Static | ZeroBOX

PE Compile Time

2003-03-25 16:08:18

PE Imphash

c63ba316533609531fac22f3877f847b

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00008f74 0x00009000 6.61804984773
.data 0x0000a000 0x00001bec 0x00000400 4.24804141003
.rsrc 0x0000c000 0x0003f9d0 0x0003fa00 7.85433678459

Resources

Name Offset Size Language Sub-language File type
AVI 0x0000c7e8 0x00002e1a LANG_ENGLISH SUBLANG_ENGLISH_US RIFF (little-endian) data, AVI, 272 x 60, 10.00 fps, video: RLE 8bpp
RT_ICON 0x0000f8ec 0x00000128 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x0000f8ec 0x00000128 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_DIALOG 0x00010254 0x000000fa LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x00010254 0x000000fa LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x00010254 0x000000fa LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x00010254 0x000000fa LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x00010254 0x000000fa LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x00010254 0x000000fa LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x000117c4 0x000003ce LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x000117c4 0x000003ce LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x000117c4 0x000003ce LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x000117c4 0x000003ce LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x000117c4 0x000003ce LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x000117c4 0x000003ce LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_RCDATA 0x0004b0b0 0x00000007 LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with no line terminators
RT_RCDATA 0x0004b0b0 0x00000007 LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with no line terminators
RT_RCDATA 0x0004b0b0 0x00000007 LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with no line terminators
RT_RCDATA 0x0004b0b0 0x00000007 LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with no line terminators
RT_RCDATA 0x0004b0b0 0x00000007 LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with no line terminators
RT_RCDATA 0x0004b0b0 0x00000007 LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with no line terminators
RT_RCDATA 0x0004b0b0 0x00000007 LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with no line terminators
RT_RCDATA 0x0004b0b0 0x00000007 LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with no line terminators
RT_RCDATA 0x0004b0b0 0x00000007 LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with no line terminators
RT_RCDATA 0x0004b0b0 0x00000007 LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with no line terminators
RT_RCDATA 0x0004b0b0 0x00000007 LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with no line terminators
RT_RCDATA 0x0004b0b0 0x00000007 LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with no line terminators
RT_RCDATA 0x0004b0b0 0x00000007 LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with no line terminators
RT_RCDATA 0x0004b0b0 0x00000007 LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with no line terminators
RT_GROUP_ICON 0x0004b0b8 0x00000022 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_VERSION 0x0004b0dc 0x00000420 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MANIFEST 0x0004b4fc 0x000004d4 LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with CRLF line terminators

Imports

Library ADVAPI32.dll:
0x1001000 FreeSid
0x1001008 EqualSid
0x100100c GetTokenInformation
0x1001010 OpenProcessToken
0x1001014 AdjustTokenPrivileges
0x1001018 LookupPrivilegeValueA
0x100101c RegCloseKey
