iexplore.exe
Windows Internet Explorer by Microsoft Corporation (Signed)
Version: | 8.00.7600.16385 (win7_rtm.090713-1255) |
MD5: | c613e69c3b191bb02c7a191741a1d024 |
SHA1: | 1962888198ae972cbb999d0dc9c9ee5cbabf5e0d |
SHA256: | e285feeca968b3ca22017a64363eea5e69ccd519696671df523291b089597875 |
This is a Windows system installed file with Windows File Protection (WFP) enabled.
What is iexplore.exe?
IExplore.exe is at the top level, and is the Internet Explorer executable. It is a small application that relies on the other main components of Internet Explorer to do the work of rendering, navigation, protocol implementation, and so on.
About iexplore.exe (from Microsoft Corporation)
“Internet Explorer harnesses the untapped power of your PC, delivering pages full of vivid graphics, smoother video, and interactive content. Experience the web the way you want to with a cleaner look”
Details
File name: | iexplore.exe |
Publisher: | Microsoft Corporation |
Product name: | Windows® Internet Explorer |
Description: | Internet Explorer |
Typical file path: | C:\Program Files\internet explorer\iexplore.exe |
Original name: | IEXPLORE.EXE.MUI |
File version: | 8.00.7600.16385 (win7_rtm.090713-1255) |
Product version: | 8.00.7600.16385 |
Size: | 657.27 KB (673,040 bytes) |
Certificate |
Issued to: | Microsoft Corporation |
Authority (CA): | Microsoft Corporation |
Effective date: | Monday, July 19, 2010 |
Expiration date: | Wednesday, October 19, 2011 |
Digital DNA |
PE subsystem: | Windows GUI |
Entropy: | 6.583379 |
File packed: | No |
Code language: | Microsoft Visual C++ |
.NET CLR: | No |
More details
Programs
The following programs will install this file
Windows IE8 (Internet Explorer 8) is a web browser from Microsoft. IE8 contains many new features, including WebSlices and Accelerators (Accelerators are a form of selection-based search which allow a user to invoke an online service from any other page using only the mouse). The address bar features domain highlighting for added security so that the top-level domain is shown in black whereas the other parts of the URL are grayed out. I...
Identified as a version of the CMI/ConvertAd family of malware ad-injectors, this adware which is typically bundled with third-party applications in unwanted software bundles will hijack the user's browser (Internet Explorer, Chrome and Firefox) and display unwanted ads. When running, the process will monitor and capture internet traffic and insert advertisements over existing ads or by placing new ads in white space. In either case, th...
Behaviors
Shell open commands
- InternetShortcut
- gopher
- xmlfile
- https
- http
- ftp
- mhtmlfile
- htmlfile
- giffile
Scheduled tasks
- The task '{28A27677-1781-49A8-B133-EB46963B3733}' runs on registration in the path '\{28A27677-1781-49A8-B133-EB46963B3733}'
- The job '{6A41DE04-F86E-4812-8E56-D7C304AFA991}' runs on registration in the path '\{6A41DE04-F86E-4812-8E56-D7C304AFA991}'
- The task '{C48C9DC5-E815-40AF-B6EE-0E171DE3D38C}' runs on registration in the path '\{C48C9DC5-E815-40AF-B6EE-0E171DE3D38C}'
- The task '{FE6FFAEC-6178-4BB5-B843-5F732950078D}' runs on registration in the path '\{FE6FFAEC-6178-4BB5-B843-5F732950078D}'
- The task '{16F5D73B-1343-4432-A594-D7826D3FEF09}' runs on registration in the path '\{16F5D73B-1343-4432-A594-D7826D3FEF09}'
- The task '{EE54F59E-E85E-43EC-AE55-959F40FD02E5}' runs on registration in the path '\{EE54F59E-E85E-43EC-AE55-959F40FD02E5}'
