mmdbresolve.exe

  • File Path: C:\Program Files\Wireshark\mmdbresolve.exe

Hashes

Type Hash
MD5 71B469FE7134B36132D3AFE8164B32D7
SHA1 A651EFC3F12B655537A0CA8791ABA344489C4BE6
SHA256 1FEDB004D3CF967E1E83B17BB6A0F7789BB1F2174892FB7CD624A20A489BA5B5
SHA384 451089A9AEC4B3F7615CB1982FCAD9EED9462B7D3C024D14449BE181226762F7DF685E3613A8FE9A3A69C3361F915806
SHA512 09609DE0E6F6F21483D2438C4C81D157D03AFE98DC48661F309907B81102A6107334751321BE052E3F987929F03C75C8E05006BF58F297353CF50E4B9C84FAD8
SSDEEP 384:8uPLA6NmMpz3+OSq9ZskGWEKdQ2GfZY8JN77hhZ2:d7N9+OSq9ZssELB73hj2
IMP E1B6702B127FB954CF1D990E1A6E91DE
PESHA1 F459D9FDDCBA4A89AB776E53F4AC9185A4395D14
PE256 510DDDE53B077693E9B7A10E9E7A2F76A459369CC6EF36B34924ADEB1D41E360

Runtime Data

Usage (stdout):

[init]
mmdbresolve.status: false
# End init

Usage (stderr):

Usage: mmdbresolve -f db_file [-f db_file ...]

Loaded Modules:

Path
C:\Program Files\Wireshark\mmdbresolve.exe
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\SYSTEM32\ntdll.dll

Signature

  • Status: Signature verified.
  • Serial: 02CCD99F7D556C13CE8710C69D09B31A
  • Thumbprint: E8EF7325044D018B0C0DCD8CBA4190B155857F3B
  • Issuer: CN=Sectigo RSA Code Signing CA, O=Sectigo Limited, L=Salford, S=Greater Manchester, C=GB
  • Subject: CN=”Wireshark Foundation, Inc.”, O=”Wireshark Foundation, Inc.”, STREET=711 4th street, L=Davis, S=CA, PostalCode=95616, C=US

File Metadata

  • Original Filename:
  • Product Name:
  • Company Name:
  • File Version:
  • Product Version:
  • Language:
  • Legal Copyright:
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/69
  • VirusTotal Link: https://www.virustotal.com/gui/file/1fedb004d3cf967e1e83b17bb6a0f7789bb1f2174892fb7cd624a20a489ba5b5/detection/

File Similarity (ssdeep match)

File Score
C:\program files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe 35
C:\program files (x86)\Common Files\Apple\Apple Application Support\plutil.exe 29
C:\program files (x86)\Common Files\Apple\Apple Application Support\VersionCheckMe.exe 32
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\distnoted.exe 35
C:\program files\Common Files\Apple\Apple Application Support\VersionCheckMe.exe 30
C:\Program Files\Wireshark\dftest.exe 35

MIT License. Copyright (c) 2020-2021 Strontic.