gemc000.sys

Wiselogic Co., Ltd.

It runs as a Windows 64-bit kernel mode device driver named “GEMC000”.
Publisher:
Wiselogic Co., Ltd.  (signed and verified)

MD5:
940450a53638bdc5b25f8071541875e4

SHA-1:
cf602781a5286220a6038fee64cd7ad952631412

SHA-256:
8b5f4a34234719cf7a4b95a05d0e444bd0c0ca75177695c98c3a47ba595e117b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 5:38:00 AM UTC  (today)

File size:
29.7 KB (30,424 bytes)

File type:
Driver (Win64 SYS)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/20/2014 7:00:00 AM

Valid to:
2/19/2016 6:59:59 AM

Subject:
CN="Wiselogic Co., Ltd.", O="Wiselogic Co., Ltd.", L=Gangnam gu, S=Seoul, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1B0D972817EE51F8B11024C8B3933427

File PE Metadata
Compilation timestamp:
12/30/2014 4:00:21 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
384:6yYJQaPfdvbM2DJEJACRlWVeHPPODP+pl0eozSUnYPLQa6jepeMFvH:6rQH2DiOCdPLOWUymIf

Entry address:
0x9064

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, 8E, 7F, FF, FF, CC, CC, B0, 90, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 02, 93, 00, 00, 00, 60, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 70, 91, 00, 00, 00, 00, 00, 00, 88, 91, 00, 00, 00, 00, 00, 00, 98, 91, 00, 00, 00, 00, 00, 00, B0, 91, 00, 00, 00, 00, 00, 00, C2, 91, 00, 00, 00, 00, 00, 00, DA, 91, 00, 00, 00, 00, 00, 00, F0, 91, 00, 00...
 
[+]

Entropy:
6.1976

Code size:
17.5 KB (17,920 bytes)

Driver
Display name:
GEMC000

Type:
Kernel device driver (KernelDriver)


Scan gemc000.sys - Powered by Reason Core Security