Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 2.38%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 6.87%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.08%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.31%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 2.62%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.05%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.63%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.51%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 1.29%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.03%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.01%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.57%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.44%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.35%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.43%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.03%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.12%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.04%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.05%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.01%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.01%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.68%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 3.03%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.01%
9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) 0.01%
View more

Relationships

Parent processes
Child processes
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
EventWrite, GetTraceEnableFlags, RegQueryValueExW, EventUnregister, GetTraceLoggerHandle, TraceEvent, UnregisterTraceGuids, RegOpenKeyExW, EventRegister, GetTraceEnableLevel, RegCloseKey, RegisterTraceGuidsW
api-ms-win-downlevel-advapi32-l1-1-0.dll
RegGetValueW, RegOpenKeyExW, EventRegister, RegCloseKey, EventUnregister, EventWrite, RegQueryValueExW
api-ms-win-downlevel-shlwapi-l1-1-0.dll
StrStrIW
kernel32.dll
Wow64DisableWow64FsRedirection, Wow64RevertWow64FsRedirection, TerminateProcess, CreateFileW, lstrlenW, VerifyVersionInfoW, GetLastError, GetProcAddress, LocalAlloc, IsWow64Process, HeapSetInformation, GetFileTime, DeleteCriticalSection, CloseHandle, GetWindowsDirectoryW, LocalFree, ExpandEnvironmentStringsW, LoadLibraryW, GetModuleHandleW, GetCurrentProcess, VerSetConditionMask, SetDllDirectoryW, CreateProcessW, SetErrorMode, GetCommandLineW, RaiseException, LoadLibraryA, GetSystemDefaultLCID, GetUserDefaultLCID, EnterCriticalSection, GetModuleFileNameW, LeaveCriticalSection, InitializeCriticalSectionAndSpinCount, GetVersionExA, FreeLibrary, UnhandledExceptionFilter, GetSystemTimeAsFileTime, GetCurrentProcessId, GetCurrentThreadId, GetTickCount, QueryPerformanceCounter, GetModuleHandleA, SetUnhandledExceptionFilter, GetStartupInfoW, InterlockedCompareExchange, Sleep, InterlockedExchange, GetCurrentDirectoryW, InitializeCriticalSection, GetVersionExW, SetLastError, SearchPathW, GetUserDefaultUILanguage, GetSystemDefaultUILanguage, UnmapViewOfFile, GetLocaleInfoW, CreateFileMappingW, MapViewOfFile, LoadLibraryExW, LoadResource, FindResourceExW, ReleaseMutex, LoadLibraryExA, SetProcessDEPPolicy, VirtualAlloc, GetNativeSystemInfo, CreateMutexW, WaitForSingleObject, WaitForSingleObjectEx, CreateEventW, FindResourceW
msvcrt.dll
DllMain
ntdll.dll
RtlUnwind
ole32.dll
CoUninitialize, CoInitialize
shell32.dll
CommandLineToArgvW
shlwapi.dll
SHGetValueW, SHRegGetValueW, SHSetValueW, UrlApplySchemeW, PathIsURLW, UrlCanonicalizeW, PathFindFileNameW, UrlCreateFromPathW, StrStrW, PathCombineW, PathRemoveFileSpecW, PathAppendW, PathQuoteSpacesW, SHEnumValueW
user32.dll
IsWindowEnabled, LoadStringW, CharNextW, GetWindowThreadProcessId, SendMessageTimeoutW, FindWindowExW, MessageBoxW, IsWindowVisible, AllowSetForegroundWindow, GetThreadDesktop, GetUserObjectInformationW

iexplore.exe

Windows Internet Explorer by Microsoft Corporation (Signed)

Remove iexplore.exe
Version:   9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)
MD5:   270a1342bd5af95ca25a586b4c2f1522
SHA1:   99637fb2c25805e6883aef4673651c219ed839fd
SHA256:   492c5280a6c0643062ec4b49d2abbdbc8e76ccf5d7f2b161e0f90909a94ec19a
This is a Windows system installed file with Windows File Protection (WFP) enabled.

What is iexplore.exe?

IExplore.exe is at the top level, and is the Internet Explorer executable. It is a small application that relies on the other main components of Internet Explorer to do the work of rendering, navigation, protocol implementation, and so on.

