| filename | installer_release.exe | |
|---|---|---|
| size | 844800 (0xce400) | |
| md5 | 860a8d3d4ce0f80ede1d263fecb0b1d1 | |
| type | PE32 executable (GUI) Intel 80386, for MS Windows | |
| mimetype | application/x-dosexec | |
| clamav | OK | |
| virustotal | → scan with virustotal.com | |
| histogram | ||
MZ Header
| signature | MZ |
| bytes_in_last_block | 0x90 |
| blocks_in_file | 3 |
| num_relocs | 0 |
| header_paragraphs | 4 |
| min_extra_paragraphs | 0 |
| max_extra_paragraphs | 0xffff |
| ss | 0 |
| sp | 0xb8 |
| checksum | 0 |
| ip | 0 |
| cs | 0 |
| reloc_table_offset | 0x40 |
| overlay_number | 0 |
| reserved0 | 0 |
| oem_id | 0 |
| oem_info | 0 |
| reserved2 | 0 |
| reserved3 | 0 |
| reserved4 | 0 |
| reserved5 | 0 |
| reserved6 | 0 |
| lfanew | 0x100 |
Rich Header
| lib id | version | times used |
|---|---|---|
| 223 | 21005 | 24 |
| 224 | 21005 | 131 |
| 225 | 21005 | 55 |
| 225 | 20806 | 4 |
| 131 | 30729 | 2 |
| 147 | 30729 | 23 |
| 1 | 0 | 252 |
| 229 | 30324 | 23 |
| 219 | 21005 | 1 |
| 151 | 0 | 1 |
| 222 | 30324 | 1 |
DOS stub
00000000: 0e 1f ba 0e 00 b4 09 cd 21 b8 01 4c cd 21 54 68 |........!..L.!Th| 00000010: 69 73 20 70 72 6f 67 72 61 6d 20 63 61 6e 6e 6f |is program canno| 00000020: 74 20 62 65 20 72 75 6e 20 69 6e 20 44 4f 53 20 |t be run in DOS | 00000030: 6d 6f 64 65 2e 0d 0d 0a 24 00 00 00 00 00 00 00 |mode....$.......|
PE Header
Packer / Compiler
Sections
Data Directory
| type | name | size | cp | |
|---|---|---|---|---|
| BROKER | #1 | 558069 | 0 | |
| TYPELIB | #1 | 2764 | 0 | |
| ICON | #1 | 1384 | 0 | |
| ICON | #2 | 2216 | 0 | |
| DIALOG | #129 | 194 | 0 | |
| DIALOG | #201 | 268 | 0 | |
| STRING | #13 | 880 | 0 | |
| STRING | #14 | 256 | 0 | |
| GROUP_ICON | #100 | 34 | 0 | |
| VERSION | #1 | 728 | 0 | |
| MANIFEST | #1 | 651 | 0 | |
| #240 | #129 | 170 | 0 |
| id | lang | string |
|---|---|---|
| 202 | 1033 | Product Name |
| 203 | 1033 | 11111111-2222-3333-4444-555555555555 |
| 204 | 1033 | Cancelling in progress... |
| 205 | 1033 | http://leadbucks.com/campaigns/11111111-2222-3333-4444-555555555555/manifest.xml |
| 206 | 1033 | Are you sure you want to cancel installation? |
| 207 | 1033 | Initialization has failed. Please check your internet connection and restart installation. |
| 208 | 1033 | USyndication campaign id |
| module_name | hint | ord | function_name |
|---|---|---|---|
| KERNEL32.dll | 871 | MultiByteToWideChar | |
| KERNEL32.dll | 133 | CreateEventW | |
| KERNEL32.dll | 1202 | Sleep | |
| KERNEL32.dll | 1113 | SetEvent | |
| KERNEL32.dll | 1043 | ResumeThread | |
| KERNEL32.dll | 645 | GetTempPathW | |
| KERNEL32.dll | 1271 | WaitForMultipleObjects | |
| KERNEL32.dll | 448 | GetCurrentProcess | |
| KERNEL32.dll | 344 | FlushInstructionCache | |
| KERNEL32.dll | 1139 | SetLastError | |
