KernelTraceControl.dll

  • File Path: C:\Windows\system32\DiagSvcs\KernelTraceControl.dll
  • Description: Performance Analyzer Kernel Tracing Control Library

Hashes

Type Hash
MD5 4580ECB197F49BA82C93345CA3CFF1DC
SHA1 B83AF0D29C82B968FADFE0F62444CCAC9DC10922
SHA256 0D93FDCBFD5612C1FB58D3E2CD655966743613E111CF212A10EE974A605F0D08
SHA384 2DF857CB25B05F64295DB19F672F9B205CE2AFF09335B84D9638A2819966F0B1885127CD3082EB9FC777EB24B258B393
SHA512 ABB6EFFEC3ACCC54FDEE69372F4504326821D50CD2C96939D4CEA7481D2E26F4E5D4EA39849DA1C6CEACB5A07F76EE110CA3D79F101D83E7E9107D23891A9CAA
SSDEEP 3072:OnZc8vL6fVmh82bEFxt1Wt1hC3l+gOw/lRGeHtiGv18S5OFSuO+m1tMaqkfX:HIzh8FrQ3+EgOwdRGeNiIKS5bZPMof
IMP 48DD3F4729EBB37F62612D1EFF746738
PESHA1 44AFB87B3D9B367BC70803A77857AD24A6FC9D19
PE256 8740105F84AA7B0E4EF68CCAC3B1EBF1B52EDD71FAD696CF3F1329461D39BDF9

DLL Exports:

Function Name Ordinal Type
StartKernelTrace 4 Exported Function
UpdateHeapTrace 5 Exported Function
StartHeapTrace 3 Exported Function
CreateMergedTraceFile 1 Exported Function
DllCanUnloadNow 2 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: KernelTraceControl.dll
  • Product Name: Microsoft Windows Performance Analyzer
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.508 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.508
  • Language: English (United States)
  • Legal Copyright: 2019 Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/68
  • VirusTotal Link: https://www.virustotal.com/gui/file/0d93fdcbfd5612c1fb58d3e2cd655966743613e111cf212a10ee974a605f0d08/detection/

File Similarity (ssdeep match)

File Score
C:\Program Files (x86)\Windows Kits\10\Windows Performance Toolkit\kerneltracecontrol.dll 88

MIT License. Copyright (c) 2020 Strontic.