TpmInit.exe

  • File Path: C:\Windows\SysWOW64\TpmInit.exe
  • Description: TPM Initialization Wizard

Screenshot

TpmInit.exe TpmInit.exe

Hashes

Type Hash
MD5 BD19D000F87EA4CD0DEC6203207E9D03
SHA1 1227DA0662890FE775C6CFC603CEC3A64758A6F4
SHA256 751EBCF4D4F5EE9E8B0708595037ADF6A7E4900763456716D30CE50C2415F2E3
SHA384 14E07711FD53087B9ED153F5DD55DA969E4ABDA0B4D2ABFD802B3BCB8B99EECF88DB495467B97B10A6959A96F9B46E5C
SHA512 B5BE0B1C019F0CAC1D14DB983D0507CB4C54F7E0E32E45EF311B4E144BE7A6E4C67454465A85C8A95B050DC792CE28E2FB70967CD3CEED35D459C8C5E6213747
SSDEEP 1536:ly137w0Kk1wBu1Ur6fJpvFcdf4nrsEb3wtgpdR5+F03RhHP30cYOuGiceY0lA3CZ:k13er2Jt/AMTN0jtPYfSFkx1/8

Signature

  • Status: Signature verified.
  • Serial: 33000000BCE120FDD27CC8EE930000000000BC
  • Thumbprint: E85459B23C232DB3CB94C7A56D47678F58E8E51E
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: TpmInit.EXE.MUI
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.14393.0 (rs1_release.160715-1616)
  • Product Version: 10.0.14393.0
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.

File Similarity (ssdeep match)

File Score
C:\Windows\system32\tpmcompc.dll 30
C:\Windows\system32\TpmInit.exe 41
C:\Windows\system32\TpmInit.exe 43
C:\Windows\system32\TpmInit.exe 44
C:\WINDOWS\system32\TpmInit.exe 46
C:\windows\system32\TpmInit.exe 38
C:\Windows\SysWOW64\tpmcompc.dll 27
C:\WINDOWS\SysWOW64\TpmInit.exe 44
C:\Windows\SysWOW64\TpmInit.exe 43
C:\Windows\SysWOW64\TpmInit.exe 50
C:\windows\SysWOW64\TpmInit.exe 36

Possible Misuse

The following table contains possible examples of TpmInit.exe being misused. While TpmInit.exe is not inherently malicious, its legitimate functionality can be abused for malicious purposes.

Source Source File Example License
malware-ioc nukesped_lazarus .TpmInit.EXE``{:.highlight .language-cmhg} © ESET 2014-2018

MIT License. Copyright (c) 2020-2021 Strontic.