FileExplorer.exe

  • File Path: C:\WINDOWS\SystemApps\Microsoft.Windows.FileExplorer_cw5n1h2txyewy\FileExplorer.exe
  • Description: File Explorer

Hashes

Type Hash
MD5 0B1DAB838C28338EE0E38B174E78D9E1
SHA1 CB4E4D850B417316C829B02B061DE60D6B4DCF13
SHA256 B8407CB5CAFDFB1447D6049A8A17BCAF912573365AC9B9D404BB1730BC7FCD8C
SHA384 2EA86707FFC7CAAA8437F6ACB01A20878DA14B956D99C52FA22E43F4DBFA25F527C77C03A44A560FBD9252146A198023
SHA512 6B6ECD91153EC9E47FA85E9C1EC9FDE638A202F6F4CA4E38389D4E2C5A06D143306E61B339A7E0CB7B28A3AB32BCB221955FE0732088DFA5BD2290672A33091F
SSDEEP 49152:qPstu7JwbbIHhejXpQ/VYsoCaDfmOmM0IOK7IVj1ky:luyHja8CQm
IMP 66CFBB28C82CDD0290D08D3E4799330F
PESHA1 CF55CEB8B6B7E0CF00FC55AB601637CFB9190227
PE256 589A79F92C5D5886E23A810F2B5C6E5CD01F160567D52CB734C8C8E3C2AAC93F

Runtime Data

Child Processes:

FileExplorer.exe WerFault.exe

Loaded Modules:

Path
C:\WINDOWS\System32\bcryptPrimitives.dll
C:\WINDOWS\System32\clbcatq.dll
C:\WINDOWS\System32\combase.dll
C:\WINDOWS\SYSTEM32\DWrite.dll
C:\WINDOWS\SYSTEM32\kernel.appcore.dll
C:\WINDOWS\System32\KERNEL32.DLL
C:\WINDOWS\System32\KERNELBASE.dll
C:\WINDOWS\System32\msvcp_win.dll
C:\WINDOWS\System32\msvcrt.dll
C:\WINDOWS\SYSTEM32\ntdll.dll
C:\WINDOWS\System32\RPCRT4.dll
C:\WINDOWS\System32\ucrtbase.dll
C:\WINDOWS\SYSTEM32\wincorlib.DLL
C:\WINDOWS\SystemApps\Microsoft.Windows.FileExplorer_cw5n1h2txyewy\FileExplorer.exe

Signature

  • Status: Signature verified.
  • Serial: 33000002ED2C45E4C145CF48440000000002ED
  • Thumbprint: 312860D2047EB81F8F58C29FF19ECDB4C634CF6A
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: FileExplorer.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.22000.120 (WinBuild.160101.0800)
  • Product Version: 10.0.22000.120
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: Unknown

MIT License. Copyright (c) 2020-2021 Strontic.