MitigationConfiguration.dll

  • File Path: C:\Windows\SysWOW64\MitigationConfiguration.dll
  • Description: Exploit Guard Configuration Helper

Hashes

Type Hash
MD5 43ED5C2C52280C7AE36DA12C0DD759AF
SHA1 E8E87F079C24BA45FB899375C9BBB7D192B9207E
SHA256 80BCB979A366418D77FA13849CE2AEF9CCCBF88897B134EB55E3C7FA09DB1E17
SHA384 B6358FA98C2CC24819D128C2315BE2E5559D888EA6B8B66EEC69ACCB0281651FBB3C2FCEB3782F351A70B7A202CD505C
SHA512 8BE52A998B65E5B8891B558EA41E0ACED8DD2023AA6D95C05466F442D9B5B8168962FCFE74D4930CC7531A0B01BEB044B97445831C63BEEA2302FAD3E8B16D22
SSDEEP 1536:89kcT/8Bhw2Aa2NFPWbAEFfH+Elar2rcxBEqA2UJ3FD8+b0t/boqJ6rT:hcT/8BhtAfHWsENH+ElMzdMq
IMP D9543A80DAE3B2914BA01F1388435FA3
PESHA1 287E3847F31EC7A23BF1CEB822F72AD92CDA7C22
PE256 6E5758BDB819F9D4E420E84A6BDB1C2D140A1C51C45A793BBE13585C77683100

DLL Exports:

Function Name Ordinal Type
ImportMitigation 6 Exported Function
ExportMitigation 5 Exported Function
ValidateXMLFromManaged 8 Exported Function
ValidateXML 7 Exported Function
DllGetClassObject 2 Exported Function
DllCanUnloadNow 1 Exported Function
DllUnregisterServer 4 Exported Function
DllRegisterServer 3 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: MitigationConfiguration.dll
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/70
  • VirusTotal Link: https://www.virustotal.com/gui/file/80bcb979a366418d77fa13849ce2aef9cccbf88897b134eb55e3c7fa09db1e17/detection/

MIT License. Copyright (c) 2020 Strontic.