× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 339dc5c04a9c30e30fec4b8900e70f6c50a0c47f53bea4c39696f51d2c9d2e12
File name: tol_tools_addon
Detection ratio: 0 / 66
Analysis date: 2017-10-11 10:24:07 UTC ( 1 year, 6 months ago )
Antivirus Result Update
Ad-Aware 20171011
AegisLab 20171011
AhnLab-V3 20171011
Alibaba 20170911
ALYac 20171011
Antiy-AVL 20171011
Arcabit 20171011
Avast 20171011
Avast-Mobile 20171011
AVG 20171011
Avira (no cloud) 20171011
AVware 20171011
Baidu 20171011
BitDefender 20171011
Bkav 20171009
CAT-QuickHeal 20171011
ClamAV 20171011
CMC 20171011
Comodo 20171011
CrowdStrike Falcon (ML) 20170804
Cylance 20171011
Cyren 20171011
DrWeb 20171011
Emsisoft 20171011
Endgame 20170821
ESET-NOD32 20171011
F-Prot 20171011
F-Secure 20171011
Fortinet 20171011
GData 20171011
Ikarus 20171011
Sophos ML 20170914
Jiangmin 20171011
K7AntiVirus 20171011
K7GW 20171011
Kaspersky 20171011
Kingsoft 20171011
Malwarebytes 20171011
MAX 20171011
McAfee 20171011
McAfee-GW-Edition 20171011
Microsoft 20171011
eScan 20171011
NANO-Antivirus 20171011
nProtect 20171011
Palo Alto Networks (Known Signatures) 20171011
Panda 20171010
Qihoo-360 20171011
Rising 20171011
SentinelOne (Static ML) 20171001
Sophos AV 20171011
SUPERAntiSpyware 20171011
Symantec 20171011
Symantec Mobile Insight 20171011
Tencent 20171011
TheHacker 20171007
TotalDefense 20171011
TrendMicro 20171011
TrendMicro-HouseCall 20171011
Trustlook 20171011
VBA32 20171010
VIPRE 20171011
ViRobot 20171011
Webroot 20171011
WhiteArmor 20170927
Yandex 20171010
Zillya 20171011
ZoneAlarm by Check Point 20171011
Zoner 20171011
The file being studied is a Portable Executable file! More specifically, it is a Win32 DLL file for the Windows GUI subsystem.
Authenticode signature block and FileVersionInfo properties
Copyright
Copyright (C) 2000-2012 Acronis

