| Architecture |
IMAGE_FILE_MACHINE_I386
|
|---|---|
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| Compilation Date | 2015-Mar-24 09:52:25 |
| Detected languages |
English - United Kingdom
English - United States |
| Debug artifacts |
c:\hudson\GMBase\GMGreen\GameMaker\Runner\VC_Runner\Release\Runner.pdb
|
| CompanyName | Toby Fox |
| FileDescription | Leading Brand UNDERTALE-type Software |
| FileVersion | 0.9.9.5 |
| InternalName | GameMaker:Studio Windows C++ Runner |
| LegalCopyright | (C) 2015 Toby Fox |
| PrivateBuild | 01.00.00.00 |
| ProductName | UNDERTALE |
| ProductVersion | 0.9.9.5 |
| Info | Matching compiler(s): |
Microsoft Visual C++ 6.0 - 8.0
MASM/TASM - sig1(h) |
| Info | Cryptographic algorithms detected in the binary: |
Uses constants related to CRC32
Uses constants related to MD5 Uses constants related to SHA1 |
| Suspicious | The PE is possibly packed. | Unusual section name found: .mydata |
| Malicious | The PE contains functions mostly used by malware. |
[!] The program may be hiding some of its imports:
|
| Safe | VirusTotal score: 0/74 (Scanned on 2024-08-20 03:28:16) | All the AVs think this file is safe. |
| e_magic | MZ |
|---|---|
| e_cblp | 0x90 |
| e_cp | 0x3 |
| e_crlc | 0 |
| e_cparhdr | 0x4 |
| e_minalloc | 0 |
| e_maxalloc | 0xffff |
| e_ss | 0 |
| e_sp | 0xb8 |
| e_csum | 0 |
| e_ip | 0 |
| e_cs | 0 |
| e_ovno | 0 |
| e_oemid | 0 |
| e_oeminfo | 0 |
| e_lfanew | 0xf8 |
| Signature | PE |
|---|---|
| Machine |
IMAGE_FILE_MACHINE_I386
|
| NumberofSections | 5 |
| TimeDateStamp | 2015-Mar-24 09:52:25 |
| PointerToSymbolTable | 0 |
| NumberOfSymbols | 0 |
| SizeOfOptionalHeader | 0xe0 |
| Characteristics |
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_RELOCS_STRIPPED
|
| Magic | PE32 |
|---|---|
| LinkerVersion | 9.0 |
| SizeOfCode | 0x259a00 |
| SizeOfInitializedData | 0xbcc00 |
| SizeOfUninitializedData | 0 |
| AddressOfEntryPoint | 0x00229E08 (Section: .text) |
| BaseOfCode | 0x1000 |
| BaseOfData | 0x25b000 |
| ImageBase | 0x400000 |
| SectionAlignment | 0x1000 |
| FileAlignment | 0x200 |
| OperatingSystemVersion | 5.0 |
| ImageVersion | 0.0 |
| SubsystemVersion | 5.0 |
| Win32VersionValue | 0 |
| SizeOfImage | 0x567000 |
| SizeOfHeaders | 0x400 |
| Checksum | 0x32cab1 |
| Subsystem |
IMAGE_SUBSYSTEM_WINDOWS_GUI
|
| DllCharacteristics |
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
|
| SizeofStackReserve | 0x100000 |
| SizeofStackCommit | 0x1000 |
| SizeofHeapReserve | 0x100000 |
| SizeofHeapCommit | 0x1000 |
| LoaderFlags | 0 |
| NumberOfRvaAndSizes | 16 |
| WININET.dll |
InternetCloseHandle
InternetWriteFile HttpEndRequestW InternetReadFile HttpQueryInfoA InternetOpenA InternetCrackUrlA InternetCanonicalizeUrlA HttpSendRequestA HttpOpenRequestA InternetConnectA InternetGetConnectedState |
|---|---|
| d3dx9_43.dll |
D3DXGetPixelShaderProfile
D3DXCompileShader D3DXGetVertexShaderProfile D3DXCreateTextureFromFileInMemoryEx D3DXCreateTextureFromFileW |
| dbghelp.dll |
MiniDumpWriteDump
|
| WINMM.dll |
mciGetErrorStringA
mciSendStringA joyGetPos joyGetPosEx joyGetDevCapsA timeGetTime waveInGetDevCapsW waveInGetNumDevs waveInAddBuffer waveInClose waveInUnprepareHeader waveInPrepareHeader waveInOpen waveInReset waveInStart waveInStop |
