efsui.exe

  • File Path: C:\WINDOWS\SysWOW64\efsui.exe
  • Description: EFS UI Application

Hashes

Type Hash
MD5 9D098D639D83ED4097FE8E26B009363B
SHA1 2724A85C25E419B86C5DA86DAE135E0FE1EAECFD
SHA256 0199E1E3770B8AC0D2B82DEABBA4DA4E72D823841650D5F73297B2369BF49F12
SHA384 01DEF3F7D37452C5CBE1E223865979AADAE102A082CE3AEF0A133D44AD1BCE15C09174BD9628161E13C5BC49B1BE9550
SHA512 6545400A2305CFB1873145CC2DCD74C279921C530DF1ACE67CC19364D60CE687CDD804AED264411DD5688AA9E14059CFFAA62914ABFB1CABA5A738E75DF1B005
SSDEEP 192:mResksdpZNvseI9olOt33sY6xQNZjkTRWSMRWYY:AJ7TZNvseI9uOtHCWZ4TRWSMRW
IMP FBFCDB62E39168BD77F5A0D82001C66C
PESHA1 1F4039C1BB09F99320CE69DADFFFA8B2748BD2FA
PE256 6897EE1C086AB89D1A1CF004B6243DA5DAC91078020F919688553798D0B1080E

Runtime Data

Loaded Modules:

Path
C:\WINDOWS\SYSTEM32\ntdll.dll
C:\WINDOWS\System32\wow64.dll
C:\WINDOWS\System32\wow64base.dll
C:\WINDOWS\System32\wow64con.dll
C:\WINDOWS\System32\wow64cpu.dll
C:\WINDOWS\System32\wow64win.dll
C:\WINDOWS\SysWOW64\efsui.exe

Signature

  • Status: Signature verified.
  • Serial: 33000002ED2C45E4C145CF48440000000002ED
  • Thumbprint: 312860D2047EB81F8F58C29FF19ECDB4C634CF6A
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: efsui.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.22000.1 (WinBuild.160101.0800)
  • Product Version: 10.0.22000.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/71
  • VirusTotal Link: https://www.virustotal.com/gui/file/0199e1e3770b8ac0d2b82deabba4da4e72d823841650d5f73297b2369bf49f12/detection

MIT License. Copyright (c) 2020-2021 Strontic.