Microsoft.AAD.BrokerPlugin.exe

  • File Path: C:\WINDOWS\SystemApps\Microsoft.AAD.BrokerPlugin_cw5n1h2txyewy\Microsoft.AAD.BrokerPlugin.exe
  • Description: AAD token broker plugin

Hashes

Type Hash
MD5 7FABC17B6837C0DAC455CA1D2BCA0203
SHA1 92A7044FB9596A8232C0AEFDD547F541AF96F5BF
SHA256 F007FD89219249C3CC580B78A35F8B46DC9ADB368C2DF263C5C466345C2F412D
SHA384 40EA0755C8E4F781610B2D69D679C2A5E1B80617D4F280A6B556FFA9FAEB48AE6672C78D87830E1291958E01DC142547
SHA512 42A35436A94F31794006549D4240F555F91ACB429CF357DAFA984B486F2437E309FDDEF902CA0011E2C8327EE1DEB3C578C2580C92CA02A7831D1B9EB1453876
SSDEEP 6144:QxKj0BoFMbKsF+5j8up7oTkNm5mCqb9qBO:Qwj08uKsF+5ekNumCbI
IMP 28F5B656B7381A5DC7B39EA7D756BC15
PESHA1 61C47DAD08686A0BAADC5324DA93DF1A87EB300B
PE256 8BC91472D3573FD8CD884160390A12AEDAF4DC8983290BF5797DD0DAF798F3C2

Runtime Data

Loaded Modules:

Path
C:\WINDOWS\System32\combase.dll
C:\WINDOWS\System32\KERNEL32.DLL
C:\WINDOWS\System32\KERNELBASE.dll
C:\WINDOWS\SYSTEM32\ntdll.dll
C:\WINDOWS\System32\RPCRT4.dll
C:\WINDOWS\System32\ucrtbase.dll
C:\WINDOWS\SystemApps\Microsoft.AAD.BrokerPlugin_cw5n1h2txyewy\Microsoft.AAD.BrokerPlugin.exe

Signature

  • Status: Signature verified.
  • Serial: 33000002ED2C45E4C145CF48440000000002ED
  • Thumbprint: 312860D2047EB81F8F58C29FF19ECDB4C634CF6A
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: Microsoft.AAD.BrokerPlugin.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.22000.120 (WinBuild.160101.0800)
  • Product Version: 10.0.22000.120
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/72
  • VirusTotal Link: https://www.virustotal.com/gui/file/f007fd89219249c3cc580b78a35f8b46dc9adb368c2df263c5c466345c2f412d/detection

MIT License. Copyright (c) 2020-2021 Strontic.