filename | Keygen.exe | |
---|---|---|
size | 2466816 (0x25a400) | |
md5 | b340239934eea5acd3024ea0772add58 | |
type | PE32 executable (GUI) Intel 80386, for MS Windows, PECompact2 compressed | |
mimetype | application/x-dosexec | |
clamav | OK | |
virustotal | → scan with virustotal.com | |
histogram |
MZ Header
signature | MZ |
bytes_in_last_block | 0x90 |
blocks_in_file | 3 |
num_relocs | 0 |
header_paragraphs | 4 |
min_extra_paragraphs | 0 |
max_extra_paragraphs | 0xffff |
ss | 0 |
sp | 0xb8 |
checksum | 0 |
ip | 0 |
cs | 0 |
reloc_table_offset | 0x40 |
overlay_number | 0 |
reserved0 | 0 |
oem_id | 0 |
oem_info | 0 |
reserved2 | 0 |
reserved3 | 0 |
reserved4 | 0 |
reserved5 | 0 |
reserved6 | 0 |
lfanew | 0x128 |
Rich Header
lib id | version | times used |
---|---|---|
131 | 21022 | 93 |
150 | 20413 | 11 |
149 | 30729 | 67 |
131 | 30729 | 250 |
132 | 30729 | 523 |
10 | 8447 | 31 |
132 | 21022 | 127 |
109 | 50727 | 17 |
123 | 50727 | 44 |
0 | 0 | 7 |
49 | 9044 | 5 |
48 | 9044 | 75 |
147 | 30729 | 3 |
1 | 0 | 1106 |
138 | 30729 | 287 |
148 | 21022 | 1 |
145 | 30729 | 1 |
DOS stub
00000000: 0e 1f ba 0e 00 b4 09 cd 21 b8 01 4c cd 21 54 68 |........!..L.!Th| 00000010: 69 73 20 70 72 6f 67 72 61 6d 20 63 61 6e 6e 6f |is program canno| 00000020: 74 20 62 65 20 72 75 6e 20 69 6e 20 44 4f 53 20 |t be run in DOS | 00000030: 6d 6f 64 65 2e 0d 0d 0a 24 00 00 00 00 00 00 00 |mode....$.......|
PE Header
Packer / Compiler
Sections
name | va | vsize | raw size | flags | |
---|---|---|---|---|---|
.text | 0x1000 | 0x675000 | 0x224000 | RWX CODE | |
.rsrc | 0x676000 | 0x36000 | 0x36000 | RWX CODE |
Data Directory
type | va | size | |
---|---|---|---|
EXPORT | 0 | 0 | |
IMPORT | 0x6aaca4 | 0x5b5 | |
RESOURCE | 0x676000 | 0x344d8 | |
EXCEPTION | 0 | 0 | |
SECURITY | 0 | 0 | |
BASERELOC | 0 | 0 | |
DEBUG | 0 | 0 | |
ARCHITECTURE | 0 | 0 | |
GLOBALPTR | 0 | 0 | |
TLS | 0 | 0 | |
LOAD_CONFIG | 0 | 0 | |
Bound_IAT | 0 | 0 | |
IAT | 0 | 0 | |
Delay_IAT | 0x4a98c4 | 0x60 | |
CLR_Header | 0 | 0 |
module_name | hint | ord | function_name |
---|---|---|---|
kernel32.dll | LoadLibraryA | ||
kernel32.dll | GetProcAddress | ||
kernel32.dll | VirtualAlloc | ||
kernel32.dll | VirtualFree | ||
lua5.1.dll | lua_pushfstring | ||
WINMM.dll | mixerOpen | ||
WSOCK32.dll | 23 | ||
VERSION.dll | GetFileVersionInfoA | ||
MSACM32.dll | acmStreamOpen | ||
USER32.dll | DefMDIChildProcA | ||
GDI32.dll | AddFontResourceA | ||
MSIMG32.dll | TransparentBlt | ||
COMDLG32.dll | GetSaveFileNameA | ||
WINSPOOL.DRV | ClosePrinter | ||
ADVAPI32.dll | AdjustTokenPrivileges | ||
SHELL32.dll | ShellExecuteExA | ||
COMCTL32.dll | ImageList_GetImageInfo | ||
SHLWAPI.dll | PathFindFileNameA | ||
oledlg.dll | 1 | ||
ole32.dll | CreateStreamOnHGlobal | ||
OLEAUT32.dll | 185 | ||
urlmon.dll | URLDownloadToFileA | ||
gdiplus.dll | GdipCloneImage | ||
NETAPI32.dll | Netbios | ||
IMM32.dll | ImmGetOpenStatus | ||
imagehlp.dll | ImageDirectoryEntryToData |
StringTable 040904b0
Comments | Created with AutoPlay Media Studio |
FileDescription | AutoPlay Application |
FileVersion | 8.1.0.0 |
InternalName | ams_runtime |
LegalCopyright | Runtime Engine Copyright © 2012 Indigo Rose Corporation (www.indigorose.com) |
LegalTrademarks | AutoPlay Media Studio is a Trademark of Indigo Rose Corporation |
OriginalFilename | ams_runtime.exe |
ProductName | AutoPlay Media Studio Runtime |
ProductVersion | 8.1.0.0 |
VS_FIXEDFILEINFO
FileVersion | 8.1.0.0 |
ProductVersion | 8.1.0.0 |
StrucVersion | 0x10000 |
FileFlagsMask | 0x3f |
FileFlags | 0 |
FileOS | 0x40004 |
FileType | 1 |
FileSubtype | 0 |
Please donate some bucks to keep this site up and running: | |
Ko-fi | |
---|---|
Yandex.Money | |
Thank you! |
[?] can't find file_offset of VA 0x526000
[?] can't find file_offset of VA 0x526078
[?] can't find file_offset of VA 0x526370
[?] can't find file_offset of VA 0x526678
[?] can't find file_offset of VA 0x526900
[?] can't find file_offset of VA 0x526c70
[?] can't find file_offset of VA 0x526dd0
[?] can't find file_offset of VA 0x526f10
[?] can't find file_offset of VA 0x527028
