Csware64r.sys

Csware64r.sys

Symen Technologies

Publisher:
Symen Ltd  (signed by Symen Technologies)

Product:
Csware64r.sys

Description:
Registry Filter System Driver

Version:
2.3.6.13 built by: WinDDK

MD5:
91a4a996e0adcb977dc72f0df2d33272

SHA-1:
7e425a1a6d27a77e20261e207263d4c4aba2fa28

SHA-256:
c7508fcfe99f4eec5a230b4223fc3e87619207142078ad70278c10a25db481b0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/2/2025 4:05:26 AM UTC  (today)

File size:
43.8 KB (44,888 bytes)

Product version:
2.3.6.13

Copyright:
Copyright ® Symen Ltd All rights reserved

Original file name:
Csware64r.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\windows\syswow64\nwmedia\csware64r.sys

Digital Signature
Authority:
Symantec Corporation

Valid from:
5/19/2015 3:00:00 AM

Valid to:
6/18/2016 2:59:59 AM

Subject:
CN=Symen Technologies, O=Symen Technologies, L=Petah Tikva, S=Kiryat Matalon, C=IL

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
374190231AA09A200F519F6729C19C77

File PE Metadata
Compilation timestamp:
10/13/2015 3:26:03 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
768:eQ53FaLYEVZdmzTX7r23wFr8cRetRoqejBPfi6CoAwvb+Xa6N+rYcJ:e6Dyzu/r23Wrq252Dwvb+XBylJ

Entry address:
0xC1F4

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, FE, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 52, 65, 67, 46, 6C, 74, 72, 3A, 20, 44, 72, 69, 76, 65, 72, 45, 6E, 74, 72, 79, 28, 29, 0A, 00, CC, CC, CC, CC, CC, CC, CC, CC, 52, 65, 67, 46, 6C, 74, 72, 3A, 20, 55, 73, 65, 20, 65, 64, 20, 6E, 74, 21, 4B, 64, 5F, 49, 48, 56, 44, 52, 49, 56, 45, 52, 5F, 4D, 61, 73, 6B, 20, 38, 20, 74, 6F, 20, 65, 6E, 61, 62, 6C, 65, 20, 6D, 6F, 72...
 
[+]

Entropy:
6.1051

Code size:
31 KB (31,744 bytes)

Scan Csware64r.sys - Powered by Reason Core Security