UevAppMonitor.exe

  • File Path: C:\Windows\system32\UevAppMonitor.exe
  • Description:

Hashes

Type Hash
MD5 B54F6F7A63A0E20DE1A80D1C8AAA2882
SHA1 87219685412BD05E56DAE1162108087872DB5357
SHA256 0BE7F413037A2192E3361954867B09DE0568FF53A938F73DD8BA1BDCE05C7002
SHA384 41B1DE37E41DF4CDFC3791CE8EFA73A904F98F318A3AA99060AF660F665F32E1C735B3BE220E87A9E3DECDA06A984FC4
SHA512 908FD0444E43438AD563AED947302A8F3AE4F6AB35B115137D137F27DB932AC2B5F21658C1E04297A5A4347029B23A0645B37B87B8687A4B9D7F92BFF38B34B3
SSDEEP 768:vN0yKm62+wU+Aa91slxN+u996swwiKEtycTY5lkQ7Vy9ylDX7:LK/A91szN++6NwiKE10DjlP
IMP F34D5F2D4577ED6D9CEEC516C1F5A744
PESHA1 5BF8191ADB1ADAFC20AC427E44D21E17F6F05A97
PE256 642C83D2A017868169A67D4E1ABE6EEAABFC1149E0D7CF46FAFC23DAAF13C65C

Runtime Data

Child Processes:

powershell.exe

Loaded Modules:

Path
C:\Windows\System32\KERNEL32.dll
C:\Windows\System32\KERNELBASE.dll
C:\Windows\SYSTEM32\MSCOREE.DLL
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\system32\UevAppMonitor.exe

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: UevAppMonitor.exe
  • Product Name: Microsoft (R) Windows (R) Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1
  • Product Version: 10.0.19041.1
  • Language: Language Neutral
  • Legal Copyright: Copyright (c) Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/75
  • VirusTotal Link: https://www.virustotal.com/gui/file/0be7f413037a2192e3361954867b09de0568ff53a938f73dd8ba1bdce05c7002/detection

File Similarity (ssdeep match)

File Score
C:\WINDOWS\system32\Microsoft.Uev.SyncController.exe 60
C:\Windows\system32\Microsoft.Uev.SyncController.exe 60
C:\Windows\system32\Microsoft.Uev.SyncController.exe 60
C:\Windows\system32\Microsoft.Uev.SyncController.exe 55
C:\Windows\system32\UevAppMonitor.exe 93
C:\WINDOWS\system32\UevAppMonitor.exe 97
C:\Windows\system32\UevAppMonitor.exe 82

MIT License. Copyright (c) 2020-2021 Strontic.