CDFILT.sys

security development CDFILT

NICSTECH CO.,LTD.

It runs as a Windows kernel mode device driver named “CDFILT”.
Publisher:
security development  (signed by NICSTECH CO.,LTD.)

Product:
security development CDFILT

Description:
CDFILT(A32)

Version:
1.0.2.6

MD5:
935e8eaceaa4c61460c69179ea7d421a

SHA-1:
2b4eec926f7d6e3ddc431ac754247a5dd36fee49

SHA-256:
4a186ac7003b1ebd1f2a65157b3cc88a0f3e325ec8e4c2e2613d5786b616657a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 9:56:39 PM UTC  (today)

File size:
13.8 KB (14,120 bytes)

Product version:
1.0.2.6

Copyright:
Copyright ¨Ï 2006 Nicstech

Original file name:
CDFILT.sys

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\cdfilt.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/15/2011 9:00:00 AM

Valid to:
4/16/2014 8:59:59 AM

Subject:
CN="NICSTECH CO.,LTD.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="NICSTECH CO.,LTD.", L=Gangseo-gu, S=Seoul, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7F066E1B06823299943F1BF1DF5B1666

File PE Metadata
Compilation timestamp:
2/10/2014 3:01:42 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

Entry address:
0xDBE

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, 72, FC, FF, FF, CC, CC, F8, 0D, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, BA, 0F, 00, 00, 80, 0B, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 4C, 0E, 00, 00, 6A, 0E, 00, 00, 7C, 0E, 00, 00, 8E, 0E, 00, 00, A6, 0E, 00, 00, BE, 0E, 00, 00, D4, 0E, 00, 00, F0, 0E, 00, 00, 00, 0F, 00, 00, 12, 0F, 00, 00, 22, 0F, 00, 00, 38, 0F, 00, 00, 42, 0F, 00, 00, 58, 0F, 00, 00, 62, 0F, 00, 00, 6C, 0F, 00, 00, 76, 0F, 00, 00, 84, 0F...
 
[+]

Entropy:
6.8706

Code size:
2.4 KB (2,432 bytes)

Driver
Display name:
CDFILT

Type:
Kernel device driver (KernelDriver)


Scan CDFILT.sys - Powered by Reason Core Security