cheano_drv.sys

杭州易玩科技有限公司

It runs as a Windows 64-bit kernel mode device driver named “cheano_drv”.
Publisher:
杭州易玩科技有限公司  (signed and verified)

MD5:
8b88fdbbd4914e12e67c86400b5bba5e

SHA-1:
846d24a3b58014141edb8bea50a6409b50232bbc

SHA-256:
23227f85f587052673e1fdb7b7adf86e43ada6136606d501eb1851dc99a06a15

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 6:35:50 PM UTC  (today)

File size:
1.5 MB (1,522,656 bytes)

File type:
Driver (Win64 SYS)

Common path:
C:\Program Files\steam\steamapps\common\counter-strike global offensive\bin\cheano_drv.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
10/27/2016 3:24:26 PM

Valid to:
10/28/2018 3:24:26 PM

Subject:
CN=杭州易玩科技有限公司, OU=IT Dept., O=杭州易玩科技有限公司, L=杭州, S=浙江, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - G3, O=GlobalSign nv-sa, C=BE

Serial number:
321F9F95A082BB2F44543056

File PE Metadata
Compilation timestamp:
11/27/2016 10:14:44 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

Entry address:
0x29BCDB

Entry point:
EB, 08, 05, 55, 00, 00, 00, 00, 00, 00, E9, 16, 23, FF, FF, A1, 93, A3, DC, 49, 00, B8, D8, 02, 93, EA, 96, 97, B1, D5, 30, C8, 46, 11, 07, A7, FE, 75, 46, 2D, B6, 9F, 8A, F3, 4C, 1D, 95, D7, 08, A2, E8, 9A, A0, BF, D3, 39, F9, 29, 2A, 9D, 55, 59, E6, 31, 2D, 52, 59, 00, E3, 2D, 52, 59, 98, DF, 29, 52, 59, BC, 07, 29, 52, 59, 3C, 5F, 29, 52, 59, C9, 9A, 26, 52, 59, 8D, 8A, 8C, AB, 59, 0D, C2, D1, A8, A6, 0B, 78, E8, AD, A6, C6, ED, E9, AD, A6, F3, B0, E2, AD, A6, 02, C9, E9, AD, A6, E0, EB, E9, AD, A6, B8...
 
[+]

Entropy:
7.9210  (probably packed)

Code size:
27.5 KB (28,160 bytes)

Driver
Display name:
cheano_drv

Type:
Kernel device driver (KernelDriver)


Scan cheano_drv.sys - Powered by Reason Core Security