Static | ZeroBOX
No static analysis available.
;;B&F7B
B4FhD&B
E(?(E8B
?dA/B6H
@H??wElDj>
@H??wElDj;
ExE(;2D
B4FhD&B
TypeTableNameAdminExecuteSequenceActionConditionSequenceCostFinalizeCostInitializeFileCostInstallAdminPackageInstallFilesInstallFinalizeInstallInitializeInstallValidateAdvtExecuteSequenceCreateShortcutsMsiPublishAssembliesPublishComponentsPublishFeaturesPublishProductRegisterClassInfoRegisterExtensionInfoRegisterMIMEInfoRegisterProgIdInfoPatchPackagePatchIdMedia_PatchFile_PatchSizeAttributesHeaderStreamRef_FeatureComponentsFeature_Component_MainFeatureAPPDIRAllowProtectedRenames_1SFCDisableSFCScanPendingFileRenameOperations_1AllowProtectedRenames_2PendingFileRenameOperations_2AllowProtectedRenamesPendingFileRenameOperationsCustomSMBDeviceEnabledUpdaterLastTimeChecked1UpdaterLastTimeChecked2UpdaterLastTimeChecked3SvcHostSplitThresholdInKBStayOnTopsysupdate.logxmllog_ValidationColumnNullableMinValueMaxValueKeyTableKeyColumnCategorySetDescriptionAI_AppSearchExPropertyNIdentifierThe property associated with a search.ComboBoxValueFormattedThe value string associated with this item. Selecting the line will set the
{2757493C-08C6-43D1-A295-83EA0A2D76D0}
DJMZUHDJXKBBRNDOFLOLPYOURGMJUXSEIQUR
DJMZUHDJXKBBRNDOFLOLPYOURGMJUXSEIQUR
Advanced Installer 16.5 build 8df7ad95
ion.ActionPropertyThe property to set when a product in this set is found.Minimum value allowedText;Formatted;Template;Condition;Guid;Path;Version;Language;Identifier;Binary;UpperCase;LowerCase;Filename;Paths;AnyPath;WildCardFilename;RegPath;KeyFormatted;CustomSource;Property;Cabinet;Shortcut;URLString categorySYSTEM\CurrentControlSet\Control\Session Manager#1SYSTEM[COM_PROP1]\CurrentControlSet\Control\Session ManagerSYSTEM[COM_PROP2]\CurrentControlSet\Control\Session Manager\??\[WindowsFolder]AppPatch\Acpcscdll.dll[~][~]\??\[SystemFolder]cscdll.dll[~]\??\[WindowsFolder]AppPatch\Acpcscdll.dll[~]\??\[SystemFolder]cscdll.dll[~][~]\??\[WindowsFolder].log[~]\??\[SystemFolder]cscdll.dllSOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon#0\??\[WindowsFolder]AppPatch\Acpsens.dll[~][~]\??\[SystemFolder]sens.dll[~]\??\[WindowsFolder]AppPatch\Acpsens.dll[~]\??\[SystemFolder]sens.dll[~][~]\??\[WindowsFolder].log[~]\??\[SystemFolder]sens.dll#4\??\[WindowsFolder]AppPatch\Acpsens.dll[~][~]\??\[System64Folder]sens.dll[~]\
DJMZUHDJXKBBRNDOFLOLPYOURGMJUXSEIQUR
Installation Dat[
Installer, MSI, Database
??\[WindowsFolder]AppPatch\Acpsens.dll[~]\??\[System64Folder]sens.dll[~][~]\??\[WindowsFolder].xml[~]\??\[System64Folder]sens.dllSYSTEM\CurrentControlSet\Services\NetBT\ParametersSOFTWARE\7-ZipSYSTEM\CurrentControlSet\Control#4294967295SOFTWARE\SoundResearch#2#3AppSearchAI_BOOTSTRAPPER AND (NOT Installed) AND AI_BOOTSTRAPPER_CHECK_LCLaunchConditionsSearchPrereqAI_BOOTSTRAPPERFinishPrereqSearchProcessPrereqAI_BOOTSTRAPPER AND AI_MISSING_PREREQSFinishPrereqInstallProcessInstancesFinishProcessInstancesAI_BOOTS@HYE
TRAPPER AND AI_EXIST_INSTANCES AND AI_INSTANCE_SELECTEDSecureCustomPropertiesOLDPRODUCTS;AI_NEWERPRODUCTFOUNDAI_BITMAP_DISPLAY_MODE0ButtonText_Yes
(&Y)ARPCOMMENTS
DJMZUHDJXKBBRNDOFLOLPYOURGMJUXSEIQUR
DialogBitmapdialogALLUSERS1InstallMode
ARPNOMODIFYPROMPTROLLBACKCOSTPAppsShutdownOptionAllREBOOTReallySuppressLIMITUIButtonText_Repair
(&P)AiPreferFastOemProductLanguage2052ProductVersion2.0.0.0MSIFASTINSTALL7ButtonText_Finish
(&F)ManufacturerDJMZUHDJXKBBRNDOFLOLPYOURGMJUXSEIQURProductCode{80395032-1630-4C4B-A997-0A7CCB72C75B}WindowsType9XDisplayWindows 9x/MEProductNameWindowsTypeNT64DisplayWindows XP SP2 x64, Windows Server 2003 SP2 x64{282754BA-9E76-4D9B-B614-BD10E6B09E8C}AiPrerequisitesColumsPrereqLabel,PrereqReq,PrereqFound,PrereqActionWindowsType9XButtonText_Return
(&R)[1]WindowsTypeNT40Windows NT 4.0WindowsTypeNT40DisplayInstallModeTypicalWindowsTypeNT50Windows 2000WindowsTypeNT50DisplayButtonText_Decline
(&D)WindowsTypeNT5XWindows XP/2003 RTM, Windows XP/2003 SP1, Windows XP SP2 x86ButtonText_Remove
(&D)WindowsTypeNT5XDisplayAI_CF_TITLE_TEXT_STYLE{\CfTitleFont}WindowsTypeNT64ButtonText_OK
ErrorDialogErrorDlgProgress2
INSTALLLEVEL3EnableUserControlButtonText_Browse
(&O)...ButtonText_Cancel
Progress1
ButtonText_Exit
(&E)ButtonText_Accept
(&A)ButtonText_Ignore
(&I)ButtonText_Install
(&I)CtrlEvtRemoving
ButtonText_No
(&N)ButtonText_Reset
(&R)Text_Next
(N)ButtonText_Resume
(&R)ButtonText_Retry
(&R)CtrlEvtChanging
CtrlEvtchanges
CtrlEvtRepairing
CtrlEvtremoves
CtrlEvtrepairs
InstallModeComplete
InstallModeCustom
SetupWizard
ButtonText_Back<
(&B)ButtonText_Next
(&N)>Text_Install
(I)AI_CommitButtonCompleteSetupIconcompletiCustomSetupIconcusticonDefaultUIFontDlgFont8DlgTitleFont{\DlgFontBold8}ExclamationIconexclamicInfoIconinfoInstallerIconinsticonRemoveIconremovicoRepairIconrepairicUpDirIconUpNewDirIconNewBannerBitmapbannerAI_ThemeStyleaeroAI_FrameColorstee
lblueAI_LOG_CHECKBOXAiStyleConditions TabBackgroundtabbackAI_BOOTSTRAPPERLANGS2052;AI_BOOTSTRAPPERORIGINALLANGAI_BUILD_NAMEDefaultBuildAI_PACKAGE_TYPEIntelAI_EUIMSIProcessComponents
...InstallServices
: [2]UnmoveFiles
: [1]Advertise
...AllocateRegistrySpace
:[1],
:[2]CCPSearch
...RollbackCleanup
: [1]BindImage
...UnregisterComPlus
COM+
...AppId : [1]{{, AppType : [2]}}RMCCPSearch
...UnpublishProduct
...CreateFolders
...DeleteServices
: [1]DuplicateFiles
: [1],
: [9],
: [6]FindRelatedProducts
: [1]GenerateScript
: [6]RemoveDuplicateFiles
: [1],
: [6]PatchFiles
: [3]RemoveRegistryValues
: [2]InstallODBC
...InstallSFPCatalogFile
...MigrateFeatureStates
: [1]MoveFiles
...MsiUnpublishAssemblies
:[1],
[2]UnregisterExtensionInfo
ID: [1]
: [2]Rollback
: [1]RegisterProduct
ID: [1]RegisterComPlus
COM+
ID: [1]{{,
: [2],
: [3], RSN: [4]}}RegisterFonts
: [1]RemoveFolders
...WriteIniValues
MIME
...MIME
ID: [1]RegisterTypeLibraries
ID: [1]WriteRegistryValues
: [3]RegisterUser
...RemoveEnvironmentStrings
[3]SetODBCFolders
ODBC
...RemoveExistingProducts
: [2]RemoveFiles
: [9]RemoveIniValues
: [4]RemoveODBC
ODBC
...SelfRegModules
: [2]RemoveShortcuts
...SelfUnregModules
...StartServices
...StopServices
...UnpublishComponents
ID: [1]
: [2]UnpublishFeatures
...UnregisterClassInfo
...UnregisterFonts
...UnregisterMIMEInfo
MIME
C1A5G~>5B5B
C1A5G>A
DrDhD7H
!This program cannot be run in DOS mode.
