api-ms-win-core-synch-l1-2-0.dll

  • File Path: C:\Program Files\Common Files\microsoft shared\ClickToRun\api-ms-win-core-synch-l1-2-0.dll
  • Description: ApiSet Stub DLL

Hashes

Type Hash
MD5 B9BC664A451424342A73A8B12918F88D
SHA1 C65599DEF1E69AED55EA557847D78BB3717D1D62
SHA256 0C5C4DFEA72595FB7AE410F8FA8DA983B53A83CE81AEA144FA20CAB613E641B7
SHA384 1B2FA02EC7A29FEB7D7BE0D9F09670D525045B94F53380D1709B9F8F3C80C3460A418533014518F7E57D80933FED5751
SHA512 FE3F393FD61D35B368E42C3333656298A8243BA91B8242EE356950F8925317BF32CE4F37670B16A5A5AB5091903E61AE9C49C03FDC5F93193F215A58D80B9311
SSDEEP 384:UtZ3zW2hWs7QA0GftpBjs8GGiAhll7PedGCg/X:A5yiq7GxkGP
IMP n/a
PESHA1 FCAC4DABE59ACA6F6871FA9063AFF47A79CE8287
PE256 808FB3F2D7194417CD25DB1B92C1D67B72CD8841392CF1992691BB6F5BD0D607

DLL Exports:

Function Name Ordinal Type
SleepConditionVariableSRW 12 Exported Function
WaitOnAddress 13 Exported Function
Sleep 10 Exported Function
SleepConditionVariableCS 11 Exported Function
WakeByAddressSingle 16 Exported Function
WakeConditionVariable 17 Exported Function
WakeAllConditionVariable 14 Exported Function
WakeByAddressAll 15 Exported Function
SignalObjectAndWait 9 Exported Function
InitializeConditionVariable 7 Exported Function
InitializeSynchronizationBarrier 8 Exported Function
DeleteSynchronizationBarrier 1 Exported Function
EnterSynchronizationBarrier 2 Exported Function
InitOnceExecuteOnce 5 Exported Function
InitOnceInitialize 6 Exported Function
InitOnceBeginInitialize 3 Exported Function
InitOnceComplete 4 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 330000010A2C79AED7797BA6AC00010000010A
  • Thumbprint: 3BDA323E552DB1FDE5F4FBEE75D6D5B2B187EEDC
  • Issuer: CN=Microsoft Code Signing PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Corporation, OU=MOPR, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: apisetstub
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.10240.16384 (th1.150709-1700)
  • Product Version: 10.0.10240.16384
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/67
  • VirusTotal Link: https://www.virustotal.com/gui/file/0c5c4dfea72595fb7ae410f8fa8da983b53a83ce81aea144fa20cab613e641b7/detection/

File Similarity (ssdeep match)

File Score
C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\agcp.exe 35
C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework.NETFramework\v4.8\Microsoft.VisualC.dll 36
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x64\Microsoft.Azure.KeyVault.Core.dll 32
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x64\Microsoft.WindowsAzure.Configuration.dll 30
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\Microsoft.Azure.KeyVault.Core.dll 32
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\Microsoft.WindowsAzure.Configuration.dll 30
C:\Program Files\Microsoft Silverlight\5.1.50918.0\agcp.exe 30
C:\WINDOWS\system32\microsoft.windows.softwarelogo.showdesktop.exe 30
C:\Windows\system32\mrt_map.dll 25
C:\Windows\system32\mrt100.dll 29
C:\WINDOWS\system32\TsWpfWrp.exe 29
C:\Windows\system32\TsWpfWrp.exe 25
C:\Windows\SysWOW64\mrt_map.dll 25
C:\Windows\SysWOW64\mrt100.dll 25
C:\WINDOWS\SysWOW64\TsWpfWrp.exe 29
C:\Windows\SysWOW64\TsWpfWrp.exe 24

MIT License. Copyright (c) 2020 Strontic.