Windows.StateRepositoryPS.dll

  • File Path: C:\Windows\system32\Windows.StateRepositoryPS.dll
  • Description: Windows StateRepository Proxy/Stub Server

Hashes

Type Hash
MD5 EB6F45B7FD59A2E769F684708B8331BE
SHA1 80852333F59DBB3BF04A2CB514B2F4A2DBF679E7
SHA256 557CCA430C95DCCE9C3A5E6A7CCE1EF3F9D6C41AED0EBC999C6901B643FC68E7
SHA384 C8B3EA0186C0BC1652A5E321983BC6754F09FCAD04BAC61F48FEB8288468FC580368E4A878C7A1A9B18F79AAD6B9F366
SHA512 CDFA951D586C071392C7F4F0EFF85671CA1AECF6F3CE70944681FC89B31637342146718C3E64BE366EF1F51A5500E559B3ECE5C780E52533A92878BC9EA38F6F
SSDEEP 6144:11w9HrAFK5BDJ2qpcbcNc9cNLcZcccfcOVcJOcKc2JclcJvcJEc1csc9cnhc0cEp:U9Hrvcq2GQsG
IMP 94E9AF73049FE96BAE2C0B75E2DAF79C
PESHA1 3C00DBBD809C3514EB1D3328BCA98F9D3EB436AF
PE256 9E6DC93B98D60CDC613C17B738DA99D4BD0A7D4ABBC2C83062AB1870DD50C8F1

DLL Exports:

Function Name Ordinal Type
DllGetClassObject 2 Exported Function
DllCanUnloadNow 1 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: Windows.StateRepositoryPS.dll
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.508 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.508
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/66
  • VirusTotal Link: https://www.virustotal.com/gui/file/557cca430c95dcce9c3a5e6a7cce1ef3f9d6c41aed0ebc999c6901b643fc68e7/detection/

MIT License. Copyright (c) 2020-2021 Strontic.