sdiagschd.dll

  • File Path: C:\Windows\system32\sdiagschd.dll
  • Description: Scripted Diagnostics Scheduled Task

Hashes

Type Hash
MD5 86EB608C01B36F89545B3C3ED4927E24
SHA1 183184BD8D4A0816DD6E7A3C3B44BED8EEC0BDE3
SHA256 C7479CC00600C963E3EED1ECC717F5581EC93FC2797B1907E70A3F6585B6A77E
SHA384 1583FD7FCB75DD7C87BF5D10511BF76A2C17A7ECF6BD8159E698B91CE848BC9D47CE5F6680621CB0F6409C3BB43FF93B
SHA512 84058F9DBB3876F635B0EF08F2EE9A11396494062BB598C7E4F35D3D79AADA95B888AC55C846A4695544E03E3055CDA48E738C1EEA5212A5C1E837576641C73A
SSDEEP 768:m1ClpRDctAVqs+F9F8GqOtXNAIA/ji04gbsTMo7JS9M73fnj:mGnD7+gOb44gbsDs9W3fj
IMP 793940101EE499F1F395B9FB760F4734
PESHA1 A32A5524DC2170F42CBFCE5AA49412EFDF9CBA76
PE256 D397D01D480522BAACA54BABD13C80C8ACAFFC44A1AE27AEB4B51F183D2A2119

DLL Exports:

Function Name Ordinal Type
EnableScheduledDiagnostics 3 Exported Function
GetScheduledDiagnosticsExecutionLevel 4 Exported Function
DllCanUnloadNow 1 Exported Function
DllGetClassObject 2 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: sdiagschd.dll.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/67
  • VirusTotal Link: https://www.virustotal.com/gui/file/c7479cc00600c963e3eed1ecc717f5581ec93fc2797b1907e70a3f6585b6a77e/detection/

MIT License. Copyright (c) 2020-2021 Strontic.