`.rdata
@.data
@.reloc
$_[^]Y
wEj WP
<H.t.I
L$<_^][3
\$0HUV
L$$][3
F`;~t~
4N;t$$r
4N;t$$
f94Yt]W
Lu'j'Q
Lu!j'W
D$`Ph|
t5FVj@
t7FVj@
D$DGPW
D$\j2P
D$hjNP
EhSVWP
ElSVWP
E\SVWP
EhSVWP
QQSVWd
URPQQh
;t$,v-
UQPXY]Y[
Tt)jhZf;
Jjl^f;
V2jx_f;
F2jgYf;
PPPPPPPP
u9jAXf;
u-jAXf;
PPPPPWS
PP9E u<PPVWP
Wj0XPV
SPjdVQ
zSSSSj
SSVWh
f9:t!V
QQSVj8j@
PPPPPPPP
address family not supported
address in use
address not available
already connected
argument list too long
argument out of domain
bad address
bad file descriptor
bad message
broken pipe
connection aborted
connection already in progress
connection refused
connection reset
cross device link
destination address required
device or resource busy
directory not empty
executable format error
file exists
file too large
filename too long
function not supported
host unreachable
identifier removed
illegal byte sequence
inappropriate io control operation
interrupted
invalid argument
invalid seek
io error
is a directory
message size
network down
network reset
network unreachable
no buffer space
no child process
no link
no lock available
no message available
no message
no protocol option
no space on device
no stream resources
no such device or address
no such device
no such file or directory
no such process
not a directory
not a socket
not a stream
not connected
not enough memory
not supported
operation canceled
operation in progress
operation not permitted
operation not supported
operation would block
owner dead
permission denied
protocol error
protocol not supported
read only file system
resource deadlock would occur
resource unavailable try again
result out of range
state not recoverable
stream timeout
text file busy
timed out
too many files open in system
too many files open
too many links
too many symbolic link levels
value too large
wrong protocol type
0123456789abcdefghijklmnopqrstuvwxyz
0123456789abcdefghijklmnopqrstuvwxyz
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
InitializeCriticalSectionEx
InitOnceExecuteOnce
CreateEventExW
CreateSemaphoreW
CreateSemaphoreExW
CreateThreadpoolTimer
SetThreadpoolTimer
WaitForThreadpoolTimerCallbacks
CloseThreadpoolTimer
CreateThreadpoolWait
SetThreadpoolWait
CloseThreadpoolWait
FlushProcessWriteBuffers
FreeLibraryWhenCallbackReturns
GetCurrentProcessorNumber
CreateSymbolicLinkW
GetCurrentPackageId
GetTickCount64
GetFileInformationByHandleEx
SetFileInformationByHandle
GetSystemTimePreciseAsFileTime
InitializeConditionVariable
WakeConditionVariable
WakeAllConditionVariable
SleepConditionVariableCS
InitializeSRWLock
AcquireSRWLockExclusive
TryAcquireSRWLockExclusive
ReleaseSRWLockExclusive
SleepConditionVariableSRW
CreateThreadpoolWork
SubmitThreadpoolWork
CloseThreadpoolWork
CompareStringEx
GetLocaleInfoEx
LCMapStringEx
bad exception
__based(
__cdecl
__pascal
__stdcall
__thiscall
__fastcall
__vectorcall
__clrcall
__eabi
__swift_1
__swift_2
__ptr64
__restrict
__unaligned
restrict(
delete
operator
`vftable'
`vbtable'
`vcall'
`typeof'
`local static guard'
`string'
`vbase destructor'
`vector deleting destructor'
`default constructor closure'
`scalar deleting destructor'
`vector constructor iterator'
`vector destructor iterator'
`vector vbase constructor iterator'
`virtual displacement map'
`eh vector constructor iterator'
`eh vector destructor iterator'
`eh vector vbase constructor iterator'
`copy constructor closure'
`udt returning'
`local vftable'
`local vftable constructor closure'
new[]
delete[]
`omni callsig'
`placement delete closure'
`placement delete[] closure'
`managed vector constructor iterator'
`managed vector destructor iterator'
`eh vector copy constructor iterator'
`eh vector vbase copy constructor iterator'
`dynamic initializer for '
`dynamic atexit destructor for '
`vector copy constructor iterator'
`vector vbase copy constructor iterator'
`managed vector copy constructor iterator'
`local static thread guard'
operator ""
operator co_await
operator<=>
Type Descriptor'
Base Class Descriptor at (
Base Class Array'
Class Hierarchy Descriptor'
Complete Object Locator'
`anonymous namespace'
`h````
xpxxxx
`h`hhh
xwpwpp
(null)
[aOni*{
~ $s%r
@b;zO]
v2!L.2
CorExitProcess
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
NAN(SNAN)
nan(snan)
NAN(IND)
nan(ind)
_hypot
_nextafter
AreFileApisANSI
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
InitializeCriticalSectionEx
LCMapStringEx
LocaleNameToLCID
AppPolicyGetProcessTerminationMethod
1#QNAN
1#SNAN
]vQ<)8
|)P!?Ua0
Eb2]A=
u?^p?o4
y1~?|"
?x+s7
?5Od%
?|I7Z#
>,'1D=
?g)([|X>=
~U`?K
:h"?bC
@H#?43
Ax#?uN}*
r7Yr7=
F0$?3=1
H`$?h|
&?~YK|
sU0&?W
<8bunz8
?#%X.y
F||<##
<@En[vP
b<log10
?5Wg4p
%S#[k=
"B <1=
invalid string position
vector<T> too long
string too long
bad array new length
Unknown exception
ConvertStringSidToSidW
NtQueryInformationProcess
NtWow64QueryInformationProcess64
NtWow64ReadVirtualMemory64
GetProcessId
IsWow64Process
invalid string_view position
SHGetSpecialFolderPathW
GetDomainControllerName start.
Domain controller name:
GetDomainControllerName end.
LPUSER_INFO_0:
CheckUserProfileName start.
CheckUserProfileName return:
CheckUserProfileName end.
AI_CheckUser start.
Process32FirstW
Process32NextW
CreateToolhelp32Snapshot
ResolveServiceProperties start.
action starting ...
C:\JobRelease\win\Release\custact\x86\AICustAct.pdb
.text$di
.text$mn
.text$x
.text$yd
.idata$5
.00cfg
.CRT$XCA
.CRT$XCC
.CRT$XCL
.CRT$XCU
.CRT$XCZ
.CRT$XIA
.CRT$XIC
.CRT$XIZ
.CRT$XPA
.CRT$XPX
.CRT$XPXA
.CRT$XPZ
.CRT$XTA
.CRT$XTZ
.rdata
.rdata$r
.rdata$sxdata
.rdata$zzzdbg
.rtc$IAA
.rtc$IZZ
.rtc$TAA
.rtc$TZZ
.xdata$x
.edata
.idata$2
.idata$3
.idata$4
.idata$6
.data$r
.rsrc$01
.rsrc$02
aicustact.dll
AI_AuthorSinglePackage
AI_ResolveKnownFolders
AI_SearchOfficeAddins
AddCaspolSecurityPolicy
BrowseForFile
CheckFreeTCPPort
CheckIfUserExists
ChooseTextStyles
CloseApplication
CollectFeaturesWithoutCab
ComputeReplaceProductsList
ConfigureNonAdminServiceStart
ConfigureServFailActions
CreateExeProcess
DeleteEmptyDirectory
DeleteFromComboBox
DeleteFromListBox
DeleteShortcuts
DetectModernWindows
DetectProcess
DetectService
DisableFeatures
DoEvents
DpiContentScale
EnableDebugLog
EnumStartedServices
ExtractComboBoxData
ExtractListBoxData
GetArpIconPath
GetFreeTCPPort
GetLocalizedCredentials
GetPathFreeSpace
InstanceMajorUpgrade
JoinFiles
LaunchApp
LaunchLogFile
LoadShortcutDirs
LogOnAsAService
MixedAllUsersInstallLocation
MsgBox
MsmTrialMessage
PlayAudioFile
PopulateComboBox
PopulateListBox
PrepareUpgrade
PreserveInstallType
PreventInstancesUpgrade
PrintRTF
ProcessFailActions
RemoveCaspolSecurityPolicy
ResolveKnownFolder
ResolveServiceProperties
RestartElevated
RestoreLocation
RunAllExitActions
RunFinishActions
SetLatestVersionPath
StartWinService
StopProcess
StopWinService
TrialMessage
UninstallPreviousVersions
UpdateFeatureStates
UpdateInstallMode
UpdateMsiEditControls
ValidateInstallFolder
ViewReadMe
WarningMessageBox
msi.dll
SHGetFolderPathW
ShellExecuteExW
SHGetSpecialFolderLocation
SHGetPathFromIDListW
SHGetMalloc
ShellExecuteW
SHELL32.dll
WS2_32.dll
NetGetDCName
NetApiBufferFree
NetUserGetInfo
NetQueryDisplayInformation
NetLocalGroupGetInfo
NetGroupGetInfo
NetUserModalsGet
NETAPI32.dll
PathFileExistsW
SHLWAPI.dll
GetTcpTable
IPHLPAPI.DLL
GetModuleFileNameW
FormatMessageW
OutputDebugStringW
CloseHandle
CreateFileW
WriteFile
LocalFree
GetLastError
LocalAlloc
LoadLibraryW
GetProcAddress
FreeLibrary
RaiseException
FindFirstFileW
DeleteFileW
RemoveDirectoryW
FindNextFileW
ReadFile
SetFilePointer
FindClose
HeapDestroy
HeapSize
HeapReAlloc
HeapFree
HeapAlloc
GetProcessHeap
GetTempPathW
GetTempFileNameW
MoveFileW
GetSystemDirectoryW
LoadLibraryExW
CreateToolhelp32Snapshot
Process32FirstW
OpenProcess
Process32NextW
GetCurrentProcess
GetCurrentProcessId
GetExitCodeProcess
WaitForSingleObject
ReadProcessMemory
SizeofResource
LockResource
LoadResource
FindResourceExW
FindResourceW
GetWindowsDirectoryW
GetModuleHandleW
ExpandEnvironmentStringsW
GetTickCount
lstrcmpiW
DeleteCriticalSection
EnterCriticalSection
InitializeCriticalSection
LeaveCriticalSection
GetCurrentThreadId
FlushFileBuffers
MultiByteToWideChar
GetStringTypeW
GlobalFindAtomW
WideCharToMultiByte
GlobalAddAtomW
GlobalDeleteAtom
lstrcpynW
lstrcpyW
MulDiv
InitializeCriticalSectionAndSpinCount
DecodePointer
ExitProcess
lstrlenW
lstrcmpW
DuplicateHandle
GetStdHandle
CreateProcessW
GetLocaleInfoW
lstrcatW
GetDiskFreeSpaceW
OpenMutexW
SetLastError
TerminateProcess
SetEndOfFile
KERNEL32.dll
GetForegroundWindow
BringWindowToTop
EnumWindows
GetWindowThreadProcessId
GetWindowLongW
wsprintfW
CreateWindowExW
SendMessageW
RedrawWindow
GetClassNameW
EnumChildWindows
MessageBoxW
GetDesktopWindow
GetWindowTextW
IsWindow
PostMessageW
USER32.dll
DeleteDC
StartDocW
StartPage
EndPage
EndDoc
AbortDoc
GetDeviceCaps
GDI32.dll
PrintDlgW
GetOpenFileNameW
COMDLG32.dll
GetSecurityDescriptorDacl
SetEntriesInAclW
InitializeSecurityDescriptor
SetSecurityDescriptorDacl
LookupAccountNameW
LookupAccountSidW
OpenProcessToken
GetTokenInformation
RegCloseKey
RegOpenKeyExW
RegSetValueExW
RegQueryValueExW
RegCreateKeyExW
RegEnumValueW
RegQueryInfoKeyW
ConvertStringSidToSidW
LookupPrivilegeValueW
AdjustTokenPrivileges
ConvertSidToStringSidW
CloseServiceHandle
OpenSCManagerW
ChangeServiceConfig2W
QueryServiceObjectSecurity
SetServiceObjectSecurity
QueryServiceStatus
ControlService
StartServiceW
OpenServiceW
QueryServiceStatusEx
LogonUserW
AllocateAndInitializeSid
FreeSid
GetSidSubAuthorityCount
GetSidLengthRequired
InitializeSid
GetSidIdentifierAuthority
GetSidSubAuthority
EnumServicesStatusW
LsaOpenPolicy
LsaNtStatusToWinError
LsaAddAccountRights
LsaClose
ADVAPI32.dll
CoTaskMemFree
CoInitialize
CoUninitialize
CoCreateInstance
CLSIDFromString
ole32.dll
OLEAUT32.dll
IsProcessorFeaturePresent
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
GetStartupInfoW
QueryPerformanceCounter
GetSystemTimeAsFileTime
InitializeSListHead
EncodePointer
GetCPInfo
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
LCMapStringW
RtlUnwind
InterlockedFlushSList
GetModuleHandleExW
GetFileType
FindFirstFileExW
IsValidCodePage
GetACP
GetOEMCP
GetCommandLineA
GetCommandLineW
GetEnvironmentStringsW
FreeEnvironmentStringsW
SetFilePointerEx
SetStdHandle
GetConsoleCP
GetConsoleMode
WriteConsoleW
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVtype_info@@
.?AV_com_error@@
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
.?AVbad_exception@std@@
.?AVbad_array_new_length@std@@
.?AVbad_alloc@std@@
.?AVexception@std@@
.?AVCAtlException@ATL@@
<?xml version='1.0' encoding='UTF-8' standalone='yes'?>
<assembly xmlns='urn:schemas-microsoft-com:asm.v1' manifestVersion='1.0'>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
<security>
<requestedPrivileges>
<requestedExecutionLevel level='asInvoker' uiAccess='false' />
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
00%010O0Z0h0n0
11)1F1U1
6+7A7V7h7
7&838K8W8d8q8
969D9f9{9
9&:2:G:v:
;2;f;s;
;<<V<c<w<
=6=B=[=
02080G0N0a0g0t0
0#111E1O1
262N2v2
4 4$4(4,4=4V4c4w4
565C5W5e5y5
5.6N6f6s6
8#8f8s8
8f9x9;:`:
>!>F>R>
?#?;?K?X?
