devrtl.dll

  • File Path: C:\Windows\SysWOW64\devrtl.dll
  • Description: Device Management Run Time Library

Hashes

Type Hash
MD5 7C6A67F7CFE8126DA0D353E886456DDE
SHA1 C47EA2D29F509F373E6F2061293B1866662E3CCC
SHA256 F47486A86F99FCEF49BA07754791B816628CE01E0BFF7CDB43113A4C833350F2
SHA384 317DA078C236ABE4D037CF17FAC9C83C8F2E96765F943C55F96E5524E7B42A2B46E4D30F2C3E079D3B84D98DC38B36D6
SHA512 10A9FD140441386873E546EB2DEF368A733F9D0728A01B3EB7D630309E72D6FD3C5F7EB22F38570A8D40D60195233969E395D08328884E23FEC70FB9143B3C5C
SSDEEP 1536:RHdIv7KvbJ9rf5wky9KtwPxl8+z7Ho5sbcstLowwW:RH2vWFRRSKal7I5Mjsw1
IMP E7BF0041311B44A682D0A2B5277CC7F5
PESHA1 55AC35EFBFC8AA015A4F9CF77267B4C4AE9990A1
PE256 7FA0A3F2F7953B045B68DD552245ED27C11F0CB7283D37AB2E9C0FDF341C2F91

DLL Exports:

Function Name Ordinal Type
NdxTableGetPropertyValue 20 Exported Function
NdxTableNextObject 21 Exported Function
NdxTableObjectFromName 22 Exported Function
NdxTableGetPropertyTypeName 19 Exported Function
NdxTableGetObjectTypeName 16 Exported Function
NdxTableGetPropertyTypeClass 17 Exported Function
NdxTableGetPropertyTypeCount 18 Exported Function
NdxTableSetObjectPointer 27 Exported Function
NdxTableSetPropertyValue 28 Exported Function
NdxTableSetTypeDefinition 29 Exported Function
NdxTableRemoveObjectFromList 26 Exported Function
NdxTableObjectFromPointer 23 Exported Function
NdxTableOpen 24 Exported Function
NdxTableRemoveObject 25 Exported Function
NdxTableGetObjectTypeCount 15 Exported Function
DevRtlSetThreadLogToken 5 Exported Function
DevRtlWriteTextLog 6 Exported Function
DevRtlWriteTextLogError 7 Exported Function
DevRtlGetThreadLogToken 4 Exported Function
DevRtlCloseTextLogSection 1 Exported Function
DevRtlCreateTextLogSectionA 2 Exported Function
DevRtlCreateTextLogSectionW 3 Exported Function
NdxTableFirstObjectInList 12 Exported Function
NdxTableGetObjectName 13 Exported Function
NdxTableGetObjectType 14 Exported Function
NdxTableFirstObject 11 Exported Function
NdxTableAddObject 8 Exported Function
NdxTableAddObjectToList 9 Exported Function
NdxTableClose 10 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: DEVRTL.DLL
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/69
  • VirusTotal Link: https://www.virustotal.com/gui/file/f47486a86f99fcef49ba07754791b816628ce01e0bff7cdb43113a4c833350f2/detection/

MIT License. Copyright (c) 2020-2021 Strontic.