GMER 1.0.15.15163 -
http://www.gmer.net
Rootkit scan 2009-10-23 23:37:21
Windows 6.0.6001 Service Pack 1
Running: 7wi8qy57.exe; Driver: C:\Users\David\AppData\Local\Temp\pglcapod.sys
---- User code sections - GMER 1.0.15 ----
.text C:\Program Files\Internet Explorer\iexplore.exe[11660] USER32.dll!DialogBoxIndirectParamW 774CBD25 5 Bytes JMP 6E45418F C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[11660] USER32.dll!CreateWindowExW 774D3D67 5 Bytes JMP 6E35D67C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[11660] USER32.dll!DialogBoxParamW 774E1FD5 5 Bytes JMP 6E285435 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[11660] USER32.dll!DialogBoxParamA 775080B2 5 Bytes JMP 6E45412C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[11660] USER32.dll!DialogBoxIndirectParamA 775083DD 5 Bytes JMP 6E4541F2 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[11660] USER32.dll!MessageBoxIndirectA 7751D471 5 Bytes JMP 6E4540C1 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[11660] USER32.dll!MessageBoxIndirectW 7751D56B 5 Bytes JMP 6E454056 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[11660] USER32.dll!MessageBoxExA 7751D5D1 5 Bytes JMP 6E453FF4 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[11660] USER32.dll!MessageBoxExW 7751D5F5 5 Bytes JMP 6E453F92 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!SetWindowsHookExW 774C7B69 5 Bytes JMP 6E3597F5 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!CallNextHookEx 774C8C33 5 Bytes JMP 6E34CE79 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!GetAsyncKeyState 774C8DF4 5 Bytes JMP 6E2790EF C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!DialogBoxIndirectParamW 774CBD25 5 Bytes JMP 6E45418F C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!SendInput 774CBEE7 5 Bytes JMP 6E4555C3 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!EndDialog 774CC178 5 Bytes JMP 6E287DEE C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!EnableWindow 774CDC79 5 Bytes JMP 6E35D895 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!CreateWindowExW 774D3D67 5 Bytes JMP 6E35D67C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!GetKeyState 774D87C7 5 Bytes JMP 6E35CE43 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!IsDialogMessageW 774D99AE 5 Bytes JMP 6E285947 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!CreateDialogParamA 774E16FD 5 Bytes JMP 6E454DFB C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!IsDialogMessage 774E179A 5 Bytes JMP 6E454697 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!DialogBoxParamW 774E1FD5 5 Bytes JMP 6E285435 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!CreateDialogIndirectParamA 774E27CD 5 Bytes JMP 6E454E32 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!CreateDialogIndirectParamW 774E9AFA 5 Bytes JMP 6E454E69 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!UnhookWindowsHookEx 774F08BE 5 Bytes JMP 6E2C466C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!CreateDialogParamW 774F1C58 5 Bytes JMP 6E35DA08 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!SetKeyboardState 774F1ECE 5 Bytes JMP 6E454A06 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!SetCursorPos 77506F1A 5 Bytes JMP 6E455617 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!DialogBoxParamA 775080B2 5 Bytes JMP 6E45412C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!DialogBoxIndirectParamA 775083DD 5 Bytes JMP 6E4541F2 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!MessageBoxIndirectA 7751D471 5 Bytes JMP 6E4540C1 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!MessageBoxIndirectW 7751D56B 5 Bytes JMP 6E454056 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!MessageBoxExA 7751D5D1 5 Bytes JMP 6E453FF4 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!MessageBoxExW 7751D5F5 5 Bytes JMP 6E453F92 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] USER32.dll!keybd_event 7751D93C 5 Bytes JMP 6E455947 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] SHELL32.dll!SHRestricted + DFD 76378390 4 Bytes [4D, 30, D2, 73]
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] SHELL32.dll!SHRestricted + E05 76378398 8 Bytes [57, 2F, D2, 73, 9C, 5B, D1, ...]
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] ole32.dll!OleLoadFromStream 75AF9726 5 Bytes JMP 6E4544F7 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[14648] ole32.dll!CoCreateInstance 75B2E188 5 Bytes JMP 6E35D6D8 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!SetWindowsHookExW 774C7B69 5 Bytes JMP 6E3597F5 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!CallNextHookEx 774C8C33 5 Bytes JMP 6E34CE79 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!GetAsyncKeyState 774C8DF4 5 Bytes JMP 6E2790EF C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!DialogBoxIndirectParamW 774CBD25 5 Bytes JMP 6E45418F C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!SendInput 774CBEE7 5 Bytes JMP 6E4555C3 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!EndDialog 774CC178 5 Bytes JMP 6E287DEE C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!EnableWindow 774CDC79 5 Bytes JMP 6E35D895 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!CreateWindowExW 774D3D67 5 Bytes JMP 6E35D67C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!GetKeyState 774D87C7 5 Bytes JMP 6E35CE43 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!IsDialogMessageW 774D99AE 5 Bytes JMP 6E285947 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!CreateDialogParamA 774E16FD 5 Bytes JMP 6E454DFB C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!IsDialogMessage 774E179A 5 Bytes JMP 6E454697 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!DialogBoxParamW 774E1FD5 5 Bytes JMP 6E285435 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!CreateDialogIndirectParamA 774E27CD 5 Bytes JMP 6E454E32 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!CreateDialogIndirectParamW 774E9AFA 5 Bytes JMP 6E454E69 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!UnhookWindowsHookEx 774F08BE 5 Bytes JMP 6E2C466C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!CreateDialogParamW 774F1C58 5 Bytes JMP 6E35DA08 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!SetKeyboardState 774F1ECE 5 Bytes JMP 6E454A06 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!SetCursorPos 77506F1A 5 Bytes JMP 6E455617 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!DialogBoxParamA 775080B2 5 Bytes JMP 6E45412C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!DialogBoxIndirectParamA 775083DD 5 Bytes JMP 6E4541F2 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!MessageBoxIndirectA 7751D471 5 Bytes JMP 6E4540C1 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!MessageBoxIndirectW 7751D56B 5 Bytes JMP 6E454056 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!MessageBoxExA 7751D5D1 5 Bytes JMP 6E453FF4 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!MessageBoxExW 7751D5F5 5 Bytes JMP 6E453F92 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] USER32.dll!keybd_event 7751D93C 5 Bytes JMP 6E455947 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] SHELL32.dll!SHRestricted + DFD 76378390 4 Bytes [4D, 30, D2, 73]
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] SHELL32.dll!SHRestricted + E05 76378398 8 Bytes [57, 2F, D2, 73, 9C, 5B, D1, ...]
