Gridinsoft Logo
File Icon

The Volumetool.exe (Autodesk 2020-2026 Cracked NLM Installer) File Analysis

Technical Analysis

File Name Volumetool.exe
File Type
Win32 EXE
Magic Bytes PE32+ executable (GUI) x86-64, for MS Windows
SSDEEP Hash
196608:uW9+phJYDNAHmXiqKmqQeyLKpRdcVtXann:uljqDNAGXiTmrMpwVVcn
Scanner Version 1.0.229.174
Database Version 2025-11-20 15:00:29 UTC

Suspicious File Detected

Detected by 37 security engines - requires caution

This file requires additional checking for potential threats. Based on suspicious indicators, we will soon add it to our virus database.
51%
Detection Rate
7,794,325
File Size (bytes)
37/72
Engines Detected
2025-11-20
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
efcc8ca7ae516aabfac2adc6a18c8f3f
SHA1
a987f2ef1ec6a167b5ec0449616733c66f96dd4f
SHA256
34bc3e81e0426603f6b974c91c2b58a8bc15c82b3291a44033337e48f27d9d77
SHA512
82ed53dbd6e2eb2a8c9c5f1bb39d407adba2ce4437bc25f1cdfb990e718678cf7206f95bcb4db8457124320253a5d1db2b4bf6973feadc8d311005ae8c5bd8bf
ImpHash
6d9c27ca5008bc63e9fbc102659734db

Security Engines with Detections (37 of 72)

Lionic
Hacktool.Win32.Crack.3!c Malicious
MicroWorld-eScan
Application.Generic.4409192 Malicious
CTX
exe.hacktool.crack Malicious
CAT-QuickHeal
Trojan.Ghanarava.17628145498c8f3f Malicious
Skyhigh
BehavesLike.Win64.Generic.wc Malicious
ALYac
Application.Generic.4409192 Malicious
Cylance
Unsafe Malicious
Sangfor
Trojan.Win32.Agent.Vde9 Malicious
CrowdStrike
win/malicious_confidence_60% (W) Malicious
BitDefender
Application.Generic.4409192 Malicious
K7GW
Hacktool ( 005d4bbc1 ) Malicious
K7AntiVirus
Hacktool ( 005d4bbc1 ) Malicious
Symantec
ML.Attribute.HighConfidence Malicious
Elastic
malicious (high confidence) Malicious
ESET-NOD32
Win64/HackTool.Crack.DT potentially unsafe application Malicious
Paloalto
generic.ml Malicious
Emsisoft
Application.Generic.4409192 (B) Malicious
F-Secure
Trojan.TR/AVI.Agent.djfju Malicious
DrWeb
Trojan.MulDrop33.36351 Malicious
VIPRE
Application.Generic.4409192 Malicious
McAfeeD
ti!34BC3E81E042 Malicious
Sophos
Generic Reputation PUA (PUA) Malicious
Ikarus
PUA.HackTool.Crack Malicious
GData
Application.Generic.4409192 Malicious
Webroot
W32.HackTool.Gen Malicious
Varist
W64/ABApplication.USIL-2349 Malicious
Avira
TR/AVI.Agent.syeex Malicious
Arcabit
Application.Generic.D434768 Malicious
Microsoft
Trojan:Win32/Kepavll!rfn Malicious
Google
Detected Malicious
DeepInstinct
MALICIOUS Malicious
Malwarebytes
HackTool.Crack Malicious
Panda
Trj/CI.A Malicious
TrellixENS
Artemis!EFCC8CA7AE51 Malicious
AVG
Other:Malware-gen [Trj] Malicious
Avast
Other:Malware-gen [Trj] Malicious
alibabacloud
HackTool:Win/Crack.DS Malicious
35 engines reported no threats - Only engines with detections are shown above for clarity

PE Analysis

Basic Information

Icon
Hash: a3397fd753edf3315c5ee39acdb04ac6
Fuzzy: 4ffbf82122e16db27464e30757c88930
dHash: b07064ecc6c69c8c
Image Base 0x140000000
Entry Point 0x140020360
Compilation Time 2018-05-21 01:49:42
Checksum 0x0006a697 (Actual: 0x007799b3)
OS Version 5.2
PEiD Signatures PE32+ executable (GUI) x86-64, for MS Windows
Digital Signature No valid SignedData structure was found.
Imports 9 libraries
COMCTL32, SHELL32, GDI32, ADVAPI32, USER32, ole32, OLEAUT32, KERNEL32, msvcrt
Exports 0 functions
Resources 26 Resources
Sections 6 Sections

Version Information

CompanyName MAGNiTUDE & m0nkrus
FileDescription Autodesk 2020-2026 Cracked NLM Installer
FileVersion 10.0.0.0
InternalName AdskNLM
LegalCopyright Copyright © 2022-2025 MAGNiTUDE & m0nkrus
OriginalFilename AdskNLM.exe
PrivateBuild March 25, 2025
ProductName Autodesk Cracked NLM
ProductVersion 10.0.0.0
Translation 0x0000 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 130,460 bytes 130,560 bytes 6.41 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 34880DED82A53AF6388CA6A6E73C7163
.rdata 0x00021000 25,930 bytes 26,112 bytes 5.19 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 885FC665D6A943B5EA1E6AF33363C9A7
.data 0x00028000 20,856 bytes 3,072 bytes 2.81 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE C08192134F5C5CBE4DBE153F0F637630
.pdata 0x0002e000 7,284 bytes 7,680 bytes 5.08 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ D5F72ADB04088181AB06B1B6D38E12A6
.rsrc 0x00030000 251,363 bytes 251,392 bytes 5.27 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 17DE09A1732D1F4750CA4E5EC1A351F2
.reloc 0x0006e000 2,250 bytes 2,560 bytes 3.76 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 5AF5EC830E68530FB5050CBD595715DF

Resource Analysis

Total Resources: 26 (249,998 bytes)
Resource Type Count Total Size Percentage
RT_ICON 23 247,995 bytes
99.2%
RT_GROUP_ICON 1 328 bytes
0.1%
RT_VERSION 1 896 bytes
0.4%
RT_MANIFEST 1 779 bytes
0.3%

Certificate Chain Analysis

Certificate Information
Product Autodesk Cracked NLM
Description Autodesk 2020-2026 Cracked NLM Installer
File Version 10.0.0.0
Original Name AdskNLM.exe
Internal Name AdskNLM
Copyright Copyright © 2022-2025 MAGNiTUDE & m0nkrus

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
37 antivirus engines detected potential threats. This could be a false positive, especially for system tools or packed software. Verify the file source and check if it's digitally signed by a trusted publisher.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Your Score for
/

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware