Sample details: 178e1f1e597f712ba81c9e9d21c968f9 --

Hashes
MD5: 178e1f1e597f712ba81c9e9d21c968f9
SHA1: 1a1b6a1352ee2af44dfd4e514ee6eb1d3291f444
SHA256: 1b0f25b9bf0c76f9a52d3f5952f47b203e7112c72f8234d51155442bddddd42f
SSDEEP: 3072:lUnLXFpHGTliTqGVuAgsEcpOug6jcuo3GpmFfgF9E5i7jr8BUveOZoMj/VJH8Gcu:qnRJ1VwsEccuBcu9pmAL7UBU1BDcot
Details
File Type: PE32
Yara Hits
YRP/Armadillo_v171 | YRP/Microsoft_Visual_Cpp_v60 | YRP/Microsoft_Visual_Cpp_v50v60_MFC_additional | YRP/Microsoft_Visual_Cpp_50 | YRP/Microsoft_Visual_Cpp_v50v60_MFC | YRP/Armadillo_v171_additional | YRP/Armadillo_v4x | YRP/Microsoft_Visual_Cpp | YRP/IsPE32 | YRP/IsWindowsGUI | YRP/HasRichSignature | YRP/domain | YRP/url | YRP/contentis_base64 | YRP/screenshot | YRP/keylogger | YRP/win_registry | YRP/win_private_profile | YRP/win_files_operation | YRP/win_hook | YRP/Str_Win32_Winsock2_Library |
Source
http://securedownload2.duckdns.org:7373/docs/WinMTRA.exe
http://securedownload2.duckdns.org:7373/docs/WinMTRA.exe
http://safedownload.duckdns.org:1818/docs/WinMTRA.exe
http://ssllinks.duckdns.org:1818/docs/WinMTRA.exe
Strings
		!This program cannot be run in DOS mode.
/ARich
`.rdata
@.data
L$0]_^[d
T$(QUURS
B ;B$~
T$FPQR
D$bQRP
HtYHt6H
9G4_^d
9x u	f
F8+N,+F0
N8+F,+N0
9u ^t	
9^@t53
~LWhH"C
V@W@PQ
9^Ht}3
9~@St99~8~
VVVPQR
t*Ht"Ht
Zt(Ht Ht
@u+;t$
QQSVWd
t.;t$$t(
uRFGHt
sO;>|C;~
HHtpHHtl
VC20XC00U
btHHt.
QQSVWj
>:uNFV
>:u#FV
SS@SSPVSS
t#SSUP
t$$VSS
_^][YY
PPPPPPPP
"WWSh,
PPPPPPPP
PPPPPPPP
QQSUVWj
_^][YY
+ttHHtd
VWuBh@ C
tPh$ C
HSVHWtgHHtF
u.h\ C
t/WWUPj
QQSVW3
D$0f9D$,t
T$ PQR
SVWUu	3
SVWUu	3
SVWUu	3
\$XRSVP
T$XPRV
T$ )L$$j
L$4+D$$
L$,+D$ Q+
SVWu	3
D$49D$ u
tSf@f=
t$4SWV
\$4USWVj
l$8USWVj
\$8USWV
\$4USWVj
\$4USWVP
L$0QSWPV
D$,+D$$PSQRV
T$(QRV
T$$PQRV
D$,+D$$PQRV
\$<PQSV
D$8+D$0+D$(
D$$+D$
L$DPQSV
;D$0u,
D$8QRPV
D$D+D$<PQRV
D$HSQRPVW
T$dPQRV
L$TPQh
T$lQRV
D$LQPV
T$lQRV
T$dPQRV
D$P+D$H+D$@
t$dSWV
\$dPSWVj
\$dPSWVj
\$dPSWVj
D$h]_^[
t$PWUj
D$H+D$@
D$$UPS
\$,PWVSVt
|$4QRVW
T$@PQVWRW
T$@PQVWRW
L$8PQVWSW
T$@QPVWRW
L$(9L$
D$<_^[
t$ WUj
t$XSWV
\$XPSWVj
\$XPSWVj
D$\_^[
F\jLSP
u$SShe
tBShT8B
PQQQQQ
tBShT8B
t	9p$u
u*9] t
PPPPhd
tvWWWWU
F,_^][
t	9A8u
(wqt\HHtS
t>Ht Ht
hWj@_;
QSUVWj
n0SSSSU
_SSSSU
Ph_^][Y
tD9_Pt?
