× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: b73a848214a4d527b2d17054e134ed3732c082cee8cd90bd888973eff54ea953
File name: ultradefrag-7.1.1.bin.i386.exe
Detection ratio: 0 / 66
Analysis date: 2018-10-12 08:13:02 UTC ( 6 months, 1 week ago ) View latest
Antivirus Result Update
Ad-Aware 20181012
AegisLab 20181012
AhnLab-V3 20181012
Alibaba 20180921
ALYac 20181012
Antiy-AVL 20181012
Arcabit 20181012
Avast 20181012
Avast-Mobile 20181012
AVG 20181012
Avira (no cloud) 20181012
Babable 20180918
Baidu 20181012
BitDefender 20181012
Bkav 20181011
CAT-QuickHeal 20181011
ClamAV 20181012
CMC 20181011
Comodo 20181012
CrowdStrike Falcon (ML) 20180723
Cybereason 20180225
Cylance 20181012
Cyren 20181012
DrWeb 20181012
eGambit 20181012
Emsisoft 20181012
Endgame 20180730
ESET-NOD32 20181012
F-Prot 20181012
F-Secure 20181012
Fortinet 20181012
GData 20181012
Sophos ML 20180717
Jiangmin 20181012
K7AntiVirus 20181012
K7GW 20181012
Kaspersky 20181012
Kingsoft 20181012
Malwarebytes 20181012
MAX 20181012
McAfee 20181012
McAfee-GW-Edition 20181012
Microsoft 20181012
eScan 20181012
NANO-Antivirus 20181012
Palo Alto Networks (Known Signatures) 20181012
Panda 20181012
Qihoo-360 20181012
Rising 20181012
SentinelOne (Static ML) 20181011
Sophos AV 20181012
SUPERAntiSpyware 20181012
Symantec 20181012
Symantec Mobile Insight 20181001
TACHYON 20181012
Tencent 20181012
TheHacker 20181011
TrendMicro 20181010
TrendMicro-HouseCall 20181010
Trustlook 20181012
VBA32 20181011
VIPRE 20181012
ViRobot 20181012
Webroot 20181012
Yandex 20181011
Zillya 20181012
ZoneAlarm by Check Point 20181012
Zoner 20181011
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Copyright © 2007-2018 UltraDefrag Development Team

Product UltraDefrag
File version 7.1.1
Description UltraDefrag Setup
Packers identified
F-PROT UPX, NSIS, appended, UTF-8, Unicode
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2009-12-05 22:50:46
Entry Point 0x0004D610
Number of sections 3
PE sections
Overlays
MD5 04a320952150442d197d8965790d3839
File type data
Offset 80896
Size 2133921
Entropy 8.00
PE imports
RegEnumKeyA
SetBkMode
VirtualFree
ExitProcess
VirtualProtect
LoadLibraryA
VirtualAlloc
GetProcAddress
ShellExecuteA
VerQueryValueA
CoTaskMemFree
Number of PE resources by type
RT_ICON 11
RT_DIALOG 7
RT_MANIFEST 1
RT_BITMAP 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
ENGLISH US 21
NEUTRAL 1
PE resources
ExifTool file metadata
UninitializedDataSize
294912

LinkerVersion
6.0

ImageVersion
6.0

FileSubtype
0

FileVersionNumber
7.1.1.0

LanguageCode
Neutral

FileFlagsMask
0x0000

FileDescription
UltraDefrag Setup

ImageFileCharacteristics
No relocs, Executable, No line numbers, No symbols, 32-bit

CharacterSet
Windows, Latin1

InitializedDataSize
61440

EntryPoint
0x4d610

MIMEType
application/octet-stream

LegalCopyright
Copyright 2007-2018 UltraDefrag Development Team

FileVersion
7.1.1

TimeStamp
2009:12:05 23:50:46+01:00

FileType
Win32 EXE

PEType
PE32

SubsystemVersion
4.0

OSVersion
4.0

FileOS
Win32

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
UltraDefrag Development Team

CodeSize
20480

ProductName
UltraDefrag

ProductVersionNumber
7.1.1.0

FileTypeExtension
exe

ObjectFileType
Executable application

File identification
MD5 0aed7ead0f18d5e7d6a71bd3345a6225
SHA1 0248f3eb3e711aabc111e08a7b8ac94da03ee813
SHA256 b73a848214a4d527b2d17054e134ed3732c082cee8cd90bd888973eff54ea953
ssdeep
49152:TusR4o7D10A1dphKSqeGuQEc5lEg5B8EFUn4SANfLQLnojVJy4te7OC9lL0x:TR4O1dpwKGuQv5B8EFU36fLHh0OC9lQx

authentihash 7a0ae32cba12a9ab09004513a6fe98a79cc17d472f31c62d0d59c335d2707e2c
imphash 2134f794bcda54794e74b7208adb2204
File size 2.1 MB ( 2214817 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID UPX compressed Win32 Executable (38.2%)
Win32 EXE Yoda's Crypter (37.5%)
Win32 Dynamic Link Library (generic) (9.2%)
Win32 Executable (generic) (6.3%)
OS/2 Executable (generic) (2.8%)
Tags
nsis peexe upx overlay

VirusTotal metadata
First submission 2018-10-12 08:10:34 UTC ( 6 months, 1 week ago )
Last submission 2019-03-07 16:03:46 UTC ( 1 month, 2 weeks ago )
File names Ultra Defragmenter 7.1.1 (x86).exe
ultradefrag-7.1.1.bin.i386.exe
ultradefrag-7.1.1.bin.i386.exe
ultradefrag32_DOWNLOAD.ID.exe
ultradefrag-7.1.1.bin.i386.exe
ultradefrag-7.1.1.bin.i386.exe
ultradefrag-7.1.1.bin.i386.exe
B73A848214A4D527B2D17054E134ED3732C082CEE8CD90BD888973EFF54EA953.exe
ultradefrag-7.1.1.bin.i386.exe
ultradefrag-7.1.1.bin.i386.exe
ultradefrag-7.1.1.bin.i386.exe
ultradefrag-7.1.1.bin.i386.exe
UltraDefrag 7.1.1 x86 free.exe
UltraDefrag v7.1.1 x86.Exe
ultradefrag-7.1.1.bin.i386.exe
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Condensed report! The following is a condensed report of the behaviour of the file when executed in a controlled environment. The actions and events described were either performed by the file itself or by any other process launched by the executed file or subjected to code injection by the executed file.
Opened files
Read files
Written files
Deleted files
Opened mutexes
Runtime DLLs