HelpPane.exe

  • File Path: C:\Windows\HelpPane.exe
  • Description: Microsoft Help and Support

Hashes

Type Hash
MD5 CB8609764B0908853541EB4718ECE471
SHA1 D8457897875FBB48A5510392EA2B913940E1F45D
SHA256 61A42C1904275294E6D1446F53275C64A752D0BFE362B03ED5F4ECC7DCBFA7B3
SHA384 25DCA0017E3884B81E8E33B48525F1BFED30CA4D69462954F41581A4C51E28837331A0A0E725D3CC05E24AE06C67972C
SHA512 E70D457D017D91CF1D171FEED4509EBDF2E59BF877DDB9F5D58325A3DAD757FDAC2954845BA3CF1BC04B639F0D47C081FCAA55C82D89CA40AE1CA8A182D995CC
SSDEEP 12288:CYQskmB4b43OYv/x+Pzr2PKlfs9W1W3MT3HOXKPXPiXuHNHGb6bH/zx/GCLW/nhf:lQlrYEzrWKlfs9WAe3H
IMP 6AD9191B348033E11321205D861CF898
PESHA1 26B5CAD3B210DACE272DBF1EE56A076A3E75400C
PE256 60272855402205EC74C6B2090E3E22337743467FE33350498AD86337B93FC718

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: HelpPane.exe.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.17763.1 (WinBuild.160101.0800)
  • Product Version: 10.0.17763.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/70
  • VirusTotal Link: https://www.virustotal.com/gui/file/61a42c1904275294e6d1446f53275c64a752d0bfe362b03ed5f4ecc7dcbfa7b3/detection/

File Similarity (ssdeep match)

File Score
C:\WINDOWS\HelpPane.exe 40
C:\WINDOWS\HelpPane.exe 52
C:\Windows\HelpPane.exe 52
C:\windows\HelpPane.exe 57
C:\Windows\HelpPane.exe 50
C:\Windows\HelpPane.exe 52

Possible Misuse

The following table contains possible examples of HelpPane.exe being misused. While HelpPane.exe is not inherently malicious, its legitimate functionality can be abused for malicious purposes.

Source Source File Example License
sigma win_user_driver_loaded.yml - '\Windows\HelpPane.exe' DRL 1.0

MIT License. Copyright (c) 2020-2021 Strontic.