PSEvents.dll

  • File Path: C:\Windows\system32\WindowsPowerShell\v1.0\PSEvents.dll
  • Description: Microsoft PowerShell Crimson log Message Dll

Hashes

Type Hash
MD5 357ABB61966FE756F256C8A32694A95C
SHA1 B101E8181FCDA5142AB4C58FC461C0756B948A43
SHA256 87499745D178435206972E91F96C317B4D46829F39E91635949BC98D47BC280B
SHA384 67FBEBA67986985B7A210D15407F00F551BCBD916EF6DE3B2C988C424609FC64C952C319558D1D94A447087D27291459
SHA512 5E183711826090EE74A9E4FD4180256EC11E8D67C0D057581CE8E0EEF654EE1F4763C4C229FB64D4B60F655B9078D7CC424A271B4A46EF0FF16AF09D057D31EB
SSDEEP 1536:95BBAbK0FNF39Vh3Q530O/VXIpJhODn58awXdA35XauG28nk3BNijH8N:95BBApTx9Vh3Q530O/VXIpJhODn58awy
IMP n/a
PESHA1 DA89B460C0951EE34A080A8CB3BF4E869CB6A133
PE256 BA53A396EEEC0978D66945758EC593D1D748D71EA817C5320660809816C1EA16

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: PSEvents.DLL.MUI
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/71
  • VirusTotal Link: https://www.virustotal.com/gui/file/87499745d178435206972e91f96c317b4d46829f39e91635949bc98d47bc280b/detection/

File Similarity (ssdeep match)

File Score
C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PSEvents.dll 99

MIT License. Copyright (c) 2020 Strontic.