ETWESEProviderResources.dll

  • File Path: C:\Windows\SysWOW64\ETWESEProviderResources.dll
  • Description: Microsoft ESE ETW

Hashes

Type Hash
MD5 F846B6B11133481FD61F52B5C300E3A6
SHA1 F5526BC727354632FB970FEA0C9A28D7957E1FBA
SHA256 0E984CAD7C74DC5AFAF4988A2714E7CE69CD4AA6C087265432E83C57E7CB808B
SHA384 7573F15BB0ED636E92BE8F81BC48ECB048B335C9DA0500155DFF1EEF00648C4259172A25454C12E89BB340905887F44E
SHA512 4DAA09F0594BD32A1221833BDEEEAF300296F5E7D3B320EA8A20169C834A9E5D7A2A35E4739CFCC41A2C1F42FA0FF5EA0A5CC4242ACB9E1C3BAC89AC5667EA3A
SSDEEP 1536:Rkb6Q6d/z+rhRE8aiSiejWPSRIjR8O73bXN5FMxC:RkxrhR6jWKRIjR823bXN5FM
IMP n/a
PESHA1 339F3CBCC7FC89C498A0CC671C55D91BD58B854C
PE256 B163CD58F626870C4E3753D7C8A22BE801E8A6213D15B181A74B81D7616D5533

Signature

  • Status: Signature verified.
  • Serial: 330000026551AE1BBD005CBFBD000000000265
  • Thumbprint: E168609353F30FF2373157B4EB8CD519D07A2BFF
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: EtwEseProviderResources
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/69
  • VirusTotal Link: https://www.virustotal.com/gui/file/0e984cad7c74dc5afaf4988a2714e7ce69cd4aa6c087265432e83c57e7cb808b/detection/

File Similarity (ssdeep match)

File Score
C:\Windows\system32\ETWESEProviderResources.dll 99

MIT License. Copyright (c) 2020 Strontic.