Static | ZeroBOX

PE Compile Time

2024-11-18 21:48:51

PE Imphash

3d95adbf13bbe79dc24dccb401c12091

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0008b54f 0x0008b600 6.68041374921
.rdata 0x0008d000 0x0002cc42 0x0002ce00 5.77019233319
.data 0x000ba000 0x00009d54 0x00006200 2.00269109997
.rsrc 0x000c4000 0x0003abe4 0x0003ac00 7.79703981498
.reloc 0x000ff000 0x0000a474 0x0000a600 5.24542665412

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x000ca038 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x000ca038 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x000ca038 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x000ca038 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x000ca038 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x000ca038 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x000ca038 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x000ca038 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x000ca038 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x000ca038 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_ICON 0x000ca038 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_UK GLS_BINARY_LSB_FIRST
RT_MENU 0x000ca4a0 0x00000050 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_STRING 0x000cc660 0x00000158 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_STRING 0x000cc660 0x00000158 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_STRING 0x000cc660 0x00000158 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_STRING 0x000cc660 0x00000158 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_STRING 0x000cc660 0x00000158 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_STRING 0x000cc660 0x00000158 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_STRING 0x000cc660 0x00000158 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_RCDATA 0x000cc7b8 0x00031eeb LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x000fe744 0x00000014 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_GROUP_ICON 0x000fe744 0x00000014 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_GROUP_ICON 0x000fe744 0x00000014 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_GROUP_ICON 0x000fe744 0x00000014 LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_VERSION 0x000fe758 0x000000dc LANG_ENGLISH SUBLANG_ENGLISH_UK data
RT_MANIFEST 0x000fe834 0x000003b0 LANG_ENGLISH SUBLANG_ENGLISH_UK ASCII text, with CRLF line terminators

Imports

Library WSOCK32.dll:
0x48d7b0 __WSAFDIsSet
0x48d7b4 recv
0x48d7b8 send
0x48d7bc setsockopt
0x48d7c0 ntohs
0x48d7c4 recvfrom
0x48d7c8 select
0x48d7cc WSAStartup
0x48d7d0 htons
0x48d7d4 accept
0x48d7d8 listen
0x48d7dc bind
0x48d7e0 closesocket
0x48d7e4 connect
0x48d7e8 WSACleanup
0x48d7ec ioctlsocket
0x48d7f0 sendto
0x48d7f4 WSAGetLastError
0x48d7f8 inet_addr
0x48d7fc gethostbyname
0x48d800 gethostname
0x48d804 socket
Library VERSION.dll:
0x48d754 GetFileVersionInfoW
0x48d758 VerQueryValueW
Library WINMM.dll:
0x48d7a0 timeGetTime
0x48d7a4 waveOutSetVolume
0x48d7a8 mciSendStringW
Library COMCTL32.dll:
0x48d088 ImageList_Destroy
0x48d08c ImageList_Remove
0x48d094 ImageList_BeginDrag
0x48d098 ImageList_DragEnter
0x48d09c ImageList_DragLeave
0x48d0a0 ImageList_EndDrag
0x48d0a4 ImageList_DragMove
0x48d0a8 ImageList_Create
Library MPR.dll:
0x48d3e8 WNetUseConnectionW
0x48d3f0 WNetGetConnectionW
0x48d3f4 WNetAddConnection2W
Library WININET.dll:
0x48d764 InternetReadFile
0x48d768 InternetCloseHandle
0x48d76c InternetOpenW
0x48d770 InternetSetOptionW
0x48d774 InternetCrackUrlW
0x48d778 HttpQueryInfoW
0x48d780 HttpOpenRequestW
0x48d784 HttpSendRequestW
0x48d788 FtpOpenFileW
0x48d78c FtpGetFileSize
0x48d790 InternetOpenUrlW
0x48d794 InternetConnectW
Library PSAPI.DLL:
Library IPHLPAPI.DLL:
0x48d154 IcmpCreateFile
0x48d158 IcmpCloseHandle
0x48d15c IcmpSendEcho
Library USERENV.dll:
0x48d738 UnloadUserProfile
0x48d744 LoadUserProfileW
Library UxTheme.dll:
0x48d74c IsThemeActive
Library KERNEL32.dll:
0x48d164 HeapAlloc
0x48d168 GetProcessHeap
0x48d16c HeapFree
0x48d170 Sleep
0x48d174 GetCurrentThreadId
0x48d178 MultiByteToWideChar
0x48d17c MulDiv
0x48d180 GetVersionExW
0x48d184 GetSystemInfo
0x48d188 FreeLibrary
0x48d18c LoadLibraryA
0x48d190 GetProcAddress
0x48d194 SetErrorMode
0x48d198 GetModuleFileNameW
0x48d19c WideCharToMultiByte
0x48d1a0 lstrcpyW
0x48d1a4 lstrlenW
0x48d1a8 GetModuleHandleW
0x48d1b0 VirtualFreeEx
0x48d1b4 OpenProcess
0x48d1b8 VirtualAllocEx
0x48d1bc WriteProcessMemory
0x48d1c0 ReadProcessMemory
0x48d1c4 CreateFileW
0x48d1c8 SetFilePointerEx
0x48d1cc ReadFile
0x48d1d0 WriteFile
0x48d1d4 FlushFileBuffers
0x48d1d8 TerminateProcess
0x48d1e0 Process32FirstW
0x48d1e4 Process32NextW
0x48d1e8 SetFileTime
0x48d1ec GetFileAttributesW
0x48d1f0 FindFirstFileW
0x48d1f4 FindClose
0x48d1f8 GetLongPathNameW
0x48d1fc GetCurrentThread
0x48d200 FindNextFileW
0x48d204 MoveFileW
0x48d208 CopyFileW
0x48d20c CreateDirectoryW
0x48d210 RemoveDirectoryW
0x48d214 SetSystemPowerState
0x48d21c FindResourceW
0x48d220 LoadResource
0x48d224 LockResource
0x48d228 SizeofResource
0x48d22c EnumResourceNamesW
0x48d230 OutputDebugStringW
0x48d234 GetTempPathW
0x48d238 GetTempFileNameW
0x48d23c DeviceIoControl
0x48d240 GetLocalTime
0x48d244 CompareStringW
0x48d24c WaitForSingleObject
0x48d254 GetStdHandle
0x48d258 CreatePipe
0x48d25c InterlockedExchange
0x48d260 TerminateThread
0x48d264 LoadLibraryExW
0x48d268 FindResourceExW
0x48d26c VirtualFree
0x48d270 FormatMessageW
0x48d274 GetExitCodeProcess
0x48d29c GetDriveTypeW
0x48d2a0 GetDiskFreeSpaceExW
0x48d2a4 GetDiskFreeSpaceW
0x48d2ac SetVolumeLabelW
0x48d2b0 CreateHardLinkW
0x48d2b4 SetFileAttributesW
0x48d2b8 GetShortPathNameW
0x48d2bc CreateEventW
0x48d2c0 SetEvent
0x48d2cc GlobalLock
0x48d2d0 GlobalUnlock
0x48d2d4 GlobalAlloc
0x48d2d8 GetFileSize
0x48d2dc GlobalFree
0x48d2e4 Beep
0x48d2e8 GetSystemDirectoryW
0x48d2ec GetComputerNameW
0x48d2f4 GetCurrentProcessId
0x48d2fc CreateProcessW
0x48d300 SetPriorityClass
0x48d304 LoadLibraryW
0x48d308 VirtualAlloc
0x48d30c CloseHandle
0x48d310 GetLastError
0x48d314 GetFullPathNameW
0x48d31c IsDebuggerPresent
0x48d324 lstrcmpiW
0x48d328 RaiseException
0x48d338 CreateThread
0x48d33c DuplicateHandle
0x48d344 GetCurrentProcess
0x48d348 ExitProcess
0x48d34c GetModuleHandleExW
0x48d350 ExitThread
0x48d358 ResumeThread
0x48d35c GetCommandLineW
0x48d364 HeapSize
0x48d368 IsValidCodePage
0x48d36c GetACP
0x48d370 GetOEMCP
0x48d374 GetCPInfo
0x48d378 SetLastError
0x48d384 TlsAlloc
0x48d388 TlsGetValue
0x48d38c TlsSetValue
0x48d390 TlsFree
0x48d394 GetStartupInfoW
0x48d398 GetStringTypeW
0x48d39c SetStdHandle
0x48d3a0 GetFileType
0x48d3a4 GetConsoleCP
0x48d3a8 GetConsoleMode
0x48d3ac RtlUnwind
0x48d3b0 ReadConsoleW
0x48d3b4 SetFilePointer
0x48d3bc GetDateFormatW
0x48d3c0 GetTimeFormatW
0x48d3c4 LCMapStringW
0x48d3d0 HeapReAlloc
0x48d3d4 WriteConsoleW
0x48d3d8 SetEndOfFile
0x48d3dc DeleteFileW
Library USER32.dll:
0x48d4b4 SetWindowPos
0x48d4b8 GetCursorInfo
0x48d4bc RegisterHotKey
0x48d4c0 ClientToScreen
0x48d4c8 IsCharAlphaW
0x48d4cc IsCharAlphaNumericW
0x48d4d0 IsCharLowerW
0x48d4d4 IsCharUpperW
0x48d4d8 GetMenuStringW
0x48d4dc GetSubMenu
0x48d4e0 GetCaretPos
0x48d4e4 IsZoomed
0x48d4e8 MonitorFromPoint
0x48d4ec GetMonitorInfoW
0x48d4f0 SetWindowLongW
0x48d4f8 FlashWindow
0x48d4fc GetClassLongW
0x48d504 IsDialogMessageW
0x48d508 GetSysColor
0x48d50c InflateRect
0x48d510 DrawFocusRect
0x48d514 DrawTextW
0x48d518 FrameRect
0x48d51c DrawFrameControl
0x48d520 FillRect
0x48d524 PtInRect
0x48d530 SetCursor
0x48d534 GetWindowDC
0x48d538 GetSystemMetrics
0x48d53c DrawMenuBar
0x48d540 GetActiveWindow
0x48d544 CharNextW
0x48d548 wsprintfW
0x48d54c RedrawWindow
0x48d550 DestroyMenu
0x48d554 SetMenu
0x48d55c CreateMenu
0x48d560 IsDlgButtonChecked
0x48d564 DefDlgProcW
0x48d568 CallWindowProcW
0x48d56c ReleaseCapture
0x48d570 SetCapture
0x48d574 MonitorFromRect
0x48d578 LoadImageW
0x48d580 mouse_event
0x48d584 ExitWindowsEx
0x48d588 SetActiveWindow
0x48d58c FindWindowExW
0x48d590 EnumThreadWindows
0x48d594 SetMenuDefaultItem
0x48d598 InsertMenuItemW
0x48d59c IsMenu
0x48d5a0 TrackPopupMenuEx
0x48d5a4 GetCursorPos
0x48d5a8 CopyImage
0x48d5ac CheckMenuRadioItem
0x48d5b0 GetMenuItemID
0x48d5b4 GetMenuItemCount
0x48d5b8 SetMenuItemInfoW
0x48d5bc GetMenuItemInfoW
0x48d5c0 SetForegroundWindow
0x48d5c4 IsIconic
0x48d5c8 FindWindowW
0x48d5cc UnregisterHotKey
0x48d5d0 keybd_event
0x48d5d4 SendInput
0x48d5d8 GetAsyncKeyState
0x48d5dc SetKeyboardState
0x48d5e0 GetKeyboardState
0x48d5e4 GetKeyState
0x48d5e8 VkKeyScanW
0x48d5ec LoadStringW
0x48d5f0 DialogBoxParamW
0x48d5f4 MessageBeep
0x48d5f8 EndDialog
0x48d5fc SendDlgItemMessageW
0x48d600 GetDlgItem
0x48d604 SetWindowTextW
0x48d608 CopyRect
0x48d60c ReleaseDC
0x48d610 GetDC
0x48d614 EndPaint
0x48d618 BeginPaint
0x48d61c GetClientRect
0x48d620 GetMenu
0x48d624 DestroyWindow
0x48d628 EnumWindows
0x48d62c GetDesktopWindow
0x48d630 IsWindow
0x48d634 IsWindowEnabled
0x48d638 IsWindowVisible
0x48d63c EnableWindow
0x48d640 InvalidateRect
0x48d644 GetWindowLongW
0x48d64c AttachThreadInput
0x48d650 GetFocus
0x48d654 ScreenToClient
0x48d658 SendMessageTimeoutW
0x48d65c EnumChildWindows
0x48d660 CharUpperBuffW
0x48d664 GetClassNameW
0x48d668 GetParent
0x48d66c GetDlgCtrlID
0x48d670 SendMessageW
0x48d674 MapVirtualKeyW
0x48d678 PostMessageW
0x48d67c GetWindowRect
0x48d684 CloseDesktop
0x48d688 CloseWindowStation
0x48d68c OpenDesktopW
0x48d698 OpenWindowStationW
0x48d6a0 AdjustWindowRectEx
0x48d6a4 SetRect
0x48d6a8 SetClipboardData
0x48d6ac EmptyClipboard
0x48d6b4 CloseClipboard
0x48d6b8 GetClipboardData
0x48d6c0 OpenClipboard
0x48d6c4 BlockInput
0x48d6c8 GetMessageW
0x48d6cc LockWindowUpdate
0x48d6d0 DispatchMessageW
0x48d6d4 TranslateMessage
0x48d6d8 DeleteMenu
0x48d6dc PeekMessageW
0x48d6e0 MessageBoxW
0x48d6e4 DefWindowProcW
0x48d6e8 MoveWindow
0x48d6ec SetFocus
0x48d6f0 PostQuitMessage
0x48d6f4 KillTimer
0x48d6f8 CreatePopupMenu
0x48d700 SetTimer
0x48d704 ShowWindow
0x48d708 CreateWindowExW
0x48d70c RegisterClassExW
0x48d710 LoadIconW
0x48d714 LoadCursorW
0x48d718 GetSysColorBrush
0x48d71c GetForegroundWindow
0x48d720 MessageBoxA
0x48d724 DestroyIcon
0x48d72c CharLowerBuffW
0x48d730 GetWindowTextW
Library GDI32.dll:
0x48d0c4 SetPixel
0x48d0c8 DeleteObject
0x48d0d0 ExtCreatePen
0x48d0d4 StrokeAndFillPath
0x48d0d8 StrokePath
0x48d0dc GetDeviceCaps
0x48d0e0 CloseFigure
0x48d0e4 LineTo
0x48d0e8 AngleArc
0x48d0f0 CreateCompatibleDC
0x48d0f4 MoveToEx
0x48d0f8 Ellipse
0x48d0fc PolyDraw
0x48d100 BeginPath
0x48d104 SelectObject
0x48d108 StretchBlt
0x48d10c GetDIBits
0x48d110 DeleteDC
0x48d114 GetPixel
0x48d118 CreateDCW
0x48d11c GetStockObject
0x48d120 Rectangle
0x48d124 SetViewportOrgEx
0x48d128 GetObjectW
0x48d12c SetBkMode
0x48d130 RoundRect
0x48d134 SetBkColor
0x48d138 CreatePen
0x48d13c CreateSolidBrush
0x48d140 SetTextColor
0x48d144 CreateFontW
0x48d148 GetTextFaceW
0x48d14c EndPath
Library COMDLG32.dll:
0x48d0b8 GetSaveFileNameW
0x48d0bc GetOpenFileNameW
Library ADVAPI32.dll:
0x48d000 GetAclInformation
0x48d004 RegEnumValueW
0x48d008 RegDeleteValueW
0x48d00c RegDeleteKeyW
0x48d010 RegEnumKeyExW
0x48d014 RegSetValueExW
0x48d018 RegCreateKeyExW
0x48d01c GetUserNameW
0x48d020 RegOpenKeyExW
0x48d024 RegCloseKey
0x48d028 RegQueryValueExW
0x48d02c RegConnectRegistryW
0x48d034 InitializeAcl
0x48d03c OpenThreadToken
0x48d040 OpenProcessToken
0x48d048 DuplicateTokenEx
0x48d054 GetLengthSid
0x48d058 CopySid
0x48d060 LogonUserW
0x48d06c FreeSid
0x48d070 GetTokenInformation
0x48d07c AddAce
0x48d080 GetAce
Library SHELL32.dll:
0x48d474 DragQueryPoint
0x48d478 ShellExecuteExW
0x48d47c DragQueryFileW
0x48d480 SHEmptyRecycleBinW
0x48d488 SHBrowseForFolderW
0x48d48c SHCreateShellItem
0x48d490 SHGetDesktopFolder
0x48d498 SHGetFolderPathW
0x48d49c SHFileOperationW
0x48d4a0 ExtractIconExW
0x48d4a4 Shell_NotifyIconW
0x48d4a8 ShellExecuteW
0x48d4ac DragFinish
Library ole32.dll:
0x48d80c CoTaskMemAlloc
0x48d810 CoTaskMemFree
0x48d814 CLSIDFromString
0x48d818 ProgIDFromCLSID
0x48d81c CLSIDFromProgID
0x48d824 MkParseDisplayName
0x48d82c CoCreateInstance
0x48d830 IIDFromString
0x48d834 StringFromGUID2
0x48d83c CoInitialize
0x48d840 CoUninitialize
0x48d84c CoGetObject
0x48d854 CoCreateInstanceEx
0x48d858 CoSetProxyBlanket
Library OLEAUT32.dll:
0x48d3fc RegisterTypeLib
0x48d400 LoadTypeLibEx
0x48d404 VariantCopyInd
0x48d408 SysReAllocString
0x48d40c SysFreeString
0x48d41c SafeArrayAccessData
0x48d420 SafeArrayAllocData
0x48d424 UnRegisterTypeLib
0x48d42c SysAllocString
0x48d430 SysStringLen
0x48d438 VarR8FromDec
0x48d43c SafeArrayGetVartype
0x48d440 OleLoadPicture
0x48d448 VariantCopy
0x48d44c VariantClear
0x48d450 CreateDispTypeInfo
0x48d454 CreateStdDispatch
0x48d458 DispCallFunc
0x48d45c VariantChangeType
0x48d464 VariantInit

!This program cannot be run in DOS mode.
`.rdata
@.data
@.reloc
+t\HHtT
j+Yj^f;
~89~4~)
WWjdh,
PWWWWh
u h$.K
u h$.K
L$$9N@
t4j"Yf;
~+FVSj
D$49G@
\$ j|Zf9
L$LjxXf
YYj!Yf;
`~EjaX;
^$9^,u
D$$;D$0
L$X;|$8
 !"#$
 !"#$%%%%%%&&'()*+%%%%%%&&'()*+,,,,,,--./012RRRRRRRRRRRR3345566789::::;<=<=>?>@ABC>@ABCRRRRRDEFGHIJKLMNO
Yj?Yj0Z
|$`AU3!
?#tRf9t
Ht<Ht>Ht#H
tgHuM95
t-HuC9
D$ PVj
D$$PVj
D$@;D$Dr
9D$xu;
9t$xv7
F;t$xr
|$L9D$4
F;t$Xr
9t$ v-
F;t$ r
f98t?j
9^Xt99^\tA
t$8]4t
@SVWjw
Ht;Ht.H
_8C0tN
u h$.K
u h$.K
PPPPGW
SVWjA_jZ+
uBjAYjZ+
SVjA[jZ^+
jAZjZ^+
9E v\PWj
9u(v?VSj
YYHtIHt8
HHtPHHt-H
HthHt3
Genuu_
ineIuV
nteluM3
~pjCXf
uHjAXf;
uWjAXf;
htHjlY;
HHtXHHt
nt'joY;
YYjgXf9
>0t<Nj0X
+tIIt
-t*j0X;
+t"HHt
jdh(nK
j@j _W
HHtVHHt
PP9E u
URPQQh
xy;5<"L
f- 8f=
f-00f=
f-00f=
tfHtWHtHHt/
SSPQSW
tx8tt
?:uBGW
jA[jZZ+
QQSVWh
j"_f9y
~';_t|%3
,SVWj0X
Wj0XPV
Ht+Ht$Ht
HtHHt
tHHt*Ht#
;t$,v-
UQPXY]Y[
bWWWWj
+tHHt
+t"HHt
HAO8t
j$Xj(f
Mj$Xj(f
&j$Xj(f
Cj$Xj(f
f;H,sC
Gf;x,r
Gf;x,r
t$j\Xf9
\SVWQQ
SSh8*K
QQSVWh
u3SVh+
j#_f98u
t1j;Yf;
t)j]Yf;
D$ +D$
D$$+D$
uDh0,K
u,hH,K
Q,8^=u
^<9^4t
^,9^0t
^09^(t
f;D$hu
9f;D$lu'Iy/
|$<9T$4}+
&f;D$8u
f;D$hu
{f;D$luiIyq
|$<9D$T~e
8f;D$8u
G@h0/K
f91t,SWj,[j.
|$<9D$$
t$<^f;
t$4f9D$<uM
t$0QVPR
D$<;D$$
t9|$Pt
|$jZ;
8jXf;
Oj XCf;
j XAf9
Oj;_f;
j;XCf9
~%j;[f9
j;_f9;j
t$j'Zf;
<"t|<%tx<'tt<$tp<&tl<!th<otd<]t`<[t\<\tX<
tP<_tL<
G'QSPh
G(QSPh
G$QSPj
G%QSPj
G)QSPj[
G'QSPh
G(QSPh
G$QSPj
G%QSPj
G)QSPj[
DSVWj,3
<SVWj,
PPPPGW
(j.^f9
SVWj*X3
PSSSSSSh
tEhT8K
t4hd8K
YSPVWj
PPPPVWPP
QQSPVWQQ
D$,Yu)
JtsJJt8
Ht^Ht)Ht
HtYHt!
u+Sj)^j
;GLujDj$X+
tmht2K
PWWWWW
WWWWWh
t(h(;K
HHt@Ht3Ht&Ht
Yj\Yf9
D$0ht2K
t$ SSj
f94Xu=
t@Ht'Ht
D$<Phh
t7Ht"Ht
Nt,NNt
tfHtYHt8Ht,Ht
HtQHtL
QQSVW3
BtFHHt>
t8HHt0
HtIHtAHuFj
D$<PSW
D$<PQW
CSh8=K
D$8PQQ
u&VVWSh
VVVhP=K
PPPPGW
@9D$ v=
t$0;t$$t"F
u h$.K
jG^f9p
Gt.Ht$
t5jGYf;
t-jOYf;
t jHYf;
j3Zf9P
tKHt:HuQ
@uOAj3
t.jGZf;
t&jOZf;
j3Zf9P
j5Yf9H
RtMHt0HtHt
u h$.K
+jHXf;
j%YFf;
j$Yj@FZf;
D$0;D$|
X+D$$PW
9u 8]
j;YFf9
t/Ht%Ht
u h$.K
SVWjD^V3
9t$<t0
j\^f90uJj
f90u;j
HthHtSHt?H
HtEHt#Ht
t"hx2K
L$,hlJK
QQQQPVh
L$PQVh2
L$PQVh9
t$H+t$@
D$L+D$Dj
L$<+L$
D$4+D$,
D$,+D$$S
\$(+\$
|$,+|$$
QQSVWj$
f9t^SQ
f91t%QV
4SVWj,
8SVWj,3
PVhlKK
QQQQQP
SSSSPSh
tCHt8HuO
tDf91t?
@PPj!j
u<@PPj!j
uS9q4uN
Wj!j j
HtZHtEHt2
D$\PVhL
HHtPHt,H
HHt,Ht,
)GHjG3
PPj PPP
vphHKK
D$(PVS
T$L;t$
D$\PWV
;|$<}+
+G<+W@
D$TPSh>
D$TPSh>
D$|PShK
D$TPSh>
D$@PSh
D$|PShK
D$(PSh
D$TPSh>
D$0Ft6
uLPPRj
tXj]Zf
jHX_^[
SVWj0Zf;
rEj9_f;
SVWj0[3
t4HHt
|DB\Yt
t5j'Zf;
|$dEA06
D$Lj;Xf
D$@;D$4
PSSShl
PVSShl
HHt?HHu7
t/Ht%H
Hu+Iy2
HuqIyx
um8D$
~Bj _j.Y
T$4+|$
QPQWVS
QPQWVS
QPQWVS
QPQWVS
7t;Ht5Ht"H
[r>f9U
'tdj0Yj9Xj
tHj9[j-^f;E
j-Yf9N
[r0f9E
>}uQ9]
r<j7Zf;
B9A vL
B9A vL
E(GC;x0
GP;WL~
AP;yL~
t;;J s%
}l;C|sB
t$;C|r
t.;S|r)
;K|s'f
;K|s$f
(;K|s-f
;K|s$f
;K|s$f
-;K|s5f
t4;C|r/
;K|s%f
t4;C|r/
;K|s%f
}V;K|s,
QQQQQ3
bad allocation
CorExitProcess
RoInitialize
RoUninitialize
Unknown exception
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
InitializeCriticalSectionEx
CreateSemaphoreExW
SetThreadStackGuarantee
CreateThreadpoolTimer
SetThreadpoolTimer
WaitForThreadpoolTimerCallbacks
CloseThreadpoolTimer
CreateThreadpoolWait
SetThreadpoolWait
CloseThreadpoolWait
FlushProcessWriteBuffers
FreeLibraryWhenCallbackReturns
GetCurrentProcessorNumber
GetLogicalProcessorInformation
CreateSymbolicLinkW
SetDefaultDllDirectories
EnumSystemLocalesEx
CompareStringEx
GetDateFormatEx
GetLocaleInfoEx
GetTimeFormatEx
GetUserDefaultLocaleName
IsValidLocaleName
LCMapStringEx
GetCurrentPackageId
(null)
`h````
xpxxxx
_hypot
_nextafter
]vQ<)8
|)P!?Ua0
Eb2]A=
u?^p?o4
y1~?|"
?x+s7
?5Od%
?|I7Z#
>,'1D=
?g)([|X>=
~U`?K
:h"?bC
@H#?43
Ax#?uN}*
r7Yr7=
F0$?3=1
H`$?h|
&?~YK|
sU0&?W
<8bunz8
?#%X.y
F||<##
<@En[vP
<8bunz8
l,kg<i
<@En[vP
?Dj0Q:W$=
5s3R6=
RUUUUU
?ZEM-'^
?{yK+;
?765@Z
?e')lW
UUUUUU
333333
?333333
?UUUUUU
?$rxxx
?ZEM-'^
?{yK+;
?765@Z
?e')lW
UUUUUU
?333333
?333333
?UUUUUU
?$rxxx
?UUUUUU
|u?!u$
Nu?-HF
d? cf>
&2@UUUUUU
UUUUUU
#wi#:=
&2@UUUUUU
Nu?-HF
?uZEeu
?uZEeu
?UUUUUU
?UUUUUU
?uZEeu
?uZEeu
?UUUUUU
?UUUUUU
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
MessageBoxW
GetActiveWindow
GetLastActivePopup
GetUserObjectInformationW
GetProcessWindowStation
`h`hhh
xppwpp
CreateFile2
i^^?(>
Y:/(A6>
__based(
__cdecl
__pascal
__stdcall
__thiscall
__fastcall
__clrcall
__eabi
__ptr64
__restrict
__unaligned
restrict(
delete
operator
`vftable'
`vbtable'
`vcall'
`typeof'
`local static guard'
`string'
`vbase destructor'
`vector deleting destructor'
`default constructor closure'
`scalar deleting destructor'
`vector constructor iterator'
`vector destructor iterator'
`vector vbase constructor iterator'
`virtual displacement map'
`eh vector constructor iterator'
`eh vector destructor iterator'
`eh vector vbase constructor iterator'
`copy constructor closure'
`udt returning'
`local vftable'
`local vftable constructor closure'
new[]
delete[]
`omni callsig'
`placement delete closure'
`placement delete[] closure'
`managed vector constructor iterator'
`managed vector destructor iterator'
`eh vector copy constructor iterator'
`eh vector vbase copy constructor iterator'
`dynamic initializer for '
`dynamic atexit destructor for '
`vector copy constructor iterator'
`vector vbase copy constructor iterator'
`managed vector copy constructor iterator'
`local static thread guard'
Type Descriptor'
Base Class Descriptor at (
Base Class Array'
Class Hierarchy Descriptor'
Complete Object Locator'
1#SNAN
1#QNAN
 !"#$%&'()))*+,-./0123456789:;<=>?@ABBCDEFGHIGJKLLBMBBNOPQRSTUVWXYZ[\]^G___________________________________________________`___________________________________________________________________________________________________________________________________________________________________abccccccccdeefghijklmnopqrstuvwxrstuvwxrstuvwxrstuvwxrstuvwxrstuvwxrstuvwxrstuvwxrstuvwxrstuvwxrstuvwxrstuvwxrstyzzzzzzzzzzzzzzzz{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{__|}~
OOOOOO
OOOOOOOOO
OOOOOOOOOOOOOOOOOO
OOOOOOOOOOOOOOOOOOOOOOO
OOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOO
OOOOOOOOO
OOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOO
OOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOG
OOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOO
OOOOOOOOOOOOOOOOO_____________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________________
________________________________
OOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOO____
OOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOO
OOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOO{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{
{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
[:<:]]
[:>:]]
This is a third-party compiled AutoIt script.
GetNativeSystemInfo
IsWow64Process
kernel32.dll
DllGetClassObject
UnRegisterTypeLibForUser
RegisterTypeLibForUser
oleaut32.dll
Wow64RevertWow64FsRedirection
Wow64DisableWow64FsRedirection
GetModuleHandleExW
GetSystemWow64DirectoryW
GetProcessId
RegDeleteKeyExW
advapi32.dll
Error text not found (please report)
DEFINE
UTF16)
NO_AUTO_POSSESS)
NO_START_OPT)
LIMIT_MATCH=
LIMIT_RECURSION=
ANYCRLF)
BSR_ANYCRLF)
BSR_UNICODE)
ACCEPT
COMMIT
xdigit
no error
\ at end of pattern
\c at end of pattern
unrecognized character follows \
numbers out of order in {} quantifier
number too big in {} quantifier
missing terminating ] for character class
invalid escape sequence in character class
range out of order in character class
nothing to repeat
operand of unlimited repeat could match the empty string
internal error: unexpected repeat
unrecognized character after (? or (?-
POSIX named classes are supported only within a class
missing )
reference to non-existent subpattern
erroffset passed as NULL
unknown option bit(s) set
missing ) after comment
parentheses nested too deeply
regular expression is too large
failed to get memory
unmatched parentheses
internal error: code overflow
unrecognized character after (?<
lookbehind assertion is not fixed length
malformed number or name after (?(
conditional group contains more than two branches
assertion expected after (?(
(?R or (?[+-]digits must be followed by )
unknown POSIX class name
POSIX collating elements are not supported
this version of PCRE is compiled without UTF support
spare error
character value in \x{} or \o{} is too large
invalid condition (?(0)
\C not allowed in lookbehind assertion
PCRE does not support \L, \l, \N{name}, \U, or \u
number after (?C is > 255
closing ) for (?C expected
recursive call could loop indefinitely
unrecognized character after (?P
syntax error in subpattern name (missing terminator)
two named subpatterns have the same name
invalid UTF-8 string
support for \P, \p, and \X has not been compiled
malformed \P or \p sequence
unknown property name after \P or \p
subpattern name is too long (maximum 32 characters)
too many named subpatterns (maximum 10000)
repeated subpattern is too long
octal value is greater than \377 in 8-bit non-UTF-8 mode
internal error: overran compiling workspace
internal error: previously-checked referenced subpattern not found
DEFINE group contains more than one branch
repeating a DEFINE group is not allowed
inconsistent NEWLINE options
\g is not followed by a braced, angle-bracketed, or quoted name/number or by a plain number
a numbered reference must not be zero
an argument is not allowed for (*ACCEPT), (*FAIL), or (*COMMIT)
(*VERB) not recognized or malformed
number is too big
subpattern name expected
digit expected after (?+
] is an invalid data character in JavaScript compatibility mode
different names for subpatterns of the same number are not allowed
(*MARK) must have an argument
this version of PCRE is not compiled with Unicode property support
\c must be followed by an ASCII character
\k is not followed by a braced, angle-bracketed, or quoted name
internal error: unknown opcode in find_fixedlength()
\N is not supported in a class
too many forward references
disallowed Unicode code point (>= 0xd800 && <= 0xdfff)
invalid UTF-16 string
name is too long in (*MARK), (*PRUNE), (*SKIP), or (*THEN)
character value in \u.... sequence is too large
invalid UTF-32 string
setting UTF is disabled by the application
non-hex character in \x{} (closing brace missing?)
non-octal character in \o{} (closing brace missing?)
missing opening brace after \o
parentheses are too deeply nested
invalid range in character class
group name must start with a non-digit
Arabic
Armenian
Avestan
Balinese
Bengali
Bopomofo
Brahmi
Braille
Buginese
Canadian_Aboriginal
Carian
Chakma
Cherokee
Common
Coptic
Cuneiform
Cypriot
Cyrillic
Deseret
Devanagari
Egyptian_Hieroglyphs
Ethiopic
Georgian
Glagolitic
Gothic
Gujarati
Gurmukhi
Hangul
Hanunoo
Hebrew
Hiragana
Imperial_Aramaic
Inherited
Inscriptional_Pahlavi
Inscriptional_Parthian
Javanese
Kaithi
Kannada
Katakana
Kayah_Li
Kharoshthi
Lepcha
Linear_B
Lycian
Lydian
Malayalam
Mandaic
Meetei_Mayek
Meroitic_Cursive
Meroitic_Hieroglyphs
Mongolian
Myanmar
New_Tai_Lue
Ol_Chiki
Old_Italic
Old_Persian
Old_South_Arabian
Old_Turkic
Osmanya
Phags_Pa
Phoenician
Rejang
Samaritan
Saurashtra
Sharada
Shavian
Sinhala
Sora_Sompeng
Sundanese
Syloti_Nagri
Syriac
Tagalog
Tagbanwa
Tai_Le
Tai_Tham
Tai_Viet
Telugu
Thaana
Tibetan
Tifinagh
Ugaritic
WSOCK32.dll
GetFileVersionInfoSizeW
GetFileVersionInfoW
VerQueryValueW
VERSION.dll
timeGetTime
mciSendStringW
waveOutSetVolume
WINMM.dll
InitCommonControlsEx
ImageList_Create
ImageList_ReplaceIcon
ImageList_Destroy
ImageList_Remove
ImageList_SetDragCursorImage
ImageList_BeginDrag
ImageList_DragEnter
ImageList_DragLeave
ImageList_EndDrag
ImageList_DragMove
COMCTL32.dll
WNetAddConnection2W
WNetUseConnectionW
WNetCancelConnection2W
WNetGetConnectionW
MPR.dll
InternetCloseHandle
InternetOpenW
InternetSetOptionW
InternetCrackUrlW
HttpQueryInfoW
InternetQueryOptionW
InternetConnectW
HttpOpenRequestW
HttpSendRequestW
FtpOpenFileW
FtpGetFileSize
InternetOpenUrlW
InternetReadFile
InternetQueryDataAvailable
WININET.dll
GetProcessMemoryInfo
PSAPI.DLL
IcmpCreateFile
IcmpSendEcho
IcmpCloseHandle
IPHLPAPI.DLL
LoadUserProfileW
CreateEnvironmentBlock
UnloadUserProfile
DestroyEnvironmentBlock
USERENV.dll
IsThemeActive
UxTheme.dll
InterlockedIncrement
InterlockedDecrement
InitializeCriticalSectionAndSpinCount
RaiseException
lstrcmpiW
GetCurrentDirectoryW
IsDebuggerPresent
SetCurrentDirectoryW
GetFullPathNameW
GetLastError
CloseHandle
GetCurrentThread
GetCurrentProcess
DuplicateHandle
CreateThread
WaitForSingleObject
HeapAlloc
GetProcessHeap
HeapFree
GetCurrentThreadId
MultiByteToWideChar
MulDiv
GetVersionExW
GetSystemInfo
FreeLibrary
LoadLibraryA
GetProcAddress
SetErrorMode
GetModuleFileNameW
WideCharToMultiByte
lstrcpyW
lstrlenW
GetModuleHandleW
QueryPerformanceCounter
VirtualFreeEx
OpenProcess
VirtualAllocEx
WriteProcessMemory
ReadProcessMemory
CreateFileW
SetFilePointerEx
ReadFile
WriteFile
FlushFileBuffers
TerminateProcess
CreateToolhelp32Snapshot
Process32FirstW
Process32NextW
SetFileTime
GetFileAttributesW
FindFirstFileW
FindClose
GetLongPathNameW
DeleteFileW
FindNextFileW
MoveFileW
CopyFileW
CreateDirectoryW
RemoveDirectoryW
SetSystemPowerState
QueryPerformanceFrequency
FindResourceW
LoadResource
LockResource
SizeofResource
EnumResourceNamesW
OutputDebugStringW
GetTempPathW
GetTempFileNameW
DeviceIoControl
GetLocalTime
CompareStringW
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
GetStdHandle
CreatePipe
InterlockedExchange
TerminateThread
LoadLibraryExW
FindResourceExW
VirtualFree
FormatMessageW
GetExitCodeProcess
GetPrivateProfileStringW
WritePrivateProfileStringW
GetPrivateProfileSectionW
WritePrivateProfileSectionW
GetPrivateProfileSectionNamesW
FileTimeToLocalFileTime
FileTimeToSystemTime
SystemTimeToFileTime
LocalFileTimeToFileTime
GetDriveTypeW
GetDiskFreeSpaceExW
GetDiskFreeSpaceW
GetVolumeInformationW
SetVolumeLabelW
CreateHardLinkW
SetFileAttributesW
GetShortPathNameW
CreateEventW
SetEvent
GetEnvironmentVariableW
SetEnvironmentVariableW
GlobalLock
GlobalUnlock
GlobalAlloc
GetFileSize
GlobalFree
GlobalMemoryStatusEx
GetSystemDirectoryW
GetComputerNameW
GetWindowsDirectoryW
GetCurrentProcessId
GetProcessIoCounters
CreateProcessW
SetPriorityClass
LoadLibraryW
VirtualAlloc
KERNEL32.dll
DestroyIcon
MessageBoxA
GetForegroundWindow
GetSysColorBrush
LoadCursorW
LoadIconW
RegisterClassExW
CreateWindowExW
ShowWindow
SetTimer
RegisterWindowMessageW
CreatePopupMenu
KillTimer
PostQuitMessage
SetFocus
MoveWindow
DefWindowProcW
MessageBoxW
GetUserObjectSecurity
OpenWindowStationW
GetProcessWindowStation
SetProcessWindowStation
OpenDesktopW
CloseWindowStation
CloseDesktop
SetUserObjectSecurity
GetWindowRect
PostMessageW
MapVirtualKeyW
SendMessageW
GetDlgCtrlID
GetParent
GetClassNameW
CharUpperBuffW
EnumChildWindows
SendMessageTimeoutW
ScreenToClient
GetWindowTextW
GetFocus
AttachThreadInput
GetWindowThreadProcessId
GetWindowLongW
InvalidateRect
EnableWindow
IsWindowVisible
IsWindowEnabled
IsWindow
GetDesktopWindow
EnumWindows
DestroyWindow
GetMenu
GetClientRect
BeginPaint
EndPaint
ReleaseDC
CopyRect
SetWindowTextW
GetDlgItem
SendDlgItemMessageW
EndDialog
MessageBeep
DialogBoxParamW
LoadStringW
VkKeyScanW
GetKeyState
GetKeyboardState
SetKeyboardState
GetAsyncKeyState
SendInput
keybd_event
SystemParametersInfoW
FindWindowW
IsIconic
SetForegroundWindow
GetMenuItemInfoW
SetMenuItemInfoW
GetMenuItemCount
GetMenuItemID
CheckMenuRadioItem
DeleteMenu
GetCursorPos
TrackPopupMenuEx
IsMenu
InsertMenuItemW
SetMenuDefaultItem
EnumThreadWindows
FindWindowExW
SetActiveWindow
ExitWindowsEx
mouse_event
CreateIconFromResourceEx
LoadImageW
MonitorFromRect
CharLowerBuffW
UnregisterHotKey
PeekMessageW
TranslateMessage
DispatchMessageW
LockWindowUpdate
GetMessageW
BlockInput
OpenClipboard
IsClipboardFormatAvailable
GetClipboardData
CloseClipboard
CountClipboardFormats
EmptyClipboard
SetClipboardData
SetRect
AdjustWindowRectEx
CopyImage
SetWindowPos
GetCursorInfo
RegisterHotKey
ClientToScreen
GetKeyboardLayoutNameW
IsCharAlphaW
IsCharAlphaNumericW
IsCharLowerW
IsCharUpperW
GetMenuStringW
GetSubMenu
GetCaretPos
IsZoomed
MonitorFromPoint
GetMonitorInfoW
SetWindowLongW
SetLayeredWindowAttributes
FlashWindow
GetClassLongW
TranslateAcceleratorW
IsDialogMessageW
GetSysColor
InflateRect
DrawFocusRect
DrawTextW
FrameRect
DrawFrameControl
FillRect
PtInRect
DestroyAcceleratorTable
CreateAcceleratorTableW
SetCursor
GetWindowDC
GetSystemMetrics
DrawMenuBar
GetActiveWindow
CharNextW
wsprintfW
RedrawWindow
DestroyMenu
SetMenu
GetWindowTextLengthW
CreateMenu
IsDlgButtonChecked
DefDlgProcW
CallWindowProcW
ReleaseCapture
SetCapture
USER32.dll
GetDeviceCaps
DeleteObject
GetTextExtentPoint32W
CreateCompatibleBitmap
CreateCompatibleDC
SelectObject
StretchBlt
GetDIBits
DeleteDC
GetPixel
CreateDCW
GetStockObject
GetTextFaceW
CreateFontW
SetTextColor
CreateSolidBrush
CreatePen
SetBkColor
RoundRect
SetBkMode
GetObjectW
SetViewportOrgEx
Rectangle
BeginPath
PolyDraw
Ellipse
MoveToEx
AngleArc
LineTo
CloseFigure
SetPixel
EndPath
StrokePath
StrokeAndFillPath
ExtCreatePen
GDI32.dll
GetOpenFileNameW
GetSaveFileNameW
COMDLG32.dll
RegOpenKeyExW
RegCloseKey
RegQueryValueExW
RegConnectRegistryW
InitializeSecurityDescriptor
InitializeAcl
AdjustTokenPrivileges
OpenThreadToken
OpenProcessToken
LookupPrivilegeValueW
DuplicateTokenEx
CreateProcessAsUserW
CreateProcessWithLogonW
GetLengthSid
CopySid
LogonUserW
AllocateAndInitializeSid
CheckTokenMembership
FreeSid
GetTokenInformation
GetSecurityDescriptorDacl
GetAclInformation
GetAce
AddAce
SetSecurityDescriptorDacl
InitiateSystemShutdownExW
GetUserNameW
RegCreateKeyExW
RegSetValueExW
RegEnumKeyExW
RegDeleteKeyW
RegDeleteValueW
RegEnumValueW
ADVAPI32.dll
ShellExecuteW
Shell_NotifyIconW
ExtractIconExW
SHFileOperationW
SHGetFolderPathW
SHGetSpecialFolderLocation
SHGetDesktopFolder
SHCreateShellItem
SHBrowseForFolderW
SHGetPathFromIDListW
SHEmptyRecycleBinW
DragQueryFileW
ShellExecuteExW
DragQueryPoint
DragFinish
SHELL32.dll
CoTaskMemAlloc
CoTaskMemFree
CLSIDFromString
ProgIDFromCLSID
CLSIDFromProgID
OleSetMenuDescriptor
MkParseDisplayName
OleSetContainedObject
CoCreateInstance
IIDFromString
StringFromGUID2
CreateStreamOnHGlobal
CoInitialize
CoUninitialize
GetRunningObjectTable
CoGetInstanceFromFile
CoGetObject
CoInitializeSecurity
CoCreateInstanceEx
CoSetProxyBlanket
ole32.dll
OLEAUT32.dll
ExitProcess
GetModuleHandleExW
ExitThread
GetSystemTimeAsFileTime
ResumeThread
GetCommandLineW
IsProcessorFeaturePresent
HeapSize
IsValidCodePage
GetACP
GetOEMCP
GetCPInfo
SetLastError
UnhandledExceptionFilter
SetUnhandledExceptionFilter
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
GetStartupInfoW
GetStringTypeW
SetStdHandle
GetFileType
GetConsoleCP
GetConsoleMode
RtlUnwind
ReadConsoleW
SetFilePointer
GetTimeZoneInformation
GetDateFormatW
GetTimeFormatW
LCMapStringW
GetEnvironmentStringsW
FreeEnvironmentStringsW
HeapReAlloc
WriteConsoleW
SetEndOfFile
SetEnvironmentVariableA
.?AVbad_alloc@std@@
.?AVexception@std@@
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
pqrstuvwxyz{$--%"!'
`abcdefghijkmno]
Qkkbal
wwwwwwwwwwwwwx
wwwwwwwwwwwwwx
xwxwxx
jjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjj
jqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqj
~~~~~z~zzzzzzzzzzzzzzz
vvvvvvvvvvvvvvzvvvv~zz~zzzzzwzwzvzvz
knnnnnnnnnnnnnnnnnkv~z~zzzzzzzzxzxxxx
nGGHHH
nv~zsssssssszxzzzzx
nGGGHH
nv~~~~~~~z~zzzzxzxy
n..GGHHH
nv~~ssssssss{zzzyyy
n...GGHHH
nv~~~~~~~~~{{zzzzyz
n+....HGHHHH
ssssssst~{{zzyy
n++....G.HHH
~~~~{~{{{{
n!!+....HGHHHH
ssssstts~{~{{{{
n!!++.....HHHHHH
~~~~~~{~{{
n!!!++....GGHHH
n!!""....-HHHH
!!"".....HHHHnv
ssssssss
"""+....G-Hnv
""""..-.-Gnv
ssssssss
"""...-.nv
""""..-nv
ssssssss
nU_[_[D
!""".+nv
nOTUTU[[ED'"""+nv
ssssssss
nCODOSSSWWWWXWLWaanv
n;;>D;DDDEESLWLLLLnv
ssssssss
;;:::3***3444nv
'''*"31nv
ssssssss
'*nv
mnnnnnnnnnnnnnnnnnm
ssssssss
jurrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrruj
juuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuj
juuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu
jjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjj
J>>>>>>>>>>>>>>>>ACA>>>>>>>>>G
>S]]]]]]]]]]]]]]]]]]]]]]]]]]]>
>S]]a]aaa]]]]]]a```____R_R_U]>
>_]]QQQQQQRQRQQQ_``__STTRRRR]>
>\]FIIIIIIIIIIFQ`LLLLLL_TRRR]>
>_]I$$$
IQ```a\a_`_URR]>
IQ^LLLLLL___RR]>
IQ`_``a\a\_SRU]>
IQ````ca\a__a]]>
IQ`LLLLLL\]a_a]>
$$$IQ````aca_a\]_]>
$$IQ`LLLLLL]`
IQ``_`a\a`a
IQ`LLLLLLa\$
>_]IE=,
IQ``````a\a
>_]I66;;80-&&7IQ`LLLLLL`\
>]]I11255880::IQ`````a\ac
C]]I****,+...-IQ`LLLLLLca
 ""IQ````aca\c
C]]HIIIIIIIIIIH]aLLLLLLa\
C]]]]]]]]]]]]]]]]]]]]]]]]]]]]>
C_]a`a]]ac]a]a]a]a`a\a\a\ac]]>
DKLKKKLKKLKKKKLKLKLKLMKKKKLKL>
APOOOOOOOOOOOOOOOOOOOOO
>>>>>>>>>>>>>>>>>>>>>>>>>>>>J
H}AU3!EA06M
g2"~?]
#\In>3(
r%r(V9
E!OJM_
i.0Ej~
I,OCGw
9"Ee':/[~
?\Sq"[)
RZ*C\K
dI/j[O
),S84f
)[Mg4C
oZ$p#@b
a Ko=(
4rXX?|
%po~q,!g
2UdWsU
vL8<W_H~
etqaH/
uoEb*L
~F%r!9#~
xOjXK$K
uA:6Fd
=zRBJT
1s[X{
I=zPxh
&+hQ.9
Ix3Pf6\#
P=G3[;
?:wQy.
~<1/b`
|9#v]m
qqVA</
|&1"a10
LyN2&'
9*k[8Z
/ebHl%)
kggjm?,
+oiVx@
4+@6`U
}WWWki
JRptk^
g_%_/=^
t/rtvT
{la[=Sm
Bj`2[[
z [j2s5b
T#=(<v
#|dema/j
f?^$q-
J n&'@
g2y= 9v*
ywqUPL
^+'rpz
mdp=&
<7{:c4k2
s1]%U)=
N f5bD
1Ak>EN
lSGqW]8-
xU,mK{B
=cuG'+r
thYHba
2<jSaY
iOlcka
i].#QV
5pUX)cd
MLp|W?
E(l__Z
JP]|P
c3oGMn0
1]#H5?
HN0$t1
7*)sPq
}j)Y?j
&C}k**S^yI'
IDs9f0
K#1gE5
ytK<Fn
PNx.T2
pb8@la\
EBm#5(o
OVv1T-
z7 u=
B3ZQ~8
xi+-YX
AR~:TTB
[>%Rh~
sx]ce\
VW>?k!
t7uO;-
&q [xf
d;>Gle
(_Ze2m
}CLH\P
%uuN%V{
ZrCdDV
#4*}ci
`_~48%
5oi#d`
PM_slf5
83P #Zm
.BjXr=
Fi%vRG
udWCJg
.Y=[6Y};
?fXa'c
-*zm.<n
rk"pH3i
}*_S&0~;
NX9?QiZX
0![If[
j(mle]
B|VNBDH2
[BHio#
]V"$!@Y3
G'.UE}$
il?F~I
MIN6U7
}AWTAL
~qSHNw
N~(D?"OD
NnHtt5>E
;lDQsR
vo6$7xs5+
:wTqFa
&!GoCmK
I4!y}cEr
Yc?aC_)
V+7yLE
PO_&
[4cbvU
*$!snb
MDa68Vi`
/H]S%R|
0ieu*x
,2y` akl
97V{8yV'
}]O&5E
U_#ui1
"?K!xr]
phI7^zS8
X!Qq,f
m.]9f;
ZRT8="
>>`y!zQ
UHjyT(
+^is5_CD
!zDH4\*
k;l11M
!]keSk
nk?seZ
_KV61o
hk6^]zq
K&2F8fPe
1T&yA~F{
5lptQ
/X;6v@V
tc]`LH
BA`$h3
q8j#Ezw
5<~1)'
Huk 6++
$qNt5]
E??}|'~1
_]OUPJH
WCy[+g
`6^r02_
k"erD @
?_W.i.
2D,!+>v
uy^XT\zRcm
K`YskB~n
yS+h4x
-_e7-b
[Ni;o&
.Nt"PjA
mfc:T&
6J+1Vs
-x!':Sp
^D6|]t
P{'wlZO
[)'Bu!
n4R<w)
p@WMdJ
9RQaz+
4Q<c9@
#,B-,VjQI
RBfYt<
>PZ.t#8
G'Gk!K
NENy7@
"^4}M^=
*GG!i2
,X<E}^
1F%})i
8Gn3Mf
9VlLdt
VLuwu0
e.@3v_FN
,c$ht'G
_p"=nZr@
.-#8I{S
I\s~-D`(&
Op%~*{
ORSY&L4
AnY6v#
BuCL>.
WTW[_
OYo f'
uJ3WV?
hX|B.5
pIXNJk
]tw"KU
dX9.7L
SgNe>A
P>*7j%
PJ_UwJ
Io[9'\}
,nE RG
B}J7a9
:.ZnoH}
thv_2q$
px4!}2
O+.;%j
#nfN:#
x7'H+\7B~
>/=s~|
E-1VLMn
^\w;a4
XecA+f
#V0t:K
$R%@W>
u/vRaY
'JRKIVPd
x>}'`@n
kh6NZu
[7'FK.
bzi@)
DBm"4E+
c716Ie-bs
U +PTj
(>mfh9G
3X%wdk
PpBeEh
BPHx^T
g-xGz*
I i6>v
-YR+Cj#m
`)fDZ1]
Qu.a(#
K-+&ZC=9
|<|s<,Z"n
.Lf}5s
93<?(
?4heu>Ll
K5(e3Z?>
"-s{^r
xzKEd(0m
*:}BSYT6X
`4Ft1b
"oZx+_
H}Syet
uhy3Y?
&e..$F
NfZBI4.
Snfs$L"
q*S<h)
?Uc`]j
(}oNXk
6(W A3
+_dLT~
^d:fV:
NOgKmj
O8o/^|~<.]
