pwahelper.exe

  • File Path: C:\Program Files (x86)\Microsoft\Edge\Application\pwahelper.exe
  • Description: PwaHelper executable for Identity Proxy

Hashes

Type Hash
MD5 1DA88DCCCBCB7A9EB64DE0E6BBF1BA2A
SHA1 F4058C12FA7E3F9653D53CB0848790F9C17C483C
SHA256 5B111F0DEA51E0E9EFE7AF30E2B9BB7767E1EF9F9EE340BA1DB02D6EB3ADF539
SHA384 D6ABF3D661926E1B8D02402A6B01FC3DEB49D366B9365F15B76E9C05F85DC48153845D9FFCBB57DDDC0DC9DEE5A7E93C
SHA512 7BAD040C37DB4AED748D89AB240556794E91BE5F062690B1EB5E1C6033CE8AB878FEF30FE2A1DDE9F8202AAD571333043040A410E20ED57833195FA3E6AC5497
SSDEEP 12288:5niE6ibLnj1KupD37wIUFOIHvWKipo6eR5+nmnW23:NbLnjMuRUIUkIPOpW
IMP 1A514BE198DD502C000E0F04F78402CD
PESHA1 159189C8AB671DEFA65FD251AF7E30101A6E83FD
PE256 714C53FD0A4EAC8E67DDEF1019ADB91F6219732BC06ED58845CBFD26037DB4FB

Runtime Data

Loaded Modules:

Path
C:\Program Files (x86)\Microsoft\Edge\Application\pwahelper.exe
C:\Windows\System32\KERNEL32.DLL
C:\Windows\System32\KERNELBASE.dll
C:\Windows\SYSTEM32\ntdll.dll

Signature

  • Status: Signature verified.
  • Serial: 330000018A073733CF2048893C00000000018A
  • Thumbprint: 640386795F1D21244E7EA6E7A6E69E9C5B0A4F3E
  • Issuer: CN=Microsoft Code Signing PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: pwahelper.exe
  • Product Name: Microsoft Edge
  • Company Name:
  • File Version: 85.0.564.68
  • Product Version: 85.0.564.68
  • Language: English (United States)
  • Legal Copyright: Copyright Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/70
  • VirusTotal Link: https://www.virustotal.com/gui/file/5b111f0dea51e0e9efe7af30e2b9bb7767e1ef9f9ee340ba1db02d6eb3adf539/detection/

File Similarity (ssdeep match)

File Score
C:\Program Files (x86)\Microsoft\Edge\Application\85.0.564.68\pwahelper.exe 100

MIT License. Copyright (c) 2020-2021 Strontic.