MpDlpCmd.exe

  • File Path: C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2006.10-0\MpDlpCmd.exe
  • Description: Microsoft Malware Protection DLP Command Line Utility

Hashes

Type Hash
MD5 22487937223E8A233830FA3823F4A5F9
SHA1 41E90C68D4A338BDBA72555DE167F76533B4C514
SHA256 22C6D64AD05F492C179340A06D32FD6D7D7D3B2FEDD0ED122D6B71BA311A703C
SHA384 6607FD1A5079A7043EAC3446937827473E6461925361C6CB63ECA30B78CA8958C99C08A0592287DB15B9DC0674A99BC3
SHA512 9370581A44351CD897B722AE9BE48AAA33A6EB73F365E1F21C7909B2B45625D7F82AAA2644221655C060A6C74B90505F1B93690C7C798F32CC2BBDEED07A2345
SSDEEP 6144:UMSSsbAaR8OdTOmiTVVmVVV8VVNVVVcVVVxVVVPVVlVVVRVVVtVVWV60jVLVVOVZ:UM4v+OlEC

Runtime Data

Usage (stdout):

MpDlpCmd: Failed with hr = 0x80070667.MpDlpCmd: Invalid command line argument

Usage: MpDlpCmd -<Command>

Loaded Modules:

Path
C:\Windows\SYSTEM32\ntdll.dll

Signature

  • Status: Signature verified.
  • Serial: 330000024A0E8AFDF15C662D2B00000000024A
  • Thumbprint: 96384A7F5F1C438F32E2454697DC6D312A74517B
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows Publisher, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: MpDlpCmd.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 4.18.2006.10 (WinBuild.160101.0800)
  • Product Version: 4.18.2006.10
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.

File Similarity (ssdeep match)

File Score
C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MpDlpCmd.exe 79
C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2005.5-0\MpDlpCmd.exe 75
C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2007.8-0\MpDlpCmd.exe 79
C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2008.9-0\MpDlpCmd.exe 80
C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2009.7-0\MpDlpCmd.exe 82
C:\WINDOWS\system32\SecurityHealthSystray.exe 82

MIT License. Copyright (c) 2020-2021 Strontic.