Sup Cred Forums. I found this USB stick that was seemingly empty so I ran recuva on it and I found pic related. Any suggestions as to what I can do to see what that file may be?
It is from a relative that has passed away so I'm hoping for some sweet sweet wincest. Will post any progress.
open it with a text editor and post a paste or pic of the outcome
Matthew Morgan
It's 83MB. It crashes when I try to open it in notepad.
Isaac Bell
Based on the size of that file it looks like a video file. Make a copy in your video folder & change the extension to all common video formats till one works. Post results
Justin Diaz
you could try a hex inspector to see if there are any signs of specific filetypes
Christian Flores
> usb stick > location C
Jacob Russell
I noticed that too, plus the creation time?
Luis Diaz
>Created: Friday, January 25, 2075
Gavin Gomez
o yea thats kinda fuked
Logan Watson
Maybe he transferred the file from the drive to a new folder?
Jaxon Cox
> accessed 1980
Joseph Jackson
Read the OP post, I ran recuva and recovered this file. The drive appears empty so it was wiped clean.
Trying now. Every file type so far opens but it's just a blank screen and some random time and it plays and nothing happens. VLC says it doesn't recognize and can't find the codec.
youre probably fine and i think were all pretty doubtful that thats what it is that looks promising
Justin Russell
don't think it is an executable.
Did you try zip rar and similar packed file extensions already?
Parker Parker
Yes, the hero has arrived
Cooper Flores
Trying now.
Good to hear.
Haven't but I'm trying now.
Aiden Diaz
Could you export it to dropbox? It could just be an OS like Ubuntu in a Japanese font that makes the extension look weird. If you have Linux, type "file " to see what the header of the binary is
Julian Wright
Yes, the hero has arrived**
Hudson Torres
Try Stellar Phoenix Data Recovery, maybe it will work
Ryder Williams
Scratch that. file wouldn't work on an ecrypted file and this really looks like an ecrypted backup of some phone dump or what not. But uploading to dropbox would be nice ya know, so I could try a bunch of shit on it, be a fun type for me.
David Brooks
The soft will see what kind of extension it is based on what's the file contain and will repair it. If it doesn't work I think you're pretty fucked OP
Logan Garcia
i think we'd all enjoy the challenge
Ryder Clark
Tried this site and it just keeps getting "Problem loading page" after I upload the file. Maybe it is too big?
Brandon Wilson
there really isnt much more suggestible without being able to take a look ourselves
Daniel Bennett
okay but if you find something add me on kik first jjhhardy69 I'll pay you if you get something and don't post it.
mega /#!6LoFEaCI!W7hNw-fp6VySSrd_XqKGSslbB13JjDtiVoFM5ighUks
Cameron Garcia
thanks ill let ya know if i find anything
Jace Murphy
Yea but could we still be shown the solved file, im pretty intrigued now and im really not some computer genius lmao
Dominic Rodriguez
how much?
Jaxon White
Sweet, I'll look into it. I don't have kik and don't want money. I just wanted to play around with it.
Camden Cook
Yea but could we still get updated on the file if it gets solved. Im pretty intrigued now but im not some computer genius lol
Nolan Lewis
Sorry for the double replies, thought internet wasn't working
Jordan Smith
>821273479
You can open the file in 7zip as an archive ... seems to be some kind of driver ... no win in it.
I'm still running this software btw. It's taking forever but maybe that's a good thing?
William Richardson
ditch winrar ... 7zip is far superior ... opens basically everything and is free.
Carson Bennett
OP, if you want, past line 1500 gets to human readable text, but it's just the dll/executable strings inside them, like error messages. Following the strings and what the other person said about the config file, sounds like someone working at Dell really. I see: SOFTWARE\Dell Computer Corporation\DellHAPI\CurrentVersion
Grayson Mitchell
so I ran the stellar software and I found more files. But it wants an activation key to get the files. Anyone have a crack?
looks like when you open an image in notepad search for readable strings. Most image file types have their extension in clear text somewhere in this mess
Logan Cox
The bat file inside the binary installs hapi whatever hapi could possibly be. I'm gonna install it, let's see how it goes.
Colton Bennett
better open the bat in an editor first this is how viruses spread
Dominic Foster
>>>>>It crashes when I try to open it in notepad
With 4GB of RAM I was openning files weighing in hundreds of megs on my old laptop with Vista on it. The fuck are you on about you dumb cuck.
Stop trying to get attention. Sage in all fields.
Nicholas Morris
you need to read the whole thread you turbo nigger.
Levi Hall
I should have checked which files it opened. I assumed it'd open an install wizard, but it just installed HAPI, whatever that is. I'm looking around at the other executables, but they really don't explain what HAPI is.
Isaac Wood
On the topic of wins...
A mate of mine uses rclone encrypt to back stuff up to our Google drive.
I can see the files but they have messed up names.
Anything I can do to decrypt them?
Jaxon Robinson
just open the bat file in notepad and send the screenshot, Bat are clear text code, then we can tell what it dose / did when you already executed that
on the note of security, if you see all these exe it would be better if you puled that thing into a Linux box, or a vm if you don't want to fry your main Windows install
Carson Jackson
Ah, that's why nothing happened. I needed to run the bash script as administrator! I backed up my files just in case, but I don't know exactly where they're putting their installed files:
Installing Components *********************
HAPI version being installed: 8.1 HAPI version being installed: 8.1 Removing current HAPI base driver, if installed. Installing HAPI libraries based on supported system type(s). Installing driver: dcdbas WARNING: The supported system type(s) is UNKNOWN. Continuing anyway. Not copying HAPI symbol files because symbol files were not selected. Installing HAPI files. Not copying HAPI test tool file because it was not selected. Updating the registry. Updating the registry.
Install Summary *************** Install Complete: No errors encountered.
Lucas Cook
there is nothing interesting in that bat
@SETLOCAL @echo off
::make sure the start dir is the same as where the batch file locates SET batchDir=%~dp0 CD /D %batchDir%
Sadly, I wasn't able to get the service manager to open:
ERROR: Could not open handle to service - dcesm Removal of DCESM Shell Service failed.
Starting: Drivers ROOT\SYSTEM\0003 : Server Agent is not installed.
Gavin Nelson
>6 reading the code, if you want to uninstall this thing: make a new bat file and paste this into it
----------------------------------------------- @SETLOCAL SET batchDir=%~dp0 CD /D %batchDir% CD hapi hapint64 -k SPHAPIDA5 -r -q @POPD @ENDLOCAL ----------------------------------------------- and then run
Grayson Martin
some history on the usb?
looks like some IT guys maintenance USB with some diagnostic tools on.
Colton Roberts
I'm not OP, just an idiot who downloaded a binary from Cred Forums and decided to install it on his home computer
Ian Johnson
if she has died, you could always go visit (I'm assuming your aunt or something) and while people are cleaning house, raid her panty drawer. Take a bunch of her clothes too so as not to arouse too much suspicion.
Also, look everywhere for cds, microusbs, any electronics.
Give us details OP, who was she? How recent was this? Do you have access to her belongings?
Bentley Nelson
>cont. I'm done playing with it. Running an anti-virus just in case, then going off to the bar. I don't believe the binaries are malicious in any way if anyone else wants to play with it. You need to use admin command prompt (or powershell but I'm an oldfag who still uses command prompt) and I believe you need a Dell machine. I have an Acer so I think that's why I think I'm getting UNKNOWN system that I show in
Benjamin Moore
link doesn't work anymore breh
Jace Bailey
you didnt do shit, why would you get it
Adrian Thompson
because this is Cred Forums and half of what we do is post these links