Adware.Win32.Webalta_3482dad1f4
Adware.Win32.Webalta.FD, Trojan-Banker.Win32.Brasil.FD, Trojan.Win32.Delphi.FD, Trojan.Win32.Sasfis.FD, VirTool.Win32.DelfInject.FD, GenericEmailWorm.YR (Lavasoft MAS)
Behaviour: Banker, Trojan, Worm, EmailWorm, VirTool, Adware
The description has been automatically generated by Lavasoft Malware Analysis System and it may contain incomplete or inaccurate information.
Requires JavaScript enabled! |
---|
MD5: 3482dad1f4ef8e7364e9a45ffc1262e6
SHA1: 967cc4b6cfeae3fca9f8a627b9195340b4aa594d
SHA256: 32daa08a5e51af4cf476adb38494867d8a4c9d970a93e27a7a4a847d7c6079c5
SSDeep: 98304:zIX4vDlCPYDw9bkzo8fEUf7oMUBsFVo ETQf7J8nC4HDHor1:zIoxCPYDqwztf1RI ETQfN8JHU1
Size: 4113921 bytes
File type: EXE
Platform: WIN32
Entropy: Packed
PEID: UPolyXv05_v6
Company: no certificate found
Created at: 2016-08-14 22:15:49
Analyzed on: Windows7 SP1 32-bit
Summary:
Adware. Delivers advertising content in a manner or context that may be unexpected and unwanted by users. Many adware applications also perform tracking functions. Users may want to remove adware if they object to such tracking, do not wish to see the advertising caused by the program or are frustrated by its effects on system performance.
Payload
Behaviour | Description |
---|---|
EmailWorm | Worm can send e-mails. |
Process activity
The Adware creates the following process(es):
%original file name%.exe:3600
The Adware injects its code into the following process(es):
spbuddyfinal.exe:3704
Mutexes
The following mutexes were created/opened:
No objects were found.
File activity
The process %original file name%.exe:3600 makes changes in the file system.
The Adware creates and/or writes to the following file(s):
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\RarSFX0\spbuddyfinal.exe (13142 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\RarSFX0\spbuddyfinal.ini (96 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\RarSFX0\spbuddyfinal.bin (15 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\RarSFX0\spbuddyfinal.ico (5345 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\RarSFX0\spbuddyfinal.lib (122 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\RarSFX0\spbuddyfinal.bgr (131 bytes)
The Adware deletes the following file(s):
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\RarSFX0\__tmp_rar_sfx_access_check_8564345 (0 bytes)
The process spbuddyfinal.exe:3704 makes changes in the file system.
The Adware creates and/or writes to the following file(s):
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F89.nbr (5323 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F89.nbp (2686 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\sp22268.tmp (941 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\spbuddyfinal.jpg (1832 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8A.nbr (9400 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8A.nbp (1035 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8D.nbr (9619 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8E.nbr (3789 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8B.nbp (6934 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8B.nbr (5327 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\RarSFX0\spbuddyfinal.ico (28 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8C.nbr (5348 bytes)
Registry activity
The process %original file name%.exe:3600 makes changes in the system registry.
The Adware creates and/or sets the following values in system registry:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"AutoDetect" = "1"
"UNCAsIntranet" = "0"
The Adware deletes the following value(s) in system registry:
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass"
"IntranetName"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName"
The process spbuddyfinal.exe:3704 makes changes in the system registry.
The Adware creates and/or sets the following values in system registry:
[HKCU\Software\Microsoft\Multimedia\DrawDib]
"vga.drv 1276x846x32(BGR 0)" = "31,31,31,31"
Dropped PE files
MD5 | File path |
---|---|
98fa3c0afecee3d9ffc876f283a0cb03 | c:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F89.nbp |
43b6f87da24d259c6f0560719f1d25b3 | c:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F89.nbr |
6bd456655d7846adc86681267028ce7f | c:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8A.nbp |
779161882b958496eae1ba6fdd5c51b3 | c:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8A.nbr |
b96482adbbe4bbbbd9325c0c16bb5c20 | c:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8B.nbp |
02cc8c64cce546a536cfc88419ae4cb1 | c:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8B.nbr |
e3160d0ad76263dccfa4bc2473f96f5d | c:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8C.nbr |
a2827dc468b5daaaceb889b32b34ad07 | c:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8D.nbr |
914ec8ab93b34cf93b317319629053fd | c:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8E.nbr |
220719acf5c26373ab4764bc4520043c | c:\Users\"%CurrentUserName%"\AppData\Local\Temp\RarSFX0\spbuddyfinal.exe |
HOSTS file anomalies
No changes have been detected.
Rootkit activity
No anomalies have been detected.
Propagation
VersionInfo
No information is available.
PE Sections
Name | Virtual Address | Virtual Size | Raw Size | Entropy | Section MD5 |
---|---|---|---|---|---|
.text | 4096 | 188392 | 188416 | 4.65119 | 2ae181684b1677561119f5765623448e |
.rdata | 192512 | 39376 | 39424 | 3.57169 | 0e0f6a60d8fa917a060c8ef7becc0888 |
.data | 233472 | 129208 | 3072 | 2.28424 | 4e4aa728d9cced1622c2be27733e3fc5 |
.gfids | 364544 | 240 | 512 | 1.47202 | c923099e27bf0e45a5c402d935d0620b |
.rsrc | 368640 | 38744 | 38912 | 4.03971 | c3cf0c4bdf56c876bb96685330529bc7 |
.reloc | 409600 | 8076 | 8192 | 4.59547 | d13d3f8a8adfe6861c49a01d81cf73ed |
Dropped from:
Downloaded by:
Similar by SSDeep:
Similar by Lavasoft Polymorphic Checker:
URLs
No activity has been detected.
IDS verdicts (Suricata alerts: Emerging Threats ET ruleset)
Traffic
Web Traffic was not found.
The Adware connects to the servers at the folowing location(s):
.text
`.rdata
@.data
.gfids
@.rsrc
@.reloc
t,j.Xj\f
f9.tDj.
FtPQ
w.SCv
COMCTL32.dll
SHLWAPI.dll
USER32.dll
GDI32.dll
COMDLG32.dll
ADVAPI32.dll
SHELL32.dll
ole32.dll
operator
operator ""
%S#[k
InvokeMainViaCRT
ExitMainViaCRT
Microsoft.CRTProvider
D:\Projects\WinRAR\sfx\build\sfxrar32\Release\sfxrar.pdb
.text$di
.text$mn
.text$x
.text$yd
.idata$5
.CRT$XCA
.CRT$XCAA
.CRT$XCU
.CRT$XCZ
.CRT$XIA
.CRT$XIAA
.CRT$XIAC
.CRT$XIC
.CRT$XIZ
.CRT$XPA
.CRT$XPX
.CRT$XPXA
.CRT$XPZ
.CRT$XTA
.CRT$XTZ
.rdata
.rdata$r
.rdata$sxdata
.rdata$zETW0
.rdata$zETW1
.rdata$zETW2
.rdata$zETW9
.rdata$zzzdbg
.rtc$IAA
.rtc$IZZ
.rtc$TAA
.rtc$TZZ
.xdata$x
.didat$2
.didat$3
.didat$4
.didat$6
.didat$7
.edata
.idata$2
.idata$3
.idata$4
.idata$6
.data
.data$r
.didat$5
.gfids$x
.gfids$y
.rsrc$01
.rsrc$02
RegCloseKey
RegCreateKeyExW
RegOpenKeyExW
SHFileOperationW
ShellExecuteExW
sfxrar.exe
SetThreadExecutionState
GetCPInfo
KERNEL32.dll
GetProcessHeap
c:\%original file name%.exe
version="1.0.0.0"
<requestedExecutionLevel level="asInvoker"
name="Microsoft.Windows.Common-Controls"
version="6.0.0.0"
publicKeyToken="6595b64144ccf1df"
<!--The ID below indicates application support for Windows Vista -->
<supportedOS Id="{e2011457-1546-43c5-a5fe-008deee3d3f0}"/>
<!--The ID below indicates application support for Windows 7 -->
<supportedOS Id="{35138b9a-5d96-4fbd-8e2d-a2440225f93a}"/>
<!--The ID below indicates application support for Windows 8 -->
<supportedOS Id="{4a2f28e3-53b9-4441-ba9c-d69d4a4a6e38}"/>
<!--The ID below indicates application support for Windows 8.1 -->
<supportedOS Id="{1f676c76-80e1-4239-95bb-83d0f6d0da78}"/>
<!--The ID below indicates application support for Windows 10 -->
<supportedOS Id="{8e0f7a12-bfb3-4fe8-b9a5-48fd50a15a9a}"/>
<asmv3:windowsSettings xmlns="hXXp://schemas.microsoft.com/SMI/2005/WindowsSettings">
</asmv3:windowsSettings>
>$> >2>}>
Maximum allowed array size (%u) is exceeded
rtmp%d
Crypt32.dll
version.dll
DXGIDebug.dll
sfc_os.dll
SSPICLI.DLL
rsaenh.dll
UXTheme.dll
dwmapi.dll
cryptbase.dll
lpk.dll
usp10.dll
clbcatq.dll
comres.dll
ws2_32.dll
ws2help.dll
psapi.dll
ieframe.dll
ntshrui.dll
atl.dll
setupapi.dll
apphelp.dll
userenv.dll
netapi32.dll
shdocvw.dll
crypt32.dll
msasn1.dll
cryptui.dll
wintrust.dll
shell32.dll
secur32.dll
cabinet.dll
oleaccrc.dll
ntmarta.dll
profapi.dll
WindowsCodecs.dll
srvcli.dll
cscapi.dll
slc.dll
imageres.dll
dnsapi.DLL
iphlpapi.DLL
WINNSI.DLL
netutils.dll
mpr.dll
devrtl.dll
propsys.dll
mlang.dll
samcli.dll
samlib.dll
wkscli.dll
dfscli.dll
browcli.dll
rasadhlp.dll
dhcpcsvc6.dll
dhcpcsvc.dll
XmlLite.dll
linkinfo.dll
cryptsp.dll
RpcRtRemote.dll
aclui.dll
dsrole.dll
peerdist.dll
uxtheme.dll
Please remove %s from %s folder. It is unsecure to run %s until it is done.
