Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- *** DxWnd 2.04.22 log BEGIN: 25-07-2017 21:51:17 ***
- *** Flags= EMULATESURFACE MODIFYMOUSE USERGB565 CLIENTREMAPPING LOCKWINPOS WINDOWIZE SETCOMPATIBILITY HOOKDLLS HOOKENABLED FIXREFCOUNTER ENABLEHOTKEYS AEROBOOST REMAPMCI FLIPEMULATION IATWORDALIGNED OUTTRACE OUTDDRAWTRACE OUTWINMESSAGES OUTDEBUG OUTD3DTRACE OUTDXWINTRACE ERASELOGFILE ***
- Virtual Desktop: monitors=1 area=(0,0)-(1920,1080)
- SethWnd: setting main win=230928 pos=(0,0)-(0,0)
- keymapping[9](altf4)=73
- HookInit: path="d:\origin\the sims 2 ultimate collection\fun with pets\sp9\tsbin\sims2ep9.exe" module="" dxversion=Automatic pos=(50,50) size=(800,600) init-max=(800,600) monitor=-1 hWnd=230928 ParentWnd=0 desktop=10010
- OS=(6.0) build=2 platform=2 service pack=
- HookInit: dxw.hChildWnd=230928 class="OleMainThreadWndClass" text="OleMainThreadWndName" style=8c000000(WS_CLIPSIBLINGS+DISABLED+POPUP) exstyle=0(WS_EX_RIGHTSCROLLBAR)
- HookInit: dxw.hParentWnd=0 class="OleMainThreadWndClass" text="" style=0(WS_OVERLAPPED) exstyle=0(WS_EX_RIGHTSCROLLBAR)
- HookInit: target window pos=(50,50) size=(800,600)
- Desktop Size (W x H)=(1920 x 1080)
- Color depth = 32 (color bits = 32)
- Pixel format = 1
- Color mask (RGBA)= (8,8,8,0)
- Color shift (RGBA)= (16,8,0,0)
- Color mask = "BBBBBBBBGGGGGGGGRRRRRRRR "
- HookInit: DWMComposition ENABLED
- HookInit: base hmodule=400000
- InitModuleHooks: lib=kernel32 hmodule=74430000
- InitModuleHooks: lib=USER32 hmodule=76b00000
- InitModuleHooks: lib=GDI32 hmodule=76270000
- InitModuleHooks: lib=ADVAPI32 hmodule=74550000
- InitModuleHooks: lib=ole32 hmodule=75fb0000
- InitModuleHooks: lib=ddraw hmodule=50c00000
- InitModuleHooks: lib=d3d9 hmodule=67fc0000
- InitModuleHooks: lib=opengl32 hmodule=59560000
- InitModuleHooks: lib=msvfw32 hmodule=50bd0000
- InitModuleHooks: lib=dsound hmodule=73930000
- InitModuleHooks: lib=winmm hmodule=73150000
- InitModuleHooks: lib=imm32 hmodule=73fe0000
- InitModuleHooks: lib=wintrust hmodule=74760000
- InitModuleHooks: lib=comdlg32 hmodule=76180000
- InitModuleHooks: lib=comctl32 hmodule=5b560000
- InitModuleHooks: lib=AVIFIL32 hmodule=51990000
- HotPatch: api=SetWindowsHookExA addr=76b22730->76af0fe0 hook=10057290
- HotPatch: api=SetWindowsHookExW addr=76b30e70->76af0fc0 hook=100572c0
- HookDirectDraw: SetAppCompatData(2,0) ret=1(unknown)
- HookDirectDraw version=0
- HookDirect3D: module=400000 version=0
- HookDirect3D7: module=400000 version=0
- HookDlls: base=400000
- Registered DLL FileName=d3d9.dll
- Registered DLL FileName=IMM32.dll
- Registered DLL FileName=ADVAPI32.dll
- Registered DLL FileName=USER32.dll
- HookDirectDraw version=0
- HookDirect3D: module=73a10000 version=0
- HookDirect3D7: module=73a10000 version=0
- Registered DLL FileName=MSVFW32.dll
- Registered DLL FileName=AVIFIL32.dll
- Registered DLL FileName=WINMM.dll
- Registered DLL FileName=KERNEL32.dll
- Registered DLL FileName=GDI32.dll
- HookDirectDraw version=0
- HookDirect3D: module=74960000 version=0
- HookDirect3D7: module=74960000 version=0
- Registered DLL FileName=ole32.dll
- HookDirectDraw version=0
- HookDirect3D: module=770e0000 version=0
- HookDirect3D7: module=770e0000 version=0
- HookDirectDraw version=0
- HookDirect3D: module=742f0000 version=0
- HookDirect3D7: module=742f0000 version=0
- Registered DLL FileName=DSOUND.dll
- HookDirectDraw version=0
- HookDirect3D: module=740d0000 version=0
- HookDirect3D7: module=740d0000 version=0
- HookDirectDraw version=0
- HookDirect3D: module=73f40000 version=0
- HookDirect3D7: module=73f40000 version=0
- DXWND: Initial display mode WxH=(1920x1080) BitsPerPel=32
- DXWND: set screen size=(800,600)
- InitScreenParameters: dxversion=0 RGBBitCount=32
- SetBltTransformations: color conversion EMULATED BPP 32->32
- set color transformation 32->32
- SetWindowLong: HOOK hwnd=230928 WindowProc=ffff078d->1005a730
- WindowProc[230928]: WinMsg=[0x1]WM_CREATE(0,25ff3c8)
- WindowProc[230928]: WinMsg=[0x5]WM_SIZE(0,0) mode=SIZE_RESTORED size=(0x0)
- WindowProc[230928]: WinMsg=[0x3]WM_MOVE(0,0) pos=(0,0)
- LoadLibraryA: file=KERNEL32.DLL flags=0
- Registered DLL FileName=KERNEL32.DLL
- LoadLibraryA: push idx=0 library=KERNEL32.DLL hdl=74430000
- GetProcAddress: hModule=74430000 proc=LoadLibraryA
- GetProcAddress: hooking proc=LoadLibraryA addr=74445a80->1004a700
- GetProcAddress: HOOK ret=1004a700
- LoadLibraryA: file=KERNEL32.DLL flags=0
- Registered DLL FileName=KERNEL32.DLL
- LoadLibraryA: push idx=0 library=KERNEL32.DLL hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetProcAddress
- GetProcAddress: hooking proc=GetProcAddress addr=744451b0->1004a780
- GetProcAddress: HOOK ret=1004a780
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetVersion
- GetProcAddress: ret=519f6ff0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetVersionExA
- GetProcAddress: ret=519f7050
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=CreateFileA
- GetProcAddress: ret=7449ed00
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=DeviceIoControl
- GetProcAddress: ret=74441170
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=CloseHandle
- GetProcAddress: ret=7449eab0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=WriteFile
- GetProcAddress: ret=7449f180
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=ReadFile
- GetProcAddress: ret=7449f090
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=SetFilePointer
- GetProcAddress: ret=7449f120
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=CreateFileMappingA
- GetProcAddress: ret=7447db60
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=MapViewOfFile
- GetProcAddress: ret=74445be0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=UnmapViewOfFile
- GetProcAddress: ret=744468f0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=CreateProcessA
- GetProcAddress: hooking proc=CreateProcessA addr=744445b0->10049d50
- GetProcAddress: HOOK ret=10049d50
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetTempPathA
- GetProcAddress: ret=7449efe0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=lstrcpyA
- GetProcAddress: ret=74487060
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetCurrentProcessId
- GetProcAddress: ret=7449ea20
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetCurrentProcess
- GetProcAddress: ret=7449ea10
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=LoadLibraryA
- GetProcAddress: hooking proc=LoadLibraryA addr=74445a80->1004a700
- GetProcAddress: HOOK ret=1004a700
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetProcAddress
- GetProcAddress: hooking proc=GetProcAddress addr=744451b0->1004a780
- GetProcAddress: HOOK ret=1004a780
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=FreeLibrary
- GetProcAddress: hooking proc=FreeLibrary addr=74444c40->10048a90
- GetProcAddress: HOOK ret=10048a90
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetCurrentThread
- GetProcAddress: ret=74448810
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetWindowsDirectoryA
- GetProcAddress: ret=74445710
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetSystemDirectoryA
- GetProcAddress: ret=74445400
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetStdHandle
- GetProcAddress: ret=74445330
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetCurrentThreadId
- GetProcAddress: ret=74448820
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=CreateMutexA
- GetProcAddress: ret=7449eb40
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=ReleaseMutex
- GetProcAddress: ret=7449ec20
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=CreateEventA
- GetProcAddress: ret=7449eb00
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=SetEvent
- GetProcAddress: ret=7449ec50
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=ResetEvent
- GetProcAddress: ret=7449ec40
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=WaitForSingleObject
- GetProcAddress: ret=7449eca0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=WaitForMultipleObjects
- GetProcAddress: ret=7449ec80
