The Windows Process Journey — “msedge.exe” (Microsoft Edge)

Shlomi Boutnaru, Ph.D.
2 min readSep 9, 2023

--

“msedge.exe” is a 64-bit binary which is signed by Microsoft. Although it is a 64-bit binary it is still located by default in the program files directory of 32-bit applications (“C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe”).

Microsoft Edge (aka Edge) is a web browser that is based on chromium which was released on January 15, 2020. It is supported on Windows, macOS, iOS and Android (https://support.microsoft.com/en-us/microsoft-edge/download-the-new-microsoft-edge-based-on-chromium-0f4a3dd7-55df-60f5-739f-00010dba52cf).

By the way, if you want you can also be part of the “Microsoft Edge Insider Channel”. This allows you to be from the first who previews what’s new in Edge (https://www.microsoft.com/en-us/edge/download/insider).

Moreover, from Windows 10 Enterprise/Pro (versions 1803 and later) or Windows 11 Pro users can use the “Application Guard” mode of Edge — as shown in the screenshot below. It disables printing form the application guard window, does not allow copying/pasting between the host PC and the application guard window and does not permit data persistence between application guard windows (https://learn.microsoft.com/en-us/windows/security/application-security/application-isolation/microsoft-defender-application-guard/test-scenarios-md-app-guard).

Lastly, In order to enable that we need to enable the “”Windows Defender Application Guard” feature (it requires the CPU support for virtualization). It launches Edge in an Hyper-V virtualized isolated environment (https://techcommunity.microsoft.com/t5/windows-insider-program/windows-defender-application-guard-standalone-mode/m-p/66903). A temporary container is created each time, it is destroyed/deleted when the user closes all the related windows (https://blogs.windows.com/msedgedev/2016/09/27/application-guard-microsoft-edge/).

See you next time ;-) You can also follow me on twitter — @boutnaru (https://twitter.com/boutnaru).

https://learn.microsoft.com/en-us/windows/security/application-security/application-isolation/microsoft-defender-application-guard/test-scenarios-md-app-guard

--

--