Static | ZeroBOX

PE Compile Time

2023-05-12 02:45:50

PE Imphash

fcc64241b6c54450be7b9c57ec0906c2

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000b31e0 0x000b3200 6.52023421984
.rdata 0x000b5000 0x00034214 0x00034400 5.3604573941
.data 0x000ea000 0x00009120 0x00005000 0.574424892643
.pdata 0x000f4000 0x00006f24 0x00007000 5.92935385394
.rsrc 0x000fb000 0x0001a964 0x0001aa00 7.40084133864
.reloc 0x00116000 0x00000a7c 0x00000c00 5.13814667408

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x00100ce0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x00100ce0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x00100ce0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x00100ce0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x00100ce0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x00100ce0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x00100ce0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x00100ce0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x00100ce0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_STRING 0x001032b8 0x00000158 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_STRING 0x001032b8 0x00000158 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_STRING 0x001032b8 0x00000158 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_STRING 0x001032b8 0x00000158 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_STRING 0x001032b8 0x00000158 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_STRING 0x001032b8 0x00000158 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_STRING 0x001032b8 0x00000158 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_RCDATA 0x00103410 0x00011ffa LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x00115484 0x00000014 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_GROUP_ICON 0x00115484 0x00000014 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_VERSION 0x00115498 0x000000dc LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_MANIFEST 0x00115574 0x000003ef LANG_ENGLISH SUBLANG_ENGLISH_UK ASCII text, with CRLF line terminators

Imports

Library WSOCK32.dll:
0x1400b5fc0 gethostbyname
0x1400b5fc8 recv
0x1400b5fd0 send
0x1400b5fd8 socket
0x1400b5fe0 inet_ntoa
0x1400b5fe8 setsockopt
0x1400b5ff0 ntohs
0x1400b5ff8 WSACleanup
0x1400b6000 WSAStartup
0x1400b6008 sendto
0x1400b6010 htons
0x1400b6018 __WSAFDIsSet
0x1400b6020 select
0x1400b6028 accept
0x1400b6030 listen
0x1400b6038 bind
0x1400b6040 inet_addr
0x1400b6048 ioctlsocket
0x1400b6050 recvfrom
0x1400b6058 WSAGetLastError
0x1400b6060 closesocket
0x1400b6068 gethostname
0x1400b6070 connect
Library VERSION.dll:
0x1400b5f08 GetFileVersionInfoW
0x1400b5f10 VerQueryValueW
0x1400b5f18 GetFileVersionInfoSizeW
Library WINMM.dll:
0x1400b5fa0 timeGetTime
0x1400b5fa8 waveOutSetVolume
0x1400b5fb0 mciSendStringW
Library COMCTL32.dll:
0x1400b5110 ImageList_ReplaceIcon
0x1400b5118 ImageList_Destroy
0x1400b5120 ImageList_Remove
0x1400b5130 ImageList_BeginDrag
0x1400b5138 ImageList_DragEnter
0x1400b5140 ImageList_DragLeave
0x1400b5148 ImageList_EndDrag
0x1400b5150 ImageList_DragMove
0x1400b5158 InitCommonControlsEx
0x1400b5160 ImageList_Create
Library MPR.dll:
0x1400b5810 WNetGetConnectionW
0x1400b5818 WNetCancelConnection2W
0x1400b5820 WNetUseConnectionW
0x1400b5828 WNetAddConnection2W
Library WININET.dll:
0x1400b5f28 HttpOpenRequestW
0x1400b5f30 InternetCloseHandle
0x1400b5f38 InternetOpenW
0x1400b5f40 InternetSetOptionW
0x1400b5f48 InternetCrackUrlW
0x1400b5f50 HttpQueryInfoW
0x1400b5f58 InternetQueryOptionW
0x1400b5f60 InternetConnectW
0x1400b5f68 HttpSendRequestW
0x1400b5f70 FtpOpenFileW
0x1400b5f78 FtpGetFileSize
0x1400b5f80 InternetOpenUrlW
0x1400b5f88 InternetReadFile
Library PSAPI.DLL:
0x1400b5928 GetProcessMemoryInfo
Library IPHLPAPI.DLL:
0x1400b52a8 IcmpSendEcho
0x1400b52b0 IcmpCloseHandle
0x1400b52b8 IcmpCreateFile
Library USERENV.dll:
0x1400b5ed0 DestroyEnvironmentBlock
0x1400b5ed8 LoadUserProfileW
0x1400b5ee0 CreateEnvironmentBlock
0x1400b5ee8 UnloadUserProfile
Library UxTheme.dll:
0x1400b5ef8 IsThemeActive
Library KERNEL32.dll:
0x1400b52c8 WaitForSingleObject
0x1400b52d0 HeapAlloc
0x1400b52d8 GetProcessHeap
0x1400b52e0 HeapFree
0x1400b52e8 Sleep
0x1400b52f0 GetCurrentThreadId
0x1400b52f8 MultiByteToWideChar
0x1400b5300 MulDiv
0x1400b5308 GetVersionExW
0x1400b5310 IsWow64Process
0x1400b5318 GetSystemInfo
0x1400b5320 FreeLibrary
0x1400b5328 LoadLibraryA
0x1400b5330 GetProcAddress
0x1400b5338 SetErrorMode
0x1400b5340 GetModuleFileNameW
0x1400b5348 WideCharToMultiByte
0x1400b5350 lstrcpyW
0x1400b5358 lstrlenW
0x1400b5360 GetModuleHandleW
0x1400b5368 QueryPerformanceCounter
0x1400b5370 VirtualFreeEx
0x1400b5378 OpenProcess
0x1400b5380 VirtualAllocEx
0x1400b5388 WriteProcessMemory
0x1400b5390 ReadProcessMemory
0x1400b5398 CreateFileW
0x1400b53a0 SetFilePointerEx
0x1400b53a8 SetEndOfFile
0x1400b53b0 ReadFile
0x1400b53b8 WriteFile
0x1400b53c0 FlushFileBuffers
0x1400b53c8 TerminateProcess
0x1400b53d0 CreateToolhelp32Snapshot
0x1400b53d8 Process32FirstW
0x1400b53e0 Process32NextW
0x1400b53e8 SetFileTime
0x1400b53f0 GetFileAttributesW
0x1400b53f8 FindFirstFileW
0x1400b5400 FindClose
0x1400b5408 GetLongPathNameW
0x1400b5410 GetShortPathNameW
0x1400b5418 DeleteFileW
0x1400b5420 FindNextFileW
0x1400b5428 CopyFileExW
0x1400b5430 GetFullPathNameW
0x1400b5438 CreateDirectoryW
0x1400b5440 RemoveDirectoryW
0x1400b5448 SetSystemPowerState
0x1400b5458 LoadResource
0x1400b5460 LockResource
0x1400b5468 SizeofResource
0x1400b5470 OutputDebugStringW
0x1400b5478 GetTempPathW
0x1400b5480 GetTempFileNameW
0x1400b5488 DeviceIoControl
0x1400b5490 GetLocalTime
0x1400b5498 CompareStringW
0x1400b54a0 EnterCriticalSection
0x1400b54a8 LeaveCriticalSection
0x1400b54b0 DuplicateHandle
0x1400b54b8 CreatePipe
0x1400b54c0 TerminateThread
0x1400b54c8 LoadLibraryExW
0x1400b54d0 FindResourceExW
0x1400b54d8 CopyFileW
0x1400b54e0 VirtualFree
0x1400b54e8 FormatMessageW