tBShT8B
Ht#HHt
@t4Ht1Ht_Ht
tBShT8B
tBShT8B
^$_^[]
j3PPPPP
RSSSSS
QRRRRR
<A|2<Z
<A|@<Z
{D+S8+{<
CX+C`+E
C\+Cd+E
Nh+V8jB
9C|t	3
t^HtF-
9^pu"3
jWWWWWW
+tJHt:Ht*
E 9]$u
u4SSSS
tP9^xtK
^XX_^[
PWVWWW
VVUSVV
t$ PUSVV
VVUSVV
N(;N,r
tq9w(tlSj
9^0u&j
F09^4u*j
F49^8u&j
^,_^][
Hostname
Loss %
CDialog
MS Sans Serif
MS Shell Dlg
CTempImageList
CImageList
CListCtrl
msctls_statusbar32
CComboBox
CButton
CStatic
CTempWnd
AfxOldWndProc423
AfxWnd42s
AfxControlBar42s
AfxMDIFrame42s
AfxFrameOrView42s
AfxOleControl42s
GetMonitorInfoA
EnumDisplayMonitors
MonitorFromPoint
MonitorFromRect
MonitorFromWindow
GetSystemMetrics
USER32
DISPLAY
commctrl_DragListMsg
InitCommonControlsEx
COMCTL32.DLL
CCmdTarget
CStatusBar
CTempGdiObject
CTempDC
CGdiObject
CPaintDC
CWindowDC
CClientDC
CUserException
CResourceException
GetLayout
GDI32.DLL
SetLayout
CFileDialog
CWinApp
PreviewPages
Settings
CWinThread
CObject
combobox
CNotSupportedException
CMemoryException
CException
System
CMapPtrToPtr
CTempMenu
CControlBar
MSWHEEL_ROLLMSG
CPtrList
commdlg_SetRGBColor
commdlg_help
commdlg_ColorOK
commdlg_FileNameOK
commdlg_ShareViolation
commdlg_LBSelChangedNotify
software
CMemFile
CFileException
CToolTipCtrl
tooltips_class32
COleDispatchException
RichEdit Text and Objects
Rich Text Format
FileNameW
FileName
Link Source Descriptor
Object Descriptor
Link Source
Embed Source
Embedded Object
ObjectLink
OwnerLink
Native
CMapStringToPtr
Small Fonts
Terminal
COleException
COleBusyDialog
COleDialog
%2\CLSID
%2\Insertable
%2\protocol\StdFileEditing\verb\0
%2\protocol\StdFileEditing\server
CLSID\%1
CLSID\%1\ProgID
CLSID\%1\InprocHandler32
ole32.dll
CLSID\%1\LocalServer32
CLSID\%1\Verb\0
&Edit,0,2
CLSID\%1\Verb\1
&Open,0,2
CLSID\%1\Insertable
CLSID\%1\AuxUserType\2
CLSID\%1\AuxUserType\3
CLSID\%1\DefaultIcon
CLSID\%1\MiscStatus
CLSID\%1\InProcServer32
CLSID\%1\DocObject
%2\DocObject
CLSID\%1\Printable
CLSID\%1\DefaultExtension
%9, %8
?H:mm:ss
dddd, MMMM dd, yyyy
M/d/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
GAIsProcessorFeaturePresent
KERNEL32
`h````
ppxxxx
(null)
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
runtime error 
TLOSS error
SING error
DOMAIN error
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
abnormal program termination
- not enough space for environment
- not enough space for arguments
- floating point not loaded
Microsoft Visual C++ Runtime Library
Runtime Error!