WaitForMultipleObjects error %d, GetLastError %d
Shell.Explorer
<head><meta http-equiv="content-type" content="text/html; charset=
riched20.dll
%s %s %s
%s %s
GETPASSWORD1
winrarsfxmappingfile.tmp
M-d-d-d-d-d-d
sfxcmd
__tmp_rar_sfx_access_check_%u
-el -s2 "-d%s" "-p%s" "-sp%s"
%s.%d.tmp
Software\Microsoft\Windows\CurrentVersion
%s%s%d
KERNEL32.DLL
mscoree.dll
ext-ms-win-ntuser-windowstation-l1-1-0
Extracting %s
Extracting from %s
Enter password
&Enter password for the encrypted file:
Skipping %s
The file "%s" header is corrupt
Unknown method in %s
Cannot open %s
Cannot create %s
Cannot create folder %sHChecksum error in the encrypted file %s. Corrupt file or wrong password.
Checksum error in %s Packed data checksum error in %s
5Write error in the file %s. Probably the disk is full
Read error in the file %s
ErroraErrors encountered while performing the operation
Please close all applications, reboot Windows and restart this installation\Some installation files are corrupt.
Extracting files to %s folder$Extracting files to temporary folder
=Total path and file name length must not exceed %d characters
Unknown encryption method in %s$The specified password is incorrect.
Cannot copy %s to %s.
Cannot create symbolic link %s
Cannot create hard link %s
Security warningKPlease remove %s from folder %s. It is unsecure to run %s until it is done.
spbuddyfinal.exe_3704:
`.rsrc
kernel32.dll
Windows
MSWHEEL_ROLLMSG
MSH_WHEELSUPPORT_MSG
MSH_SCROLL_LINES_MSG
$*@@@*$@@@$ *@@* $@@($*)@-$*@@$-*@@$*-@@(*$)@-*$@@*-$@@*$-@@-* $@-$ *@* $-@$ *-@$ -*@*- $@($ *)(* $)
oleaut32.dll
EVariantBadIndexError
Uh.QA
ssShift
htKeyword
EInvalidOperation
u%CNu
%s[%d]
%s_%d
.Owner
EInvalidGraphicOperation
USER32.DLL
Uhl
windows
comctl32.dll
uxtheme.dll
PasswordChart
OnKeyDown
OnKeyPresst
OnKeyUp
ssHorizontal
OnKeyUp4eC
Proportional
Uh
IE(AL("%s",4),"AL(\"%0:s\",3)","JK(\"%1:s\",\"%0:s\")")
JumpID("","%s")
TKeyEvent
TKeyPressEvent
HelpKeyword
crSQLWait
%s (%s)
imm32.dll
AutoHotkeys
ssHotTrack
TWindowState
poProportional
TWMKey
KeyPreview
WindowState
System\CurrentControlSet\Control\Keyboard Layouts\%.8x
vcltest3.dll
User32.dll
.html
HHCtrl.ocx
%s: %s
Invalid stream operation
SakMsg
SakMsgd$G
TSakMsg
TSakMsgd$G
Uh%CG
Port
TSakSMTP
SakSMTP
UserPasswd
AUTH LOGIN
L_PWORDMSG
HKEY_CLASSES_ROOT
HKEY_LOCAL_MACHINE
HKEY_USERS
HKEY_CURRENT_CONFIG
HKEY_PERFORMANCE_DATA
HKEY_DYN_DATA
NBPlay5.exe
gdiplus.dll
GdiplusShutdown
GdipSetPenLineJoin
GdipGetPenLineJoin
GdipSetCustomLineCapStrokeJoin
GdipGetCustomLineCapStrokeJoin
GdipSetImageAttributesColorKeys
GdipSetStringFormatHotkeyPrefix
GdipGetStringFormatHotkeyPrefix
%d.%d
ole32.dll
olepro32.dll
1.1.4
Invalid ZStream operation!
1.2.5
L$$:L$%u
.jpeg
.tiff
wp_Executive
wpActivateUndoHotkey
wpStreamUndoOperation
wpActivateRedoHotkey
webdings
3.0.9
t.HtQHtq
@.Ht5HtDHt
IMPORT
keywords
operator
\red%d\green%d\blue%d;
htCP
.HTML
DragAndDropSupportP
TMonochromeLookup
shfolder.dll
shell32.dll
IWebBrowser
IWebBrowserApp
IWebBrowser2
TEWBWindowSetResizable
TEWBWindowSetLeft
TEWBWindowSetTop
TEWBWindowSetWidth
TEWBWindowSetHeight
bstrUrlContext
bstrUrl
OnWindowSetResizable8
OnWindowSetLeft|
OnWindowSetTop
OnWindowSetWidth
OnWindowSetHeightH
ErrorUrl
CmdID
TGetOverrideKeyPathEvent
pchKey
pcmdtReserved
lpMsg
PMsg
pguidCmdGroup
nCmdID
TGetOptionKeyPathEvent
TTranslateUrlEvent
pchURLIn
ppchURLOut
DLCTL_URL_ENCODING_DISABLE_UTF8
DLCTL_URL_ENCODING_ENABLE_UTF8
URL_ENCODING_DISABLE_UTF8
URL_ENCODING_ENABLE_UTF8
OnGetOverrideKeyPathh
OnGetOptionKeyPathH
OnTranslateUrl`
\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform
htmlfile\shell\open\ddeexec\application
htmlfile\shell\open\ddeexec\topic
Folder\shell\open\ddeexec\application
Folder\shell\open\ddeexec\topic
Folder\shell\open\ddeexec
Folder\shell\explore\ddeexec
Directory\shell\find\ddeexec
Uh5%S
ProfilePort
TNeoHTTP
hXXp://
hXXps://
HTTP/1.0
Content-Type: application/x-www-form-urlencoded
wininet.dll
InternetOpenUrlA
HttpQueryInfoA
HttpOpenRequestA
HttpSendRequestA
InternetCanonicalizeUrlA
InternetCrackUrlA
FtpOpenFileA
EXITPASSWORD=
WINDOWSTYLE=
BYPASSPRINTDLG=
STARTPASSWORD=
MSGBOXIMAGE=
WINDOWREGKEY=
EDITPASSWORD=
URLVARNAME=
MENUKEY=
NBDebug.dll
Debug_ErrorReport
KERNEL32.DLL
OnExecuteMacro
Service %s
Topic %s
urlmon.dll
CreateURLMoniker
OLEAUT32.DLL
PasswordPanel
Password
PasswordChange
TPasswordEntryForm
SMTPError
SMTPSendProgress
FormKeyDown
NEOBOOKDDESERVERExecuteMacro
[WINDOWSTATE]
SMTP Server
[MailPort]
[MailUserPassword]
HTTP:
HTTPS:
;$u%f
Software\Microsoft\Windows\CurrentVersion\Policies\System
[HTTPAgent]
[HTTPReferrer]
[HTTPUserID]
[HTTPUserPassword]
[HTTPTimeOut]
[HTTPPort]
RUNTIME.PUB
WindowsDir
.ExitCode
.WinHandle
.ProcessHandle
.ProcessID
PSAPI.dll
DIR.COPY.DEL.TYPE.VER.ERASE.TREE.CHCP.CHDIR.CD.DATE.MKDIR.MD.RENAME.REN.RMDIR.RD.TIME.VOL.
CMD.EXE
COMMAND.COM
Control.exe
.EXE.COM.BAT.LNK.PIF.URL.SCR.MSI.HLP.CHM.
.HTML.HTM.
explorer.exe
MPR.DLL
PwdChangePasswordA
ScreenSaveUsePassword
PASSWORD.CPL
MsgPanel
.MID.RMI
CLOSEWINDOWS
nbExecAction
_nbExecAction
BrowserExport
BrowserExecScript
SendKeys
HotKey
TNeoBookWebBrowser
TrapPopupWindows
DefaultURL
URLVarName
TNeoBookMediaPlayer4%X
HTTP:/
HTTPS:/
HTTP:\
HTTPS:\
BrowserPrevBtn.png
BrowserNextBtn.png
BrowserStopBtn.png
BrowserRefreshBtn.png
http:
https:
.WMF.EMF
MediaPlayerPlayBtn.png
MediaPlayerPauseBtn.png
MediaPlayerStopBtn.png
MediaPlayerTrack.png
MediaPlayerThumb.png
.fsCommand
.fsArgs
CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32
embedded:\\\flash.ocx
C:\My Documents\
%Program Files%\
WindowState=W
WindowsDir=R
WindowsPlatform=R
WindowsVer=R
WindowsVerName=R
SOFTWARE\Microsoft\Windows NT\CurrentVersion
deflate 1.1.4 Copyright 1995-2002 Jean-loup Gailly
inflate 1.1.4 Copyright 1995-2002 Mark Adler
1.0.6 or earlier
iTXt chunk not supported.