0x1001020 RegDeleteValueA
0x1001024 RegOpenKeyExA
0x1001028 RegSetValueExA
0x100102c RegQueryValueExA
0x1001030 RegCreateKeyExA
0x1001034 RegQueryInfoKeyA
Library KERNEL32.dll:
0x100104c LocalFree
0x1001050 LocalAlloc
0x1001054 GetLastError
0x1001058 GetCurrentProcess
0x100105c GetModuleFileNameA
0x1001060 lstrlenA
0x1001064 GetSystemDirectoryA
0x1001068 RemoveDirectoryA
0x100106c FindClose
0x1001070 FindNextFileA
0x1001074 DeleteFileA
0x1001078 SetFileAttributesA
0x100107c lstrcmpA
0x1001080 FindFirstFileA
0x1001084 lstrcatA
0x1001088 lstrcpyA
0x100108c _lclose
0x1001090 _llseek
0x1001094 _lopen
0x100109c GetWindowsDirectoryA
0x10010a0 CreateDirectoryA
0x10010a4 GetFileAttributesA
0x10010ac IsDBCSLeadByte
0x10010b0 GetShortPathNameA
0x10010b8 GetPrivateProfileIntA
0x10010bc lstrcmpiA
0x10010c0 GlobalFree
0x10010c4 GlobalUnlock
0x10010c8 GlobalLock
0x10010cc GetProcAddress
0x10010d0 FreeResource
0x10010d4 LockResource
0x10010d8 LoadResource
0x10010dc SizeofResource
0x10010e0 FindResourceA
0x10010e4 CloseHandle
0x10010e8 WriteFile
0x10010ec SetFilePointer
0x10010f0 SetFileTime
0x10010f8 DosDateTimeToFileTime
0x10010fc SetCurrentDirectoryA
0x1001100 GetTempFileNameA
0x1001104 ExitProcess
0x1001108 CreateFileA
0x100110c LoadLibraryExA
0x1001110 lstrcpynA
0x1001114 GetVolumeInformationA
0x1001118 FormatMessageA
0x100111c GetCurrentDirectoryA
0x1001120 GetVersionExA
0x1001124 GetExitCodeProcess
0x1001128 WaitForSingleObject
0x100112c CreateProcessA
0x1001130 GetTempPathA
0x1001134 GetSystemInfo
0x1001138 CreateMutexA
0x100113c SetEvent
0x1001140 CreateEventA
0x1001144 CreateThread
0x1001148 ResetEvent
0x100114c TerminateThread
0x1001150 GetDriveTypeA
0x1001154 GetModuleHandleA
0x1001158 GetStartupInfoA
0x100115c GetCommandLineA
0x1001164 GetTickCount
0x1001168 GetCurrentThreadId
0x100116c GetCurrentProcessId
0x1001174 TerminateProcess
0x100117c ReadFile
0x1001180 LoadLibraryA
0x1001184 GetDiskFreeSpaceA
0x1001188 MulDiv
0x1001190 FreeLibrary
0x1001194 GlobalAlloc
Library GDI32.dll:
0x1001044 GetDeviceCaps
Library USER32.dll:
0x100119c ExitWindowsEx
0x10011a0 wsprintfA
0x10011a4 CharNextA
0x10011a8 CharUpperA
0x10011ac CharPrevA
0x10011b0 SetWindowLongA
0x10011b4 GetWindowLongA
0x10011b8 CallWindowProcA
0x10011bc DispatchMessageA
0x10011c4 PeekMessageA
0x10011c8 SendMessageA
0x10011cc SetWindowPos
0x10011d0 ReleaseDC
0x10011d4 GetDC
0x10011d8 GetWindowRect
0x10011dc SendDlgItemMessageA
0x10011e0 GetDlgItem
0x10011e4 SetForegroundWindow
0x10011e8 SetWindowTextA
0x10011ec MessageBoxA
0x10011f4 ShowWindow
0x10011f8 EnableWindow
0x10011fc GetDlgItemTextA
0x1001200 EndDialog
0x1001204 GetDesktopWindow
0x1001208 MessageBeep
0x100120c SetDlgItemTextA
0x1001210 LoadStringA
0x1001214 GetSystemMetrics
Library COMCTL32.dll:
0x100103c None
Library VERSION.dll:
0x100121c GetFileVersionInfoA
0x1001220 VerQueryValueA

!This program cannot be run in DOS mode.
`.data
ADVAPI32.dll
KERNEL32.dll
NTDLL.DLL
GDI32.dll
USER32.dll
COMCTL32.dll
VERSION.dll
CheckTokenMembership
advapi32.dll
SeShutdownPrivilege
DelNodeRunDLL32
advpack.dll
wininit.ini
Software\Microsoft\Windows\CurrentVersion\App Paths
setupapi.dll
setupx.dll
Version
AdvancedINF
Reboot
UPDFILE%lu
CABINET
IXP%03d.TMP
RegServer
LoadString() Error. Could not load string resource.
PACKINSTSPACE
FILESIZES
<None>
UPROMPT
TMP4351$.TMP
LICENSE
FINISHMSG
VERCHECK
INSTANCECHECK
EXTRACTOPT
POSTRUNPROGRAM
RUNPROGRAM
USRQCMD
ADMQCMD
SHOWWINDOW
REBOOT
msdownld.tmp
DecryptFileA
UnhandledExceptionFilter
kernel32.dll
Control Panel\Desktop\ResourceLocale
wextract.pdb
PSSSSSSh
PSSSSSSh
Pj@Phq
uxWj@Y
