gemc038.sys

Wiselogic Co., Ltd.

It runs as a Windows 64-bit kernel mode device driver named “GEMC038”.
Publisher:
Wiselogic Co., Ltd.  (signed and verified)

MD5:
a21ec6f082cff77cf454ff34688a5f28

SHA-1:
d1ef64d88615d49eb80a6306399b32a9f752d97c

SHA-256:
c73d34f21e9a2a66287fdafb118a49c30d98c8233ee9721caca9066b0551aaae

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 7:11:41 AM UTC  (today)

File size:
29.7 KB (30,424 bytes)

File type:
Driver (Win64 SYS)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/20/2014 7:00:00 AM

Valid to:
2/19/2016 6:59:59 AM

Subject:
CN="Wiselogic Co., Ltd.", O="Wiselogic Co., Ltd.", L=Gangnam gu, S=Seoul, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1B0D972817EE51F8B11024C8B3933427

File PE Metadata
Compilation timestamp:
12/30/2014 4:00:21 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
384:0yYJQaPfdvbM2DJEJACRlWVeHPPODP+pV0eozSUnYPLQa6jepeMFvH:0rQH2DiOCdPbOWUymIf

Entry address:
0x9064

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, 8E, 7F, FF, FF, CC, CC, B0, 90, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 02, 93, 00, 00, 00, 60, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 70, 91, 00, 00, 00, 00, 00, 00, 88, 91, 00, 00, 00, 00, 00, 00, 98, 91, 00, 00, 00, 00, 00, 00, B0, 91, 00, 00, 00, 00, 00, 00, C2, 91, 00, 00, 00, 00, 00, 00, DA, 91, 00, 00, 00, 00, 00, 00, F0, 91, 00, 00...
 
[+]

Entropy:
6.1979

Code size:
17.5 KB (17,920 bytes)

Driver
Display name:
GEMC038

Type:
Kernel device driver (KernelDriver)


Scan gemc038.sys - Powered by Reason Core Security