Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

Version 3.0.0.548 50.00%
Version 3.0.0.548 50.00%
(Note, Total Defense publishes each variation of this file with the same version, but the hashes are unique.)

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
SetSecurityDescriptorDacl, RegDeleteValueA, RegQueryValueExA, RegSetValueExA, RegCreateKeyExA, RegOpenKeyExA, RegCloseKey, RegNotifyChangeKeyValue, InitializeSecurityDescriptor, AddAccessAllowedAce, InitializeAcl, GetLengthSid, FreeSid, AllocateAndInitializeSid
kernel32.dll
GetSystemDirectoryA, LoadLibraryA, InterlockedExchange, SetLastError, GetWindowsDirectoryA, GetModuleFileNameA, GetModuleHandleA, CompareStringA, LocalAlloc, LocalFree, GetTickCount, GetSystemTime, FileTimeToSystemTime, GetLocalTime, Sleep, MapViewOfFile, UnmapViewOfFile, ReadFile, SetFilePointer, GetExitCodeProcess, GetCurrentProcessId, GetCurrentProcess, SystemTimeToFileTime, GetSystemTimeAsFileTime, QueryPerformanceCounter, WaitForMultipleObjects, TerminateProcess, CreateMutexA, CreateEventA, InterlockedIncrement, InterlockedDecrement, GetFileTime, HeapAlloc, WriteFile, HeapFree, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, GetOverlappedResult, SetEndOfFile, GetFileSize, GetCurrentThreadId, GlobalFree, GlobalAlloc, InterlockedCompareExchange, RtlUnwind, RaiseException, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, GetCommandLineA, GetVersionExA, ExitThread, CreateThread, ExitProcess, LCMapStringA, GetStringTypeA, GetStdHandle, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, HeapSize, SetHandleCount, GetFileType, GetStartupInfoA, FreeEnvironmentStringsA, GetEnvironmentStrings, HeapDestroy, HeapCreate, VirtualFree, GetACP, GetOEMCP, VirtualAlloc, HeapReAlloc, GetConsoleCP, GetConsoleMode, FlushFileBuffers, GetLocaleInfoA, GetUserDefaultLCID, EnumSystemLocalesA, IsValidLocale, SetStdHandle, WriteConsoleA, GetConsoleOutputCP, CreateFileA, lstrlenA, lstrcpyA, GetLastError, CloseHandle, WaitForSingleObject, ReleaseMutex, FreeLibrary, ResetEvent, GetProcessHeap, SetEvent
ole32.dll
CoInitialize, CoUninitialize
user32.dll
MessageBoxA, MsgWaitForMultipleObjects, TranslateMessage
wininet.dll
InternetOpenW, DetectAutoProxyUrl, InternetQueryOptionA, InternetGetConnectedStateExA, InternetQueryDataAvailable, InternetOpenUrlA, InternetReadFile
Export table
CreateMalwareSDKW
CreateTaskManager
DestroyMalwareSDKW
UnInitialize

caambl.dll

Anti-Virus Plus by Total Defense (Signed)

Remove caambl.dll
Version:   Version 3.0.0.548
MD5:   f1d4c7d229c4c253a5fcd7a367e90ca3
SHA1:   80e7a1890950bde08bbbbf71c4c899e5dcff7dca

Overview

caambl.dll is loaded as dynamic link library that runs in the context of a process. The file is digitally signed by Total Defense which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:caambl.dll
Publisher:Total Defense, Inc.
Product name:Anti-Virus Plus
Description:AMBL
Typical file path:C:\Program Files\total defense\internet security suite\anti-virus\caambl.dll
File version:Version 3.0.0.548
Size:793.58 KB (812,624 bytes)
Build date:8/17/2012 10:19 PM
Certificate
Issued to:Total Defense
Authority (CA):VeriSign
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 50.00%
Windows 7 Ultimate 50.00%

Distribution by countryDistribution by country

United States installs about 100.00% of Anti-Virus Plus.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Sony 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE