520eb32ce052ccd68f9912f1ed616ea183a910713d7eb20b5b4ef50a8cd4f041

Summary

Architecture IMAGE_FILE_MACHINE_AMD64
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2026-Feb-04 06:49:55
Detected languages English - United States
Debug artifacts C:\build\output\unity\unity\artifacts\WindowsPlayer\Win_x64_VS2022_VB_MT_nondev_m_r\WindowsPlayer_player_Master_mono_x64.pdb
FileVersion 6000.3.8.1867189
LegalCopyright (c) 2005-2026 Unity Technologies. All rights reserved.
ProductVersion 6000.3.8f1 (1c7db571dde0)

Plugin Output

Info The PE contains common functions which appear in legitimate applications. [!] The program may be hiding some of its imports:
  • GetProcAddress
  • LoadLibraryExW
Suspicious The PE is possibly a dropper. Resources amount for 84.5615% of the executable.
Safe VirusTotal score: 0/71 (Scanned on 2026-03-16 11:30:18) All the AVs think this file is safe.

Hashes

MD5 5f74171b9327c7e6aa566feacd95921c
SHA1 93c68c186c0a6f85738a15478e0a0e5d12d2913a
SHA256 520eb32ce052ccd68f9912f1ed616ea183a910713d7eb20b5b4ef50a8cd4f041
SHA3 26ca71e02bd2d9e6b609ac3adc22dac8879beea4fc788bb4ebd1473f1d719ec8
SSDeep 6144:OPaMjvuUwZplUhL5hfYhrmi/bgTJyCRbPDy5/pjT3BX757XVbm59iMBWuFbnbbx:OPtVwZpuhPIrpSJ5DyTNNXVYHWgzhU
Imports Hash a136217cdd3247ff6a8766561064ca0b

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x110

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_AMD64
NumberofSections 6
TimeDateStamp 2026-Feb-04 06:49:55
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xf0
Characteristics IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE

Image Optional Header

Magic PE32+
LinkerVersion 14.0
SizeOfCode 0xce00
SizeOfInitializedData 0x97000
SizeOfUninitializedData 0
AddressOfEntryPoint 0x0000000000001264 (Section: .text)
BaseOfCode 0x1000
ImageBase 0x140000000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0xa7000
SizeOfHeaders 0x400
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 457fb5274ed18adc024e01b603e258a4
SHA1 159fdb99c377edc82c57d34217a711578edb0e63
SHA256 336709c08beca21a675f029c2d588ac0cae8cc8f42422039cbb827b6284374e5
SHA3 7d6db62af5f0503638e32b2c5a2ebd94056e5e490598ebed73cb0495875d3499
VirtualSize 0xcdb0
VirtualAddress 0x1000
SizeOfRawData 0xce00
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.45019

.rdata

MD5 2c8e6a64181131c056c68008f2b5c271
SHA1 11385e31b0e20430880954b6c037d74e800a347b
SHA256 b5c663913956993db2ca824064653d66d0cb606070ed539c2c18e46b28826ef7
SHA3 60a192053ce424075d1083284332f2ab09ec70a119adacbf1aa69b8fc4ddcbe2
VirtualSize 0x977c
VirtualAddress 0xe000
SizeOfRawData 0x9800
PointerToRawData 0xd200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.69227

.data

MD5 0822db25bce65451a1219de812eea533
SHA1 bf4c918ff2184dfeba8cd4f98b21e11d75de05e7
SHA256 8987031a7fb9e9ffe2b44dad568693d86af933f2b44447b6f5c1159bd0750a79
SHA3 83fbc2d299cd2e5b71ce2f669f319b95fcab94178c620dd04d72a1071efde7b0
VirtualSize 0x1d88
VirtualAddress 0x18000
SizeOfRawData 0xc00
PointerToRawData 0x16a00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 1.90767

.pdata

MD5 017f81338461c6b246bdb8ce1bf5fc08
SHA1 aa79861d4dea94c5fd283f1359435734dfb03517
SHA256 d1cc88f6e981b629ad1f47d33507ac8b71f82346871b690375752ffc69c6063d
SHA3 e197cfb7530afb455ed4ebbd26984d4562c62ea8c9c65f07f5d04c80970ee830
VirtualSize 0xec4
VirtualAddress 0x1a000
SizeOfRawData 0x1000
PointerToRawData 0x17600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.60208

.rsrc

MD5 41f7c4819a8607c46d57a1335daaa28a
SHA1 320b91c2c527881bc716d3a086671c587bd02d14
SHA256 e1f76d35509155505185a6cd0c975550e2d17db7cb584e193e4f580c927b4463
SHA3 fa3d8b61dc9d01aef82aea136c3ae7bef15665cf5f37c382a2a7e898dbd3f2f9
VirtualSize 0x8a018
VirtualAddress 0x1b000
SizeOfRawData 0x8a200
PointerToRawData 0x18600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.76631