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=CreateThread
- GetProcAddress: ret=744446b0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=SuspendThread
- GetProcAddress: ret=74446770
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=ResumeThread
- GetProcAddress: ret=74446380
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=DeleteFileA
- GetProcAddress: ret=7449ed30
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=VirtualProtect
- GetProcAddress: ret=74446a30
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetModuleHandleA
- GetProcAddress: ret=744450b0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetModuleFileNameA
- GetProcAddress: ret=74445070
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetFileSize
- GetProcAddress: ret=7449ef30
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetCurrentDirectoryA
- GetProcAddress: ret=74444e60
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=SetCurrentDirectoryA
- GetProcAddress: ret=74446480
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=CreateDirectoryA
- GetProcAddress: ret=7449ecd0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetFileAttributesExA
- GetProcAddress: ret=7449eef0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetSystemTime
- GetProcAddress: ret=744454e0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=FileTimeToSystemTime
- GetProcAddress: ret=7449f1f0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=VirtualAlloc
- GetProcAddress: ret=50f208a0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=VirtualFree
- GetProcAddress: ret=744469d0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=FindFirstFileA
- GetProcAddress: ret=7449edb0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=FindNextFileA
- GetProcAddress: ret=7449ee20
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetLocalTime
- GetProcAddress: ret=74445060
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetTickCount
- GetProcAddress: ret=7449dd50
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetExitCodeThread
- GetProcAddress: ret=74444ff0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=IsDebuggerPresent
- GetProcAddress: hooking proc=IsDebuggerPresent addr=0->10048240
- GetProcAddress: HOOK ret=10048240
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetComputerNameA
- GetProcAddress: ret=74473780
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=OpenEventA
- GetProcAddress: ret=7449ebd0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=OpenMutexA
- GetProcAddress: ret=7447e030
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetSystemInfo
- GetProcAddress: ret=744454d0
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetVolumeInformationA
- GetProcAddress: ret=7449f000
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetDriveTypeA
- GetProcAddress: hooking proc=GetDriveTypeA addr=7449eec0->10048b30
- GetProcAddress: HOOK ret=10048b30
- LoadLibraryA: file=KERNEL32 flags=0
- Registered DLL FileName=KERNEL32
- LoadLibraryA: push idx=0 library=KERNEL32 hdl=74430000
- GetProcAddress: hModule=74430000 proc=InitializeCriticalSection
- GetProcAddress: ret=7754af20
- LoadLibraryA: file=SHLWAPI flags=0
- LoadLibraryA: hooking lib="SHLWAPI" handle=740d0000
- HookDirectDraw version=0
- HookDirect3D: module=740d0000 version=0
- HookDirect3D7: module=740d0000 version=0
- GetProcAddress: hModule=740d0000 proc=StrCatBuffA
- GetProcAddress: ret=740ec8d0
- LoadLibraryA: file=USER32 flags=0
- Registered DLL FileName=USER32
- LoadLibraryA: push idx=1 library=USER32 hdl=76b00000
- GetProcAddress: hModule=76b00000 proc=wsprintfA
- GetProcAddress: ret=76b1faa0
- LoadLibraryA: file=USER32 flags=0
- Registered DLL FileName=USER32
- LoadLibraryA: push idx=1 library=USER32 hdl=76b00000
- GetProcAddress: hModule=76b00000 proc=wvsprintfA
- GetProcAddress: ret=76b1fac0
- LoadLibraryA: file=USER32 flags=0
- Registered DLL FileName=USER32
- LoadLibraryA: push idx=1 library=USER32 hdl=76b00000
- GetProcAddress: hModule=76b00000 proc=GetAsyncKeyState
- GetProcAddress: ret=76b1bc40
- LoadLibraryA: file=ADVAPI32 flags=0
- Registered DLL FileName=ADVAPI32
- LoadLibraryA: push idx=4 library=ADVAPI32 hdl=74550000
- GetProcAddress: hModule=74550000 proc=RegOpenKeyExA
- GetProcAddress: ret=7456f210
- LoadLibraryA: file=ADVAPI32 flags=0
- Registered DLL FileName=ADVAPI32
- LoadLibraryA: push idx=4 library=ADVAPI32 hdl=74550000
- GetProcAddress: hModule=74550000 proc=RegQueryValueExA
- GetProcAddress: ret=7456f020
- LoadLibraryA: file=ADVAPI32 flags=0
- Registered DLL FileName=ADVAPI32
- LoadLibraryA: push idx=4 library=ADVAPI32 hdl=74550000
- GetProcAddress: hModule=74550000 proc=RegCloseKey
- GetProcAddress: ret=7456ed60
- LoadLibraryA: file=ADVAPI32 flags=0
- Registered DLL FileName=ADVAPI32
- LoadLibraryA: push idx=4 library=ADVAPI32 hdl=74550000
- GetProcAddress: hModule=74550000 proc=OpenThreadToken
- GetProcAddress: ret=7456eeb0
- LoadLibraryA: file=ADVAPI32 flags=0
- Registered DLL FileName=ADVAPI32
- LoadLibraryA: push idx=4 library=ADVAPI32 hdl=74550000
- GetProcAddress: hModule=74550000 proc=OpenProcessToken
- GetProcAddress: ret=7456efb0
- LoadLibraryA: file=ADVAPI32 flags=0
- Registered DLL FileName=ADVAPI32
- LoadLibraryA: push idx=4 library=ADVAPI32 hdl=74550000
- GetProcAddress: hModule=74550000 proc=GetTokenInformation
- GetProcAddress: ret=7456ee90
- LoadLibraryA: file=ADVAPI32 flags=0
- Registered DLL FileName=ADVAPI32
- LoadLibraryA: push idx=4 library=ADVAPI32 hdl=74550000
- GetProcAddress: hModule=74550000 proc=AllocateAndInitializeSid
- GetProcAddress: ret=7456f440
- LoadLibraryA: file=ADVAPI32 flags=0
- Registered DLL FileName=ADVAPI32
- LoadLibraryA: push idx=4 library=ADVAPI32 hdl=74550000
- GetProcAddress: hModule=74550000 proc=EqualSid
- GetProcAddress: ret=7456ffe0
- LoadLibraryA: file=ADVAPI32 flags=0
- Registered DLL FileName=ADVAPI32
- LoadLibraryA: push idx=4 library=ADVAPI32 hdl=74550000
- GetProcAddress: hModule=74550000 proc=FreeSid
- GetProcAddress: ret=7456fa80
- LoadLibraryA: file=ADVAPI32 flags=0
- Registered DLL FileName=ADVAPI32
- LoadLibraryA: push idx=4 library=ADVAPI32 hdl=74550000
- GetProcAddress: hModule=74550000 proc=RegOpenKeyA
- GetProcAddress: ret=74570000
- LoadLibraryA: file=ADVAPI32 flags=0
- Registered DLL FileName=ADVAPI32
- LoadLibraryA: push idx=4 library=ADVAPI32 hdl=74550000
- GetProcAddress: hModule=74550000 proc=RegQueryValueA
- GetProcAddress: ret=74560ab0
- LoadLibraryA: file=ADVAPI32 flags=0
- Registered DLL FileName=ADVAPI32
- LoadLibraryA: push idx=4 library=ADVAPI32 hdl=74550000
- GetProcAddress: hModule=74550000 proc=RegCreateKeyA
- GetProcAddress: ret=74571fa0
- LoadLibraryA: file=ADVAPI32 flags=0
- Registered DLL FileName=ADVAPI32
- LoadLibraryA: push idx=4 library=ADVAPI32 hdl=74550000
- GetProcAddress: hModule=74550000 proc=RegSetValueExA
- GetProcAddress: ret=7456ffc0
- LoadLibraryA: file=ADVAPI32 flags=0
- Registered DLL FileName=ADVAPI32
- LoadLibraryA: push idx=4 library=ADVAPI32 hdl=74550000
- GetProcAddress: hModule=74550000 proc=RegDeleteValueA
- GetProcAddress: ret=745707a0
- LoadLibraryA: file=SHELL32 flags=0
- LoadLibraryA: hooking lib="SHELL32" handle=74960000
- HookDirectDraw version=0
- HookDirect3D: module=74960000 version=0
- HookDirect3D7: module=74960000 version=0
- GetProcAddress: hModule=74960000 proc=SHGetSpecialFolderPathA
- GetProcAddress: ret=74bbcc60
- LoadLibraryA: file=SHELL32 flags=0
- LoadLibraryA: hooking lib="SHELL32" handle=74960000
- HookDirectDraw version=0
- HookDirect3D: module=74960000 version=0
- HookDirect3D7: module=74960000 version=0
- GetProcAddress: hModule=74960000 proc=SHGetFolderPathA
- GetProcAddress: ret=74acdfb0
- LoadLibraryA: file=NTDLL flags=0
- LoadLibraryA: hooking lib="NTDLL" handle=774f0000
- HookDirectDraw version=0
- HookDirect3D: module=774f0000 version=0
- HookDirect3D7: module=774f0000 version=0
- GetProcAddress: hModule=774f0000 proc=NtCreateKey
- GetProcAddress: ret=77561ee0
- LoadLibraryA: file=NTDLL flags=0
- LoadLibraryA: hooking lib="NTDLL" handle=774f0000
