Sample details: 303f12d27491ad61d76d30b1da541d98 --

Hashes
MD5: 303f12d27491ad61d76d30b1da541d98
SHA1: 53364dfa98c1095bbddf0b615642bba76d3ef64b
SHA256: 061b38502aebd4850977c013af5ec82d11d5ec1efe1402d833e5697ee9de4c2b
SSDEEP: 1536:476+zKmKUxc1/Y+BYmcSsrHc2lDKKbDhDPYM0KrWZ1fEWeS4Aqc2hhPW9uLage9h:49KUa1/YpSsr3bD1PYM0KrWrfEWnJ2hU
Details
File Type: PE32
Added: 2017-12-22 07:43:34
Yara Hits
YRP/IsPE32 | YRP/IsWindowsGUI | YRP/IsBeyondImageSize | YRP/HasModified_DOS_Message | YRP/domain | YRP/IP | YRP/url | YRP/contentis_base64 | YRP/CRC32_poly_Constant | YRP/CRC32_table | YRP/BLOWFISH_Constants | YRP/SHA512_Constants | YRP/DES_sbox | YRP/RijnDael_AES | YRP/RijnDael_AES_CHAR | YRP/RijnDael_AES_LONG | YRP/BASE64_table |
Strings
		.00cfg
@.rdata
.gfids
@.rsrc
`.xdata
@.idata
@.reloc
Connecting to %s port %d
Connecting to %s
Failed to connect to %s: %s
proxy: %s
-telnet
-rlogin
-serial
-loghost
-hostkey
'%s' is not a valid format for a manual host key specification
-%c expects at least two colons in its argument
%c%.*s
-nc expects argument of form 'host:port'
unable to open command file "%s"
the -pw option can only be used with the SSH protocol
-agent
-pagent
-pageant
-noagent
-nopagent
-nopageant
-sercfg
the -sercfg option can only be used with the serial protocol
Unrecognised suboption "-sercfg %c"
Unrecognised suboption "-sercfg %s"
-sessionlog
-sshlog
-sshrawlog
-proxycmd
-restrict-acl
-restrict_acl
-restrictacl
option "%s" not available in this tool
Cancel
Basic options for your %s session
Session
Specify the destination you want to connect to
hostport
session.hostname:config-hostname
Host Name (or IP address)
Rlogin
Telnet
Connection type:
Save the current session settings
Load, save or delete a stored session
savedsessions
session.saved:config-saving
Saved Sessions
Delete
otheropts
Only on clean exit
Always
session.coe:config-closeonexit
Close window on exit:
Options controlling session logging
Session/Logging
SSH packets
SSH packets and raw data
All session output
Printable output
logging.main:config-logging
Session logging:
logging.filename:config-logfilename
Select session log file name
Log file name:
(Log file name can contain &Y, &M, &D for date, &T for time, &H for host name, and &P for port number)
Ask the user every time
Always append to the end of it
Always overwrite it
logging.exists:config-logfileexists
What to do if the log file already exists:
logging.flush:config-logflush
Flush log file frequently
Options specific to SSH packet logging
logging.ssh.omitpassword:config-logssh
Omit known password fields
logging.ssh.omitdata:config-logssh
Omit session data
Options controlling the terminal emulation
Terminal
Set various terminal options
general
terminal.autowrap:config-autowrap
Auto wrap mode initially on
terminal.decom:config-decom
DEC Origin Mode initially on
terminal.lfhascr:config-crlf
Implicit CR in every LF
terminal.crhaslf:config-lfcr
Implicit LF in every CR
terminal.bce:config-erase
Use background colour to erase screen
terminal.blink:config-blink
Enable blinking text
terminal.answerback:config-answerback
Answerback to ^E:
Line discipline options
Force off
Force on
terminal.localecho:config-localecho
Local echo:
terminal.localedit:config-localedit
Local line editing:
Remote-controlled printing
printing
terminal.printing:config-printing
Printer to send ANSI printer output to:
Options controlling the effects of keys
Terminal/Keyboard
Change the sequences sent by:
mappings
Control-? (127)
Control-H
keyboard.backspace:config-backspace
The Backspace key
Standard
keyboard.homeend:config-homeend
The Home and End keys
VT100+
Xterm R6
ESC[n~
keyboard.funkeys:config-funkeys
The Function keys and keypad
Application keypad settings:
appkeypad
Application
Normal
keyboard.appcursor:config-appcursor
Initial state of cursor keys:
NetHack
keyboard.appkeypad:config-appkeypad
Initial state of numeric keypad:
Options controlling the terminal bell
Terminal/Bell
Set the style of bell
Visual bell (flash window)
Make default system alert sound
None (bell disabled)
bell.style:config-bellstyle
Action to happen when a bell occurs:
Control the bell overload behaviour
overload
bell.overload:config-bellovl
Bell is temporarily disabled when over-used
Over-use means this many bells...
... in this many seconds
The bell is re-enabled after a few seconds of silence.
Seconds of silence required
Enabling and disabling advanced terminal features
Terminal/Features
features.application:config-features-application
Disable application cursor keys mode
Disable application keypad mode
features.mouse:config-features-mouse
Disable xterm-style mouse reporting
features.resize:config-features-resize
Disable remote-controlled terminal resizing
features.altscreen:config-features-altscreen
Disable switching to alternate terminal screen
features.retitle:config-features-retitle
Disable remote-controlled window title changing
features.clearscroll:config-features-clearscroll
Disable remote-controlled clearing of scrollback
Window title
Empty string
features.qtitle:config-features-qtitle
Response to remote title query (SECURITY):
features.dbackspace:config-features-dbackspace
Disable destructive backspace on server sending ^?
