perf_nt.dll

  • File Path: C:\Windows\system32\F12\perf_nt.dll
  • Description: Performance Analyzer AddIn: NT

Hashes

Type Hash
MD5 3DB2EF30C23C50A24A5C22581E1DEDA1
SHA1 7C257D9E44A091881A5A30C46641CE9E2A4DCA51
SHA256 6E7E34B2779D314E76DFEDD2688F43FFDDB5EE43ED8E87D5D66B1AAA50408C10
SHA384 2259AC413743D661585202C47FBBD502E6BDA70329655FE9EF698FFF6149D2252F409FE0FC37983B07ACA03E08B24138
SHA512 2BCF8090696E3B05EF4F127B24FF813D21EAF6F0AF995D25AC3EE7E79635A7A86B7731AAA3F0463F5004A09CD7F22E2DD14652B63F0E57EC4F991B9BB915E7CC
SSDEEP 24576:KwApNzQBKGpxsHGV+NXmzGljH9+gHI3LI3v9pB50k8:KwApN8Bt+HGYB2sjd+gCLI3v9pBU
IMP 1C457F70D8971B25346B7AE2CC2F5456
PESHA1 60B96BC1013CD260ABE823B90F00AC0064A53D67
PE256 12E5A29D748E538A673DC0CB287FF1F8222B0B4D3B76A3C314DEA013F8A62518

DLL Exports:

Function Name Ordinal Type
DllRegisterServer 3 Exported Function
DllUnregisterServer 4 Exported Function
DllCanUnloadNow 1 Exported Function
DllGetClassObject 2 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 330000026551AE1BBD005CBFBD000000000265
  • Thumbprint: E168609353F30FF2373157B4EB8CD519D07A2BFF
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: perf_nt.dll
  • Product Name: Microsoft Windows Performance Analyzer
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: 2019 Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/65
  • VirusTotal Link: https://www.virustotal.com/gui/file/6e7e34b2779d314e76dfedd2688f43ffddb5ee43ed8e87d5d66b1aaa50408c10/detection/

File Similarity (ssdeep match)

File Score
C:\Program Files (x86)\Windows Kits\10\Windows Performance Toolkit\perf_nt.dll 97

MIT License. Copyright (c) 2020-2021 Strontic.