gemc049.sys

Wiselogic Co., Ltd.

It runs as a Windows 64-bit kernel mode device driver named “GEMC049”.
Publisher:
Wiselogic Co., Ltd.  (signed and verified)

MD5:
8768f8e529df2813669a3f86edfff8b7

SHA-1:
bfdc8f86810d143f8dbde93d377fe4aacf5d0eec

SHA-256:
9ea9291f1043d529d52a0cf381ad24419698de8754c35882339ab04a158d479c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 5:57:05 AM UTC  (today)

File size:
29.7 KB (30,424 bytes)

File type:
Driver (Win64 SYS)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/20/2014 7:00:00 AM

Valid to:
2/19/2016 6:59:59 AM

Subject:
CN="Wiselogic Co., Ltd.", O="Wiselogic Co., Ltd.", L=Gangnam gu, S=Seoul, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1B0D972817EE51F8B11024C8B3933427

File PE Metadata
Compilation timestamp:
12/30/2014 4:00:21 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
384:AyYJQaPfdvbM2DJEJACRlWVeHPPODP+pl0eozSUnYPLQa6jepeMFvH:ArQH2DiOCdPrOWUymIf

Entry address:
0x9064

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, 8E, 7F, FF, FF, CC, CC, B0, 90, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 02, 93, 00, 00, 00, 60, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 70, 91, 00, 00, 00, 00, 00, 00, 88, 91, 00, 00, 00, 00, 00, 00, 98, 91, 00, 00, 00, 00, 00, 00, B0, 91, 00, 00, 00, 00, 00, 00, C2, 91, 00, 00, 00, 00, 00, 00, DA, 91, 00, 00, 00, 00, 00, 00, F0, 91, 00, 00...
 
[+]

Entropy:
6.1979

Code size:
17.5 KB (17,920 bytes)

Driver
Display name:
GEMC049

Type:
Kernel device driver (KernelDriver)


Scan gemc049.sys - Powered by Reason Core Security