LaunchWinApp.exe
- File Path:
C:\Windows\system32\LaunchWinApp.exe
- Description: Launch Windows App
Screenshot
Hashes
Type | Hash |
---|---|
MD5 | 1E2F68BEF69E94262EF7657F2664320D |
SHA1 | 3B587CAF6CBF4A2D0EAFDBAB5A0C413B82C18C85 |
SHA256 | FCCCA72159AD3057A6E8C412C15628E46ED3627CEDACA21FC1945138F7C4B218 |
SHA384 | A6E0E47E5FCD668BA8AB83A2EDBB0876F56F77B77F89964236572A3D8D434973A8598864517589C95E2B6BA4730FF554 |
SHA512 | 8DF31BC74BFF174B5F62BB51C9E25DCDA6E1E6C504CD1FCAED9044350DBADAA94E7A0DDE5D111B5F425C0F2764F9DD38E648D21F86986D169DAE8163A24C7360 |
SSDEEP | 768:7FzrjbhaHvAdIRY6cg6LBNBrZlNg12HWPU/sRrl0KB9OtLKgVOyuED/:7R2vAWq9g6L/Bdlg2HuDRr+KB9ibVOyl |
Runtime Data
Window Title:
C:\Users\user--help
Open Handles:
Path | Type |
---|---|
(R-D) C:\Windows\Fonts\StaticCache.dat | File |
(R-D) C:\Windows\System32\en-US\duser.dll.mui | File |
(R-D) C:\Windows\System32\en-US\KernelBase.dll.mui | File |
(R-D) C:\Windows\System32\en-US\shell32.dll.mui | File |
(R-D) C:\Windows\SystemResources\imageres.dll.mun | File |
(R-D) C:\Windows\WinSxS\amd64_microsoft.windows.c..-controls.resources_6595b64144ccf1df_6.0.19041.1_en-us_cb612d02732b0fd9\comctl32.dll.mui | File |
(RW-) C:\Users\user | File |
(RW-) C:\Windows\WinSxS\amd64_microsoft.windows.c..-controls.resources_6595b64144ccf1df_6.0.19041.1_en-us_cb612d02732b0fd9 | File |
(RW-) C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.1_none_b555e41d4684ddec | File |
\BaseNamedObjects__ComCatalogCache__ | Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000002.db | Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000001.db | Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2.ro | Section |
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 | Section |
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 | Section |
\BaseNamedObjects\windows_shell_global_counters | Section |
\Sessions\1\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{F79646A6-8BE5-443B-A98F-AD03D667F646}.2.ver0x0000000000000001.db | Section |
\Sessions\1\BaseNamedObjects\SessionImmersiveColorPreference | Section |
\Sessions\1\BaseNamedObjects\UrlZonesSM_user | Section |
\Sessions\1\BaseNamedObjects\windows_shell_global_counters | Section |
\Sessions\1\Windows\Theme1149834063 | Section |
\Windows\Theme2597483563 | Section |
Loaded Modules:
Path |
---|
C:\Windows\System32\ADVAPI32.dll |
C:\Windows\System32\combase.dll |
C:\Windows\System32\KERNEL32.DLL |
C:\Windows\System32\KERNELBASE.dll |
C:\Windows\system32\LaunchWinApp.exe |
C:\Windows\System32\msvcp_win.dll |
C:\Windows\System32\msvcrt.dll |
C:\Windows\SYSTEM32\ntdll.dll |
C:\Windows\System32\OLEAUT32.dll |
C:\Windows\System32\RPCRT4.dll |
C:\Windows\System32\sechost.dll |
C:\Windows\System32\ucrtbase.dll |
Signature
- Status: Signature verified.
- Serial:
330000026551AE1BBD005CBFBD000000000265
- Thumbprint:
E168609353F30FF2373157B4EB8CD519D07A2BFF
- Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
File Metadata
- Original Filename: LaunchWinApp.exe
- Product Name: Microsoft Windows Operating System
- Company Name: Microsoft Corporation
- File Version: 10.0.19041.423 (WinBuild.160101.0800)
- Product Version: 10.0.19041.423
- Language: English (United States)
- Legal Copyright: Microsoft Corporation. All rights reserved.
File Similarity (ssdeep match)
File | Score |
---|---|
C:\Windows\system32\LaunchWinApp.exe | 93 |
C:\Windows\system32\LaunchWinApp.exe | 97 |
MIT License. Copyright (c) 2020-2021 Strontic.