876cba540d52698112e0e8ae4601f9812fffe8522c951795ad0386b894dbedf2
Author: Microsoft
Source: Wild
Summary
takeown.exe is the 3230th most commonly executed Windows program. It typically runs from the path C:\Windows\System32, and is most often launched by powershell.exe. It has been observed executing on 50.6% of computers in the wild. The typical filename is takeown.exe.
EchoTrail Prevalence Score (EPS)
64.43
Rank Analysis
Host Prevalence
50.6%
Execution Rank
3,230th
Behavioral Analysis
Top Filenames
Top Paths
C:\Windows\System32
98.35 %
loading...
Top Network Ports
No results found.
Ancestry Analysis
Top GrandParents
Top Parents
Top Children
Security Analysis
Intel
Want to contribute intel? Contact us about becoming an Intel Contributor.