WtSrv.exe

UC-Logic Technology Corporation

It runs as a separate (within the context of its own process) windows Service named “WinTab Service”.
Publisher:
Guangzhou Ugee Computer Technology Co.,Ltd.  (signed by UC-Logic Technology Corporation)

Description:
Wintab Service

Version:
8.1.2016.618

MD5:
f912b34e425809e84680e8234e2ece43

SHA-1:
701b3d71be30c16524c5520e955a5fbedfd3be45

SHA-256:
978de44838ae8e91478355214746d2c61645183de7eebeaef574848ea14c3f7d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/7/2025 7:41:58 PM UTC  (today)

File size:
138.7 KB (141,984 bytes)

Product version:
8.1.2016.618

Copyright:
Copyright (c) 2016 Guangzhou Ugee Computer Technology Co.,Ltd. All Rights Reserved.

Original file name:
WtSrv.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Windows\System32\drivers\wtsrv.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/11/2014 8:00:00 AM

Valid to:
9/10/2016 7:59:59 AM

Subject:
CN=UC-Logic Technology Corporation, O=UC-Logic Technology Corporation, L=NEW TAIPEI CITY, S=Taiwan, C=TW

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7CCB3CE3E6754B21D6EF12F5E6D59DFD

File PE Metadata
Compilation timestamp:
6/18/2016 9:31:42 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
12.0

CTPH (ssdeep):
3072:LL2gdwhQYUx9nB6fUuy/BedoikCY5sxkOVQ4+:ghQYUB3pB8OV5

Entry address:
0x4CE8

Entry point:
E8, 3B, 4C, 00, 00, E9, 7B, FE, FF, FF, E8, 47, 14, 00, 00, 85, C0, 75, 06, B8, 8C, 01, 42, 00, C3, 83, C0, 0C, C3, 55, 8B, EC, 56, E8, E4, FF, FF, FF, 8B, 4D, 08, 51, 89, 08, E8, 20, 00, 00, 00, 59, 8B, F0, E8, 05, 00, 00, 00, 89, 30, 5E, 5D, C3, E8, 13, 14, 00, 00, 85, C0, 75, 06, B8, 88, 01, 42, 00, C3, 83, C0, 08, C3, 55, 8B, EC, 8B, 4D, 08, 33, C0, 3B, 0C, C5, 20, 00, 42, 00, 74, 27, 40, 83, F8, 2D, 72, F1, 8D, 41, ED, 83, F8, 11, 77, 05, 6A, 0D, 58, 5D, C3, 8D, 81, 44, FF, FF, FF, 6A, 0E, 59, 3B, C8...
 
[+]

Entropy:
6.5038

Code size:
91.5 KB (93,696 bytes)

Service
Display name:
WinTab Service

Service name:
WinTabService

Type:
Win32OwnProcess


Scan WtSrv.exe - Powered by Reason Core Security