AxInstSv.dll

  • File Path: C:\Windows\system32\AxInstSv.dll
  • Description: ActiveX Installer Service

Hashes

Type Hash
MD5 33A4AE9880A55320D6922FF9193190CC
SHA1 5F7C3E430244710F332F2516F6000CE0916CE389
SHA256 98E1D7AF4B14BE99F0786170E6C1B4562672E535BBA5984658DA00D6F4DD70F9
SHA384 5FB68FDCDC7C77014BE57D4A935233CD6622E1FF4BFC3093E5F693119DC1B463DD4ADADD37EEFCFA616C39F37E328F4C
SHA512 3A1E3E0971FFD2D2D53B9021172DF2836D51FD831E1E09165F52673C2797588DE6C5D8ACB2C474A4D392C245C56FBA120F61689DE03A6167232221354BAFEB71
SSDEEP 3072:MwAI1HU+e5d3k2nCYdiJj/c4A/Pv+Vl1uXKopZ:710fd3k2nCYD81uXf
IMP B40A6EB03C9DAEF15289D6A40E0DA668
PESHA1 F3E6AA37E7DE45403AC40BBB3F7960CEF46F59C1
PE256 2EA39003DC5C0FFBBF20A2CEA060665FF96B4AD14844406E112C9DC043EED74F

DLL Exports:

Function Name Ordinal Type
SvchostPushServiceGlobals 2 Exported Function
ServiceMain 1 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: AxInstSv.dll.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.388 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.388
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/68
  • VirusTotal Link: https://www.virustotal.com/gui/file/98e1d7af4b14be99f0786170e6c1b4562672e535bba5984658da00d6f4dd70f9/detection/

Possible Misuse

The following table contains possible examples of AxInstSv.dll being misused. While AxInstSv.dll is not inherently malicious, its legitimate functionality can be abused for malicious purposes.

Source Source File Example License
malware-ioc nukesped_lazarus .AxInstSV.dll`` © ESET 2014-2018

MIT License. Copyright (c) 2020 Strontic.