fontdrvhost.exe

  • File Path: C:\Windows\system32\fontdrvhost.exe
  • Description: Usermode Font Driver Host

Hashes

Type Hash
MD5 B4F5A78896C80BD6F0F05D7709699B1E
SHA1 1359666F4DBFA70EC944216D544E703A6C7828EC
SHA256 85E69A27959FECE359E3A371019A529BD00A57016819CA087C8CD8F873F138AB
SHA384 8B54AC8EE30BEFC33899057B4FF25F1EA29DE7769929EED53696A11C13531CB42101543B1AE8C582E65273EB1F5EE663
SHA512 AC2206C1D0AAEAB3B3EA8E98651659321D8FC7C55579CA6E2D77FD6BED3FE58F9FAC471EE0E10A374973A32F92F0AE11F11F88C019144C9C811EB6301CB3F70F
SSDEEP 12288:CH4mhR4uSh/aJLXNzRkB7yGhJyrH8xnqinr6dP5MBU1Pab6CwKzXxNfnf9V9RclW:AV4uS8HOBWGSoVr6pt/CwYzfnVbulAO

Runtime Data

Child Processes:

WerFault.exe

Loaded Modules:

Path
C:\Windows\system32\fontdrvhost.exe
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\System32\msvcp_win.dll
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\ucrtbase.dll
C:\Windows\System32\win32u.dll

Signature

  • Status: Signature verified.
  • Serial: 3300000266BD1580EFA75CD6D3000000000266
  • Thumbprint: A4341B9FD50FB9964283220A36A1EF6F6FAA7840
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: fontdrvhost.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.19041.450 (WinBuild.160101.0800)
  • Product Version: 10.0.19041.450
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.

MIT License. Copyright (c) 2020-2021 Strontic.