DriverUtility.exe

Driver Utility

Wuhan Jiduo Information Technology Co.,Ltd.

The application DriverUtility.exe by Wuhan Jiduo Information Technology Co.,Ltd has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program Driver Utility by Driver-Soft Inc..
Publisher:
Driver-Soft Inc.  (signed by Wuhan Jiduo Information Technology Co.,Ltd.)

Product:
Driver Utility

Version:
9.00.0180

MD5:
614a6093a80296b917d815c970552bb1

SHA-1:
c8afffa4c9b501c57370fcb62e352b5065d02044

SHA-256:
0d6277ffcc4ce5b69e12f0d462e713007e6e147aad9034c0bbe0841ad5c2af9b

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/20/2024 1:10:47 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
16.1.8.9

File size:
2.8 MB (2,966,112 bytes)

Product version:
9.00.0180

Copyright:
Copyright (C) 2002-2009 Driver-Soft Inc.

Original file name:
DriverUtility.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\driver-soft\driverutility\driverutility.exe

Digital Signature
Authority:
WoSign, Inc.

Valid from:
5/22/2008 5:30:00 AM

Valid to:
5/23/2010 5:29:59 AM

Subject:
CN=Driver-Soft.com, OU=Class 3 - for Microsoft Authenticode Signing, O="Wuhan Jiduo Information Technology Co.,Ltd.", L=Wuhan, S=Hubei, C=CN

Issuer:
CN=WoSign Code Signing Authority, O="WoSign, Inc.", C=US

Serial number:
79E59F0AC0FF47090A57C16B38B1BD

File PE Metadata
Compilation timestamp:
8/31/2009 11:24:42 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:JkhZMhJ7io1pku/D7fPMSo5QwM+hh8w45L8r5Zd/V58As+a3JhAvMGnp79eJpTTh:JAZMhJ7t/kuvPMSMQf15L8rnpVG4a3JZ

Entry address:
0x1000

Entry point:
68, 01, D0, 7E, 00, E8, 01, 00, 00, 00, C3, C3, B0, 39, 4A, 02, F1, 6C, 2D, 42, AC, F0, 6E, E9, 65, 2D, 3C, 82, 0D, A0, 7E, 6D, 78, DB, 0E, 3E, 60, 46, DB, 10, 05, 6A, 67, 41, 2B, CF, 4E, 77, DB, 8F, A7, 30, 87, 5A, 76, 4D, 4A, DE, C7, DB, 1A, 3A, DA, 46, 4E, 63, DF, 32, 94, EB, 9D, 30, 6C, F5, 5C, C1, E1, 69, 49, 32, 58, 01, 76, 0D, 39, 2C, 22, BB, 61, 04, 20, A6, 3C, 91, D9, 6D, 37, 3B, 70, 6F, BA, 08, 6E, 30, 74, 6D, E3, DF, C0, 43, 21, 17, B6, 2B, DE, 2D, 01, 60, B1, 6E, C8, E3, 3F, 9D, 96, ED, 5F, DF...
 
[+]

Entropy:
7.9925

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
1.6 MB (1,642,496 bytes)

The file DriverUtility.exe has been discovered within the following program.

Driver Utility  by Driver-Soft Inc.
Driver Utility is an application designed to check the computer's installed drivers against a database of available drivers for a number of software and device hardware applications.
www.driverutility.com
43% remove it
 
Powered by Should I Remove It?

Remove DriverUtility.exe - Powered by Reason Core Security