BocomSafetyCtrl.sys

Bocom Safety Control

Bank Of Communications

It runs as a Windows kernel mode device driver named “bocomsafetyctrl”.
Publisher:
Bocom  (signed by Bank Of Communications)

Product:
Bocom Safety Control

Version:
2,1,0,0

MD5:
28ac8bab46015d9e736c72e7682c10ca

SHA-1:
cb34650a70bafb15ffd0cbfb092df6e98a178fd2

SHA-256:
8430f5e4fb5c5e096d419827937ad1edaff783dc7f5ca54358e5e8731f4c9695

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/8/2024 3:46:08 PM UTC  (today)

File size:
34.7 KB (35,496 bytes)

Product version:
2,1,0,0

Copyright:
Copyright (C) 2011-2012

Original file name:
BocomSafetyCtrl.sys

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\bocomsafetyctrl.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/18/2009 8:00:00 AM

Valid to:
12/18/2012 7:59:59 AM

Subject:
CN=Bank Of Communications, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Bank Of Communications, L=shanghai, S=shanghai, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
661A634C94861618179624660E78AD31

File PE Metadata
Compilation timestamp:
4/10/2012 4:23:13 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
768:rh8ZzTGpbA5wByVp2izdPFCAIGRltMqCBQcAEEuaGQzrC+L7HbCBMm5DVO:rSFTsMUgP8fG2bBzAEEuahrC+/7CBDVs

Entry address:
0x903E

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, DC, 93, FF, FF, CC, CC, A4, 90, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 44, 95, 00, 00, 18, 70, 00, 00, 8C, 90, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, C8, 95, 00, 00, 00, 70, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 98, 95, 00, 00, 86, 95, 00, 00, 72, 95, 00, 00, 5E, 95, 00, 00, AC, 95, 00, 00, 00, 00, 00, 00, F8, 91, 00, 00, 02, 92, 00, 00, 0C, 92, 00, 00, 26, 92, 00, 00, 3C, 92, 00, 00, 50, 92, 00, 00, 64, 92...
 
[+]

Entropy:
6.8739

Code size:
22.5 KB (23,040 bytes)

Driver
Display name:
bocomsafetyctrl

Type:
Kernel device driver (KernelDriver)


Scan BocomSafetyCtrl.sys - Powered by Reason Core Security