WWAHost.exe

  • File Path: C:\Windows\SysWOW64\WWAHost.exe
  • Description: Microsoft WWA Host

Hashes

Type Hash
MD5 776EE69BF2955CE384816C8BCCC02D41
SHA1 63971986949033109FE035BF9ACA1149367A6A49
SHA256 40BF206F8E55F3C01A920EE3932984E01517A6E7196BD2C57E12E413DA688448
SHA384 2BE11F7A5EDAAFDB43E045664DD4C29F79BA81247CB35D4E1F88BF4C091D4D403E55A272A78EE04B45A95B0E16FBB669
SHA512 B97AF8DA9B503CC3A19982F7FD98B13F4897A3AC3DEC4AE9CECA017119B39C65C878C0B02E737988A5D69629C5BF663D68FE456BAA48ECA0A76CF19663D3D26C
SSDEEP 12288:N0jLUorSvvHBLEGomLGLYLpLbLyKLgLSLqLlL6LvLOYeayWnv4ndboNoIozoMoXe:tvhkGjng9Ni5mvRb3g97zm
IMP F9075D7FBE974B788215742C7A038E16
PESHA1 591335F37DB9BC8B0D06BED99E104D69A2D4261D
PE256 C2DC29CB81C084545ACC3166A55D7C03A08FD828CFC156B25A7EDF0C92D2CBC6

Runtime Data

Loaded Modules:

Path
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\wow64.dll
C:\Windows\System32\wow64cpu.dll
C:\Windows\System32\wow64win.dll
C:\Windows\SysWOW64\WWAHost.exe

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: WWAHost.exe.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.17763.1 (WinBuild.160101.0800)
  • Product Version: 10.0.17763.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/71
  • VirusTotal Link: https://www.virustotal.com/gui/file/40bf206f8e55f3c01a920ee3932984e01517a6e7196bd2c57e12e413da688448/detection/

File Similarity (ssdeep match)

File Score
C:\Windows\SysWOW64\WWAHost.exe 75
C:\Windows\SysWOW64\WWAHost.exe 46
C:\Windows\SysWOW64\WWAHost.exe 75

MIT License. Copyright (c) 2020-2021 Strontic.