features.charset:config-features-charset
Disable remote-controlled character set configuration
features.arabicshaping:config-features-shaping
Disable Arabic text shaping
features.bidi:config-features-bidi
Disable bidirectional text display
Options controlling %s's window
Window
Set the size of the window
window.size:config-winsize
Columns
Control the scrollback in the window
scrollback
window.scrollback:config-scrollback
Lines of scrollback
Display scrollbar
Reset scrollback on keypress
Reset scrollback on display activity
window.erased:config-erasetoscrollback
Push erased text into scrollback
Configure the appearance of %s's window
Window/Appearance
Adjust the use of the cursor
cursor
Vertical line
Underline
appearance.cursor:config-cursor
Cursor appearance:
Cursor blinks
Font settings
appearance.font:config-font
Font used in the terminal window
Adjust the use of the mouse pointer
appearance.hidemouse:config-mouseptr
Hide mouse pointer when typing in window
Adjust the window border
border
appearance.border:config-winborder
Gap between text and window edge:
Configure the behaviour of %s's window
Window/Behaviour
Adjust the behaviour of the window title
appearance.title:config-title
Window title:
Separate window and icon titles
behaviour.closewarn:config-warnonclose
Warn before closing window
Options controlling character set translation
Window/Translation
Character set translation
translation.codepage:config-charset
Remote character set:
tweaks
translation.cjkambigwide:config-cjk-ambig-wide
Treat CJK ambiguous characters as wide
Adjust how %s handles line drawing characters
linedraw
Poor man's line drawing (+, - and |)
Use Unicode line drawing code points
translation.linedraw:config-linedraw
Handling of line drawing characters:
selection.linedraw:config-linedrawpaste
Copy and paste line drawing characters as lqqqk
Options controlling copy and paste
Window/Selection
Control use of mouse
selection.shiftdrag:config-mouseshift
Shift overrides application's use of mouse
Rectangular block
selection.rect:config-rectselect
Default selection mode (Alt+drag does the other one):
Control the select-one-word-at-a-time mode
charclass
selection.charclasses:config-charclasses
Character classes:
Set to class
Options controlling use of colours
Window/Colours
General options for colour usage
colours.ansi:config-ansicolour
Allow terminal to specify ANSI colours
colours.xterm256:config-xtermcolour
Allow terminal to use xterm 256-colour mode
The colour
The font
colours.bold:config-boldcolour
Indicate bolded text by changing:
Adjust the precise colours %s displays
adjust
colours.config:config-colourcfg
Select a colour from the list, and then click the Modify button to change its appearance.
Select a colour to adjust:
RGB value:
Modify
Options controlling the connection
Connection
Sending of null packets to keep session active
keepalive
connection.keepalive:config-keepalive
Seconds between keepalives (0 to turn off)
Low-level TCP connection options
connection.nodelay:config-nodelay
Disable Nagle's algorithm (TCP_NODELAY option)
connection.tcpkeepalive:config-tcp-keepalives
Enable TCP keepalives (SO_KEEPALIVE option)
Internet protocol version
ipversion
connection.ipversion:config-address-family
Logical name of remote host (e.g. for SSH key lookup):
Logical name of remote host:
Logical name of remote host
identity
connection.loghost:config-loghost
Data to send to the server
Connection/Data
Login details
connection.username:config-username
Auto-login username
Use system username (%s)
Prompt
connection.usernamefromenv:config-username-from-env
When username is not specified:
Terminal details
connection.termtype:config-termtype
Terminal-type string
connection.termspeed:config-termspeed
Terminal speeds
Environment variables
telnet.environ:config-environ
Variable
Remove
Options controlling proxy usage
Connection/Proxy
basics
SOCKS 5
SOCKS 4
proxy.type:config-proxy-type
Proxy type:
proxy.main:config-proxy
Proxy hostname
proxy.exclude:config-proxy-exclude
Exclude Hosts/IPs
Consider proxying local host connections
proxy.dns:config-proxy-dns
Do DNS name lookup at proxy end:
proxy.auth:config-proxy-auth
Username
Password
proxy.command:config-proxy-command
Telnet command
Only until session starts
proxy.logging:config-proxy-logging
Print proxy diagnostics in the terminal window
Options controlling Telnet connections
Connection/Telnet
Telnet protocol adjustments
protocol
RFC 1408 (unusual)
BSD (commonplace)
telnet.oldenviron:config-oldenviron
Handling of OLD_ENVIRON ambiguity:
Active
Passive
telnet.passive:config-ptelnet
Telnet negotiation mode:
telnet.specialkeys:config-telnetkey
Keyboard sends Telnet special commands
telnet.newline:config-telnetnl
Return key sends Telnet New Line instead of ^M
Options controlling Rlogin connections
Connection/Rlogin
rlogin.localuser:config-rlogin-localuser
Local username:
Options controlling SSH connections
Connection/SSH
disclaimer
Nothing on this panel may be reconfigured in mid-session; it is only here so that sub-panels of it can exist without looking strange.
ssh.command:config-command
Remote command:
Protocol options
ssh.noshell:config-ssh-noshell
Don't start a shell or command at all
ssh.compress:config-ssh-comp
Enable compression
Sharing an SSH connection between PuTTY tools
sharing
ssh.sharing:config-ssh-sharing
Share SSH connections if possible
Permitted roles in a shared connection:
Upstream (connecting to the real server)
Downstream (connecting to the upstream PuTTY)
1 (INSECURE)
ssh.protocol:config-ssh-prot
SSH protocol version:
Options controlling SSH key exchange
Connection/SSH/Kex
Key exchange algorithm options
ssh.kex.order:config-ssh-kex-order
Algorithm selection policy:
Options controlling key re-exchange
repeat
ssh.kex.repeat:config-ssh-kex-rekey
Max minutes before rekey (0 for no limit)
Max data before rekey (0 for no limit)
(Use 1M for 1 megabyte, 1G for 1 gigabyte etc)
Options controlling SSH host keys
Connection/SSH/Host keys
Host key algorithm preference
ssh.hostkey.order:config-ssh-hostkey-order
Manually configure host keys for this connection
hostkeys
ssh.kex.manualhostkeys:config-ssh-kex-manual-hostkeys
Host keys or fingerprints to accept:
Add key
Options controlling SSH encryption
Connection/SSH/Cipher
Encryption options
encryption
ssh.ciphers:config-ssh-encryption
Encryption cipher selection policy:
Enable legacy use of single-DES in SSH-2
Options controlling SSH authentication
Connection/SSH/Auth
ssh.auth.banner:config-ssh-banner
Display pre-authentication banner (SSH-2 only)
ssh.auth.bypass:config-ssh-noauth
Bypass authentication entirely (SSH-2 only)
Authentication methods
methods
ssh.auth.pageant:config-ssh-tryagent
Attempt authentication using Pageant
ssh.auth.tis:config-ssh-tis
Attempt TIS or CryptoCard auth (SSH-1)
ssh.auth.ki:config-ssh-ki
Attempt "keyboard-interactive" auth (SSH-2)
Authentication parameters
params
ssh.auth.agentfwd:config-ssh-agentfwd
Allow agent forwarding
ssh.auth.changeuser:config-ssh-changeuser
Allow attempted changes of username in SSH-2
ssh.auth.privkey:config-ssh-privkey
Select private key file
PuTTY Private Key Files (*.ppk)
All Files (*.*)
Private key file for authentication:
Options controlling GSSAPI authentication
Connection/SSH/Auth/GSSAPI
gssapi
ssh.auth.gssapi:config-ssh-auth-gssapi
Attempt GSSAPI authentication (SSH-2 only)
ssh.auth.gssapi.delegation:config-ssh-auth-gssapi-delegation
Allow GSSAPI credential delegation
ssh.auth.gssapi.libraries:config-ssh-auth-gssapi-libraries
Preference order for GSSAPI libraries:
Select library file
Dynamic Library Files (*.dll)
All Files (*.*)
User-supplied GSSAPI library path:
Remote terminal settings
Connection/SSH/TTY
sshtty
ssh.nopty:config-ssh-pty
Don't allocate a pseudo-terminal
Terminal modes
ttymodes
ssh.ttymodes:config-ttymodes
Terminal modes to send:
For selected mode, send:
Nothing
Options controlling SSH X11 forwarding
Connection/SSH/X11
X11 forwarding
ssh.tunnels.x11:config-ssh-x11
Enable X11 forwarding
X display location
XDM-Authorization-1
MIT-Magic-Cookie-1
ssh.tunnels.x11auth:config-ssh-x11auth
Remote X11 authentication protocol
Options controlling SSH port forwarding
Connection/SSH/Tunnels
Port forwarding
portfwd
ssh.tunnels.portfwd.localhost:config-ssh-portfwd-localhost
Local ports accept connections from other hosts
Remote ports do the same (SSH-2 only)
ssh.tunnels.portfwd:config-ssh-portfwd
Forwarded ports:
Add new forwarded port:
Source port
Destination
Dynamic
Remote
ssh.tunnels.portfwd.ipversion:config-ssh-portfwd-address-family
Workarounds for SSH server bugs
Connection/SSH/Bugs
Detection of known bugs in SSH servers
ssh.bugs.ignore2:config-ssh-bug-ignore2
Chokes on SSH-2 ignore messages
ssh.bugs.rekey2:config-ssh-bug-rekey
Handles SSH-2 key re-exchange badly
ssh.bugs.winadj:config-ssh-bug-winadj
Chokes on PuTTY's SSH-2 'winadj' requests
ssh.bugs.winadj:config-ssh-bug-chanreq
Replies to requests on closed channels
ssh.bugs.maxpkt2:config-ssh-bug-maxpkt2
Ignores SSH-2 maximum packet size
Further workarounds for SSH server bugs
Connection/SSH/More bugs
ssh.bugs.rsapad2:config-ssh-bug-sig
Requires padding on SSH-2 RSA signatures
ssh.bugs.oldgex2:config-ssh-bug-oldgex2
Only supports pre-RFC4419 SSH-2 DH GEX
ssh.bugs.hmac2:config-ssh-bug-hmac2
Miscomputes SSH-2 HMAC keys
ssh.bugs.pksessid2:config-ssh-bug-pksessid2
Misuses the session ID in SSH-2 PK auth
ssh.bugs.derivekey2:config-ssh-bug-derivekey2
Miscomputes SSH-2 encryption keys
ssh.bugs.ignore1:config-ssh-bug-ignore1
Chokes on SSH-1 ignore messages
ssh.bugs.plainpw1:config-ssh-bug-plainpw1
Refuses all SSH-1 password camouflage
ssh.bugs.rsa1:config-ssh-bug-rsa1
Chokes on SSH-1 RSA authentication
Default Settings
Serial line
None (printing disabled)
%d	(0x%02X)	%c	%d
ANVDefault Foreground
Default Bold Foreground
Default Background
Default Bold Background
Cursor Text
Cursor Colour
ANSI Black
ANSI Black Bold
ANSI Red
ANSI Red Bold
ANSI Green
ANSI Green Bold
ANSI Yellow
ANSI Yellow Bold
ANSI Blue
ANSI Blue Bold
ANSI Magenta
ANSI Magenta Bold
ANSI Cyan
ANSI Cyan Bold
ANSI White
ANSI White Bold
Diffie-Hellman group 1
Diffie-Hellman group 14
Diffie-Hellman group exchange
RSA-based key exchange
ECDH key exchange
-- warn below here --
Ed25519
You need to specify a host key or fingerprint
Host key is not in a valid format
Specified host key is already listed
ChaCha20 (SSH-2 only)
Blowfish
AES (SSH-2 only)
Arcfour (SSH-2 only)
(auto)
(don't send)
You need to specify a source port number
You need to specify a destination address
in the form "host.name:port"
Specified forwarding already exists
Proxy error: SOCKS proxy wants a different CHAP version
Proxy error: SOCKS proxy won't negotiate CHAP with us
Proxy error: SOCKS proxy refused CHAP authentication
Proxy error: Server chose CHAP of other than HMAC-MD5 but we didn't offer it!
Proxy error: Server chose CHAP authentication but we didn't offer it!
<%02X>
Event Log: %s
Incoming
Outgoing
%s packet 
#0x%lx, 
type %d / 0x%02x (%s)
 on behalf of downstream #%u
%Y-%m-%d %H:%M:%S
%s raw data at %s
  (%d byte%s omitted)
  %08x%*s
%Y.%m.%d %H:%M:%S
=~=~=~=~=~=~=~=~=~=~=~= PuTTY log %s =~=~=~=~=~=~=~=~=~=~=~=
SSH raw data
unknown
Disabled writing
Error writing
Appending
Writing new
%s session log (%s mode) to file: %s
Disabled writing session log due to error while writing
%H%M%S
ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+/
Out of memory!
