ddsxei.sys

ALEJANDRO CORTÉS

It runs as a Windows kernel mode device driver named “ddsxeiservice2”.
Publisher:
ALEJANDRO CORTÉS  (signed and verified)

MD5:
59b71dca5e85e82c6a1a81d4c29035d5

SHA-1:
2e293c070f052aa6b52f80f8b3bb87b6332145d2

SHA-256:
9f53ade62d2429ffeb0c61a62d5ad62b6e8185917d427438ad944add52fda390

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 4:14:55 AM UTC  (today)

File size:
97.8 KB (100,184 bytes)

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Program Files\sxe injected\ddsxei.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/11/2012 10:00:00 PM

Valid to:
12/12/2013 9:59:59 PM

Subject:
CN=ALEJANDRO CORTÉS, OU=Individual Developer, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=No Organization Affiliation, L=QUILMES, S=BUENOS AIRES, C=AR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0C2D144EE6FE0191AED95D1C5706780C

File PE Metadata
Compilation timestamp:
2/22/2013 12:58:28 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
7.0

CTPH (ssdeep):
768:w53ozbV9AiCIQmFkeQZQWAV9bDTuJjJ2C07DFumnIcqLDbsB+snqLzvTMND53dT3:w0OoJbnWlJ2C07hXnoLvsB+sncLS5Nb

Entry address:
0x7704

Entry point:
55, 8B, EC, 6A, FF, 68, 10, BD, 01, 00, 68, A4, B9, 01, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, C4, B8, 53, 56, 57, 89, 65, E8, C7, 45, E4, 00, 00, 00, 00, FF, 15, A4, BA, 01, 00, A3, 40, BE, 01, 00, B9, 40, 00, 00, 00, 33, C0, BF, 80, 0F, 02, 00, F3, AB, B9, 40, 00, 00, 00, 33, C0, BF, C0, C4, 01, 00, F3, AB, B9, 0C, 00, 00, 00, 33, C0, BF, 20, 0F, 02, 00, F3, AB, 66, AB, C7, 45, FC, 00, 00, 00, 00, 68, 0C, BB, 01, 00, 8D, 45, D8, 50, FF, 15, 60, BA, 01, 00, 68, 2C, BB, 01, 00, 8D...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
47.1 KB (48,256 bytes)

Driver
Display name:
ddsxeiservice2

Service name:
ddsxeiservice

Type:
Kernel device driver (KernelDriver)


Scan ddsxei.sys - Powered by Reason Core Security