mssip32.dll

  • File Path: C:\Windows\system32\mssip32.dll
  • Description: MSSIP32 Forwarder DLL

Hashes

Type Hash
MD5 627B37E85AACF23D6302B81CF976E185
SHA1 8FE60442580E8C8D470875BD2E36B87A0032142A
SHA256 1130D1BB7AEBA82FCDFCE37833407FF54639812C44D16923864545B7A8ED96B2
SHA384 980324E599082E146D546D5D8726713EE5A77FF07047B17B7B8AABB36B3B0742EF97C970BAD33F48C6BC489A13D6B1A9
SHA512 D33A6E2E2CB1EBFB2AD753B15A0C789D80DE8FD8BE323EB6C231F34F519A8DDEF687BB6B2BA13EC774C835F2EFA492E65EEE7FB6DDB0D9D2FE15799BAFE4610F
SSDEEP 96:iapXvg0ELNqO2Qz66cb4QZBXUWlJ31p/eP/4oyUSSAUS/PY6YsLEW3uWw8:iap/gBLEz6cNN331prjSAj/wtsQW3uW
IMP 66E2D1B2CDAB292D56111A45637C4A3C
PESHA1 757BB5E618CCB18A60A42EF746E91E293C072471
PE256 FD8107E4D3334C528D90E3E7CC5922AAD7C1DFF5FCE567A18007FFB1D12275B1

DLL Exports:

Function Name Ordinal Type
CryptSIPVerifyIndirectData 7 Exported Function
CryptSIPRemoveSignedDataMsg 6 Exported Function
DllUnregisterServer 9 Exported Function
DllRegisterServer 8 Exported Function
CryptSIPPutSignedDataMsg 5 Exported Function
CryptSIPGetInfo 1 Exported Function
CryptSIPCreateIndirectData 3 Exported Function
CryptSIPGetSignedDataMsg 4 Exported Function
CryptSIPGetRegWorkingFlags 2 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: MSSIP32 Forwarder DLL
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/71
  • VirusTotal Link: https://www.virustotal.com/gui/file/1130d1bb7aeba82fcdfce37833407ff54639812c44d16923864545b7a8ed96b2/detection/

File Similarity (ssdeep match)

File Score
C:\Windows\system32\provdiagnostics.dll 35
C:\Windows\system32\softpub.dll 52

MIT License. Copyright (c) 2020-2021 Strontic.