dabapi.dll
- File Path:
C:\Windows\system32\dabapi.dll
- Description: Desktop Activity Broker API
Hashes
Type |
Hash |
MD5 |
541D8388D9DD30190AAB2EE2D27BEAE7 |
SHA1 |
50FA955FAD55F9076776ED00EA2B2F6E24D43E6D |
SHA256 |
ED85B2181F355168862C34C545B56DCBF8A1C62386907E00EE857F24422B86DC |
SHA384 |
60809676AF8622DEF0476D370BC4008C30D32638A631E637848252723EF5B58C3E208ACB8CE57A5C29A7038749A382B5 |
SHA512 |
6E9405344EE1F063808298C57065DF24607D5400B9F084F846B96E2B47E18937D837FE0BD5521011FAC52741A52221E23F74130B4AE3C335C39718C72E638D58 |
SSDEEP |
192:1ap/noVovE+qNRCG8o7mPf+CsMACO15ESfU6IAdHW++WK:1KoVovE+qNAG8+meD1XfU6pW++W |
IMP |
3DD6B201DFC2EC61FCA88019E8A7AD31 |
PESHA1 |
E32CCDC1492E00363F6FDCCD23C45B41F67FB678 |
PE256 |
2D84612C4BC62B47E628230D754B0B856DCFBB8C5045347876211A861CD63BBE |
DLL Exports:
Function Name |
Ordinal |
Type |
DabRegisterTriggerConsumer |
3 |
Exported Function |
DabUnregisterTriggerConsumer |
4 |
Exported Function |
DabApiBufferFree |
1 |
Exported Function |
DabGetLastScheduledRunTime |
2 |
Exported Function |
Signature
- Status: Signature verified.
- Serial:
3300000266BD1580EFA75CD6D3000000000266
- Thumbprint:
A4341B9FD50FB9964283220A36A1EF6F6FAA7840
- Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Original Filename: dabapi.dll.mui
- Product Name: Microsoft Windows Operating System
- Company Name: Microsoft Corporation
- File Version: 10.0.19041.1 (WinBuild.160101.0800)
- Product Version: 10.0.19041.1
- Language: English (United States)
- Legal Copyright: Microsoft Corporation. All rights reserved.
- Machine Type: 64-bit
File Scan
- VirusTotal Detections: 0/71
- VirusTotal Link: https://www.virustotal.com/gui/file/ed85b2181f355168862c34c545b56dcbf8a1c62386907e00ee857f24422b86dc/detection/
MIT License. Copyright (c) 2020-2021 Strontic.