Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

2.2.0.19 12.00%
2.2.0.18 4.00%
2.0.0.30 8.00%
2.0.0.18 28.00%
2.0.0.16 24.00%
2.0.0.11 20.00%
2.0.0.11 4.00%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExW, StartServiceCtrlDispatcherW, RegisterServiceCtrlHandlerExW, SetSecurityDescriptorDacl, OpenThreadToken, OpenProcessToken, ControlService, DeleteService, CreateServiceW, SetServiceStatus, GetTokenInformation, SetSecurityDescriptorGroup, SetSecurityDescriptorOwner, InitializeSecurityDescriptor, IsValidSid, GetLengthSid, CopySid, OpenSCManagerW, OpenServiceW, CloseServiceHandle, RegisterEventSourceW, ReportEventW, DeregisterEventSource, RegEnumKeyExW, RegQueryInfoKeyW, RegSetValueExW, RegCloseKey, RegDeleteValueW, RegDeleteKeyW, RegCreateKeyExW, RegOpenKeyExW
kernel32.dll
SizeofResource, LoadResource, FindResourceW, LoadLibraryExW, GetDiskFreeSpaceExW, GetVolumeNameForVolumeMountPointW, GetVolumeInformationW, SetVolumeLabelW, LocalAlloc, LocalFree, SetLastError, WaitForSingleObject, CancelIo, GetOverlappedResult, WaitForMultipleObjects, CloseHandle, DeviceIoControl, CreateEventW, CreateFileW, Sleep, LoadLibraryW, GetDriveTypeW, LockResource, FindResourceExW, GetVersion, GetLogicalDrives, ReleaseMutex, SetEvent, ExitThread, CreateThread, MultiByteToWideChar, MapViewOfFile, GetDiskFreeSpaceW, GetVersionExW, ResetEvent, GetCurrentProcess, GetCurrentThread, GetCurrentThreadId, CreateFileMappingW, CreateMutexW, InitializeCriticalSection, GetCommandLineW, HeapDestroy, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, GetOEMCP, GetACP, GetCPInfo, IsProcessorFeaturePresent, TerminateProcess, IsDebuggerPresent, UnhandledExceptionFilter, GetSystemTimeAsFileTime, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, FreeLibrary, InterlockedDecrement, InterlockedIncrement, GetModuleFileNameW, LeaveCriticalSection, EnterCriticalSection, lstrcmpiW, GetModuleHandleW, GetProcAddress, DeleteCriticalSection, InitializeCriticalSectionAndSpinCount, GetLastError, RaiseException, lstrlenW, WriteConsoleW, IsValidCodePage, GetStringTypeW, LCMapStringW, WideCharToMultiByte, SetFilePointer, GetConsoleCP, GetConsoleMode, FlushFileBuffers, SetStdHandle, UnmapViewOfFile, HeapCreate, TlsFree, TlsSetValue, TlsGetValue, TlsAlloc, GetFileType, SetHandleCount, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetStdHandle, WriteFile, ExitProcess, SetUnhandledExceptionFilter, VirtualQuery, GetSystemInfo, VirtualAlloc, VirtualProtect, EncodePointer, DecodePointer, RtlUnwind, GetStartupInfoW, HeapSetInformation
ole32.dll
CoTaskMemAlloc, CoTaskMemRealloc, CoTaskMemFree, CoReleaseMarshalData, CreateStreamOnHGlobal, CoUnmarshalInterface, ProgIDFromCLSID, CoCreateInstance, CoInitialize, CoUninitialize, CoRevokeClassObject, CoRegisterClassObject, StringFromGUID2, CoInitializeSecurity, CoAddRefServerProcess, CoReleaseServerProcess, CoInitializeEx, CoMarshalInterface
powrprof.dll
GetPwrDiskSpindownRange
setupapi.dll
CM_Get_DevNode_Registry_PropertyW, SetupDiDestroyDeviceInfoList, SetupDiGetDeviceInterfaceDetailW, SetupDiEnumDeviceInterfaces, SetupDiGetClassDevsW, SetupDiGetDeviceRegistryPropertyW, SetupDiOpenDeviceInterfaceW, SetupDiCreateDeviceInfoList, CM_Get_Parent, CM_Locate_DevNodeW, CM_Get_Device_IDW
shlwapi.dll
SHRegSetUSValueW
user32.dll
CharNextW, LoadStringW, MessageBoxW, CharUpperW, GetMessageW, DispatchMessageW, UnregisterDeviceNotification, PostThreadMessageW, wsprintfW, RegisterDeviceNotificationW, TranslateMessage

WDDriveService.exe

WDDriveService.exe by Western Digital Technologies (Signed)

Remove WDDriveService.exe
Version:   2.0.0.11
MD5:   4cfe6128e3b9405ce215d8bbd97209af
SHA1:   cfaaebfec1bc884537c6088b144ec345cc76bddf
SHA256:   40dd1f356f7389aa194596ec64b8679b0ca2b52d405e137b3f56597e02d3b54d

