Architecture |
IMAGE_FILE_MACHINE_I386
|
---|---|
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
Compilation Date | 2016-Jun-07 17:10:15 |
Detected languages |
English - United States
|
Debug artifacts |
C:\Users\Devon\Desktop\YoungHorses\Octodad\bin\win32\OctodadEditor.pdb
|
Info | Matching compiler(s): | MASM/TASM - sig1(h) |
Suspicious | PEiD Signature: | HQR data file |
Info | Interesting strings found in the binary: |
Contains domain names:
|
Info | The PE contains common functions which appear in legitimate applications. |
[!] The program may be hiding some of its imports:
|
Safe | VirusTotal score: 0/70 (Scanned on 2021-01-20 17:53:41) | All the AVs think this file is safe. |
e_magic | MZ |
---|---|
e_cblp | 0x90 |
e_cp | 0x3 |
e_crlc | 0 |
e_cparhdr | 0x4 |
e_minalloc | 0 |
e_maxalloc | 0xffff |
e_ss | 0 |
e_sp | 0xb8 |
e_csum | 0 |
e_ip | 0 |
e_cs | 0 |
e_ovno | 0 |
e_oemid | 0 |
e_oeminfo | 0 |
e_lfanew | 0x118 |
Signature | PE |
---|---|
Machine |
IMAGE_FILE_MACHINE_I386
|
NumberofSections | 5 |
TimeDateStamp | 2016-Jun-07 17:10:15 |
PointerToSymbolTable | 0 |
NumberOfSymbols | 0 |
SizeOfOptionalHeader | 0xe0 |
Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
|
Magic | PE32 |
---|---|
LinkerVersion | 10.0 |
SizeOfCode | 0x270e00 |
SizeOfInitializedData | 0x272a00 |
SizeOfUninitializedData | 0 |
AddressOfEntryPoint | 0x0026E486 (Section: .text) |
BaseOfCode | 0x1000 |
BaseOfData | 0x272000 |
ImageBase | 0x400000 |
SectionAlignment | 0x1000 |
FileAlignment | 0x200 |
OperatingSystemVersion | 5.1 |
ImageVersion | 0.0 |
SubsystemVersion | 5.1 |
Win32VersionValue | 0 |
SizeOfImage | 0x51e000 |
SizeOfHeaders | 0x400 |
Checksum | 0x4e5bbd |
Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
SizeofStackReserve | 0x100000 |
SizeofStackCommit | 0x1000 |
SizeofHeapReserve | 0x100000 |
SizeofHeapCommit | 0x1000 |
LoaderFlags | 0 |
NumberOfRvaAndSizes | 16 |
Irrlicht.dll |
?IdentityMaterial@video@irr@@3VSMaterial@12@A
?IdentityMatrix@core@irr@@3V?$CMatrix4@M@12@B createDeviceEx createDevice |
---|---|
PhysX3Common_x86.dll |
?overlap@PxGeometryQuery@physx@@SA_NABVPxGeometry@2@ABVPxTransform@2@01@Z
?start@Thread@shdfnd@physx@@QAEXI@Z ?getDefaultStackSize@Thread@shdfnd@physx@@SAIXZ ??0Sync@shdfnd@physx@@QAE@XZ ??1Sync@shdfnd@physx@@QAE@XZ ?getSize@SListImpl@shdfnd@physx@@SAABIXZ ??0SListImpl@shdfnd@physx@@QAE@XZ ??0Thread@shdfnd@physx@@QAE@XZ ?quitIsSignalled@Thread@shdfnd@physx@@QAE_NXZ ?setName@Thread@shdfnd@physx@@QAEXPBD@Z ?setAffinityMask@Thread@shdfnd@physx@@UAEII@Z ??1Thread@shdfnd@physx@@UAE@XZ ?wait@Sync@shdfnd@physx@@QAE_NI@Z ?addToStringTable@Cm@physx@@YAIAAV?$Array@DV?$ReflectionAllocator@D@shdfnd@physx@@@shdfnd@2@PBD@Z ?incRefCount@Foundation@shdfnd@physx@@SAXXZ ??1SListImpl@shdfnd@physx@@QAE@XZ ?pop@SListImpl@shdfnd@physx@@QAEPAVSListEntry@23@XZ ?decRefCount@Foundation@shdfnd@physx@@SAXXZ ??0?$PxFlags@W4Enum@PxSerialFlag@physx@@G@physx@@QAE@XZ ??_4?$PxFlags@W4Enum@PxSerialFlag@physx@@G@physx@@QAEAAV01@ABV01@@Z ??S?