311bf3b48643e6de889a3ba393a5ac5337786c5573254c21eba65d326a7b45c5

Summary

Architecture IMAGE_FILE_MACHINE_AMD64
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2016-May-24 23:16:30
Detected languages English - United States
Debug artifacts C:\Users\BUILDU~1\AppData\Local\Temp\UnityPlayer_Symbols.pdb
FileVersion 4.7.2.11009659
ProductVersion 4.7.2.11009659
Unity Version 4.7.2f1_a7fe7b7f3d1f

Plugin Output

Info Matching compiler(s): MASM/TASM - sig1(h)
Suspicious Strings found in the binary may indicate undesirable behavior: Contains references to system / monitoring tools:
  • rundll32.exe
Contains references to internet browsers:
  • firefox.exe
  • iexplore.exe
Tries to detect virtualized environments:
  • HARDWARE\DESCRIPTION\System
  • b3 eb 36 e4 4f 52 ce 11 9f 53 00 20 af 0b a7 70
Looks for VMWare presence:
  • VMWare
Accesses the WMI:
  • root\cimv2
Contains domain names:
  • connectiontester.unity3d.com
  • connectiontesterbeta.unity3d.com
  • curl.haxx.se
  • example.com
  • eyePosition.xyz
  • facilitator.unity3d.com
  • facilitatorbeta.unity3d.com
  • http://curl.haxx.se
  • http://curl.haxx.se/rfc/cookie_spec.html
  • http://msdl.microsoft.com
  • http://msdl.microsoft.com/download/symbols
  • http://unity3d.com
  • http://www.openssl.org
  • http://www.openssl.org/support/faq.html
  • https://stats.unity3d.com
  • https://stats.unity3d.com/HWStats.cgi
  • light.position.xyz
  • masterserver.unity3d.com
  • masterserverbeta.unity3d.com
  • microsoft.com
  • msdl.microsoft.com
  • normal.xyz
  • openssl.org
  • position.xyz
  • proxy.unity3d.com
  • proxybeta.unity3d.com
  • stats.unity3d.com
  • tangent.xyz
  • unity3d.com
  • vertex.xyz
  • www.openssl.org
Info Cryptographic algorithms detected in the binary: Uses constants related to CRC32
Uses constants related to MD5
Uses constants related to SHA1
Uses constants related to SHA256
Uses constants related to SHA512
Uses constants related to AES
Uses constants related to Blowfish
Uses known Mersenne Twister constants
Microsoft's Cryptography API
Suspicious The PE is possibly packed. Unusual section name found: text
Unusual section name found: data
Unusual section name found: .trace
Suspicious The PE contains functions most legitimate programs don't use. [!] The program may be hiding some of its imports:
  • GetProcAddress
  • LoadLibraryW
  • LoadLibraryA
Can access the registry:
  • SHDeleteKeyA
  • RegDeleteValueA
  • RegCreateKeyExW
  • RegQueryValueExW
  • RegOpenKeyExW
  • RegSetValueExW
  • RegCreateKeyA
  • RegSetValueExA
  • RegOpenKeyExA
  • RegQueryValueExA
  • RegCloseKey
Possibly launches other programs:
  • CreateProcessW
  • ShellExecuteW
Uses Microsoft's cryptographic API:
  • CryptReleaseContext
  • CryptImportKey
  • CryptVerifySignatureA
  • CryptDestroyKey
  • CryptDestroyHash
  • CryptAcquireContextA
  • CryptGetHashParam
  • CryptHashData
  • CryptCreateHash
Can create temporary files:
  • GetTempPathW
  • CreateFileA
  • CreateFileW
Has Internet access capabilities:
  • WinHttpGetIEProxyConfigForCurrentUser
Leverages the raw socket API to access the Internet:
  • bind
  • WSACleanup
  • closesocket
  • inet_ntoa
  • htonl
  • inet_addr
  • getsockname
  • connect
  • htons
  • WSAAsyncGetHostByName
  • WSACancelAsyncRequest
  • gethostbyaddr
  • getaddrinfo
  • freeaddrinfo
  • getpeername
  • getsockopt
  • send
  • recv
  • shutdown
  • listen
  • accept
  • ntohs
  • WSAGetLastError
  • recvfrom
  • sendto
  • __WSAFDIsSet
  • WSASetLastError
  • select
  • setsockopt
  • ioctlsocket
  • gethostbyname
  • gethostname
  • socket
  • WSAStartup
Enumerates local disk drives:
  • GetDriveTypeA
  • GetDriveTypeW
Can use the microphone to record audio:
  • waveInOpen
Reads the contents of the clipboard:
  • GetClipboardData
Safe VirusTotal score: 0/72 (Scanned on 2025-06-19 16:33:26) All the AVs think this file is safe.