0123456789abcdefABCDEF:
0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz+/=
Windows
Build platform: %d-bit %s
5.0.0 (http://llvm.org/git/clang.git dba970f4d143480b964f77b363ec23f22cea0390) (http://llvm.org/git/llvm.git 52ebe03cb0a728134e66d04f85281bc5a60d7091)
%sCompiler: clang %s
, emulating 
Visual Studio
 2013 / MSVC++ 12.0
 (_MSC_VER=%d)
%sSource commit: %s
%d.%d.%d.%d
forwarding from %s
forwarding
Leaving host lookup to proxy of "%s" (for %s)
Proxy error: Unknown proxy method
Will use %s proxy at %s:%d to connect to %s:%d
Proxy error: Unable to resolve proxy host name
Connecting to %s proxy at %s port %d
CONNECT %s:%i HTTP/1.1
Host: %s:%i
Proxy-Authorization: Basic 
HTTP/%i.%i %n
Proxy error: HTTP response was absent
Proxy error: %s
Proxy error: unexpected proxy error
Proxy error: SOCKS version 4 does not support IPv6
Proxy error: SOCKS proxy responded with unexpected reply code version
Proxy error: SOCKS server wanted IDENTD on client
Proxy error: Username and IDENTD on client don't agree
Proxy error: Error while communicating with proxy
Proxy error: SOCKS proxy returned unexpected version
Proxy error: SOCKS proxy did not accept our authentication
Proxy error: SOCKS password subnegotiation contained wrong version number
Proxy error: SOCKS proxy refused password authentication
Proxy error: SOCKS proxy returned wrong version number
General SOCKS server failure
Connection not allowed by ruleset
Network unreachable
Host unreachable
Connection refused
Command not supported
Address type not supported
Unrecognised SOCKS error code %d
Proxy error: SOCKS proxy returned unrecognised address format
Proxy error: We don't support GSSAPI authentication
Proxy error: Server chose username/password authentication but we didn't offer it!
Proxy error: Unexpected proxy error
proxyhost
proxyport
\x%02X
Sending Telnet proxy command: %s
 (IPv4)
 (IPv6)
Looking up host "%s"%s for %s
main connection
rlogin
rlogin connection
Rlogin login name
rlogin username: 
0123456789
Serial
Options controlling local serial lines
Connection/Serial
Select a serial line
serline
serial.line:config-serial-line
Serial line to connect to
Configure the serial line
sercfg
serial.speed:config-serial-speed
Speed (baud)
serial.databits:config-serial-databits
Data bits
serial.stopbits:config-serial-stopbits
Stop bits
serial.parity:config-serial-parity
Parity
serial.flow:config-serial-flow
Flow control
XON/XOFF
RTS/CTS
DSR/DTR
REPRINT
WERASE
STATUS
DISCARD
IGNPAR
PARMRK
ISTRIP
IMAXBEL
ICANON
ECHONL
NOFLSH
TOSTOP
IEXTEN
ECHOCTL
ECHOKE
PENDIN
ONLRET
PARENB
PARODD
Present
HostName
LogFileName
LogType
LogFileClash
LogFlush
SSHLogOmitPasswords
SSHLogOmitData
Protocol
PortNumber
CloseOnExit
WarnOnClose
PingInterval
PingIntervalSecs
TCPNoDelay
TCPKeepalives
TerminalType
TerminalSpeed
TerminalModes
AddressFamily
ProxyExcludeList
ProxyDNS
ProxyLocalhost
ProxyMethod
ProxyHost
ProxyPort
ProxyUsername
ProxyPassword
ProxyTelnetCommand
ProxyLogToTerm
Environment
UserName
UserNameFromEnvironment
LocalUserName
Compression
TryAgent
AgentFwd
GssapiFwd
ChangeUsername
Cipher
HostKey
RekeyTime
RekeyBytes
SshNoAuth
SshBanner
AuthTIS
AuthKI
AuthGSSAPI
GSSLibs
GSSCustom
SshNoShell
SshProt
LogHost
SSH2DES
PublicKeyFile
RemoteCommand
RFCEnviron
PassiveTelnet
BackspaceIsDelete
RXVTHomeEnd
LinuxFunctionKeys
NoApplicationKeys
NoApplicationCursors
NoMouseReporting
NoRemoteResize
NoAltScreen
NoRemoteWinTitle
NoRemoteClearScroll
RemoteQTitleAction
NoDBackspace
NoRemoteCharset
ApplicationCursorKeys
ApplicationKeypad
NetHackKeypad
AltSpace
AltOnly
ComposeKey
CtrlAltKeys
TelnetKey
TelnetRet
LocalEcho
LocalEdit
Answerback
AlwaysOnTop
FullScreenOnAltEnter
HideMousePtr
SunkenEdge
WindowBorder
CurType
BlinkCur
BeepInd
BellWaveFile
BellOverload
BellOverloadN
BellOverloadT
BellOverloadS
ScrollbackLines
DECOriginMode
AutoWrapMode
LFImpliesCR
CRImpliesLF
DisableArabicShaping
DisableBidi
WinNameAlways
WinTitle
TermWidth
TermHeight
FontQuality
FontVTMode
UseSystemColours
TryPalette
ANSIColour
Xterm256Colour
BoldAsColour
Colour%d
%d,%d,%d
RawCNP
PasteRTF
MouseIsXterm
RectSelect
MouseOverride
Wordness%d
LineCodePage
CJKAmbigWide
UTF8Override
Printer
CapsLockCyr
ScrollBar
ScrollBarFullScreen
ScrollOnKey
ScrollOnDisp
EraseToScrollback
LockSize
BlinkText
X11Forward
X11Display
X11AuthType
X11AuthFile
LocalPortAcceptAll
RemotePortAcceptAll
PortForwardings
BugIgnore1
BugPlainPW1
BugRSA1
BugIgnore2
BugHMAC2
BugDeriveKey2
BugRSAPad2
BugPKSessID2
BugRekey2
BugMaxPkt2
BugOldGex2
BugWinadj
BugChanReq
StampUtmp
LoginShell
ScrollbarOnLeft
BoldFont
WideFont
WideBoldFont
ShadowBold
ShadowBoldOffset
SerialLine
SerialSpeed
SerialDataBits
SerialStopHalfbits
SerialParity
SerialFlowControl
WindowClass
ConnectionSharing
ConnectionSharingUpstream
ConnectionSharingDownstream
SSHManualHostKeys
default
38400,38400
ProxyType
ProxySOCKSVersion
connect %host %port\n
ecdh,dh-gex-sha1,dh-group14-sha1,rsa,WARN,dh-group1-sha1
ecdh,dh-group14-sha1,rsa,WARN,dh-group1-sha1,dh-gex-sha1
BugDHGEx2
dh-group14-sha1,dh-group1-sha1,rsa,WARN,dh-gex-sha1
dh-gex-sha1,dh-group14-sha1,dh-group1-sha1,rsa,WARN
ed25519,ecdsa,rsa,dsa,WARN
NoRemoteQTitle
187,187,187
255,255,255
85,85,85
0,255,0
187,0,0
255,85,85
0,187,0
85,255,85
187,187,0
255,255,85
0,0,187
85,85,255
187,0,187
255,85,255
0,187,187