0x1400b54f0 GetExitCodeProcess
0x1400b54f8 GetPrivateProfileStringW
0x1400b5520 FileTimeToLocalFileTime
0x1400b5528 FileTimeToSystemTime
0x1400b5530 SystemTimeToFileTime
0x1400b5538 LocalFileTimeToFileTime
0x1400b5540 GetDriveTypeW
0x1400b5548 GetDiskFreeSpaceExW
0x1400b5550 GetDiskFreeSpaceW
0x1400b5558 GetVolumeInformationW
0x1400b5560 SetVolumeLabelW
0x1400b5568 CreateHardLinkW
0x1400b5570 SetFileAttributesW
0x1400b5578 CreateEventW
0x1400b5580 SetEvent
0x1400b5588 GetEnvironmentVariableW
0x1400b5590 SetEnvironmentVariableW
0x1400b5598 GlobalLock
0x1400b55a0 GlobalUnlock
0x1400b55a8 GlobalAlloc
0x1400b55b0 GetFileSize
0x1400b55b8 GlobalFree
0x1400b55c0 GlobalMemoryStatusEx
0x1400b55c8 Beep
0x1400b55d0 GetSystemDirectoryW
0x1400b55d8 HeapReAlloc
0x1400b55e0 HeapSize
0x1400b55e8 GetComputerNameW
0x1400b55f0 GetWindowsDirectoryW
0x1400b55f8 GetCurrentProcessId
0x1400b5600 GetProcessIoCounters
0x1400b5608 CreateProcessW
0x1400b5610 GetProcessId
0x1400b5618 SetPriorityClass
0x1400b5620 LoadLibraryW
0x1400b5628 VirtualAlloc
0x1400b5630 SetCurrentDirectoryW
0x1400b5638 IsDebuggerPresent
0x1400b5640 GetCurrentDirectoryW
0x1400b5648 lstrcmpiW
0x1400b5650 GetLastError
0x1400b5658 RaiseException
0x1400b5668 DeleteCriticalSection
0x1400b5670 RtlLookupFunctionEntry
0x1400b5678 RtlVirtualUnwind
0x1400b5680 UnhandledExceptionFilter
0x1400b5690 GetStartupInfoW
0x1400b56a0 GetSystemTimeAsFileTime
0x1400b56a8 CreateThread
0x1400b56b0 GetCurrentProcess
0x1400b56b8 GetCurrentThread
0x1400b56c0 GetStdHandle
0x1400b56c8 InitializeSListHead
0x1400b56d0 RtlUnwindEx
0x1400b56d8 RtlPcToFileHeader
0x1400b56e0 SetLastError
0x1400b56e8 TlsAlloc
0x1400b56f0 ResetEvent
0x1400b56f8 WaitForSingleObjectEx
0x1400b5700 TlsGetValue
0x1400b5708 TlsSetValue
0x1400b5710 TlsFree
0x1400b5718 EncodePointer
0x1400b5720 ExitProcess
0x1400b5728 GetModuleHandleExW
0x1400b5730 ExitThread
0x1400b5738 ResumeThread
0x1400b5740 FreeLibraryAndExitThread
0x1400b5748 GetACP
0x1400b5750 GetDateFormatW
0x1400b5758 GetTimeFormatW
0x1400b5760 LCMapStringW
0x1400b5768 GetStringTypeW
0x1400b5770 GetFileType
0x1400b5778 SetStdHandle
0x1400b5780 GetConsoleCP
0x1400b5788 GetConsoleMode
0x1400b5790 ReadConsoleW
0x1400b5798 GetTimeZoneInformation
0x1400b57a0 FindFirstFileExW
0x1400b57a8 IsValidCodePage
0x1400b57b0 GetOEMCP
0x1400b57b8 GetCPInfo
0x1400b57c0 GetCommandLineA
0x1400b57c8 GetCommandLineW
0x1400b57d0 GetEnvironmentStringsW
0x1400b57d8 FreeEnvironmentStringsW
0x1400b57e0 SetEnvironmentVariableA
0x1400b57e8 CloseHandle
0x1400b57f0 WriteConsoleW
0x1400b57f8 MoveFileW
0x1400b5800 RtlCaptureContext
Library USER32.dll:
0x1400b59b8 GetSubMenu
0x1400b59c0 GetCaretPos
0x1400b59c8 IsZoomed
0x1400b59d0 GetWindowLongW
0x1400b59d8 MonitorFromPoint
0x1400b59e0 GetMonitorInfoW
0x1400b59e8 SetWindowLongW
0x1400b59f8 FlashWindow
0x1400b5a00 GetClassLongPtrW
0x1400b5a08 TranslateAcceleratorW
0x1400b5a10 IsDialogMessageW
0x1400b5a18 GetSysColor
0x1400b5a20 InflateRect
0x1400b5a28 DrawFocusRect
0x1400b5a30 DrawTextW
0x1400b5a38 FrameRect
0x1400b5a40 DrawFrameControl
0x1400b5a48 FillRect
0x1400b5a50 PtInRect
0x1400b5a58 DestroyAcceleratorTable
0x1400b5a60 CreateAcceleratorTableW
0x1400b5a68 SetCursor
0x1400b5a70 GetWindowDC
0x1400b5a78 GetSystemMetrics
0x1400b5a80 SetWindowLongPtrW
0x1400b5a88 GetActiveWindow
0x1400b5a90 CharNextW
0x1400b5a98 wsprintfW
0x1400b5aa0 RedrawWindow
0x1400b5aa8 DrawMenuBar
0x1400b5ab0 DestroyMenu
0x1400b5ab8 SetMenu
0x1400b5ac0 GetWindowTextLengthW
0x1400b5ac8 CreateMenu
0x1400b5ad0 IsDlgButtonChecked
0x1400b5ad8 DefDlgProcW
0x1400b5ae0 CallWindowProcW
0x1400b5ae8 ReleaseCapture
0x1400b5af0 SetCapture
0x1400b5af8 OpenClipboard
0x1400b5b00 BlockInput
0x1400b5b08 GetMessageW
0x1400b5b10 LockWindowUpdate
0x1400b5b18 DispatchMessageW
0x1400b5b20 TranslateMessage
0x1400b5b28 PeekMessageW
0x1400b5b30 GetInputState
0x1400b5b38 UnregisterHotKey
0x1400b5b40 CharLowerBuffW
0x1400b5b48 MonitorFromRect
0x1400b5b50 LoadImageW
0x1400b5b58 mouse_event
0x1400b5b60 ExitWindowsEx
0x1400b5b68 SetActiveWindow
0x1400b5b70 FindWindowExW
0x1400b5b78 EnumThreadWindows
0x1400b5b80 GetMenuStringW
0x1400b5b88 InsertMenuItemW
0x1400b5b90 IsMenu
0x1400b5b98 TrackPopupMenuEx
0x1400b5ba0 GetCursorPos
0x1400b5ba8 DeleteMenu
0x1400b5bb0 CheckMenuRadioItem
0x1400b5bb8 GetMenuItemID
0x1400b5bc0 GetMenuItemCount
0x1400b5bc8 SetMenuItemInfoW
0x1400b5bd0 GetMenuItemInfoW
0x1400b5bd8 SetForegroundWindow
0x1400b5be0 IsIconic
0x1400b5be8 FindWindowW
0x1400b5bf0 CloseClipboard
0x1400b5bf8 keybd_event
0x1400b5c00 SendInput
0x1400b5c08 GetAsyncKeyState
0x1400b5c10 SetKeyboardState
0x1400b5c18 GetKeyboardState
0x1400b5c20 GetKeyState
0x1400b5c28 VkKeyScanW
0x1400b5c30 LoadStringW
0x1400b5c38 DialogBoxParamW
0x1400b5c40 MessageBeep
0x1400b5c48 EndDialog
0x1400b5c50 SendDlgItemMessageW
0x1400b5c58 GetDlgItem
0x1400b5c60 SetWindowTextW
0x1400b5c68 CopyRect
0x1400b5c70 EndPaint
0x1400b5c78 BeginPaint
0x1400b5c80 GetClientRect
0x1400b5c88 GetMenu
0x1400b5c90 DestroyWindow
0x1400b5c98 EnumWindows
0x1400b5ca0 GetDesktopWindow
0x1400b5ca8 IsWindow
0x1400b5cb0 IsWindowEnabled
0x1400b5cb8 IsWindowVisible
0x1400b5cc0 EnableWindow
0x1400b5cc8 InvalidateRect
0x1400b5cd0 GetWindowLongPtrW
0x1400b5cd8 ReleaseDC
0x1400b5ce0 GetWindowThreadProcessId
0x1400b5ce8 AttachThreadInput
0x1400b5cf0 GetFocus
0x1400b5cf8 GetWindowTextW
0x1400b5d00 ScreenToClient
0x1400b5d08 SendMessageTimeoutW
0x1400b5d10 EnumChildWindows
0x1400b5d18 CharUpperBuffW
0x1400b5d20 GetClassNameW
0x1400b5d28 GetParent
0x1400b5d30 GetDlgCtrlID
0x1400b5d38 SendMessageW
0x1400b5d40 MapVirtualKeyW
0x1400b5d48 PostMessageW
0x1400b5d50 IsCharUpperW
0x1400b5d58 IsCharLowerW
0x1400b5d60 IsCharAlphaNumericW
0x1400b5d68 IsCharAlphaW
0x1400b5d70 GetKeyboardLayoutNameW
0x1400b5d78 ClientToScreen
0x1400b5d80 RegisterHotKey
0x1400b5d88 GetCursorInfo
0x1400b5d90 SetWindowPos
0x1400b5d98 CopyImage
0x1400b5da0 AdjustWindowRectEx
0x1400b5da8 SetRect
