TieringEngineService.exe

  • File Path: C:\WINDOWS\system32\TieringEngineService.exe
  • Description: Storage Tiers Management

Hashes

Type Hash
MD5 F6FC12DCE551FBA15B699FF55D126DBF
SHA1 82B97A98B626A14E4CE81A582AC649A999334434
SHA256 C2C6583349324CBFB1E474FDC20D7B9CA11BB3F7B5C04F7EBF395983E6E4746F
SHA384 DB425DB3EAC12FD6367A18E547667EF5045EACEB7037AFDBC94F51D37284852907FDB4533F6588725ABF7A1675A50EE0
SHA512 1315FF927615A5F0AE915299A383875EABB021994A10B613439214BE4AFB362B0E656C1AC8CC3789F54B88451454EEA0D7808D65746E7971F67AA25B92C10BC0
SSDEEP 6144:2k9fNIqJnJiTkS0v0UBS4UzDBCO7aU+wahWepRc4lDMSkC3+D:ZRNTJnJiTk3IUO7aU+wahW4JKqO
IMP 8024B39B86B78AFF74217879EFD412C9
PESHA1 CC7C52CD382FEE951BC9E9C271F0F761611DCC15
PE256 701E783E66F7ADDDFED2ACFCFAAAE61B021D3B4B92574FEA915E117E8AEBE6EE

Runtime Data

Open Handles:

Path Type
(R-D) C:\Windows\System32\en-US\TieringEngineService.exe.mui File
(RW-) C:\Windows\System32 File
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000001.db Section
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000001.db Section
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2.ro Section
\Sessions\2\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 Section
\Sessions\2\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 Section

Loaded Modules:

Path
C:\WINDOWS\System32\KERNEL32.DLL
C:\WINDOWS\System32\KERNELBASE.dll
C:\WINDOWS\System32\msvcrt.dll
C:\WINDOWS\SYSTEM32\ntdll.dll
C:\WINDOWS\system32\TieringEngineService.exe

Signature

  • Status: Signature verified.
  • Serial: 33000002ED2C45E4C145CF48440000000002ED
  • Thumbprint: 312860D2047EB81F8F58C29FF19ECDB4C634CF6A
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: TieringEngineService.exe.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.22000.1 (WinBuild.160101.0800)
  • Product Version: 10.0.22000.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/73
  • VirusTotal Link: https://www.virustotal.com/gui/file/c2c6583349324cbfb1e474fdc20d7b9ca11bb3f7b5c04f7ebf395983e6e4746f/detection

MIT License. Copyright (c) 2020-2021 Strontic.