| filename | UltraISO.exe | |
|---|---|---|
| size | 1314304 (0x140e00) | |
| md5 | 8f616340a35fe3e5316be46a724db3f3 | |
| type | PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows | |
| mimetype | application/x-dosexec | |
| clamav | OK | |
| virustotal | → scan with virustotal.com | |
| histogram | ||
MZ Header
| signature | MZ |
| bytes_in_last_block | 0x50 |
| blocks_in_file | 2 |
| num_relocs | 0 |
| header_paragraphs | 4 |
| min_extra_paragraphs | 0xf |
| max_extra_paragraphs | 0xffff |
| ss | 0 |
| sp | 0xb8 |
| checksum | 0 |
| ip | 0 |
| cs | 0 |
| reloc_table_offset | 0x40 |
| overlay_number | 0x1a |
| reserved0 | 0 |
| oem_id | 0 |
| oem_info | 0 |
| reserved2 | 0 |
| reserved3 | 0 |
| reserved4 | 0 |
| reserved5 | 0 |
| reserved6 | 0 |
| lfanew | 0x200 |
DOS stub
00000000: ba 10 00 0e 1f b4 09 cd 21 b8 01 4c cd 21 90 90 |........!..L.!..| 00000010: 54 68 69 73 20 70 72 6f 67 72 61 6d 20 6d 75 73 |This program mus| 00000020: 74 20 62 65 20 72 75 6e 20 75 6e 64 65 72 20 57 |t be run under W| 00000030: 69 6e 33 32 0d 0a 24 37 00 00 00 00 00 00 00 00 |in32..$7........| 00000040: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 |................| * 000001c0:
PE Header
Packer / Compiler
This file is packed with ASPack. Analysis will be incomplete without unpacking. |
Sections
Data Directory
TLS
| raw start | raw end | index | callbks | zero fill | flags | |
|---|---|---|---|---|---|---|
| 0xbe2000 | 0xbe20bc | 0x75f6ac | 0xbe3010 | 0 | 0 |
| module_name | hint | ord | function_name |
|---|---|---|---|
| kernel32.dll | GetProcAddress | ||
| kernel32.dll | GetModuleHandleA | ||
| kernel32.dll | LoadLibraryA | ||
| setupapi.dll | SetupDiDestroyDeviceInfoList | ||
| advapi32.dll | AdjustTokenPrivileges | ||
| mpr.dll | WNetGetConnectionA | ||
| version.dll | GetFileVersionInfoA | ||
| comctl32.dll | ImageList_Add | ||
| comdlg32.dll | GetOpenFileNameA | ||
| gdi32.dll | BitBlt | ||
| shell32.dll | DragAcceptFiles | ||
| user32.dll | ActivateKeyboardLayout | ||
| winmm.dll | waveOutClose | ||
| ole32.dll | CLSIDFromString | ||
| oleaut32.dll | 200 | ||
| oledlg.dll | 4 |
StringTable 040904E4
| CompanyName | EZB Systems, Inc. |
| FileDescription | UltraISO Premium |
| FileVersion | 9.5.2.2836 |
| InternalName | UltraISO |
| LegalCopyright | Copyright (c) EZB Systems, Inc. |
| LegalTrademarks | EZB(R) |
| OriginalFilename | ultraiso.exe |
| ProductName | UltraISO Premium |
| ProductVersion | V9.52 |
| Comments | http://www.ezbsystems.com |
VS_FIXEDFILEINFO
| FileVersion | 9.5.2.2836 |
| ProductVersion | 9.5.2.2836 |
| StrucVersion | 0x10000 |
| FileFlagsMask | 0x3f |
| FileFlags | 0 |
| FileOS | 4 |
| FileType | 1 |
| FileSubtype | 0 |
![]() |
| Please donate some bucks to keep this site up and running: | |
| Ko-fi | |
|---|---|
| Yandex.Money | |
| Thank you! | |
[?] ignoring invalid PEdump::BITMAPINFOHEADER
[?] can't find file_offset of VA 0x81248c
[?] can't find file_offset of VA 0x81333c
[?] can't find file_offset of VA 0x814150
[?] can't find file_offset of VA 0x816e78
[?] can't find file_offset of VA 0x817e78
[?] can't find file_offset of VA 0x818048
[?] can't find file_offset of VA 0x81822c
[?] can't find file_offset of VA 0x8183fc
[?] can't find file_offset of VA 0x8185cc
[?] can't find file_offset of VA 0x81879c