0x1400b5db0 SetClipboardData
0x1400b5db8 EmptyClipboard
0x1400b5dc0 SetMenuDefaultItem
0x1400b5dc8 CountClipboardFormats
0x1400b5dd0 GetWindowRect
0x1400b5dd8 SetUserObjectSecurity
0x1400b5de0 GetClipboardData
0x1400b5de8 CloseDesktop
0x1400b5df0 CloseWindowStation
0x1400b5df8 OpenDesktopW
0x1400b5e00 SetProcessWindowStation
0x1400b5e08 GetProcessWindowStation
0x1400b5e10 OpenWindowStationW
0x1400b5e18 GetUserObjectSecurity
0x1400b5e20 MessageBoxW
0x1400b5e28 DefWindowProcW
0x1400b5e30 MoveWindow
0x1400b5e38 SetFocus
0x1400b5e40 PostQuitMessage
0x1400b5e48 KillTimer
0x1400b5e50 CreatePopupMenu
0x1400b5e58 RegisterWindowMessageW
0x1400b5e60 SetTimer
0x1400b5e68 ShowWindow
0x1400b5e70 CreateWindowExW
0x1400b5e78 RegisterClassExW
0x1400b5e80 LoadIconW
0x1400b5e88 LoadCursorW
0x1400b5e90 GetSysColorBrush
0x1400b5e98 GetForegroundWindow
0x1400b5ea0 MessageBoxA
0x1400b5ea8 DestroyIcon
0x1400b5eb0 SystemParametersInfoW
0x1400b5ec0 GetDC
Library GDI32.dll:
0x1400b5188 EndPath
0x1400b5190 DeleteObject
0x1400b5198 GetDeviceCaps
0x1400b51a0 ExtCreatePen
0x1400b51a8 StrokePath
0x1400b51b0 SetPixel
0x1400b51b8 CloseFigure
0x1400b51c0 LineTo
0x1400b51c8 AngleArc
0x1400b51d0 MoveToEx
0x1400b51d8 Ellipse
0x1400b51e0 PolyDraw
0x1400b51e8 GetTextExtentPoint32W
0x1400b51f0 CreateCompatibleBitmap
0x1400b51f8 BeginPath
0x1400b5200 Rectangle
0x1400b5208 SetViewportOrgEx
0x1400b5210 GetObjectW
0x1400b5218 SetBkMode
0x1400b5220 RoundRect
0x1400b5228 SetBkColor
0x1400b5230 CreatePen
0x1400b5238 CreateSolidBrush
0x1400b5240 SetTextColor
0x1400b5248 CreateFontW
0x1400b5250 GetTextFaceW
0x1400b5258 GetStockObject
0x1400b5260 CreateDCW
0x1400b5268 GetPixel
0x1400b5270 DeleteDC
0x1400b5278 GetDIBits
0x1400b5280 StretchBlt
0x1400b5288 SelectObject
0x1400b5290 CreateCompatibleDC
0x1400b5298 StrokeAndFillPath
Library COMDLG32.dll:
0x1400b5170 GetSaveFileNameW
0x1400b5178 GetOpenFileNameW
Library ADVAPI32.dll:
0x1400b5000 GetAce
0x1400b5008 RegEnumValueW
0x1400b5010 RegDeleteValueW
0x1400b5018 RegDeleteKeyW
0x1400b5020 RegEnumKeyExW
0x1400b5028 RegOpenKeyExW
0x1400b5030 RegCloseKey
0x1400b5038 RegQueryValueExW
0x1400b5040 RegConnectRegistryW
0x1400b5050 InitializeAcl
0x1400b5058 AdjustTokenPrivileges
0x1400b5060 OpenThreadToken
0x1400b5068 OpenProcessToken
0x1400b5070 LookupPrivilegeValueW
0x1400b5078 DuplicateTokenEx
0x1400b5080 CreateProcessAsUserW
0x1400b5088 CreateProcessWithLogonW
0x1400b5090 GetLengthSid
0x1400b5098 CopySid
0x1400b50a0 LogonUserW
0x1400b50a8 AllocateAndInitializeSid
0x1400b50b0 CheckTokenMembership
0x1400b50b8 FreeSid
0x1400b50c0 GetTokenInformation
0x1400b50c8 RegSetValueExW
0x1400b50d8 GetAclInformation
0x1400b50e0 RegCreateKeyExW
0x1400b50e8 AddAce
0x1400b5100 GetUserNameW
Library SHELL32.dll:
0x1400b5938 DragFinish
0x1400b5940 DragQueryPoint
0x1400b5948 ShellExecuteExW
0x1400b5950 DragQueryFileW
0x1400b5958 SHEmptyRecycleBinW
0x1400b5960 SHGetPathFromIDListW
0x1400b5968 SHBrowseForFolderW
0x1400b5970 SHCreateShellItem
0x1400b5978 SHGetDesktopFolder
0x1400b5988 SHGetFolderPathW
0x1400b5990 SHFileOperationW
0x1400b5998 ExtractIconExW
0x1400b59a0 Shell_NotifyIconW
0x1400b59a8 ShellExecuteW
Library ole32.dll:
0x1400b6080 CoTaskMemAlloc
0x1400b6088 CoTaskMemFree
0x1400b6090 CLSIDFromString
0x1400b6098 ProgIDFromCLSID
0x1400b60a0 CLSIDFromProgID
0x1400b60a8 OleSetMenuDescriptor
0x1400b60b0 MkParseDisplayName
0x1400b60b8 OleSetContainedObject
0x1400b60c0 CoCreateInstance
0x1400b60c8 IIDFromString
0x1400b60d0 StringFromGUID2
0x1400b60d8 CreateStreamOnHGlobal
0x1400b60e0 OleInitialize
0x1400b60e8 OleUninitialize
0x1400b60f0 CoInitialize
0x1400b60f8 CoUninitialize
0x1400b6100 GetRunningObjectTable
0x1400b6108 CoGetInstanceFromFile
0x1400b6110 CoGetObject
0x1400b6118 CoInitializeSecurity
0x1400b6120 CoCreateInstanceEx
0x1400b6128 CoSetProxyBlanket
Library OLEAUT32.dll:
0x1400b5838 VariantChangeType
0x1400b5840 DispCallFunc
0x1400b5848 CreateStdDispatch
0x1400b5850 CreateDispTypeInfo
0x1400b5858 UnRegisterTypeLib
0x1400b5860 UnRegisterTypeLibForUser
0x1400b5868 RegisterTypeLibForUser
0x1400b5870 RegisterTypeLib
0x1400b5878 LoadTypeLibEx
0x1400b5880 VariantCopyInd
0x1400b5888 VariantTimeToSystemTime
0x1400b5890 SysFreeString
0x1400b58a0 SafeArrayDestroyData
0x1400b58a8 SafeArrayUnaccessData
0x1400b58b0 VariantInit
0x1400b58b8 VariantClear
0x1400b58c0 VariantCopy
0x1400b58c8 SysAllocString
0x1400b58d0 SafeArrayCreateVector
0x1400b58d8 VarR8FromDec
0x1400b58e8 SafeArrayAllocData
0x1400b58f0 SysStringLen
0x1400b58f8 SafeArrayGetVartype
0x1400b5900 OleLoadPicture
0x1400b5908 QueryPathOfRegTypeLib
0x1400b5910 SysReAllocString
0x1400b5918 SafeArrayAccessData

!This program cannot be run in DOS mode.
Rich+PG
`.rdata
@.data
.pdata
@.rsrc
@.reloc
UVWATAUAVAWH
`A_A^A]A\_^]
|$ UATAUAVAWH
0A_A^A]A\]
UVWATAUAVAWH
A_A^A]A\_^]
WATAUAVAWH
0A_A^A]A\_
WAUAVH
urH9s0H
H!t$ H
SUVWATAUAVAWH
XA_A^A]A\_^][
x ATAVAWH
A_A^A\
USVWAWH
A__^[]
UVWATAUAVAWH
A_A^A]A\_^]
UAVAWH
D8u8tUA
UAVAWH
USVWATAUAVAWH
A_A^A]A\_^[]
t$TL9}
x ATAVAWH
A_A^A\
UVWATAUAVAWH
A_A^A]A\_^]
WATAUAVAWH
A_A^A]A\_
H UATAUAVAWH
A_A^A]A\]
UATAUAVAWH
A_A^A]A\]
E0A8_ u4I
HcSHE3
UATAUAVAWH
A_A^A]A\]
WAVAWH
A_A^_
WAVAWH
A_A^_
UATAUAVAWH
A_A^A]A\]
UVWATAUAVAWH
L$`LcH
A_A^A]A\_^]
SUVWATAUAVAWH
t$dH!l$x
A_A^A]A\_^][
UVWATAUAVAWH
A_A^A]A\_^]
UVWATAUAVAWH
PA_A^A]A\_^]
WAVAWH
UATAUAVAWH
A_A^A]A\]
WAVAWH
A_A^_
x UATAUAVAWH
A_A^A]A\]
VWATAVAWH
HcWHE3
A_A^A\_^
H9v/A
@SVWAVAWH
0A_A^_^[
0A_A^_^[
t$ WATAUAVAWH
A_A^A]A\_
WATAUAVAWH
fD9$Ft$
A_A^A]A\_
x AUAVAWH
A_A^A]
UVWATAUAVAWH
`A_A^A]A\_^]
USWAUAVH
A^A]_[]
USVWATAUAVAWH
A_A^A]A\_^[]
USVAWH
D$XD9m
u29uPu-L
\$HD9}
E8H+E(H
E@H+E(H
UVATAVAWH
A_A^A\^]
D$XD;D$P
 !"#$
 !"#$%%%%%%&&'()*+%%%%%%&&'()*+,,,,,,--./012RRRRRRRRRRRR3345566789::::;<=<=>?>@ABC>@ABCRRRRRDEFGHIJKLMNO
USVWATAUAVAWH
A_A^A]A\_^[]
UAVAWH
@A_A^]
L$ UWAVH
T$hD9t$`tHD
WAVAWH
A_A^_
x UATAUAVAWH
A_A^A]A\]
L$ SWH
L$P9|$Ht0H
D;T$H|
fD91tWA
WAVAWH
fD9<Gt
A_A^_
t$ WATAUAVAWH
A_A^A]A\_
UVWATAUAVAWH
|$`AU3!
