What is DRWUI.exe by CHENGDU YIWO Tech Development Co., Ltd?

DRWUI.exe is part of EaseUSDataRecoveryWizard and developed by CHENGDU YIWO Tech Development Co., Ltd according to the DRWUI.exe file information. In certain cases, malicious trackers and scripts can disguise themselves as legitimate files, like DRWUI.exe, leading to glitches, overload and system malfunctions.

In such cases, DRWUI.exe can create unnecessary records and folders in the Windows registry. Check your PC to eliminate possible application conflicts and system failures.

System Information:
Your machine is currently running: unknown
Outbyte PC Repair is incompatible with your operating system.

Special offer
Select Language:

DRWUI.exe's description is "EaseUSDataRecoveryWizard".

DRWUI.exe is digitally signed by CHENGDU YIWO Tech Development Co., Ltd.

DRWUI.exe is an .exe file.

DRWUI.exe is usually located in the following folder:

%PROGRAMFILES(X64)%\EaseUS\EaseUS Data Recovery Wizard\DRWUI.exe

DRWUI.exe basic information

Description
EaseUSDataRecoveryWizard
Internal Name
Data Recovery Wizard
Version
12. 8. 0
Hash
B9A4D5BCC485618D558FF728DF41A914

DRWUI.exe running processes

%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\PowerShell.exe
%PROGRAMFILES(X64)%\EaseUS\EaseUS Data Recovery Wizard\EuDownloader.exe
%SYSTEMROOT%\System32\WINDOWSPOWERSHELL\v1.0\PowerShell.exe
%SYSTEMROOT%\System32\wbem\WMIC.exe
%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\PowerShell.exe
%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\PowerShell.exe
%PROGRAMFILES(X86)%\Microsoft\Edge\Application\msedge.exe
%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\PowerShell.exe
%PROGRAMFILES(X86)%\Microsoft\Edge\Application\msedge.exe

