Architecture |
IMAGE_FILE_MACHINE_I386
|
---|---|
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
Compilation Date | 2025-Mar-12 17:04:31 |
Detected languages |
English - United States
Russian - Russia |
CompanyName | Skylon Software |
FileDescription | Diaries Manager |
FileVersion | 1.0.8.6 |
InternalName | RND |
LegalCopyright | Copyright © 2009-2023 Skylon Software |
OriginalFilename | Редактор дневников.exe |
ProductName | Редактор неструктурированных дневников |
ProductVersion | 1.0.8.6 |
Info | Matching compiler(s): | Microsoft Visual C++ 6.0 - 8.0 |
Info | Interesting strings found in the binary: |
Contains domain names:
|
Suspicious | The PE contains functions most legitimate programs don't use. |
[!] The program may be hiding some of its imports:
|
Suspicious | No VirusTotal score. | This file has never been scanned on VirusTotal. |
e_magic | MZ |
---|---|
e_cblp | 0x90 |
e_cp | 0x3 |
e_crlc | 0 |
e_cparhdr | 0x4 |
e_minalloc | 0 |
e_maxalloc | 0xffff |
e_ss | 0 |
e_sp | 0xb8 |
e_csum | 0 |
e_ip | 0 |
e_cs | 0 |
e_ovno | 0 |
e_oemid | 0 |
e_oeminfo | 0 |
e_lfanew | 0x100 |
Signature | PE |
---|---|
Machine |
IMAGE_FILE_MACHINE_I386
|
NumberofSections | 5 |
TimeDateStamp | 2025-Mar-12 17:04:31 |
PointerToSymbolTable | 0 |
NumberOfSymbols | 0 |
SizeOfOptionalHeader | 0xe0 |
Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
|
Magic | PE32 |
---|---|
LinkerVersion | 14.0 |
SizeOfCode | 0x75a00 |
SizeOfInitializedData | 0x3a000 |
SizeOfUninitializedData | 0 |
AddressOfEntryPoint | 0x00058CF0 (Section: .text) |
BaseOfCode | 0x1000 |
BaseOfData | 0x77000 |
ImageBase | 0x400000 |
SectionAlignment | 0x1000 |
FileAlignment | 0x200 |
OperatingSystemVersion | 5.1 |
ImageVersion | 0.0 |
SubsystemVersion | 5.1 |
Win32VersionValue | 0 |
SizeOfImage | 0xb2000 |
SizeOfHeaders | 0x400 |
Checksum | 0 |
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
SizeofStackReserve | 0x100000 |
SizeofStackCommit | 0x1000 |
SizeofHeapReserve | 0x100000 |
SizeofHeapCommit | 0x1000 |
LoaderFlags | 0 |
NumberOfRvaAndSizes | 16 |
WS2_32.dll |
htons
recv connect socket send WSAStartup gethostbyname closesocket WSACleanup |
---|---|
COMCTL32.dll |
#8
InitCommonControlsEx |
KERNEL32.dll |
GetConsoleCP
CloseHandle HeapFree GetFileType GetACP GetModuleHandleExW GetModuleFileNameA WriteFile GetStdHandle GetLastError RaiseException RtlUnwind GetStartupInfoW IsDebuggerPresent InitializeSListHead GetCurrentThreadId HeapReAlloc IsProcessorFeaturePresent TerminateProcess GetCurrentProcess SetUnhandledExceptionFilter UnhandledExceptionFilter CompareStringW DecodePointer EncodePointer GetSystemTimeAsFileTime TlsFree TlsSetValue TlsGetValue TlsAlloc InitializeCriticalSectionAndSpinCount SetLastError GetStringTypeW QueryPerformanceFrequency QueryPerformanceCounter GetConsoleMode IsValidLocale GetUserDefaultLCID EnumSystemLocalesW HeapAlloc ReadFile ReadConsoleW FindClose FindFirstFileExA FindNextFileA IsValidCodePage GetOEMCP GetCommandLineA GetCPInfo GetCommandLineW GetEnvironmentStringsW FreeEnvironmentStringsW LoadLibraryExW FreeLibrary DeleteCriticalSection LoadLibraryA InitializeCriticalSection LeaveCriticalSection EnterCriticalSection GetTickCount GetModuleHandleW LCMapStringW GetProcAddress GlobalSize Sleep GetLocaleInfoA MulDiv GlobalUnlock SetEndOfFile WideCharToMultiByte ExitProcess GlobalLock GetLocalTime FindResourceW LoadResource GlobalFree GlobalAlloc MultiByteToWideChar GetVersion GetLocaleInfoW lstrlenW SetStdHandle GetProcessHeap SetFilePointerEx CreateFileW FlushFileBuffers WriteConsoleW HeapSize GetCurrentProcessId |
USER32.dll |
MapWindowPoints
