ifsutilx.dll
- File Path:
C:\Windows\system32\ifsutilx.dll
- Description: IFS Utility Extension DLL
Hashes
Type |
Hash |
MD5 |
27A7213091CDA31E84967BEAD4D29BD1 |
SHA1 |
E705E0FD25167C8CDAF984F067E3BDF4BE8558D3 |
SHA256 |
42214053995B6188B2E20935CA8C92AF77639F0D5541A132920A5CBA2CFCBDE6 |
SHA384 |
8C0DA602EB7606A3C305FDDB4EC99506EE9A7C9986979261A89C386F4E31EDC7C151CEBE332C2AFDBEF610735E1BE901 |
SHA512 |
A16EE540CAD2661F3D31071AED3B2F30EA5C0F068F51A350EF693FB83DF30CE97EA4701714091ED0EF4A0806D908D93691BEB0D8060B5EC73F62422477C8F3CE |
SSDEEP |
192:peIxDV4pntj/Hi3SbYMS9HERLChPjuARtNlvJy7VfYN7EcX2D1WsZW:peIxp4pntja35JExChjhtWYNZ2xWsZW |
IMP |
F0120248CC8015539D8AAF42F8D64A47 |
PESHA1 |
F183EA5107F0C4A2DC26555E6C0D1921619A5406 |
PE256 |
02222BCA8030B0CFA8510FCBB5C71C113040AD70BEC0109F2B97705676C4E928 |
DLL Exports:
Function Name |
Ordinal |
Type |
InitializeCOM |
4 |
Exported Function |
ReleaseVolumeSnapshot |
5 |
Exported Function |
UninitializeCOM |
6 |
Exported Function |
CheckSnapshotPresence |
1 |
Exported Function |
CreateVolumeSnapshot |
2 |
Exported Function |
GetSnapshotErrorMessage |
3 |
Exported Function |
Signature
- Status: Signature verified.
- Serial:
3300000266BD1580EFA75CD6D3000000000266
- Thumbprint:
A4341B9FD50FB9964283220A36A1EF6F6FAA7840
- Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Original Filename: IFSUtilX.DLL
- Product Name: Microsoft Windows Operating System
- Company Name: Microsoft Corporation
- File Version: 10.0.19041.1 (WinBuild.160101.0800)
- Product Version: 10.0.19041.1
- Language: English (United States)
- Legal Copyright: Microsoft Corporation. All rights reserved.
- Machine Type: 64-bit
File Scan
- VirusTotal Detections: 0/72
- VirusTotal Link: https://www.virustotal.com/gui/file/42214053995b6188b2e20935ca8c92af77639f0d5541a132920a5cba2cfcbde6/detection/
File Similarity (ssdeep match)
MIT License. Copyright (c) 2020-2021 Strontic.