RMActivate_ssp_isv.exe

  • File Path: C:\WINDOWS\SysWOW64\RMActivate_ssp_isv.exe
  • Description: Windows Rights Management Services Activation for Server Security Processor (Pre-production)

Hashes

Type Hash
MD5 835F1C901A162C9DA81CF198FEE0FCB8
SHA1 52FF6AB1A22231274608AC47A65AB3906441FFCD
SHA256 66CFBEFB01D144130F7643B66020E4A5D348C3AA1FFECAFB2EA152958A10DD70
SHA384 EE0C91AFFE58377C6C5394F3B43B705B7F3F15238F12341C4D5901B138844C0B6561D955BBF17ADE3C15F1AF5B52CCE3
SHA512 E7F13E47A6DFCFE00AE106FEAE7CE4BB8481051BB3CFA86421E34BFB33EE5D9BAB00540F5D349C40F5FCD2CDE03389C29CB568B5AE2A80217E04A9B0579F62E6
SSDEEP 12288:ShJzi2Y6ZQqJe+9EQtJjotTDLnoyPaDXdejvVvRPZv0H6/dwD:kJziLxqJe+9EQtxohDLoyPoXMjvV5d0r
IMP 7E5FF848353E2487D8DE47C6573CC310
PESHA1 AAA3B4031D1C724C2D5E514014E32106768CF7DB
PE256 E64892A07AC72AC0DECC21F0266B57C86E7EBA6769E197B4C00C4FC2C7681CD2

Runtime Data

Child Processes:

conhost.exe

Loaded Modules:

Path
C:\WINDOWS\SYSTEM32\ntdll.dll
C:\WINDOWS\System32\wow64.dll
C:\WINDOWS\System32\wow64base.dll
C:\WINDOWS\System32\wow64con.dll
C:\WINDOWS\System32\wow64cpu.dll
C:\WINDOWS\System32\wow64win.dll
C:\WINDOWS\SysWOW64\RMActivate_ssp_isv.exe

Signature

  • Status: Signature verified.
  • Serial: 33000002ED2C45E4C145CF48440000000002ED
  • Thumbprint: 312860D2047EB81F8F58C29FF19ECDB4C634CF6A
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: rmactivate_ssp_isv.exe.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.22000.1 (WinBuild.160101.0800)
  • Product Version: 10.0.22000.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/73
  • VirusTotal Link: https://www.virustotal.com/gui/file/66cfbefb01d144130f7643b66020e4a5d348c3aa1ffecafb2ea152958a10dd70/detection

MIT License. Copyright (c) 2020-2021 Strontic.