Product TOL tool Addon
Original name tol_tools_addon.dll
Internal name tol_tools_addon
File version 11,5,0,32308
Description TOL tool Addon
Comments TOL tool Addon
Signature verification Signed file, verified signature
Signing date 11:28 PM 10/22/2012
Signers
[+] Acronis International GmbH
Status This certificate or one of the certificates in the certificate chain is not time valid.
Issuer VeriSign Class 3 Code Signing 2010 CA
Valid from 1:00 AM 8/28/2012
Valid to 12:59 AM 8/29/2015
Valid usage Code Signing
Algorithm sha1RSA
Thumbprint 35BE8196A869B78ECC7AED23007FF85CCECEA532
Serial number 16 43 7A AA 13 F5 54 3F 67 E1 0E 03 89 3E A3 15
[+] VeriSign Class 3 Code Signing 2010 CA
Status Valid
Issuer VeriSign Class 3 Public Primary Certification Authority - G5
Valid from 1:00 AM 2/8/2010
Valid to 12:59 AM 2/8/2020
Valid usage Client Auth, Code Signing
Algorithm sha1RSA
Thumbprint 495847A93187CFB8C71F840CB7B41497AD95C64F
Serial number 52 00 E5 AA 25 56 FC 1A 86 ED 96 C9 D4 4B 33 C7
[+] VeriSign
Status Valid
Issuer VeriSign Class 3 Public Primary Certification Authority - G5
Valid from 1:00 AM 11/8/2006
Valid to 12:59 AM 7/17/2036
Valid usage Server Auth, Client Auth, Email Protection, Code Signing
Algorithm sha1RSA
Thumbprint 4EB6D578499B1CCF5F581EAD56BE3D9B6744A5E5
Serial number 18 DA D1 9E 26 7D E8 BB 4A 21 58 CD CC 6B 3B 4A
Counter signers
[+] Symantec Time Stamping Services Signer - G3
Status This certificate or one of the certificates in the certificate chain is not time valid., The revocation status of the certificate or one of the certificates in the certificate chain is unknown., Error 65536 (0x10000), The revocation status of the certificate or one of the certificates in the certificate chain is either offline or stale.
Issuer VeriSign Time Stamping Services CA
Valid from 1:00 AM 5/1/2012
Valid to 12:59 AM 1/1/2013
Valid usage Timestamp Signing
Algorithm sha1RSA
Thumbrint 8FD99D63FB3AFBD534A4F6E31DACD27F59504021
Serial number 79 A2 A5 85 F9 D1 15 42 13 D9 B8 3E F6 B6 8D ED
[+] VeriSign Time Stamping Services CA
Status This certificate or one of the certificates in the certificate chain is not time valid.
Issuer Thawte Timestamping CA
Valid from 1:00 AM 12/4/2003
Valid to 12:59 AM 12/4/2013
Valid usage Timestamp Signing
Algorithm sha1RSA
Thumbrint F46AC0C6EFBB8C6A14F55F09E2D37DF4C0DE012D
Serial number 47 BF 19 95 DF 8D 52 46 43 F7 DB 6D 48 0D 31 A4
[+] Thawte Timestamping CA
Status Valid
Issuer Thawte Timestamping CA
Valid from 1:00 AM 1/1/1997
Valid to 12:59 AM 1/1/2021
Valid usage Timestamp Signing
Algorithm md5RSA
Thumbrint BE36A4562FB2EE05DBB3D32323ADF445084ED656
Serial number 00
Packers identified
F-PROT ZIP
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2012-10-22 18:29:35
Entry Point 0x00008B20
Number of sections 6
PE sections
Overlays
MD5 579a502d9373473f8866a02f31107151
File type application/zip
Offset 1028096
Size 18264
Entropy 7.88
PE imports
RegCreateKeyExW
RegDeleteKeyA
LookupPrivilegeValueA
RegCloseKey
RegDeleteKeyW
RegQueryValueExA
AdjustTokenPrivileges
RegCreateKeyExA
RegQueryValueExW
GetSidSubAuthorityCount
GetFileSecurityW
OpenProcessToken
RegOpenKeyExW
SetFileSecurityW
GetSecurityDescriptorOwner
RegOpenKeyExA
RegDeleteValueA
GetUserNameW
IsValidSid
GetSidIdentifierAuthority
RegDeleteValueW
RegEnumKeyExW
OpenThreadToken
GetUserNameA
GetSidSubAuthority
RegEnumKeyExA
RegEnumValueW
RevertToSelf
RegSetValueExW
ImpersonateLoggedOnUser
RegSetValueExA
RegEnumValueA
SetThreadToken
GetTextMetricsW
CreateFontIndirectW
EnumFontFamiliesExW
CreateFontIndirectA
GetTextMetricsA
EnumFontFamiliesExA
GetDriveTypeW
GetConsoleOutputCP
GetProcessWorkingSetSize
GetFileAttributesA
WaitForSingleObject
GetDriveTypeA
FindFirstFileW
GetFileAttributesW
DeleteCriticalSection
GetCurrentProcess
GetLocaleInfoA
LocalAlloc
GetVolumeInformationW
SetErrorMode
GetLogicalDrives
GetFileInformationByHandle
GetLocaleInfoW
GetFullPathNameA
GetFileTime
GetTempPathA
WideCharToMultiByte
SetComputerNameW
InterlockedExchange
GetTempPathW
FormatMessageW
GetSystemTimeAsFileTime
SetComputerNameA
SetFileAttributesA
SetEvent
LocalFree
MoveFileA
GetLogicalDriveStringsA
GetEnvironmentVariableA
OutputDebugStringW
GetLogicalDriveStringsW
FindClose
TlsGetValue
FormatMessageA
SetFileAttributesW
OutputDebugStringA
GetEnvironmentVariableW
SetLastError
DeviceIoControl
InitializeCriticalSection
CopyFileW
LoadResource
GetModuleFileNameW
CopyFileA
FlushFileBuffers
RemoveDirectoryA
SetProcessWorkingSetSize
GetVolumeInformationA
LoadLibraryExA
EnumResourceLanguagesW
UnhandledExceptionFilter
LoadLibraryExW
MultiByteToWideChar
MoveFileW
SetFilePointer
GetFullPathNameW
LockFileEx
CreateSemaphoreA
SetEnvironmentVariableW
MoveFileExW
GetSystemDirectoryW
SetUnhandledExceptionFilter
GetSystemDirectoryA
SetEnvironmentVariableA
TerminateProcess
FindCloseChangeNotification
WriteConsoleA
GetNumberFormatA
FindNextChangeNotification
SetEndOfFile
BackupSeek
GetVersion
SetCurrentDirectoryA
WriteConsoleW
EnterCriticalSection
LoadLibraryW