.reloc

MD5 3ab8a3a955e5040e25556085e21a2be2
SHA1 f29b173f0ea430d70ff0803cbaa89fa1d4d024d9
SHA256 119eed3c019ffdb0bba4cee06b80d85e78a679f1bb17317cbb6a352bb4102d7a
SHA3 a5c3cb0725d2fd68e14265c6e03629d6270e73c1f049eb78b3e40b7b2535d802
VirtualSize 0x658
VirtualAddress 0xa6000
SizeOfRawData 0x800
PointerToRawData 0xa2800
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 4.86735

Imports

UnityPlayer.dll UnityMain2
KERNEL32.dll HeapAlloc
WriteConsoleW
QueryPerformanceCounter
GetCurrentProcessId
GetCurrentThreadId
GetSystemTimeAsFileTime
InitializeSListHead
RtlCaptureContext
RtlLookupFunctionEntry
RtlVirtualUnwind
IsDebuggerPresent
UnhandledExceptionFilter
SetUnhandledExceptionFilter
GetStartupInfoW
IsProcessorFeaturePresent
GetModuleHandleW
CloseHandle
RtlUnwindEx
GetLastError
SetLastError
EnterCriticalSection
LeaveCriticalSection
DeleteCriticalSection
InitializeCriticalSectionAndSpinCount
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
FreeLibrary
GetProcAddress
LoadLibraryExW
EncodePointer
RaiseException
RtlPcToFileHeader
GetStdHandle
WriteFile
GetModuleFileNameW
GetCurrentProcess
ExitProcess
TerminateProcess
GetModuleHandleExW
HeapFree
FindClose
FindFirstFileExW
FindNextFileW
IsValidCodePage
GetACP
GetOEMCP
GetCPInfo
GetCommandLineA
GetCommandLineW
MultiByteToWideChar
WideCharToMultiByte
GetEnvironmentStringsW
FreeEnvironmentStringsW
SetStdHandle
GetFileType
GetStringTypeW
FlsAlloc
FlsGetValue
FlsSetValue
FlsFree
LCMapStringW
GetProcessHeap
HeapSize
HeapReAlloc
FlushFileBuffers
GetConsoleOutputCP
GetConsoleMode
SetFilePointerEx
CreateFileW

Delayed Imports

AmdPowerXpressRequestHighPerformance

Ordinal 1
Address 0x18004

D3D12SDKPath

Ordinal 2
Address 0x18008

D3D12SDKVersion

Ordinal 3
Address 0xe320

NvOptimusEnablement

Ordinal 4
Address 0x18000

1

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x468
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.1197
MD5 37bc35f984fc015cd9af917f4289a613
SHA1 7067135ed0f15443b8a911057faf6c7e2df1ac6d
SHA256 62b60d5f025d4f22c5389fb4d722b10e7eb07902d1a971fc3cffbc2b4d224bdb
SHA3 00daf589a278605c55e982de132f6fe11f3799297b7c21509f4d1dffd6cfcdce

2

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x988
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.10216
MD5 61b76722df09e5a487dc19f5ff8d7092
SHA1 c12ab125849105285a4ad07fd9c77938524cbb87
SHA256 71c894f7be981408df8440ba5ba8b745d5e34b53d199476275964031b4b18ceb
SHA3 7c0a946dafa9a14385a21cecb28acf81d3e4c12a102e22d413f5731aa07fa84b

3

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x10a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.04764
MD5 a67b3d2d8e3d65ac4cca670423e7c4ea
SHA1 618d8bcde04aadbb562109414a0dbe9392da6950
SHA256 79244e8bc33bf5084fd55434b09583d29b63e968ff94eba7807e2c14f3cd584b
SHA3 29eeb4e65a7457c76bc6b11bef6aefa8514216ea4d16292ef1acbfd97b9640a1

4

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x25a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.94323
MD5 f9c193af108de21cf2fc20e00a3d3d69
SHA1 dc63d063d935e0834f374be415eb3ac950d3c467
SHA256 d014ccc41678d556531ad0400021f2fbd73587c664ed39710893d84ea0614a4d
SHA3 eb639c901acdffd75d90ea5ae4814b71a6e1bc2a0cbdf8609b9079bad2ca36a7

5

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x4228
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.87938
MD5 3ad0c5e04d200c727c7a093d4ae34a8a
SHA1 c319df2a47636577c3f8a949c4afbcecb38fdb11
SHA256 da33789a08e456fffefd52ea6bbd3a12b1bd34d0960809abc535e72752cc7a6e
SHA3 a9be35238e4713525d775da8d5f852ee9f45159756ec351158c47f4c2ec03f6b

6

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x94a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.81894
MD5 839d62d7031e5b75953d7c57897e804a
SHA1 4ef4a9391db54b1bb105b09d931c4ceaef7e4308
SHA256 463ea8305ecceab025a54f521bc8af211b44ae091d9fec2bc3f656740ca84e03
SHA3 8c0cc78523ffcfd330193e6192c91c07d50b19466148feabffe30758cbc59088

7

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x10828
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.78182
MD5 9cca30db94ea849d71cb27f1f84d8ccf
SHA1 a6dc8f2a4e898a1d46ca92fb7fb0b297de4b8653
SHA256 eedf36dd26024130eaace92f7a1f545c46b39bd305ab7211093883a22ed246a2
SHA3 234a5cf0f7af10990abea503bdbc09a3efd25d66b3f3e352c3915b2ab0bf1654

8

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x25228
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.74302
MD5 efff1d36735b38b926f863dd60d9f3ee
SHA1 be2862437be306bcc876f3c2522805dcb5fe2f00
SHA256 0efbeed3aef001097e9a9d9ccc8779816c89d97e60740658ebd98f4ce25bf284
SHA3 942976cdc58b283406b490a209189194baf8669e04f014295156938a8b8fbb7e

9

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x42028
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.72362
MD5 90e34602c931e523210bebe97191df78
SHA1 c17ad8c699c6ac84c5b1e91b584d6f9f3b20b86e
SHA256 c89a759f9d1a54ef24a22c1267f1da44a96efc2d3c5daa3998e63dacd02b99c8
SHA3 e59e055ea3ebf68b2029bae83938d1df96b81eaed73fadb34d7ec8aaeb65643d

103

Type RT_GROUP_ICON
Language English - United States
Codepage UNKNOWN
Size 0x84
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.04448
Detected Filetype Icon file
MD5 3bf2dac037ce87794e66ff7f054e913f
SHA1 52ca961fd37ad960905a681d1db5157508ef1602
SHA256 2a87b1f32c5d0435090c72c392b75394f706e5750eff64fd85d25e1c622ee581
SHA3 8454d3273522657b5926068082b2cb88f6dbf352e7e9568008c0e33c792f349b

1 (#2)

Type RT_VERSION
Language English - United States
Codepage UNKNOWN
Size 0x20c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.56951
MD5 d4ece13c0877d600953525e14b3c5295
SHA1 0c7f709fc62d0d9c0490e3c7befcaf56599622e7
SHA256 48f9b95a1cec45ef3db9cb64607fffdf344a871399b8aee4f2643a3b9b217236
SHA3 02bd0e728225dccefdc5eb26c45a4a16ee6f9c6f74526f75f20c4279da52b396

1 (#3)

Type RT_MANIFEST
Language English - United States
Codepage UNKNOWN
Size 0x545
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.24993
MD5 9df530c2f4fbe460da74e130d5d351a9
SHA1 f8719b6c74e0179556c1a18f214d6c1bbff8f823
SHA256 3c357bd1125971bda05bc59eaeca279da41715741e2535e9e75c94273b1c3a1f
SHA3 ce3dd46f87bd462f8730fca18daea6df444422f8d88b810aefbd7b2e62536dee

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 6000.3.8.32181
ProductVersion 6000.3.8.32181
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType VFT_UNKNOWN
Language English - United States
FileVersion (#2) 6000.3.8.1867189
LegalCopyright (c) 2005-2026 Unity Technologies. All rights reserved.
ProductVersion (#2) 6000.3.8f1 (1c7db571dde0)
Resource LangID English - United States

IMAGE_DEBUG_TYPE_CODEVIEW

Characteristics 0
TimeDateStamp 2026-Feb-04 06:49:55
Version 0.0
SizeofData 149
AddressOfRawData 0x15d68
PointerToRawData 0x14f68
Referenced File C:\build\output\unity\unity\artifacts\WindowsPlayer\Win_x64_VS2022_VB_MT_nondev_m_r\WindowsPlayer_player_Master_mono_x64.pdb

IMAGE_DEBUG_TYPE_VC_FEATURE

Characteristics 0
TimeDateStamp 2026-Feb-04 06:49:55
Version 0.0
SizeofData 20
AddressOfRawData 0x15e00
PointerToRawData 0x15000

IMAGE_DEBUG_TYPE_POGO

Characteristics 0
TimeDateStamp 2026-Feb-04 06:49:55
Version 0.0
SizeofData 836
AddressOfRawData 0x15e14
PointerToRawData 0x15014

TLS Callbacks

Load Configuration

Size 0x140
TimeDateStamp 1970-Jan-01 00:00:00
Version 0.0
GlobalFlagsClear (EMPTY)
GlobalFlagsSet (EMPTY)
CriticalSectionDefaultTimeout 0
DeCommitFreeBlockThreshold 0
DeCommitTotalFreeThreshold 0
LockPrefixTable 0
MaximumAllocationSize 0
VirtualMemoryThreshold 0
ProcessAffinityMask 0
ProcessHeapFlags (EMPTY)
CSDVersion 0
Reserved1 0
EditList 0
SecurityCookie 0x140018040

RICH Header

XOR Key 0x7914df52
Unmarked objects 0
ASM objects (28900) 5
C++ objects (28900) 138
C objects (28900) 10
Imports (28900) 2
ASM objects (34321) 9
C objects (34321) 16
C++ objects (34321) 40
Imports (34433) 3
Total imports 89
C++ objects (34433) 2
Exports (34433) 1
Resource objects (34433) 1
Linker (34433) 1

Errors

Leave a comment

No comments yet.