21c274ac1adb4d9cddcaf6ce51d01739878b2a63f6eff1c18b304e11bb7d29f8

Summary

Architecture IMAGE_FILE_MACHINE_I386
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2024-Jun-26 10:44:26
Detected languages English - United States
Debug artifacts C:\build\output\unity\unity\artifacts\WindowsPlayer\Win32_VS2019_nondev_m_r\WindowsPlayer_player_Master_mono_x86.pdb
FileVersion 2022.3.35.70150
LegalCopyright (c) 2005-2024 Unity Technologies. All rights reserved.
ProductVersion 2022.3.35f1 (011206c7a712)

Plugin Output

Info Matching compiler(s): Microsoft Visual C++ 6.0 - 8.0
Info The PE contains common functions which appear in legitimate applications. [!] The program may be hiding some of its imports:
  • GetProcAddress
  • LoadLibraryExW
Suspicious The PE is possibly a dropper. Resources amount for 86.8838% of the executable.
Safe VirusTotal score: 0/71 (Scanned on 2025-12-24 22:29:05) All the AVs think this file is safe.

Hashes

MD5 e513c08c60fc2d9d83a5a28592c2de69
SHA1 c0c1bf6618a4c1d166ea6645e00765dcf6be7d7f
SHA256 21c274ac1adb4d9cddcaf6ce51d01739878b2a63f6eff1c18b304e11bb7d29f8
SHA3 1f76deee3809b6be664544aaff50987c684fc3e4dc72937aef731eb47cfebc95
SSDeep 12288:sKQGzu2BzWAJ1dUtEYbIzNNSJwu3BZ0F2uSIZX:sK1WAJ1OOYbGSJw4Z0FFSE
Imports Hash 5a8eaca2597eda714e0dcf5fae7d0a60

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x108

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_I386
NumberofSections 5
TimeDateStamp 2024-Jun-26 10:44:26
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xe0
Characteristics IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE

Image Optional Header

Magic PE32
LinkerVersion 14.0
SizeOfCode 0xcc00
SizeOfInitializedData 0x92800
SizeOfUninitializedData 0
AddressOfEntryPoint 0x0000125D (Section: .text)
BaseOfCode 0x1000
BaseOfData 0xe000
ImageBase 0x400000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0xa2000
SizeOfHeaders 0x400
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 0e98fe37c1f52fd9d1e19118be3e0c1d
SHA1 3025f8228bbcbca51d83f3fa438cf35227ef1d4a
SHA256 3a78c65334d81957c57ee3d518e5ee68a7dbce1e10359640f0d26da53c303f4b
SHA3 4c6092657b38dc291b233988aff11f82bf0291ec76b1f13878c8d277ce943a80
VirtualSize 0xcbba
VirtualAddress 0x1000
SizeOfRawData 0xcc00
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.64662

.rdata

MD5 5e5527a8bc63805d9b96e75d3afe91b1
SHA1 576532b01909fea803d42401625a52cebcfc16b8
SHA256 b49c66bb0df7a5708a71e5cd019d39af2d553f58962bad559bbdd60b09ff7dbe
SHA3 2d0e0f254c727256ebf33d524fffb65ce6a3ed5157ad5eda32e041717d466483
VirtualSize 0x5e58
VirtualAddress 0xe000
SizeOfRawData 0x6000
PointerToRawData 0xd000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.77993

.data

MD5 8f0a0877cf44bb5c11ce6643765d7a62
SHA1 a645b746c0b24692c9afd59d77516a435937faec
SHA256 c2a929c388aa4855d736c750e95dda554938d66a6439974badceb9dea489c514
SHA3 47557597f59855422965bc790e782ffd7e2b87b1ac3bddbf0b791755da1c7204
VirtualSize 0x140c
VirtualAddress 0x14000
SizeOfRawData 0xa00
PointerToRawData 0x13000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 2.0403

.rsrc

MD5 ba874c6ae6fd5c3ff43f1f19efcbc280
SHA1 e730a59f3570ceb29af8923ba653fa9131f19abe
SHA256 1cc402208d888c6db6d61c70fc6e586eb307fe7de4c9915cffac273aa6e84ab7
SHA3 9e43b6a48d8d887f98a7ae502f7a88edc40eb9a97e1ca6167b8d8295dba6dd7c
VirtualSize 0x8a198
VirtualAddress 0x16000
SizeOfRawData 0x8a200
PointerToRawData 0x13a00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.26741

.reloc

MD5 e22aae0a3970c6757c75bcb2625cdfb2
SHA1 d3878273d918ef8776e9a4773ab8c4cd81db6c16
SHA256 bbb1c85235d87d890f45b8e7d339b2dbfbccd54fe973acd467a0f87b607262f3
SHA3 ef31419514fe7fed048789b58c35e739559cc258b3405966c5c32c2304d2f9d1
VirtualSize 0xee0
VirtualAddress 0xa1000
SizeOfRawData 0x1000
PointerToRawData 0x9dc00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 6.31048

