OneDriveUpdaterService.exe

  • File Path: C:\Users\user\AppData\Local\Microsoft\OneDrive\21.220.1024.0001\OneDriveUpdaterService.exe
  • Description: Updater Service

Hashes

Type Hash
MD5 D62E583B4D92CC82EE849F0680EE3D2B
SHA1 26FF97FEE67D17185D43A94F1726E6A1E1287AE7
SHA256 EBC08CCA29B084345D16E37D0796EE28135142FE705CB7CBF04E155B7CD27304
SHA384 FDCBC72CF939B06D6433BCC4F550A82206FD25DE77AF17CFFECBF0144737FE667F8020C74A5D3C2461E08B8CFB1C65BD
SHA512 4DACD757FD4FBF476098BBE4464ABE415CBC5849C8A3614C60DC559C57EB8EBB4495BE4041B300F55A56C796E62DCBB5CD270890311C3CBDD6706B95F52FA469
SSDEEP 49152:Q+0D53dBCQUa9udAdVUev32vaxwlyDKcuvLjce7JSDTac8:+mdeBY08
IMP D066F13344E170F3569864DC4A5136E8
PESHA1 5761B441ABB58D384523992C106104005E5B7D5E
PE256 84F1B3F14933724DA2F00AE93C0B2E01F1E6AB57073412E494CA4B3DE154575A

Runtime Data

Child Processes:

wermgr.exe

Loaded Modules:

Path
C:\Users\user\AppData\Local\Microsoft\OneDrive\21.220.1024.0001\OneDriveUpdaterService.exe
C:\WINDOWS\System32\GDI32.dll
C:\WINDOWS\System32\gdi32full.dll
C:\WINDOWS\System32\KERNEL32.DLL
C:\WINDOWS\System32\KERNELBASE.dll
C:\WINDOWS\System32\msvcp_win.dll
C:\WINDOWS\SYSTEM32\ntdll.dll
C:\WINDOWS\System32\ucrtbase.dll
C:\WINDOWS\System32\USER32.dll
C:\WINDOWS\System32\win32u.dll

Signature

  • Status: Signature verified.
  • Serial: 33000003F16206E3E7EFDA8ABE0000000003F1
  • Thumbprint: 5362FAEB842C236D05A729B7FAC85BAA1B68BDCA
  • Issuer: CN=Microsoft Code Signing PCA 2010, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: OneDriveUpdaterService.exe
  • Product Name: Microsoft OneDrive
  • Company Name: Microsoft Corporation
  • File Version: 21.220.1024.0001
  • Product Version: 21.220.1024.0001
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/73
  • VirusTotal Link: https://www.virustotal.com/gui/file/ebc08cca29b084345d16e37d0796ee28135142fe705cb7cbf04e155b7cd27304/detection

MIT License. Copyright (c) 2020-2021 Strontic.