- The job '{DB5B152C-A89D-4C18-83DB-9C930BE954DE}' runs on registration in the path '\{DB5B152C-A89D-4C18-83DB-9C930BE954DE}'
- The job '{BD7348E0-7711-4DBB-BDD7-8515854EA1BD}' runs on registration in the path '\{BD7348E0-7711-4DBB-BDD7-8515854EA1BD}'
- The task '{9C1F91B7-4B2F-44BC-A0C5-C3A3414126A2}' runs on registration in the path '\{9C1F91B7-4B2F-44BC-A0C5-C3A3414126A2}'
- The task '{982CB9F0-92FC-44BF-B041-4263CC9171E8}' runs on registration in the path '\{982CB9F0-92FC-44BF-B041-4263CC9171E8}'
- The job '{6601423E-9F04-4B05-A02A-22A7D5A8EA35}' runs on registration in the path '\{6601423E-9F04-4B05-A02A-22A7D5A8EA35}'
- The task '{098EC717-A53A-49E9-9370-690CE169048A}' runs on registration in the path '\{098EC717-A53A-49E9-9370-690CE169048A}'
- The task '{FF83A9C5-07BD-4AEB-B214-2016EB76E77E}' runs on registration in the path '\{FF83A9C5-07BD-4AEB-B214-2016EB76E77E}'
- The job '{D29708AF-17A8-405B-9C8D-5ABE0B01EBE7}' runs on registration in the path '\{D29708AF-17A8-405B-9C8D-5ABE0B01EBE7}'
- The job '{5F70B5BD-3E5F-48B3-9B48-989F1E28D0C6}' runs on registration in the path '\{5F70B5BD-3E5F-48B3-9B48-989F1E28D0C6}'
- The job '{BA44AC86-B7CB-4065-B78E-4D080AD2166B}' runs on registration in the path '\{BA44AC86-B7CB-4065-B78E-4D080AD2166B}'
- The task '{07FA7E58-4DD1-4A40-A77D-A9FE91ACA8EC}' runs on registration in the path '\{07FA7E58-4DD1-4A40-A77D-A9FE91ACA8EC}'
- The job '{FDF80C9A-2116-4EAE-9E9C-C743606B60F0}' runs on registration in the path '\{FDF80C9A-2116-4EAE-9E9C-C743606B60F0}'
- The task '{B9524566-4DAF-4E69-97F5-3CC1807F84E6}' runs on registration in the path '\{B9524566-4DAF-4E69-97F5-3CC1807F84E6}'
- The task '{FDDB66ED-3880-47D1-B567-ECAB9EE621F6}' runs on registration in the path '\{FDDB66ED-3880-47D1-B567-ECAB9EE621F6}'
- The job '{A7D7A5C7-B134-48E8-B39B-239493C43AD8}' runs on registration in the path '\{A7D7A5C7-B134-48E8-B39B-239493C43AD8}'
- The task '{3D313F7A-B0C7-4AE8-94B6-73C969AB8F8C}' runs on registration in the path '\{3D313F7A-B0C7-4AE8-94B6-73C969AB8F8C}'
Windows firewall allowed programs
Exceptions allow programs to access to the Internet through an outbound connections
- Firewall exception for 'C:\Program Files\Internet Explorer\IEXPLORE.EXE'
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
CPU |
Total CPU: | 0.35744978% | |
Kernel CPU: | 0.19640113% | |
User CPU: | 0.16104866% | |
Kernel CPU time: | 16,615,626 ms/min | |
CPU cycles: | 1,368,055/sec | |
Context switches: | 245/sec | |
Memory |
Private memory: | 89.1 MB | |
Private (maximum): | 75.44 MB | |
Private (minimum): | 62.5 MB | |
Non-paged memory: | 89.1 MB | |
Virtual memory: | 299.35 MB | |
Virtual memory (peak): | 318.2 MB | |
Working set: | 65.06 MB | |
Working set (peak): | 103.17 MB | |
Page faults: | 384,922/min | |
I/O |
I/O read transfer: | 13.19 KB/sec | |
I/O read operations: | 11/sec | |
I/O write transfer: | 71.43 KB/sec | |
I/O write operations: | 32/sec | |
I/O other transfer: | 4.82 KB/sec | |
I/O other operations: | 253/sec | |
Resource allocations |
Threads: | 37 | |
Handles: | 1097 | |
GUI GDI count: | 448 | |
GUI GDI peak: | 511 | |
GUI USER count: | 267 | |
GUI USER peak: | 345 | |
Process properties
Integrety level: | Low |
Platform: | 32-bit |
Command lines: |
- "C:\Program Files\internet explorer\iexplore.exe"
- "C:\Program Files\internet explorer\iexplore.exe" -extoff
- "C:\Program Files\internet explorer\iexplore.exe" -nohome