Imports

UnityPlayer.dll UnityMain
KERNEL32.dll HeapAlloc
WriteConsoleW
QueryPerformanceCounter
GetCurrentProcessId
GetCurrentThreadId
GetSystemTimeAsFileTime
InitializeSListHead
IsDebuggerPresent
UnhandledExceptionFilter
SetUnhandledExceptionFilter
GetStartupInfoW
IsProcessorFeaturePresent
GetModuleHandleW
GetCurrentProcess
TerminateProcess
CloseHandle
RtlUnwind
GetLastError
SetLastError
EnterCriticalSection
LeaveCriticalSection
DeleteCriticalSection
InitializeCriticalSectionAndSpinCount
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
FreeLibrary
GetProcAddress
LoadLibraryExW
EncodePointer
RaiseException
GetStdHandle
WriteFile
GetModuleFileNameW
ExitProcess
GetModuleHandleExW
DecodePointer
HeapFree
FindClose
FindFirstFileExW
FindNextFileW
IsValidCodePage
GetACP
GetOEMCP
GetCPInfo
GetCommandLineA
GetCommandLineW
MultiByteToWideChar
WideCharToMultiByte
GetEnvironmentStringsW
FreeEnvironmentStringsW
SetStdHandle
GetFileType
GetStringTypeW
LCMapStringW
GetProcessHeap
HeapSize
HeapReAlloc
FlushFileBuffers
GetConsoleOutputCP
GetConsoleMode
SetFilePointerEx
CreateFileW

Delayed Imports

AmdPowerXpressRequestHighPerformance

Ordinal 1
Address 0x14004

NvOptimusEnablement

Ordinal 2
Address 0x14000

1

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x42028
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.25412
MD5 3ff38a3c6f6299396953fb6ac13917ff
SHA1 1973df46c24b7451b5ea50d47a737cf6ad091ccf
SHA256 c7798bf97df0db1dc53072dd0c7be2e3b17f15afee5ca9968f50aea6d9aad441
SHA3 6a716ede54c1ab9724c3bc98edfd03bcc3a38cf9c2d0b7c8b88920554855ff34

2

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x25228
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.25687
MD5 3acb601617a0264b25cacc41ecdbdb42
SHA1 afee40fa2fd637509c7d43a8b386aae46b7d2011
SHA256 482ab4c4de299d9a4e7dfd26d4e196bb3bc4e7c409a96a4325f16ba12fc3970d
SHA3 a380872111ac1689e48f28cc6ae9d3f5d74e668e7079110236dd28dbaa6087fd

3

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x10828
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.26933
MD5 f6b48744c3494a9044381172859cf352
SHA1 dce19015975c0895558c3a8f3669236669508477
SHA256 86a8d20f4444178bcb0cb1ce19152f327610358eb2ff49390e6d6875e30bf3f4
SHA3 913dc84ff3d8d42a5ff9e7881eae853b9cfd219c7b5f0d69f38771cb5ccc5518

4

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x94a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.26821
MD5 3f967f54782496f065792ac83eb0b804
SHA1 b9e8ddb40a8e751a13f611ab25f89e0f5a45c582
SHA256 155cdf531606001a634d396ee55127e9958a2455597a3d20c120074f21d1f63a
SHA3 e037af1a575223a09c65882e0b89b2dd528788eb27c250c8cbe5e2abb379c5b8

5

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x4228
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.25738
MD5 fde3909132a2608170148870c4d17639
SHA1 b279ec4dbd9958dd8cb1a568a6079f754471f605
SHA256 63e1a48408cc4846ddcf068a72d5c19913ce20d6681d235b0ab26fcea7b53c7d
SHA3 8cd6c18d590155843392578842b7e3bca630e55c4964568bb59028f3170c589d

6

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x25a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.20194
MD5 6f75d5a34224dc2a52ed1931be067bf8
SHA1 8c43c371b43221e146441aef6e4aae5eb33d1761
SHA256 a1cc73ae7071ad56c50de249d8e3b8b48cc1f21f8201c8e0d2fc45f7efbedd54
SHA3 2df7f3cde9399bab1bb32775117ebb70213f29a1e8e0aa4df737074b75683c57

7

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x10a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.20672
MD5 717bdaca7cdc2490df1e47f3b6fdcb0b
SHA1 9324df0d792783bbc44214a2bf6b0c75f5896d2b
SHA256 31478f88a7acdb76beefca4f5d3bd7397aa9f1f23479919168ad1509fd264cc0
SHA3 db7af955fa0e527e084be64954f591e2fcaed253f15139c37a32c0d21a4c28e0

8

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x988
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.12191
MD5 3948b7eecdd87ed5c602b4b39c1b00b8
SHA1 f81af66848b7204cd1fdfc7a3f4a83aa3f739b48
SHA256 af8a8cbea9495ab4947416c7ca15b35caf2e261af3604eb5c00ba4f51737cb29
SHA3 660032336edc984f0a4152869bed22f76cdb4d405dd86b30a68f10f02d10f216

9

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x468
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.92601
MD5 d53c1def35a4e51838a965073bfb4787
SHA1 9b32f4fa71c01b3437882e3c1d2f43becf742166
SHA256 43e1b43619a9a4325d197a86c49e9fdbe29446192135b16cfb4234f89ee8fc9c
SHA3 6f58445b38634696fbce0eb55c16ae00c1bc3bfcd3bf7767b911edf9fa54e4ac

103

Type RT_GROUP_ICON
Language English - United States
Codepage UNKNOWN
Size 0x84
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.04448
Detected Filetype Icon file
MD5 f7731730720cfe035cf030b40d0e2eb6
SHA1 d046e23f2ee2b93ad96be8e1dc9120ecf3915091
SHA256 5c92a41adaf3265071482fd1a182ae8702c168636a7d9ff51798ee3a1dfc8500
SHA3 6f2d12e4c63c131a3f7f48293996e2be05da351536d013affe5d2265965ce657

1 (#2)

Type RT_VERSION
Language English - United States
Codepage UNKNOWN
Size 0x20c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.55815
MD5 fc9cbbdcb7afc0b487672ec92cc64044
SHA1 c7f25c8309a3a16181b1bb63135fea07ae36e181
SHA256 f430aa1a0f18911f4fe35d32ace2c3e063727752748183780bddc8079671d526
SHA3 aacee128584a1263017d3d2fb42fa78dab4aecee6cf6f970ca77a861dc100652

1 (#3)

Type RT_MANIFEST
Language English - United States
Codepage UNKNOWN
Size 0x6c1
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.37708
MD5 aab7e8aafe7b06ab3d003b54ab5e18ed
SHA1 dccf0408f43059df37b755f3241a8b4b35c728af
SHA256 fb88b19523afd8fed48eddfd10805a3a0a45997bbf8fac04d595ddf93c1a88a8
SHA3 a981b8e907b79cd9448766ace938dfd96560d11c29e6ba165912a8508bd52ca7

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 2022.3.35.4614
ProductVersion 2022.3.35.4614
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType VFT_UNKNOWN
Language English - United States
FileVersion (#2) 2022.3.35.70150
LegalCopyright (c) 2005-2024 Unity Technologies. All rights reserved.
ProductVersion (#2) 2022.3.35f1 (011206c7a712)
Resource LangID English - United States

IMAGE_DEBUG_TYPE_CODEVIEW

Characteristics 0
TimeDateStamp 2024-Jun-26 10:44:26
Version 0.0
SizeofData 141
AddressOfRawData 0x12e88
PointerToRawData 0x11e88
Referenced File C:\build\output\unity\unity\artifacts\WindowsPlayer\Win32_VS2019_nondev_m_r\WindowsPlayer_player_Master_mono_x86.pdb

IMAGE_DEBUG_TYPE_VC_FEATURE

Characteristics 0
TimeDateStamp 2024-Jun-26 10:44:26
Version 0.0
SizeofData 20
AddressOfRawData 0x12f18
PointerToRawData 0x11f18

IMAGE_DEBUG_TYPE_POGO

Characteristics 0
TimeDateStamp 2024-Jun-26 10:44:26
Version 0.0
SizeofData 724
AddressOfRawData 0x12f2c
PointerToRawData 0x11f2c

TLS Callbacks

Load Configuration

Size 0xbc
TimeDateStamp 1970-Jan-01 00:00:00
Version 0.0
GlobalFlagsClear (EMPTY)
GlobalFlagsSet (EMPTY)
CriticalSectionDefaultTimeout 0
DeCommitFreeBlockThreshold 0
DeCommitTotalFreeThreshold 0
LockPrefixTable 0
MaximumAllocationSize 0
VirtualMemoryThreshold 0
ProcessAffinityMask 0
ProcessHeapFlags (EMPTY)
CSDVersion 0
Reserved1 0
EditList 0
SecurityCookie 0x414018
SEHandlerTable 0x412e5c
SEHandlerCount 11

RICH Header

XOR Key 0x58816681
Unmarked objects 0
ASM objects (28900) 10
C++ objects (28900) 141
C objects (28900) 20
Imports (28900) 2
C++ objects (VS 2015/2017/2019 runtime 29118) 38
C objects (VS 2015/2017/2019 runtime 29118) 17
ASM objects (VS 2015/2017/2019 runtime 29118) 18
Imports (VS2019 Update 8 (16.8.0-1) compiler 29333) 3
Total imports 81
C++ objects (VS2019 Update 8 (16.8.0-1) compiler 29333) 3
Exports (VS2019 Update 8 (16.8.0-1) compiler 29333) 1
Resource objects (VS2019 Update 8 (16.8.0-1) compiler 29333) 1
Linker (VS2019 Update 8 (16.8.0-1) compiler 29333) 1

Errors

Leave a comment

No comments yet.