UIManagerBrokerps.dll

  • File Path: C:\Windows\system32\UIManagerBrokerps.dll
  • Description: Microsoft UIManager Broker Proxy Stub

Hashes

Type Hash
MD5 85A9DDAE9A1EB6DDB6C76FE5FA1D289F
SHA1 17C91B1682CB38C2F0CFB3DA8D0A75D7B6AD8CE5
SHA256 D6A3C112D8B8DB35DF41370B6A90DB8EC5C513E19ABBF01735DFCA990DB51279
SHA384 D927CD1A802515BAD2412AAA9B4837B141B67B8D0689D89A22A6E80286CF44E33913652F357862961B54AAABA6721939
SHA512 96755D0863818B3F410B786C735B7E1265D504CC748CDDA0DE1C920E4CB9089EDBDAB8C47A8E6041D377A9EB35D6271D423E767F41AB623D7C435B96908E7F71
SSDEEP 192:OSIj0hgjseuDrq5o1EohMjAe7pdrUEcCYPW272Wu:LgYeiaol2vrNYPW272W
IMP 01ACE9B00300277141032492DC1F3A90
PESHA1 96CF79866BBF005F517F1A14AFC0A8CDAF2C62CD
PE256 BD889DFF3DD232F8CA63415F5D8EC6DF0FE2D2D6A0CD7A1C81C8C3360D256055

DLL Exports:

Function Name Ordinal Type
DllUnregisterServer 4 Exported Function
GetProxyDllInfo 5 Exported Function
DllRegisterServer 3 Exported Function
DllCanUnloadNow 1 Exported Function
DllGetClassObject 2 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 330000026551AE1BBD005CBFBD000000000265
  • Thumbprint: E168609353F30FF2373157B4EB8CD519D07A2BFF
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: uimanagerbrokerps.dll
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.388 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.388
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/71
  • VirusTotal Link: https://www.virustotal.com/gui/file/d6a3c112d8b8db35df41370b6a90db8ec5c513e19abbf01735dfca990db51279/detection/

File Similarity (ssdeep match)

File Score
C:\Windows\system32\amsiproxy.dll 41
C:\Windows\system32\cfmifsproxy.dll 33

MIT License. Copyright (c) 2020 Strontic.