Sample details: 52f458c8c8be50dacfe4c29a96da3ab5 --

Hashes
MD5: 52f458c8c8be50dacfe4c29a96da3ab5
SHA1: 9dbbf6a98f9d2d4de13161759e1af3d8414c1572
SHA256: 12da8eea494f6646e93a37dbee00256663ee86d265c4b13070e31e7d61ab83e1
SSDEEP: 24576:nKREMUK/lONyV2ajSKwy3fMWhNWfRKdptX37k2nBXR:nKKKtON+2ajSKVVhJztH7RnBXR
Details
File Type: PE32
Yara Hits
YRP/Microsoft_Visual_Basic_v50 | YRP/PureBasic_4x_Neil_Hodgson_additional | YRP/PureBasic_4x_Neil_Hodgson | YRP/Borland | YRP/UPXv20MarkusLaszloReiser | YRP/UPXV200V290MarkusOberhumerLaszloMolnarJohnReiser | YRP/PerlApp602ActiveState | YRP/UPXProtectorv10x2 | YRP/UPX20030XMarkusOberhumerLaszloMolnarJohnReiser | YRP/PureBasic4xNeilHodgson | YRP/IsPE32 | YRP/IsConsole | YRP/IsPacked | YRP/IsBeyondImageSize | YRP/PureBasic | YRP/domain | YRP/IP | YRP/url | YRP/contentis_base64 | YRP/Browsers | YRP/Misc_Suspicious_Strings | YRP/DebuggerException__SetConsoleCtrl | YRP/anti_dbg | YRP/escalate_priv | YRP/screenshot | YRP/keylogger | YRP/win_registry | YRP/win_token | YRP/win_files_operation | YRP/android_meterpreter | YRP/CRC32_poly_Constant | YRP/CRC32_table | YRP/MD5_Constants | YRP/UPX | YRP/suspicious_packer_section |
Parent Files
6eddd432950f1ae4dffca2d93d301dcd
Strings
		!This program cannot be run in DOS mode.
`.text
`.rdata
@.data
\$PK;\$ 
-SUWu	
Ex t3S
9]tu4W
Etj<^V
HtZHut
tKHtDHt'HucjF_
G4PSj$
u&SSh2
HHtTHt1
Pt#hJa@
SUVWPQ
+D$$^_[
SHGetPathFromIDList
SHBrowseForFolder
SHELL32.DLL
Static
Button
PB_DropAccept
PB_WindowID
WindowClass_%d
PB_MDI_Gadget
MDI_ChildClass
GetLongPathNameA
Kernel32.DLL
0123456789abcdef
Qkkbal
-PB_GadgetStack_%i
Overwrite?
Please enter the password.
Bitte w
hlen Sie einen Ordner zum Speichern der Dateien aus.
Fehler!
An unknown error occured. The program will be terminated.
Error!
This program is not supported on this operating system.
berschreiben?
Fortfahren?
Continue?
The file 
Einige Include Dateien konnten nicht erstellt werden.
Nicht gen
gend Speicher verf
Ein unbekannter Fehler ist aufgetreten. Das Programm wird beendet.
Can not create some of your include files.
Password
Passwort
Falsches Passwort.
Can not allocate the memory.
 existiert bereits im aktuellen Arbeitsverzeichnis. 
berschreiben?
Das Programm wird von diesem Betriebssytem nicht unterst
Choose a location to save the files.
Wrong password.
Die Datei 
Bitte geben Sie das Passwort ein.
deutsch
 already exists in the current directory. Overwrite?
KERNEL32.DLL
COMCTL32.dll
GDI32.dll
MSVCRT.dll
OLE32.dll
SHELL32.dll
SHLWAPI.dll
USER32.dll
GetModuleHandleA
HeapCreate
GetUserDefaultLangID
VerLanguageNameA
FreeLibrary
HeapDestroy
ExitProcess
GetTempFileNameA
FindResourceA
LoadResource
SizeofResource
HeapFree
HeapAlloc
LoadLibraryA
GetProcAddress
GetCurrentThreadId
GetCurrentProcessId
InitializeCriticalSection
GetCommandLineA
GetModuleFileNameA
GetCurrentProcess
DuplicateHandle
CloseHandle
CreatePipe
GetStdHandle
CreateProcessA
WaitForSingleObject
EnterCriticalSection
LeaveCriticalSection
GetExitCodeProcess
TerminateProcess
SetUnhandledExceptionFilter
GetVersionExA
HeapReAlloc
SetLastError
GetCurrentDirectoryA
SetCurrentDirectoryA
DeleteFileA
GetTempPathA
CreateDirectoryA
WriteFile
CreateFileA
SetFilePointer
ReadFile
InitCommonControls
InitCommonControlsEx
GetStockObject
SetBkColor
SetTextColor
CreateSolidBrush
DeleteObject
memset
_rmdir
strncpy
_strnicmp
strncmp
strlen
strcmp
memmove
strcpy
strcat
memcpy
sprintf
CoInitialize
CoTaskMemFree
RevokeDragDrop
ShellExecuteExA
PathQuoteSpacesA
CharLowerA
MessageBoxA
SendMessageA
GetWindowThreadProcessId
IsWindowVisible
IsWindowEnabled
GetForegroundWindow
EnableWindow
EnumWindows
DestroyWindow
GetSysColor
GetSysColorBrush
CreateWindowExA
GetWindowLongA
PostMessageA
CallWindowProcA
SetWindowLongA
SetFocus
GetWindowTextLengthA
GetWindowTextA
RedrawWindow
RemovePropA
DefWindowProcA
SetPropA
GetParent
GetPropA
GetWindow
SetActiveWindow
UnregisterClassA
DestroyAcceleratorTable
LoadIconA
LoadCursorA
RegisterClassA
AdjustWindowRect
GetSystemMetrics
GetActiveWindow
GetWindowRect
ShowWindow
CreateAcceleratorTableA
PeekMessageA
MsgWaitForMultipleObjects
GetMessageA
TranslateAcceleratorA
TranslateMessage
DispatchMessageA
SetCursorPos
LoadImageA
SetCursor
MapWindowPoints
MoveWindow
SystemParametersInfoA
GetKeyState
SetCapture
GetCursorPos
ReleaseCapture
GetClientRect
FillRect
EnumChildWindows
DefFrameProcA
GetFocus
IsChild
GetClassNameA
5Z8Yx]
#W!JwL
i\wK2k'
`[}A)h
ic{E)a
k^rE*b
~w}Z4] 
n^zE'f
zp~U<l*
\	.d#`}P
DtZB\bBWl@\t:]qAeu<nj
4o[=ju7\x>c
1g~-lp jR
O-8{tJ
R >|dFy|8cv7`v4^q6bs3bw)Wy'Y}5p
YTxIDxBe
_,e>0sN3
Z^lCckCnoHvsMvoHrgAviC
qM~sSwlNrfJukMrpMaj?AX"%E
8D 4E 3F
p\i_AMN'08
DD JA K>
I> KD+HD,FE+DF(AI$?K!?L ?L
{m[A3WB3VB1E;#?G
HC$NC(QB(SB'OA%I?'E@'DA%DB$BC!@D @D @D 56
iCAT/+L.#P>'NK%3@
U@$S>(M?)HA(CB&AD$?F!8A
DL$IP+FI)>> rnU
jeL0)F, V?/XC.FA 0J
RD \=&]<)V<,M=,EA(?D%<F":H
FR(BJ%,2
BD'us[
wrfIDE'"H%!YB3AB"1L
R?$X=)V<+O=,H?+CB&AE"AF
>I!@K%6>
pUQL/+I3(HA(;D
UD)R:&S<,O=,H>,EA)CC%CE!EF
FM,DI*26
|hcM:2N<+KE(8F
U=%Y=,U:,M=-H>-C@+AC&AE"EF
87"liT
tmM2(ZA1HB%9K
`F.`;-V2(W:1J=/C?,?B)?D%CD"EF
HC"@;&E@1qi\
Q1,]:0Q;):<
TD'b;,a3+[50S8.H>-AA)?C&AD$ED"FD"HC"HA&QH;
fEB\61W:,D9
LJ(]B-N$
\.'gC=L4(H>,AB(CC%CD$FC$FB%FA(F?,
}^[_;5]?4P?*9A
0O"BI&OB(X:)]4+^4-W9.N<+VN7@> @<
NH+D=$=6"lhV
E* J0"WF1>?
?:!P<*Z;,[7-Y6,S<-PA.>7
MI,LC(9/
R?2H6%TG1EA%9K"
J:)U>.Y>0U:,O6&K:'M@*QG/B8 ?2
h[KG<&MF-JF*:L%
EL+T=.S<,U>.R>-L;(J;(N@-MB.?3!]P@
wfHA(D@#LH,;J$
AG$K4$H4"P?*SE/L?)I:'K=+>1#vj`
JF)9I 
@H L6$I8#PD,MC+E8"F6%Q@3
CM#Q?(NA'MD)E<!G:$iVG
I<&F?&D=$>6
0D!DC/;9':5&kbU
/D$/3 @?1vrg
h^T7>#(H
i4F!#J
W\G9M*
k3<!*9
4G 0H 0X!
fuU>P);O$8M %@
\nI5N"!<
i=T(!<
kboJUkPp
so{JXoOk
u2S&0[
H]|4UvT
I^y4Ro;e
Jd|7YqMy
bl}ZhzQew2K_1Rfi
cn|Zcp\htbo}Zkx\q
VdzTdudmzu|
ik}\eyck|
HC~A?{;C|=B|;C{:C|8E{8D{6Aw4@s7V
wbezcg
~PtY,S8
V:4mlm
o=_`(QM
j0&sUS
k/,t]]
Cd&Tb%WW!VL
nW[T;EW:IW3II ;Y'IW
HP PQ+]@ Y;
t@^\"ET
o=UY"=e+Hj4R
Ro]8^8
)f.Ap8M
^rlD`:
W,5c/9~HU
nzzQfC"G?"YC!h?
jBGj;>
dsU0PE"TC
}WWwHJ
UF%huU
UZ:pzW
)G 9O*DL(F[9XhGirQs
lRQ5:<
EH(EP(,G
38#@@.[WE
tiUA<#35
FD&LM-@K#*E
5S(8D&4; 27
;9!VO;
saD<%72
CA#KL,KL*LH+GE&>E 4M
(v"&r$
=K'DN*:?