libpng version 1.2.5 - October 3, 2002
libpng version 1.2.5 - October 3, 2002 (header)
Only compression windows <= 32k supported by PNG
Only compression windows >= 256 supported by PNG
Only compression method 8 is supported by PNG
Empty keyword in iCCP chunk
Empty keyword in sPLT chunk
zero length keyword
invalid character in keyword
trailing spaces removed from keyword
leading spaces removed from keyword
extra interior spaces removed from keyword
Zero length keyword
keyword length must be 1 - 79 characters
Empty keyword in tEXt chunk
Empty keyword in zTXt chunk
DBv}.Bv
&=J@/ .CJ=&
KWindows
UrlMon
.NeoHeadPanel
UAppKeys
NeoBookIEExeProtocol
NBUrlMon
OSakMsg
.ScktComp
Font.Charset
Font.Color
Font.Height
Font.Name
Font.Style
HorzScrollBar.Smooth
HorzScrollBar.Tracking
VertScrollBar.Smooth
VertScrollBar.Tracking
PasswordEntryForm
Picture.Data
PasswordChar
VVV.neosoftware.com
WinExec
GetWindowsDirectoryA
GetCPInfo
RegOpenKeyExA
RegFlushKey
RegDeleteKeyA
RegCreateKeyExA
RegCloseKey
SetViewportOrgEx
SetViewportExtEx
ShellExecuteExA
ShellExecuteA
FindExecutableA
keybd_event
VkKeyScanA
UnregisterHotKey
UnhookWindowsHookEx
SetWindowsHookExA
SetKeyboardState
RegisterHotKey
MsgWaitForMultipleObjects
MapVirtualKeyA
LoadKeyboardLayoutA
GetKeyboardState
GetKeyboardLayoutList
GetKeyboardLayout
GetKeyState
GetKeyNameTextA
GetAsyncKeyState
EnumWindows
EnumThreadWindows
ActivateKeyboardLayout
GetKeyboardType
.idata
.rdata
P.reloc
P.rsrc
stdole2.tlbWWW
"!! ### &%%
100! !(''!%$%!"""!
!%$$!%%%!%$$!!! !
222#000#-,-# * #)))#'''#%%%#$###"""#! # "
" "##"#&%%#'&'#'''#&&&""""#
(''#)()# **# **#***"*))"((("'&&"&&'&&"'''#)((#)))#***# #,,,#---#..."000#100#$$#
%$$% $ % $, $ $ **$*))$*)*$***$ %, $, $-,,%---$...$///$000$222$,,,$
322'433&101&0//&...&-,,&, ,& & **&*))&)((&(((&(((&*))&***&)))&)((&)))&"!!&
&(((&,,,&,,,&,,,&-,,&-,,&,,,&, &, &,,,&,,,&-,,&.--&...&/..&0//&0//&111&222&(''
755(333(111(0//(///(...(---(,,,(, ' ( **'***(***( ( '***'***((('(
!$$$(, '---(-,,(---(/..'...'---(---(---(---(...(...(/..(/..(0//'000'100'211(000&
545)645)322)111)000)///)/..)/..).-.)-,-),,,), *, *,,,),,,*, * *** *)%$$*
!!!*(''*...)...)/..*///*///*///)/..)...)/..)/..)///)///*0//)000)100*111)211)333*'&&"
998:=<<<<;;<;::;;::;;::;;::;:::<:99;:::;999;877;766;543;---<''';&&&=
777<?>>>=<<=;;;>;::=;::=;::>;;;>;::><;;>:99=877=544=-,,='''='''>"""1
000=?>>@>>>?>==?<<<?=<<?=<<?=<<?=<<?=;;?:99?545?,,,?(((?)))@%%%3
)***=,,,@ ?---?000@222?444?444?433@221@..-@ @)))?
!!!/'''9%%%C%%%C%%%@%%$3
/./!, ,"%" !
""#!**)#**(!'&%!$$#!&%&"('("*)*",,,"000$*))
322(/..%,,,%*) %)()%'&(%)(*%*) %&%''
&&&&,,-%, ,%, % %,,,%-,-%... 0%0//&%%%
423&322)///(...(---(, ( *) ( )"!!&
" *...(/..(...(.--(/..(/..(0//(211*-,,
655/211 000,///,/..,.--,.--,--- ***.
;;:9;;;<:99;:99;:99;888:7669.--="""5
$$$- ?322:;;;:===:=<<;<<<;==<= .
000>GGG8AAA9A@@9DCC6444?%%%C##"
..,$&' #
)*#%((!#(($#-,,$... ###
211-.-/).-.) -
%%&"0/1,/./)0//*211-..-
655.655221112211)))0
---4877055507773544'
;::8=<<:999:110?$$$#
%%%"221?::9:;;;=5553
:993333=8777---/
&&ᨍ:::;///
..*)'("&'(!(
&)-,)%/..)...
433.21132122)()(
)()T44655/655/.--
---9<<<@999?%%%
988&21-5''!
//-35555221
---:/./10/3
version="1.0.0.0"
name="Microsoft.Windows.Common-Controls"
version="6.0.0.0"
publicKeyToken="6595b64144ccf1df"
<requestedExecutionLevel
advapi32.dll
comdlg32.dll
gdi32.dll
MsVfW32.dll
user32.dll
version.dll
winmm.dll
winspool.drv
wsock32.dll
TPASSWORDENTRYFORM
Invalid drive! Cannot remove current directory.%Disk read error! File may be damaged.
This application was created with a trial version of NeoBook 5.|Applications created with the trial version are limited to 2 days|of use. This application has exceeded that time and will no|longer function.%Sending eMail. Do you want to cancel?%This action requires %s parameter(s).3Action references a subroutine that does not exist.,This expression is missing a quotation mark.
Unable to load image..Action references a label that does not exist.)A function with this name does not exist.
Invalid registry key! Loop action requires a variable.)Page change actions are not allowed here.
1This is not an application! Try another exe file.
Cannot copy file.CYou do not have enough memory or the|program is corrupt or invalid.
Path does not exist.fAn attempt was made to dynamically link to a task,|or there was a sharing or network-protection error.7There is insufficient memory to start this application.9This application requires a different version of Windows.lThe application's executable file is invalid. Either|it is not a Windows application or the file is corrupt.?This application was designed for a different operating system.?This application is already running and cannot be loaded twice.VThis application is compressed. The file must|be decompressed before it can be loaded.FA dynamic-link library (DLL) required by this application was invalid.4This application requires Windows 32-bit extensions.,No application is associated with this file! Unable to load this application.
Downloading...0Invalid input value. Use ESC to abandon changes.7The %s action cannot originate from a Web Browser link.
Unable to initialize debugger.3This mathematical equation contains a syntax error.""%s" is not a valid integer value.#"%s" is not a valid currency value.""%s" is not a valid decimal value.""%s" is not a valid boolean value.
"%s" is not a valid date value./Cannot change the type of global variable "%s".""%s" is not a valid variable type.-Could not identify application's main window.
Cannot find application.)An application is already attached to %s.&This application does not have a menu.*Application does not accept dropped files.
Invalid key
%s is not a valid operator."Expression is missing an operator.
Action requires visible object..Only one Internet action is allowed at a time.
Unknown GIF block type'Object type not supported for operation
Unsupported PixelFormat
NUnable to retrieve a pointer to a running object registered with OLE for %s/%s
Unsupported GIF version
Invalid extension introducerúiled to allocate memory for GIF DIB
Invalid Image trailerAInternal error: Extension Instance does not match Extension Label,Unsupported Application Extension block size
#Object factory for class %s missing%Type information missing for class %s'Incorrect type information for class %s(Dispatch interface missing from class %s.Method '%s' not supported by automation object/Variant does not reference an automation object7Dispatch methods do not support more than 64 parameters
OLE control activation failed*Could not obtain OLE control window handle%License information for %s is invalidPLicense information for %s not found. You cannot use this control in design mode
No help keyword specified.$Error creating system registry entry
Invalid clipboard format Clipboard does not support Icons
Cannot open clipboard Operation not supported on selected printer.There is no default printer currently selected/Menu '%s' is already being used by another form
Error setting %s.Count8Listbox (%s) style must be virtual in order to set Count
Cannot drag a form"An error returned from DDE ($0%x)/DDE Error - conversation not established ($0%x)0Error occurred when DDE ran out of memory ($0%x)"Unable to connect DDE conversation
Invalid input value7Invalid input value. Use escape key to abandon changes
Error creating window class Cannot focus a disabled or invisible window!Control '%s' has no parent window
%s on %s
Scan line index out of range!Cannot change the size of an icon Invalid operation on TOleGraphic
Unsupported clipboard format
$Operation not allowed on sorted list$%s not in a class registration group
Property %s does not exist
Thread creation error: %s
Thread Error: %s (%d)*Windows socket error: %s (%d), on API '%s'
Asynchronous socket error %d
No help found for %s#No context-sensitive help installed$No topic-based help system installed
$''%s'' is not a valid component name
Invalid data type for '%s' List capacity out of bounds (%d)
List count out of bounds (%d)
List index out of bounds (%d) Out of memory while expanding memory stream
Error reading %s%s%s: %s
Failed to get data for '%s'
Failed to set data for '%s'
Resource %s not found
%s.Seek not implemented
Ancestor for '%s' not found
Cannot assign a %s to a %s
Bits index out of range*Can't write to a read-only resource streamECheckSynchronize called from thread $%x, which is NOT the main thread
Class %s not found
A class named %s already exists%List does not allow duplicates ($0%x)#A component named %s already exists%String list does not allow duplicates
Cannot create file "%s". %s
Cannot open file "%s". %s
'%s' is an invalid mask at (%d)
Operation not supported
External exception %x
Interface not supported
%s (%s, line %d)
Abstract Error?Access violation at address %p in module '%s'. %s of address %p
System Error. Code: %d.
