ufat.dll

  • File Path: C:\Windows\SysWOW64\ufat.dll
  • Description: FAT Utility DLL

Hashes

Type Hash
MD5 BAC36499FB9B43234451D153E92B2225
SHA1 7EC755BB5B2506EC5961EC422FCC54784B80D8AB
SHA256 7B700C241115C71D272B277A8A343CC3F599C4A5F14BC0FFB7E6A84724AB7157
SHA384 AE0A1A2AA0F9D382EA8E62906FFC939C57421A2584D19CADAF68BF4A4DA4F0AB9E1C5A14875397E17A0182B34FC04893
SHA512 9031D3ED9A4D0DBDB960944699D780C83EEB2DC2564A5E1FE0A3C870AFBD95B082D1B9321FBF51A56BEE095D4C256E95B6D20336CFFD748AC60E34AAFF9DC99E
SSDEEP 3072:gJuqxZsI4PJngproaBJVVf5wukDcFRBURFm/r32fnHcz2jzwznjYG:tCuI4P5gproaBJVVfmukoFRBURIE
IMP F456ED43752F0E9D0D1047A050F8C112
PESHA1 A96D356BE2FBA001BB98724FAAA8C317290D52A0
PE256 FB8B8AC55A404213B8B39385977A6453B1B0BE0B2C2C97040435BA5EC77C05F0

DLL Exports:

Function Name Ordinal Type
FAT_SA::QueryFileStartingCluster 37 Exported Function
FAT::QueryNthCluster 44 Exported Function
FAT::QueryLengthOfChain 41 Exported Function
REAL_FAT_SA::QueryFreeSectors 38 Exported Function
public: virtual __thiscall EA_HEADER::~EA_HEADER(void) 10 Exported Function
public: virtual __thiscall CLUSTER_CHAIN::~CLUSTER_CHAIN(void) 9 Exported Function
EA_HEADER::QueryEaSetClusterNumber 36 Exported Function
FILEDIR::Initialize 27 Exported Function
FATDIR::QueryLongName 42 Exported Function
FAT_SA::QueryCensusAndRelocate 34 Exported Function
REAL_FAT_SA::InitFATChkDirty 21 Exported Function
FAT::QueryAllocatedClusters 33 Exported Function
FAT::AllocChain 17 Exported Function
ROOTDIR::Initialize 29 Exported Function
REAL_FAT_SA::Initialize 28 Exported Function
EA_SET::Read 46 Exported Function
CLUSTER_CHAIN::Write 50 Exported Function
REAL_FAT_SA::Read 47 Exported Function
Recover 56 Exported Function
FAT::FreeChain 18 Exported Function
FATDIR::SearchForDirEntry 48 Exported Function
public: virtual __thiscall FAT_SA::~FAT_SA(void) 13 Exported Function
public: virtual __thiscall FAT_DIRENT::~FAT_DIRENT(void) 12 Exported Function
public: virtual __thiscall EA_SET::~EA_SET(void) 11 Exported Function
public: virtual __thiscall FILEDIR::~FILEDIR(void) 14 Exported Function
CLUSTER_CHAIN::Read 45 Exported Function
public: virtual __thiscall ROOTDIR::~ROOTDIR(void) 16 Exported Function
public: virtual __thiscall REAL_FAT_SA::~REAL_FAT_SA(void) 15 Exported Function
EA_SET::EA_SET 3 Exported Function
EA_HEADER::EA_HEADER 2 Exported Function
CLUSTER_CHAIN::CLUSTER_CHAIN 1 Exported Function
FAT_DIRENT::FAT_DIRENT 4 Exported Function
REAL_FAT_SA::REAL_FAT_SA 7 Exported Function
FILEDIR::FILEDIR 6 Exported Function
FAT_SA::FAT_SA 5 Exported Function
Format 53 Exported Function
ChkdskEx 52 Exported Function
Chkdsk 51 Exported Function
FormatEx 54 Exported Function
FAT::Set12 49 Exported Function
FAT::Index12 20 Exported Function
GetFilesystemInformation 55 Exported Function
FAT_DIRENT::IsValidLastWriteTime 32 Exported Function
FAT_DIRENT::IsValidLastAccessTime 31 Exported Function
FAT_DIRENT::IsValidCreationTime 30 Exported Function
FAT_DIRENT::QueryCreationTime 35 Exported Function
FAT_DIRENT::QueryName 43 Exported Function
FAT_DIRENT::QueryLastWriteTime 40 Exported Function
FAT_DIRENT::QueryLastAccessTime 39 Exported Function
CLUSTER_CHAIN::Initialize 22 Exported Function
EA_SET::GetEa 19 Exported Function
ROOTDIR::ROOTDIR 8 Exported Function
EA_HEADER::Initialize 23 Exported Function
FAT_DIRENT::Initialize 26 Exported Function
FAT_DIRENT::Initialize 25 Exported Function
EA_SET::Initialize 24 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: UFAT.DLL
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/72
  • VirusTotal Link: https://www.virustotal.com/gui/file/7b700c241115c71d272b277a8a343cc3f599c4a5f14bc0ffb7e6a84724ab7157/detection/

MIT License. Copyright (c) 2020-2021 Strontic.