Reason Labs

te.processhost.exe

Test Authoring and Execution Framework [v5.3-1509]

Microsoft Corporation

Publisher:
Microsoft Corporation  (signed and verified)

Product:
Microsoft® Windows® Operating System

Description:
Test Authoring and Execution Framework [v5.3-1509]

Version:
10.0.10582.1000 (th2_es_taef.151026-1541)

MD5:
a27045b9d85592a501f9645d5c8f7dcb

SHA-1:
dc3408effd9132cb0ed9047fa938381390585d38

SHA-256:
3b220ffd230e20e4b04e09f84f96354a8b9042059dfc7866810657f8bcb54ce1

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
11/16/2018 12:29:39 PM UTC  (today)

File size:
27.1 KB (27,768 bytes)

Product version:
10.0.10582.1000

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
TE.ProcessHost

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\microsoft visual studio 14.0\common7\ide\commonextensions\microsoft\testwindow\x64\te.processhost.exe

Digital Signature
Authority:
Microsoft Corporation

Valid from:
6/4/2015 10:42:45 AM

Valid to:
9/4/2016 10:42:45 AM

Subject:
CN=Microsoft Corporation, OU=MOPR, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Issuer:
CN=Microsoft Code Signing PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Serial number:
330000010A2C79AED7797BA6AC00010000010A

File PE Metadata
Compilation timestamp:
10/26/2015 3:47:14 PM

OS version:
10.0

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
12.10

CTPH (ssdeep):
384:3d/PNohhF8RfRWTooWvrL+BA0GftpBj1f+ILKHRN7tPlcEbIr:3NPNyMfCo6FiDmNM

Entry address:
0x1330

Entry point:
48, 83, EC, 28, E8, 5B, 02, 00, 00, 48, 83, C4, 28, E9, 0E, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 0F, 1F, 84, 00, 00, 00, 00, 00, 48, 3B, 0D, A1, 1C, 00, 00, 75, 10, 48, C1, C1, 10, 66, F7, C1, FF, FF, 75, 01, C3, 48, C1, C9, 10, E9, 72, 03, 00, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 48, 83, EC, 28, 48, 8B, 01, 81, 38, 63, 73, 6D, E0, 75, 23, 83, 78, 18, 04, 75, 1D, 8B, 48, 20, 8D, 81, E0, FA, 6C, E6, 83, F8...
 
[+]

Entropy:
6.5883

Code size:
2.5 KB (2,560 bytes)

There are numerous known versions of te.processhost.exe by Microsoft Corporation.

Clean
te.processhost.exe  6.3.9651.0 (winbluephone_rtm.140521-1530)  (8939faa8d31ce3a2a92cbfa15683b74bacfa75b1)

Clean
te.processhost.exe  10.0.14253.1001 (rs1_es_taef_vsupdate2.160512-1432)  (7e5ef8f38c3c80ddef671a83c9f479c62b1824fd)

Clean
te.processhost.exe  10.0.14253.1001 (rs1_es_taef_vsupdate2.160512-1416)  (d9cf243f1067cde5678bb06a679aad1a657bc361)

Clean
te.processhost.exe  10.0.14253.1001 (rs1_es_taef_vsupdate2.160307-1318)  (bb09aa94e6496efd5e582bc60f64350ceb8c74d0)

Clean
te.processhost.exe  10.0.14253.1001 (rs1_es_taef_vsupdate2.160307-1302)  (c2cacc79fa592ce33bf122676fc0d7fc3cda7977)

Clean
te.processhost.exe  10.0.10586.0 (th2_release.151029-1700)  (d02c3c1c4bad5a49215fec48a710758712ce6c11)

Clean
te.processhost.exe  10.0.10586.0 (th2_release.151029-1700)  (d9b4456270f8a8b2c33bbeb3dbdba372d79819af)

Clean
te.processhost.exe  10.0.10586.0 (th2_release.151029-1700)  (de2ae5bd58008f527be2b3ed1c32010042b0ce62)

Clean
te.processhost.exe  10.0.10586.0 (th2_release.151029-1700)  (d9e2f074abd06d63732c64af73db558acd077e01)

Clean
te.processhost.exe  10.0.10586.0 (th2_release.151029-1700)  (ee1c97755000279245923868a5281f2fa41c28dc)

Clean
te.processhost.exe  10.0.10586.0 (th2_release.151029-1700)  (fc8331ac48ede58d81a1143d637386fe3c901027)

Clean
te.processhost.exe  10.0.10586.0 (th2_release.151029-1700)  (bdc9991da6306198fc95b3af0291e0a4c684c73b)

Clean
te.processhost.exe  10.0.10582.1000 (th2_es_taef.151026-1520)  (9505bf98a979f315dd9accc9e748f67c95f15c70)

Clean
te.processhost.exe  10.0.10526.1000 (th2_es_taef.150814-1643)  (0f41f0bd675b27d27cf55ecaf3cc98f9510cad88)

Clean
te.processhost.exe  10.0.10526.1000 (th2_es_taef.150814-1623)  (0e2d44bcb6bafee9c6f270b07ec3f0b90d51de95)

Clean
ntdll.dll  (3a2bae6036ff2d23309a7b93ab562494c50df236)

Clean
rsaenh.dll  (a1c8e3e6ee44dcb68752d44b3b6f4ecce89c388d)

Clean
bcryptprimitives.dll  (f76bb1b4d0ad47f68f8381281f87839304c252ea)

Clean
sqmapi.dll  (2fcd13bd14c631279ce4c5fd96b448d4dded5b11)

Clean
wuapi.dll  (46eed9639adc4e9cc6e2f5db5edf992b031928d8)

Clean
wuauclt.exe  (883d5312d7f6bf03ab56761ff110784e4ba2edec)

Clean
wups2.dll  (9a68d7eed00c944a51c8c53caeb3c9e23db6106b)

Clean
fveapi.dll  (1700a976565404226ff0704e4e2d9d8410bc6721)

Clean
wuaueng.dll  (64a55a014a2de34f86f17cfa31c727e270fcd83f)

Clean
dssenh.dll  (e395683841b965d1f224413f2e3339091f51add8)

Clean
dxwebsetup.exe  (3c8243734cf43dd7bb2332ba05b58ccacfa4377c)

Clean
portqryui.exe  (aa59ac1f61e87fd08ae371743b9aa12e16cc9d9a)

Clean
acpi.sys  (54fb26c69829d3f1d0774d4e608327ffefa34d76)

Clean
atapi.sys  (954d59eaeadc36cb19a224a5dddfa1edcfdc49ce)

Clean
clfs.sys  (df95d1fe3fcc8417da0ae9479612b7be398b36a4)

Clean
cng.sys  (c0f3a5bc240d2d26fa7e23bf27dc5a4876ff5296)

Download Reason Core Security - Powerful anti-malware software