mmgaserver.exe
- File Path:
C:\Windows\SysWOW64\mmgaserver.exe
- Description: MMGA Server
Hashes
Type |
Hash |
MD5 |
7AFF983EFF965CA58F127EC3C4698639 |
SHA1 |
45D1F95041C7C9AD7017369D830DAE0CAD55A72F |
SHA256 |
B8B344051418AB2AAD0A8DD7BBA11D3E2D8F3F046482B23F41840A316AD75BA5 |
SHA384 |
25843D65B60C54426A204D8992342263D6DC071FD64F64DB5835BBA7774434DD116E112D488A0482F40D113CE84EDF55 |
SHA512 |
0D5AB37F09818BE1F15B2553B103056500D0FD79F485C4A00B45B4E4600DB465AF398FE6BDC3361F541005A5655766A7092A0200C6A25975851650B7039D7A51 |
SSDEEP |
12288:j0vEAG/YeDhh+I1zR6fCgU+QSZMAqg8B3baKM:j0vZGzFh+I6KnSsB3OKM |
IMP |
48E5252A498A48528212307135C0290D |
PESHA1 |
567C439ABC2B33539D4D0F7ACED740E86024C304 |
PE256 |
6C62C36688DC6C59AFCEABD2BAFE5A667E2390C0A4356EF93A337B94B1BE3B96 |
Runtime Data
Open Handles:
Path |
Type |
(RW-) C:\Users\user |
File |
(RW-) C:\Windows |
File |
\BaseNamedObjects__ComCatalogCache__ |
Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000002.db |
Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db |
Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2 |
Section |
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 |
Section |
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 |
Section |
Loaded Modules:
Path |
C:\Windows\SYSTEM32\ntdll.dll |
C:\Windows\System32\wow64.dll |
C:\Windows\System32\wow64cpu.dll |
C:\Windows\System32\wow64win.dll |
C:\Windows\SysWOW64\mmgaserver.exe |
Signature
- Status: Signature verified.
- Serial:
33000002EC6579AD1E670890130000000002EC
- Thumbprint:
F7C2F2C96A328C13CDA8CDB57B715BDEA2CBD1D9
- Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Original Filename: mmgaserver.exe
- Product Name: Microsoft Windows Operating System
- Company Name: Microsoft Corporation
- File Version: 10.0.19041.746 (WinBuild.160101.0800)
- Product Version: 10.0.19041.746
- Language: English (United States)
- Legal Copyright: Microsoft Corporation. All rights reserved.
- Machine Type: 32-bit
File Scan
- VirusTotal Detections: 0/73
- VirusTotal Link: https://www.virustotal.com/gui/file/b8b344051418ab2aad0a8dd7bba11d3e2d8f3f046482b23f41840a316ad75ba5/detection
MIT License. Copyright (c) 2020-2021 Strontic.