- HookDirectDraw version=0
- HookDirect3D: module=774f0000 version=0
- HookDirect3D7: module=774f0000 version=0
- GetProcAddress: hModule=774f0000 proc=NtSetValueKey
- GetProcAddress: ret=77562310
- LoadLibraryA: file=NTDLL flags=0
- LoadLibraryA: hooking lib="NTDLL" handle=774f0000
- HookDirectDraw version=0
- HookDirect3D: module=774f0000 version=0
- HookDirect3D7: module=774f0000 version=0
- GetProcAddress: hModule=774f0000 proc=NtQueryValueKey
- GetProcAddress: ret=77561e60
- LoadLibraryA: file=NTDLL flags=0
- LoadLibraryA: hooking lib="NTDLL" handle=774f0000
- HookDirectDraw version=0
- HookDirect3D: module=774f0000 version=0
- HookDirect3D7: module=774f0000 version=0
- GetProcAddress: hModule=774f0000 proc=NtDeleteKey
- GetProcAddress: ret=775629c0
- LoadLibraryA: file=NTDLL flags=0
- LoadLibraryA: hooking lib="NTDLL" handle=774f0000
- HookDirectDraw version=0
- HookDirect3D: module=774f0000 version=0
- HookDirect3D7: module=774f0000 version=0
- GetProcAddress: hModule=774f0000 proc=NtFlushKey
- GetProcAddress: ret=77562b10
- LoadLibraryA: file=NTDLL flags=0
- LoadLibraryA: hooking lib="NTDLL" handle=774f0000
- HookDirectDraw version=0
- HookDirect3D: module=774f0000 version=0
- HookDirect3D7: module=774f0000 version=0
- GetProcAddress: hModule=774f0000 proc=NtClose
- GetProcAddress: ret=77561de0
- LoadLibraryA: file=IPHLPAPI flags=0
- LoadLibraryA: hooking lib="IPHLPAPI" handle=73a20000
- HookDirectDraw version=0
- HookDirect3D: module=73a20000 version=0
- HookDirect3D7: module=73a20000 version=0
- GetProcAddress: hModule=73a20000 proc=GetNumberOfInterfaces
- GetProcAddress: ret=73a2c8b0
- LoadLibraryA: file=IPHLPAPI flags=0
- LoadLibraryA: hooking lib="IPHLPAPI" handle=73a20000
- HookDirectDraw version=0
- HookDirect3D: module=73a20000 version=0
- HookDirect3D7: module=73a20000 version=0
- GetProcAddress: hModule=73a20000 proc=GetAdaptersInfo
- GetProcAddress: ret=73a2bbc0
- LoadLibraryA: file=ADVAPI32.dll flags=0
- Registered DLL FileName=ADVAPI32.dll
- LoadLibraryA: push idx=4 library=ADVAPI32.dll hdl=74550000
- GetProcAddress: hModule=74550000 proc=RegOpenKeyExA
- GetProcAddress: ret=7456f210
- LoadLibraryA: file=ADVAPI32.dll flags=0
- Registered DLL FileName=ADVAPI32.dll
- LoadLibraryA: push idx=4 library=ADVAPI32.dll hdl=74550000
- GetProcAddress: hModule=74550000 proc=RegQueryValueExA
- GetProcAddress: ret=7456f020
- LoadLibraryA: file=ADVAPI32.dll flags=0
- Registered DLL FileName=ADVAPI32.dll
- LoadLibraryA: push idx=4 library=ADVAPI32.dll hdl=74550000
- GetProcAddress: hModule=74550000 proc=RegCloseKey
- GetProcAddress: ret=7456ed60
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=KERNEL32.dll flags=0
- Registered DLL FileName=KERNEL32.dll
- LoadLibraryA: push idx=0 library=KERNEL32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetVersion
- GetProcAddress: ret=519f6ff0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=KERNEL32.dll flags=0
- Registered DLL FileName=KERNEL32.dll
- LoadLibraryA: push idx=0 library=KERNEL32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetModuleHandleA
- GetProcAddress: ret=744450b0
- LoadLibraryA: file=KERNEL32.dll flags=0
- Registered DLL FileName=KERNEL32.dll
- LoadLibraryA: push idx=0 library=KERNEL32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=VirtualProtect
- GetProcAddress: ret=74446a30
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- GetProcAddress: hModule=74430000 proc=ExitProcess
- GetProcAddress: ret=74443cb0
- GetProcAddress: hModule=774f0000 proc=DbgUiRemoteBreakin
- GetProcAddress: ret=7759a520
- LoadLibraryA: file=KERNEL32.dll flags=0
- Registered DLL FileName=KERNEL32.dll
- LoadLibraryA: push idx=0 library=KERNEL32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=CreateEventA
- GetProcAddress: ret=7449eb00
- GetProcAddress: hModule=74430000 proc=VirtualAllocEx
- GetProcAddress: ret=74446990
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=KERNEL32.dll flags=0
- Registered DLL FileName=KERNEL32.dll
- LoadLibraryA: push idx=0 library=KERNEL32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetVersion
- GetProcAddress: ret=519f6ff0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- GetProcAddress: hModule=74550000 proc=OpenProcessToken
- GetProcAddress: ret=7456efb0
- GetProcAddress: hModule=74550000 proc=GetTokenInformation
- GetProcAddress: ret=7456ee90
- GetProcAddress: hModule=74550000 proc=LookupPrivilegeNameA
- GetProcAddress: ret=745957f0
- GetProcAddress: hModule=74430000 proc=GetSystemWow64DirectoryA
- GetProcAddress: ret=7449f390
- GetProcAddress: hModule=74550000 proc=RegDisableReflectionKey
- GetProcAddress: ret=74571060
- GetProcAddress: hModule=74550000 proc=RegEnableReflectionKey
- GetProcAddress: ret=74571060
- GetProcAddress: hModule=74550000 proc=RegQueryReflectionKey
- GetProcAddress: ret=74584130
- GetProcAddress: hModule=74430000 proc=GetSystemWow64DirectoryA
- GetProcAddress: ret=7449f390
- GetProcAddress: hModule=74430000 proc=GetSystemWow64DirectoryA
- GetProcAddress: ret=7449f390
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- GetProcAddress: hModule=774f0000 proc=NtQueryInformationProcess
- GetProcAddress: ret=77561e80
- GetProcAddress: hModule=74430000 proc=IsProcessorFeaturePresent
- GetProcAddress: ret=74445960
- GetProcAddress: hModule=74550000 proc=LookupPrivilegeNameA
- GetProcAddress: ret=745957f0
- GetProcAddress: hModule=74550000 proc=OpenProcessToken
- GetProcAddress: ret=7456efb0
- GetProcAddress: hModule=74550000 proc=GetTokenInformation
- GetProcAddress: ret=7456ee90
- GetProcAddress: hModule=774f0000 proc=NtQueryInformationProcess
- GetProcAddress: ret=77561e80
- LoadLibraryA: file=psapi.dll flags=0
- LoadLibraryA: hooking lib="psapi.dll" handle=76110000
- HookDirectDraw version=0
- HookDirect3D: module=76110000 version=0
- HookDirect3D7: module=76110000 version=0
- GetProcAddress: hModule=76110000 proc=GetModuleFileNameExA
- GetProcAddress: ret=76111660
- FreeLibrary: hModule=76110000
- FreeLibrary: ret=1
- LoadLibraryA: file=version.dll flags=0
- LoadLibraryA: hooking lib="version.dll" handle=73a10000
- HookDirectDraw version=0
- HookDirect3D: module=73a10000 version=0
- HookDirect3D7: module=73a10000 version=0
- GetProcAddress: hModule=73a10000 proc=GetFileVersionInfoSizeA
- GetProcAddress: ret=73a114d0
- GetProcAddress: hModule=73a10000 proc=GetFileVersionInfoA
- GetProcAddress: ret=73a114b0
- GetProcAddress: hModule=73a10000 proc=VerQueryValueA
- GetProcAddress: ret=73a114f0
- FreeLibrary: hModule=73a10000
- FreeLibrary: ret=1
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=KERNEL32.dll flags=0
- Registered DLL FileName=KERNEL32.dll
- LoadLibraryA: push idx=0 library=KERNEL32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=CreateMutexA
- GetProcAddress: ret=7449eb40
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=KERNEL32.dll flags=0
- Registered DLL FileName=KERNEL32.dll
- LoadLibraryA: push idx=0 library=KERNEL32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetCurrentProcessId
- GetProcAddress: ret=7449ea20
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=KERNEL32.dll flags=0
- Registered DLL FileName=KERNEL32.dll
- LoadLibraryA: push idx=0 library=KERNEL32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetVersion
- GetProcAddress: ret=519f6ff0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=KERNEL32.dll flags=0
- Registered DLL FileName=KERNEL32.dll
- LoadLibraryA: push idx=0 library=KERNEL32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=IsDebuggerPresent
- GetProcAddress: hooking proc=IsDebuggerPresent addr=0->10048240
- GetProcAddress: HOOK ret=10048240
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- extIsDebuggerPresent: return FALSE
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=advapi32.dll flags=0
- Registered DLL FileName=advapi32.dll
- LoadLibraryA: push idx=4 library=advapi32.dll hdl=74550000
- GetProcAddress: hModule=74550000 proc=OpenProcessToken
- GetProcAddress: ret=7456efb0
- GetProcAddress: hModule=74550000 proc=AdjustTokenPrivileges
- GetProcAddress: ret=7456ffa0