Hashes

MD5 9b8a842c15a1c5b9f69909d6da3cce80
SHA1 161d82c934898334559135ab02630e5841357040
SHA256 311bf3b48643e6de889a3ba393a5ac5337786c5573254c21eba65d326a7b45c5
SHA3 4150137e9d014b5d0f08a8c0933c84fc4c9a2b7e59ec5d3c58a6c3d587e3519b
SSDeep 393216:lzpV/eZy4a6ehNplYfwBUmhNyMe2njSIp0fr3ze73c5eSCpkD:g2SCpkD
Imports Hash 07c8d996a869b4519d96fef45359cd7d

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x138

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_AMD64
NumberofSections 10
TimeDateStamp 2016-May-24 23:16:30
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xf0
Characteristics IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE

Image Optional Header

Magic PE32+
LinkerVersion 10.0
SizeOfCode 0xa32400
SizeOfInitializedData 0x4b5e00
SizeOfUninitializedData 0
AddressOfEntryPoint 0x00000000005C6C04 (Section: .text)
BaseOfCode 0x1000
ImageBase 0x140000000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 5.2
ImageVersion 0.0
SubsystemVersion 5.2
Win32VersionValue 0
SizeOfImage 0xeee000
SizeOfHeaders 0x400
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 c743cb51e88b6733618c6d2ec42c76e5
SHA1 c3d9bf5ce69d68abce5601b83457cb6b299db7b1
SHA256 66c5cb0c68aa73348492771de22833b4f782977bae4381cd42e2e62b40aefa20
SHA3 13a43e82630839ec87904c838df20a824b88b1c96fc551bfa855dd9734ad8c0b
VirtualSize 0xa3234e
VirtualAddress 0x1000
SizeOfRawData 0xa32400
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.48525

.rdata

MD5 2b58b1416ca9106782dbf5a9df2fc7cf
SHA1 9181c2266e1b1e4ada2395be7022b661c1d220b1
SHA256 203703841508cce8f609ddf3b9e8fae0d0c2196642c5d13bd3665e4407db5049
SHA3 ec8bb681cc9376ae39b42e9604763d02eb3a25e49f8907e32f1fb4056d37cb84
VirtualSize 0x24c555
VirtualAddress 0xa34000
SizeOfRawData 0x24c600
PointerToRawData 0xa32800
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.76245

.data

MD5 ccc2f8914850c2b8cfe61d68778ddd5f
SHA1 5287d46d380f133902bfd411b4e9bfb55c471ed6
SHA256 4a19452aa4b31cd6800a96b38e99e3f5ee2687adef9ab1c5b69bd6d57458d62d
SHA3 fa1cf4b4cff7a1c0660217350473a1b461fadebe2e7db1cb02bb2e0cd8591380
VirtualSize 0x1201c0
VirtualAddress 0xc81000
SizeOfRawData 0x71600
PointerToRawData 0xc7ee00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 5.33183

.pdata

MD5 a782df82414b4dcbf06466b67f6f90d7
SHA1 5fb5808458ce1bfdf8b4c7d3565dc7f771a2c6c8
SHA256 e6f9e8f96fe97a0e9af960d6783753ffed5aa841b4bd14bd57904da8ce6c116c
SHA3 3f097a0e47639fd2f011178b68d5c08bb509d1938cc6e11f91fac4fd28c6b9f2
VirtualSize 0x9552c
VirtualAddress 0xda2000
SizeOfRawData 0x95600
PointerToRawData 0xcf0400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.55907

text

MD5 3aa9184181ab20b4923361b9d88131fe
SHA1 406f89c1f5f81ea186c3647b1d0c931b55c16da0
SHA256 b4b6efe6c51dbf832a4f36be900548c6c1e6187556527dbb2242c8f00b7103e7
SHA3 a77dc30ad1fa8c9e50a81073227f9b6c5e95213285e4db09d4c696fa9a2648b2
VirtualSize 0x2cae
VirtualAddress 0xe38000
SizeOfRawData 0x2e00
PointerToRawData 0xd85a00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_EXECUTE
Entropy 5.74278

data

MD5 7cac15f4cd3bfa8fc82aa66872a970d2
SHA1 16b7c86264f5592ed3c3d74e1bd51e31174c70d6
SHA256 a0ceed982c948625a5cbee89087d96798d7d1a65d59f0d7548885b894cc4d2d6
SHA3 95d0d47be1ac02f28d15af9b2eefecc519edb2f4f1c7d3ce7c0003771af4df20
VirtualSize 0x5f10
VirtualAddress 0xe3b000
SizeOfRawData 0x6000
PointerToRawData 0xd88800
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.3861

.trace

MD5 b0692ef2e24cbc59200ff2c64e087288
SHA1 c9d6aebf4d451efb9a90adb6f24789fd488faa9b
SHA256 12a48417741c3e17b4b8564aa2f0dfb199467b6066011c052c55876078c7a36c
SHA3 2128562c51e7b1c63f5e815c591f3aae79277dc5bc227f07e51ffd2bd66e2e41
VirtualSize 0xe10
VirtualAddress 0xe41000
SizeOfRawData 0x1000
PointerToRawData 0xd8e800
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 5.56874

_RDATA

MD5 7c9cb2d19be0fb7ee60cf13697f397d2
SHA1 16ef76e69f6d08e96cdbc6c8f0466ae7248509da
SHA256 791ca45b21721d4661f12d05f5979f0ca49db0c3af468159de4b844904ce9b4b
SHA3 7ae801b81f44c857eae595c43b40f25312c1b081aca940a9dd5061f41ac7bafa
VirtualSize 0x1200
VirtualAddress 0xe42000
SizeOfRawData 0x1200
PointerToRawData 0xd8f800
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 3.81795

.rsrc

MD5 9e8fe5fde678c7a95fb9e10dd1de51a1
SHA1 773cfce65b7ddd0b2579f4ce90c8ff3f8dd68db1
SHA256 fbfbf59642caa4c02bbf61eb6a2a0d74cc1106bc5575cff203715517f265ffc3
SHA3 cf048ac8214823053d0e720048b9771e0ef315d32720c0b3ccfdda4e57390a3f
VirtualSize 0x8a678
VirtualAddress 0xe44000
SizeOfRawData 0x8a800
PointerToRawData 0xd90a00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.60923

