splunkd.exe

  • File Path: C:\Program Files\SplunkUniversalForwarder\bin\splunkd.exe
  • Description: splunkd service

Hashes

Type Hash
MD5 FC2CD610B2772612181F2D47B3CA9046
SHA1 8AEC897F2420262E394ECE2A0A9D5B9DF5D6C48B
SHA256 DD5EFB7850EE35D6DCFA52920A4903CE9B1D8DE44BF15B3B89DFCB7D0425C9BA
SHA384 07766B35F12FF1D91AF036539C089915BD3C4F9E7BA7E61EE660DA3B881421B7968E54A8184620A59D18BAF598092C0A
SHA512 4CE8928EDB5BE56CF7FF17F882955A5580E7E6E73C1D6866CC8408D6591C242269AF28E121A0EBD2B7B113E99885BF71DB6B15DAA5C3E05D96FE65DE4CB3B537
SSDEEP 393216:edzNb7k6hH6epDbqdZNB3oofXichUMxlzD5DhBR:ebF/n+338Czn
IMP 4ECC46994D80B28878D10B74C732EB89
PESHA1 330B54C04BE10F6F7162C1BA230BA8C0C2910005
PE256 F5D13C2541F012368A7BE51D1F7F4739598CD2C0725D9A46A2050F8D4664B654

Runtime Data

Usage (stdout):

Usage: C:\Program Files\SplunkUniversalForwarder\bin\splunkd.exe [OPTION...]
  --nodaemon      causes the system not to daemonize
  -c STRING       override the config path
  -h              no longer supported
  -i              no longer supported
  -n STRING       the component name to start with
  -p INT          the management port Splunkd will listen on
  --debug         start with debug log config
  --debugsvc      start with debug log config, without std output
  --srv-user=USR  config service to run user USR (e.g. ".\Administrator");
                  should only be run when installing a service
  --srv-pass=PAS  may optionally follow --srv-user if password is needed
  --startup=TYPE  service startup type when installing the service;
                  can either be "auto" or "manual";
                  if not specified, "auto" is assumed

Help options:
  -?, --help      Show this help message
  --usage         Display brief usage message

Usage (stderr):

-h option requires an argument
Usage: C:\Program Files\SplunkUniversalForwarder\bin\splunkd.exe [OPTION...]
  --nodaemon      causes the system not to daemonize
  -c STRING       override the config path
  -h              no longer supported
  -i              no longer supported
  -n STRING       the component name to start with
  -p INT          the management port Splunkd will listen on
  --debug         start with debug log config
  --debugsvc      start with debug log config, without std output
  --srv-user=USR  config service to run user USR (e.g. ".\Administrator");
                  should only be run when installing a service
  --srv-pass=PAS  may optionally follow --srv-user if password is needed
  --startup=TYPE  service startup type when installing the service;
                  can either be "auto" or "manual";
                  if not specified, "auto" is assumed

Help options:
  -?, --help      Show this help message
  --usage         Display brief usage message

Loaded Modules:

Path
C:\Program Files\SplunkUniversalForwarder\bin\splunkd.exe
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\SYSTEM32\ntdll.dll

Signature

  • Status: Signature verified.
  • Serial: 014E132916D610BB301B22ABBD994616
  • Thumbprint: B8B4F0D3FD0571E184DEBB76A1F6DB73F30FA233
  • Issuer: CN=DigiCert EV Code Signing CA (SHA2), OU=www.digicert.com, O=DigiCert Inc, C=US
  • Subject: CN=”Splunk, Inc.”, O=”Splunk, Inc.”, L=San Francisco, S=California, C=US, SERIALNUMBER=4109614, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.2=Delaware, OID.1.3.6.1.4.1.311.60.2.1.3=US

File Metadata

  • Original Filename: splunkd.exe
  • Product Name: splunk Application
  • Company Name: Splunk Inc.
  • File Version: 8.2.3
  • Product Version: 8.2.3 (Build cd0848707637)
  • Language: English (United States)
  • Legal Copyright: Copyright (C) 2005-2021
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/73
  • VirusTotal Link: https://www.virustotal.com/gui/file/dd5efb7850ee35d6dcfa52920a4903ce9b1d8de44bf15b3b89dfcb7d0425c9ba/detection

MIT License. Copyright (c) 2020-2021 Strontic.