SenseIR.exe
  - File Path: 
C:\Program Files\Windows Defender Advanced Threat Protection\SenseIR.exe 
  - Description: Windows Defender Advanced Threat Protection Sense IR module
 
Hashes
  
    
      | Type | 
      Hash | 
    
  
  
    
      | MD5 | 
      6B0EE4D3361BA0D5871C4382196CA522 | 
    
    
      | SHA1 | 
      2577B2FA5FBB9E0A808C61A4F1C09517356BD7DF | 
    
    
      | SHA256 | 
      767661001636521C6FA9923D0E41F75D2EB8BADE1B8D155BC0648D458EBFD8E7 | 
    
    
      | SHA384 | 
      ECE3875217323C2B75AAB94BC4AEFEF7199F18DAA50FD57EB23DC8D5EA8E45949C2A92F3D349E5BBAF6F06F305729107 | 
    
    
      | SHA512 | 
      88C744C402BF9121858AC97F6D2155E7F1BBCA9AA8000D757CCEFE4D8FCE9E4541FE642E8751F764257A11E995FAFE011705EAE4B4FC62E6034D211F699F25E0 | 
    
    
      | SSDEEP | 
      49152:tzVhLeeG4qM8kOycEV4VYRgQKrt3RdxuWmhGlJgYES25KJo+WSuaD6o0ZSX8WQsH:EFQPns3vrfz2/ebf3J | 
    
    
      | IMP | 
      B7DFF2E72EF9FDF012EB489BF43FA2CC | 
    
    
      | PESHA1 | 
      DE8D199D1DB1A650F33B5FC6B43EFAC029AEB48E | 
    
    
      | PE256 | 
      8065A85570C495F884C0269D4F50D7F28F433C8540A1D12265DBD854B053E853 | 
    
  
Runtime Data
Loaded Modules:
  
    
      | Path | 
    
  
  
    
      | C:\Program Files\Windows Defender Advanced Threat Protection\SenseIR.exe | 
    
    
      | C:\Windows\System32\ADVAPI32.dll | 
    
    
      | C:\Windows\System32\combase.dll | 
    
    
      | C:\Windows\System32\KERNEL32.DLL | 
    
    
      | C:\Windows\System32\KERNELBASE.dll | 
    
    
      | C:\Windows\System32\msvcp_win.dll | 
    
    
      | C:\Windows\System32\msvcrt.dll | 
    
    
      | C:\Windows\SYSTEM32\ntdll.dll | 
    
    
      | C:\Windows\System32\RPCRT4.dll | 
    
    
      | C:\Windows\System32\sechost.dll | 
    
    
      | C:\Windows\System32\ucrtbase.dll | 
    
  
Signature
  - Status: Signature verified.
 
  - Serial: 
33000002EC6579AD1E670890130000000002EC 
  - Thumbprint: 
F7C2F2C96A328C13CDA8CDB57B715BDEA2CBD1D9 
  - Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
 
  - Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
 
  - Original Filename: SenseIR.exe
 
  - Product Name: Microsoft Windows Operating System
 
  - Company Name: Microsoft Corporation
 
  - File Version: 10.8040.19041.1320 (WinBuild.160101.0800)
 
  - Product Version: 10.8040.19041.1320
 
  - Language: English (United States)
 
  - Legal Copyright:  Microsoft Corporation. All rights reserved.
 
  - Machine Type: 64-bit
 
File Scan
  - VirusTotal Detections: 0/73
 
  - VirusTotal Link: https://www.virustotal.com/gui/file/767661001636521c6fa9923d0e41f75d2eb8bade1b8d155bc0648d458ebfd8e7/detection
 
MIT License. Copyright (c) 2020-2021 Strontic.