tmp00000014534fd5c0ef8cbbde

WinRing0

Noriyuki Miyazaki

Publisher:
OpenLibSys.org  (signed by Noriyuki Miyazaki)

Product:
WinRing0

Version:
2.0.0.6

MD5:
3b01f97ec584bfe3f13281501262a5c6

SHA-1:
64cf83849c5e5a009ccc02c28dcafa961ed473da

SHA-256:
cee58db3e6d0949ba61fcca62a56aec1bf22567eb951288ca921f5cccec82af0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 4:25:51 PM UTC  (today)

File size:
512 KB (524,288 bytes)

Product version:
2.0.0.6

Copyright:
Copyright (C) 2007-2010 OpenLibSys.org. All rights reserved.

Original file name:
WinRing0.sys

Language:
Japanese (Japan)

Common path:
C:\windows\temp\tmp00000014534fd5c0ef8cbbde

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
3/11/2010 6:21:52 PM

Valid to:
3/11/2013 6:21:47 PM

Subject:
E=hiyohiyo@crystalmark.info, CN=Noriyuki Miyazaki, C=JP

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
010000000001274D1EB8EB

File PE Metadata
Compilation timestamp:
5/2/2010 6:53:19 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

Entry address:
0xC85

Entry point:
8B, FF, 55, 8B, EC, A1, 00, 0C, 01, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 1A, A1, 98, 0A, 01, 00, 8B, 00, 35, 00, 0C, 01, 00, A3, 00, 0C, 01, 00, 75, 07, 8B, C1, A3, 00, 0C, 01, 00, F7, D0, A3, 04, 0C, 01, 00, 5D, E9, 0D, F9, FF, FF, CC, EC, 0C, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, A4, 0D, 00, 00, 80, 0A, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 14, 0D, 00, 00, 26, 0D, 00, 00, 3E, 0D, 00, 00, 56, 0D, 00, 00, 6C, 0D, 00, 00, 84, 0D, 00, 00, 96...
 
[+]

Entropy:
0.2849

Code size:
1.9 KB (1,920 bytes)

Scan tmp00000014534fd5c0ef8cbbde - Powered by Reason Core Security