dtdump.exe

  • File Path: C:\Windows\SysWOW64\dtdump.exe
  • Description: DTDUMP.EXE

Hashes

Type Hash
MD5 B7938AAC81C0233A39A11E7FA31BFD55
SHA1 BDCB350C9AB79187A6EE105D21B0E599A8ED9838
SHA256 29BE16EBCF4444C0FF6A6027CF36D6F39A5B661089F80FED2C6F015125CC17FC
SHA384 2732398CB4326E29F05D3E0293C748EC0790554DA40B7AEC4F1BE1B3C1117F3A7C322149DA9DF5CF284F31376E7E6D98
SHA512 2EFC191CB1066165906856A5E17B492A10969EF865896DD5E7BB0E8D9811B9477629C414D980B01237D91417C0F444D4C7C542B417219F7FB9B232EA9FCE9CA0
SSDEEP 768:MyP/7PTos0/ui4dpJ8mGveFq66XeB5+D5qzqYmPAd:PrTos1i4dgjG96OB6lAd

Runtime Data

Child Processes:

conhost.exe WerFault.exe dtdump.exe

Signature

  • Status: Signature verified.
  • Serial: 33000001733031072665B8B9B3000000000173
  • Thumbprint: 14590DC5C3AAF238FCFD7785B4B93F4071402C34
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: DTDUMP.EXE
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.14393.351 (rs1_release_inmarket.161014-1755)
  • Product Version: 10.0.14393.351
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.

MIT License. Copyright (c) 2020-2021 Strontic.