LaunchTM.exe

  • File Path: C:\Windows\system32\LaunchTM.exe
  • Description: Task Manager Launcher

Hashes

Type Hash
MD5 2A00EED654DD3A437922F96F7DF3AF92
SHA1 E64AF88B2D4AE82D82EBBE118F9D19B465615D12
SHA256 F8F394A721883D69F845859DB1B02C167B6EFAB121632F1265912B94CE007C39
SHA384 0F454553A1205712784BDEF33A97477BF10A67C82B2E8442504BB381ABB8F6736AF7A98B4BD64A6E953304997BB49B62
SHA512 311A2BDDE2F499931F5D85D6472BA1A9F492B0B03B9C63AF364419DBD28AF8CD512DCA84D8E13EFAAC6EEF5777617775FF41A9D70C616AFD228068C42EFBD038
SSDEEP 192:zgvRQ0/cEyT/uufqR1a71pd1fsTvB0mWvqayW:iRsxT2lLQp/qBRWvqayW
IMP AD4CEE994BCE4BEC755FC55C249B5C5F
PESHA1 2CD861F024C605BA8C1BE8CED5B163811814B50E
PE256 64A7D3CE4AFFE780BF9F139F35445298D2F027677796578638ADADADA5D82B67

Runtime Data

Child Processes:

Taskmgr.exe

Loaded Modules:

Path
C:\Windows\System32\bcryptPrimitives.dll
C:\Windows\System32\combase.dll
C:\Windows\System32\GDI32.dll
C:\Windows\System32\gdi32full.dll
C:\Windows\System32\IMM32.DLL
C:\Windows\SYSTEM32\kernel.appcore.dll
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\system32\LaunchTM.exe
C:\Windows\System32\msvcp_win.dll
C:\Windows\System32\msvcrt.dll
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\RPCRT4.dll
C:\Windows\System32\SHELL32.dll
C:\Windows\System32\ucrtbase.dll
C:\Windows\System32\USER32.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\System32\win32u.dll

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: LaunchTM.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.662 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.662
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/76
  • VirusTotal Link: https://www.virustotal.com/gui/file/f8f394a721883d69f845859db1b02c167b6efab121632f1265912b94ce007c39/detection

File Similarity (ssdeep match)

File Score
C:\Windows\system32\LaunchTM.exe 83
C:\Windows\system32\LaunchTM.exe 71
C:\Windows\system32\LaunchTM.exe 88

MIT License. Copyright (c) 2020-2021 Strontic.