u'VVVV
PVVVVVV
t6SWWW
EtHHt
VVj VVV
Uj@UVh
4SVWhD
j SVh$
j WVhJ
YYt79^(t@
B9N(tU
tBHt-Ht Ht
HtiHt<Ht
oWWWW3
F WWWWWW
HteHt3H
tBHt-Ht Ht
HtmHtEHt
YYuhSj
G"f;Fjr
9LDICt
8LDICt
>LDICt
t19uHu%
ET@;El
FreeSid
AllocateAndInitializeSid
EqualSid
GetTokenInformation
OpenProcessToken
AdjustTokenPrivileges
LookupPrivilegeValueA
RegCloseKey
RegDeleteValueA
RegOpenKeyExA
RegSetValueExA
RegQueryValueExA
RegCreateKeyExA
RegQueryInfoKeyA
ADVAPI32.dll
FreeLibrary
GetProcAddress
LoadLibraryA
CloseHandle
LocalFree
LocalAlloc
GetLastError
GetCurrentProcess
GetModuleFileNameA
lstrlenA
GetSystemDirectoryA
RemoveDirectoryA
FindClose
FindNextFileA
DeleteFileA
SetFileAttributesA
lstrcmpA
FindFirstFileA
lstrcatA
lstrcpyA
_lclose
_llseek
_lopen
WritePrivateProfileStringA
GetWindowsDirectoryA
CreateDirectoryA
GetFileAttributesA
ExpandEnvironmentStringsA
IsDBCSLeadByte
GetShortPathNameA
GetPrivateProfileStringA
GetPrivateProfileIntA
lstrcmpiA
GlobalFree
GlobalUnlock
GlobalLock
GlobalAlloc
FreeResource
LockResource
LoadResource
SizeofResource
FindResourceA
ReadFile
WriteFile
SetFilePointer
SetFileTime
LocalFileTimeToFileTime
DosDateTimeToFileTime
SetCurrentDirectoryA
GetTempFileNameA
ExitProcess
CreateFileA
LoadLibraryExA
lstrcpynA
GetVolumeInformationA
FormatMessageA
GetCurrentDirectoryA
GetVersionExA
GetExitCodeProcess
WaitForSingleObject
CreateProcessA
GetTempPathA
GetSystemInfo
CreateMutexA
SetEvent
CreateEventA
CreateThread
ResetEvent
TerminateThread
GetDriveTypeA
GetModuleHandleA
GetStartupInfoA
GetCommandLineA
QueryPerformanceCounter
GetTickCount
GetCurrentThreadId
GetCurrentProcessId
GetSystemTimeAsFileTime
TerminateProcess
SetUnhandledExceptionFilter
KERNEL32.dll
GetDeviceCaps
GDI32.dll
MessageBeep
SetDlgItemTextA
LoadStringA
GetDesktopWindow
EndDialog
ExitWindowsEx
wsprintfA
CharNextA
CharUpperA
CharPrevA
SetWindowLongA
GetWindowLongA
CallWindowProcA
DispatchMessageA
MsgWaitForMultipleObjects
PeekMessageA
SendMessageA
SetWindowPos
ReleaseDC
GetWindowRect
SendDlgItemMessageA
GetDlgItem
SetForegroundWindow
SetWindowTextA
MessageBoxA
DialogBoxIndirectParamA
ShowWindow
EnableWindow
GetDlgItemTextA
USER32.dll
COMCTL32.dll
VerQueryValueA
GetFileVersionInfoA
GetFileVersionInfoSizeA
VERSION.dll
EnumResourceLanguagesA
MulDiv
GetDiskFreeSpaceA
GetSystemMetrics
WEXTRACT
*MEMCAB
rundll32.exe %s,InstallHinfSection %s 128 %s
SHELL32.DLL
SHGetSpecialFolderLocation
SHBrowseForFolder
SHGetPathFromIDList
DefaultInstall
DefaultInstall
DoInfInstall
Software\Microsoft\Windows\CurrentVersion\RunOnce
System\CurrentControlSet\Control\Session Manager
PendingFileRenameOperations
System\CurrentControlSet\Control\Session Manager\FileRenameOperations
wextract_cleanup%d
%s /D:%s
rundll32.exe %sadvpack.dll,DelNodeRunDLL32 "%s"
Command.com /c %s
WEXTRACT
*MEMCAB
rundll32.exe %s,InstallHinfSection %s 128 %s
SHELL32.DLL
SHGetSpecialFolderLocation
SHBrowseForFolder
SHGetPathFromIDList
DefaultInstall
DefaultInstall
DoInfInstall
AVI LIST
hdrlavih8
strlstrh8
vidsRLE
LISTv$
movi00dc(
33333330
{{{{{{{3
{{{{{{{33
{{{{{{{330
{{{{{{{330
{{{{{{{330
3333333
33333333
wwwwwwwwwww
DDDDDD@
DDDDDDGpw
DDDDDDGpw
DDDDDDDDDDD
wwwwwwwwwww
PA<None>
msizapa.exe
msizapw.exe
unicows.dll
cleanup.exe
cleanup.ini
history.txt
readme.txt
Fk}${(
[Any]I|
mz[-K/
4?3EE5
I9=$PW
\mo-Z\
t9JFF;
)3|?q\3
@?H$HC
cY<J0un
&dHMkKS
7kwfM+]
d04cvV/
.nNZY8
*Q==%Y
',v)ny
E^3BE0
}h\v0K
^?@z0}k
XG`T'A
XAn=5[
kh'6Nu]?
!kjq$ q
x;wrF?$
c~uyu~
0Ckyu,mr
tUlSg\
;d(|Kt
aI'D=q
]fqS\&?H%8
lJ0nBV
4P|[:o
PddHd"
iT\CO/
C6hd,(
+C;#d#6
cIX3>,k>
UA8F
EXts}
7vC( e
c<J7q]
$((WgkG
~&qL%{BWU
h|D(a;!t-:Q
L)NH{1%
Rv]Od1
Medh!B
qDC1Rr
"b@QtcE?
&au%x|
Y'UZs0
DwtN@u
bZoL1_
OU1oxHV!J
l_z3x{
JD!U3Z`
B,x]Hq
:3Wg*`u
>HB;zW
o=U13s
WGl6`YWH
z&PHa'$
dQkgf^"O
_K/I95
CWW X5
uKyUWD
.vKXr8
IW[mr(
1Y)Ql-u!
?t2lYf
["=vg@
"+\92R
OJv<wI9
z+"<]#
c1J#"A
(Cp@!4
<{|c?_
;AAdd==
b=kzX`
q=SO9T7J
4BB##44BB##44BB##44B #
+ij6Ws
hO2bW/6
F?[@=I
972fe]
rIoQyt
l|dphS
Z8BCYy
5<UMt03v
YhO44C'
_SH%Qy
A,Xw*d
g`WZ}q4
]'K#tyu
RE+/,g
qQ3<H'
yJ#/uP
VOzH+>
-IKw}G
tiXyit
Pjh&MG
YlUKD!t
CtZ},V
[sgpvgKp
af$Ox$
r)kbJ.
{coF;oo
g7SPy
qzfM{W.7
6fgK!0
GQTTG|}75
%\Ra'))
\!'\IDV
Sf+u%^!
I-(gM/
wNZY@KF(9T
znR@jY
^|\GCb
rZw`kv
vbBc~g
Icb1<4
c1H3V=H
XB7}o^
_%Od1m0
h_)S6}
Pv]jG5
AMBGP'(
Qk4:=s
Xh9PMm
zAVQQo.M#r
'Rp&GK
HRS@x?
A+G=vv
BBD@h|
3T*DY=
V|QuC
.j3g\o
`<4i58
I)'S'F.
\JZKCx{
X\c^5;L-9
"Z|;xL
N.L7+xi
@OXQH>
4 'Smr}
DI5OJ^
*GK5u3
Ow][`
/IGi#:
MEU zX
h>zf"=
JeefC
rR0Iz)
g"l}'J
_;P]WP2',DV
&_ _pjn
xxx%p}
-paqCI
d}{}e3
u.VI6j
-pW'CdD
#V=fyr
5qW(H!
GM/UqO
4GQ:$D3"
Wo&eL
/QH0.O
t1a3hNp3
IbeX87
fE_YRueT
7&CNyF
C:.8pW
xFRh}Z
S7U+-U)C
?%Ihser
5:y5m[
.BWfH9
C,T`V6
:5-Jv,
()^%$]
c*9.ruj
AK<zb#
:T'$9c9&;
kp<,A"s
G4LPh!
hQ(?I4`
t9~m*r
4\is*J
zi&;pW
d[Y.jU]>
3F^%r|
|gM++?
=Ghf(+D
S>|!gL
?CVbA>b
AazC5)
t=xTUQ
)l&\U
9:v84
`R4(76Q
P'}QfdC
rEL#DS}
NkhY O
><=MCX8S
31-$exB%
z1a=E#
+4(DW6*
\%F-!i}
!s""^'F
$J-S@O
1"$f\]c
rE'qych=<
QEVj\{M
A}hUm?
YMEMcr
;WVXjC
22...$G
!.z"Eh
z^Z39w
ivIYk
<*t}sw
rBpKM!
]"$;?_E
C:]Ae3
A@r+L5
IJ5yOge
vH4h4d;C
GI>Zfg*z
7cYaQ7
X1ugw5
cifif)i
kinIz)
WnW0W6WFVT
0j4w;d
4d5$645qH
=t~8~|{
_nudJlM
.M.a/u
Q5Q=QH
PzH7D9
G;<Lxh
xe,y,!-a-y-p.
qCqC~C
+G0p7 %
FPLBnG
E,E0E5E:E>ECEHE5
:o$(Hd
M&M2M9M?5I[
>%?=nbR
4E3ENXh{
G*G@qI
dIuIi4I
>j=n5Dh
MX_ocS<
Ul"[`6@m
}O:UMy
&N-4ss\+K
YYCMWY
MhVRWR\
RF;GS~
kk?7>
)jKJo;
]%!2!(
Qv[SnY
2y&FM6
Xq}*36
^1}0wH
{"t/z"+
Vg=a%>c
7Q;:^op:2
r9)4}v6
> >!i!)