B;"[N8
ncOJC*=9
C?"KI*@?
;L!AJ"<@
IB'K>(aQ@
vdKC,94
D@#NK,KH)DB ?=
LA%H@#@@
DQ%DL$CD"D@#H>&?1
@0 YG<
JD-A=!=9
C@!EC!A?
QM*QJ)RF*NC'B@
C@!GD%GC&HA(K=+G6)D0%T?7
QJ/GA$D>!JE&LG(FA H@"OE'NC%F:
IG%EN&0N
;= TA4M2(K>(A= AE!CD"J@(Q=,X;-X;,U?&Q@&
zygVYH5M9'K8#Q?(O?(O?(M?(L@(LA&J@(M?(Q7&T?*E?"3A
?C&M6.S50S@1C<#AE"CD"JA&S>)Z<+\<)X@"UA"=,
C5#M=,O>+K7%J4"M8#S>)U=)S>)S>(Q?(Q?(O?(M?(Q>)S6(X@.AB"2L
N>.SC3J;+H?+H@)L?)O>)V>(Z>&\?$Z?%U=+O8)K4%L5%P9)U?-WB-UB-S>(S>(S?&U?&U@%U@%U@%U?&S:&TD-?F!3R
y1W-(J%
EE'M>.T>3S92Q;0O=,O>)S?&X?%]=&]<(_B3[@2X>0W@1ZC3WC2R>,N;&Q>)S>(U?&V?%X?%Z?%\>%X?%S?&LG(<J 'N
\rYexc
D6#`@;]57]56V:/S>)Q@&U@%]<)];+O2$P5'S9+R;+M9(G5$E4!D3
Q>)S>)V>(X=(]<(_=&a<&\>%OD&BJ"7P
_?9e2:e29\82V<,S>(U>(\;,]:-]@2\B4ZC3S?.K7&G5$K9(Q@-S=+U=+X<+\;+_;+a;)e:+Z>&GF 9N
V=-e46h29a63\9/V<+V<+\9/\9/U;-S<,P<+M9(K6'P9*W@1\E6V;-X;-Z:-\:-_9-a9-a8/V>(;E
Z:/c54a63_80\:-\:-]80\80Y=2U;-S9-T8-W9.X:/X8+U5(\:-\:-\:-Z:-Z:-Z:-Z:-LA&.E
MI,YB2]<3_72`61`6/b81b:5]72\82]73_72a72c70e7/e8-a7+_:,^=.Y?.S?-L>(F;%9@
:? O=,Z90Z2-\/+]4+a70`43b35d43e33g41i5/i5.g7+mB3c@,V>&M?#FC$BH%?L&5R!
@D'UC2gG<kD;`;-W/#a32d15f14h22j30k4-j6*f8&\8 T=
"i'&Y ,D
E8"Q<'R>%R:&X7.[42]50_6-a7+a9'_;#Z>
.X#7S%6F
AG$D@'G?(I?'K@$LA#LC
0f1"] 
@echo off
Title F O R C E  M O V E by Juju666
Mode Con: cols=100 lines=15 & Color 0A
echo. > INSTRUCTIONS_SVP.TXT  
if exist "%Homedrive%\forcemovelog.txt" ( del /f /q %Homedrive%\forcemovelog.txt )
VER | find /i "version 6.1." > nul
If %ERRORLEVEL%==0 Set WIN=7
VER | find /i "version 6.0." > nul
If %ERRORLEVEL%==0 Set WIN=5
VER | find /i "version 5.1." > nul
If %ERRORLEVEL%==0 Set WIN=3
If Not DEFINED WIN (
Echo Votre syst
me d'exploitation n'est pas support
 par cet outil
If %WIN%==3 (set VBuild=BuildLab) else set VBuild=BuildLabEx
FOR /f "tokens=2* delims=	 " %%A IN ('Reg.exe QUERY "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion" /v ProductName 2^>nul ^| find /i "ProductName"') DO Set ProductName=%%B
FOR /f "tokens=2* delims=	 " %%C IN ('Reg.exe QUERY "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion" /v %VBuild% 2^>nul ^| find /i "%VBuild%"') DO Set Build=%%D
If %WIN%==3 (Set "OSInfos=%ProductName% [%Build%.%PROCESSOR_ARCHITECTURE%]") Else Set "OSInfos=%ProductName% [%Build%]"
Call :THEMATRIX
echox.exe -f A -w 100 -e "Version 1.0.0.4                                                      By Juju666"
sleepx.exe 5
Title ########## F O R C E  M O V E : En attente des instructions
echo. 
echo ########## ForceMove de Juju666 >> %Homedrive%\forcemovelog.txt
echo version 1.0.0.4 du 18 avril 2011 ^| Mis 
 jour le 22 juin 2011 
 01:52 par Juju666 >> %Homedrive%\forcemovelog.txt
Echo %OSInfos% >> %Homedrive%\forcemovelog.txt
echo D
marrage 
 %Time:~,8% >> %Homedrive%\forcemovelog.txt 
echo. >> %Homedrive%\forcemovelog.txt
cls & echo. & echo. & echo     Traitement en cours ......
Notepad INSTRUCTIONS_SVP.TXT
nircmd infobox "Attention !!! Les processus en cours d'utilisation seront stopp
s, veuillez enregistrer votre travail et fermer vos programmes en cours d'ex
cution ou le travail sera perdu!" "Avertissement"
Title ########## F O R C E  M O V E : Traitement en cours ... 
echo ##### Arr
t des processus >> %Homedrive%\forcemovelog.txt
for %%a in (
"iexplore.exe"
"Firefox.exe"
"Msnmsgr.exe"
"explorer.exe"
"TeaTimer"
"opera.exe"
"safari.exe"
) do ( 
cls & echo. & echo. & echo     Arret du processus : %%~a     
PKill.exe -k "%%~a" >> 1.txt )
find /V "Copyright" "1.txt">>2.txt
find /V "Process" "2.txt">>3.txt
find /V "Error" "3.txt">>4.txt
Switch.exe "4.txt" "---------- 1.TXT" ""
Switch.exe "4.txt" "---------- 2.TXT" ""
Switch.exe "4.txt" "---------- 3.TXT" ""
for /f "tokens=*" %%b in ('type "4.txt"') do ( 
echo %%~b >> %Homedrive%\forcemovelog.txt )
echo. >> %Homedrive%\forcemovelog.txt
Switch.exe "%Homedrive%\forcemovelog.txt" "Killing" "Arr
md %Homedrive%\ForceMove\Quarantine\
echo. >> %Homedrive%\forcemovelog.txt
echo ##### Fichiers^|Dossiers >> %Homedrive%\forcemovelog.txt
echo.  >> %Homedrive%\forcemovelog.txt
For /f "tokens=*" %%a in ('type "INSTRUCTIONS_SVP.TXT"') do if not exist "%%~a" (  echo Absent !!! : "%%~a" >> %Homedrive%\forcemovelog.txt  )
echo. >> %Homedrive%\forcemovelog.txt
For /f "tokens=*" %%a in ('type "INSTRUCTIONS_SVP.TXT"') do if exist "%%~a" (
cls & echo. & echo. & echo    Mise en quarantaine et suppression : %%~a
subinacl.exe /file "%%~a" /grant="Tout le monde"=F >NUL 2>&1
attrib -r -s -h -a "%%~a" /s /d >nul 2>&1 
move /Y "%%~a" "%Homedrive%\ForceMove\Quarantine\%%~NXa.FM" >nul 2>&1
del /F /Q "%%~a" >nul 2>&1 
rmdir /S /Q "%%~a" >nul 2>&1 
echo Mis en quarantaine et supprim
 ! : %%~a >> %Homedrive%\forcemovelog.txt )  
echo. >> %Homedrive%\forcemovelog.txt 
For /f "tokens=*" %%a in ('type "INSTRUCTIONS_SVP.TXT"') do if exist "%%~a" ( echo Non supprim
 !!! : %%~a >> %Homedrive%\forcemovelog.txt  )
Title ########## F O R C E  M O V E : Termin
cls & echo. & echo. & echo	Fin. Ouverture du rapport... 
echo. >> %Homedrive%\forcemovelog.txt 
echo ########## Termin
 avec succ
 %Time:~,8% >> %Homedrive%\forcemovelog.txt 
echo. >> %Homedrive%\forcemovelog.txt 
echo ########## ^( EOF ^) >> %Homedrive%\forcemovelog.txt 
start explorer.exe
notepad %Homedrive%\forcemovelog.txt
del /f /q *.txt
del /f /q *.tmp
goto :eof
:: ############## MATRIX #############
:THEMATRIX
FOR /L %%@ IN (1,1,50) do (
If %%@ EQU 50 (
   echox -f 2 -w 100 -e "P 0 1 1 0 1 0 1 0 1 0 0 0   
   1 0 0 1 0 1 1 0 0 1 0 1 P"
   echox -f A -w 100 -e "W 1 0 1 1 0 1 0 1 0 1 0 1    F O R C E M O V E    1 0 1 1 0 0 1 0 0 1 0 0 W"
   echox -f 2 -w 100 -e "N 0 1 1 0 1 0 1 0 1 0 1 0   
   0 1 0 1 1 1 0 1 0 1 1 0 N"
   echox -f 2 -w 100 -e "1 0 1 1 0 1 0 1 0 1 0 0 0 1 1 0 1 0 1 0 1 1 0 0 1 0 1 1 0 0 1 0 1 1 0 0 1 0 1 1"
   echox -f 2 -w 100 -e "0 1 0 1 1 0 1 0 1 0 1 0 1 0 0 0 0 1 1 0 1 0 1 0 1 1 1 1 0 0 1 0 1 1 0 0 1 0 1 0"
goto :eof
exitPMZ
!This program cannot be run in DOS mode.
fxS`S 
&y^%#T
k&@@A"
=73"'{
<+rJ,+t&	
&(v,Ydz
1/s|N4
7B|7,j
f:X|r`
5@(.[V,
CFG9o$
,'C\6R
0rR,9v
Em'I@t
A;6-1"3
il@p`t
n9 (_#
7$rb,$t
otDHtd
VvX2W'J
Bm1HuN
/@v(Pb
FPC 2.0.4 [200
6/08/21] for i386 - Win32
7 by Bill Stewart
ame.com),
sage: eRx
w width
pwifies a(01-FE).
