esevss.dll

  • File Path: C:\Windows\system32\esevss.dll
  • Description: Microsoft(R) ESENT shadow utilities

Hashes

Type Hash
MD5 7E40924D76F0B0F505A436FC692FC129
SHA1 5B5D1292F8AF7601A4B62A26EEDBD58347FFBCC0
SHA256 A90C0F62E325EFABC4C6CB5DF54686C12C6EB2F29479047299C1564A140F314A
SHA384 1C3FDD5B687333D670CF7B359AC7195960A45FF2DF7BD92C74F836C20A621FB0410DB00C05702B67DDCAAC40DBD6CDD4
SHA512 DBA4C0562133C1099912831E2A996AB359E29D9C8FDF74E4D53C927BAFF8AEE3B5F14CFA406A10EE4A4B548292FF5D07B728FE303E1428A064BC66C7DCDEF236
SSDEEP 768:n13CX2Tv++q36J2y/O2zDWvq/lTBiAK4+izi8sEI:n1SmS+qg35/ldiAKbizi8sEI
IMP 8514B56B350970C23D3D492B72396449
PESHA1 451BA4BE1EC19DEDEF8A4E63415637DE291B4211
PE256 BECE2E495E45102195CDE2942125B852EA656BF6134AD389243C096F33F27E75

DLL Exports:

Function Name Ordinal Type
EseShadowPurgeShadow 6 Exported Function
EseShadowMountSimpleShadow 5 Exported Function
VssIdToString 8 Exported Function
EseShadowTerm 7 Exported Function
EseShadowCreateSimpleShadow 2 Exported Function
EseShadowCreateShadow 1 Exported Function
EseShadowMountShadow 4 Exported Function
EseShadowInit 3 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 330000026551AE1BBD005CBFBD000000000265
  • Thumbprint: E168609353F30FF2373157B4EB8CD519D07A2BFF
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: esevss
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/72
  • VirusTotal Link: https://www.virustotal.com/gui/file/a90c0f62e325efabc4c6cb5df54686c12c6eb2f29479047299c1564a140f314a/detection/

MIT License. Copyright (c) 2020-2021 Strontic.