[+6+<MF5
<=RS.q(
0aR&Ua
&z<g#/
H$Zm9:
=q'7y[
9{EuMn
NyoNapS
4&UfP1
:zH&&-
4bi`3l
q5|${A
xTx^%
OAzw.8
YQ*{g
s|X3L3<y_
Ej+}%2
[u:R~$
F&`x9V
1H- p[
wB|iC
U7j1r-
"jP3Cc
~?}(\&
Q5'k3-
"6bc9c
MxM'Mz
b?;__
@6{bV+
Q@@0)p
I!!B\*x
LVjU:^
6<UV^GT
=49"28
/b4*68
(AuST
R?@~On+
.d0uVd
d!(ad+
=O(bnM
oC4iYr
``o!zH
oavm_k
1-f-l-a
Ff_EL\I9C
GC7wX^
JY6 W `
Q<#eYX
y\"(6AO:
]'E<#`
Leq3oZ
a4%Nv=x
S=~:2_
gFKe+]QV{
xf-eSh
*,Mb:Lxl
9{`T.o
?IQN/i
?39|nXT
v8l;7`
xQ*E6+
Q>H9VU<l
Z3Hl2r
%nZ{*4d
7=mp$r
BxMP"(U
y/y/y/y/y/y/y/y/
A88$(AA88,3A%
'EJaEY
e0~NZg
?05b|ZN[IvG
E,o)c
iO@yNo
hh%7f
i~%'Jt`
qL9cW^
)?^8|=}
)>*-rg
Ef{Ro>
WU-+Xdz
Y cDQj
cl3/2%U/O^
EORD;a
"ladEK2
[vg9oN
<oKu0q
}Wo[_j
@O+d^=
lPVX~OzhpNp
_$ygs7
tE2ORO
}*po-|
^1\&c=
Vv\v1Z
VVvfTT5Ckp
%2fR)3
f6C'$/w
HN{w$D
9^m6i
e\.xE{
Tl{zsjr
,.8]@jA
+e+w+{+
/R/`/C(FQ
'ROaK:[
& zR"CX
8gTg`g
Dd+SX5
7W>Zx$
I7u6xn
ToZo\o
JIiJ;I,<KV
;f;O^Q4
*/SbZY
7*/UZW
$3N1f
<O )aPW
0IUId4
[:B+Jibp
*b1b:%ML
R1c?56
ym}jSKjy-m
i0P\1F
XY8|<"x@
b@8[>P
w8%X7w
[,Z5km
0-n[-T
iZb|$bh
h;_0&v
#%zXNx
`.#Y)F6T
4M`T$b
RI&yo4
3A$%9{
yHBHIr()I\)e
c0emMI
4MAKp$
F"3l=,tC
4f-LD#
|rImms
eDq2Q6
>E4g Z
AO(768
)I'Q8)
h=fGL(/
r'0CquX
Gn._3q-[g
ZjQQlK
KeC?j$
=nZw4QQl9`0z
[\!#0!
xg/35$Y
b A pu(
G}oWCL
pbR)" 0
Dq%ZRo
kztI5Jq
Tn706
4IP%D>
Wwp\uDpd
aBPu 8
{W5i/A
]i%OT*
$$5$eC
[Qc=\Vi
A%^*\R
f#).:{
M@qkN!
#IXit],
QC>}Ym
6Y?f6$}
Jw'__b
K}0A8\=
<None>
PEND-USER LICENSE AGREEMENT FOR UNRELEASED MICROSOFT SOFTWARE
IMPORTANT-READ CAREFULLY: This Microsoft End-User License Agreement ("EULA") is a legal agreement between you (either an individual or a single entity) and Microsoft Corporation for the Microsoft unreleased software accompanying this EULA, which includes computer software and may include associated media, printed materials, and "online" or electronic documentation ("Software"). By installing, copying, or otherwise using the Software, you agree to be bound by the terms of this EULA. If you do not agree to the terms of this EULA, do not install, copy, or otherwise use the Software.
END-USER LICENSE AGREEMENT FOR UNRELEASED MICROSOFT SOFTWARE
GRANT OF LICENSE. Microsoft grants you a limited, non exclusive, non-transferrable, royalty free license to install and use an unlimited number of copies of the unreleased Software accompanying this EULA on computers residing on your premises, solely for your internal use in analyzing and troubleshooting other Microsoft software which is installed on your computers. Microsoft and its suppliers shall retain title and all ownership rights to the Software, and this EULA shall not be construed in any manner as transferring any rights of ownership or license to the Software or to the features or information therein, except as specifically stated herein.
UNRELEASED SOFTWARE; UPDATES AND MAINTENANCE. The Software is unreleased software and is not at the level of performance and compatibility of a final, generally available product offering. The Software may not operate correctly and may be substantially modified in the future. Microsoft may provide updates to the Software from time to time, but Microsoft shall have no obligation to provide maintenance or updates to you for Software licensed under this Agreement.
CONFIDENTIALITY. The Software, including its existence and features, and related information are proprietary and confidential information to Microsoft and its suppliers. You agree not to disclose or provide the Software, documentation, or any related information (including the Software features or the results of use or testing) to any third party without the express written consent of Microsoft. However, you may disclose confidential information in accordance with judicial or other governmental order, provided you shall give Microsoft reasonable written notice prior to such disclosure and shall comply with any applicable protective order or equivalent. Further, you shall not be liable to Microsoft for disclosure of information which you can prove (a) is already known to you without an obligation to maintain the same as confidential; (b) becomes publicly known through no wrongful act of yours; (c) is rightfully received from a third party without breach of an obligation of confidentiality owed to Microsoft
RESERVATION OF RIGHTS AND OWNERSHIP. Microsoft reserves all rights not expressly granted to you in this EULA. The Software is protected by copyright and other intellectual property laws and treaties. Microsoft or its suppliers own the title, copyright, and other intellectual property rights in the Software. The Software is licensed, not sold.
LIMITATIONS ON REVERSE ENGINEERING, DECOMPILATION, AND DISASSEMBLY. You may not reverse engineer, decompile, or disassemble the Software, except and only to the extent that such activity is expressly permitted by applicable law notwithstanding this limitation.
NO RENTAL/COMMERCIAL HOSTING. You may not rent, lease, lend or provide commercial hosting services with the Software.
DISCLAIMER OF WARRANTIES. TO THE MAXIMUM EXTENT PERMITTED BY APPLICABLE LAW, MICROSOFT AND ITS SUPPLIERS PROVIDE THE Software AND SUPPORT SERVICES (IF ANY) AS IS AND WITH ALL FAULTS, AND HEREBY DISCLAIM ALL OTHER WARRANTIES AND CONDITIONS, WHETHER EXPRESS, IMPLIED OR STATUTORY, INCLUDING, BUT NOT LIMITED TO, ANY (IF ANY) IMPLIED WARRANTIES, DUTIES OR CONDITIONS OF MERCHANTABILITY, OF FITNESS FOR A PARTICULAR PURPOSE, OF RELIABILITY OR AVAILABILITY, OF ACCURACY OR COMPLETENESS OF RESPONSES, OF RESULTS, OF WORKMANLIKE EFFORT, OF LACK OF VIRUSES, AND OF LACK OF NEGLIGENCE, ALL WITH REGARD TO THE Software, AND THE PROVISION OF OR FAILURE TO PROVIDE SUPPORT OR OTHER SERVICES, INFORMATION, Software, AND RELATED CONTENT THROUGH THE Software OR OTHERWISE ARISING OUT OF THE USE OF THE Software. ALSO, THERE IS NO WARRANTY OR CONDITION OF TITLE, QUIET ENJOYMENT, QUIET POSSESSION, CORRESPONDENCE TO DESCRIPTION OR NON-INFRINGEMENT WITH REGARD TO THE Software.
EXCLUSION OF INCIDENTAL, CONSEQUENTIAL AND CERTAIN OTHER DAMAGES. To the maximum extent permitted by applicable law, in no event shall Microsoft or its suppliers be liable for any special, incidental, punitive, indirect, or consequential damages whatsoever (including, but not limited to, damages for loss of profits or confidential or other information, for business interruption, for personal injury, for loss of privacy, for failure to meet any duty including of good faith or of reasonable care, for negligence, and for any other pecuniary or other loss whatsoever) arising out of or in any way related to the use of or inability to use the Software, the provision of or failure to provide support or other services, information, software, and related content through the Software or otherwise arising out of the use of the Software, or otherwise under or in connection with any provision of this EULA, even in the event of the fault, tort (including negligence), misrepresentation, strict liability, breach of contrac
LIMITATION OF LIABILITY AND REMEDIES. NOTWITHSTANDING ANY DAMAGES THAT YOU MIGHT INCUR FOR ANY REASON WHATSOEVER (INCLUDING, WITHOUT LIMITATION, ALL DAMAGES REFERENCED HEREIN AND ALL DIRECT OR GENERAL DAMAGES IN CONTRACT OR ANYTHING ELSE), THE ENTIRE LIABILITY OF MICROSOFT AND ANY OF ITS SUPPLIERS UNDER ANY PROVISION OF THIS EULA AND YOUR EXCLUSIVE REMEDY HEREUNDER SHALL BE LIMITED TO THE GREATER OF THE ACTUAL DAMAGES YOU INCUR IN REASONABLE RELIANCE ON THE Software UP TO THE AMOUNT ACTUALLY PAID BY YOU FOR THE Software OR US$5.00. THE FOREGOING LIMITATIONS, EXCLUSIONS AND DISCLAIMERS SHALL APPLY TO THE MAXIMUM EXTENT PERMITTED BY APPLICABLE LAW, EVEN IF ANY REMEDY FAILS ITS ESSENTIAL PURPOSE.
TERMINATION. Without prejudice to any other rights, Microsoft may terminate this EULA if you fail to comply with the terms and conditions of this EULA. In such event, you must destroy all copies of the Software and all of its component parts.
U.S. GOVERNMENT RIGHTS. All Software provided to the U.S. Government pursuant to solicitations issued on or after December 1, 1995 is provided with the commercial license rights and restrictions described elsewhere herein. All Software provided to the U.S. Government pursuant to solicitations issued prior to December 1, 1995 is provided with "Restricted Rights" as provided for in FAR, 48 CFR 52.227-14 (JUNE 1987) or DFAR, 48 CFR 252.227-7013 (OCT 1988), as applicable.
EXPORT RESTRICTIONS. Recipient acknowledges that the Software is subject to U.S. export jurisdiction. Recipient agrees to comply with all applicable international and national laws that apply to the Software, including the U.S. Export Administration Regulations, as well as end-user, end-use, and destination restrictions issued by U.S. and other governments. For additional information see <http://www.microsoft.com/exporting/>.
GOVERNING LAW/JURISDICTION/ATTORNEYS
FEES. This Agreement shall be construed and controlled by the laws of the State of Washington, and Recipient consents to exclusive jurisdiction and venue in the federal courts sitting in King County, Washington, unless no federal jurisdiction exists, in which case Recipient consents to exclusive jurisdiction and venue in the Superior Court of King County, Washington. Recipient waives all defenses of lack of personal jurisdiction and forum non conveniens. Process may be served on either party in the manner authorized by applicable law or court rule. If either party employs attorneys to enforce any rights arising out of or relating to this Agreement, the prevailing party shall be entitled to recover its reasonable attorneys' fees, costs and other expenses.
ENTIRE AGREEMENT; SEVERABILITY. This Agreement constitutes the complete and exclusive agreement between Microsoft and you with respect to the subject matter hereof, and supersedes all prior or contemporaneous oral or written communications, proposals, representations, understandings, or agreements not specifically incorporated herein. If any provision of this Agreement is held to be void, invalid, unenforceable or illegal, the other provisions shall continue in full force and effect.
<None>
"cleanup.exe"
.NET Framework Setup Cleanup Utility
PADDo you want to run the .NET Framework Setup Cleanup Utility?
PAD<None>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" processorArchitecture="X86" name="cleanup_tool.exe" type="win32"></assemblyIdentity>
<description>Microsoft .NET Framework installation cleanup tool</description>
<ms_asmv2:trustInfo xmlns:ms_asmv2="urn:schemas-microsoft-com:asm.v2">
<ms_asmv2:security>
<ms_asmv2:requestedPrivileges>
<ms_asmv2:requestedExecutionLevel level="requireAdministrator"></ms_asmv2:requestedExecutionLevel>
</ms_asmv2:requestedPrivileges>
</ms_asmv2:security>
</ms_asmv2:trustInfo>
<compatibility xmlns="urn:schemas-microsoft-com:compatibility.v1">
<application>
<supportedOS Id="{8e0f7a12-bfb3-4fe8-b9a5-48fd50a15a9a}"></supportedOS>
<supportedOS Id="{1f676c76-80e1-4239-95bb-83d0f6d0da78}"></supportedOS>
<supportedOS Id="{4a2f28e3-53b9-4441-ba9c-d69d4a4a6e38}"></supportedOS>
<supportedOS Id="{35138b9a-5d96-4fbd-8e2d-a2440225f93a}"></supportedOS>
<supportedOS Id="{e2011457-1546-43c5-a5fe-008deee3d3f0}"></supportedOS>
</application>
</compatibility>
</assembly>PADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDING
ADMQCMD
CABINET
EXTRACTOPT
FILESIZES
FINISHMSG
LICENSE
PACKINSTSPACE
POSTRUNPROGRAM
REBOOT
RUNPROGRAM
SHOWWINDOW
UPROMPT
USRQCMD
License
MS Shell Dlg
Please read the following license agreement. Press the PAGE DOWN key to see the rest of the agreement.
Do you accept all of the terms of the preceding License Agreement? If you choose No, Install will close. To install you must accept this agreement.
Temporary folder
MS Shell Dlg
Please type the location where you want to place the extracted files.
&Browse...
Cancel
Overwrite file
MS Shell Dlg
Do you want to overwrite the file:
Yes To &All
Extract
MS Shell Dlg
&Cancel
Extracting
Initializing... Please wait...
msctls_progress32
Generic1
SysAnimate32
Extract
MS Shell Dlg
&Cancel
Extracting
Initializing... Please wait...
