msdtcvtr.bat
- File Path:
C:\Windows\system32\MsDtc\Trace\msdtcvtr.bat
Hashes
Type |
Hash |
MD5 |
A4E34518E44880DDC089FD918371F7ED |
SHA1 |
448918DD2F123A54CBF88A1EFFBD4FA7A0268EFC |
SHA256 |
3A7564761F87E811E01798FE633AEE15B21C8EE7414BB5560305E9AEE15C1945 |
SHA384 |
200768EA3833D9D83A190B4384EA8B858AD7B160E97D9FEE38CC7D2486E3599EEBD8D5081E7F7A24ACE04000EE4509D4 |
SHA512 |
651F65E646873646BD489D55073E7C2CCC2A1182EC9C944E8BDB3D15BE6D53CD4EF9471DC3379AEDF1F708679EF9CD75C54F4526961BCA95D9B324539838E07D |
SSDEEP |
384:DwR+j38jeK8Ssyg04LdBo0qfcDaYwnE4IR0ibLzVp0:0RiLK8X04LdBo0qfcDalE4IR0iY |
PESHA1 |
448918DD2F123A54CBF88A1EFFBD4FA7A0268EFC |
PE256 |
3A7564761F87E811E01798FE633AEE15B21C8EE7414BB5560305E9AEE15C1945 |
Runtime Data
Usage (stdout):
Invalid Usage : "help" used without any switch
Usage
"msdtcvtr { -MODE {1 | 2} | -tracelog tracelogfilename } [options]"
"All switches can be prefixed with either '-' or '/'"
Parameters:
"-MODE 1 to view background tracing"
"-MODE 2 to view tracing generated by ui"
"-tracelog <file> binary Trace log file name"
Options:
"-h OR -? Display Help"
"-o <filename> Output Filename without extension"
"-mof <filename> Mof Filename"
Loaded Modules:
Path |
C:\Windows\system32\cmd.exe |
C:\Windows\System32\KERNEL32.DLL |
C:\Windows\System32\KERNELBASE.dll |
C:\Windows\SYSTEM32\ntdll.dll |
Signature
- Status: Signature verified.
- Serial:
3300000266BD1580EFA75CD6D3000000000266
- Thumbprint:
A4341B9FD50FB9964283220A36A1EF6F6FAA7840
- Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Original Filename:
- Product Name:
- Company Name:
- File Version:
- Product Version:
- Language:
- Legal Copyright:
File Scan
- VirusTotal Detections: 0/75
- VirusTotal Link: https://www.virustotal.com/gui/file/3a7564761f87e811e01798fe633aee15b21c8ee7414bb5560305e9aee15c1945/detection
File Similarity (ssdeep match)
MIT License. Copyright (c) 2020-2021 Strontic.