winload.exe

  • File Path: C:\Windows\system32\winload.exe
  • Description: OS Loader

Hashes

Type Hash
MD5 A5EEA0FBDC640CFBF0A28FFB06EFAF04
SHA1 9498F2B9F8DEBFA894CD8BFA016190060F7A4460
SHA256 050ECFE3EC1AE3814B29FC938171616D37D763F1822F15290B2F022C4B0A821B
SHA384 1F2BE2772F4DE7DE2A51BF8B6B03102161190CAD5266151B9DF5A5741D0D630EE9196F70CD934A394C9E12BE9A95AE9E
SHA512 9EDA102554F2B5062BEE509D86C64C45820ABDA46366BB0739D6D5DC33ED029EF90D2301620E6276E778D1B3BC871EA63C959EFAA68D7EAEEBDBBEC3FF7F7DF5
SSDEEP 24576:R4lVM/kQ3hYLgITWVbc1/YSLb6ngPSL5PmKo8/7MsJe5SAoIzWXo:R4lV+6GcH6zmKneE54
PESHA1 D30F4C0689D5ECA9D4209503298D36651106A4B5
PE256 DDBEA98DFD8E1DF95113234269BE87DDE554BAC6D59F47701A5FA9520715BD5F

Signature

  • Status: Signature verified.
  • Serial: 330000026551AE1BBD005CBFBD000000000265
  • Thumbprint: E168609353F30FF2373157B4EB8CD519D07A2BFF
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: osloader.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.488 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.488
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/66
  • VirusTotal Link: https://www.virustotal.com/gui/file/050ecfe3ec1ae3814b29fc938171616d37d763f1822f15290b2f022c4b0a821b/detection/

File Similarity (ssdeep match)

File Score
C:\Windows\system32\Boot\winload.exe 100

MIT License. Copyright (c) 2020-2021 Strontic.