ocsetapi.dll

  • File Path: C:\Windows\system32\ocsetapi.dll
  • Description: Windows Optional Component Setup API

Hashes

Type Hash
MD5 23BC4F98A5F7B0810CA560BF3DF76EF7
SHA1 6D61952F3ACE9A76F88D0DAC4FA4B6AC20210987
SHA256 0873E183F6BCD12374858EBC475E15658FC02D6E79ACB606D9A1C4BBE7D86BEF
SHA384 19898B6FABD2E79BCA88868B45B17BBF6CF01E64E1679FC172636A02867524B299BC1EBE4C378F1264AF9398AA04C9BA
SHA512 728AF330EFBB920D27FC0EBDE3FA30F68855DA321CCEE2AFB66760469245443A0C69095117A79B6940DB803DFE56B6C9F40A838D7E3E795E6ED37B02DDF120E4
SSDEEP 3072:2slElcPWGq5iqAp4hwdmp56SjJirENXK6JRAqs4xjw8m1Ip8M:2slEG+Gq5iqAUp56SgrMHxM8cq8
IMP 78DC0AE812FE2ED7893ECAA15C6BA687
PESHA1 94E498F7737FBE5E30423A553FF645F47B1553C1
PE256 2AD7BC7B3E633AD2E5C5D548470954609C92B1411C35856C18B9E23E31990E7E

DLL Exports:

Function Name Ordinal Type
RemoveMspFilesFromSystemMsiCache 2 Exported Function
CopyMspFilesToSystemMsiCache 1 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 330000026551AE1BBD005CBFBD000000000265
  • Thumbprint: E168609353F30FF2373157B4EB8CD519D07A2BFF
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: ocsetapi.dll
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/68
  • VirusTotal Link: https://www.virustotal.com/gui/file/0873e183f6bcd12374858ebc475e15658fc02d6e79acb606d9a1c4bbe7d86bef/detection/

File Similarity (ssdeep match)

File Score
C:\WINDOWS\system32\PkgMgr.exe 54
C:\windows\system32\PkgMgr.exe 36
C:\WINDOWS\system32\PkgMgr.exe 44
C:\Windows\system32\PkgMgr.exe 46
C:\Windows\system32\PkgMgr.exe 47
C:\Windows\system32\wusa.exe 44

MIT License. Copyright (c) 2020-2021 Strontic.