bc_tfish.sys

BestCrypt Twofish Algorithm driver for Windows NT

Jetico Inc. Oy

Publisher:
Jetico, Inc.  (signed by Jetico Inc. Oy)

Product:
BestCrypt Twofish Algorithm driver for Windows NT(TM)

Description:
TWOFISH Algorithm Driver

Version:
4.8 built by: WinDDK

MD5:
c9c4917a56529d7776284cdc6747c542

SHA-1:
18df967be38545d96be9c06a099d2f7b4b8be624

SHA-256:
f5dca1c3096c3f3c4805eb1d31442a998d1223bdd062093da264d3e1b3333efd

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 6:56:20 AM UTC  (today)

File size:
67.6 KB (69,248 bytes)

Product version:
4.8

Copyright:
Copyright (C) Jetico, Inc. 1994-2008

Original file name:
bc_tfish.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\drivers_2\driversxp_ia64\bc_tfish.sys

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
8/28/2015 8:00:00 AM

Valid to:
8/27/2018 8:00:00 PM

Subject:
CN=Jetico Inc. Oy, O=Jetico Inc. Oy, L=Espoo, S=Uusimaa, C=FI

Issuer:
CN=DigiCert High Assurance Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
09A129FF53CCBA911A4D44EC015F21D2

File PE Metadata
Compilation timestamp:
8/11/2016 7:30:43 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
1536:A7PRDRyg4NMR9oRTP2Icmq36oS10Os1pSXyDq3boD:A6gqNcmqq01pSXyaoD

Entry address:
0xE040

Entry point:
A0, 80, 02, 00, 00, 00, 00, 00, 00, 20, 22, 00, 00, 00, 00, 00, 74, 00, 76, 00, 00, 00, 00, 00, 00, BE, 01, 00, 00, 00, 00, 00, C0, B3, 01, 00, 00, 00, 00, 00, 00, 20, 22, 00, 00, 00, 00, 00, E0, 46, 01, 00, 00, 00, 00, 00, 00, 20, 22, 00, 00, 00, 00, 00, 80, 28, 01, 00, 00, 00, 00, 00, 00, 20, 22, 00, 00, 00, 00, 00, 80, 47, 01, 00, 00, 00, 00, 00, 00, 20, 22, 00, 00, 00, 00, 00, 00, 43, 01, 00, 00, 00, 00, 00, 00, 20, 22, 00, 00, 00, 00, 00, 60, 3F, 01, 00, 00, 00, 00, 00, 00, 20, 22, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.1284

Code size:
43 KB (44,032 bytes)

Scan bc_tfish.sys - Powered by Reason Core Security