A_A^A]A\_^]
x UATAUAVAWH
A_A^A]A\]
x ATAVAWH
A_A^A\
WAVAWH
uh8^ u
A_A^_
HcL$`H
HcL$0H
|$ AVH
l$ AVH
UAVAWH
t$ WATAUAVAWH
A_A^A]A\_
USVWAWH
L$xHcA ;
L$xE;Y(
A__^[]
|$hA;A$
UVWATAUAVAWH
A_A^A]A\_^]
USWAUAWH
A_A]_[]
IcG0Ic
USVATAUAVAWH
A_A^A]A\^[]
USVAVH
L$ UVWATAUAVAWH
A_A^A]A\_^]
L$ SVH
T$XD9L$P
UVWAVH
USVATAVAWH
A_A^A\^[]
UVWATAUAVAWH
0A_A^A]A\_^]
x ATAVAWH
A_A^A\
UVWATAUAVAWH
uFD;n0tHA
A_A^A]A\_^]
UVWATAUAVAWH
d$(!t$ E
0A_A^A]A\_^]
UVWATAUAVAWH
l$(H!D$PE
`A_A^A]A\_^]
WATAUAVAWH
0A_A^A]A\_
VWAUAVAWH
A_A^A]_^
p WAVAWH
|$ UATAUAVAWH
A_A^A]A\]
t$ WAVAWH
A_A^_
UVWATAUAVAWH
A_A^A]A\_^]
WATAUAVAWH
0A_A^A]A\_
VWATAVAWH
A_A^A\_^
UVWATAUAVAWH
A_A^A]A\_^]
USVWATAUAVAWH
T$`fA9
A_A^A]A\_^[]
CHfD9X
USVWATAUAVAWH
A@I+A H
A_A^A]A\_^[]
B@I+B H
p@H+p
B-fE9B
t$ WATAUAVAWH
0A_A^A]A\_
WATAUAVAWH
A_A^A]A\_
WAVAWH
A_A^_
t$ WATAUAVAWH
A_A^A]A\_
UVWATAUAVAWH
A_A^A]A\_^]
UVWATAUAVAWH
`A_A^A]A\_^]
WATAUAVAWH
A_A^A]A\_
9\$hu6
UAUAVH
UVWAVAWH
0A_A^_^]
h UAVAWH
UVWATAWH
A_A\_^]
UVWATAUAVAWH
A_A^A]A\_^]
WATAUAVAWH
A_A^A]A\_
WAVAWH
A_A^_
USVWATAUAVAWH
A_A^A]A\_^[]
WAVAWH
<C-tiIc
fD9<Ct8Ic
fD9<Ku
A_A^_
WAVAWH
A_A^_
H WATAUAVAWH
A_A^A]A\_
WAVAWH
A_A^_
H SVWH
x AVAWH
|$0A_A^
wfUD3"
wfUD3"
wfUD3"
u0HcH<H
H3E H3E
fffffff
t<ffff
fA;8upI
fA;(t(fA98t
WATAUAVAWH
A_A^A]A\_
VWATAVAWH
A_A^A\_^
UVWATAUAVAWH
@A_A^A]A\_^]
H;xXu5
WATAUAVAWH
A_A^A]A\_
AUAVAWH
;I9}(tiH
0A_A^A]
VWATAVAWH
A_A^A\_^
UVWATAUAVAWH
A_A^A]A\_^]
UVWATAUAVAWH
A_A^A]A\_^]
ri9O vdH
@SVWATAUAVAWH
L!|$(L!
D$0HcH
pA_A^A]A\_^[
B(I9A(u
SVWATAUAVAWH
0A_A^A]A\_^[
WATAUAVAWH
A_A^A]A\_
@8l$8t
u3HcH<H
@8|$Pt
@8|$Pt
|$ UATAUAVAWH
A_A^A]A\]
t$ WATAUAVAWH
'D8l$@
t)D8l$@t
WD8l$@t
D8l$@t
A_A^A]A\_
t$ WATAUAVAWH
f;\$ts
rsf;\$
r_f;\$,
rKf;\$<
r7f;\$L
r#f;\$\s
f;\$ds
f;\$(r
f;\$0r
rvf;\$
rbf;\$,
rNf;\$<
r:f;\$L
r&f;\$\s
f;\$ds
A_A^A]A\_
D$@H;G
D$0H;G
S,, <Zw
CA< t(<#t
<htr<jtb<lt6<tt&<wt
!,X< w
t$ WAVAWH
s4+sP+
0A_A^_
t$ WATAUAVAWH
s4+sP+
A_A^A]A\_
t$ WATAUAVAWH
s4+sP+
A_A^A]A\_
WAVAWH
A_A^_
t$ WAVAWH
A_A^_
WATAUAVAWH
A_A^A]A\_
t$ UWATAVAWH
D8d$Ht
D8d$Ht
A_A^A\_]
D8t$8t
USVWATAUAVAWH
f;T$(s
A_A^A]A\_^[]
?)tIf97t:
UVWATAUAVAWH
0A_A^A]A\_^]
WATAUAVAWH
0A_A^A]A\_
UVWATAUAVAWH
D$XD8p
L$D;L$T
L$P+L$8
D$XD90}
L$P+L$H
A_A^A]A\_^]
WAVAWH
A_A^_
VWATAVAWH
A_A^A\_^
WATAUAVAWH
A_A^A]A\_
WAVAWH
@A_A^_
fffffff
fffffff
fffffff
fffffff
ffffff
fffffff
fffffff
fffffff
fffffff
ffffff
|$ AVH
L$ UVWATAUAVAWH
0A_A^A]A\_^]
D$0HcH
WATAUAVAWH
D$PHcX H
A_A^A]A\_
UVWATAUAVAW
J;D10t
A_A^A]A\_^]
>ffffff
fffffff
ffffff
fffffff
)t$ H#
fffffff
^8U)zj
0ffffff
fffffff
fffffff
w`HcE H
Hc;9E0t
HcE H+
9^ t"H
@UVWATAUAVAWH
e0A_A^A]A\_^]
|$ UATAUAVAWH
A_A^A]A\]
fD9!u7A
UVWAVAWH
0A_A^_^]
WAVAWH
A86taH
0A_A^_
WAVAWH
fA96tdH
fA94nu
0A_A^_
L$ WATAUAVAWH
@A_A^A]A\_
x ATAVAWH
A_A^A\
WATAUAVAWH
A_A^A]A\_
D82u&H
D8t$Ht
x ATAVAWH
gfffffffH
D8d$ht
A_A^A\
WATAUAVAWH
A_A^A]A\_
I9\$ ~@H
fD9t$b
ATAVAWH
0A_A^A\
UVWATAUAVAWH
A_A^A]A\_^]
VWATAVAW
A_A^A\_^
WATAUAVAWH
A_A^A]A\_
\$ UVWATAUAVAWH
H!D$ E
`A_A^A]A\_^]
@UATAUAVAWH
H!T$0D
uf!T$(H!T$
A_A^A]A\]
USVWAVH
A^_^[]
@SUVWATAUAVAWH
D88Hte
8A_A^A]A\_^][
SUVWATAUAVAWH
D88Ht!
