AppVEntSubsystems32.dll

  • File Path: C:\Windows\SysWOW64\AppVEntSubsystems32.dll
  • Description: Client Virtualization Subsystems

Hashes

Type Hash
MD5 D23FC8D857E7EBCAF3F67804A2900E38
SHA1 FD4EE7B2550FED872AF0B48C5DB253087B9B8E4E
SHA256 12867E80BB28C8D57E6E82F9665B82399285EFB0B6002771D12A381CCB12473B
SHA384 EA7C5889EE8E402742175BDB7DAE21988A7BCEBAAFE6502F89011E11F30B5174BB76C309A2340012370FCFD011444C19
SHA512 84640EEEE81E3FADC543B221262D7D53A7A2DE06046A546346D7564009A6F86E4C8A8494A2E4932E56278FF91A552B9BDE4F9B9C5A508738FBA98A6B7621EC4B
SSDEEP 24576:i+Rg5qtOWdE//pF4pStgko9kRtxbS7WJMp0Xjf4bv/lBi6fs/EQ1gWaSy:i+RgaJk/Ako+XxbSW60zf4D/lBi6fhQm
IMP C5FC193B3ED82E02B32B50DE3F59F779
PESHA1 061FD6349BFA8D65BA1571685998343FB58CDDA4
PE256 46F55392CA53E882B01C078BD1B710837A1DA7143436370852711B5940E58FA3

DLL Exports:

Function Name Ordinal Type
RequestUnhookedFunctionList 2 Exported Function
VirtualizeCurrentProcess 5 Exported Function
VirtualizeCurrentThread 3 Exported Function
_IsProcessHooked@0 6 Exported Function
APIExportForDetours 1 Exported Function
CurrentThreadIsVirtualized 4 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 330000026551AE1BBD005CBFBD000000000265
  • Thumbprint: E168609353F30FF2373157B4EB8CD519D07A2BFF
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: AppVEntSubsystems.dll
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.488 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.488
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/70
  • VirusTotal Link: https://www.virustotal.com/gui/file/12867e80bb28c8d57e6e82f9665b82399285efb0b6002771d12a381ccb12473b/detection/

MIT License. Copyright (c) 2020 Strontic.