.reloc

MD5 82e1dd6bcbc00f2bd1093b82af33f135
SHA1 50617b4cefff06137fd72396cdf97685e1104815
SHA256 85a6fca7dabb642835691a8b2cb4b716a3aabc7530dd4e27f3c4cff95e2de539
SHA3 1aec32e51e51f36ce4a51c91412a91fd2e8c1445829f53a303f23c00aed8d0b0
VirtualSize 0x1e7a8
VirtualAddress 0xecf000
SizeOfRawData 0x1e800
PointerToRawData 0xe1b200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 4.54076

Imports

HID.DLL HidP_GetButtonCaps
HidP_GetCaps
HidD_GetProductString
HidP_GetValueCaps
HidP_MaxDataListLength
HidD_FreePreparsedData
HidD_GetPreparsedData
HidP_GetData
HidD_GetHidGuid
WS2_32.dll bind
WSACleanup
closesocket
inet_ntoa
htonl
inet_addr
getsockname
connect
htons
WSAAsyncGetHostByName
WSACancelAsyncRequest
gethostbyaddr
getaddrinfo
freeaddrinfo
getpeername
getsockopt
send
recv
shutdown
listen
accept
ntohs
WSAGetLastError
recvfrom
sendto
__WSAFDIsSet
WSASetLastError
select
setsockopt
ioctlsocket
gethostbyname
gethostname
socket
WSAStartup
KERNEL32.dll DeleteFileW
RemoveDirectoryW
FindNextFileW
FindFirstFileW
GetModuleFileNameW
lstrcpynA
lstrcpyA
lstrcpynW
FreeLibrary
GetCommandLineW
GetProcAddress
LoadLibraryW
CancelIo
GetOverlappedResult
CreateEventW
ExpandEnvironmentStringsA
CreateMutexA
GetCurrentThreadId
RaiseException
VerifyVersionInfoW
VerSetConditionMask
GetVersionExW
GetSystemInfo
GetModuleHandleA
GlobalMemoryStatusEx
GetCurrentProcess
GetUserDefaultLangID
GetComputerNameW
LoadLibraryA
GetTempPathW
GetModuleHandleW
GetVersionExA
GetCurrentProcessId
SetUnhandledExceptionFilter
WaitForSingleObject
CreateThread
OutputDebugStringA
SetLastError
GetEnvironmentVariableA
GetFileAttributesA
GetModuleFileNameA
GetCurrentDirectoryA
ResumeThread
GetThreadContext
SuspendThread
RtlCaptureContext
GetCurrentThread
IsBadReadPtr
GetWindowsDirectoryA
GetFullPathNameW
CreateSemaphoreA
Sleep
WaitForSingleObjectEx
ReleaseSemaphore
SleepEx
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
TryEnterCriticalSection
SetThreadPriority
CreateEventA
CopyFileW
CloseHandle
ResetEvent
FileTimeToDosDateTime
FileTimeToLocalFileTime
lstrlenA
GetFileTime
VirtualQuery
GlobalMemoryStatus
GetSystemTimeAsFileTime
CreateProcessW
FindClose
GetFileAttributesW
WritePrivateProfileStringW
HeapAlloc
HeapReAlloc
HeapFree
RtlLookupFunctionEntry
RtlUnwindEx
RtlPcToFileHeader
EncodePointer
DecodePointer
ExitProcess
SetConsoleCtrlHandler
ExitThread
DuplicateHandle
GetCommandLineA
GetStartupInfoW
GetStdHandle
HeapSetInformation
GetVersion
HeapCreate
FlsGetValue
FlsSetValue
FlsFree
FlsAlloc
HeapSize
GetLocaleInfoW
UnhandledExceptionFilter
RtlVirtualUnwind
TerminateProcess
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
InitializeCriticalSectionAndSpinCount
GetConsoleCP
GetConsoleMode
FlushFileBuffers
SetHandleCount
GetFileType
SetStdHandle
LCMapStringW
FreeEnvironmentStringsW
GetEnvironmentStringsW
GetTickCount
GetStringTypeW
GetUserDefaultLCID
GetLocaleInfoA
EnumSystemLocalesA
IsValidLocale
CompareStringW
SetEnvironmentVariableA
CreateFileA
WriteConsoleW
GetProcessHeap
GetFullPathNameA
lstrcmpiA
MapViewOfFile
CreateFileMappingA
UnmapViewOfFile
VirtualFree
VirtualAlloc
GetProcessAffinityMask
OpenEventA
GetSystemDirectoryA
GetDateFormatA
CreateSemaphoreW
CreateMutexW
SignalObjectAndWait
ReleaseMutex
GetThreadLocale
FlushConsoleInputBuffer
WriteFile
IsDebuggerPresent
MoveFileExW
WideCharToMultiByte
GlobalAlloc
GlobalLock
SetFileAttributesW
CreateDirectoryW
GetFileSize
ReadFile
CreateFileW
SetEndOfFile
SetErrorMode
SetFilePointer
GlobalUnlock
FormatMessageW
FormatMessageA
LocalFree
MultiByteToWideChar
QueryPerformanceCounter
QueryPerformanceFrequency
GetLastError
TlsSetValue
TlsGetValue
TlsFree
TlsAlloc
GetTimeFormatA
FileTimeToSystemTime
GetFileInformationByHandle
PeekNamedPipe
GetDriveTypeA
FindFirstFileExA
GetTimeZoneInformation
ReadConsoleInputA
SetConsoleMode
GetCurrentDirectoryW
GetDriveTypeW
WaitForMultipleObjects
TerminateThread
SetThreadAffinityMask
HeapValidate
SetEvent
HeapWalk
USER32.dll SendMessageTimeoutA
EnumWindows
SendMessageA
SetForegroundWindow
ShowWindow
IsIconic
RegisterWindowMessageA
GetUserObjectInformationA
GetThreadDesktop
GetRawInputDeviceList
GetWindowRect
GetWindowLongA
SetWindowPos
GetClientRect
GetWindowLongPtrA
CreateDialogParamA
SetWindowLongPtrA
