× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 90582f817fdb7e031b6b890d8534fb9552642fa7456965dba9a22a5564e322c8
File name: TrueOTPIntel.dll
Detection ratio: 0 / 68
Analysis date: 2018-11-29 04:58:33 UTC ( 3 months, 3 weeks ago )
Antivirus Result Update
Ad-Aware 20181129
AegisLab 20181129
AhnLab-V3 20181128
Alibaba 20180921
ALYac 20181129
Antiy-AVL 20181128
Arcabit 20181129
Avast 20181129
Avast-Mobile 20181128
AVG 20181129
Avira (no cloud) 20181129
Babable 20180918
Baidu 20181128
BitDefender 20181129
Bkav 20181128
CAT-QuickHeal 20181128
ClamAV 20181128
CMC 20181128
Comodo 20181128
CrowdStrike Falcon (ML) 20181022
Cybereason 20180308
Cylance 20181129
Cyren 20181129
DrWeb 20181129
eGambit 20181129
Emsisoft 20181129
Endgame 20181108
ESET-NOD32 20181129
F-Prot 20181129
F-Secure 20181129
Fortinet 20181129
GData 20181129
Ikarus 20181128
Sophos ML 20181128
Jiangmin 20181129
K7AntiVirus 20181129
K7GW 20181128
Kaspersky 20181129
Kingsoft 20181129
Malwarebytes 20181129
MAX 20181129
McAfee 20181129
McAfee-GW-Edition 20181129
Microsoft 20181129
eScan 20181129
NANO-Antivirus 20181129
Palo Alto Networks (Known Signatures) 20181129
Panda 20181128
Qihoo-360 20181129
Rising 20181129
SentinelOne (Static ML) 20181011
Sophos AV 20181129
SUPERAntiSpyware 20181128
Symantec 20181129
Symantec Mobile Insight 20181121
TACHYON 20181129
Tencent 20181129
TheHacker 20181126
TotalDefense 20181128
Trapmine 20181126
TrendMicro 20181129
TrendMicro-HouseCall 20181129
Trustlook 20181129
VBA32 20181128
ViRobot 20181128
Webroot 20181129
Yandex 20181128
Zillya 20181128
ZoneAlarm by Check Point 20181129
Zoner 20181129
The file being studied is a Portable Executable file! More specifically, it is a Win32 DLL file for the Windows GUI subsystem.
Authenticode signature block and FileVersionInfo properties
Copyright
Copyright (C) 2010-2011, AuthenTec. All rights reserved.

Product AuthenTec TrueAPI
Original name TrueOTP.dll
Internal name TrueOTP
File version 1.3.0.111
Description TrueOTP - Intel ME/VeriSign version
Signature verification Signed file, verified signature
Signing date 10:11 AM 5/5/2011
Signers
[+] AuthenTec, Inc.
Status This certificate or one of the certificates in the certificate chain is not time valid.
Issuer VeriSign Class 3 Code Signing 2010 CA
Valid from 1:00 AM 11/30/2010
Valid to 12:59 AM 12/5/2013
Valid usage Code Signing
Algorithm sha1RSA
Thumbprint B338920F69F04ED6D76FDFE701560BBED05CB06A
Serial number 46 6B 0D 1B 8D 61 26 4F EC 1A 66 A2 EE B0 1D 84
[+] VeriSign Class 3 Code Signing 2010 CA
Status Valid
Issuer VeriSign Class 3 Public Primary Certification Authority - G5
Valid from 1:00 AM 2/8/2010
Valid to 12:59 AM 2/8/2020
Valid usage Client Auth, Code Signing
Algorithm sha1RSA
Thumbprint 495847A93187CFB8C71F840CB7B41497AD95C64F
Serial number 52 00 E5 AA 25 56 FC 1A 86 ED 96 C9 D4 4B 33 C7
[+] VeriSign
Status Valid
Issuer VeriSign Class 3 Public Primary Certification Authority - G5
Valid from 1:00 AM 11/8/2006
Valid to 12:59 AM 7/17/2036
Valid usage Server Auth, Client Auth, Email Protection, Code Signing
Algorithm sha1RSA
Thumbprint 4EB6D578499B1CCF5F581EAD56BE3D9B6744A5E5
Serial number 18 DA D1 9E 26 7D E8 BB 4A 21 58 CD CC 6B 3B 4A
Counter signers
[+] VeriSign Time Stamping Services Signer - G2
Status This certificate or one of the certificates in the certificate chain is not time valid., The revocation status of the certificate or one of the certificates in the certificate chain is unknown., Error 65536 (0x10000), The revocation status of the certificate or one of the certificates in the certificate chain is either offline or stale.
Issuer VeriSign Time Stamping Services CA
Valid from 1:00 AM 6/15/2007
Valid to 12:59 AM 6/15/2012
Valid usage Timestamp Signing
Algorithm sha1RSA
Thumbrint ADA8AAA643FF7DC38DD40FA4C97AD559FF4846DE
Serial number 38 25 D7 FA F8 61 AF 9E F4 90 E7 26 B5 D6 5A D5
[+] VeriSign Time Stamping Services CA
Status This certificate or one of the certificates in the certificate chain is not time valid.
Issuer Thawte Timestamping CA
Valid from 1:00 AM 12/4/2003
Valid to 12:59 AM 12/4/2013
Valid usage Timestamp Signing
Algorithm sha1RSA
Thumbrint F46AC0C6EFBB8C6A14F55F09E2D37DF4C0DE012D
Serial number 47 BF 19 95 DF 8D 52 46 43 F7 DB 6D 48 0D 31 A4
[+] Thawte Timestamping CA
Status Valid
Issuer Thawte Timestamping CA
Valid from 1:00 AM 1/1/1997
Valid to 12:59 AM 1/1/2021
Valid usage Timestamp Signing
Algorithm md5RSA
Thumbrint BE36A4562FB2EE05DBB3D32323ADF445084ED656
Serial number 00
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2011-05-05 09:06:03
Entry Point 0x00001548
Number of sections 5
PE sections
Overlays
MD5 95507f2ae5351b733820da2b58b19c10
File type data
Offset 46592
Size 5960
Entropy 7.29
PE imports
GetLastError
InitializeCriticalSectionAndSpinCount
HeapFree
GetStdHandle
EnterCriticalSection
LCMapStringW
SetHandleCount
HeapDestroy
LCMapStringA
IsDebuggerPresent
ExitProcess
TlsAlloc
GetOEMCP
GetEnvironmentStringsW
GetModuleFileNameA
RtlUnwind
LoadLibraryA
FreeEnvironmentStringsA
DeleteCriticalSection
GetCurrentProcess
GetEnvironmentStrings
GetLocaleInfoA
GetCurrentProcessId
GetCPInfo
UnhandledExceptionFilter
TlsGetValue
MultiByteToWideChar
HeapSize
FreeEnvironmentStringsW
GetCommandLineA
GetProcAddress
GetStringTypeA
WideCharToMultiByte
TlsFree
SetUnhandledExceptionFilter
WriteFile
GetStartupInfoA
GetSystemTimeAsFileTime
GetACP
HeapReAlloc
GetStringTypeW
GetModuleHandleW
HeapAlloc
TerminateProcess
QueryPerformanceCounter
IsValidCodePage
HeapCreate
VirtualFree
InterlockedDecrement
Sleep
GetFileType
TlsSetValue
GetTickCount
GetCurrentThreadId
LeaveCriticalSection
VirtualAlloc
SetLastError
InterlockedIncrement
SysAllocString
SysFreeString
SysStringByteLen
CoCreateInstance
PE exports
Number of PE resources by type
RT_MANIFEST 1
RT_VERSION 1
Number of PE resources by language
ENGLISH US 2
PE resources
Debug information
ExifTool file metadata
UninitializedDataSize
0

