dcr.sys

SecurStar GmbH

It runs as a Windows 64-bit kernel mode device driver named “DCR”.
Publisher:
SecurStar GmbH  (signed and verified)

MD5:
65a1b5258b7005eba9ad22e8aced3362

SHA-1:
93d7d55f316d0b553bb6937c4a1f1465c1283cd9

SHA-256:
e62f72bebb3e8fd036b952a92062db04decf30073a89005e4d8904ced8dcf4fd

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 8:32:32 AM UTC  (today)

File size:
320.5 KB (328,232 bytes)

File type:
Driver (Win64 SYS)

Common path:
C:\Windows\System32\drivers\dcr.sys

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
4/13/2007 12:29:04 PM

Valid to:
4/13/2010 12:29:04 PM

Subject:
E=contact@securstar.com, CN=SecurStar GmbH, O=SecurStar GmbH, C=DE

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
01000000000111EA7D2E62

File PE Metadata
Compilation timestamp:
1/11/2008 5:30:58 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
6144:roayvRJ7F1PpW+C77O80HqI517E+0DaktSEG9XP3:rotRJ7FWfwqI517aN4v

Entry address:
0x22E60

Entry point:
48, 89, 54, 24, 10, 48, 89, 4C, 24, 08, 57, 48, 83, EC, 30, C7, 05, D3, 3C, 02, 00, 00, 00, 00, 00, 48, 8B, 44, 24, 40, 48, 8D, 0D, 2B, 04, 00, 00, 48, 89, 48, 70, 48, 8B, 44, 24, 40, 48, 8D, 0D, 1B, 04, 00, 00, 48, 89, 88, 80, 00, 00, 00, 48, 8B, 44, 24, 40, 48, 8D, 0D, 08, 04, 00, 00, 48, 89, 88, 88, 00, 00, 00, 48, 8B, 44, 24, 40, 48, 8D, 0D, F5, 03, 00, 00, 48, 89, 88, 90, 00, 00, 00, 48, 8B, 44, 24, 40, 48, 8D, 0D, E2, 03, 00, 00, 48, 89, 88, B8, 00, 00, 00, 48, 8B, 44, 24, 40, 48, 8D, 0D, CF, 03, 00...
 
[+]

Code size:
239 KB (244,736 bytes)

Driver
Display name:
DCR

Type:
Kernel device driver (KernelDriver)

Group:
PrimaryDisk


Scan dcr.sys - Powered by Reason Core Security