dvdplay.exe
- File Path:
C:\Windows\SysWOW64\dvdplay.exe
- Description: dvdplay placeholder Application
Hashes
Type | Hash |
---|---|
MD5 | D388610A1DE600E01277AECF3B1280A3 |
SHA1 | 57E36BA27CFD74C70567E5CE6305381317D9808C |
SHA256 | B740FBBA53980B4C2EEC43D09F3ADA7D7B55431D68A15D83AD77E1DC582AD31E |
SHA384 | 8719329B46F2D974D3B57A836470DCABBA089FB9A813B3C2CF34A80F32F1509BAF7A77B4C6ACED27ED9EB1BEE9949BA3 |
SHA512 | 6E7073B8EB25129CA12251DC352CF8C3174C9B61A51025005A481B62149BCDA00F831C5A6BE2758DFC5577846BC1F71283F07A754BAFCD6871EC6B92422AB8E6 |
SSDEEP | 96:bOQ+dun2Ap2hCP/DGjsg5HNI9oE1tDJvkMqf9sPfbhFijEWoBZWw3JpFY:bZp/E9i9oE1XkoPjhFioWSZW6pFY |
IMP | E039C46E30A89ABAF651718C922747B4 |
PESHA1 | 7ACBD7A67F70630119484521DBE2419C7E45E886 |
PE256 | B211D71765A19FF4744E39D9E45D0C86B0D6B453DA3E8463031412A899F5A7D5 |
Runtime Data
Child Processes:
wmplayer.exe
Loaded Modules:
Path |
---|
C:\Windows\SYSTEM32\ntdll.dll |
C:\Windows\System32\wow64.dll |
C:\Windows\System32\wow64cpu.dll |
C:\Windows\System32\wow64win.dll |
C:\Windows\SysWOW64\dvdplay.exe |
Signature
- Status: Signature verified.
- Serial:
3300000266BD1580EFA75CD6D3000000000266
- Thumbprint:
A4341B9FD50FB9964283220A36A1EF6F6FAA7840
- Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
File Metadata
- Original Filename: dvdplay
- Product Name: Microsoft Windows Operating System
- Company Name: Microsoft Corporation
- File Version: 10.0.19041.1 (WinBuild.160101.0800)
- Product Version: 10.0.19041.1
- Language: English (United States)
- Legal Copyright: Microsoft Corporation. All rights reserved.
- Machine Type: 32-bit
File Scan
- VirusTotal Detections: 0/74
- VirusTotal Link: https://www.virustotal.com/gui/file/b740fbba53980b4c2eec43d09f3ada7d7b55431d68a15d83ad77e1dc582ad31e/detection
File Similarity (ssdeep match)
MIT License. Copyright (c) 2020-2021 Strontic.