E518-->8052AB83 [ntoskrnl.exe]
ntoskrnl.exe+0x0003752B, Type: Inline - DirectCall 0x8050E52B-->804D8054 [ntoskrnl.exe]
ntoskrnl.exe+0x0003758E, Type: Inline - RelativeJump 0x8050E58E-->8050E658 [ntoskrnl.exe]
ntoskrnl.exe+0x00037670, Type: Inline - RelativeJump 0x8050E670-->8052ABAA [ntoskrnl.exe]
ntoskrnl.exe+0x00037681, Type: Inline - RelativeCall 0x8050E681-->8050E69B [ntoskrnl.exe]
ntoskrnl.exe+0x000376D0, Type: Inline - RelativeJump 0x8050E6D0-->8052AB49 [ntoskrnl.exe]
ntoskrnl.exe+0x000376DB, Type: Inline - RelativeJump 0x8050E6DB-->8052AB5B [ntoskrnl.exe]
ntoskrnl.exe+0x000376E4, Type: Inline - RelativeJump 0x8050E6E4-->8052AB64 [ntoskrnl.exe]
ntoskrnl.exe+0x0003774C, Type: Inline - RelativeJump 0x8050E74C-->8050E715 [ntoskrnl.exe]
ntoskrnl.exe+0x00037780, Type: Inline - RelativeJump 0x8050E780-->8052AC02 [ntoskrnl.exe]
ntoskrnl.exe+0x000377AE, Type: Inline - RelativeJump 0x8050E7AE-->8050E7C5 [ntoskrnl.exe]
ntoskrnl.exe+0x000377B8, Type: Inline - RelativeJump 0x8050E7B8-->8052AC22 [ntoskrnl.exe]
ntoskrnl.exe+0x000377F6, Type: Inline - RelativeJump 0x8050E7F6-->8050E89B [ntoskrnl.exe]
ntoskrnl.exe+0x00037801, Type: Inline - RelativeCall 0x8050E801-->804E9237 [ntoskrnl.exe]
ntoskrnl.exe+0x0003780B, Type: Inline - RelativeJump 0x8050E80B-->8052AC42 [ntoskrnl.exe]
ntoskrnl.exe+0x00037912, Type: Inline - RelativeJump 0x8050E912-->8050E918 [ntoskrnl.exe]
ntoskrnl.exe+0x00037914, Type: Inline - RelativeJump 0x8050E914-->8050E91A [ntoskrnl.exe]
ntoskrnl.exe+0x00037922, Type: Inline - RelativeJump 0x8050E922-->8050E928 [ntoskrnl.exe]
ntoskrnl.exe+0x0003792E, Type: Inline - RelativeJump 0x8050E92E-->8050E934 [ntoskrnl.exe]
ntoskrnl.exe+0x00037938, Type: Inline - RelativeJump 0x8050E938-->8050E93E [ntoskrnl.exe]
ntoskrnl.exe+0x0003793A, Type: Inline - RelativeJump 0x8050E93A-->8050E940 [ntoskrnl.exe]
ntoskrnl.exe+0x00037948, Type: Inline - RelativeJump 0x8050E948-->8050E94E [ntoskrnl.exe]
ntoskrnl.exe+0x00037956, Type: Inline - RelativeJump 0x8050E956-->8050E95C [ntoskrnl.exe]
ntoskrnl.exe+0x00037964, Type: Inline - RelativeJump 0x8050E964-->8050E96A [ntoskrnl.exe]
ntoskrnl.exe+0x00037966, Type: Inline - RelativeJump 0x8050E966-->8050E96C [ntoskrnl.exe]
ntoskrnl.exe+0x0003796A, Type: Inline - RelativeJump 0x8050E96A-->8050E970 [ntoskrnl.exe]
ntoskrnl.exe+0x0003798C, Type: Inline - RelativeJump 0x8050E98C-->8050E992 [ntoskrnl.exe]
ntoskrnl.exe+0x00037992, Type: Inline - RelativeJump 0x8050E992-->8050E998 [ntoskrnl.exe]