LinkerVersion
9.0

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
1.3.0.111

LanguageCode
English (U.S.)

FileFlagsMask
0x0017

FileDescription
TrueOTP - Intel ME/VeriSign version

ImageFileCharacteristics
Executable, 32-bit, DLL

CharacterSet
Windows, Latin1

InitializedDataSize
18944

EntryPoint
0x1548

OriginalFileName
TrueOTP.dll

MIMEType
application/octet-stream

LegalCopyright
Copyright (C) 2010-2011, AuthenTec. All rights reserved.

FileVersion
1.3.0.111

TimeStamp
2011:05:05 10:06:03+01:00

FileType
Win32 DLL

PEType
PE32

InternalName
TrueOTP

ProductVersion
1.3.0.111

SubsystemVersion
5.0

OSVersion
5.0

FileOS
Win32

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
AuthenTec, Inc.

CodeSize
26624

ProductName
AuthenTec TrueAPI

ProductVersionNumber
1.3.0.111

FileTypeExtension
dll

ObjectFileType
Static library

Compressed bundles
File identification
MD5 56edcfb115804565601d2e9e648e776f
SHA1 6570a7a2cd40346b83d1d4170469f756ee66838e
SHA256 90582f817fdb7e031b6b890d8534fb9552642fa7456965dba9a22a5564e322c8
ssdeep
768:YsClhZctzWV/DpVoIamk8Cc6WzRTPeJhbwfkLBi/:nCnjoIxCCkJBl1M

authentihash b655f19856211d1fac559e0106bd7e33e24fe0b5d4c8b2bbdc26694cf025a68a
imphash 8d6b794e898c2ab5ee8ff944b68af418
File size 51.3 KB ( 52552 bytes )
File type Win32 DLL
Magic literal
PE32 executable for MS Windows (DLL) (GUI) Intel 80386 32-bit

TrID Win32 Executable MS Visual C++ (generic) (41.0%)
Win64 Executable (generic) (36.3%)
Win32 Dynamic Link Library (generic) (8.6%)
Win32 Executable (generic) (5.9%)
OS/2 Executable (generic) (2.6%)
Tags
pedll signed overlay

VirusTotal metadata
First submission 2011-12-31 00:20:34 UTC ( 7 years, 2 months ago )
Last submission 2018-11-29 04:58:33 UTC ( 3 months, 3 weeks ago )
File names 3D717F44482B1425CD6D006730C76400CB4656B5.rbf
TrueOTPIntel.dll
TrueOTP.dll
TrueOTPIntel.dll
TrueOTP
TrueOTPIntel.dll
TrueOTPIntel.dll
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!