With AnalyzeIt you can inspect any file to find extra information about it.
You can discover the real file type [based on the content of the file] and fully detailed extension information: Program and/or extension function, File classification, MIME type, specific characters, Crogram ID, General notes and the company [+link] of the software used to create that type of file
There is a special section for information about analyzed executables: ImageBase, EntryPoint, CheckSum, Import and Export table, PE Directories [Resource, Exceptions, Reloc, Debug Datas, Description, Global PTR, TLS table, Local Config, Bound Import] and PE Sections with specific info: Name, RVA-Relative Virtual Address, Virtual Size, RAW Offset-File offset, RAW Size, Characteristics.
AnalyzeIt will also allows you to detect what packer / cryptor / compressor / compiler processed the executable. There is also a function to detect the OEP [Original Entry Point]
What's New in This Release: [ read full changelog ]
· Renamed "General info" to "Content info"
· New info on content page (attributes, content type: binary/text, last accessed/modified, created)
· Code rewritten, optimized and much faster
· Content type detection algorithm and hardcore packer/cryptor/etc scan improved, more efficient, better results, and also running in different threads, no more main application freezing
· Added info about two more directories: Delay import descriptor and COM Runtime Header (PE Info tab)
· More detailed import info, now shows Thunk offset and value too
· Much more detaild export info: RVA and offset for exported functions and if is a forwarded function, library info: number of functions/names, original name, addres of ordinals/functions/names, base, etc
· At content info, at the header & content analyze, results are now displayed in percentages and the most probable content type is highlighted.
· After the header & content analyze, if the current extension of the file differs from the most probable extension ...