Analysis Date2015-11-05 19:30:59
MD563f7bd3748d7bc5b9bd5a0f27dbd9ed3
SHA1f235ffe0ad1fbf7e5ca66767b5a44fc03cb10d27

Static Details:

File typePE32 executable for MS Windows (GUI) Intel 80386 32-bit
Section.text md5: 21fa465172ce918cf10270875e8f9f67 sha1: 95aed409b7ad4e4d5db4f96fee2d6acb7e6231b7 size: 62976
Section.rdata md5: 5c0f35f1f6b768507b17af0a0b9ffb05 sha1: b9b2f2721dbfc034017a3070d559822eb14088d1 size: 5632
Section.data md5: 4a6aee6debc2dd15e3425736a1926d74 sha1: ed62e1d89df7a9e06eade01ee469b852607f1d76 size: 14336
Section.rsrc md5: 1efd536efce5215c5a34829ed90077b7 sha1: d846c3509509694a0eeb1a49b1da867d1bfcc8dc size: 2048
Timestamp2001-02-05 11:02:39
PackerMicrosoft Visual C++ 5.0
PEhashe1c9c6fef116990dc2fd22d1ac388b4123332852
IMPhash4e66537e573d3a8eea3c527242281ebc
AVCA (E-Trust Ino)No Virus
AVF-SecureGen:Variant.Dyreza.4
AVDr. WebTrojan.DownLoad.64914
AVClamAVNo Virus
AVArcabit (arcavir)Gen:Variant.Dyreza.4
AVBullGuardGen:Variant.Dyreza.4
AVPadvishNo Virus
AVVirusBlokAda (vba32)No Virus
AVCAT (quickheal)TrojanPWS.Kegotip.WR4
AVTrend MicroTROJ_CROWTI.SMN2
AVKasperskyTrojan.Win32.Generic
AVZillya!No Virus
AVEmsisoftGen:Variant.Dyreza.4
AVIkarusTrojan-Spy.Agent
AVFrisk (f-prot)No Virus
AVAuthentiumNo Virus
AVMalwareBytesBackdoor.Papras
AVMicroWorld (escan)Gen:Variant.Dyreza.4
AVMicrosoft Security EssentialsTrojan:Win32/Bagsu!rfn
AVK7No Virus
AVBitDefenderGen:Variant.Dyreza.4
AVFortinetW32/CPacker.D!tr
AVSymantecDownloader.Upatre!gen5
AVGrisoft (avg)SHeur4.BYTL
AVEset (nod32)Win32/Kryptik.CHGQ
AVAlwil (avast)Agent-AUID [Trj]
AVAd-AwareGen:Variant.Dyreza.4
AVTwisterTrojan.Cap147283.myku
AVAvira (antivir)TR/Crypt.ZPACK.87688
AVMcafeeDownloader-FSH!63F7BD3748D7
AVRisingNo Virus
AVCA (E-Trust Ino)No Virus
AVF-SecureGen:Variant.Dyreza.4
AVDr. WebTrojan.DownLoad.64914
AVClamAVNo Virus
AVArcabit (arcavir)Gen:Variant.Dyreza.4
AVBullGuardGen:Variant.Dyreza.4
AVPadvishNo Virus
AVVirusBlokAda (vba32)No Virus
AVCAT (quickheal)TrojanPWS.Kegotip.WR4
AVTrend MicroTROJ_CROWTI.SMN2
AVKasperskyTrojan.Win32.Generic
AVZillya!No Virus
AVEmsisoftGen:Variant.Dyreza.4
AVIkarusTrojan-Spy.Agent
AVFrisk (f-prot)No Virus
AVAuthentiumNo Virus
AVMalwareBytesBackdoor.Papras

Runtime Details:

Screenshot

Process
↳ C:\malware.exe

RegistryHKEY_CURRENT_USER\software\microsoft\windows\currentversion\run\zipgitirotzi ➝
C:\Documents and Settings\Administrator\zipgitirotzi.exe
RegistryHKEY_CURRENT_CONFIG\Software\Microsoft\windows\CurrentVersion\Internet Settings\ProxyEnable ➝
NULL
RegistryHKEY_CURRENT_USER\software\microsoft\windows\currentversion\AppManagement ➝
NULL
RegistryHKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProxyBypass ➝
1
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\mavlet[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\btsmm.com[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\betapak[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\aengus[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\gemur[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\noori.com[1].htm
Creates FileC:\Documents and Settings\Administrator\Application Data\Microsoft\Crypto\RSA\S-1-5-21-XXXXXXXXXX-XXXXXXXXXX-XXXXXXXXXX-500\a18ca4003deb042bbee7a40f15e1970b_666939c9-243b-475e-9504-51724db22670
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\abril35[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\hosieree[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\car-all[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\wijeya[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\rapas[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\proro[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\srand[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\sisgate[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\bamalba[1].htm
Creates FileC:\Documents and Settings\Administrator\zipgitirotzi.exe
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\oozkranj[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\findbc[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\rapas[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\minkasha[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\index.dat
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\2crsi[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\kombfm[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\ncktc[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\jewster[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\gpp-co[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\nwhn[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\History\History.IE5\index.dat
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\e-kameya[2].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\nyplaw[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\etnobook[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\ssmkielce[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\kumaden[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\jewster[2].htm
Creates FilePIPE\lsarpc
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\upaep.com[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\lgwpc[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\cccfcpa[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\wijeya[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\ireg[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\ireg[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\apbuck[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\donaci[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\car-all[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\rupaul[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\abril35[2].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\absoft[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\hostment[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\inascol[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\hrinet[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\safespan[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\nelipak[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\awlq[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\curlisto[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\biuropl[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\dixi-car[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\deszr[2].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\biuropl[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\scbcn[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\proro[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\idc.com[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\clogwild[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\noori.com[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\donaci[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\copigj[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\tenmanya[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\deszr[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\etnobook[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\idc.com[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\xpal.com[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\da-y.org[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\hojstrup[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\pelicin[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\absoft[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\kohyoj.co[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\gocore[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\kikonet[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\adefcu[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\ptfe[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\plyny[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\depol[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\aweja[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\safespan[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\car-mc[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\markwane[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\oxilog[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\ncktc[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\c-plus[2].