85,255,255
0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0
0,1,2,1,1,1,1,1,1,1,1,1,1,2,2,2,2,2,2,2,2,2,2,2,2,2,1,1,1,1,1,1
1,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,1,1,1,1,2
1,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,1,1,1,1,1
1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1,1
2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,2,1,2,2,2,2,2,2,2,2
BuggyMAC
chacha20
blowfish
arcfour
dh-gex-sha1
dh-group14-sha1
dh-group1-sha1
ed25519
SizeTipClass
Could not set up connection sharing: %s
Could not set up connection sharing as downstream: %s
Could not set up connection sharing as upstream: %s
Using existing shared connection at %s
Reusing a shared connection to this server.
Sharing this connection at %s
0123456789abcdef:
due to local error: %s
Connection sharing downstream #%u connected from %s
Connection sharing downstream #%u connected
Connection sharing downstream #%u disconnected
Connection sharing downstream #%u: %s
Connection sharing: %s
Opening connection to %s:%d for %s
direct-tcpip
0.0.0.0
All channels closed
Disconnected: %s
Disconnected
too much data sent
password
x11-req
SSH2_MSG_USERAUTH_GSSAPI_RESPONSE
SSH2_MSG_USERAUTH_GSSAPI_TOKEN
SSH2_MSG_USERAUTH_GSSAPI_EXCHANGE_COMPLETE
SSH2_MSG_USERAUTH_GSSAPI_ERROR
SSH2_MSG_USERAUTH_GSSAPI_ERRTOK
SSH2_MSG_USERAUTH_GSSAPI_MIC
SSH2_MSG_DISCONNECT
SSH2_MSG_IGNORE
SSH2_MSG_UNIMPLEMENTED
SSH2_MSG_DEBUG
SSH2_MSG_SERVICE_REQUEST
SSH2_MSG_SERVICE_ACCEPT
SSH2_MSG_KEXINIT
SSH2_MSG_NEWKEYS
SSH2_MSG_KEXDH_INIT
SSH2_MSG_KEXDH_REPLY
SSH2_MSG_KEX_DH_GEX_REQUEST_OLD
SSH2_MSG_KEX_DH_GEX_REQUEST
SSH2_MSG_KEX_DH_GEX_GROUP
SSH2_MSG_KEX_DH_GEX_INIT
SSH2_MSG_KEX_DH_GEX_REPLY
SSH2_MSG_KEXRSA_PUBKEY
SSH2_MSG_KEXRSA_SECRET
SSH2_MSG_KEXRSA_DONE
SSH2_MSG_KEX_ECDH_INIT
SSH2_MSG_KEX_ECDH_REPLY
SSH2_MSG_USERAUTH_REQUEST
SSH2_MSG_USERAUTH_FAILURE
SSH2_MSG_USERAUTH_SUCCESS
SSH2_MSG_USERAUTH_BANNER
SSH2_MSG_USERAUTH_PK_OK
SSH2_MSG_USERAUTH_PASSWD_CHANGEREQ
SSH2_MSG_USERAUTH_INFO_REQUEST
SSH2_MSG_USERAUTH_INFO_RESPONSE
SSH2_MSG_GLOBAL_REQUEST
SSH2_MSG_REQUEST_SUCCESS
SSH2_MSG_REQUEST_FAILURE
SSH2_MSG_CHANNEL_OPEN
SSH2_MSG_CHANNEL_OPEN_CONFIRMATION
SSH2_MSG_CHANNEL_OPEN_FAILURE
SSH2_MSG_CHANNEL_WINDOW_ADJUST
SSH2_MSG_CHANNEL_DATA
SSH2_MSG_CHANNEL_EXTENDED_DATA
SSH2_MSG_CHANNEL_EOF
SSH2_MSG_CHANNEL_CLOSE
SSH2_MSG_CHANNEL_REQUEST
SSH2_MSG_CHANNEL_SUCCESS
SSH2_MSG_CHANNEL_FAILURE
key exchange algorithm
host key algorithm
client-to-server cipher
server-to-client cipher
client-to-server MAC
server-to-client MAC
client-to-server compression method
server-to-client compression method
SSHCONNECTION@putty.projects.tartarus.org-
expected key exchange packet from server
KEXINIT packet was incomplete
Couldn't agree a %s (available: %.*s)
Server supports delayed compression; will try this later
key-exchange algorithm
Unexpected data from server while waiting for user response
User aborted at kex warning
host key type
User aborted at host key warning
User aborted at cipher warning
Doing Diffie-Hellman group exchange
expected key exchange group packet from server
unable to read mp-ints from incoming group packet
Using Diffie-Hellman with standard group "%s"
Doing Diffie-Hellman key exchange with hash %s
expected key exchange reply packet from server
unable to parse key exchange reply packet
key exchange reply failed validation: %s
Doing ECDH key exchange with curve %s and hash %s
Unable to generate key for ECDH
Unable to encode public key for ECDH
expected ECDH reply packet from server
unable to parse ECDH reply packet
Unable to encode public key for ECDH hash
point received in ECDH was not valid
Doing RSA key exchange with hash %s
expected RSA public key packet from server
unable to parse RSA public key packet
unable to parse RSA public key from server
expected signature packet from server
unable to parse signature packet
Server's host key is invalid
Server's host key did not match the signature supplied
any of them
Server also has %s host key%s, but we don't know %s
Host key fingerprint is:
Host key did not appear in manually configured list
Unexpected data from server while waiting for user host key response
Aborted at host key verification
Storing additional host key for this host:
Host key was different in repeat key exchange
Initialised %.200s client->server encryption
 (required by cipher)
 (in ETM mode)
Initialised %.200s client->server MAC algorithm%s%s
Initialised %s compression
expected new-keys packet from server
Initialised %.200s server->client encryption
Initialised %.200s server->client MAC algorithm%s%s
Initialised %s decompression
Server initiated key re-exchange
Server bug prevents key re-exchange (%s)
Initiating key re-exchange (%s)
Public key packet not received
Received public keys
SSH-1 public key packet stopped before random cookie
Failed to read SSH-1 public keys from public key packet
SSH-1 public keys were badly formatted
User aborted at host key verification
SSH-1 public key encryptions failed due to bad formatting
Encrypted session key
AES not supported in SSH-1, skipping
single-DES
Server violates SSH-1 protocol by not supporting 3DES encryption
No supported ciphers found
cipher
Using 3DES encryption
Using single-DES encryption
Using Blowfish encryption
Trying to enable encryption...
