FXSCOVER.exe
- File Path:
C:\Windows\system32\FXSCOVER.exe - Description: Microsoft Fax Cover Page Editor
Screenshot

Hashes
| Type | Hash |
|---|---|
| MD5 | 5769F78D00F22F76A4193DC720D0B2BD |
| SHA1 | D62B6CAB057E88737CBA43FE9B0C6D11A28B53E8 |
| SHA256 | 40E8E6DABFA1485B11CDCCF220EB86EEAA8256E99E344CF2B2098D4CDB788A31 |
| SHA384 | 2C3E5CF5AC8826F56B780F5964F98C72FC9193BBB89CE5F47231F788646C5614A5E987334EA180644D048456664C681E |
| SHA512 | B4B3448A2635B21690C71254D964832E89BF947F7A0D32E79DCC84730F11D4AFB4149A810A768878E52F88FC8BAEC45F1A2FEC8E22C5301E9F39FE4FC6A57E3F |
| SSDEEP | 6144:6Ss+XQnpipwfgWGevhOYrOPXIrUCfebDhbok/:wpipw4WGCU0Wlok/ |
| IMP | 27CE374153A8DD50DDF6F59B17C8348A |
| PESHA1 | BD00B7343AD73404DBEAD34DCF66A2D0E60C7876 |
| PE256 | EE113A2A3A210F89BD4D5C94415B78CDD86972EA719642065EE1244BA7B3557F |
Runtime Data
Window Title:
Cover Page - Fax Cover Page Editor
Open Handles:
| Path | Type |
|---|---|
| (R-D) C:\Windows\Fonts\StaticCache.dat | File |
| (R-D) C:\Windows\System32\en-US\FXSRESM.dll.mui | File |
| (R-D) C:\Windows\System32\en-US\MFC42u.dll.mui | File |
| (R-D) C:\Windows\SystemResources\imageres.dll.mun | File |
| (RW-) C:\Users\user\Documents\Fax\Personal CoverPages | File |
| (RW-) C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.1110_none_60b5254171f9507e | File |
| \BaseNamedObjects__ComCatalogCache__ | Section |
| \BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000002.db | Section |
| \BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db | Section |
| \BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2 | Section |
| \BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 | Section |
| \BaseNamedObjects\NLS_CodePage_437_3_2_0_0 | Section |
| \BaseNamedObjects\windows_shell_global_counters | Section |
| \Sessions\1\BaseNamedObjects\windows_shell_global_counters | Section |
| \Sessions\1\Windows\Theme449731986 | Section |
| \Windows\Theme1396518710 | Section |
Loaded Modules:
| Path |
|---|
| C:\Windows\System32\ADVAPI32.dll |
| C:\Windows\System32\combase.dll |
| C:\Windows\System32\COMDLG32.dll |
| C:\Windows\system32\FXSCOVER.exe |
| C:\Windows\System32\GDI32.dll |
| C:\Windows\System32\gdi32full.dll |
| C:\Windows\System32\KERNEL32.DLL |
| C:\Windows\System32\KERNELBASE.dll |
| C:\Windows\System32\msvcp_win.dll |
| C:\Windows\System32\msvcrt.dll |
| C:\Windows\SYSTEM32\ntdll.dll |
| C:\Windows\System32\RPCRT4.dll |
| C:\Windows\System32\sechost.dll |
| C:\Windows\System32\ucrtbase.dll |
| C:\Windows\System32\USER32.dll |
| C:\Windows\System32\win32u.dll |
Signature
- Status: Signature verified.
- Serial:
33000002ED2C45E4C145CF48440000000002ED - Thumbprint:
312860D2047EB81F8F58C29FF19ECDB4C634CF6A - Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
File Metadata
- Original Filename: FXSCOVER.EXE
- Product Name: Microsoft Windows Operating System
- Company Name: Microsoft Corporation
- File Version: 10.0.19041.746 (WinBuild.160101.0800)
- Product Version: 10.0.19041.746
- Language: English (United States)
- Legal Copyright: Microsoft Corporation. All rights reserved.
- Machine Type: 64-bit
File Scan
- VirusTotal Detections: 0/74
- VirusTotal Link: https://www.virustotal.com/gui/file/40e8e6dabfa1485b11cdccf220eb86eeaa8256e99e344cf2b2098d4cdb788a31/detection
MIT License. Copyright (c) 2020-2021 Strontic.