Analysis Date2014-07-10 10:12:04
MD5064e9b541e9e106ceb34b9671484dc01
SHA1680d9bd6ce080a6e285c132736fbf825c5e4ee01

Static Details:

File typePE32 executable for MS Windows (GUI) Intel 80386 32-bit
SectionCODE md5: 2c564cbe284a379bf48abaacda2fab0d sha1: e782a9fe3b038f4f9eef9ad735fa7c68147d1de0 size: 20992
SectionDATA md5: 3daa7197689098d47cdd5db5490a0152 sha1: 64b146175643264ab86ab9558dfa3a1db0f15378 size: 512
SectionBSS md5: d41d8cd98f00b204e9800998ecf8427e sha1: da39a3ee5e6b4b0d3255bfef95601890afd80709 size: 0
Section.idata md5: 21d0c8b7bec96f38b8c41ef649dd32b1 sha1: cc0f4532912d87a6e4bb6e0f71da751165c2f588 size: 2048
Section.tls md5: d41d8cd98f00b204e9800998ecf8427e sha1: da39a3ee5e6b4b0d3255bfef95601890afd80709 size: 0
Section.rdata md5: 70264c7928189ef43fed5ba6df6cefe0 sha1: 2fbedc4b5c40b064230d92c68d3117c82184b197 size: 512
Section.reloc md5: b4a344a5e9d1d34a9cf3aa1bf9870c91 sha1: 01f709dfc1f73b771421d4acb5418c6b8163409d size: 1536
Section.rsrc md5: a071b2d0ab3fb0bdbe840f7575a2f3c9 sha1: 5602aae4a3f9030fccd210dd46e925980f1875c6 size: 512
Timestamp1992-06-19 22:22:17
PackerBobSoft Mini Delphi -> BoB / BobSoft
PEhasha38b0aeaf6f4ac95214e14b1c75e07e88bff7b68
IMPhashcb960e922555eb6197608684ec0cf0b4
AV360 SafeTrojan.Generic.11278389
AVAd-AwareTrojan.Generic.11278389
AVAlwil (avast)Trojan-gen:Win32:Trojan-gen
AVArcabit (arcavir)no_virus
AVAuthentiumW32/Trojan.IIIS-5712
AVAvira (antivir)DR/Delphi.Gen
AVCA (E-Trust Ino)Win32/Delf.RS
AVCAT (quickheal)W32.Fujack.DN
AVClamAVTrojan.Delf-11258
AVDr. WebTrojan.KillFiles.8611
AVEmsisoftGen:Win32.FileInfector.!GZ@a4Zj!F
AVEset (nod32)Win32/Delf.NBA virus
AVFortinetW32/Delf.DE
AVFrisk (f-prot)W32/Trojan2.JZZD (exact)
AVF-SecureTrojan.Generic.11278389
AVGrisoft (avg)Win32/DH{A2JnNmGBDzkPADUKZBOBCgY}
AVIkarusTrojan-Dropper.Delf
AVK7Trojan ( 0001140e1 )
AVKasperskyVirus.Win32.Delf.de
AVMalwareBytesno_virus
AVMcafeeObfuscated-FBU!hb
AVMicrosoft Security Essentialsno_virus
AVMicroWorld (escan)Trojan.Generic.11278389
AVNormanwin32legacy/Smalltroj.PWXX
AVRisingTrojan.Delf!49D4
AVSophosW32/Belvima-A
AVSymantecTrojan Horse
AVTrend Microno_virus
AVVirusBlokAda (vba32)BScope.Backdoor.Alusinus

Runtime Details:

Screenshot

Process
↳ C:\malware.exe

Creates FileC:\WINDOWS\svchost.exe
Creates FileC:\Program Files\Common Files\Microsoft Shared\MSInfo\msinfo32.exe
Creates FileC:\WINDOWS\system32\smrss.exe
Creates FileC:\Program Files\Internet Explorer\Connection Wizard\icwconn1.exe
Creates FileC:\windows\temp\02342.exe
Creates FileC:\Program Files\Adobe\Acrobat 7.0\Reader\Updater\acroaum.exe
Creates FileC:\WINDOWS\system32\freizer.exe
Creates FileC:\Program Files\Common Files\Microsoft Shared\Speech\sapisvr.exe
Creates FileC:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE
Creates FileC:\Program Files\Adobe\Acrobat 7.0\Setup Files\RdrBig709\ENU\setup.exe
Creates FileC:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.exe
Creates FileC:\Program Files\Common Files\Microsoft Shared\DW\DW20.EXE
Creates File34010.exe
Creates FileC:\Program Files\Adobe\Acrobat 7.0\Setup Files\RdrBig709\ENU\instmsiw.exe
Creates FileC:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32Info.exe
Deletes FileC:\Program Files\Common Files\Microsoft Shared\Stationery\Glacier Bkgrd.jpg
Deletes FileC:\Documents and Settings\All Users\Documents\My Pictures\Sample Pictures\Winter.jpg
Deletes FileC:\Program Files\Common Files\Microsoft Shared\Stationery\Pie Charts Bkgrd.jpg
Deletes FileC:\Program Files\Common Files\Microsoft Shared\Stationery\Fiesta Bkgrd.jpg
Deletes FileC:\Program Files\Common Files\Microsoft Shared\Stationery\Sunflower Bkgrd.jpg
Deletes FileC:\Program Files\Common Files\Microsoft Shared\Stationery\Maize Bkgrd.jpg
Deletes FileC:\Documents and Settings\All Users\Documents\My Pictures\Sample Pictures\Sunset.jpg
Deletes FileC:\Program Files\Common Files\Microsoft Shared\Stationery\Leaves Bkgrd.jpg
Deletes FileC:\Program Files\Common Files\Microsoft Shared\Stationery\Nature Bkgrd.jpg
Deletes File34010.exe
Deletes FileC:\Documents and Settings\All Users\Documents\My Pictures\Sample Pictures\Water lilies.jpg
Deletes FileC:\Program Files\Adobe\Acrobat 7.0\Reader\Optional\README.TXT
Deletes FileC:\Documents and Settings\All Users\Documents\My Pictures\Sample Pictures\Blue hills.jpg
Deletes FileC:\Program Files\Common Files\Microsoft Shared\Stationery\Clear Day Bkgrd.jpg
Creates Processcmd /c reg ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /v svchost /t REG_SZ /d C:\WINDOWS\system32\svchost.exe /f
Creates Processcmd /c reg ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /v freizer /t REG_SZ /d C:\WINDOWS\system32\freizer.exe /f
Creates ProcessC:\windows\temp\02342.exe
Creates MutexBELARUS-VIRUS-MAKER

Process
↳ cmd /c reg ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /v svchost /t REG_SZ /d C:\WINDOWS\system32\svchost.exe /f

Creates Processreg ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /v svchost /t REG_SZ /d C:\WINDOWS\system32\svchost.exe /f

Process
↳ cmd /c reg ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /v freizer /t REG_SZ /d C:\WINDOWS\system32\freizer.exe /f

Creates Processreg ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /v freizer /t REG_SZ /d C:\WINDOWS\system32\freizer.exe /f

Process
↳ reg ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /v svchost /t REG_SZ /d C:\WINDOWS\system32\svchost.exe /f

RegistryHKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\svchost ➝
C:\WINDOWS\system32\svchost.exe\\x00

Process
↳ reg ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /v freizer /t REG_SZ /d C:\WINDOWS\system32\freizer.exe /f

RegistryHKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\freizer ➝
C:\WINDOWS\system32\freizer.exe\\x00

Process
↳ C:\windows\temp\02342.exe

Network Details:


Raw Pcap

Strings
-
_
000004E4
0409
040904b0
040904B0
040904e4
040904E4
0Adobe Reader Applicatio
%1!.1023s!Windows Media Player is not installed properly and must be reinstalled.%n%nDo you want to install the Player from the Microsoft Web site?
11.0.5510
 1983-2003 Microsoft Corporation.  All rights reserved.
 1995-1999 Microsoft Corporation, All rights reserved.
%1 contains an invalid path.=%1 could not be opened because there are too many open files.
%1 has a bad format."%1 contained an unexpected object. %1 contains an incorrect schema.
%1 was not found.
2.00
 2000
4.0.2.6513
{5D238751-7E51-4F24-9E7D-93C58881B20B}
8The directory with the specified path cannot be created.
9.00.00.4503
9.2.0.124
Access to %1 was denied..An invalid file handle was associated with %1.<%1 could not be removed because it is the current directory.6%1 could not be created because the directory is full.
Acrobat failed to load its Core DLL
Acrobat Viewer Safe DDE
AcroRd32.dll
AcroRd32.exe
AdobeAcrobatSpeedLaunchCmdWnd
Adobe PDF Preview Handler
Adobe PDF Preview Handler Helper Application
Adobe Reader
Adobe Reader 9.2
AdobeReaderSpeedLaunchCmdWnd
Adobe Systems, Inc
Adobe Systems Incorporated
Ajjj
All Files (*.*)
, and FrontPage
@Another instance of the configuration wizard is already running.
An unknown error has occurred.
an unnamed file
anySimpleType
anyType
anyURI
API_ADOBE_PUBLIC_KEY
AppID
APPID
@APPID
 are registered trademarks of Microsoft Corporation, and WebBot is a trademark of Microsoft Corporation, in the United States and/or other countries.
base64Binary
{BC174BAD-2F53-4855-A1D5-0D575C19B1EA}
Beta
boolean
build
BuildInfo
byte
Cancel
&Cancel
Cannot find this file.
CLSID
CLSID\
cmd /c 
(C) Microsoft Corporation.  All rights reserved.
comctl32.dll
Comctl32.dll
Command failed.)Insufficient memory to perform operation.PSystem registry entries have been removed and the INI file (if any) was deleted.BNot all of the system registry entries (or INI file) were removed.FThis program requires the file %s, which was not found on this system.tThis program is linked to the missing export %s in the file %s. This machine may have an incompatible version of %s.
Comments
CommonFilesDir
CompanyName
Component Categories
Copyright 
Copyright 1984-2009 Adobe Systems Incorporated and its licensors. All rights reserved.
Copyright 2007-2009 Adobe Systems Incorporated and its licensors. All rights reserved.
Corrupt file:
Could not start print job.
Couldn't create registry key.[The command-line has exceeded internal buffer limits.  Please contact your software vendor.dError:  Out of memory.  Please restart your computer and try running the Configuration Wizard again..Error retrieving data from specified ini file.
DataFinderUI
date
dateTime
{DC6EFB56-9CFA-464D-8880-44885D7DC193}
decimal
Delete
Destination disk drive is full.5Unable to read from %1, it is opened by someone else.AUnable to write to %1, it is read-only or opened by someone else..An unexpected error occurred while reading %1..An unexpected error occurred while writing %1.
dfuicom.exe
DFUIDUMMY
Disk full while accessing %1..An attempt was made to access %1 past its end.
double
duration
DVCLAL
Enabled
EnablePrefetcher
English
EnglishName
ENTITIES
Entity
eRC[
Example: ifffilesize.exe file.txt gt 1000 mkdir
Extend Server with Front Page
Failed to launch help.
Failed to open document.
Failed to save document.
False
Fatal Error
{FFFAA5E1-83F5-4AFE-8190-6B3F03C1E88F}
FileDescription
File does not exist
File not found:   7Corrupt ini file.  Setup cannot proceed.
FileType
FileVersion
float
ForceRemove
FPMMC.DLL
FPSRVADM.EXE
 FrontPage
Front Page Web Permissions
gDay
gMonth
gMonthDay
gYear
gYearMonth
                                 H
         (((((                  H
HAdobe PDF Preview Helper Applicatio
Hardware
&Help
hexBinary
         h((((                  H
&Hide
HKCC
HKCR
HKCU
HKDD
HKEY_CLASSES_ROOT
HKEY_CURRENT_CONFIG
HKEY_CURRENT_USER
HKEY_DYN_DATA
HKEY_LOCAL_MACHINE
HKEY_PERFORMANCE_DATA
HKEY_USERS
HKLM
HKPD
IDREF
IDREFS
IDR_MAINFRAME
iffilesize
iffilesize.exe
iffilesize Utility
If Filesize - Utility by Craig Schmugar
\Implemented Categories
integer
Interface
Internal application error.
InternalName
Invalid filename.
 is a registered trademark of Microsoft Corporation.
jjjj
jjjjj
\kernel32.dll
Kernel32.dll
l???.???
language
LanguageId
LanguageInfo
LegalCopyright
LegalTrademark1
LegalTrademarks1
LegalTrademarks2
long
Mail system DLL is invalid.!Send Mail failed to send message.
##MapBindingBreak##
McAfee AVERT
MCannot find the Office Server Extensions log file.  Operation cannot proceed.
Microsoft
Microsoft Corporation
Microsoft FrontPage Server Administration Snapin
Microsoft FrontPage Server Administrator
Microsoft FrontPage Server Administrator Client
Microsoft Office 2003
Microsoft Office 2003 Web Components Data Finder
Microsoft Office Web Components Data Finder
Microsoft(R) Windows Media Player
\Microsoft Shared\office11\mso.dll
Mime
-Missing or incorrect command line parameters.JCannot find specified ini file.  Setup cannot proceed.
Module
Module_Raw
Mscoree.dll
msi.dll
mso11.dll
mso.dll
MS Sans Serif
MS Shell Dlg
Name
NCName
negativeInteger
Network Associates
&New 
NMTOKEN
NMTOKENS
No error message is available.'An unsupported operation was attempted.$A required resource was unavailable.
No error occurred.-An unknown error occurred while accessing %1.
No error occurred.-An unknown error occurred while accessing %1./An attempt was made to write to the reading %1..An attempt was made to access %1 past its end.0An attempt was made to read from the writing %1.
nonNegativeInteger
nonPositiveInteger
NoRemove
normalizedString
NOTATION
<<<Obsolete>>
-Office Server Extensions Configuration Wizard
Office Web Server Configuration Wizard
Open
OriginalFilename
Out of memory.
PACKAGEINFO
PDFPrevHndlrShim
PDFPrevHndlrShim.exe
pixels
Please enter a currency.
Please enter an integer.
Please enter a number.*Please enter an integer between %1 and %2.(Please enter a number between %1 and %2.(Please enter no more than %1 characters.
Please select a button.*Please enter an integer between 0 and 255. Please enter a positive integer. Please enter a date and/or time.
Please verify that the correct path and file name are given.
positiveInteger
ProductName
ProductVersion
QNAME
Read
REGISTRY
@REGISTRY
RegServer
/RegServer
\Required Categories
Save As
Save changes to %1? Failed to create empty document.
SECURITY
Seek failed on %15A hardware I/O error was reported while accessing %1.0A sharing violation occurred while accessing %1.0A locking violation occurred while accessing %1.
short
Signature
&SmartTagInstall.ex
Software
Software\Adobe\Acrobat Reader\9.0\ORO
Software\Microsoft\Office\11.0\Common\FilesPaths
Software\Microsoft\Windows\CurrentVersion
SOFTWARE\Microsoft\Windows\CurrentVersion\PreviewHandlers
static
Static
string
StringFileInfo
SubC
SYSTEM
SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\PrefetchParameters
T405_ADOBE_PUBLIC_KEY
The file %1!.1023s! has a version number of %2!d!.%3!d!.%4!d!.%5!d! where %6!d!.%7!d!.%8!d!.%9!d! was expected.%n
The file is too large to open.
The following directory could not be created:
time
.tlb
token
Translation
True
TypeLib
TYPELIB
<udc:DataSource
#Unable to load mail system support.
#Unable to read write-only property.#Unable to write read-only property.
Unexpected file format.V%1
UnregServer
unsignedByte
unsignedInt
unsignedLong
unsignedShort
Untitled
  Usage: iffilesize.exe [filepath] [lt | gt | =] [size] [action]
UXDC
VarFileInfo
VS_VERSION_INFO
Windows
, Windows
Windows Media Player
Windows Media Player is not installed properly.%n%nRestart your computer and log on with a user account that permits you to install programs.
WMPLAYER.EXE
ykernel32.dll
^,_^][
^$_^[]
= =$=(=
                          
