UEDIT32.EXE

UltraEdit

IDM Computer Solutions, Inc.

Publisher:
IDM Computer Solutions, Inc.  (signed and verified)

Product:
UltraEdit

Description:
UltraEdit Professional Text/Hex Editor

Version:
14.10.0.1018

MD5:
d387778fcf4f02e902b06972cc488b19

SHA-1:
58298bf5f2d1b7c1ba83d26c501852df682fb126

SHA-256:
42e31503b3ed15d8ed3da28e21e1f5a2bfa95686b09bcf25976a9fb91bd65d57

Scanner detections:
3 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/27/2024 12:01:55 AM UTC  (today)

Scan engine
Detection
Engine version

AegisLab AV Signature
Troj.Downloader.W32.Geral
2.1.4+

Avira AntiVirus
W32/Sality.AT
7.11.30.172

Bkav FE
W32.HfsAdware
1.3.0.6379

File size:
7.2 MB (7,513,360 bytes)

Product version:
14.10.0.1018

Copyright:
IDM Computer Solutions, Inc.

Original file name:
UEDIT32.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\idm computer solutions\ultraedit\uedit32.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/19/2008 5:30:00 AM

Valid to:
4/23/2011 5:29:59 AM

Subject:
CN="IDM Computer Solutions, Inc.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="IDM Computer Solutions, Inc.", L=Hamilton, S=Ohio, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
692E742C3589A0DF5BB28C88B08EEF65

File PE Metadata
Compilation timestamp:
7/3/2008 8:18:51 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
98304:/LAt+FcAJawVHTjtI5AU+u/kLU4Iq5jqbxG0fxa8xacxacxGbxG5:UqcA80zz+kLUrq8T

Entry address:
0x47EA7F

Entry point:
E8, A5, A4, 01, 00, E9, 16, FE, FF, FF, 8B, 44, 24, 08, 8D, 48, FF, 85, C8, 74, 1D, E8, DF, ED, FF, FF, C7, 00, 16, 00, 00, 00, 33, C0, 50, 50, 50, 50, 50, E8, 85, 15, FF, FF, 83, C4, 14, 33, C0, C3, 8B, 4C, 24, 04, 53, 8B, 5C, 24, 10, 56, 33, F6, 3B, DE, 74, 20, 3B, D9, 72, 1C, E8, AE, ED, FF, FF, 56, 56, 56, 56, 56, C7, 00, 16, 00, 00, 00, E8, 56, 15, FF, FF, 83, C4, 14, 33, C0, EB, 3E, 83, F8, 04, 77, 03, 6A, 04, 58, 8B, F3, F7, DE, 57, 8D, 78, FF, 83, E6, 03, 8D, 04, 0E, 8D, 44, 38, 04, 50, E8, 64, CE...
 
[+]

Entropy:
6.6217

Packer / compiler:
PEQuake V0.06

Code size:
5.3 MB (5,554,176 bytes)

Windows Firewall Allowed Program
Name:
C:\Program Files\IDM Computer Solutions\UltraEdit\Uedit32.exe


Scan UEDIT32.EXE - Powered by Reason Core Security