$PxFlags@W4Enum@PxSerialFlag@physx@@G@physx@@QBE?AV01@XZ ??0FPUGuard@shdfnd@physx@@QAE@XZ ??1FPUGuard@shdfnd@physx@@QAE@XZ ?getId@Thread@shdfnd@physx@@SAIXZ ?signalQuit@Thread@shdfnd@physx@@QAEXXZ ?quit@Thread@shdfnd@physx@@QAEXXZ ?push@SListImpl@shdfnd@physx@@QAEXPAVSListEntry@23@@Z ?reset@Sync@shdfnd@physx@@QAEXXZ PxCreateFoundation ?waitForQuit@Thread@shdfnd@physx@@QAE_NXZ ?set@Sync@shdfnd@physx@@QAEXXZ ??I?$PxFlags@W4Enum@PxSerialFlag@physx@@G@physx@@QBE?AV01@W4Enum@PxSerialFlag@1@@Z ??B?$PxFlags@W4Enum@PxSerialFlag@physx@@G@physx@@QBE_NXZ ??0?$PxFlags@W4Enum@PxSerialFlag@physx@@G@physx@@QAE@ABV01@@Z ?allocate@Allocator@shdfnd@physx@@QAEPAXIPBDH@Z ?getAllocator@shdfnd@physx@@YAAAVPxAllocatorCallback@2@XZ PxGetFoundation ?PxTransformFromPlaneEquation@physx@@YA?AVPxTransform@1@ABVPxPlane@1@@Z ?getInstance@Foundation@shdfnd@physx@@SAAAV123@XZ ?error@Foundation@shdfnd@physx@@QAAXW4Enum@PxErrorCode@3@PBDH1ZZ ?deallocate@TempAllocator@shdfnd@physx@@QAEXPAX@Z ?PxDiagonalize@physx@@YA?AVPxVec3@1@ABVPxMat33@1@AAVPxQuat@1@@Z ?allocate@TempAllocator@shdfnd@physx@@QAEPAXIPBDH@Z ?deallocate@Allocator@shdfnd@physx@@QAEXPAX@Z ??0?$PxFlags@W4Enum@PxSerialFlag@physx@@G@physx@@QAE@W4Enum@PxSerialFlag@1@@Z |
KERNEL32.dll |
GetModuleHandleW
GetModuleFileNameW GetVersionExA InterlockedDecrement GetProcAddress FreeLibrary ExpandEnvironmentStringsW QueryPerformanceFrequency CreateDirectoryW LoadLibraryW GetLastError GetSystemTimeAsFileTime GetCurrentProcessId GetCurrentThreadId GetTickCount QueryPerformanceCounter IsDebuggerPresent SetUnhandledExceptionFilter UnhandledExceptionFilter GetCurrentProcess TerminateProcess DecodePointer EncodePointer HeapSetInformation InterlockedCompareExchange Sleep InterlockedExchange GetProcessHeap HeapSize HeapReAlloc HeapFree HeapAlloc HeapDestroy DeleteCriticalSection InitializeCriticalSectionAndSpinCount |
MSVCP100.dll |
?_Xlength_error@std@@YAXPBD@Z
?_Gninc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IAEPADXZ ?in@?$codecvt@DDH@std@@QBEHAAHPBD1AAPBDPAD3AAPAD@Z ?width@ios_base@std@@QBE_JXZ ?flags@ios_base@std@@QBEHXZ ?fill@?$basic_ios@DU?$char_traits@D@std@@@std@@QBEDXZ ?sputc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QAEHD@Z ?sputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QAE_JPBD_J@Z ?width@ios_base@std@@QAE_J_J@Z ?setstate@?$basic_ios@DU?$char_traits@D@std@@@std@@QAEXH_N@Z ?_Fiopen@std@@YAPAU_iobuf@@PBDHH@Z ?getloc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QBE?AVlocale@2@XZ ?_Gndec@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IAEPADXZ ?uncaught_exception@std@@YA_NXZ ?_Osfx@?$basic_ostream@DU?$char_traits@D@std@@@std@@QAEXXZ ?good@ios_base@std@@QBE_NXZ ?tie@?$basic_ios@DU?$char_traits@D@std@@@std@@QBEPAV?$basic_ostream@DU?$char_traits@D@std@@@2@XZ ?flush@?$basic_ostream@DU?$char_traits@D@std@@@std@@QAEAAV12@XZ ?_Ipfx@?$basic_istream@DU?$char_traits@D@std@@@std@@QAE_N_N@Z ?_Lockit_ctor@_Lockit@std@@SAXH@Z ??Bid@locale@std@@QAEIXZ ?_Getcat@?$codecvt@DDH@std@@SAIPAPBVfacet@locale@2@PBV42@@Z ?