File details
File name: ehprivjob.exe
Name: Digital TV Tuner device registration application.
Description: Microsoft® Windows® Operating System
Version: 6.1.7600.16385 (win7_rtm.090713-1255)
Product version: 6.1.7600.16385
Size: 220 KB
Original file name: ehPrivJob.exe.mui
Windows file protection:
Yes
Scheduled task details
Name: UpdateRecordPath
Command: \Microsoft\Windows\Media Center\UpdateRecordPath
Scheduled tasks startup details
Name: \Microsoft\Windows\Media Center\DispatchRecoveryTasks
Image hashes
MD5: 3015bbbf642863b94f301475959981e9
SHA-1: 7bccec242d31cffaf41f7f45f4c88301a3b12b80
SHA-256: 861b46fd7bf31381affb9a98dc075b0e0498e1ee11cb3c1d73ec41b2ef16d67e
PE image details
Subsystem: Windows Console
Langauge*: Microsoft Visual C++
File entropy: 5.66326
File packed: No
Import Table
advapi32.dll

RegCloseKey
RegEnumKeyExW
RegCreateKeyExW
RegOpenKeyExW
RegSetValueExW
RegQueryValueExW
RegEnumKeyW
RegQueryInfoKeyW
ConvertStringSecurityDescriptorToSecurityDescriptorW
RegEnumValueW
ConvertStringSidToSidW
CreateWellKnownSid
EqualSid
GetAce
OpenThreadToken
ImpersonateSelf
AdjustTokenPrivileges
LookupPrivilegeValueW
SetNamedSecurityInfoW
GetNamedSecurityInfoW
GetSecurityInfo
RevertToSelf
SetEntriesInAclW
QueryServiceStatusEx
StartServiceW
ControlService
CloseServiceHandle
OpenServiceW
OpenSCManagerW
ConvertSidToStringSidW
GetTokenInformation
OpenProcessToken
ChangeServiceConfigW
iphlpapi.dll

kernel32.dll

lstrlenW
QueryFullProcessImageNameW
OpenProcess
MultiByteToWideChar
CloseHandle
LocalFree
SetEvent
CreateEventW
CreateDirectoryW
GetEnvironmentVariableW
OpenEventW
Sleep
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
WaitForSingleObject
GetModuleHandleW
WideCharToMultiByte
WaitForMultipleObjects
LocalAlloc
GetCurrentThread
CreateFileW
FindClose
FindNextFileW
FindFirstFileW
GetFileAttributesW
lstrlenA
InterlockedDecrement
GetSystemTime
WriteFile
SetFilePointer
GetCurrentProcessId
GetCurrentThreadId
GetLocalTime
GetWindowsDirectoryW
GetTickCount64
CompareStringW
GetCurrentProcess
CreateProcessW
CopyFileW
GetModuleFileNameW
GetTempPathW
DelayLoadFailureHook
FreeLibrary
InterlockedCompareExchange
LoadLibraryExA
GetStartupInfoW
SetUnhandledExceptionFilter
GetModuleHandleA
QueryPerformanceCounter
GetTickCount
GetSystemTimeAsFileTime
TerminateProcess
UnhandledExceptionFilter
InterlockedIncrement
GetProcAddress
LoadLibraryW
FlushFileBuffers
DeleteFileW
CompareFileTime
GetLastError
CreateThread
SetEndOfFile
MoveFileExW
OutputDebugStringW
CreateMutexW
OpenMutexW
ReleaseMutex
InterlockedExchange
msvcrt.dll
ole32.dll

CoUninitialize
CoInitializeEx
CoCreateInstance
StringFromGUID2
CoTaskMemFree
CLSIDFromString
StringFromCLSID
CoSetProxyBlanket
CoTaskMemAlloc
CoCreateGuid
StringFromIID
propsys.dll

PSUnregisterPropertySchema
PSRegisterPropertySchema
shlwapi.dll

PathFindFileNameW
UrlGetPartW
PathCombineW
slc.dll

SLInstallProofOfPurchase
SLGetPKeyInformation
SLConsumeWindowsRight
SLClose
SLOpen
slcext.dll

user32.dll

LoadStringW
CharLowerBuffW
wmdrmsdk.dll

ws2_32.dll

WSAStringToAddressW
GetNameInfoW