文件名 | msedge.exe |
文件类型 |
PE32+ executable (GUI) x86-64, for MS Windows
|
扫描器版本 | 1.0.224.174 |
数据库版本 | 2025-09-15 21:00:56 UTC |
我们的扫描器未检测到威胁
哈希类型 | 值 | 操作 |
---|---|---|
MD5 |
563ba0230c2366b959a0e70a448cf976
|
|
SHA1 |
75d95836f17cc5c8b8c27e08cedffc5eddbc7209
|
|
SHA256 |
ef9d1b42ca58103e9647763f67303519a0701c7b1278af0ad25f7f673c10743b
|
|
SHA512 |
e79549a4e827430165dd8d43136beb8d4d68c1c1822ec7242a76dcc60160798023fcd11d354eccd0dd43a8b45dd65c3736ec675a0602d034b16bae5729605b15
|
|
ImpHash |
9acebdfac77931c2b0dfbbea2d494ba9
|
图标 |
哈希: 68ef2b87d9f48b89a9ba01d16bd83760
模糊: 895e0fa4297ef4adeeae790bbd5c6406 dHash: e884824dceceb4e8 |
映像基址 | 0x140000000 |
入口点 | 0x1400f9b80 |
编译时间 | 2025-09-10 23:48:58 |
校验和 | 0x00413bcd (实际: 0x00413bcd) |
操作系统版本 | 10.0 |
PEiD 签名 |
PE32+ executable (GUI) x86-64, for MS Windows
|
PDB 路径 | msedge.exe.pdb |
数字签名 | OK |
导入 |
3 库
msedge_elf, KERNEL32, ntdll |
导出 | 4 函数 |
资源 | 179 资源 |
节 | 12 节 |
CompanyName | Microsoft Corporation |
FileDescription | Microsoft Edge |
FileVersion | 140.0.3485.66 |
InternalName | msedge_exe |
LegalCopyright | Copyright Microsoft Corporation. All rights reserved. |
OriginalFilename | msedge.exe |
ProductName | Microsoft Edge |
ProductVersion | 140.0.3485.66 |
CompanyShortName | Microsoft |
ProductShortName | Edge |
LastChange | bdccd021a49ba32efc5369003ef2390f437d2cb6 |
Official Build | 1 |
Translation | 0x0409 0x04b0 |
名称 | 虚拟地址 | 虚拟大小 | 原始大小 | 熵 | 特征 | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
2,853,050 bytes | 2,853,376 bytes | 6.58 (压缩) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
5AD5DCB01AC212BADBB0A083597A000B |
.rdata |
0x002ba000 |
493,948 bytes | 494,080 bytes | 5.59 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
03AF9B23CBB10BAB5CA8EC1FE48919F4 |
.data |
0x00333000 |
133,640 bytes | 66,560 bytes | 1.62 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
1F32EDF2EA8643057255FF978105B11B |
.pdata |
0x00354000 |
109,668 bytes | 110,080 bytes | 6.20 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
A1622494DA20C0C2F1233E42E53FEDA7 |
.fptable |
0x0036f000 |
256 bytes | 512 bytes | 0.00 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
BF619EAC0CDF3F68D496EA9344137E8B |
.tls |
0x00370000 |
633 bytes | 1,024 bytes | 0.21 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
5D729D98037B27EF7C0F1ADD33696785 |
CPADinfo |
0x00371000 |
56 bytes | 512 bytes | 0.12 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
60D3EA61D541C9BE2E845D2787FB9574 |
LZMADEC |
0x00372000 |
4,593 bytes | 4,608 bytes | 6.06 (正常) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
05E9EAB8428A551A281AB278073669FA |
_RDATA |
0x00374000 |
500 bytes | 512 bytes | 4.25 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
8946318E39C8F4161BA01B335151AB7B |
malloc_h |
0x00375000 |
190 bytes | 512 bytes | 3.08 (正常) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
8CAF2846FB68D64FCAC220240A8A4356 |
.rsrc |
0x00376000 |
698,824 bytes | 698,880 bytes | 5.42 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
77E868E39206DD744B5260D6F69290AE |
.reloc |
0x00421000 |
12,132 bytes | 12,288 bytes | 5.44 (正常) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
2FB507BA131C6081469CDEF3C1BC325B |
1 检测到较高熵(≥6.5)的节 - 可能存在压缩
资源类型 | 数量 | 总大小 | 百分比 |
---|---|---|---|
EDPENLIGHTENEDAPPINFOID | 1 | 2 字节 | |
EDPPERMISSIVEAPPINFOID | 1 | 2 字节 | |
GOOGLEUPDATEAPPLICATIONCOMMANDS | 1 | 4 字节 | |
LIMITEDACCESSFEATURE | 1 | 54 字节 | |
RT_CURSOR | 28 | 62,784 字节 | |
RT_ICON | 102 | 621,296 字节 | |
RT_GROUP_CURSOR | 25 | 542 字节 | |
RT_GROUP_ICON | 18 | 1,536 字节 | |
RT_VERSION | 1 | 1,084 字节 | |
RT_MANIFEST | 1 | 1,329 字节 |
产品 | Microsoft Edge |
描述 | Microsoft Edge |
文件版本 | 140.0.3485.66 |
原始名称 | msedge.exe |
签名日期 | 07:00 AM 09/11/2025 (7 天前) |
验证状态 | Signed |
签名者 | Microsoft Corporation; Microsoft Code Signing PCA 2011; Microsoft Root Certificate Authority 2011 |
副签名者 | Microsoft Time-Stamp Service; Microsoft Time-Stamp PCA 2010; Microsoft Root Certificate Authority 2010 |
内部名称 | msedge_exe |
版权 | Copyright Microsoft Corporation. All rights reserved. |
33 00 00 04 7F 2F 42 2A 73 53 08 DE EA 00 00 00 00 04 7F
61 0E 90 D2 00 00 00 00 00 03
33 00 00 02 09 08 07 E0 F9 5C 8C E6 55 00 01 00 00 02 09
33 00 00 00 15 C5 E7 6B 9E 02 9B 49 99 00 00 00 00 00 15
✓ 此文件已进行数字签名,证书链已验证。
OK
Gridinsoft Anti-Malware 拥有更强大的病毒扫描引擎。我们建议使用它来更准确地诊断受感染的系统。这个简短的指南将帮助您安装我们的旗舰产品以进行更准确的诊断:
下载反恶意软件此文件看起来是干净的,但定期的安全维护很重要