ntkrnlpa.exe

NT Kernel & System

Microsoft Corporation

This is the image for the Windows NT Kernel with Physical Address Extension support and provides the kernel and executive layers responsible for various system services such as hardware virtualization, process and memory management. It is included with the Windows 7 OS.
Publisher:
Microsoft Corporation  (signed and verified)

Product:
Microsoft® Windows® Operating System

Description:
NT Kernel & System

 
Part of the Windows 7 Operating System

Version:
6.1.7600.16740 (win7_gdr.110114-1505)

MD5:
42061d9455d898877d6df9681eda72ef

SHA-1:
d2e861b84b39e08885c9b16675959d33598e8462

SHA-256:
1bcf28e36353953a58b100bd08837f2cd8a3c1a8ac992f4c61150082f351eef7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
12/25/2024 4:00:55 PM UTC  (today)

File size:
3.8 MB (3,957,120 bytes)

Product version:
6.1.7600.16740

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
ntkrpamp.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\windows\syswow64\ntkrnlpa.exe

Digital Signature
Authority:
Microsoft Corporation

Valid from:
12/7/2009 1:57:40 PM

Valid to:
3/7/2011 1:57:40 PM

Subject:
CN=Microsoft Windows, OU=MOPR, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Issuer:
CN=Microsoft Windows Verification PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Serial number:
6115230F00000000000A

File PE Metadata
Compilation timestamp:
1/14/2011 7:29:46 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

Entry address:
0x11D4D8

Entry point:
55, 8B, EC, 83, EC, 20, 8B, 5D, 08, 89, 1D, 8C, 88, 56, 00, 8B, 0D, 6C, 89, 56, 00, 89, 4D, E8, 0B, C9, 75, 3C, C7, 43, 34, 80, 32, 53, 00, C7, 43, 28, 00, 70, 52, 00, 0F, 01, 04, 24, 8B, 54, 24, 02, 83, C2, 30, 8D, 05, 00, 9C, 52, 00, 66, 89, 42, 02, C1, E8, 10, 88, 42, 04, 88, 62, 07, 66, C7, 02, 48, 37, 6A, 30, 0F, A1, 64, 89, 0D, EC, 04, 00, 00, 8B, 43, 34, 89, 45, E0, 8D, 48, 40, 89, 48, 40, 89, 48, 44, 8B, 43, 28, 89, 45, E4, E8, 47, C1, 1F, 00, 83, 7D, E8, 00, 0F, 85, A2, 01, 00, 00, E8, F7, 02, 00...
 
[+]

Entropy:
6.3878

Developed / compiled with:
Microsoft Visual C++

Code size:
3.3 MB (3,422,720 bytes)