UevAppMonitor.exe
- File Path:
C:\Windows\system32\UevAppMonitor.exe
- Description:
Hashes
Type | Hash |
---|---|
MD5 | B54F6F7A63A0E20DE1A80D1C8AAA2882 |
SHA1 | 87219685412BD05E56DAE1162108087872DB5357 |
SHA256 | 0BE7F413037A2192E3361954867B09DE0568FF53A938F73DD8BA1BDCE05C7002 |
SHA384 | 41B1DE37E41DF4CDFC3791CE8EFA73A904F98F318A3AA99060AF660F665F32E1C735B3BE220E87A9E3DECDA06A984FC4 |
SHA512 | 908FD0444E43438AD563AED947302A8F3AE4F6AB35B115137D137F27DB932AC2B5F21658C1E04297A5A4347029B23A0645B37B87B8687A4B9D7F92BFF38B34B3 |
SSDEEP | 768:vN0yKm62+wU+Aa91slxN+u996swwiKEtycTY5lkQ7Vy9ylDX7:LK/A91szN++6NwiKE10DjlP |
IMP | F34D5F2D4577ED6D9CEEC516C1F5A744 |
PESHA1 | 5BF8191ADB1ADAFC20AC427E44D21E17F6F05A97 |
PE256 | 642C83D2A017868169A67D4E1ABE6EEAABFC1149E0D7CF46FAFC23DAAF13C65C |
Runtime Data
Child Processes:
powershell.exe
Loaded Modules:
Path |
---|
C:\Windows\System32\KERNEL32.dll |
C:\Windows\System32\KERNELBASE.dll |
C:\Windows\SYSTEM32\MSCOREE.DLL |
C:\Windows\SYSTEM32\ntdll.dll |
C:\Windows\system32\UevAppMonitor.exe |
Signature
- Status: Signature verified.
- Serial:
3300000266BD1580EFA75CD6D3000000000266
- Thumbprint:
A4341B9FD50FB9964283220A36A1EF6F6FAA7840
- Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
File Metadata
- Original Filename: UevAppMonitor.exe
- Product Name: Microsoft (R) Windows (R) Operating System
- Company Name: Microsoft Corporation
- File Version: 10.0.19041.1
- Product Version: 10.0.19041.1
- Language: Language Neutral
- Legal Copyright: Copyright (c) Microsoft Corporation. All rights reserved.
- Machine Type: 32-bit
File Scan
- VirusTotal Detections: 0/75
- VirusTotal Link: https://www.virustotal.com/gui/file/0be7f413037a2192e3361954867b09de0568ff53a938f73dd8ba1bdce05c7002/detection
File Similarity (ssdeep match)
MIT License. Copyright (c) 2020-2021 Strontic.