- File Path:
C:\WINDOWS\system32\oobe\SetupPlatform\SetupPlatform.exe
- Description: SetupPlatform module
Hashes
Type |
Hash |
MD5 |
68D7BE43AC0FF8B7C08DAE769C4C84A6 |
SHA1 |
93F0F76A3CB40D51F7B9280EA929A9FEEA044C54 |
SHA256 |
7B5A0626B58434641B0A7B209E0B55AD82C167EB563401683CCC88D989E03F6A |
SHA384 |
6131EBAA636368E6D5777107C71AD12BDDF0EE3E797A025C27623AAF57D305FFDA1DD800B6382D1D327905C0C84906D7 |
SHA512 |
ABF4D2D0A898B5C94FB18CD23D63EB5573D6D8EFDF81CD6DBCCDD7EFC56A34252761FDC108A9843C5B03BD0BAE86624847172893D06D487A73F234BB04904B25 |
SSDEEP |
3072:mpfRyA+TGQYN8JG59Qk+9S0ZMyNBEs1hIzJHzRFRAdDxmODqOmFc57NnpO7SBROl:mNIYiI59QkGMyNes1hss5Z0S2O56 |
IMP |
A6E5C92F72EE48F1C365EBFA42A4EC52 |
PESHA1 |
6DF66E41E0932B11B4D78207D9D0637A32A73487 |
PE256 |
941BC74CFA29FE7A140AAE9C2411E1C42DCA9855BC380B69A95178D534623C67 |
Runtime Data
Loaded Modules:
Path |
C:\WINDOWS\System32\ADVAPI32.dll |
C:\WINDOWS\System32\KERNEL32.DLL |
C:\WINDOWS\System32\KERNELBASE.dll |
C:\WINDOWS\System32\msvcrt.dll |
C:\WINDOWS\SYSTEM32\ntdll.dll |
C:\WINDOWS\system32\oobe\SetupPlatform\SetupPlatform.exe |
C:\WINDOWS\System32\sechost.dll |
Signature
- Status: Signature verified.
- Serial:
33000002ED2C45E4C145CF48440000000002ED
- Thumbprint:
312860D2047EB81F8F58C29FF19ECDB4C634CF6A
- Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Original Filename: SETUPPLATFORM.EXE
- Product Name: Microsoft Windows Operating System
- Company Name: Microsoft Corporation
- File Version: 10.0.22000.160 (WinBuild.160101.0800)
- Product Version: 10.0.22000.160
- Language: English (United States)
- Legal Copyright: Microsoft Corporation. All rights reserved.
- Machine Type: 64-bit
File Scan
- VirusTotal Detections: 0/73
- VirusTotal Link: https://www.virustotal.com/gui/file/7b5a0626b58434641b0a7b209e0b55ad82c167eb563401683ccc88d989e03f6a/detection
File Similarity (ssdeep match)
MIT License. Copyright (c) 2020-2021 Strontic.