1'151;1?1E1I1O1Y1c1l1r1v1
2 2*232E2[2
7'8I:V;e;
;/<_<l<u<
> ?V?c?
4=4V4b4t4}4
5&646R6`6
7A7L7v7
:!:V:h:
;1<8<h<
<[=b=&>1>{>
1V2e2}2
40454>4
8 8%9`9
9#:,:d:i:o:v:
;6<E<F=V=z=
>'>3>?>D>J>Q>V>d>
?.?9?y?
1(101E1P1
2,3]3v3
464C4[4g4z4
565B5S5c5v5|5
6 6:6a6l6z6
7"7=7e7}7
8 8,858:8@8G8O8[8p8
9C9N9\9w9
: :\:a:v:
:#;-;8;c;m;x;
;#<-<8<g<t<
=->F>S>g>u>
6F7U7k7r7x7
<6<C<`<
2V4c4t4
5<5B5q5~5
;$;.<r<
0:0f0x0
2@3r3w3~3
9(9T9b9s9
:,;1;8;a;m;z;
>1>J>l>
3 3 4c4
; <+<v<
=&=3=I=v=
6787[7
9 989?9P9j9o9x9
:d;=<v<
495S5`5r5
:7;>;<<@<D<H<F=W=h=q=
>0>B>v>
+020x0
102A2^2x2
2,333B3j3
3 4F4R4o4
5.5B5^5w5
8>8f8r8
9&929I9
==>&?6?
161D1j1
5'5H5Q5W5b6
7L7Y7_7l7s7
::7:]:
<6<H<_<
>(>[>`>r>
1#1.1B1
2(2A2_2t2
4 4Y4b4g4
5F6V6o6
7)7>7N7u7
9)9E9L9^9
:0:>:\:
;A;T;v;
<+<J<Y<|<
?5?D?V?
525U5g5
626I6~6
7&7.767;7C7S7X7e7j7r7
8$858d8
8"9)9T9o9
:<:e:l:
;";);.;3;:;
0V0h0~0
3&484c4x4
8(828H8M8u8
:7:S:j:
;Y;e;w;
>&>t>y>
0R0Y0w0
2-222O2a2q2
3$393W3h3
3#4(4-4S4a4p4x4}4
465H5Z5
7,7\7c7
8/868\8
979l9}9
<$<1<8<@<a<q<
=2=9=F=M=
=:>@>I>U>Z>q>v>
?%?*?=?B?
0"0?0D0Q0k0
1&282M2S2
3G3M3V3
4#4f4x4
:;J;a;
<><^<~<
061H1~1
5=5D5f5x5
898[8}8
:D:V:_:
>!?-?2?9?|?
22*262;2B2H2W2o2
404f4w4
:1:=:V:u:
=G>t>{>
>?)?@?G?w?
3)303O3c3
6/666O6
6%7-7^7s7x7
88I8R8d8
969F9_9
9):2:D:v:
;&;?;i;r;
;+<0<G<W<^<e<l<
<?>h>m>y>
?=?O?Z?
01181n1
2W2\2e2u2z2
444;4n4F5f5
6&7+707P7W7^7p7
71868J8^8v8
8"9-9`9
:/:<:Q:l:q:
0&080[0n0
0@1X1g1q1
3/3L3U3}3
4#464=4J4_4r4y4
4'595P5W5b5
5(6F6X6
8+8V8h8
;+;P;U;^;
>0>M>X>
0"0V0h0~0
1,11161V1f1u1
4)444P4W4\4c4
5#5A5J5P5
77.7A7h7y7
8$818D8r8
9 9>9E9e9o9
9'9P9U9k9~9
9$:V:h:
>/?P?U?\?
1?2f2k2v2{2
5>6C6J6j6
9$:+:4:;:V:[:b:r:
; ;=;N;W;j;|;
<9<J<S<`<r<x<
=;=L=U=b=t=z=
0+0P0U0
01,1v1
303?3N3i3q4z4
5N5_5q5
6$6-6<6{6
7Z7m7|7
7L8[8d8u8
9-9?9L9
9@:\:m:
;;);E;M;];n;w;
<<0<9<H<Z<d<l<{<
=:=K=]=j=
>)>;>J>
?P?f?k?
3+343C3^3o3x3
8*8B8Z8s8
8F9X9j9
; ;i;p;z;
<!<2<O<X<_<d<~<
=]>k>p>
657@7v7
:":<:R:e:s:}:
1)181=1X1
7K7b7j7|7
869F9s9
:8:O:W:i:w:
;(<H<{<
071f1s1
7-8@8G8Y8
8"9^9n9
9):P:v:
<&=A=T=[=
0%090C0
1>1H1Q1Z1o1x1
5A5J5U5\5|5
6'676G6P6
7%7*787p7
9@9M9n9s9
:%:/:A:Y:
=(=1=N=
>*>d>m>t>z>
?#?;?a?~?
1 1T1t1
2&242A2V2^2d2r2z2
3"3(3.33393?3D3J3P3U3[3a3f3l3r3w3}3
4!4&4-42484>4C4I4O4T4Z4`4e4k4q4v4|4
5 5&5,51575=5B5H5N5S5Y5_5d5j5p5u5z5
3'3E3S3
585?5D5H5L5P5
:&;k;p;t;x;|;
?F?Z?v?
:U;`=e=
>E>Q>n?u?
