VmComputeAgent.exe

  • File Path: C:\Windows\system32\VmComputeAgent.exe
  • Description: Hyper-V Guest Compute Service

Hashes

Type Hash
MD5 152CA5099ECD5FBBCA86064A7DBC7B4F
SHA1 B9354E471078ACF8754B7B1447CFB0A08B7D6BAD
SHA256 DC9691009F3CBDEE1C5CD8A526A1630D5BFFD70AADE9E6ED9900A5F3E00A2494
SHA384 79C56CD7B2F59C1FD26C8D23EC679CC8CB2009E8EAC1D9551BF7542215DE6F2AE9A95880B61B1DECB062578B57294B43
SHA512 97DC271AF7C077ABEA22E74A8A5A06E5A6F8FD1232831F3C948FD030D2BEB239448AC9B3E0E197DD19AEDE32FA340997FDD62F03CBA681B5D10756FF2CC4973E
SSDEEP 24576:rSfYW+davvAC0jkPlbmVdSR3hqo/ZP0Vx+Cxr9qsO:rSfYW+davvAC0jkPlQdSR39ZcL+g9qH
IMP 78D6614749B85E892B168EA2E2B6D5ED
PESHA1 37EB57E44C63DFD0095854A07106BE260CA6B0E8
PE256 726E57D31112D60D08DFC8E45B559C2D147C074440EFE18E4FDE9A9B44059AD4

Runtime Data

Loaded Modules:

Path
C:\Windows\System32\advapi32.dll
C:\Windows\System32\bcrypt.dll
C:\Windows\System32\cfgmgr32.dll
C:\Windows\system32\container.dll
C:\Windows\system32\HvSocket.dll
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\System32\msvcp_win.dll
C:\Windows\System32\msvcrt.dll
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\RPCRT4.dll
C:\Windows\System32\sechost.dll
C:\Windows\System32\ucrtbase.dll
C:\Windows\system32\VmComputeAgent.exe
C:\Windows\system32\wc_storage.dll
C:\Windows\System32\WS2_32.dll

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: VmComputeAgent.exe.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/75
  • VirusTotal Link: https://www.virustotal.com/gui/file/dc9691009f3cbdee1c5cd8a526a1630d5bffd70aade9e6ed9900a5f3e00a2494/detection

MIT License. Copyright (c) 2020-2021 Strontic.