FreeLibrary
QueryPerformanceCounter
GetTickCount
DisableThreadLibraryCalls
TlsAlloc
GetVersionExA
LoadLibraryA
ExitThread
GetStartupInfoA
GetDateFormatA
GetWindowsDirectoryW
CreateDirectoryA
DeleteFileA
GetWindowsDirectoryA
GetDateFormatW
GetStartupInfoW
CreateDirectoryW
DeleteFileW
GetProcAddress
GetTempFileNameW
GetComputerNameW
EnumResourceNamesW
GetTimeFormatW
RemoveDirectoryW
ExpandEnvironmentStringsW
FindFirstFileA
BackupWrite
GetDiskFreeSpaceA
GetTimeFormatA
GetTempFileNameA
GetComputerNameA
FindNextFileA
WaitForMultipleObjects
ExpandEnvironmentStringsA
GetTimeZoneInformation
CreateFileW
CreateEventA
IsDebuggerPresent
QueryDosDeviceA
TlsSetValue
CreateFileA
LeaveCriticalSection
GetLastError
SetCurrentDirectoryW
LCMapStringW
GetShortPathNameW
FindFirstChangeNotificationA
GetSystemInfo
LCMapStringA
CompareStringW
FindNextFileW
GetThreadLocale
GetModuleFileNameA
GetShortPathNameA
FindFirstChangeNotificationW
SetFileApisToANSI
GetCurrentDirectoryW
WritePrivateProfileStringA
GetCurrentProcessId
LockResource
SetFileTime
GetCompressedFileSizeW
GetCurrentDirectoryA
BackupRead
InterlockedCompareExchange
GetCurrentThread
GetSystemDefaultLangID
RaiseException
CompareStringA
ReleaseSemaphore
TlsFree
GetModuleHandleA
ReadFile
GetDiskFreeSpaceW
CloseHandle
UnlockFileEx
GetACP
GetCurrentThreadId
FindResourceExW
CreateProcessA
WriteFile
GetNumberFormatW
CreateProcessW
Sleep
ResetEvent
WNetOpenEnumW
WNetAddConnection3W
WNetGetUniversalNameW
WNetCancelConnection2W
WNetEnumResourceW
WNetGetUniversalNameA
WNetAddConnection3A
WNetCloseEnum
?assign@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV12@PBDI@Z
?assign@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV12@ABV12@@Z
?reserve@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEXI@Z
?append@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV12@ID@Z
??Y?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV01@D@Z
?compare@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QBEHABV12@@Z
?resize@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEXI@Z
?compare@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QBEHIIPB_WI@Z
??$?9DU?$char_traits@D@std@@V?$allocator@D@1@@std@@YA_NABV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@0@0@Z
?assign@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV12@ABV12@II@Z
?clear@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEXXZ
??4?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV01@PB_W@Z
??0?$basic_ostringstream@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@H@Z
?compare@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QBEHIIPBDI@Z
?assign@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV12@PBD0@Z
??4?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV01@ABV01@@Z
?assign@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV12@ABV12@II@Z
?replace@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV12@V?$_String_iterator@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@2@0ABV12@@Z
?rfind@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QBEI_WI@Z
??1?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAE@XZ
?begin@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAE?AV?$_String_iterator@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@2@XZ
??$?8_WU?$char_traits@_W@std@@V?$allocator@_W@1@@std@@YA_NABV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@0@PB_W@Z
?swap@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEXAAV12@@Z
??0?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@PBDI@Z
??$?H_WU?$char_traits@_W@std@@V?$allocator@_W@1@@std@@YA?AV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@0@ABV10@_W@Z
?end@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAE?AV?$_String_iterator@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@2@XZ
?assign@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV12@PBD@Z
?rfind@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QBEIPBDII@Z
??Y?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV01@ABV01@@Z
?npos@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@2IB
?clear@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEXXZ
?compare@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QBEHIIABV12@@Z
??$?9_WU?$char_traits@_W@std@@V?$allocator@_W@1@@std@@YA_NABV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@0@0@Z
?assign@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV12@PB_WI@Z
??$?M_WU?$char_traits@_W@std@@V?$allocator@_W@1@@std@@YA_NABV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@0@0@Z
?deallocate@?$allocator@_W@std@@QAEXPA_WI@Z
?find@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QBEIPBDII@Z
?append@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV12@PBDI@Z
?erase@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV12@II@Z
??0?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAE@ABV01@@Z
?append@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV12@PB_WI@Z
??0?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@PBD@Z
