loadperf.dll

  • File Path: C:\Windows\SysWOW64\loadperf.dll
  • Description: Load & Unload Performance Counters

Hashes

Type Hash
MD5 F87A49139568CC6334D21869911E322A
SHA1 EA55B326F0DA18A61D56E608751CBEA1B90CE3DB
SHA256 B44A1555F968901C8B1B634024B6E3DF6447DCDBAB47FABFC0E934DD54232DF0
SHA384 DC6BCA95F048238FBB1658CF8BA88AC8BF0730D02EC822D887C09EFF2FED68B6136C3815BFA5066CA183C6A63F86E11C
SHA512 B0FC4ADD3270A741566C7221734788F5C57AFBC01953817D89AD59C2885A43D7E51260B6F90DEFA814229E8D9E31C11BBD5C3FF1117AE73B1EE26A4567B66CFD
SSDEEP 3072:YhtumdO16OA+95tByvtlobk/EFGM0js9e5:Yht1dO160Yvc4/2X9E
IMP F56F88455A28D3F152C80925D0216F0D
PESHA1 23D389C92FE1927D6E9B59E6299B5CC740B00ED7
PE256 B16943390CCD833667FE4C1DC3EA3998C4217CA24FE02DE6329C74D228F65D9A

DLL Exports:

Function Name Ordinal Type
SetServiceAsTrustedW 10 Exported Function
SetServiceAsTrustedA 9 Exported Function
RestorePerfRegistryFromFileW 8 Exported Function
UnloadPerfCounterTextStringsA 11 Exported Function
UpdatePerfNameFilesW 14 Exported Function
UpdatePerfNameFilesA 13 Exported Function
UnloadPerfCounterTextStringsW 12 Exported Function
InstallPerfDllW 3 Exported Function
InstallPerfDllA 2 Exported Function
BackupPerfRegistryToFileW 1 Exported Function
LoadPerfCounterTextStringsA 4 Exported Function
LpReleaseInstallationMutex 7 Exported Function
LpAcquireInstallationMutex 6 Exported Function
LoadPerfCounterTextStringsW 5 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: LODCTR.DLL
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/70
  • VirusTotal Link: https://www.virustotal.com/gui/file/b44a1555f968901c8b1b634024b6e3df6447dcdbab47fabfc0e934dd54232df0/detection/

MIT License. Copyright (c) 2020-2021 Strontic.