                                                                
                    {
                    }
                {
                }
            {
            }
        />
        {
        }
: :@:`:|:
:,()@\\]
!&%""%%
%!!%%%%%%%%%
000000000000000000000000000________{{{{{
000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
0 0$0(0,0004080<0@0D0H0L0P0T0X0\0`0d0h0l0p0t0x0|0
0 0$0(000;0T0^0h0
0!0'0-030:0A0H0O0V0]0d0l0t0|0
0 0<0@0D0H0L0P0T0t0
0"0*020:0B0J0R0Z0b0j0r0z0
0 0$04080H0L0\0`0p0t0
0%0+040h0p0y0
00060>0h0n0
0%0/070D0K0{0
0!0.0B0M0D1O1
0 0$0D0d0
0$0<0L0P0`0d0t0x0
001210080000Z
004080
0 050C0
%0+0U0[0w0
+0<0v0
010228000000Z
01030.exe
0<1@1D1`1
0123456789ABCDEF
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
01330.exe
020;0A0N0X0c0s0
020525005548Z
02342.exe
%%%02x
030715055247Z0
030715101745Z0
031125010548Z0
031204000000Z
040106235959Z0
040107235959Z0
040716000000Z
: :$:(:,:0:4:8:<:@:D:H:L:P:T:\:t:
< <$<(<,<0<4<8<<<@<D<H<L<P<T<X<\<`<d<h<l<p<t<x<|<
; ;$;(;,;0;4;8;<;@;D;H;L;P;T;X;\;`;d;h;l;p;t;x;|;
? ?$?(?,?0?4?8?<?@?D?H?L?P?T?X?\?`?d?h?l?p?t?x?|?
=(=,=0=4=8=<=@=D=H=L=P=X=\=`=h= >$>(>,>0>
>,>0>4>8><>D>\>`>x>
<,<0<4<<<T<X<p<t<
050\0c0
051112080000Z0
060919000000Z
="=&=,=0=6=:=@=D=I=O=S=Y=]=c=g=m=q=
070615000000Z
081024000000Z
:0:8:@:H:L:T:h:p:
{%08X-%04X-%04X-%02X%02X-%02X%02X%02X%02X%02X%02X}
^[^:]*:[0-9]+$
^[0-9]+$
090108153642Z0#
090V0n0
091003061002Z0#
091003110803Z0#
091105235959Z0
091210235959Z0
09^$uI9
0A@@Ju
??0?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@ABV01@@Z
??0?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@PBDI@Z
??0?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@PBD@Z
??0?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@XZ
0@@BBf
0C0a0h0l0p0t0x0|0
0CreateActCtxW
??0exception@std@@QAE@ABQBDH@Z
??0exception@std@@QAE@ABQBD@Z
??0exception@std@@QAE@ABV01@@Z
??0exception@std@@QAE@XZ
0F1K1]1}1
0F1Q1l1s1x1|1
0http://crl.verisign.com/ThawteTimestampingCA.crl0
0IsolationAware function called after IsolationAwareCleanup
=0=L=P=l=p=
<,<0<L<P<X<`<h<l<t<
0p1+0)
0) quit
0SSSSS
;0UUFw
0UUULf
;0UUUP
;0UUUT
;0UUUUU
0UUUUUP
0WWWWW
1.0.0.0
101P1T1X1`1d1l1p1x1|1
10) rename
1111111111mmmm
1#1*1/151;1C1I1P1W1g1o1u1
1111mmm
1&1.161>1F1N1W1x1
1!1+171A1M1W1q1{1
1(1,1D1T1X1\1`1d1l1
11282J2a2g2m2
1)151=1E1Q1u1}1
1#151i1
116096
'11899AA@KI
'11-899@@QGO
1&191C1R1X1
1.1C1}1
1>1F1L1R1
11) set directory executable
1$1v1|1
120614235959Z0\1
*&)+++..1222222
*)+....122226111
1"2+272j2s2
1 2(2L2`2h2p2|2
12322.exe
#''(-12..91-00
@1@2D2H2L2P2T2X2\2`2d2h2l2p2t2x2|2
12) set directory no executable
131203235959Z0S1
13) putfile
140715235959Z0
14132.exe
14) recalcfile
15) create a subweb
%-15s  Version: %d.%d.%d.%d
16) merge a subweb into its parent web
172F2V2b2l2t2
17) full uninstall of all FrontPage information
>,>1>7>=>S>Z>c>
((1-823908QKFB
188480
189<>@ABE?T
18A@k>
=">(>1>8>F>]>h>{>
??1?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@XZ
<1<E<p<
??1exception@std@@UAE@XZ
1I2T2]2c2s2|2
1) install
1KKKKK
?1?;?N?X?]?b?x?}?
1P3T3X3
1Q2X2j2
1#QNAN
1qVCCC
1#SNAN
??1type_info@@UAE@XZ
$$(("-2...
201231070000Z0p1+0)
+)..,22:17
+&+)+,222
2$2+20282A2M2R2W2]2a2g2l2r2z2
2 2$2,20282<2D2H2P2T2\2`2h2l2t2x2
2 2$2(24282<2@2D2
2$2)2/292B2M2Y2^2n2s2y2
2+222A2M2b2~2
2,2<2@2P2T2\2t2
2222UUUUUUUUQ
2.2;2B2F2L2P2V2]2a2{2
2 2$2M2s2
 '-223
223#BUUUUUUQy
2-262K2V2
22BEUUQ
2:2"CEUUU
2:2F2Z2d2w2
2 2j2p2t2x2|2
2:2J2Z2`2v2|2
2:2R2^2j2u2
232H5L5P5T5X5\5`5d5h5l5p5t5
-'-23399
2	3$3K3{3
2!3<3R3
2 3@3t3
2@3Q3q3&444T4^4{4
23$UUUU
'2899AJA
2;AFFKM
>#>2>A>w>
2'"BDUU
2@FFKG
?&?2?@?F?R?X?e?o?u?
>2>H>U>
2r2$$UU
2r2$$UUQ
2r$$EUUQ
2Terms of use at https://www.verisign.com/rpa (c)011'0%
2Terms of use at https://www.verisign.com/rpa (c)041.0,
2) upgrade
2v3%4H4
??2@YAPAXI@Z
#''(((-3.....
30343.exe
30AAj_
30UUUUUUUPLLgl
314S4j4
324UUUQ9x
3*313P304B4
;332EUUUUQ
3&3,323t3z3
3 3$3(3,30343t3x3
3 3$3(3,383
3 3(3,34383@3D3L3P3X3\3d3h3p3t3|3
3 3(3@3P3T3
3$3,383X3`3h3t3
3 3<3X3
335[5b5z5
3$373e3p3
3(383a3
3!3D3n3
3-3J3t3
3-44484<4@4D4H4L4P4
3)4/4F4[4a4j4q4
3+455576:6889:G?JO
3457799<<;@?N
3479<>@ACDJ
3:4G4U4u4
3\4h4n4
3@4J4U4b4r4
:3:9:D:I:Q:W:a:h:|:
<3=A=X=
;3;A;Y;h;
3B3l3z3
>)>3>@>E>K>O>T>Z>g>l>v>
3"$EUU
3**EUUQ
?3?E?W?i?{?
3f4k4}4
3http://CSC3-2004-aia.verisign.com/CSC3-2004-aia.cer0
>3?H?u?
=3=L=e=
3M3T3v3
>!?3?M?T?i?
3) uninstall
:::3$x
??3@YAXPAX@Z
405D5Z5m5
,,,,,^43
44101.exe
4 4(40484@4H4P4X4`4h4p4x4
4 4$4(4
4$4,444<4D4L4T4\4d4l4t4|4
4$4,444<4D4L4T4\4H6P6
4 4(444T4`4
4 44484H4L4P4X4p4
444@4H4`4h4t4
4/444I4
4444XX
4(4:4G4S4`4r4z4
4#4?4H4N4W4\4k4
4)4D4L4T4_4m4
4@4G4N4U4\4b4_566H6
4"5)535]5i5o5
,455779:<8;2?N
*4579:99GM
484<4@4X4\4
?$?4?8?H?L?\?`?p?t?
??4?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV01@PBD@Z
:$:/:4:<:B:L:S:g:n:t:
4) check and fix
;4;D;H;L;P;X;p;
4~f9.u
;4<:<@<F<L<R<Y<
=4===R=]={>
4R5\5t5{5
515`5g5x5|5
5"505p5
5(505T5h5
\5510.0\setup\X86\ship\Files\PFiles\Common\MSShared\smarttag\SmartTagInstall.pdb
5!525G5T5t5M7Z7
5(545T5\5d5p5
5 5$54585@5X5
5$5[5~5
5'5.5=5v5
5!5,575>5H5r5~5
*)+..5562:654..00
5'565O5f5v5
,)556:657:2
55799<>@>BJ
5+585J5R5`5u5
5,5h5l5p5t5
5@5H5T5\5p5{5
5(5s5{5
5"5T5Z5c5j5u5
565M5S5c5h5
.599<;FM
;";(;/;5;<;B;J;Q;V;^;g;s;x;};
5Digital ID Class 3 - Microsoft Software Validation v21
5) enable authoring
5n]aaaa%
5U6m6|6
606<6D6\6d6l6p6x6
60686P6h6p6|6
606P6\6x6
6)646@6H6N6
6 6$6(6,6064686<6@6D6l6p6t6x6|6
6$6)666;6H6M6Z6_6l6q6~6
6 6'686<6
6(6/686x6}6
6+6g6l6w6|6
6-6V6y6
6?7L7a7
686p6~6
6^bMRQ4q
6) disable authoring
6IPDFPrevHndlrShimWWW!
:":+:6:K:R:X:n:
<(<6<L<g<u<~<
6m7v7|7
6>Mbbbbbb%
??6ostream@@QAEAAV0@K@Z
??6ostream@@QAEAAV0@PBD@Z
:+;6;>;P;[;
;6;p;x;~;
6=`qqqq4
6u^Mq%
:6;V;h;
737Q7X7\7`7d7h7l7p7t7
747<7D7P7x7
747=7I7
757M7f7
767y738A8d8
768;8c8
768A8\8c8h8l8p8
7 707T7`7h7
7.747?7K7`7f7z7
7=7`7{7
7 7$7,7D7H7`7p7t7x7
7#7(7i9w9}9
7(7>7O7
7.7>7Z7
7 787D7L7d7l7t7|7
7'787t7
7@7D7`7
7@7K7h7r7
7*7O7v7
7'838F8X8s8{8
7@8F8K8R8o8
79>ADHM
7) change security settings
7DaMMMMM%
7,OdddddeydNc%
?7!Op1
7R8j8o8
7T9b9h9
??_7VgetLinkInfoCB@@6B@
80888L8T8\8d8h8l8t8
838?8L8^8f8s8
8$84888<8D8\8l8p8t8|8
888888888
8,888@8X8d8
8"8.8=8C8L8X8f8l8x8~8
8#8:8@8P8U8m8s8
8%8*8/8Q8e8
8 8$8(8t8x8
888X8x8
8$8-8Y8b8k8t8
			{8895b1c6-b41f-4c1c-a562-0d564250836f} = s '{49400A7C-81A8-4F52-8CCE-D54739EE87EC}'	
8#898?8M8`8j8p8~8
'889JJJjx
8,8G8t8
88P,--VB%AA
8 949D9X9`9
-'899AlG
89<>ADFHLN
89<@CFN
8"9K9\9v9
:8<>ADFFIJ
8>ADFG
'8@AJJJP
<8=>=b=
8;<;@;D;H;L;P;T;X;\;`;d;h;l;p;t;x;|;
? ?8?H?L?`?d?t?x?|?
8j.PDFPrevHndlrShimd
8O8h8o8w8|8
8) recalculate links
= =8=<=T=d=h=l=p=x=
8%tij%P
8%tkj%P
8VVVVV
9094989\9`9d9h9l9p9t9x9
90u+9p
929c9|9
9?<*?3?
959V9b9
970110070000Z
970512000000Z
9|$8YY
9(90989T9`9
9&909<9G9X9^9f9p9
9(949>9J9V9`9j9t9
9"949:9U9a9
9$9,949<9D9L9T9\9
9 9@9`9
9 9(9@9P9T9d9h9l9p9t9x9|9
9^9d9h9l9p9
'9AJjjj;
'9AJjjjm
'9AJkjjn
9) delete
9D:N:]:
9D$$u!9D$ t
9E:h:r:
9::E:M:_:j:
9@:F:Q:X:f:q:
9HPtL9L$
9http://crl.microsoft.com/pki/crl/products/CodeSignPCA.crl0
9K9Q9{9
9nPtWSW
9^PtDSSS
9~$~!S
9\$(t#9\$$u
9|$$tb
9\$ tD3
9??###UH
9+w#hy
9+Wtx9
9X,u*S3
;9y|tw
9Z9`9d9h9l9*:
<:<A<`<
<A|2<Z
;AAg@DD
AAGGf;
aar`_bccdifghust
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz
abnormal program termination
AcceptedPrivacyStatement
Access denied: Invalid password
                [-access <remove|administrators|authors|users>]
_acmdln
Acrobat Engineering1$0"
AcroRd32Exe.pdb
AcroWinMain
|acrp|
ActivateActCtx
:;>ADFFILM
_adj_fdiv_m16i
_adj_fdiv_m32
_adj_fdiv_m32i
_adj_fdiv_m64
_adj_fdiv_r
_adj_fdivr_m16i
_adj_fdivr_m32
_adj_fdivr_m32i
_adj_fdivr_m64
_adj_fpatan
_adj_fprem
_adj_fprem1
_adj_fptan
_adjust_fdiv
AdjustWindowRectEx
-adminpassword
              -adminpassword password]
-adminusername
             [-adminusername username
AdobeMissingComps.xml
ADOBE_READLOGGER_CMD:COMMENT:%s
Adobe Systems Incorporated0
Adobe Systems, Incorporated0
