PerceptionSimulationService.exe

  • File Path: C:\Windows\system32\PerceptionSimulation\PerceptionSimulationService.exe
  • Description: Windows Perception Simulation Service

Hashes

Type Hash
MD5 FC843422E589B5B2400FE528BCF96DD3
SHA1 7FED8242B33343E6ADD2AA112D55991CD3B4E9CD
SHA256 2FBD09D8C423876B4C47211FD878514DB630DD38A0EE7292B608051CA2CAF137
SHA384 B39AC9255A5E3F9E8BF26E7BB12FCFEEA50C1F415B7FEF48DC85B983E232C213955411519064FEB081378AC978A4CA49
SHA512 E942AEFA29431A275931FCCE08976C417A7B5028BAD6E9819FDFD856B94538ACFD6B6C122ED78C40BF6C19A31BEAE67B23A5A59EF12B2E32DEFAEDC70C12FFDC
SSDEEP 1536:4i5L8OascgCDVIxPT2ym3rp4kmlCrolqJ5VLKgljv3OFbOsJs3Gey9RHOeCUC:4g8FZIxPTXKfUCrUCele+DHOeC1
IMP C2DE8C94325285248B02AD116C1FA4BE
PESHA1 A0A235AE3D1F85C04E12B91F70EFCB856424C2BC
PE256 BB354F2A74EA1402F16F95656A9BA8D5E32F2EF7971AD6D9AFA3C32BA2D8917C

Runtime Data

Usage (stdout):

Windows Perception Simulation Service.

PerceptionSimulation [/I][/U][/?]

    /I    Installs the "Windows Perception Simulation Service" Service.
    /U    Removes the "Windows Perception Simulation Service" Service.
    /?    Displays this help.

Unrecognized switch "--help"

Loaded Modules:

Path
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\system32\PerceptionSimulation\PerceptionSimulationService.exe

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: PerceptionSimulationService.exe.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/76
  • VirusTotal Link: https://www.virustotal.com/gui/file/2fbd09d8c423876b4c47211fd878514db630dd38a0ee7292b608051ca2caf137/detection

File Similarity (ssdeep match)

File Score
C:\Windows\system32\PerceptionSimulation\PerceptionSimulationService.exe 36

MIT License. Copyright (c) 2020-2021 Strontic.