Overview

wddriveservice.exe runs as a service under the name WDDriveService (WDDriveService) with extensive SYSTEM privileges (full administrator access). The file is digitally signed by Western Digital Technologies which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:wddriveservice.exe
Publisher:Western Digital Technologies, Inc.
Product name:WDDriveService.exe
Description:WD Drive Service
Typical file path:C:\Program Files\western digital\wd drive manager\wddriveservice.exe
File version:2.0.0.11
Size:263.86 KB (270,192 bytes)
Build date:3/21/2013 8:09 AM
Certificate
Issued to:Western Digital Technologies
Authority (CA):VeriSign
Effective date:Monday, October 11, 2010
Expiration date:Friday, September 20, 2013
Digital DNA
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • WDDriveService
  • 'WDDriveService' (WD Drive Manager)
Network connections
  • [UDP] listens on port 4067

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00101972%
    0.028634%
    Kernel CPU:0.00043439%
    0.013761%
    User CPU:0.00058533%
    0.014873%
    Kernel CPU time:23,482,665 ms/min
    100,923,805ms/min
    CPU cycles:30,293,655/sec
    17,470,203/sec
    Context switches:300/sec
    284/sec
    Memory
    Private memory:12.69 MB
    21.59 MB
    Private (maximum):13.72 MB
    Private (minimum):12.55 MB
    Non-paged memory:12.69 MB
    21.59 MB
    Virtual memory:82.58 MB
    140.96 MB
    Virtual memory (peak):90.28 MB
    169.69 MB
    Working set:13.26 MB
    18.61 MB
    Working set (peak):16.47 MB
    37.95 MB
    Page faults:29,798,322/min
    2,039/min
    I/O
    I/O read transfer:34.43 KB/sec
    1.02 MB/min
    I/O read operations:1,852/sec
    343/min
    I/O write transfer:0 Bytes/sec
    274.99 KB/min
    I/O write operations:1/sec
    227/min
    I/O other transfer:266.36 KB/sec
    448.09 KB/min
    I/O other operations:1,978/sec
    1,671/min
    Resource allocations
    Threads:26
    12
    Handles:391
    600
    GUI GDI count:4
    103
    GUI USER count:14
    49

    BehaviorsProcess properties

    Integrety level:System
    Platform:64-bit
    Command line:"C:\Program Files\western digital\wd drive manager\wddriveservice.exe"
    Owner:SYSTEM
    Windows Service
    Service name:WDDriveService
    Display name:WDDriveService
    Description:“Provides discovery of WD Drives”
    Type:Win32OwnProcess
    Parent process:services.exe (Services and Controller app by Microsoft)

    ResourcesThreads

    Averages
     
    WDDriveService.exe (main module)
    Total CPU:0.77266212%
    0.272967%
    Kernel CPU:0.73292089%
    0.107585%
    User CPU:0.03974123%
    0.165382%
    CPU cycles:1,053,140/sec
    5,741,424/sec
    Context switches:6/sec
    79/sec
    Memory:860 KB
    1.16 MB
    wow64.dll (Win32 Emulation on NT64 by Microsoft)
    Total CPU:0.23230567%
    Kernel CPU:0.11496487%
    User CPU:0.11734081%
    CPU cycles:4,241,101/sec
    Context switches:6/sec
    Memory:252 KB
    WINHTTP.dll
    Total CPU:0.20127071%
    Kernel CPU:0.00005181%
    User CPU:0.20121890%
    Memory:356 KB
    ole32.dll
    Total CPU:0.09596823%
    Kernel CPU:0.04013860%
    User CPU:0.05582963%
    Context switches:6/sec
    Memory:1.24 MB
    advapi32.dll (Advanced Windows 32 Base API by Microsoft)
    Total CPU:0.04700943%
    Kernel CPU:0.03322927%
    User CPU:0.01378016%
    Context switches:23/sec
    Memory:620 KB
    ntdll.dll
    Total CPU:0.02462654%
    Kernel CPU:0.01253751%
    User CPU:0.01208903%
    CPU cycles:405,258/sec
    Context switches:2/sec
    Memory:1.66 MB
    xpsp2res.dll
    Total CPU:0.00228832%
    Kernel CPU:0.00157218%
    User CPU:0.00071615%
    Context switches:7/sec
    Memory:2.77 MB
    mswsock.dll (Microsoft Windows Sockets 2.0 Service Provider by Microsoft)
    Total CPU:0.00073716%
    Kernel CPU:0.00063946%
    User CPU:0.00009770%
    Memory:252 KB

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Home Premium 24.00%
    Windows 7 Home Basic 16.00%
    Windows 8.1 Pro 12.00%
    Windows 7 Ultimate 12.00%
    Microsoft Windows XP 12.00%
    Windows 8 8.00%
    Windows 7 Enterprise 8.00%
    Windows 8.1 4.00%
    Windows 7 Professional 4.00%

    Distribution by countryDistribution by country

    United States installs about 45.83% of WDDriveService.exe.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Dell 25.81%
    Hewlett-Packard 22.58%
    Toshiba 19.35%
    Acer 16.13%
    Lenovo 12.90%
    American Megatrends 3.23%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE