WinRing0.sys

WinRing0

Noriyuki MIYAZAKI

It runs as a Windows kernel mode device driver named “WinRing0_1_0_1”.
Publisher:
OpenLibSys.org  (signed by Noriyuki MIYAZAKI)

Product:
WinRing0

Version:
1.0.1.2

MD5:
f6a558724f631ba04cdabfeaf99f4b2e

SHA-1:
da86eb2b9224b9987770c167f9b81111da533c48

SHA-256:
ecf25b107475e1ceee90a208c677e29ccca26dc528fdffd0f728a71e6ec04c34

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2025 3:15:28 PM UTC  (today)

File size:
14.3 KB (14,672 bytes)

Product version:
1.0.1.2

Copyright:
Copyright (C) 2007 OpenLibSys.org. All rights reserved.

Original file name:
WinRing0.sys

File type:
Driver (Win32 SYS)

Language:
Japanese (Japan)

Common path:
C:\users\{user}\downloads\memset41\memset\winring0.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
9/24/2007 12:50:55 PM

Valid to:
9/24/2008 12:50:55 PM

Subject:
E=hiyohiyo@crystalmark.info, CN=Noriyuki MIYAZAKI, C=JP

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
01000000000115372421A8

File PE Metadata
Compilation timestamp:
12/15/2007 8:12:49 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
384:6aK/+pGKC8tSXM9H/SqPTWGYOf2OJ06dUb+:hLHrtfSJi

Entry address:
0x1205

Entry point:
8B, FF, 55, 8B, EC, A1, 80, 11, 01, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 1E, 8B, 15, B8, 0F, 01, 00, B8, 80, 11, 01, 00, C1, E8, 08, 33, 02, A3, 80, 11, 01, 00, 75, 07, 8B, C1, A3, 80, 11, 01, 00, F7, D0, A3, 84, 11, 01, 00, 5D, E9, C7, F8, FF, FF, CC, A8, 12, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 58, 14, 00, 00, A4, 0F, 00, 00, 84, 12, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 0A, 15, 00, 00, 80, 0F, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, DA...
 
[+]

Code size:
3.6 KB (3,712 bytes)

Driver
Display name:
WinRing0_1_0_1

Type:
Kernel device driver (KernelDriver)


Scan WinRing0.sys - Powered by Reason Core Security