proquota.exe
- File Path:
C:\Windows\system32\proquota.exe
- Description: ProQuota
Hashes
Type | Hash |
---|---|
MD5 | 40812BA1AC616723A1D2857ADF685E86 |
SHA1 | 7931D9F82993DC00AD027461042B412373D232F8 |
SHA256 | 5CFD021B0E2D250F6396CF7D63FDDF0D126EC3FFE4E99304E63DF6868F0BF491 |
SHA384 | CB591F8A5242D5D044815B9FD2B969E91E4CCD8B4F209C1AF3A39818DA17085EE855B0775CA6B2BF7D9747CD7E7E44EF |
SHA512 | 81448E371ED3E84D0E4790CD61DFC5F58F6F370F2C6C0AB2FF2298CE464A63814B5600DB943B6D0F18CBF2E81C0F3B2DE468A38276A295EA1E19A98E1DAC6051 |
SSDEEP | 768:2q4OZn30fiC4QDfqqXLaRjt2ErkZVZMPa:280N4lqbaRjgTVZ4a |
IMP | E745A71411BBFEBE37E7961702971996 |
PESHA1 | 2006CF311F076F5406E64B758FE7E59765859257 |
PE256 | 08C02BC30D50EB28778DC8614434DD1F825AAAF1BB052502453356898BA9A93E |
Signature
- Status: Signature verified.
- Serial:
33000001C422B2F79B793DACB20000000001C4
- Thumbprint:
AE9C1AE54763822EEC42474983D8B635116C8452
- Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
File Metadata
- Original Filename: proquota.exe.mui
- Product Name: Microsoft Windows Operating System
- Company Name: Microsoft Corporation
- File Version: 10.0.17763.1 (WinBuild.160101.0800)
- Product Version: 10.0.17763.1
- Language: English (United States)
- Legal Copyright: Microsoft Corporation. All rights reserved.
- Machine Type: 64-bit
File Scan
- VirusTotal Detections: 0/69
- VirusTotal Link: https://www.virustotal.com/gui/file/5cfd021b0e2d250f6396cf7d63fddf0d126ec3ffe4e99304e63df6868f0bf491/detection/
Possible Misuse
The following table contains possible examples of proquota.exe
being misused. While proquota.exe
is not inherently malicious, its legitimate functionality can be abused for malicious purposes.
Source | Source File | Example | License |
---|---|---|---|
sigma | proc_creation_win_logon_scripts_userinitmprlogonscript_proc.yml | - '\proquota.exe' |
DRL 1.0 |
MIT License. Copyright (c) 2020-2021 Strontic.