Microsoft.ECApp.exe

  • File Path: C:\WINDOWS\SystemApps\Microsoft.ECApp_8wekyb3d8bbwe\Microsoft.ECApp.exe
  • Description: EC App

Hashes

Type Hash
MD5 36E313D4619B9B85C0EB231D4F8F4647
SHA1 1BB12C564843EEA435855103374457328ADAC9C0
SHA256 7E1FBFF22ACD7F1D6A98F3E3D94A9532AAB2DC13F16DB01E3C592319067541D8
SHA384 D61B6753AED5274290D98CDC68427F151585F6F597A1349F0966B4CFEF208BE745DCC2CDC28E36CA31775A4916831B75
SHA512 E12C3B9F5CD7DB76E03BB816E66F0BFDD61E7E2B364C347B5884C631291A5A2F34F83937CC3C46B9AD0F66DAC92CF9E35666E200C0B0E5435BBE49D9B2ADCD2E
SSDEEP 24576:2NKQEJiYHUsUT+b4earLvGKirYFswiqkno:6KQEB0sUTfvGKiQ3ij
IMP 8DD92EF6FDB5D5EA0D056B226448F04F
PESHA1 AC39C5C519ABE06087C4FA1DF7F65263A69A7DAB
PE256 D362E781285710283312DF82951519E9EAC4B80578DB0C2E0CD43A48791F1BE6

Runtime Data

Child Processes:

Microsoft.ECApp.exe WerFault.exe

Loaded Modules:

Path
C:\WINDOWS\System32\KERNEL32.DLL
C:\WINDOWS\System32\KERNELBASE.dll
C:\WINDOWS\SYSTEM32\ntdll.dll
C:\WINDOWS\SystemApps\Microsoft.ECApp_8wekyb3d8bbwe\Microsoft.ECApp.exe

Signature

  • Status: Signature verified.
  • Serial: 33000002ED2C45E4C145CF48440000000002ED
  • Thumbprint: 312860D2047EB81F8F58C29FF19ECDB4C634CF6A
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: ECApp.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.22000.120 (WinBuild.160101.0800)
  • Product Version: 10.0.22000.120
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: Unknown

MIT License. Copyright (c) 2020-2021 Strontic.