0&0P0x0
1.181D1I1N1l1v1
3#3/3Z3H4R4_4
4-5P5W5
1%1;1M1
263:3>3B3F3J3N3R3
3R4V4Z4^4b4f4j4n4
6+929O9S9W9[9_9
3Y3f3u3
435;5E5N5_5q5
8':H:c:s:x:
>>'>3>M>
?H?Y?^?
0=0D0O0]0d0j0
:6:K:]:j:
;<;C;d;
=I?S?v?
0C0I0[0
=,=<=Q=h=
>%?7?k?
042O2e2{2
7=9O9a9
:#:(:8:=:B:g:
:';0;h;
<(<2<B<G<L<g<v<
=-===v=
>*>7>C>M>W>[>
=!>N>u>
>h?m?s?x?
0X1g1n1x1
2"2@2X2s2~2
2(3/363=3J3
:K:a:w:
;)<5<M<U<
212I2Q2r2
4 4-4=5n5
.0Y0k0}0
1111R1d1v1
5/=7=n=u=
458<8C8`8v8
;);0;G;];
687w7(9[9p9
5(5G5r5
<%<.<x<
>9?A?I?Q?Y?w?
5*505=5
4 4>4J4`4i4r4
4!5[5o5
6<7M7}7
838<8G8
020R0z0
;!;);@;j;
<0<I<Q<u<
"0Z1A7z7
<&=2=J=v=
4 4$4(4,404<4@4D4H4L4X4\4`4
5 5$5(5,5054585<5@5D5
8$8,848<8D8L8T8\8d8l8t8|8
9$9,949<9D9L9T9\9d9l9t9|9
L0P0T0
5$5,545<5D5L5T5\5d5l5t5|5
6$6,646<6D6L6T6\6d6l6t6|6
7$7,747<7D7L7T7\7d7l7t7|7
8$8,848<8D8L8T8\8d8l8t8|8
9$9,949<9D9L9T9\9d9l9t9|9
:$:,:4:<:D:L:T:\:d:l:t:|:
;$;,;4;<;D;L;T;\;d;l;t;|;
< <(<0<8<@<H<P<X<`<h<p<x<
= =(=0=8=@=H=P=X=`=h=p=x=
> >(>0>8>@>H>P>X>`>h>p>x>
? ?(?0?8?@?H?P?X?`?h?p?x?
0 0(00080@0H0P0X0`0h0p0x0
1 1(10181@1H1P1X1`1h1p1x1
2 2(20282@2H2P2X2`2h2p2x2
2T3X3\3`3x3
4 4(40484@4H4P4X4`4h4p4x4
5 5(50585@5H5P5X5`5h5p5x5
6 6(60686@6H6P6X6`6h6p6x6
@3D3H3L3P3T3X3\3`3d3h3l3p3t3x3|3
4 4$4(4,4044484<4@4D4H4L4P4T4X4\4`4d4h4l4p4t4x4|4
4L8T8\8d8l8t8|8
9$9,9(:,:0:4:8:<:@:D:H:L:P:T:X:\:`:d:h:l:p:t:
,0004080z1~1
1T2\2d2l2t2|2
3$3,343<3D3L3T3\3d3l3t3|3
4$4,444<4D4L4T4\4d4l4t4|4
5$5,545<5D5L5T5\5d5l5t5|5
6$6,646<6D6L6T6\6d6l6t6|6
7$7,747<7D7L7T7\7d7l7t7|7
8$8,848<8D8L8T8\8d8l8t8|8
9$9,949<9D9L9T9\9d9l9
4 4(40484@4H4P4X4`4h4p4x4
5 5(50585@5H5P5X5`5h5p5x5
6 6(60686@6H6P6X6`6h6p6x6
7 7(70787@7H7P7X7`7h7p7x7
8 8(80888@8H8P8X8`8h8p8x8
9 9(90989@9H9P9X9`9h9p9x9
: :(:0:8:@:H:P:X:`:h:p:x:
7 7(7,70787<7@7H7L7P7X7\7`7h7l7p7x7|7
8 8(8,80888<8@8H8L8P8X8\8`8h8l8p8x8|8
9 9(9,90989<9@9H9L9P9X9\9`9h9l9p9x9|9
: :$:(:,:0:4:8:<:@:D:L:T:\:d:l:t:|:
;$;,;4;<;D;L;T;\;d;l;t;|;
< <(<4<<<H<P<\<d<p<x<
= =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=x=|=
7T9X9\9`9d9h9l9p9t9
<0@0H0
101@1D1T1X1\1d1|1
2(2,2<2@2D2H2P2h2x2|2
:0:<:\:h:
; ;T;d;p;
<$<0<P<X<d<
= =(=8=@=L=T=
>$>0>P>\>|>
?4?<?D?L?T?\?d?p?
0$0,0D0L0T0`0
1$1,141<1D1L1X1x1
2,282X2`2p2
3$3,343<3D3P3t3|3
4$5,545<5D5
686H6l6t6|6
787D7d7p7
8(8H8T8t8
90989D9d9l9t9|9
: :@:H:T:t:
;$;,;4;<;H;h;p;x;
< <@<H<P<\<|<
=8=@=L=l=x=
> >D>L>T>\>d>l>t>|>
?4?<?D?L?T?\?d?l?t?
0$0,040<0D0L0T0\0d0l0t0|0
1,141<1D1L1T1\1d1l1t1
2 2,2L2X2x2
3,343<3D3P3p3x3
4$4,4<4L4T4\4d4t4
5(505<5\5d5l5x5
6$6,646<6D6L6T6\6h6
7$7,747<7D7L7X7x7
8 8(808<8\8d8p8
9$9,949@9`9l9
: :0:T:\:d:l:t:|:
; ;D;L;T;\;d;l;t;|;
<4<<<D<L<T<\<d<l<t<
= =(=4=T=\=d=l=x=
>0>8>@>H>P>X>`>l>
?8?H?l?t?|?
0$0,040<0D0L0T0`0
1,141<1D1L1T1`1
2 2(242T2\2d2l2t2|2
30383D3d3l3t3|3
4 4(40484@4H4T4t4|4
5(545T5\5d5l5x5
6(606<6\6d6l6x6
747@7`7h7p7x7
8<8\8d8l8t8|8
9$9,949<9D9L9T9\9d9l9t9|9
:$:,:4:<:D:P:t:|:
;$;,;4;<;D;L;T;\;d;l;t;|;
<4<<<D<L<T<\<d<l<t<|<
=$=0=P=X=`=h=p=
>$>,>4><>D>P>t>|>
?$?,?4?<?D?L?T?\?d?l?t?|?
0$0,040<0D0L0T0\0h0
1$1,141<1D1L1T1\1d1l1t1|1
2$2,242<2D2L2T2\2d2p2
3$3,343<3D3
4$4,444<4D4L4T4\4d4l4t4|4
5$5,545<5D5L5T5\5
6$6,646<6D6L6T6\6d6l6t6|6
7$7,747<7D7L7T7\7
8 8(80888D8d8l8t8
9(9L9T9\9d9l9t9|9
:$:,:4:<:D:L:T:\:h:
;$;,;4;<;D;L;T;\;d;l;t;|;
<$<,<4<<<D<L<T<\<d<l<t<|<
=$=,=4=<=D=L=T=\=d=l=t=|=
>$>,>4><>D>L>T>\>d>l>t>|>
?$?,?4?<?D?L?T?\?d?l?t?