GetDlgItem
ChangeDisplaySettingsA
SetWindowLongA
GetWindowPlacement
AdjustWindowRectEx
EnumDisplaySettingsA
GetRawInputDeviceInfoW
GetRawInputData
IsWindowVisible
GetCursorPos
GetKeyState
wsprintfA
GetParent
OpenClipboard
EmptyClipboard
SetClipboardData
CloseClipboard
CreateWindowExW
DestroyWindow
DefWindowProcW
DestroyCursor
LoadCursorA
SetCursor
GetSystemMetrics
GetDC
ReleaseDC
CreateIconIndirect
GetUserObjectInformationW
GetProcessWindowStation
MessageBoxW
wvsprintfA
MonitorFromWindow
GetCaretBlinkTime
PeekMessageA
GetMessageA
DispatchMessageA
ValidateRect
EnumDisplayDevicesA
EnumDisplayMonitors
GetMonitorInfoA
LoadImageA
DialogBoxParamA
IsDlgButtonChecked
CheckDlgButton
CreateDialogParamW
PeekMessageW
IsDialogMessageW
TranslateMessage
DispatchMessageW
MsgWaitForMultipleObjects
EnableWindow
SetWindowTextW
RegisterClassW
PostQuitMessage
SetWindowLongPtrW
GetWindowLongPtrW
SetCursorPos
ClipCursor
ShowCursor
GetFocus
ScreenToClient
GetAsyncKeyState
GetClipboardData
IsClipboardFormatAvailable
SetCapture
ReleaseCapture
UnregisterDeviceNotification
RegisterDeviceNotificationW
SystemParametersInfoW
ClientToScreen
SetFocus
WindowFromPoint
RegisterClassExW
DialogBoxParamW
EndDialog
LoadIconA
SendDlgItemMessageW
SetDlgItemTextA
GetDesktopWindow
MessageBoxA
CopyRect
OffsetRect
GetAncestor
UnregisterClassW
RegisterRawInputDevices
SetDlgItemTextW
VERSION.dll GetFileVersionInfoW
GetFileVersionInfoSizeW
GetFileVersionInfoA
GetFileVersionInfoSizeA
VerQueryValueA
ole32.dll CoCreateInstance
CoTaskMemFree
CoUninitialize
CoInitialize
CoTaskMemAlloc
StringFromGUID2
CoCreateGuid
CoSetProxyBlanket
SHLWAPI.dll PathCanonicalizeW
PathFileExistsW
SHDeleteKeyA
PathIsDirectoryW
ADVAPI32.dll CryptReleaseContext
CryptImportKey
CryptVerifySignatureA
CryptDestroyKey
RegDeleteValueA
GetUserNameA
RegCreateKeyExW
RegQueryValueExW
CryptDestroyHash
RegOpenKeyExW
RegSetValueExW
RegCreateKeyA
RegSetValueExA
RegOpenKeyExA
RegQueryValueExA
RegCloseKey
CryptAcquireContextA
RegisterEventSourceW
ReportEventW
DeregisterEventSource
CryptGetHashParam
CryptHashData
CryptCreateHash
GDI32.dll SwapBuffers
GetObjectA
GetDeviceCaps
ChoosePixelFormat
SetPixelFormat
DeleteObject
CreateBitmap
CreateDIBSection
SHELL32.dll ShellExecuteW
SHGetFolderPathW
CommandLineToArgvW
OPENGL32.dll glIsTexture
glGetTexParameteriv
glTexSubImage2D
glPixelStorei
glCopyTexSubImage2D
glDrawBuffer
glReadBuffer
glDrawArrays
wglDeleteContext
glBegin
glEnd
glColor4f
glNormal3f
glVertex3f
glHint
glLightModelf
glLoadIdentity
glMaterialfv
glMaterialf
glReadPixels
glFinish
glFogi
glFogf
glFogfv
glLightModelfv
glLightf
glLightfv
glTexGeni
glTexGenfv
glTexEnvfv
glScissor
glViewport
glColor4fv
glLightModeli
glColorMaterial
glGetFloatv
glMultMatrixf
glMatrixMode
glLoadMatrixf
glPolygonMode
glClearColor
glClearDepth
glClearStencil
glClear
glIsEnabled
glStencilFunc
glStencilOp
glStencilMask
glDepthFunc
glDepthMask
glCullFace
glPolygonOffset
glColorMask
glDisable
glBlendFunc
glEnable
glAlphaFunc
glTexEnvi
glTexEnvf
glDisableClientState
glEnableClientState
glColorPointer
glVertexPointer
glNormalPointer
glTexCoordPointer
glDrawElements
glGetString
glGetError
glDeleteTextures
glGenTextures
glBindTexture
glTexParameteri
glTexImage2D
wglGetProcAddress
glGetIntegerv
wglShareLists
wglGetCurrentDC
wglGetCurrentContext
wglMakeCurrent
wglCreateContext
glFrontFace
WINMM.dll waveInOpen
waveInStart
waveInGetDevCapsW
waveInGetDevCapsA
waveInUnprepareHeader
waveInPrepareHeader
waveInAddBuffer
waveInClose
waveOutReset
waveOutWrite
waveOutUnprepareHeader
waveOutOpen
waveOutClose
waveOutGetDevCapsW
waveOutGetDevCapsA
waveOutGetNumDevs
waveInGetNumDevs
timeBeginPeriod
timeEndPeriod
timeGetTime
waveInReset
waveOutPrepareHeader
waveOutGetPosition
OLEAUT32.dll SysStringLen
SysAllocString
VariantChangeType
VariantClear
VariantInit
SysFreeString
MSACM32.dll acmStreamConvert
acmStreamUnprepareHeader
acmFormatSuggest
acmStreamOpen
acmStreamSize
acmStreamPrepareHeader
IMM32.dll ImmReleaseContext
ImmSetOpenStatus
ImmGetCompositionStringW
ImmGetConversionStatus
ImmAssociateContextEx
ImmAssociateContext
ImmGetContext
ImmSetCompositionStringW
DNSAPI.dll DnsQuery_A
DnsFree
IPHLPAPI.DLL GetIpAddrTable
WINHTTP.dll WinHttpGetIEProxyConfigForCurrentUser

