Warning! We are currently in recovery mode. The complete archive is not available.

Sample details: 8c293f100ac506ada60e2374680669ee --

Hashes
MD5: 8c293f100ac506ada60e2374680669ee
SHA1: 417c560b976d1471489c677d4736ca5d87bda31a
SHA256: 30c6c26b5ae45dd2bc256ab6cedffbc2c2b2744b94ae1efd895da580969301fa
SSDEEP: 384:9BqTX0ItHOVgMlFrdoRJZytSNgAW3vGCKteWy2F4zqGo6oVp2:TqTkGHOizrORenFj56oVs
Details
File Type: PE32
Yara Hits
YRP/Armadillo_v171 | YRP/Microsoft_Visual_Cpp_v60 | YRP/Installer_VISE_Custom_additional | YRP/Microsoft_Visual_Cpp_v50v60_MFC_additional | YRP/Microsoft_Visual_Cpp_50 | YRP/Microsoft_Visual_Cpp_v50v60_MFC | YRP/Armadillo_v171_additional | YRP/Installer_VISE_Custom | YRP/Armadillo_v4x | YRP/Microsoft_Visual_Cpp | YRP/IsPE32 | YRP/IsWindowsGUI | YRP/HasRichSignature | YRP/domain | YRP/contentis_base64 | YRP/DebuggerException__ConsoleCtrl | YRP/win_mutex | YRP/win_private_profile |
Parent Files
6e1078156a9456706e5655dbe7cf9c1b
Strings
		!This program cannot be run in DOS mode.
7Rich#u
`.rdata
@.data
L$tPQj
D$Tj\P
L$XRQj
YYh(p@
SS@SSPVSS
t#SSUP
t$$VSS
_^][YY
DSUVWh
t.;t$$t(
VC20XC00U
[Sh0d@
"WWSh,d@
^Vh0d@
PVh,d@
tPhpd@
^}%95L
__GLOBAL_HEAP_SELECTED
__MSVCRT_HEAP_SELECT
runtime error 
TLOSS error
SING error
DOMAIN error
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
abnormal program termination
- not enough space for environment
- not enough space for arguments
- floating point not loaded
Microsoft Visual C++ Runtime Library
Runtime Error!
Program: 
<program name unknown>
GetLastActivePopup
GetActiveWindow
MessageBoxA
user32.dll
GetModuleFileNameA
GetPrivateProfileStringA
lstrcpyA
GetProcAddress
LoadLibraryA
FreeLibrary
GetVersionExA
WaitForSingleObject
FreeConsole
CloseHandle
CreateProcessA
AllocConsole
GetStartupInfoA
GenerateConsoleCtrlEvent
TerminateThread
GetLastError
SetEvent
CreateMutexA
OpenMutexA
KERNEL32.dll
wsprintfA
EnumWindows
SendMessageA
GetWindowThreadProcessId
GetWindow
USER32.dll
ADVAPI32.dll
ShellExecuteA
SHELL32.dll
GetModuleHandleA
GetCommandLineA
GetVersion
ExitProcess
GetCPInfo
GetACP
GetOEMCP
HeapAlloc
HeapReAlloc
TerminateProcess
GetCurrentProcess
HeapSize
UnhandledExceptionFilter
FreeEnvironmentStringsA
FreeEnvironmentStringsW
WideCharToMultiByte
GetEnvironmentStrings
GetEnvironmentStringsW
SetHandleCount
GetStdHandle
GetFileType
GetEnvironmentVariableA
HeapDestroy
HeapCreate
VirtualFree
HeapFree
RtlUnwind
WriteFile
MultiByteToWideChar
LCMapStringA
LCMapStringW
GetStringTypeA
GetStringTypeW
VirtualAlloc
UITYPE
SERVICE
SVCINFO.CFG
SetSecurityDescriptorDacl
InitializeSecurityDescriptor
DeregisterEventSource
ReportEventA
RegisterEventSourceA
ChangeServiceConfigA
ControlService
DeleteService
OpenServiceA
CloseServiceHandle
CreateServiceA
OpenSCManagerA
SetServiceStatus
RegisterServiceCtrlHandlerA
StartServiceCtrlDispatcherA
ADVAPI32.DLL
SVCKICKER_MUTEX_%s
wwwwww