0 0(000<0\0d0l0x0
181@1H1P1X1`1l1
2$2,242<2D2L2T2\2d2l2x2
3$3,343@3d3l3t3|3
4 4,4L4X4x4
5 5@5`5|5
6(60686@6D6H6P6d6l6t6|6
7(70747D7h7t7|7
8 8<8@8`8
9 9@9`9
: :@:`:
; ;<;@;H;\;d;x;
0P0T0X0\0`0d0h0l0p0t0
1(181P1\1`1d1
9 9(9,94989@9D9L9P9X9\9d9h9p9t9|9
: :$:(:,:0:4:8:<:@:D:H:L:P:X:\:d:h:p:t:|:
;$;(;,;0;4;8;<;@;D;H;L;P;`;x;
<<<X<t<
thawte, Inc.1(0&
Certification Services Division1806
/(c) 2006 thawte, Inc. - For authorized use only10
thawte Primary Root CA0
131210000000Z
231209235959Z0L1
thawte, Inc.1&0$
thawte SHA256 Code Signing CA0
http://t2.symcb.com0
!http://t1.symcb.com/ThawtePCA.crl0
SymantecPKI-1-5680
UwM^6)
thawte, Inc.1&0$
thawte SHA256 Code Signing CA0
170224000000Z
200224235959Z0
Bucuresti1
Caphyon SRL1'0%
SECURE APPLICATION DEVELOPMENT1
Caphyon SRL0
http://tl.symcb.com/tl.crl0
https://www.thawte.com/cps0/
!https://www.thawte.com/repository0W
http://tl.symcd.com0&
http://tl.symcb.com/tl.crt0
thawte, Inc.1&0$
thawte SHA256 Code Signing CA
"https://www.advancedinstaller.com 0
1ro?8^
n~xuS
20191113090653Z0
Symantec Corporation10
Symantec Trust Network110/
(Symantec SHA256 TimeStamping Signer - G3
VeriSign, Inc.10
VeriSign Trust Network1:08
1(c) 2008 VeriSign, Inc. - For authorized use only1806
/VeriSign Universal Root Certification Authority0
160112000000Z
310111235959Z0w1
Symantec Corporation10
Symantec Trust Network1(0&
Symantec SHA256 TimeStamping CA0
https://d.symcb.com/cps0%
https://d.symcb.com/rpa0.
http://s.symcd.com06
%http://s.symcb.com/universal-root.crl0
TimeStamp-2048-30
Symantec Corporation10
Symantec Trust Network1(0&
Symantec SHA256 TimeStamping CA0
171223000000Z
290322235959Z0
Symantec Corporation10
Symantec Trust Network110/
(Symantec SHA256 TimeStamping Signer - G30
?'J3Nm
https://d.symcb.com/cps0%
https://d.symcb.com/rpa0@
/http://ts-crl.ws.symantec.com/sha256-tss-ca.crl0
http://ts-ocsp.ws.symantec.com0;
/http://ts-aia.ws.symantec.com/sha256-tss-ca.cer0(
TimeStamp-2048-60
U){9FN
Symantec Corporation10
Symantec Trust Network1(0&
Symantec SHA256 TimeStamping CA
191113090653Z0/
/1(0&0$0"
X5G({j
!This program cannot be run in DOS mode.
RichUW
`.rdata
@.data
@.reloc
<H.t5I
\$ UVW
$_[^]Y
9\tVPj
ElSVWP
<J\u9Q
8?t?j\P
u)9q u$_^]
D$<SUVW
EhSVWP
<J"u6Q
Pt&j+W
C8;C8u?3
>[_^]Y
>[_^]Y
7WPWSj
ExSVWP
wEj WP
f9,Bt_W
;S t>3
C(;C,t
l$$_^[
QQSVWd
URPQQh0
;t$,v-
UQPXY]Y[
Tt)jhZf;
Jjl^f;
V2jx_f;
F2jgYf;
PPPPPPPP
u9jAXf;
u-jAXf;
Wj0XPV
SPjdVQ
PPPPPWS
PP9E u<PPVWP
zSSSSj
SSVWh
f9:t!V
QQSVj8j@
PPPPPPPP
WININET.dll
AcquireSRWLockExclusive
ReleaseSRWLockExclusive
bad allocation
address family not supported
address in use
address not available
already connected
argument list too long
argument out of domain
bad address
bad file descriptor
bad message
broken pipe
connection aborted
connection already in progress
connection refused
connection reset
cross device link
destination address required
device or resource busy
directory not empty
executable format error
file exists
file too large
filename too long
function not supported
host unreachable
identifier removed
illegal byte sequence
inappropriate io control operation
interrupted
invalid argument
invalid seek
io error
is a directory
message size
network down
network reset
network unreachable
no buffer space
no child process
no link
no lock available
no message available
no message
no protocol option
no space on device
no stream resources
no such device or address
no such device
no such file or directory
no such process
not a directory
not a socket
not a stream
not connected
not enough memory
not supported
operation canceled
operation in progress
operation not permitted
operation not supported
operation would block
owner dead
permission denied
protocol error
protocol not supported
read only file system
resource deadlock would occur
resource unavailable try again
result out of range
state not recoverable
stream timeout
text file busy
timed out
too many files open in system
too many files open
too many links
too many symbolic link levels
value too large
wrong protocol type
0123456789abcdefghijklmnopqrstuvwxyz
0123456789abcdefghijklmnopqrstuvwxyz
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
InitializeCriticalSectionEx
InitOnceExecuteOnce
CreateEventExW
CreateSemaphoreW
CreateSemaphoreExW
CreateThreadpoolTimer
SetThreadpoolTimer
WaitForThreadpoolTimerCallbacks
CloseThreadpoolTimer
CreateThreadpoolWait
SetThreadpoolWait
CloseThreadpoolWait
FlushProcessWriteBuffers
FreeLibraryWhenCallbackReturns
GetCurrentProcessorNumber
CreateSymbolicLinkW
GetCurrentPackageId
GetTickCount64
GetFileInformationByHandleEx
SetFileInformationByHandle
GetSystemTimePreciseAsFileTime
InitializeConditionVariable
WakeConditionVariable
WakeAllConditionVariable
SleepConditionVariableCS
InitializeSRWLock
TryAcquireSRWLockExclusive
SleepConditionVariableSRW
CreateThreadpoolWork
SubmitThreadpoolWork
CloseThreadpoolWork
CompareStringEx
GetLocaleInfoEx
LCMapStringEx
bad exception
__based(
__cdecl
__pascal
__stdcall
__thiscall
__fastcall
__vectorcall
__clrcall
__eabi
__swift_1
__swift_2
__ptr64
__restrict
__unaligned
restrict(
delete
operator
`vftable'
`vbtable'
`vcall'
`typeof'
`local static guard'
`string'
`vbase destructor'
`vector deleting destructor'
`default constructor closure'
`scalar deleting destructor'
`vector constructor iterator'
`vector destructor iterator'
`vector vbase constructor iterator'
`virtual displacement map'
`eh vector constructor iterator'
`eh vector destructor iterator'
`eh vector vbase constructor iterator'
`copy constructor closure'
`udt returning'
`local vftable'
`local vftable constructor closure'
new[]
delete[]
`omni callsig'
`placement delete closure'
`placement delete[] closure'
`managed vector constructor iterator'
`managed vector destructor iterator'
`eh vector copy constructor iterator'
`eh vector vbase copy constructor iterator'
`dynamic initializer for '
`dynamic atexit destructor for '
`vector copy constructor iterator'
`vector vbase copy constructor iterator'
`managed vector copy constructor iterator'
`local static thread guard'
operator ""
operator co_await
operator<=>
Type Descriptor'
Base Class Descriptor at (
Base Class Array'
Class Hierarchy Descriptor'
Complete Object Locator'
`anonymous namespace'
`h````
xpxxxx
`h`hhh
xwpwpp
(null)
[aOni*{
~ $s%r
@b;zO]
v2!L.2
CorExitProcess
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
NAN(SNAN)
nan(snan)
NAN(IND)
nan(ind)
_hypot
_nextafter
AreFileApisANSI
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
InitializeCriticalSectionEx
LCMapStringEx
LocaleNameToLCID
AppPolicyGetProcessTerminationMethod
1#QNAN
1#SNAN
]vQ<)8
|)P!?Ua0
Eb2]A=
u?^p?o4
y1~?|"
?x+s7
?5Od%
?|I7Z#
>,'1D=
?g)([|X>=
~U`?K
:h"?bC
@H#?43
Ax#?uN}*
r7Yr7=
F0$?3=1
H`$?h|
&?~YK|
sU0&?W
<8bunz8
?#%X.y
F||<##
<@En[vP
b<log10
?5Wg4p
%S#[k=
"B <1=
invalid string position
unordered_map/set too long
invalid hash bucket count
string too long
bad array new length
Unknown exception
ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+/
DllGetVersion
vector<T> too long
RegDeleteKeyTransactedW
RegDeleteKeyExW
RegCreateKeyTransactedW
RegOpenKeyTransactedW
IsWow64Process
SHGetFolderPathW
ProgramFiles
WND_HIDE
Wow64DisableWow64FsRedirection
Wow64RevertWow64FsRedirection
invalid string_view position
deque<T> too long
Prerequisites download was canceled by user.
