WWAHost.exe

  • File Path: C:\Windows\SysWOW64\WWAHost.exe
  • Description: Microsoft WWA Host

Hashes

Type Hash
MD5 DD5BC63F1E7D14C5F21E2471D4C89E7F
SHA1 5BBD99F2831D0D927C8B5A2C1ECC81140C7E6D8B
SHA256 5CC92002434E4AC10ED1C4463BD4DB872B7371AF01B88FBBB6FD6B3CB4AF8961
SHA384 0C93F3BB7129ABD2B7E59478C75D968CB7FD55184CB4F0BFA2B86F95CCBC0E500516C236393AC84F913301CF6A25C6FF
SHA512 3DA2BF00363E5FB913B5A784DEF51090F9180E8F7E200C16B64926B03C3BA6F831270C75A6D409CAAA1332E9EF0D40309F4042719C89E9360E3E2020C2EB9F41
SSDEEP 12288:kxQ8orSGvvBLEGomLGLYLpLbLyKLmLqLSLqLlL6LvLOYeayWnvKdDcovoNoXoa5M:vvYVssRDFxNCk28d8WqIOY
IMP 091D93B9BE01B4A6F5EC9F1358C8F0D7
PESHA1 5B8C89023AE80142A8A00F35A5CAF9BEC39FB34C
PE256 C273B36998AB2FF0BA155249D66EFC1D2CC25B4E145190F37DD6413D4642797E

Runtime Data

Loaded Modules:

Path
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\wow64.dll
C:\Windows\System32\wow64cpu.dll
C:\Windows\System32\wow64win.dll
C:\Windows\SysWOW64\WWAHost.exe

Signature

  • Status: Signature verified.
  • Serial: 330000026551AE1BBD005CBFBD000000000265
  • Thumbprint: E168609353F30FF2373157B4EB8CD519D07A2BFF
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: WWAHost.exe.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/68
  • VirusTotal Link: https://www.virustotal.com/gui/file/5cc92002434e4ac10ed1c4463bd4db872b7371af01b88fbbb6fd6b3cb4af8961/detection/

File Similarity (ssdeep match)

File Score
C:\Windows\SysWOW64\WWAHost.exe 75
C:\Windows\SysWOW64\WWAHost.exe 90
C:\Windows\SysWOW64\WWAHost.exe 85

MIT License. Copyright (c) 2020-2021 Strontic.