pwrshmsg.dll

  • File Path: C:\Windows\SysWOW64\WindowsPowerShell\v1.0\pwrshmsg.dll
  • Description: Microsoft PowerShell EventLog Message Dll

Hashes

Type Hash
MD5 7A948891A13A5B9DFAAE6F8E61EB116A
SHA1 FBC866A35F298BA1AEFF79544916732471A7DEBC
SHA256 65B1DD20D67C48293D574E13CDC6EE69CF596FA2300DF21EF739BD59A37F4822
SHA384 A3CF7D7820E283DBAC09A46DE87EECDB4BEF4DAE929891B12D66C18BFEAC9D6CDE8316108EA5554960D7810864CA6431
SHA512 25F981351085D9471C6827A92321607C316E6D7396127BB6AB1B790A493EFFCF138C6483BB7390F05E63F962F8BBB61D51EA8756DA5499E461367F4E287309EC
SSDEEP 24:eH1GSD9cQehrTCmtlSIZW0JH5exNutpg35WWdPPYPNybKSMsC:yRcQIymtEIZWqHSurO5WwHg9Vs
IMP n/a
PESHA1 F2A05F674CA827CE69B353BABC099DBF19CB53AF
PE256 51BB1735592DE5638D2960DA686668FBD53732A5B2180FE7A33101344107C34B

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: pwrshmsg.DLL.MUI
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/69
  • VirusTotal Link: https://www.virustotal.com/gui/file/65b1dd20d67c48293d574e13cdc6ee69cf596fa2300df21ef739bd59a37f4822/detection/

File Similarity (ssdeep match)

File Score
C:\Windows\system32\advapi32res.dll 52
C:\Windows\system32\asferror.dll 50
C:\Windows\system32\blbres.dll 47
C:\Windows\system32\bridgeres.dll 58
C:\Windows\system32\comres.dll 47
C:\Windows\system32\DMAppsRes.dll 57
C:\Windows\system32\dmdskres.dll 49
C:\Windows\system32\dmdskres2.dll 50
C:\Windows\system32\ETWCoreUIComponentsResources.dll 47
C:\Windows\system32\icmp.dll 49
C:\Windows\system32\imageres.dll 52
C:\Windows\system32\imagesp1.dll 54
C:\Windows\system32\iologmsg.dll 58
C:\Windows\system32\lltdres.dll 50
C:\Windows\system32\MapControlStringsRes.dll 50
C:\Windows\system32\Microsoft-WindowsPhone-SEManagementProvider.dll 47
C:\Windows\system32\moricons.dll 50
C:\Windows\system32\msafd.dll 47
C:\Windows\system32\msprivs.dll 55
C:\Windows\system32\neth.dll 52
C:\Windows\system32\netmsg.dll 55
C:\Windows\system32\normaliz.dll 47
C:\Windows\system32\PhoneServiceRes.dll 60
C:\Windows\system32\PhoneutilRes.dll 63
C:\Windows\system32\qedwipes.dll 47
C:\Windows\system32\rnr20.dll 46
C:\Windows\system32\SensorsCpl.dll 43
C:\Windows\system32\SyncRes.dll 52
C:\Windows\system32\tapiui.dll 50
C:\Windows\system32\TelephonyInteractiveUserRes.dll 50
C:\Windows\system32\TpmCertResources.dll 41
C:\Windows\system32\wbem\WmiApRes.dll 58
C:\Windows\system32\WindowsPowerShell\v1.0\pwrshmsg.dll 86
C:\Windows\system32\winrsmgr.dll 52
C:\Windows\system32\wmerror.dll 54
C:\Windows\system32\wmploc.DLL 40
C:\Windows\system32\XAudio2_8.dll 47
C:\Windows\SysWOW64\advapi32res.dll 57
C:\Windows\SysWOW64\asferror.dll 52
C:\Windows\SysWOW64\comres.dll 50
C:\Windows\SysWOW64\DMAppsRes.dll 58
C:\Windows\SysWOW64\dmdskres.dll 52
C:\Windows\SysWOW64\dmdskres2.dll 50
C:\Windows\SysWOW64\ETWCoreUIComponentsResources.dll 50
C:\Windows\SysWOW64\icmp.dll 50
C:\Windows\SysWOW64\imageres.dll 57
C:\Windows\SysWOW64\imagesp1.dll 57
C:\Windows\SysWOW64\iologmsg.dll 58
C:\Windows\SysWOW64\MapControlStringsRes.dll 50
C:\Windows\SysWOW64\moricons.dll 52
C:\Windows\SysWOW64\msafd.dll 50
C:\Windows\SysWOW64\mscpx32r.dLL 55
C:\Windows\SysWOW64\msorc32r.dll 50
C:\Windows\SysWOW64\neth.dll 57
C:\Windows\SysWOW64\netmsg.dll 54
C:\Windows\SysWOW64\normaliz.dll 47
C:\Windows\SysWOW64\PhoneutilRes.dll 66
C:\Windows\SysWOW64\qedwipes.dll 50
C:\Windows\SysWOW64\rnr20.dll 49
C:\Windows\SysWOW64\SensorsCpl.dll 50
C:\Windows\SysWOW64\SyncRes.dll 57
C:\Windows\SysWOW64\tapiui.dll 52
C:\Windows\SysWOW64\TpmCertResources.dll 44
C:\WINDOWS\SysWOW64\user.exe 43
C:\Windows\SysWOW64\user.exe 49
C:\Windows\SysWOW64\user.exe 46
C:\Windows\SysWOW64\user.exe 41
C:\Windows\SysWOW64\winrsmgr.dll 58
C:\Windows\SysWOW64\wmerror.dll 58
C:\Windows\SysWOW64\wmploc.DLL 47
C:\Windows\SysWOW64\XAudio2_8.dll 52

MIT License. Copyright (c) 2020 Strontic.