sageusb.sys

SageTech ERM 1.0

SageTech

It runs as a Windows kernel mode device driver named “sageusb”.
Publisher:
SageTech Co.,Ltd  (signed by SageTech)

Product:
SageTech ERM 1.0

Description:
SageTech ERM 1.0 (sageusb.sys)

Version:
4,50,25,12179

MD5:
11d4191a8b3595d8f21032d62302c36b

SHA-1:
18b5c24e32dcdfc364bceefee18937d5140ffb9b

SHA-256:
4414201576d890f8401fe3de97e379674b3e01b96b43fcd3205e8931321dfa4d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/28/2024 4:36:45 AM UTC  (today)

File size:
19.7 KB (20,216 bytes)

Product version:
4,50,25,12179

Copyright:
(C) SageTech Co.,Ltd. All rights reserved.

Original file name:
sageusb.sys

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\sageusb.sys

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
5/20/2008 8:00:00 AM

Valid to:
5/21/2011 7:59:59 AM

Subject:
CN=SageTech, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SageTech, L=San Jose, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1DB75B5C053C3EA3D15F15F02166C6B4

File PE Metadata
Compilation timestamp:
1/6/2011 6:47:36 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
7.10

CTPH (ssdeep):
384:WIyPb+dkgT3GcUDMP10xYcMiQI2jy5jOBRIweYJLWuob3E6ja:ndkgTnUodKYcRrlwnL6b3Ema

Entry address:
0x280E

Entry point:
8B, FF, 55, 8B, EC, A1, 84, 0B, 01, 00, 85, C0, B9, 40, BB, 00, 00, 74, 04, 3B, C1, 75, 23, 8B, 15, E0, 07, 01, 00, B8, 84, 0B, 01, 00, C1, E8, 08, 33, 02, 25, FF, FF, 00, 00, A3, 84, 0B, 01, 00, 75, 07, 8B, C1, A3, 84, 0B, 01, 00, F7, D0, A3, 80, 0B, 01, 00, 5D, E9, 31, FF, FF, FF, CC, CC, CC, 80, 28, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, AC, 2B, 00, 00, 80, 07, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 5C, 29, 00, 00, 78, 29, 00, 00, 8A, 29, 00, 00, A8, 29...
 
[+]

Entropy:
6.5599

Code size:
9 KB (9,216 bytes)

Driver
Display name:
sageusb

Type:
Kernel device driver (KernelDriver)


Scan sageusb.sys - Powered by Reason Core Security