Delayed Imports

??$Transfer@V?$StreamedBinaryRead@$00@@@AnimationEvent@@QEAAXAEAV?$StreamedBinaryRead@$00@@@Z

Ordinal 1
Address 0x425e90

??$Transfer@V?$StreamedBinaryRead@$00@@@Behaviour@@QEAAXAEAV?$StreamedBinaryRead@$00@@@Z

Ordinal 2
Address 0x12b0e0

??$Transfer@V?$StreamedBinaryRead@$00@@@Component@Unity@@QEAAXAEAV?$StreamedBinaryRead@$00@@@Z

Ordinal 3
Address 0xf090

??$Transfer@V?$StreamedBinaryRead@$00@@@GameObject@Unity@@QEAAXAEAV?$StreamedBinaryRead@$00@@@Z

Ordinal 4
Address 0x132a0

??$Transfer@V?$StreamedBinaryRead@$00@@@GlobalGameManager@@QEAAXAEAV?$StreamedBinaryRead@$00@@@Z

Ordinal 5
Address 0xc3b0

??$Transfer@V?$StreamedBinaryRead@$00@@@LevelGameManager@@QEAAXAEAV?$StreamedBinaryRead@$00@@@Z

Ordinal 6
Address 0xc3b0

??$Transfer@V?$StreamedBinaryRead@$00@@@NamedObject@@QEAAXAEAV?$StreamedBinaryRead@$00@@@Z

Ordinal 7
Address 0x17d40

??$Transfer@V?$StreamedBinaryRead@$00@@@Object@@IEAAXAEAV?$StreamedBinaryRead@$00@@@Z

Ordinal 8
Address 0x8c3720

??$Transfer@V?$StreamedBinaryRead@$00@@@Renderer@@QEAAXAEAV?$StreamedBinaryRead@$00@@@Z

Ordinal 9
Address 0x128fb0

??$Transfer@V?$StreamedBinaryRead@$0A@@@@AnimationEvent@@QEAAXAEAV?$StreamedBinaryRead@$0A@@@@Z

Ordinal 10
Address 0x425d60

??$Transfer@V?$StreamedBinaryRead@$0A@@@@Behaviour@@QEAAXAEAV?$StreamedBinaryRead@$0A@@@@Z

Ordinal 11
Address 0x12ac50

??$Transfer@V?$StreamedBinaryRead@$0A@@@@Component@Unity@@QEAAXAEAV?$StreamedBinaryRead@$0A@@@@Z

Ordinal 12
Address 0xe3e0

??$Transfer@V?$StreamedBinaryRead@$0A@@@@GameObject@Unity@@QEAAXAEAV?$StreamedBinaryRead@$0A@@@@Z

Ordinal 13
Address 0x13140

??$Transfer@V?$StreamedBinaryRead@$0A@@@@GlobalGameManager@@QEAAXAEAV?$StreamedBinaryRead@$0A@@@@Z

Ordinal 14
Address 0xc3b0

??$Transfer@V?$StreamedBinaryRead@$0A@@@@LevelGameManager@@QEAAXAEAV?$StreamedBinaryRead@$0A@@@@Z

Ordinal 15
Address 0xc3b0

??$Transfer@V?$StreamedBinaryRead@$0A@@@@NamedObject@@QEAAXAEAV?$StreamedBinaryRead@$0A@@@@Z

Ordinal 16
Address 0x17ca0

??$Transfer@V?$StreamedBinaryRead@$0A@@@@Object@@IEAAXAEAV?$StreamedBinaryRead@$0A@@@@Z

Ordinal 17
Address 0x8c3720

??$Transfer@V?$StreamedBinaryRead@$0A@@@@Renderer@@QEAAXAEAV?$StreamedBinaryRead@$0A@@@@Z

Ordinal 18
Address 0x128db0

??$Transfer@V?$StreamedBinaryWrite@$0A@@@@AnimationEvent@@QEAAXAEAV?$StreamedBinaryWrite@$0A@@@@Z

Ordinal 19
Address 0x425830

??$Transfer@V?$StreamedBinaryWrite@$0A@@@@Behaviour@@QEAAXAEAV?$StreamedBinaryWrite@$0A@@@@Z

Ordinal 20
Address 0x12acc0

??$Transfer@V?$StreamedBinaryWrite@$0A@@@@Component@Unity@@QEAAXAEAV?$StreamedBinaryWrite@$0A@@@@Z

Ordinal 21
Address 0xe420

??$Transfer@V?$StreamedBinaryWrite@$0A@@@@GameObject@Unity@@QEAAXAEAV?$StreamedBinaryWrite@$0A@@@@Z

Ordinal 22
Address 0x11de0

??$Transfer@V?$StreamedBinaryWrite@$0A@@@@GlobalGameManager@@QEAAXAEAV?$StreamedBinaryWrite@$0A@@@@Z

Ordinal 23
Address 0xc3b0

??$Transfer@V?$StreamedBinaryWrite@$0A@@@@LevelGameManager@@QEAAXAEAV?$StreamedBinaryWrite@$0A@@@@Z

Ordinal 24
Address 0xc3b0

??$Transfer@V?$StreamedBinaryWrite@$0A@@@@NamedObject@@QEAAXAEAV?$StreamedBinaryWrite@$0A@@@@Z

Ordinal 25
Address 0x17e60

??$Transfer@V?$StreamedBinaryWrite@$0A@@@@Object@@IEAAXAEAV?$StreamedBinaryWrite@$0A@@@@Z

Ordinal 26
Address 0x8c3720

??$Transfer@V?$StreamedBinaryWrite@$0A@@@@Renderer@@QEAAXAEAV?$StreamedBinaryWrite@$0A@@@@Z

Ordinal 27
Address 0x1291f0

??$Transfer@VProxyTransfer@@@AnimationEvent@@QEAAXAEAVProxyTransfer@@@Z

Ordinal 28
Address 0x425960

??$Transfer@VProxyTransfer@@@Behaviour@@QEAAXAEAVProxyTransfer@@@Z

Ordinal 29
Address 0x12abf0

??$Transfer@VProxyTransfer@@@Component@Unity@@QEAAXAEAVProxyTransfer@@@Z

Ordinal 30
Address 0x10200

??$Transfer@VProxyTransfer@@@GameObject@Unity@@QEAAXAEAVProxyTransfer@@@Z

Ordinal 31
Address 0x12ce0

??$Transfer@VProxyTransfer@@@GlobalGameManager@@QEAAXAEAVProxyTransfer@@@Z

Ordinal 32
Address 0xc3b0

??$Transfer@VProxyTransfer@@@LevelGameManager@@QEAAXAEAVProxyTransfer@@@Z

Ordinal 33
Address 0xc3b0

??$Transfer@VProxyTransfer@@@NamedObject@@QEAAXAEAVProxyTransfer@@@Z

Ordinal 34
Address 0x17bd0

??$Transfer@VProxyTransfer@@@Object@@IEAAXAEAVProxyTransfer@@@Z

Ordinal 35
Address 0x8c3720

??$Transfer@VProxyTransfer@@@Renderer@@QEAAXAEAVProxyTransfer@@@Z

Ordinal 36
Address 0x1299e0

??$Transfer@VRemapPPtrTransfer@@@AnimationEvent@@QEAAXAEAVRemapPPtrTransfer@@@Z

Ordinal 37
Address 0x425460

??$Transfer@VRemapPPtrTransfer@@@Behaviour@@QEAAXAEAVRemapPPtrTransfer@@@Z

Ordinal 38
Address 0x125d90

??$Transfer@VRemapPPtrTransfer@@@Component@Unity@@QEAAXAEAVRemapPPtrTransfer@@@Z

Ordinal 39
Address 0xdd60

??$Transfer@VRemapPPtrTransfer@@@GameObject@Unity@@QEAAXAEAVRemapPPtrTransfer@@@Z

Ordinal 40
Address 0x10760

??$Transfer@VRemapPPtrTransfer@@@GlobalGameManager@@QEAAXAEAVRemapPPtrTransfer@@@Z

Ordinal 41
Address 0xc3b0

??$Transfer@VRemapPPtrTransfer@@@LevelGameManager@@QEAAXAEAVRemapPPtrTransfer@@@Z

Ordinal 42
Address 0xc3b0

??$Transfer@VRemapPPtrTransfer@@@NamedObject@@QEAAXAEAVRemapPPtrTransfer@@@Z

Ordinal 43
Address 0x17c20

??$Transfer@VRemapPPtrTransfer@@@Object@@IEAAXAEAVRemapPPtrTransfer@@@Z

Ordinal 44
Address 0x8c3720

??$Transfer@VRemapPPtrTransfer@@@Renderer@@QEAAXAEAVRemapPPtrTransfer@@@Z

Ordinal 45
Address 0x128d20

??$Transfer@VSafeBinaryRead@@@AnimationEvent@@QEAAXAEAVSafeBinaryRead@@@Z

Ordinal 46
Address 0x425af0

??$Transfer@VSafeBinaryRead@@@Behaviour@@QEAAXAEAVSafeBinaryRead@@@Z

Ordinal 47
Address 0x12b000

??$Transfer@VSafeBinaryRead@@@Component@Unity@@QEAAXAEAVSafeBinaryRead@@@Z

Ordinal 48
Address 0x10270

??$Transfer@VSafeBinaryRead@@@GameObject@Unity@@QEAAXAEAVSafeBinaryRead@@@Z

Ordinal 49
Address 0x12ff0

??$Transfer@VSafeBinaryRead@@@GlobalGameManager@@QEAAXAEAVSafeBinaryRead@@@Z

Ordinal 50
Address 0xc3b0

??$Transfer@VSafeBinaryRead@@@LevelGameManager@@QEAAXAEAVSafeBinaryRead@@@Z

Ordinal 51
Address 0xc3b0

??$Transfer@VSafeBinaryRead@@@NamedObject@@QEAAXAEAVSafeBinaryRead@@@Z

Ordinal 52
Address 0x17c50

??$Transfer@VSafeBinaryRead@@@Object@@IEAAXAEAVSafeBinaryRead@@@Z

Ordinal 53
Address 0x8c3720

??$Transfer@VSafeBinaryRead@@@Renderer@@QEAAXAEAVSafeBinaryRead@@@Z

Ordinal 54
Address 0x129de0

AgPmDestroySourceConnection

Ordinal 55
Address 0xa172a0

AgPmEventEnabled

Ordinal 56
Address 0xa17320

AgPmEventLoggingEnabled

Ordinal 57
Address 0xa17340

AgPmSubmitEvent

Ordinal 58
Address 0xa172f0

AmdPowerXpressRequestHighPerformance

Ordinal 59
Address 0xc838e4

NvOptimusEnablement

Ordinal 60
Address 0xc838e0

NxCreateCoreSDK

Ordinal 61
Address 0x8c1450

1

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x468
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.01882
MD5 f2a105a43099f25bba170ad235d1c8ef
SHA1 70e0071dcea4208c2ae983a7b70d74c8d6447a65
SHA256 a168a955b74d7148856e9726ceefe55a0ce21c07b37067957071db803c66a1f8
SHA3 29ffb7bc36fd672b87829fd9e43e79fd95325c1e573776e4ef700b3db4275545

2

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x988
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.34652
MD5 9b182adbfc8f088c97babb4d4171bb46
SHA1 4e855dfc20cf31b9ee1e7640c25090503795005e
SHA256 5a05ad7e5fb77793f745f663f76f1c75e603b1b3bbd6cdb053ce4bce87ba4a59
SHA3 d50c15d1ae171dd247054b215032f37ada18457dc794829c24dde5416bd40574

3

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x10a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.4564
MD5 f39bc4595946004da6c8993b3153b03d
SHA1 bdefc230cd4756e7495b00c8344198a53f7e04ef
SHA256 e1dc9e8164aa09501272dbb4eb5af0b5cc33809dd6f2b13df5e213f8fd7217fa
SHA3 9ea1e86ad10b543b72f471ee0854a60a5ba84ee2a1880fe89b73b2d2dd4c0e3f

4

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x25a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.53046
MD5 15d3bf170b5d9ca3c9c5c42b8eeef895
SHA1 3f51743afa41e39264642828f69f44d8476bfb04
SHA256 15822147b0e2714a86de92e1690e1cb44231c70911f99486d2e38b8ef4ebf2a1
SHA3 36348db5005c40e00538df7a74480d19d6c9c4bf578e5f032589dfe9e050215a

5

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x4228
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.57835
MD5 1e864375973f56d610a58dab0a7927ef
SHA1 c848ca2457c3f9f0f9973064686ec523ee620ccd
SHA256 d6ccaa991fcfd5b41f44d71d415e3b373ceb8ea46b2d458de75f52b227421c6a
SHA3 a55215dfd60ec3696204d210384c336984d9a1f87d68974dcd635a8e84a69530

6

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x94a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.61714
MD5 dfa7aaef926ac4ee8641034637492698
SHA1 14f01443e04f4f421f78f4c92c2656464dc0dd45
SHA256 3e081c7c77f046e815f92c6a5f645ffa8a8661e359074c3ac4048b56aa716e23
SHA3 3eede2aefe22b1ffd4a6101c31eda9c129b422a49d0969b918b5b6f8c9fb0aa8

7

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x10828
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.61635
MD5 0b54940f93fa10b846cb8d3b3dd1e311
SHA1 70917e674f82e33ea0cc663ee3fec750bc870d9c
SHA256 a03dfb86fb99d8bb9830eb4cc3671a033ad31d0108728a59d1ca0f05e0d33935
SHA3 e0c8c9e5ad25b09c1814704d0e302c1b269e6c9c3e782e5b74f556326c8ef18b

8

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x25228
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.59187
MD5 95df0c2f099f6b108697827df431190c
SHA1 a60516b1ad39397f7843e98215c107049e0f672f
SHA256 264b04a8e4f53056651be6cb34fffef87b3d187f6ee87ad34daaa47df4898f86
SHA3 c5df686218700df74751038def741606307ebf45c7947244f85609c614380523

9

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x42028
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.59935
MD5 4a61aecc298d168a33614b8c75421c64
SHA1 b35522acc5ad3747e092167cf9b9b0dca0f82855
SHA256 dd1ce3e9b18fe766cdde4ba29d1fbdabe9da20b0cf41152c6aa83b87d1c0edfa
SHA3 57499a0e32af9d3d99b91efc0271c86281de692f98e2c05d4bad2dbb95e4e471

