al.exe

  • File Path: C:\Program Files (x86)\Microsoft SDKs\Windows\v10.0A\bin\NETFX 4.8 Tools\al.exe
  • Description: Assembly Linker command line tool

Hashes

Type Hash
MD5 79C91DEF06DC6908C678D7A65456A94E
SHA1 B73531EDFBD2579A05469DA99FC9F3C11D3BF42A
SHA256 90FB42A601E445AC485F30CCED18D3B162B69D7EA1992E26ACC143DDFEF705BE
SHA384 0405127C3215FBA51E60731C601C6484B39BF0E76969B7309583BDC6E2AC8D6EC4FE26D60A3C151777F8F7B25BF99C22
SHA512 8E23AE3238E970FE09F99A01AE3081BEE572389BB29756C5EF30C91D5D1A065F7E750C342651A85A472228B8B7AAF144E7FE14794B70F861DDF086004BF3CD84
SSDEEP 3072:UmafYbYu+88ka0V+m3HF45wwM5oRs8GMMBiimvUWYdWeVHZ9rmlVScOgNghUcfkE:omHsm3leoTxBiiXWJ85lmlscO4gduzif
IMP C440C2B7D05FF946D2A4C8F8B6C0DCAE
PESHA1 64C5632E7E7C088E787030DD411FC3963C23DCB3
PE256 DDBD8503A753D6E55248E350A7B5A749FCF9EE9E820A480D3A8632D0CA16DEAD

Runtime Data

Usage (stdout):

Microsoft (R) Assembly Linker version 14.8.4084.0
Copyright (C) Microsoft Corporation. All rights reserved.

Usage: al [options] [sources]
Options: ('/out' must be specified)

  /? or /help               Display this usage message
  @<filename>               Read response file for more options
  /algid:<id>               Algorithm used to hash files (in hexadecimal)
  /base[address]:<addr>     Base address for the library
  /bugreport:<filename>     Create a 'Bug Report' file
  /comp[any]:<text>         Company name
  /config[uration]:<text>   Configuration string
  /copy[right]:<text>       Copyright message
  /c[ulture]:<text>         Supported culture
  /delay[sign][+|-]         Delay sign this assembly
  /descr[iption]:<text>     Description
  /e[vidence]:<filename>    Security evidence file to embed
  /fileversion:<version>    Optional Win32 version (overrides assembly version)
  /flags:<flags>            Assembly flags  (in hexadecimal)
  /fullpaths                Display files using fully-qualified filenames
  /keyf[ile]:<filename>     File containing key to sign the assembly
  /keyn[ame]:<text>         Key container name of key to sign assembly
  /main:<method>            Specifies the method name of the entry point
  /nologo                   Suppress the startup banner and copyright message
  /out:<filename>           Output file name for the assembly manifest
  /platform:<text>          Limit which platforms this code can run on; must be
                            one of x86, Itanium, x64, arm, anycpu32bitpreferred,
                            or anycpu (the default)
  /prod[uct]:<text>         Product name
  /productv[ersion]:<text>  Product version
  /subsystemversion:<version>
                            Specifies the subsystem version for the assembly
  /t[arget]:lib[rary]       Create a library
  /t[arget]:exe             Create a console executable
  /t[arget]:win[exe]        Create a Windows executable
  /t[arget]:appcontainerexe Create a Windows executable that runs on AppContainer
  /template:<filename>      Specifies an assembly to get default options from
  /title:<text>             Title
  /trade[mark]:<text>       Trademark message
  /v[ersion]:<version>      Version (use * to auto-generate remaining numbers)
  /win32icon:<filename>     Use this icon for the output
  /win32res:<filename>      Specifies the Win32 resource file

Sources: (at least one source input is required)
  <filename>[,<targetfile>] add file to assembly
  /embed[resource]:<filename>[,<name>[,Private]]
                            embed the file as a resource in the assembly
  /link[resource]:<filename>[,<name>[,<targetfile>[,Private]]]
                            link the file as a resource to the assembly


Loaded Modules:

Path
C:\Program Files (x86)\Microsoft SDKs\Windows\v10.0A\bin\NETFX 4.8 Tools\al.exe
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\wow64.dll
C:\Windows\System32\wow64cpu.dll
C:\Windows\System32\wow64win.dll

Signature

  • Status: Signature verified.
  • Serial: 33000001519E8D8F4071A30E41000000000151
  • Thumbprint: 62009AAABDAE749FD47D19150958329BF6FF4B34
  • Issuer: CN=Microsoft Code Signing PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: al.exe
  • Product Name: Microsoft .NET Framework
  • Company Name: Microsoft Corporation
  • File Version: 14.8.4084.0 built by: NET48REL1
  • Product Version: 14.8.4084.0
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/76
  • VirusTotal Link: https://www.virustotal.com/gui/file/90fb42a601e445ac485f30cced18d3b162b69d7ea1992e26acc143ddfef705be/detection

MIT License. Copyright (c) 2020-2021 Strontic.