SessEnv.dll

  • File Path: C:\Windows\system32\SessEnv.dll
  • Description: Remote Desktop Configuration service

Hashes

Type Hash
MD5 4856CC4E3433A8FD246E8978A02653FA
SHA1 6B8653E8E4274A61DEF101EEE4C9988B6775BE64
SHA256 E3B6E15917C86EC95E9BB0EB206F17DD277CEEE1B00854A791BB23C7F6C06E2E
SHA384 7AA5DC16BA9558C065BE85875D48A0F058D9E09E4F4AD771EDE38E09614CD6967BE9147FFB0832366AEEFBF3B794FD64
SHA512 178507D1F7C89989BC7CA6032876979CC3FA54DC7E462898766932BD655EB05A24F763A53B2C349E80A8E2FA368B2DA55B230D6FA3217A13E0D6428A917617B6
SSDEEP 12288:IWfqAWhgyaznsf+WGO66Z7UBzoXD7aYnauG9EzxTbWxUF:Jahgyn+W06FUBSaYnpG98bWxUF
IMP BBC01E3D7112F341081B839EEB40FA11
PESHA1 B0381E320E26FA463EE87A88E3E14BFEFAD5FA45
PE256 0D8301696936E76E34D512D218CA7010DF22AE9BBD09DDC7D21784FA683ADC13

DLL Exports:

Function Name Ordinal Type
SvchostPushServiceGlobals 2 Exported Function
ServiceMain 1 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: SessEnv.DLL.MUI
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/67
  • VirusTotal Link: https://www.virustotal.com/gui/file/e3b6e15917c86ec95e9bb0eb206f17dd277ceee1b00854a791bb23c7f6c06e2e/detection/

MIT License. Copyright (c) 2020 Strontic.