Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

be99d 7.14%
f45a9 7.14%
26df2 7.14%
8a92a 21.43%
85906 7.14%
68290 28.57%
cd393 7.14%
49e75 14.29%
(Note, Garena Online Pte Ltd publishes each variation of this file with the same version, but the hashes are unique.)

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryInfoKeyW, RegDeleteValueW, RegCloseKey, RegCreateKeyExW, RegOpenKeyExW, RegSetValueExW, RegEnumKeyExW, RegDeleteKeyW
gdi32.dll
SetBitmapBits, SelectObject, CreateCompatibleBitmap, CreateCompatibleDC, ExcludeClipRect, DeleteDC, GetStockObject, CreateFontIndirectW, GetObjectW, BitBlt, StretchBlt, ExtTextOutW, SetBkColor, SetTextColor, ExtCreateRegion, CombineRgn, DeleteObject, CreateSolidBrush, CreateRectRgn, ExtSelectClipRgn, CreateFontW, SetStretchBltMode, GetTextMetricsW, SelectClipRgn, SetViewportOrgEx, GetDeviceCaps, SetBkMode, GetTextExtentPoint32W, CreateRectRgnIndirect
kernel32.dll
LocalAlloc, GlobalFree, TlsSetValue, LoadResource, CreateEventA, OpenEventA, TlsGetValue, TlsFree, TlsAlloc, SetEvent, FormatMessageA, LocalFree, QueryPerformanceCounter, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, Sleep, InterlockedExchange, HeapSize, HeapReAlloc, HeapDestroy, VirtualAlloc, VirtualFree, IsProcessorFeaturePresent, LoadLibraryA, HeapAlloc, InterlockedCompareExchange, SizeofResource, MultiByteToWideChar, FreeLibrary, lstrcmpiW, GetModuleHandleW, GetProcAddress, InterlockedDecrement, InterlockedIncrement, FindResourceW, GetLastError, LeaveCriticalSection, EnterCriticalSection, lstrlenW, DeleteCriticalSection, InitializeCriticalSection, GlobalSize, GetProfileIntA, GlobalAlloc, GlobalLock, GlobalUnlock, MulDiv, WaitForMultipleObjects, WaitForSingleObject, CreateSemaphoreA, ReleaseSemaphore, GetSystemTimeAsFileTime, GetCurrentProcessId, WideCharToMultiByte, GetProcessHeap, HeapFree, CloseHandle, GetCurrentThreadId, SetLastError, LoadLibraryW, GetTickCount, GetCurrentProcess, FlushInstructionCache, GetModuleFileNameW, LoadLibraryExW, ResetEvent, RaiseException
msimg32.dll
AlphaBlend, TransparentBlt
msvcp90.dll
DllMain
msvcr90.dll
DllMain
ole32.dll
OleCreate, StgCreateDocfile, CreateStreamOnHGlobal, OleSetContainedObject, CoGetClassObject, OleDuplicateData, ReleaseStgMedium, CoTaskMemFree, CoCreateInstance, CoTaskMemRealloc, CoTaskMemAlloc, CoInitialize, OleInitialize, OleUninitialize, CoUninitialize, OleCreateStaticFromData, StgCreateDocfileOnILockBytes, CreateILockBytesOnHGlobal, CreateOleAdviseHolder
user32.dll
GetDoubleClickTime, GetSysColor, RegisterClipboardFormatW, InflateRect, CreateCaret, HideCaret, ShowCaret, SetCaretPos, GetCaretPos, GetClipboardData, IsClipboardFormatAvailable, GetDesktopWindow, wsprintfW, OpenClipboard, RedrawWindow, EnumClipboardFormats, FillRect, CharNextW, SetWindowRgn, OffsetRect, GetKeyState, InvalidateRect, GetWindowRect, SetWindowLongW, GetWindowLongW, GetSystemMetrics, GetMonitorInfoW, EmptyClipboard, SetClipboardData, SetCursorPos, CloseClipboard, CopyRect, SetRect, GetClassLongW, SetClassLongW, SetForegroundWindow, GetFocus, GetWindowTextLengthW, GetWindowTextW, MoveWindow, SetCursor, IsZoomed, GetCapture, ClientToScreen, ShowWindow, WindowFromPoint, GetAncestor, GetWindowThreadProcessId, EqualRect, DrawTextW, SystemParametersInfoW, CallWindowProcW, GetDlgItem, SetWindowTextW, GetAsyncKeyState, KillTimer, SetTimer, PtInRect, RegisterClassExW, ReleaseCapture, GetUpdateRect, IntersectRect, IsRectEmpty, IsWindowVisible, UnregisterClassA, FindWindowExW, EnumChildWindows, MonitorFromWindow, PostMessageW, GetDC, SendMessageW, CreateWindowExW, EndPaint, BeginPaint, GetCursorPos, ScreenToClient, DefWindowProcW, UpdateLayeredWindow, PostQuitMessage, DestroyWindow, LoadCursorW, GetClassInfoExW, GetWindow, MapWindowPoints, IsWindow, GetParent, SetFocus, SetCapture, ReleaseDC, GetClientRect, SetWindowPos, IsIconic

xll.dll

By Garena Online Pte Ltd (Signed)

Remove xll.dll
MD5:   26df2cce636fbb440ce56201fb239956
SHA1:   898266745ccec8343b71319ee5a5b8488bb2fea1

Overview

xll.dll is loaded as dynamic link library that runs in the context of a process. The file is digitally signed by Garena Online Pte Ltd which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:xll.dll
Typical file path:C:\Program Files\garena plus\lib\xll.dll
Size:924.13 KB (946,312 bytes)
Certificate
Issued to:Garena Online Pte Ltd
Authority (CA):VeriSign
Expiration date:Friday, March 11, 2557
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 9.0
.NET CLR:No
More details

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 35.71%
Windows 7 Ultimate 28.57%
Windows 7 Home Premium 21.43%
Windows 8 14.29%

Distribution by countryDistribution by country

Taiwan installs about 35.71% of xll.dll.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Acer 23.08%
GIGABYTE 23.08%
Hewlett-Packard 15.38%
ASUS 15.38%
Toshiba 15.38%
American Megatrends 7.69%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE