Windows.StateRepositoryBroker.dll

  • File Path: C:\Windows\system32\Windows.StateRepositoryBroker.dll
  • Description: Windows StateRepository API Broker

Hashes

Type Hash
MD5 A64B7767B365E197EF081CAB9786416A
SHA1 ECDFEE969CC136ABBE322528C0FADC1182A0B282
SHA256 E118BC83A867842D9CF05DE2543DC7F97A25FEDDEB64C897408071FA1B5989A2
SHA384 39A509DDF6910BD15C5D70E5C1327E870CA653DDA0F4D9FFA53813577930A56F111D46AC160DBB18C6C46968CF067BC4
SHA512 AD3FCF7447C1334FB48C1AC49BB834DA3C06F6D3F83665AEDEA3B648C619E286F9983CA722C74FC1F31775B5654FB6CE555FFA9234DD62B77D152D876098014E
SSDEEP 3072:H9EKZlEqQ6HXdSxHPXVH49bQs5WtZyj2AYS+nK6O1L/VkOxUT8:yKZlEv6HXm7A
IMP BC551E643CDCB2ADBFE881F80EFBE994
PESHA1 A82C4F9118019B8BB05A31BB61726D5782228B85
PE256 CE73DC39759D7E95E2397DCD728B52DEDA0AC78E98981CFBB5F21729145EBA37

DLL Exports:

Function Name Ordinal Type
DllGetClassObject 3 Exported Function
DllGetActivationFactory 2 Exported Function
DllCanUnloadNow 1 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: Windows.StateRepositoryBroker.dll
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.508 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.508
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/66
  • VirusTotal Link: https://www.virustotal.com/gui/file/e118bc83a867842d9cf05de2543dc7f97a25feddeb64c897408071fa1b5989a2/detection/

File Similarity (ssdeep match)

File Score
C:\Windows\system32\Windows.StateRepositoryClient.dll 54
C:\Windows\SysWOW64\Windows.StateRepositoryBroker.dll 60
C:\Windows\SysWOW64\Windows.StateRepositoryClient.dll 47
C:\Windows\SysWOW64\Windows.StateRepositoryUpgrade.dll 29

MIT License. Copyright (c) 2020 Strontic.