Warning! We are currently in recovery mode. The complete archive is not available.

Sample details: 11e798808f4d6ecc2ba1013079b271c4 --

Hashes
MD5: 11e798808f4d6ecc2ba1013079b271c4
SHA1: 6ca23ba1afa98dd80eae815a1846efc1199ce1c3
SHA256: 1524e685fd74910b5a04f61d5947a56784beed547a7d6f855ad7ba2c976f737c
SSDEEP: 12288:rwECaUglPnFsk7P0UahDyDT1+BRXjIjpHTdon6MTcK:rwEC70qkgUahDuwRexo6MYK
Details
File Type: PE32
Yara Hits
YRP/VC8_Microsoft_Corporation | YRP/Microsoft_Visual_Cpp_8 | YRP/IsPE32 | YRP/IsWindowsGUI | YRP/HasOverlay | YRP/HasDigitalSignature | YRP/HasRichSignature | YRP/domain | YRP/IP | YRP/url | YRP/contentis_base64 | YRP/Browsers | YRP/WMI_strings | YRP/anti_dbg | YRP/network_tcp_socket | YRP/network_dns | YRP/screenshot | YRP/win_mutex | YRP/win_registry | YRP/win_token | YRP/win_files_operation | YRP/Advapi_Hash_API | YRP/CRC32_poly_Constant | YRP/CRC32_table | YRP/Str_Win32_Winsock2_Library | YRP/Str_Win32_Wininet_Library | YRP/Str_Win32_Internet_API | YRP/Str_Win32_Http_API |
Parent Files
0039c040e530ff04e326c8648107005d
Strings
		!This program cannot be run in DOS mode.
`.rdata
@.data
@.reloc
97tU9s
tHh(@E
t^h$BE
t0hLBE
t0htBE
t0h(CE
t[h0DE
tTh(EE
tFh GE
u&hhIE
u!8F<t
+FH9~4u
t5hhUE
t0hPEE
u3h$YE
P0h\YE
\SVWjD_W3
9{8tAh8cE
F4HuXh
^Ph NE
^<9^8t
N^9^\Q
t(h$fE
D$@SVW
L$H+L$@
L$L+L$D
L$H+L$@+
L$L+L$D+
9_,u<j
uGh\iE
D$XLLE
u>hPmE
uJh$BE
uJh$BE
9>t39~
t6Ht,Ht"Ht
t6Ht,Ht"Ht
9_,u<j
HtbHt1
u^9_(v
</tg<\tc<.ug
sLj/Xf
?tdf9S
t^9^@v
vM9^@uH
NPSSQRP
F$9^$u
<0r><9w:j
toS950
8tY9~dtm
QQSWWWj
T$ RhD
T$8RRRR
L$\_^[3
QQWRRRj
^<9;u"
4SVWhT
SVhX:E
t|f9s@
L$$QPV
QQSVWj
WSSSSSSPQ
8"u#j"
PSSSSSS
?t@C;\$
\t	C;\$
D$DPWW
D$,j\P
|$HWWWj
D$4j\P
t3j Yf;
t+j	Yf;
t#j=Yf;
u6j0Xf;E
D$$9D$ 
RPPPPj
T$$RQQj
L$$QPj
jVVVVj
u[h$BE
	$$$$$$$
 !"#$$$$$$
 !"#hH
Nt3Nt"Nt
	t{Otm
<<tij0
G F;0r
tb<<u^
x9;~$}4
8CSVh3
u)jAXf;
HtcHt.
uTVWh	
^SSSSS
t hh:E
F\=P'E
tWItHIt9It 
HHt$HHt
?If90t
HHt$HHt
PPPPPPPP
t	j\Yf
QQSVWh
j@j ^V
t"SS9] u
v	N+D$
>:u8FV
URPQQhp
<+t"<-t
+t HHt
PPPPPPPP
	X 9} 
;t$,v-
UQPXY]Y[
v	N+D$
QQSVWd
t*=RCC
;7|G;p
tR99u2
bad allocation
SetThreadStackGuarantee
CorExitProcess
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
(null)
`h````
xpxxxx
`h`hhh
xppwpp
Unknown exception
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
UTF-16LE
UNICODE
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
 Complete Object Locator'
 Class Hierarchy Descriptor'
 Base Class Array'
 Base Class Descriptor at (
 Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
 delete[]
 new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
 delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
_nextafter
_hypot
1#QNAN
1#SNAN
bad exception
Cancel
Resume
<request><installreport version="%s"><sessionstart>%s</sessionstart><c$scid>%s</cscid><hdid>%s</hdid><page index="%d" count="%d"></page><manifestinfo></manifestinfo><softwarelist></softwarelist></installreport></request>
installreport
manifestinfo
softwarelist
software
#### Added by 
icsmanifest ####
Product
TrackedEvents.