D98Ht;H
8A_A^A]A\_^][
VATAUAVAWH
A_A^A]A\^
UVWATAUAVAWH
D(8Ht}
`A_A^A]A\_^]
WATAUAVAWH
A_A^A]A\_
D$@H=@W
p WATAUAVAWH
A_A^A]A\_
T$pkD$x<
uAiD$@
UVWAUAVH
U8D83A
0A^A]_^]
@USVWH
x ATAVAWH
D8&t4H
D8d$Ht
A_A^A\
ATAVAWH
D8d$8t
@A_A^A\
UVWATAUAVAWH
fA9<Bu
fC9<hu
A_A^A]A\_^]
WATAUAVAWH
fD9,yu
0A_A^A]A\_
\$ UVWAVAWH
A_A^_^]
f9|$^t&f
f9|$`t
l$ VWATAVAWH
L$&@8t$&t0@8q
A81t@@8r
A_A^A\_^
fD94Fu
UVWATAUAVAWH
0A_A^A]A\_^]
I96t4H
xWI96tRI
@8t$p@
SVWATAUAWH
HA_A]A\_^[
@UATAUAVAWH
e0A_A^A]A\]
@USVWATAUAVAWH
D8l$ht
A_A^A]A\_^[]
s WAVAWH
0A_A^_
UATAUAVAWH
A_A^A]A\]
l$ WAVAWH
A_A^_
@UATAVH
ffffff
fffffff
|$ ATAVAWH
\$@@8=
A_A^A\
WAVAWH
A_A^_
@USVWATAUAVAWH
e8A_A^A]A\_^[]
LcA<E3
u HcA<H
L9R8u5A
UpL9t$xt
MhL9t$`t
H9T$`t*H
H9T$xt
t*9T$Pt+9T$Xt,9T$`t-9T$h
} EA06
H+D$0H
f90t%H
HcL$xH
C0;C4A
HcL$HL
LcD$PL
HcS$Hk
CBfA9G
CBfA9G
6HcS$Hk
CBfA9G
t$T;|$X
HcT$XHk
HcT$XHk
5HcS$L
6HcS$L
CBfA9G
CBfA9G
Hct$TH
t$P;t$T
t$P;t$T
t$H;|$T
|$T;|$P
HcL$XHk
t>HcL$@
t$\;|$P
|$T;|$P
t$X;|$T
t$X;|$T
|$P;|$T
|$P;|$T
L$X;L$P
|$X;|$P
|$X;|$P
|$X;|$P
|$X;|$P
|$X;|$P
|$X;|$P
|$X;|$P
D$XD;D$P
|$X;|$P
D$XD;D$P
HcS$Hk
CBfA9G
D$XD;D$P
2HcS$Hk
CBfA9G
|$dEA06
D$<;D$@
u`E;u$
DD$0E3
\$0HcH
D8l$0A
D;\$P|
t2D91u
H9v0H
CfD9+t
4FfD9.u
4FfD9&u
fD98t\D
xy;Kx~
t:M;C8se
A+A0fD
uSfA9H
F$fA9B
A9N`~DH
<GA;^`|
p|;X`}CL
_RfA9]
YPA9I`
t2I;Z8s_
Pw|t2fA;
rfE9r
AfD9!u
<HIcIlI
HI9I@r"I
m(A9Q`~THc
m(E;y`|
$DE;y`|
q@M+q I
A:fA9B
CBfA9B
K+fA9J
fE9"ujA
fE9"u A
t2I;O@s!L
<GfD9?uKA
<G't,A
8)t)D;
8)tD;
UVWAVAWH
PA_A^_^]
u[L9D$PuT
u?f9ZHu
UVWATAUAVAWH
fD;x0sKH
fD;x0s
PA_A^A]A\_^]
|$ AVH
UVWATAUAVAWH
A_A^A]A\_^]
UVWAVAWH
A_A^_^]
UVWATAUAVAWH
A_A^A]A\_^]
UATAUAVAWH
A_A^A]A\]
UATAUAVAWH
A_A^A]A\]
UVWATAUAVAWH
t%8]ot
A_A^A]A\_^]
WAVAWH
k VWAUAVAWH
D9;v=H
0A_A^A]_^
H!T$(E3
WAVAWH
0A_A^_
WATAUAVAWH
D$(+D$
D$,+D$$
0A_A^A]A\_
UVWAVAWH
D$`9D$h
tn;|$hrh;|$`rb
t"9|$`t
A_A^_^]
x ATAVAWH
@A_A^A\
UATAUAVAWH
A_A^A]A\]
` UAVAWH
UATAUAVAWH
A_A^A]A\]
WAVAWH
fD98u H
fD98u1A
@A_A^_
UATAUAVAWH
H;}gt^I
A_A^A]A\]
x ATAVAWH
A_A^A\
UAVAWH
WATAUAVAWH
A_A^A]A\_
|$ UATAUAVAWH
A_A^A]A\]
UATAUAVAWH
A_A^A]A\]
WAVAWH
@A_A^_
f9(t6H
WATAUAVAWH
A_A^A]A\_
L$ UVWATAUAVAWH
A_A^A]A\_^]
UATAUAVAWH
A_A^A]A\]
x ATAVAWH
A_A^A\
l$ VWATAVAWH
A_A^A\_^
RX@8s]u
@8s\t<H
L$X@8s\t
UATAUAVAWH
H9{pvH
f9{ tD
A_A^A]A\]
f9|$ u
UAVAWH
@A_A^]
H;D$(u0H
VWATAVAWH
A_A^A\_^
USVWATAUAVAWH
E;L$$|
}xE;L$$
m`D;|$H~cI
DD$0E3
@88t+I
A_A^A]A\_^[]
UVWATAUAVAWH
A_A^A]A\_^]
@USVWAVH
A^_^[]
UVWATAUAVAWH
fD94Wt
f;D$ u
PA_A^A]A\_^]
f9D$0u
t>f9.u
WATAUAVAWH
A_A^A]A\_
WAVAWH
A_A^_
VWATAVAWH
0A_A^A\_^
UVWATAUAVAWH
A_A^A]A\_^]
WAVAWH
@A_A^_
H SVWH
H9q(toH
t3H9_(u-
H9y(tgH
t@8{u
t@8{ u
t@8{!u
t@8{"u
@USVWATAVAWH
e\u(E3
^tffA;
@A_A^A\_^[]
UVWAVAWH
|$Tu*E3
A_A^_^]
UVWATAUAVAWH
tvD8c
fD9 t6H
D8c!uK
D8c#t5
A_A^A]A\_^]
WAVAWH
D$@@83t
D$@@8s
D$@@8s
L$A@8s
L$B@8s
UAVAWH
D$@@83t
D$@@8s
D$@@8s
0L$A@8s
0L$B@8s
t$ WAVAWH
A_A^_
UVWATAUAVAWH
pA_A^A]A\_^]
UATAUAVAWH
$fE97u
A_A^A]A\]
UVWATAUAVAWH
A_A^A]A\_^]
p WAVAWH
tTH9(uO
x UATAUAVAWH
fD9?u$H
A_A^A]A\]
t-HcD$0
H+T$0E3
UVWATAUAVAWH
u<@8t$0u
A_A^A]A\_^]
UATAVH
UATAUAVAWH
A_A^A]A\]
@8|$H@
fD90t H
x ATAVAWH
fD98t*
A_A^A\
WAVAWH
t$ WAVAWH
0A_A^_
WAVAWH
@A_A^_
f9t$@t
f93tOH
` UAVAWH
0A_A^]
VWATAVAWH
A_A^A\_^
\$0t#H
WAVAWH
A_A^_
VWATAVAWH
A_A^A\_^
UVWATAUAVAWH
HcEWHk
HcEWHk
HcEWHk
HcEWHk
D;EW}"Ik
A_A^A]A\_^]
x ATAVAWH
AHcD$THk
A_A^A\
|$ UAVAWH
D8uXty
@A_A^]
UAVAWH
|$ AVH
H9O(s}H
w2t+A;
WAVAWH
@A_A^_
WAVAWH
@A_A^_
@USVWATAVAWH
PA_A^A\_^[]
8*u+A;
q(9s u4H
|$ AVH
D+D$8D
UVWATAUAVAWH
A_A^A]A\_^]
x UATAUAVAWH
A_A^A]A\]
H UATAUAVAWH
A_A^A]A\]
UATAUAVAWH
H9\$xt%H
A_A^A]A\]
WAVAWH
A_A^_
x ATAVAWH
A_A^A\
UAVAWH
` UAVAWH
WAVAWH
A_A^_
UVWATAUAVAWH
A_A^A]A\_^]
WAVAWH
A_A^_
UATAUAVAWH
A_A^A]A\]
|$ UATAUAVAWH
A_A^A]A\]
UVWATAUAVAWH
L$TfA9
A_A^A]A\_^]
YHc\$8H
UAVAWH
WAVAWH
A_A^_
UVWATAUAVAWH
A_A^A]A\_^]
t$ WAVAWH
x UATAVH
T$ HcH
T$ HcH
HcL$8H
t$ WAVAWH
HcL$HH
A_A^_
HcL$8H
USVWATAUAVAWH
A_A^A]A\_^[]
UVWAVAWH
A_A^_^]
UATAUAVAWH
fD9 u43
fD9 u"H
A_A^A]A\]
UAVAWH
UWATAVAWH
A_A^A\_]
|$ UAVAWH
UVWATAUAVAWH
fD93t[H
A_A^A]A\_^]
UATAUAVAWH
A_A^A]A\]
HcL$8H
HcT$8H
x UATAUAVAWH
fD9+t.E3
A_A^A]A\]
UVWATAUAVAWH
A_A^A]A\_^]
UVWATAUAVAWH
A_A^A]A\_^]
WATAUAVAWH
A_A^A]A\_
x UATAUAVAWH
H;\$(r
E fD9(u
A_A^A]A\]
UATAUAVAWH
A_A^A]A\]
WATAUAVAWH
A_A^A]A\_
HcL$hH
UATAUAVAWH
A_A^A]A\]
HcL$8H
UWATAVAWH
A_A^A\_]
UAUAWH
x AUAVAWH
0A_A^A]
t8HcM(H
HcL$HH
x ATAVAWH
A_A^A\
h UAVAWH
WAVAWH
0A_A^_
WATAUAVAWH
A_A^A]A\_
UWAUAVAWH
A_A^A]_]
` UAVAWH
@A_A^]
UWAUAVAWH
A_A^A]_]
h UAVAWH
UVWATAUAVAWH
pA_A^A]A\_^]
WAVAWH
0A_A^_
WATAUAVAWH
A_A^A]A\_
UATAUAVAWH
@8}gt*H
A_A^A]A\]
USVWATAUAVAWH
A;t$$|
t89=i6
A_A^A]A\_^[]
UVWATAUAVAWH
`A_A^A]A\_^]
x ATAVAWH
A_A^A\
UVWAVAWH
A_A^_^]
T$THcH
T$tHcH
9t$0tE
UVWAVAWH
0A_A^_^]
WATAUAVAWH
L9 t~H
A_A^A]A\_
WATAVH
UAVAWH
t$ UWAVH
UVWATAUAVAWH
A_A^A]A\_^]
UAVAWH
x UATAUAVAWH
8)u1fD
A_A^A]A\]
|$ AVH
UVWATAUAVAWH
@A_A^A]A\_^]
x ATAVAWH
0A_A^A\
t$ UWAVH
E,)E$H
WAVAWH
0A_A^_
UVWATAUAVAWH
pA_A^A]A\_^]
UWATAVAWH
A_A^A\_]
p WATAUAVAWH
A_A^A]A\_
