WerFaultSecure.exe

  • File Path: C:\Windows\SysWOW64\WerFaultSecure.exe
  • Description: Windows Fault Reporting

Hashes

Type Hash
MD5 CD4F627126DA5122B6D4411131ED7DA6
SHA1 D20253B1D8EF19590B167346948CFAF39C9BD5AB
SHA256 FEF2781843B51E8CB25C9F3757E0312652A205447297F9808B31196F84A9E70E
SHA384 8CABA2B67E1D2B251A622707C8E4F3A66A92459B1970F3913D45993AB6D49CEE080F552D678D917D4E7FBC192CE361E2
SHA512 C0BCE080BDE8AE9521D2F5B35EE14F8BCA994212FB5CC950364D7B9BDA09B9FDAC01BD33601D1BE8C4773AD29E70B0DD80ECDB1760AB19CB20A52B34781064F7
SSDEEP 3072:ygSUPrklN8uUMcHIQAHttdeoanOFJ+yC3pwRb6JPqB604HHy7hRCd39vjmxcr:y1Uz+N1UMwIQAHDdepVVJyB60OHyLC7d
IMP AAE744DE1BB31F77049F9318A9550524
PESHA1 197FEE820CAC10F474B733726E0A45EE888E403D
PE256 8A235E208F2D420C685F6594EDC02D1AD68921A80D3E343DD4474022B5FCA29B

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: WerFaultSecure.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.572 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.572
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: 0/76
  • VirusTotal Link: https://www.virustotal.com/gui/file/fef2781843b51e8cb25c9f3757e0312652a205447297f9808b31196f84a9e70e/detection

File Similarity (ssdeep match)

File Score
C:\Windows\system32\Faultrep.dll 38
C:\windows\system32\WerFault.exe 36
C:\Windows\system32\WerFault.exe 30
C:\Windows\system32\WerFault.exe 36
C:\Windows\system32\WerFault.exe 41
C:\Windows\system32\WerFaultSecure.exe 63
C:\Windows\system32\WerFaultSecure.exe 60
C:\WINDOWS\system32\WerFaultSecure.exe 60
C:\Windows\system32\WerFaultSecure.exe 60
C:\Windows\system32\WerFaultSecure.exe 54
C:\Windows\system32\WerFaultSecure.exe 65
C:\Windows\system32\WerFaultSecure.exe 66
C:\Windows\system32\WerFaultSecure.exe 58
C:\WINDOWS\system32\WerFaultSecure.exe 55
C:\Windows\system32\WerFaultSecure.exe 61
C:\Windows\system32\wermgr.exe 40
C:\Windows\system32\wermgr.exe 44
C:\Windows\system32\wermgr.exe 61
C:\WINDOWS\system32\wermgr.exe 43
C:\WINDOWS\system32\wermgr.exe 46
C:\Windows\system32\wermgr.exe 41
C:\Windows\system32\wermgr.exe 55
C:\Windows\system32\wermgr.exe 46
C:\Windows\system32\wermgr.exe 58
C:\Windows\system32\wermgr.exe 47
C:\Windows\system32\wermgr.exe 52
C:\windows\system32\wermgr.exe 60
C:\Windows\system32\werui.dll 40
C:\Windows\SysWOW64\WerFault.exe 46
C:\windows\SysWOW64\WerFault.exe 30
C:\Windows\SysWOW64\WerFaultSecure.exe 58
C:\Windows\SysWOW64\WerFaultSecure.exe 60
C:\Windows\SysWOW64\WerFaultSecure.exe 58
C:\Windows\SysWOW64\WerFaultSecure.exe 60
C:\WINDOWS\SysWOW64\WerFaultSecure.exe 58
C:\WINDOWS\SysWOW64\WerFaultSecure.exe 57
C:\Windows\SysWOW64\WerFaultSecure.exe 86
C:\Windows\SysWOW64\WerFaultSecure.exe 58
C:\Windows\SysWOW64\WerFaultSecure.exe 60
C:\Windows\SysWOW64\wermgr.exe 58
C:\windows\SysWOW64\wermgr.exe 63
C:\Windows\SysWOW64\wermgr.exe 43
C:\Windows\SysWOW64\wermgr.exe 36
C:\Windows\SysWOW64\wermgr.exe 36
C:\WINDOWS\SysWOW64\wermgr.exe 36
C:\Windows\SysWOW64\wermgr.exe 36
C:\Windows\SysWOW64\wermgr.exe 46
C:\WINDOWS\SysWOW64\wermgr.exe 44
C:\Windows\SysWOW64\wermgr.exe 40
C:\Windows\SysWOW64\wermgr.exe 35
C:\Windows\SysWOW64\wermgr.exe 38
C:\Windows\SysWOW64\werui.dll 43

MIT License. Copyright (c) 2020-2021 Strontic.