- GetProcAddress: hModule=74550000 proc=LookupPrivilegeValueA
- GetProcAddress: ret=74568b30
- FreeLibrary: hModule=74550000
- FreeLibrary: ret=1
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=74430000 proc=CreateFileW
- GetProcAddress: ret=7449ed10
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=74430000 proc=OpenMutexW
- GetProcAddress: ret=7449ebf0
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- EnumerateWindows
- GetClientRect: whnd=10242 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1020c FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=101b0 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=101ac FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=101a8 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=101a4 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10192 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=101b6 FullScreen=0
- GetClientRect: actual rect=(0,0)-(97,35)
- GetClientRect: whnd=10194 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,80)
- GetClientRect: whnd=101c6 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1920,211)
- GetClientRect: whnd=1028e FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=102b2 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=302c8 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=302ca FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=101b8 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=101b4 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=101c4 FullScreen=0
- GetClientRect: actual rect=(0,0)-(129,20)
- GetClientRect: whnd=20146 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1920,40)
- GetClientRect: whnd=c083a FullScreen=0
- GetClientRect: actual rect=(0,0)-(218,314)
- GetClientRect: whnd=30280 FullScreen=0
- GetClientRect: actual rect=(0,0)-(34,20)
- GetClientRect: whnd=90990 FullScreen=0
- GetClientRect: actual rect=(0,0)-(195,20)
- GetClientRect: whnd=1d026e FullScreen=0
- GetClientRect: actual rect=(0,0)-(1434,730)
- GetClientRect: whnd=18045a FullScreen=0
- GetClientRect: actual rect=(0,0)-(480,516)
- GetClientRect: whnd=1d0ae2 FullScreen=0
- GetClientRect: actual rect=(0,0)-(304,180)
- GetClientRect: whnd=300380 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1c0992 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1f03e6 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=12073a FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=17063a FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1206e0 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1061,694)
- GetClientRect: whnd=1205ee FullScreen=0
- GetClientRect: actual rect=(0,0)-(640,64)
- GetClientRect: whnd=60948 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1920,1048)
- GetClientRect: whnd=101f2 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1c07cc FullScreen=0
- GetClientRect: actual rect=(0,0)-(130,10)
- GetClientRect: whnd=110a1a FullScreen=0
- GetClientRect: actual rect=(0,0)-(37,91)
- GetClientRect: whnd=190944 FullScreen=0
- GetClientRect: actual rect=(0,0)-(49,26)
- GetClientRect: whnd=170954 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=120894 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=120998 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=e0994 FullScreen=0
- GetClientRect: actual rect=(0,0)-(170,50)
- GetClientRect: whnd=e06fe FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=60b00 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=808e8 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=2303f2 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=a0270 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1a089e FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1e0786 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1061,694)
- GetClientRect: whnd=8032a FullScreen=0
- GetClientRect: actual rect=(0,0)-(278,194)
- GetClientRect: whnd=10568 FullScreen=0
- GetClientRect: actual rect=(0,0)-(640,480)
- GetClientRect: whnd=1050e FullScreen=0
- GetClientRect: actual rect=(0,0)-(280,280)
- GetClientRect: whnd=10516 FullScreen=0
- GetClientRect: actual rect=(0,0)-(200,200)
- GetClientRect: whnd=101de FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10172 FullScreen=0
- GetClientRect: actual rect=(0,0)-(200,200)
- GetClientRect: whnd=20158 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,22)
- GetClientRect: whnd=10100 FullScreen=0
- GetClientRect: actual rect=(0,0)-(210,210)
- GetClientRect: whnd=20122 FullScreen=0
- GetClientRect: actual rect=(0,0)-(39,28)
- GetClientRect: whnd=10574 FullScreen=0
- GetClientRect: actual rect=(0,0)-(800,600)
- GetClientRect: whnd=10592 FullScreen=0
- GetClientRect: actual rect=(0,0)-(10,620)
- GetClientRect: whnd=10590 FullScreen=0
- GetClientRect: actual rect=(0,0)-(800,10)
- GetClientRect: whnd=1058c FullScreen=0
- GetClientRect: actual rect=(0,0)-(10,620)
- GetClientRect: whnd=10588 FullScreen=0
- GetClientRect: actual rect=(0,0)-(800,10)
- GetClientRect: whnd=120778 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=11078c FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=120704 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=130824 FullScreen=0
- GetClientRect: actual rect=(0,0)-(130,10)
- GetClientRect: whnd=120868 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=120752 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1106b4 FullScreen=0
- GetClientRect: actual rect=(0,0)-(250,254)
- GetClientRect: whnd=1107d2 FullScreen=0
- GetClientRect: actual rect=(0,0)-(249,226)
- GetClientRect: whnd=120860 FullScreen=0
- GetClientRect: actual rect=(0,0)-(216,248)
- GetClientRect: whnd=11087c FullScreen=0
- GetClientRect: actual rect=(0,0)-(206,270)
- GetClientRect: whnd=120628 FullScreen=0
- GetClientRect: actual rect=(0,0)-(271,76)
- GetClientRect: whnd=110762 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=d078a FullScreen=0
- GetClientRect: actual rect=(0,0)-(201,342)
- GetClientRect: whnd=11087a FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1108ec FullScreen=0
- GetClientRect: actual rect=(0,0)-(219,198)
- GetClientRect: whnd=1c0050 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1,1)
- GetClientRect: whnd=16093a FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=20434 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1515,855)
- GetClientRect: whnd=830572 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1424,720)
- GetClientRect: whnd=220942 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1,1)
- GetClientRect: whnd=10598 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1920,1080)
- GetClientRect: whnd=33073e FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=2b091c FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=908fc FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=708a8 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=70724 FullScreen=0
- GetClientRect: actual rect=(0,0)-(130,10)
- GetClientRect: whnd=c08e0 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1424,720)
- GetClientRect: whnd=3b0838 FullScreen=0
- GetClientRect: actual rect=(0,0)-(130,10)
- GetClientRect: whnd=907ac FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=f080c FullScreen=0
- GetClientRect: actual rect=(0,0)-(130,10)
- GetClientRect: whnd=a0452 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=8c0494 FullScreen=0
- GetClientRect: actual rect=(0,0)-(102,225)
- GetClientRect: whnd=c030a FullScreen=0
- GetClientRect: actual rect=(0,0)-(93,120)
- GetClientRect: whnd=4502d8 FullScreen=0
- GetClientRect: actual rect=(0,0)-(82,168)
- GetClientRect: whnd=100730 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=409ae FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=1a0580 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=8c032e FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=8902f2 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=30328 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=30318 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=30310 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=30330 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=30312 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1272,711)