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\da-y.org[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\g-m[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\bcmetals[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\clogwild[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\btsmm.com[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\scbcn[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\hsmc-ul[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\suidou[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\bcmetals[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\awlq[2].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\ealdoen[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\mavlet[2].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\nobatel[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\vsell.com[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\ysado[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\nelipak[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\suidou[2].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\jroy[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\inascol[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\aicp.co[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\upaep.com[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\mmd-i[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\ploom[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\hrinet[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\curlisto[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\ssmkielce[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\jroy[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\b-und-p[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\apbuck[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\ludomemo[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\aicp.co[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\joy2call[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\ysado[1].htm
Creates FileC:\Documents and Settings\Administrator\Cookies\index.dat
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\sirakabe[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\dixi-car[1].htm
Creates File\Device\Afd\Endpoint
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\plyny[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\depol[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\horizoe[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\2crsi[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\kodapost[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\rupaul[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\cosas.com[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\adefcu[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\kodapost[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\lgwpc[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\copigj[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\tusende[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\joy2call[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\nyplaw[2].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\kombfm[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\lab80[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\b-und-p[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\srand[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\ploom[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\cccfcpa[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\asta[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\lab80[2].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\markwane[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\hosieree[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\faxim[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\aweja[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\kwerk[2].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\vsell.com[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\gocore[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\gpp-co[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\sisgate[2].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\nwhn[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\findbc[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\kwerk[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\faxim[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\asta[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\tusende[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\hostment[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\ptfe[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\sirakabe[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\ludomemo[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\g-m[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\pelicin[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\kumaden[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\xpal.com[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\mmd-i[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\bamalba[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\hojstrup[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\gemur[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\c-plus[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\betapak[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\horizoe[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\e-kameya[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\car-mc[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\oozkranj[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\nobatel[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\minkasha[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\ealdoen[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\cosas.com[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\wixtech[1].htm
Creates FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\hsmc-ul[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\mavlet[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\btsmm.com[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\hsmc-ul[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\suidou[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\gemur[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\noori.com[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\abril35[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\hosieree[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\car-all[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\vsell.com[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\wijeya[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\proro[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\nelipak[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\sisgate[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\bamalba[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\oozkranj[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\jroy[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\findbc[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\rapas[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\minkasha[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\aicp.co[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\kombfm[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\curlisto[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\jewster[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\nwhn[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\apbuck[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\ludomemo[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\nyplaw[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\ssmkielce[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\joy2call[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\ysado[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\sirakabe[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\upaep.com[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\depol[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\lgwpc[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\cccfcpa[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\2crsi[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\kodapost[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\cosas.com[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\ireg[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\lab80[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\b-und-p[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\srand[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\ploom[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\rupaul[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\absoft[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\asta[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\markwane[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\hostment[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\inascol[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\hrinet[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\faxim[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\awlq[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\dixi-car[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\gocore[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\biuropl[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\gpp-co[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\scbcn[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\clogwild[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\kwerk[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\donaci[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\copigj[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\deszr[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\tusende[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\etnobook[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\idc.com[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\xpal.com[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\da-y.org[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\g-m[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\hojstrup[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\pelicin[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\kumaden[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\mmd-i[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\c-plus[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\betapak[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\horizoe[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\adefcu[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\e-kameya[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\ptfe[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\car-mc[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\plyny[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\BSDHA97U\aweja[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\safespan[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\D4Z32ED8\nobatel[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\ealdoen[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IIQ3LGTM\ncktc[1].htm
Deletes FileC:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\658HSJSD\bcmetals[1].htm
Creates Mutexc:!documents and settings!administrator!local settings!history!history.ie5!
Creates MutexWininetConnectionMutex
Creates Mutexc:!documents and settings!administrator!cookies!
Creates Mutexc:!documents and settings!administrator!local settings!temporary internet files!content.ie5!
Creates Mutexzipgitirotzi
Winsock DNSysado.com
Winsock DNSharwig.nl
Winsock DNSadefcu.org
Winsock DNSproro.net
Winsock DNScosas.com.ec
Winsock DNSc-plus.nl
Winsock DNSminkasha.com
Winsock DNStusende.de
Winsock DNSptfe.ch
Winsock DNSbamalba.com
Winsock DNSplyny.com
Winsock DNSatb-lit.com
Winsock DNSsafespan.com
Winsock DNSaengus.at
Winsock DNSbcmetals.com
Winsock DNSawlq.net
Winsock DNS3anet.com.tw
Winsock DNSsuidou.org
Winsock DNSkikonet.org
Winsock DNScurlisto.com
Winsock DNSmavlet.com
Winsock DNSrupaul.com
Winsock DNSwijeya.lk
Winsock DNSetnobook.com
Winsock DNSclogwild.com
Winsock DNSdonaci.nl
Winsock DNSludomemo.com
Winsock DNSealdoen.com
Winsock DNShostment.com
Winsock DNSjroy.net
Winsock DNSjoy2call.com
Winsock DNSmarkwane.com
Winsock DNSrapas.net
Winsock DNSb-und-p.com
Winsock DNScar-mc.net
Winsock DNSjewster.com
Winsock DNSapbuck.com
Winsock DNSrichter.bg
Winsock DNSbetapak.com
Winsock DNSwixtech.com
Winsock DNSkodapost.ru
Winsock DNSireg.fr
Winsock DNSlab80.it
Winsock DNSsrand.jp
Winsock DNSkohyoj.co.jp
Winsock DNSploom.com
Winsock DNSfaxim.pl
Winsock DNSg-m.ro
Winsock DNSkurozu.co.jp
Winsock DNSgemur.pl
Winsock DNShsmc-ul.com
Winsock DNSnelipak.nl
Winsock DNSda-y.org.uk
Winsock DNScccfcpa.com
Winsock DNS2crsi.com
Winsock DNSupaep.com.uy
Winsock DNShorizoe.com
Winsock DNSxpal.com.mx
Winsock DNSscbcn.com
Winsock DNSsirakabe.net
Winsock DNSnwhn.org
Winsock DNSnobatel.com
Winsock DNSdepol.pl
Winsock DNSaweja.nl
Winsock DNSssmkielce.pl
Winsock DNSsompirt.com
Winsock DNSbtsmm.com.au
Winsock DNSncktc.edu
Winsock DNSsisgate.com
Winsock DNSaicp.co.jp
Winsock DNSbizzly.ru
Winsock DNSmmd-i.com
Winsock DNShojstrup.dk
Winsock DNSdixi-car.pl
Winsock DNSkombfm.com
Winsock DNSinascol.com
Winsock DNSvsell.com.tw
Winsock DNSasta.pl
Winsock DNSnyplaw.com
Winsock DNSlgwpc.com
Winsock DNSpelicin.com
Winsock DNSfindbc.com
Winsock DNSnoori.com.sa
Winsock DNSbiuropl.pl
Winsock DNSkwerk.ca
Winsock DNShosieree.com
Winsock DNSgocore.com
Winsock DNSabril35.com
Winsock DNSidc.com.ve
Winsock DNSe-kameya.com
Winsock DNScar-all.com
Winsock DNSoxilog.com
Winsock DNScopigj.com
Winsock DNShrinet.org
Winsock DNSoozkranj.com
Winsock DNStenmanya.net
Winsock DNSabsoft.com
Winsock DNSdeszr.com
Winsock DNSkumaden.com
Winsock DNSgpp-co.com

Network Details:

DNSsrand.jp
Type: A
219.109.38.59
DNSoozkranj.com
Type: A
104.28.17.50
DNSoozkranj.com
Type: A
104.28.16.50
DNSkikonet.org
Type: A
157.112.152.50
DNSscbcn.com
Type: A
5.57.226.41
DNSnoori.com.sa
Type: A
199.83.131.217
DNSnoori.com.sa
Type: A
199.83.133.198
DNSrupaul.com
Type: A
209.161.20.68
DNSbetapak.com
Type: A
213.142.136.98
DNSgocore.com
Type: A
209.151.241.76
DNSoxilog.com
Type: A
212.83.182.50
DNSkodapost.ru
Type: A
94.79.54.163
DNSkwerk.ca
Type: A
69.163.152.70
DNSsisgate.com
Type: A
112.78.112.60
DNStusende.de
Type: A
85.13.139.105
DNSploom.com
Type: A
54.191.7.97
DNSapbuck.com
Type: A
24.73.155.34
DNSapbuck.com
Type: A
104.183.199.129
DNSfindbc.com
Type: A
199.167.17.149
DNSkohyoj.co.jp
Type: A
119.245.176.79
DNSaengus.at
Type: A
80.237.133.19
DNSplyny.com
Type: A
62.109.134.56
DNSmmd-i.com
Type: A
188.121.41.53
DNSsafespan.com
Type: A
173.205.127.22
DNShrinet.org
Type: A
72.251.217.35
DNSptfe.ch
Type: A
213.180.183.82
DNSlgwpc.com
Type: A
208.94.239.126
DNSabsoft.com
Type: A
204.197.245.74
DNSlab80.it
Type: A
95.110.208.215
DNSe-kameya.com
Type: A
119.245.178.242
DNSgemur.pl
Type: A
195.244.26.8
DNScosas.com.ec
Type: A
216.227.214.177
DNSrapas.net
Type: A
217.174.156.7
DNSvsell.com.tw
Type: A
220.130.220.65
DNSg-m.ro
Type: A
188.212.255.182
DNSetnobook.com
Type: A
202.52.146.37
DNShsmc-ul.com
Type: A
174.136.15.175
DNSmavlet.com
Type: A
84.95.248.125
DNSireg.fr
Type: A
95.142.170.145
DNSaweja.nl