| KERNEL32.dll | 238 | EnterCriticalSection | |
| KERNEL32.dll | 825 | LeaveCriticalSection | |
| KERNEL32.dll | 453 | GetCurrentThreadId | |
| KERNEL32.dll | 945 | RaiseException | |
| KERNEL32.dll | 739 | InitializeCriticalSectionAndSpinCount | |
| KERNEL32.dll | 209 | DeleteCriticalSection | |
| KERNEL32.dll | 354 | FreeLibrary | |
| KERNEL32.dll | 581 | GetProcAddress | |
| KERNEL32.dll | 1349 | lstrcmpiW | |
| KERNEL32.dll | 830 | LoadLibraryExW | |
| KERNEL32.dll | 532 | GetModuleFileNameW | |
| KERNEL32.dll | 202 | DecodePointer | |
| KERNEL32.dll | 709 | GlobalUnlock | |
| KERNEL32.dll | 702 | GlobalLock | |
| KERNEL32.dll | 691 | GlobalAlloc | |
| KERNEL32.dll | 870 | MulDiv | |
| KERNEL32.dll | 1346 | lstrcmpW | |
| KERNEL32.dll | 701 | GlobalHandle | |
| KERNEL32.dll | 698 | GlobalFree | |
| KERNEL32.dll | 515 | GetLocalTime | |
| KERNEL32.dll | 497 | GetFileSizeEx | |
| KERNEL32.dll | 960 | ReadFile | |
| KERNEL32.dll | 1358 | lstrlenW | |
| KERNEL32.dll | 228 | DosDateTimeToFileTime | |
| KERNEL32.dll | 1126 | SetFilePointer | |
| KERNEL32.dll | 1213 | SystemTimeToFileTime | |
| KERNEL32.dll | 1130 | SetFileTime | |
| KERNEL32.dll | 1297 | WideCharToMultiByte | |
| KERNEL32.dll | 447 | GetCurrentDirectoryW | |
| KERNEL32.dll | 499 | GetFileType | |
| KERNEL32.dll | 1316 | WriteConsoleW | |
| KERNEL32.dll | 1159 | SetStdHandle | |
| KERNEL32.dll | 813 | LCMapStringW | |
| KERNEL32.dll | 129 | CreateDirectoryW | |
| KERNEL32.dll | 1127 | SetFilePointerEx | |
| KERNEL32.dll | 428 | GetConsoleMode | |
| KERNEL32.dll | 410 | GetConsoleCP | |
| KERNEL32.dll | 353 | FreeEnvironmentStringsW | |
| KERNEL32.dll | 474 | GetEnvironmentStringsW | |
| KERNEL32.dll | 449 | GetCurrentProcessId | |
| KERNEL32.dll | 935 | QueryPerformanceCounter | |
| KERNEL32.dll | 1048 | RtlUnwind | |
| KERNEL32.dll | 611 | GetStartupInfoW | |
| KERNEL32.dll | 1222 | TlsFree | |
| KERNEL32.dll | 1224 | TlsSetValue | |
| KERNEL32.dll | 1223 | TlsGetValue | |
| KERNEL32.dll | 1221 | TlsAlloc | |
| KERNEL32.dll | 1216 | TerminateProcess | |
| KERNEL32.dll | 1189 | SetUnhandledExceptionFilter | |
| KERNEL32.dll | 1235 | UnhandledExceptionFilter | |
| KERNEL32.dll | 612 | GetStdHandle | |
| KERNEL32.dll | 617 | GetStringTypeW | |
| KERNEL32.dll | 370 | GetCPInfo | |
| KERNEL32.dll | 567 | GetOEMCP | |
| KERNEL32.dll | 360 | GetACP | |
| KERNEL32.dll | 778 | IsValidCodePage | |
| KERNEL32.dll | 535 | GetModuleHandleExW | |
| KERNEL32.dll | 281 | ExitProcess | |
| KERNEL32.dll | 391 | GetCommandLineW | |
| KERNEL32.dll | 633 | GetSystemTimeAsFileTime | |
| KERNEL32.dll | 282 | ExitThread | |
| KERNEL32.dll | 181 | CreateThread | |
| KERNEL32.dll | 234 | EncodePointer | |
| KERNEL32.dll | 1260 | VirtualFree | |
| KERNEL32.dll | 1257 | VirtualAlloc | |
| KERNEL32.dll | 772 | IsProcessorFeaturePresent | |
