File Name | wab.exe |
File Type |
PE32+ executable (GUI) x86-64, for MS Windows
|
Scanner Version | 1.0.218.174 |
Database Version | 2025-06-23 09:00:35 UTC |
No threats detected by our scanner
Hash Type | Value | Action |
---|---|---|
MD5 |
e74c571b4d6150268b75792850933b6f
|
|
SHA1 |
82b454e65cbb38e5376acc983615e48c5aa9b262
|
|
SHA256 |
691a6c4b96c3edb2217826ac0b5e90fb5cdb2dd61abf2e14d4a2ed44453a15c5
|
|
SHA512 |
3ee427a1565713888808570f9d5d717cb3dd33fa595d21b44a7b2865f1070108aa6a53394866bf1fb6f2c4458139a251d0c7feb4f983a40b3a1f0a9a3295f7c5
|
|
ImpHash |
caacebde24e4aa6fc16d3473c754b306
|
Icon |
Hash: e30169ca29cd7d6df7b76745691d41e8
Fuzzy: 58ae9093029971b6f46b8e8c531bd537 dHash: 4000c0c4c0e2e0e0 |
Image Base | 0x140000000 |
Entry Point | 0x140001260 |
Compilation Time | 2084-08-12 15:24:59 |
Checksum | 0x000950a8 (Actual: 0x000950a8) |
OS Version | 10.0 |
PEiD Signatures |
PE32+ executable (GUI) x86-64, for MS Windows
|
PDB Path | wab.pdb |
Digital Signature | No valid SignedData structure was found. |
Imports |
7 libraries
ADVAPI32, KERNEL32, GDI32, USER32, msvcrt, SHELL32, SHLWAPI |
Exports | 0 functions |
Resources | 148 Resources |
Sections | 8 Sections |
CompanyName | Microsoft Corporation |
FileDescription | Windows Contacts |
FileVersion | 10.0.26100.1 (WinBuild.160101.0800) |
InternalName | WAB.EXE |
LegalCopyright | © Microsoft Corporation. All rights reserved. |
OriginalFilename | WAB.EXE |
ProductName | Microsoft® Windows® Operating System |
ProductVersion | 10.0.26100.1 |
Translation | 0x0409 0x04b0 |
Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
9,360 bytes | 12,288 bytes | 5.13 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
3392C0AFD60B15A3AE29DAAF1FBCAFB0 |
fothk |
0x00004000 |
4,096 bytes | 4,096 bytes | 0.02 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
552902B7C62BCD8E13D1287AB8905E8F |
.rdata |
0x00005000 |
6,324 bytes | 8,192 bytes | 3.48 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
33DFB915D0AF15F7F00828B480077777 |
.data |
0x00007000 |
1,920 bytes | 4,096 bytes | 0.06 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
18F94429AC5BDAA905EF03818DF2427A |
.pdata |
0x00008000 |
456 bytes | 4,096 bytes | 0.63 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
1E45A16E4749DA5B3DD9DBFECE834163 |
.didat |
0x00009000 |
16 bytes | 4,096 bytes | 0.01 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
3833A8540B355914906FE9D3A83C362C |
.rsrc |
0x0000a000 |
499,888 bytes | 503,808 bytes | 6.00 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
0D58BF31EB45E1A647560C21B7A71EBF |
.reloc |
0x00085000 |
212 bytes | 4,096 bytes | 0.32 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
650A8659FEDD05100B1BEBFB14D94F13 |
Resource Type | Count | Total Size | Percentage |
---|---|---|---|
RT_ICON | 135 | 488,684 bytes | |
RT_GROUP_ICON | 11 | 1,956 bytes | |
RT_VERSION | 1 | 896 bytes | |
RT_MANIFEST | 1 | 1,048 bytes |
Product | Microsoft® Windows® Operating System |
Description | Windows Contacts |
File Version | 10.0.26100.1 (WinBuild.160101.0800) |
Original Name | WAB.EXE |
Internal Name | WAB.EXE |
Copyright | © Microsoft Corporation. All rights reserved. |
✓ This file has been digitally signed and the certificate chain has been verified
No valid SignedData structure was found.
Recommendation: Verify the file source and ensure it comes from a trusted publisher.
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-MalwareThis file appears clean, but regular security maintenance is important