`/Ff, -bw
eground>
Do no)skip-oXg
t-argnR
r eCenxN
di8lay6
vicVv@a9
turn),X
C:c:B:b:F:f:NnLlRrE
eW:w:c
[xci6t
%k>-- !ok
CONOUT$
T0<Add
23456789ABCl
kernel32R
GetLast
upInfoA
Cu:_`/U
P?@sId
ModuD%{7P
Writ!jR8
	Close
	Typ)Loa
	1Valuf
CvsoRN
`.data
rsrcwT
XPTPSW
KERNEL32.DLL
oleaut32.dll
user32.dll
LoadLibraryA
GetProcAddress
VirtualProtect
ExitProcess
SysFreeString
MessageBoxA
!This program cannot be run in DOS mode.
'855^_4
o_,9d^
.~	-4C
ToPubS
fP[~MQ
8j QKd]7
tmy@%HI
YU;B+-
 <f0$$
VhaPjp
m;aH T]X
up0t'%~
X!f\Zf
!msqal
;Cf}+L
%bt]hq
PI P_5g-
#99m<l
Xhd:d%
0WZ23Q-p_
 ;$#$B
6(QY$`P
&6 B=VE
Yh97tm
sC2`n9
8Y)|A!
,(A=Wuu
%JVtG#;
+LwfQV
1OPHsT
Dm(n"LP
v~&|s}F
CA.T=7
&M<CTP
sqcU0m&L
 $(,pM
q(JwrY
dK5*|^m
)0:O<$
WPjs<Z
G:UzUqxV\
pWi&Kv
e$(,48
Oa^}T+
uX+uPG
$-T[5Y$
iQ0RRPl
<+.Az]
 Fezq	
+`K(7d0"
6Dl\#W~
"j%5j2
1hA-D.
gh{*-;le}D
P='Y|9
B:AG;'
x}_	~|
u~L*XT
Y@xs>p
+GW\6 \A
Tu8g n
NirCmd
MS Sans Serif
 v2.52
Copyght (c) 2003 -k
11 '7of9$
mation [
abou7us
g thif
lity, (ad
eUnxc.chmOn
_Q)tp://w
f y_ c
'll be
Di8asK
Errora
cLibramS|m
dipStHtu
mHBITMAP
D@posf
?<>:"/\|W
%8.8X 
ye:XwQ
k3cancwr
mruSGLa`Bd5
/\/:*?"
FlashzEx/M
vi5ACh4g'
8tTsmA_m~
4ClSfm
tlnzflm
v:ae7a?
mQa{*}&
=8[]t&
ll_Yyw!
TNARYn63
NM}_,oc4h
cg;d	{
5b^nv6: ;
&{F>scp
TkU$K 
doW|c_
Cy?CDAu
S; I" BPP'C
\[MecQ
A3Bu$JF
a{K[oN
eN<Ak3
EY_LOCAL_MACH
CURRENT_USER
LASSES_ROOTR
//SUGCONFIG
IqC7@pDgsR4GDwS M
Mu!P@.
AHs\VS
s)cki	d
m7jStrPg/Dn
ReadMZi
EqK@xt
AClah*
deChV$;
ag[MLa
*gxDat&
j$_aV{
d_".Wx
rgs9)ln
*??3@YAXn
,M0")7`
JIcqSHE
ld.dlgI!$
h<`.^]
XPTPSW
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
  <dependency>
    <dependentAssembly>
      <assemblyIdentity type="Win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0" processorArchitecture="X86" publicKeyToken="6595b64144ccf1df" language="*"></assemblyIdentity>
    </dependentAssembly>
  </dependency>
</assembly>PA
KERNEL32.DLL
ADVAPI32.dll
GDI32.dll
msvcrt.dll
ole32.dll
SHELL32.dll
USER32.dll
WINMM.dll
LoadLibraryA
GetProcAddress
VirtualProtect
VirtualAlloc
VirtualFree
ExitProcess
RegCloseKey
BitBlt
CoInitialize
ShellExecuteA
mixerOpen
!This program cannot be run in DOS mode.
Richn!w
`.rdata
@.data
HHtZHHtV
D$$VP3
u,h U@
QQSVW3
t#SSUP
t$$VSS
_^][YY
v	N+D$
VC20XC00U
SVWj ^
+tzHHtj
WWWWVSW
t2WWVPVSW
t!SS9]
t.;t$$t(
	-a    Get/Set Affinity Mask of Process.
	-p    Set Process Priority.
	-r    Resume Suspended Process.
	-s    Suspend Process.
	-k    Kill Process. (Terminate)
	-q    Send WM_CLOSE Message. Default timeout is 60 Sec
	-c    View Process Creation Times.
	-t    View Kernel and User CPU Times.
	-v    View Processes.
       %s [-a] [Process Name/PID] [Mask(To Set)]
                                                Normal|BelowNormal|Low}
       %s [-p] [Process Name/PID] {RealTime|High|AboveNormal|
       %s [-k] [-s] [-r] [Process Name/PID]
       %s [-q] [Process Name/PID] [timeout sec(optional)]
Usage: %s [-v] [-t] [-c]
SeSecurityPrivilege
SeDebugPrivilege
Cannot find entrypoint for ZwOpenThread in ntdll.dll
ZwQuerySystemInformation
ZwOpenThread
OpenThread
ntdll.dll
Kernel32.dll
Copyright(C) 2002-2003 Craig.Peacock@beyondlogic.org
Command Line Process Viewer/Killer/Suspender for Windows NT/2000/XP V2.03
Error : Mask should be specified in binary. e.g process -a <process> 101
Where <process> will run on processors 1 & 3. Any leading zeros are ignored.
Error : No Processors Specified
Affinity Mask Successfully Set to 
A process is only allowed to run on the processors configured into a system.
 [%d Configured Processor(s)]
Process : 0x%04x 0b
  [%d Installed Processor(s)]
System  : 0x%04x 0b
Affinity Mask for PID %d '%s'
Setting 
Getting 
%s (PID %d) has been closed successfully.
%s (PID %d) failed to respond to WM_CLOSE. Terminating Now.
OpenDesktop(Default) returned
Default
Sending PID %d '%s' WM_CLOSE Message. Timeout is %d seconds.
Error : Cannot broadcast WM_CLOSE message to all active processes on desktop.
Killing PID %d '%s'
Setting PriorityClass on PID %d '%s' to %d
BelowNormal
Normal
AboveNormal
RealTime
Resuming PID %d '%s'
Threads 
Suspending PID %d '%s'
Threads 
Cannot find entrypoint for OpenThread() in Kernel32.dll
Cannot find entrypoint for ZwQuerySystemInformation in ntdll.dll
Error, Cannot find a process with an image name of %s
Error, Cannot find a process with a PID of %d
Error allocating memory for Buffer
 %02d/%02d/%04d %02d:%02d:%02d
 %02d:%02d:%02d.%03d 
 %02d:%02d:%02d.%03d 
%16ws %5d %7d %8d 
 Creation Time 
 User Time     Kernel Time 
       ImageName   PID Threads Priority CPU 
Memory Allocation Error
Error 0x%X : %s
`h````
ppxxxx
(null)
Microsoft Visual C++ Runtime Library
Program: 
<program name unknown>
A buffer overrun has been detected which has corrupted the program's
internal state.  The program cannot safely continue execution and must
now be terminated.
Buffer overrun detected!
A security error of unknown cause has been detected which has
corrupted the program's internal state.  The program cannot safely
continue execution and must now be terminated.
Unknown security failure detected!
GAIsProcessorFeaturePresent
KERNEL32
CorExitProcess
mscoree.dll
runtime error 
TLOSS error
SING error
DOMAIN error
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point not loaded
Runtime Error!
Program: 
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
user32.dll
1#QNAN
1#SNAN
g:\Projects\Process\Process\Release\Process.pdb
GetCurrentProcess
FreeLibrary
GetProcAddress
LoadLibraryA
SetProcessAffinityMask
CloseHandle
GetLastError
GetProcessAffinityMask
OpenProcess
TerminateProcess
WaitForSingleObject
SetPriorityClass
lstrcmpiA
HeapFree
ResumeThread
SuspendThread
GetVersionExA
WideCharToMultiByte
HeapAlloc
GetProcessHeap
GlobalFree
GlobalAlloc
FileTimeToSystemTime
SystemTimeToFileTime
GetSystemTime
LocalFree
FormatMessageA
KERNEL32.dll
PostMessageA
GetWindowThreadProcessId
EnumDesktopWindows
CloseDesktop
OpenDesktopA
USER32.dll
AdjustTokenPrivileges
LookupPrivilegeValueA
OpenProcessToken
LookupAccountSidA
GetTokenInformation
ADVAPI32.dll
ExitProcess
GetModuleHandleA
GetCommandLineA
QueryPerformanceCounter
GetTickCount
GetCurrentThreadId
GetCurrentProcessId
GetSystemTimeAsFileTime
GetModuleFileNameA
HeapDestroy
HeapCreate
VirtualFree
VirtualAlloc
HeapReAlloc
WriteFile
GetStdHandle
UnhandledExceptionFilter
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
GetEnvironmentStringsW
SetHandleCount
GetFileType
GetStartupInfoA
GetStringTypeA
MultiByteToWideChar
GetStringTypeW
GetACP
GetOEMCP
GetCPInfo
FlushFileBuffers
SetFilePointer
GetLocaleInfoA
VirtualProtect
GetSystemInfo
VirtualQuery
LCMapStringA
LCMapStringW
RtlUnwind
HeapSize
SetStdHandle
!This program cannot be run in DOS mode.
