Spectrum.exe
- File Path:
C:\Windows\system32\Spectrum.exe
- Description: Windows Perception Service
Hashes
Type |
Hash |
MD5 |
49417A7FD84876FCE07948389D330569 |
SHA1 |
C095BB204FA4E49283617ED4D7C5CFFB6E2215F5 |
SHA256 |
12E96BB53A1E11750C7AFCA449EBD0FF340A6088E1FA4B4CC0A448E50E557E98 |
SHA384 |
F664A542A04E292D04E5ECAB57731EBA174F4DBB9F60CA90C1737AEBE326F02EC2A0FD59F717F15C6A41D99B016F8FFA |
SHA512 |
08036D460D6C6C020A2E6EA3130A9AE26B5A10A0395CBCD6CD0316461417DB0AB690EC51DC6B772FDED3062212DEF432E71FADED030E75D9D9AAC6BE17A3F746 |
SSDEEP |
12288:ShOAY2KY6065+AhS6CVlWwNENXEbZjtot:LAFs06+OmlfaNXEbTo |
IMP |
2AB32E56563EF7EA606B8E07FCE5A66B |
PESHA1 |
5E5C146323574091C8E47BE104B08D6AAB3968B6 |
PE256 |
DB5B0648AEFE05D5680AA9133EF4E1DF3181EC2B14783E494184027756326D86 |
Runtime Data
Usage (stdout):
Unrecognized parameter: --help
Parameters:
/debug to run the service executable in debug mode
/safemode to set up the service to run in safe mode
/safemode:off to disable safe mode if enabled
Loaded Modules:
Path |
C:\Windows\System32\KERNEL32.DLL |
C:\Windows\System32\KERNELBASE.dll |
C:\Windows\SYSTEM32\ntdll.dll |
C:\Windows\system32\Spectrum.exe |
Signature
- Status: Signature verified.
- Serial:
33000002EC6579AD1E670890130000000002EC
- Thumbprint:
F7C2F2C96A328C13CDA8CDB57B715BDEA2CBD1D9
- Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Original Filename: Spectrum.exe.mui
- Product Name: Microsoft Windows Operating System
- Company Name: Microsoft Corporation
- File Version: 10.0.19041.1 (WinBuild.160101.0800)
- Product Version: 10.0.19041.1
- Language: English (United States)
- Legal Copyright: Microsoft Corporation. All rights reserved.
- Machine Type: 64-bit
File Scan
- VirusTotal Detections: 0/73
- VirusTotal Link: https://www.virustotal.com/gui/file/12e96bb53a1e11750c7afca449ebd0ff340a6088e1fa4b4cc0a448e50e557e98/detection
MIT License. Copyright (c) 2020-2021 Strontic.