B(9A6O
+Ura5z
V 9m-F
j kr9>
3+,^;%"#
&S4o9;s
@-YO!>PHrq!j*A
3r{\GLS
o2|iT=
x8^M>u
FH%p~#l
bwL06
6[\4C
kpl`Hi
"\&l[;N
Vfnx)*<
RCa"Z
>=pT&z
K}1:@(
EJEn.iy
deT;`R
[V!HfEb
ok1~\R+R
.wo+-)
Q~\I1,
vyT^YM
Y`'$rp
;0`f7s?^
phdh9Rd
eskXDx
k:g'm<
a=C_~,J
gN/jj&
hPLe;
5`&Y'D
/D!Aw%
7l3QNe
+XgM0R
t;P"&
ia...t
[zMqRb
MS2E~TX:z
wmT8nJ
c*ua#Y
z4U["J
eVVCtZim
0~TQlV
K|a!DT
0~ATHj
$!p![C
0&o&J6u
4c_KRb*
$]AI;M~
2B`>1:^
h,4/P#
PK7Tm#
7Nq46D&
w"fI&&
,'t}uf;
%.Ep:qp
^$Or?Cn:
0z[xz0
}OdVC(!8t
Y8onp3
sO>KGB
W=W`zhk
q>._n`
``,'z=
Ie8ZV=
KyJBER
4aA)C
HK2v{wv
xf,7}e
FwV-P.U
ik6tki
k,AGVK
c%JWe:
)D.;Hx
@[ls[C
{+}^qFod
k89sv`
QYE3>|
2a+&I&
,x+5lYB7e
CJE.ga
P&a!y4
~~sF>dE
|l._z|
8nX& *
7@co]!
gF+c~}
3:'%CEi>
=/WZB
@Eo@vj34
,Ja#>e
EM"P+X
8r*rH/2
!GnQ8g2U
{IGlCy;
GBxb%QO;B|V
peR"o?
ZpL {B
hA'q*V
}]|^$h
FDWW]2
AU3!EA06P
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<dependency>
<dependentAssembly>
<assemblyIdentity type="win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0" language="*" processorArchitecture="*" publicKeyToken="6595b64144ccf1df"/>
</dependentAssembly>
</dependency>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
<security>
<requestedPrivileges>
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
<compatibility xmlns="urn:schemas-microsoft-com:compatibility.v1">
<application>
<supportedOS Id="{e2011457-1546-43c5-a5fe-008deee3d3f0}"/>
<supportedOS Id="{35138b9a-5d96-4fbd-8e2d-a2440225f93a}"/>
<supportedOS Id="{4a2f28e3-53b9-4441-ba9c-d69d4a4a6e38}"/>
<supportedOS Id="{1f676c76-80e1-4239-95bb-83d0f6d0da78}"/>
</application>
</compatibility>
</assembly>
PADDINGXXPADDINGPADDINGXXPAD
7!7)717=7H7S7^7i7t7
9#9.999D9O9Z9e9p9{9
3.373;3K3T3X3]3l3q3{3
4$4*40464<4@4F4L4R4X4\4b4h4n4t4x4~4
5!545=5Z5`5f5l5r5x5~5
6!6.6z6
7 7.7S7
8!8&808;8R8b8y8
9*959:9E9R9d9
:6:<:B:u:z:
<(<-<7<A<K<U<Z<_<d<i<n<s<x<
=G=Y=f=v=
>!>,>J>_>h>{>
>"?,?2?8?>?D?Z?d?
0/0J0W0}0
333U3[3f3m3
::H:M:Y:_:e:k:q:w:|:
<,=E=z=
30F0_0}0
293C3O3`3j3
> >$>(>,>0>4>8><>@>D>P>_>
2"282e2
3.3G3a3#4s4
=_?i?s?}?
8 8/9):0:V:Z:^:b:f:j:n:r:v:z:9;
6:6B6P6
;z<0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=t=x=|=
> >$>(>,>0>4>8><>@>D>H>L>P>T>X>\>`>d>h>l>p>t>x> ?$?
1$5+5t6
: :$:(:,:0:4:8:<:O=
727D8S8z9
=H=\=p=
3$3+3T3X3\3`3d3h3l3M6`6i6q6
7#747M7W7W8`8h8
2$3\3`3d3h3l3p3t3x3|3
949A9e9
=A=L={=
d0h0l0p0t0x0|0
2+252@2G2
596H6M6V6[6j6
<#<F<k<
< =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=t=x=|=
> >$>(>=>
4#4-494A4
>:><?h?
G0N0t0|0
6 6$6(6
:<;@;D;H;L;P;T;X;\;`;d;h;l;p;t;x;|;
5#627e7l7084888<8@8D8H8L8P8T8X8\8`8d8h8l8p8t8x8|8
9 9$9(9,90949D9H9L9P9T9d9h9l9p9t9x9|9
=@=D=H=L=P=T=X=\=`=
>">.>3>
366e7v7|7
5'696I7
8)8/83898C8M8W8a8e8k8o8u8
99#9)939=9G9Q9U9[9_9e9o9y9
:#:-:7:A:E:K:O:U:_:i:s:}:
;';1;5;;;?;E;O;Y;c;m;q;w;{;
<!<%<+</<5<?<I<S<]<a<g<k<q<{<
==%=/=9=C=M=Q=W=[=a=k=u=
>>)>3>=>A>G>K>Q>[>e>o>y>}>
?#?-?1?7?;?A?K?U?_?i?m?s?w?}?
0!0'0+010;0E0O0Y0]0c0g0m0w0
1!1+151?1I1M1S1W1]1g1q1{1
2%2/292=2C2G2M2W2a2k2u2y2
33)3-33373=3G3Q3[3e3i3o3s3y3
4#4'4-474A4K4U4Y4_4c4i4s4}4
5'515;5E5I5O5S5Y5c5m5w5
6!6+65696?6C6I6S6]6g6q6u6{6
7%7)7/73797C7M7W7a7e7k7o7u7
88#8)838=8G8Q8U8[8_8e8o8y8
9#9-979A9E9K9O9U9_9i9s9}9
:':1:5:;:?:E:O:Y:c:m:q:w:{:
;!;%;+;/;5;?;I;S;];a;g;k;q;{;
<<%</<9<C<M<Q<W<[<a<k<u<
==)=3===A=G=K=Q=[=e=o=y=}=
>#>->1>7>;>A>K>U>_>i>m>s>w>}>
?!?'?+?1?;?E?O?Y?]?c?g?m?w?
0!0+050?0I0M0S0W0]0g0q0{0
1%1/191=1C1G1M1W1a1k1u1y1
22)2-23272=2G2Q2[2e2i2o2s2y2
3#3'3-373A3K3U3Y3_3c3i3s3}3
4'414;4E4I4O4S4Y4c4m4w4
5!5+55595?5C5I5S5]5g5q5u5{5
6%6)6/63696C6M6W6a6e6k6o6u6
77#7)737=7G7Q7U7[7_7e7o7y7
8#8-878A8E8K8O8U8_8i8s8}8
9'91959;9?9E9O9Y9c9m9q9w9{9
:!:%:+:/:5:?:I:S:]:a:g:k:q:{:
;;%;/;9;C;M;Q;W;[;a;k;u;
<<)<3<=<A<G<K<Q<[<e<o<y<}<
=#=-=1=7=;=A=K=U=_=i=m=s=w=}=
>!>'>+>1>;>E>O>Y>]>c>g>m>w>
?!?+?5???I?M?S?W?]?g?q?{?
0%0/090=0C0G0M0W0a0k0u0y0
11)1-13171=1G1Q1[1e1i1o1s1y1
2#2'2-272A2K2U2Y2_2c2i2s2}2
3'313;3E3I3O3S3Y3c3m3w3
4!4+45494?4C4I4S4]4g4q4u4{4
5%5)5/53595C5M5W5a5e5k5o5u5
66#6)636=6G6Q6U6[6_6e6o6y6
7#7-777A7E7K7O7U7_7i7s7}7
8'81858;8?8E8O8Y8c8m8q8w8{8
9!9%9+9/959?9I9S9]9a9g9k9q9{9
::%:/:9:C:M:Q:W:[:a:k:u:
;;);3;=;A;G;K;Q;[;e;o;y;};
<#<-<1<7<;<A<K<U<_<i<m<s<w<}<
=!='=+=1=;=E=O=Y=]=c=g=m=w=
>!>+>5>?>I>M>S>W>]>g>q>{>
?%?/?9?=?C?G?M?W?a?k?u?y?
