cmdext.dll

  • File Path: C:\Windows\SysWOW64\cmdext.dll
  • Description: cmd.exe Extension DLL

Hashes

Type Hash
MD5 673404B94F3051C617990853523446F1
SHA1 69F4B4773FADC640FF6E68E21ED66CBC1171A193
SHA256 FA58576A17B8F7B0E0BC9AA9427D9BF71427B8D91CFA3809221D7D9591A7BE92
SHA384 588D90A257776E4BCBE3CE6A4EBD2F3467AF7703861F36288DFC3B149277DFC87F4AD435DA0898B9652436327CB6B93E
SHA512 BA3C03188C6EF96EE0BACF428B767CC4977DD820F048D8FFA5EF6C609EE5F56E6A9B79ACB486342C11F18504EF3E41BCEB026BF018A2819CFBA8A4991F113DBD
SSDEEP 384:PARWUklDipcR73tFj9I10EVoiCcNVGAhFTWe2jeWf:PAghJrFjU5Ccrx2jf
IMP 98D721C1CCB004B6181DE7B87331B3D4
PESHA1 9CF9B2B19699B3FE90BBB83B73FCD3B2A763AAF1
PE256 119BBEF6B5FE24F4F31FD10FA85F1B9DC87BE28179D09B9B6C7649320D0E4B6C

DLL Exports:

Function Name Ordinal Type
SaferWorker 10 Exported Function
QueryFullProcessImageNameWStub 9 Exported Function
MessageBeepStub 8 Exported Function
ShellExecuteWorker 11 Exported Function
WNetGetConnectionWStub 14 Exported Function
WNetCancelConnection2WStub 13 Exported Function
WNetAddConnection2WStub 12 Exported Function
FindFirstStreamWStub 3 Exported Function
DoSHChangeNotify 2 Exported Function
CmdBatNotificationStub 1 Exported Function
FindNextStreamWStub 4 Exported Function
LookupAccountSidWStub 7 Exported Function
GetVDMCurrentDirectoriesStub 6 Exported Function
GetBinaryTypeWStub 5 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: CmdExt.DLL
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/69
  • VirusTotal Link: https://www.virustotal.com/gui/file/fa58576a17b8f7b0e0bc9aa9427d9bf71427b8d91cfa3809221d7d9591a7be92/detection/

MIT License. Copyright (c) 2020-2021 Strontic.