Files signed by Codeweavers, Inc

Codeweavers, Inc

Codeweavers, Inc is a digital signature publisher name observed in ThreatInfo records. This page groups 18 signed files and shows whether those files are currently classified as clean, undefined, or detected.

A digital signature can help identify a publisher, but it does not always prove that a file is safe. Certificates may be abused, stolen, expired, or attached to modified installers, so the file hash and detection status should be checked together.

Detection signal

Detected files use this signature name

At least one file signed as Codeweavers, Inc is detected by GridinSoft. Review the hashes below and scan the device if one of these files is present.

Download GridinSoft scanner
winedevice.exe a8242f5636e62853376f09352d71cb03 SuspCPUMiner
winewrapper.exe 1b90a1f24613521fe28362258c73369d SuspCPUMiner
services.exe c0bde2b8ecc23adeca2cecd696eb1fc5 SuspCPUMiner
svchost.exe 23ff73a7cfcb3da1b7b2ba01c9f45bfc SuspCPUMiner
rpcss.exe 4113df0f4483ddc930a74ef2492b604a SuspCPUMiner
plugplay.exe 7f2625b0e5acfe71114a8e7db68c44ab SuspCPUMiner
explorer.exe 60608bb0002c45874028e2ce8056fd6d SuspCPUMiner
iexplore.exe fc1f98d097ea678435c63a484732de71 Trojan.Neurevt
start.exe 2445de91de3e58f98aaafd3b374cac28 Trojan.Gen
start.exe fa590f05638a0686ac24f0a618043664 Trojan.Gen
iexplore.exe 63c3f52398be6fa53132c38c2083a695 Trojan.Neurevt
start.exe 2060ffb9445fbb615bff0f286c8d520d Trojan.Gen
iexplore.exe 5c05417ed0191b4a4072b2078867fe82 Trojan.Neurevt
start.exe ee05394a28d5a4a241f282e37196a541 Trojan.Gen
iexplore.exe 64d256d548ef26ba5c2a75530dc9973d Trojan.Neurevt
svchost.exe 40f4b2becb3400123793a55e5f61ed81 SuspCPUMiner
winewrapper.exe 351a57824d18fa7b1cb6fe70e5fb290c SuspCPUMiner
winedevice.exe da5eabb44aa5b9b9057306a77dc75780 SuspCPUMiner

Certificate review summary

Do not trust this signature name by itself

ThreatInfo found detected files associated with Codeweavers, Inc. A matching signature name should be checked together with the file hash, detection verdict, and source path.

Recommended checks

  • Open any matching file report and compare the MD5 hash.
  • Confirm the file path and download source before trusting the binary.
  • Run a GridinSoft scan if a detected file from this list is present.