TieringEngineService.exe
- File Path:
C:\Windows\system32\TieringEngineService.exe
- Description: Storage Tiers Management
Hashes
Type |
Hash |
MD5 |
33E60A1BD76A877683FCD7DC93A10635 |
SHA1 |
57A3F1BB5D26537F9735BDDDA9B6DE300F218C9F |
SHA256 |
917F104892FF1890BE2AB218B99C2DFED8287AB93EA6895BA74090783D4E341C |
SHA384 |
675D4F03D5594DC1E51C213726AEBBD9875689F86B37D64F8782ACDD792DED51051F779E61386A0CA3F3ACDF74F72069 |
SHA512 |
C3A715BB6D3771E7839FC7B38B307B9BF6DEB7411203CA42020084F54438070570D59277FE2A320F83512170FF9A99B522207A21335C999AA896794DF2463D40 |
SSDEEP |
6144:EjWq9JnJtFSsydvFyshpyNqZkNw16puxRbkGqG:Ei2JnJyhh+gkyxIg |
IMP |
E803DC35CC0F3853734DD4B09D47793A |
PESHA1 |
044F73E41575278E9ABED6EE144D9DC49A663D4E |
PE256 |
88D69DB706EE1CE5397E65C23281CDF36EE371916A2B6038FDF3A4BEC1F2DEAC |
Runtime Data
Open Handles:
Path |
Type |
(R-D) C:\Windows\System32\en-US\TieringEngineService.exe.mui |
File |
(RW-) C:\Users\user |
File |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000004.db |
Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000004.db |
Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2.ro |
Section |
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 |
Section |
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 |
Section |
Loaded Modules:
Path |
C:\Windows\System32\advapi32.dll |
C:\Windows\System32\bcrypt.dll |
C:\Windows\System32\bcryptPrimitives.dll |
C:\Windows\System32\cfgmgr32.dll |
C:\Windows\system32\CLUSAPI.dll |
C:\Windows\System32\combase.dll |
C:\Windows\system32\ESENT.dll |
C:\Windows\System32\KERNEL32.DLL |
C:\Windows\System32\KERNELBASE.dll |
C:\Windows\System32\msvcp_win.dll |
C:\Windows\System32\msvcrt.dll |
C:\Windows\SYSTEM32\ntdll.dll |
C:\Windows\System32\OLEAUT32.dll |
C:\Windows\System32\RPCRT4.dll |
C:\Windows\System32\sechost.dll |
C:\Windows\system32\TieringEngineService.exe |
C:\Windows\System32\ucrtbase.dll |
Signature
- Status: Signature verified.
- Serial:
33000001C422B2F79B793DACB20000000001C4
- Thumbprint:
AE9C1AE54763822EEC42474983D8B635116C8452
- Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Original Filename: TieringEngineService.exe.mui
- Product Name: Microsoft Windows Operating System
- Company Name: Microsoft Corporation
- File Version: 10.0.17763.1 (WinBuild.160101.0800)
- Product Version: 10.0.17763.1
- Language: English (United States)
- Legal Copyright: Microsoft Corporation. All rights reserved.
- Machine Type: 64-bit
File Scan
- VirusTotal Detections: 0/72
- VirusTotal Link: https://www.virustotal.com/gui/file/917f104892ff1890be2ab218b99c2dfed8287ab93ea6895ba74090783d4e341c/detection/
MIT License. Copyright (c) 2020-2021 Strontic.