| File Name | dwm.exe |
| File Type |
PE32+ executable (GUI) x86-64, for MS Windows
|
| Scanner Version | 1.0.231.174 |
| Database Version | 2025-12-28 08:00:39 UTC |
No threats detected by our scanner
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
c206c9dbfc34afd367dd150d979a5185
|
|
| SHA1 |
8590d6c80e8d8e5371f48f04c53939b7b3debd09
|
|
| SHA256 |
2079f959438e41b7faed79af62019daea219198c8c41ad5eb836b6a5e2b61a1a
|
|
| SHA512 |
f942a2c6398af76867fd9666281204bdbda5e60801517941635eafcfc22dffc0b3239bc0fa51ba9941ef271e32b75376b61ecf542ad3810a6ebcf43a115f42cd
|
|
| ImpHash |
29a670698e6f399041442a2569276e18
|
| Image Base | 0x100000000 |
| Entry Point | 0x100004bf4 |
| Compilation Time | 2016-03-25 17:48:10 |
| Checksum | 0x0001d716 (Actual: 0x0001d716) |
| OS Version | 6.1 |
| PEiD Signatures |
PE32+ executable (GUI) x86-64, for MS Windows
|
| PDB Path | dwm.pdb |
| Digital Signature | No valid SignedData structure was found. |
| Imports |
9 libraries
GDI32, USER32, msvcrt, ntdll, UxTheme, IMM32, dwmredir, dwmcore, KERNEL32 |
| Exports | 0 functions |
| Resources | 4 Resources |
| Sections | 6 Sections |
| CompanyName | Microsoft Corporation |
| FileDescription | Desktop Window Manager |
| FileVersion | 6.1.7601.23403 (win7sp1_ldr.160325-0600) |
| InternalName | dwm.exe |
| LegalCopyright | © Microsoft Corporation. All rights reserved. |
| OriginalFilename | dwm.exe |
| ProductName | Microsoft® Windows® Operating System |
| ProductVersion | 6.1.7601.23403 |
| Translation | 0x0409 0x04b0 |
| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
77,444 bytes | 77,824 bytes | 6.20 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
37802A317001B9D7A88EA241B522C86D |
.rdata |
0x00014000 |
21,000 bytes | 21,504 bytes | 4.69 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
22941088F2B87A334B9300F59E51B740 |
.data |
0x0001a000 |
16,036 bytes | 6,144 bytes | 0.35 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
9DFAC92B834EAC0BE5688BDC655897BD |
.pdata |
0x0001e000 |
7,152 bytes | 7,168 bytes | 5.08 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
80EF8CB78796B8A5D0D84A11767A35D3 |
.rsrc |
0x00020000 |
6,088 bytes | 6,144 bytes | 4.35 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
E0F50545C642A0F2B1EE4F38BB82EE32 |
.reloc |
0x00022000 |
328 bytes | 512 bytes | 3.76 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
6BC07792A5AA421D19217A6FAE3A419C |
| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| MUI | 1 | 240 bytes | |
| WEVT_TEMPLATE | 1 | 3,306 bytes | |
| RT_VERSION | 1 | 908 bytes | |
| RT_MANIFEST | 1 | 1,272 bytes |
| Product | Microsoft® Windows® Operating System |
| Description | Desktop Window Manager |
| File Version | 6.1.7601.23403 (win7sp1_ldr.160325-0600) |
| Original Name | dwm.exe |
| Internal Name | dwm.exe |
| Copyright | © Microsoft Corporation. All rights reserved. |
✓ This file has been digitally signed and the certificate chain has been verified
No valid SignedData structure was found.
Recommendation: Verify the file source and ensure it comes from a trusted publisher.
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-MalwareThis file appears clean, but regular security maintenance is important
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!