windowsdesktop-runtime-5.0.11-win-x64.exe
- File Path:
C:\ProgramData\Package Cache\{59d2a8eb-a667-428d-a393-42df4da226a4}\windowsdesktop-runtime-5.0.11-win-x64.exe
- Description: Microsoft Windows Desktop Runtime - 5.0.11 (x64)
Hashes
Type |
Hash |
MD5 |
D8114E603BBB9EC019708D502E684D5C |
SHA1 |
4F4B4D1170C798F30335F1CCBCD4F497D9C66990 |
SHA256 |
6AF1B90D71FD66D355854D92BF1028BB87F378551001162766E96AB078F30C76 |
SHA384 |
BECD558B9E659C34295391A8B54411A95FA4FE6505F2019732CD0C6854FC0943C827FDF37F552F77DC176650D9DD40B6 |
SHA512 |
AE4E8A55A8BC940FF0A04B247519DB2171D348AB7AB7A6510144AA41D52162D1910B572D463E4763A33E590776282C1ECDE74A44E7300DA6FEFF0129ACFA8509 |
SSDEEP |
12288:5bWyPkCxc676jTxmyMGzdqTI4CzczSkuELP2fXsDbDnmr:5qSxc676jT4xCqT0ceREr2fmbC |
IMP |
2A47C65375416EBACDE9EF7E2931050A |
PESHA1 |
4DEEA9052110457CE125565D860BFD00FD9B382A |
PE256 |
DB0C46CBE44ADEB8E98F73774A8AF79E55521FA9CAED7D521383498A2CE42168 |
Runtime Data
Child Processes:
windowsdesktop-runtime-5.0.11-win-x64.exe
Open Handles:
Path |
Type |
(R-D) C:\ProgramData\Package Cache{59d2a8eb-a667-428d-a393-42df4da226a4}\windowsdesktop-runtime-5.0.11-win-x64.exe |
File |
(R-D) C:\Windows\System32\en-US\KernelBase.dll.mui |
File |
(RW-) C:\Users\user |
File |
(RW-) C:\Windows |
File |
\BaseNamedObjects__ComCatalogCache__ |
Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000002.db |
Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db |
Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2 |
Section |
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 |
Section |
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 |
Section |
\Sessions\1\BaseNamedObjects\windows_shell_global_counters |
Section |
Loaded Modules:
Path |
C:\ProgramData\Package Cache{59d2a8eb-a667-428d-a393-42df4da226a4}\windowsdesktop-runtime-5.0.11-win-x64.exe |
C:\Windows\SYSTEM32\ntdll.dll |
C:\Windows\System32\wow64.dll |
C:\Windows\System32\wow64cpu.dll |
C:\Windows\System32\wow64win.dll |
Signature
- Status: Signature verified.
- Serial:
33000001DF6BF02E92A74AB4D00000000001DF
- Thumbprint:
ABDCA79AF9DD48A0EA702AD45260B3C03093FB4B
- Issuer: CN=Microsoft Code Signing PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Original Filename: windowsdesktop-runtime-5.0.11-win-x64.exe
- Product Name: Microsoft Windows Desktop Runtime - 5.0.11 (x64)
- Company Name: Microsoft Corporation
- File Version: 5.0.11.30524
- Product Version: 5.0.11.30524
- Language: English (United States)
- Legal Copyright: Copyright (c) Microsoft Corporation. All rights reserved.
- Machine Type: 32-bit
File Scan
- VirusTotal Detections: 0/73
- VirusTotal Link: https://www.virustotal.com/gui/file/6af1b90d71fd66d355854d92bf1028bb87f378551001162766e96ab078f30c76/detection
File Similarity (ssdeep match)
MIT License. Copyright (c) 2020-2021 Strontic.