tbs.dll
- File Path:
C:\Windows\SysWOW64\tbs.dll
- Description: TBS
Hashes
Type |
Hash |
MD5 |
27D7DBB29E8C61B0DE74D4043DE3D79A |
SHA1 |
4FBC1691FD43DF6E4E39D1C68A64084B1FFF1F20 |
SHA256 |
AFC053E20DDBC05828AE268FF75375A7B684EFEFA8868628146D7C0C3B254339 |
SHA384 |
17D7A1E45EBF19B09E9542E00EFEBF7E54410E8662CBAC1546F6B19EA203108D2F686C3A674C29A373D66278EEDAF874 |
SHA512 |
8375A588ABF459C4A03EBF4C2B58D6336BA99D8DAE9D7B7D49230E536A201C62BA509EBFD46D547D07F324995FBFD11A990014B6DAC7A4BC013C4551847E9B6D |
SSDEEP |
1536:ldukr/tF30jzG/jDo9ThzjGAA5DPdcVZha9vCgPxK:SkrFF4q/jD+T1Kf5DEha1vZK |
IMP |
622B57B79B0DEAC212204277DA05C81C |
PESHA1 |
2768248F57610B162E5D8E3A619E4A54A49305CC |
PE256 |
F9F8141DAF610D1DE72DA09DE56A3AFA6EC8161DF8022E66D67A6A853C0BA938 |
DLL Exports:
Function Name |
Ordinal |
Type |
Tbsi_ShaHash |
15 |
Exported Function |
Tbsip_Cancel_Commands |
16 |
Exported Function |
Tbsi_Revoke_Attestation |
14 |
Exported Function |
Tbsi_GetDeviceInfo |
9 |
Exported Function |
Tbsi_Physical_Presence_Command |
13 |
Exported Function |
Tbsip_TestInterruptInformation |
20 |
Exported Function |
Tbsip_TestMorBit |
21 |
Exported Function |
Tbsip_Submit_Command_NonBlocking |
19 |
Exported Function |
Tbsip_Context_Close |
17 |
Exported Function |
Tbsip_Submit_Command |
18 |
Exported Function |
Tbsi_Get_TCG_Logs |
2 |
Exported Function |
Tbsi_Context_Create |
6 |
Exported Function |
Tbsi_Create_Attestation_From_Log |
1 |
Exported Function |
GetDeviceIDWithTimeout |
5 |
Exported Function |
GetDeviceID |
3 |
Exported Function |
GetDeviceIDString |
4 |
Exported Function |
Tbsi_Get_TCG_Log |
11 |
Exported Function |
Tbsi_Get_TCG_Log_Ex |
12 |
Exported Function |
Tbsi_Get_OwnerAuth |
10 |
Exported Function |
Tbsi_Create_Windows_Key |
7 |
Exported Function |
Tbsi_FilterLog |
8 |
Exported Function |
Signature
- Status: Signature verified.
- Serial:
330000026551AE1BBD005CBFBD000000000265
- Thumbprint:
E168609353F30FF2373157B4EB8CD519D07A2BFF
- Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Original Filename: TBS.DLL
- Product Name: Microsoft Windows Operating System
- Company Name: Microsoft Corporation
- File Version: 10.0.19041.1 (WinBuild.160101.0800)
- Product Version: 10.0.19041.1
- Language: English (United States)
- Legal Copyright: Microsoft Corporation. All rights reserved.
- Machine Type: 32-bit
File Scan
- VirusTotal Detections: 0/71
- VirusTotal Link: https://www.virustotal.com/gui/file/afc053e20ddbc05828ae268ff75375a7b684efefa8868628146d7c0c3b254339/detection/
MIT License. Copyright (c) 2020-2021 Strontic.