intl.cpl
- File Path:
C:\Windows\SysWOW64\intl.cpl
- Description: Control Panel DLL
Hashes
Type |
Hash |
MD5 |
FCF58563EBC65F48E908A1D09E2AEF5A |
SHA1 |
44DEE95689D339ABF2E5A31D56727BCE620F1F4B |
SHA256 |
89102AF8B3A45118010C618FC49863B2DA5B89DAE8A2C76D34DED9EA2C6060BE |
SHA384 |
451B3FBE8ACF3F622E756889AC75DB50A53E92F22E5DA3D3BBDA44AFEE596AA6212BD7F3F699411B87BCD6D2A062C485 |
SHA512 |
6C32C849683B9A321892204116E3420A4395207CCD01429EF35142777C438E5CC4A98251ADF8EAD43B7173B0B6435CC284C4D48FB70E7A5A02846C68CCE1CAD2 |
SSDEEP |
3072:54cwIvvpCG+kebjhehSFpUJaJVh5uO1z71G8tyPYxepdMa+IUj3gNEQaDfjOk//6:5pCG+T2JC7pGyKMVj3giLDKn7 |
IMP |
4EA286812C2C11A59E3B256F505815CA |
PESHA1 |
340C71049E82AC1D22E0919686512821FA9EDCAE |
PE256 |
25A3931F2A43DBC387B7222AC4F755A5793502245CD48EA816449E07781E35E9 |
Runtime Data
Child Processes:
rundll32.exe
Open Handles:
Path |
Type |
(R-D) C:\Windows\System32\en-US\rundll32.exe.mui |
File |
(RW-) C:\Users\user |
File |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000002.db |
Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db |
Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2 |
Section |
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 |
Section |
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 |
Section |
\Sessions\1\BaseNamedObjects\windows_shell_global_counters |
Section |
\Sessions\1\Windows\Theme3205582532 |
Section |
\Windows\Theme3800351183 |
Section |
Loaded Modules:
Path |
C:\Windows\System32\combase.dll |
C:\Windows\System32\imagehlp.dll |
C:\Windows\System32\KERNEL32.DLL |
C:\Windows\System32\KERNELBASE.dll |
C:\Windows\System32\msvcrt.dll |
C:\Windows\SYSTEM32\ntdll.dll |
C:\Windows\System32\RPCRT4.dll |
C:\Windows\SYSTEM32\rundll32.exe |
C:\Windows\System32\shcore.dll |
C:\Windows\System32\ucrtbase.dll |
Signature
- Status: Signature verified.
- Serial:
3300000266BD1580EFA75CD6D3000000000266
- Thumbprint:
A4341B9FD50FB9964283220A36A1EF6F6FAA7840
- Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Original Filename: INTL.CPL
- Product Name: Microsoft Windows Operating System
- Company Name: Microsoft Corporation
- File Version: 10.0.19041.746 (WinBuild.160101.0800)
- Product Version: 10.0.19041.746
- Language: English (United States)
- Legal Copyright: Microsoft Corporation. All rights reserved.
- Machine Type: 32-bit
File Scan
- VirusTotal Detections: 0/75
- VirusTotal Link: https://www.virustotal.com/gui/file/89102af8b3a45118010c618fc49863b2da5b89dae8a2c76d34ded9ea2c6060be/detection
MIT License. Copyright (c) 2020-2021 Strontic.