CreateFileTransactedW
report=
status
creditcode
InstallCompleteURL
%s%02d.%s
0123456789abcdef
&bname=
&time=
&bver=
&mt=00
&product=
&%s=%s
&cscid=
&defaultbrowser=
&activetimebias=
&osex=
&hdid2=
0123456789ABCDEFw
URLDownloadToFileW
%s%s%s=%s
freeaddrinfo
getnameinfo
getaddrinfo
\ws2_32
\wship6
about:blank
win2k3
SHGetFolderPathW
GetAdaptersInfo
AdvApi32
CreateProcessWithTokenW
&apos;
&quot;
CryptQueryObject
CryptMsgGetParam
CertFindCertificateInStore
CertGetNameStringW
WinVerifyTrust
CertFreeCertificateContext
CertCloseStore
CryptMsgClose
SCSIDISK
000000000000000000000000000000
&#x%02X;
%s="%s"
%s='%s'
<!--%s-->
<![CDATA[%s]]>
<?xml 
version="%s" 
version="
encoding="%s" 
encoding="
standalone="%s" 
standalone="
<![CDATA[
version
encoding
standalone
Error when TiXmlDocument added to document, because TiXmlDocument can only be at the root.
Error parsing CDATA.
Error null (0) or unexpected EOF found in input stream.
Error document empty.
Error parsing Declaration.
Error parsing Comment.
Error parsing Unknown.
Error reading end tag.
Error: empty tag.
Error reading Attributes.
Error reading Element value.
Failed to read Element name
Error parsing Element.
Failed to open file
No error
KERNEL32.DLL
ADVAPI32.dll
GDI32.dll
ole32.dll
OLEAUT32.dll
SHLWAPI.dll
USER32.dll
VERSION.dll
WS2_32.dll
GetExitCodeProcess
CreateFileW
GetTempPathW
GetProcAddress
TerminateThread
ReadFile
EnumResourceTypesW
FindClose
GetProcessHeap
HeapFree
FindFirstFileW
EnumResourceNamesW
CreateThread
lstrcpyW
CreateEventW
GetTickCount
WaitForSingleObject
CloseHandle
GetCurrentThreadId
DeleteCriticalSection
SetLastError
GetLastError
RaiseException
MultiByteToWideChar
InitializeCriticalSectionAndSpinCount
WideCharToMultiByte
GetModuleHandleW
SetEvent
CreateMutexW
WriteFile
LockResource
SizeofResource
CreateProcessW
GetCurrentProcessId
DeleteFileW
SetEnvironmentVariableA
CompareStringW
FlushFileBuffers
SetStdHandle
GetConsoleMode
GetConsoleCP
SetFilePointer
RtlUnwind
GetTimeZoneInformation
GetSystemTimeAsFileTime
QueryPerformanceCounter
GetFileType
SetHandleCount
GetEnvironmentStringsW
FreeEnvironmentStringsW
GetStringTypeW
LCMapStringW
TlsFree
CreateToolhelp32Snapshot
Process32NextW
Process32FirstW
OpenProcess
GlobalFree
GlobalUnlock
MulDiv
GlobalAlloc
GlobalLock
GetCommandLineW
EnumResourceLanguagesW
LoadResource
FindResourceW
FindResourceExW
TlsSetValue
TlsGetValue
TlsAlloc
IsValidCodePage
GetOEMCP
GetACP
GetCPInfo
ExitProcess
HeapCreate
IsDebuggerPresent
SetUnhandledExceptionFilter
UnhandledExceptionFilter
GetDateFormatW
GetTimeFormatW
VirtualQuery
GetSystemInfo
VirtualProtect
GetStartupInfoW
HeapSetInformation
DecodePointer
EncodePointer
InterlockedPopEntrySList
VirtualAlloc
VirtualFree
IsProcessorFeaturePresent
InterlockedPushEntrySList
InterlockedCompareExchange
HeapSize
HeapDestroy
DeviceIoControl
GetShortPathNameW
GetVolumeInformationW
GetVersion
GetWindowsDirectoryW
Module32FirstW
GetLocalTime
GetComputerNameExW
AttachConsole
GetStdHandle
TerminateProcess
WriteConsoleW
GetVersionExW
FreeConsole
GetLocaleInfoW
GetSystemDirectoryW
GetComputerNameW
CreateDirectoryW
MoveFileExW
SetErrorMode
InitializeCriticalSection
LeaveCriticalSection
EnterCriticalSection
InterlockedIncrement
InterlockedDecrement
OutputDebugStringW
WaitForMultipleObjectsEx
FormatMessageW
lstrlenW
LocalAlloc
LocalFree
ResumeThread
GetSystemTime
HeapReAlloc
HeapAlloc
FreeLibrary
LoadLibraryW
GetExitCodeThread
lstrlenA
GetSystemDirectoryA
LoadLibraryA
GetCurrentProcess
GetModuleFileNameW
lstrcmpW
FlushInstructionCache
GetTempFileNameW
DosDateTimeToFileTime
