RunLegacyCPLElevated.exe

  • File Path: C:\WINDOWS\SysWOW64\RunLegacyCPLElevated.exe
  • Description: Run a legacy CPL elevated

Hashes

Type Hash
MD5 A16745D0777F337EDADFAA6C3624BAA1
SHA1 5806DE478AE341312D6EC3EE3DCA9D3FCCDF3EDF
SHA256 6B9ABE6D04F72ABFC70B28BD63458143D18E88C86EFFE237A8942BC79C78D049
SHA384 A79B4106D8942D3A0F322C40B696A6808CA86B2509324410D663BB1D3352F6D8CAB109FD68981DE86ED5B801A7005420
SHA512 BBCBFC9C4A656EEC827AAF2C89FF62FCE9A0D41AD552C0752871EA1DA5C3AA53F7C489287C5D6E1B91FEF49C65558802DD073D5D0443492B1205EA94997E2C1A
SSDEEP 768:zTFJH4SEIUkzkN2qEFhDJydZAGSkVhWakkbB5eT905WGnUKxHUe7n8jKBFFptX/J:zTrcOydZAxakkn6oYY0ewiP8

Signature

  • Status: Signature verified.
  • Serial: 330000023241FB59996DCC4DFF000000000232
  • Thumbprint: FF82BC38E1DA5E596DF374C53E3617F7EDA36B06
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: RunLegacyCPLElevated.EXE
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.18362.1 (WinBuild.160101.0800)
  • Product Version: 10.0.18362.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.

File Similarity (ssdeep match)

File Score
C:\Windows\system32\RunLegacyCPLElevated.exe 65
C:\Windows\system32\RunLegacyCPLElevated.exe 57
C:\Windows\system32\RunLegacyCPLElevated.exe 54
C:\windows\system32\RunLegacyCPLElevated.exe 75
C:\WINDOWS\system32\RunLegacyCPLElevated.exe 65
C:\Windows\system32\winver.exe 69
C:\Windows\system32\winver.exe 71
C:\Windows\system32\winver.exe 71
C:\WINDOWS\system32\winver.exe 69
C:\windows\system32\winver.exe 69
C:\Windows\SysWOW64\RunLegacyCPLElevated.exe 71
C:\Windows\SysWOW64\RunLegacyCPLElevated.exe 68
C:\windows\SysWOW64\RunLegacyCPLElevated.exe 69
C:\Windows\SysWOW64\RunLegacyCPLElevated.exe 68
C:\windows\SysWOW64\winver.exe 68
C:\Windows\SysWOW64\winver.exe 72
C:\Windows\SysWOW64\winver.exe 72
C:\WINDOWS\SysWOW64\winver.exe 72
C:\Windows\SysWOW64\winver.exe 69

MIT License. Copyright (c) 2020-2021 Strontic.