Adobe Systems Incorporated1>0<
Adobe Systems, Incorporated1>0<
AdobeUpdater
AdobeUpdater6
Adobe_Updater.bak
Adobe_Updater.exe
AdobeUpdaterInstallMgr.exe
advapi32.dll
ADVAPI32.dll
AfterORO
AfterOROConstruct
AfxControlBar42s
AfxFrameOrView42s
AfxMDIFrame42s
AfxOldWndProc423
AfxOleControl42s
AfxWnd42s
Afx:%x:%x
Afx:%x:%x:%x:%x:%x
_allmul
america
american
american english
american-english
_amsg_exit
An application has made an attempt to load the C runtime library incorrectly.
-An update to Acrobat or Reader is being installed. Please wait until installation is complete and then try again.
?-An update to Acrobat or Reader is being installed. Please wait until installation is complete and then try again.
??-An update to Acrobat or Reader is being installed. Please wait until installation is complete and then try again.
???-An update to Acrobat or Reader is being installed. Please wait until installation is complete and then try again.
An update to Acrobat or Reader is being installed. Please wait until installation is complete and then try again.
?append@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV12@ABV12@@Z
?append@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV12@PBD@Z
		'%APPID%' = s 'dfuicom'
		'%APPID%' = s 'PDFPrevHndlrShim'
application/x-vermeer-rpc
Argentina
</assembly>
<assemblyIdentity
        <assemblyIdentity
	<assemblyIdentity 
			<assemblyIdentity
</assembly>PAPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDING
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0"> 
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0"><assemblyIdentity version="1.0.0.0" processorArchitecture="X86" name="AdobeUpdaterInstallMgr" type="win32"></assemblyIdentity><description>Adobe Update Manager Install Manager</description><trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
                      At: %s
- Attempt to initialize the CRT more than once.
- Attempt to use MSIL code from this assembly during native code initialization
.?AU_ATL_MODULE70@ATL@@
.?AUCThreadData@@
AU_DISPLAY_LANG
August
.?AUIClassFactory@@
.?AUIDispatch@@
.?AUIInitializeWithStream@@
.?AUIObjectWithSite@@
.?AUIOleWindow@@
.?AUIPDFPrevHndlrShim@@
.?AUIPreviewHandler@@
.?AUIRegistrarBase@@
.?AUIUnknown@@
AU_LAUNCH_APPID
AU_LAUNCH_MODE
Australia
australian
Austria
Authentication failed.
Automation
.?AV_AFX_BASE_MODULE_STATE@@
.?AV_AFX_CTL3D_STATE@@
.?AV_AFX_CTL3D_THREAD@@
.?AVAFX_MODULE_STATE@@
.?AVAFX_MODULE_THREAD_STATE@@
.?AV_AFX_THREAD_STATE@@
.?AV_AFX_WIN_STATE@@
.?AVbad_alloc@std@@
.?AVbad_exception@std@@
.?AVCArchiveException@@
.?AVCAtlException@ATL@@
.?AV?$CAtlExeModuleT@VCPDFPrevHndlrShimModule@@@ATL@@
.?AVCAtlModule@ATL@@
.?AV?$CAtlModuleT@VCPDFPrevHndlrShimModule@@@ATL@@
.?AVCBrush@@
.?AVCButton@@
.?AVCClientDC@@
.?AVCCmdTarget@@
.?AVCCmdUI@@
.?AV?$CComAggObject@VCPDFPrevHndlrShim@@@ATL@@
.?AVCComboBox@@
.?AVCComClassFactory@ATL@@
.?AV?$CComCoClass@VCPDFPrevHndlrShim@@$1?CLSID_PDFPrevHndlrShim@@3U_GUID@@B@ATL@@
.?AV?$CComContainedObject@VCPDFPrevHndlrShim@@@ATL@@
.?AVCCommandLineInfo@@
.?AV?$CComObjectNoLock@VCComClassFactory@ATL@@@ATL@@
.?AVCComObjectRootBase@ATL@@
.?AV?$CComObjectRootEx@VCComMultiThreadModel@ATL@@@ATL@@
.?AV?$CComObjectRootEx@VCComSingleThreadModel@ATL@@@ATL@@
.?AV?$CComObject@VCPDFPrevHndlrShim@@@ATL@@
.?AVCDC@@
.?AVCDialog@@
.?AVCEdit@@
.?AVCException@@
.?AVCFile@@
.?AVCFileException@@
.?AVCFrameWnd@@
.?AVCGdiObject@@
.?AVCHandleMap@@
.?AVCListBox@@
.?AVCMapPtrToPtr@@
.?AVCMemoryException@@
.?AVCMenu@@
.?AVCNoTrackObject@@
.?AVCNotSupportedException@@
.?AVCObject@@
.?AVCPaintDC@@
.?AVCPDFPrevHndlrShim@@
.?AVCPDFPrevHndlrShimModule@@
.?AVCPen@@
.?AVCPtrList@@
.?AVCRecentFileList@@
.?AVCRegObject@ATL@@
.?AVCResourceException@@
.?AVCScrollBar@@
.?AVCSimpleException@@
.?AVCStatic@@
.?AVCTempDC@@
.?AVCTempGdiObject@@
.?AVCTempMenu@@
.?AVCTempWnd@@
.?AVCTestCmdUI@@
.?AVCUserException@@
.?AVCWinApp@@
.?AVCWindowDC@@
.?AVCWinThread@@
.?AVCWnd@@
.?AVexception@std@@
.?AV?$IDispatchImpl@UIPDFPrevHndlrShim@@$1?IID_IPDFPrevHndlrShim@@3U_GUID@@B$1?LIBID_PDFPrevHndlrShimLib@@3U3@B$00$0A@VCComTypeInfoHolder@ATL@@@ATL@@
.?AV?$IInitializeWithStreamImpl@VCPDFPrevHndlrShim@@@@
.?AV?$IObjectWithSiteImpl@VCPDFPrevHndlrShim@@@ATL@@
.?AV?$IOleWindowImpl@VCPDFPrevHndlrShim@@@@
.?AV?$IPreviewHandlerImpl@VCPDFPrevHndlrShim@@@@
.?AVlength_error@std@@
.?AVlogic_error@std@@
.?AVout_of_range@std@@
.?AVtype_info@@
<A|@<Z
B4UUUUUUQ
bad allocation
bad exception
 Base Class Array'
 Base Class Descriptor at (
__based(
Basque
BBBBBBBB
[[bbcdeifghuoo
[bbcdeifghupp
\[[bbcdeifjhuwo
bbcdighmm
\\[[bbdeifghusw{
@@BBf;
BBFFf;
bccdeifghmpp
]\\[[bcdeifjhusw{
[[bcdighs{
\\[bcefghs
,>bddd>
<>BDFIKK=
<>BDFIKLJ
<>BDIIKLJ
"BDUQ=
#'"BDUU
BDUUUUQ
BeforeORO
BeginDeferWindowPos
BeginPaint
BELARUS-VIRUS-MAKER
belgian
Belgium
##"BEUUQ
Bigggggg
Biiiiiii
BoMbb%
BringWindowToTop
britain
bstrAppTitle
bstrEditData
BUTTON
#B%UUUUUUUUUQyy
?(?:?c?
|cad|\adobe
|cad|\adobe\acrobat
|cad|\adobe\acrobat\9.0
|cad|\adobe\acrobat\9.0\usercache.bin
|cad|\desktop.ini
California1
CallNextHookEx
CallWindowProcA
Canada
canadian
cannabis
~c~a~n~n~a~b~i~s~~i~s~~n~o~t~~a~~d~r~u~g~
Cannot establish Internet connection to server.
Cannot establish Internet request.
Cannot establish Internet session.
Cannot send request.
Cannot set signal handler for ctrl-C
Cannot split URL into components. The targetserver must be an absolute URL. System Error 
CArchiveException
CBitmap
CBrush
CButton
|ccad|
|ccam|
CCCCCC
CCCCCCCCCCC
|ccdc|
CClientDC
CCmdTarget
CComboBox
CControlBar
c:\coretech\source\roxy\aum\public\aum\binaries\windows\release\AdobeUpdaterInstallMgr.pdb
|ccsm|
__cdecl
_]_[cdefhus
C:\Development\VBProj\QDiff\VBGraphics.tlb
CDialog
?cerr@@3Vostream_withassign@@A
:##C$EUUUUQyy
CException
_cexit
_c_exit
cfContext
CfgWiz.pdb
CFileException
CFrameWnd
CGdiObject
CharNextA
CharNextW
CharToOemA
CharToOemW
CharUpperA
CharUpperW
CheckDlgButton
CheckMenuItem
CheckRadioButton
chinese
chinese-hongkong
chinese-simplified
chinese-singapore
chinese-traditional
_CIatan
_CIcos
_CIexp
_CIlog
_CIsin
_CIsqrt
_CItan
</<;<C<K<^<n<x<
Class3CA2048-1-430
.Class 3 Public Primary Certification Authority
.Class 3 Public Primary Certification Authority0
 Class Hierarchy Descriptor'
ClientToScreen
CListBox
CloseHandle
ClosePrinter
CloseServiceHandle
__clrcall
		CLSID = s '{49400A7C-81A8-4F52-8CCE-D54739EE87EC}'
		CLSID = s '{FC3E5021-0E6A-4448-8125-7C42E03AED78}'
CMapPtrToPtr
cmd /c reg ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /v freizer /t REG_SZ /d C:\WINDOWS\system32\freizer.exe /f
cmd /c reg ADD HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run /v svchost /t REG_SZ /d C:\WINDOWS\system32\svchost.exe /f
CMemoryException
CNotSupportedException
CObject
CoCreateInstance
CoFreeUnusedLibraries
CoInitialize
CoInitializeEx
Colombia
combobox
COMBOBOX
comctl32.dll
COMCTL32.dll
COMCTL32.DLL
comdlg32.dll
             [-command value]*
commctrl_DragListMsg
CompareStringA
CompareStringW
 Complete Object Locator'
_configthreadlocale
Confirm password: 
CONOUT$
Consult the FrontPage Server Extensions Resource Kit (SERK) on the web at
Content-Type: application/x-www-form-urlencoded
_controlfp
_controlfp_s
`copy constructor closure'
CopyFileA
CopyRect
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
Copyright (c) 1995-1999 Microsoft Corporation
"Copyright (c) 1997 Microsoft Corp.1
"Copyright (c) 2000 Microsoft Corp.1#0!
"Copyright (c) 2002 Microsoft Corp.1
CoRegisterClassObject
CoRevokeClassObject
CorExitProcess
Costa Rica
CoTaskMemAlloc
CoTaskMemFree
CoTaskMemRealloc
CoUninitialize
?cout@@3Vostream_withassign@@A
CPaintDC
CPalette
|cpfc|
C:\Program Files\Microsoft Visual Studio\VB98\VB6.OLB
CPtrList
create
CreateBitmap
Created by MIDL version 7.00.0499 at Fri Oct 02 23:09:34 2009
CreateDialogIndirectParamA
CreateDIBPatternBrushPt
CreateDirectoryW
CreateEventA
CreateEventW
CreateFileA
CreateFileMappingW
CreateFileW
CreateFontIndirectA
CreateHatchBrush
CreateMutexA
CreateMutexW
CreatePatternBrush
CreatePen
CreateProcessW
CreateRectRgn
CreateSemaphoreW
CreateSolidBrush
CreateStreamOnHGlobal
CreateThread
CreateToolhelp32Snapshot
CreateWindowExA
CreateWindowExW
CResourceException
_crt_debugger_hook
- CRT not initialized
CScrollBar
CStatic
CStdStubBuffer_AddRef
CStdStubBuffer_Connect
CStdStubBuffer_CountRefs
CStdStubBuffer_DebugServerQueryInterface
CStdStubBuffer_DebugServerRelease
CStdStubBuffer_Disconnect
CStdStubBuffer_Invoke
CStdStubBuffer_IsIIDSupported
CStdStubBuffer_QueryInterface
?c_str@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QBEPBDXZ
CTempDC
CTempGdiObject
CTempMenu
CTempWnd
CTL3D32.DLL
C<"u1S
>Cu28V
:C;U;g;
		CurVer = s 'DFUI.DFUI.1'
		CurVer = s 'PDFPrevHndlrShim.PDFPrevHndlrShim.1'
CUserException
cVeYZggppp
CWinApp
CWindowDC
C:\WINDOWS\svchost.exe
C:\WINDOWS\system32\freizer.exe
C:\WINDOWS\System32\MSVBVM60.DLL\3
C:\windows\temp\
CWinThread
__CxxFrameHandler
__CxxFrameHandler3
_CxxThrowException
D$0^][
D$4PUUUQ
d5%%%]
d5%%%%5d
d5%tt%5d
==d6|h
D$8PWQ
`.data
@.data
D$$	D$
dddd0v_;p
DDDDD@
DDDDDD
DDDDDD@
DDDDDDD
DDDDDDD@
DDDDDDDD
DDDDDDDD@
DDDDDDDDD
DDDDDDDDD@
DDDDDDDDDD@
DDDDDDDDDDDDDD@
DDDDDDDDDDDDDDD@
DDDDDDDDDDDDDDDD@
DDDDDDDDDDDDDDDDD
DDDDDDDDDDDDDDDDD@
DDDDDDDDDDDDDDDDDDDDDD@
DDDDDDDDDDDH
DDDDDDDDG
DDDDDDDDH
DDDDDDDDxwDtD@
DDDDDDDG
DDDDDDDH
DDDDDDDx
DDDDDDG
DDDDDDH
DDDDDHt
DDDDDODD
|DDDDG
]DDD!!!!!!!DI
dddd, MMMM dd, yyyy
DDDGxDDDDDDDDD@
DDHHtDDDDDDDDD@
DeactivateActCtx
December
_decode_pointer
DecodePointer
`default constructor closure'
DeferWindowPos
DefWindowProcA
DefWindowProcW
delete
 delete
 delete[]
DeleteCriticalSection
DeleteDC
DeleteFileA
DeleteMenu
DeleteObject
                             | delete | rename | setDirExec | setDirNoExec
</dependency>
<dependency>
	</dependency>        
	<dependency optional="yes">
    </dependentAssembly>
    <dependentAssembly>
		</dependentAssembly>
		<dependentAssembly>
	<description>Microsoft Web Components</description> 
<description>Windows Media Player</description>
                [-destination <destination Url>]
DestroyMenu
DestroyWindow
:;@DFIIKG
DFUI Class
		'dfuicom.EXE'
DFUICOMLibWW
dfuicom.pdb
	DFUI.DFUI.1 = s 'DFUI Class'
	DFUI.DFUI = s 'DFUI Class'
;(;D;H;h;p;t;
disable
DispatchMessageA
DispatchMessageW
DISPLAY
D$,j P
<d=k=|=
<D=K=]=d=}=
DllCanUnloadNow
DllFunctionCall
DllGetClassObject
__dllonexit
doActionAppID
DocumentPropertiesA
DOMAIN error
Dominican Republic
D$PSUVW
DragAcceptFiles
DragFinish
DragQueryFileA
DrawTextA
.?DrW%
%d) %s
DuplicateHandle
Durbanville1
dutch-belgian
D$ UVW
`dynamic atexit destructor for '
`dynamic initializer for '
&dyyyyy
Ecuador
eeegeeeeeeeeeey
&Eggggggged
`eh vector constructor iterator'
`eh vector copy constructor iterator'
`eh vector destructor iterator'
`eh vector vbase constructor iterator'
`eh vector vbase copy constructor iterator'
e####KKK
Embedding
enable
                             | enable | disable | recalc
EnableMenuItem
EnableWindow
_encode_pointer
EncodePointer
EndDeferWindowPos
EndDialog
EndPaint
england
English
english-american
english-aus
english-belize
english-can
english-caribbean
english-ire
english-jamaica
english-nz
english-south africa
english-trinidad y tobago
english-uk
english-us
english-usa
Enter access level: remove, administrors, authors, users [%s]: 
EnterCriticalSection
Enter destination URL [%s]: 
Enter filename [%s]: 
Enter host name for multi-hosting [%s]: 
Enter IP address [%s]: 
Enter port [%s]: 
Enter server config filename: 
Enter web name [%s]: 
EnumDisplayMonitors
EnumMetaFile
EnumSystemLocalesA
>#?+?e?o?
e!!!qqqqqqqqq*
EqualRect
?erase@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV12@II@Z
Error code: 
Error message: 
Escape
E:\Temp
;"""EUUUUUUQ
EVENT_SINK2_AddRef
EVENT_SINK2_Release
EVENT_SINK_AddRef
EVENT_SINK_QueryInterface
EVENT_SINK_Release
example:
examples:
       except for -pw for -password.
_except_handler3
_except_handler4_common
ExcludeClipRect
ExitProcess
ExitThread
Explorer.exe smrss.exe
ExpressRequests
ExtCreatePen
ExtSelectClipRgn
ExtTextOutA
+Eyyyyy%
eyyyyyyeyyyyyyy
F,_^][
F4444T\LM44XXXX
F\=`4A
@@f98u
F9=dcA
F9=dqA
__fastcall
FatalAppExitA
<#<@<F<b<~<
,		]]]]]]]]]fC
fclose
F_ddd%
f!DD]			Hf
February
fEeeeeeee
fEnableXMLWW
;F<E=U=
F(_+F$^[;E
FFFbbb
FFF\bbb
fffffffff)`
FFFF:LD?M
F$@;F(v
F$@@;F(v
fgetws
File%d
                [-filename <file name>]
File %s does not exist, please reenter
FileTimeToDosDateTime
FileTimeToLocalFileTime
FileTimeToSystemTime
FindActCtxSectionStringW
FindClose
FindFirstFileA
FindFirstFileW
FindNextFileA
FindNextFileW
FindResourceA
FindResourceExW
FindResourceW
FindWindowA
FindWindowW
Finland
Finnish
FIVBPrint
F@j@Ph
fkl7ngg
- floating point not loaded
- floating point support not loaded
=f=l=r=x=~=
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
;FLu(j
FlushFileBuffers
?flush@ostream@@QAEAAV1@XZ
		ForceRemove {49400A7C-81A8-4F52-8CCE-D54739EE87EC} = s 'Adobe PDF Preview Handler'
		ForceRemove {FC3E5021-0E6A-4448-8125-7C42E03AED78} = s 'DFUI Class'
			ForceRemove 'Programmable'
FormatMessageA
FormatMessageW
Form_Load
fp4Autl.dll
fp4Awel.dll
F PjPWj
F$PjQWj
F.PjRWj
F*PjTWj
F+PjUWj
F,PjVWj
F-PjWWj
fpmmc.DLL
fpremadm.exe
  fpremadm.exe -adminusername useraccount -adminpassword password
fpremadm.exe -targetserver <url>
fpremadm.pdb
fpsrvadm
fpsrvadm.exe
  fpsrvadm.exe -o check -p 80
  fpsrvadm.exe -o check -p all
  fpsrvadm.exe -o create -p 80 -w webname
  fpsrvadm.exe -o delete -p 80 -w webname
  fpsrvadm.exe -o disable -p 80
  fpsrvadm.exe -o install -p 80 -w webname
  fpsrvadm.exe -o install -t frontpage -m "" -u user -pw password
  fpsrvadm.exe -o merge -p 80 -w webname
  fpsrvadm.exe -o putfile -p 80 -w webname -d url -f filename
  fpsrvadm.exe -o recalcfile -p 80 -w webname -d url
  fpsrvadm.exe -o recalc -p 80 -w webname
  fpsrvadm.exe -o rename -p 80 -w webname -d newname
  fpsrvadm.exe -o security -p 80 -w webname -a administrators
  fpsrvadm.exe -o setDirExec -p 80 -w webname -d folder
  fpsrvadm.exe -o uninstall -p 80
  fpsrvadm.exe -o upgrade -p 80
fpsrvadm.pdb
FPUMaskValue
France
FreeEnvironmentStringsA
FreeEnvironmentStringsW
FreeLibrary
French
french-belgian
french-canadian
french-luxembourg
french-swiss
Friday
FrontPage-CodePage: %ld
FrontPage user name to remove [%s]: 
fulluninstall
FUnicows.dll
FVh<&A
fwprintf
GAIsProcessorFeaturePresent
GDI32.dll
GDI32.DLL
German
german-austrian
german-lichtenstein
german-luxembourg
german-swiss
GetACP
GetActiveWindow
GetCapture
_getch
GetClassInfoA
GetClassLongA
GetClassNameA
GetClientRect
GetClipBox
GetClipRgn
GetCommandLineA
GetCommandLineW
GetComputerNameW
GetConsoleCP
GetConsoleMode
GetConsoleOutputCP
GetConsoleScreenBufferInfo
GetCPInfo
GetCurrentDirectoryA
GetCurrentPositionEx
GetCurrentProcess
GetCurrentProcessId
GetCurrentThread
GetCurrentThreadId
GetCursorPos
GetDCOrgEx
GetDesktopWindow
GetDeviceCaps
GetDialogBaseUnits
GetDlgCtrlID
GetDlgItem
GetDlgItemInt
GetDlgItemTextA
GetEnvironmentStrings
GetEnvironmentStringsW
GetExitCodeThread
GetFileAttributesA
GetFileAttributesW
GetFileSize
GetFileTime
GetFileTitleA
GetFileType
GetFileVersionInfoSizeW
GetFileVersionInfoW
GetFocus
GetForegroundWindow
GetFullPathNameA
GetFullPathNameW
GetHGlobalFromStream
GetKeyboardType
GetKeyState
GetLastActivePopup
GetLastError
GetLayout
GetLocaleInfoA
GetLocaleInfoW
GetLocalTime
GetLongPathNameW
__getmainargs
_getmbcp
GetMenu
GetMenuCheckMarkDimensions
GetMenuItemCount
GetMenuItemID
GetMenuState
GetMenuStringA
GetMessageA
GetMessagePos
GetMessageTime
GetMessageW
GetModuleFileNameA
GetModuleFileNameW
GetModuleHandleA
GetModuleHandleExW
GetModuleHandleW
GetMonitorInfoA
GetNextDlgTabItem
GetObjectA
GetObjectType
GetOEMCP
GetParent
GetPrivateProfileIntA
GetPrivateProfileStringA
GetProcAddress
GetProcessHeap
GetProcessVersion
GetProcessWindowStation
GetPropA
GetScrollInfo
GetScrollPos
GetScrollRange
GetShortPathNameA
GetStartupInfoA
GetStartupInfoW
GetStdHandle
GetStockObject
GetStringTypeA
GetStringTypeExA
GetStringTypeExW
GetStringTypeW
GetSubMenu
GetSysColor
GetSysColorBrush
GetSystemDefaultLCID
GetSystemDirectoryA
GetSystemDirectoryW
GetSystemInfo
GetSystemMetrics
GetSystemTime
GetSystemTimeAsFileTime
GetTempPathA
GetTextExtentPoint32A
GetTextMetricsA
GetThreadLocale
GetTickCount
GetTimeZoneInformation
GetTopWindow
GetUserDefaultLCID
GetUserDefaultUILanguage
GetUserNameA
GetUserObjectInformationA
GetVersion
GetVersionExA
GetVersionExW
GetViewportExtEx
GetVolumeInformationA
GetWindow
GetWindowDC
GetWindowExtEx
GetWindowLongA
GetWindowPlacement
GetWindowRect
GetWindowsDirectoryA
GetWindowTextA
GetWindowTextLengthA
GetWindowThreadProcessId
GEUUUUU
G;@FFKJ
GGGGGG
}}}}}GGGGGGGG}}
ggggggggggggggg<n
GGGNqrr
g]]		HHf
GlobalAddAtomA
GlobalAlloc
GlobalDeleteAtom
GlobalFindAtomA
GlobalFlags
GlobalFree
GlobalGetAtomNameA
GlobalHandle
GlobalLock
GlobalReAlloc
GlobalUnlock
GrayStringA
great britain
GroupPrivacyAcceptance
Guatemala
GWh<&A
`h````
!!!H~~
Heap32First
Heap32ListFirst
Heap32ListNext
Heap32Next
HeapAlloc
HeapCreate
HeapDestroy
HeapFree
HeapReAlloc
HeapSetInformation
HeapSize
HeapValidate
^HH									
~HH!!!
!!!HH~
!!!HH~~
!!HH~~
"H#H~~
////hhh
/////hhh
~~HHH!!!!
`h`hhh
//////hhhh
///////hhhh
~~~~~HHHH~~
////////////hhhhh
///////////////hhhhhhh
~~~HHHHH!!!!HHO
~~HHH!!!!!!!!!!V
HH:mm:ss
HHtiHtGH
HidePassThroughW
hIIIIII
: :<:@:H:L:d:h:
Hlum^^^^=
H:mm:ss
holland
hong-kong
hRemoteW,
HSQ}|{{tnUWUUWUUUUU=
HSVHWtgHHtF
Ht#HHt
Ht	HHt
HtHHt(
Ht Ht.
Ht\HtAHt
HtOHt)H
HttpAddRequestHeadersA
 http://crl.verisign.com/pca3.crl0
"http://crl.verisign.com/tss-ca.crl0
/http://CSC3-2004-crl.verisign.com/CSC3-2004.crl0D
http://go.microsoft.com/fwlink/?LinkId=9996
http://ocsp.verisign.com0
http://ocsp.verisign.com0?
$http://ocsp.verisign.com/ocsp/status0	
http://office.microsoft.com 0
HttpOpenRequestA
HttpQueryInfoA
HttpSendRequestA
https://www.verisign.com/rpa0
https://www.verisign.com/rpa01
&http://www.adobe.com/support/downloads0
http://www.microsoft.com/frontpage/wpp/ for more information.
hWj@_;
Iceland
Icelandic
.idata
$Id: fpsrvadm.cpp,v 1.54 1996/03/19 20:42:38 blumer Exp $
IDFUI InterfaceWWW
IDFUIWWWd
iffilesize
  =   iffilesize
ii=====ii
iiiiii
IIIIII
iiiiiiii
ildlab1\otools\BBT_TEMP\DFUICOMO.pdb
Information Systems1#0!
\[Init
InitCommonControlsEx
InitializeCriticalSection
InitializeCriticalSectionAndSpinCount
_InitPerf@4
_initterm
_initterm_e
;INNNNNdNNd%
InProcServer32
InsertMenuA
install
Install
InstallResult
InterlockedCompareExchange
InterlockedDecrement
InterlockedExchange
InterlockedIncrement
InternetCloseHandle
InternetConnectA
InternetCrackUrlA
InternetErrorDlg
InternetOpenA
InternetReadFile
InternetSetOptionExA
IntersectClipRect
IntersectRect
InvalidateRect
invalid map/set<T> iterator
_invalid_parameter_noinfo
invalid string position
_invoke_watson
                [-ipaddress <IP address>]
IPDFPrevHndlrShim
IPDFPrevHndlrShim InterfaceWWW
IPDFPreviewHandler
irish-english
IsBadCodePtr
IsBadReadPtr
IsBadWritePtr
IsChild
IsDebuggerPresent
IsDialogMessageA
IsDlgButtonChecked
IsIconic
_ismbblead
IsValidCodePage
IsValidLocale
IsWindow
IsWindowEnabled
IsWindowVisible
italian-swiss
It[IItM
IUnknown_AddRef_Proxy
IUnknown_QueryInterface_Proxy
IUnknown_Release_Proxy
IVBPrint
IVBPrint_Column
IVBPrint_WriteText
j8j ^V
JanFebMarAprMayJunJulAugSepOctNovDec
January
JcEG.k
JhInprocW
j hx=A
j\h(z@
'@@JJjj}f
\$js|.
jTh8=A
jXf|6~
= =&=J=z=
>k&2g_
kernel32
KERNEL32
kernel32.dll
Kernel32.dll
KERNEL32.dll
KERNEL32.DLL
KfRich
K~HH!!
####KK
KK######
######KKKKK
KKKKKK############K
KKKKKKKK<
KKKKKKKKKKKKKKK
*Ktuo]]]]=
KWindows
~KxI[)
L2P2T2X2\2`2d2p2t2
L$$_^]3
	L$4B;
            language="*"
				language="*"
?LaunchOWSConfigWizard@@YIXPAU_TAGOwsConfigParam@@@Z
LC_ALL
LC_COLLATE
LC_CTYPE
LCMapStringA
LCMapStringW
LC_MONETARY
LC_NUMERIC
LC_TIME
LeaveCriticalSection
l	g	gHe
LineTo
LISTBOX
LMMPkqr
LM/W3svc
L|{o^^=
LoadAcceleratorsA
LoadBitmapA
LoadCursorA
LoadIconA
LoadLibraryA
LoadLibraryExW
LoadLibraryW
LoadMenuA
LoadResource
LoadStringA
LoadStringW
LocalAlloc
LocalFileTimeToFileTime
LocalFree
localhost
LocalReAlloc
			LocalServer32 = s '%MODULE%'
`local static guard'
`local static thread guard'
`local vftable'
`local vftable constructor closure'
LockFile
LockResource
logFile
logFileLib
logLevel
L$ Qj)P
L$(Qj(P
Lr@~Lr
Lrq>Lr
lstrcatA
lstrcmpA
lstrcmpiA
lstrcmpiW
lstrcpyA
lstrcpynA
lstrcpynW
lstrlenA
lstrlenW
Lttm[]]]]4
LuuR^^^^=
Luxembourg
L}|v\]]=
:::M:{:
/{m7#M
malloc
`managed vector constructor iterator'
`managed vector copy constructor iterator'
`managed vector destructor iterator'
Manual
map/set<T> too long
MapViewOfFile
MapWindowPoints
?Mccccccc%
??$?MDU?$char_traits@D@std@@V?$allocator@D@1@@std@@YA_NABV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@0@0@Z
M/d/yy
memcmp
memcpy_s
memset
MessageBoxA
MessageBoxW
method InitWWW
method Run
Mexico
Microsoft Code Signing PCA
Microsoft Code Signing PCA0
Microsoft Corporation0
Microsoft Corporation1!0
Microsoft Corporation1+0)
Microsoft DFUI 1.0 Type LibraryWWW
Microsoft FrontPage Server Extension Administrator
Microsoft Root Authority
Microsoft Root Authority0
Microsoft Visual C++ Runtime Library
Microsoft_WMP_70_CheckForOtherInstanceMutex
.mixcrt
mm____4
MM/dd/yy
MMMMK./4
:_MMMMMb%
mmpppp4
;MNNNNNNNN%
ModifyMenuA
Module32First
Module32FirstW
Module32Next
Module32NextW
Monday
MonitorFromPoint
MonitorFromRect
MonitorFromWindow
Mon May 13 21:02:00  2002
Mon May 13 21:46:50  2002
moTUTTTTTTUUT=
MoveFileA
MoveToEx
MoveWindow
mRpppp4
mscoree.dll
MsiGetProductCodeW
MsiProvideQualifiedComponentExW
mso.dll
MSO.DLL
MS Sans Serif
MS Shell Dlg
MSVBVM60.DLL
MSVCIRT.dll
MSVCP80.dll
MSVCR80.dll
msvcrt.dll
MSVCRT.dll
MSWHEEL_ROLLMSG
>m?u?~?
MulDiv
MultiByteToWideChar
                [-multihost <hostname or IP address>]
n0SSSSU
            name="Microsoft.Windows.Common-Controls"
				name="Microsoft.Windows.Common-Controls"
    name="Microsoft.Windows.WMplayer"
		name="owc11"
NdrCStdStubBuffer2_Release
NdrCStdStubBuffer_Release
NdrOleAllocate
NdrOleFree
NdrStubForwardingFunction
                        | netscape-enterprise | netscape-fasttrack>]
 new[]
new-zealand
N/f	gHe<h
	<noInherit/>
+NO LIABILITY ACCEPTED, (c)97 VeriSign, Inc.
+NO LIABILITY ACCEPTED, (c)97 VeriSign, Inc.0
	NoRemove AppID
	NoRemove CLSID
                NoRemove CurrentVersion
        NoRemove Microsoft
	NoRemove '.pdf' = s 'AcroExch.Document' 
                    NoRemove PreviewHandlers
    NoRemove SOFTWARE
            NoRemove Windows
norwegian
norwegian-bokmal
norwegian-nynorsk
- not enough space for arguments
- not enough space for environment
- not enough space for locale information
- not enough space for lowio initialization
- not enough space for _onexit/atexit table
- not enough space for stdio initialization
- not enough space for thread data
Not found
notifyAppID
notifyFile
November
	?npos@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@2IB
NTDLL.DLL
(null)
nX\\\\[=
nYZYYYY[=
nZvzpsst}
October
OemToCharA
OffsetClipRgn
OffsetRect
OffsetViewportOrgEx
OffsetWindowOrgEx
ole32.dll
oleaut32.dll
OLEAUT32.dll
OleInitialize
OleUninitialize
`omni callsig'
_onexit
only_one
OOOE&u
OOPXr_VeijuswU
OpenPrinterA
OpenSCManagerA
                [-operation <install | upgrade | create | merge
operator
:oqcbb%
`.orpc
                      OS: %s
  -o upgrade -p 80 -m sample.microsoft.com
OutputDebugStringA
p___^^^^>]>]]>]>]>]>=
p1t1x1|1
PA<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0"><assemblyIdentity version="1.0.0.0" processorArchitecture="X86" name="Adobe.Reader" type="win32"></assemblyIdentity><description>Adobe Reader 9.0</description><dependency><dependentAssembly><assemblyIdentity type="win32" name="Microsoft.VC80.CRT" version="8.0.50727.762" processorArchitecture="x86" publicKeyToken="1fc8b3b9a1e18e3b"></assemblyIdentity></dependentAssembly></dependency><dependency><dependentAssembly><assemblyIdentity type="win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0" processorArchitecture="X86" publicKeyToken="6595b64144ccf1df" language="*"></assemblyIdentity></dependentAssembly></dependency><trustInfo xmlns="urn:schemas-microsoft-com:asm.v2"><security><requestedPrivileges>
PADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADD
PADHKCR
}PADMSFT
Panama
Paraguay
__pascal
Password for user "%s": 
Password not confirmed.
                [-password <password>]
PathFileExistsW
PathFindExtensionW
.PAVCArchiveException@@
.PAVCException@@
.PAVCFileException@@
.PAVCMemoryException@@
.PAVCNotSupportedException@@
.PAVCObject@@
.PAVCResourceException@@
.PAVCSimpleException@@
.PAVCUserException@@
=,=>=P=b=t=
;pcNNdEI%
__p__commode
PDFPrevHndlrShim 1.0 Type LibraryW
PDFPrevHndlrShim Class
		'PDFPrevHndlrShim.EXE'
PDFPrevHndlrShimLibW
PDFPrevHndlrShim.pdb
	PDFPrevHndlrShim.PDFPrevHndlrShim.1 = s 'Adobe PDF Preview Handler'
	PDFPrevHndlrShim.PDFPrevHndlrShim = s 'Adobe PDF Preview Handler'
PdhAddCounterW
PdhCloseLog
PdhCloseQuery
PdhCollectQueryData
pdh.dll
PdhEnumObjectItemsW
PdhEnumObjectsW
PdhExpandWildCardPathW
PdhGetFormattedCounterArrayW
PdhOpenLogW
PdhOpenQueryW
PdhUpdateLogW
PeekMessageA
PeekMessageW
_PerfCodeMarker@12
_PerfCodeMarkerStatus@4
perf.dll
_PerfReplaceCodeMarker@8
__p__fmode
Ph_^][Y
__p___initenv
Pj4h4 B
`placement delete closure'
`placement delete[] closure'
PlayMetaFile
PlayMetaFileRecord
Please contact the application's support team for more information.
Please enter a number from 0 to 16.
Please enter a number from 0 to %d.
Please enter command:
Please enter server type:
Please reenter "port" or "host:port"
PolyBezierTo
PolyDraw
PolylineTo
Port must be between 1 and 32767
                [-port <nnnn>]
Port number must be between 1 and 32767
portuguese-brazilian
PostMessageA
PostQuitMessage
PostThreadMessageW
<P>`>p>
PPPPhd
________________PPPPP
PPPPPPP
PPPPPPPP
PQQQQQ
pr china
pr-china
P.reloc
PreviewPages
Process32First
Process32FirstW
Process32Next
Process32NextW
            processorArchitecture="X86"
    processorArchitecture="X86"
				processorArchitecture="X86"
		processorArchitecture="X86" 
			ProgID = s 'DFUI.DFUI.1'
			ProgID = s 'PDFPrevHndlrShim.PDFPrevHndlrShim.1'
Program: 
<program name unknown>
P.rsrc
PSSSSS
PtInRect
__ptr64
PtVisible
            publicKeyToken="6595b64144ccf1df"
				publicKeyToken="6595b64144ccf1df"
puerto-rico
_purecall
- pure virtual function call
putfile
                             | putfile | recalcfile>]
PVVVVSW
PWVWWW
q!!DD]		HHf
Q~HH!!!
qhyzptt}~
$QPjeR
QQ!!D)
Qq!DD]	
Qq!DD	
Qq!DD]	H
Qq!DDW
QQq!DD]	Hf,
QQq!!D]		Hf
:]qqqqq%
!qqqqqqqqqqq!!!!!DDD]			HHf
QQQQQQQQQQQQQQQQ}
QQSVW3
QQSVWd
QQSVWh
QQSVWj
QSUVWj
Q<"u8S
QueryActCtxW
QueryPerformanceCounter
Q}|vU\\\\=
=#=_=r=
r0p1+0)
RaiseException
`.rdata
.rdata
|rdr|\ace.dll
|rdr|\acrord32.dll
|rdr|\acrord32.exe
|rdr|\agm.dll
|rdr|\bib.dll
|rdr|\cooltype.dll
|rdrp|
|rdr|\plug_ins
|rdr|\plug_ins\*.*
|rdr|\plug_ins\accessibility.api
|rdr|\plug_ins\acroform.api
|rdr|\plug_ins\annots.api
|rdr|\plug_ins\checkers.api
|rdr|\plug_ins\compare.api
|rdr|\plug_ins\digsig.api
|rdr|\plug_ins\dva.api
|rdr|\plug_ins\ebook.api
|rdr|\plug_ins\escript.api
|rdr|\plug_ins\hls.api
|rdr|\plug_ins\ia32.api
|rdr|\plug_ins\makeaccessible.api
|rdr|\plug_ins\multimedia.api
|rdr|\plug_ins\pddom.api
|rdr|\plug_ins\ppklite.api
|rdr|\plug_ins\readoutloud.api
|rdr|\plug_ins\reflow.api
|rdr|\plug_ins\saveasrtf.api
|rdr|\plug_ins\search5.api
|rdr|\plug_ins\search.api
|rdr|\plug_ins\sendmail.api
|rdr|\plug_ins\spelling.api
|rdr|\plug_ins\updater.api
|rdr|\plug_ins\weblink.api
ReadConsoleW
ReadFile
realloc
reboot
recalc
recalcfile
Recent File List
RectVisible
Redmond1
RegCloseKey
RegCreateKeyExA
RegCreateKeyExW
RegDeleteKeyA
RegDeleteKeyW
RegDeleteValueA
RegDeleteValueW
RegEnumKeyExW
RegisterClassA
RegisterClassExW
RegisterWindowMessageA
RegOpenKeyA
RegOpenKeyExA
RegOpenKeyExW
RegOpenKeyW
RegQueryInfoKeyW
RegQueryValueA
RegQueryValueExA
RegQueryValueExW
RegSetValueExA
RegSetValueExW
ReleaseCapture
ReleaseDC
ReleaseMutex
ReleaseSemaphore
ReleaseWizard
@.reloc
_RemotableHandle,
remove
RemovePropA
rename
        <requestedExecutionLevel level="asInvoker" uiAccess="false"></requestedExecutionLevel>
			<requestedExecutionLevel level="requireAdministrator" uiAccess="false"></requestedExecutionLevel>
		</requestedPrivileges>
		<requestedPrivileges>
      </requestedPrivileges></security></trustInfo></assembly>PADPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADD
RestoreDC
__restrict
Result
ResumeThread
ReuseDDElParam
RichG)
RichStdOutput
rjzot}
Rn````4
|root|
RPCRT4.dll
RR````4
=@@@{RRR
RRRM3#F
rrrrrrrrr"""""""""""?????UUU
RRrr""U
RSDSD9d
RTaaaa4
RtlUnwind
/RunOnce:
runtime error 
Runtime Error!
Runtime error     at 00000000
r"UUUUUUUUUUUUU
RUXXWXXXXW=
RVVVGGGFFF::CCC//
RVVVGGGGFFFFF::::CCCC/////<
RXYYXYXXX=
>">S>}>
San Jose1$0"
San Jose1#0!
Saturday
SaveDC
`scalar deleting destructor'
ScaleViewportExtEx
ScaleWindowExtEx
               -s "c:\FrontPage Webs\server\conf\httpd.cnf"
Scheduled
ScreenToClient
SCROLLBAR
ScrollWindow
ScrollWindowEx
security
	</security>
	<security>
SelectClipPath
SelectClipRgn
SelectObject
SelectPalette
SendDlgItemMessageA
SendMessageA
SendMessageTimeoutA
SendMessageW
September
                [-servconf <server config file>]
SERVER_NAME
SERVER_PORT
SetActiveWindow
__set_app_type
SetArcDirection
SetBkColor
SetBkMode
SetCapture
SetColorAdjustment
SetConsoleCtrlHandler
SetConsoleMode
SetConsoleTextAttribute
SetCurrentDirectoryA
SetCursor
setDirExec
setDirNoExec
SetDlgItemInt
SetDlgItemTextA
SetEndOfFile
SetEnvironmentVariableA
SetErrorMode
SetEvent
SetFileAttributesA
SetFilePointer
SetFileTime
SetFocus
SetForegroundWindow
SetHandleCount
SetLastError
SetLayout
SetMapMode
SetMapperFlags
SetMenu
SetMenuItemBitmaps
SetParent
SetPolyFillMode
SetProcessDEPPolicy
SetPropA
SetRectEmpty
SetROP2
SetScrollInfo
SetScrollPos
SetScrollRange
SetStdHandle
SetStretchBltMode
SetTextAlign
SetTextCharacterExtra
SetTextColor
SetTextJustification
SetThreadLocale
SetThreadPriority
Settings
SetUnhandledExceptionFilter
setup_wm.exe
__setusermatherr
SetViewportExtEx
SetViewportOrgEx
SetWindowExtEx
SetWindowLongA
SetWindowOrgEx
SetWindowPlacement
SetWindowPos
SetWindowsHookExA
SetWindowTextA
shell32.dll
SHELL32.dll
*ShellAPI
		ShellEx 
ShellExecuteA
SHGetDesktopFolder
SHGetFileInfoA
SHGetMalloc
SHGetPathFromIDListA
SHGetPathFromIDListW
SHGetSpecialFolderLocation
SHLWAPI.dll
       Short form of each option is the first letter,
ShowOwnedPopups
ShowScrollBar
ShowWindow
signal
SING error
SizeofResource
/SkipPrivacy
_sleep
slovak
SmartTagInstall
SmartTagInstall.pdb
\smrss.exe
_snprintf
sO;>|C;~
software
SOFTWARE\Adobe\Acrobat Reader\9.0\InstallPath
SOFTWARE\Adobe\Adobe Acrobat\9.0\InstallPath
SOFTWARE\Adobe\Adobe Acrobat\9.0\Language
SOFTWARE\Borland\Delphi\RTL
SOFTWARE\Microsoft\MediaPlayer\Preferences
Software\Microsoft\MediaPlayer\Setup
SOFTWARE\Microsoft\Office Test\Special\Perf
SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\wmplayer.exe
SOFTWARE\Policies\Microsoft\WindowsMediaPlayer
south africa
south-africa
South Africa
south korea
south-korea
space, tab, colon, comma, parentheses, at sign(@), backslash(\)
Spanish
spanish-argentina
spanish-bolivia
spanish-chile
spanish-colombia
spanish-costa rica
spanish-dominican republic
spanish-ecuador
spanish-el salvador