| KERNEL32.dll | 753 | InterlockedPushEntrySList | |
| KERNEL32.dll | 752 | InterlockedPopEntrySList | |
| KERNEL32.dll | 743 | InitializeSListHead | |
| KERNEL32.dll | 768 | IsDebuggerPresent | |
| KERNEL32.dll | 313 | FindFirstFileW | |
| KERNEL32.dll | 285 | ExpandEnvironmentStringsW | |
| KERNEL32.dll | 302 | FindClose | |
| KERNEL32.dll | 214 | DeleteFileW | |
| KERNEL32.dll | 643 | GetTempFileNameW | |
| KERNEL32.dll | 1317 | WriteFile | |
| KERNEL32.dll | 143 | CreateFileW | |
| KERNEL32.dll | 479 | GetExitCodeProcess | |
| KERNEL32.dll | 1273 | WaitForSingleObject | |
| KERNEL32.dll | 82 | CloseHandle | |
| KERNEL32.dll | 168 | CreateProcessW | |
| KERNEL32.dll | 343 | FlushFileBuffers | |
| KERNEL32.dll | 536 | GetModuleHandleW | |
| KERNEL32.dll | 906 | OutputDebugStringW | |
| KERNEL32.dll | 514 | GetLastError | |
| KERNEL32.dll | 333 | FindResourceExW | |
| KERNEL32.dll | 334 | FindResourceW | |
| KERNEL32.dll | 833 | LoadResource | |
| KERNEL32.dll | 852 | LockResource | |
| KERNEL32.dll | 1201 | SizeofResource | |
| KERNEL32.dll | 586 | GetProcessHeap | |
| KERNEL32.dll | 715 | HeapAlloc | |
| KERNEL32.dll | 719 | HeapFree | |
| KERNEL32.dll | 722 | HeapReAlloc | |
| KERNEL32.dll | 724 | HeapSize | |
| KERNEL32.dll | 718 | HeapDestroy | |
| USER32.dll | 276 | GetClientRect | |
| USER32.dll | 356 | GetParent | |
| USER32.dll | 412 | GetWindowRect | |
| USER32.dll | 351 | GetMonitorInfoW | |
| USER32.dll | 538 | MonitorFromWindow | |
| USER32.dll | 406 | GetWindowLongW | |
| USER32.dll | 398 | GetWindow | |
| USER32.dll | 495 | LoadImageW | |
| USER32.dll | 382 | GetSystemMetrics | |
| USER32.dll | 636 | SendMessageW | |
| USER32.dll | 521 | MapWindowPoints | |
| USER32.dll | 710 | SetWindowPos | |
| USER32.dll | 175 | DispatchMessageW | |
| USER32.dll | 764 | TranslateMessage | |
| USER32.dll | 563 | PeekMessageW | |
| USER32.dll | 748 | SystemParametersInfoW | |
| USER32.dll | 256 | GetActiveWindow | |
| USER32.dll | 533 | MessageBoxW | |
| USER32.dll | 170 | DialogBoxIndirectParamW | |
| USER32.dll | 705 | SetWindowContextHelpId | |
| USER32.dll | 516 | MapDialogRect | |
| USER32.dll | 627 | SendDlgItemMessageW | |
| USER32.dll | 218 | EndDialog | |
| USER32.dll | 3 | AdjustWindowRectEx | |
| USER32.dll | 566 | PostMessageW | |
| USER32.dll | 295 | GetDlgItem | |
| USER32.dll | 735 | ShowWindow | |
| USER32.dll | 541 | MsgWaitForMultipleObjectsEx | |
| USER32.dll | 774 | UnregisterClassW | |
| USER32.dll | 99 | CreateDialogParamW | |
| USER32.dll | 708 | SetWindowLongW | |
| USER32.dll | 166 | DestroyWindow | |
| USER32.dll | 49 | CharNextW | |
| USER32.dll | 156 | DefWindowProcW | |
| USER32.dll | 589 | RegisterClassExW | |
| USER32.dll | 491 | LoadCursorW | |
| USER32.dll | 160 | DestroyAcceleratorTable | |
| USER32.dll | 611 | RegisterWindowMessageW | |
| USER32.dll | 418 | GetWindowTextLengthW | |
| USER32.dll | 715 | SetWindowTextW | |
| USER32.dll | 419 | GetWindowTextW | |
| USER32.dll | 14 | BeginPaint | |
| USER32.dll | 220 | EndPaint | |
| USER32.dll | 457 | IsChild | |
| USER32.dll | 300 | GetFocus | |
| USER32.dll | 658 | SetFocus | |
| USER32.dll | 475 | IsWindow | |
| USER32.dll | 274 | GetClassNameW | |
| USER32.dll | 379 | GetSysColor | |
| USER32.dll | 586 | RedrawWindow | |
| USER32.dll | 269 | GetClassInfoExW | |
| USER32.dll | 110 | CreateWindowExW | |
| USER32.dll | 88 | CreateAcceleratorTableW | |
| USER32.dll | 71 | ClientToScreen | |
| USER32.dll | 621 | ScreenToClient | |
| USER32.dll | 539 | MoveWindow | |
| USER32.dll | 640 | SetCapture | |
| USER32.dll | 612 | ReleaseCapture | |
| USER32.dll | 246 | FillRect | |
| USER32.dll | 447 | InvalidateRgn | |
| USER32.dll | 30 | CallWindowProcW | |
| USER32.dll | 446 | InvalidateRect | |
| USER32.dll | 289 | GetDC | |
| USER32.dll | 613 | ReleaseDC | |
| USER32.dll | 291 | GetDesktopWindow | |
| USER32.dll | 331 | GetMenu | |
| GDI32.dll | 525 | GetStockObject | |
| GDI32.dll | 227 | DeleteDC | |
| GDI32.dll | 19 | BitBlt | |
| GDI32.dll | 509 | GetObjectW | |
| GDI32.dll | 631 | SelectObject | |
| GDI32.dll | 47 | CreateCompatibleBitmap | |
| GDI32.dll | 48 | CreateCompatibleDC | |
| GDI32.dll | 84 | CreateSolidBrush | |
| GDI32.dll | 230 | DeleteObject | |
| GDI32.dll | 459 | GetDeviceCaps | |
| ADVAPI32.dll | 609 | RegOpenKeyExW | |
| ADVAPI32.dll | 584 | RegDeleteValueW | |
| ADVAPI32.dll | 569 | RegCreateKeyExW | |
| ADVAPI32.dll | 638 | RegSetValueExW | |
| ADVAPI32.dll | 616 | RegQueryInfoKeyW | |
| ADVAPI32.dll | 580 | RegDeleteKeyW | |
| ADVAPI32.dll | 612 | RegOpenKeyW | |
| ADVAPI32.dll | 591 | RegEnumKeyExW | |
| ADVAPI32.dll | 560 | RegCloseKey | |
| ADVAPI32.dll | 622 | RegQueryValueExW | |
| SHELL32.dll | 289 | ShellExecuteExW | |
| SHELL32.dll | 290 | ShellExecuteW | |
| SHELL32.dll | 172 | SHFileOperationW | |
| ole32.dll | 306 | OleInitialize | |
| ole32.dll | 8 | CLSIDFromString | |
| ole32.dll | 38 | CoGetClassObject | |
| ole32.dll | 134 | CreateStreamOnHGlobal | |
| ole32.dll | 312 | OleLockRunning | |
| ole32.dll | 377 | StringFromGUID2 | |
| ole32.dll | 329 | OleUninitialize | |
| ole32.dll | 62 | CoInitialize | |
| ole32.dll | 16 | CoCreateInstance | |
| ole32.dll | 103 | CoTaskMemAlloc | |
| ole32.dll | 105 | CoTaskMemRealloc | |
| ole32.dll | 104 | CoTaskMemFree | |
| ole32.dll | 15 | CoCreateGuid | |
| ole32.dll | 108 | CoUninitialize | |
| ole32.dll | 63 | CoInitializeEx | |
| ole32.dll | 6 | CLSIDFromProgID | |
| OLEAUT32.dll | 162 | ||
| OLEAUT32.dll | 149 | ||
| OLEAUT32.dll | 150 | ||
| OLEAUT32.dll | 146 | ||
| OLEAUT32.dll | 4 | ||
| OLEAUT32.dll | 8 | ||
