BocomSafetyCtrl.sys

Bocom Safety Control

BANK OF COMMUNICATIONS

It runs as a Windows kernel mode device driver named “bocomsafetyctrl”.
Publisher:
Bocom  (signed by BANK OF COMMUNICATIONS)

Product:
Bocom Safety Control

Version:
1.0.0.1

MD5:
a5a3f9bd86ce711ee6b9180da769eb62

SHA-1:
26e276dd89e913855fa3d11533e0f127b020ee57

SHA-256:
8697ec75302158c9858fe75f47c663fcb59e89712d2c4f7f5faa8bb507d82dc8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 9:03:52 AM UTC  (today)

File size:
35.2 KB (36,072 bytes)

Product version:
1.0.0.1

Copyright:
Copyright (C) 2011-2012

Original file name:
BocomSafetyCtrl.sys

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\bocomsafetyctrl.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/28/2012 8:00:00 AM

Valid to:
1/28/2016 7:59:59 AM

Subject:
CN=BANK OF COMMUNICATIONS, OU=电子银行部, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=BANK OF COMMUNICATIONS, L=shanghai, S=shanghai, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5E5D790CD01FCBD6E7A5FAA06EC2A11C

File PE Metadata
Compilation timestamp:
2/3/2012 7:46:46 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
768:Sh8ZzTGpbA5wByVp2izdPFCAIGRltMqCBQcAzEtaGQ4Bkwn:SSFTsMUgP8fG2bBzAzEtamBrn

Entry address:
0x903E

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, DC, 93, FF, FF, CC, CC, A4, 90, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 44, 95, 00, 00, 18, 70, 00, 00, 8C, 90, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, C8, 95, 00, 00, 00, 70, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 98, 95, 00, 00, 86, 95, 00, 00, 72, 95, 00, 00, 5E, 95, 00, 00, AC, 95, 00, 00, 00, 00, 00, 00, F8, 91, 00, 00, 02, 92, 00, 00, 0C, 92, 00, 00, 26, 92, 00, 00, 3C, 92, 00, 00, 50, 92, 00, 00, 64, 92...
 
[+]

Entropy:
6.9007

Code size:
22.5 KB (23,040 bytes)

Driver
Display name:
bocomsafetyctrl

Type:
Kernel device driver (KernelDriver)


Scan BocomSafetyCtrl.sys - Powered by Reason Core Security