OOBENetworkCaptivePortal.exe

  • File Path: C:\Windows\SystemApps\Microsoft.Windows.OOBENetworkCaptivePortal_cw5n1h2txyewy\OOBENetworkCaptivePortal.exe
  • Description: OOBE Captive Portal Flow

Hashes

Type Hash
MD5 13583AC903791057EBC1CD13EAD52703
SHA1 E6103009B0A014ABC5F6909D1A057E3D420F3BB1
SHA256 D450E23F4813E5E059377CD7CBB4BD459930266980480BC161F8720E1330742C
SHA384 AF17CC45E770DA081827308C973ED0D5EC3F59066B3D425783544D750FC597616C7838D706F7470C19F519E08A1C1888
SHA512 865159B2A50DEAB9769AD7AAA08B475C6DE615DFBE9FECB851E5A688B8FACD6AC9FC52D36BC2A5F910E96489E076FCB941DDD7D8F1345A6E0A4488EAD7E7F065
SSDEEP 6144:8U74Xv7hbzpA0Yfc6X86OzSfksebizQmkAfUCtaNGoiI3ld+HoeWKbaq8vLDuQvw:b74XdbttYE6Szok7ObAGoicM1bgZvw
IMP B9F9161C70721A82F623FAB957E5E353
PESHA1 E1FBB487451EE5AD9C7329DFE67FF55D26058DB7
PE256 421365AA826AC6D95E33165BB99B2F2A50DA30644C9DFF98671A2B2F859FCD47

Runtime Data

Loaded Modules:

Path
C:\Windows\System32\combase.dll
C:\Windows\SYSTEM32\IPHLPAPI.DLL
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\System32\msvcp_win.dll
C:\Windows\System32\msvcrt.dll
C:\Windows\SYSTEM32\nlaapi.dll
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\OLEAUT32.dll
C:\Windows\System32\RPCRT4.dll
C:\Windows\System32\ucrtbase.dll
C:\Windows\SYSTEM32\wincorlib.DLL
C:\Windows\SystemApps\Microsoft.Windows.OOBENetworkCaptivePortal_cw5n1h2txyewy\OOBENetworkCaptivePortal.exe

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: OOBECaptivePortalFlow.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.423 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.423
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/75
  • VirusTotal Link: https://www.virustotal.com/gui/file/d450e23f4813e5e059377cd7cbb4bd459930266980480bc161f8720e1330742c/detection

MIT License. Copyright (c) 2020-2021 Strontic.