chengxinkeji.sys

Shanghai Hintsoft Co., Ltd

It runs as a Windows kernel mode device driver named “ChengXinKeJi”.
Publisher:
Shanghai Hintsoft Co., Ltd  (signed and verified)

MD5:
8fe7981d828a965a6dc89e4fb6ba16d5

SHA-1:
babddb5d900f470cf0e22a14009868ec01a64be9

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 6:05:43 AM UTC  (today)

File size:
118.6 KB (121,496 bytes)

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\chengxinkeji.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
9/3/2013 9:03:40 AM

Valid to:
9/3/2016 9:03:40 AM

Subject:
CN="Shanghai Hintsoft Co., Ltd", O="Shanghai Hintsoft Co., Ltd", L=上海, S=上海, C=CN

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121BA33F49A45FD5819F71D5E36B0F9BD45

File PE Metadata
Compilation timestamp:
3/21/2014 6:03:32 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
3072:xyXZhoP5vWa1ZkGiTYP+/Ja+GjoTO8OG7:xq65ea1WbcP+/JAjoqVG7

Entry address:
0x1BC2A

Entry point:
E9, 03, F0, FF, FF, 8D, 64, 24, 0C, 0F, 87, 10, FB, FF, FF, 60, C6, 04, 24, 7F, 54, 88, 54, 24, 0C, 8D, 64, 24, 24, E9, 94, E3, FF, FF, 00, 00, 5A, 77, 43, 72, 65, 61, 74, 65, 46, 69, 6C, 65, 00, 66, 0F, CB, 66, C1, F3, 0A, 89, C3, 56, 80, 3F, 23, 60, E8, 0F, CB, FF, FF, F9, 29, C9, E9, 89, FF, FF, FF, 84, C0, 60, 8D, 64, 24, 30, 0F, 84, 04, ED, FF, FF, E9, 5D, F2, FF, FF, D1, E8, 9C, 8D, 64, 24, 14, 0F, 84, 6D, E1, FF, FF, 9C, 60, 60, E8, 1B, 2D, 00, 00, 60, C7, 44, 24, 1C, FF, 3F, CD, 5E, 66, C7, 04, 24...
 
[+]

Entropy:
7.7052

Packer / compiler:
tElock 0.99 - 1.0 private

Code size:
29.5 KB (30,208 bytes)

Driver
Display name:
ChengXinKeJi

Type:
Kernel device driver (KernelDriver)


Scan chengxinkeji.sys - Powered by Reason Core Security