| OLEAUT32.dll | 9 | ||
| OLEAUT32.dll | 161 | ||
| OLEAUT32.dll | 2 | ||
| OLEAUT32.dll | 6 | ||
| OLEAUT32.dll | 277 | ||
| OLEAUT32.dll | 420 | ||
| OLEAUT32.dll | 7 | ||
| WININET.dll | 116 | InternetCrackUrlW | |
| WININET.dll | 90 | HttpQueryInfoW | |
| WININET.dll | 161 | InternetReadFileExW | |
| WININET.dll | 89 | HttpQueryInfoA | |
| WININET.dll | 94 | HttpSendRequestW | |
| WININET.dll | 88 | HttpOpenRequestW | |
| WININET.dll | 114 | InternetConnectW | |
| WININET.dll | 139 | InternetGetLastResponseInfoW | |
| WININET.dll | 107 | InternetCloseHandle | |
| WININET.dll | 180 | InternetSetStatusCallbackW | |
| WININET.dll | 154 | InternetOpenW | |
| IPHLPAPI.DLL | 62 | GetAdaptersAddresses | |
| SHLWAPI.dll | 149 | PathStripPathW | |
| COMCTL32.dll | 123 | InitCommonControlsEx |
StringTable 040904b0
| FileDescription | InstallSmart Installer |
| FileVersion | 1, 0, 0, 1 |
| InternalName | InstallSmart Installer |
| LegalCopyright | Copyright 2010 |
| OriginalFilename | Installer.exe |
| ProductName | InstallSmart Web Installer |
| ProductVersion | 1, 0, 0, 1 |
VS_FIXEDFILEINFO
| FileVersion | 1.0.0.1 |
| ProductVersion | 1.0.0.1 |
| StrucVersion | 0x10000 |
| FileFlagsMask | 0x3f |
| FileFlags | 0 |
| FileOS | 4 |
| FileType | 2 |
| FileSubtype | 0 |
Scanning the drive for archives: 1 file, 844800 bytes (825 KiB) -- Type = PE Physical Size = 844800 CPU = x86 Characteristics = Executable 32-bit Created = 2014-04-28 18:39:23 Headers Size = 1024 Checksum = 886838 Name = Installer.exe Image Size = 868352 Section Alignment = 4096 File Alignment = 512 Code Size = 193536 Initialized Data Size = 658944 Uninitialized Data Size = 0 Linker Version = 12.0 OS Version = 6.0 Image Version = 0.0 Subsystem Version = 6.0 Subsystem = Windows GUI DLL Characteristics = Relocated NX-Compatible TerminalServerAware Stack Reserve = 1048576 Stack Commit = 4096 Heap Reserve = 1048576 Heap Commit = 4096 Image Base = 4194304 Comment = FileVersion: 1.0.0.1 FileVersion: 1, 0, 0, 1 ProductVersion: 1.0.0.1 ProductVersion: 1, 0, 0, 1 FileDescription: InstallSmart Installer InternalName: InstallSmart Installer LegalCopyright: Copyright 2010 OriginalFilename: Installer.exe ProductName: InstallSmart Web Installer ---- Path = .rsrc/BROKER/1 Size = 558069 Packed Size = 558069 -- Path = .rsrc/BROKER/1 Type = zip Physical Size = 558069 Date Time Attr Size Compressed Name ------------------- ----- ------------ ------------ ------------------------ 2014-02-24 09:41:42 ....A 1107512 557931 OfferBrokerage_1.exe ------------------- ----- ------------ ------------ ------------------------ 2014-02-24 09:41:42 1107512 557931 1 files
![]() |
| Please donate some bucks to keep this site up and running: | |
| Ko-fi | |
|---|---|
| Yandex.Money | |
| Thank you! | |
everything is OK
offset:( 0x )