| WS2_32.dll |
ntohs
ntohl htons htonl __WSAFDIsSet getpeername select freeaddrinfo WSAAddressToStringA getaddrinfo WSAGetLastError gethostname closesocket shutdown WSAStartup WSACleanup getsockopt setsockopt ioctlsocket socket bind sendto connect inet_addr send recvfrom inet_ntoa recv accept listen |
| gdiplus.dll |
GdiplusStartup
GdiplusShutdown |
| COMCTL32.dll |
InitCommonControlsEx
|
| KERNEL32.dll |
GetStringTypeA
IsValidLocale EnumSystemLocalesA GetLocaleInfoA GetEnvironmentStringsW FreeEnvironmentStringsW LCMapStringW LCMapStringA GetFullPathNameA InitializeCriticalSectionAndSpinCount SetConsoleCtrlHandler SetFilePointer SetStdHandle ReadFile VirtualAlloc VirtualFree HeapDestroy HeapCreate FatalAppExitA FlushFileBuffers GetConsoleMode GetConsoleCP GetModuleFileNameA WriteFile IsValidCodePage GetOEMCP GetACP GetCPInfo HeapSize SetLastError GetStdHandle SetHandleCount IsDebuggerPresent TerminateProcess GetModuleHandleA GetStartupInfoA GetCommandLineA CreateDirectoryA GetFileType PeekNamedPipe GetFileInformationByHandle HeapReAlloc SetUnhandledExceptionFilter UnhandledExceptionFilter FindNextFileA GetDateFormatA GetTimeFormatA DeleteFileA GetSystemTimeAsFileTime SetFileAttributesW FindFirstFileA GetDriveTypeA FileTimeToLocalFileTime FileTimeToSystemTime ExitProcess HeapAlloc HeapFree HeapWalk GetStringTypeW GetTimeZoneInformation MultiByteToWideChar GetConsoleWindow WideCharToMultiByte OutputDebugStringW CreateFileA GetProcAddress LoadLibraryW GetFullPathNameW GetCurrentDirectoryW GetLastError LocalFree GetModuleHandleW InterlockedDecrement InterlockedIncrement CreateThread GetExitCodeThread CloseHandle Sleep FreeLibrary SetCurrentDirectoryA LoadLibraryA GetCurrentDirectoryA GetExitCodeProcess CreateProcessW FindClose DeleteFileW FindNextFileW RemoveDirectoryW FindFirstFileW GetFileAttributesA GetFileAttributesW CreateDirectoryW GetEnvironmentVariableW GetTickCount QueryPerformanceCounter QueryPerformanceFrequency SetThreadPriority SetPriorityClass GetCurrentProcess GetCurrentThread GlobalUnlock GlobalLock GlobalAlloc GetVersionExW GetUserDefaultLCID GetLocaleInfoW ExpandEnvironmentStringsW GetModuleFileNameW MoveFileA GetCommandLineW GetCurrentProcessId GetCurrentThreadId CreateFileW IsBadWritePtr InitializeCriticalSection DeleteCriticalSection LeaveCriticalSection EnterCriticalSection TlsAlloc TlsSetValue TlsGetValue TlsFree ExitThread WaitForSingleObject SetEvent CreateEventW WaitForSingleObjectEx RtlUnwind RaiseException InterlockedExchange LocalAlloc FreeEnvironmentStringsA GetEnvironmentStrings WriteConsoleA GetConsoleOutputCP WriteConsoleW CompareStringA CompareStringW SetEnvironmentVariableA SetEnvironmentVariableW SetEndOfFile FormatMessageW GetProcessHeap HeapValidate |
| USER32.dll |
GetDlgItem
SetDlgItemTextW SetWindowTextW GetDlgItemTextW EndDialog DialogBoxParamW CreateDialogParamW ScreenToClient ReleaseDC DrawTextW GetDC MoveWindow ClientToScreen GetMonitorInfoW SetCursorPos MapWindowPoints GetCursorPos wsprintfW GetActiveWindow DispatchMessageW TranslateMessage GetMessageW EnumDisplaySettingsW ChangeDisplaySettingsW SetWindowLongW UpdateWindow EnumDisplaySettingsExW ShowWindow GetAsyncKeyState SetWindowTextA IsClipboardFormatAvailable CloseClipboard GetClipboardData OpenClipboard SetClipboardData EmptyClipboard GetFocus MessageBoxA SetDlgItemTextA IsDialogMessageW PeekMessageW GetForegroundWindow PostThreadMessageW AdjustWindowRectEx LoadImageW LoadCursorW RegisterClassExW CreateWindowExW SendMessageW SetCursor GetClientRect GetWindowRect DestroyWindow PostMessageW SetFocus BringWindowToTop SetForegroundWindow SetWindowPos keybd_event DefWindowProcW GetKeyState CallNextHookEx MessageBoxW GetSystemMetrics |
| GDI32.dll |
GetDeviceCaps
CreateFontA SelectObject DeleteObject |
| COMDLG32.dll |
GetSaveFileNameW
GetOpenFileNameW |
| ADVAPI32.dll |
RegQueryValueExW
RegOpenKeyExW RegCloseKey |
| SHELL32.dll |
SHGetSpecialFolderPathA
SHGetFolderPathW ShellExecuteW |
| d3d9.dll (delay-loaded) |
Direct3DCreate9
Direct3DCreate9Ex |
| Attributes | 0x1 |
|---|---|
| Name | d3d9.dll |
| ModuleHandle | 0x534d2c |
| DelayImportAddressTable | 0x2e9e00 |
| DelayImportNameTable | 0x2bf40c |
| BoundDelayImportTable | 0x2bf440 |
| UnloadDelayImportTable | 0 |
| TimeStamp | 1970-Jan-01 00:00:00 |
| OLE initialization failed. Make sure that the OLE libraries are the correct version. |
| Windows sockets initialization failed. |
| AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA |
| Signature | 0xfeef04bd |
|---|---|
| StructVersion | 0x10000 |
| FileVersion | 0.9.9.5 |
| ProductVersion | 0.9.9.5 |
| FileFlags |
VS_FF_PRIVATEBUILD
|
| FileOs |
VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
|
| FileType |
VFT_APP
|
| Language | English - United Kingdom |
| CompanyName | Toby Fox |
| FileDescription | Leading Brand UNDERTALE-type Software |
| FileVersion (#2) | 0.9.9.5 |
| InternalName | GameMaker:Studio Windows C++ Runner |
| LegalCopyright | (C) 2015 Toby Fox |
| PrivateBuild | 01.00.00.00 |
| ProductName | UNDERTALE |
| ProductVersion (#2) | 0.9.9.5 |
| Resource LangID | English - United Kingdom |
|---|
| Characteristics |
0
|
|---|---|
| TimeDateStamp | 2015-Mar-24 09:52:25 |
| Version | 0.0 |
| SizeofData | 95 |
| AddressOfRawData | 0x2b8b60 |
| PointerToRawData | 0x2b7960 |
| Referenced File | c:\hudson\GMBase\GMGreen\GameMaker\Runner\VC_Runner\Release\Runner.pdb |
| Size | 0x48 |
|---|---|
| TimeDateStamp | 1970-Jan-01 00:00:00 |
| Version | 0.0 |
| GlobalFlagsClear | (EMPTY) |
| GlobalFlagsSet | (EMPTY) |
| CriticalSectionDefaultTimeout | 0 |
| DeCommitFreeBlockThreshold | 0 |
| DeCommitTotalFreeThreshold | 0 |
| LockPrefixTable | 0 |
| MaximumAllocationSize | 0 |
| VirtualMemoryThreshold | 0 |
| ProcessAffinityMask | 0 |
| ProcessHeapFlags | (EMPTY) |
| CSDVersion | 0 |
| Reserved1 | 0 |
| EditList | 0 |
| SecurityCookie | 0x6e84e0 |
| SEHandlerTable | 0x6ba880 |
| SEHandlerCount | 311 |
| XOR Key | 0x991d5d3 |
|---|---|
| Unmarked objects | 0 |
| 150 (20413) | 8 |
| ASM objects (VS2008 build 21022) | 66 |
| Imports (21202) | 2 |
| Imports (VS2012 build 50727 / VS2005 build 50727) | 25 |
| Total imports | 289 |
| C++ objects (VS2008 build 21022) | 400 |
| C objects (VS2008 build 21022) | 405 |
| Linker (VS2008 build 21022) | 1 |
| Resource objects (VS2008 build 21022) | 1 |
No comments yet.