DevQueryBroker.dll

  • File Path: C:\Windows\system32\DevQueryBroker.dll
  • Description: DevQuery Background Discovery Broker

Hashes

Type Hash
MD5 F8BE99B9EA9B110F7CB3F46BA844C1FF
SHA1 5DFCAC7C04C09FC4E0869C889D71FD82C4439930
SHA256 EABF953864C0AE4FB6426C0B7E92DD81EE4A8852081F9D2EA02B61D4C8DB6188
SHA384 C3DD316CBB9A707D7A59B7CD37032F05B11D6F8BAF25B3571768E71739C7D53C9E919832B135B4ACDABB1C5EEACE03AD
SHA512 57A8231AC3993496E911FC120DF550D970EAAF9283E035872C4D4C504A62DAF8E041B41C0B9BA748C0B72B5C1FC37E24C6A21D3A84B957C8314FC6B8F60D7549
SSDEEP 1536:n82F4a17WLM0b6ceyQSMtPxrbyeJQ9Hb+Q87GL:GMSbb6ceyQSqPhbyey9HbZsc
IMP 9D464B447DF46291EB6A4C620F90B53E
PESHA1 D88349A0F3E2605F5BE1590DA931161DE792F7A1
PE256 3B2E9C2A1B3DE8335CB321A26C5BD4F161AFB24809BA1EFD1C7042F254CE7DA4

DLL Exports:

Function Name Ordinal Type
ServiceMain 1 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: DevQueryBroker.dll.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/66
  • VirusTotal Link: https://www.virustotal.com/gui/file/eabf953864c0ae4fb6426c0b7e92dd81ee4a8852081f9d2ea02b61d4c8db6188/detection/

MIT License. Copyright (c) 2020 Strontic.