_Lockit_dtor@_Lockit@std@@SAXH@Z ?gptr@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IBEPADXZ ?egptr@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IBEPADXZ ??0?$basic_streambuf@DU?$char_traits@D@std@@@std@@IAE@XZ ??1?$basic_streambuf@DU?$char_traits@D@std@@@std@@UAE@XZ ?_Xout_of_range@std@@YAXPBD@Z ?rdbuf@?$basic_ios@DU?$char_traits@D@std@@@std@@QBEPAV?$basic_streambuf@DU?$char_traits@D@std@@@2@XZ ?_Getgloballocale@locale@std@@CAPAV_Locimp@12@XZ ?_Decref@facet@locale@std@@QAEPAV123@XZ ?eback@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IBEPADXZ ?setg@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IAEXPAD00@Z ?always_noconv@codecvt_base@std@@QBE_NXZ ?_Init@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IAEXXZ ?_Init@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IAEXPAPAD0PAH001@Z ?_Incref@facet@locale@std@@QAEXXZ ?_Pninc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IAEPADXZ ?epptr@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IBEPADXZ ?pptr@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IBEPADXZ ?unshift@?$codecvt@DDH@std@@QBEHAAHPAD1AAPAD@Z ?snextc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QAEHXZ ?sbumpc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QAEHXZ ?sgetc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QAEHXZ ??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QAEAAV01@P6AAAV01@AAV01@@Z@Z ?widen@?$basic_ios@DU?$char_traits@D@std@@@std@@QBEDD@Z ??1?$basic_istream@DU?$char_traits@D@std@@@std@@UAE@XZ ??0?$basic_istream@DU?$char_traits@D@std@@@std@@QAE@PAV?$basic_streambuf@DU?$char_traits@D@std@@@1@_N@Z ??1?$basic_ios@DU?$char_traits@D@std@@@std@@UAE@XZ ??0?$basic_ios@DU?$char_traits@D@std@@@std@@IAE@XZ ??Bios_base@std@@QBEPAXXZ ?showmanyc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MAE_JXZ ?xsgetn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MAE_JPAD_J@Z ?xsputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MAE_JPBD_J@Z ?id@?$codecvt@DDH@std@@2V0locale@2@A ?cerr@std@@3V?$basic_ostream@DU?$char_traits@D@std@@@1@A ?endl@std@@YAAAV?$basic_ostream@DU?$char_traits@D@std@@@1@AAV21@@Z ?_BADOFF@std@@3_JB ?_Lock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UAEXXZ ?_Unlock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UAEXXZ ?uflow@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MAEHXZ ?setbuf@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MAEPAV12@PAD_J@Z ?sync@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MAEHXZ ?imbue@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MAEXABVlocale@2@@Z ?setp@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IAEXPAD0@Z ?pbump@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IAEXH@Z ?setp@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IAEXPAD00@Z ?pbase@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IBEPADXZ ?gbump@?$basic_streambuf@DU?$char_traits@D@std@@@std@@IAEXH@Z ??1?$basic_iostream@DU?$char_traits@D@std@@@std@@UAE@XZ ??0?$basic_iostream@DU?$char_traits@D@std@@@std@@QAE@PAV?$basic_streambuf@DU?$char_traits@D@std@@@1@@Z ??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QAEAAV01@H@Z ?out@?$codecvt@DDH@std@@QBEHAAHPBD1AAPBDPAD3AAPAD@Z |