Type: A
141.138.203.88
DNSdonaci.nl
Type: A
178.18.131.210
DNShojstrup.dk
Type: A
176.9.33.165
DNSsirakabe.net
Type: A
59.106.165.171
DNSnobatel.com
Type: A
200.93.248.104
DNSawlq.net
Type: A
216.35.197.23
DNSbamalba.com
Type: A
121.254.171.174
DNSda-y.org.uk
Type: A
79.170.40.247
DNSminkasha.com
Type: A
202.181.99.38
DNSbiuropl.pl
Type: A
62.233.202.211
DNSnwhn.org
Type: A
64.207.183.100
DNSnelipak.nl
Type: A
82.201.61.230
DNSasta.pl
Type: A
79.96.91.146
DNSnyplaw.com
Type: A
50.28.49.43
DNSjewster.com
Type: A
69.163.226.151
DNScurlisto.com
Type: A
184.154.55.66
DNSbtsmm.com.au
Type: A
101.0.96.242
DNSkumaden.com
Type: A
49.212.180.178
DNSjoy2call.com
Type: A
210.196.112.157
DNSwijeya.lk
Type: A
203.143.20.8
DNScar-all.com
Type: A
202.181.99.38
DNSmarkwane.com
Type: A
109.169.46.54
DNSproro.net
Type: A
219.94.162.157
DNSc-plus.nl
Type: A
89.188.20.232
DNSsuidou.org
Type: A
157.112.144.16
DNSadefcu.org
Type: A
208.88.75.72
DNSdeszr.com
Type: A
162.210.98.151
DNShorizoe.com
Type: A
124.146.218.231
DNSdepol.pl
Type: A
176.9.64.79
DNShosieree.com
Type: A
216.73.117.26
DNSb-und-p.com
Type: A
80.190.243.150
DNSgpp-co.com
Type: A
98.129.90.58
DNSidc.com.ve
Type: A
205.251.135.234
DNSclogwild.com
Type: A
66.84.0.137
DNSjroy.net
Type: A
69.163.152.182
DNSncktc.edu
Type: A
199.0.206.85
DNSupaep.com.uy
Type: A
190.64.74.37
DNS2crsi.com
Type: A
198.100.152.1
DNScar-mc.net
Type: A
210.152.171.16
DNStenmanya.net
Type: A
182.48.14.145
DNSwixtech.com
Type: A
69.94.62.10
DNSinascol.com
Type: A
209.172.62.232
DNSkurozu.co.jp
Type: A
202.208.172.129
DNSharwig.nl
Type: A
213.171.65.103
DNScccfcpa.com
Type: A
192.254.210.123
DNSssmkielce.pl
Type: A
89.161.135.164
DNSfaxim.pl
Type: A
89.161.136.157
DNSealdoen.com
Type: A
178.255.225.231
DNSabril35.com
Type: A
82.98.160.142
DNSludomemo.com
Type: A
81.88.48.71
DNSpelicin.com
Type: A
141.8.224.169
DNSaicp.co.jp
Type: A
124.40.7.147
DNSdixi-car.pl
Type: A
87.98.234.101
DNSxpal.com.mx
Type: A
23.236.62.147
DNSbcmetals.com
Type: A
185.35.248.241
DNScopigj.com
Type: A
50.63.202.42
DNShostment.com
Type: A
114.108.129.200
DNSysado.com
Type: A
67.222.143.75
DNSkombfm.com
Type: A
173.254.120.56
DNS3anet.com.tw
Type: A
DNSbizzly.ru
Type: A
DNSsompirt.com
Type: A
DNSatb-lit.com
Type: A
DNSrichter.bg
Type: A
HTTP POSThttp://oozkranj.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://scbcn.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://srand.jp/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://gocore.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://oxilog.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://noori.com.sa/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://kikonet.org/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://rupaul.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://betapak.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://srand.jp/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://noori.com.sa/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://rupaul.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://oozkranj.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://gocore.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://scbcn.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://betapak.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://kodapost.ru/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://kikonet.org/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://oxilog.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://kodapost.ru/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://kwerk.ca/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://sisgate.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://tusende.de/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://ploom.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://apbuck.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://findbc.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://kohyoj.co.jp/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://aengus.at/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://sisgate.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://kwerk.ca/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://plyny.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://mmd-i.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://tusende.de/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://ploom.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://apbuck.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://findbc.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://kohyoj.co.jp/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://aengus.at/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://plyny.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://mmd-i.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://safespan.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://hrinet.org/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://safespan.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://ptfe.ch/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://lgwpc.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://hrinet.org/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://absoft.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://lab80.it/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://e-kameya.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://gemur.pl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://cosas.com.ec/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://ptfe.ch/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://lgwpc.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://absoft.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://lab80.it/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://e-kameya.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://cosas.com.ec/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://gemur.pl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://rapas.net/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://vsell.com.tw/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://rapas.net/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://vsell.com.tw/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://g-m.ro/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://etnobook.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://hsmc-ul.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://mavlet.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://ireg.fr/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://aweja.nl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://donaci.nl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://g-m.ro/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://hojstrup.dk/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://hsmc-ul.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://etnobook.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://ireg.fr/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://mavlet.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://aweja.nl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://donaci.nl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://hojstrup.dk/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://sirakabe.net/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://nobatel.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://sirakabe.net/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://nobatel.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://awlq.net/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://awlq.net/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://bamalba.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://da-y.org.uk/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://minkasha.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://biuropl.pl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://nwhn.org/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://nelipak.nl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://asta.pl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://bamalba.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://da-y.org.uk/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://minkasha.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://biuropl.pl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://nelipak.nl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://nwhn.org/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://asta.pl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://nyplaw.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://jewster.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://nyplaw.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://jewster.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://curlisto.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://curlisto.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://btsmm.com.au/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://kumaden.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://joy2call.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://btsmm.com.au/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://wijeya.lk/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://car-all.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://markwane.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://proro.net/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://kumaden.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://joy2call.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://wijeya.lk/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://car-all.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://markwane.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://proro.net/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://c-plus.nl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://suidou.org/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://c-plus.nl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://suidou.org/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://adefcu.org/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://adefcu.org/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://deszr.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://horizoe.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://deszr.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://depol.pl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://hosieree.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://b-und-p.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://horizoe.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://gpp-co.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://depol.pl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://hosieree.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://idc.com.ve/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://b-und-p.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://clogwild.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://gpp-co.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://idc.com.ve/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://clogwild.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://jroy.net/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://jroy.net/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://ncktc.edu/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://upaep.com.uy/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://ncktc.edu/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://2crsi.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://upaep.com.uy/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://car-mc.net/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://tenmanya.net/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://wixtech.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://2crsi.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://inascol.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://car-mc.net/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://tenmanya.net/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://kurozu.co.jp/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://harwig.nl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://wixtech.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://inascol.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://cccfcpa.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://cccfcpa.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://ssmkielce.pl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://faxim.pl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://ssmkielce.pl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://faxim.pl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://ealdoen.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://abril35.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://ludomemo.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://ealdoen.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://pelicin.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://aicp.co.jp/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://abril35.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://ludomemo.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://pelicin.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://aicp.co.jp/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://dixi-car.pl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://dixi-car.pl/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://xpal.com.mx/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://bcmetals.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://copigj.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://xpal.com.mx/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://hostment.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://copigj.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://ysado.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://kombfm.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://hostment.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://ysado.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://kombfm.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
HTTP POSThttp://bcmetals.com/
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
Flows TCP192.168.1.1:1034 ➝ 104.28.17.50:80
Flows TCP192.168.1.1:1033 ➝ 5.57.226.41:80
Flows TCP192.168.1.1:1035 ➝ 219.109.38.59:80
Flows TCP192.168.1.1:1036 ➝ 199.83.131.217:80
Flows TCP192.168.1.1:1037 ➝ 209.151.241.76:80
Flows TCP192.168.1.1:1038 ➝ 212.83.182.50:80
Flows TCP192.168.1.1:1039 ➝ 157.112.152.50:80
Flows TCP192.168.1.1:1040 ➝ 209.161.20.68:80
Flows TCP192.168.1.1:1041 ➝ 213.142.136.98:80
Flows TCP192.168.1.1:1042 ➝ 219.109.38.59:80
Flows TCP192.168.1.1:1043 ➝ 199.83.131.217:80
Flows TCP192.168.1.1:1044 ➝ 209.161.20.68:80
Flows TCP192.168.1.1:1045 ➝ 104.28.17.50:80
Flows TCP192.168.1.1:1046 ➝ 209.151.241.76:80
Flows TCP192.168.1.1:1047 ➝ 5.57.226.41:80
Flows TCP192.168.1.1:1048 ➝ 213.142.136.98:80
Flows TCP192.168.1.1:1049 ➝ 94.79.54.163:80
Flows TCP192.168.1.1:1050 ➝ 157.112.152.50:80
Flows TCP192.168.1.1:1051 ➝ 212.83.182.50:80
Flows TCP192.168.1.1:1052 ➝ 94.79.54.163:80
Flows TCP192.168.1.1:1053 ➝ 69.163.152.70:80
Flows TCP192.168.1.1:1054 ➝ 112.78.112.60:80
Flows TCP192.168.1.1:1055 ➝ 85.13.139.105:80
Flows TCP192.168.1.1:1056 ➝ 54.191.7.97:80
Flows TCP192.168.1.1:1057 ➝ 24.73.155.34:80
Flows TCP192.168.1.1:1058 ➝ 199.167.17.149:80
Flows TCP192.168.1.1:1059 ➝ 119.245.176.79:80
Flows TCP192.168.1.1:1060 ➝ 80.237.133.19:80
Flows TCP192.168.1.1:1061 ➝ 112.78.112.60:80
Flows TCP192.168.1.1:1062 ➝ 69.163.152.70:80
Flows TCP192.168.1.1:1063 ➝ 62.109.134.56:80
Flows TCP192.168.1.1:1064 ➝ 188.121.41.53:80
Flows TCP192.168.1.1:1065 ➝ 85.13.139.105:80
Flows TCP192.168.1.1:1066 ➝ 54.191.7.97:80
Flows TCP192.168.1.1:1067 ➝ 24.73.155.34:80
Flows TCP192.168.1.1:1068 ➝ 199.167.17.149:80
Flows TCP192.168.1.1:1069 ➝ 119.245.176.79:80
Flows TCP192.168.1.1:1070 ➝ 80.237.133.19:80
Flows TCP192.168.1.1:1071 ➝ 62.109.134.56:80
Flows TCP192.168.1.1:1072 ➝ 188.121.41.53:80
Flows TCP192.168.1.1:1073 ➝ 173.205.127.22:80
Flows TCP192.168.1.1:1074 ➝ 72.251.217.35:80
Flows TCP192.168.1.1:1075 ➝ 173.205.127.22:80
Flows TCP192.168.1.1:1076 ➝ 213.180.183.82:80
Flows TCP192.168.1.1:1077 ➝ 208.94.239.126:80
Flows TCP192.168.1.1:1078 ➝ 72.251.217.35:80
Flows TCP192.168.1.1:1079 ➝ 204.197.245.74:80
Flows TCP192.168.1.1:1080 ➝ 95.110.208.215:80
Flows TCP192.168.1.1:1081 ➝ 119.245.178.242:80
Flows TCP192.168.1.1:1082 ➝ 195.244.26.8:80
Flows TCP192.168.1.1:1083 ➝ 216.227.214.177:80
Flows TCP192.168.1.1:1084 ➝ 213.180.183.82:80
Flows TCP192.168.1.1:1085 ➝ 208.94.239.126:80
Flows TCP192.168.1.1:1086 ➝ 204.197.245.74:80
Flows TCP192.168.1.1:1087 ➝ 95.110.208.215:80
Flows TCP192.168.1.1:1088 ➝ 119.245.178.242:80
Flows TCP192.168.1.1:1089 ➝ 216.227.214.177:80
Flows TCP192.168.1.1:1090 ➝ 195.244.26.8:80
Flows TCP192.168.1.1:1091 ➝ 217.174.156.7:80
Flows TCP192.168.1.1:1092 ➝ 220.130.220.65:80
Flows TCP192.168.1.1:1093 ➝ 217.174.156.7:80
Flows TCP192.168.1.1:1094 ➝ 220.130.220.65:80
Flows TCP192.168.1.1:1095 ➝ 188.212.255.182:80
Flows TCP192.168.1.1:1096 ➝ 202.52.146.37:80
Flows TCP192.168.1.1:1097 ➝ 174.136.15.175:80
Flows TCP192.168.1.1:1098 ➝ 84.95.248.125:80
Flows TCP192.168.1.1:1099 ➝ 95.142.170.145:80
Flows TCP192.168.1.1:1100 ➝ 141.138.203.88:80
Flows TCP192.168.1.1:1101 ➝ 178.18.131.210:80
Flows TCP192.168.1.1:1102 ➝ 188.212.255.182:80
Flows TCP192.168.1.1:1103 ➝ 176.9.33.165:80
Flows TCP192.168.1.1:1104 ➝ 174.136.15.175:80
Flows TCP192.168.1.1:1105 ➝ 202.52.146.37:80
Flows TCP192.168.1.1:1106 ➝ 95.142.170.145:80
Flows TCP192.168.1.1:1107 ➝ 84.95.248.125:80
Flows TCP192.168.1.1:1108 ➝ 141.138.203.88:80
Flows TCP192.168.1.1:1109 ➝ 178.18.131.210:80
Flows TCP192.168.1.1:1110 ➝ 176.9.33.165:80
Flows TCP192.168.1.1:1111 ➝ 59.106.165.171:80
Flows TCP192.168.1.1:1112 ➝ 200.93.248.104:80
Flows TCP192.168.1.1:1113 ➝ 59.106.165.171:80
Flows TCP192.168.1.1:1114 ➝ 200.93.248.104:80
Flows TCP192.168.1.1:1115 ➝ 216.35.197.23:80
Flows TCP192.168.1.1:1116 ➝ 216.35.197.23:80
Flows TCP192.168.1.1:1117 ➝ 121.254.171.174:80
Flows TCP192.168.1.1:1118 ➝ 79.170.40.247:80
Flows TCP192.168.1.1:1119 ➝ 202.181.99.38:80
Flows TCP192.168.1.1:1120 ➝ 62.233.202.211:80
Flows TCP192.168.1.1:1121 ➝ 64.207.183.100:80
Flows TCP192.168.1.1:1122 ➝ 82.201.61.230:80
Flows TCP192.168.1.1:1123 ➝ 79.96.91.146:80
Flows TCP192.168.1.1:1124 ➝ 121.254.171.174:80
Flows TCP192.168.1.1:1125 ➝ 79.170.40.247:80
Flows TCP192.168.1.1:1126 ➝ 202.181.99.38:80
Flows TCP192.168.1.1:1127 ➝ 62.233.202.211:80
Flows TCP192.168.1.1:1128 ➝ 82.201.61.230:80
Flows TCP192.168.1.1:1129 ➝ 64.207.183.100:80
Flows TCP192.168.1.1:1130 ➝ 79.96.91.146:80
Flows TCP192.168.1.1:1131 ➝ 50.28.49.43:80
Flows TCP192.168.1.1:1132 ➝ 69.163.226.151:80
Flows TCP192.168.1.1:1133 ➝ 50.28.49.43:80
Flows TCP192.168.1.1:1134 ➝ 69.163.226.151:80
Flows TCP192.168.1.1:1135 ➝ 184.154.55.66:80
Flows TCP192.168.1.1:1136 ➝ 184.154.55.66:80
Flows TCP192.168.1.1:1137 ➝ 101.0.96.242:80
Flows TCP192.168.1.1:1138 ➝ 49.212.180.178:80
Flows TCP192.168.1.1:1139 ➝ 210.196.112.157:80
Flows TCP192.168.1.1:1140 ➝ 101.0.96.242:80
Flows TCP192.168.1.1:1141 ➝ 203.143.20.8:80
Flows TCP192.168.1.1:1142 ➝ 202.181.99.38:80
Flows TCP192.168.1.1:1143 ➝ 109.169.46.54:80
Flows TCP192.168.1.1:1144 ➝ 219.94.162.157:80
Flows TCP192.168.1.1:1145 ➝ 49.212.180.178:80
Flows TCP192.168.1.1:1146 ➝ 210.196.112.157:80
Flows TCP192.168.1.1:1147 ➝ 203.143.20.8:80
Flows TCP192.168.1.1:1148 ➝ 202.181.99.38:80
Flows TCP192.168.1.1:1149 ➝ 109.169.46.54:80
Flows TCP192.168.1.1:1150 ➝ 219.94.162.157:80
Flows TCP192.168.1.1:1151 ➝ 89.188.20.232:80
Flows TCP192.168.1.1:1152 ➝ 157.112.144.16:80
Flows TCP192.168.1.1:1153 ➝ 89.188.20.232:80
Flows TCP192.168.1.1:1154 ➝ 157.112.144.16:80
Flows TCP192.168.1.1:1155 ➝ 208.88.75.72:80
Flows TCP192.168.1.1:1156 ➝ 208.88.75.72:80
Flows TCP192.168.1.1:1157 ➝ 162.210.98.151:80
Flows TCP192.168.1.1:1158 ➝ 124.146.218.231:80
Flows TCP192.168.1.1:1159 ➝ 162.210.98.151:80
Flows TCP192.168.1.1:1160 ➝ 176.9.64.79:80
Flows TCP192.168.1.1:1161 ➝ 216.73.117.26:80
Flows TCP192.168.1.1:1162 ➝ 80.190.243.150:80
Flows TCP192.168.1.1:1163 ➝ 124.146.218.231:80
Flows TCP192.168.1.1:1164 ➝ 98.129.90.58:80
Flows TCP192.168.1.1:1165 ➝ 176.9.64.79:80
Flows TCP192.168.1.1:1166 ➝ 216.73.117.26:80
Flows TCP192.168.1.1:1167 ➝ 205.251.135.234:80
Flows TCP192.168.1.1:1168 ➝ 80.190.243.150:80
Flows TCP192.168.1.1:1169 ➝ 66.84.0.137:80
Flows TCP192.168.1.1:1170 ➝ 98.129.90.58:80
Flows TCP192.168.1.1:1171 ➝ 205.251.135.234:80
Flows TCP192.168.1.1:1172 ➝ 66.84.0.137:80
Flows TCP192.168.1.1:1173 ➝ 69.163.152.182:80
Flows TCP192.168.1.1:1174 ➝ 69.163.152.182:80
Flows TCP192.168.1.1:1175 ➝ 199.0.206.85:80
Flows TCP192.168.1.1:1176 ➝ 190.64.74.37:80
Flows TCP192.168.1.1:1177 ➝ 199.0.206.85:80
Flows TCP192.168.1.1:1178 ➝ 198.100.152.1:80
Flows TCP192.168.1.1:1179 ➝ 190.64.74.37:80
Flows TCP192.168.1.1:1180 ➝ 210.152.171.16:80
Flows TCP192.168.1.1:1181 ➝ 182.48.14.145:80
Flows TCP192.168.1.1:1182 ➝ 69.94.62.10:80
Flows TCP192.168.1.1:1183 ➝ 198.100.152.1:80
Flows TCP192.168.1.1:1184 ➝ 209.172.62.232:80
Flows TCP192.168.1.1:1185 ➝ 210.152.171.16:80
Flows TCP192.168.1.1:1186 ➝ 182.48.14.145:80
Flows TCP192.168.1.1:1187 ➝ 202.208.172.129:80
Flows TCP192.168.1.1:1188 ➝ 213.171.65.103:80
Flows TCP192.168.1.1:1189 ➝ 69.94.62.10:80
Flows TCP192.168.1.1:1190 ➝ 209.172.62.232:80
Flows TCP192.168.1.1:1191 ➝ 192.254.210.123:80
Flows TCP192.168.1.1:1192 ➝ 192.254.210.123:80
Flows TCP192.168.1.1:1193 ➝ 89.161.135.164:80
Flows TCP192.168.1.1:1194 ➝ 89.161.136.157:80
Flows TCP192.168.1.1:1195 ➝ 89.161.135.164:80
Flows TCP192.168.1.1:1196 ➝ 89.161.136.157:80
Flows TCP192.168.1.1:1197 ➝ 178.255.225.231:80
Flows TCP192.168.1.1:1198 ➝ 82.98.160.142:80
Flows TCP192.168.1.1:1199 ➝ 81.88.48.71:80
Flows TCP192.168.1.1:1200 ➝ 178.255.225.231:80
Flows TCP192.168.1.1:1201 ➝ 141.8.224.169:80
Flows TCP192.168.1.1:1202 ➝ 124.40.7.147:80
Flows TCP192.168.1.1:1203 ➝ 82.98.160.142:80
Flows TCP192.168.1.1:1204 ➝ 81.88.48.71:80
Flows TCP192.168.1.1:1205 ➝ 141.8.224.169:80
Flows TCP192.168.1.1:1206 ➝ 124.40.7.147:80
Flows TCP192.168.1.1:1207 ➝ 87.98.234.101:80
Flows TCP192.168.1.1:1208 ➝ 87.98.234.101:80
Flows TCP192.168.1.1:1209 ➝ 23.236.62.147:80
Flows TCP192.168.1.1:1210 ➝ 185.35.248.241:80
Flows TCP192.168.1.1:1211 ➝ 50.63.202.42:80
Flows TCP192.168.1.1:1212 ➝ 23.236.62.147:80
Flows TCP192.168.1.1:1213 ➝ 185.35.248.241:80
Flows TCP192.168.1.1:1214 ➝ 50.63.202.42:80
Flows TCP192.168.1.1:1215 ➝ 114.108.129.200:80
Flows TCP192.168.1.1:1216 ➝ 67.222.143.75:80
Flows TCP192.168.1.1:1217 ➝ 173.254.120.56:80
Flows TCP192.168.1.1:1218 ➝ 114.108.129.200:80
Flows TCP192.168.1.1:1219 ➝ 67.222.143.75:80
Flows TCP192.168.1.1:1220 ➝ 173.254.120.56:80

Raw Pcap

Strings
.
..D
\
.
.A
Generate
         (((((                  H
MS Sans Serif
Quit
update.exe
`$@@@@@@
"""""""
@@@@@@
@@@@@@@
@@@@@@@@
@@@@@@@@@
@@@@@@@@@@
@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@
@@@@@@@%@
&@)@@@
	@@@@@@
@0/=:|
00@0@0
00@0@0,
00@0@0@
00@0@0AU
00@0@0G!
00@0@0GMA
00@0@0H
000b@4@
000b@4@@
000b@4@4?A(
000b@4@/`En@
000zs4X
0@2H@%
0=3ck{5
@<0@4D
0A/k8CJu
0c@@.A
0c@@@@@X
0Dq2(@L
0*|LA(])
#0O@Bk
0Uk@Opk/@
1ABvcD@B
{1@H48
@1P(Tb
!=1RJdL
@25@@@@@h@h@
2A@q6,g}
2bb8`B
2DP%G{4=0,
@2{hNA
@)!2PVA
2Qe`4c*%4D
*$2q@K
@2@@@@@X
#33""""
34mHDv
 3$5Cb
3bbRA(
3HH@4@blA
=|3pO<
3!@WH @@@@@@
3wJ```
@@@@@4
@4@/```
4@@\#%
4{0/B9i$
44"Y!f@0
4[,7=GBb
4%ARiPCn0
4AT@}8
/4@@b0
,4BIj'
4c4@@b0
4Ce@@g
@4DbHL.`
*@4!E8?
4@@@FA
4$gkpAApD@
4%HAVb
-4@JsC/
|4@LbNq{
4@@n@A
@4S@@@@@h@h@
4@SNtHEc
4X.L`w:]zC
!51 @@
5bOnzy
@5Fbibw&I2<
5g !q@VsA
5H}{r%
5j-b&XH
5M/A?&@@@@@h@h@
6|@@@@
@@@@|6a
6sD@@:cC\c$@
@@@@@6xC
@@73B_c@ld
<78]ykd
7@@@@@h@h@
8@@@@@@
8_$0<M
|.83AX
*88{{t@L
8A-c8R
8B@A`@
8D H9/
@{8nbhu
8r~mY@
!A@@@@
@@@@@A
A@``@\
@@@A2t%E6`DC
A42@2t
@@A4cU260
A,4N2.@
A@`4np
}AAp )
_@AA]}!Z
 @`AB@
abnormal program termination
A@&c|A
AC@A`@
A@c gA$
A cr4+
@AGH|X@@@
@A@@@h
A@`\H$
%@@Ai6qCI
AIC4@@@@@h@h@
@@Aj@%
A@`K)B{@A@
ALR@C@
ALx@nH6
	:@A($O
AOb5P@
AODs%j
Ap%4,@@8
 AP4[)I(x
@@@@@APA
ApEO8bP
=%ARB|@
</assembly>
<assemblyIdentity
		<assemblyIdentity
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
{AUEC&
Av@Bs@`
AvmR@f
AVWAf9
)b@@@@@@
@@@@b^
b@@@@@@
@@B@``
B0@@@@@X
B1@@@h
b1)\tC
.b2cF~E
B`@4@O
@b@4s@=n
@b58}@
bA@@$2k
bA$(Br
BAH8=/GKA=&
BA(SV|T
bA^xAv
/Bb5BH
@bbb	E
BBbF|s2
$.BbdU?
b@BMb}c(
@@@B`bP
BBW$sz
bB=!z4
@@@bc^
BCGEr@@@
[\B%,cj
@#bd0q
bd5V>JHRX
bDAOClP8C
B~d)g?
be	gW@0mp
bEw|Gu#
bFA@s@
(Bfyp{@
BG@@$ 
@@BGi4
B@@@@@h@h@
bHhwy"b
B@,H-k
biO@g=
b<iqL%
bI@@@@X
bJs.\wsA
bK<Mw:
bK@&@O
Bl`b;B
$B{#ll
=:BN@@@h
bO<@%49c
b@OL5<HJ
BpA@E@O
@@@ b(Pb
bP* BA4
@BP@DV@MG
BR 4#A}w
((bR 6hzr
bRA8d%@byB|
%BTU8@0
bu3@}A
BUAs2gO
BUEgu@\
Button
Bwy\gKh,j
b'@@@@X
b@@@@X
byK:Dh
b-zcbI
<c@@@@
c@}@)%
(c4@@b0
c4@@b0
@C5It}P
cA1C`u
Cancel
CaPJ@g@d14a
CA]@@@@X
C@@AyX<
cB?7B,
@cbhO@@@@X
cbZt*B
C@c6@@@
,@cd0~
C@{>dD
cFQ%gP~
c@@@@@h@h@
/=^C>*IB#
c`IT,v
clH@"bXAb
cLJp&IpA
CloseHandle
^@cLXmt
COMCTL32.dll
CpbHDvn0eR
c)P@Cb*
C$PHF4
cPT2@A@h
CreateFileA
CreateWindowExA
+cRgD3.Hn
@ctyS@
cUADx@@@@
cUPOvU
=;Cx,!b
@cYQ,@{bA
@@@@@D
@@@D@<
D$ _^]
D4=FBU
`%*'dA
dA@@`E
@.data
db0FlE
DB[A2DQ'@$s
DCHkBG
@@@$dcKB(Bd
DDDDDDD
DDFfdDD
dE0@0@
DefWindowProcA
</dependency>
<dependency>
	</dependentAssembly>
	<dependentAssembly>
<description></description>
DestroyWindow
D%gA4C
"DhA5C3(@
]dIcdbr
DispatchMessageA
@@@DLJ
Dm@!E;
Do|Al/
do@@@@@h@h@
DOMAIN error
`Dpbx@
@DPO@@@@@@
DrawTextA
Ds3bo\|A
DsBp93
dsD]@TY
dsM%/@@@@@@
&DUA@y
`Dx@@@@
@;Dx, 
D"zshHJ
E\_24B
.@e4@@b0
E@&@5AD
@e5BD4}
e_b*@@@@@@
eB@@@@@X
EB*@@@@@X
=eb/XZ2x
EcLdHI
e@D B(
ED,@,@h
E@F@BDO
EhAx@@@@
E@@@@@h@h@
eHJT@@@
eLD74L
EO8DD$(
@ER@bp5
+E@@@@X
@@@@-e(:X{ 'A
ExitProcess
EZA/g`
+E@@@z@B8
-f6cR@<b{
F@ AA@@A
fA,s:Z
F&DDD%d
FdiLjO
f_)e@S?@
,fLO3p@
- floating point not loaded
Fo5s(.@
Fob,<c
FreeEnvironmentStringsA
FreeEnvironmentStringsW
F"RRR%d
	fs@@@@X
$FTREA
FVfffRd
|g@@@@
@@@@@G0
|G@04O$
@g4JF;
G<@4X{
g,@7i<1
g@`dbCo
GetACP
GetActiveWindow
GetCommandLineA
GetCPInfo
GetCurrentDirectoryA
GetCurrentProcess
GetEnvironmentStrings
GetEnvironmentStringsW
GetFileSize
GetFileType
GetLastActivePopup
GetMessageA
GetModuleFileNameA
GetModuleHandleA
GetOEMCP
GetProcAddress
GetStartupInfoA
GetStdHandle
GetVersion
@GH@64
GkAx@@@@
G&K+b	
|G|>m@A@
g@mXyeH,Aibc
gs3@@@@
GTU	(Adg
@@@<h=*<
@@@@@@h@
@@@@@h@@@@@@@@@
@@@h@%@@
@@h@@@
,H@@@@@@
-h1V]y
h2HuH+F/
@?H4c*P@%%Gv
?@h4@ E
-H4OAbE
%H4.u#CP
HBsM,B
%Hc^AO
$$HCjH
<HDLEe0
HeapAlloc
HeapCreate
HeapDestroy
HeapFree
@)HeB@
@.HfeCOc
Hf~-@gC
@@@@@h@h@
&@@@@@h@h@
hH2@@7bO
@@%@@@@h@h@@@x
HJD@)!
