wdjdriverinstaller.exe

Wandou Technology Ltd

This is installed with SnapPea.
Publisher:
Wandou Technology Ltd  (signed and verified)

MD5:
60b5fca0dc3d5819c07b1e95d19b11c1

SHA-1:
dd6a1e5cd1edebb38787b84036364894739211d6

SHA-256:
936c7d610732fa6724fa679f0fd90a866c40bd91403e881eb2a950e93be04da8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 2:38:03 PM UTC  (today)

File size:
1.1 MB (1,159,144 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\wandoulabs\wdjdriverinstaller.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/25/2011 5:30:00 AM

Valid to:
4/25/2013 5:29:59 AM

Subject:
CN=Wandou Technology Ltd, OU=Wandou Technology Ltd, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Wandou Technology Ltd, L=Beijing, S=Beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
76015B1273AEA325800AA3D536CCB13D

File PE Metadata
Compilation timestamp:
5/29/2012 7:32:53 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
24576:drTSODVb2A4Yclb97xUvEv2+vm7XPB4H2G4rq9oTN06+V93:dLclb97S2gB4HWrq9oT+XV93

Entry address:
0xADC71

Entry point:
E8, 38, 92, 00, 00, E9, A4, FE, FF, FF, 6A, 0C, 68, 60, 69, 4F, 00, E8, 2D, 84, 00, 00, 8B, 75, 08, 85, F6, 74, 75, 83, 3D, 30, 68, 50, 00, 03, 75, 43, 6A, 04, E8, 22, 94, 00, 00, 59, 83, 65, FC, 00, 56, E8, 4A, 94, 00, 00, 59, 89, 45, E4, 85, C0, 74, 09, 56, 50, E8, 6B, 94, 00, 00, 59, 59, C7, 45, FC, FE, FF, FF, FF, E8, 0B, 00, 00, 00, 83, 7D, E4, 00, 75, 37, FF, 75, 08, EB, 0A, 6A, 04, E8, 0E, 93, 00, 00, 59, C3, 56, 6A, 00, FF, 35, BC, 4D, 50, 00, FF, 15, B8, 81, 4D, 00, 85, C0, 75, 16, E8, AD, 37, 00...
 
[+]

Entropy:
6.5005

Code size:
858 KB (878,592 bytes)

The file wdjdriverinstaller.exe has been discovered within the following program.

SnapPea  by Wandou Labs
The software currently distributes the app through the OpenCandy monetization platform which is known to distribute adware.
snappea.com
25% remove it
 
Powered by Should I Remove It?

Scan wdjdriverinstaller.exe - Powered by Reason Core Security