sppsvc.exe

  • File Path: C:\Windows\system32\sppsvc.exe
  • Description: Microsoft Software Protection Platform Service

Hashes

Type Hash
MD5 64384A7CA0834695460AD8D80945DE9C
SHA1 50A3035376C6F6351D38B3029C37AD2496BC9441
SHA256 FB0371D958BCC0ADE0B75C4EF7072296B1A0E16E05A1193B37068F44765BD12A
SHA384 AA15C830BD6BAE3768C10F0F151DBE412E3EC3C2E7D8A186F289C9C79199847AD0D6666B4C0DADB834440AB80F86A7BF
SHA512 8EB0EE039AE7B185DC73A73D03C115C10A1AD1E4E72FBB51DF85B703AC53B459ADAB8A9B77C5738CFCD5737F3DDB2F5725A305A010D67822C7F9AAAB990EC543
SSDEEP 98304:snZqizyePIQcw/NG2i8nujmaQn9WCsRCG5sDhWMGn:snDzyePIQfRi8nujmp9WC9G5cOn
IMP 865C812E4E3E6E8C398A0757574C8DA3
PESHA1 46EC971764E9BC5A0721FC3C0FC4BF7CABAF6C29
PE256 A26B6EBF5395ABC795C07C17BC229C2C490C50ACA1223F6E1A28603AD88B57E1

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: sppsvc.exe.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/75
  • VirusTotal Link: https://www.virustotal.com/gui/file/fb0371d958bcc0ade0b75c4ef7072296b1a0e16e05a1193b37068f44765bd12a/detection

Possible Misuse

The following table contains possible examples of sppsvc.exe being misused. While sppsvc.exe is not inherently malicious, its legitimate functionality can be abused for malicious purposes.

Source Source File Example License
malware-ioc nukesped_lazarus .sppsvc.exe``{:.highlight .language-cmhg} © ESET 2014-2018

MIT License. Copyright (c) 2020-2021 Strontic.