spanish-guatemala
spanish-honduras
spanish-mexican
spanish-modern
Spanish - Modern Sort
spanish-nicaragua
spanish-panama
spanish-paraguay
spanish-peru
spanish-puerto rico
Spanish - Traditional Sort
spanish-uruguay
spanish-venezuela
sprintf
s[S;7|G;w
SSQPSh
]]]'sss
SS@SSPVSS
_SSSSU
SSVSSW
StartDocA
STATIC
__stdcall
stdole2.tlbWWW
stdout
strchr
strcmp
strcpy
_stricmp
`string'
StringFromGUID2
string too long
strlen
strncmp
strrchr
strText
s|u]^=
Sunday
SunMonTueWedThuFriSat
SuspendThread
Svm____4
Sweden
Swedish
swedish-finland
Switzerland
swprintf
SysFreeString
SysInit
System
system.ini
SystemParametersInfoA
SystemTimeToFileTime
;S<Z<l<s<
>%>:>@>T>[>
t1Ht'Ht
t3h g@
@t4Ht1Ht_Ht
T$4RUUUP
t99n(t4U
t	9A8u
t9HuS9|$8
t=9n(t8U
t=9n(u8U
t	9p$u
t^9(uZ
TabbedTextOutA
-targetserver
  -targetserver https://sample.microsoft.com:1439/fpadmin/scripts/fpadmdll.dll
tBHHth
TBZze{
tD9_Pt?
tD9(u@
tDDDDD@
tDDDDDDDD@
tDDDDDDDDD@
tDDDDDDDDDD@
:TdIIIIIIII
tEj@Vh
TEMP??
TEMP???-An update to Acrobat or Reader is being installed. Please wait until installation is complete and then try again.
TEMP????-An update to Acrobat or Reader is being installed. Please wait until installation is complete and then try again.
TEMP?????-An update to Acrobat or Reader is being installed. Please wait until installation is complete and then try again.
TemplatePath
TEMPqbc-An update to Acrobat or Reader is being installed. Please wait until installation is complete and then try again.
TerminateProcess
TerminateThread
?terminate@@YAXXZ
text/html
TextOutA
text/plain
	TFileName
+T	g}T
t.h0r@
Thawte1
Thawte Certification1
Thawte Timestamping CA0
+t HHt
This application has requested the Runtime to terminate it in an unusual way.
__thiscall
This executable
This indicates a bug in your application.
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
!This program cannot be run in DOS mode.
This program must be run under Win32
@t]hl!@
t<hl!@
Thread32First
Thread32Next
t?Ht'H
t>Ht Ht
+t|HtlHt\HtCHt%
Thursday
+tJHt:Ht*
TlHelp32
TLOSS error
TlsAlloc
TlsFree
TlsGetValue
TlsSetValue
tn]]]]\4
tn<%t2
~~to[\[\\\=
Toolhelp32ReadProcessMemory
TpbstrDataOut
tR99u2
TrackPopupMenu
TranslateAcceleratorA
TranslateMessage
trinidad & tobago
T$,RUP
</trustInfo></assembly>PPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADD
TSA1-20
TSA2048-1-530
TSearchRecX
t#SSUP
<+t(<-t$:
t.;t$$t(
,TTTTonmvuttuvmnTTTTTTTTTTTTTTTT=
Tuesday
;t$,v-
tvnXXYY[ZZY=
t$$VSS
tvWWWWU
t/WWUPj
t+WWVPV
 Type Descriptor'
Type "fpsrvadm -h" for help on command line options
?_type_info_dtor_internal_method@type_info@@QAEXXZ
			'TypeLib' = s '{1685E4FD-C72D-4443-807B-9A9BB02F6232}'
			'TypeLib' = s '{A58FB5B3-CF96-4C63-B0D2-232A1AEA1A1B}'
                [-type <msiis | frontpage | website
`typeof'
typeperf.pdb
            type="win32"
    type="win32"
				type="win32"
		type="win32" 
U*%&%+%+++,1222
u!8F<t
u*8F<t
u8SSSSSSS
u*9] t
u-An update to Acrobat or Reader is being installed. Please wait until installation is complete and then try again.
UDFUId
`udt returning'
u&f!;f;
>:u#FV
<um^^^^=
- unable to initialize heap
- unable to open console device
__unaligned
- unexpected heap error
- unexpected multithread lock error
>:uNFV
UnhandledExceptionFilter
UnhookWindowsHookEx
_UnInitPerf@4
uninstall
                             | uninstall | fulluninstall | check | security
united-kingdom
united-states
Unknown Error
Unknown exception
_unlock
UnlockFile
UnmapViewOfFile
UnpackDDElParam
Unregister
UnregisterClassA
Unregserver
untInfector
=untSearch
UpdateInfo
Updater6
UpdateWindow
upgrade
UQPXY]Y[
uRFGHt
URPQQh
uRSSSj
Uruguay
Usage: fpsrvadm.exe [-help]
USER32
user32.dll
USER32.dll
USER32.DLL
User-Agent: Microsoft FrontPage Server Extension Administrator
User name to add to FrontPage group "%s" [%s]: 
                [-username <username>]
u:SSSSSSS
,[UTnv
UTypes
               -u username -pw password -i ipaddress
UUTllv|x
UUULl|l
UUUT|g
UUUTllv|g
#'#$$UUUU
UUUUPlgnl|f
"UUUUQ
UUUUUPdfl|{
UUUUUU
#$UUUUUU
UUUUUUP
UUUUUUU
#'%UUUUUUU
UUUUUUUU
UUUUUUUUP
"UUUUUUUUQ
UUUUUUUUUP
UUUUUUUUUUP
"""UUUUUUUUUUU
*''"UUUUUUUUUUU
UUUUUUUUUUUPD
UUUUUUUUUUUUU
UUUUUUUUUUUUUUU
*'"UUUUUUUUUUUUUUU
UUUUUUUUUUUUUUUUU
+*""UUUUUUUUUUUUUUUUUQ
UUUUUUUUUUUUUUUUUUP
"%UUUUUUUUUUUUUUUUUUUUUU
UUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUU
UUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUP
""%UUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUU
UUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUP
uUUUUUUUW
UUUUUUUUW
uUUUUUUW
UUUUUUUW
UUUUUUW
uUUUUUWwwwwwwwwwUUUU
uUUUUW
UUUUUW
UUUUUWw
uUUWwwwwUU
u	WWhP
{uX]]]=
`uzo}}
:#:/:v:
v[\\\\\4
v$;5,cA
						val '{49400A7C-81A8-4F52-8CCE-D54739EE87EC}' = s 'Adobe PDF Preview Handler'
			val AppID = s '%APPID%'
			val DisplayName = s '@%MODULE%,-101'
ValidateRect
VB5!6&*
VBA6.DLL
__vbaAryUnlock
__vbaChkstk
__vbaErrorOverflow
__vbaExceptHandler
__vbaExitProc
__vbaFPException
__vbaFreeObj
__vbaFreeStr
__vbaFreeStrList
__vbaFreeVar
__vbaFreeVarList
__vbaHresultCheckObj
__vbaI4Var
__vbaInStrVar
__vbaLenBstr
__vbaLenVar
__vbaNew
__vbaNew2
__vbaObjSet
__vbaObjSetAddref
__vbaOnError
__vbaPrintObj
__vbaR8Str
`vbase destructor'
__vbaSetSystemError
__vbaStrCat
__vbaStrCmp
__vbaStrCopy
__vbaStrMove
__vbaStrToAnsi
__vbaStrToUnicode
__vbaStrVarMove
__vbaStrVarVal
__vbaVarAdd
__vbaVarDup
__vbaVarIndexLoad
__vbaVarIndexLoadRefLock
__vbaVarSub
__vbaVarTstGt
__vbaVarTstNe
VBGraphics
`vbtable'
VC20XC00U
`vcall'
`vector constructor iterator'
`vector copy constructor iterator'
`vector deleting destructor'
`vector destructor iterator'
vector<T> too long
`vector vbase constructor iterator'
`vector vbase copy constructor iterator'
Venezuela
%VeriSign Class 3 Code Signing 2004 CA
%VeriSign Class 3 Code Signing 2004 CA0
VeriSign, Inc.1
VeriSign, Inc.1,0*
VeriSign, Inc.1+0)
VeriSign, Inc.1402
VeriSign, Inc.1705
VeriSign Time Stamping Service0
#VeriSign Time Stamping Service Root1402
"VeriSign Time Stamping Services CA
"VeriSign Time Stamping Services CA0
+VeriSign Time Stamping Services Signer - G20
VeriSign Trust Network1
VeriSign Trust Network1;09
VerQueryValueW
-version
		version="11.0.0.0"
            version="6.0.0.0"
				version="6.0.1.0"
    version="8.0.0.0"
VERSION.dll
			VersionIndependentProgID = s 'DFUI.DFUI'
			VersionIndependentProgID = s 'PDFPrevHndlrShim.PDFPrevHndlrShim'
?VexeVersion@@YAPADXZ
?VexeVersion@@YIPADXZ
`vftable'
VHtNHteHub3
VirtualAlloc
`virtual displacement map'
VirtualFree
VirtualQueryEx
=V>\>l>u>
vm^___=
>V?[?m?
:VMcccc%
v	N+D$
<V=n=u=
 vos v
VrootName
VrootSubDir
vti_ACAll
vti_ACCreateNewUsers
vti_ACIPAddresses
Vtvj0j
_VVVVV
VVVVVPPh
VVWZgxx
==>^VXX
??_V@YAXPAX@Z
WaitForSingleObject
WaitMessage
Washington1
_wcmdln
wcscat_s
wcscmp
wcscpy
_wcsicmp
wcslen
_wcslwr
wcsncpy
_wcsnicmp
wcsstr
wcstod
wcstok
website
                [-web <web name>]
Wednesday
Western Cape1
_wfopen
__wgetmainargs
?what@exception@std@@UBEPBDXZ
WideCharToMultiByte
`Wikqmustt
WindowFromPoint
Windows Media Player
Windows/NT
WinExec
WinHelpA
WININET.dll
__winitenv
WINSPOOL.DRV
wireHWND,
`Wknhst
_wmakepath
wmp.dll
WMPlayerApp
wmplayer.pdb
WMP Skin Host
-wpOCgJ
wprintf
WQj1Pj
(wqt\HHtS
WriteConsoleA
WriteConsoleW
WriteFile
WritePrivateProfileStringA
_wsplitpath
wsprintfA
wUUUUUUUUUWwwwwwwwwwwwwwuUUUUU
<$<W<]<v<
wvsprintfA
WWWWh(
^WWWWW
wwwwww
WWWWWWWWW
WYilqppp
@$$$X 
_XcptFilter
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<?xml version="1.0" encoding="UTF-8" standalone="yes"?> 
xppwpp
xpxxxx
XRich:p
Xr^Vdeivhhust
XSDType
xuUUUUUUUUW
X`Veinxuust~
Y9>t7j
You must enter a password.
Your choice [0]: 
Your choice [1]: 
>=Yt/j
_^[YY]
_^][YY
YYj _3
YYj#^3
YYj\Yf9
YYu-9D$
YYuTVWh
yyyyyy
YYYYYYY>:
YZ]_^[
Z__MIDL_IWinTypes_0009WWW
`Znput}
ZOmP	}T
zu^SSS
ZZZZZZ
|{zzzzzz{|tmoTTTTTTTTTTTTT=
ZZZZZZZZZZ
ZZZZZZZZZZZZZ