wship6.dll

  • File Path: C:\Windows\SysWOW64\wship6.dll
  • Description: Winsock2 Helper DLL (TL/IPv6)

Hashes

Type Hash
MD5 CD3A39053361289D6D0C0FB679C9122E
SHA1 C81C5B161A029EBABC2772164881995F042BD150
SHA256 E3D32996F579EF95C35B12838EB190CC01DBD5B48292C94599D8C667EE371DC7
SHA384 4C0472C6E3F34B157DFA45F122C937744D27EE5BDBBF2932C9E001A6F15F57245017E2252397268D42377C8715F61FEA
SHA512 8874AA712C5EA25E536A1195855988C9A5110F1D74C3060D72F9E4306778257B409280FAA541C37F37A5A827C043298C19F948121BA4934E5E525BA0AC09DC4F
SSDEEP 192:TALtA0WLYz1AIedcbX4+EIH+t/tm18W9qW4z:TALtA0UYz1A0Xj+t1w8W9qW
IMP 431344F89999E0F0986CE6668611FF78
PESHA1 E369DC346F2D787341A16E15AEE3233E0660F8C5
PE256 BB0877EEBE86C5EFF1B9C8ABCDE718119EB6F7E5F825914CA085B93F6E14554E

DLL Exports:

Function Name Ordinal Type
WSHNotify 11 Exported Function
WSHJoinLeaf 10 Exported Function
WSHIoctl 9 Exported Function
WSHOpenSocket 13 Exported Function
WSHStringToAddress 15 Exported Function
WSHSetSocketInformation 14 Exported Function
WSHOpenSocket2 12 Exported Function
WSHGetWSAProtocolInfo 6 Exported Function
WSHGetProviderGuid 3 Exported Function
WSHEnumProtocols 2 Exported Function
WSHAddressToString 1 Exported Function
WSHGetSockaddrType 4 Exported Function
WSHGetWinsockMapping 8 Exported Function
WSHGetWildcardSockaddr 7 Exported Function
WSHGetSocketInformation 5 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: wship6.dll
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/71
  • VirusTotal Link: https://www.virustotal.com/gui/file/e3d32996f579ef95c35b12838eb190cc01dbd5b48292c94599d8c667ee371dc7/detection/

MIT License. Copyright (c) 2020-2021 Strontic.