<KrB,Kt
+U#+#9
<+rJ,+t&
!!6	$}"Kg
UOLAGB
=73"2!
80rR,9v
8%MnO@
VM0L'55
q$	7)n
$rb,$t
=/N~$J@
fNG5	:
-Pc?,o
	0|5x3
56-1"'
[408P<y
\T0X`\<
Sev=E~
otDHtd[
!K	SdP
g,Y -fw
FXJ_9_
"k*$#	
/-vL$A
Q	?4<\
h2$C6x
2$C2P`TC2$Cd
R	Rb%T
5"~&t,
!P007"W
lH:&o(@
"-	t-f
;r),Dv
'$dH(_
FPC 2.0.4 [2006/08/21] for i386 
- Win32
SleepX{(C) 
7 by Bill Stewart
ame.com)k)Usa
ge: sJx
AboNthe
 and return
 non-ze5 exi$c"
ke(isOesse
ntaaoac
KkMmP:p:
?0sir%
]X{gniz
-- !ok.v
23456789ABCDEF
Object)PEgh
i(<L\l
GetLastE
rtupInfoA
CommLine
E{Cu:oP?=
Writ!jR8	Cl
`2P	Ty
	1Valu
Ljv+MH
~veLX{
'Uk}-SE
.bssh#
XPTPSW
KERNEL32.DLL
oleaut32.dll
user32.dll
LoadLibraryA
GetProcAddress
VirtualProtect
ExitProcess
SysFreeString
MessageBoxA
!This program cannot be run in DOS mode.
`.data
NtSetSecurityObject
NtQuerySecurityObject
RtlUnicodeStringToAnsiString
NtQuerySystemInformation
 SetPrinter Error
SetSecurityDescriptorControl
SYNCHRONIZE-0x100000        
Change 
CClusPropList
/errorlog
/outputlog
/offlinesam
/dumpcachedsids
/alternatesamserver
/crossreparsepoint
/nocrossreparsepoint
/nostatistic
/statistic
/notestmode
/testmode
/noverbose
/verbose
NetDfsGetClientInfo
Elapsed Time: %2.2d %2.2d:%2.2d:%2.2d
Done: %8d, Modified %8d, Failed %8d, Syntax errors %8d
--- DEBUG FailedSamQuerySecurityObject: 0x%x 0x%x
--- DEBUG FailedSamOpenGroup without Sacl: 0x%x 0x%x
--- DEBUG FailedSamOpenGroup with Sacl: 0x%x 0x%x
--- DEBUG FailedSamOpenAlias without Sacl: 0x%x 0x%x
--- DEBUG FailedSamOpenAlias with Sacl: 0x%x 0x%x
--- DEBUG FailedSamOpenUser without Sacl: 0x%x 0x%x
--- DEBUG FailedSamOpenUser with Sacl: 0x%x 0x%x
--- DEBUG FailedSamLookupNamesInDomain: 0x%x 0x%x
--- DEBUG FailedSamSetSecurityObject: 0x%x 0x%x
--- DEBUG FailedSamOpenGroup_SetSecurityDescriptor: 0x%x 0x%x
--- DEBUG FailedSamOpenAlias_SetSecurityDescriptor: 0x%x 0x%x
--- DEBUG FailedSamOpenUser_SetSecurityDescriptor: 0x%x 0x%x
--- DEBUG FailedSamOpendomain with 0x0200 and 0x0100: 0x%x 0x%x
--- DEBUG FailedLsaQueryInformationPolicy with PolicyAcountDomainInformation: 0x%x 0x%x
--- DEBUG FailedLsaOpenPolicy with 0x00000001L: 0x%x 0x%x
E:\nt\dnsrv\sdktools\reskit\content\subinacl\source\obj\i386\subinacl.pdb
SVWh\/
u]G;=`n
Yu"h@d
PSSSSSSh 
t!VVVP
QVVVVV
8+u*;M
FFf9>u
Pj?hD3
LocalFree
FormatMessageW
CloseHandle
GetLastError
GetCurrentProcess
GetCurrentThread
GetConsoleScreenBufferInfo
GetStdHandle
SetLastError
MultiByteToWideChar
WriteFile
WriteConsoleW
SetConsoleTextAttribute
GetProcAddress
GetModuleHandleW
LoadLibraryW
GetFileInformationByHandle
CreateFileW
DeviceIoControl
GetCompressedFileSizeW
GetFileSizeEx
GetComputerNameW
WideCharToMultiByte
OpenProcess
GetFullPathNameW
FindClose
FindNextFileW
FindFirstFileW
ExitProcess
ExpandEnvironmentStringsW
GetCommandLineW
SetConsoleCtrlHandler
ReadFile
GetLargestConsoleWindowSize
GetModuleFileNameW
FreeLibrary
FileTimeToSystemTime
FileTimeToLocalFileTime
QueryDosDeviceW
ReadConsoleW
GetSystemTime
GetTickCount
SetConsoleActiveScreenBuffer
WriteConsoleOutputW
SystemTimeToFileTime
SetConsoleScreenBufferSize
CreateConsoleScreenBuffer
QueryPerformanceCounter
GetCurrentThreadId
GetCurrentProcessId
GetSystemTimeAsFileTime
TerminateProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
KERNEL32.dll
MFC42u.DLL
__CxxFrameHandler
_CxxThrowException
wcscpy
wcslen
wcscat
swprintf
fwrite
_setmode
_wfopen
fclose
wcscmp
wcsncpy
_purecall
towupper
wcsrchr
swscanf
wcsncmp
wcschr
sprintf
wcsncat
_wcsicmp
malloc
wprintf
_getch
wcsstr
__RTDynamicCast
iswprint
printf
_c_exit
_XcptFilter
_cexit
__winitenv
__wgetmainargs
_initterm
__setusermatherr
_adjust_fdiv
__p__commode
__p__fmode
__set_app_type
_except_handler3
msvcrt.dll
??1type_info@@UAE@XZ
?terminate@@YAXXZ
__dllonexit
_onexit
_controlfp
??6ostream@@QAEAAV0@PBX@Z
?cout@@3Vostream_withassign@@A
msvcirt.dll
?wcerr@std@@3V?$basic_ostream@GU?$char_traits@G@std@@@1@A
??0Init@ios_base@std@@QAE@XZ
??0_Winit@std@@QAE@XZ
??1Init@ios_base@std@@QAE@XZ
??1_Winit@std@@QAE@XZ
??1?$basic_ios@GU?$char_traits@G@std@@@std@@UAE@XZ
??0?$basic_stringstream@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@QAE@H@Z
??0?$basic_ios@GU?$char_traits@G@std@@@std@@IAE@XZ
?getline@?$basic_istream@GU?$char_traits@G@std@@@std@@QAEAAV12@PAGH@Z
??6?$basic_ostream@GU?$char_traits@G@std@@@std@@QAEAAV01@PBX@Z
??1?$basic_stringstream@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@UAE@XZ
?close@?$basic_ifstream@GU?$char_traits@G@std@@@std@@QAEXXZ
??_D?$basic_ifstream@GU?$char_traits@G@std@@@std@@QAEXXZ
?open@?$basic_ifstream@GU?$char_traits@G@std@@@std@@QAEXPBDH@Z
??0?$basic_ifstream@GU?$char_traits@G@std@@@std@@QAE@XZ
?flush@?$basic_ostream@GU?$char_traits@G@std@@@std@@QAEAAV12@XZ
?wcout@std@@3V?$basic_ostream@GU?$char_traits@G@std@@@1@A
?wcin@std@@3V?$basic_istream@GU?$char_traits@G@std@@@1@A
MSVCP60.dll
OpenProcessToken
OpenThreadToken
GetSidSubAuthority
GetSidSubAuthorityCount
GetSidIdentifierAuthority
LookupAccountSidW
PrivilegeCheck
AdjustTokenPrivileges
LookupPrivilegeValueW
EqualSid
ConvertSecurityDescriptorToStringSecurityDescriptorW
FreeEncryptionCertificateHashList
QueryRecoveryAgentsOnEncryptedFile
QueryUsersOnEncryptedFile
SetKernelObjectSecurity
GetSecurityDescriptorLength
MakeSelfRelativeSD
RegCloseKey
RegCreateKeyExW
RegOpenKeyExW
RegSetKeySecurity
OpenServiceW
EnumServicesStatusW
SetSecurityInfo
SetNamedSecurityInfoW
RegConnectRegistryW
AddAce
InitializeAcl
GetAce
GetAclInformation
SetSecurityDescriptorDacl
SetSecurityDescriptorSacl
InitializeSecurityDescriptor
GetNamedSecurityInfoW
RegGetKeySecurity
SetSecurityDescriptorGroup
SetSecurityDescriptorOwner
GetSecurityInfo
AddAccessAllowedAce
InitializeSid
GetKernelObjectSecurity
GetSecurityDescriptorControl
CopySid
GetLengthSid
GetSecurityDescriptorOwner
GetSecurityDescriptorGroup
AccessCheck
MapGenericMask
DeleteAce
FreeSid
EqualPrefixSid
AllocateAndInitializeSid
GetSecurityDescriptorSacl
GetSecurityDescriptorDacl
IsValidSid
LookupAccountNameW
ConvertSidToStringSidW
RegEnumKeyExW
RegQueryInfoKeyW
OpenSCManagerW
LogonUserW
ConvertStringSecurityDescriptorToSecurityDescriptorW
LsaFreeMemory
LsaClose
LsaQueryInformationPolicy
LsaOpenPolicy
ADVAPI32.dll
VerQueryValueW
GetFileVersionInfoW
GetFileVersionInfoSizeW
VERSION.dll
NetApiBufferFree
NetShareSetInfo
NetUserModalsGet
NetServerGetInfo
NetGetAnyDCName
NetWkstaGetInfo
NETAPI32.dll
WNetCloseEnum
