wmitrace.dll

  • File Path: C:\Program Files (x86)\Windows Kits\10\Debuggers\arm64\winxp\wmitrace.dll
  • Description: Microsoft Kernel Debugger Extensions (WMI Tracing)

Hashes

Type Hash
MD5 6C8CAEA4F842FCA3FFE733AB4D9C82F5
SHA1 27AB865540C22EE0DA1C4FAE5AA91865AC62D302
SHA256 06CCED1EF0D8EE14145782F5C0D600CF8A34AED01B377D674029D581E44A497E
SHA384 F01220AA51975BDEDB6903E55CD194161BBEA1A759FF597EF3748BAD7B465351FB18346D278FEE202E6BB5757215189E
SHA512 EA73DEB94EE6AE41152FB1123422B921C6A71F2D4EDBC6DE1301767CBD59A1BA524EC832555C40DAA850F5F1D9E372D40E8BD81225A2F0D0E5A88F6C838A01AE
SSDEEP 6144:t4ODP9xRXQrIQ5rrcKhcrsxGLKnbJe6/x0Jq5LlxjpOMUoikXVcf8rNwdcblLb7M:v2HDpYL0bxx0ULlxjpEtdq7PU
IMP 89D80D7FE36AE593B593110041784673
PESHA1 2872BD869E30ACF368CC4DC4DE44558878052E17
PE256 F4DAC918290CD4B757927A2026C4F1114AEBCDDE633688F7F259F2E41F29FBA1

Signature

  • Status: Signature verified.
  • Serial: 33000002B7E8E007A82AEF13150000000002B7
  • Thumbprint: 5A68625F1A516670A744F7EF919500A479D32A5B
  • Issuer: CN=Microsoft Code Signing PCA 2010, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows Kits Publisher, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: wmiTrace.DLL
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit ARM

File Scan

  • VirusTotal Detections: Unknown

File Similarity (ssdeep match)

File Score
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\arm64\tracefmt.exe 33
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x64\tracefmt.exe 33
C:\Program Files (x86)\Windows Kits\10\Debuggers\x64\winext\rcdrkd.dll 36
C:\Program Files (x86)\Windows Kits\10\Debuggers\x64\winxp\wmitrace.dll 35
C:\Program Files (x86)\Windows Kits\10\Windows Performance Toolkit\perf_wpp.dll 32
C:\Windows\system32\nltest.exe 29
C:\Windows\system32\nltest.exe 29
C:\Windows\system32\nltest.exe 35
C:\Windows\system32\nshwfp.dll 35

MIT License. Copyright (c) 2020-2021 Strontic.