ntsdexts.dll
- File Path:
C:\Program Files (x86)\Windows Kits\10\Debuggers\x64\winxp\ntsdexts.dll
- Description: Symbolic Debugger Extensions
Hashes
Type |
Hash |
MD5 |
91A4F614078362D07649B54C92250304 |
SHA1 |
D21EC359FFEFB85818D3EAE440F383204C8AF4D9 |
SHA256 |
C612989D5A4EFD8CD8B3511B7D8D30D4642A13A244FF90686AD62BC49BF0BF7A |
SHA384 |
5D401CD138E0F75F1B88C0C79FBA49E03A48DF0466E67B66A4B5E24D1C0C4640546C0F1E5DE796CF6EACB51B2FAB1D08 |
SHA512 |
EE97632B7CAC9569BF1ADFA7CD312031EF6EA4EB9B6CA8CB0C4696A481AA615772462EDCE4286C8B7ECF23C05C5789F2C0FED0C55351438FCC16D33C74EE66C7 |
SSDEEP |
1536:jYqqYzgYkSSS9inYqwyGoQEka+MWxhQh3gVrTXPE:jYqlgPXYqwqfP+MWWw1jPE |
IMP |
191CDEFCBB542CBD54A0E6D7FD77CAD5 |
PESHA1 |
9659CD6AFCF62BB97E838DB2B89E2D1C29B63F47 |
PE256 |
8F9441454D06731188D17758D76A872308306DAA3B501E7DF812F45C89116146 |
DLL Exports:
Function Name |
Ordinal |
Type |
hleak |
11 |
Exported Function |
help |
10 |
Exported Function |
handle |
9 |
Exported Function |
htrace |
12 |
Exported Function |
threadtoken |
15 |
Exported Function |
runaway |
14 |
Exported Function |
locks |
13 |
Exported Function |
gatom |
8 |
Exported Function |
DebugExtensionInitialize |
1 |
Exported Function |
critsec |
4 |
Exported Function |
_EFN_GetHandleTrace |
3 |
Exported Function |
DebugExtensionNotify |
2 |
Exported Function |
dt |
7 |
Exported Function |
dreg |
6 |
Exported Function |
dp |
5 |
Exported Function |
Signature
- Status: Signature verified.
- Serial:
33000002CF6D2CC57CAA65A6D80000000002CF
- Thumbprint:
1A221B3B4FEF088B17BA6704FD088DF192D9E0EF
- Issuer: CN=Microsoft Code Signing PCA 2010, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Original Filename: ntsdexts
- Product Name: Microsoft Windows Operating System
- Company Name: Microsoft Corporation
- File Version: 10.0.19041.1 (WinBuild.160101.0800)
- Product Version: 10.0.19041.1
- Language: English (United States)
- Legal Copyright: Microsoft Corporation. All rights reserved.
- Machine Type: 64-bit
File Scan
- VirusTotal Detections: 0/75
- VirusTotal Link: https://www.virustotal.com/gui/file/c612989d5a4efd8cd8b3511b7d8d30d4642a13a244ff90686ad62bc49bf0bf7a/detection
MIT License. Copyright (c) 2020-2021 Strontic.