MSVCR100.dll |
_fseeki64
fgetpos fputc fwrite fgetc memcpy_s __CxxQueryExceptionSize __CxxExceptionFilter __CxxRegisterExceptionObject __CxxDetectRethrow __CxxUnregisterExceptionObject ungetc ??0bad_cast@std@@QAE@PBD@Z fflush setvbuf free _vsnprintf_s _unlock_file _lock_file _CxxThrowException fsetpos ??0exception@std@@QAE@ABQBD@Z _aligned_free _aligned_malloc printf ??1exception@std@@UAE@XZ fprintf strncpy sprintf sprintf_s ??_V@YAXPAX@Z ??2@YAPAXI@Z fclose rand srand atoi getenv _wstat64i32 _wremove vsprintf ??0bad_cast@std@@QAE@ABV01@@Z ??1bad_cast@std@@UAE@XZ ??0exception@std@@QAE@ABV01@@Z ?what@exception@std@@UBEPBDXZ __CxxFrameHandler3 _purecall _localtime64 _time64 memmove_s toupper memchr atof swprintf_s asctime _strdup strcpy_s __FrameUnwindFilter memcpy fopen_s fread fseek ftell __libm_sse2_sinf malloc memset _fpclass ??3@YAXPAX@Z __libm_sse2_tanf _amsg_exit __getmainargs _cexit _exit _XcptFilter exit __initenv _initterm _initterm_e _configthreadlocale __setusermatherr _commode _fmode __set_app_type _onexit ?_name_internal_method@type_info@@QBEPBDPAU__type_info_node@@@Z _unlock __dllonexit _lock __libm_sse2_cosf __libm_sse2_cos __libm_sse2_sin vsprintf_s __libm_sse2_atan2 longjmp strrchr qsort realloc fopen _setjmp3 strncmp atol strstr _controlfp_s _invoke_watson _except_handler4_common _crt_debugger_hook ?_type_info_dtor_internal_method@type_info@@QAEXXZ ?terminate@@YAXXZ memmove |
fmodex.dll |
?stop@Channel@FMOD@@QAG?AW4FMOD_RESULT@@XZ
?setPaused@Channel@FMOD@@QAG?AW4FMOD_RESULT@@_N@Z ?getPaused@Channel@FMOD@@QAG?AW4FMOD_RESULT@@PA_N@Z ?isPlaying@Channel@FMOD@@QAG?AW4FMOD_RESULT@@PA_N@Z ?set3DAttributes@Channel@FMOD@@QAG?AW4FMOD_RESULT@@PBUFMOD_VECTOR@@0@Z ?setVolume@Channel@FMOD@@QAG?AW4FMOD_RESULT@@M@Z ?setMode@Sound@FMOD@@QAG?AW4FMOD_RESULT@@I@Z ?set3DMinMaxDistance@Sound@FMOD@@QAG?AW4FMOD_RESULT@@MM@Z ?release@Sound@FMOD@@QAG?AW4FMOD_RESULT@@XZ ?setSpeakerMode@System@FMOD@@QAG?AW4FMOD_RESULT@@W4FMOD_SPEAKERMODE@@@Z ?getDriverCaps@System@FMOD@@QAG?AW4FMOD_RESULT@@HPAIPAHPAW4FMOD_SPEAKERMODE@@@Z ?createSound@System@FMOD@@QAG?AW4FMOD_RESULT@@PBDIPAUFMOD_CREATESOUNDEXINFO@@PAPAVSound@2@@Z ?playSound@System@FMOD@@QAG?AW4FMOD_RESULT@@W4FMOD_CHANNELINDEX@@PAVSound@2@_NPAPAVChannel@2@@Z ?set3DListenerAttributes@System@FMOD@@QAG?AW4FMOD_RESULT@@HPBUFMOD_VECTOR@@000@Z ?set3DSettings@System@FMOD@@QAG?AW4FMOD_RESULT@@MMM@Z |
fmod_event.dll |
?getState@Event@FMOD@@QAG?AW4FMOD_RESULT@@PAI@Z