FAILED to download a mandatory prerequisite. All downloads will be aborted.
Prereq downloaded succesfully.
Failed to extract:
ConvertStringSidToSidW
map/set too long
C:\JobRelease\win\Release\custact\x86\Prereq.pdb
.text$di
.text$mn
.text$x
.text$yd
.idata$5
.00cfg
.CRT$XCA
.CRT$XCC
.CRT$XCL
.CRT$XCU
.CRT$XCZ
.CRT$XIA
.CRT$XIC
.CRT$XIZ
.CRT$XPA
.CRT$XPX
.CRT$XPXA
.CRT$XPZ
.CRT$XTA
.CRT$XTZ
.rdata
.rdata$r
.rdata$sxdata
.rdata$zzzdbg
.rtc$IAA
.rtc$IZZ
.rtc$TAA
.rtc$TZZ
.xdata$x
.didat$2
.didat$3
.didat$4
.didat$6
.didat$7
.edata
.idata$2
.idata$3
.idata$4
.idata$6
.data$r
.didat$5
.rsrc$01
.rsrc$02
InternetCrackUrlW
InternetCloseHandle
InternetSetStatusCallbackW
InternetSetOptionW
InternetOpenW
InternetGetLastResponseInfoW
InternetReadFile
InternetQueryDataAvailable
FtpGetFileSize
InternetQueryOptionW
HttpQueryInfoW
InternetConnectW
HttpOpenRequestW
HttpSendRequestW
FtpOpenFileW
FtpCommandW
InternetErrorDlg
Prereq.dll
CleanPrereq
ConfigurePrereqLauncher
DoAppSearchEx
DownloadPrereq
EstimateExtractFiles
ExtractPrereq
ExtractSourceFiles
InstallPostPrereq
InstallPrereq
VerifyPrereq
msi.dll
GetFileVersionInfoSizeW
GetFileVersionInfoW
VerQueryValueW
VERSION.dll
WNetAddConnection2W
WNetGetUniversalNameW
MPR.dll
GetModuleFileNameW
FormatMessageW
OutputDebugStringW
CopyFileExW
GetLastError
FileTimeToSystemTime
SystemTimeToFileTime
CompareFileTime
DeleteFileW
MoveFileW
CopyFileW
CreateFileW
CloseHandle
HeapDestroy
HeapSize
HeapReAlloc
HeapFree
HeapAlloc
GetProcessHeap
GetSystemTime
SizeofResource
LockResource
LoadResource
FindResourceW
FindResourceExW
GetEnvironmentVariableW
RemoveDirectoryW
GetTempPathW
GetTempFileNameW
CreateDirectoryW
RaiseException
FindClose
FindFirstFileW
SetLastError
LoadLibraryW
GetProcAddress
FreeLibrary
LocalFree
GetModuleHandleW
GetCurrentProcess
lstrcmpiW
DeleteCriticalSection
EnterCriticalSection
InitializeCriticalSection
LeaveCriticalSection
GetCurrentProcessId
GetCurrentThreadId
SetFilePointer
GetLocalTime
WriteFile
FlushFileBuffers
MultiByteToWideChar
GetFileSize
CreateProcessW
WaitForSingleObject
GetExitCodeProcess
GetWindowsDirectoryW
ReadFile
WideCharToMultiByte
GetFileTime
FindNextFileW
GetLogicalDriveStringsW
GetDriveTypeW
GetDiskFreeSpaceExW
GetSystemDirectoryW
CreateNamedPipeW
ConnectNamedPipe
ResetEvent
CreateEventW
SetEvent
GlobalFree
GetStringTypeW
LoadLibraryExW
InitializeCriticalSectionAndSpinCount
DecodePointer
GetSystemDefaultLangID
LocalAlloc
GlobalFindAtomW
GetStdHandle
KERNEL32.dll
CharNextW
ExitWindowsEx
USER32.dll
RegCreateKeyExW
RegQueryValueExW
RegSetValueExW
RegCloseKey
RegOpenKeyExW
RegDeleteValueW
RegQueryInfoKeyW
RegDeleteKeyW
RegEnumKeyExW
RegEnumValueW
OpenSCManagerW
OpenServiceW
CloseServiceHandle
QueryServiceStatus
StartServiceW
OpenProcessToken
GetTokenInformation
AllocateAndInitializeSid
EqualSid
FreeSid
LookupPrivilegeValueW
AdjustTokenPrivileges
GetSecurityDescriptorDacl
SetEntriesInAclW
InitializeSecurityDescriptor
SetSecurityDescriptorDacl
LookupAccountSidW
ADVAPI32.dll
SHGetFolderPathW
ShellExecuteExW
SHGetSpecialFolderLocation
SHGetPathFromIDListW
SHGetMalloc
SHELL32.dll
CoCreateInstance
CoTaskMemFree
CoTaskMemRealloc
CoTaskMemAlloc
CLSIDFromString
ole32.dll
OLEAUT32.dll
PathFileExistsW
PathGetArgsW
PathRemoveArgsW
PathUnquoteSpacesW
SHLWAPI.dll
GetSystemInfo
VirtualProtect
VirtualQuery
LoadLibraryExA
IsProcessorFeaturePresent
UnhandledExceptionFilter
SetUnhandledExceptionFilter
TerminateProcess
IsDebuggerPresent
GetStartupInfoW
QueryPerformanceCounter
GetSystemTimeAsFileTime
InitializeSListHead
EncodePointer
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
LCMapStringW
GetCPInfo
RtlUnwind
InterlockedFlushSList
ExitProcess
GetModuleHandleExW
GetFileType
FindFirstFileExW
IsValidCodePage
GetACP
GetOEMCP
GetCommandLineA
GetCommandLineW
GetEnvironmentStringsW
FreeEnvironmentStringsW
SetFilePointerEx
SetStdHandle
GetConsoleCP
GetConsoleMode
WriteConsoleW
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVtype_info@@
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
.?AVbad_exception@std@@
.?AVCAtlException@ATL@@
.?AVbad_array_new_length@std@@
.?AVbad_alloc@std@@
.?AVexception@std@@
<?xml version='1.0' encoding='UTF-8' standalone='yes'?>
<assembly xmlns='urn:schemas-microsoft-com:asm.v1' manifestVersion='1.0'>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
<security>
<requestedPrivileges>
<requestedExecutionLevel level='asInvoker' uiAccess='false' />
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
00%010O0Z0h0n0
1 1V1b1s1
1!262B2f2r2w2
3'3,3=3s3x3
4+444E4I4V4Z4f4
5$505<5F5R5^5h5f6x6
7$7-7{7
<.=V=e=&>6>
F0X0~0
6&727f8v8
9%9=9H9V9
<F=R=l=
=J>f>r>
F0R0c0o0|0
2#222<2F2P2Z2c2u2
3f3u364H4
=!=F=S=s=
>V>d>~>
>&?4?V?