About iexplore.exe (from Microsoft Corporation)

Internet Explorer harnesses the untapped power of your PC, delivering pages full of vivid graphics, smoother video, and interactive content. Experience the web the way you want to with a cleaner look

DetailsDetails

File name:iexplore.exe
Publisher:Microsoft Corporation
Product name:Windows® Internet Explorer
Description:Internet Explorer
Typical file path:C:\Program Files\internet explorer\iexplore.exe
Original name:IEXPLORE.EXE.MUI
File version:9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)
Product version:9.00.8112.16421
Size:731.16 KB (748,704 bytes)
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Effective date:Monday, July 19, 2010
Expiration date:Wednesday, October 19, 2011
Digital DNA
PE subsystem:Windows GUI
Entropy:6.583379
File packed:No
Code language:Microsoft Visual C++
.NET CLR:No
More details

BehaviorsBehaviors

Shell open commands
  • InternetShortcut
  • gopher
  • xmlfile
  • https
  • http
  • ftp
  • mhtmlfile
  • htmlfile
  • giffile
Scheduled tasks
  • The task '{28A27677-1781-49A8-B133-EB46963B3733}' runs on registration in the path '\{28A27677-1781-49A8-B133-EB46963B3733}'
  • The job '{6A41DE04-F86E-4812-8E56-D7C304AFA991}' runs on registration in the path '\{6A41DE04-F86E-4812-8E56-D7C304AFA991}'
  • The task '{C48C9DC5-E815-40AF-B6EE-0E171DE3D38C}' runs on registration in the path '\{C48C9DC5-E815-40AF-B6EE-0E171DE3D38C}'
  • The task '{FE6FFAEC-6178-4BB5-B843-5F732950078D}' runs on registration in the path '\{FE6FFAEC-6178-4BB5-B843-5F732950078D}'
  • The task '{16F5D73B-1343-4432-A594-D7826D3FEF09}' runs on registration in the path '\{16F5D73B-1343-4432-A594-D7826D3FEF09}'
  • The task '{EE54F59E-E85E-43EC-AE55-959F40FD02E5}' runs on registration in the path '\{EE54F59E-E85E-43EC-AE55-959F40FD02E5}'
  • The job '{DB5B152C-A89D-4C18-83DB-9C930BE954DE}' runs on registration in the path '\{DB5B152C-A89D-4C18-83DB-9C930BE954DE}'
  • The job '{BD7348E0-7711-4DBB-BDD7-8515854EA1BD}' runs on registration in the path '\{BD7348E0-7711-4DBB-BDD7-8515854EA1BD}'
  • The task '{9C1F91B7-4B2F-44BC-A0C5-C3A3414126A2}' runs on registration in the path '\{9C1F91B7-4B2F-44BC-A0C5-C3A3414126A2}'
  • The task '{982CB9F0-92FC-44BF-B041-4263CC9171E8}' runs on registration in the path '\{982CB9F0-92FC-44BF-B041-4263CC9171E8}'
  • The job '{6601423E-9F04-4B05-A02A-22A7D5A8EA35}' runs on registration in the path '\{6601423E-9F04-4B05-A02A-22A7D5A8EA35}'
  • The task '{098EC717-A53A-49E9-9370-690CE169048A}' runs on registration in the path '\{098EC717-A53A-49E9-9370-690CE169048A}'
  • The task '{FF83A9C5-07BD-4AEB-B214-2016EB76E77E}' runs on registration in the path '\{FF83A9C5-07BD-4AEB-B214-2016EB76E77E}'
  • The job '{D29708AF-17A8-405B-9C8D-5ABE0B01EBE7}' runs on registration in the path '\{D29708AF-17A8-405B-9C8D-5ABE0B01EBE7}'
  • The job '{5F70B5BD-3E5F-48B3-9B48-989F1E28D0C6}' runs on registration in the path '\{5F70B5BD-3E5F-48B3-9B48-989F1E28D0C6}'
  • The job '{BA44AC86-B7CB-4065-B78E-4D080AD2166B}' runs on registration in the path '\{BA44AC86-B7CB-4065-B78E-4D080AD2166B}'
  • The task '{07FA7E58-4DD1-4A40-A77D-A9FE91ACA8EC}' runs on registration in the path '\{07FA7E58-4DD1-4A40-A77D-A9FE91ACA8EC}'
  • The job '{FDF80C9A-2116-4EAE-9E9C-C743606B60F0}' runs on registration in the path '\{FDF80C9A-2116-4EAE-9E9C-C743606B60F0}'
  • The task '{B9524566-4DAF-4E69-97F5-3CC1807F84E6}' runs on registration in the path '\{B9524566-4DAF-4E69-97F5-3CC1807F84E6}'
  • The task '{FDDB66ED-3880-47D1-B567-ECAB9EE621F6}' runs on registration in the path '\{FDDB66ED-3880-47D1-B567-ECAB9EE621F6}'
  • The job '{A7D7A5C7-B134-48E8-B39B-239493C43AD8}' runs on registration in the path '\{A7D7A5C7-B134-48E8-B39B-239493C43AD8}'
  • The task '{3D313F7A-B0C7-4AE8-94B6-73C969AB8F8C}' runs on registration in the path '\{3D313F7A-B0C7-4AE8-94B6-73C969AB8F8C}'
Windows firewall allowed programs
Exceptions allow programs to access to the Internet through an outbound connections
  • Firewall exception for 'C:\Program Files\Internet Explorer\IEXPLORE.EXE'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.03188444%
0.028634%
Kernel CPU:0.01341182%
0.013761%
User CPU:0.01847262%
0.014873%
Kernel CPU time:78,203,045 ms/min
100,923,805ms/min
CPU cycles:5,923,928/sec
17,470,203/sec
Context switches:28/sec
284/sec
Memory
Private memory:136.96 MB
21.59 MB
Private (maximum):160.75 MB
Private (minimum):52.05 MB
Non-paged memory:136.96 MB
21.59 MB
Virtual memory:439.98 MB
140.96 MB
Virtual memory (peak):485.11 MB
169.69 MB
Working set:143.64 MB
18.61 MB
Working set (peak):174.26 MB
37.95 MB
Page faults:1,061,457/min
2,039/min
I/O
I/O read transfer:224.46 KB/sec
1.02 MB/min
I/O read operations:137/sec
343/min
I/O write transfer:198.32 KB/sec
274.99 KB/min
I/O write operations:90/sec
227/min
I/O other transfer:12.07 KB/sec
448.09 KB/min
I/O other operations:1,342/sec
1,671/min
Resource allocations
Threads:34
12
Handles:989
600
GUI GDI count:246
103
GUI GDI peak:341
142
GUI USER count:124
49
GUI USER peak:190
71

