ufat.dll

  • File Path: C:\Windows\system32\ufat.dll
  • Description: FAT Utility DLL

Hashes

Type Hash
MD5 97287A87E4676DDA6B99CAA59B5A96BD
SHA1 EC49D9452BA7BA2A19DBE3F2025F102838331FBA
SHA256 007383619C4C18964B679E3DBA7ECB208AD6AE85E4CE2E4A2CA093163750E92A
SHA384 F989B02181A989180F3691FD4B178DC434E2750C56CDB089E73375ECBA774362611C6C2A50DBD2FBC3AC16D4331E4195
SHA512 1023AC3733646B50BCFA73208E7C4D3F26E649E290464D2BAD643ECDD831FE7BF4A0B05112FFA3F978453F737BCCED07F4D95F988B48272F838AF8CCAA55D8D2
SSDEEP 3072:v1vEoQhrwNBVAiSmHQLbTjqmdTrGq7f6XNE0H+FtuXl84bOL:9vEoArg3wm4TjfNjs+c
IMP F65DFB35363CEE20864CB76371DC8200
PESHA1 A15E88E6E8798339AD1CF85750A1FADE2D8D9364
PE256 16EB30038A3E44E30FB01FA2EFA66E745A4D93C29954852A9165938368D95A18

DLL Exports:

Function Name Ordinal Type
FAT_SA::QueryFileStartingCluster 37 Exported Function
FAT::QueryNthCluster 44 Exported Function
FAT::QueryLengthOfChain 41 Exported Function
REAL_FAT_SA::QueryFreeSectors 38 Exported Function
public: virtual __cdecl EA_HEADER::~EA_HEADER(void) __ptr64 10 Exported Function
public: virtual __cdecl CLUSTER_CHAIN::~CLUSTER_CHAIN(void) __ptr64 9 Exported Function
EA_HEADER::QueryEaSetClusterNumber 36 Exported Function
FILEDIR::Initialize 27 Exported Function
FATDIR::QueryLongName 42 Exported Function
FAT_SA::QueryCensusAndRelocate 34 Exported Function
REAL_FAT_SA::InitFATChkDirty 21 Exported Function
FAT::QueryAllocatedClusters 33 Exported Function
FAT::AllocChain 17 Exported Function
ROOTDIR::Initialize 29 Exported Function
REAL_FAT_SA::Initialize 28 Exported Function
EA_SET::Read 46 Exported Function
CLUSTER_CHAIN::Write 50 Exported Function
REAL_FAT_SA::Read 47 Exported Function
Recover 56 Exported Function
FAT::FreeChain 18 Exported Function
FATDIR::SearchForDirEntry 48 Exported Function
public: virtual __cdecl FAT_SA::~FAT_SA(void) __ptr64 13 Exported Function
public: virtual __cdecl FAT_DIRENT::~FAT_DIRENT(void) __ptr64 12 Exported Function
public: virtual __cdecl EA_SET::~EA_SET(void) __ptr64 11 Exported Function
public: virtual __cdecl FILEDIR::~FILEDIR(void) __ptr64 14 Exported Function
CLUSTER_CHAIN::Read 45 Exported Function
public: virtual __cdecl ROOTDIR::~ROOTDIR(void) __ptr64 16 Exported Function
public: virtual __cdecl REAL_FAT_SA::~REAL_FAT_SA(void) __ptr64 15 Exported Function
EA_SET::EA_SET 3 Exported Function
EA_HEADER::EA_HEADER 2 Exported Function
CLUSTER_CHAIN::CLUSTER_CHAIN 1 Exported Function
FAT_DIRENT::FAT_DIRENT 4 Exported Function
REAL_FAT_SA::REAL_FAT_SA 7 Exported Function
FILEDIR::FILEDIR 6 Exported Function
FAT_SA::FAT_SA 5 Exported Function
Format 53 Exported Function
ChkdskEx 52 Exported Function
Chkdsk 51 Exported Function
FormatEx 54 Exported Function
FAT::Set12 49 Exported Function
FAT::Index12 20 Exported Function
GetFilesystemInformation 55 Exported Function
FAT_DIRENT::IsValidLastWriteTime 32 Exported Function
FAT_DIRENT::IsValidLastAccessTime 31 Exported Function
FAT_DIRENT::IsValidCreationTime 30 Exported Function
FAT_DIRENT::QueryCreationTime 35 Exported Function
FAT_DIRENT::QueryName 43 Exported Function
FAT_DIRENT::QueryLastWriteTime 40 Exported Function
FAT_DIRENT::QueryLastAccessTime 39 Exported Function
CLUSTER_CHAIN::Initialize 22 Exported Function
EA_SET::GetEa 19 Exported Function
ROOTDIR::ROOTDIR 8 Exported Function
EA_HEADER::Initialize 23 Exported Function
FAT_DIRENT::Initialize 26 Exported Function
FAT_DIRENT::Initialize 25 Exported Function
EA_SET::Initialize 24 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 330000026551AE1BBD005CBFBD000000000265
  • Thumbprint: E168609353F30FF2373157B4EB8CD519D07A2BFF
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: UFAT.DLL
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/71
  • VirusTotal Link: https://www.virustotal.com/gui/file/007383619c4c18964b679e3dba7ecb208ad6ae85e4ce2e4a2ca093163750e92a/detection/

MIT License. Copyright (c) 2020-2021 Strontic.