- GetClientRect: whnd=406a6 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=90308 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=609b4 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=40332 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=110646 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=1a0314 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=1a04ee FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=40346 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=3031c FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=2072a FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=206b2 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=506c0 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=2068a FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=2069a FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=206fa FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=206ec FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=206e2 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=206b0 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=206f4 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=206d6 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=2069c FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=20728 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=20736 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=20742 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=206ee FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=20726 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=20694 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=206bc FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=c030c FullScreen=0
- GetClientRect: actual rect=(0,0)-(308,490)
- GetClientRect: whnd=206c6 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=c04d4 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=505d2 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=605d0 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=6605bc FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=e061c FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=c060a FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=605e4 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=405f4 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=405f2 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=305f0 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=305fc FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=1004f0 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=206b8 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=140608 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=1309b6 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=e060c FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=90648 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=1c0624 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=705e2 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=1109b0 FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=4031e FullScreen=0
- GetClientRect: actual rect=(0,0)-(302,207)
- GetClientRect: whnd=709bc FullScreen=0
- GetClientRect: actual rect=(0,0)-(64,24)
- GetClientRect: whnd=d0076 FullScreen=0
- GetClientRect: actual rect=(0,0)-(130,10)
- GetClientRect: whnd=1a02d4 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1424,720)
- GetClientRect: whnd=e0306 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=205ae FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=803be FullScreen=0
- GetClientRect: actual rect=(0,0)-(1200,827)
- GetClientRect: whnd=1e03a0 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1200,859)
- GetClientRect: whnd=40460 FullScreen=0
- GetClientRect: actual rect=(0,0)-(358,542)
- GetClientRect: whnd=80480 FullScreen=0
- GetClientRect: actual rect=(0,0)-(358,542)
- GetClientRect: whnd=80548 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1200,859)
- GetClientRect: whnd=110138 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1200,859)
- GetClientRect: whnd=a03ca FullScreen=0
- GetClientRect: actual rect=(0,0)-(1904,1032)
- GetClientRect: whnd=80418 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=6056c FullScreen=0
- GetClientRect: actual rect=(0,0)-(1920,1080)
- GetClientRect: whnd=3023e FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=20446 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1528,824)
- GetClientRect: whnd=1058a FullScreen=0
- GetClientRect: actual rect=(0,0)-(1,1)
- GetClientRect: whnd=10586 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1434,730)
- GetClientRect: whnd=10558 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1476,772)
- GetClientRect: whnd=10550 FullScreen=0
- GetClientRect: actual rect=(0,0)-(130,10)
- GetClientRect: whnd=20512 FullScreen=0
- GetClientRect: actual rect=(0,0)-(834,406)
- GetClientRect: whnd=10540 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1053e FullScreen=0
- GetClientRect: actual rect=(0,0)-(193,484)
- GetClientRect: whnd=10534 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1,1)
- GetClientRect: whnd=10530 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10524 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1424,700)
- GetClientRect: whnd=10546 FullScreen=0
- GetClientRect: actual rect=(0,0)-(219,142)
- GetClientRect: whnd=10544 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10542 FullScreen=0
- GetClientRect: actual rect=(0,0)-(219,142)
- GetClientRect: whnd=10514 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1050a FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10508 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=10506 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=10502 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=204f8 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=104fe FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=2033c FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=20338 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=20340 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1424,700)
- GetClientRect: whnd=104ac FullScreen=0
- GetClientRect: actual rect=(0,0)-(1,1)
- GetClientRect: whnd=1038c FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=10510 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=1050c FullScreen=0
- GetClientRect: actual rect=(0,0)-(1424,720)
- GetClientRect: whnd=304c8 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1434,730)
- GetClientRect: whnd=104bc FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=104a2 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1,1)
- GetClientRect: whnd=104a0 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=3049a FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=20498 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=3047c FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=30402 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=2039c FullScreen=0
- GetClientRect: actual rect=(0,0)-(130,10)
- GetClientRect: whnd=203ac FullScreen=0
- GetClientRect: actual rect=(0,0)-(1,1)
- GetClientRect: whnd=303d8 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10360 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=102c6 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=102c2 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=10286 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=10288 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10248 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1920,1040)
- GetClientRect: whnd=102bc FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=102be FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=1023a FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10234 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1905,4)
- GetClientRect: whnd=13079c FullScreen=0
