77fgztk0.sys

Suzhen Zhou

Publisher:
Suzhen Zhou  (signed and verified)

MD5:
eabe0d0596c030fa296801618e368acc

SHA-1:
a4704a519ae4c6c7f7d7c6a6b5770d36a7fdcccf

SHA-256:
e14552cd44723dda0562f8949511880f8e9cc907def768422da4a1ccc36b2f59

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/24/2024 1:24:28 PM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
W64.HfsAutoA
1.3.0.8455

Qihoo 360 Security
Trojan.Generic
1.0.0.1120

File size:
373.6 KB (382,528 bytes)

File type:
Driver (Win64 SYS)

Common path:
C:\windows\77fgztk0.sys

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
10/18/2012 8:00:00 AM

Valid to:
10/19/2015 7:59:59 AM

Subject:
CN=Suzhen Zhou, OU=Individual Developer, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=No Organization Affiliation, L=Wuhan, S=Hubei, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
13A691B148E6D8D0891F888E6605E0DD

File PE Metadata
Compilation timestamp:
12/6/2016 10:14:23 AM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

Entry address:
0xEF5C7

Entry point:
E9, 27, FA, FD, FF, E9, 37, EC, FD, FF, 28, F5, D2, D1, 48, 01, C3, D3, C9, F5, D2, F5, C7, 45, F8, 00, 00, 00, 00, 66, 0F, BE, CB, 0F, B3, F9, 8B, 4A, 18, F9, 66, 0F, A3, F1, F5, 48, 3D, A4, 16, 5F, 9F, 3B, 4D, F8, E9, AB, DA, 00, 00, 93, AD, AA, 53, C7, A4, C4, 4E, E3, 2D, E8, 2E, F3, 21, 30, 52, 83, 95, F8, 02, 7D, DB, 58, 96, ED, 2F, 7A, D0, 67, C1, 4C, 76, 8F, C9, B4, CA, 13, 95, A8, C6, 05, 53, 00, 32, 35, 3B, 55, A7, D4, 1E, 8B, 2C, 2C, 8E, 99, D6, E0, 00, 93, E5, 88, AE, 0B, 31, FB, 7C, 59, F5, 4C...
 
[+]

Entropy:
7.9069

Packer / compiler:
Xtreme-Protector v1.05

Code size:
85 KB (87,040 bytes)

Scan 77fgztk0.sys - Powered by Reason Core Security