ddodiag.exe

  • File Path: C:\Windows\system32\ddodiag.exe
  • Description: DDODiag is a tool that collects Device Display Object (DDO) information from the system and logs it

Hashes

Type Hash
MD5 DECF7B40F170889DA82C0F54749AE3E9
SHA1 FC1EBF9FBE414AA772382784B6C9B5EED6518B14
SHA256 A67110C259924E1DE43D648C700337226E57D6DF55099CAC5D4602137706BC81
SHA384 59F9D4303E65AA252CADB333A40FEFADBF1B2E2D651EB10502E16FBCFE93C95408371608D79035DD0A5C6CF0363B5688
SHA512 5279FE7CA4214700944BB1146D160D12E76C62F8F3C9DE24EACD00B25A530FC45286ECA9F675E4CE48DF4DEB94F9608E6A82E244897CC31EB3FDA22A72CCDE92
SSDEEP 768:ugN8V3tWzMtfY6RGK/hc3aZkLmMgMaouZl6iSSpottXT:0dVfY6RGK/hc3aZkLmMgMaouZl6iSZtD
IMP AD808CB5DB2E29BB8CC94083572DF977
PESHA1 E1FDACAA2CC91C0213D966DE54F3CF0082C758F4
PE256 D0619014F04A8ED5D324702E417FE839257BDD116CFEFB070FE923710300742D

Signature

  • Status: Signature verified.
  • Serial: 33000001C422B2F79B793DACB20000000001C4
  • Thumbprint: AE9C1AE54763822EEC42474983D8B635116C8452
  • Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: DDODiag.exe
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.17763.1 (WinBuild.160101.0800)
  • Product Version: 10.0.17763.1
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/70
  • VirusTotal Link: https://www.virustotal.com/gui/file/a67110c259924e1de43d648c700337226e57d6df55099cac5d4602137706bc81/detection/

File Similarity (ssdeep match)

File Score
C:\windows\system32\ddodiag.exe 69
C:\WINDOWS\system32\ddodiag.exe 72
C:\Windows\system32\ddodiag.exe 69
C:\Windows\system32\ddodiag.exe 72
C:\WINDOWS\system32\ddodiag.exe 58

MIT License. Copyright (c) 2020-2021 Strontic.