- GetClientRect: actual rect=(0,0)-(119,0)
- GetClientRect: whnd=1020a FullScreen=0
- GetClientRect: actual rect=(0,0)-(480,325)
- GetClientRect: whnd=201ca FullScreen=0
- GetClientRect: actual rect=(0,0)-(483,369)
- GetClientRect: whnd=101fa FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=101ee FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=101ec FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=101e8 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=101d2 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=101d0 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=20128 FullScreen=0
- GetClientRect: actual rect=(0,0)-(131,68)
- GetClientRect: whnd=102f8 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1424,720)
- GetClientRect: whnd=20052 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=20056 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=2005c FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=5012c FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=3008e FullScreen=0
- GetClientRect: actual rect=(0,0)-(1424,720)
- GetClientRect: whnd=2007a FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=a02d0 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=2015c FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=102ee FullScreen=0
- GetClientRect: actual rect=(0,0)-(1424,720)
- GetClientRect: whnd=1014e FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1014a FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10140 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=10130 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=2009e FullScreen=0
- GetClientRect: actual rect=(0,0)-(131,68)
- GetClientRect: whnd=1006c FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10060 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10170 FullScreen=0
- GetClientRect: actual rect=(0,0)-(120,0)
- GetClientRect: whnd=104da FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=101d8 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1920,1080)
- GetClientRect: whnd=60392 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10244 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=101ce FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=20148 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=102b4 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1d0878 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=620350 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=30062e FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1608f0 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1108de FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=7070e FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=90766 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=3015a FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=101f0 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=f067c FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=607b8 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=30274 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10500 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10596 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=40334 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10554 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10532 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=120776 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1a08aa FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=140914 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=203b4 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=203b8 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=3906de FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=24062c FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1807e4 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=70872 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=12099c FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=25075c FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=170686 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=40304 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=4054e FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=11034e FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=6048e FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=150490 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=d03da FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=3303b0 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=e03ec FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=2005aa FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=160336 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=501ba FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=50428 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1058e FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1055a FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10536 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10526 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=2033e FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=20342 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=20344 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=104ae FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1038e FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=204ca FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=104be FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=104a4 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=20496 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=20396 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10362 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=102c4 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1028a FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1022a FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1020e FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10208 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=101fc FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=101d4 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=101c8 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=10132 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1010a FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=2001a FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=101e6 FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetClientRect: whnd=1014c FullScreen=0
- GetClientRect: actual rect=(0,0)-(0,0)
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=74430000 proc=OpenMutexW
- GetProcAddress: ret=7449ebf0
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=74550000 proc=GetUserNameA
- GetProcAddress: ret=74572180
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowExW
- GetProcAddress: ret=76b22840
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=76b00000 proc=FindWindowW
- GetProcAddress: ret=76b30830
- GetProcAddress: hModule=74430000 proc=VirtualAllocEx
- GetProcAddress: ret=74446990
- GetProcAddress: hModule=74430000 proc=VirtualFreeEx
- GetProcAddress: ret=744469f0
- GetProcAddress: hModule=74430000 proc=OpenProcess
- GetProcAddress: ret=74445cc0
- GetProcAddress: hModule=74430000 proc=ReadProcessMemory
- GetProcAddress: ret=74445e30
- SendMessageA: hwnd=1019e WinMsg=[0x418]???(0,0)
- SendMessageA: lresult=8
- SendMessageA: hwnd=1019e WinMsg=[0x42d]???(0,6f40000)
- SendMessageA: lresult=17
- SendMessageA: hwnd=1019e WinMsg=[0x42d]???(1,6f40000)
- SendMessageA: lresult=f
- SendMessageA: hwnd=1019e WinMsg=[0x42d]???(2,6f40000)
- SendMessageA: lresult=1a
- SendMessageA: hwnd=1019e WinMsg=[0x42d]???(3,6f40000)
- SendMessageA: lresult=1b
- SendMessageA: hwnd=1019e WinMsg=[0x42d]???(4,6f40000)
- SendMessageA: lresult=7
- SendMessageA: hwnd=1019e WinMsg=[0x42d]???(5,6f40000)
- SendMessageA: lresult=1a
- SendMessageA: hwnd=1019e WinMsg=[0x42d]???(6,6f40000)
- SendMessageA: lresult=10
- SendMessageA: hwnd=1019e WinMsg=[0x42d]???(7,6f40000)