USVWATAUAVAWH
xA_A^A]A\_^[]
f9)t+H
t$ WAVAWH
WAVAWH
0A_A^_
WATAUAVAWH
0A_A^A]A\_
WAVAWH
0A_A^_
USVWATAUAWH
A_A]A\_^[]
AUAVAWH
@A_A^A]
@USVWAVH
PA^_^[]
L$ UVWATAUAVAWH
A_A^A]A\_^]
UVWATAUAVAWH
D+T$tH
D+T$pL
A_A^A]A\_^]
UVWATAUAVAWH
D+T$tH
d$|+|$pD+d$t9
D$x+D$p
A_A^A]A\_^]
WATAUAVAWH
A_A^A]A\_
u"8D$`trH
L$ SUVWH
UVWATAUAVAWH
L!t$ I
d$(L!t$ E3
A_A^A]A\_^]
UVWATAUAVAWH
xWL!uHH
pA_A^A]A\_^]
UVWATAUAVAWH
A_A^A]A\_^]
UVWATAUAVAWH
A_A^A]A\_^]
UVWATAUAVAWH
A_A^A]A\_^]
D9d$LveH
L$89D$HH
D;d$Lr
x UATAUAVAWH
ED9l$Pt
A_A^A]A\]
x UATAUAVAWH
A_A^A]A\]
UATAUAVAWH
L$XH9]
A_A^A]A\]
UVWATAUAVAWH
uZ9\$|uXM
A_A^A]A\_^]
L$ UVWATAUAVAWH
A_A^A]A\_^]
UATAUAVAWH
A_A^A]A\]
L$ UVWATAUAVAWH
A_A^A]A\_^]
WAVAWH
t$ WATAUAVAWH
A_A^A]A\_
|$ UATAUAVAWH
A_A^A]A\]
UVWATAUAVAWH
t#D8UXt
A_A^A]A\_^]
UVWATAUAVAWH
A_A^A]A\_^]
UVWATAUAVAWH
A_A^A]A\_^]
UATAUAVAWH
A_A^A]A\]
UATAUAVAWH
A_A^A]A\]
x UATAUAVAWH
A_A^A]A\]
WAVAWH
A_A^_
UATAUAVAWH
fD9,_u
A_A^A]A\]
x UATAUAVAWH
A_A^A]A\]
t$ WATAUAVAWH
A_A^A]A\_
UVWATAUAVAWH
8]gu2H
A_A^A]A\_^]
L$ UVWATAUAVAWH
L!d$hH
L!d$pL
L!d$@L9e
D$@H;E
A_A^A]A\_^]
UATAUAVAWH
|$@fE9'tNH
A_A^A]A\]
UATAUAVAWH
A_A^A]A\]
` UAVAWH
I9?u3E
WATAUAVAWH
A_A^A]A\_
L9s8~K3
UVWATAUAVAWH
A_A^A]A\_^]
UVWATAWH
@A_A\_^]
t$ UWATAVAWH
A_A^A\_]
h UAVAWH
UATAUAVAWH
_@8ugt
A_A^A]A\]
UVWATAUAVAWH
D$pv5H
D$pv1H
A_A^A]A\_^]
UVWAVAWH
A_A^_^]
UWATAVAWH
fD9$OA
fD9$Ou
A_A^A\_]
UVWATAUAVAWH
A_A^A]A\_^]
WATAUAVAWH
A_A^A]A\_
x AUAVAWH
f90u|3
A_A^A]
VWATAVAWH
A_A^A\_^
H9|$0t
VWATAVAWH
A_A^A\_^
WAVAWH
A_A^_
UATAUAVAWH
A_A^A]A\]
UVWATAUAVAWH
Lc!Lci
fD9 u?I
fD9 t+f
A_A^A]A\_^]
UVWATAUAVAWH
@A_A^A]A\_^]
UVWATAUAVAWH
\$@D;k
PA_A^A]A\_^]
|$ UATAUAVAWH
A_A^A]A\]
UATAUAVAWH
A_A^A]A\]
x ATAVAWH
@A_A^A\
WAVAWH
<s.tJfB
A_A^_
t+f93t&H
UAVAWH
f99tMH
UATAWH
f99tHH
UVWATAUAVAWH
0A_A^A]A\_^]
WATAUAVAWH
0A_A^A]A\_
UVWATAUAVAWH
A_A^A]A\_^]
UVWATAUAVAWH
A_A^A]A\_^]
|$8+|$0
\$<+\$4
UVWATAUAVAWH
A_A^A]A\_^]
UAVAWH
UVWATAUAVAWH
t$t+\$h+t$l
A_A^A]A\_^]
UATAUAVAWH
A_A^A]A\]
UVWATAUAVAWH
D;l$0wWH
L$`L)1u
pA_A^A]A\_^]
UVWATAUAVAWH
@A_A^A]A\_^]
D!D$(E3
D!D$ H
VWATAVAWH
LcD$`H
0A_A^A\_^
t$ WAVAWH
A_A^_
WAVAWH
El$xE3
EL$pfA
HcL$HHc\$PH
WAVAWH
f9+tvH
D$x+D$p
L$|+L$t
WATAUAVAWH
fE9!t(E3
A_A^A]A\_
UATAUAVAWH
A_A^A]A\]
UVWATAUAVAWH
A_A^A]A\_^]
HcM@HcU H
UAVAWH
WAVAWH
WAVAWH
UATAUAVAWH
A_A^A]A\]
tDHc\$@H
USVWAUAVAWH
9HcMXH
A_A^A]_^[]
HcL$@H
)HcL$XH
LcL$PE3
UATAUAVAWH
HcL$0H
9HcL$ H
A_A^A]A\]
|$XfD9
tLcD$TL
L$PLcD$TA
WAVAWH
HcL$PH
UVWATAUAVAWH
HcL$0H
H9\$@u
HcL$0H
Lc|$0Ic
uaH9rhu[H
L$H+D$hM
D$t+D$l
A_A^A]A\_^]
HcL$@H
HcL$0H
UATAUAVAWH
u!L9ahu
A_A^A]A\]
ttLcL$0L
HcL$HH
UVWATAUAVAWH
A_A^A]A\_^]
WATAUAVAWH
Lcl$@H
A_A^A]A\_
UWATAVAWH
HcMOLcu
ulH!|$XH
D$PH!|$HH
A_A^A\_]
UVWATAUAVAWH
`A_A^A]A\_^]
SUVWATAUAVAWH
hA_A^A]A\_^][
D$(+D$
\$,+\$$
;D$ |G;D$(
;D$$|5;D$,
UVWATAUAVAWH
t(E97A
0A_A^A]A\_^]
WAVAWH
A_A^_
WATAVH
@A^A\_
HcT$0H
HcT$HH
UVWATAUAVAWH
HcL$pL
0A_A^A]A\_^]
x ATAVAWH
A_A^A\H
UATAUAVAWH
E0H9}0
0A_A^A]A\]
UWATAVAWH
A_A^A\_]
UVWATAUAVAWH
`A_A^A]A\_^]
UATAUAVAWH
A_A^A]A\]H
UVWATAUAVAWH
A_A^A]A\_^]
UVWATAUAVAWH
A_A^A]A\_^]
` UAVAWH
D+{lD+cp
@A_A^]
USVWATAUAVAWH
~j@8uPudH
D$`Ft0
A_A^A]A\_^[]
D$@;D$ |
D$D;D$$|
WATAUAVAWH
A_A^A]A\_
x ATAVAWH
D;\$xt?H
0A_A^A\
WATAUAVAWH
9A`~ZC
A_A^A]A\_
WATAUAVAWH
0A_A^A]A\_
GLcGlH
x AUAVAWH
@A_A^A]
WATAUAVAWH
A_A^A]A\_
}t=fA+
x ATAVAWH
A_A^A\
x ATAUAVAWD
|$@A_A^A]A\
kernel32.dll
[:>:]]
[:<:]]
InitializeConditionVariable
SleepConditionVariableCS
WakeAllConditionVariable
Unknown exception
bad allocation
bad array new length
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
InitializeCriticalSectionEx
bad exception
__based(
__cdecl
__pascal
__stdcall
__thiscall
__fastcall
__vectorcall
__clrcall
__eabi
__swift_1
__swift_2
__ptr64
__restrict
__unaligned
restrict(
delete
operator
`vftable'
`vbtable'
`vcall'
`typeof'
`local static guard'
`string'
`vbase destructor'
`vector deleting destructor'
`default constructor closure'
`scalar deleting destructor'
`vector constructor iterator'
`vector destructor iterator'
`vector vbase constructor iterator'
`virtual displacement map'
`eh vector constructor iterator'
`eh vector destructor iterator'
`eh vector vbase constructor iterator'
`copy constructor closure'
`udt returning'
`local vftable'
`local vftable constructor closure'
new[]
delete[]
`omni callsig'
`placement delete closure'
`placement delete[] closure'
`managed vector constructor iterator'
`managed vector destructor iterator'
`eh vector copy constructor iterator'
`eh vector vbase copy constructor iterator'
`dynamic initializer for '
`dynamic atexit destructor for '
`vector copy constructor iterator'
`vector vbase copy constructor iterator'
`managed vector copy constructor iterator'
`local static thread guard'
operator ""
operator co_await
Type Descriptor'
Base Class Descriptor at (
Base Class Array'
Class Hierarchy Descriptor'
Complete Object Locator'
CorExitProcess
`h````
xpxxxx
(null)
[aOni*{
~ $s%r
@b;zO]
v2!L.2
UUUUUU
UUUUUU
"e?<<<<<<l?