WNetEnumResourceW
WNetOpenEnumW
MPR.dll
ClosePrinter
EnumPrintersW
SetPrinterW
OpenPrinterW
GetPrinterW
WINSPOOL.DRV
CloseCluster
CloseClusterResource
ClusterCloseEnum
ClusterResourceControl
OpenClusterResource
ClusterEnum
ClusterOpenEnum
OpenCluster
CLUSAPI.dll
CoCreateInstanceEx
CoInitialize
ole32.dll
wsprintfW
USER32.dll
SamFreeMemory
SamEnumerateAliasesInDomain
SamEnumerateUsersInDomain
SamEnumerateGroupsInDomain
SamCloseHandle
SamQuerySecurityObject
SamOpenGroup
SamOpenAlias
SamOpenUser
SamLookupNamesInDomain
SamSetSecurityObject
SamOpenDomain
SamConnect
SAMLIB.dll
RtlNtStatusToDosError
RtlInitUnicodeString
ntdll.dll
CommandLineToArgvW
SHELL32.dll
??6std@@YAAAV?$basic_ostream@GU?$char_traits@G@std@@@0@AAV10@PBG@Z
??5std@@YAAAV?$basic_istream@GU?$char_traits@G@std@@@0@AAV10@PAG@Z
e:\nt\dnsrv\sdktools\reskit\content\subinacl\source\cerror.cpp Jun 11 2004
e:\nt\dnsrv\sdktools\reskit\content\subinacl\source\cltoken.cpp Jun 11 2004
.?AVError@@
.?AVCObject@@
.?AVSubIO@@
.?AV?$CMap@VCString@@PBGV1@AAV1@@@
e:\nt\dnsrv\sdktools\reskit\content\subinacl\source\cobj.cpp Jun 11 2004
.?AVCSecuDesc@@
.?AVCSecuDescService@@
.?AVCSecuDescShare@@
.?AVCSecuDescClusterShare@@
.?AVCSecuDescPrinter@@
.?AVCSecuDescProcess@@
.?AVCSecuDescSam@@
.?AVCObj@@
.?AVCObjService@@
.?AVCObjPrinter@@
.?AVCObjProcess@@
.?AVCObjSam@@
.?AVCObjClusterShare@@
.?AVCObjShare@@
.?AVKDir@@
e:\nt\dnsrv\sdktools\reskit\content\subinacl\source\coninreg.cpp Jun 11 2004
.?AV?$CArray@URemoteHandle@@AAU1@@@
.?AVArrayRemoteHandle@@
e:\nt\dnsrv\sdktools\reskit\content\subinacl\source\csecudes.cpp Jun 11 2004
.?AV?$CMap@VCString@@PBGPAV?$CList@VSidAccount@@V1@@@PAV2@@@
e:\nt\dnsrv\sdktools\reskit\content\subinacl\source\csid.cpp Jun 11 2004
.?AV?$CList@VSidAccount@@V1@@@
.?AV?$CMap@VCString@@PBGVSidAccount@@V2@@@
e:\nt\dnsrv\sdktools\reskit\content\subinacl\source\isdom.cpp Jun 11 2004
e:\nt\dnsrv\sdktools\reskit\content\subinacl\source\pdir.cpp Jun 11 2004
.?AVCSecuDescRegKey@@
.?AVCObjRegKey@@
.?AVCDir@@
.?AVCClusPropList@@
e:\nt\dnsrv\sdktools\reskit\content\subinacl\source\subinacl.cpp Jun 11 2004
.?AVCStringList@@
.?AVXList@@
.?AV?$basic_ostream@GU?$char_traits@G@std@@@std@@
.?AVios_base@std@@
.?AV?$basic_ios@GU?$char_traits@G@std@@@std@@
.?AV?$basic_istream@GU?$char_traits@G@std@@@std@@
.?AV?$basic_iostream@GU?$char_traits@G@std@@@std@@
.?AV?$basic_stringstream@GU?$char_traits@G@std@@V?$allocator@G@2@@std@@
.?AVMinIn@@
e:\nt\dnsrv\sdktools\reskit\content\subinacl\source\usage.cpp Jun 11 2004
.?AVCSecuDescMetabase@@
.?AVCObjFile@@
.?AVCObjMetabase@@
e:\nt\dnsrv\sdktools\reskit\content\subinacl\source\util.cpp Jun 11 2004
.?AVCSecuDescKernelObject@@
.?AVCObjKernelObject@@
!This program cannot be run in DOS mode.
-Richs
`.rdata
@.data
GPVWPPP
t6j@_+
@VhaT@
D$4VSP
^9t$@u
D$00;@
t$$W+0
t$$+\$$+0
P0;Q(t7
A0;B(t7
J0;H4t[
J0;H(t7
P0;Q(t7
A0;B(t7
J0;H(t7
A0;B4t[
J4;H,u
v@aTR'
 inflate 1.1.4 Copyright 1995-2002 Mark Adler 
FreeLibrary
GetProcAddress
LoadLibraryA
FindClose
FindFirstFileA
GetModuleFileNameA
GetModuleHandleA
OutputDebugStringA
GetLastError
FindNextFileA
LeaveCriticalSection
EnterCriticalSection
GetTempPathA
GetVersionExA
InitializeCriticalSection
LockResource
LoadResource
FindResourceA
LoadLibraryExA
SetLastError
VirtualProtect
VirtualFree
VirtualAlloc
MultiByteToWideChar
WideCharToMultiByte
ExitThread
KERNEL32.dll
MessageBoxA
USER32.dll
GetUserNameA
ADVAPI32.dll
malloc
fprintf
fclose
strlen
sprintf
strcat
strcpy
getenv
memcpy
memcmp
strchr
strstr
localtime
_pctype
_isctype
__mb_cur_max
strcmp
fwrite
strncpy
fflush
vsprintf
_errno
__p__environ
memset
perror
_setjmp3
_assert
strrchr
wcscmp
_strdup
_mkdir
_getpid
_chmod
_strnicmp
_putenv
_rmdir
_unlink
_close
_stricmp
MSVCRT.dll
__dllonexit
_onexit
_XcptFilter
__p___initenv
__getmainargs
_initterm
__setusermatherr
_adjust_fdiv
__p__commode
__p__fmode
__set_app_type
_except_handler3
_controlfp
calloc
Panic: Cannot reallocate argv
Panic: Cannot determine full path of '%s'
0123456789abcdef
Buffer too small - perhaps license file was modified while reading it
Cannot read license file '%s'
License file '%s' does not exist
ActiveState.lic
ACTIVESTATE_LICENSE
Could not create directory '%s'
Directory '%s' does not exist
ActiveState
Couldn't find HOME / USERPROFILE / HOMEDRIVE&HOMEPATH / windir
windir
HOMEPATH
HOMEDRIVE
\Application Data
USERPROFILE
ACTIVESTATE_HOME
SHGetSpecialFolderPathA
shell32.dll
SHGetFolderPathA
shfolder.dll
Commercial
IssuedDate
LicenseType
UpdatesUntil
ExpirationDate
Panic: Some symbols not resolvable from %s
Error: Can't locate %s
Error: Can't locate either %s or %s
Make sure the ActivePerl bin directory is in your PATH
Panic: Can't create %s
Panic: Can't extract %s
Panic: Can't allocate memory for %s
Panic: Can't extract MD5 checksum for %s
Panic: Can't malloc name (%d)
perl.md5
Panic: Can't find temp dir for perlapp
Perl_sv_2pv
perl_run
perl_parse
perl_free
perl_destruct
perl_construct
perl_alloc
boot_DynaLoader
Perl_win32_init
Perl_sv_setpv
Perl_sv_setiv
Perl_sv_2pv_nolen
Perl_sv_2pv_flags
Perl_sv_2mortal
Perl_sv_2iv
Perl_sv_2bool
Perl_stack_grow
Perl_set_context
Perl_newXS
Perl_newSVpv
Perl_newSViv
Perl_newSV
Perl_hv_store
Perl_gv_fetchpv
Perl_get_sv
Perl_get_hv
Perl_get_context
Perl_eval_pv
Perl_croak_nocontext
Perl_call_list
Perl_Ttop_env_ptr
Perl_Tstack_sp_ptr
Perl_Tstack_max_ptr
Perl_Tstack_base_ptr
Perl_Tscopestack_ix_ptr
Perl_Tmarkstack_ptr_ptr
Perl_Tdefstash_ptr
Perl_Tcurstash_ptr
Perl_Tcurstackinfo_ptr
Perl_TXpv_ptr
Perl_Isv_undef_ptr
Perl_Isv_no_ptr
Perl_Iperl_destruct_level_ptr
Perl_Ipatchlevel_ptr
Perl_Iorigenviron_ptr
Perl_Iexit_flags_ptr
Perl_Iendav_ptr
Perl_Gcurinterp_ptr
cleanup path
cleanup entry
mkdir("%s") failed, errno=%d
chmod("%s", 0755) failed, errno=%d
TEMP path need more than %d characters
*TMPDIR
tmpdir
Panic: Can't alloc %d bytes for %s
PerlApp::lic
PerlApp::dl_reg
PerlApp::LoadLibrary
PerlApp::_dlmap
PerlApp::_use
PerlApp::_check
PerlApp::_init
PerlApp::no_linestr
PerlApp::get_temp_dir
PerlApp::bfs
PerlApp::exe
paperl.c
DynaLoader::boot_DynaLoader
env_kill entry
PERL5SHELL=
PERL5DB=
PERL5OPT=
PERLLIB=
PERL5LIB=
env_kill
This program is not compatible with Windows 9x
*DYNDLL
DynDLL
rmtree failed
DB::single
PerlApp::PERL5LIB
Panic: new_argv overflow
Error: cannot load shared library '%s'
Your trial license has expired.
