TokenBrokerCookies.exe

  • File Path: C:\Windows\system32\TokenBrokerCookies.exe
  • Description: Token Broker Cookie Helper

Hashes

Type Hash
MD5 F8DEFE2F54775BC1D6DA00063480C1A4
SHA1 90B5777A5CFE71E1F2E209AD85AB8715B15B4049
SHA256 EBB4709ED4F1730A15FAC118FF8CF4C5790876596D0C581D9C92FDC5E773A401
SHA384 07BF1406108D2283C9218546E2E0D41494ABEBA6C2C10CB812F13F2CE01FC4FAA8C35914C75537042EEA33CB8454CA95
SHA512 046095AD5C6D66ED201C47D1029D04429499B8E17796AE968958D579F49D1DF16C4552202DE8654A86023D5F87121816E4F60008A97660569EB6F549219CF0EA
SSDEEP 768:T+2fYWvjH04nHLMvlip+Te/jVwaN/a6SSPl9zMMihGGRUFd:11nHLMAh/jaaNaSPlSMihGGRUFd
IMP 702F5476F4C0A7F27F77F6BF3689CBB8
PESHA1 9F9CAB3DA165A2E6BCBA482030D9C85A55935A72
PE256 A98CB19ED788C21A595E907FDD09601E708B18419CA32C1E41F68855E81230A7

Runtime Data

Loaded Modules:

Path
C:\Windows\System32\combase.dll
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\RPCRT4.dll
C:\Windows\System32\sechost.dll
C:\Windows\system32\TokenBrokerCookies.exe
C:\Windows\System32\ucrtbase.dll

Signature

  • Status: Signature verified.
  • Serial: 33000002EC6579AD1E670890130000000002EC
  • Thumbprint: F7C2F2C96A328C13CDA8CDB57B715BDEA2CBD1D9
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: TokenBrokerCookies.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1266 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1266
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/73
  • VirusTotal Link: https://www.virustotal.com/gui/file/ebb4709ed4f1730a15fac118ff8cf4c5790876596d0c581d9c92fdc5e773a401/detection

File Similarity (ssdeep match)

File Score
C:\Windows\system32\TokenBrokerCookies.exe 91

MIT License. Copyright (c) 2020-2021 Strontic.