Program: 
<program name unknown>
_hypot
GetLastActivePopup
GetActiveWindow
MessageBoxA
user32.dll
1#QNAN
1#SNAN
Button
ListBox
ComboBox
Static
ComboLBox
+ LOOP 
Dw=|:s
GlobalUnlock
GlobalLock
GlobalAlloc
KERNEL32.DLL
LoadIconA
OffsetRect
GetWindowRect
GetWindow
GetClientRect
SendMessageA
IsWindow
DrawIcon
GetSystemMetrics
IsIconic
CloseClipboard
SetClipboardData
EmptyClipboard
OpenClipboard
EnableWindow
USER32.dll
RegCloseKey
RegQueryValueExA
RegSetValueExA
RegCreateKeyExA
RegOpenKeyExA
RegDeleteValueA
ADVAPI32.dll
ImageList_Destroy
COMCTL32.dll
oledlg.dll
OLEPRO32.DLL
WSOCK32.dll
LoadResource
FindResourceA
LockResource
GlobalFree
lstrlenA
GetProcAddress
GetModuleHandleA
lstrcpyA
GlobalDeleteAtom
GlobalFindAtomA
GlobalAddAtomA
lstrcmpiA
GlobalGetAtomNameA
GetCurrentThreadId
lstrcatA
GetVersion
FreeLibrary
LoadLibraryA
InterlockedDecrement
SetLastError
MulDiv
GetModuleFileNameA
InterlockedIncrement
WideCharToMultiByte
MultiByteToWideChar
LocalFree
FormatMessageA
lstrcpynA
GetCurrentThread
lstrcmpA
CloseHandle
ResumeThread
GlobalFlags
GetLastError
SizeofResource
InitializeCriticalSection
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
LocalAlloc
TlsAlloc
GlobalHandle
TlsFree
GlobalReAlloc
TlsSetValue
LocalReAlloc
TlsGetValue
GetProcessVersion
GetCPInfo
GetOEMCP
WritePrivateProfileStringA
GetThreadLocale
DuplicateHandle
GetCurrentProcess
CreateFileA
ReadFile
WriteFile
SetFilePointer
FlushFileBuffers
LockFile
UnlockFile
SetEndOfFile
FindClose
FindFirstFileA
GetVolumeInformationA
GetFullPathNameA
GetFileAttributesA
GetFileSize
GetFileTime
SetErrorMode
FileTimeToSystemTime
FileTimeToLocalFileTime
GetTickCount
RtlUnwind
CreateThread
ExitThread
GetTimeZoneInformation
GetSystemTimeAsFileTime
ExitProcess
TerminateProcess
GetStartupInfoA
GetCommandLineA
RaiseException
HeapFree
HeapAlloc
HeapReAlloc
HeapSize
GetACP
UnhandledExceptionFilter
FreeEnvironmentStringsA
FreeEnvironmentStringsW
GetEnvironmentStrings
GetEnvironmentStringsW
SetHandleCount
GetStdHandle
GetFileType
HeapDestroy
HeapCreate
VirtualFree
SetUnhandledExceptionFilter
VirtualAlloc
IsBadWritePtr
LCMapStringA
LCMapStringW
GetStringTypeA
GetStringTypeW
IsBadReadPtr
IsBadCodePtr
SetStdHandle
CompareStringA
CompareStringW
SetEnvironmentVariableA
GetProfileStringA
IsWindowEnabled
GetDlgItem
GetWindowLongA
GetParent
DestroyWindow
CreateDialogIndirectParamA
SetActiveWindow
GetActiveWindow
EndDialog
GetNextDlgTabItem
ReleaseDC
CopyRect
GetWindowPlacement
SystemParametersInfoA
IntersectRect
RegisterWindowMessageA
SetWindowPos
SetWindowLongA
SetForegroundWindow
GetForegroundWindow
GetLastActivePopup
GetMessagePos
GetMessageTime
RemovePropA
CallWindowProcA
GetPropA
UnhookWindowsHookEx
SetPropA
GetClassLongA
CallNextHookEx
SetWindowsHookExA
CreateWindowExA
DefWindowProcA
GetKeyState
GetDlgCtrlID
GetWindowTextA
GetWindowTextLengthA
GetMenuItemID
GetSubMenu
GetMenuItemCount
GetMenu
RegisterClassA
GetClassInfoA
wsprintfA
WinHelpA
GetCapture
IsChild
MessageBoxA
GetTopWindow
IsWindowVisible
EndDeferWindowPos
BeginDeferWindowPos
DeferWindowPos
EqualRect
ScreenToClient
AdjustWindowRectEx
SetFocus
GetFocus
DispatchMessageA
PeekMessageA
GetSysColor
MapWindowPoints
SendDlgItemMessageA
UpdateWindow
PostMessageA
IsDialogMessageA
SetWindowTextA
MoveWindow
ShowWindow
EnableMenuItem
CheckMenuItem
SetMenuItemBitmaps
ModifyMenuA
GetMenuState
LoadBitmapA
GetMenuCheckMarkDimensions
SetRectEmpty
IsZoomed
ClientToScreen
GetWindowDC
BeginPaint
EndPaint
TabbedTextOutA
DrawTextA