- SendMessageA: lresult=5
- SendMessageA: hwnd=1019e WinMsg=[0x42d]???(8,6f40000)
- SendMessageA: lresult=ffffffff
- LoadLibraryA: file=advapi32.dll flags=0
- Registered DLL FileName=advapi32.dll
- LoadLibraryA: push idx=4 library=advapi32.dll hdl=74550000
- GetProcAddress: hModule=74550000 proc=OpenProcessToken
- GetProcAddress: ret=7456efb0
- GetProcAddress: hModule=74550000 proc=AdjustTokenPrivileges
- GetProcAddress: ret=7456ffa0
- GetProcAddress: hModule=74550000 proc=LookupPrivilegeValueA
- GetProcAddress: ret=74568b30
- FreeLibrary: hModule=74550000
- FreeLibrary: ret=1
- GetProcAddress: hModule=76b00000 proc=GetClassNameA
- GetProcAddress: ret=76b1ba80
- GetProcAddress: hModule=76b00000 proc=GetWindowTextA
- GetProcAddress: ret=76b0ea40
- GetProcAddress: hModule=74430000 proc=GetModuleFileNameA
- GetProcAddress: ret=74445070
- EnumerateWindows
- GetProcAddress: hModule=74430000 proc=QueryDosDeviceA
- GetProcAddress: ret=74480590
- GetProcAddress: hModule=74430000 proc=QueryDosDeviceW
- GetProcAddress: ret=7449f080
- GetProcAddress: hModule=774f0000 proc=NtQuerySystemInformation
- GetProcAddress: ret=77562070
- GetProcAddress: hModule=774f0000 proc=NtQuerySystemInformation
- GetProcAddress: ret=77562070
- GetProcAddress: hModule=774f0000 proc=NtQuerySystemInformation
- GetProcAddress: ret=77562070
- GetProcAddress: hModule=74430000 proc=QueryDosDeviceA
- GetProcAddress: ret=74480590
- GetProcAddress: hModule=74550000 proc=RegOpenKeyExA
- GetProcAddress: ret=7456f210
- GetProcAddress: hModule=76b00000 proc=FindWindowA
- GetProcAddress: ret=76b17a80
- GetProcAddress: hModule=74430000 proc=QueryDosDeviceA
- GetProcAddress: ret=74480590
- GetProcAddress: hModule=774f0000 proc=NtQuerySystemInformation
- GetProcAddress: ret=77562070
- GetProcAddress: hModule=74550000 proc=RegQueryValueExA
- GetProcAddress: ret=7456f020
- GetProcAddress: hModule=74430000 proc=QueryDosDeviceA
- GetProcAddress: ret=74480590
- GetProcAddress: hModule=74550000 proc=RegOpenKeyExA
- GetProcAddress: ret=7456f210
- GetProcAddress: hModule=774f0000 proc=NtQuerySystemInformation
- GetProcAddress: ret=77562070
- GetProcAddress: hModule=74430000 proc=QueryDosDeviceA
- GetProcAddress: ret=74480590
- GetProcAddress: hModule=774f0000 proc=NtQuerySystemInformation
- GetProcAddress: ret=77562070
- GetProcAddress: hModule=774f0000 proc=ZwQueryObject
- GetProcAddress: ret=77561df0
- GetProcAddress: hModule=74430000 proc=CheckRemoteDebuggerPresent
- GetProcAddress: hooking proc=CheckRemoteDebuggerPresent addr=0->10049e70
- GetProcAddress: HOOK ret=10049e70
- CheckRemoteDebuggerPresent: hProcess=ffffffff ret=0
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=KERNEL32.dll flags=0
- Registered DLL FileName=KERNEL32.dll
- LoadLibraryA: push idx=0 library=KERNEL32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=GetVersion
- GetProcAddress: ret=519f6ff0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- GetProcAddress: hModule=74430000 proc=UnhandledExceptionFilter
- GetProcAddress: ret=744468d0
- GetProcAddress: hModule=74550000 proc=OpenSCManagerA
- GetProcAddress: ret=745707e0
- GetProcAddress: hModule=74550000 proc=OpenServiceA
- GetProcAddress: ret=74583790
- GetProcAddress: hModule=74550000 proc=QueryServiceStatus
- GetProcAddress: ret=74572380
- GetProcAddress: hModule=74550000 proc=CloseServiceHandle
- GetProcAddress: ret=7456fc00
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- GetProcAddress: hModule=74430000 proc=IsDebuggerPresent
- GetProcAddress: hooking proc=IsDebuggerPresent addr=0->10048240
- GetProcAddress: HOOK ret=10048240
- extIsDebuggerPresent: return FALSE
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- LoadLibraryA: file=KERNEL32.dll flags=0
- Registered DLL FileName=KERNEL32.dll
- LoadLibraryA: push idx=0 library=KERNEL32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=LoadLibraryA
- GetProcAddress: hooking proc=LoadLibraryA addr=74445a80->1004a700
- GetProcAddress: HOOK ret=1004a700
- LoadLibraryA: file=Riched20.dll flags=0
- LoadLibraryA: hooking lib="Riched20.dll" handle=50b50000
- HookDirectDraw version=0
- HookDirect3D: module=50b50000 version=0
- HookDirect3D7: module=50b50000 version=0
- LoadLibraryA: file=C:\Users\lindq\AppData\Local\Temp\drm_dialogs.dll flags=0
- LoadLibraryA: hooking lib="C:\Users\lindq\AppData\Local\Temp\drm_dialogs.dll" handle=53a0000
- HookDirectDraw version=0
- HookDirect3D: module=53a0000 version=0
- HookDirect3D7: module=53a0000 version=0
- RegisterClassExA: PROXED ClassName="SonyDADC SecuROM" style=40(WS_OVERLAPPED) WndProc=10053770 cbClsExtra=0 cbWndExtra=30 hInstance=400000
- RegisterClassExA: atom=c316
- GetDesktopWindow: FullScreen=0
- GetDesktopWindow: returning desktop window hwnd=10010
- CreateWindowExA: class="ATOM(C316)" wname="SonyDADC SecuROM" pos=(0,0) size=(0,0) Style=cf0000(WS_BORDER+CAPTION+DLGFRAME+GROUP+MAXIMIZEBOX+MINIMIZEBOX+SIZEBOX+SYSMENU+TABSTOP+THICKFRAME) ExStyle=0(WS_EX_RIGHTSCROLLBAR) hWndParent=10010 hMenu=0 depth=0
- CreateWindowExA: DEBUG fullscreen=0 mainwin=230928 screen=(800,600)
- DefWindowProcA[90c32]: WinMsg=[0x24]WM_GETMINMAXINFO(0,7abe54c)
- DefWindowProcA[90c32]: WinMsg=[0x81]WM_NCCREATE(0,7abe540)
- DefWindowProcA[90c32]: WinMsg=[0x83]WM_NCCALCSIZE(0,7abe52c)
- DefWindowProcA[90c32]: WinMsg=[0x1]WM_CREATE(0,7abe540)
- CreateWindowExA: windowed mode ret=90c32
- DialogBoxIndirectParamA: hInstance=400000 pos=(4,200) size=(-32568x7) hWndParent=90c32, lpDialogFunc=17da404 dwInitParam=7abff60
- DefWindowProcA[90c32]: WinMsg=[0x1f]WM_CANCELMODE(0,0)
- DefWindowProcA[90c32]: WinMsg=[0xa]WM_ENABLE(0,0)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=0
- SetWindowLong: hwnd=5907de, Index=0(DWL_MSGRESULT) Val=6ef4a80
- SetWindowLong: hwnd=5907de, nIndex=0, Val=6ef4a80, res=0
- GetDeviceCaps: hdc=c0011e35 index=58(LOGPIXELSX) res=0x0060
- GetDeviceCaps: hdc=c0011e35 index=5a(LOGPIXELSY) res=0x0060
- GetDeviceCaps: hdc=c0011e35 index=68(SIZEPALETTE) res=0
- GetDeviceCaps: fix(3) SIZEPALETTE cap=100
- GetSystemMetrics: index=5(SM_CXBORDER), res=1
- GetSystemMetrics: index=6(SM_CYBORDER), res=1
- GetSystemMetrics: index=2(SM_CXVSCROLL), res=17
- GetSystemMetrics: index=3(SM_CYHSCROLL), res=17
- GetSystemMetrics: index=24(SM_CXDOUBLECLK), res=4
- GetSystemMetrics: index=25(SM_CYDOUBLECLK), res=4
- IsWindowVisible: hwnd=5907de ret=0
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- DefWindowProcW[5907de]: WinMsg=[0x83]WM_NCCALCSIZE(0,7abe5e4)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- GDI.GetDC: hwnd=5907de
- GetDeviceCaps: hdc=1c011cae index=58(LOGPIXELSX) res=0x0060
- GetDeviceCaps: hdc=1c011cae index=5a(LOGPIXELSY) res=0x0060
- GetDeviceCaps: hdc=1c011cae index=2(TECHNOLOGY) res=0x0001
- GetClientRect: whnd=5907de FullScreen=0
- GetClientRect: actual rect=(0,0)-(433,137)
- GetDeviceCaps: hdc=1c011cae index=2(TECHNOLOGY) res=0x0001
- GetDeviceCaps: hdc=1c011cae index=5a(LOGPIXELSY) res=0x0060
- GDI.ReleaseDC: hwnd=5907de hdc=1c011cae
- GDI.GetDC: hwnd=5907de
- GetDeviceCaps: hdc=1c011cae index=58(LOGPIXELSX) res=0x0060
- GetDeviceCaps: hdc=1c011cae index=5a(LOGPIXELSY) res=0x0060
- GDI.ReleaseDC: hwnd=5907de hdc=1c011cae
- GetWindowLongW: hwnd=5907de, Index=fffffff0(GWL_STYLE) res=40200844
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- DefWindowProcW[5907de]: WinMsg=[0x46]WM_WINDOWPOSCHANGING(0,7abd9f4) pos=(0,0) size=(0x0) flags=37(SWP_NOSIZE+NOMOVE+NOZORDER+NOACTIVATE+FRAMECHANGED)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- DefWindowProcW[5907de]: WinMsg=[0x83]WM_NCCALCSIZE(1,7abd9cc)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- DefWindowProcW[5907de]: WinMsg=[0x47]WM_WINDOWPOSCHANGED(0,7abd9f4) pos=(9,10) size=(450x137) flags=103f(SWP_NOSIZE+NOMOVE+NOZORDER+NOREDRAW+NOACTIVATE+FRAMECHANGED)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- SetWindowLong: hwnd=5907de, Index=fffffff0(GWL_STYLE) Val=40000844
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- DefWindowProcW[5907de]: WinMsg=[0x7c]WM_STYLECHANGING(fffffff0,7abda7c) style=40000844(WS_CHILD)->40000844(WS_CHILD)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- SetWindowLong: hwnd=5907de, nIndex=fffffff0, Val=40000844, res=40000844