Initialised %s encryption
Installing CRC compensation attack detector
Encryption not successfully enabled
Successfully started encryption
SSH login name
login as: 
No username provided
Sent username "%s"
Reading key file "%.150s"
Key file contains public key only
Unable to load key (%s)
Unable to load key file "%.150s" (%s)
Unable to use this key file (%s)
Unable to use key file "%.150s" (%s)
Pageant is running. Requesting keys.
Unexpected data from server while waiting for agent response
Pageant reported negative key count %d
Pageant has %d SSH-1 keys
Pageant key list packet was truncated
Pageant key #%d matches configured key file
Trying Pageant key #%d
Key refused
Received RSA challenge
Server's RSA challenge was badly formatted
Sending Pageant's response
Pageant's response accepted
Authenticated using RSA key "
" from agent
Pageant's response not accepted
Pageant failed to answer challenge
No reply received from Pageant
Configured key file not in Pageant
Failed to get reply from Pageant
Trying public key authentication.
Trying public key "%s"
No passphrase required.
SSH key passphrase
Passphrase for key "%.100s": 
Unable to authenticate
Couldn't load private key from 
Wrong passphrase.
Server refused our public key.
Bizarre response to offer of public key
Failed to authenticate with our public key.
Bizarre response to RSA authentication response
Requested TIS authentication
TIS authentication declined
TIS authentication refused.
TIS challenge packet was badly formed
Received TIS challenge
SSH TIS authentication
Response: 
Using TIS authentication.%s%s
Requested CryptoCard authentication
CryptoCard authentication declined
CryptoCard authentication refused.
CryptoCard challenge packet was badly formed
Received CryptoCard challenge
SSH CryptoCard authentication
Using CryptoCard authentication.%s%s
No supported authentication methods available
SSH password
%s@%s's password: 
Sending password with camouflage packets
Sending length-padded password
Sending unpadded password
Sent password
Access denied
Authentication refused
Strange packet received, type %d
Authentication successful
SSH1_MSG_DISCONNECT
SSH1_SMSG_PUBLIC_KEY
SSH1_CMSG_SESSION_KEY
SSH1_CMSG_USER
SSH1_CMSG_AUTH_RSA
SSH1_SMSG_AUTH_RSA_CHALLENGE
SSH1_CMSG_AUTH_RSA_RESPONSE
SSH1_CMSG_AUTH_PASSWORD
SSH1_CMSG_REQUEST_PTY
SSH1_CMSG_WINDOW_SIZE
SSH1_CMSG_EXEC_SHELL
SSH1_CMSG_EXEC_CMD
SSH1_SMSG_SUCCESS
SSH1_SMSG_FAILURE
SSH1_CMSG_STDIN_DATA
SSH1_SMSG_STDOUT_DATA
SSH1_SMSG_STDERR_DATA
SSH1_CMSG_EOF
SSH1_SMSG_EXIT_STATUS
SSH1_MSG_CHANNEL_OPEN_CONFIRMATION
SSH1_MSG_CHANNEL_OPEN_FAILURE
SSH1_MSG_CHANNEL_DATA
SSH1_MSG_CHANNEL_CLOSE
SSH1_MSG_CHANNEL_CLOSE_CONFIRMATION
SSH1_SMSG_X11_OPEN
SSH1_CMSG_PORT_FORWARD_REQUEST
SSH1_MSG_PORT_OPEN
SSH1_CMSG_AGENT_REQUEST_FORWARDING
SSH1_SMSG_AGENT_OPEN
SSH1_MSG_IGNORE
SSH1_CMSG_EXIT_CONFIRMATION
SSH1_CMSG_X11_REQUEST_FORWARDING
SSH1_CMSG_AUTH_RHOSTS_RSA
SSH1_MSG_DEBUG
SSH1_CMSG_REQUEST_COMPRESSION
SSH1_CMSG_AUTH_TIS
SSH1_SMSG_AUTH_TIS_CHALLENGE
SSH1_CMSG_AUTH_TIS_RESPONSE
SSH1_CMSG_AUTH_CCARD
SSH1_SMSG_AUTH_CCARD_CHALLENGE
SSH1_CMSG_AUTH_CCARD_RESPONSE
timeout
ssh-userauth
ssh-connection
Server refused service request
Pageant response contained a negative key count %d
Pageant response was truncated
Pageant has %d SSH-2 keys
Using username "%s".
Access granted
Strange packet received during authentication: type %d
Server refused our key
Server refused our key
Server refused public-key signature despite accepting key!
Server refused public-key signature despite accepting key!
