graphedt.exe
- File Path:
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\graphedt.exe
- Description: DirectShow SDK Filter Graph Editor
- Comments: DirectShow Graph Editor tool for software developers
Hashes
Type |
Hash |
MD5 |
8585B82DA7C04F121D2CCEB6E6E81B40 |
SHA1 |
64CC71E93566AB13911E00C64654A12CEB8177DA |
SHA256 |
998682A99AAC5D679A736055B50DCDE8DED92A0A9C4FAEE6BE276D710567D632 |
SHA384 |
D14C2FACC7305AD37F9BB11817195F1F4528EDD87278E9759F855E16CFCF31F0E06CE69275BA4E5790B00D929DADEE76 |
SHA512 |
C15546B0307796B80CF7C48B163AD7991362C029AA808D8E72182C30C5949A570B3B55F36C8EA4F1BD30972C9A7C7F570725E40967F6A1164BD5F5126089EBB6 |
SSDEEP |
6144:uPHWIEJ8nXoLhIDA73BY/Oee5kX/ntHDFRextgDiTebp0kb:MWWKf5kXl5rDiTmb |
IMP |
2CEAB251FFFEA7911527BA2B3A62F088 |
PESHA1 |
4F5E898A5D18A0172B0ECB75C3F1FDF6B1672FA6 |
PE256 |
08A0235019373F6750BD53D1EE56AD46FDE5BA1641D989BEB719279F61660476 |
Runtime Data
Open Handles:
Path |
Type |
(R-D) C:\Windows\Fonts\StaticCache.dat |
File |
(R-D) C:\Windows\System32\en-US\MFC42.dll.mui |
File |
(R-D) C:\Windows\System32\en-US\quartz.dll.mui |
File |
(RW-) C:\Users\user |
File |
(RW-) C:\Windows |
File |
(RW-) C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.19041.488_none_89e6152f0b32762e |
File |
\BaseNamedObjects__ComCatalogCache__ |
Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000002.db |
Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db |
Section |
\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2 |
Section |
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 |
Section |
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 |
Section |
\Sessions\1\BaseNamedObjects\1b9cHWNDInterface:8907e6 |
Section |
\Sessions\1\BaseNamedObjects\AMResourceMapping3-0000-0x000780 |
Section |
\Sessions\1\Windows\Theme1383959086 |
Section |
\Windows\Theme2042523233 |
Section |
Loaded Modules:
Path |
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\graphedt.exe |
C:\Windows\SYSTEM32\ntdll.dll |
C:\Windows\System32\wow64.dll |
C:\Windows\System32\wow64cpu.dll |
C:\Windows\System32\wow64win.dll |
Signature
- Status: Signature verified.
- Serial:
33000002CF6D2CC57CAA65A6D80000000002CF
- Thumbprint:
1A221B3B4FEF088B17BA6704FD088DF192D9E0EF
- Issuer: CN=Microsoft Code Signing PCA 2010, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Original Filename: GraphEdt.exe
- Product Name: DirectShow
- Company Name: Microsoft Corporation
- File Version: DirectX 10.0
- Product Version: DirectX 10.0
- Language: English (United States)
- Legal Copyright: Copyright (C) 1992-2006 Microsoft Corporation
- Machine Type: 32-bit
File Scan
- VirusTotal Detections: Unknown
MIT License. Copyright (c) 2020-2021 Strontic.