WTClient.exe

Tablet Driver for Windows

Shenzhen Huion Animatzon Technology Co.,Ltd

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘WTClient’.
Publisher:
Tablet Driver  (signed by Shenzhen Huion Animatzon Technology Co.,Ltd)

Product:
Tablet Driver for Windows

Description:
Tablet Client Driver

Version:
10, 30, 2009, 1

MD5:
5aaa995ab6ef2076cfb7696ae7faaca4

SHA-1:
e38214b4ba955e93e56cc5e7b632fc31b74c1f24

SHA-256:
7c6e222d81fcbe4bda06c887fc383b0c61ede0c5049e59a515f17741364d2210

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
5/11/2025 9:53:19 PM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
Heur.Suspicious
17475

File size:
40.3 KB (41,304 bytes)

Product version:
10, 30, 2009, 1

Copyright:
Copyright (c) 2000 - 2009

Original file name:
WTClient.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\windows\syswow64\wtclient.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/4/2011 1:00:00 AM

Valid to:
8/4/2012 12:59:59 AM

Subject:
CN="Shenzhen Huion Animatzon Technology Co.,Ltd", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Shenzhen Huion Animatzon Technology Co.,Ltd", L=Shenzhen, S=Guangdong, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1971813C089CC588DE69A0BD9A8B77FB

File PE Metadata
Compilation timestamp:
10/30/2009 2:19:21 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
384:omArRgOBGormlBbIjCe9fyyjRPb/EPxL1poKd8dYJLypkEkd6jMMKeMTkem:om6RzGlIjCedykRPLE5L1po+BL3E2mn

Entry address:
0x18E9

Entry point:
55, 8B, EC, 6A, FF, 68, 88, 54, 40, 00, 68, C0, 24, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, AC, 50, 40, 00, 33, D2, 8A, D4, 89, 15, 58, 66, 40, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 54, 66, 40, 00, C1, E1, 08, 03, CA, 89, 0D, 50, 66, 40, 00, C1, E8, 10, A3, 4C, 66, 40, 00, 33, F6, 56, E8, 44, 0A, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 84, 08, 00, 00, FF, 15, A8, 50, 40, 00, A3, 58, 6B, 40, 00, E8...
 
[+]

Entropy:
5.2649

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
16 KB (16,384 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
WTClient

Command:
wtclient.exe


Scan WTClient.exe - Powered by Reason Core Security