DRWUI.exe actions

List of the actions DRWUI.exe executes on a user's PC
%PROGRAMFILES(X64)%\EaseUS\EaseUS Data Recovery Wizard\DefaultLog.txt new file created
%PROGRAMFILES(X64)%\EaseUS\EaseUS Data Recovery Wizard\DrwUI.log new file created
HKEY_LOCAL_MACHINE\SOFTWARE\DRWNewFree new registry key created
HKEY_LOCAL_MACHINE\SOFTWARE\DRWNewFree\Metadata new registry key created
HKEY_LOCAL_MACHINE\SOFTWARE\DRWNewFree\Metadata\\EnableTotalSize new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\DRWNewFree\Metadata\\EnableTotalFileCount new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\DRWNewFree\Metadata\\RecoveredTotalSize new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\DRWNewFree\Metadata\\RecoveredTotalFileCount new registry key parameter created
%PROGRAMFILES(X64)%\EaseUS\EaseUS Data Recovery Wizard\Eaolog.log new file created
%PROGRAMFILES(X64)%\EaseUS\EaseUS Data Recovery Wizard\recoveryFree.ini new file created
%ALLUSERSPROFILE%\SystemAcCrux\fefe7b8f3862ba4dac.bin new file created
%PROGRAMFILES(X64)%\EaseUS\EaseUS Data Recovery Wizard\EuCfg.bin new file created
%ALLUSERSPROFILE%\SystemAcCrux new catalogue created
%PROGRAMFILES(X64)%\EaseUS\EaseUS Data Recovery Wizard\videoRepair.txt new file created
HKEY_LOCAL_MACHINE\SOFTWARE\DRWNewTrial new registry key created
HKEY_LOCAL_MACHINE\SOFTWARE\DRWNewTrial\Metadata new registry key created
HKEY_LOCAL_MACHINE\SOFTWARE\DRWNewTrial\Metadata\\EnableTotalSize new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\DRWNewTrial\Metadata\\EnableTotalFileCount new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\DRWNewTrial\Metadata\\RecoveredTotalSize new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\DRWNewTrial\Metadata\\RecoveredTotalFileCount new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\DRWNewTrial\Metadata\\Config new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\DRWNewTrial\Metadata\\Times new registry key parameter created
%PROGRAMFILES(X64)%\EaseUS\EaseUS Data Recovery Wizard\recoveryTrial.ini new file created
%PROGRAMFILES(X64)%\EaseUS\EaseUS Data Recovery Wizard\CalcPartition.log new file created
%PROGRAMFILES(X64)%\EaseUS\EaseUS Data Recovery Wizard\SaveScan new catalogue created
%TMP%\~DF56B2B7D1554D986F.TMP new file created
%TMP%\EaseUS new catalogue created
%TMP%\EaseUS\UserRate new catalogue created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn985C.tmp new file created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\f6\52C64B7E\\@C:\Windows\system32\unregmp2.exe,-9905 new registry key parameter created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn985C.tmp file moved
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\f6\52C64B7E\\@C:\Program Files (x86)\Microsoft Office\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\oregres.dll,-120 new registry key parameter created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn985D.tmp new file created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\f6\52C64B7E\\@C:\Program Files (x86)\Microsoft Office\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\oregres.dll,-115 new registry key parameter created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn985D.tmp file moved
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\f6\52C64B7E\\@C:\Windows\System32\msimsg.dll,-34 new registry key parameter created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn985E.tmp new file created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\f6\52C64B7E\\@C:\Windows\System32\msxml3r.dll,-1 new registry key parameter created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn985E.tmp file moved
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\f6\52C64B7E\\@C:\Windows\System32\ieframe.dll,-24585 new registry key parameter created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn985F.tmp new file created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\f6\52C64B7E\\@C:\Windows\System32\wshext.dll,-4804 new registry key parameter created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn985F.tmp file moved
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\f6\52C64B7E\\@C:\Windows\System32\ieframe.dll,-914 new registry key parameter created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9860.tmp new file created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\f6\52C64B7E\\@cryptext.dll,-6145 new registry key parameter created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9860.tmp file moved
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\f6\52C64B7E\\@C:\Program Files (x86)\Microsoft Office\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\oregres.dll,-107 new registry key parameter created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9871.tmp new file created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MrtCache\C:%5CProgram Files%5CWindowsApps%5CMicrosoft.Print3D_3.3.791.0_x64__8wekyb3d8bbwe%5Cmicrosoft.system.package.metadata%5CS-1-5-21-2492957773-3398098266-1612527756-1001-MergedResources-1.pri\1d65012fe442e97\f8e0058f new registry key created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9871.tmp file moved
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MrtCache\C:%5CProgram Files%5CWindowsApps%5CMicrosoft.Print3D_3.3.791.0_x64__8wekyb3d8bbwe%5Cmicrosoft.system.package.metadata%5CS-1-5-21-2492957773-3398098266-1612527756-1001-MergedResources-1.pri\1d65012fe442e97\f8e0058f\\@{Microsoft.Print3D_3.3.791.0_x64__8wekyb3d8bbwe?ms-resource://Microsoft.Print3D/resources/AppFileTypeName} new registry key parameter created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9872.tmp new file created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MrtCache\C:%5CProgram Files%5CWindowsApps%5CMicrosoft.Print3D_3.3.791.0_x64__8wekyb3d8bbwe%5Cmicrosoft.system.package.metadata%5CS-1-5-21-2492957773-3398098266-1612527756-1001-MergedResources-1.pri\1d65012fe442e97\8928da5d new registry key created
\EaseUS Data Recovery Wizard\DrwUI.log new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9872.tmp file moved
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MrtCache\C:%5CProgram Files%5CWindowsApps%5CMicrosoft.Print3D_3.3.791.0_x64__8wekyb3d8bbwe%5Cmicrosoft.system.package.metadata%5CS-1-5-21-2492957773-3398098266-1612527756-1001-MergedResources-1.pri\1d65012fe442e97\8928da5d\\@{microsoft.print3d_3.3.791.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.print3d/files/assets/manifestassets/icon.png} new registry key parameter created
\EaseUS Data Recovery Wizard\DefaultLog.txt new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9873.tmp new file created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\f6\52C64B7E\\@C:\Windows\System32\setupapi.dll,-2000 new registry key parameter created
\EaseUS Data Recovery Wizard\recoveryTrial.ini new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9873.tmp file moved
\EaseUS Data Recovery Wizard\recoveryFree.ini new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9874.tmp new file created
\EaseUS Data Recovery Wizard\Eaolog.log new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9874.tmp file moved
\EaseUS Data Recovery Wizard\EuCfg.bin new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9875.tmp new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9875.tmp file moved
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9886.tmp new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9886.tmp file moved
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9887.tmp new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9887.tmp file moved
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9888.tmp new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9888.tmp file moved
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9889.tmp new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn9889.tmp file moved
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn988A.tmp new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\IconCacheToDelete\icn988A.tmp file moved
%LOCALAPPDATA%\Microsoft\Windows\Explorer\iconcache_idx.db new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\iconcache_16.db new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\iconcache_32.db new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\iconcache_48.db new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\iconcache_96.db new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\iconcache_256.db new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\iconcache_768.db new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\iconcache_1280.db new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\iconcache_1920.db new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\iconcache_2560.db new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\iconcache_sr.db new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\iconcache_wide.db new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\iconcache_exif.db new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\iconcache_wide_alternate.db new file created
%LOCALAPPDATA%\Microsoft\Windows\Explorer\iconcache_custom_stream.db new file created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\93\553DB5C3\\@C:\WINDOWS\regedit.exe,-309 new registry key parameter created
%TMP%\~DF1BD7E06D9CB6C302.TMP new file created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\93\553DB5C3\\@C:\Program Files\Microsoft Office\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\oregres.dll,-127 new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\93\553DB5C3\\@C:\Program Files\Microsoft Office\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\oregres.dll,-120 new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\93\553DB5C3\\@C:\WINDOWS\System32\msxml3r.dll,-2 new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\4c\71F23C34\\@C:\Program Files (x86)\Microsoft Office\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\oregres.dll,-115 new registry key parameter created

DRWUI.exe actions

Similar .exe files creating new elements on your PC with similar volume:

DRWUI.exe's virus check

79%

of antivirus scans don't detect any virus in it

16%

of antivirus scans detect it as a potentially unwanted program

5%

of antivirus scans detect a virus in it

DRWUI.exe user rating

74%

of users rate DRWUI.exe as a useful program

25%

of users find DRWUI.exe to be a potentially unwanted program

1%

of users find DRWUI.exe to be malicious or a scam

Do you know DRWUI.exe?

Rate the DRWUI.exe file
malicious or a scam program
potentially unwanted program
useful program
Thank you!

Popular .exe files


All .exe files >
Outbyte PC Repair
All-in-one Windows optimization tool

Fix system elements

Eliminate file conflicts

Restore system stability

Delete junk files

Download PC Repair See more information about Outbyte and uninstall instructions. Please review EULA and Privacy Policy.