00)0-03070=0G0Q0[0e0i0o0s0y0
1#1'1-171A1K1U1Y1_1c1i1s1}1
2'212;2E2I2O2S2Y2c2m2w2
3!3+35393?3C3I3S3]3g3q3u3{3
4%4)4/43494C4M4W4a4e4k4o4u4
55#5)535=5G5Q5U5[5_5e5o5y5
6#6-676A6E6K6O6U6_6i6s6}6
7'71757;7?7E7O7Y7c7m7q7w7{7
8!8%8+8/858?8I8S8]8a8g8k8q8{8
99%9/999C9M9Q9W9[9a9k9u9
::):3:=:A:G:K:Q:[:e:o:y:}:
;#;-;1;7;;;A;K;U;_;i;m;s;w;};
<!<'<+<1<;<E<O<Y<]<c<g<m<w<
=!=+=5=?=I=M=S=W=]=g=q={=
>%>/>9>=>C>G>M>W>a>k>u>y>
??)?-?3?7?=?G?Q?[?e?i?o?s?y?
0#0'0-070A0K0U0Y0_0c0i0s0}0
1'111;1E1I1O1S1Y1c1m1w1
2!2+25292?2C2I2S2]2g2q2u2{2
3%3)3/33393C3M3W3a3e3k3o3u3
44#4)434=4G4Q4U4[4_4e4o4y4
5#5-575A5E5K5O5U5_5i5s5}5
6'61656;6?6E6O6Y6c6m6q6w6{6
7!7%7+7/757?7I7S7]7a7g7k7q7{7
88%8/898C8M8Q8W8[8a8k8u8
99)939=9A9G9K9Q9[9e9o9y9}9
:#:-:1:7:;:A:K:U:_:i:m:s:w:}:
;!;';+;1;;;E;O;Y;];c;g;m;w;
<!<+<5<?<I<M<S<W<]<g<q<{<
=%=/=9===C=G=M=W=a=k=u=y=
>>)>->3>7>=>G>Q>[>e>i>o>s>y>
?#?'?-?7?A?K?U?Y?_?c?i?s?}?
0'010;0E0I0O0S0Y0c0m0w0
1!1+15191?1C1I1S1]1g1q1u1{1
2%2)2/23292C2M2W2a2e2k2o2u2
33#3)333=3G3Q3U3[3_3e3o3y3
4#4-474A4E4K4O4U4_4i4s4}4
5'51555;5?5E5O5Y5c5m5q5w5{5
6(6:6E6
8;9C9n9v9
:-:I:T:\:g:o:{:
;+;G;V;a;
<,<Y<`<g<n<y<
141S112m2a3
4$4:4S4r4y4
595d5u5
767B7e7x7
878L8Y8`8f8n8u8
2/7B7j7o7t7z7
8&8,82888>8D8J8P8V8\8u8
9/:3:7:;:?:C:G:K:O:S:W:[:_:
<U<Y<]<a<e<i<m<q<u<y<}<
?.?<?C?I?O?t?
;";&;*;.;2;6;:;>;B;F;J;N;R;V;Z;^;b;f;j;n;r;v;z;~;
>+?7?>?J?O?Z?q?
0(0.090@0Q0p0
3*3V3c3
8 8%8*8/84898>8C8I8S8Y8
89*9/9:9?9Y9
1'1E1L1P1T1X1\1`1d1h1
1*252P2W2\2`2d2
3N3T3X3\3`3
5$5/5A5S:
[<_<c<g<k<o<s<w<{<
>\>c>k>
>I?P?e?o?
1$1-161V1
3;3Q3[3a3l3
4$4+4?4E4g4
<*=5=S=
3^3f3r3x3
<I=o=z=
?-?<?_?o?
3323r3
4N4Y4k4
4C5U5{5
919<9N9a9k9
9":-:?:R:
:7;Q;Z;b;
>$>.>T>
>!>,>2>D>N>W>
2'2E2L2P2T2X2\2`2d2h2
2*353P3W3\3`3d3
4N4T4X4\4`4
6#6-6?6I6k6v6
8X8c8z9
9::C:Q:
2'212A2
6'60666?6D6S6Z6
8#9H9R9
9):/:X:s:
<,<\<e<o<u<
=!=+=A=T=j=s=
=&>+>C>L>a>g>q>w>
?$?<?M?S?Y?`?i?n?t?|?
00'0,020:0?0E0M0R0X0`0e0k0s0x0}0
1#1)11161<1D1I1O1W1\1b1j1o1u1}1
3"3,3Z3m3
364;4M4k4
4&5,525C5u5{5
6Z6_6h6m6v6{6
7)898P8n8
=5>M>T?[?
577=7c7i7
73787>7B7H7L7R7V7\7`7e7k7o7u7y7
939T9`9|9
:+:;:i:
:,;<;U;w;~;
<)<;<`<g<
>6><>C>
0<1n1}1
7K7T7|7
9!9G9N9
5*5J5_5i5
;/;E;M;U<
0.1@1R1
2K2a2w2
3)454M4U4
9O:c:{:
<J<R<_<n=
>5>I>T>
0k1l2|2
4)595d5u5
=P>d>6?K?w?
0+080B0i0|0
081B1L1`1
1%2?2O2v2
3?4K4U4q4
6 767r7
9N9Z9{9
;H;O;x;
=(=4=I>Q>Y>a>
1>1\1h1t1
2+2F2W2`2x2
3363=3
4=4E4h4
445L5`5p5|5
:I;U;];
;#<R<Z<b<
1.141I1n1
484@4F4O4
415:5I5U5d5p5
6!6*636<6H6T6`6
9(9T9Z9`9f9
< <5<C<e<
=$=-=5=A=I=[=f=n=v=~=
?,?B?a?
0.080g0q0
3)3.343>3H3[3i3w3
8C8P8V8
9:9D9J9
=O=[=c=t=
>(>1>>>m>u>
>(?I?N?
0&1@1R1d1v1
272I2[2m2
6E7M7d7k7~7
8)82878=8G8Q8a8q8
8'969Y9j9p9|9
:%:=:C:L:R:\:g:
<!<)>l>w>
:1;6;<;C;
>!?/?I?^?l?~?
5@5H5Y5j5
?0?6?;?
8&8:8I8|8
4 4$4(4,4044484^4o4
5K5]5}5
2/2K2Q2u2
6#6)64696A6
;-;4;o;
<-<4<D<d<k<|<\=m=~=
? ?.?7?O?
2)202I2n2u2{2
4+434b4
;4;N;h;
=%=W=e=
0)020S0\0
5=5:6o6
8L8_8f8m8
:P:q:x:
162p2d3k3r3
444V4m4~4
7/7A7M7`7i7|7
9*:4:b:
6*6?6O6f6v6
::8:A:L:R:X:
<!<F<]<q<
>">e>s>
j0o0~0
2#2?2a2{2
0115191=1A1E1I1M1Q1U1Y1252}2
4C5I5T5[5n5t5
9;9D9i9w9
: :::H:i:
:&;0;?<
=(>R>y>
6-6H6p6
8%8B8y8
>C?X?e?
8!8%8)8-8185898=8A8
0I0]0d0m0s0
3i4n4|4
7f7t7{7
818];};
="=.=6>@>[>s>~>
8;8Z8r8
5%6f6q6
768B8O8o8
9&:I:%;e;l;
< <0<A<H<u<
<#=J=U=k=v=
=C>L>v>
>?9?F?g?
1D1T1[1a1
1%2<2L2
23B3M3T3g3
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Clean
Elastic malicious (high confidence)
ClamAV Clean
CMC Clean
CAT-QuickHeal TrojanPWS.AutoIt.Zbot.S
Skyhigh BehavesLike.Win32.TrojanAitInject.th
ALYac Clean
Cylance Unsafe
Zillya Clean
Sangfor Clean
CrowdStrike win/malicious_confidence_90% (W)
Alibaba Clean
K7GW Clean
K7AntiVirus Clean
huorong Clean
Baidu Clean
VirIT Trojan.Win32.AutoIt_Heur.L
Paloalto generic.ml
Symantec Clean
tehtris Clean
ESET-NOD32 Clean
APEX Malicious
Avast FileRepMalware [Trj]
Cynet Clean
Kaspersky UDS:DangerousObject.Multi.Generic
BitDefender Clean
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Clean
Tencent Clean
Sophos Troj/AutoIt-DHB
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfeeD Clean
Trapmine Clean
CTX exe.trojan.autoit
Emsisoft Clean
Ikarus Trojan.Autoit
FireEye Clean
Jiangmin Clean
Webroot Clean
Varist W32/AutoIt.OM.gen!Eldorado
Avira Clean
Fortinet AutoIt/Injector.GPY!tr
Antiy-AVL Clean
Kingsoft malware.kb.a.853
Gridinsoft Clean
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm UDS:DangerousObject.Multi.Generic
Microsoft Trojan:Win32/AutoitInject.HNA!MTB
Google Detected
AhnLab-V3 Clean
Acronis Clean
McAfee Artemis!60C2B16E2F32
TACHYON Clean
VBA32 Clean
Malwarebytes MachineLearning/Anomalous.96%
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Clean
Yandex Clean
SentinelOne Clean
MaxSecure Trojan.Malware.300983.susgen
GData Clean
AVG FileRepMalware [Trj]
DeepInstinct MALICIOUS
alibabacloud Clean
No IRMA results available.