Il?333333c?
.i?0@I
d?000000`?
)|B?d!
L?UUUUUUU?
&?PPPPPPP?
0X8b?~
%GoU?*
(T?j?Y
Zod(^?
D W?{W
qS>g?h3
c?FA@s}
UUUUUU
UUUUUU
?UUUUUU
?UUUUUU
?UUUUUU
?UUUUUU
UUUUUU
UUUUUU
?UUUUUU
?UUUUUU
?UUUUUU
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
CompareStringEx
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
GetCurrentPackageId
GetDateFormatEx
GetSystemTimePreciseAsFileTime
GetTimeFormatEx
InitializeCriticalSectionEx
LCMapStringEx
LocaleNameToLCID
RoInitialize
RoUninitialize
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
NAN(SNAN)
nan(snan)
NAN(IND)
nan(ind)
A03>A|
Q5rHg,>
Hk=>:
j>>A?1
.>PJ;I:qE>
:>t6k'
])6M>&
CWD>~3
_oD>Kg
N>O=I9
F>qUxv
/2GG>!B
zY;>u:m
P>q_Y~
0><[cZUg^>
Y>kX>M
H[><y5
[*ncd>0
S>$hkDh$h>[2
UA>N0Wl
?8bunz8
?@En[vP
?UUUUUU
?7zQ6$
@^8U)zj
UUUUUU
UUUUUU
1#QNAN
1#SNAN
UUUUUU
UUUUUU
=imb;D
/>58d%
VM>cQ6
>jtm}S
)>6{1n
+f)>0'
;H9>&X
*StO9>T
n03>Pu
K~Je#>!
bp(=>?g
BC?>6t9^
K&>.yC
.xJ>Hf
y\PD>!
|b=})>
c [1>H'
uzKs@>
3>N;kU
kE>fvw
V6E>`"(5
GetNativeSystemInfo
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
pqrstuvwxyz{$--%"!'
`abcdefghijkmno]
 !"#$%&'()))*+,-./0123456789:;<=>?@ABBCDEFGHIGJKLLBMBBNOPQRSTUVWXYZ[\]^G___________________________________________________`___________________________________________________________________________________________________________________________________________________________________abccccccccdeefghijklmnopqrstuvwxrstuvwxrstuvwxrstuvwxrstuvwxrstuvwxrstuvwxrstuvwxrstuvwxrstuvwxrstuvwxrstuvwxrstyzzzzzzzzzzzzzzzz{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{__|}~
_____________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________
________________________________
{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{
{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{
Wow64RevertWow64FsRedirection
Wow64DisableWow64FsRedirection
Qkkbal
no error
\ at end of pattern
\c at end of pattern
unrecognized character follows \
numbers out of order in {} quantifier
number too big in {} quantifier
missing terminating ] for character class
invalid escape sequence in character class
range out of order in character class
nothing to repeat
internal error: invalid forward reference offset
internal error: unexpected repeat
unrecognized character after (? or (?-
POSIX named classes are supported only within a class
missing )
reference to non-existent subpattern
erroffset passed as NULL
unknown option bit(s) set
missing ) after comment
parentheses nested too deeply
regular expression is too large
failed to get memory
unmatched parentheses
internal error: code overflow
unrecognized character after (?<
lookbehind assertion is not fixed length
malformed number or name after (?(
conditional group contains more than two branches
assertion expected after (?( or (?(?C)
(?R or (?[+-]digits must be followed by )
unknown POSIX class name
POSIX collating elements are not supported
this version of PCRE is compiled without UTF support
spare error
character value in \x{} or \o{} is too large
invalid condition (?(0)
\C not allowed in lookbehind assertion
PCRE does not support \L, \l, \N{name}, \U, or \u
number after (?C is > 255
closing ) for (?C expected
recursive call could loop indefinitely
unrecognized character after (?P
syntax error in subpattern name (missing terminator)
two named subpatterns have the same name
invalid UTF-8 string
support for \P, \p, and \X has not been compiled
malformed \P or \p sequence
unknown property name after \P or \p
subpattern name is too long (maximum 32 characters)
too many named subpatterns (maximum 10000)
repeated subpattern is too long
octal value is greater than \377 in 8-bit non-UTF-8 mode
internal error: overran compiling workspace
internal error: previously-checked referenced subpattern not found
DEFINE group contains more than one branch
repeating a DEFINE group is not allowed
inconsistent NEWLINE options
\g is not followed by a braced, angle-bracketed, or quoted name/number or by a plain number
a numbered reference must not be zero
an argument is not allowed for (*ACCEPT), (*FAIL), or (*COMMIT)
(*VERB) not recognized or malformed
number is too big
subpattern name expected
digit expected after (?+
] is an invalid data character in JavaScript compatibility mode
different names for subpatterns of the same number are not allowed
(*MARK) must have an argument
this version of PCRE is not compiled with Unicode property support
\c must be followed by an ASCII character
\k is not followed by a braced, angle-bracketed, or quoted name
internal error: unknown opcode in find_fixedlength()
\N is not supported in a class
too many forward references
disallowed Unicode code point (>= 0xd800 && <= 0xdfff)
invalid UTF-16 string
name is too long in (*MARK), (*PRUNE), (*SKIP), or (*THEN)
character value in \u.... sequence is too large
invalid UTF-32 string
setting UTF is disabled by the application
non-hex character in \x{} (closing brace missing?)
non-octal character in \o{} (closing brace missing?)
missing opening brace after \o
parentheses are too deeply nested
invalid range in character class
group name must start with a non-digit
parentheses are too deeply nested (stack check)
digits missing in \x{} or \o{}
regular expression is too complicated
xdigit
ACCEPT
COMMIT
Arabic
Armenian
Avestan
Balinese
Bassa_Vah
Bengali
Bopomofo
Brahmi
Braille
Buginese
Canadian_Aboriginal
Carian
Caucasian_Albanian
Chakma
Cherokee
Common
Coptic
Cuneiform
Cypriot
Cyrillic
Deseret
Devanagari
Duployan
Egyptian_Hieroglyphs
Elbasan
Ethiopic
Georgian
Glagolitic
Gothic
Grantha
Gujarati
Gurmukhi
Hangul
Hanunoo
Hebrew
Hiragana
Imperial_Aramaic
Inherited
Inscriptional_Pahlavi
Inscriptional_Parthian
Javanese
Kaithi
Kannada
Katakana
Kayah_Li
Kharoshthi
Khojki
Khudawadi
Lepcha
Linear_A
Linear_B
Lycian
Lydian
Mahajani
Malayalam
Mandaic
Manichaean
Meetei_Mayek
Mende_Kikakui
Meroitic_Cursive
Meroitic_Hieroglyphs
Mongolian
Myanmar
Nabataean
New_Tai_Lue
Ol_Chiki
Old_Italic
Old_North_Arabian
Old_Permic
Old_Persian
Old_South_Arabian
Old_Turkic
Osmanya
Pahawh_Hmong
Palmyrene
Pau_Cin_Hau
Phags_Pa
Phoenician
Psalter_Pahlavi
Rejang
Samaritan
Saurashtra
Sharada
Shavian
Siddham
Sinhala
Sora_Sompeng
Sundanese
Syloti_Nagri
Syriac
Tagalog
Tagbanwa
Tai_Le
Tai_Tham
Tai_Viet
Telugu
Thaana
Tibetan
Tifinagh
Tirhuta
Ugaritic
Warang_Citi
This is a third-party compiled AutoIt script.