??0?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAE@ABV01@II@Z
??6?$basic_ostream@DU?$char_traits@D@std@@@std@@QAEAAV01@I@Z
??0?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@ABV01@@Z
?find@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QBEI_WI@Z
??4?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV01@PBD@Z
??4?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV01@_W@Z
??1?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@XZ
??0?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@XZ
??$?MDU?$char_traits@D@std@@V?$allocator@D@1@@std@@YA_NABV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@0@0@Z
??0?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAE@XZ
??0?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAE@PB_W0@Z
?append@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV12@I_W@Z
?_Tidy@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@IAEX_NI@Z
??0?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAE@PB_W@Z
?assign@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV12@PB_W@Z
?erase@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV12@II@Z
??Y?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV01@PB_W@Z
?find_last_of@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QBEI_WI@Z
??_D?$basic_ostringstream@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEXXZ
??Y?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV01@_W@Z
??0?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@PBD0@Z
??$?8DU?$char_traits@D@std@@V?$allocator@D@1@@std@@YA_NABV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@0@PBD@Z
??$?H_WU?$char_traits@_W@std@@V?$allocator@_W@1@@std@@YA?AV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@0@ABV10@0@Z
?compare@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QBEHIIPB_W@Z
??4?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV01@ABV01@@Z
??Y?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEAAV01@PBD@Z
?str@?$basic_ostringstream@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QBE?AV?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@2@XZ
?npos@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@2IB
?find@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QBEIABV12@I@Z
??$?8_WU?$char_traits@_W@std@@V?$allocator@_W@1@@std@@YA_NABV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@0@0@Z
?allocate@?$allocator@_W@std@@QAEPA_WI@Z
?insert@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV12@II_W@Z
?insert@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV12@IPB_W@Z
?substr@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QBE?AV12@II@Z
??$?H_WU?$char_traits@_W@std@@V?$allocator@_W@1@@std@@YA?AV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@0@ABV10@PB_W@Z
?resize@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEXI@Z
_malloc_crt
__lconv_init
malloc
srand
?what@exception@std@@UBEPBDXZ
rand
memset
wcschr
_time64
__dllonexit
__RTDynamicCast
abort
strtoul
strncpy
_wcstoui64
__clean_type_info_names_internal
?_name_internal_method@type_info@@QBEPBDPAU__type_info_node@@@Z
_amsg_exit
?terminate@@YAXXZ
_wputenv
?_type_info_dtor_internal_method@type_info@@QAEXXZ
_CxxThrowException
_wgetenv
??2@YAPAXI@Z
_lock
_onexit
_encode_pointer
sprintf
sscanf
_decode_pointer
_adjust_fdiv
??_V@YAXPAX@Z
strchr
_wcsicmp
memmove_s
_unlock
_crt_debugger_hook
??3@YAXPAX@Z
free
__CxxFrameHandler3
_except_handler4_common
wcsncmp
_purecall
memcpy
??0exception@std@@QAE@ABV01@@Z
??8type_info@@QBE_NABV0@@Z
??1exception@std@@UAE@XZ
_initterm_e
??0exception@std@@QAE@ABQBD@Z
_beginthreadex
_encoded_null
_get_invalid_parameter_handler
__CppXcptFilter
_set_invalid_parameter_handler
??0exception@std@@QAE@XZ
_initterm
_strnicmp
memchr
VariantChangeType
SafeArrayAccessData
SafeArrayUnaccessData
VariantClear
VariantInit
SHGetFileInfoA
ShellExecuteExA
ShellExecuteW
ShellExecuteExW
SHGetDesktopFolder
SHGetPathFromIDListA
SHGetMalloc
ShellExecuteA
Shell_NotifyIconA
SendNotifyMessageA
CreateDialogIndirectParamW
VkKeyScanExW
VkKeyScanA
SendNotifyMessageW
DefWindowProcW
CreateDialogIndirectParamA
VkKeyScanExA
DefWindowProcA
SetWindowLongW
GetClipboardFormatNameA
PeekMessageW
DispatchMessageA
RegisterClassExW
RegisterClipboardFormatA
PostMessageA
CharUpperBuffA
GetClipboardFormatNameW
PeekMessageA
SetWindowLongA
TranslateMessage
CharUpperBuffW
VkKeyScanW
RegisterClipboardFormatW
DispatchMessageW
RegisterClassExA
SystemParametersInfoA
SetWindowTextA
SendMessageW
GetWindowLongW
WinHelpW
SendMessageA
SetWindowTextW
SystemParametersInfoW
WinHelpA
PostMessageW
AppendMenuA
GetWindowLongA
CreateWindowExA
ModifyMenuW
wsprintfW
GetMessageA
ModifyMenuA
AppendMenuW
GetFileVersionInfoSizeA
GetFileVersionInfoA
VerQueryValueA
GetOpenFileNameA
GetSaveFileNameW
GetSaveFileNameA
GetOpenFileNameW
CoInitializeEx
CoCreateInstance
CoUninitialize
CoInitialize
PE exports
Number of PE resources by type
RT_MANIFEST 1
RT_VERSION 1
Number of PE resources by language
ENGLISH US 2
PE resources
Debug information
ExifTool file metadata
CodeSize
659456