?stop@Event@FMOD@@QAG?AW4FMOD_RESULT@@_N@Z ?setPaused@Event@FMOD@@QAG?AW4FMOD_RESULT@@_N@Z ?getPaused@Event@FMOD@@QAG?AW4FMOD_RESULT@@PA_N@Z ?getPropertyByIndex@Event@FMOD@@QAG?AW4FMOD_RESULT@@HPAX_N@Z ?getInfo@Event@FMOD@@QAG?AW4FMOD_RESULT@@PAHPAPADPAUFMOD_EVENT_INFO@@@Z ?setVolume@Event@FMOD@@QAG?AW4FMOD_RESULT@@M@Z ?release@EventSystem@FMOD@@QAG?AW4FMOD_RESULT@@XZ ?getCategory@EventSystem@FMOD@@QAG?AW4FMOD_RESULT@@PBDPAPAVEventCategory@2@@Z ?set3DAttributes@Event@FMOD@@QAG?AW4FMOD_RESULT@@PBUFMOD_VECTOR@@00@Z FMOD_EventSystem_Create ?release@Event@FMOD@@QAG?AW4FMOD_RESULT@@_N0@Z ?getParentGroup@Event@FMOD@@QAG?AW4FMOD_RESULT@@PAPAVEventGroup@2@@Z ?setValue@EventParameter@FMOD@@QAG?AW4FMOD_RESULT@@M@Z ?getParameter@Event@FMOD@@QAG?AW4FMOD_RESULT@@PBDPAPAVEventParameter@2@@Z ?getEvent@EventSystem@FMOD@@QAG?AW4FMOD_RESULT@@PBDIPAPAVEvent@2@@Z ?getVolume@Event@FMOD@@QAG?AW4FMOD_RESULT@@PAM@Z ?set3DListenerAttributes@EventSystem@FMOD@@QAG?AW4FMOD_RESULT@@HPBUFMOD_VECTOR@@000@Z ?update@EventSystem@FMOD@@QAG?AW4FMOD_RESULT@@XZ ?getProject@EventSystem@FMOD@@QAG?AW4FMOD_RESULT@@PBDPAPAVEventProject@2@@Z ?set3DNumListeners@EventSystem@FMOD@@QAG?AW4FMOD_RESULT@@H@Z ?load@EventSystem@FMOD@@QAG?AW4FMOD_RESULT@@PBDPAUFMOD_EVENT_LOADINFO@@PAPAVEventProject@2@@Z ?setMediaPath@EventSystem@FMOD@@QAG?AW4FMOD_RESULT@@PBD@Z ?init@EventSystem@FMOD@@QAG?AW4FMOD_RESULT@@HIPAXI@Z ?getSystemObject@EventSystem@FMOD@@QAG?AW4FMOD_RESULT@@PAPAVSystem@2@@Z ?start@Event@FMOD@@QAG?AW4FMOD_RESULT@@XZ |
PhysX3_x86.dll |
PxCreateBasePhysics
PxRegisterHeightFields PxRegisterArticulations PxGetSDKMetaData |
PhysX3Cooking_x86.dll |
PxCreateCooking
|
PhysX3CharacterKinematic_x86.dll |
PxCreateControllerManager
|
steam_api.dll |
SteamApps
SteamAPI_RegisterCallResult SteamAPI_UnregisterCallResult SteamAPI_UnregisterCallback SteamRemoteStorage SteamAPI_RegisterCallback SteamFriends SteamUtils SteamAPI_RunCallbacks SteamClient SteamAPI_Init SteamAPI_Shutdown SteamUserStats SteamUser |
USER32.dll |
ClipCursor
GetWindowRect DispatchMessageW TranslateMessage PeekMessageW |
SHELL32.dll |
SHGetFolderPathW
|
SHLWAPI.dll |
PathAppendW
|
mscoree.dll |
_CorExeMain
|
Characteristics |
0
|
---|---|
TimeDateStamp | 2016-Jun-07 17:10:15 |
Version | 0.0 |
SizeofData | 95 |
AddressOfRawData | 0x498d74 |
PointerToRawData | 0x497f74 |
Referenced File | C:\Users\Devon\Desktop\YoungHorses\Octodad\bin\win32\OctodadEditor.pdb |
Size | 0x48 |
---|---|
TimeDateStamp | 1970-Jan-01 00:00:00 |
Version | 0.0 |
GlobalFlagsClear | (EMPTY) |
GlobalFlagsSet | (EMPTY) |
CriticalSectionDefaultTimeout | 0 |
DeCommitFreeBlockThreshold | 0 |
DeCommitTotalFreeThreshold | 0 |
LockPrefixTable | 0 |
MaximumAllocationSize | 0 |
VirtualMemoryThreshold | 0 |
ProcessAffinityMask | 0 |
ProcessHeapFlags | (EMPTY) |
CSDVersion | 0 |
Reserved1 | 0 |
EditList | 0 |
SecurityCookie | 0x8be8a0 |
SEHandlerTable | 0x8a92c0 |
SEHandlerCount | 2 |
XOR Key | 0x7a86e3b6 |
---|---|
Unmarked objects | 0 |
Imports (VS2008 build 21022) | 2 |
152 (20115) | 2 |
ASM objects (VS2010 build 30319) | 4 |
C objects (VS2010 build 30319) | 19 |
Imports (VS2008 SP1 build 30729) | 14 |
C objects (VS2010 SP1 build 40219) | 21 |
C++ objects (VS2010 SP1 build 40219) | 22 |
Imports (VS2010 build 30319) | 7 |
Imports (VS2010 SP1 build 40219) | 14 |
Total imports | 364 |
C++ objects (VS2010 build 30319) | 253 |
Resource objects (VS2010 build 30319) | 1 |
Linker (VS2010 build 30319) | 1 |