qituservicex64.sys

Android Phone Manager Driver

Shenzhen Qitu Software Technology Co.,Ltd.

It runs as a Windows 64-bit kernel mode device driver named “QituManagerDriver”.
Publisher:
ShenZhen Qitu Soft Company Limited  (signed by Shenzhen Qitu Software Technology Co.,Ltd.)

Product:
Android Phone Manager Driver

Description:
Qitu Android Phone Manager Driver

Version:
6.1.7600.16385 built by: WinDDK

MD5:
d1b93da1603666d933ef03ca546cb79c

SHA-1:
92a6f9cf22b62a98bd67d3412202c63f3a81535c

SHA-256:
e11621483cf35256f2dbd4fea0ff5c087f9bdf789d428ab6715f4bd8b1f36d8a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/26/2024 2:28:55 PM UTC  (today)

File size:
20.8 KB (21,328 bytes)

Product version:
6.1.7600.16385

Copyright:
Copyright (C) 2014 7to.cn All Rights Reserved.

Original file name:
QituService.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\qituservicex64.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/5/2016 4:00:00 PM

Valid to:
12/15/2017 3:59:59 PM

Subject:
CN="Shenzhen Qitu Software Technology Co.,Ltd.", OU=Develop, O="Shenzhen Qitu Software Technology Co.,Ltd.", L=Shenzhen, S=Guangdong, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0DD74F604FFDE0109C34EF14E8FBE1AA

File PE Metadata
Compilation timestamp:
1/8/2016 1:56:53 AM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
384:FsmPT2G0HHTvF17MrRetSeVnZqPLcluT+quEUHeMG8xc:F1CHTvF17MrReUeVLnc

Entry address:
0x5064

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, 86, BF, FF, FF, CC, CC, B0, 50, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 82, 52, 00, 00, 00, 20, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 38, 51, 00, 00, 00, 00, 00, 00, 50, 51, 00, 00, 00, 00, 00, 00, 64, 51, 00, 00, 00, 00, 00, 00, 86, 51, 00, 00, 00, 00, 00, 00, 9E, 51, 00, 00, 00, 00, 00, 00, B0, 51, 00, 00, 00, 00, 00, 00, C0, 51, 00, 00...
 
[+]

Entropy:
6.6324

Code size:
4 KB (4,096 bytes)

Driver
Display name:
QituManagerDriver

Type:
Kernel device driver (KernelDriver)


Scan qituservicex64.sys - Powered by Reason Core Security