vdrive.sys

DVDFab Virtual Drive

Fengtao Software Inc.

It runs as a Windows kernel mode device driver named “vdrive”.
Publisher:
DVDFab Software  (signed by Fengtao Software Inc.)

Product:
DVDFab Virtual Drive

Description:
DVDFab Virtual Drive Device Driver

Version:
1.5.1.1

MD5:
4bae57c1c6fb0434dbdb8451a0fca510

SHA-1:
0d07429887168c452955b9358012cb8fbde1fe0b

SHA-256:
044d3b828c5e214915ba3e37d0fb2cb74e9643ec541a9ec84f5b3da9e11be784

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/4/2024 7:50:45 AM UTC  (today)

File size:
35.9 KB (36,712 bytes)

Product version:
1.5.1.1

Copyright:
Copyright (C) 2014 Fengtao Software

Original file name:
vdrive.sys

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\vdrive.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
9/14/2015 1:09:45 PM

Valid to:
8/4/2018 11:16:57 AM

Subject:
CN=Fengtao Software Inc., O=Fengtao Software Inc., L=Beijing, S=Beijing, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121E2B067DC6C4CC14498C65561316A9EAC

File PE Metadata
Compilation timestamp:
8/29/2014 5:57:32 PM

OS version:
5.2

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
10.0

CTPH (ssdeep):
768:NqqtBckqleIMRtdMwOhoJLFxNo0bzZPNVerpCum22PEM:0iukOeNOhoVDNoYvVMCHWM

Entry address:
0x8034

Entry point:
8B, FF, 55, 8B, EC, E8, C2, FF, FF, FF, 5D, E9, EC, EA, FF, FF, C4, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, F4, 81, 00, 00, 1C, 10, 00, 00, D4, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 34, 86, 00, 00, 2C, 10, 00, 00, A8, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 72, 86, 00, 00, 00, 10, 00, 00, B8, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 98, 86, 00, 00, 10, 10, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 50, 86, 00, 00, 5E, 86, 00, 00, 42, 86, 00, 00...
 
[+]

Entropy:
6.8721

Code size:
25.5 KB (26,112 bytes)

Driver
Display name:
vdrive

Type:
Kernel device driver (KernelDriver)

Group:
SCSI Miniport


Scan vdrive.sys - Powered by Reason Core Security