No argument for format '%s'"Variant method calls not supported
Invalid variant operation
Invalid NULL variant operation%Invalid variant operation (%s%.8x)
%s5Could not convert variant of type (%s) into type (%s)=Overflow while converting variant of type (%s) into type (%s)
Integer overflow Invalid floating point operation
Invalid pointer operation
Invalid class typecast0Access violation at address %p. %s of address %p
Operation aborted(Exception %s in module %s at %p.
Application Error1Format '%s' invalid or incompatible with argument
<unknown>!'%s' is not a valid integer value('%s' is not a valid floating point value
I/O error %d
04090000
1.5.1.109
spbuddyfinal.exe_3704_rwx_00401000_00242000:
kernel32.dll
Windows
MSWHEEL_ROLLMSG
MSH_WHEELSUPPORT_MSG
MSH_SCROLL_LINES_MSG
$*@@@*$@@@$ *@@* $@@($*)@-$*@@$-*@@$*-@@(*$)@-*$@@*-$@@*$-@@-* $@-$ *@* $-@$ *-@$ -*@*- $@($ *)(* $)
oleaut32.dll
EVariantBadIndexError
Uh.QA
ssShift
htKeyword
EInvalidOperation
u%CNu
%s[%d]
%s_%d
.Owner
EInvalidGraphicOperation
USER32.DLL
Uhl
windows
comctl32.dll
uxtheme.dll
PasswordChart
OnKeyDown
OnKeyPresst
OnKeyUp
ssHorizontal
OnKeyUp4eC
Proportional
Uh
IE(AL("%s",4),"AL(\"%0:s\",3)","JK(\"%1:s\",\"%0:s\")")
JumpID("","%s")
TKeyEvent
TKeyPressEvent
HelpKeyword
crSQLWait
%s (%s)
imm32.dll
AutoHotkeys
ssHotTrack
TWindowState
poProportional
TWMKey
KeyPreview
WindowState
System\CurrentControlSet\Control\Keyboard Layouts\%.8x
vcltest3.dll
User32.dll
.html
HHCtrl.ocx
%s: %s
Invalid stream operation
SakMsg
SakMsgd$G
TSakMsg
TSakMsgd$G
Uh%CG
Port
TSakSMTP
SakSMTP
UserPasswd
AUTH LOGIN
L_PWORDMSG
HKEY_CLASSES_ROOT
HKEY_LOCAL_MACHINE
HKEY_USERS
HKEY_CURRENT_CONFIG
HKEY_PERFORMANCE_DATA
HKEY_DYN_DATA
NBPlay5.exe
gdiplus.dll
GdiplusShutdown
GdipSetPenLineJoin
GdipGetPenLineJoin
GdipSetCustomLineCapStrokeJoin
GdipGetCustomLineCapStrokeJoin
GdipSetImageAttributesColorKeys
GdipSetStringFormatHotkeyPrefix
GdipGetStringFormatHotkeyPrefix
%d.%d
ole32.dll
olepro32.dll
1.1.4
Invalid ZStream operation!
1.2.5
L$$:L$%u
.jpeg
.tiff
wp_Executive
wpActivateUndoHotkey
wpStreamUndoOperation
wpActivateRedoHotkey
webdings
3.0.9
t.HtQHtq
@.Ht5HtDHt
IMPORT
keywords
operator
\red%d\green%d\blue%d;
htCP
.HTML
DragAndDropSupportP
TMonochromeLookup
shfolder.dll
shell32.dll
IWebBrowser
IWebBrowserApp
IWebBrowser2
TEWBWindowSetResizable
TEWBWindowSetLeft
TEWBWindowSetTop
TEWBWindowSetWidth
TEWBWindowSetHeight
bstrUrlContext
bstrUrl
OnWindowSetResizable8
OnWindowSetLeft|
OnWindowSetTop
OnWindowSetWidth
OnWindowSetHeightH
ErrorUrl
CmdID
TGetOverrideKeyPathEvent
pchKey
pcmdtReserved
lpMsg
PMsg
pguidCmdGroup
nCmdID
TGetOptionKeyPathEvent
TTranslateUrlEvent
pchURLIn
ppchURLOut
DLCTL_URL_ENCODING_DISABLE_UTF8
DLCTL_URL_ENCODING_ENABLE_UTF8
URL_ENCODING_DISABLE_UTF8
URL_ENCODING_ENABLE_UTF8
OnGetOverrideKeyPathh
OnGetOptionKeyPathH
OnTranslateUrl`
\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform
htmlfile\shell\open\ddeexec\application
htmlfile\shell\open\ddeexec\topic
Folder\shell\open\ddeexec\application
Folder\shell\open\ddeexec\topic
Folder\shell\open\ddeexec
Folder\shell\explore\ddeexec
Directory\shell\find\ddeexec
Uh5%S
ProfilePort
TNeoHTTP
hXXp://
hXXps://
HTTP/1.0
Content-Type: application/x-www-form-urlencoded
wininet.dll
InternetOpenUrlA
HttpQueryInfoA
HttpOpenRequestA
HttpSendRequestA
InternetCanonicalizeUrlA
InternetCrackUrlA
FtpOpenFileA
EXITPASSWORD=
WINDOWSTYLE=
BYPASSPRINTDLG=
STARTPASSWORD=
MSGBOXIMAGE=
WINDOWREGKEY=
EDITPASSWORD=
URLVARNAME=
MENUKEY=
NBDebug.dll
Debug_ErrorReport
KERNEL32.DLL
OnExecuteMacro
Service %s
Topic %s
urlmon.dll
CreateURLMoniker
OLEAUT32.DLL
PasswordPanel
Password
PasswordChange
TPasswordEntryForm
SMTPError
SMTPSendProgress
FormKeyDown
NEOBOOKDDESERVERExecuteMacro
[WINDOWSTATE]
SMTP Server
[MailPort]
[MailUserPassword]
HTTP:
HTTPS:
;$u%f
Software\Microsoft\Windows\CurrentVersion\Policies\System
[HTTPAgent]
[HTTPReferrer]
[HTTPUserID]
[HTTPUserPassword]
[HTTPTimeOut]
[HTTPPort]
RUNTIME.PUB
WindowsDir
.ExitCode
.WinHandle
.ProcessHandle
.ProcessID
PSAPI.dll
DIR.COPY.DEL.TYPE.VER.ERASE.TREE.CHCP.CHDIR.CD.DATE.MKDIR.MD.RENAME.REN.RMDIR.RD.TIME.VOL.
CMD.EXE
COMMAND.COM
Control.exe
.EXE.COM.BAT.LNK.PIF.URL.SCR.MSI.HLP.CHM.
.HTML.HTM.
explorer.exe
MPR.DLL
PwdChangePasswordA
ScreenSaveUsePassword
PASSWORD.CPL
MsgPanel
.MID.RMI
CLOSEWINDOWS
nbExecAction
_nbExecAction
BrowserExport
BrowserExecScript
SendKeys
HotKey
TNeoBookWebBrowser
TrapPopupWindows
DefaultURL
URLVarName
TNeoBookMediaPlayer4%X
HTTP:/
HTTPS:/
HTTP:\
HTTPS:\
BrowserPrevBtn.png
BrowserNextBtn.png
BrowserStopBtn.png
BrowserRefreshBtn.png
http:
https:
.WMF.EMF
MediaPlayerPlayBtn.png
MediaPlayerPauseBtn.png
MediaPlayerStopBtn.png
MediaPlayerTrack.png
MediaPlayerThumb.png
.fsCommand
.fsArgs
CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32
embedded:\\\flash.ocx
C:\My Documents\
%Program Files%\
WindowState=W
WindowsDir=R
WindowsPlatform=R
WindowsVer=R
WindowsVerName=R
SOFTWARE\Microsoft\Windows NT\CurrentVersion
deflate 1.1.4 Copyright 1995-2002 Jean-loup Gailly
inflate 1.1.4 Copyright 1995-2002 Mark Adler
1.0.6 or earlier
iTXt chunk not supported.
libpng version 1.2.5 - October 3, 2002
libpng version 1.2.5 - October 3, 2002 (header)
Only compression windows <= 32k supported by PNG
Only compression windows >= 256 supported by PNG
Only compression method 8 is supported by PNG
Empty keyword in iCCP chunk
Empty keyword in sPLT chunk
zero length keyword
invalid character in keyword
trailing spaces removed from keyword
leading spaces removed from keyword
extra interior spaces removed from keyword
Zero length keyword
keyword length must be 1 - 79 characters
Empty keyword in tEXt chunk
Empty keyword in zTXt chunk
DBv}.Bv
&=J@/ .CJ=&
KWindows
UrlMon
.NeoHeadPanel
UAppKeys
NeoBookIEExeProtocol
NBUrlMon
OSakMsg
.ScktComp
Font.Charset
Font.Color
Font.Height
Font.Name
Font.Style
HorzScrollBar.Smooth
HorzScrollBar.Tracking
VertScrollBar.Smooth
VertScrollBar.Tracking
PasswordEntryForm
Picture.Data
PasswordChar
VVV.neosoftware.com
WinExec
GetWindowsDirectoryA
GetCPInfo
RegOpenKeyExA
RegFlushKey
RegDeleteKeyA
RegCreateKeyExA
RegCloseKey
SetViewportOrgEx
SetViewportExtEx
ShellExecuteExA
ShellExecuteA
FindExecutableA
keybd_event
VkKeyScanA
UnregisterHotKey
UnhookWindowsHookEx
SetWindowsHookExA
SetKeyboardState
RegisterHotKey
MsgWaitForMultipleObjects
MapVirtualKeyA
LoadKeyboardLayoutA
GetKeyboardState
GetKeyboardLayoutList
GetKeyboardLayout
GetKeyState
GetKeyNameTextA
GetAsyncKeyState
EnumWindows
EnumThreadWindows
ActivateKeyboardLayout
GetKeyboardType
.idata
.rdata
P.reloc
P.rsrc
TPASSWORDENTRYFORM
Invalid drive! Cannot remove current directory.%Disk read error! File may be damaged.
