a26306669fc002e59b169a9c164622cf4aa1328dd231e6aa04aa383a8b8d4c7b
Author: Microsoft
Source: Wild
Summary
takeown.exe is the 66168th most commonly executed Windows program. It typically runs from the path C:\Windows\System32, and is most often launched by powershell.exe. It has been observed executing on 50.6% of computers in the wild. The typical filename is takeown.exe.
EchoTrail Prevalence Score (EPS)
44.94
Rank Analysis
Host Prevalence
50.6%
Execution Rank
66,168th
Behavioral Analysis
Top Filenames
Top Paths
C:\Windows\System32
98.35 %
loading...
Top Network Ports
No results found.
Ancestry Analysis
Top GrandParents
Top Parents
Top Children
Security Analysis
Intel
Want to contribute intel? Contact us about becoming an Intel Contributor.