GetFileSize
GetDriveTypeW
CryptDestroyHash
CryptDestroyKey
CryptAcquireContextW
CryptVerifySignatureW
CryptReleaseContext
CryptImportKey
CryptCreateHash
CryptHashData
CloseServiceHandle
OpenProcessToken
OpenSCManagerW
OpenServiceW
RegCreateKeyExW
LookupAccountNameW
DuplicateTokenEx
QueryServiceStatus
ConvertSidToStringSidW
RegCloseKey
RegQueryValueExW
RegQueryInfoKeyW
RegEnumValueW
RegOpenKeyExW
RegEnumKeyExW
RegSetValueExW
BitBlt
PatBlt
SetTextColor
DeleteDC
CreateFontIndirectW
SetBkMode
DeleteObject
SelectObject
CreateCompatibleDC
CreateCompatibleBitmap
CreateSolidBrush
GetStockObject
GetObjectW
GetDeviceCaps
CoInitializeEx
CoInitializeSecurity
CoSetProxyBlanket
CoTaskMemAlloc
CoGetClassObject
StringFromGUID2
CLSIDFromString
CLSIDFromProgID
OleLockRunning
CoInitialize
CoUninitialize
OleUninitialize
OleInitialize
CreateStreamOnHGlobal
CoReleaseServerProcess
CoAddRefServerProcess
CoCreateInstance
PathStripPathW
PathQuoteSpacesW
PathFindFileNameW
PathStripToRootW
PathAppendW
PathFileExistsW
PathAddExtensionW
PathFindExtensionW
PathRemoveExtensionW
DefWindowProcW
MessageBoxW
SetDlgItemTextW
PostThreadMessageW
IsWindow
CreateDialogParamW
GetSysColor
GetDesktopWindow
BringWindowToTop
RegisterClassExW
GetFocus
GetParent
GetWindowInfo
GetClassNameW
GetSystemMetrics
EnableWindow
EndPaint
SetCursor
GetSystemMenu
SetTimer
ScreenToClient
GetWindowRect
GetMessageW
FillRect
SetCapture
PostMessageW
DrawTextW
KillTimer
BeginPaint
PtInRect
TranslateMessage
InflateRect
SetRect
GetWindowLongW
SystemParametersInfoW
ReleaseDC
GetWindowThreadProcessId
GetWindowTextW
EnumWindows
GetClientRect
MoveWindow
GetWindow
CallWindowProcW
SetWindowTextW
GetDlgItem
InvalidateRect
GetClassInfoExW
SetFocus
CreateAcceleratorTableW
InvalidateRgn
LoadImageW
IsChild
RegisterWindowMessageW
CharNextW
DestroyAcceleratorTable
GetWindowTextLengthW
ClientToScreen
GetForegroundWindow
FindWindowW
AttachThreadInput
UnregisterClassA
EnableMenuItem
SetWindowLongW
RedrawWindow
SetWindowPos
GetCursorPos
ShowWindow
GetSysColorBrush
FrameRect
CreateWindowExW
ReleaseCapture
RegisterClassW
SendMessageW
UpdateWindow
DispatchMessageW
DestroyWindow
PostQuitMessage
UnregisterClassW
SetForegroundWindow
LoadCursorW
GetFileVersionInfoSizeW
VerQueryValueW
GetFileVersionInfoW
WSACloseEvent
WSAResetEvent
WSASetEvent
WSARecv
WSASocketW
WSASend
WSAConnect
WSAEnumNetworkEvents
WSACreateEvent
WSAGetOverlappedResult
WSAEventSelect
.?AVtype_info@@
.?AVbad_alloc@std@@
.?AVexception@std@@
                          
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
                          
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVCAtlException@ATL@@
.?AU_ATL_MODULE70@ATL@@
.?AVCAtlModule@ATL@@
.?AV?$CAtlModuleT@VCASAIApp@appenv@@@ATL@@
.?AV?$CAtlExeModuleT@VCASAIApp@appenv@@@ATL@@
.?AVCASAIApp@appenv@@
.?AVIASAIApplication@appenv@@
.?AVIStatus@appenv@@
.?AVCAppDownloadEvents@appenv@@
.?AVCUCIPageDownloadEvents@appenv@@
.?AVCUpgradeDownloadEvents@appenv@@
.?AVCVICCDownloadEvents@appenv@@
.?AVIAppInternetRequestCallback@appenv@@
.?AVCDownloadProgressNoUI@appenv@@
.?AVIDownloadProgress@@
.?AVCDownloadProgressUI@appenv@@
.?AVTiXmlText@@
.?AVTiXmlBase@@
.?AVTiXmlNode@@
.?AVTiXmlDocument@@
.?AVCManifestLoader@appenv@@
.?AV?$CAtlIsapiBuffer@$0EAA@@ATL@@
.?AVCByteBuffer@appenv@@
.?AVPictureRender@appenv@@
.?AVCPropertyHive@appenv@@
.?AVCSoftwareItem@appenv@@
.?AVCSoftwareManager@appenv@@
.?AVHTMLWindowObserver@appenv@@
.?AVUIManager@appenv@@
.?AUHTMLWindowException@appenv@@
.?AVCAppPropertyBag@appenv@@
.?AVCEventInstallCompleteLaunchFail@appenv@@
