L!This program cannot be run in DOS mode.
        
            ggg{g9{gEGgEGgg2gyhgRxg}agRichg
        
            .rdata
        
             .reloc
        
            U@SVWEj@P
        
            VWh\p@
        
            3|$ T$
        
            SUW=P`@
        
            RUT$$UT$
        
            SUV5T`@
        
            3|$lfD$
        
            3IQL$pRQ
        
            SU_^][\
        
            f8MZuCH<
        
            WL$$PT$
        
            QRUD$ 
        
            T$(;u4f|(
        
            tI)ft$
        
            UL$$D(
        
             SUVWD$
        
            _^][ +PU
        
            T$0D$$RL$8PQU2T$4
        
            D$4RVPL$$L$$QVh@
        
            F;j8rVh@
        
            _^][ h@
        
            t5SVh 
        
            v3WPD$
        
            .aonI(
        
            8=h(,IRWP,W9
        
            t4Ht Hh
        
            ,D$ P$7
        
            t3T$ j
        
            PL$(PQhDq@
        
            D$ Ph0@
        
            HtWHt+Hui@
        
            SVW3uu
        
            VVVVVE
        
            SUVWh0@
        
            3|$D$D
        
            +T$4T$4
        
            T$4hL@
        
            T$4hL@
        
            D$4hL@
        
            $t/3hH@
        
            VfL$ PT$ VR
        
            L$(fD$ 
        
            fD$"D$ PV
        
            3IQh0@
        
            L$,QS$@
        
            SSSh@4@
        
            SSSh@4@
        
             t"3;~
        
            SSSh0:@
        
            @t"3;~
        
            SSSh5@
        
            SSShP8@
        
            SSSh;@
        
            F;|SSSh<@
        
            t#SSSh<@
        
            SSSSShp=@
        
            SSSh<@
        
            SSSh >@
        
             t"3;~
        
            SSSh@C@
        
            @t"3;~
        
            SSSh@@
        
            SSShD@
        
            RPD$$D3"
        
            L$4h,@
        
            L$<PQj
        
            |$|L$|D$|
        
            L$<D$<@
        
            |$$D$(j
        
            RL$(T$ 
        
            RQT$ D$
        
            UVWD$p
        
            L$IL$M
        
            L$MD$D
        
            L$QfL$UL$W
        
            D$0PfL$6L$`D$a=h`@
        
            D$DPfD$
        
            |$hQt$ |$$fD$&
        
            fD$6fD$8
        
            t$t|$xfD$bT$`
        
            D$tT$|j P
        
            |$|fD$<
        
            L$8T$dj
        
            ([_^3]d
        
            SUD$HVPh
        
            U\$(3h@
        
            D$ D$$D$(h
        
            fD$,|@
        
            3;f\$.up=h`@
        
            T$(j(RD$8
        
            fD$*D$
        
            t_^]3[
        
            D$0SPV
        
            T$(SRV
        
            j5D$03D$ fD$ 
        
            D$$D$(D$,h@
        
            |$EfD$
        
            3\$Df9
        
            L$<L$@L$DL$HL$Li
        
            D44F;|f
        
            D$PT$H
        
            t$4|$Yl$L
        
            T$W\$Xf
        
            PD$XPQ
        
            QD$ fD$
        
            3|$ jx 
        
            RT$(h$@
        
            D$$QPS
        
            T$$PRV
        
            VW=d`@
        
            QD$$fD$
        
            3T$xSVW@
        
            3|$$h4@
        
            VPT$0VR
        
            L$ L$$
        
            T$(RL$,PT$PQR$
        
            k]_^3[
        
            3T$|SVW@
        
            3|$(h4@
        
            VPT$4VR
        
            RL$ fD$
        
            L$$L$(
        
            T$,RL$0P$
        
            ]_^3[D
        
            3|$!T$ f@
        
            L$ Ph@
        
            SU-d`@
        
            IT$,QRV
        
            r^][3_
        
            UVWhp@
        
            WD$$hp@
        
            |$$3f|$$j
        
            D$,QPh@
        
            QD$ fD$
        
            t_^]3[
        
            t_^]3[
        
            33SUVW|$$
        
            9|$ D$
        
            T$$u_^][
        
            C\$(\$
        
            /\$$G;
        
