hooked shimeng.dll
[968]explorer.exe-->kernel32.dll-->GetProcAddress, Type: IAT modification at address 0x01001268 hook handler located in [shimeng.dll]ADVAPI32.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
:::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::
Information about ShimEng.dll:
Base address: 5CB70000
Size: 00026000
Flags: 8000400C
Load count: 1
Name: Microsoft® Windows® Operating System
Prod. Version: 5.1.2600.5512
Company: Microsoft Corporation
File Version: 5.1.2600.5512 (xpsp.080413-2105)
Description: Shim Engine DLL
Location: C:\WINDOWS\system32\ShimEng.dll
Signed: YES
:::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::
RPCRT4.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
Secur32.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
BROWSEUI.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
GDI32.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
USER32.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
msvcrt.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
ole32.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
SHLWAPI.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
OLEAUT32.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
SHDOCVW.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
CRYPT32.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
MSASN1.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
CRYPTUI.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
NETAPI32.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
VERSION.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
WININET.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
iertutil.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
WINTRUST.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
IMAGEHLP.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
WLDAP32.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
SHELL32.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
UxTheme.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
WINMM.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
MSACM32.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
USERENV.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
IMM32.DLL :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
comctl32.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
comctl32.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
msctfime.ime:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
appHelp.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
CLBCATQ.DLL :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
cscui.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
CSCDLL.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
themeui.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
actxprxy.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
msutb.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
MSCTF.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
ntshrui.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
ATL.DLL :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
SETUPAPI.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
msi.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
LINKINFO.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
ieframe.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
PSAPI.DLL :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
urlmon.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
MLANG.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
NETSHELL.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
credui.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
WTSAPI32.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
eappcfg.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
iphlpapi.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
WS2_32.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
WS2HELP.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
webcheck.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
stobject.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
BatMeter.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
WPDShServiceOGetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
WINHTTP.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
mydocs.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
PortableDevicGetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
PortableDevicGetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
mswsock.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
DNSAPI.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
rasadhlp.dll:GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll
DUSER.dll :GetProcAddress --[HOOKED]-- @5CB77774 by ShimEng.dll