.?AVCEventInstallCompleteLaunchOK@appenv@@
.?AVCEventInstallReportFail@appenv@@
.?AVCEventInstallReportOK@appenv@@
.?AVCEventInstallReport@appenv@@
.?AVCEventSAIEndSession@appenv@@
.?AVCEventSAIExitOK@appenv@@
.?AVCEventAppInstallFail@appenv@@
.?AVCEventAppInstallError@appenv@@
.?AVCEventAppInstallOK@appenv@@
.?AVCEventAppInstall@appenv@@
.?AVCEventAppDownloadFail@appenv@@
.?AVCEventAppDownloadSignatureError@appenv@@
.?AVCEventAppDownloadWriteError@appenv@@
.?AVCEventAppDownloadError@appenv@@
.?AVCEventAppDownloadOK@appenv@@
.?AVCEventAppDownload@appenv@@
.?AVCEventPassthrough@appenv@@
.?AVCEventHTMLWindowSizeError@appenv@@
.?AVCEventUCIUserReject@appenv@@
.?AVCEventUCIUserAccept@appenv@@
.?AVCEventUCILaunch@appenv@@
.?AVCEventUCIPageDownloadFail@appenv@@
.?AVCEventUCIPageDownloadWriteError@appenv@@
.?AVCEventUCIPageDownloadError@appenv@@
.?AVCEventUCIPageDownloadOK@appenv@@
.?AVCEventUCIPageDownload@appenv@@
.?AVCEventVerifyInstallConfigCancel@appenv@@
.?AVCEventVerifyInstallConfigDownloadFail@appenv@@
.?AVCEventVerifyInstallConfigDownloadError@appenv@@
.?AVCEventVerifyInstallConfigDownloadOK@appenv@@
.?AVCEventVerifyInstallConfigDownload@appenv@@
.?AVCEventInstallManifestFail@appenv@@
.?AVCEventInstallManifestOK@appenv@@
.?AVCEventUpgradeLaunchFail@appenv@@
.?AVCEventLaunchFail@appenv@@
.?AVCEventUpgradeLaunchError@appenv@@
.?AVCEventLaunchError@appenv@@
.?AVCEventUpgradeLaunchOK@appenv@@
.?AVCEventLaunchOK@appenv@@
.?AVCEventUpgradeLaunch@appenv@@
.?AVCEventLaunch@appenv@@
.?AVCEventUpgradeDownloadFail@appenv@@
.?AVCEventDownloadFail@appenv@@
.?AVCEventUpgradeSignatureError@appenv@@
.?AVCEventDownloadSignatureError@appenv@@
.?AVCEventUpgradeWriteError@appenv@@
.?AVCEventDownloadWriteError@appenv@@
.?AVCEventUpgradeDownloadError@appenv@@
.?AVCEventDownloadError@appenv@@
.?AVCEventUpgradeDownloadOK@appenv@@
.?AVCEventDownloadOK@appenv@@
.?AVCEventUpgradeDownload@appenv@@
.?AVCEventDownload@appenv@@
.?AVCEventErrorOther@appenv@@
.?AVCEventErrorMutexExists@appenv@@
.?AVCEventErrorCreateMutex@appenv@@
.?AVCEventErrorSAINotAdmin@appenv@@
.?AVCEventErrorSAIOSNotSupported@appenv@@
.?AVCEventErrorSAIAuthenticode@appenv@@
.?AVCLogEventBase@appenv@@
.?AVILogEventItem@appenv@@
.?AV_com_error@@
.?AVCReporter@appenv@@
.?AVCStatus@appenv@@
.?AVIReporter@appenv@@
Qkkbal
.?AVCAppState@appenv@@
.?AVCAppCrypto@apputil@@
.?AVCSimpleHttpClient@appenv@@
.?AVCAppInternetRequest@appenv@@
.?AVZEvtSyncSocket@ATL@@
.?AV?$CAtlHttpClientT@VZEvtSyncSocket@ATL@@@ATL@@
.?AVCCustomHttpClient@appenv@@
.?AVCHttpClient@appenv@@
.?AVCSocketAddr@ATL@@
.?AUIAxWinAmbientDispatch@@
.?AUIAxWinAmbientDispatchEx@@
.?AV?$IDispatchImpl@UIAxWinAmbientDispatchEx@@$1?_GUID_b2d0778b_ac99_4c58_a5c8_e7724e5316b5@@3U__s_GUID@@B$1?m_libid@CAtlModule@ATL@@2U_GUID@@A$0PPPP@$0PPPP@VCComTypeInfoHolder@ATL@@@ATL@@
.?AUIAdviseSink@@
.?AUIServiceProvider@@
.?AUIObjectWithSite@@
.?AV?$IObjectWithSiteImpl@VCAxHostWindow@ATL@@@ATL@@
.?AUIParseDisplayName@@
.?AUIOleContainer@@
.?AUIOleControlSite@@
.?AUIOleInPlaceSite@@
.?AUIOleInPlaceSiteEx@@
.?AUIOleInPlaceSiteWindowless@@
.?AUIOleClientSite@@
.?AUIAxWinHostWindow@@
.?AUIAxWinHostWindowLic@@
.?AV?$CWindowImpl@VCAxHostWindow@ATL@@VCWindow@2@V?$CWinTraits@$0FGAAAAAA@$0A@@2@@ATL@@
.?AV?$CComCoClass@VCAxHostWindow@ATL@@$1?GUID_NULL@@3U_GUID@@B@ATL@@
.?AVCAxHostWindow@ATL@@
.?AV?$CComContainedObject@VCAxHostWindow@ATL@@@ATL@@
.?AUIEnumUnknown@@
.?AV?$CComEnumImpl@UIEnumUnknown@@$1?_GUID_00000100_0000_0000_c000_000000000046@@3U__s_GUID@@BPAUIUnknown@@V?$_CopyInterface@UIUnknown@@@ATL@@@ATL@@
.?AV?$CComEnum@UIEnumUnknown@@$1?_GUID_00000100_0000_0000_c000_000000000046@@3U__s_GUID@@BPAUIUnknown@@V?$_CopyInterface@UIUnknown@@@ATL@@VCComMultiThreadModel@6@@ATL@@
.?AV?$CComObject@V?$CComEnum@UIEnumUnknown@@$1?_GUID_00000100_0000_0000_c000_000000000046@@3U__s_GUID@@BPAUIUnknown@@V?$_CopyInterface@UIUnknown@@@ATL@@VCComMultiThreadModel@6@@ATL@@@ATL@@
.?AV?$CWindowImpl@VCAxUIWindow@ATL@@VCWindow@2@V?$CWinTraits@$0FGAAAAAA@$0A@@2@@ATL@@
.?AVCAxUIWindow@ATL@@
.?AV?$CComObject@VCAxUIWindow@ATL@@@ATL@@
.?AUIOleWindow@@
.?AUIOleInPlaceUIWindow@@
.?AUIOleInPlaceFrame@@
.?AVCMessageMap@ATL@@
.?AVCWindow@ATL@@
.?AV?$CWindowImplRoot@VCWindow@ATL@@@ATL@@
.?AV?$CWindowImplBaseT@VCWindow@ATL@@V?$CWinTraits@$0FGAAAAAA@$0A@@2@@ATL@@
.?AV?$CWindowImpl@VCAxFrameWindow@ATL@@VCWindow@2@V?$CWinTraits@$0FGAAAAAA@$0A@@2@@ATL@@
.?AV?$CComObjectRootEx@VCComMultiThreadModel@ATL@@@ATL@@
.?AVCAxFrameWindow@ATL@@
.?AV?$CComObject@VCAxFrameWindow@ATL@@@ATL@@
.?AVCComObjectRootBase@ATL@@
.?AV?$CComObjectRootEx@VCComSingleThreadModel@ATL@@@ATL@@
.?AV?$CComPolyObject@VCAxHostWindow@ATL@@@ATL@@
.?AUIDropTarget@@
.?AUIDocHostUIHandler@@
.?AUIDispatch@@
.?AUDWebBrowserEvents2@@
.?AUIUnknown@@
.?AVIWebBrowser2Observer@appenv@@
.?AVHTMLWindow@appenv@@
.?AVCDigitalSignReader@utility@@
.?AVTiXmlDeclaration@@
.?AVTiXmlAttribute@@
.?AVTiXmlUnknown@@
.?AVTiXmlComment@@
.?AVTiXmlElement@@
.?AVTiXmlPrinter@@
.?AVTiXmlVisitor@@
!This program cannot be run in DOS mode.
`.rdata
@.data
@.reloc
PSSSSSSh 
SSSSh`
j@j ^V
< tK<	tG
HHtXHHt
?If90t
URPQQh
v	N+D$
t"SS9] u
PPPPPPPP
PPPPPPPP
^SSSSS
;t$,v-
UQPXY]Y[
SOFTWARE\Google\Google Toolbar\Branding
Software\Google\Google Toolbar\4.0\Options
Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AA58ED58-01DD-4d91-8333-CF10577473F7}
Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2318C2B1-4965-11d4-9B18-009027A5CD4F}
Command
InstallProgress
Software\Google\Google Toolbar\4.0\Setup
SOFTWARE\Google\Update\Clients\{985BAF76-41FB-4BB4-95BA-68D1B7BA813C}
CLSID\{2318C2B1-4965-11d4-9B18-009027A5CD4F}\InprocServer32
GTAPI Version: 6, 6, 1015, 36   
SOFTWARE\Google\No Toolbar Offer Until
Software\Microsoft\Windows\Shell\Associations\URLAssociations\http\UserChoice
Unicows.dll
Kernel32.dll
Software\Microsoft\Internet Explorer
Version
CreateActCtxW
ActivateActCtx
DeactivateActCtx
FindActCtxSectionStringW
QueryActCtxW
GetModuleHandleExW
IsolationAware function called after IsolationAwareCleanup
\StringFileInfo\%02X%02X%02X%02X\CompanyName
\VarFileInfo\Translation
VerSetConditionMask
VerifyVersionInfoA
kernel32.dll
GetSidSubAuthority
GetSidSubAuthorityCount
GetSidIdentifierAuthority
IsValidSid
advapi32.dll
GetTokenInformation
OpenProcessToken
iexplore
http\shell\open\command
IE.HTTP
Progid
SOFTWARE\Google\Google Toolbar
Software\Microsoft\Internet Explorer\Main
Enable Browser Extensions
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
CorExitProcess
(null)
`h````
xpxxxx
bad allocation
`h`hhh
xppwpp
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
Unknown exception
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
 Complete Object Locator'
 Class Hierarchy Descriptor'
 Base Class Array'
 Base Class Descriptor at (
 Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
 delete[]
 new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
 delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
C:\Users\user\Documents\Visual Studio 2010\Projects\check_offer_rp\Release\check_offer_rp.pdb
InternetReadFile
HttpQueryInfoW
InternetCloseHandle
InternetOpenUrlW
InternetOpenW
InternetSetOptionW
WININET.dll
IsWow64Process
