CustomInstallExec.exe

  • File Path: C:\Windows\system32\CustomInstallExec.exe
  • Description: Microsoft Store Package Dependency Installer

Hashes

Type Hash
MD5 6B4E9AC9800967AC1B9A405130604971
SHA1 6E4B4F5431B450756378964CC0A730CD75120FF7
SHA256 212E63400C0B1B18B6AF534327824C9354249A1C3CA94CA638AE5DFBEA7BC0D0
SHA384 E491D6144B230B05E6EB9FDC232E4BDCDE4672E61AB719B866029E3CCE1724AF18573AF18B5A35EDF1BF54160D84432B
SHA512 EFC4CF0C425E5746D3AE0D70414D85CE4D7D091CAD22EE429BEB3ED74B79F107B6F9FCA80C515C6F3B81125C653494CF43E93E741B3BA6D7878EA320542865DA
SSDEEP 3072:/kwb1vEK8wDyMr1+Hd/KtVGB/Bs80ODR/:swb1vswDyMrBtK/E
IMP 932FD25545AE94A1CE9C7E00FD2ABDFC
PESHA1 6F9FFD98412866DE613281CE7B7FBE29E5711478
PE256 0FDDD384AD0E3406EA00A720498EEB99F0CBDF2EC213DCA159965AA935E9110A

Runtime Data

Loaded Modules:

Path
C:\Windows\System32\combase.dll
C:\Windows\system32\CustomInstallExec.exe
C:\Windows\System32\GDI32.dll
C:\Windows\System32\gdi32full.dll
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\System32\msvcp_win.dll
C:\Windows\System32\msvcrt.dll
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\RPCRT4.dll
C:\Windows\System32\shcore.dll
C:\Windows\System32\ucrtbase.dll
C:\Windows\System32\user32.dll
C:\Windows\System32\win32u.dll

Signature

  • Status: Signature verified.
  • Serial: 330000026551AE1BBD005CBFBD000000000265
  • Thumbprint: E168609353F30FF2373157B4EB8CD519D07A2BFF
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: CUSTOMINSTALLEXEC.EXE.MUI
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.488 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.488
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/68
  • VirusTotal Link: https://www.virustotal.com/gui/file/212e63400c0b1b18b6af534327824c9354249a1c3ca94ca638ae5dfbea7bc0d0/detection/

File Similarity (ssdeep match)

File Score
C:\Windows\system32\CustomInstallExec.exe 96
C:\Windows\system32\CustomInstallExec.exe 93

MIT License. Copyright (c) 2020-2021 Strontic.