DllGetClassObject
GetModuleHandleExW
GetSystemWow64DirectoryW
RegDeleteKeyExW
advapi32.dll
Error text not found (please report)
DEFINE
UTF16)
NO_AUTO_POSSESS)
NO_START_OPT)
LIMIT_MATCH=
LIMIT_RECURSION=
ANYCRLF)
BSR_ANYCRLF)
BSR_UNICODE)
argument is not a compiled regular expression
argument not compiled in 16 bit mode
internal error: opcode not recognized
internal error: missing capturing bracket
failed to get memory
.text$di
.text$lp00AutoItSC_x64
.text$mn
.text$mn$00
.text$np
.text$x
.text$yd
.text$zy
.text$zz
.idata$5
.00cfg
.CRT$XCA
.CRT$XCAA
.CRT$XCL
.CRT$XCU
.CRT$XCZ
.CRT$XIA
.CRT$XIAA
.CRT$XIAC
.CRT$XIC
.CRT$XIZ
.CRT$XLA
.CRT$XLZ
.CRT$XPA
.CRT$XPX
.CRT$XPXA
.CRT$XPZ
.CRT$XTA
.CRT$XTZ
.rdata
.rdata$00
.rdata$T
.rdata$r
.rdata$zz
.rdata$zzzdbg
.rtc$IAA
.rtc$IZZ
.rtc$TAA
.rtc$TZZ
.tls$ZZZ
.xdata
.xdata$x
.idata$2
.idata$3
.idata$4
.idata$6
.data$00
.data$dk00
.data$r
.data$zz
.bss$00
.bss$dk00
.bss$zz
.pdata
.rsrc$01
.rsrc$02
WSOCK32.dll
GetFileVersionInfoSizeW
GetFileVersionInfoW
VerQueryValueW
VERSION.dll
timeGetTime
mciSendStringW
waveOutSetVolume
WINMM.dll
InitCommonControlsEx
ImageList_Create
ImageList_ReplaceIcon
ImageList_Destroy
ImageList_Remove
ImageList_SetDragCursorImage
ImageList_BeginDrag
ImageList_DragEnter
ImageList_DragLeave
ImageList_EndDrag
ImageList_DragMove
COMCTL32.dll
WNetAddConnection2W
WNetUseConnectionW
WNetCancelConnection2W
WNetGetConnectionW
MPR.dll
InternetCloseHandle
InternetOpenW
InternetSetOptionW
InternetCrackUrlW
HttpQueryInfoW
InternetQueryOptionW
InternetConnectW
HttpOpenRequestW
HttpSendRequestW
FtpOpenFileW
FtpGetFileSize
InternetOpenUrlW
InternetReadFile
InternetQueryDataAvailable
WININET.dll
GetProcessMemoryInfo
PSAPI.DLL
IcmpCreateFile
IcmpSendEcho
IcmpCloseHandle
IPHLPAPI.DLL
LoadUserProfileW
CreateEnvironmentBlock
UnloadUserProfile
DestroyEnvironmentBlock
USERENV.dll
IsThemeActive
UxTheme.dll
DeleteCriticalSection
InitializeCriticalSectionAndSpinCount
RaiseException
GetLastError
lstrcmpiW
GetCurrentDirectoryW
IsDebuggerPresent
SetCurrentDirectoryW
GetFullPathNameW
CloseHandle
GetCurrentThread
GetCurrentProcess
DuplicateHandle
CreateThread
WaitForSingleObject
HeapAlloc
GetProcessHeap
HeapFree
GetCurrentThreadId
MultiByteToWideChar
MulDiv
GetVersionExW
IsWow64Process
GetSystemInfo
FreeLibrary
LoadLibraryA
GetProcAddress
SetErrorMode
GetModuleFileNameW
WideCharToMultiByte
lstrcpyW
lstrlenW
GetModuleHandleW
QueryPerformanceCounter
VirtualFreeEx
OpenProcess
VirtualAllocEx
WriteProcessMemory
ReadProcessMemory
CreateFileW
SetFilePointerEx
SetEndOfFile
ReadFile
WriteFile
FlushFileBuffers
TerminateProcess
CreateToolhelp32Snapshot
Process32FirstW
Process32NextW
SetFileTime
GetFileAttributesW
FindFirstFileW
FindClose
GetLongPathNameW
GetShortPathNameW
DeleteFileW
FindNextFileW
CopyFileExW
MoveFileW
CreateDirectoryW
RemoveDirectoryW
SetSystemPowerState
QueryPerformanceFrequency
LoadResource
LockResource
SizeofResource
OutputDebugStringW
GetTempPathW
GetTempFileNameW
DeviceIoControl
GetLocalTime
CompareStringW
EnterCriticalSection
LeaveCriticalSection
GetStdHandle
CreatePipe
TerminateThread
LoadLibraryExW
FindResourceExW
CopyFileW
VirtualFree
FormatMessageW
GetExitCodeProcess
GetPrivateProfileStringW
WritePrivateProfileStringW
GetPrivateProfileSectionW
WritePrivateProfileSectionW
GetPrivateProfileSectionNamesW
FileTimeToLocalFileTime
FileTimeToSystemTime
SystemTimeToFileTime
LocalFileTimeToFileTime
GetDriveTypeW
GetDiskFreeSpaceExW
GetDiskFreeSpaceW
GetVolumeInformationW
SetVolumeLabelW
CreateHardLinkW
SetFileAttributesW
CreateEventW
SetEvent
GetEnvironmentVariableW
SetEnvironmentVariableW
GlobalLock
GlobalUnlock
GlobalAlloc
GetFileSize
GlobalFree
GlobalMemoryStatusEx
GetSystemDirectoryW
HeapReAlloc
HeapSize
GetComputerNameW
GetWindowsDirectoryW
GetCurrentProcessId
GetProcessIoCounters
CreateProcessW
GetProcessId
SetPriorityClass
LoadLibraryW
VirtualAlloc
KERNEL32.dll
DestroyIcon
MessageBoxA
GetForegroundWindow
GetSysColorBrush
LoadCursorW
LoadIconW
RegisterClassExW
CreateWindowExW
ShowWindow
SetTimer
RegisterWindowMessageW
CreatePopupMenu
KillTimer
PostQuitMessage
SetFocus
MoveWindow
DefWindowProcW
MessageBoxW
GetUserObjectSecurity
OpenWindowStationW
GetProcessWindowStation
SetProcessWindowStation
OpenDesktopW
CloseWindowStation
CloseDesktop
SetUserObjectSecurity
GetWindowRect
PostMessageW
MapVirtualKeyW
SendMessageW
GetDlgCtrlID
GetParent
GetClassNameW
CharUpperBuffW
EnumChildWindows
SendMessageTimeoutW
ScreenToClient
GetWindowTextW
GetFocus
AttachThreadInput
GetWindowThreadProcessId
ReleaseDC
GetWindowLongPtrW
InvalidateRect
EnableWindow
IsWindowVisible
IsWindowEnabled
IsWindow
GetDesktopWindow
EnumWindows
DestroyWindow
GetMenu
GetClientRect
BeginPaint
EndPaint
CopyRect
SetWindowTextW
GetDlgItem
SendDlgItemMessageW
EndDialog
MessageBeep
DialogBoxParamW
LoadStringW
VkKeyScanW
GetKeyState
GetKeyboardState
SetKeyboardState
GetAsyncKeyState
SendInput
keybd_event
SystemParametersInfoW
FindWindowW
IsIconic
SetForegroundWindow
GetMenuItemInfoW
SetMenuItemInfoW
GetMenuItemCount
GetMenuItemID
CheckMenuRadioItem
DeleteMenu
GetCursorPos
Antivirus Signature
Bkav Clean
Lionic Clean
Elastic malicious (moderate confidence)
DrWeb Clean
MicroWorld-eScan Trojan.GenericKD.67000300
FireEye Generic.mg.55e23e1fe5c4051b
CAT-QuickHeal Clean
ALYac Trojan.GenericKD.67000300
Cylance unsafe
Zillya Clean
Sangfor Infostealer.Win32.Agent.V543
K7AntiVirus Clean
BitDefender Trojan.GenericKD.67000300
K7GW Clean
Cybereason malicious.7ca909
BitDefenderTheta Clean
VirIT Clean
Cyren W64/ABRisk.GBQF-6525
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 multiple detections
APEX Malicious
Paloalto generic.ml
Cynet Malicious (score: 100)
Kaspersky Trojan-Spy.Win32.Stealer.dxgz
Alibaba TrojanSpy:Win32/Stealer.8f92b492
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Obfus/Autoit!1.C774 (CLASSIC)
Sophos Mal/Generic-S
F-Secure Heuristic.HEUR/AGEN.1319403
Baidu Clean
VIPRE Trojan.GenericKD.67000300
TrendMicro Trojan.Win64.PRIVATELOADER.YXDESZ
McAfee-GW-Edition BehavesLike.Win64.Dropper.th
Trapmine Clean
CMC Clean
Emsisoft Trojan.GenericKD.67000300 (B)
Ikarus Trojan.Win32.Obfuscated
Jiangmin Clean
Webroot W32.Trojan.GenKD
Avira HEUR/AGEN.1319403
MAX malware (ai score=85)
Antiy-AVL Clean
Gridinsoft Trojan.Win64.Downloader.sa
Xcitium Clean
Arcabit Trojan.Generic.D3FE57EC
SUPERAntiSpyware Clean
ZoneAlarm Trojan-Spy.Win32.Stealer.dxgz
GData Trojan.GenericKD.67000300
Google Detected
AhnLab-V3 Clean
Acronis Clean
McAfee Artemis!55E23E1FE5C4
TACHYON Clean
DeepInstinct MALICIOUS
VBA32 Clean
Malwarebytes Backdoor.NetWiredRC.AutoIt.Generic
Panda Trj/Agent.AY
Zoner Clean
TrendMicro-HouseCall Trojan.Win64.PRIVATELOADER.YXDESZ
Tencent Win32.Trojan-Spy.Stealer.Kcnw
Yandex Clean
SentinelOne Clean
MaxSecure Clean
Fortinet AutoIt/Injector.DXO!tr
AVG FileRepMalware [Pws]
Avast FileRepMalware [Pws]
CrowdStrike win/malicious_confidence_100% (W)
No IRMA results available.