ntoskrnl.exe+0x00037994, Type: Inline - RelativeJump 0x8050E994-->8050E99A [ntoskrnl.exe]
ntoskrnl.exe+0x00037998, Type: Inline - RelativeJump 0x8050E998-->8050E99E [ntoskrnl.exe]
ntoskrnl.exe+0x000379A6, Type: Inline - RelativeJump 0x8050E9A6-->8050E9AC [ntoskrnl.exe]
ntoskrnl.exe+0x000379B2, Type: Inline - RelativeJump 0x8050E9B2-->8050E9B8 [ntoskrnl.exe]
ntoskrnl.exe+0x000379BA, Type: Inline - RelativeJump 0x8050E9BA-->8050E9C0 [ntoskrnl.exe]
ntoskrnl.exe+0x000379BC, Type: Inline - RelativeJump 0x8050E9BC-->8050E9C2 [ntoskrnl.exe]
ntoskrnl.exe+0x000379C2, Type: Inline - RelativeJump 0x8050E9C2-->8050E9C8 [ntoskrnl.exe]
ntoskrnl.exe+0x000379DA, Type: Inline - RelativeJump 0x8050E9DA-->8050E9E0 [ntoskrnl.exe]
ntoskrnl.exe+0x000379E2, Type: Inline - RelativeJump 0x8050E9E2-->8050E9E8 [ntoskrnl.exe]
ntoskrnl.exe+0x000379EA, Type: Inline - RelativeJump 0x8050E9EA-->8050E9F0 [ntoskrnl.exe]
ntoskrnl.exe+0x000379F0, Type: Inline - RelativeJump 0x8050E9F0-->8050E9F6 [ntoskrnl.exe]
ntoskrnl.exe+0x00037A12, Type: Inline - RelativeJump 0x8050EA12-->8050EA18 [ntoskrnl.exe]
ntoskrnl.exe+0x00037A20, Type: Inline - RelativeJump 0x8050EA20-->8050EA26 [ntoskrnl.exe]
ntoskrnl.exe+0x00037A24, Type: Inline - RelativeJump 0x8050EA24-->8050EA2A [ntoskrnl.exe]
ntoskrnl.exe+0x00037A2A, Type: Inline - RelativeJump 0x8050EA2A-->8050EA30 [ntoskrnl.exe]
ntoskrnl.exe+0x00037A30, Type: Inline - RelativeJump 0x8050EA30-->8050EA36 [ntoskrnl.exe]
ntoskrnl.exe+0x00038064, Type: Inline - RelativeJump 0x8050F064-->8050F06A [ntoskrnl.exe]
ntoskrnl.exe+0x00038066, Type: Inline - RelativeJump 0x8050F066-->8050F06C [ntoskrnl.exe]
ntoskrnl.exe+0x00038086, Type: Inline - RelativeJump 0x8050F086-->8050F08C [ntoskrnl.exe]
ntoskrnl.exe+0x0003808E, Type: Inline - RelativeJump 0x8050F08E-->8050F094 [ntoskrnl.exe]
ntoskrnl.exe+0x0003809E, Type: Inline - RelativeJump 0x8050F09E-->8050F0A4 [ntoskrnl.exe]
ntoskrnl.exe+0x000380AE, Type: Inline - RelativeJump 0x8050F0AE-->8050F0B4 [ntoskrnl.exe]
ntoskrnl.exe+0x000380B6, Type: Inline - RelativeJump 0x8050F0B6-->8050F0BC [ntoskrnl.exe]
ntoskrnl.exe+0x000380BC, Type: Inline - RelativeJump 0x8050F0BC-->8050F0C2 [ntoskrnl.exe]
ntoskrnl.exe+0x000380C4, Type: Inline - RelativeJump 0x8050F0C4-->8050F0CA [ntoskrnl.exe]
ntoskrnl.exe+0x000380CC, Type: Inline - RelativeJump 0x8050F0CC-->8050F0D2 [ntoskrnl.exe]
ntoskrnl.exe+0x000380DA, Type: Inline - RelativeJump 0x8050F0DA-->8050F0E0 [ntoskrnl.exe]
