× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 881e3ae51c7f015e85f7a92b990391459027dc394c772a19cd1927d30e9f93b9
File name: Arma-OAC.exe
Detection ratio: 4 / 66
Analysis date: 2017-10-04 09:16:23 UTC ( 4 months, 2 weeks ago )
Antivirus Result Update
CrowdStrike Falcon (ML) malicious_confidence_70% (D) 20170804
Sophos ML heuristic 20170914
Rising Malware.Heuristic!ET#100% (RDM+:cmRtazoGCZLOhheupn81ceErcOaD) 20171004
SentinelOne (Static ML) static engine - malicious 20171001
Ad-Aware 20171004
AegisLab 20171004
AhnLab-V3 20171003
Alibaba 20170911
ALYac 20171004
Antiy-AVL 20171004
Arcabit 20171004
Avast 20171004
Avast-Mobile 20171004
AVG 20171004
Avira (no cloud) 20171004
AVware 20171004
Baidu 20170930
BitDefender 20171004
Bkav 20170928
CAT-QuickHeal 20171004
ClamAV 20171004
CMC 20171004
Comodo 20171004
Cylance 20171004
Cyren 20171004
DrWeb 20171004
Emsisoft 20171004
Endgame 20170821
ESET-NOD32 20171004
F-Prot 20171004
F-Secure 20171004
Fortinet 20171004
GData 20171004
Ikarus 20171004
Jiangmin 20171004
K7AntiVirus 20171004
K7GW 20171004
Kaspersky 20171004
Kingsoft 20171004
Malwarebytes 20171004
MAX 20171004
McAfee 20171004
McAfee-GW-Edition 20171004
Microsoft 20171004
eScan 20171004
NANO-Antivirus 20171004
nProtect 20171004
Palo Alto Networks (Known Signatures) 20171004
Panda 20171003
Qihoo-360 20171004
Sophos AV 20171004
SUPERAntiSpyware 20171004
Symantec 20171003
Symantec Mobile Insight 20171004
Tencent 20171004
TheHacker 20171002
TotalDefense 20171004
TrendMicro 20171004
TrendMicro-HouseCall 20171004
Trustlook 20171004
VBA32 20171003
VIPRE 20171004
ViRobot 20171004
Webroot 20171004
WhiteArmor 20170927
Yandex 20170908
Zillya 20171003
ZoneAlarm by Check Point 20171004
Zoner 20171004
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
© 2017. SpecOpMemo

Product Arma-OAC
Original name Arma-OAC.exe
Internal name Arma-OAC.exe
File version 0.8.0.0
Description Arma-OAC
Comments Arma Offline Artillery Computer
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2017-04-11 00:54:45
Entry Point 0x0006E72E
Number of sections 4
.NET details
Module Version ID c642660c-9adf-43c8-b306-25310058e221
PE sections
PE imports
_CorExeMain
Number of PE resources by type
RT_ICON 12
RT_MANIFEST 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
NEUTRAL 15
PE resources
Debug information
ExifTool file metadata
SubsystemVersion
4.0

Comments
Arma Offline Artillery Computer

LinkerVersion
6.0

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
0.8.0.0

LanguageCode
Neutral

FileFlagsMask
0x003f

FileDescription
Arma-OAC

CharacterSet
Unicode

InitializedDataSize
50176

EntryPoint
0x6e72e

OriginalFileName
Arma-OAC.exe

MIMEType
application/octet-stream

LegalCopyright
2017. SpecOpMemo

FileVersion
0.8.0.0

TimeStamp
2017:04:11 01:54:45+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
Arma-OAC.exe

ProductVersion
0.8.0.0

UninitializedDataSize
0

OSVersion
4.0

FileOS
Win32

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CodeSize
444416

ProductName
Arma-OAC

ProductVersionNumber
0.8.0.0

FileTypeExtension
exe

ObjectFileType
Executable application

AssemblyVersion
1.0.0.0

Compressed bundles
File identification
MD5 7509b4e4531a3fc124096a0f95d21b83
SHA1 8cdff198660688ffeff29b0e6250efcc94ef35ce
SHA256 881e3ae51c7f015e85f7a92b990391459027dc394c772a19cd1927d30e9f93b9
ssdeep
6144:9z9CrLPSd79i3UIU4FjpZjwVgaf9udUYaKL4IOfmtpXFmmfnBmVGFHKsFpq3:+zxEEFjpZkua1udDxMmtpX/BmVcPg

authentihash 72a230f7611f3eef4d328b9444f666321c85672568250a401b79d74bc053f2ba
imphash f34d5f2d4577ed6d9ceec516c1f5a744
File size 484.0 KB ( 495616 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit Mono/.Net assembly

TrID Generic CIL Executable (.NET, Mono, etc.) (81.0%)
Win32 Dynamic Link Library (generic) (7.2%)
Win32 Executable (generic) (4.9%)
Win16/32 Executable Delphi generic (2.2%)
Generic Win/DOS Executable (2.2%)
Tags
peexe assembly

VirusTotal metadata
First submission 2017-04-11 04:31:05 UTC ( 10 months, 2 weeks ago )
Last submission 2017-04-11 04:31:05 UTC ( 10 months, 2 weeks ago )
File names Arma-OAC.exe
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!