[?] can't find file_offset of VA 0x81896c
[?] can't find file_offset of VA 0x818b3c
[?] can't find file_offset of VA 0x818d0c
[?] can't find file_offset of VA 0x818edc
[?] can't find file_offset of VA 0x8190ac
[?] can't find file_offset of VA 0x819184
[?] can't find file_offset of VA 0x81925c
[?] can't find file_offset of VA 0x819334
[?] can't find file_offset of VA 0x81940c
[?] can't find file_offset of VA 0x8194e4
[?] can't find file_offset of VA 0x8195cc
[?] can't find file_offset of VA 0x819754
[?] can't find file_offset of VA 0x8198dc
[?] can't find file_offset of VA 0x819a64
[?] ignoring invalid PEdump::BITMAPINFOHEADER
[?] can't find file_offset of VA 0x81e02c
[?] can't find file_offset of VA 0x81e080
[?] can't find file_offset of VA 0x81e260
[?] can't find file_offset of VA 0x81e4b8
[?] can't find file_offset of VA 0x81e5a0
[?] can't find file_offset of VA 0x81e798
[?] can't find file_offset of VA 0x81e934
[?] can't find file_offset of VA 0x81ed5c
[?] can't find file_offset of VA 0x81f10c
[?] can't find file_offset of VA 0x81f628
[?] can't find file_offset of VA 0x81f824
[?] can't find file_offset of VA 0x81f910
[?] can't find file_offset of VA 0x81fac4
[?] can't find file_offset of VA 0x81fe7c
[?] can't find file_offset of VA 0x8201e0
[?] can't find file_offset of VA 0x820498
[?] can't find file_offset of VA 0x82089c
[?] can't find file_offset of VA 0x820bd8
[?] can't find file_offset of VA 0x820fb0
[?] can't find file_offset of VA 0x8213fc
[?] can't find file_offset of VA 0x82140c
[?] can't find file_offset of VA 0x822740
[?] can't find file_offset of VA 0x823ca8
[?] can't find file_offset of VA 0x824d28
[?] can't find file_offset of VA 0x825688
[?] can't find file_offset of VA 0x8263b0
[?] can't find file_offset of VA 0x8274ac
[?] can't find file_offset of VA 0x8280f4
[?] can't find file_offset of VA 0x82adf4
[?] can't find file_offset of VA 0x82b71c
[?] can't find file_offset of VA 0x82be20
[?] can't find file_offset of VA 0x82c7b0
[?] can't find file_offset of VA 0x82d0c4
[?] can't find file_offset of VA 0x82df80
[?] can't find file_offset of VA 0x82e588
[?] can't find file_offset of VA 0x82efa4
[?] can't find file_offset of VA 0x82fb00
[?] can't find file_offset of VA 0x8300a0
[?] can't find file_offset of VA 0x830408
[?] can't find file_offset of VA 0x8716bc
[?] can't find file_offset of VA 0x8719ac
[?] can't find file_offset of VA 0x871f74
[?] can't find file_offset of VA 0x8723f8
[?] can't find file_offset of VA 0x872b1c
[?] can't find file_offset of VA 0x874e40
[?] can't find file_offset of VA 0x8752f4
[?] can't find file_offset of VA 0x875600
[?] can't find file_offset of VA 0x87594c
[?] can't find file_offset of VA 0x87602c
[?] can't find file_offset of VA 0x8785d8
[?] can't find file_offset of VA 0x87a034
[?] can't find file_offset of VA 0x87a9ac
[?] can't find file_offset of VA 0x87abb8
[?] can't find file_offset of VA 0x87abcc
[?] can't find file_offset of VA 0x87abe0
[?] can't find file_offset of VA 0x87abf4
[?] can't find file_offset of VA 0x87ac08
[?] can't find file_offset of VA 0x87ac1c
[?] can't find file_offset of VA 0x87ac30
[?] can't find file_offset of VA 0x87ac44
[?] can't find file_offset of VA 0x87ac58
[?] can't find file_offset of VA 0x35f6ac
[?] can't find file_offset of VA 0x0
offset:( 0x )