GetCurrentProcess
GetLocaleInfoW
GetVersionExW
GetModuleHandleA
GetModuleHandleW
GetProcAddress
GetFileAttributesW
GetVersion
CloseHandle
FreeLibrary
GetVersionExA
lstrcmpA
lstrlenA
GetLocalTime
LocalFree
LoadLibraryW
GetLastError
SetLastError
GetModuleFileNameW
OutputDebugStringA
GetModuleFileNameA
LoadLibraryA
LocalAlloc
OpenProcess
GetCurrentProcessId
lstrlenW
KERNEL32.dll
CharNextA
CharUpperA
GetShellWindow
GetWindowThreadProcessId
USER32.dll
RegCloseKey
RegQueryValueExW
RegOpenKeyExW
RegQueryValueExA
RegOpenKeyExA
RegDeleteKeyA
RegDeleteValueA
RegSetValueExA
RegCreateKeyExA
OpenProcessToken
GetTokenInformation
RegCreateKeyExW
RegDeleteKeyW
DuplicateTokenEx
ImpersonateLoggedOnUser
RegDeleteValueW
AllocateAndInitializeSid
RevertToSelf
FreeSid
CheckTokenMembership
ConvertSidToStringSidW
RegSetValueExW
ADVAPI32.dll
CoCreateInstance
CoUninitialize
CoInitializeSecurity
CoInitializeEx
ole32.dll
VerQueryValueA
GetFileVersionInfoA
GetFileVersionInfoSizeA
GetFileVersionInfoW
VerQueryValueW
GetFileVersionInfoSizeW
VERSION.dll
MultiByteToWideChar
GetCurrentThreadId
DecodePointer
GetCommandLineA
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
EncodePointer
TerminateProcess
GetCPInfo
InterlockedIncrement
InterlockedDecrement
GetACP
GetOEMCP
IsValidCodePage
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
IsProcessorFeaturePresent
HeapFree
ExitProcess
SetHandleCount
GetStdHandle
InitializeCriticalSectionAndSpinCount
GetFileType
GetStartupInfoW
DeleteCriticalSection
FreeEnvironmentStringsW
WideCharToMultiByte
GetEnvironmentStringsW
HeapCreate
HeapDestroy
QueryPerformanceCounter
GetTickCount
GetSystemTimeAsFileTime
RtlUnwind
SetFilePointer
WriteFile
GetConsoleCP
GetConsoleMode
EnterCriticalSection
LeaveCriticalSection
LCMapStringW
GetStringTypeW
HeapAlloc
HeapReAlloc
RaiseException
SetStdHandle
WriteConsoleW
HeapSize
CreateFileW
FlushFileBuffers
check_offer_rp.dll
GoogleChromeCompatibilityCheck
LaunchGoogleChrome
_GoogleChromeCompatibilityCheck@8
_LaunchGoogleChrome@0
_checkRealPlayerEligible@8
                          
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
                          
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_alloc@std@@
.?AVexception@std@@
.?AVtype_info@@
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
  <trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
    <security>
      <requestedPrivileges>
        <requestedExecutionLevel level="asInvoker" uiAccess="false"></requestedExecutionLevel>
      </requestedPrivileges>
    </security>
  </trustInfo>
</assembly>PAPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPAD
3*363U3e3z3
4C4X4h4
5D5K5o5|5
5,6D6O6
7&7J7h7
888L8d8q8
0#0N0T0\0e0n0x0
1#1D1J1R1d1i1
152Y2s2>3D3L3U3}3
5P6U6q6
9%9.9:9I9R9^9|9
;X;_;e;k;s;
?3?F?a?
1*212N2^2l2y2
3'313>3C3S3Z3_3p3
354:4G4\4d4
<b><?D?\?w?
0<0T0[0c0h0l0p0
1J1P1T1X1\1
9!9%9)9/:
?J?W?a?o?x?
2	3%3.343=3B3Q3x3
7%7.747=7I7O7W7]7i7o7|7
73898c8i8o8
8=9`9j9
:.:4:::I:W:a:g:}:
;*;0;8;=;E;J;R;W;^;m;r;x;
=!=)=5=>=C=I=S=\=g=s=x=
>&?/?;?t?}?
R0Z0m0x0}0
1"1(191r1|1
3+3r3|3
414C4q4
9(91979=9
383Y395Z7^7b7f7j7n7r7v7
<(=[=a=f=n=~=
40T0D1m1
5"6T6|6
8>8P8^8s8}8
1#1,1?1c1
6&686J6\6n6
6"7:7b8
8#9)939
:M:S:X:f:k:p:u:
;H;M;T;Y;`;e;s;
<@=E=N=]=
707>7L7Y7x7
<$<5<=<C<M<S<]<c<m<v<
131i1s182u2
4181<1
<2D2L2T2\2d2l2t2|2
3 :$:(:,:0:4:8:<:@:D:H:L:P:T:X:\:`:d:h:l:p:t:x:|:
; ;$;(;,;0;4;8;<;@;D;H;L;P;T;X;\;`;d;h;l;p;t;x;|;
>,?0?@?D?H?P?h?l?
80X0x0
1$1@1L1h1
282T2X2x2
3 3@3`3
7 7$7(7,7074787<7@7D7H7L7P7T7X7\7`7p7t7x7|7
9X9\9`9|9
< <$<(<,<0<4<8<<<h=l=p=t=x=|=
!This program cannot be run in DOS mode.
