LockScreenContentServer.exe

  • File Path: C:\Windows\system32\LockScreenContentServer.exe
  • Description: LockScreenContent Server

Hashes

Type Hash
MD5 A0B7513C98CF46CA2CEA3A567FEC137C
SHA1 2307FC8E3FC620EA3C2FDC6248AD4658479BA995
SHA256 CB2278884F04FD34753F7A20E5865EF5FC4FA47C28DF9AC14AD6E922713AF8C6
SHA384 C9BC32D1244BC42B2DF91A314D1CF78879A84F7FA7A00BF5CCA018082AC1552AB41E2CB18D2594AAEF37CB79C6C36E92
SHA512 3928485A60FFA7F2D2B7D0BE51863E1F8197578CFB397F1086A1AB5132843A23BBC4042B04B5D01FAFAD04878BD839161FA492D0CF1A6BAC6BE92023CDEE3D15
SSDEEP 768:bGQvZAVIG7PsefP8lAd7MtCwIpSkSN45Z5WLXcar6wD1PJRaD:VvIIgL5ta+dr5Z5Wjc0PLa
IMP E441628266F72396B90DBB4176D0A3BD
PESHA1 BDC4A715AD69EB7BE8D9E4C077D1748D539D8494
PE256 CD952F6F0CF94688892512313480883097102F398173A6C298093E8BCB6C40A6

Runtime Data

Open Handles:

Path Type
(RW-) C:\Users\user File
\BaseNamedObjects__ComCatalogCache__ Section
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000002.db Section
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db Section
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2 Section
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 Section
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 Section

Loaded Modules:

Path
C:\Windows\System32\combase.dll
C:\Windows\system32\DUI70.dll
C:\Windows\system32\DUser.dll
C:\Windows\System32\GDI32.dll
C:\Windows\System32\gdi32full.dll
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\system32\LockScreenContentServer.exe
C:\Windows\System32\msvcp_win.dll
C:\Windows\System32\msvcrt.dll
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\RPCRT4.dll
C:\Windows\System32\ucrtbase.dll
C:\Windows\System32\USER32.dll
C:\Windows\System32\win32u.dll

Signature

  • Status: Signature verified.
  • Serial: 33000002EC6579AD1E670890130000000002EC
  • Thumbprint: F7C2F2C96A328C13CDA8CDB57B715BDEA2CBD1D9
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: LockScreenContentServer.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.746 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.746
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/74
  • VirusTotal Link: https://www.virustotal.com/gui/file/cb2278884f04fd34753f7a20e5865ef5fc4fa47c28df9ac14ad6e922713af8c6/detection

MIT License. Copyright (c) 2020-2021 Strontic.