dvdfabio.sys

DVDFab Virtual Drive

Fengtao Software Inc.

It runs as a Windows 64-bit kernel mode device driver named “dvdfabio”.
Publisher:
DVDFab Software  (signed by Fengtao Software Inc.)

Product:
DVDFab Virtual Drive

Description:
DVDFabIO Device Driver

Version:
1.5.1.1

MD5:
47bcfbce2bd6db1495ce39ba30dbbb5f

SHA-1:
037197eb43b049d62c2f7ec1edfdd9229af41b1b

SHA-256:
a661b440aa4371903d8b370c6fac8e10a8632458f81e2d736d5b3a77bd2f45a1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/4/2024 7:50:39 AM UTC  (today)

File size:
12.4 KB (12,648 bytes)

Product version:
1.5.1.1

Copyright:
Copyright (C) 2014 Fengtao Software

Original file name:
dvdfabio.sys

File type:
Driver (Win64 SYS)

Common path:
C:\Windows\System32\drivers\dvdfabio.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
9/14/2015 1:09:45 PM

Valid to:
8/4/2018 11:16:57 AM

Subject:
CN=Fengtao Software Inc., O=Fengtao Software Inc., L=Beijing, S=Beijing, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121E2B067DC6C4CC14498C65561316A9EAC

File PE Metadata
Compilation timestamp:
8/29/2014 5:57:41 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
10.0

CTPH (ssdeep):
192:n7NzxargSjNp2InVTgBxe1HCjWe+PjPKl0iDSCsxxmnBgpCD:7Nzag2Np3n2KtPLK5WJYn3

Entry address:
0x4058

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 99, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, 22, D5, FF, FF, CC, CC, A0, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, A4, 41, 00, 00, 00, 10, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, F8, 40, 00, 00, 00, 00, 00, 00, 0E, 41, 00, 00, 00, 00, 00, 00, 1E, 41, 00, 00, 00, 00, 00, 00, 36, 41, 00, 00, 00, 00, 00, 00, 44, 41, 00, 00, 00, 00, 00, 00, 50, 41, 00, 00, 00, 00, 00, 00, 62, 41, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.4246

Code size:
2.5 KB (2,560 bytes)

Driver
Display name:
dvdfabio

Type:
Kernel device driver (KernelDriver)


Scan dvdfabio.sys - Powered by Reason Core Security