TokenBrokerCookies.exe

  • File Path: C:\Windows\system32\TokenBrokerCookies.exe
  • Description: Token Broker Cookie Helper

Hashes

Type Hash
MD5 C7F2C10FAA86764A25A99016DE40FB32
SHA1 54B584B5BDC0ADD4266996E4ABF33BCBF55BD69F
SHA256 48EC4693D70E9EB63A21D7A6C8B04BDE7C886D786650DD43D952FAEDBD357CA3
SHA384 B02B92F7E47C8C6E851CB28B6BC745E5C2A7B865E0448D135E39DB52EAF8B9B099FE6F1AFD403C57F337480C5E96063C
SHA512 6DF940C711B4E2D74413D81610D5A8C70D33C7C247BB55152480FD734F231C876DD0C986A681114BD8EE4838DD7BC5380D6ADF3561DFFDE3BE10B0FEE9B97A19
SSDEEP 768:I+2fYWvjH04nHLMvlip+Te/jVwaN/a6SC4l9zJMihGGRUFZ:I1nHLMAh/jaaNaC4lnMihGGRUFZ
IMP 702F5476F4C0A7F27F77F6BF3689CBB8
PESHA1 6F3117745FDF9B05870B39C6F813E9C313354049
PE256 3E3699B70205ECF476EC53A726331D673C10B44CCE2958CDAAF4A970F05BE848

Runtime Data

Loaded Modules:

Path
C:\Windows\System32\combase.dll
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\System32\msvcp_win.dll
C:\Windows\System32\msvcrt.dll
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\OLEAUT32.dll
C:\Windows\System32\RPCRT4.dll
C:\Windows\System32\sechost.dll
C:\Windows\system32\TokenBrokerCookies.exe
C:\Windows\System32\ucrtbase.dll
C:\Windows\system32\WININET.dll

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: TokenBrokerCookies.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.546 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.546
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/76
  • VirusTotal Link: https://www.virustotal.com/gui/file/48ec4693d70e9eb63a21d7a6c8b04bde7c886d786650dd43d952faedbd357ca3/detection

File Similarity (ssdeep match)

File Score
C:\Windows\system32\TokenBrokerCookies.exe 91

MIT License. Copyright (c) 2020-2021 Strontic.