windowsdesktop-runtime-5.0.11-win-x86.exe
- File Path:
C:\ProgramData\Package Cache\{7ce2617d-0a0a-4f61-8e5a-96f7bfca6fdd}\windowsdesktop-runtime-5.0.11-win-x86.exe
- Description: Microsoft Windows Desktop Runtime - 5.0.11 (x86)
Hashes
Type |
Hash |
MD5 |
D1FA86B07F8C31ED2B2EF7EE9E8E63A2 |
SHA1 |
13AFDA75DF5936D371615679FBAF806B055DAF90 |
SHA256 |
F73D817E7DAD64066FF0F3C3C3A9D42A6E3CEC67C77F73BAA9F27F8898C7FB54 |
SHA384 |
D9767B73851DAFD8ACE8A0C3EBCE590D45D2090C0543D759A4CC0B77920926A2A337E8EE1F65DD5D7BBFF5E47CF579D3 |
SHA512 |
0640B3FDB3D45B8F133A26CF920A72B78F7340FAEA6DE965990C5F6E1BEC5513FA78BA788B26A026EB1F778E4455F3DD6C945A4306E93CEF4803800B8A7B085A |
SSDEEP |
12288:5BWyPkCxc676jTxmyMGzdqTI4CzcTWkHjGMVKfXsS11gVDnmh:5ASxc676jT4xCqT0cqaVKfDgV+ |
IMP |
2A47C65375416EBACDE9EF7E2931050A |
PESHA1 |
EE869C3D7FAE8EB089B487EB2D75A888BDC75AA0 |
PE256 |
308B6B740B8F9B18749697718D05C66F0DE7809310CF3FD4B1FBC674D2E1126B |
Runtime Data
Child Processes:
windowsdesktop-runtime-5.0.11-win-x86.exe
Open Handles:
Path |
Type |
(R-D) C:\ProgramData\Package Cache{7ce2617d-0a0a-4f61-8e5a-96f7bfca6fdd}\windowsdesktop-runtime-5.0.11-win-x86.exe |
File |
(R-D) C:\Windows\System32\en-US\KernelBase.dll.mui |
File |
(RW-) C:\Users\user |
File |
(RW-) C:\Windows |
File |
\BaseNamedObjects__ComCatalogCache__ |
Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000002.db |
Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db |
Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2 |
Section |
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 |
Section |
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 |
Section |
\Sessions\1\BaseNamedObjects\windows_shell_global_counters |
Section |
Loaded Modules:
Path |
C:\ProgramData\Package Cache{7ce2617d-0a0a-4f61-8e5a-96f7bfca6fdd}\windowsdesktop-runtime-5.0.11-win-x86.exe |
C:\Windows\SYSTEM32\ntdll.dll |
C:\Windows\System32\wow64.dll |
C:\Windows\System32\wow64cpu.dll |
C:\Windows\System32\wow64win.dll |
Signature
- Status: Signature verified.
- Serial:
33000001DF6BF02E92A74AB4D00000000001DF
- Thumbprint:
ABDCA79AF9DD48A0EA702AD45260B3C03093FB4B
- Issuer: CN=Microsoft Code Signing PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Original Filename: windowsdesktop-runtime-5.0.11-win-x86.exe
- Product Name: Microsoft Windows Desktop Runtime - 5.0.11 (x86)
- Company Name: Microsoft Corporation
- File Version: 5.0.11.30524
- Product Version: 5.0.11.30524
- Language: English (United States)
- Legal Copyright: Copyright (c) Microsoft Corporation. All rights reserved.
- Machine Type: 32-bit
File Scan
- VirusTotal Detections: 0/73
- VirusTotal Link: https://www.virustotal.com/gui/file/f73d817e7dad64066ff0f3c3c3a9d42a6e3cec67c77f73baa9f27f8898c7fb54/detection
File Similarity (ssdeep match)
MIT License. Copyright (c) 2020-2021 Strontic.