WerFaultSecure.exe

  • File Path: C:\Windows\system32\WerFaultSecure.exe
  • Description: Windows Fault Reporting

Hashes

Type Hash
MD5 C401D20C96E687E9F68DF87D938541EE
SHA1 C9B42DDD13D400E715794295EC6A70DB4E4DF4EF
SHA256 08C6A48E2C35FB92CE7E8749C0C6FB9B2F94A1441214A2925BD13DC41819251F
SHA384 9F076A4CB8F16FBFEB86F8B1D6CF286F2B30996CC6DF2F9381903CA7D1ECFDA5AD67602A0D81CEA4F14FC922934056A3
SHA512 389CDC10B288A3D6E9C5759D5D03FD5D0B39F3EE7507D913D95CF3ABCEB6C50969FFBAE492F76CEE46F605865A78DE7BF8CBD8D9B205CF17E00BA11F63D0E7FE
SSDEEP 3072:IURM/uRkzZpUkkKC7AW7Wam1CFJ+yC3pwRb6JPqB604HHy7hRCd39vCaD:If/uRwrUkkKgvOLVJyB60OHyLC7vP
IMP 238B416AE1929D60DF85CAC4307083D4
PESHA1 F460E5A781304A84651AF3FE39B53A456CF7E4F5
PE256 1A6965D4BB15FC7E1359AB6D0C44DF80D90295990CA7D1F101004DD917869562

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: WerFaultSecure.exe.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.1 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/66
  • VirusTotal Link: https://www.virustotal.com/gui/file/08c6a48e2c35fb92ce7e8749c0c6fb9b2f94a1441214a2925bd13dc41819251f/detection/

File Similarity (ssdeep match)

File Score
C:\Windows\system32\Faultrep.dll 41
C:\windows\system32\WerFault.exe 44
C:\Windows\system32\WerFault.exe 36
C:\Windows\system32\WerFault.exe 36
C:\Windows\system32\WerFault.exe 50
C:\Windows\system32\WerFaultSecure.exe 61
C:\Windows\system32\WerFaultSecure.exe 71
C:\WINDOWS\system32\WerFaultSecure.exe 58
C:\Windows\system32\WerFaultSecure.exe 63
C:\Windows\system32\WerFaultSecure.exe 60
C:\Windows\system32\WerFaultSecure.exe 61
C:\Windows\system32\WerFaultSecure.exe 65
C:\WINDOWS\system32\WerFaultSecure.exe 60
C:\Windows\system32\WerFaultSecure.exe 74
C:\Windows\system32\wermgr.exe 47
C:\Windows\system32\wermgr.exe 50
C:\Windows\system32\wermgr.exe 63
C:\WINDOWS\system32\wermgr.exe 50
C:\WINDOWS\system32\wermgr.exe 50
C:\Windows\system32\wermgr.exe 43
C:\Windows\system32\wermgr.exe 55
C:\Windows\system32\wermgr.exe 47
C:\Windows\system32\wermgr.exe 60
C:\Windows\system32\wermgr.exe 52
C:\Windows\system32\wermgr.exe 57
C:\windows\system32\wermgr.exe 63
C:\Windows\system32\werui.dll 44
C:\Windows\SysWOW64\WerFault.exe 47
C:\windows\SysWOW64\WerFault.exe 29
C:\Windows\SysWOW64\WerFaultSecure.exe 61
C:\Windows\SysWOW64\WerFaultSecure.exe 57
C:\Windows\SysWOW64\WerFaultSecure.exe 58
C:\Windows\SysWOW64\WerFaultSecure.exe 55
C:\WINDOWS\SysWOW64\WerFaultSecure.exe 63
C:\WINDOWS\SysWOW64\WerFaultSecure.exe 57
C:\Windows\SysWOW64\WerFaultSecure.exe 60
C:\Windows\SysWOW64\WerFaultSecure.exe 61
C:\Windows\SysWOW64\WerFaultSecure.exe 58
C:\Windows\SysWOW64\WerFaultSecure.exe 63
C:\Windows\SysWOW64\wermgr.exe 61
C:\windows\SysWOW64\wermgr.exe 57
C:\Windows\SysWOW64\wermgr.exe 40
C:\Windows\SysWOW64\wermgr.exe 40
C:\Windows\SysWOW64\wermgr.exe 29
C:\WINDOWS\SysWOW64\wermgr.exe 43
C:\Windows\SysWOW64\wermgr.exe 49
C:\Windows\SysWOW64\wermgr.exe 43
C:\WINDOWS\SysWOW64\wermgr.exe 49
C:\Windows\SysWOW64\wermgr.exe 46
C:\Windows\SysWOW64\wermgr.exe 43
C:\Windows\SysWOW64\wermgr.exe 43
C:\Windows\SysWOW64\werui.dll 47

MIT License. Copyright (c) 2020-2021 Strontic.