This application was created with a trial version of NeoBook 5.|Applications created with the trial version are limited to 2 days|of use. This application has exceeded that time and will no|longer function.%Sending eMail. Do you want to cancel?%This action requires %s parameter(s).3Action references a subroutine that does not exist.,This expression is missing a quotation mark.
Unable to load image..Action references a label that does not exist.)A function with this name does not exist.
Invalid registry key! Loop action requires a variable.)Page change actions are not allowed here.
1This is not an application! Try another exe file.
Cannot copy file.CYou do not have enough memory or the|program is corrupt or invalid.
Path does not exist.fAn attempt was made to dynamically link to a task,|or there was a sharing or network-protection error.7There is insufficient memory to start this application.9This application requires a different version of Windows.lThe application's executable file is invalid. Either|it is not a Windows application or the file is corrupt.?This application was designed for a different operating system.?This application is already running and cannot be loaded twice.VThis application is compressed. The file must|be decompressed before it can be loaded.FA dynamic-link library (DLL) required by this application was invalid.4This application requires Windows 32-bit extensions.,No application is associated with this file! Unable to load this application.
Downloading...0Invalid input value. Use ESC to abandon changes.7The %s action cannot originate from a Web Browser link.
Unable to initialize debugger.3This mathematical equation contains a syntax error.""%s" is not a valid integer value.#"%s" is not a valid currency value.""%s" is not a valid decimal value.""%s" is not a valid boolean value.
"%s" is not a valid date value./Cannot change the type of global variable "%s".""%s" is not a valid variable type.-Could not identify application's main window.
Cannot find application.)An application is already attached to %s.&This application does not have a menu.*Application does not accept dropped files.
Invalid key
%s is not a valid operator."Expression is missing an operator.
Action requires visible object..Only one Internet action is allowed at a time.
Unknown GIF block type'Object type not supported for operation
Unsupported PixelFormat
NUnable to retrieve a pointer to a running object registered with OLE for %s/%s
Unsupported GIF version
Invalid extension introducerúiled to allocate memory for GIF DIB
Invalid Image trailerAInternal error: Extension Instance does not match Extension Label,Unsupported Application Extension block size
#Object factory for class %s missing%Type information missing for class %s'Incorrect type information for class %s(Dispatch interface missing from class %s.Method '%s' not supported by automation object/Variant does not reference an automation object7Dispatch methods do not support more than 64 parameters
OLE control activation failed*Could not obtain OLE control window handle%License information for %s is invalidPLicense information for %s not found. You cannot use this control in design mode
No help keyword specified.$Error creating system registry entry
Invalid clipboard format Clipboard does not support Icons
Cannot open clipboard Operation not supported on selected printer.There is no default printer currently selected/Menu '%s' is already being used by another form
Error setting %s.Count8Listbox (%s) style must be virtual in order to set Count
Cannot drag a form"An error returned from DDE ($0%x)/DDE Error - conversation not established ($0%x)0Error occurred when DDE ran out of memory ($0%x)"Unable to connect DDE conversation
Invalid input value7Invalid input value. Use escape key to abandon changes
Error creating window class Cannot focus a disabled or invisible window!Control '%s' has no parent window
%s on %s
Scan line index out of range!Cannot change the size of an icon Invalid operation on TOleGraphic
Unsupported clipboard format
$Operation not allowed on sorted list$%s not in a class registration group
Property %s does not exist
Thread creation error: %s
Thread Error: %s (%d)*Windows socket error: %s (%d), on API '%s'
Asynchronous socket error %d
No help found for %s#No context-sensitive help installed$No topic-based help system installed
$''%s'' is not a valid component name
Invalid data type for '%s' List capacity out of bounds (%d)
List count out of bounds (%d)
List index out of bounds (%d) Out of memory while expanding memory stream
Error reading %s%s%s: %s
Failed to get data for '%s'
Failed to set data for '%s'
Resource %s not found
%s.Seek not implemented
Ancestor for '%s' not found
Cannot assign a %s to a %s
Bits index out of range*Can't write to a read-only resource streamECheckSynchronize called from thread $%x, which is NOT the main thread
Class %s not found
A class named %s already exists%List does not allow duplicates ($0%x)#A component named %s already exists%String list does not allow duplicates
Cannot create file "%s". %s
Cannot open file "%s". %s
'%s' is an invalid mask at (%d)
Operation not supported
External exception %x
Interface not supported
%s (%s, line %d)
Abstract Error?Access violation at address %p in module '%s'. %s of address %p
System Error. Code: %d.
No argument for format '%s'"Variant method calls not supported
Invalid variant operation
Invalid NULL variant operation%Invalid variant operation (%s%.8x)
%s5Could not convert variant of type (%s) into type (%s)=Overflow while converting variant of type (%s) into type (%s)
Integer overflow Invalid floating point operation
Invalid pointer operation
Invalid class typecast0Access violation at address %p. %s of address %p
Operation aborted(Exception %s in module %s at %p.
Application Error1Format '%s' invalid or incompatible with argument
<unknown>!'%s' is not a valid integer value('%s' is not a valid floating point value
I/O error %d
spbuddyfinal.exe_3704_rwx_01D81000_000A4000:
kernel32.dll
Windows
MSWHEEL_ROLLMSG
MSH_WHEELSUPPORT_MSG
MSH_SCROLL_LINES_MSG
$*@@@*$@@@$ *@@* $@@($*)@-$*@@$-*@@$*-@@(*$)@-*$@@*-$@@*$-@@-* $@-$ *@* $-@$ *-@$ -*@*- $@($ *)(* $)
oleaut32.dll
EVariantBadIndexError
ssShift
htKeyword
EInvalidOperation
u%CNu
%s_%d
EInvalidGraphicOperation
USER32.DLL
comctl32.dll
uxtheme.dll
PasswordChar
OnKeyDown
OnKeyPressP
OnKeyUpt
ssHorizontal
OnKeyUp(
Proportional
%s%s%s%s%s%s%s%s%s%s
IE(AL("%s",4),"AL(\"%0:s\",3)","JK(\"%1:s\",\"%0:s\")")
JumpID("","%s")
ssHotTrack
TWindowState
poProportional
TWMKey
KeyPreview
WindowState
System\CurrentControlSet\Control\Keyboard Layouts\%.8x
vcltest3.dll
User32.dll
AutoHotkeys
TKeyEvent
TKeyPressEvent
HelpKeyword<Y
crSQLWait
%s (%s)
imm32.dll
pdfLoadFromWeb
NEOBOOKPDF.NBP
- Toolbar2000 version 2.1.8/D7, Copyright (C) 1998-2006 by Jordan Russell -
user32.dll
msimg32.dll
Theme %s is already registered
dwmapi.dll
MAPI32.DLL
NeoBookPDF.chm
Could not find help file (NeoBookPDF.chm).|Please reinstall NeoBookPDF
|*.pdf;
Action_Command_Reference.html#
ole32.dll
olepro32.dll
.html
HHCtrl.ocx
%s: %s
TNeoBookURL
TNeoBookURL<
NeoBookURL
NeoBookURL1
NeoBookURL2
\CLSID\{CA8A9780-280D-11CF-A24D-444553540000}\InprocServer32
pdf.ocx
AcroPDF.dll
SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AcroRd32.exe
SOFTWARE\Classes\AcroExch.Document\Shell\Open\Command
NeoSoft Corp. - VVV.neosoftware.com
TBv}.Bv
333333333333333333
33333833
3333339
3333333333333338
:*"*"$3338
3333333
33333333
33333333333
3333333333338
33338?383
333333333333
:*3:"$3338
333333333333333
T.//F.feojy
0>>==<<8!
3333333333
KWindows
UrlMon
.NeoHeadPanel
Font.Charset
Font.Color
Font.Height
Font.Name
Font.Style
Picture.Data
.Xiiiiiiiiiiiiiiiiiii
.iiiiiY
.iiii
iiY.iiiiiiiiiiiiiiiii
info@neosoftware.com
Web Site:
VVV.neosoftware.com
Lines.Strings
Glyph.Data
The object specified here must be of type Rectangle. Attaching a PDF file to other types of objects is not recommended. This action requires NeoBook version 4.0.9 or higher.
GetCPInfo
RegQueryInfoKeyA
RegOpenKeyExA
RegFlushKey
RegEnumKeyExA
RegDeleteKeyA
RegCreateKeyExA
RegCloseKey
SetViewportOrgEx
ShellExecuteA
UnhookWindowsHookEx
SetWindowsHookExA
MapVirtualKeyA
LoadKeyboardLayoutA
GetKeyboardState
GetKeyboardLayoutList
GetKeyboardLayout
GetKeyState
GetKeyNameTextA
EnumWindows
EnumThreadWindows
ActivateKeyboardLayout
GetKeyboardType
)%%%$$&&$''&&
)%%%$$"!$%"&&$&)
)%%%$$"!$%"&&$&)^
)%%$$"!$%"&&$&&
)%%%$$&&$%&)
38000=344
1 0 .'7(2':
4.,% % % % (,% %.),
.idata
.edata
P.reloc
P.rsrc
/This function requires NeoBook 4.0.9 or higher.
NeoBookPDF v%s by NeoSoft Corp.
URL to Acrobat PDF file:
Any FileGCould not find help file (NeoBookPDF.hlp).|Please reinstall NeoBookPDF.
PLicense information for %s not found. You cannot use this control in design modeNUnable to retrieve a pointer to a running object registered with OLE for %s/%s
No help keyword specified.
OLE error %.8x.Method '%s' not supported by automation object/Variant does not reference an automation object7Dispatch methods do not support more than 64 parameters
OLE control activation failed*Could not obtain OLE control window handle%License information for %s is invalid
No help found for %s#No context-sensitive help installed$No topic-based help system installed
Unable to insert a line Clipboard does not support Icons
Text exceeds memo capacity/Menu '%s' is already being used by another form
!Control '%s' has no parent window
Scan line index out of range!Cannot change the size of an icon Invalid operation on TOleGraphic
Unsupported clipboard format
Error reading %s%s%s: %s
Failed to create key %s
Failed to get data for '%s'
Failed to set data for '%s'
Resource %s not found
%s.Seek not implemented$Operation not allowed on sorted list$%s not in a class registration group
Property %s does not exist
ECheckSynchronize called from thread $%x, which is NOT the main thread
Class %s not found
A class named %s already exists%List does not allow duplicates ($0%x)#A component named %s already exists%String list does not allow duplicates
Cannot create file "%s". %s
Cannot open file "%s". %s
Invalid stream format$''%s'' is not a valid component name
Invalid data type for '%s' List capacity out of bounds (%d)
List count out of bounds (%d)
List index out of bounds (%d)
Ancestor for '%s' not found
Cannot assign a %s to a %s
%s (%s, line %d)
Abstract Error?Access violation at address %p in module '%s'. %s of address %p
System Error. Code: %d.
Invalid variant operation%Invalid variant operation (%s%.8x)
%s5Could not convert variant of type (%s) into type (%s)=Overflow while converting variant of type (%s) into type (%s)
Operation not supported
External exception %x
Interface not supported
Invalid pointer operation
Invalid class typecast0Access violation at address %p. %s of address %p
Privileged instruction(Exception %s in module %s at %p.
Application Error1Format '%s' invalid or incompatible with argument
No argument for format '%s'"Variant method calls not supported
!'%s' is not a valid integer value('%s' is not a valid floating point value
I/O error %d
Integer overflow Invalid floating point operation
spbuddyfinal.exe_3704_rwx_033F1000_00131000:
kernel32.dll
Windows
MSWHEEL_ROLLMSG
MSH_WHEELSUPPORT_MSG
MSH_SCROLL_LINES_MSG
$*@@@*$@@@$ *@@* $@@($*)@-$*@@$-*@@$*-@@(*$)@-*$@@*-$@@*$-@@-* $@-$ *@* $-@$ *-@$ -*@*- $@($ *)(* $)
oleaut32.dll
EVariantBadIndexError
ssShift
htKeyword
EInvalidOperation
u%CNu
%s[%d]
%s_%d
EInvalidGraphicOperation
%s%.8x
USER32.DLL
comctl32.dll
uxtheme.dll
%s%s%s%s%s%s%s%s%s%s
Proportional
MAPI32.DLL
SOFTWARE\Microsoft\Windows Messaging Subsystem
OnKeyDown
OnKeyPresst
OnKeyUp
PasswordChar
IE(AL("%s",4),"AL(\"%0:s\",3)","JK(\"%1:s\",\"%0:s\")")
JumpID("","%s")
ssHotTrack
TWindowState
poProportional
TWMKey
KeyPreview
WindowState
System\CurrentControlSet\Control\Keyboard Layouts\%.8x
vcltest3.dll
User32.dll
UhÍ
AutoHotkeys
TKeyEvent
TKeyPressEvent
HelpKeyword
crSQLWait
%s (%s)
imm32.dll
%s: %s
%s:%s
user32.dll
ole32.dll
olepro32.dll
and send it back to krug@sdm.de
1.2.3
Portable Network Graphics
1.1.4
Invalid ZStream operation!
Type not supported
Not supported
Software\Microsoft\Windows Messaging Subsystem\Profiles
Software\Microsoft\Windows NT\CurrentVersion\Windows Messaging Subsystem\Profiles
MAPI Error %d: %s
ComboKeyDown
8%u9h
_KeyDownShift]
_KeyDownAlt]
_KeyDownCtrl]
_KeyDownKey]
_KeyDownAction]
ListBox1KeyDown
Uh.YI
>%u<hp
FormKeyDown
Class <%s> not registered
Source Class <%s> not registered
tObject %s not in item list
srBadPassword
TBadPassword
NewPassword
Password
OnBadPassword
.zip.
\\.\vwin32
Uh.PK
-2147483647
-2147483646
-2147483645
-2147483644
-2147483643
-2147483642
-2147483641
-2147483640
-2147483639
-2147483638
-2147483637
-2147483636
-2147483635
-2147483634
-2147483633
-2147483632
-2147483631
-2147483630
-2147483629
-2147483628
-2147483627
-2147483626
-2147483625
-2147483624
not supported!
.MimeStreamContent]
.MimeStreamCreator]
.MimeStreamType]
.MimeStreamLength]
.Width]
.Height]
This function requires NeoBook 4.0.9 or higher.
dd.mm.yyyy
This feature requires NeoBook 5.0.0 or higher.
Uh.XL
=%s
Scripting.FileSystemObject
H.P.Wickern
hpwGetWindowState
hpwIniKeyDel
hpwShellOpenUrl
hpwListBoxFindItemByHotkey
deflate 1.2.3 Copyright 1995-2005 Jean-loup Gailly
inflate 1.2.3 Copyright 1995-2005 Mark Adler
deflate 1.1.4 Copyright 1995-2002 Jean-loup Gailly
inflate 1.1.4 Copyright 1995-2002 Mark Adler
Fv}.Bv
333333333333333333
33333833
3333339
3333333333333338
:*"*"$3338
3333333
33333333
33333333333
3333333333338
33338?383
333333333333
:*3:"$3338
333333333333333
KWindows
UrlMon
%DIMimeStreams
Font.Charset
Font.Color
Font.Height
Font.Name
Font.Style
GetCPInfo
RegOpenKeyExA
RegFlushKey
RegCreateKeyExA
RegCloseKey
SetViewportOrgEx
ShellExecuteA
UnhookWindowsHookEx
SetWindowsHookExA
MapVirtualKeyA
LoadKeyboardLayoutA
GetKeyboardState
GetKeyboardLayoutList
GetKeyboardLayout
GetKeyState
GetKeyNameTextA
EnumWindows
EnumThreadWindows
ActivateKeyboardLayout
GetKeyboardType
"$ %),'8
)%%%$$&&$%&)
)%%$$"!&
#%)%%%%$$$"!*(&&$#&&& (
)-%%%$$!&&$
)%%$$"!&&$&'
$#)%%%%$$"!$%"&&}
)%%%$$&&$''&&
)%%%$$"!$%"&&$&)^
)%%$$"!$%"&&$&&
)%%%$$"!$%"&&$&'
)!%'%%%%$$"!$%"(&&$&@
38000=344
)%%%$"!$%"&&$(
)%%%%$"!$%"(
>;<7=3?4
,&, *,$ ,-'%/)(#*(**$%1-
# # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # #
# # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # ## 0
00%&"%!%))"$"$"$
!#'#$#$ ! !#'#'#$ ! !&'&'#' ! !&'&'&' ! !&'&'#' ! !#'#'#$ ! !#'#$#$ ! !"$"$"$
!#$#$ ! !#$ ! !%&%& ! !%&%&%& ! !%&%&"& ! !"&"&"# ! !"&"#"# ! !!#!#!#
!"&"#"# ! !"&"&"# ! !%&%&"& ! !%&%&%& ! !%&%& ! !#$ ! !#$#$ ! !!!))&&
.idata
.edata
P.reloc
P.rsrc
1n.eP
sJ.Cr
Open a Zip File[Zip Files (*.ZIP)|*.zip|SFX Files (*.EXE)|*.exe|Jar Files (*.JAR)|*.jar|All Files (*.*)|*.*&User canceled Set Desination Directory
Index %d is out of range
User Aborted Operation
User canceled Zip operation%Select a new name for the fixed file.
Zip Files (*.ZIP)
Invalid seek origin (%d)
jThis "Portable Network Graphics" image is invalid because the decoder found an unexpected end of the file.8This "Portable Network Graphics" image contains no data.oSome operation could not be performed because the system is out of resources. Close some windows and try again.OThis operation is not valid because the current image contains no valid header.4The new size provided for image resizing is invalid.
JPEG-Fehler #%d
JPEG-GrafikdateijThis "Portable Network Graphics" image is not valid because it contains invalid pieces of data (crc error)yThe "Portable Network Graphics" image could not be loaded because one of its main piece of data (ihdr) might be corruptedUThis "Portable Network Graphics" image is invalid because it has missing image parts.[Could not decompress the image because it contains invalid compressed data.
Description: BThe "Portable Network Graphics" image contains an invalid palette.
The file being readed is not a valid "Portable Network Graphics" image because it contains an invalid header. This file may be corruped, try obtaining it again.nThis "Portable Network Graphics" image is not supported or it might be invalid.
This "Portable Network Graphics" image is not supported because either it's width or height exceeds the maximum size, which is 65535 pixels length.
There is no such palette entry.dThis "Portable Network Graphics" image contains an unknown critical part which could not be decoded.pThis "Portable Network Graphics" image is encoded with an unknown compression scheme which could not be decoded.cThis "Portable Network Graphics" image uses an unknown interlace scheme which could not be decoded.-The chunks must be compatible to be assigned.