GrayStringA
PostQuitMessage
SetCursor
GetCursorPos
ValidateRect
TranslateMessage
GetMessageA
SetWindowContextHelpId
MapDialogRect
KillTimer
SetTimer
GetClassNameA
PtInRect
GetDesktopWindow
InflateRect
LoadCursorA
GetSysColorBrush
DestroyMenu
ReleaseCapture
InvalidateRect
WindowFromPoint
SetRect
LoadStringA
SetCapture
CharNextA
CopyAcceleratorTableA
GetNextDlgGroupItem
MessageBeep
CharUpperA
GetDCEx
LockWindowUpdate
RegisterClipboardFormatA
SetParent
PostThreadMessageA
IsWindowUnicode
DefDlgProcA
DrawFocusRect
ExcludeUpdateRgn
ShowCaret
HideCaret
PatBlt
CreateRectRgnIndirect
GetClipBox
SetTextColor
SetBkColor
GetObjectA
CreateBitmap
GetTextExtentPoint32A
SelectObject
GetTextMetricsA
DeleteDC
SaveDC
RestoreDC
GetStockObject
SetBkMode
SetMapMode
SetViewportOrgEx
OffsetViewportOrgEx
SetViewportExtEx
ScaleViewportExtEx
SetWindowExtEx
ScaleWindowExtEx
SelectClipRgn
ExcludeClipRect
IntersectClipRect
DeleteObject
CreateRectRgn
GetDeviceCaps
GetViewportExtEx
GetWindowExtEx
CreateSolidBrush
CreatePatternBrush
PtVisible
RectVisible
TextOutA
ExtTextOutA
Escape
CreateFontIndirectA
GetMapMode
SetRectRgn
CombineRgn
DPtoLP
GetTextColor
GetBkColor
LPtoDP
BitBlt
CreateCompatibleDC
GetTextExtentPointA
CreateDIBitmap
GDI32.dll
ClosePrinter
DocumentPropertiesA
OpenPrinterA
WINSPOOL.DRV
GetSaveFileNameA
GetOpenFileNameA
GetFileTitleA
comdlg32.dll
SHELL32.dll
CLSIDFromProgID
CLSIDFromString
CoGetClassObject
StgOpenStorageOnILockBytes
StgCreateDocfileOnILockBytes
CreateILockBytesOnHGlobal
CoTaskMemFree
CoTaskMemAlloc
OleInitialize
OleUninitialize
CoFreeUnusedLibraries
CoRegisterMessageFilter
CoRevokeClassObject
OleFlushClipboard
OleIsCurrentClipboard
ole32.dll
OLEAUT32.dll
GetCurrentProcessId
UnregisterClassA
Error creating status bar
Host%d
Interval
UseDNS
MaxLRU
PingSize
Config
HomePage
http://WinMTR.sourceforge.net
License
GPL - GNU Public License
Version
WinMTR
Software
Host alive.
%d.%d.%d.%d
Double click on host name for more information.
No host specified!
|________________________________________________|______|______|______|______|______|______|
|%40s - %4d | %4d | %4d | %4d | %4d | %4d | %4d |
No response from host
|------------------------------------------------|------|------|------|------|------|------|
|                       Host              -   %%  | Sent | Recv | Best | Avrg | Wrst | Last |
|                                      WinMTR statistics                                   |
|------------------------------------------------------------------------------------------|
</table></body></html>
<tr><td>%s</td> <td>%4d</td> <td>%4d</td> <td>%4d</td> <td>%4d</td> <td>%4d</td> <td>%4d</td> <td>%4d</td></tr>
<tr><td>Host</td> <td>%%</td> <td>Sent</td> <td>Recv</td> <td>Best</td> <td>Avrg</td> <td>Wrst</td> <td>Last</td></tr>
<p align="center"> <table border="1" align="center">
<center><h2>WinMTR statistics</h2></center>
<html><head><title>WinMTR Statistics</title></head><body bgcolor="white">
Text Files (*.txt)|*.txt|All Files (*.*)|*.*||
HTML Files (*.htm, *.html)|*.htm;*.html|All Files (*.*)|*.*||
Unable to get raw socket!
Tracing route to %s...
Unable to resolve hostname.
Resolving host %s...
Unable to get local IP address.
localhost
File LICENSE.TXT not found
LICENSE.TXT
     --help, -h. Print this help.
     --numeric, -n. Do not resolve names.
     --maxLRU, -m VALUE. Set max hosts in LRU list.
     --size, -s VALUE. Set ping size.
     --interval, -i VALUE. Set ping interval.
     --host, -h HOST. Set hostname.
