IcsEntitlementHost.exe

  • File Path: C:\WINDOWS\system32\IcsEntitlementHost.exe
  • Description: ICS Entitlement Host

Hashes

Type Hash
MD5 5E1D02FD3DA3A580B5252E341B664A3B
SHA1 29EABC5AB44309C9B8ACCD1C855933B9BA498888
SHA256 24B148703179260D5284669DE74022A9C33AB99E652D451E0AE121D6EE1EF306
SHA384 C2F51693F79A17FA38A6CB300313127F2AE3B1828A0E8DB0840AC849E8F9B18D785733210A94122EBCFB5223867EBECF
SHA512 D4ED184A84EA1D3F2CA8705EAC93A5B9AD995DFC605CCD5D6C2DBEF0064173B053A86A7DF0A3146161B84D75CC254213D7F2F59D75F54DA05AE31BCD65EF6E30
SSDEEP 1536:pPBpRtBwMAW2Ua2A6I2ULC8yyddGy+0loQE4tz:DpvBJt2U6P1Lfey+nQLtz
IMP 95333169E2D0AFA034EB6D2BD96BD9DC
PESHA1 B05711D41889025A6285D31025909D7336D62AB2
PE256 479B6A9BAEC53A55F2E276E83070E79E4227AFB9DEAD7B4A76BF6CC80D425116

Runtime Data

Child Processes:

setup_wm.exe

Loaded Modules:

Path
C:\WINDOWS\system32\IcsEntitlementHost.exe
C:\WINDOWS\System32\KERNEL32.DLL
C:\WINDOWS\System32\KERNELBASE.dll
C:\WINDOWS\SYSTEM32\ntdll.dll

Signature

  • Status: Signature verified.
  • Serial: 33000002ED2C45E4C145CF48440000000002ED
  • Thumbprint: 312860D2047EB81F8F58C29FF19ECDB4C634CF6A
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: IcsEntitlementHost.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.22000.41 (WinBuild.160101.0800)
  • Product Version: 10.0.22000.41
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/71
  • VirusTotal Link: https://www.virustotal.com/gui/file/24b148703179260d5284669de74022a9c33ab99e652d451e0ae121d6ee1ef306/detection

MIT License. Copyright (c) 2020-2021 Strontic.