Warning! We are currently in recovery mode. The complete archive is not available.

Sample details: b52ad7dcfe4a0413284a7ffc9abf79e9 --

Hashes
MD5: b52ad7dcfe4a0413284a7ffc9abf79e9
SHA1: 4b7b13fd452d791193207a6532a5b7369959b0ae
SHA256: dba7c09bb3a31da76864348a8d73745795b3cf8cd5a31721f1ff7961ae5a2fd5
SSDEEP: 1536:LlrslNqKxo2QqMhWZt+WHigzw2IdIcGkGRP:LlrslYKy2hMPnK
Details
File Type: PE32
Yara Hits
YRP/Borland_Cpp_DLL | YRP/Borland_Cpp_for_Win32_1999 | YRP/Borland | YRP/IsPE32 | YRP/IsDLL | YRP/IsWindowsGUI | YRP/IsBeyondImageSize | YRP/domain | YRP/contentis_base64 | YRP/DebuggerException__SetConsoleCtrl | YRP/win_files_operation |
Parent Files
07366aeaaf4cc541451e35c636f53fa4
Strings
		This program must be run under Win32
`.data
.idata
@.edata
@.rsrc
@.reloc
fb:C++HOOK
_^[YY]
_^[YY]
SVj.hN0c
_^[YY]
**BCCxh1
_^[YY]
_^[YY]
_^[YY]
QVhh9c
H_^[Y]
e@FBC;u
_^[YY]
t1WCSV
QUVWRSPT
0_^[Y]
Borland C++ - Copyright 1999 Inprise Corporation
SIMULATE_TLS: A second thread was about to be created and the c0s32 startup code is in use
Nonshared DATA segment required
Cannot run multiple instances of a DLL under WIN32s
MS-DOS
Mac-OS
Win NT
Primos
Apple GS
VAX VMS
ace|c##
UnAceV2.Dll
Formats\UnAceV2.Dll
ACEInitDll
ACEReadArchiveData
ACEList
ACETest
ACEExtract
**ACE**
borlndmm
hrdir_b.c: LoadLibrary != mmdll borlndmm failed
borlndmm
@Borlndmm@SysGetMem$qqri
@Borlndmm@SysFreeMem$qqrpv
@Borlndmm@SysReallocMem$qqrpvi
<notype>
<notype>
___CPPdebugHook
Stack Overflow!
),(((((),(((
Error 0
Invalid function number
No such file or directory
Path not found
Too many open files
Permission denied
Bad file number
Memory arena trashed
Not enough memory
Invalid memory block address
Invalid environment
Invalid format
Invalid access code
Invalid data
Bad address
No such device
Attempted to remove current directory
Not same device
No more files
Invalid argument
Arg list too big
Exec format error
Cross-device link
Too many open files
No child processes
Inappropriate I/O control operation
Executable file in use
File too large
No space left on device
Illegal seek
Read-only file system
Too many links
Broken pipe
Math argument
Result too large
File already exists
Possible deadlock
Operation not permitted
No such process
Interrupted function call
Input/output error
No such device or address
Resource temporarily unavailable
Block device required
Resource busy
Not a directory
Is a directory
Directory not empty
Unknown error
(null)
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
%H:%M:%S
%m/%d/%y
%A, %B %d, %Y
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
Sunday
January
February
August
September
October
November
December
printf : floating point formats not linked
scanf : floating point formats not linked
printf : floating point formats not linked
scanf : floating point formats not linked
Error: system code page access failure; MBCS table not initialized
%02d/%02d/%04d %02d:%02d:%02d.%03d 
kernel32.dll
GetProcAddress
Borland32
Abnormal program termination
No space for copy of command line
No space for copy of command line
GetEnvironmentStrings failed
Could not allocate memory for environment block
An exception (%08X) occurred during DllEntryPoint or DllMain in module:
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
August
September
October
November
December
___CPPdebugHook
**BCCxh1
KERNEL32.DLL
USER32.DLL
CloseHandle
CreateFileA
CreateFileW
DosDateTimeToFileTime
ExitProcess
FileTimeToLocalFileTime
FileTimeToSystemTime
FreeEnvironmentStringsA
FreeLibrary
GetACP
GetCPInfo
GetCurrentDirectoryA
GetCurrentThreadId
GetEnvironmentStrings
GetFileAttributesA
GetFileAttributesW
GetFileSize
GetFileTime
GetFileType
GetLastError
GetLocalTime
GetModuleFileNameA
GetModuleHandleA
GetOEMCP
GetProcAddress
GetProcessHeap
GetStartupInfoA
GetStdHandle
GetStringTypeW
GetTimeZoneInformation
GetVersion
GetVersionExA
GlobalMemoryStatus
HeapAlloc
HeapFree
LCMapStringA
LoadLibraryA
LocalFileTimeToFileTime
MultiByteToWideChar
RaiseException
ReadFile
RtlUnwind
SetConsoleCtrlHandler
SetFilePointer
SetHandleCount
UnhandledExceptionFilter
VirtualAlloc
VirtualFree
WideCharToMultiByte
WriteFile
EnumThreadWindows
MessageBoxA
OemToCharA
wsprintfA
ace.dll
Extract
GetComment
GetListItem
GetNextName
Prepare
___CPPdebugHook
{<:y&q?	
;-;<;_;t;
>S>r>Y>
?'?1?;?I?Z?i?
5/5?5O5m5
:*:.:2:6:::>:K:Z:i:x:
0$0+010:0G0S0g0m0
1%1B1U1^1
2(252;2O2
2$3O3_3p3
3Z3j3z3
:.:7:G:}:
:!;?;S;l;
<#<)<4<@<V<^<i<o<z<
=>=F=R=X=h=t={=
4	5H4e4
445F534o4
8;8O8\8i8
9-9I9Z9f9o9
0O0)020V0
212?2K2W2e2t2
3-3<3G3S3b3v3
0!0,0[0a0i0q0
1&1\1d1q1
152?2Z2e2
879_:m:
?#?+?9?K?Q?Z?^?k?
>#?1?9?
>:>E>T>w>
2+3i3{3
666Y6q6<7
789a9~9[:`:
0)000A0P0
3$4(4,4044484<4@4D4H4L4P4T4X4\4`4d4h4l4p4t4x4|4
?!?O?j?
0	1>1v1
7&7C7X7m7
9%999O;
6!6+6:6C6M6
; ;/;8;B;
=	>7>P>r>w>
?!?%?)?
607<7G7T7}7
8#:z9Y:l:
:q;+<d;e<x<
5,5p5|5
777F7i8
8/9=9;8Q8
F6J6N6R6V6Z6^681S1
0 0&0,02080>0D0J0P0V0\0b0h0n0t0z0
= =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=t=x=|=
0 0&0,02080>0D0J0P0V0\0b0h0n0
3@3H3L3P3t4x4|4
7T8X8\8`8
= =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=t=x=|=
>(?\?|?
5 5$5(5,505D5H5L5P5T5X5\5`5d5h5l5p5t5x5|5