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- DefWindowProcW[5907de]: WinMsg=[0x3]WM_MOVE(0,a0009) pos=(10,9)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- GDI.GetDC: hwnd=0
- GDI.ReleaseDC: hwnd=0 hdc=ed012345
- GetClientRect: whnd=5907de FullScreen=0
- GetClientRect: actual rect=(0,0)-(450,137)
- GetDeviceCaps: hdc=0 index=2(TECHNOLOGY) res=0x0000
- GDI.GetDC: hwnd=5907de
- GetDeviceCaps: hdc=ce011a6d index=5a(LOGPIXELSY) res=0x0060
- GDI.ReleaseDC: hwnd=5907de hdc=ce011a6d
- GetClientRect: whnd=5907de FullScreen=0
- GetClientRect: actual rect=(0,0)-(450,137)
- GetDeviceCaps: hdc=0 index=2(TECHNOLOGY) res=0x0000
- InvalidateRect: hwnd=5907de rect=NULL erase=0
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
- SendMessageA: hwnd=5907de WinMsg=[0x45b]???(1,0)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- SendMessageA: lresult=0
- SendMessageA: hwnd=5907de WinMsg=[0x43b]???(0,0)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- SendMessageA: lresult=0
- SendMessageA: hwnd=5907de WinMsg=[0x445]???(0,4000000)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- SendMessageA: lresult=0
- SendMessageA: hwnd=5907de WinMsg=[0x443]???(0,f0f0f0)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- InvalidateRect: hwnd=5907de rect=NULL erase=0
- InvalidateRect: hwnd=5907de rect=NULL erase=1
- SendMessageA: lresult=ffffff
- SendMessageA: hwnd=5907de WinMsg=[0x459]???(22,0)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- SendMessageA: lresult=0
- ShowWindow: hwnd=5907de, CmdShow=5(SW_SHOW)
- ShowWindow: res=18
- SendMessageA: hwnd=5907de WinMsg=[0x435]???(0,4e20)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- SendMessageA: lresult=0
- SendMessageA: hwnd=5907de WinMsg=[0x449]???(11,7abe5a0)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- GetClientRect: whnd=5907de FullScreen=0
- GetClientRect: actual rect=(0,0)-(450,137)
- GetDeviceCaps: hdc=0 index=2(TECHNOLOGY) res=0x0000
- InvalidateRect: hwnd=5907de rect=(0,0)-(0,0) erase=0
- InvalidateRect: hwnd=5907de rect=(0,0)-(450,26) erase=0
- GetClientRect: whnd=5907de FullScreen=0
- GetClientRect: actual rect=(0,0)-(450,137)
- GetDeviceCaps: hdc=0 index=2(TECHNOLOGY) res=0x0000
- GDI.GetDC: hwnd=5907de
- GetDeviceCaps: hdc=ce011a6d index=5a(LOGPIXELSY) res=0x0060
- GDI.ReleaseDC: hwnd=5907de hdc=ce011a6d
- SendMessageA: lresult=af
- ShowWindow: hwnd=40b8e, CmdShow=5(SW_SHOW)
- ShowWindow: res=0
- ShowWindow: hwnd=25083c, CmdShow=0(SW_HIDE)
- ShowWindow: res=0
- ShowWindow: hwnd=210866, CmdShow=0(SW_HIDE)
- ShowWindow: res=0
- ShowWindow: hwnd=150820, CmdShow=0(SW_HIDE)
- ShowWindow: res=0
- ShowWindow: hwnd=1907d4, CmdShow=0(SW_HIDE)
- ShowWindow: res=0
- ShowWindow: hwnd=70b84, CmdShow=5(SW_SHOW)
- ShowWindow: res=18
- DefWindowProcA[90c32]: WinMsg=[0x46]WM_WINDOWPOSCHANGING(0,7abe41c) pos=(0,0) size=(0x0) flags=13(SWP_NOSIZE+NOMOVE+NOACTIVATE)
- DefWindowProcA[90c32]: WinMsg=[0x1c]WM_ACTIVATEAPP(1,234)
- GetDesktopWindow: FullScreen=0
- GetDesktopWindow: returning desktop window hwnd=10010
- GetClientRect: whnd=10010 FullScreen=0
- GetClientRect: actual rect=(0,0)-(1920,1080)
- GetClientRect: desktop rect=(0,0)-(800,600)
- GetClientRect: whnd=a80748 FullScreen=0
- GetClientRect: actual rect=(0,0)-(467,192)
- SetWindowPos: hwnd=a80748 pos=(166,204) dim=(0,0) Flags=1
- DefWindowProcA[90c32]: WinMsg=[0x46]WM_WINDOWPOSCHANGING(0,7abe38c) pos=(0,0) size=(0x0) flags=13(SWP_NOSIZE+NOMOVE+NOACTIVATE)
- SetForegroundWindow: hwnd=a80748
- SetWindowPos: hwnd=a80748 pos=(0,0) dim=(0,0) Flags=3
- DefWindowProcA[90c32]: WinMsg=[0x46]WM_WINDOWPOSCHANGING(0,7abe38c) pos=(0,0) size=(0x0) flags=13(SWP_NOSIZE+NOMOVE+NOACTIVATE)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- DefWindowProcW[5907de]: WinMsg=[0x128]???(30001,0)
- DefWindowProcA[90c32]: WinMsg=[0x31f]WM_DWMNCRENDERINGCHANGED(1,0)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- GDI.BeginPaint: hwnd=5907de lpPaint=7abdb10 FullScreen=0
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- DefWindowProcW[5907de]: WinMsg=[0x85]WM_NCPAINT(1,0)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- GetClientRect: whnd=5907de FullScreen=0
- GetClientRect: actual rect=(0,0)-(450,137)
- GDI.SaveDC: hdc=ce011a6d ret=1
- GetDeviceCaps: hdc=ce011a6d index=58(LOGPIXELSX) res=0x0060
- GetDeviceCaps: hdc=ce011a6d index=5a(LOGPIXELSY) res=0x0060
- GetWindowLongW: hwnd=5907de, Index=fffffff4(GWL_ID) res=3e9
- SendMessageA: hwnd=a80748 WinMsg=[0x111]WM_COMMAND(40003e9,5907de)
- SendMessageA: lresult=0
- GetDeviceCaps: hdc=ce011a6d index=2(TECHNOLOGY) res=0x0001
- GDI.CreateCompatibleDC: hdc=ce011a6d
- GDI.CreateCompatibleDC: returning HDC=35011b52
- GDI.GetDC: hwnd=5907de
- GetDeviceCaps: hdc=1c011cae index=58(LOGPIXELSX) res=0x0060
- GetDeviceCaps: hdc=1c011cae index=5a(LOGPIXELSY) res=0x0060
- GDI.ReleaseDC: hwnd=5907de hdc=1c011cae
- GDI.RestoreDC: hdc=ce011a6d nSavedDC=ffffffff ret=1
- GDI.EndPaint: hwnd=5907de lpPaint=7abdb10 lpPaint.hdc=ce011a6d lpPaint.rcpaint=(0,0)-(450,137)
- DefWindowProcA[90c32]: WinMsg=[0x7f]WM_GETICON(1,60)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x7f]WM_GETICON(2,60)
- DefWindowProcA[90c32]: WinMsg=[0x7f]WM_GETICON(0,60)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x121]WM_ENTERIDLE(0,a80748)
- DefWindowProcA[90c32]: WinMsg=[0xa]WM_ENABLE(1,0)
- DefWindowProcA[90c32]: WinMsg=[0x46]WM_WINDOWPOSCHANGING(0,7abe1d4) pos=(0,0) size=(0x0) flags=3(SWP_NOSIZE+NOMOVE)
- DefWindowProcA[90c32]: WinMsg=[0x86]WM_NCACTIVATE(1,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x7f]WM_GETICON(2,0)
- DefWindowProcA[90c32]: WinMsg=[0x7f]WM_GETICON(0,0)
- DefWindowProcA[90c32]: WinMsg=[0x7f]WM_GETICON(1,0)
- DefWindowProcA[90c32]: WinMsg=[0x6]WM_ACTIVATE(1,a80748)
- DefWindowProcA[90c32]: WinMsg=[0x281]WM_IME_SETCONTEXT(1,c000000f)
- DefWindowProcA[90c32]: WinMsg=[0x282]WM_IME_NOTIFY(2,0)
- DefWindowProcA[90c32]: WinMsg=[0x7]WM_SETFOCUS(a80748,0)
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=6ef4a80
- SetWindowLong: hwnd=5907de, Index=0(DWL_MSGRESULT) Val=0
- SetWindowLong: hwnd=5907de, nIndex=0, Val=0, res=6ef4a80
- GetWindowLongW: hwnd=5907de, Index=0(DWL_MSGRESULT) res=0
- DefWindowProcW[5907de]: WinMsg=[0x82]WM_NCDESTROY(0,0)
- DestroyWindow: hwnd=90c32
- DefWindowProcA[90c32]: WinMsg=[0x90]???(0,0)
- DefWindowProcA[90c32]: WinMsg=[0x86]WM_NCACTIVATE(0,0)
- DefWindowProcA[90c32]: WinMsg=[0x6]WM_ACTIVATE(0,0)
- DefWindowProcA[90c32]: WinMsg=[0x1c]WM_ACTIVATEAPP(0,234)
- DefWindowProcA[90c32]: WinMsg=[0x8]WM_KILLFOCUS(0,0)
- DefWindowProcA[90c32]: WinMsg=[0x281]WM_IME_SETCONTEXT(0,c000000f)
- DefWindowProcA[90c32]: WinMsg=[0x282]WM_IME_NOTIFY(1,0)
- DefWindowProcA[90c32]: WinMsg=[0x2]WM_DESTROY(0,0)
- DefWindowProcA[90c32]: WinMsg=[0x82]WM_NCDESTROY(0,0)
- LoadLibraryA: file=KERNEL32.dll flags=0
- Registered DLL FileName=KERNEL32.dll
- LoadLibraryA: push idx=0 library=KERNEL32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FreeLibrary
- GetProcAddress: hooking proc=FreeLibrary addr=74444c40->10048a90
- GetProcAddress: HOOK ret=10048a90
- FreeLibrary: hModule=53a0000
- FreeLibrary: ret=1
- FreeLibrary: hModule=50b50000
- FreeLibrary: ret=1
- LoadLibraryA: file=KERNEL32.dll flags=0
- Registered DLL FileName=KERNEL32.dll
- LoadLibraryA: push idx=0 library=KERNEL32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=ReleaseMutex
- GetProcAddress: ret=7449ec20
- LoadLibraryA: file=KERNEL32.dll flags=0
- Registered DLL FileName=KERNEL32.dll
- LoadLibraryA: push idx=0 library=KERNEL32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=CloseHandle
- GetProcAddress: ret=7449eab0
- LoadLibraryA: file=kernel32.dll flags=0
- Registered DLL FileName=kernel32.dll
- LoadLibraryA: push idx=0 library=kernel32.dll hdl=74430000
- GetProcAddress: hModule=74430000 proc=FT_Thunk
- GetProcAddress: ret=0
- FreeLibrary: hModule=74430000
- FreeLibrary: ret=1
Advertisement
Add Comment
Please, Sign In to add comment