pacjsworker.exe

  • File Path: C:\Windows\system32\pacjsworker.exe
  • Description: HTTP Auto Proxy Detection Worker Process

Hashes

Type Hash
MD5 BE887110C3A171FD52CAF989976BD42E
SHA1 140BB0FBA4361618064B3CE9E71C4ED3BE2A2733
SHA256 B706DF579959E10B50990643507D0B4DC241DAE5B3DB9EF844242AE74D16B4EF
SHA384 81212F7941D7118B0C5D2885352186BBAAD8BC4BB7BDBD4159CE790D9AFAC40CD4CC1C1DE34EB28F2122DA7DAC2B3562
SHA512 BBC4A12A025D2B5E7C6BAD63B70DBAC231DD8EE9EC423549E4ED0751B0770D8275124726C95E00447F4CC9C328AB20F506C1A9556E9F6E57A81233FBF9237EDC
SSDEEP 192:rydEJy/AuJgXEAVbDWt054vEQEWcLWaZAW:rlogXE0bCSOcLWaZAW
IMP 687E476BFD1F30A3D4393039D490BFCC
PESHA1 8B1645705DAF4E3D2015051C6D4D81FC6EC2935F
PE256 21EA55F7430FC9B842F8B3E2DB112DE2C93A61F2284B0384D18F4870079BEA9B

Runtime Data

Loaded Modules:

Path
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\system32\pacjsworker.exe
C:\Windows\System32\RPCRT4.dll
C:\Windows\System32\sechost.dll
C:\Windows\System32\ucrtbase.dll
C:\Windows\system32\WINHTTP.dll

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: pacjsworker.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.546 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.546
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/74
  • VirusTotal Link: https://www.virustotal.com/gui/file/b706df579959e10b50990643507d0b4dc241dae5b3db9ef844242ae74d16b4ef/detection

File Similarity (ssdeep match)

File Score
C:\Windows\system32\pacjsworker.exe 74
C:\Windows\system32\pacjsworker.exe 80

MIT License. Copyright (c) 2020-2021 Strontic.