- "C:\Program Files\internet explorer\iexplore.exe" scodeC:7180 credaC:71937
- "C:\Program Files\internet explorer\iexplore.exe" -embedding
- "C:\Program Files\internet explorer\iexplore.exe" scodeC:2752 credaC:71937
- "C:\Program Files\internet explorer\iexplore.exe" scodeC:1080 credaC:71937
- (139 more)
|
Owner: | User |
Parent processes: |
|
Threads
Averages
iertutil.dll |
Total CPU: | 1.50246350% | |
Kernel CPU: | 0.46019682% | |
User CPU: | 1.04226668% | |
CPU cycles: | 65,408,920/sec | |
Context switches: | 108/sec | |
Memory: | 1.98 MB | |
wow64.dll |
Total CPU: | 0.83923435% | |
Kernel CPU: | 0.31211957% | |
User CPU: | 0.52711478% | |
CPU cycles: | 39,884,924/sec | |
Context switches: | 57/sec | |
Memory: | 252 KB | |
ieframe.dll (Windows Internet Explorer by Microsoft) |
Total CPU: | 0.15576538% | |
Kernel CPU: | 0.11751821% | |
User CPU: | 0.03824717% | |
CPU cycles: | 6,290,747/sec | |
Context switches: | 7/sec | |
Memory: | 10.5 MB | |
iexplore.exe (main module) |
Total CPU: | 0.11354157% | |
Kernel CPU: | 0.08045858% | |
User CPU: | 0.03308299% | |
CPU cycles: | 3,392,888/sec | |
Context switches: | 69/sec | |
Memory: | 664 KB | |
ntdll.dll |
Total CPU: | 0.10947354% | |
Kernel CPU: | 0.04802033% | |
User CPU: | 0.06145321% | |
CPU cycles: | 2,110,049/sec | |
Memory: | 1.5 MB | |
MSVCR90.dll |
Total CPU: | 0.10101130% | |
Kernel CPU: | 0.05772074% | |
User CPU: | 0.04329056% | |
CPU cycles: | 3,279,034/sec | |
Context switches: | 8/sec | |
Memory: | 652 KB | |
mshtml.dll (Windows Internet Explorer by Microsoft) |
Total CPU: | 0.05327795% | |
Kernel CPU: | 0.03412804% | |
User CPU: | 0.01914992% | |
CPU cycles: | 1,287,664/sec | |
Context switches: | 8/sec | |
Memory: | 5.71 MB | |
mscorwks.dll |
Total CPU: | 0.02174511% | |
Kernel CPU: | 0.01084262% | |
User CPU: | 0.01090249% | |
CPU cycles: | 490,070/sec | |
Memory: | 5.67 MB | |
dxtrans.dll (Windows Internet Explorer by Microsoft) |
Total CPU: | 0.01066042% | |
Kernel CPU: | 0.00083535% | |
User CPU: | 0.00982507% | |
CPU cycles: | 246,664/sec | |
Memory: | 228 KB | |
WINMM.dll |
Total CPU: | 0.00940389% | |
Kernel CPU: | 0.00799616% | |
User CPU: | 0.00140773% | |
CPU cycles: | 199,518/sec | |
Context switches: | 4/sec | |
Memory: | 200 KB | |
WININET.dll |
Total CPU: | 0.00758604% | |
Kernel CPU: | 0.00547518% | |
User CPU: | 0.00211086% | |
CPU cycles: | 367,659/sec | |
Context switches: | 6/sec | |
Memory: | 980 KB | |
bingext.dll (Bing Bar by Microsoft) |
Total CPU: | 0.00721856% | |
Kernel CPU: | 0.00326433% | |
User CPU: | 0.00395423% | |
CPU cycles: | 88,840/sec | |
Memory: | 1.26 MB | |
Common loaded modules
These are modules that are typiclaly loaded within the context of this process.
Distribution by Windows OS
OS version | distribution |
Windows 7 Home Premium |
39.00% |
|
Windows 8.1 Pro |
14.50% |
|
Windows 8.1 |
11.00% |
|
Windows 8 |
10.00% |
|
Windows 7 Ultimate |
9.00% |
|
Windows 8.1 Single Language |
5.00% |
|
Windows 7 Professional |
4.50% |
|
Windows 8 Single Language |
2.50% |
|
Windows 8.1 Pro with Media Center |
2.00% |
|
Windows 8.1 N |
2.00% |
|
Windows Seven Black Edition |
0.50% |
|
Distribution by country
United States installs about 58.00% of Windows® Internet Explorer.
Distribution by PC manufacturer
PC Manufacturer | distribution |
Hewlett-Packard |
25.96% |
|
ASUS |
24.68% |
|
Dell |
13.62% |
|
Acer |
12.77% |
|
Toshiba |
10.21% |
|
Samsung |
5.96% |
|
Lenovo |
5.11% |
|
Alienware |
1.70% |
|