Files signed by CHENGDU YIWO Tech Development Co., Ltd.;Chengdu Yiwo Technology Development Co., Ltd.

CHENGDU YIWO Tech Development Co., Ltd.;Chengdu Yiwo Technology Development Co., Ltd.

CHENGDU YIWO Tech Development Co., Ltd.;Chengdu Yiwo Technology Development Co., Ltd. is a digital signature publisher name observed in ThreatInfo records. This page groups 30 signed files and shows whether those files are currently classified as clean, undefined, or detected.

A digital signature can help identify a publisher, but it does not always prove that a file is safe. Certificates may be abused, stolen, expired, or attached to modified installers, so the file hash and detection status should be checked together.

Detection signal

Detected files use this signature name

At least one file signed as CHENGDU YIWO Tech Development Co., Ltd.;Chengdu Yiwo Technology Development Co., Ltd. is detected by GridinSoft. Review the hashes below and scan the device if one of these files is present.

Download GridinSoft scanner
drw.exe 17de5ad4e033928eff8fb57e43d90d96 Under review
gdrw_setup.exe 3a4e470bae1c112b52ad0aec62b7ced8 Under review
drw_trial.exe fcf78bb894402d6800661b80b980669b Under review
drw_crackzsoft.com.exe be7d4a59e58a321c0d7850772b8ec278 Under review
TrayNotify.exe e8c2e9a6e447d18990f274aba0de8191 Under review
EuFdDisk.sys cabc74a1fe33769e88e4d9ba66201c07 Under review
EaseUS_VideoViewer.exe e257e8e06ca3bc38aad4777f182648c4 General Threat
EuFdDisk.sys 45dada9974446e21b115504bf5294349 Under review
EUBKMON.sys fc38a1b1a11efdafed1d8c42c22499da Under review
eubakup.sys d509d5eca2aa122f1c00b63a25820ec7 Under review
eudskacs.sys f208b689083dec507b211e9fe98f8171 Under review
epm.exe b511a8ccd9b0783d07357858445bef6d General Threat
ImgFileHlp.dll dddc4bc6905924d8397b85f433fee813 Under review
Agent.exe fd8f71ff34b4da5d31704c9012b7c408 Under review
tb_free.exe b717ffa8d5cb99e844cc34b51c818366 Under review
AutoUpdate.dll a9acfedea8a8827aeed7c996027a4c15 Under review
NTFSFormat.dll 4d061c14430d8c6b89ef9189d75e7ffa Under review
RapidNTFS.dll 074093b6b5d0e1ed9445a9d4fc9fd23c Under review
BuyNow.dll f946ac1dc4c6ab6082fa4f3f50adb401 Under review
DeviceAdapter.mo 632acbd133f4f4463ff0e53d3ce3dc0c Risk.Mimikatz
XmlWrapper.dll cc05c0f158a59a2220308df77a7b367a Risk.Mimikatz
FatFormat.mo 4ea81aaccf966955163235a18f683ddd Risk.Mimikatz
EFIBoot.mo 0cfee8cc1f6ab90ba1e87eed2ed249eb Risk.Mimikatz
Device.mo 6e968d88e1bd3718376b91afaf765bb0 Risk.Mimikatz
AutoUpdate.dll e4cebae6a1cbc33468f159e9f297aa90 Risk.Mimikatz
setupempdrvx64.exe 8c5e722f8e29cb41196123353be04deb Risk.Mimikatz
Mom.mo e7e49c7f42e95f95430bfbee2828e69e Risk.Mimikatz
Error.mo fdc64bab390b2a56e26dfcf5f577314d Risk.Mimikatz
PeMaker.dll c2fe30d797e22837acc7715137418bec Risk.Mimikatz
FatResizeMove.mo 5e6bc98079808b12dfb7244b975a5531 Risk.Mimikatz

Certificate review summary

Do not trust this signature name by itself

ThreatInfo found detected files associated with CHENGDU YIWO Tech Development Co., Ltd.;Chengdu Yiwo Technology Development Co., Ltd.. A matching signature name should be checked together with the file hash, detection verdict, and source path.

Recommended checks

  • Open any matching file report and compare the MD5 hash.
  • Confirm the file path and download source before trusting the binary.
  • Run a GridinSoft scan if a detected file from this list is present.