ntoskrnl.exe+0x000380E2, Type: Inline - RelativeJump 0x8050F0E2-->8050F0E8 [ntoskrnl.exe]
ntoskrnl.exe+0x000380EA, Type: Inline - RelativeJump 0x8050F0EA-->8050F0F0 [ntoskrnl.exe]
ntoskrnl.exe+0x000380EC, Type: Inline - RelativeJump 0x8050F0EC-->8050F0F2 [ntoskrnl.exe]
ntoskrnl.exe+0x000380F2, Type: Inline - RelativeJump 0x8050F0F2-->8050F0F8 [ntoskrnl.exe]
ntoskrnl.exe+0x0003812C, Type: Inline - RelativeJump 0x8050F12C-->8050F132 [ntoskrnl.exe]
ntoskrnl.exe+0x00038132, Type: Inline - RelativeJump 0x8050F132-->8050F138 [ntoskrnl.exe]
ntoskrnl.exe+0x00038136, Type: Inline - RelativeJump 0x8050F136-->8050F13C [ntoskrnl.exe]
ntoskrnl.exe+0x00038138, Type: Inline - RelativeJump 0x8050F138-->8050F13E [ntoskrnl.exe]
ntoskrnl.exe+0x0003813E, Type: Inline - RelativeJump 0x8050F13E-->8050F144 [ntoskrnl.exe]
ntoskrnl.exe+0x00038142, Type: Inline - RelativeJump 0x8050F142-->8050F148 [ntoskrnl.exe]
ntoskrnl.exe+0x00038146, Type: Inline - RelativeJump 0x8050F146-->8050F14C [ntoskrnl.exe]
ntoskrnl.exe+0x00038152, Type: Inline - RelativeJump 0x8050F152-->8050F158 [ntoskrnl.exe]
ntoskrnl.exe+0x00038158, Type: Inline - RelativeJump 0x8050F158-->8050F15E [ntoskrnl.exe]
ntoskrnl.exe+0x0003815C, Type: Inline - RelativeJump 0x8050F15C-->8050F162 [ntoskrnl.exe]
ntoskrnl.exe+0x0003815E, Type: Inline - RelativeJump 0x8050F15E-->8050F164 [ntoskrnl.exe]
ntoskrnl.exe+0x00038166, Type: Inline - RelativeJump 0x8050F166-->8050F16C [ntoskrnl.exe]
ntoskrnl.exe+0x00038168, Type: Inline - RelativeJump 0x8050F168-->8050F16E [ntoskrnl.exe]
ntoskrnl.exe+0x00038174, Type: Inline - RelativeJump 0x8050F174-->8050F17A [ntoskrnl.exe]
ntoskrnl.exe+0x00038176, Type: Inline - RelativeJump 0x8050F176-->8050F17C [ntoskrnl.exe]
ntoskrnl.exe+0x0003817C, Type: Inline - RelativeJump 0x8050F17C-->8050F182 [ntoskrnl.exe]
ntoskrnl.exe+0x00038190, Type: Inline - RelativeJump 0x8050F190-->8050F196 [ntoskrnl.exe]
ntoskrnl.exe+0x0003819E, Type: Inline - RelativeJump 0x8050F19E-->8050F1A4 [ntoskrnl.exe]
ntoskrnl.exe+0x000381A2, Type: Inline - RelativeJump 0x8050F1A2-->8050F1A8 [ntoskrnl.exe]
ntoskrnl.exe+0x000381A6, Type: Inline - RelativeJump 0x8050F1A6-->8050F1AC [ntoskrnl.exe]
ntoskrnl.exe+0x000381B6, Type: Inline - RelativeJump 0x8050F1B6-->8050F1BC [ntoskrnl.exe]
ntoskrnl.exe+0x000381BE, Type: Inline - RelativeJump 0x8050F1BE-->8050F1C4 [ntoskrnl.exe]
ntoskrnl.exe+0x000381C0, Type: Inline - RelativeJump 0x8050F1C0-->8050F1C6 [ntoskrnl.exe]