sppsvc.exe

  • File Path: C:\Windows\system32\sppsvc.exe
  • Description: Microsoft Software Protection Platform Service

Hashes

Type Hash
MD5 ADB94BE229B2AB6A815FD5B1BDAB6686
SHA1 8F73E2DA4BD05E75B933EC659A7A9A0540360EB2
SHA256 168FE518B3AD803A325308AE316EA0DCE0BE93B71201CE3ECDECE1ED633C17B4
SHA384 37AB5D5C8BB65A8335A041003BA2CAE5661E6D0FCB950724F4C0314F9A947146DA376B1C4722AC05BED64967A9FB9C00
SHA512 E7B01F12371C98447C5DA288F537DA3AABC245759ECB503DA2DED8F721FAC2509C9B2022C7731A471E498C2481242CDA9BE0BD33E9CC9E93076D079EBC8A6067
SSDEEP 49152:00maA/INM1D7n+l/eX1m2NqDlW6euhhjpC761KSolzf2o6chjm0dFG+rxg2T29dW:c+New2NqwmjpTkSoljfhTg+wvxbM
IMP 865C812E4E3E6E8C398A0757574C8DA3
PESHA1 2E28C40BFFE48953537E0260EA4AC8F92C7DF34A
PE256 D8DBE3EC4106000B4FF9BD8F5A419366B7676E021784A2716D1E26770A6C45CE

Signature

  • Status: Signature verified.
  • Serial: 330000026551AE1BBD005CBFBD000000000265
  • Thumbprint: E168609353F30FF2373157B4EB8CD519D07A2BFF
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: sppsvc.exe.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/68
  • VirusTotal Link: https://www.virustotal.com/gui/file/168fe518b3ad803a325308ae316ea0dce0be93b71201ce3ecdece1ed633c17b4/detection/

File Similarity (ssdeep match)

File Score
C:\Windows\system32\sppsvc.exe 30

Possible Misuse

The following table contains possible examples of sppsvc.exe being misused. While sppsvc.exe is not inherently malicious, its legitimate functionality can be abused for malicious purposes.

Source Source File Example License
malware-ioc nukesped_lazarus .sppsvc.exe``{:.highlight .language-cmhg} © ESET 2014-2018

MIT License. Copyright (c) 2020-2021 Strontic.