fldprt.sys

Alilang System

Alibaba (China) Network Technology Co.,Ltd.

Publisher:
Alibaba inc.  (signed by Alibaba (China) Network Technology Co.,Ltd.)

Product:
Alilang System

Description:
AliLang Protection System

Version:
1.0.0.185

MD5:
09e7d06a0280e24b4651bacee1507fbc

SHA-1:
35be95e6fb78d4495c770bde5a01b2714391fd04

SHA-256:
d26b7d5f8e232a2905d805e2530848b8e046cc4bb90612abcbbf6a25d85ec6a5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 7:45:03 PM UTC  (today)

File size:
27.2 KB (27,864 bytes)

Product version:
2.1.8

Copyright:
Copyright ? 2015<Alibaba inc.>

Original file name:
FldPrt

File type:
Driver (Win32 SYS)

Common path:
C:\ProgramData\alibaba\alilang\x86\fldprt.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/23/2014 8:00:00 AM

Valid to:
6/22/2016 7:59:59 AM

Subject:
CN="Alibaba (China) Network Technology Co.,Ltd.", OU=RDC, O="Alibaba (China) Network Technology Co.,Ltd.", L=Hangzhou, S=Zhejiang, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
030C297199C3389A707C3CBF4A7E9E45

File PE Metadata
Compilation timestamp:
12/10/2015 12:22:53 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
384:e+lrOqjbOjCW3X7LDVUU7GqTOTXRbmDsnYPL1yUHeMLWa:e+Aqja2WnHD9i5mDse

Entry address:
0x703E

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, AE, A4, FF, FF, CC, CC, BC, 70, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 32, 75, 00, 00, 30, 50, 00, 00, 8C, 70, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 70, 76, 00, 00, 00, 50, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 42, 76, 00, 00, 1E, 76, 00, 00, 00, 76, 00, 00, E4, 75, 00, 00, D0, 75, 00, 00, BA, 75, 00, 00, 9E, 75, 00, 00, 7E, 75, 00, 00, 62, 75, 00, 00, 4C, 75, 00, 00, 56, 76, 00, 00, 00, 00, 00, 00, 34, 72...
 
[+]

Entropy:
6.5204

Code size:
14.5 KB (14,848 bytes)

Scan fldprt.sys - Powered by Reason Core Security