AmazonSSMAgentSetup.exe
- File Path:
C:\ProgramData\Package Cache\{4d6154c1-7b11-4968-825b-0b2aa6e1bf14}\AmazonSSMAgentSetup.exe
- Description: Amazon SSM Agent
Hashes
Type |
Hash |
MD5 |
2193EEAF9E3DC08522CEE4E0104BCC1D |
SHA1 |
A55D20A700FE2DF60FB4F0C612A8A5FCAFBBD88E |
SHA256 |
658935C305AD6AA68A4CEA3365393D736315F09D4C9E81BFC428AD7C21C03AC0 |
SHA384 |
0E434EDE63D8E0EEC10FACF0E88BF467E987A607A888A7ED9B32CAF52544564D48A0D575B2CEA3449A1E1B7241BA6CDA |
SHA512 |
8DA6658CB1DEB954CAB18D0038C326227B38E330951F2664ED8126FC03B72E56D7E8BDC42F19175A926AC29293D12CDC06D275B084B900826D3B3E71C58940AD |
SSDEEP |
12288:579g/k9Ygb25zyaaEqrHqm/A6i7yCIBW16V:bgwYgb25FJsqIA60d316V |
Runtime Data
Child Processes:
AmazonSSMAgentSetup.exe
Open Handles:
Path |
Type |
(R-D) C:\ProgramData\Package Cache{4d6154c1-7b11-4968-825b-0b2aa6e1bf14}\AmazonSSMAgentSetup.exe |
File |
(R-D) C:\Windows\System32\en-US\KernelBase.dll.mui |
File |
(RW-) C:\Users\user\Documents |
File |
(RW-) C:\Windows |
File |
\BaseNamedObjects__ComCatalogCache__ |
Section |
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 |
Section |
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 |
Section |
\Sessions\2\BaseNamedObjects\windows_shell_global_counters |
Section |
Loaded Modules:
Path |
C:\ProgramData\Package Cache{4d6154c1-7b11-4968-825b-0b2aa6e1bf14}\AmazonSSMAgentSetup.exe |
C:\Windows\SYSTEM32\ntdll.dll |
C:\Windows\System32\wow64.dll |
Signature
- Status: Signature verified.
- Serial:
394F2C2262CC2DB92BFEAE20593BF174
- Thumbprint:
5C2CB55A9AB9B1D63FF41B0DA276F2A92B09A86A
- Issuer: CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US
- Subject: CN=Amazon Services LLC, OU=Software Services, O=Amazon Services LLC, L=Seattle, S=Washington, C=US
- Original Filename: AmazonSSMAgentSetup.exe
- Product Name: Amazon SSM Agent
- Company Name: Amazon Web Services
- File Version: 2.3.842.0
- Product Version: 2.3.842.0
- Language: English (United States)
- Legal Copyright: Copyright (c) Amazon Web Services. All rights reserved.
File Similarity (ssdeep match)
MIT License. Copyright (c) 2020-2021 Strontic.