LogProvider.dll

  • File Path: C:\Windows\system32\Dism\LogProvider.dll
  • Description: DISM Logging Provider

Hashes

Type Hash
MD5 9D7C01E7F5979760FD42751E868FC718
SHA1 80BBC7B633C92E71F031DCC7083F99B9478AF402
SHA256 1EA7533EE4CC3951041DFA74E70346D472FED2A4A2421A3F5E4B34D20441F8F8
SHA384 486E570386EDFA23DA74DDC938864534C6F7B86F8A1989556B4500C691212933DA1769906B69D6D52D31E7A83C4B900F
SHA512 CF6925ECF5726E96D40076D9F1AF09FC58C574B880F6970495388F5C2A92DC5E97F027009A2BF16C31FA4432A61BE1F0DABAE944D11A100D00162EEFC53B1EA8
SSDEEP 1536:Qv3L0dicBTSEQS9tq6I1kBBrfLU2HCtGW0MX0Igx7DAJoNUPRm:QfAiYTSEH/I1WCQW0MX0Igx7DAJoNU5m
IMP 8B6F5BC6B704F3D6078D4D00A7F0AA2D
PESHA1 A31CAB05A5C2106B5F197665A814D69B569A4C1F
PE256 B93A8493A6B7388ABD8E50F1FE40AA115A28E714AE976AC569F201C343A83B84

DLL Exports:

Function Name Ordinal Type
DllRegisterServer 4 Exported Function
DllUnregisterServer 5 Exported Function
DLLGetDISMProviderCLSID 1 Exported Function
DllCanUnloadNow 2 Exported Function
DllGetClassObject 3 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 330000026551AE1BBD005CBFBD000000000265
  • Thumbprint: E168609353F30FF2373157B4EB8CD519D07A2BFF
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: LogProvider.dll.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/72
  • VirusTotal Link: https://www.virustotal.com/gui/file/1ea7533ee4cc3951041dfa74e70346d472fed2a4a2421a3f5e4b34d20441f8f8/detection/

File Similarity (ssdeep match)

File Score
C:\Windows\SysWOW64\Dism\LogProvider.dll 47

MIT License. Copyright (c) 2020 Strontic.