FaceFodUninstaller.exe

  • File Path: C:\Windows\system32\WinBioPlugIns\FaceFodUninstaller.exe

Hashes

Type Hash
MD5 0B570A6EA529F1D20DDB4C1C216A1AB7
SHA1 5133E35FB2B8767FBBA0329FD5E8A4F116FEC186
SHA256 8E49B01AA269866E471090B95ED9C2AA009DF768FF3B9463FF732BCD775D144F
SHA384 92EEC89454658FA0A5A90CD8264171997395FF586729B212CD34639C641E4644E95DC1A8DA7D581DB3D3D2A96B7C3BC3
SHA512 FCAF18D6057A9874DA9278709733263884C1F2D8AF39AE0BFFD3A4FD6C363A1B6C4EA1B51E7D72AF4AE757AB74E80047031BE4F10B3297A6C4E35A8C6B469A89
SSDEEP 6144:JVHh3Y8C9WT9jbM6lRvkkSvzi61+lhFyUH6he5ai5nOSrvCumYI4sws2wWs1B:JHUWhXZFSvzonyUHl5aCOSrv1mt4sQ
IMP 5552BDFD4F73C12A92B1D77FEFE3BB20
PESHA1 483ED361A332D5ECBFA2BE3CE83C561356D0AA8C
PE256 D62885708AAC32A77F67D8DDEE602E97A213E6694CFBEFA83F20416288524085

Runtime Data

Loaded Modules:

Path
C:\Windows\System32\combase.dll
C:\Windows\System32\GDI32.dll
C:\Windows\System32\gdi32full.dll
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\System32\msvcp_win.dll
C:\Windows\System32\msvcrt.dll
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\OLE32.dll
C:\Windows\System32\OLEAUT32.dll
C:\Windows\System32\RPCRT4.dll
C:\Windows\System32\sechost.dll
C:\Windows\System32\SHLWAPI.dll
C:\Windows\System32\ucrtbase.dll
C:\Windows\System32\win32u.dll
C:\Windows\system32\WinBioPlugIns\FaceFodUninstaller.exe
C:\Windows\SYSTEM32\WTSAPI32.dll

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename:
  • Product Name:
  • Company Name:
  • File Version:
  • Product Version:
  • Language:
  • Legal Copyright:
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/76
  • VirusTotal Link: https://www.virustotal.com/gui/file/8e49b01aa269866e471090b95ed9c2aa009df768ff3b9463ff732bcd775d144f/detection

MIT License. Copyright (c) 2020-2021 Strontic.