;Registerseite '%s' mit Index %d konnte nicht gesetzt werden/Objekt mit Index %d konnte nicht gesetzt werden;Bei TabPosition tpLeft und tpRight muss MultiLine True seinCDieses Element ben
tigt COMCTL32.DLL in der Version 4.70 oder h
berschreitet das Maximum von %s Das Datum unterschreitet das Minimum von %s=Um das Datum zu setzen, m
OLE-Fehler %.8xBDie Methode '%s' wird vom Automatisierungsobjekt nicht unterst
Fenstertext,Register-Element konnte nicht geleert werden7Registerseite mit Index %d konnte nicht gel
scht werden6Registerseite mit Index %d konnte nicht gelesen werden/Objekt mit Index %d konnte nicht gelesen werden
'%s' wird bereits von einem anderen Formular benutzt1Angedocktes Steuerelement muss einen Namen haben.BFehler beim Entfernen des Steuerelements aus der Andock-Hierarchie
Fehler beim Setzen von %s.CountNStil des Listenfeldes (%s) muss virtuell sein, damit Count gesetzt werden kann/Inhaltsverzeichnis konnte nicht gefunden werden/F
r %s sind keine Hilfeinformationen vorhanden.(Keine kontextsensitive Hilfe installiert.Es ist keine themenbasierte Hilfe installiert.
Alt #Wert muss zwischen %d und %d liegen!Zeile kann nicht eingef
&Dateien: (*.*)
%Formulare k
tekontexts(Fehler beim Erzeugen einer FensterklasseIEin deaktiviertes oder unsichtbares Fenster kann nicht den Fokus erhalten,Element '%s' hat kein
bergeordnetes Element von '%s'8Untergeordnetes MDI-Formular kann nicht verborgen werdenEEigenschaft Visible kann in OnShow oder OnHide nicht ver
ndert werden=Aus einem sichtbaren Fenster kann kein modales gemacht werden.Eigenschaft %s au
%s.Seek nicht implementiert-Operation f
ssigA%s befindet sich nicht in einer Gruppe f
Eigenschaft %s existiert nicht.
ltige Operation f
ltiger Dateiname - %s
ltiges Stream-Format(''%s'' ist kein g
r '%s'&Kapazit
pft (%d)#Zu viele Eintr
ge in der Liste (%d)*Listenindex
berschreitet das Maximum (%d)BExpandieren des Speicher-Stream wegen Speichermangel nicht m
glich Fehler beim Lesen von %s%s%s: %s
r '%s'!Ressource %s wurde nicht gefunden
r '%s' nicht gefunden%%s kann nicht zu %s zugewiesen werden,Bits-Index au
ffneten Ressourcen-Stream kann nicht geschrieben werdenQCheckSynchronize wurde vom Thread $%x aufgerufen, der NICHT der Haupt-Thread ist.
Klasse %s nicht gefunden/Klasse mit der Bezeichnung %s existiert bereits/Liste gestattet keine doppelten Eintr
ge ($0%x)3Komponente mit der Bezeichnung %s existiert bereits/In der Stringliste sind Duplikate nicht erlaubt)Datei "%s" kann nicht erstellt werden. %s'Datei %s kann nicht ge
ffnet werden. %s#In %s kann nicht geschrieben werden
Operation nicht unterst
Externe Exception %x$Auswertung von assert fehlgeschlagen
%s (%s, Zeile %d)
Abstrakter FehlerBZugriffsverletzung bei Adresse %p in Modul '%s'. %s von Adresse %p
Systemfehler. Code: %d.
%s:Ein Aufruf einer Betriebssystemfunktion ist fehlgeschlagen
7Format '%s' ung
r Format '%s'(Variant-Methodenaufruf nicht unterst
ltige Variant-Operation Ung
ltige NULL-Variant-Operation'Ung
ltige Variant-Operation (%s%.8x)
%sBVariante des Typs (%s) konnte nicht in Typ (%s) konvertiert werdenF
berlauf bei der Konvertierung einer Variante vom Typ (%s) in Typ (%s)
ltige Gleitkommaoperation
ltige Zeigeroperation
ltige Typumwandlung4Zugriffsverletzung bei Adresse %p. %s von Adresse %p
Privilegierte Anweisung(Exception %s in Modul %s bei %p.
"'%s' ist kein g
ltiger Integerwert%'%s' ist kein g
'%s' ist kein g
'%s' ist keine g
ltige Uhrzeit0'%s' ist keine g
E/A-Fehler %d
spbuddyfinal.exe_3704_rwx_03631000_0019A000:
kernel32.dll
Windows
MSWHEEL_ROLLMSG
MSH_WHEELSUPPORT_MSG
MSH_SCROLL_LINES_MSG
$*@@@*$@@@$ *@@* $@@($*)@-$*@@$-*@@$*-@@(*$)@-*$@@*-$@@*$-@@-* $@-$ *@* $-@$ *-@$ -*@*- $@($ *)(* $)
oleaut32.dll
EVariantBadIndexError
ssShift
htKeyword
EInvalidOperation
u%CNu
%s_%d
EInvalidGraphicOperation
%s%s (*.%s)|*.%2:s
%s*.%s
%s (%s)|%1:s|%s
USER32.DLL
comctl32.dll
poPortrait
windows
uxtheme.dll
%s%s%s%s%s%s%s%s%s%s
Proportional
MAPI32.DLL
OnKeyDown`Oi
OnKeyPress
OnKeyUp8Ni
RICHED32.DLL
PasswordChar
ssHorizontal
OnKeyUp4/g
OnKeyUp
IE(AL("%s",4),"AL(\"%0:s\",3)","JK(\"%1:s\",\"%0:s\")")
JumpID("","%s")
ssHotTrack
TWindowState
poProportional
TWMKey
KeyPreview
WindowState8
System\CurrentControlSet\Control\Keyboard Layouts\%.8x
vcltest3.dll
User32.dll
AutoHotkeys
AutoHotkeysT
TKeyEvent
TKeyPressEvent
HelpKeyword
crSQLWait
%s (%s)
imm32.dll
Uh%fj
00110101
0100111
0001100
0001000
0010111
0000011
0000100
0101000
0101011
0010011
0100100
0011000
00000010
00000011
00011010
00011011
00010010
00010011
00010100
00010101
00010110
00010111
00101000
00101001
00101010
00101011
00101100
00101101
00000100
00000101
00001010
00001011
01010010
01010011
01010100
01010101
00100100
00100101
01011000
01011001
01011010
01011011
01001010
01001011
00110010
00110011
00110100
0000110111
0000101
0000111
00000111
000011000
0000010111
0000011000
0000001000
00001100111
00001101000
00001101100
00000110111
00000101000
00000010111
00000011000
000011001010
000011001011
000011001100
000011001101
000001101000
000001101001
000001101010
000001101011
000011010010
000011010011
000011010100
000011010101
000011010110
000011010111
000001101100
000001101101
000011011010
000011011011
000001010100
000001010101
000001010110
000001010111
000001100100
000001100101
000001010010
000001010011
000000100100
000000110111
000000111000
000000100111
000000101000
000001011000
000001011001
000000101011
000000101100
000001011010
000001100110
000001100111
0110111
00110110
00110111
01100100
01100101
01101000
01100111
011001100
011001101
011010010
011010011
011010100
011010101
011010110
011010111
011011000
011011001
011011010
011011011
010011000
010011001
010011010
010011011
00000001000
00000001100
00000001101
000000010010
000000010011
000000010100
000000010101
000000010110
000000010111
000000011100
000000011101
000000011110
000000011111
0000001111
000011001000
000011001001
000001011011
000000110011
000000110100
000000110101
0000001101100
0000001101101
0000001001010
0000001001011
0000001001100
0000001001101
0000001110010
0000001110011
0000001110100
0000001110101
0000001110110
0000001110111
0000001010010
0000001010011
0000001010100
0000001010101
0000001011010
0000001011011
0000001100100
0000001100101
1.2.3
Invalid ZStream operation!
Windows-932
Windows-949
EUnsupportedGraphics
Keywords
TgtExportInterface
TgtExportInterface
gtXportIntf
TMonochromeLookup
ole32.dll
Webdings
/FontBBox [%d %d %d %d]
Uh.Oo
OwnerPassword
UserPassword
RC4: Invalid key length
lblKeywords
edKeywords
edPort
edPasswordD
lblPasswordP
edKeyPress
edPagesKeyPress
edSourceDPIKeyPress
hXXp://VVV.gnostice.com
1 0 0 1 2
<rdf:RDF xmlns:rdf='hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#'
xmlns:iX='hXXp://ns.adobe.com/iX/1.0/'>
hXXp://ns.adobe.com/pdf/1.3/
hXXp://ns.adobe.com/xap/1.0/
hXXp://ns.adobe.com/xap/1.0/bj/
hXXp://ns.adobe.com/xap/1.0/rights/
0000010
lblOwnerPassword|
lblConfirmOwnerPassword
lblUserPassword
lblConfirmUserPassword
edOwnerPassword
edConfirmOwnerPassword
edUserPassword
edConfirmUserPassword
edConfirmPasswordExit
[8 4 2 4]0
[8 4 2 4 2 8]0
%s %s %s %s y
%s %s %s %s %s %s c
%.10d %.5d %s
/FontBBox[%d %d %d %d]
Printing System 4.0.1
/Keywords <
(%s) Tj
%s %s %s %s %s %s Tm
/F%d %d Tf
Portable Network Graphics
Image file %s not found.
Can't load image file %s.
GdiPlus.dll
GdiplusShutdown
1.1.3
Portable Network Graphics format handler error%s%s
Unknown Graphics Operation Code
Invalid Interlace Pass
TGif: %s
http:
htPrintMonochromeBlack
OnKeyDown
OnKeyUp`Oi
.HTML
.JPEG
password
Uh.Fv
3333333
TUrlTarget
HttpEq
Y<%u&
.tmHTML2PDFLastError]
This function requires NeoBook 4.0.9 or higher.
deflate 1.2.3 Copyright 1995-2005 Jean-loup Gailly
()<>[]{}/%
inflate 1.2.3 Copyright 1995-2005 Mark Adler
deflate 1.1.3 Copyright 1995-1998 Jean-loup Gailly
inflate 1.1.3 Copyright 1995-1998 Mark Adler
burlywood
HTTP-EQUIV
DBv}.Bv
333333333333333333
33333833
3333339
3333333333333338
:*"*"$3338
33333333
33333333333
3333333333338
33338?383
333333333333
:*3:"$3338
333333333333333
KWindows
UrlMon
.HTMLGif2
OURLSubs
Font.Charset
Font.Color
Font.Height
Font.Name
Font.Style
Brush.Color
Pen.Style
#hXXp://VVV.techmedia-plugins.com.br
Picture.Data
DXK.HR
Lines.Strings
ImageSettings.SourceDPI
ImageSettings.OutputImageFormat
Page.Width
Page.Height
Page.BinNumber
Preferences.OpenAfterCreate
Preferences.ShowSetupDialog
The object specified here must be of type Rectangle. Attaching controls to other types of objects is not recommended. This action requires NeoBook version 4.0.9 or higher.
Glyph.Data
HorzScrollBar.Visible
VertScrollBar.Visible
Keywords:
Port #:
lblPassword
Password:
edPassword
Items.Strings
lblOwnerPassword
Owner Password:
Confirm Owner Password:
User Password:
Confirm User Password:
GetCPInfo
RegOpenKeyExA
RegCloseKey
SetViewportOrgEx
GetViewportExtEx
ShellExecuteA
UnhookWindowsHookEx
SetWindowsHookExA
MsgWaitForMultipleObjects
MapVirtualKeyA
LoadKeyboardLayoutA
GetKeyboardState
GetKeyboardLayoutList
GetKeyboardLayout
GetKeyState
GetKeyNameTextA
EnumWindows
EnumThreadWindows
ActivateKeyboardLayout
GetKeyboardType
)%%$$&&$&)
)%%%$$&&$%&)
)%%$$"!&
)%%$"!!&&$#!&
#%)%%%%$$$"!*(&&$#&&%
)%%%$$&&$''&&
)%%%$$"!$%"&&$&)
)%%%$$"!$%"&&$&)^
)%%$$"!$%"&&$&&
)%%$$"!$%"&&$&)
)%%%$$"!$%"&&$&'
)!%'%%%%$$"!$%"(&&$&(
)#%%$$"!$%"#&?
38000=344
*)(, *))
(6)3)5!8
;VVÎ
<6J7.7.7'
7.7.7)0
,"%"Q%%f"%O!"z
=:,:,:,:,:,
&$&'$"%"!'((,,$)!!('&
.idata
.edata
P.reloc
P.rsrc
%"Q%%f
'((,,$)!!(<
?P.re
<%ShortDate%>
<%ShortTime%>
<%Creator%>
<%Subject%>
Scan line index out of rangeGInvalid Portable Graphics Network image, it has an invalid file header./The chunk index especified is out of the range.2The chunk class index especified is out of range.1Can't read the PNG image, it has corrupted data. \This PNG image is invalid, the IHDR chunk is either not present or it isn't the first chunk.CThe current image being loaded has no data and could not be loaded.6The current image being loaded has an invalid palette!>Could not read the image because it has an unknown color type.MThe image could not be loaded because it uses an unknown set of filter types.*The image has an unknown interlace method.\The currently being loaded image contains critical(s) chunk(s) not reconized by the decoder.>The current image requeries a palette but it is not avaliable.^Can not get transparency information because the current image color type is not RGB (value 3)
The file being readed is not a valid "Portable Network Graphics" image because it contains an invalid header. This file may be corruped, try obtaining it again.nThis "Portable Network Graphics" image is not supported or it might be invalid.
This "Portable Network Graphics" image is not supported because either it's width or height exceeds the maximum size, which is 65535 pixels length.
There is no such palette entry.dThis "Portable Network Graphics" image contains an unknown critical part which could not be decoded.pThis "Portable Network Graphics" image is encoded with an unknown compression scheme which could not be decoded.cThis "Portable Network Graphics" image uses an unknown interlace scheme which could not be decoded.-The chunks must be compatible to be assigned.jThis "Portable Network Graphics" image is invalid because the decoder found an unexpected end of the file.8This "Portable Network Graphics" image contains no data.oSome operation could not be performed because the system is out of resources. Close some windows and try again.OThis operation is not valid because the current image contains no valid header.4The new size provided for image resizing is invalid.úiled to allocate memory for GIF DIB Failed to create DIB from Bitmap
OLE error %.8x.Method '%s' not supported by automation object/Variant does not reference an automation object7Dispatch methods do not support more than 64 parametersjThis "Portable Network Graphics" image is not valid because it contains invalid pieces of data (crc error)yThe "Portable Network Graphics" image could not be loaded because one of its main piece of data (ihdr) might be corruptedUThis "Portable Network Graphics" image is invalid because it has missing image parts.[Could not decompress the image because it contains invalid compressed data.
Description: BThe "Portable Network Graphics" image contains an invalid palette.
'Object type not supported for operation
Unsupported PixelFormat
Invalid stream operation
Unsupported GIF version
Invalid extension introducerúiled to allocate memory for GIF DIB
Invalid Image trailerAInternal error: Extension Instance does not match Extension Label,Unsupported Application Extension block size
hXXp://
PTF://
Unknown Graphics format,The PDF Engine does not support image format
Embed Used TrueType Fonts0The %s Passwords do not match.
Portrait
Failed to Save StreamE%d is an invalid PageIndex value. PageIndex must be between 0 and %d
No help keyword specified.&Cannot change the size of a JPEG image
JPEG error #%d
Failed to clear tab control Failed to delete tab at index %d"Failed to retrieve tab at index %d Failed to get object at index %d"Failed to set tab "%s" at index %d Failed to set object at index %d
Error setting %s.Count8Listbox (%s) style must be virtual in order to set Count"Unable to find a Table of Contents
No help found for %s#No context-sensitive help installed$No topic-based help system installed
Unable to insert a line Clipboard does not support Icons
Text exceeds memo capacity.There is no default printer currently selected/Menu '%s' is already being used by another form
(%dx%d)
%s on %s@GroupIndex cannot be less than a previous menu item's GroupIndex5Cannot create form. No MDI forms are currently active*A control cannot have itself as its parent
Error creating window class Cannot focus a disabled or invisible window!Control '%s' has no parent window
%s property out of range
Scan line index out of range!Cannot change the size of an icon$Unknown picture file extension (.%s)
Unsupported clipboard format
List capacity out of bounds (%d)
List count out of bounds (%d)
List index out of bounds (%d) Out of memory while expanding memory stream
Error reading %s%s%s: %s
Resource %s not found
%s.Seek not implemented$Operation not allowed on sorted list$%s not in a class registration group
Property %s does not exist
Thread creation error: %s
Thread Error: %s (%d)0Tab position incompatible with current tab style
Ancestor for '%s' not found
Cannot assign a %s to a %s
Bits index out of range*Can't write to a read-only resource streamECheckSynchronize called from thread $%x, which is NOT the main thread
Class %s not found
A class named %s already exists%List does not allow duplicates ($0%x)#A component named %s already exists%String list does not allow duplicates
Cannot create file "%s". %s
Cannot open file "%s". %s
Invalid stream format$''%s'' is not a valid component name
External exception %x
Interface not supported
%s (%s, line %d)
Abstract Error?Access violation at address %p in module '%s'. %s of address %p
System Error. Code: %d.
"Variant method calls not supported
Invalid variant operation
Invalid NULL variant operation%Invalid variant operation (%s%.8x)
%s5Could not convert variant of type (%s) into type (%s)=Overflow while converting variant of type (%s) into type (%s)
Operation not supported
Invalid floating point operation
Invalid pointer operation
Invalid class typecast0Access violation at address %p. %s of address %p
Operation aborted(Exception %s in module %s at %p.
Application Error1Format '%s' invalid or incompatible with argument
No argument for format '%s'
!'%s' is not a valid integer value('%s' is not a valid floating point value
I/O error %d
Remove it with Ad-Aware
- Click (here) to download and install Ad-Aware Free Antivirus.
- Update the definition files.
- Run a full scan of your computer.
Manual removal*
- Terminate malicious process(es) (How to End a Process With the Task Manager):
%original file name%.exe:3600
- Delete the original Adware file.
- Delete or disinfect the following files created/modified by the Adware:
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\RarSFX0\spbuddyfinal.exe (13142 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\RarSFX0\spbuddyfinal.ini (96 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\RarSFX0\spbuddyfinal.bin (15 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\RarSFX0\spbuddyfinal.ico (5345 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\RarSFX0\spbuddyfinal.lib (122 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\RarSFX0\spbuddyfinal.bgr (131 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F89.nbr (5323 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F89.nbp (2686 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\sp22268.tmp (941 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\spbuddyfinal.jpg (1832 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8A.nbr (9400 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8A.nbp (1035 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8D.nbr (9619 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8E.nbr (3789 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8B.nbp (6934 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8B.nbr (5327 bytes)
C:\Users\"%CurrentUserName%"\AppData\Local\Temp\86F45F8C.nbr (5348 bytes) - Reboot the computer.
*Manual removal may cause unexpected system behaviour and should be performed at your own risk.