ftquery.exe
- File Path:
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\arm64\ftquery.exe
- Description:
Hashes
Type |
Hash |
MD5 |
4B8ED05C745F1D07B6AD05D2D49F9ED9 |
SHA1 |
11A2F9612C79E1F8091FFD9188CCC5B52649A481 |
SHA256 |
AF1153F0C38A37CBD268D8133A7257ED9F9D7665359B5433F2E36BA1EF360996 |
SHA384 |
74386DB4EEA5EEC4073582B32533A28EB3E806F7C8CF7368370F16201A322D3F474EBFD2A264B1BBF1E53D914A6469DF |
SHA512 |
3D853FADBD53229CF283579A6A3439F9F317D3EABE2E7D2B54E46C7B57CC0D800A9CB9D4C39F02D867434F721732CCB0A350A180A92EF4347B1D735E389B8CDC |
SSDEEP |
768:v2Aq/znu2gyGKFc0F+QaVhfZsgZoF5ZwM6rs4KZGNWs:uAcqaFc0FZaBnoF5ZwhrsrZ0z |
IMP |
F34D5F2D4577ED6D9CEEC516C1F5A744 |
PESHA1 |
E50FAF5EF323C592F2E8024E4FA56FCD4337EBCA |
PE256 |
D94626DCCB4D5948FF04D864D020E337901B8E71B8ABF935AAD05E7AF520F3C4 |
Runtime Data
Usage (stderr):
Unhandled Exception: System.BadImageFormatException: Could not load file or assembly 'Microsoft.Win32.Search.Query, Version=10.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35' or one of its dependencies. An attempt was made to load a program with an incorrect format.
at Microsoft.WSearch.Tools.Query.Program.Main(String[] args)
Loaded Modules:
Path |
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\arm64\ftquery.exe |
C:\Windows\System32\KERNEL32.dll |
C:\Windows\System32\KERNELBASE.dll |
C:\Windows\SYSTEM32\MSCOREE.DLL |
C:\Windows\SYSTEM32\ntdll.dll |
Signature
- Status: Signature verified.
- Serial:
33000002B7E8E007A82AEF13150000000002B7
- Thumbprint:
5A68625F1A516670A744F7EF919500A479D32A5B
- Issuer: CN=Microsoft Code Signing PCA 2010, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Windows Kits Publisher, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Original Filename: ftquery.exe
- Product Name: Microsoft (R) Windows (R) Operating System
- Company Name: Microsoft Corporation
- File Version: 10.0.19041.1
- Product Version: 10.0.19041.1
- Language: Language Neutral
- Legal Copyright: Copyright (c) Microsoft Corporation. All rights reserved.
- Machine Type: 32-bit
File Scan
- VirusTotal Detections: 0/73
- VirusTotal Link: https://www.virustotal.com/gui/file/af1153f0c38a37cbd268d8133a7257ed9f9d7665359b5433f2e36ba1ef360996/detection
File Similarity (ssdeep match)
MIT License. Copyright (c) 2020-2021 Strontic.