basesrv.dll

  • File Path: C:\Windows\system32\basesrv.dll
  • Description: Windows NT BASE API Server DLL

Hashes

Type Hash
MD5 522F9EFF8C957F906154B91A8DA698AE
SHA1 032883DB1832F2D5960D8059906C4B30CD2A46AA
SHA256 FCB686BB58782506BA6A8C4F924B0872608249091C8FF9DD7129D0146ACC2BFE
SHA384 0F122E145E5E9982B7A6FBBA072B988F9F4C079C628955A897D1DA90545426E2B764A2D3E3908D896ACD9E8E090069E4
SHA512 7B4AACAD6F29BBD644853B3E5EE43E4CDB46FEB71966B95D1EC5F4E54A43A88D875C12E355D38550C6AEDB6CD45DAA050C27AEDD07D7AA35B3FC58DD69AAA4D2
SSDEEP 1536:g1WqsKBLpDeobwliUTGIyTi4RYHDg91FV11P76D0bN3z:g1trZpD5HOGmRHDS1FV11P7m0blz
IMP 57BC05D3E17857558DEE5D41FF63FFD8
PESHA1 8B4180C702F31A94DC1A8CA5208F023D044186CA
PE256 F3F8681102D3AE385E03C59D2E31AE2AF9B7F7940F244A238ADEAF878BA6C911

DLL Exports:

Function Name Ordinal Type
BaseSrvNlsUpdateRegistryCache 4 Exported Function
BaseSrvRegisterSxS 5 Exported Function
ServerDllInitialization 6 Exported Function
BaseGetProcessCrtlRoutine 1 Exported Function
BaseSetProcessCreateNotify 2 Exported Function
BaseSrvNlsLogon 3 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: basesrv
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/72
  • VirusTotal Link: https://www.virustotal.com/gui/file/fcb686bb58782506ba6a8c4f924b0872608249091c8ff9dd7129d0146acc2bfe/detection/

MIT License. Copyright (c) 2020 Strontic.