i should say "prevent hackshield from loading is the false way to bypass hackshield". you can see the d3d9.dll in the memory, but ca isnt using it. try and set some breakpoints on d3d funcs. there are also 2 more d3d9.dll with other names like 16d70db6.dll, but ca isnt using it too