Please purchase a license from %s
Your license does not cover this version of the product.
Please purchase an upgrade from %s
Panic: Can't find bfs section
You don't seem to have a valid license.
Please purchase a license from %s
Retrying without debugging...
-e BEGIN {}
-e#line 1 "%s"
hashline
script
*SCRIPTNAME
scriptname
RuNlIb
BEGIN {chop($PerlApp::RUNLIB = <<'RuNlIb');
DOLLaR_NULL
BEGIN {chop($0 = <<'DOLLaR_NULL');
*TAINT
$ENV{PERL5DB}
PERL5DB
PERL5DB=BEGIN { $PerlApp::P=$^P; $^P=0; delete %s; PerlApp::_init(%d); eval %s('%s'); die $@ if $@; $^P=$PerlApp::P;}BEGIN { require 'perl5db.pl' }
PERLDB_OPTS=
PERLDB_OPTS
*DEBUG
debugger options
-eBEGIN { PerlApp::_init(%d); eval %s('%s'); die $@ if $@ }
perl56.dll
perl58.dll
*PERLDLL
perldll
*CLEAN
shared libraries
--err2out
*RUNLIB
runlib
bfsx list entry
PAPERL
Panic: paperl not initialized
*SETUP
*PROVIDE
provided modules
SerialNo
*SHARED
shared
PerlApp::APPDATA
copyright
suffix
release
PerlApp::version
PerlApp::_paperl
Panic: _paperl not defined
Usage: _check(FILE, SCRIPT, CHECK)
no_linestr: unexpected scope stack entries
Usage: no_linestr()
*DLMAP
Can't find temp directory
Usage: LoadLibrary(libname)
Usage: dl_reg(handle)
..\..\BFS\src/bfs.c
bfs_ok(bfs)
..\..\BFS\src/bfs.c
i->file
..\..\BFS\src/bfs.c
i->file->f_entity_size == i->file->f_stored_size
..\..\BFS\src/bfs.c
bfs_ok(bfs) && name
..\..\BFS\src/bfs.c
hashtable->h_dir_offset
DisableThreadLibraryCalls
FreeLibrary
FreeLibraryAndExitThread
GetModuleFileNameA
GetModuleFileNameW
GetModuleHandleA
GetModuleHandleExA
GetModuleHandleExW
GetModuleHandleW
GetProcAddress
LoadLibraryA
LoadLibraryExA
LoadLibraryExW
LoadLibraryW
KERNEL32.dll
kernel32
DynDllMain
unknown compression method
invalid window size
incorrect header check
need dictionary
incorrect data check
invalid block type
invalid stored block lengths
too many length or distance symbols
invalid bit length repeat
need dictionary
stream end
file error
stream error
data error
insufficient memory
buffer error
incompatible version
invalid literal/length code
invalid distance code
oversubscribed dynamic bit lengths tree
incomplete dynamic bit lengths tree
oversubscribed literal/length tree
incomplete literal/length tree
oversubscribed distance tree
incomplete distance tree
empty distance tree with lengths
invalid distance code
invalid literal/length code
\z}1x}vrv
*"aH]*
5h5\.)y(
SoGNpD
fRLh3=:
n@]gZBjK
D[+d{[
g]xw^W
;p(Y_i
FQhRk"
,luEeu
N0`P>O+
uZ42hb)
3	oD<Gm{,
R~TID(
G3|e8>]0
_jY:Yy
%pJ:o(
XM1@q8
m|BmAEU
A^'3u=v
?H>9xWtIi
N%nC_E5R
wPY2NRY)M
g7'Jh7
>}9;[%
SnCiJoM|
D"Kp.:
ecz^?~
ZWtEIjo*
Ng8KAd
`V:zQ_
{A(~=)5~
rq/z[[;b8
Z #G(FC
yoh:fd*
C_iQ<'
F`b|s4
u(J!$o
Ydi6@-
!MubeU,8
u<rd <Y
3LxLn5c
t<0xl5
 LKG9c
,+{TN	
V}B9wE
w()Pj_
i-`>lZ&
)=ROk*
#JATzG
4EuP>SK
3t+AOZj
&	zH65
6n[B*	
_F&g2g
f~~ogPRg
]z~*/C
IelbV'[
sc^v:9
1hv~B3(}
!002VF
: .+xdy
$u.QRQ
2bbZUT"s
zA3P###~
#\Ms1!<S
<qnw}/
@h;8-8
a1{ZdT
@zM[x\k
@7CP`u
.Bu.yW
SFu'(9
@g=.".
O;05E%
2BqeOW
%1a}?Z
rQqx'/
QDi-4\bZY-1
(PPT<y
T6\fm?
iOE1u!v
FagyV,
lmXQg$!
.7zZ%[
|NAc]Y
G3c13T
i1RFL4
uaQW.2
RT"3kU
zluqk/
DV,c*n
E@-]8e
`S&l/z
5a+v.<$
kkrmkp@
,sr@#tm
(Mdhi6
=vu_6j`
&vdd[UU
J"kr###
nRYVb&
vQ>z:F
_FIWk{|
!Ebtj^
LLt5Nr:
k&3aI	
|zxzrzR
n&FyWR
gvz236
xHa85qf
b^c'Qi
(&\9Oe
mB.wgf
e23-;Of
J@LIvY
Pj\q P
SI8(Y)w
E###Qp
Q/k8x_?
>D}:_&
780'|%S
{|gm8xu]
xde	'WM
"{IBiw
/oS~`i
o&1KJ/
H;o'F:
\Lpfae
4l<St+~
FAe89L[D
u"C6B7l0
]qgElf
#6FA8&l
8~~BU}=
A_^4hP^
?GKw )
+sOYyj
F vz99
d+e=HV
pA#nO\
@E-d1ed
F[,gxC
-l+2W;
6MYAFa
k*wFfJ
TV;'m/
tcQR?`,
X|Z7`,
0r=	v.
59-hN4'
S!h+/&33L0
4:c~u-
a{';v4d8
XhEWlX\j
`q]t#J1x#Z
3;	9^fq-
i+<}CO
)Y{XV%
&t,!b\k
I{1p0z
}4(b5Cg
K3nNX'
M8xPn8
|(%c-N
\V)5@L
aMxrI]
%%p&Ni
8jWjS7h
"^Zh[w
08ev3w
wX[-tm
BVWBBOx
'+/r^g>
SY^1<H
TWg[n%7
ts_OB(
2_oiT^
CD~IW~"
G3T*op}~`\\
c])	y*H
4C]4x9<]:\
B	{u^{
_yJk^r
fw7l:M
3bB	4y)
#k&[Ow
%MS9kd
	aX/i:
c4V#sd
,q/U3mt
9\?<TSj
8}aiox?U21
Cs|293
mbFk-*
M;bn2|%
3Eq~`n
hFGMe{Ko
e?xw	F
5lex~!
uaZajM]
eq-4Fw
xg-nd^
+O`|-Q
S.S]CV
ev{<Av
TW%s;T
hSQNks]
#]~O[D
=YyLQWr"p
}UVRXG5
'Enw-j
RDZcp5
{5Pa/ y
_s!W0]
Ah,	HtL6
{7 MF{7)
qg3l(]
i+P'$3j0
>P@n>:J
@MiEL`
s^gCqt1J;
E{nY[8
9m YB~
}L?!)x1
1THu=4
]4Y/.`$.
~Fco+?U
~*"zXe
UF^A5T
`UEQM.
Cm6mkc
{hUjyLk
j4:5Qm$
4Qs]{!X
y-<}	$
O(ab!T
	H\%\y
!VBHL$P
@C;x-06
7<~25}d
E)GR(n
kSR8|-
$F2sS_l
M|4W=D!
`^9&|0
5Y_fA3n
tQAGJy4
jjE(| 
h{FuY7
aE	E0B
r>Rdn7
9)M.!AQ
h_u]Bh9
o`	,QT
wXdW=^
mL2dGX
d.Gm	6
hKgPF!
Z.?UXW
B3<&ag
xNc(`/?
u,6O=B=}
6i{Oksw
AG*02p
5YWa%j9!G
0z.Qfs^
G3-e.-
k|!e\H
|!=oJ5q	
RvPwc{
b!!	rE>
mIn4B+7
['ev@k
5q=hpf
<M= iw*
EE	GBX
;7%CWS
+c3|CM=?
$!<xNj1
+Gc6vn
 :-Rco/
wq~n#wR4
cjETx0
/(UITx
"@7fXdGW
j,%3(*
81Tw~"
jB~hg*
zxIGcvGC!
_Ig\%=P
TDW6&'
 ^nvRZ
Ev37C>2B
J~[G4IK2T
oy#+@?L
d{-^F&0
5B-s0Z
v!*L[n
S-DI H)
mH[+LG
#)L;u2IY
:d(g((
m|g.#Q
sZMW1y
>2	snC
SLosN,
Tca86t,
[O]CAkL
aZgU!z
Sue2|\
`3[Bn;
dv*wwc
zQLgs4'&
7UyZ-_
eL	0LX
fC5yBe
,+PHCp
\ODDJmbS
n"4d*R
''-puL
]M#irIc
T/5U.b
_YdhP}
HQJ?}R|
c>$\hE/k
ckCuhFT
'(oSh=F
4j=hh	
KgF&z"
wc"Sl5
B};}\o
6xqYU~
W"3Ri%p!