 Usage:
WinMTR - %s. %s
Copyleft @2000-2002, Vasile Laurentiu Stanimir (stanimir@cr.nivis.com)
numeric
maxLRU
interval
error setsockopt
ICMP_HOST_UNREACHABLE(%d)
Precedence cutoff in effect 
Host precedence violation
Communication administratively prohibited by filtering
Host unreachable for this type of service
Network unreachable for this type of service
Destination host administratively prohibited
Destination network administratively prohibited
Source host isolated
Destination host unknown
Destination network unknown
Source route failed
Fragmentation needed but the DF bit was set
Port unreachable
Protocol unreachable
Host Unreachable
Network Unreachable
.?AVCObject@@
.?AVCCmdTarget@@
.?AVCWnd@@
.?AVCDialog@@
.PAVCException@@
.?AVCRgn@@
.?AVCGdiObject@@
.?AVCListCtrl@@
.?AVCImageList@@
.?AVCTempImageList@@
.?AVCStatic@@
.?AVCButton@@
.?AVCComboBox@@
.?AVCEdit@@
.?AVCCmdUI@@
.?AVCTestCmdUI@@
.PAVCUserException@@
.?AVCTempWnd@@
.?AVCNoTrackObject@@
.?AV_AFX_CTL3D_STATE@@
.?AVCControlBar@@
.?AVCStatusBar@@
.?AVCStatusCmdUI@@
.?AV_AFX_THREAD_STATE@@
.?AVAFX_MODULE_STATE@@
.?AVAFX_MODULE_THREAD_STATE@@
.?AV_AFX_BASE_MODULE_STATE@@
.?AVCDC@@
.?AVCClientDC@@
.?AVCWindowDC@@
.?AVCPaintDC@@
.?AVCTempDC@@
.?AVCTempGdiObject@@
.PAVCObject@@
.PAVCSimpleException@@
.PAVCResourceException@@
.?AVCException@@
.?AVCSimpleException@@
.?AVCResourceException@@
.?AVCUserException@@
.?AVCCommonDialog@@
.?AVCFileDialog@@
.?AV_AFX_WIN_STATE@@
.?AVCWinThread@@
.?AVCWinApp@@
.?AV_AFX_CTL3D_THREAD@@
.?AVCOccManager@@
.?AV_AFX_SOCK_STATE@@
.?AVCFile@@
.PAVCMemoryException@@
.PAVCNotSupportedException@@
.?AVCMemoryException@@
.?AVCNotSupportedException@@
.?AVCHandleMap@@
.?AVCMapPtrToPtr@@
.?AUIUnknown@@
.?AUISequentialStream@@
.?AUIStream@@
.?AVCArchiveStream@@
.?AUCThreadData@@
.?AVCMenu@@
.?AVCTempMenu@@
.?AVCPtrList@@
.?AUIParseDisplayName@@
.?AUIOleContainer@@
.?AVXOleContainer@COleControlContainer@@
.?AUIOleWindow@@
.?AUIOleInPlaceUIWindow@@
.?AUIOleInPlaceFrame@@
.?AVXOleIPFrame@COleControlContainer@@
.?AVCOleControlContainer@@
.?AVCFont@@
.?AVCEnumArray@@
.?AVCEnumUnknown@@
.?AUIRowsetNotify@@
.?AVXRowsetNotify@COleControlSite@@
.?AUINotifyDBEvents@@
.?AVXNotifyDBEvents@COleControlSite@@
.?AUIBoundObjectSite@@
.?AVXBoundObjectSite@COleControlSite@@
.?AVXEventSink@COleControlSite@@
.?AUIPropertyNotifySink@@
.?AVXPropertyNotifySink@COleControlSite@@
.?AUIDispatch@@
.?AVXAmbientProps@COleControlSite@@
.?AUIOleControlSite@@
.?AVXOleControlSite@COleControlSite@@
.?AUIOleInPlaceSite@@
.?AVXOleIPSite@COleControlSite@@
.?AUIOleClientSite@@
.?AVXOleClientSite@COleControlSite@@
.?AVCOleControlSite@@
.?AVCDataSourceControl@@
.?AVCMemFile@@
.?AVCFileException@@
.PAVCFileException@@
.?AVCToolTipCtrl@@
.?AVCDockContext@@
.PAVCOleException@@
.?AVCOleDispatchException@@
.PAVCOleDispatchException@@
.?AUIEnumVOID@@
.?AVXEnumVOID@CEnumArray@@
.?AVCMapStringToPtr@@
.?AVCOleException@@
.?AVCOleMessageFilter@@
.?AUIMessageFilter@@
.?AVXMessageFilter@COleMessageFilter@@
.?AVCOleDialog@@
.?AVCOleBusyDialog@@
.?AV_AFX_OLE_STATE@@
.?AVtype_info@@
hangeul
english
hangeulmenu
kanjimenu
windows
C3dHNew
C3dLNew
C3dNew
#32770
DisableThreadLibraryCalls
KERNEL32.DLL
wwwwwww
wwwwwwwwwwwwwwp
wwwwww
wwwwww
wwwwww
wwwwww
wwwwww
wwwwww
wwwwww
wwwwww