            _L$(][_
        
            3ANu[^
        
            AD$ AT$
        
            AD$0AT$
        
            AD$,AT$(
        
            T$,T$(
        
            F\$(D$
        
            T$(O:u
        
            T$,O:u
        
            T$0O:u
        
            WF8NTPQf~
        
            v{T$ j
        
            ;wmMt+Ut
        
            UV@WL$
        
            WVPUL$(
        
            (IuRUP
        
            |$,l$0
        
            H8PTQL$
        
            3|$8T$8D$
        
            PPD$4P$
        
            +0^[_]t
        
            T$,QRPD$ 
        
            9G4u"L$$;r
        
            Rj@QPD$ P
        
            PUW`D$
        
            G4QSUPR
        
            L$ ;D$(
        
            L$ PD$ 
        
            t{twSVWj
        
            L$$T$ QL$
        
            PQL$ D$
        
            RT$ PQR
        
            tFD$ L$
        
            RT$(PQRL$
        
            PUjh(b@
        
            hSVWe3
        
            EEP5 @
        
            EPEPEP
        
            0u>"u:Fu
        
            <"u>"u
        
            > vFuj
        
            YY3%xa@
        
            WSAIoctl
        
            wf+13)+
        
            w7f+~+~
        
            wfw&wf)r5
        
            wfw&wf)r=
        
            wfw&wf)r
        
            wfw&wf)r
        
            wfw&wf)r
        
            +<S[E3!
        
            GQ2yUBU"
        
            BtUJU"H
        
            UhO/D$8
        
            DnsFlushResolverCache
        
            dnsapi.dll
        
            \svchost.exe
        
            CreateProcessInternalA
        
            kernel32.dll
        
             > nul
        
             /C del 
        
            COMSPEC
        
            JiangMin
        
            InternetReadFile
        
            InternetCloseHandle
        
            InternetOpenUrlA
        
            InternetOpenA
        
            wininet.dll
        
            WinSta0\Default
        
            GetUrlCacheEntryInfoA
        
            URLDownloadToCacheFileA
        
            urlmon.dll
        
            ShellExecuteA
        
            Shell32.dll
        
            L!This program cannot be run in DOS mode.
        
            tEEP5 @
        
            4UUUUUUfZ
        
            UURichU
        
            h.rdata
        
            H.data
        
            .reloc
        
            N<"u>"u
        
            t';Ms"
        
            1E3PeuEEEEd
        
            Y__^[]Q
        
            E_^[]E
        
            TSVWT$
        
            URPQQh
        
            t.T$4t
        
            ;v!4v\
        
            UVWS33333[_^]
        
            33333USVWj
        
            _^[]Ul$
        
            [RepairSSDT] Unloaded
        
            [RepairSSDT] IRP_MJ_CREATE
        
            [RepairSSDT] IRP_MJ_CLOSE
        
            [DispatchIoctl]
        
            rtyutjgkjguityutuczxcvasdfawerrrwrw 0x%x
        
            assdfasdfhjlkhjklyuioyuiodwe 0x%x
        
            [RepairSSDT] DriverEntry
        
            c:\winddk\demo\repairssdt\bin\i386\RepairSSDT.pdb
        
            DbgPrint
        
            IoDeleteDevice
        
            IoDeleteSymbolicLink
        
            RtlInitUnicodeString
        
            IofCompleteRequest
        
            KeServiceDescriptorTable
        
            IoCreateSymbolicLink
        
            IoIsWdmVersionAvailable
        
            IoCreateDevice
        
            KeTickCount
        
            ntoskrnl.exe
        
            RtlUnwind
        
            KeBugCheckEx
        
            4444444
        
            5-5[5k55
        
            6'6/666=6D6]6i6~666666666R70888899
        
            >$>)>2>9>
        
            No fixups!
        
            relo type %d found at .%X
        
            strange NtQuerySystemInformation()!
        
            Possibly KiServiceLimit==%08X
        
            0x%x 0x%08X
        
            &KiServiceTable==%08X
        
            Dumping 'old' ServiceTable:
        
            Can't find KiServiceTable...
        
            Can't find KeServiceDescriptorTable
        
            KeServiceDescriptorTable
        
            Failed to load! LastError=%i
        
            ntdll.dll
        
            NtQuerySystemInformation
        
            \\.\Dark2118
        
            Start beep service ok
        
            PCIDump
        
            Load driver failed!
        
            \drivers\PCIDump.sys
        
            a,>g7{]
        
            tBU}mv
        
            $!IoFo
        
            QM#bM,
        
            UU5'uwb
        
            *%I:ZJF|!
        
            :#}l(Y
        
            RX^g}Xo
        
            N5Au\kt
        
            R[VY6Sko+vu>8,
        
            p4Sv{H,"i_w/4vkmon.dll
        
            Description
        
            SYSTEM\CurrentControlSet\Services\%s
        
            SeShutdownPrivilege
        
            Vip201101
        
            %s SP%d
        
            Win 98
        
            Win 95
        
            Win NT
        
            Win 2000
        
            Win XP
        
            Win 2003
        
            Win Vista
        
            Find CPU Error
        
            ProcessorNameString
        
            HARDWARE\DESCRIPTION\System\CentralProcessor\0
        
            %u.193.%d.%d
        
            #%d<<<<<I@C<<<<<%s!
        
            GET %s HTTP/1.1
        
            Accept: */*
        
            Accept-Language: zh-cn
        
            Accept-Encoding: gzip, deflate
        
            Host: %s:%d
        
            Cache-Control: no-cache
        
            Pragma: no-cache
        
            User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows 5.1)
        
            Referer: http://%s
        
            Connection: Keep-Alive
        
            http://
        
            GET / HTTP/1.1
        
            Host: %s:%d
        
            Pragma: no-cache
        
            Connection: Keep-Alive
        
            Cache-Control: no-cache
        
            Referer: http://www.google.com
        
            xq1986
        
            Kernel32.dll
        
            VirtualAllocEx
        
            ZwUnmapViewOfSection
        
            \Program Files\Internet Explorer\iexplore.exe
        
            \explorer.exe
        
            \Program Files\Internet Explorer\
        
            advapi32.dll
        
            RegOpenKeyExA
        
            RegQueryValueExA
        
            DeleteService
        
            CreateServiceA
        
            RegOpenKeyA
        
            RegSetValueExA
        
            RegCloseKey
        
            RegisterServiceCtrlHandlerA
        
            SetServiceStatus
        
            StartServiceCtrlDispatcherA
        
            ControlService
        
            OpenSCManagerA
        
            OpenServiceA
        
            StartServiceA
        
            CloseServiceHandle
        
            OpenProcessToken
        
            LookupPrivilegeValueA
        
            AdjustTokenPrivileges
        
            kernel32.dll
        
            FreeLibrary
        
            GetProcAddress
        
            LoadLibraryA
        
            GetSystemDirectoryA
        
            GetStartupInfoA
        
            lstrcpy
        
            GetTickCount
        
            ResumeThread
        
            CreateProcessA
        
            SetThreadPriority
        
            GetCurrentThread
        
            SetPriorityClass
        
            GetCurrentProcess
        
            lstrcat
        
            GetShortPathNameA
        
            GetModuleFileNameA
        
            GetEnvironmentVariableA
        
            CloseHandle
        
            TerminateProcess
        
            CreateFileA
        
            CopyFileA
        
            GetLastError
        
            DeviceIoControl
        
            GlobalFree
        
            LoadLibraryExA
        
            GlobalAlloc
        
            GetModuleHandleA
        
            WriteFile
        
            ReadFile
        
            GetFileSize
        
            SetFileAttributesA
        
            ExitProcess
        
            lstrcmpi
        
            SetErrorMode
        
            lstrlen
        
            WaitForSingleObject
        
            CreateThread
        
            CreateMutexA
        
            DeleteFileA
        
            ReleaseMutex
        
            OpenMutexA
        
            InterlockedExchange
        
            OutputDebugStringA
        
            GetSystemDefaultUILanguage
        
            GlobalMemoryStatusEx
        
            GetCurrentProcessId
        
            VirtualAlloc
        
            VirtualQueryEx
        
            ReadProcessMemory
        
            GetThreadContext
        
            SetThreadContext
        
            WriteProcessMemory
        
            VirtualProtectEx
        
            VirtualFree
        
            GetWindowsDirectoryA
        
            GetVersionExA
        
            msvcrt.dll
        
            _ui64toa
        
            strcspn
        
            _except_handler3
        
            sprintf
        
            memmove
        
            _XcptFilter
        
            _acmdln
        
            __getmainargs
        
            _initterm
        
            __setusermatherr
        
            _adjust_fdiv
        
            __p__commode
        
            __p__fmode
        
            __set_app_type
        
            _controlfp
        
            _strlwr
        
            _strnicmp
        
            __CxxFrameHandler
        
            ??3@YAXPAX@Z
        
            strncpy
        
            ??2@YAPAXI@Z
        
            strstr
        
            printf
        
            shell32.dll
        
            ShellExecuteA
        
            shlwapi.dll
        
            SHDeleteKeyA
        
            user32.dll
        
            ExitWindowsEx
        
            wsprintfA
        
            wvsprintfA
        
            ws2_32.dll
        
            WSASocketA
        
            sendto
        
            inet_addr
        
            setsockopt
        
            socket
        
            connect
        
            select
        
            __WSAFDIsSet
        
            shutdown
        
            WSAIoctl
        
            gethostbyname
        
            closesocket
        
            WSAStartup
        
            h<$`D$,
        
            h,``d$DD
        
            4$UPD$
        
            $d$ a`d$$5t$
        
            a`t$ $
        
            h%fD$@
        
            D$Lh4t$PT
        
            :`d$(``D$
        
            a`d$ 5
        
            l $>Bx.z@s
        
            \ D o s D e v i c e s \ D a r k 2 1 1 8 
        
            \ D o s D e v i c e s \ G l o b a l \ D a r k 2 1 1 8 
        
            \ D e v i c e \ d e v R e p a i r S S D T