0#0:0t0
2&343Z3
5.5F5Z5n5
9F;X;x;
<6=H=h=
0$0b0g0
344G4S4k4r4y4
7/7;7N7T7^7h7}7
9T:m:|:
>&?4?Z?
0/0]0v0
1&555\6f7t7
;#;V<g<
;$;+;};
< =f=v=
?/?5?E?L?
060G0v1
8-969}9
9 :0:U:^:
??G?P?
0V0f0f1x1&353V5b5
767C7W7e7
:,:6:D:
<#<7<E<m<
?#?7?E?
4p4w4~4
5+646S6
7f8x8&969l9
9#:R:b:
< =3=>=
6p7.8S8
:+;9<I<
2*20242:2S2[2a2h2q2v2
2Z3h3u3
1,30343V3f3
6A7p7"8Q8
1 1$1(1,1014181<1@1V1g1
4,5 7M7
849$;};f<x<
5V6h6G7
8):\:h:
;a<p<e=n=
3/4=4O4}4
5#6S6`6g6
9m96:H:
<+<7<J<P<Z<d<y<
=#=3=F=L=V=`=j=
>1><>J>h>~>
?4?L?p?
0)0>0U0k0v0
1,1G1U1o1x1
2#2<2U2n2
4!4'4,4G4P4f4s4
5-6o6y6
8-9;9o9
9%:]:k:
:8;E;J;};
?'?H?R?
061G1~1
3)373n3|3
4'4f4u4
6T7b7t7
>)?/?g?~?
&010D0M0a0z0
2V3_3v3
656F6V6
;)<T<y<
=M=^=l=}=
>2>B>O>
0(1.1B1J1Q1o1v1
1(2,202F2X2
3F4X4z4
4f5x5f8w8J9
;Z<j</=u=
>*>?>s>
5?9g9~9
<9=C=y=&>8>
112A2-3
6M6f6s6
6&737G7U7f8x8
:;;f<x<v=
:+<)>9>
223&454
7F8V869C9
5V5h5e7
9O9X9^9
>&?5?y?
%0f0u0
:F;U;"=
475d6z6!7
7!868H8q:
:?;f;x;
6?7V8c8
="=6=;=v=
2&333Z3
4&474N4_4p4
7F8R8d8
:9:V:q:
=6>C>S>l>
1H2L2P2T2
3/464=4
4a5o5v5
8(:6:K:\:
;3<:<A<L<P<{<
0(1<1p1}1
3#3=3s3
5535?5K5Z5l5~5
6(6M6_6
7+828D869^9|9
:8;<;v;
1<2l2G3t3f4s4
8I8f8x8
<<%</<9<\<
>.>3>v>
>???K?V?\?f?p?
191E1P1V1`1j1
282!303
34E4Q4\4b4l4v4
;'<d<L=
>>m>}>
)030C0
5T6&878
1%2V2h2t2
4 4&404:4_4
4A5S5_5j5p5z5
8P8u8z8
=5>R>_>
263G3&444
7(7F8R8
141@1K1Q1[1e1
747]7i7t7z7
<!<'<1<;<a<e=
4K4{4>5q5
9%9V9q9}9
:#:):3:=:`:
Antivirus Signature
Bkav Clean
Lionic Trojan.Win32.PurpleFox.4!c
MicroWorld-eScan Gen:Variant.Doina.21448
ClamAV Win.Trojan.Bulz-9863763-0
CMC Clean
CAT-QuickHeal Clean
McAfee GenericRXOX-RA!241B59D56184
Malwarebytes Clean
VIPRE Gen:Variant.Doina.21448
Sangfor Suspicious.Win32.Save.a
K7AntiVirus Clean
K7GW Clean
Baidu Clean
VirIT Clean
Cyren W32/Trojan.IHU.gen!Eldorado
Symantec Trojan Horse
ESET-NOD32 multiple detections
TrendMicro-HouseCall TROJ_GEN.R002C0PFN23
Avast Win32:Trojan-gen
Cynet Malicious (score: 99)
Kaspersky Rootkit.Win64.PurpleFox.ffg
BitDefender Gen:Variant.Doina.21448
NANO-Antivirus Clean
SUPERAntiSpyware Clean
Rising Trojan.PurpleFox/MSI!1.D10D (CLASSIC)
TACHYON Clean
Sophos Mal/VMProtBad-A
F-Secure Trojan.TR/Crypt.XPACK.Gen
DrWeb Trojan.Packed2.43111
Zillya Trojan.VMProtect.Win32.48329
TrendMicro Trojan.VBS.FUPORFLEX.SMYEBDR
McAfee-GW-Edition GenericRXOX-RA!241B59D56184
FireEye Gen:Variant.Doina.21448
Emsisoft Gen:Variant.Doina.21448 (B)
Ikarus Win32.Outbreak
Jiangmin Clean
Avira TR/VB.Agent.ssyqs
Antiy-AVL Trojan[Packed]/Win32.VMProtect
Microsoft Trojan:Script/Phonzy.A!ml
Gridinsoft Malware.U.Gen.bot
Xcitium Clean
Arcabit Trojan.Doina.D53C8 [many]
ViRobot Clean
ZoneAlarm Rootkit.Win64.PurpleFox.ffg
GData Generic.Exploit.VBScript.A.D68697A5
Google Detected
AhnLab-V3 Clean
Acronis Clean
BitDefenderTheta Gen:NN.ZedlaF.36270.@J7@aWpCHdp
ALYac Generic.Exploit.VBScript.A.BF3AA4DD
MAX malware (ai score=83)
VBA32 BScope.Trojan.Agentb
Zoner Clean
Tencent Win32.Trojan.Agentb.Ckjl
Yandex Clean
SentinelOne Clean
MaxSecure Trojan.Malware.121218.susgen
Fortinet W32/VMProtect.ABO!tr
AVG Win32:Trojan-gen
Panda Clean
No IRMA results available.