The msedge.exe (Microsoft Edge) File Analysis
Technical Analysis
| File Name | msedge.exe |
| File Type |
PE32+ executable (GUI) x86-64, for MS Windows
|
| Scanner Version | 1.0.237.174 |
| Database Version | 2026-02-08 19:00:33 UTC |
Clean File
No threats detected by our scanner
Scan Another File
File Identification
| Hash Type | Value | Action |
|---|---|---|
| MD5 |
ec4110f1149bb1995933e00c72114e87
|
|
| SHA1 |
d821d53bd46df1f1855b5b1a433726781e58eddb
|
|
| SHA256 |
4c284b2c1ac71a2bc0cee0488bc6b39dabc48d4f51354ed2d868109d1251ead2
|
|
| SHA512 |
85c26ba05357cb7ab37ad60e49b69a2d71365f6d501d6577f2fb62a0ec180e39016c0287ed9f32a79a95f2051bf66f3194642b481a24afc7a6e9eb5c9c750106
|
|
| ImpHash |
e7f21f2a92e04a3104ff14e21cc4ccd4
|
PE Analysis
Basic Information
▼| Icon |
Hash: 68ef2b87d9f48b89a9ba01d16bd83760
Fuzzy: 895e0fa4297ef4adeeae790bbd5c6406 dHash: e884824dceceb4e8 |
| Image Base | 0x140000000 |
| Entry Point | 0x1400f0300 |
| Compilation Time | 2026-02-04 22:49:47 |
| Checksum | 0x004220d6 (Actual: 0x004220d6) |
| OS Version | 10.0 |
| PEiD Signatures |
PE32+ executable (GUI) x86-64, for MS Windows
|
| PDB Path | msedge.exe.pdb |
| Digital Signature | OK |
| Imports |
3 libraries
msedge_elf, KERNEL32, ntdll |
| Exports | 4 functions |
| Resources | 179 Resources |
| Sections | 12 Sections |
Version Information
▼| CompanyName | Microsoft Corporation |
| FileDescription | Microsoft Edge |
| FileVersion | 144.0.3719.115 |
| InternalName | msedge_exe |
| LegalCopyright | Copyright Microsoft Corporation. All rights reserved. |
| OriginalFilename | msedge.exe |
| ProductName | Microsoft Edge |
| ProductVersion | 144.0.3719.115 |
| CompanyShortName | Microsoft |
| ProductShortName | Edge |
| LastChange | 4ee501a4f64e61182fd7c660df020a8c7e59655a |
| Official Build | 1 |
| Translation | 0x0409 0x04b0 |
PE Sections
▼| Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
|---|---|---|---|---|---|---|
.text |
0x00001000 |
2,929,515 bytes | 2,929,664 bytes | 6.55 (Compressed) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
F3CB14866CDD579AE6BDEB908957643A |
.rdata |
0x002cd000 |
504,444 bytes | 504,832 bytes | 5.60 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
FCCD3D3B808BABFFAC894E311771EA39 |
.data |
0x00349000 |
251,288 bytes | 66,048 bytes | 1.61 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
7A0F8781FEA9059B353CA6A96B7BB0E7 |
.pdata |
0x00387000 |
117,708 bytes | 117,760 bytes | 6.27 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
6B7849ACE8FF78F059252C1961220098 |
.fptable |
0x003a4000 |
256 bytes | 512 bytes | 0.00 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
BF619EAC0CDF3F68D496EA9344137E8B |
.tls |
0x003a5000 |
634 bytes | 1,024 bytes | 0.21 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
0DA1DC8189B1727BECBA6227FD8A1115 |
CPADinfo |
0x003a6000 |
56 bytes | 512 bytes | 0.12 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
60D3EA61D541C9BE2E845D2787FB9574 |
LZMADEC |
0x003a7000 |
4,593 bytes | 4,608 bytes | 6.06 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
05E9EAB8428A551A281AB278073669FA |
_RDATA |
0x003a9000 |
500 bytes | 512 bytes | 4.23 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
A6402B15AC3F2215B4DC74F0FBD3E121 |
malloc_h |
0x003aa000 |
271 bytes | 512 bytes | 4.07 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
B58F4F0ECA952CF3B5DCA4D683A74F9D |
.rsrc |
0x003ab000 |
663,792 bytes | 664,064 bytes | 5.22 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
79AEE334D06265514CE1272D9EB78CFF |
.reloc |
0x0044e000 |
12,336 bytes | 12,800 bytes | 5.40 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
9F71C47FFE2F136F135C01AE5B3298D4 |
Entropy Analysis Alert
1 section(s) with elevated entropy (≥6.5) - possible compression
Resource Analysis
▼| Resource Type | Count | Total Size | Percentage |
|---|---|---|---|
| EDPENLIGHTENEDAPPINFOID | 1 | 2 bytes | |
| EDPPERMISSIVEAPPINFOID | 1 | 2 bytes | |
| GOOGLEUPDATEAPPLICATIONCOMMANDS | 1 | 4 bytes | |
| LIMITEDACCESSFEATURE | 1 | 54 bytes | |
| RT_CURSOR | 28 | 62,784 bytes | |
| RT_ICON | 102 | 586,251 bytes | |
| RT_GROUP_CURSOR | 25 | 542 bytes | |
| RT_GROUP_ICON | 18 | 1,536 bytes | |
| RT_VERSION | 1 | 1,092 bytes | |
| RT_MANIFEST | 1 | 1,331 bytes |
Certificate Chain Analysis
▼Certificate Information
| Product | Microsoft Edge |
| Description | Microsoft Edge |
| File Version | 144.0.3719.115 |
| Original Name | msedge.exe |
| Signing Date | 07:11 AM 02/05/2026 (127 days ago) |
| Verification Status | Signed |
| Signers | Microsoft Corporation; Microsoft Code Signing PCA 2011; Microsoft Root Certificate Authority 2011 |
| Counter Signers | Microsoft Time-Stamp Service; Microsoft Time-Stamp PCA 2010; Microsoft Root Certificate Authority 2010 |
| Internal Name | msedge_exe |
| Copyright | Copyright Microsoft Corporation. All rights reserved. |
Certificate Chain Summary
33 00 00 04 7E AC FA 0A 41 FF 7E 13 F5 00 00 00 00 04 7E61 0E 90 D2 00 00 00 00 00 0333 00 00 02 11 45 18 39 9B 43 CF FC 6C 00 01 00 00 02 1133 00 00 00 15 C5 E7 6B 9E 02 9B 49 99 00 00 00 00 00 15✓ This file has been digitally signed and the certificate chain has been verified
- The signature ensures file integrity and authenticity from the publisher
- Timestamping proves when the signature was applied
Certificate Verification Status
OK
Remember: This is Result of Online Virus Scanner
Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:
Download Anti-Malware
Keep Your System Protected
This file appears clean, but regular security maintenance is important
-
1
Weekly Quick Scans: Set a reminder to run a scan every Sunday. Most infections are caught within the first week, so regular checks give you peace of mind.
-
2
Update Everything: Those annoying update popups exist for a reason — they patch security holes. Windows, browsers, Adobe, Java — keep them all current.
-
3
Download Smart: Stick to official websites and app stores. If a "free" version of paid software sounds too good to be true, it probably comes with unwanted extras.
-
4
Think Before You Click: Malware loves email attachments and "urgent" links. Even if an email looks like it's from your bank or a friend, verify suspicious requests through a different channel.
Leave a Comment
Gridinsoft Anti-Malware
Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware
Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!