dabapi.dll

  • File Path: C:\Windows\system32\dabapi.dll
  • Description: Desktop Activity Broker API

Hashes

Type Hash
MD5 541D8388D9DD30190AAB2EE2D27BEAE7
SHA1 50FA955FAD55F9076776ED00EA2B2F6E24D43E6D
SHA256 ED85B2181F355168862C34C545B56DCBF8A1C62386907E00EE857F24422B86DC
SHA384 60809676AF8622DEF0476D370BC4008C30D32638A631E637848252723EF5B58C3E208ACB8CE57A5C29A7038749A382B5
SHA512 6E9405344EE1F063808298C57065DF24607D5400B9F084F846B96E2B47E18937D837FE0BD5521011FAC52741A52221E23F74130B4AE3C335C39718C72E638D58
SSDEEP 192:1ap/noVovE+qNRCG8o7mPf+CsMACO15ESfU6IAdHW++WK:1KoVovE+qNAG8+meD1XfU6pW++W
IMP 3DD6B201DFC2EC61FCA88019E8A7AD31
PESHA1 E32CCDC1492E00363F6FDCCD23C45B41F67FB678
PE256 2D84612C4BC62B47E628230D754B0B856DCFBB8C5045347876211A861CD63BBE

DLL Exports:

Function Name Ordinal Type
DabRegisterTriggerConsumer 3 Exported Function
DabUnregisterTriggerConsumer 4 Exported Function
DabApiBufferFree 1 Exported Function
DabGetLastScheduledRunTime 2 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: dabapi.dll.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/71
  • VirusTotal Link: https://www.virustotal.com/gui/file/ed85b2181f355168862c34c545b56dcbf8a1c62386907e00ee857f24422b86dc/detection/

MIT License. Copyright (c) 2020-2021 Strontic.