× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 74e18e4f80d4ee5d8f963571cb717d1f9316e2afa95a2338d18fac5064ea24e1
File name: Windows-build.tmp
Detection ratio: 0 / 65
Analysis date: 2018-10-15 13:22:44 UTC ( 1 week, 1 day ago )
Antivirus Result Update
Ad-Aware 20181015
AegisLab 20181015
AhnLab-V3 20181015
Alibaba 20180921
ALYac 20181015
Antiy-AVL 20181015
Arcabit 20181015
Avast 20181015
Avast-Mobile 20181015
AVG 20181015
Avira (no cloud) 20181015
Babable 20180918
Baidu 20181015
BitDefender 20181015
Bkav 20181014
CAT-QuickHeal 20181013
ClamAV 20181015
CMC 20181015
Comodo 20181015
CrowdStrike Falcon (ML) 20180723
Cybereason 20180225
Cylance 20181015
Cyren 20181015
DrWeb 20181015
eGambit 20181015
Emsisoft 20181015
Endgame 20180730
ESET-NOD32 20181015
F-Prot 20181015
F-Secure 20181015
Fortinet 20181015
GData 20181015
Sophos ML 20180717
Jiangmin 20181015
K7AntiVirus 20181015
K7GW 20181015
Kaspersky 20181015
Kingsoft 20181015
Malwarebytes 20181015
MAX 20181015
McAfee 20181015
McAfee-GW-Edition 20181015
Microsoft 20181015
eScan 20181015
NANO-Antivirus 20181015
Palo Alto Networks (Known Signatures) 20181015
Panda 20181014
Qihoo-360 20181015
Rising 20181015
SentinelOne (Static ML) 20181011
Sophos AV 20181015
SUPERAntiSpyware 20181015
Symantec 20181015
Symantec Mobile Insight 20181001
TACHYON 20181015
Tencent 20181015
TheHacker 20181011
TotalDefense 20181015
TrendMicro 20181015
TrendMicro-HouseCall 20181015
Trustlook 20181015
VBA32 20181015
ViRobot 20181015
Webroot 20181015
Yandex 20181012
Zillya 20181012
ZoneAlarm by Check Point 20181015
Zoner 20181014
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Copyright (C) 2013

Product GNU Tools for ARM Embedded Processors 4.8 2013q4
Original name Windows-build.tmp
File version 1.0.0.0
Description Install GNU Tools for ARM Embedded Processors 4.8 2013q4
Packers identified
F-PROT PECompact, PecBundle
PEiD PECompact 2.xx --> BitSum Technologies
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2010-03-13 23:18:18
Entry Point 0x000012A0
Number of sections 2
PE sections
Overlays
MD5 982164e4730d6e13be2116d3ac1b664d
File type data
Offset 792576
Size 101480306
Entropy 8.00
PE imports
VirtualFree
LoadLibraryA
VirtualAlloc
GetProcAddress
Number of PE resources by type
RT_GROUP_CURSOR 77
RT_CURSOR 77
RT_ICON 6
RT_DIALOG 1
RT_MANIFEST 1
RT_BITMAP 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
ENGLISH US 165
PE resources
ExifTool file metadata
UninitializedDataSize
15360

LinkerVersion
2.56

ImageVersion
1.0

FileSubtype
0

FileVersionNumber
1.0.0.0

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

FileDescription
Install GNU Tools for ARM Embedded Processors 4.8 2013q4

ImageFileCharacteristics
No relocs, Executable, No line numbers, 32-bit, No debug

CharacterSet
Unicode

InitializedDataSize
2084864

EntryPoint
0x12a0

OriginalFileName
Windows-build.tmp

MIMEType
application/octet-stream

LegalCopyright
Copyright (C) 2013

FileVersion
1.0.0.0

TimeStamp
2010:03:14 00:18:18+01:00

FileType
Win32 EXE

PEType
PE32

ProductVersion
20131204

SubsystemVersion
4.0

OSVersion
4.0

FileOS
Win32

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
ARM Holdings

CodeSize
1686016

ProductName
GNU Tools for ARM Embedded Processors 4.8 2013q4

ProductVersionNumber
0.0.0.0

FileTypeExtension
exe

ObjectFileType
Executable application

File identification
MD5 6a4f309284cdb5fa02d1187bb90e092f
SHA1 df4d5ee3628c7c82a6116045e0c6feaa0419b16e
SHA256 74e18e4f80d4ee5d8f963571cb717d1f9316e2afa95a2338d18fac5064ea24e1
ssdeep
3145728:Cu/B+TO9ou85CjcNHcw/UsFDtGXwpHDtpQeS403/9QB:Cu79oRCYNHcGUQGXCg4mG

authentihash 98638ef23c9d025b7a87234fa4b7da1f82caf30157258f073562b3c2972adea8
imphash 09d0478591d4f788cb3e5ea416c25237
File size 97.5 MB ( 102272882 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID Win32 EXE PECompact compressed (v2.x) (42.5%)
Win32 EXE PECompact compressed (generic) (29.9%)
Win64 Executable (generic) (19.8%)
Win32 Executable (generic) (3.2%)
OS/2 Executable (generic) (1.4%)
Tags
pecompact peexe overlay

VirusTotal metadata
First submission 2016-03-03 03:46:42 UTC ( 2 years, 7 months ago )
Last submission 2016-03-03 03:46:42 UTC ( 2 years, 7 months ago )
File names gcc-arm-none-eabi-4_8-2013q4-20131204-win32.exe
Windows-build.tmp
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!