Windows.StateRepositoryPS.dll

  • File Path: C:\Windows\SysWOW64\Windows.StateRepositoryPS.dll
  • Description: Windows StateRepository Proxy/Stub Server

Hashes

Type Hash
MD5 41D01A7B69DB66898F3780E3184AF448
SHA1 1B055666807E8856332BF60CFC9BDC8A400C8CDA
SHA256 CC35E4F3F0AFFC0C3B6107FB041AAD01528E6B5CC4BB691DB200FF7596BC79DB
SHA384 9800DBA87A329D4642C88A4C35235494BC5E19121D2BEF02AF335F9A3C7A160F0FFBBFBA872C4405ED09E1204828E7A0
SHA512 08E74E093D88A98A570520FDA930BED946A3D9B35428827B595EA7F1D1459A2943EB780456415713117B46F911888037DAF9CF63F68A489C3E1F20C80C02F903
SSDEEP 3072:vmUnLXI11zYjv+x2v6KwhtaaBtJThB7ryuVKUm2Nl56/iEKzLepZb7SmIKdRwA:FzI1cvstaaBtJTj+jdR/
IMP EDE64A9585285F1ECFE7244992F4C65D
PESHA1 5E89674F3EC979A7FF48D50619C423783DC3DF9C
PE256 44E9A4B1E504F35BAB738B8C5C06339C802185E35B8D56BF191410BA33789026

DLL Exports:

Function Name Ordinal Type
DllGetClassObject 2 Exported Function
DllCanUnloadNow 1 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 330000026551AE1BBD005CBFBD000000000265
  • Thumbprint: E168609353F30FF2373157B4EB8CD519D07A2BFF
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: Windows.StateRepositoryPS.dll
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.508 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.508
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/69
  • VirusTotal Link: https://www.virustotal.com/gui/file/cc35e4f3f0affc0c3b6107fb041aad01528e6b5cc4bb691db200ff7596bc79db/detection/

MIT License. Copyright (c) 2020-2021 Strontic.