hL{%!A
<\h<L@@@@@h@h@
h(m3p@
hm@#Q`$b
%h@q|@
HSUVWh
HTS:4c
hUv&!C
<HVr88@~@
@@@h@@X@h
=,$H}yAgAH@h
i4@@b0
I4*+t& Z,"b4K
I55@S3dBPz
 IAx3p@A5
iK0@0@
InitCommonControlsEx
iORBDA
Ios!(b
@iSkcN
Ivq3O@
J@@2RA
J4OrL@
j5@N@p
@@&#-JA
Jb@DI:
j/bO0@4
JD@%d@
@JJAA0z
@JKk@cU	@
JlL7@{
JPfAb@
JRT<@@@@@h@h@
j@@@@@X
@@%.k@
K* @@@
k3@EYT
KCO0@p
@@@@KCyxz
KERNEL32.dll
k@*GB,
KU$!8TD
kvi(D	D&
k@@@@@X
k-|@Y8
L@@@@@@
l0@@@@@X
@@@l4%
L4,jcf
			language="*"
)%lb *{
@@@-l$B
LB<2@@@
LbTm`t
@@@LC4x
l@hPIHy
l*@=#h(r:@@<
/L@IcbP
lL\A@CP
~l$LO2
LlRe:s
LoadAcceleratorsA
LoadCursorA
LoadIconA
LoadLibraryA
@%LP@A
LP<DBA9Uc@
lstrcatA
lstrcpynA
lstrlenA
Lt,F@*VObfg
L@UCKO=}vi:
$@@M2o
``@M4R
@m@A`@
mbDCsr
.m|BOj
MessageBoxA
Microsoft Visual C++ Runtime Library
MLcdy\YX
MO@;90
,m`ZGR
/n0XlH
N4@@b0
{N4@HKIh
NA3(3!XK
nABRA.
	name="Company.Product.Name"
			name="Microsoft.Windows.Common-Controls"
(N:(%c
next.txt
@=)NGRRUED1
@=(N<M
- not enough space for arguments
- not enough space for environment
- not enough space for lowio initialization
- not enough space for _onexit/atexit table
- not enough space for stdio initialization
- not enough space for thread data
NWk4.b
>O242(
O`bHy0E
@\O@BO
@ObpJ[
`OHoUD
OPAQS5W
OPy58v=8
o\t#PD
O@X@``
OY4BOk
@@@{\]p
P@{5CS
@@p5@g
PBsF`VGZ
P@,"CA
@p@DdS=A@
PgG$~|,
p@@@@@h@h@
pLe)3cA
,|PMAp
p.O((#@C
PO_hSl
PostQuitMessage
'PO:wX
pqD?@@
PR5@@@
			processorArchitecture="*"
	processorArchitecture="*"
Program: 
<program name unknown>
P@s9=-r
			publicKeyToken="6595b64144ccf1df"
- pure virtual function call
px@@@@
 ,@#q/
@@@=Q"
q):1H}{U[
q@4dCKX
@@@Q<@5
q(/61kA
qAG*bB*phe*/
@/\qbAE0@
q:B@+dmB
q'.;b*E
Q_dCBP-
@qg9AIJv@
q@<lkA
qm@3hp
qNo@4L
Q=p(B"7MAr
@*qus@(@
QyIBTB
@@@@R`
r,ABR```
@(RADbG
@rA#@M
R-A-Y{
R,b@g@,$
@@@@@rc
@rcH5Y
`.rdata
r@DIPRIH-
ReadFile
RegisterClassExA
@r@@@@@h@h@
RI+zu^@0*9
rRbb::*r,
RtlUnwind
runtime error 
Runtime Error!
R@@@@X
\S@@@@
S5,B4A@
s)5_HQ44Z
S<"A i
sA$RPB
s,/@b0(H
/s=bXf
SC@cAiD
;SceD8a
Sc@v@h
SendMessageA
SetHandleCount
S{Fbd!
ShowWindow
@sICH+Pb
SING error
%+SLOE 
&s@O5U
sPaCEU)v
@sP]<B
stgO$5
*StPbDCQ8
Sx@@@@
S@@@@@X
@@@SyNHttB
SysListView32
@t}@@@@@@
t0rcgQUAv
@tAH@.
TbZbagb[~
tBzW,!
T`=)C;
tEAHPb
TerminateProcess
!This program cannot be run in DOS mode.
Titlist
tJ4h	"e
tJL{+AKB<Io
TJ>p@F
$tlN4)
TLOSS error
t%mI<oO
t@Ob{CB=
T_ODga<Ug@@@h
TranslateAcceleratorA
TranslateMessage
TrbJ$c
TSc@j,s{qyh@y
tSh@ A
t.;t$$t(
@@@@Tu
			type="win32"
	type="win32"
@@@@}U
@@@@@U
@@@u@4G4
u5Bc.t
UB0Opr
@.U@dO
@@@@@UjVB'L
^ulK=.2
` Um*@A`@
- unable to initialize heap
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
UnhandledExceptionFilter
UOD@PZXHc@4
UpdateWindow
U]@%P@@@h
user32.dll
USER32.dll
U@@@@@X
uyH$bA
v@6jF%w
VAgzN@#
vA@@@@@h@h@
V:b<@3@
VC20XC00U
v,*)DAO
	version="1.0.0.0"
			version="6.0.0.0"
)v(f'T\E
vi%L~I
VirtualAlloc
VirtualFree
=v@@O@@@@@@
vo2mDB4
V@@@@X
]w"_"}
[W ABbt:
%wH<PW
WideCharToMultiByte
@@@@@wP
wpc"A Ah-
WriteFile
WuBh\ A
Wv@@@@@@
w& V55gO
;x@@@@
(x@@@@
@@@@@x@@@@
@@@@@x%@
@@@@@x%@^
@@@@@x%@,
@@@@@x%@@
@@@@@x%@@=
<=@'@@@@@X
=@@@@X
 @@@@X
(@@@@X
[@@@@X
@@@@@X
@%@@@@@@@@@@@@@@X
@X@@@@@@@
@X@@@%@@
@X@@@%@@.
@X@@@%@@(
@X@@@%@@)@
@X@@@%@@@
@X@@@%@@*
@X@@@%@@%
@X@@@%@@48AC
@X@@@%@@7p
@@@@@x%@a
@X@@@%@@A
@X@@@%@@b
@X@@@%@@@b
@@@@@x%@c
@X@@@%@@C?TG
@X@@@%@@D
@@@@@x%@e,
@.XEAX
xFx@@@@
@X@@@%@@g
@@@@@x%@h
x@@h@@@@@
@@@@@x%@hBR 
@x,hPZ
@@@@@x%@Ik
@X@@@%@@LX@
(~xmk@
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
@@@@@x%@N
@@@@XP?bB
@@@@@x%@^P*@qN
XSt/\4
@@@@@x%@T
@xU@@@@@h@h@
XUoj$:
@@@@@x%@@YSAV
y@@@@@@
|yb@C\LAb
@{yb@@@@X
YdN@@@
@~y^HD
<y`h,FFj@
y@@@@@h@h@
}yreC$
@@@@@z
zc5ws4b
@Z C Ax
@@@ zcyAZ
@zCZ(~@
z@@@@@X