splunk-perfmon.exe

  • File Path: C:\Program Files\SplunkUniversalForwarder\bin\splunk-perfmon.exe
  • Description: Performance monitor

Hashes

Type Hash
MD5 BEA286C7AEAB5C41A07AFA5F0ADC77DA
SHA1 D9590B73E53C8B1D44B834E918899B98EC2B1B04
SHA256 03D3856B4507AA297C5F07F1406B5213B2482B10DDB1E67D09E286FD972AAF22
SHA384 42BC82564615166D41D5191C945C92DD305CE4327B39D066313BF2F6479AFD46F3AB1F265CA436480353F214599B5C51
SHA512 B1BD37E232F2F8CB95A286C902A34BC838CEDA8E5798EE22E9F0C3BEC578B205CE2D2998D19002CBEAD456517E0FB8385672AC958CF9756379BF9AB25457F27D
SSDEEP 196608:5oxFYQ8rQTjbx80h+mWuTuiQu9jax6ci6nyGVDNRSt:wFTjh+mWuTd5a8gDW
IMP 745B5ABFE8841B7D74AD07D845F0D330
PESHA1 97ACDB7C7267A49576487D3C21A946FFC801F4BA
PE256 0EFA94B1C78F1F4B6375DEA055D418060110C88A6C2B2DAABCCE44269D3EDC37

Runtime Data

Usage (stderr):

Usage:
 splunk-perfmon Usage: [-showzero] [-showui] [-test] [-testprocess]



    -showui              - Display the perfmon dialog instead of reading from the conf files

    -showzero            - Filter out or non zero values

    -test                - Run in test mode

    -testprocess         - Run in test mode for Process Counters with useWinApiProcStats enabled

    -index               - Sets the default index for the scripted input


Loaded Modules:

Path
C:\Program Files\SplunkUniversalForwarder\bin\splunk-perfmon.exe
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\SYSTEM32\ntdll.dll

Signature

  • Status: Signature verified.
  • Serial: 014E132916D610BB301B22ABBD994616
  • Thumbprint: B8B4F0D3FD0571E184DEBB76A1F6DB73F30FA233
  • Issuer: CN=DigiCert EV Code Signing CA (SHA2), OU=www.digicert.com, O=DigiCert Inc, C=US
  • Subject: CN=”Splunk, Inc.”, O=”Splunk, Inc.”, L=San Francisco, S=California, C=US, SERIALNUMBER=4109614, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.2=Delaware, OID.1.3.6.1.4.1.311.60.2.1.3=US

File Metadata

  • Original Filename: splunk-perfmon.exe
  • Product Name: splunk Application
  • Company Name: Splunk Inc.
  • File Version: 8.2.3
  • Product Version: 8.2.3 (Build cd0848707637)
  • Language: English (United States)
  • Legal Copyright: Copyright (C) 2005-2021
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: Unknown

MIT License. Copyright (c) 2020-2021 Strontic.