esevss.dll

  • File Path: C:\Windows\SysWOW64\esevss.dll
  • Description: Microsoft(R) ESENT shadow utilities

Hashes

Type Hash
MD5 19A74A5FD7C004E5E08121728C8D8E9E
SHA1 5CDC22D245492A5B10E7A59D3801F5FA8DC716DF
SHA256 DCF9D0D5853916083C6B4DC2197179E4E684860484B24E6B3904F8E8A0D3B042
SHA384 140C2F4CB2C5A2F5F81A7124C7728EFC4B3A69473E3E450C033E1020198EBE42ACDE7648454FDA24DC2BFCA5CCB227AA
SHA512 794034521BBF73F4A9C8B1263B9363C1A44A757DF42BEED3FAB26FEDA3FD6FC2691D2348C59EE99CF211760DA2A407F19651FCCEF610A790273D5898D32B98F4
SSDEEP 384:/13htgaCA6U0/8fqVDzdIDrES5jNcWr06IHTDc1kG+IitRB6/8IWwFWW3Zyq:dzBCA6I+DzqDYS5TyHTIutW8ywq
IMP 5981FB8E80F95AD8097DA03EA6FBE9CB
PESHA1 2BA5A4A9327D16DCC61A2F634CE3C7E93BE795AB
PE256 7BB3555CEF33148A283990C1266D57473292FC189111D6D9709A3D97857601C7

DLL Exports:

Function Name Ordinal Type
EseShadowPurgeShadow 6 Exported Function
EseShadowMountSimpleShadow 5 Exported Function
VssIdToString 8 Exported Function
EseShadowTerm 7 Exported Function
EseShadowCreateSimpleShadow 2 Exported Function
EseShadowCreateShadow 1 Exported Function
EseShadowMountShadow 4 Exported Function
EseShadowInit 3 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 330000026551AE1BBD005CBFBD000000000265
  • Thumbprint: E168609353F30FF2373157B4EB8CD519D07A2BFF
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: esevss
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/68
  • VirusTotal Link: https://www.virustotal.com/gui/file/dcf9d0d5853916083c6b4dc2197179e4e684860484b24e6b3904f8e8a0d3b042/detection/

MIT License. Copyright (c) 2020-2021 Strontic.