`.rdata
@.data
@.reloc
QQSVW3
^SSSSS
t	j\Yf
QQSVWh
j@j ^V
URPQQhpD@
v	N+D$
;t$,v-
UQPXY]Y[
t"SS9] u
PPPPPPPP
PPPPPPPP
QQSVWd
t*=RCC
;7|G;p
tR99u2
CorExitProcess
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
 Complete Object Locator'
 Class Hierarchy Descriptor'
 Base Class Array'
 Base Class Descriptor at (
 Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
 delete[]
 new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
 delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
R71PGUP
R71PGUP2
R71PGUP3
bad exception
Unknown exception
WideCharToMultiByte
LoadResource
LockResource
SizeofResource
FindResourceW
FindResourceExW
KERNEL32.dll
_checkRealPlayerEligible@8
check_offer_rp.dll
RaiseException
EnterCriticalSection
LeaveCriticalSection
GetLastError
InitializeCriticalSectionAndSpinCount
DeleteCriticalSection
HeapDestroy
HeapAlloc
HeapFree
HeapReAlloc
HeapSize
GetProcessHeap
GetCommandLineW
HeapSetInformation
GetStartupInfoW
EncodePointer
DecodePointer
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
HeapCreate
GetProcAddress
GetModuleHandleW
ExitProcess
WriteFile
GetStdHandle
GetModuleFileNameW
FreeEnvironmentStringsW
GetEnvironmentStringsW
SetHandleCount
GetFileType
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
InterlockedIncrement
SetLastError
GetCurrentThreadId
InterlockedDecrement
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
IsProcessorFeaturePresent
RtlUnwind
LoadLibraryW
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
LCMapStringW
MultiByteToWideChar
GetStringTypeW
.?AVtype_info@@
                          
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
                          
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVCAtlException@ATL@@
.?AVbad_exception@std@@
.?AVexception@std@@
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
  <trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
    <security>
      <requestedPrivileges>
        <requestedExecutionLevel level="asInvoker" uiAccess="false"></requestedExecutionLevel>
      </requestedPrivileges>
    </security>
  </trustInfo>
</assembly>PAPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPAD
999?9Q9
;%<*<4<
>3>8>=>T>
?#?,?1?7?A?J?U?a?f?v?{?
1$1(1,1014181<1@1
2(2/24282<2]2
2&3,3034383
5>5C5J6|6
7$7(7,7074787<7@7
8(8/84888<8]8
8&9,9094989
9F:L:Y:_:h:o:
;!;,;1;C;M;R;n;x;
;&<0<V<]<w<~<
<K=^=p=
>D>Q>f>
1-1p1{1
3*30353;3
3#4I4O4y4
4!5+5V5n5
5 6C6I6]6b6
7+757;7E7g7|7
848L8r8
:!:&:,:0:6:;:A:F:U:k:q:y:~:
=;=H=T=\=d=p=
?H?N?n?w?
050E1L1V1h1
5;5H5N5l5
6&6U6[6c6
8)8/858
:':-:7:@:K:P:Y:c:n:
21393N3Y3
7"7+707?7f7
8E9_9h9
>!>3>E>W>i>{>
838g8z8H9i:];
1 2*252L4
7"7&7+717>7J7T7_7c7
1 1$1(1p1t1x1|1
1\:d:l:t:|:
X2\2`2d2h2l2p2t2x2|2
3 3$3(3,3034383<3@3D3H3L3P3T3X3\3`3d3h3l3p3t3x3|3
p0t0x0|0
1$1<1L1P1`1d1h1p1
1$2(2H2h2
34383X3t3x3
4(4`4h4l4
5$5(5D5H5P5X5`5d5l5
0@3D3H3L3P3T3X3\3`3d3p3t3x3|3
4(4,4044484<4@4D4H4L4P4T4X4\4`4d4h4l4p4t4x4|4
405@5P5`5p5
; ;$;0;4;8;<;@;D;H;L;P;X;\;`;
%&'()*456789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz
&'()*56789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz
6xv=oB
VRp@`k
%&'()*456789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz
&'()*56789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz
*ZBDVGW
;,VXeK<
6viRM9
K+}/`ed
2M29pK
^bV80f
[W }Pa
_bzzKAU
2+Q<YL
;9zXI;g5
rrT= J(lz
S;knbO
4vv]`g
RCl9VHS
E|	P:$
"X4s`@3
0wC~S_
dr qqW
\!CC^t
Cm@bg2
tFXJlL
U3<$x%[
%$lx.86>
W&;#{u
iikwX 
.wcy,WB
vj}G3w
t%;PlZ
}G:9tn
\Pbdb>
]'dn-E
zDS;yK
QTcqY~
[B:2png
V,SUh2
D/.~NY
W|8*&D
7U5f)|]
vUv4iRF
#=8w1?
+%WZ<VV
LVb1Vg
/VN{F]=
m{9?:v+}
(X+GFg
7",$aP
ZB#"k P
w*WnzL
R?/Z/$
xqx\&p
rM,b^z
{TL((ky<
aE{m:.
PToyVU
}Bp\k[P
No+|BA
dXa#'-
}7ruC%H
.qu$.;^s
Ca8$\6
/:sA?o
ppEyi8
gFd5LJ>
NcNKGx
oE=%@[
V4[VeP*P
STW<>m
\VWf=JW
#n.;g&YC
V5#`*K/L
)KPPSe
?1Pus{ 
N(xZCA+
Wn;pwa
.6d[~AK
qy~c@&
gaYLYN +
,V".OK;L
%;*m-q
J-Q8OT
{:&IL+
8{:q2?
*I6P{!
m0Z[dW
(Qz=tj
#m\B;E
]p4ehV
vq2)9fO
YA\6Cj
iJf`sW=
\jl,X"
/T?_E3
_~Kr,7
d#{Cm0}
N%q`6i5
1L@fi'
$kGx[h
]H>>2N"
{x19#S}
B.LOzI
_$$a3;
4eeIbsQ
{irN3r
?-cnVf
sNuR}&r
'j\g$P
<ByP~,b
/;u39i<F[
btIER@
"7CSt=
`^tFW=
TK;;~^
W%7	EajTC
YG	kYS
kcX9Rf
2ZkQi(
kKQ}y	
}gT0tQdq
/((~H{a
\!gX/on
 i9|P9
q/{&p9
%V|%&y
?5AN($#6
v`=>{i
!q>i>h
}'*B"{V
ovv+1Q
$<Y&Mac
^EN< k
El4Skt
yvhSb{
o1s["Y{)
e4%Y2.
WZ.G5M
tr	r\1i
:iNS#C
XR&dr4.){+:|
jbgNuQ
&_ru=&J
L.jJK0
8{dKt4
_x,]%>9[
%[=	gM
c$OAkJ
^R>1FY
OVJ!O7
UEp+2QrG
~U,C9"1
3}ph	f
ub 'hGUK_
]O5Ic7
N~EC@VE.
3:4mr%
1h?K	t
"nd9IA
dN]Aa*
/$rX%huG
_7Op`i
J^uW$'fv
J 8ep7
C[u4Fk1J'9Rh
I`b^s;
wxr""/p
wr""/p
ozR1ML
oLLLLL
wwwwwwwxp
"""""/
"""""/
wwwwwwww
zz1111MMM
^zz1111MM
^zz1111M
^zz1111
^zz111
wwwwwwwwwwwwwwwpx
pxwwwwwwwwwwwwwxpx
pxDDDDDDDDD@
pxDDDDDDDDDH
pxDDDDDDDDDH
pxDDDDDDDDDDDDDDpx
pwwwwwwwwwwwwwwwp
wwwwwwwpx
pxwwwwwwpxDDD
pxDDDDDDpx
pwwwwwwww
63[4]5mm]5\]m]mm5\mm5555555\\\5\\\5m\55\\5ed:
cOXY/P.Z0.0.QR00/ZPP0000000/0PPZR.BI@/DE0,
WkV21TSav^8{
}>qooggggggg1`_fhsnHK
Nw~ytMMMMMMUbbrrrrrxxxxxxxxrriUMMMMMMMMMUuzt
I3')+*+)))*))()*+++,6J!54 CBA
jYPQTVTSkllZTTXRTUiHceWda/
}zy|yx~
{|yvrrwsqpon
PPPPPPPPPPPPPPPPPKMNNNNNNNNNNOLO
JHHGGGGGGGGHI
JEEEEEEEEEEFC
JEEEEEEEEEEFC
JEEEEEEEEEEFD
JEFEEEEEEEEEB
O%JEEEEEEEEEFFB
JJIIIIJIIIIJJ
O(@>=77A779?<8;$O' 
)O6530./21+*-,4#4PPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPP
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0"><trustInfo xmlns="urn:schemas-microsoft-com:asm.v3"><security><requestedPrivileges><requestedExecutionLevel level="requireAdministrator" uiAccess="false"></requestedExecutionLevel></requestedPrivileges></security></trustInfo><compatibility xmlns="urn:schemas-microsoft-com:compatibility.v1">
    <application>
      <supportedOS Id="{e2011457-1546-43c5-a5fe-008deee3d3f0}"></supportedOS>
      <supportedOS Id="{35138b9a-5d96-4fbd-8e2d-a2440225f93a}"></supportedOS>
    </application>
  </compatibility></assembly>
VeriSign, Inc.1
VeriSign Trust Network1;09
2Terms of use at https://www.verisign.com/rpa (c)101.0,
%VeriSign Class 3 Code Signing 2010 CA0
121210000000Z
150109235959Z0
Washington1
Bellevue1
appbundler.com1>0<
5Digital ID Class 3 - Microsoft Software Validation v21
appbundler.com0
?t{Yh:M
/http://csc3-2010-crl.verisign.com/CSC3-2010.crl0D
https://www.verisign.com/rpa0
http://ocsp.verisign.com0;
/http://csc3-2010-aia.verisign.com/CSC3-2010.cer0
VeriSign, Inc.1
VeriSign Trust Network1:08
1(c) 2006 VeriSign, Inc. - For authorized use only1E0C
<VeriSign Class 3 Public Primary Certification Authority - G50
100208000000Z
200207235959Z0
VeriSign, Inc.1
VeriSign Trust Network1;09
2Terms of use at https://www.verisign.com/rpa (c)101.0,
%VeriSign Class 3 Code Signing 2010 CA0
https://www.verisign.com/cps0*
https://www.verisign.com/rpa0
[0Y0W0U
	image/gif0!0
#http://logo.verisign.com/vslogo.gif04
#http://crl.verisign.com/pca3-g5.crl04
http://ocsp.verisign.com0
VeriSignMPKI-2-80
VeriSign, Inc.1
VeriSign Trust Network1;09
2Terms of use at https://www.verisign.com/rpa (c)101.0,
%VeriSign Class 3 Code Signing 2010 CA
q\4H(d
cX,I "