Server refused keyboard-interactive authentication
Keyboard-interactive authentication failed
Password authentication failed
Further authentication required
Further authentication required
publickey
keyboard-interactive
gssapi-with-mic
Authenticating with public key "
Offered public key
Offer of public key accepted
Wrong passphrase
Unable to load private key (
Sent public key signature
Attempting GSSAPI authentication
GSSAPI authentication request refused
GSSAPI authentication - wrong response from server
GSSAPI import name failed - Bad service name
GSSAPI import name failed
GSSAPI authentication failed to get credentials
GSSAPI authentication initialisation failed
GSSAPI authentication initialised
GSSAPI authentication - bad server response
GSSAPI authentication loop finished OK
Attempting keyboard-interactive authentication
SSH server: %.*s
SSH server authentication
Using keyboard-interactive authentication.%s%.*s
Server requested password change
Server rejected new password
New SSH password
Current password (blank for previously entered password): 
Enter new password: 
Confirm new password: 
Passwords do not match
Sent new password
No supported authentication methods available (server sent: %.*s)
enabling delayed compression
main channel
session
Opening session as main channel
Server sent strange packet %d in response to main channel open request
Server's response to main channel open cited wrong channel number
Server refused to open main channel: %s
Opened main channel
simple@putty.projects.tartarus.org
X11 forwarding not enabled: unable to initialise X display
subsystem
Unexpected response to shell/command request: packet type %d
Primary command failed; attempting fallback
Server refused to start a shell/command
Started a shell/command
Strange packet received: type %d
ssh-rsa
nonexistent
half-open
Received %s for %s channel %u
Administratively prohibited
Connect failed
Unknown channel type
Resource shortage
unknown reason code %#x
%s [%.*s]
Forwarded connection refused by server: %s
exit-status
Server sent command exit status %d
exit-signal
 "%.*s"
 ("%.*s")
 (core dumped)
Server exited on signal%s%s%s
Received X11 connect request from %s:%d
X11 forwarding is not enabled
Opened X11 forward channel
forwarded-tcpip
Received remote port %s:%d open request from %.*s:%d
Remote port is not recognised
Attempting to forward remote port to %s:%d
Port open failed: %s
Port open failed
Forwarded port opened successfully
auth-agent@openssh.com
Agent forwarding is not enabled
Unsupported channel type requested
Rejected channel open: %s
Server protocol violation: unexpected %s packet
Service lookup failed for source port "%s"
Service lookup failed for destination port "%s"
remote
dynamic
%s port forwarding from %s%s%d
%s to %s:%d
Cancelling %s
cancel-tcpip-forward
localhost
%s%s%s%s%d%s
%s:%s%s%d%s
 failed: 
Local %sport %s forwarding to %s%s%s
Local %sport %s SOCKS dynamic forwarding%s%s
Duplicate remote port forwarding to %s:%d
Requesting remote port %s forward to %s
tcpip-forward
Remote port forwarding from %s enabled
Remote port forwarding from %s refused
Requesting X11 forwarding
X11 forwarding enabled
X11 forwarding refused
Requesting OpenSSH-style agent forwarding
auth-agent-req@openssh.com
Agent forwarding enabled
Agent forwarding refused
pty-req
Allocated pty (ospeed %dbps, ispeed %dbps)
Server refused to allocate pty
Sent %d environment variables
All environment variables successfully set
All environment variables refused
Server refused to set environment variables
%d environment variables refused
Server refused to set all environment variables
Server unexpectedly closed network connection
Server closed network connection
Forwarded X11 connection terminated
Agent-forwarding connection closed
Forwarded port closed
winadj@putty.projects.tartarus.org
SSH connection
Server version: %s
Server announces compatibility with SSH-1 in bare ssh-connection protocol
Bare ssh-connection protocol cannot be run in SSH-1-only mode
Using bare ssh-connection protocol
1.2.18
1.2.19
1.2.20
1.2.21
1.2.22
Cisco-1.25
OSU_1.4alpha3
OSU_1.5alpha4
We believe remote version has SSH-1 ignore bug
We believe remote version needs a plain SSH-1 password
We believe remote version can't handle SSH-1 RSA authentication
* VShell
2.1.0*
2.2.0*
2.3.0*
We believe remote version has SSH-2 HMAC bug
2.0.0*
2.0.10*
We believe remote version has SSH-2 key-derivation bug
OpenSSH_2.[5-9]*
OpenSSH_3.[0-2]*
mod_sftp/0.[0-8]*
mod_sftp/0.9.[0-8]
We believe remote version has SSH-2 RSA padding bug
OpenSSH_2.[0-2]*
We believe remote version has SSH-2 public-key-session-ID bug
DigiSSH_2.0
OpenSSH_2.[0-4]*
OpenSSH_2.5.[0-3]*
Sun_SSH_1.0
Sun_SSH_1.0.1
WeOnlyDo-*
We believe remote version has SSH-2 rekey bug
1.36_sshlib GlobalSCAPE
1.36 sshlib: GlobalScape
We believe remote version ignores SSH-2 maximum packet size
We believe remote version has SSH-2 ignore bug
OpenSSH_2.[235]*
We believe remote version has outdated SSH-2 GEX
We believe remote version has winadj bug
OpenSSH_[2-5].*
OpenSSH_6.[0-6]*
dropbear_0.[2-4][0-9]*
dropbear_0.5[01]*
We believe remote version has SSH-2 channel request bug
Received disconnect message (%s)
Received disconnect message (unknown type %d)
Disconnection message text: %.*s
Server sent disconnect message
type %d (%s):
"%.*s"
host not allowed to connect
protocol error
key exchange failed
host authentication failed
MAC error
compression error
service not available
protocol version not supported
host key not verifiable
connection lost
by application
too many connections
auth cancelled by user
no more auth methods available
illegal user name
Remote debug message: %.*s
Invalid packet length received
SSH protocol version 1 required by our configuration but not provided by server
SSH protocol version 2 required by our configuration but server only provides (old, insecure) SSH-1
Using SSH protocol version %d
too much data received
No valid incoming packet found
Incoming packet length field was garbled
Incorrect MAC received on packet
Incoming packet was garbled on decryption
Invalid padding length on received packet
Requesting agent forwarding
Protocol confusion
Server refused to compress
Started compression
Initialised zlib (RFC1950) compression
Initialised zlib (RFC1950) decompression
Started session
Incoming terminal data packet was badly formed
Forwarded connection refused by server
Received CHANNEL_CLOSE_CONFIRMATION for channel %u for which we never sent CHANNEL_CLOSE
Received X11 connect request
Rejected X11 connect request
Rejected remote port open request for %s:%d
Received remote port open request for %s:%d
Server sent disconnect message:
"%.*s"
Extremely large packet length from server suggests data stream corruption
Network attack (CRC compensation) detected!
