rdpshell.exe

  • File Path: C:\windows\SysWOW64\rdpshell.exe
  • Description: RemoteApp Shell

Hashes

Type Hash
MD5 A1EF293E47BF62927BDDDA347DB842BA
SHA1 DEBF9919F884E2BC283AC3E6290193509970F32F
SHA256 85DACCCE2A734A33D54849A046E8B1F1709C9FDD6E43C828C09E1F2D48EDA22B
SHA384 7540F5452213B413D50457679EC5EDFD10FF16C966FA00565DD880055BEB9E5B0492005089C1FDC262596DE48BC677BA
SHA512 23D80C84D4CD6D0E7B611D2BE1ED3E5CB0B3403B079B39B8A7D25DD671CAE5D0D98B8C8D8BBEF35F55F2DDD5CE8FDD8B47AFC98E688ABD0651BA70E303CFF047
SSDEEP 6144:uU5FXmzNm4Qc4oP8LOUAZJvG/if6u/ej:rXmz14qxUAZFG/K6

Signature

  • Status: The file C:\windows\SysWOW64\rdpshell.exe is not digitally signed. You cannot run this script on the current system. For more information about running scripts and setting execution policy, see about_Execution_Policies at http://go.microsoft.com/fwlink/?LinkID=135170
  • Serial: ``
  • Thumbprint: ``
  • Issuer:
  • Subject:

File Metadata

  • Original Filename: rdpshell.exe.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 6.3.9600.16384 (winblue_rtm.130821-1623)
  • Product Version: 6.3.9600.16384
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.

MIT License. Copyright (c) 2020-2021 Strontic.