9 (#2)

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0x124
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.99471
MD5 b62b6b1e4cd3054ab1b07b033356d108
SHA1 c0170ce1c06de46e62508e1d774d64e952cd111a
SHA256 6a3c71d7f89e83280ff2aa75c76d49c3239060f8ee53cfc2692e05c4fc9c7eab
SHA3 9e885ae1d0f740d603c9ef2ca1a92c8a61ddb587a0f50bee653496e0ac8fe4f6

105

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0x10c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.98084
MD5 2165d3c35627dfb0f24dfa8839b650c1
SHA1 5168d394292dd31902f3f8112b22cd604529f378
SHA256 7aa854f2b6bf3241c666d0b851ecaea27082934a4b2fa43db752591dfcf9434e
SHA3 395d76a75afaab97318d9ea2f3785b5ade74331f689f98e69f22f301be84d67a

107

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0x1c2
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.19606
MD5 e71ed01bef9a6e44b5a60f28e2d14320
SHA1 28a0948d37b93bfd392044a4338968bd3f4de535
SHA256 af380b7f1f6bedba49ef3833569a36314f9834b759bfbdc7f5474d65081186c6
SHA3 a275daef8cf31a8e4d53a63b80b73137c0c41a126920ed0b63416f8643332d35

108

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0xdc
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.23439
MD5 89647fd8d7ee80b9e9e46db2a1053a29
SHA1 10dd88f00a8f56cce48908628abe1215235f624a
SHA256 692985cf029eb28098357336ea128b16211fb8fb8ab3e8f90949a952a2514f65
SHA3 01c77f889f7bb48a0744fe4f076df03cf74591df831c9d043237c2a7a7426f3e

109

Type RT_DIALOG
Language English - United States
Codepage UNKNOWN
Size 0x8e
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.09377
MD5 839f2e562a1f062fd873414ab28cf1d2
SHA1 ed961a5852bd1ac5b55fa8fd70fa8213754abc57
SHA256 296b7d861a9ee473d4e8a62f9d7adb025d1fbe8e61206870f426e5c870a98936
SHA3 6a4b1fab7319e07585d923be21a3d852ecc1988286973bf8440e25f2a35a3cd0

103

Type RT_GROUP_ICON
Language English - United States
Codepage UNKNOWN
Size 0x84
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.04448
Detected Filetype Icon file
MD5 3bf2dac037ce87794e66ff7f054e913f
SHA1 52ca961fd37ad960905a681d1db5157508ef1602
SHA256 2a87b1f32c5d0435090c72c392b75394f706e5750eff64fd85d25e1c622ee581
SHA3 8454d3273522657b5926068082b2cb88f6dbf352e7e9568008c0e33c792f349b

1 (#2)

Type RT_VERSION
Language English - United States
Codepage UNKNOWN
Size 0x1b0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.34377
MD5 55052c5eb49254d2d835a6a49ec77948
SHA1 fd233e3015241d057ab8472dbc830b65a5401b4d
SHA256 a2a4d3fddf6ae2055cbf522c38007225264b9883775b88e69b53f1462532392c
SHA3 20e6f6f737e45509a7360f0dd2f28a2e3a8661255d3e9a9516c68bc9ad049b94

1 (#3)

Type RT_MANIFEST
Language English - United States
Codepage UNKNOWN
Size 0x581
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.37424
MD5 ed4212968d15a196c34d461040b44336
SHA1 4d331b10588bcfeb306ba2ad31ce5ee96e12667c
SHA256 b91c0fd1d3a91447a5b1207d1f625d19a6a0df1921aac32c60ffbd8e0a11ef00
SHA3 914a36db86cc3ab4399e6e59366be51f0f6dae23a7a55f7e19ea927f9dd1a2b0

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 4.7.2.65147
ProductVersion 4.7.2.65147
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType VFT_UNKNOWN
Language English - United States
FileVersion (#2) 4.7.2.11009659
ProductVersion (#2) 4.7.2.11009659
Unity Version 4.7.2f1_a7fe7b7f3d1f
Resource LangID English - United States

IMAGE_DEBUG_TYPE_CODEVIEW

Characteristics 0
TimeDateStamp 2016-May-24 23:16:30
Version 0.0
SizeofData 85
AddressOfRawData 0xbc4684
PointerToRawData 0xbc2e84
Referenced File C:\Users\BUILDU~1\AppData\Local\Temp\UnityPlayer_Symbols.pdb

TLS Callbacks

Load Configuration

RICH Header

XOR Key 0x8bca792a
Unmarked objects 0
ASM objects (VS2008 build 21022) 2
Unmarked objects (#2) 172
135 (VS2008 SP1 build 30729) 1
C objects (VS2012 build 50727 / VS2005 build 50727) 1
C++ objects (VS2008 SP1 build 30729) 42
C objects (VS2008 SP1 build 30729) 26
173 (VS2010 build 30319) 1
C objects (40310) 1
C++ objects (40310) 29
Imports (VS2008 SP1 build 30729) 41
Total imports 550
152 (20115) 8
ASM objects (VS2010 SP1 build 40219) 29
C objects (VS2010 SP1 build 40219) 880
C++ objects (VS2010 SP1 build 40219) 1526
Exports (VS2010 SP1 build 40219) 1
Resource objects (VS2010 SP1 build 40219) 1
Linker (VS2010 SP1 build 40219) 1

Errors

Leave a comment

No comments yet.