mcbuilder.exe

  • File Path: C:\Windows\system32\mcbuilder.exe
  • Description: Resource cache builder tool

Hashes

Type Hash
MD5 9EE06F45CF8D8154FA53BC0B0397E2D2
SHA1 2CD73F065F259027610BF59B4DD6448E90C5104A
SHA256 B139D09D95E5A1DE02A00324054FD3DB7D7E874E881C2420441F2576496F8695
SHA384 07531404C064C0BAFA86E63ACF2D69632B9E3D29C4B450646CD1246FBAD7EE92DBDA8C9CB54A4E7D48E3034CC4568990
SHA512 49666EF990D4A31B268FA7C7DE8AC12CF0F8F00199FE982EECB92B190A55B8C0F33F1C6F806A1DBC8F167C5E5877A0C7ADF2143006EB4C83CFDF71758F7E1820
SSDEEP 1536:ucNRbdJlpmUyxs1fweEVIMANxZ09B2ssW4d09dldIGxWJ1jMXT:uwpdJlgUkseLVIMANxKBmMDIGxWf0
IMP B48FB62848AB5BA140995A62D9ACEF1A
PESHA1 8177BF1CF09EFE12665154D0132487F98AEA73E6
PE256 7252BF91DCBAB8E17F3481B548C6AF1F2B56DAA5359381135E53C084F260842B

Runtime Data

Loaded Modules:

Path
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\system32\mcbuilder.exe
C:\Windows\SYSTEM32\ntdll.dll

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: mcbuilder.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/75
  • VirusTotal Link: https://www.virustotal.com/gui/file/b139d09d95e5a1de02a00324054fd3db7d7e874e881c2420441f2576496f8695/detection

File Similarity (ssdeep match)

File Score
C:\Windows\system32\mcbuilder.exe 36
C:\WINDOWS\system32\mcbuilder.exe 38

MIT License. Copyright (c) 2020-2021 Strontic.