device_tool.exe

Windows Win 7 DDK driver

Rapid7 LLC

Publisher:
Windows (R) Win 7 DDK provider  (signed by Rapid7 LLC)

Product:
Windows (R) Win 7 DDK driver

Description:
Derived from DevCon DDK sample

Version:
6.1.7600.16385 built by: WinDDK

MD5:
7998a6be680bcd2e474f276808a34c4f

SHA-1:
e89bef477112c4366788886f9dd36b9f1e5f5cb5

SHA-256:
ecf0e575d31558212a28fb0fdb82bec60ec7bb5bacdc9e7e238d24838871eb00

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/25/2024 6:51:55 PM UTC  (today)

File size:
82.3 KB (84,224 bytes)

Product version:
6.1.7600.16385

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
Derived from DevCon DDK sample

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
12/6/2010 5:19:19 PM

Valid to:
12/6/2013 5:19:14 PM

Subject:
CN=Rapid7 LLC, OU=Metasploit, O=Rapid7 LLC, L=Boston, S=Massachusetts, C=US

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000012CBCAC73D8

File PE Metadata
Compilation timestamp:
12/1/2010 5:48:42 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
768:hqhT5+KybRpnE8K74kca7NeAylubhkt4U2BZY982BSOe9oKSJ2SLD0BEZWkZQXLu:h0+KY04RMxylGkt4Q9F4O7WLX6

Entry address:
0x6494

Entry point:
E8, 28, 06, 00, 00, E9, C3, FD, FF, FF, CC, CC, CC, CC, CC, CC, FF, 25, 84, 11, 00, 01, CC, CC, CC, CC, CC, CC, FF, 25, E0, 11, 00, 01, CC, CC, CC, CC, CC, 3B, 0D, B0, 81, 00, 01, 75, 03, C2, 00, 00, E9, 8C, 06, 00, 00, CC, CC, CC, CC, CC, 51, 8D, 4C, 24, 04, 2B, C8, 1B, C0, F7, D0, 23, C8, 8B, C4, 25, 00, F0, FF, FF, 3B, C8, 72, 0A, 8B, C1, 59, 94, 8B, 00, 89, 04, 24, C3, 2D, 00, 10, 00, 00, 85, 00, EB, E9, CC, CC, CC, CC, CC, FF, 25, 88, 11, 00, 01, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC...
 
[+]

Code size:
27 KB (27,648 bytes)

Scan device_tool.exe - Powered by Reason Core Security