FdDevQuery.dll

  • File Path: C:\Windows\system32\FdDevQuery.dll
  • Description: Microsoft Windows Device Query Helper

Hashes

Type Hash
MD5 870A1EEC14E71416B2E438812B250ED8
SHA1 983D1E7F8981BA67B40D883EEEC658CAEC3CCF49
SHA256 32C819F0276C6C8512E6FA6D2794E992B69D216818E5EDAAA4BD11C963FBE843
SHA384 3D379ED0C759885541B2F4ECF23887BCDC36911AA913AE98DE494D89E800D68E1F5704F870140D197132FB69039AD5C6
SHA512 EBB9CDAEA12FBE0E8ED795AEE2CBD66B87E4595E20B409BE444FCAD8397E7E97D822BDC8896BF97184414C58F1F7ABB281F83CF4CB8F3E59B1AB1325B073CEB5
SSDEEP 768:YH19c/CRl89hQiPj83wg2PsnPFbfXoMTKCfYvmai:W1BRy35dgRZXo6KCfYvma
IMP 7B75B6E535E64CC0CE439600479EB82B
PESHA1 F4707AACFDD040AD92F58B99FBF21CBF141D068E
PE256 CBAFB3E65B77BDF7C0FDD1320941FFF10BC60C24B87EECDCF3B3719208C3C6B3

DLL Exports:

Function Name Ordinal Type
DllGetClassObject 2 Exported Function
DllCanUnloadNow 1 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: DevQueryHelper.DLL
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/72
  • VirusTotal Link: https://www.virustotal.com/gui/file/32c819f0276c6c8512e6fa6d2794e992b69d216818e5edaaa4bd11c963fbe843/detection/

MIT License. Copyright (c) 2020 Strontic.