comrepl.exe

  • File Path: C:\Windows\SysWOW64\com\comrepl.exe
  • Description: COM+ Server Replication

Hashes

Type Hash
MD5 2736F52E6FB1261EE6DFC0294ECD4F20
SHA1 69DE515236B74FC26D96FD5D14E37B19D3CA6BC9
SHA256 F7ABCB1234F29423664862B279B57D1D160AE50C749C3FB6DEA786E8EC8BC7CE
SHA384 F6A077DF234F78B157E944A81D4B38BE3768F992601FB97FAE1B16DB84769AD0840690F84D58803F787488ECBFE8FB60
SHA512 8261352F42EBA78BFD855EEFA809255C0A46EF40709F1C7DF6592E5841A823DE234F5F87F76199EE3BBF304E570850A39A0745433DC55E31B24361B7C596584C
SSDEEP 384:1zRB0QUkwhOyEcEmim348ZrVW5VuoWdS:1z1Uk1s348k4S
IMP A1C21D02B295775CA1385E51D5DB789D
PESHA1 1ABCE15EBA7A09CF39269D4390DF40EED5950B3B
PE256 A5A7866244A443626BD2B97E67400A2FFA2A2D010B17C7DCE0762F65CF5C0660

Runtime Data

Usage (stdout):

ERROR: WriteConsole failed = 00000001
ERROR: WriteConsole failed = 00000001

Child Processes:

powershell.exe

Loaded Modules:

Path
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\wow64.dll
C:\Windows\System32\wow64cpu.dll
C:\Windows\System32\wow64win.dll
C:\Windows\SysWOW64\com\comrepl.exe

Signature

  • Status: Signature verified.
  • Serial: 33000001C422B2F79B793DACB20000000001C4
  • Thumbprint: AE9C1AE54763822EEC42474983D8B635116C8452
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: COMREPL.EXE.MUI
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 2001.12.10941.16384 (WinBuild.160101.0800)
  • Product Version: 10.0.17763.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/71
  • VirusTotal Link: https://www.virustotal.com/gui/file/f7abcb1234f29423664862b279b57d1d160ae50c749c3fb6dea786e8ec8bc7ce/detection/

MIT License. Copyright (c) 2020-2021 Strontic.