Gridinsoft Logo

The msedge_elf.dll File Analysis

Technical Analysis

File Name msedge_elf.dll
File Type
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
Scanner Version 1.0.229.174
Database Version 2025-11-14 17:00:18 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
1,290,640
File Size (bytes)
2025-11-14
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
161aab3e74ba70da6276cd76c1421071
SHA1
ed230810121791267f24a2e562ff3285050043d0
SHA256
cdeaef6d6252774ee9e1608b1de60f0173c00823105d496b18b9a657f467dd4f
SHA512
1485b7867d7254ba362c641fd738d45879f0a3f9a75ddc77256a5f9520bd3df6ac477409832feaa84c5b583ba778148527daf73aed99efb5167fa4e9c617429b
ImpHash
4ddc828e4f97ac90913755aace774098

PE Analysis

Basic Information

Image Base 0x180000000
Entry Point 0x18006ef40
Compilation Time 2022-02-23 17:20:23
Checksum 0x00142f96 (Actual: 0x00149f05)
OS Version 5.2
PEiD Signatures PE32+ executable (DLL) (GUI) x86-64, for MS Windows
PDB Path msedge_elf.dll.pdb
Digital Signature OK
Imports 1 libraries
KERNEL32
Exports 24 functions
Resources 2 Resources
Sections 13 Sections

Version Information

CompanyName Microsoft Corporation
FileDescription Microsoft Edge
FileVersion 98.0.1108.62
InternalName msedge_elf_dll
LegalCopyright Copyright Microsoft Corporation. All rights reserved.
OriginalFilename msedge_elf.dll
ProductName Microsoft Edge
ProductVersion 98.0.1108.62
CompanyShortName Microsoft
ProductShortName Microsoft Edge
LastChange 86b4ba0c0a320a2c0c88adba983ad3b5ce15710f
Official Build 1
Translation 0x0409 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 1,012,168 bytes 1,012,224 bytes 6.57 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ C848CF15E25ADF204F5139FB03C18D25
.rdata 0x000f9000 176,828 bytes 177,152 bytes 5.37 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ E4C8B79F7CD8F1AFFD34CFF408F82C48
.data 0x00125000 84,788 bytes 39,936 bytes 2.12 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 0C31E143B502C6364AABABC183A88D6C
.pdata 0x0013a000 37,884 bytes 37,888 bytes 6.07 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 33B6D2B3E30C79C8FAD574E411D4D251
.00cfg 0x00144000 40 bytes 512 bytes 0.43 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 92E84355724680A5A0E1154A1A5B3D95
.crthunk 0x00145000 64 bytes 512 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ BF619EAC0CDF3F68D496EA9344137E8B
.oldntma 0x00146000 8 bytes 512 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE BF619EAC0CDF3F68D496EA9344137E8B
.tls 0x00147000 329 bytes 512 bytes 0.02 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 1F354D76203061BFDD5A53DAE48D5435
.voltbl 0x00148000 68 bytes 512 bytes 1.14 (Normal) 0x00000000 38997B5AAF2D65BFC172B1A04E671685
CPADinfo 0x00149000 56 bytes 512 bytes 0.12 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 60D3EA61D541C9BE2E845D2787FB9574
_RDATA 0x0014a000 244 bytes 512 bytes 2.36 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 8790986D06D44A21DE59242FB56A6732
.rsrc 0x0014b000 1,600 bytes 2,048 bytes 3.31 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 8ED4560E6CAE1E423C674C7992227F4D
.reloc 0x0014c000 6,176 bytes 6,656 bytes 5.31 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ FE8B648FBA005607C502F48585B3F933
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 2 (1,434 bytes)
Resource Type Count Total Size Percentage
RT_VERSION 1 1,120 bytes
78.1%
RT_MANIFEST 1 314 bytes
21.9%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Your Score for
/

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware