MSOUC.EXE
- File Path:
C:\Program Files (x86)\Microsoft Office\root\Office16\MSOUC.EXE
- Description: Microsoft Office Upload Center
Screenshot
Hashes
Type |
Hash |
MD5 |
68CCE63215B2876D359B8B5134F97313 |
SHA1 |
DAC48D36FF10BCE4F7AC0E1ED0FBCC0DE9A9DA1F |
SHA256 |
DC5D840D0805AE1610ACBFCEE38059A20F2B3B921939E107218162052AB044D8 |
SHA384 |
F3C0E489955D6A668F20B8AFCB5E8159913E821F7140FD3C20783C071AA37F66EB0DA0AD47281688AE9DC6C5C3175719 |
SHA512 |
BEDCD8480015605B55406B12DC568887E9CF9BAA9E3FEE81DD13472AAAF596F3EFD396B3647366C3CBCC4EBA1E4F83DC715BC3C51295924DC191EA52B031348A |
SSDEEP |
6144:ipKk9pO4h3wRo8rr/fUzo6fQCRrqUui2IdeOlrHExwYOuyHsbYLp9P636Ii5rLGW:OKQEW3wRJrr/fiXdqUH2IblTECM615WW |
IMP |
7D6F1BA0E1EC15C0CD60EC85CC2E3420 |
PESHA1 |
F51EAAC395A789007DA4CBBDEE618253F68EC27A |
PE256 |
EAD2A73F4B2906A216144C868DDC27343211ACC8310075BD2F6DB5153236CEF1 |
Runtime Data
Window Title:
Upload Center
Open Handles:
Path |
Type |
(—) C:\Users\user\AppData\Local\Temp\JETEA79.tmp |
File |
(R–) C:\ProgramData\Microsoft\Office\ClickToRunPackageLocker |
File |
(R-D) C:\Windows\SysWOW64\en-US\user32.dll.mui |
File |
(RW-) C:\Users\user\AppData\Local\Microsoft\Office\16.0\OfficeFileCache\CentralTable.accdb |
File |
(RW-) C:\Users\user\AppData\Local\Microsoft\Office\16.0\OfficeFileCache\CentralTable.laccdb |
File |
(RW-) C:\Users\user\Documents |
File |
(RW-) C:\Windows |
File |
(RW-) C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.488_none_11b1e5df2ffd8627 |
File |
(RW-) C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.19041.508_none_429cdbca8a8ffa94 |
File |
(RWD) C:\Windows\Fonts |
File |
\BaseNamedObjects__ComCatalogCache__ |
Section |
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 |
Section |
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 |
Section |
\Sessions\1\BaseNamedObjects\Microsoft Office Upload Center:AppSharedFile16 |
Section |
\Sessions\1\BaseNamedObjects\Microsoft_Office_16CSI_RTS:{00005173-0666-0667-A11E-728100000000} |
Section |
\Sessions\1\BaseNamedObjects\Microsoft_Office_16CSI_SPM:{225B8B86-2EDE-4668-AD2A-B68008BF2548} |
Section |
\Sessions\1\BaseNamedObjects\windows_shell_global_counters |
Section |
\Sessions\1\Windows\Theme64749523 |
Section |
\Windows\Theme1120315852 |
Section |
Loaded Modules:
Path |
C:\Program Files (x86)\Microsoft Office\root\Office16\MSOUC.EXE |
C:\Windows\SYSTEM32\ntdll.dll |
C:\Windows\System32\wow64.dll |
C:\Windows\System32\wow64cpu.dll |
C:\Windows\System32\wow64win.dll |
Signature
- Status: Signature verified.
- Serial:
33000002CE7C9ACE7D905ED2B70000000002CE
- Thumbprint:
B10607FB914700B40F794610850C1DE0A21566C1
- Issuer: CN=Microsoft Code Signing PCA 2010, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Original Filename: msouc.exe
- Product Name: Microsoft Office
- Company Name: Microsoft Corporation
- File Version: 16.0.12527.20482
- Product Version: 16.0.12527.20482
- Language: Language Neutral
- Legal Copyright:
- Machine Type: 32-bit
File Scan
- VirusTotal Detections: 0/67
- VirusTotal Link: https://www.virustotal.com/gui/file/dc5d840d0805ae1610acbfcee38059a20f2b3b921939e107218162052ab044d8/detection/
MIT License. Copyright (c) 2020-2021 Strontic.