[?] can't find file_offset of VA 0x527158
[?] can't find file_offset of VA 0x527368
[?] can't find file_offset of VA 0x527468
[?] can't find file_offset of VA 0x527510
[?] can't find file_offset of VA 0x527590
[?] can't find file_offset of VA 0x527628
[?] can't find file_offset of VA 0x5276c0
[?] can't find file_offset of VA 0x527748
[?] can't find file_offset of VA 0x5277f0
[?] can't find file_offset of VA 0x527f68
[?] can't find file_offset of VA 0x528600
[?] can't find file_offset of VA 0x528948
[?] can't find file_offset of VA 0x528da8
[?] can't find file_offset of VA 0x528f50
[?] can't find file_offset of VA 0x529a18
[?] can't find file_offset of VA 0x529d98
[?] can't find file_offset of VA 0x52a7e8
[?] can't find file_offset of VA 0x52ac78
[?] can't find file_offset of VA 0x52b6c8
[?] can't find file_offset of VA 0x52ba48
[?] can't find file_offset of VA 0x52c4f8
[?] can't find file_offset of VA 0x52d018
[?] can't find file_offset of VA 0x52daa8
[?] can't find file_offset of VA 0x52e5d8
[?] can't find file_offset of VA 0x52e980
[?] can't find file_offset of VA 0x52faa0
[?] can't find file_offset of VA 0x52fe78
[?] can't find file_offset of VA 0x530098
[?] can't find file_offset of VA 0x530bb0
[?] can't find file_offset of VA 0x531360
[?] can't find file_offset of VA 0x5320a8
[?] can't find file_offset of VA 0x532450
[?] can't find file_offset of VA 0x532770
[?] can't find file_offset of VA 0x532a90
[?] can't find file_offset of VA 0x532d50
[?] can't find file_offset of VA 0x532fc8
[?] can't find file_offset of VA 0x533298
[?] can't find file_offset of VA 0x533400
[?] can't find file_offset of VA 0x533558
[?] can't find file_offset of VA 0x5338e8
[?] can't find file_offset of VA 0x533e20
[?] can't find file_offset of VA 0x533fc0
[?] can't find file_offset of VA 0x536258
[?] can't find file_offset of VA 0x5368f8
[?] can't find file_offset of VA 0x536ac0
[?] can't find file_offset of VA 0x536fe8
[?] can't find file_offset of VA 0x539460
[?] can't find file_offset of VA 0x539b00
[?] can't find file_offset of VA 0x539cc8
[?] can't find file_offset of VA 0x53a1d0
[?] can't find file_offset of VA 0x53c6a8
[?] can't find file_offset of VA 0x53cd48
[?] can't find file_offset of VA 0x53cf10
[?] can't find file_offset of VA 0x53d448
[?] can't find file_offset of VA 0x53f938
[?] can't find file_offset of VA 0x53ffd8
[?] can't find file_offset of VA 0x5401a0
[?] can't find file_offset of VA 0x540680
[?] can't find file_offset of VA 0x542a58
[?] can't find file_offset of VA 0x542be8
[?] can't find file_offset of VA 0x542da8
[?] can't find file_offset of VA 0x543448
[?] can't find file_offset of VA 0x543610
[?] can't find file_offset of VA 0x543b00
[?] can't find file_offset of VA 0x545ea8
[?] can't find file_offset of VA 0x545f70
[?] can't find file_offset of VA 0x546610
[?] can't find file_offset of VA 0x5467d0
[?] can't find file_offset of VA 0x546cb8
[?] can't find file_offset of VA 0x5491c8
[?] can't find file_offset of VA 0x549868
[?] can't find file_offset of VA 0x549a30
[?] can't find file_offset of VA 0x549f20
[?] can't find file_offset of VA 0x54c2e8
[?] can't find file_offset of VA 0x54c3a0
[?] can't find file_offset of VA 0x54c528
[?] can't find file_offset of VA 0x54c6e0
[?] can't find file_offset of VA 0x54c748
[?] can't find file_offset of VA 0x54c848
[?] can't find file_offset of VA 0x54e010
[?] can't find file_offset of VA 0x54e298
[?] can't find file_offset of VA 0x54e310
[?] can't find file_offset of VA 0x54ea30
[?] can't find file_offset of VA 0x54f1c8
[?] can't find file_offset of VA 0x54f450
[?] can't find file_offset of VA 0x54f658
[?] can't find file_offset of VA 0x54f810
[?] can't find file_offset of VA 0x54f8c8
[?] can't find file_offset of VA 0x54f9a0
[?] can't find file_offset of VA 0x54fbc0
[?] can't find file_offset of VA 0x54fde0
[?] can't find file_offset of VA 0x54ff90
[?] too many errors getting resource data, stopped on 0 of 1
[?] ignoring invalid PEdump::BITMAPINFOHEADER
[?] too many errors getting resource data, stopped on 0 of 1
[?] can't find file_offset of VA 0x4a98c4