graphedt.exe

  • File Path: C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\graphedt.exe
  • Description: DirectShow SDK Filter Graph Editor
  • Comments: DirectShow Graph Editor tool for software developers

Hashes

Type Hash
MD5 8585B82DA7C04F121D2CCEB6E6E81B40
SHA1 64CC71E93566AB13911E00C64654A12CEB8177DA
SHA256 998682A99AAC5D679A736055B50DCDE8DED92A0A9C4FAEE6BE276D710567D632
SHA384 D14C2FACC7305AD37F9BB11817195F1F4528EDD87278E9759F855E16CFCF31F0E06CE69275BA4E5790B00D929DADEE76
SHA512 C15546B0307796B80CF7C48B163AD7991362C029AA808D8E72182C30C5949A570B3B55F36C8EA4F1BD30972C9A7C7F570725E40967F6A1164BD5F5126089EBB6
SSDEEP 6144:uPHWIEJ8nXoLhIDA73BY/Oee5kX/ntHDFRextgDiTebp0kb:MWWKf5kXl5rDiTmb
IMP 2CEAB251FFFEA7911527BA2B3A62F088
PESHA1 4F5E898A5D18A0172B0ECB75C3F1FDF6B1672FA6
PE256 08A0235019373F6750BD53D1EE56AD46FDE5BA1641D989BEB719279F61660476

Runtime Data

Open Handles:

Path Type
(R-D) C:\Windows\Fonts\StaticCache.dat File
(R-D) C:\Windows\System32\en-US\MFC42.dll.mui File
(R-D) C:\Windows\System32\en-US\quartz.dll.mui File
(RW-) C:\Users\user File
(RW-) C:\Windows File
(RW-) C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.19041.488_none_89e6152f0b32762e File
\BaseNamedObjects__ComCatalogCache__ Section
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000002.db Section
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db Section
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2 Section
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 Section
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 Section
\Sessions\1\BaseNamedObjects\1b9cHWNDInterface:8907e6 Section
\Sessions\1\BaseNamedObjects\AMResourceMapping3-0000-0x000780 Section
\Sessions\1\Windows\Theme1383959086 Section
\Windows\Theme2042523233 Section

Loaded Modules:

Path
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\graphedt.exe
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\System32\wow64.dll
C:\Windows\System32\wow64cpu.dll
C:\Windows\System32\wow64win.dll

Signature

  • Status: Signature verified.
  • Serial: 33000002CF6D2CC57CAA65A6D80000000002CF
  • Thumbprint: 1A221B3B4FEF088B17BA6704FD088DF192D9E0EF
  • Issuer: CN=Microsoft Code Signing PCA 2010, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: GraphEdt.exe
  • Product Name: DirectShow
  • Company Name: Microsoft Corporation
  • File Version: DirectX 10.0
  • Product Version: DirectX 10.0
  • Language: English (United States)
  • Legal Copyright: Copyright (C) 1992-2006 Microsoft Corporation
  • Machine Type: 32-bit

File Scan

  • VirusTotal Detections: Unknown

MIT License. Copyright (c) 2020-2021 Strontic.