BehaviorsProcess properties

Integrety level:Low
Platform:32-bit
Command lines:
  • "C:\Program Files\internet explorer\iexplore.exe"
  • "C:\Program Files\internet explorer\iexplore.exe" -nohome
  • "C:\Program Files\internet explorer\iexplore.exe" scodeC:7468 credaC:145409
  • "C:\Program Files\internet explorer\iexplore.exe" httC://th.hao123.com/?tn=sft_hp_hao123_th
  • "C:\Program Files\internet explorer\iexplore.exe" scodeC:5880 credaC:145409
  • "C:\Program Files\internet explorer\iexplore.exe" scodeC:2104 credaC:203010
  • "C:\Program Files\internet explorer\iexplore.exe" scodeC:2104 credaC:203009
  • (27 more)
Owner:User
Parent processes:

ResourcesThreads

Averages
 
iexplore.exe (main module)
Total CPU:0.41549468%
0.272967%
Kernel CPU:0.07769123%
0.107585%
User CPU:0.33780345%
0.165382%
CPU cycles:10,560,887/sec
5,741,424/sec
Context switches:21/sec
79/sec
Memory:736 KB
1.16 MB
ieframe.dll (Windows Internet Explorer by Microsoft)
Total CPU:0.35966793%
Kernel CPU:0.06677028%
User CPU:0.29289764%
CPU cycles:8,754,931/sec
Context switches:15/sec
Memory:9.3 MB
RPCRT4.dll
Total CPU:0.18647391%
Kernel CPU:0.12434192%
User CPU:0.06213199%
CPU cycles:3,259,463/sec
Memory:780 KB
ntdll.dll
Total CPU:0.13395613%
Kernel CPU:0.08367365%
User CPU:0.05028248%
CPU cycles:2,376,881/sec
Context switches:1/sec
Memory:1.23 MB
wow64.dll
Total CPU:0.00814963%
Kernel CPU:0.00188577%
User CPU:0.00626386%
CPU cycles:160,719/sec
Context switches:3/sec
Memory:252 KB
iertutil.dll
Total CPU:0.00534551%
Kernel CPU:0.00239161%
User CPU:0.00295391%
CPU cycles:79,579/sec
Memory:1.72 MB
msvcrt.dll (Windows NT CRT DLL by Microsoft)
Total CPU:0.00276337%
Kernel CPU:0.00276337%
User CPU:0.00000000%
CPU cycles:2,661/sec
Memory:680 KB
WININET.dll
Total CPU:0.00006964%
Kernel CPU:0.00004109%
User CPU:0.00002855%
CPU cycles:16,760/sec
Memory:1.11 MB
ole32.dll
Total CPU:0.00001368%
Kernel CPU:0.00001368%
User CPU:0.00000000%
CPU cycles:899/sec
Memory:1.36 MB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 39.00%
Windows 8.1 Pro 14.50%
Windows 8.1 11.00%
Windows 8 10.00%
Windows 7 Ultimate 9.00%
Windows 8.1 Single Language 5.00%
Windows 7 Professional 4.50%
Windows 8 Single Language 2.50%
Windows 8.1 Pro with Media Center 2.00%
Windows 8.1 N 2.00%
Windows Seven Black Edition 0.50%

Distribution by countryDistribution by country

United States installs about 58.00% of Windows® Internet Explorer.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 25.96%
ASUS 24.68%
Dell 13.62%
Acer 12.77%
Toshiba 10.21%
Samsung 5.96%
Lenovo 5.11%
Alienware 1.70%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE