EduPrintProv.exe

  • File Path: C:\Windows\system32\EduPrintProv.exe
  • Description: Printer Provision Utility for EDU

Hashes

Type Hash
MD5 F934BBA57ED7661BC892763F023EB54C
SHA1 EA2B14A27DF8AA4F02B541FB1D426866D358B4FA
SHA256 1D3595FC64E37533FBBFC26EA27E6F66420759BD9341321435A5872ECFC13D8C
SHA384 831857BCCC57A303FE9F2C40C2E97D205E1B2CBD504125CAC30C2D4AFBD6CCC901CABD7CF8B54B0879F592214FF5B358
SHA512 CD25310DA12D7F4CC5C19F116E620B1A01F63D95BD69CA3D777AD5770723FDF70CE9B810EF35F34FA9A5F4BE2B1D266EC463AC9D99FF03FB9B1569B3F86C7859
SSDEEP 1536:MfHhAeoQeNhu3qg7P8i9pKaHiQVFmLfb6RemPLmRAewRXvnXXJj/4kigzpd8Xs+0:qZS0qg7kirNOeLLmRAecnXCktliXsJ
IMP B1EFDB0538ABA103E3EA07F7B26BF021
PESHA1 5ACD7210FDE47588B6C8DB724747933EE3A82612
PE256 F14198023366D149CC4836AFABF58439A5E58DBC6B750D340CD3CF24811074B2

Runtime Data

Loaded Modules:

Path
C:\Windows\System32\advapi32.dll
C:\Windows\System32\cfgmgr32.dll
C:\Windows\System32\combase.dll
C:\Windows\system32\deviceassociation.dll
C:\Windows\system32\EduPrintProv.exe
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\System32\msvcp_win.dll
C:\Windows\system32\msvcp110_win.dll
C:\Windows\System32\msvcrt.dll
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\OLEAUT32.dll
C:\Windows\system32\policymanager.dll
C:\Windows\System32\RPCRT4.dll
C:\Windows\System32\sechost.dll
C:\Windows\system32\SspiCli.dll
C:\Windows\System32\ucrtbase.dll

Signature

  • Status: Signature verified.
  • Serial: 330000026551AE1BBD005CBFBD000000000265
  • Thumbprint: E168609353F30FF2373157B4EB8CD519D07A2BFF
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: eduprintprov.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/76
  • VirusTotal Link: https://www.virustotal.com/gui/file/1d3595fc64e37533fbbfc26ea27e6f66420759bd9341321435a5872ecfc13d8c/detection

MIT License. Copyright (c) 2020-2021 Strontic.