SubsystemVersion
4.0

Comments
TOL tool Addon

InitializedDataSize
364544

ImageVersion
0.0

ProductName
TOL tool Addon

FileVersionNumber
11.5.0.32308

UninitializedDataSize
0

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

CharacterSet
Unicode

LinkerVersion
8.0

FileTypeExtension
dll

OriginalFileName
tol_tools_addon.dll

MIMEType
application/octet-stream

Subsystem
Windows GUI

FileVersion
11,5,0,32308

TimeStamp
2012:10:22 19:29:35+01:00

FileType
Win32 DLL

PEType
PE32

InternalName
tol_tools_addon

ProductVersion
11,5,0,32308

FileDescription
TOL tool Addon

OSVersion
4.0

FileOS
Win32

LegalCopyright
Copyright (C) 2000-2012 Acronis

MachineType
Intel 386 or later, and compatibles

CompanyName
Acronis

LegalTrademarks
Acronis

FileSubtype
0

ProductVersionNumber
11.5.0.32308

EntryPoint
0x8b20

ObjectFileType
Dynamic link library

File identification
MD5 9489172e62c5c8fbdd5dcccd2fe6becb
SHA1 a19d9953c0677eca46a0021a68272b8e5be90454
SHA256 339dc5c04a9c30e30fec4b8900e70f6c50a0c47f53bea4c39696f51d2c9d2e12
ssdeep
12288:cjDvISOG/8KdJSCCuMh6IBoFoN/GPF4bhszyALP5tkogSefTsZobKhQKvEVtb7wA:sXhHnzyyBtkogSefT3bKOpr

authentihash 9d92559c3d1007476853bc120c4fb78989b4df93dc72213355260f2ad0373185
imphash 7510cda91f80722dc7d0e114f6756abe
File size 1021.8 KB ( 1046360 bytes )
File type Win32 DLL
Magic literal
PE32 executable for MS Windows (DLL) (GUI) Intel 80386 32-bit

TrID Win64 Executable (generic) (64.6%)
Win32 Dynamic Link Library (generic) (15.4%)
Win32 Executable (generic) (10.5%)
Generic Win/DOS Executable (4.6%)
DOS Executable Generic (4.6%)
Tags
pedll signed overlay

VirusTotal metadata
First submission 2017-09-13 10:19:43 UTC ( 1 year, 7 months ago )
Last submission 2017-09-13 10:19:43 UTC ( 1 year, 7 months ago )
File names tol_tools_addon.dll
tol_tools_addon
tol_tools_addon.dll
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!