GetDoubleClickTime FrameRect DestroyMenu SystemParametersInfoA DrawTextW CreateIconIndirect GetWindowLongW SetScrollInfo RegisterClipboardFormatW GetIconInfo GetUpdateRgn GetDC HideCaret GetMonitorInfoW DrawTextA TrackPopupMenu InvalidateRect MonitorFromPoint GetWindowTextW UpdateWindow GetParent CreateMenu PostQuitMessage AppendMenuW GetDlgItem GetClientRect FillRect InflateRect MonitorFromRect GetKeyState DestroyCaret ScreenToClient GetSystemMetrics NotifyWinEvent GetScrollInfo MsgWaitForMultipleObjects RegisterClassExW SetCaretPos OpenClipboard SetTimer GetDlgCtrlID ClientToScreen CloseClipboard EmptyClipboard IsChild CreateCaret ValidateRect TrackMouseEvent GetKeyboardLayout GetMessageTime GetClipboardData CreateDialogIndirectParamA SetCapture SetClipboardData SetCursor AppendMenuA IsClipboardFormatAvailable GetCaretBlinkTime ShowCaret KillTimer SystemParametersInfoW PtInRect ReleaseCapture ReleaseDC GetCursorPos BeginPaint EndPaint GetMessageW DefWindowProcW AdjustWindowRectEx CallWindowProcW PostMessageW GetWindowRect DestroyWindow SetWindowPos MessageBoxW CreateWindowExW DeleteMenu SendMessageW SetWindowTextW CreatePopupMenu ShowWindow DispatchMessageW RegisterClassW GetSysColor MoveWindow SetMenu CreateAcceleratorTableW SetFocus TranslateAcceleratorW TranslateMessage LoadIconW LoadCursorW SendMessageA wsprintfW SetWindowLongW CheckMenuItem |
GDI32.dll |
CombineRgn
SelectObject StartPage EndDoc CreateFontW GetStockObject GetDeviceCaps GetTextMetricsW DeleteDC SetTextColor Rectangle SetBkColor DeleteObject CreateBitmap ExtTextOutW StartDocW DPtoLP EndPage SetBkMode GetTextExtentPoint32W CreatePatternBrush GetTextExtentExPointA StretchBlt GetTextExtentExPointW CreateCompatibleDC GetTextExtentPoint32A CreateDIBSection ExtTextOutA CreateCompatibleBitmap BitBlt GetNearestColor CreateRectRgn CreateRectRgnIndirect IntersectClipRect CreateFontIndirectW RoundRect CreateSolidBrush Ellipse MoveToEx Polygon GetObjectW SetTextAlign CreatePen LineTo |
COMDLG32.dll |
PrintDlgExW
PageSetupDlgW GetSaveFileNameW GetOpenFileNameW |
ADVAPI32.dll |
RegCreateKeyExW
RegSetValueExW RegOpenKeyExW RegDeleteValueW RegQueryValueExW RegCloseKey |
SHELL32.dll |
DragAcceptFiles
ShellExecuteW DragQueryFileW ShellExecuteA |
ole32.dll |
ReleaseStgMedium
OleUninitialize DoDragDrop OleInitialize RegisterDragDrop RevokeDragDrop CoCreateInstance CLSIDFromProgID |
OLEAUT32.dll |
SysAllocString
SysFreeString |
MSIMG32.dll |
AlphaBlend
|
IMM32.dll |
ImmNotifyIME
ImmSetCandidateWindow ImmEscapeW ImmGetCompositionStringW ImmSetCompositionWindow ImmSetCompositionFontW ImmReleaseContext ImmGetContext ImmSetCompositionStringW |
Signature | 0xfeef04bd |
---|---|
StructVersion | 0x10000 |
FileVersion | 1.0.8.6 |
ProductVersion | 1.0.8.6 |
FileFlags | (EMPTY) |
FileOs |
VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
|
FileType |
VFT_APP
|
Language | Russian - Russia |
CompanyName | Skylon Software |
FileDescription | Diaries Manager |
FileVersion (#2) | 1.0.8.6 |
InternalName | RND |
LegalCopyright | Copyright © 2009-2023 Skylon Software |
OriginalFilename | Редактор дневников.exe |
ProductName | Редактор неструктурированных дневников |
ProductVersion (#2) | 1.0.8.6 |
Resource LangID | English - United States |
---|
Characteristics |
0
|
---|---|
TimeDateStamp | 2025-Mar-12 17:04:31 |
Version | 0.0 |
SizeofData | 808 |
AddressOfRawData | 0x8e0ac |
PointerToRawData | 0x8ceac |
Characteristics |
0
|
---|---|
TimeDateStamp | 2025-Mar-12 17:04:31 |
Version | 0.0 |
SizeofData | 0 |
AddressOfRawData | 0 |
PointerToRawData | 0 |
Size | 0xa0 |
---|---|
TimeDateStamp | 1970-Jan-01 00:00:00 |
Version | 0.0 |
GlobalFlagsClear | (EMPTY) |
GlobalFlagsSet | (EMPTY) |
CriticalSectionDefaultTimeout | 0 |
DeCommitFreeBlockThreshold | 0 |
DeCommitTotalFreeThreshold | 0 |
LockPrefixTable | 0 |
MaximumAllocationSize | 0 |
VirtualMemoryThreshold | 0 |
ProcessAffinityMask | 0 |
ProcessHeapFlags | (EMPTY) |
CSDVersion | 0 |
Reserved1 | 0 |
EditList | 0 |
SecurityCookie | 0x494074 |
SEHandlerTable | 0x48dc70 |
SEHandlerCount | 271 |
XOR Key | 0xf971f5fd |
---|---|
Unmarked objects | 0 |
241 (40116) | 15 |
243 (40116) | 146 |
242 (40116) | 33 |
ASM objects (VS 2015/2017 runtime 26706) | 22 |
C++ objects (VS 2015/2017 runtime 26706) | 57 |
C objects (VS 2015/2017 runtime 26706) | 35 |
C objects (VS2008 SP1 build 30729) | 3 |
Total imports | 299 |
Imports (VS2008 SP1 build 30729) | 25 |
C++ objects (LTCG) (27053) | 43 |
Resource objects (27053) | 1 |
Linker (27053) | 1 |