| Architecture |
IMAGE_FILE_MACHINE_I386
|
|---|---|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| Compilation Date | 2024-May-26 08:47:21 |
| Detected languages |
Spanish - Spain (International sort)
|
| Comments | LENA Road Sign Design Software |
| CompanyName | MOST Enginyers, S.L. |
| FileDescription | LENA |
| LegalCopyright | © 2024 by MOST Enginyers, S.L. |
| LegalTrademarks | LENA® |
| ProductName | LENA |
| FileVersion | 2.24.0004 |
| ProductVersion | 2.24.0004 |
| InternalName | Lena |
| OriginalFilename | Lena.exe |
| Suspicious | Strings found in the binary may indicate undesirable behavior: |
Contains another PE executable:
|
| Info | Cryptographic algorithms detected in the binary: |
Uses constants related to SHA1
Uses constants related to SHA256 |
| Suspicious | The PE is possibly packed. | Section .text is both writable and executable. |
| Suspicious | The PE contains functions most legitimate programs don't use. |
[!] The program may be hiding some of its imports:
|
| Suspicious | No VirusTotal score. | This file has never been scanned on VirusTotal. |
| e_magic | MZ |
|---|---|
| e_cblp | 0x90 |
| e_cp | 0x3 |
| e_crlc | 0 |
| e_cparhdr | 0x4 |
| e_minalloc | 0 |
| e_maxalloc | 0xffff |
| e_ss | 0 |
| e_sp | 0xb8 |
| e_csum | 0 |
| e_ip | 0 |
| e_cs | 0 |
| e_ovno | 0 |
| e_oemid | 0 |
| e_oeminfo | 0 |
| e_lfanew | 0xc8 |
| Signature | PE |
|---|---|
| Machine |
IMAGE_FILE_MACHINE_I386
|
| NumberofSections | 5 |
| TimeDateStamp | 2024-May-26 08:47:21 |
| PointerToSymbolTable | 0 |
| NumberOfSymbols | 0 |
| SizeOfOptionalHeader | 0xe0 |
| Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED
IMAGE_FILE_RELOCS_STRIPPED
|
| Magic | PE32 |
|---|---|
| LinkerVersion | 6.24 |
| SizeOfCode | 0x376000 |
| SizeOfInitializedData | 0x18000 |
| SizeOfUninitializedData | 0 |
| AddressOfEntryPoint | 0x00386F10 (Section: .text) |
| BaseOfCode | 0x1000 |
| BaseOfData | 0x33a000 |
| ImageBase | 0x400000 |
| SectionAlignment | 0x1000 |
| FileAlignment | 0x1000 |
| OperatingSystemVersion | 4.0 |
| ImageVersion | 2.18 |
| SubsystemVersion | 4.0 |
| Win32VersionValue | 0 |
| SizeOfImage | 0x38f000 |
| SizeOfHeaders | 0x1000 |
| Checksum | 0x380b09 |
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| SizeofStackReserve | 0x100000 |
| SizeofStackCommit | 0x1000 |
| SizeofHeapReserve | 0x100000 |
| SizeofHeapCommit | 0x1000 |
| LoaderFlags | 0 |
| NumberOfRvaAndSizes | 16 |
| MSVBVM60.DLL |
__vbaVarTstGt
__vbaVarSub #582 #690 #583 __vbaStrI2 __vbaR8ForNextCheck #584 _CIcos _adj_fptan #585 __vbaVarMove __vbaStrI4 #586 __vbaRedimPreserveVar __vbaVarVargNofree __vbaAryMove #587 __vbaFreeVar __vbaLineInputStr __vbaLenBstr __vbaStrVarMove __vbaLateIdCall __vbaVarIdiv __vbaFreeVarList __vbaPut3 __vbaEnd _adj_fdiv_m64 __vbaAryRecMove __vbaVarIndexStore #621 __vbaGetFxStr3 __vbaFreeObjList #516 __vbaR8Sgn __vbaVarFix __vbaVarTextTstLt __vbaStrErrVarCopy _adj_fprem1 __vbaRecAnsiToUni #518 #626 __vbaVarTextCmpGt __vbaI2Abs __vbaResume __vbaForEachCollAd __vbaStrCat __vbaLsetFixstr #553 #660 __vbaVarTextTstEq __vbaSetSystemError __vbaRecDestruct __vbaNameFile #662 __vbaHresultCheckObj #556 __vbaLenVar _adj_fdiv_m32 __vbaAryVar #666 __vbaAryDestruct __vbaVarIndexLoadRefLock __vbaLateMemSt #593 __vbaStrBool __vbaForEachCollObj __vbaBoolStr __vbaExitProc #594 __vbaI4Abs __vbaObjSet #595 __vbaOnError #596 _adj_fdiv_m16i #597 __vbaObjSetAddref _adj_fdivr_m16i #598 __vbaVarIndexLoad __vbaFpR4 __vbaStrFixstr #520 __vbaBoolVar __vbaFPFix __vbaStrTextCmp __vbaEraseKeepData __vbaVarTstLt __vbaRefVarAry __vbaFpR8 __vbaBoolVarNull _CIsin __vbaErase #709 __vbaVarCmpGt __vbaVargVarMove #632 __vbaNextEachCollObj __vbaChkstk __vbaCyVar #526 __vbaFileClose EVENT_SINK_AddRef __vbaVarAbs #528 __vbaGenerateBoundsError __vbaGet3 __vbaStrCmp #529 __vbaAryConstruct2 __vbaVarTstEq __vbaPutOwner3 #560 __vbaR4Str __vbaObjVar #561 __vbaI2I4 __vbaPrintObj DllFunctionCall __vbaVarLateMemSt #670 __vbaVarOr __vbaFpUI1 __vbaCastObjVar __vbaRedimPreserve __vbaStrR4 _adj_fpatan __vbaR4Var __vbaR4Cy __vbaVarTextCmpLt __vbaLateIdCallLd __vbaR8Cy __vbaRedim __vbaStrR8 __vbaRecUniToAnsi EVENT_SINK_Release __vbaNew __vbaVarTextTstNe #600 __vbaUI1I2 _CIsqrt __vbaRedimVar __vbaLateIdCallSt __vbaVarAnd EVENT_SINK_QueryInterface #710 __vbaStrUI1 __vbaUI1I4 __vbaVarTextCmpEq __vbaVarMul __vbaExceptHandler #711 __vbaPrintFile __vbaStrToUnicode #712 _adj_fprem _adj_fdivr_m64 #607 __vbaLateIdStAd __vbaI2Str __vbaVarDiv #714 #530 #608 __vbaFPException __vbaInStrVar __vbaGetOwner3 __vbaStrVarVal __vbaUbound __vbaVarCat __vbaDateVar __vbaLsetFixstrFree __vbaI2Var #644 #645 _CIlog __vbaErrorOverflow __vbaFileOpen #570 __vbaVarLateMemCallLdRf __vbaNew2 __vbaR8Str #648 __vbaInStr #571 _adj_fdiv_m32i _adj_fdivr_m32i #573 __vbaStrCopy __vbaI4Str #681 __vbaVarNot __vbaVarCmpLt __vbaFreeStrList #576 __vbaVarTextTstGt _adj_fdivr_m32 #577 __vbaR8Var __vbaPowerR8 _adj_fdiv_r #578 #685 #100 __vbaVarTstNe __vbaI4Var #689 __vbaVarCmpEq #610 __vbaLateMemCall __vbaAryLock __vbaVarAdd __vbaStrToAnsi __vbaVarDup __vbaVerifyVarObj __vbaFpI2 #614 __vbaVarMod __vbaVarCopy __vbaFpI4 __vbaRecDestructAnsi __vbaR8IntI2 #617 __vbaLateMemCallLd _CIatan __vbaAryCopy __vbaStrMove __vbaCastObj __vbaPutFxStr3 __vbaR8IntI4 __vbaStrVarCopy #619 __vbaVarNeg _allmul __vbaLateIdSt __vbaLateMemCallSt __vbaAryRecCopy __vbaVarTextCmpNe _CItan __vbaNextEachCollAd #546 __vbaFPInt __vbaUI1Var __vbaAryUnlock _CIexp __vbaRecAssign __vbaFreeObj __vbaFreeStr #581 |
|---|---|
| KERNEL32.dll |
FreeLibrary
GetLastError GetWindowsDirectoryA GetVersionExA LocalFree LocalAlloc GetTickCount GetSystemTime CreateFileA ReadFile WriteFile GetFileSize SetFilePointer CloseHandle DeleteFileA SetFileAttributesA RemoveDirectoryA FindNextFileA FindFirstFileA GetFileAttributesA CreateDirectoryA ReleaseMutex WaitForSingleObject CreateMutexA GetEnvironmentVariableA GetCurrentThreadId GlobalFree GlobalAlloc VirtualProtect GetSystemInfo GetModuleFileNameA GetPrivateProfileStringA WritePrivateProfileStringA GetComputerNameA LoadLibraryA GetLogicalDrives GetDriveTypeA FileTimeToSystemTime MultiByteToWideChar GetModuleHandleA ResumeThread GetUserDefaultLangID GetCurrentProcess TlsSetValue LeaveCriticalSection EnterCriticalSection TlsGetValue GetExitCodeProcess CreateProcessA GetCurrentProcessId Sleep RaiseException TlsAlloc InitializeCriticalSection SuspendThread WaitForMultipleObjects DuplicateHandle GetCurrentThread WideCharToMultiByte SetLastError GetFileInformationByHandle VirtualQuery VirtualAlloc VirtualFree ExitProcess CreateEventA TlsFree SetEvent GetProcAddress HeapFree HeapReAlloc GetProcessHeap DeviceIoControl HeapAlloc |
| USER32.dll |
GetUserObjectInformationA
MessageBoxW GetProcessWindowStation |
| ADVAPI32.dll |
InitializeSecurityDescriptor
FreeSid AllocateAndInitializeSid GetUserNameA SetSecurityDescriptorDacl |
| Signature | 0xfeef04bd |
|---|---|
| StructVersion | 0x10000 |
| FileVersion | 2.24.0.4 |
| ProductVersion | 2.24.0.4 |
| FileFlags | (EMPTY) |
| FileOs |
VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
|
| FileType |
VFT_APP
|
| Language | Spanish - Spain (International sort) |
| Comments | LENA Road Sign Design Software |
| CompanyName | MOST Enginyers, S.L. |
| FileDescription | LENA |
| LegalCopyright | © 2024 by MOST Enginyers, S.L. |
| LegalTrademarks | LENA® |
| ProductName | LENA |
| FileVersion (#2) | 2.24.0004 |
| ProductVersion (#2) | 2.24.0004 |
| InternalName | Lena |
| OriginalFilename | Lena.exe |
| Resource LangID | Spanish - Spain (International sort) |
|---|
| XOR Key | 0xb005be24 |
|---|---|
| Unmarked objects | 0 |
| 14 (7299) | 1 |
| 9 (8783) | 55 |
| 13 (VS98 SP6 build 8804) | 1 |
No comments yet.