Incorrect CRC received on packet
Zlib decompression encountered invalid data
%s2.0-%s
SSH-%s-%s
We claim version: %.*s
timeout shortened
data limit lowered
compression setting changed
cipher settings changed
window-change
Sent EOF message
at user request
cross-certifying new host key
Unable to send BREAK signal in SSH-1
signal
Sent signal SIG%s
IGNORE message
Repeat key exchange
SIGINT (Interrupt)
SIGTERM (Terminate)
SIGKILL (Kill)
SIGQUIT (Quit)
SIGHUP (Hangup)
More signals
SIGABRT
SIGALRM
SIGFPE
SIGILL
SIGPIPE
SIGSEGV
SIGUSR1
SIGUSR2
Cache new host key type
='9-6d
_jbF~T
11#?*0
,4$8_@
t\lHBW
QPeA~S
>4$8,@
p\lHtW
+HpXhE
T[$:.6
=j&&LZ66lA??~
}{))R>
f""D~**T
V22dN::t
o%%Jr..\$
&&Lj66lZ??~A
99rKJJ
==zGdd
""Df**T~
;22dV::tN
$$Hl\\
C77nYmm
%%Jo..\r
55j_WW
&Lj&6lZ6?~A?
~=zG=d
"Df"*T~*
2dV2:tN:
x%Jo%.\r.
a5j_5W
ggV}++
Lj&&lZ66~A??
bS11*?
Xt,,4.
RRvM;;
MMfU33
PPxD<<%
Bc!! 0
~~zG==
Df""T~**;
dV22tN::
xxJo%%\r..8$
pp|B>>q
aaj_55
UUPx((
aes256-ctr
AES-256 SDCTR
aes256-cbc
AES-256 CBC
rijndael-cbc@lysator.liu.se
aes192-ctr
AES-192 SDCTR
aes192-cbc
AES-192 CBC
aes128-ctr
AES-128 SDCTR
aes128-cbc
AES-128 CBC
arcfour128
Arcfour-128
arcfour256
Arcfour-256
 iciNWq
Ze2Zh@
A4x{%`
BFUa.X
	-f3F2
w``u N
Blowfish-128 CBC
blowfish-ctr
Blowfish-256 SDCTR
blowfish-cbc
expand 32-byte k
chacha20-poly1305@openssh.com
ChaCha20
Poly1305
Qkkbal
triple-DES inner-CBC
single-DES CBC
3des-ctr
triple-DES SDCTR
3des-cbc
triple-DES CBC
des-cbc
des-cbc@ssh.com
f value received is too small
f value received is too large
diffie-hellman-group1-sha1
group1
diffie-hellman-group14-sha1
group14
diffie-hellman-group-exchange-sha256
diffie-hellman-group-exchange-sha1
ssh-dss
0123456789abcdef
DSA deterministic k generator
fffffffffffffffffffffffffffffffX0123456789abcdef
U)l:T^8rv
	ssh-ed25519
ecdsa-sha2-nistp256
ecdsa-sha2-nistp384
ecdsa-sha2-nistp521
ECDSA deterministic k generator
nistp256
nistp384
nistp521
curve25519-sha256@libssh.org
Curve25519
ecdh-sha2-nistp256
ecdh-sha2-nistp384
ecdh-sha2-nistp521
6666666666666666\\\\\\\\\\\\\\\\hmac-md5
hmac-md5-etm@openssh.com
HMAC-MD5
can't open file
SSH PRIVATE KEY FILE FORMAT 1.1
not an SSH-1 RSA file
key bit count does not match in SSH-1 public key file
PuTTY-User-Key-File-2
PuTTY-User-Key-File-1
PuTTY-User-Key-File-
PuTTY key format too new
not a PuTTY SSH-2 private key
file format error
Encryption
Comment
Public-Lines
Private-Lines
Private-MAC
Private-Hash
wrong passphrase
MAC failed
createkey failed
---- BEGIN SSH2 PUBLIC KEY ----
invalid begin line in SSH-2 public key file
truncated SSH-2 public key file
Subject
unrecognised header in SSH-2 public key file
---- END SSH2 PUBLIC KEY ----
invalid end line in SSH-2 public key file
not enough data in SSH-2 public key file
invalid algorithm prefix in SSH-2 public key file
no key blob in OpenSSH public key file
invalid length for base64 data in OpenSSH public key file
key algorithms do not match in OpenSSH public key file
putty-private-key-file-mac-key
---- BEGIN SSH2 PUBLIC KEY
PuTTY-User-Key-File-
---- BEGIN SSH2 ENCRYPTED PRIVAT
-----BEGIN OPENSSH PRIVATE KEY
-----BEGIN 
%02x%s
%.*s %d %s
%.*s %s
unable to open file
not a recognised key file format
SSH-1 public key
SSH-2 public key (RFC 4716 format)
SSH-2 public key (OpenSSH format)
SSH-1 private key
PuTTY SSH-2 private key
OpenSSH SSH-2 private key (old PEM format)
OpenSSH SSH-2 private key (new format)
ssh.com SSH-2 private key
INTERNAL ERROR (OPENSSH_AUTO)
INTERNAL ERROR
error reading file
rsa_verify failed
0123456789abcdef
%s%02x
RSA deterministic blinding
rsa2048-sha256
rsa1024-sha1
SHA-256
hmac-sha2-256
hmac-sha2-256-etm@openssh.com
HMAC-SHA-256
SHA-512
[aOni*{
~ $s%r
@b;zO]
v2!L.2
=#>*>:>I>P>h>o>
5+5=5O5a5s5
6$666H6Z8
;"<[<q<