TieringEngineService.exe
  - File Path: 
C:\Windows\system32\TieringEngineService.exe 
  - Description: Storage Tiers Management
 
Hashes
  
    
      | Type | 
      Hash | 
    
  
  
    
      | MD5 | 
      33E60A1BD76A877683FCD7DC93A10635 | 
    
    
      | SHA1 | 
      57A3F1BB5D26537F9735BDDDA9B6DE300F218C9F | 
    
    
      | SHA256 | 
      917F104892FF1890BE2AB218B99C2DFED8287AB93EA6895BA74090783D4E341C | 
    
    
      | SHA384 | 
      675D4F03D5594DC1E51C213726AEBBD9875689F86B37D64F8782ACDD792DED51051F779E61386A0CA3F3ACDF74F72069 | 
    
    
      | SHA512 | 
      C3A715BB6D3771E7839FC7B38B307B9BF6DEB7411203CA42020084F54438070570D59277FE2A320F83512170FF9A99B522207A21335C999AA896794DF2463D40 | 
    
    
      | SSDEEP | 
      6144:EjWq9JnJtFSsydvFyshpyNqZkNw16puxRbkGqG:Ei2JnJyhh+gkyxIg | 
    
    
      | IMP | 
      E803DC35CC0F3853734DD4B09D47793A | 
    
    
      | PESHA1 | 
      044F73E41575278E9ABED6EE144D9DC49A663D4E | 
    
    
      | PE256 | 
      88D69DB706EE1CE5397E65C23281CDF36EE371916A2B6038FDF3A4BEC1F2DEAC | 
    
  
Runtime Data
Open Handles:
  
    
      | Path | 
      Type | 
    
  
  
    
      | (R-D)   C:\Windows\System32\en-US\TieringEngineService.exe.mui | 
      File | 
    
    
      | (RW-)   C:\Users\user | 
      File | 
    
    
      | \BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000004.db | 
      Section | 
    
    
      | \BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000004.db | 
      Section | 
    
    
      | \BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2.ro | 
      Section | 
    
    
      | \BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 | 
      Section | 
    
    
      | \BaseNamedObjects\NLS_CodePage_437_3_2_0_0 | 
      Section | 
    
  
Loaded Modules:
  
    
      | Path | 
    
  
  
    
      | C:\Windows\System32\advapi32.dll | 
    
    
      | C:\Windows\System32\bcrypt.dll | 
    
    
      | C:\Windows\System32\bcryptPrimitives.dll | 
    
    
      | C:\Windows\System32\cfgmgr32.dll | 
    
    
      | C:\Windows\system32\CLUSAPI.dll | 
    
    
      | C:\Windows\System32\combase.dll | 
    
    
      | C:\Windows\system32\ESENT.dll | 
    
    
      | C:\Windows\System32\KERNEL32.DLL | 
    
    
      | C:\Windows\System32\KERNELBASE.dll | 
    
    
      | C:\Windows\System32\msvcp_win.dll | 
    
    
      | C:\Windows\System32\msvcrt.dll | 
    
    
      | C:\Windows\SYSTEM32\ntdll.dll | 
    
    
      | C:\Windows\System32\OLEAUT32.dll | 
    
    
      | C:\Windows\System32\RPCRT4.dll | 
    
    
      | C:\Windows\System32\sechost.dll | 
    
    
      | C:\Windows\system32\TieringEngineService.exe | 
    
    
      | C:\Windows\System32\ucrtbase.dll | 
    
  
Signature
  - Status: Signature verified.
 
  - Serial: 
33000001C422B2F79B793DACB20000000001C4 
  - Thumbprint: 
AE9C1AE54763822EEC42474983D8B635116C8452 
  - Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
 
  - Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
 
  - Original Filename: TieringEngineService.exe.mui
 
  - Product Name: Microsoft Windows Operating System
 
  - Company Name: Microsoft Corporation
 
  - File Version: 10.0.17763.1 (WinBuild.160101.0800)
 
  - Product Version: 10.0.17763.1
 
  - Language: English (United States)
 
  - Legal Copyright:  Microsoft Corporation. All rights reserved.
 
  - Machine Type: 64-bit
 
File Scan
  - VirusTotal Detections: 0/72
 
  - VirusTotal Link: https://www.virustotal.com/gui/file/917f104892ff1890be2ab218b99c2dfed8287ab93ea6895ba74090783d4e341c/detection/
 
MIT License. Copyright (c) 2020-2021 Strontic.