ar.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 33/71 Related 2714
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 512.50 KB (524800 bytes)
Compile time: 2019-11-07 23:39:34
MD5: 7cdf65990857171d95a6814239517cf0
SHA1: 637ee6be682ee4c87e07aba3465dc03e85cb34fe
SHA256: 403f5fa57d828d408c065c01008aa00e388b3da6b1a925d3e3ba51454f900734
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-11-11 01:39:04
Last submission: 2019-11-11 01:39:04
Filename detected: - ar.exe (1)
URL file hosting
hXXp://fargroup.ir/images/ar.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-11-09 08:07:00 [33/71] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x7f744 522240 5a7d83e642f51d49575b932b352a7405 6a0cb6cd2807a1a6da4f75e3a03c0c615aafdca3
.rsrc 0x82000 0x600 1536 7b07ce89d0b46cbb93b181263ac3dafc c5489e10512e664dcae784fe6f0b1efb912a4c6f
.reloc 0x84000 0xc 512 63dd699e15fe628aaa004cbcf2e4472f c85e76b0e4f25e2012d0c97a275fc184305635ce
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
7.3.0.1
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-11-11 01:39:05