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] ole32.dll!OleLoadFromStream 75AF9726 5 Bytes JMP 6E4544F7 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[22416] ole32.dll!CoCreateInstance 75B2E188 5 Bytes JMP 6E35D6D8 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
---- User IAT/EAT - GMER 1.0.15 ----
IAT C:\Windows\system32\services.exe[584] @ C:\Windows\system32\services.exe [ADVAPI32.dll!CreateProcessAsUserW] 00200002
IAT C:\Windows\system32\services.exe[584] @ C:\Windows\system32\services.exe [KERNEL32.dll!CreateProcessW] 00200000
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [73D082F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] [73D082F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!SearchPathW] [73D11AEC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!LoadLibraryExW] [73D1007C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!CopyFileW] [73D0E1E9] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!MoveFileW] [73D10994] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!DeleteFileW] [73D0EE46] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!CreateProcessW] [73D0A3FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!SetCurrentDirectoryW] [73D11D56] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!FindClose] [73D13ADC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!FindNextFileW] [73D12999] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!FindFirstFileW] [73D13035] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!LoadLibraryA] [73D0FBE1] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!CreateFileW] [73D0E860] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!WritePrivateProfileStringW] [73D0DC5C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!LoadLibraryW] [73D0FD66] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [73D082F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!GetPrivateProfileStringW] [73D0D4B8] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegQueryInfoKeyW] [73D1FBB3] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegEnumValueW] [73D2051D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegOpenKeyExW] [73D1EB3D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegQueryValueExW] [73D1F817] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegDeleteKeyW] [73D1EF31] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegCreateKeyExW] [73D1E5C5] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegCloseKey] [73D1ED95] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!LoadLibraryExW] [73D1007C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA] [73D0FBE1] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!CopyFileW] [73D0E1E9] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [73D082F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!LoadLibraryW] [73D0FD66] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!CreateFileW] [73D0E860] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!SearchPathW] [73D11AEC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!DeleteFileW] [73D0EE46] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!FindClose] [73D13ADC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!FindFirstFileA] [73D12CD2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!FindNextFileA] [73D12926] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!FindFirstFileW] [73D13035] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!FindNextFileW] [73D12999] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!GetFileAttributesA] [73D0BD77] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!SetCurrentDirectoryA] [73D1173F] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!SetFileAttributesA] [73D0BFCD] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateDirectoryA] [73D10F0F] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!RemoveDirectoryA] [73D114E9] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!DeleteFileA] [73D0ED1B] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!GetFileAttributesW] [73D0BEA2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!SetCurrentDirectoryW] [73D11D56] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!SetFileAttributesW] [73D0C0FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateDirectoryW] [73D1103D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!DeleteFileW] [73D0EE46] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!MoveFileW] [73D10994] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!RemoveDirectoryW] [73D11614] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!MoveFileA] [73D10921] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!GetProcAddress] [73D082F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!LoadLibraryA] [73D0FBE1] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateProcessA] [73D0A073] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateProcessW] [73D0A3FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateFileA] [73D0E717] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateFileW] [73D0E860] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!LoadLibraryW] [73D0FD66] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [73D0FD66] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!ReplaceFileW] [73D10C95] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!WritePrivateProfileStringW] [73D0DC5C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetPrivateProfileStringW] [73D0D4B8] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetPrivateProfileStringA] [73D0D361] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!DeleteFileW] [73D0EE46] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExW] [73D1007C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SetFileAttributesW] [73D0C0FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!CreateFileW] [73D0E860] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FindFirstFileW] [73D13035] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FindNextFileW] [73D12999] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SearchPathW] [73D11AEC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetFileAttributesW] [73D0BEA2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SetFileAttributesA] [73D0BFCD] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!CreateFileA] [73D0E717] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FindFirstFileA] [73D12CD2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FindNextFileA] [73D12926] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FindClose] [73D13ADC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SearchPathA] [73D123A5] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetFileAttributesA] [73D0BD77] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [73D0FBE1] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [73D082F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [USER32.dll!WinHelpW] [73D0FAAA] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [USER32.dll!WinHelpA] [73D0F973] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegCloseKey] [73D1ED95] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegCreateKeyExA] [73D1E43D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation)
IAT C:\Program Files\Internet Explorer\iexplore.exe[14648] @