Warning
MS Shell Dlg
&Continue
Do you want to continue?
4Please select a folder to store the extracted files.
CFailed to get disk space information from: %s.
System Message: %s.&A required resource cannot be located. Are you sure you want to cancel?
8Unable to retrieve operating system version information.!Memory allocation request failed.
#Unable to create extraction thread.
Cabinet is not valid.
Filetable full.%Can not change to destination folder.
Setup could not find a drive with %s KB free disk space to install the program. Please free up some space first and press RETRY or press CANCEL to exit setup.KThat folder is invalid. Please make sure the folder exists and is writable.IYou must specify a folder with fully qualified pathname or choose Cancel.!Could not update folder edit box.5Could not load functions required for browser dialog.7Could not load Shell32.dll required for browser dialog.
(Error creating process <%s>. Reason: %s1The cluster size in this system is not supported.,A required resource appears to be corrupted.QWindows 95 or Windows NT 4.0 Beta 2 or greater is required for this installation.
Error loading %shGetProcAddress() failed on function '%s'. Possible reason: incorrect version of advpack.dll being used./Windows 95 or Windows NT is required to install
Could not create folder '%s'
To install this program, you need %s KB disk space on drive %s. It is recommended that you free up the required disk space before you continue.
Do you still want to continue?
Error retrieving Windows folder
$NT Shutdown: OpenProcessToken error.)NT Shutdown: AdjustTokenPrivileges error.!NT Shutdown: ExitWindowsEx error.}Extracting file failed. It is most likely caused by low memory (low disk space for swapping file) or corrupted Cabinet file.aThe setup program could not retrieve the volume information for drive (%s) .
System message: %s.xSetup could not find a drive with %s KB free disk space to install the program. Please free up some space and try again.eThe installation program appears to be damaged or corrupted. Contact the vendor of this application.
;Command line option syntax error. Type Command /? for Help.
Command line options:
/Q -- Quiet modes for package,
/T:<full path> -- Specifies temporary working folder,
/C -- Extract files only to the folder when used also with /T.
/C:<Cmd> -- Override Install Command defined by author.
sYou must restart your computer before the new settings will take effect.
Do you want to restart your computer now?
eAnother copy of the '%s' package is already running on your system. Do you want to run another copy?
Could not find the file: %s.
You do not have administrator privileges on this machine. Some installations cannot be completed correctly unless they are run by an administrator.
:The folder '%s' does not exist. Do you want to create it?hAnother copy of the '%s' package is already running on your system. You can only run one copy at a time.OThe '%s' package is not compatible with the version of Windows you are running.SThe '%s' package is not compatible with the version of the file: %s on your system.
VS_VERSION_INFO
StringFileInfo
040904B0
CompanyName
Microsoft Corporation
FileDescription
Win32 Cabinet Self-Extractor
FileVersion
6.00.3790.0 (srv03_rtm.030324-2048)
InternalName
Wextract
LegalCopyright
Microsoft Corporation. All rights reserved.
OriginalFilename
WEXTRACT.EXE
ProductName
Microsoft
Windows
Operating System
ProductVersion
6.00.3790.0
VarFileInfo
Translation
Antivirus Signature
Bkav Clean
Lionic Clean
tehtris Clean
DrWeb Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
McAfee Clean
Cylance Clean
Zillya Clean
Sangfor Clean
K7AntiVirus Clean
BitDefender Clean
K7GW Clean
Cybereason Clean
BitDefenderTheta Clean
VirIT Clean
Cyren Clean
Symantec Clean
Elastic Clean
ESET-NOD32 Clean
APEX Malicious
Paloalto Clean
Cynet Clean
Kaspersky Clean
Alibaba Clean
NANO-Antivirus Clean
SUPERAntiSpyware Clean
MicroWorld-eScan Clean
Tencent Clean
Sophos Clean
F-Secure Clean
Baidu Clean
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition Clean
Trapmine malicious.moderate.ml.score
FireEye Clean
Emsisoft Clean
Ikarus Clean
Jiangmin Clean
Webroot Clean
Avira Clean
MAX Clean
Antiy-AVL Clean
Kingsoft Clean
Microsoft Clean
Gridinsoft Clean
Xcitium Clean
Arcabit Clean
ViRobot Clean
ZoneAlarm Clean
GData Clean
Google Clean
AhnLab-V3 Clean
Acronis Clean
ALYac Clean
TACHYON Clean
DeepInstinct Clean
VBA32 Clean
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Trojan.Generic@AI.82 (RDML:ghqO4y8+S0gukFIfWfS1BQ)
Yandex Clean
SentinelOne Clean
MaxSecure Trojan.Malware.300983.susgen
Fortinet Clean
AVG Clean
Avast Clean
CrowdStrike Clean
No IRMA results available.