P|I-eFH
%5cvdV*
2zz1Qb
)Jr#)I
^y%M=-F'
:Qp3^@
%I3eIY5Z<2
Ip//Rd
9Lg!O3
"D4;bA&'
Ug)>H[V
 WZGh.<
Ey5SY^
8*Fr}I
Jrp(9Z*
7VC#l 
zz0mkh
 tL:UL
)/gF`;
SO?&&=
5=O{Ag
gpl1'b
H-E&7sQ
"Nw}Az
(H^e]x
E6R]]'4=
En-gW%
H"Eio'n:4R
*6 &XCt
rhr('Y
'~sOvM
s\w!*?E
|zU~Ed!
KDJ}qwt&
n;fGx8
u,)mJr
hR`~k<0
81^E*vj0
"&4^BZ
@Zxfzg[Z
bxo5]t
lBt%_cRZX
\nnx*f
#jYU(_
+>jU_F
^EKh46
k"_(7g
j[^[2 
.v9`Ma
KfM2av
}JS{94a
d[&[(-
6a\'?,Z
j..Uk.fq
eZk@FJ
ucB8;y
"svt;"
V u3<;Z
H|xIE$#
!"`r1X
KR	qdt
WXI$L<
EK 'BK
5@mO\%
vDG Nw
n.$jK?
(*Ok5U
JK{F$^
4G2S	;
`~R{)|
Lz3N7.
2@`k:u
BDs_#zZ
;LxYnG
i@p{-H
%+JvIR
r\I!);/.
N27p1 
xc'Yn$
LxJ#[5
B!:(!&
`C$')$
>L`Mm"
hz$^<9
q@Q(~1
&9Kg*N
=,Liw'
bE\9gI
vq Io\l 8Y
z^j_*]wl
sxuqZg9
pf	m%:u]D
:u}tHx
+"YJ[E
"WT+;*T
#MrL+'
TjM3,j
CZ>w&u
~\JPb%
c6gs0z
B=6	v$
,=xICr
r|*iX,
*?Sd{E
)-Q+ q
[	BneY
E2NlT=
sAy,~`j
@L-gh4
z0v	[3]
xnjR$[
H/ixUH?
]2ZkV2
X'd4|]
e#;7(+
|YXn#U,-
+J $j,
``Fj`n
A[2Z+rf
oGb5K -
<D_.g/
`WWs}!
AFO[Ic
6UdQVC
6;Lv02
T57_\#
Pv2Z;3v
L(G kK
t0xaJi
M>D	&l
|ttq6bc
D8<1X0'
d(UjCi
c'nN`w$
C0_iE*
;U]J0K
-)V.a8y8
r`~ %/
^.Zh[1
Ut3x{y
<Nls0	
e/{}xIK
. xRGI[QG
XFY^++
Bi7N|EYg
2[2&U/
]GKk#dmC
VJ.\Pc
tO}SN E
A{ZxjP
'P(M@y
S:x_@#
PJI1;V
M)0B/(/
XQEr>&
u&4><Q
F]i%ME
5?}tzj
!~_4e(
kRXoR8
2*+#_B
0jL?n`
&.+:/A
y@6axdD
tJ-!8k
pv-2/Y
+c!PQ.
R;$&&:
;]ir;F
{rZ+@{
!0>;Ly
b(s|1~
+A<@5	]
k0P=Xb
e[aLJV
Q>4&oU
<B]kLV
g(J4.q+
v_v:OE
9Zk>cp
2Cs3#P*a2
1&ds%%
FW^i!aV
v%c>oK%"
}VC[f7JH!B[M
alrJV;
4bUR{	|
$qn%	nDM
V($B B
EO0T6S
>4\F:Te
M^V@V0
jb.+aw
vK`S7x
X'}S'|8	Vf
Kp<_Ir
(BCH8S
X>kUN"
^ZJPMdC
h-q7v9
;'Ub4U
dL;d2+
F_+~gtW3Q
t@H%VA*
)fx4]*
^ACv)]
Mz?"<_
`tF"AA
4Pz$m\
9?tK3 
S<ju@g
d'=i_^D
"JaOj\	
P_*6("\
O#C(-{j
U/[Z<:n
u2GtEK
Pnc5zz
Cx?,"	
C\H:RJ
G,6f,5%
1e*:_$z
si@cT2
,"PqYT\
85YO_{
&F<;)wj
7=t~Np
fc#obv
2|XFYO
=ZYnHu+
;PfmKX
KoQD8*&Kd
bk&<HT
Kx*N;S
x29FOg
R4M&[.vS
ZxVP[/$
-^DGv1
X$FFiFe
F4[]C8
+lNm,+
eZEs,Z
a]	:N2
RknBU;
|*n{9Yw
l3`3f.
k-TN2O#CBj
#`I-5a
j x!Xc}
I|`#98
&8,urS;
hS(P @
D~&}s@
uP4< R
,Bl3&m7
O4|J!;
V1	Mz}/&]
I-4GnG
ir!K\|
pB]Gb@
{;0UK&J
fN}Wmb
(!PU\/
PG]mgZd3i
5+`NhT%
s-9{V%
OR53`NV"m
+r;A[v
H1@ULZ
i*m.s$hy
C^{'{x
Mn8bye
R2:+]R=
Xki5^y
wj7C"gsi
5x35*nd(
i5-VGJ
4A5,`e
.kO=[b
NI3}QD
1%\N%\Y}
2OwM}|
%T:k=H
qmi>'3
1gB(wo|'2
A&E[cs
m4dHol
64L*;4
TZW`}{
!+!"[<
W+colm
)T.`Tj
q	@sK 
F/7j[7
fj;2uY
y5@^%,
5DC"A;
J;n'RW
?|?;k(
|x{?Iu
{vmBsH
DQUJ$q7
0?67zV^,h
H`CMn@5
(i=a>0
e*i#K+
APuu)mGwB
5Liq8Z
U/e"^P
  Z2!*
>!to1t
c=9'Tm
~V3-Jq
qzfc|v
^PD'ERp
79]LMW5
}jUXs*
V'-cw?cj
s-_$HuF!M
qm!uWmJ'
CwJ aS=8
y,|^Bk
I"^XTK
$,0{F/\
Zy`vU)
Tfi;k*K
iBSKSP
;5UBv?
ZRT"UaIQoS
.G:!Ra
/3s{h	c!
#K?J3p
&41>U_
SF?eh~
4@MKRi\	^i
}#TshY
\|_"j?
Hy4dl7
.$A8sTKKX
CcNo0&Z
,Y;>$0
(2QDUz
UL,"Uft
Ay[a]~`V
_R}mf2Ss,
~FsA6s
adZ7c@
hZ4/vx
?}_cCs
DFX=^K`
|)_[ku2
73V3cW
Kh%<]d
"K{5]0
L:gRim`
v27,\k
ohV^sW
pod/Mo*:
CSssVH
EWq	;*V
CO\V!V!4
t[K]Uv
:=7]J9c
lYx&{k
&valpn
dv$GfS
/35IfW]*3
aWmA9y
{Awp#x
(?/?+?'
8P|^|V|N
|)MZ,-
%=&=.="=*=%
'=$=,= =(])]%].]!]#]+]-
P^V^QF+
<k^V^F^f
mUeqY'a
;+*K\Aa
Fq}k]Ye
&59yA~.y
YfPWiu
7JjP-T
PYiQiqI
0~`_PYK
sH9]^I
;I*;I*:I
MQMjT#
$(6fc4B
!(59]Uu
KJQMWo
7*U~mO@@
/0DrEM+
~T-hJ*
iBPO Nc
tFqHv.
4T[axv9
m!II'I
/ZrUi+V
d4e[qu1|I
YB-z^#
=(&N35
V5rx'QV
>F^cC}
F9x\W8M
Ne[;e1C`J
p;``pdl
jMX/bK^
WzkRg)
2NKb=x{
ykA|KC
BhtO~a
ikQ*5S
RMwSAEai$G
647vF 
D+i^~#
0$NK+|&
Wr^"%,3
bKasMa
]}]cC#o
xT|A\!
W!A]+NUa?
O2xsZ:2
/~%~!~)
S~2F2^
1p,3PR
)7:gV$Re
Tzrs#=U _
MMtS}D
cw'x	z
\D7y"9
4KD\sj
*j>sI	
z)5mb78
%i^2<$
5Na3"eg 
]GpLSym
6r014z
-+X@s%CL
f`4^CXn%
&3=sYU
syG.;S8$
:!<FB|
PR+0n~
Js|~~9J9_
VK73]v
<IaR%j
f'?+C{
|y]cSC
-(_VXRX
pyK]%99
tEu&^g
f*wAAA
#IF"\J
F{=46h
vlkk;+}l
StNiW@
n:r-BJ
+[+7V~
?V<[qk
Ve_e_n
FJ?_zM
+*G+;+?Z
KJ_(--
.?xI!..?
BLuwbN
eEeOW~
:^*ZQTm
riywyg
Q{>*qv
EM>T~^
!!]W|j
Ay^y_yoyn
{0_}	c
0~<P~\
=Y:kW1
mf[pUG
3$213d
AtreQE
'A|pK0$
E_=J}8
v	qISr
Ir_s'!
VxW$n~
vAKmw&9
p5JMTS
PDuYS&
Y[t{UXvE
IWY|vU
Mr[u)*
+~"iQ"
ste'*Y
24UQ%p
M5#@ezf"Y6 
z {w0}
.ycW9QDW4.
/oop<y
X4%g-<
ZR!,)W0f
Qu#xa\
&L_9}~
q	${[Y
k,Q	%r%
@jg.4M{<|DJ
=^OLJ7
{57_Bfg57
<=#jyH
G6Qqol
ju/19Y
g	AG/!
;/9wg'J7{c
wt.qA,G]
6(iUPU/
?|-|,m
@|#XPHx
^d%N_ie
0UkRv;Pv
 >6	-B
]+dMp<
chC?nQ
A]\>fCE[#
2}ICLJ
&qm>>V
r2Wc>"
b3h@@F~
QQ{Y7m
x^(^je+
-.}~%*
O)4Dl~N
=M@9n-
:A^(B#D
)lN04*
@JKG9<
st6V"(.
