biwinrt.dll
- File Path:
C:\Windows\SysWOW64\biwinrt.dll
- Description: Windows Background Broker Infrastructure
Hashes
Type |
Hash |
MD5 |
980BE94F3B0AC968B984D266BFC84379 |
SHA1 |
E7B5833F8346F5D1C40205E6C2DBAAD3C9BD684B |
SHA256 |
328F6DA6307D72C27766D2EA7C7AABA9899A9D2C144363949E40BEB8448D8241 |
SHA384 |
CEFA20FCCCE42FBBDEDA31B3D5B53A685A1193BBD1D904B4F820FCD03BD6DDC2CEEF13E6D7A0D4DF004606555B307E33 |
SHA512 |
ADD56C0D7B45414ED8F077BE2981C46607B50633614EA66063CD98280703A59C0B1B533303CCDFD6F90F9162DEF0EA1CE65723BB0190E12FFCCF661DED5A1C2D |
SSDEEP |
3072:4JBlxN0SWSGwtM3HpLV9xsdRqCY1ZYeqMRPCt1WkzHpC9VPXl3hADkentP2qxk/:C4RXclYmt1NbpkXxhA43qxo |
IMP |
88C7A6A3A160482485B6ABBBD34C1FE0 |
PESHA1 |
76E0B0E7F15400150EA0E2BDD5D087B855BEADE2 |
PE256 |
79A6B7FA8E23709791E0AB5C8924C5F7360CB0C850A51BD90EA7E36D5318461D |
DLL Exports:
Function Name |
Ordinal |
Type |
DllCanUnloadNow |
1 |
Exported Function |
BiRtRegisterWorkItemClsid |
11 |
Exported Function |
DllGetActivationFactory |
2 |
Exported Function |
DllMain |
4 |
Exported Function |
DllGetClassObject |
3 |
Exported Function |
BiRtRegisterWorkItem |
10 |
Exported Function |
BiRtDeleteEventForApp |
6 |
Exported Function |
BiRtCreateEventForApp |
5 |
Exported Function |
BiRtEnumerateBrokeredEvents |
7 |
Exported Function |
BiRtQueryBrokerEventId |
9 |
Exported Function |
BiRtIsValidActivationTypeForEventType |
8 |
Exported Function |
Signature
- Status: Signature verified.
- Serial:
330000026551AE1BBD005CBFBD000000000265
- Thumbprint:
E168609353F30FF2373157B4EB8CD519D07A2BFF
- Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Original Filename: biwinrt.dll
- Product Name: Microsoft Windows Operating System
- Company Name: Microsoft Corporation
- File Version: 10.0.19041.1 (WinBuild.160101.0800)
- Product Version: 10.0.19041.1
- Language: English (United States)
- Legal Copyright: Microsoft Corporation. All rights reserved.
- Machine Type: 32-bit
File Scan
- VirusTotal Detections: 0/69
- VirusTotal Link: https://www.virustotal.com/gui/file/328f6da6307d72c27766d2ea7c7aaba9899a9d2c144363949e40beb8448d8241/detection/
MIT License. Copyright (c) 2020-2021 Strontic.