sdiagprv.dll

  • File Path: C:\Windows\SysWOW64\sdiagprv.dll
  • Description: Windows Scripted Diagnostic Provider API

Hashes

Type Hash
MD5 617A220718F983E9F7D4DAA2AEBBA5EC
SHA1 892BD7D1CA9766C26AD488908AC47EBC1A1E43B1
SHA256 02B7D85D3776980FBE6746FD7162FEDD80779FC354F1116DBE8795DB2BC1F75A
SHA384 86F6D5DCA5CE4C4CA148F75EAE6F054D11DF4079B55B1AA7535B14D57080A677B4130B6FCE2A3A427C9A2403C0DD1B51
SHA512 9DA6D0C17CD21B2C5EAD7D33E7BA794B36BA31FFE45281501037DA5DF838EEAA4B303631E3D248E04786182641A7A52B97E207DEED78743FA4393E328EB321FC
SSDEEP 3072:gH3npUTvQl9uWWuHzFirnMjjuL+XNdPls:7EWuHzFiI6
IMP F3EF3B3861C81E82AF0EB311640CCC5A
PESHA1 4001AAE5F0C3052E8C9B631EE212BF07CF2DF1EF
PE256 2CB13FEE2516DB99AAFAC226096F6DC1E7710E1608784F70D1B46ABE50853426

DLL Exports:

Function Name Ordinal Type
DllGetClassObject 2 Exported Function
DllCanUnloadNow 1 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: SDIAGPRV.DLL
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/72
  • VirusTotal Link: https://www.virustotal.com/gui/file/02b7d85d3776980fbe6746fd7162fedd80779fc354f1116dbe8795db2bc1f75a/detection/

File Similarity (ssdeep match)

File Score
C:\Windows\system32\sdiagprv.dll 36

MIT License. Copyright (c) 2020-2021 Strontic.