A|j]v+
d3vOBM 
{H"%~0
8ar?5K
]C|IU!
C'}%w@
lQPOYL
&R	.}[7a
D7fF@P
R=S=^C
BDjo/@
V<AL84
B(tfXR
 =&?<9
9?T5xs
2c&KqN
UBFLBb
X^-whE
v{ZyjXy
*k,eB^	*
g8V*I~
Viq	y>
g[-~N6OQ
b+*njbs
\F!X1;
)a!o%B|
(,S'5A
2sc'V$$
TL/Nmy
Utr|"qw8
v,k7 ao
	8h8bHX
ET/wa|
uT7$`K
 		!$c
LlmGu"
zQV_9m
*lXb0R
VJiRn\
d4qfs0U
8,y @S=
ICOoKs
d+kS`P
>@6Uatzz
TAOMrkN'
0p}p#Y
5Axjgs
"~->,JR
\-RKT]
R/Q/WoQ
ubBzD"
!w=A;	tz
w5l7t,
tMmpMUE
|Qj4zh
zt*&^\4:
Zzg<O;~
jsOh%%
{hTC29R
lS_N*S
XyRYhZiRY
J=a^%RI
bIWqS2
Bhdfw@
v}MitS
m)	TNz3
{#:R=r$]
z	L-tv
_"e@)I
dU)jRa
0q6X{{1
ox	5$6
ihx(E<
Ivvwvvvvvvv
]R=dN"nr
}`^eX#
$ghX]2
a}@><!
=-diBW
sk,/"!e
ieW%[9
je{k{k
y &RE*
Tqdl>R
$r_&T%
a^u}(A
5Q(/J'3
iA_gZa
%{!1wi
(fs9&5
k;s}zA
j:MO}^}
eZhQ8X
x5/~g'z
BUt%d\
qI(C0`U
ZFx	(j/
"0<Jl7
_FP~|6
k!EGXE
U'Km_u
vhq# q
gx9sRbM
uOw!k9
C0\ZPa
ea`8A0t
0/dh$3
gjCY1(?
u#azQm
3LKE8|ki
s([HXw
C.&s5Ns*
pv{wvqN
 ;LfQ^
QBYY-,
;,*J&e
0 7sx`HT
r6v*2I]O
F{!'|\V
VE<UA{
 @	}=nv)
 YpM R
57Wv6]j
'hiX\hz
U8ZQJ{
"0v=@Y
+Xu%}*_
INo{*d
'AcoO_
O 	T&e@
}#:mw'T/
i]o?nn/
$^<-BU{
iPRKu.
:oWj'5
/fO43c1
3	_'nv
^]ddLg
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="0.0.0.0" processorArchitecture="X86" name="Perl" type="win32" />
<description>Perl</description>
<dependency><dependentAssembly>
<assemblyIdentity type="win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0"
processorArchitecture="X86" publicKeyToken="6595b64144ccf1df" language="*" />
</dependentAssembly></dependency>
</assembly>
D:\p4view\Apps\PDK\src\PerlApp\src\paperl.pdb
This program must be run under Win32
	>d=\!J*
string
TObjectt3o_6
rfacep
3H4DAN
]MM Borland Edition 
rofess)al S
wa Developme	
" ((%e
e0881[Y
]_^[cA
,/KZ5QSmM
!	5$Vs
r:#Q0^
_t~[wt=
Jl|&B.
4O0rCG
An unexp
ed memory
 has occu
,small bl$k1
c3Unknown
~size[fL@
diumHn
j ,Y	W
+t_$xtZXt
~KxI[)c
I6\E0i
SOFTWARE\/
P~4l[Y
G7W	@Be
CkgvP*
o`YtPOu
>s/-Rf;0 
."+8A\
}&^~")
/tr3QT
(UL(E#
?wL8HK
ZX8[fUO]xj
kernel32.dll
GetLongPathN
7Qcalep
OrfP,*
ec<h+D5
&UlU'5
	Exc[Y
EHeapZ
EOutOf
EIn]Err[
kPs_Ps
EDivByZ
RangeXWX_n
BsInverf
w[$wC2
EAcc6V
+Prxle
.<otjlCk
f8[`G 
Safecal
TMul>R
AM`d2S
l0d(lVCk
-AGSQY
tlUH@'
t2J;\1G
10r=<9w9i
JV_X2g A
Ntzopo
INFNAN
i]	w{$*@
?LuS-W
A[[o/r
&D08Is
rR#Z<]l
Zb1+,%'
	T~Rec
SU<HtH
	4l FWeW
BZ7%\H
m/d//W
HashArray
TModuleInfo
FreeSp8ExAN
tagEXCEPI&
K.PlTg
<rotAddSubMq>
ulDivIdiv
XorCmp4FromSt
R8Dat~a_
Bool!?wK
{Arge4
 Bad	-c
	@!|kX!
^[sPG>
dB&dyL
,	PJoK2
:HVj~M
/I$9X!
?sBn PC
`.U{02
B(^~C9
\J~yQk
.'PJ68
h*+ WF
YWPFol
TCgG3upH3
<P~rG8
tE)ICJ,
D~""dQA
SCA#D.
$SA^IA
%s[%d]
F(XaLV
$Q4a%K>
*At+9	
#ex*eUuX 
e>jQn	,
Q[*##cG
=2vIsYd
rIvhh\
DgA@UA
lTW;P{
i4M7Hs
YVs\;h
7ke=9|j
qURL: https://jcl.s
s/JCL199-Build2551
5/comm
6-05-3
0 	:02:45 +0
 (mar., 
73-18 
w?dows
\71492
:1777 KIh
vff\8Cd
Tokeny
Hs_adv
;Hcl9\1
04:22ven16
?THC[hLogic
3g14Wjeu  
janvVLr
6747:34W
:392lun4|
K(tB Vr
80877!
\$p	1ryO7
OShell
ZG<\/*
>t\<;;
,tjYGv
,#=t4x#
<88313W5:
268-1l
9H556:46
CONOUT
R=@-P=
u"<f("*v
Gv+PxK
BCDEFGHIJKLMNO
XYZabcd/ghijklmnopqrV
7]uvwxyz0123456789+/
GK'(),-./:?
!"#$%&*;<=>@
`{|}w	
VETj@j~`
ADVAPIrDLL?)*^sMSidT
RK?xO4
2 8Doy
esAclA+2e+
_SID#c,
?"%s" is not a ut/
ginal 
Own$s pK
me pD]
,0B^!/
z]X_r`
DISCLAIMER
K^nload 
SteelW
=Bltp{Com
lb cG4
| Spy&
PUg!any k
theJ O
%F" /g
 Ex$6'
msnApp/#
d@98d@
SWXCAg
fBNFGC?
1#	"70z
AyBPow"J
0	82zd
FG%d/`
`b;6@('
gB,^8gB
@$168$
=NTFS 
; p' m{
T<2^$'
NKNOWN
a'SYSTEM
ERaFDL+D
#GROUP[
L_PREST
lk TO_INH
6SQG#7
E6#ELF
CANv[;
WOBJK0%
TABR>Z
cW=$#AP
+EX_U%Gl
SX#S~NER
o+GHTS
Mask ZC
[kS,k@
A.GX%6m
 SID!t	W 6
W!GXL1	
;8aLa`B
,b<bHI.dJdt=
?BA987654321
C	BWEB
SRWQl g
GR+G;6K
@+$!D/
	 Bly works
GRANT/m
#FailA
l&yF#BnL?
h /?r`
doe+ X
suppTt
BUG'EE
O:F/B[
hX G2%=
GUI;)/
AR>RX0
|D|9F|GIS
dt]a-y 
23SJincl
+c_{$g
@rD- Put
wiGNOTr
fGC;fU
4S-1-5-21
c;-M26
cWu-+f
(*CS>*C$
 gt._NDH
!c#GIX
n,n2g&
N:["]s
]%[F?J3
a|i*	^)
z$$fA,,
Dvl>28
:{Vv-8
debug'
HPX`hpi
4$4DT`
,Glgn/
)`M'(l#%
`/$DEi
hd'3'W
7t+s]7
`cYn_7ci2
 5BqtQ,
moi/S,
!]EO0Q
HSao/7<F
v$G0_0
'Ec4*	
oiyon0
@L?}v;
,7Yr)%
'`*;{-
;-Qt#u
0IuYW}$
{<:y&q?	
1X63M@
(ShlObj
UrlMon?
naEmD:
KMQuery
AA	cpy
E)Of7Rt
l3UsLyB
A%LowA5
] .i(|	#
Otl(Td
KERNEL32.DLL
advapi32.dll
ole32.dll
oleaut32.dll
user32.dll
version.dll
LoadLibraryA
GetProcAddress
ExitProcess
GetAce
CoInitialize
VariantCopy
CharNextW
VerQueryValueA
PAEchoX.exe*22016*nircmd.exe*35328*PKill.exe*53248*SleepX.exe*22528*subinacl.exe*290304*switch.exe*655422*swxcacls.com*81920*Pforcemove.batPAD
<?xml version="1.0" encoding="UTF-8" standalone="yes"?> <assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0"> <dependency> <dependentAssembly> <assemblyIdentity type="win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0" processorArchitecture="*" publicKeyToken="6595b64144ccf1df" language="*" /> </dependentAssembly> </dependency> <v3:trustInfo xmlns:v3="urn:schemas-microsoft-com:asm.v3"> <v3:security> <v3:requestedPrivileges> <!-- level can be "asInvoker", "highestAvailable", or "requireAdministrator" --> <v3:requestedExecutionLevel level="highestAvailable" /> </v3:requestedPrivileges> </v3:security> </v3:trustInfo> </assembly>