¿Para qué sirve la dll diagtrack.dll?

Servicio de diagnósticos de Microsoft Windows

Dependencias de la dll diagtrack.dll


Microsoft (R) COFF/PE Dumper Version 14.16.27034.0
Copyright (C) Microsoft Corporation.  All rights reserved.


Dump of file C:\Windows\System32\diagtrack.dll

File Type: DLL

  Image has the following dependencies:

    msvcp_win.dll
    api-ms-win-crt-string-l1-1-0.dll
    api-ms-win-crt-runtime-l1-1-0.dll
    api-ms-win-crt-private-l1-1-0.dll
    api-ms-win-core-libraryloader-l1-2-0.dll
    api-ms-win-core-synch-l1-1-0.dll
    api-ms-win-core-heap-l1-1-0.dll
    api-ms-win-core-errorhandling-l1-1-0.dll
    api-ms-win-core-threadpool-l1-2-0.dll
    api-ms-win-core-processthreads-l1-1-0.dll
    api-ms-win-core-localization-l1-2-0.dll
    api-ms-win-core-debug-l1-1-0.dll
    api-ms-win-core-handle-l1-1-0.dll
    api-ms-win-eventing-provider-l1-1-0.dll
    ntdll.dll
    api-ms-win-core-registry-l1-1-0.dll
    api-ms-win-core-synch-l1-2-0.dll
    api-ms-win-core-threadpool-legacy-l1-1-0.dll
    api-ms-win-core-processenvironment-l1-1-0.dll
    api-ms-win-core-processthreads-l1-1-1.dll
    api-ms-win-core-synch-l1-2-1.dll
    api-ms-win-core-file-l1-1-0.dll
    api-ms-win-core-file-l2-1-0.dll
    api-ms-win-core-heap-l2-1-0.dll
    api-ms-win-core-path-l1-1-0.dll
    api-ms-win-core-profile-l1-1-0.dll
    api-ms-win-core-sysinfo-l1-1-0.dll
    api-ms-win-core-interlocked-l1-1-0.dll
    api-ms-win-core-realtime-l1-1-0.dll
    api-ms-win-core-string-l1-1-0.dll
    api-ms-win-core-sysinfo-l1-2-0.dll
    api-ms-win-core-timezone-l1-1-0.dll
    api-ms-win-core-registry-l2-1-0.dll
    api-ms-win-core-io-l1-1-0.dll
    api-ms-win-core-sysinfo-l1-2-1.dll
    api-ms-win-core-libraryloader-l1-2-1.dll
    IPHLPAPI.DLL
    api-ms-win-core-file-l2-1-2.dll
    api-ms-win-core-wow64-l1-1-1.dll
    api-ms-win-core-url-l1-1-0.dll
    api-ms-win-core-memory-l1-1-0.dll
    api-ms-win-core-file-l1-2-0.dll
    api-ms-win-core-psapi-l1-1-0.dll
    api-ms-win-core-version-l1-1-0.dll
    api-ms-win-core-string-l2-1-0.dll
    api-ms-win-core-util-l1-1-0.dll
    api-ms-win-core-delayload-l1-1-1.dll
    api-ms-win-core-delayload-l1-1-0.dll
    api-ms-win-crt-math-l1-1-0.dll

  Image has the following delay load dependencies:

    ext-ms-win-xblauth-console-l1-1-0.dll
    api-ms-win-service-core-l1-1-0.dll
    USERENV.dll
    api-ms-win-security-base-l1-1-0.dll
    api-ms-win-service-winsvc-l1-1-0.dll
    api-ms-win-service-management-l1-1-0.dll
    api-ms-win-eventing-controller-l1-1-0.dll
    api-ms-win-core-rtlsupport-l1-1-0.dll
    api-ms-win-core-com-l1-1-0.dll
    bcrypt.dll
    api-ms-win-security-sddl-l1-1-0.dll
    api-ms-win-security-lsalookup-l2-1-0.dll
    api-ms-win-security-lsalookup-l1-1-2.dll
    logoncli.dll
    api-ms-win-stateseparation-helpers-l1-1-0.dll
    api-ms-win-core-kernel32-legacy-l1-1-1.dll
    CRYPT32.dll
    api-ms-win-core-winrt-string-l1-1-0.dll
    api-ms-win-core-winrt-l1-1-0.dll
    WINHTTP.dll
    api-ms-win-power-base-l1-1-0.dll
    api-ms-win-shcore-sysinfo-l1-1-0.dll
    api-ms-win-core-processtopology-obsolete-l1-1-0.dll
    api-ms-win-oobe-notification-l1-1-0.dll
    api-ms-win-power-setting-l1-1-0.dll
    api-ms-win-core-shlwapi-legacy-l1-1-0.dll
    api-ms-win-service-management-l2-1-0.dll
    api-ms-win-core-windowserrorreporting-l1-1-0.dll
    WS2_32.dll
    OLEAUT32.dll
    RPCRT4.dll
    api-ms-win-core-kernel32-legacy-l1-1-0.dll
    api-ms-win-core-toolhelp-l1-1-0.dll
    api-ms-win-security-provider-l1-1-0.dll
    api-ms-win-eventing-consumer-l1-1-0.dll
    api-ms-win-security-capability-l1-1-0.dll
    api-ms-win-security-cryptoapi-l1-1-0.dll
    api-ms-win-service-core-l1-1-1.dll
    api-ms-win-core-apiquery-l1-1-0.dll
    WindowsPerformanceRecorderControl.dll
    ext-ms-win-session-wtsapi32-l1-1-0.dll
    ext-ms-win-wer-reporting-l1-1-1.dll
    ext-ms-win-wer-reporting-l1-1-3.dll
    ext-ms-win-wer-reporting-l1-1-0.dll
    wer.dll
    ext-ms-win-session-usermgr-l1-1-0.dll
    ext-ms-win-devmgmt-policy-l1-1-0.dll
    ext-ms-win-devmgmt-policy-l1-1-1.dll
    ext-ms-win-devmgmt-policy-l1-1-3.dll
    ext-ms-win-shell32-shellfolders-l1-1-0.dll
    ext-ms-win-appcompat-aepic-l1-1-0.dll
    winsqlite3.dll
    api-ms-win-containers-cmclient-l1-2-0.dll
    api-ms-win-containers-cmclient-l1-1-1.dll
    api-ms-win-containers-cmclient-l1-1-0.dll
    ext-ms-win-kernel32-package-l1-1-0.dll
    ext-ms-win-kernel32-package-l1-1-2.dll
    api-ms-win-appmodel-runtime-internal-l1-1-3.dll
    ext-ms-onecore-appmodel-staterepository-cache-l1-1-0.dll
    UMPDC.dll
    api-ms-win-perf-legacy-l1-1-0.dll
    XmlLite.dll
    api-ms-win-core-string-obsolete-l1-1-0.dll
    api-ms-win-shcore-stream-l1-1-0.dll
    api-ms-win-core-job-l2-1-0.dll
    api-ms-win-security-isolationapi-l1-2-0.dll
    ext-ms-win-appmodel-state-ext-l1-2-0.dll
    WerEtw.dll
    ext-ms-win-edputil-policy-l1-1-0.dll
    api-ms-win-core-winrt-error-l1-1-0.dll
    api-ms-win-core-winrt-error-l1-1-1.dll

