drivesentryreghookdriver.sys

DriveSentry RegHook Driver

DriveSentry Inc

It runs as a Windows file system device driver named “DriveSentryRegHookDriver”.
Publisher:
DriveSentry Inc.  (signed by DriveSentry Inc)

Product:
DriveSentry RegHook Driver

Version:
1.0.0.11 built by: WinDDK

MD5:
3ee5060afd45218adfbbeb563dff9d7e

SHA-1:
c9ceaa4d095660c758b8c43f5e213a15c243d63d

SHA-256:
fc8a54e4e0f55941f224e606535bb1a9d6c2d43e9167892ba0e7705673c6418c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 6:04:56 AM UTC  (today)

File size:
16.5 KB (16,880 bytes)

Product version:
1.0.0.11

Copyright:
(c) 2006-2011 DriveSentry Inc. All rights reserved.

Original file name:
DriveSentry RegHook Driver

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\drivesentryreghookdriver.sys

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
3/29/2011 12:34:06 PM

Valid to:
4/28/2012 12:34:03 PM

Subject:
CN=DriveSentry Inc, O=DriveSentry Inc, L=Wilmington, S=Delaware, C=US

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000012F0103C115

File PE Metadata
Compilation timestamp:
3/29/2011 2:13:19 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
7.10

CTPH (ssdeep):
384:1E9d22VOOti9wWwPlqv18j+39GehNE5Vg2CKHa:1E9d22VdSdC+tGngwHa

Entry address:
0x18AC

Entry point:
8B, FF, 55, 8B, EC, A1, 84, 0E, 01, 00, 85, C0, B9, 40, BB, 00, 00, 74, 04, 3B, C1, 75, 23, 8B, 15, C4, 0C, 01, 00, B8, 84, 0E, 01, 00, C1, E8, 08, 33, 02, 25, FF, FF, 00, 00, A3, 84, 0E, 01, 00, 75, 07, 8B, C1, A3, 84, 0E, 01, 00, F7, D0, A3, 80, 0E, 01, 00, 5D, E9, 63, FE, FF, FF, CC, 1C, 19, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 24, 1B, 00, 00, 80, 0C, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 98, 19, 00, 00, AA, 19, 00, 00, C2, 19, 00, 00, DA, 19, 00, 00...
 
[+]

Code size:
5.4 KB (5,504 bytes)

Driver
Display name:
DriveSentryRegHookDriver

Description:
DriveSentry registry driver

Type:
File system 'filter' driver (FileSystemDriver)

Group:
FSFilter Anti-Virus

Depends on:
DriveSentryCommsDriver


Scan drivesentryreghookdriver.sys - Powered by Reason Core Security