dtdump.exe

  • File Path: C:\WINDOWS\SysWOW64\dtdump.exe
  • Description: DTDUMP.EXE

Hashes

Type Hash
MD5 CDC102E774E18FC15B03F93C361B260D
SHA1 71117BB5D2EC3EA824A524B5BA5D2852177927E9
SHA256 BC7AC86DC77B02C1206A59ADC6A2BF71F91F353C4052AFDDDE54F4AFF7F60D84
SHA384 8923DF06B10AC73C3914B90E5253A3627CF1506DC78420560ACFF8077D9B7DCA1CE0F7B1A3CFBD63A06F33C981320BCB
SHA512 30E9C5A952CE78DC25F5276697253D9BE10349EA56B697998CD7A7C141808FA46C859C9B64BFA8406797478578DD03EA5B7750DBD9465467BE939D5A1474581A
SSDEEP 1536:jvFF7rpjVY/+3+2K94HHp0QkB1/4IuvDnhmvun5qiFWGRi5gtag:LJa/4BpBY1AIubhyU8gt
IMP 1A186ED81629EAE8D59CF2E0ACC6B210
PESHA1 2CE3F48116E0D8D68D4AAE38D74687A06DE806CF
PE256 B18D5EA0B35BD232C2C3730FD1BC088180A702FC548701E7FD78FB6237ADD610

Runtime Data

Loaded Modules:

Path
C:\WINDOWS\SYSTEM32\ntdll.dll
C:\WINDOWS\System32\wow64.dll
C:\WINDOWS\System32\wow64base.dll
C:\WINDOWS\System32\wow64con.dll
C:\WINDOWS\System32\wow64cpu.dll
C:\WINDOWS\System32\wow64win.dll
C:\WINDOWS\SysWOW64\dtdump.exe

Signature

  • Status: Signature verified.
  • Serial: 33000002ED2C45E4C145CF48440000000002ED
  • Thumbprint: 312860D2047EB81F8F58C29FF19ECDB4C634CF6A
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: DTDUMP.EXE
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.22000.65 (WinBuild.160101.0800)
  • Product Version: 10.0.22000.65
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/73
  • VirusTotal Link: https://www.virustotal.com/gui/file/bc7ac86dc77b02c1206a59adc6a2bf71f91f353c4052afddde54f4aff7f60d84/detection

MIT License. Copyright (c) 2020-2021 Strontic.