Microsoft.AAD.BrokerPlugin.exe

  • File Path: C:\Windows\SystemApps\Microsoft.AAD.BrokerPlugin_cw5n1h2txyewy\Microsoft.AAD.BrokerPlugin.exe
  • Description: AAD token broker plugin

Hashes

Type Hash
MD5 9203DA3357F8B210486E5CE380D13A65
SHA1 A867ABEE12C48A2412C90DFDB2D9FD5C1FBCA1E4
SHA256 7315CAE350B38386F15EE491F53F9EFE97BCD1BEFE30E9662535366ACA4D7876
SHA384 FE69150952FD64BA940C11FC1D3A2FAD1E289608AE910BF8EF75F21BFAD14BC5BC446C12F84607A07F705F859F4E2E74
SHA512 4968C2C67EB3AE5D4038F598AA8D8766D741933606577A05C35A7F5A2041F200F6A00C51227806A5F5782132D122DCC5BAFD0D9F63D92AF141CDC6543838FB04
SSDEEP 3072:95tbOxdJ28HJh1nTaL03RUkP1uKuJHykAkj+nmThte09J/eq051wccGP:95tiDZ1TaL03RruAk5+naidqu1ww
IMP 1C7722EBBDCEE129017E54A6FBAF1A83
PESHA1 8737B0D093B6D5D72FAA007176B3F0E0F21A9B6F
PE256 0FD9538C24FD23A4B64D9F01DAF8AFB12B10E5BD657C4F10C1D8C87E90B42509

Runtime Data

Loaded Modules:

Path
C:\Windows\System32\combase.dll
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\System32\msvcp_win.dll
C:\Windows\System32\msvcrt.dll
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\OLEAUT32.dll
C:\Windows\System32\RPCRT4.dll
C:\Windows\System32\ucrtbase.dll
C:\Windows\SYSTEM32\wincorlib.DLL
C:\Windows\SystemApps\Microsoft.AAD.BrokerPlugin_cw5n1h2txyewy\Microsoft.AAD.BrokerPlugin.exe

Signature

  • Status: Signature verified.
  • Serial: 33000002EC6579AD1E670890130000000002EC
  • Thumbprint: F7C2F2C96A328C13CDA8CDB57B715BDEA2CBD1D9
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: Microsoft.AAD.BrokerPlugin.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1202 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1202
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/73
  • VirusTotal Link: https://www.virustotal.com/gui/file/7315cae350b38386f15ee491f53f9efe97bcd1befe30e9662535366aca4d7876/detection

File Similarity (ssdeep match)

File Score
C:\Windows\SystemApps\Microsoft.AAD.BrokerPlugin_cw5n1h2txyewy\Microsoft.AAD.BrokerPlugin.exe 91

MIT License. Copyright (c) 2020-2021 Strontic.