  Summary

        D000 .data
        1000 .didat
       1E000 .pdata
       AC000 .rdata
        4000 .reloc
        5000 .rsrc
      2C9000 .text
        1000 RT_CODE

Funciones que tiene la dll diagtrack.dll


3    0 00178D60 RunDll32Main
1    1 00177E40 ServiceMain
2    2 00178950 SvchostPushServiceGlobals
4    3 00178F00 UtcSysprepGeneralize

Información avanzada sobre funciones que tiene la dll diagtrack.dll


Microsoft (R) COFF/PE Dumper Version 14.16.27034.0
Copyright (C) Microsoft Corporation.  All rights reserved.


Dump of file C:\Windows\System32\diagtrack.dll

File Type: DLL

  Section contains the following exports for diagtrack.dll

    00000000 characteristics
     319DEAB time date stamp
        0.00 version
           1 ordinal base
           4 number of functions
           4 number of names

    ordinal hint RVA      name

          3    0 00178D60 RunDll32Main
          1    1 00177E40 ServiceMain
          2    2 00178950 SvchostPushServiceGlobals
          4    3 00178F00 UtcSysprepGeneralize

  Summary

        D000 .data
        1000 .didat
       1E000 .pdata
       AC000 .rdata
        4000 .reloc
        5000 .rsrc
      2C9000 .text
        1000 RT_CODE

Integridad de la dll diagtrack.dll



Algorithm       Hash                                                                   Path                                         
---------       ----                                                                   ----                                         
SHA256          6DEB1186181FCCA1A586447C98AC26FA4388F8C8883D5EA916E2236979DD8960       C:\Windows\System32\diagtrack.dll            


Detalles sobre el fichero dll diagtrack.dll




PSPath            : Microsoft.PowerShell.Core\FileSystem::C:\Windows\System32\diagtrack.dll
PSParentPath      : Microsoft.PowerShell.Core\FileSystem::C:\Windows\System32
PSChildName       : diagtrack.dll
PSDrive           : C
PSProvider        : Microsoft.PowerShell.Core\FileSystem
PSIsContainer     : False
Mode              : -a----
VersionInfo       : File:             C:\Windows\System32\diagtrack.dll
                    InternalName:     diagtrack.dll
                    OriginalFilename: diagtrack.dll.mui
                    FileVersion:      10.0.19041.561 (WinBuild.160101.0800)
                    FileDescription:  Servicio de diagnósticos de Microsoft Windows
                    Product:          Sistema operativo Microsoft® Windows®
                    ProductVersion:   10.0.19041.561
                    Debug:            False
                    Patched:          False
                    PreRelease:       False
                    PrivateBuild:     False
                    SpecialBuild:     False
                    Language:         Español (España, internacional)
                    
BaseName          : diagtrack
Target            : {C:\Windows\WinSxS\amd64_microsoft-windows-u..ed-telemetry-client_31bf3856ad364e35_10.0.19041.630_none_7df106de6
                    5b93191\diagtrack.dll}
LinkType          : HardLink
Name              : diagtrack.dll
Length            : 3811840
DirectoryName     : C:\Windows\System32
Directory         : C:\Windows\System32
IsReadOnly        : False
Exists            : True
FullName          : C:\Windows\System32\diagtrack.dll
Extension         : .dll
CreationTime      : 29/11/2020 11:42:38
CreationTimeUtc   : 29/11/2020 10:42:38
LastAccessTime    : 03/12/2020 9:57:15
LastAccessTimeUtc : 03/12/2020 8:57:15
LastWriteTime     : 29/11/2020 11:42:38
LastWriteTimeUtc  : 29/11/2020 10:42:38
Attributes        : Archive



Procesos que utilizan la dll diagtrack.dll