wddmstatus.exe

WDDMStatus.exe

Western Digital Technologies, Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘WD Quick View’.
Publisher:
Western Digital Technologies, Inc.  (signed and verified)

Product:
WDDMStatus.exe

Description:
WD Quick View

Version:
3.2.0.14

MD5:
780c3a1ede42897a780ee516f019d15b

SHA-1:
f3ebdb1d095a7f3eab7f7a0c12a1e87e79efcc9b

SHA-256:
85516c211947b1abd6f15389c1e16384f5c5558c1ff168dae9cb5d33044d944b

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/20/2024 3:20:25 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Sality
151222-1

File size:
5.3 MB (5,524,336 bytes)

Product version:
3.2.0.14

Copyright:
© 2013 Western Digital Technologies, Inc. All rights reserved.

Original file name:
WDBtnMgrUI.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\western digital\wd quick view\wddmstatus.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/11/2010 5:00:00 PM

Valid to:
9/20/2013 4:59:59 PM

Subject:
CN="Western Digital Technologies, Inc.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Western Digital Technologies, Inc.", L=Mountain View, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
460D315FDDE6B193A4515A45A2A8CBB7

File PE Metadata
Compilation timestamp:
6/19/2013 9:21:33 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:XRxf0PY3JReFpVXNdb4AKHp5L4FWOlWDzSJw0XPEkV:BxoTt0+FWOlWDziw0XN

Entry address:
0x12FE1E

Entry point:
E8, 99, 89, 00, 00, E9, 89, FE, FF, FF, 3B, 0D, 20, 6B, 5B, 00, 75, 02, F3, C3, E9, 20, 8A, 00, 00, 8B, FF, 55, 8B, EC, 8B, 45, 08, 66, 8B, 55, 0C, EB, 08, 66, 3B, CA, 74, 12, 83, C0, 02, 0F, B7, 08, 66, 85, C9, 75, F0, 66, 39, 10, 74, 02, 33, C0, 5D, C3, 8B, FF, 55, 8B, EC, 8B, 45, 14, 56, 85, C0, 74, 41, 83, 7D, 08, 00, 75, 13, E8, 7D, 34, 00, 00, 6A, 16, 5E, 89, 30, E8, CB, 8F, 00, 00, 8B, C6, EB, 2A, 83, 7D, 10, 00, 74, E7, 39, 45, 0C, 73, 0E, E8, 5F, 34, 00, 00, 6A, 22, 59, 89, 08, 8B, F1, EB, DE, 50...
 
[+]

Entropy:
4.7642

Code size:
1.4 MB (1,423,872 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
WD Quick View

Command:
C:\Program Files\western digital\wd quick view\wddmstatus.exe


Scan wddmstatus.exe - Powered by Reason Core Security