vshadow.exe
- File Path:
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\arm64\vshadow.exe
- Description: VShadow, Volume Shadow Copy Service (VSS) Sample Requestor
Hashes
Type | Hash |
---|---|
MD5 | 5E7E66E3290CB3412BECB08147C69C78 |
SHA1 | 57C5F949E67E99D9C726349A069DE4E10A14F702 |
SHA256 | 6546E380EA44C1E2966A2C27C2AFCD6CB549ABCB56CCFA9B0DB15DDF075A7F13 |
SHA384 | 0E0165B3C8657E9419503CF5872F4F374AA507F71C5649D279D649A678DCFDC7792FFFA07AF59182E9A0C0443EC38760 |
SHA512 | 2058F593D3F964A5E5FB87C3DC099F5EAF97B9B7E8F1718AB679BE8F5C868F1A08D2E2CCD493C7C47EBFB42837C6A02C0B619B4041711ACE93B14A865312265F |
SSDEEP | 6144:6bIbOFjma4n92hxunrWUMwWoeIp/cZilZON7q:mpa92hxunrWUplp/cZiSNe |
IMP | 1CA4EE7CE4FFAF1F599F39FDB4899D95 |
PESHA1 | 82474564547016FED1CB605BCE8547D53AB39D43 |
PE256 | 4F7BDFE41854E2B32252C724FC963DC1138DBEB53F57DD9097155B0EC299F362 |
Signature
- Status: Signature verified.
- Serial:
33000002B7E8E007A82AEF13150000000002B7
- Thumbprint:
5A68625F1A516670A744F7EF919500A479D32A5B
- Issuer: CN=Microsoft Code Signing PCA 2010, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Windows Kits Publisher, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
File Metadata
- Original Filename: vshadow.exe
- Product Name: VShadow
- Company Name: Microsoft Corporation
- File Version: 10.0.19041.1 (WinBuild.160101.0800)
- Product Version: 10.0.19041.1
- Language: English (United States)
- Legal Copyright: Microsoft Corporation. All rights reserved.
- Machine Type: 64-bit ARM
File Scan
- VirusTotal Detections: 0/73
- VirusTotal Link: https://www.virustotal.com/gui/file/6546e380ea44c1e2966a2c27c2afcd6cb549abcb56ccfa9b0db15ddf075a7f13/detection
MIT License. Copyright (c) 2020-2021 Strontic.