devctrl.sys

dtm device.control

Stefanie Meyer - dtm-systems

It runs as a Windows kernel mode device driver named “dtm device.control”.
Publisher:
dtm-systems  (signed by Stefanie Meyer - dtm-systems)

Product:
dtm device.control

Version:
0.9.5.0

MD5:
ed4309e82ae9025c63f2e18e3a822f17

SHA-1:
d22870858f40f7328dc4a87908698d5703b3b70c

SHA-256:
1ce01aeeb5d1b230052c40c4d6ee0475e31386b532c7dbde518ab837eddc2298

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 2:15:21 PM UTC  (today)

File size:
20.4 KB (20,840 bytes)

Product version:
1.0.0.0

Copyright:
© 2006-2009 Th. Gritzan, dtm-systems

Original file name:
devctrl.sys

File type:
Driver (Win32 SYS)

Language:
Language Neutral

Common path:
C:\Windows\System32\drivers\devctrl.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
4/22/2008 2:30:53 PM

Valid to:
4/22/2009 2:30:53 PM

Subject:
E=info@dtm-systems.de, CN=Stefanie Meyer - dtm-systems, O=Stefanie Meyer - dtm-systems, C=DE

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
01000000000119761D9CE0

File PE Metadata
Compilation timestamp:
1/20/2009 11:54:25 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
384:RbgFJ/rORpUSKJaygsHy6xvFqra3YJLFXK4NcdUb+j:RbOzORpUnvGhLkUij

Entry address:
0x275B

Entry point:
8B, FF, 55, 8B, EC, A1, 00, 25, 01, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 1A, A1, 2C, 24, 01, 00, 8B, 00, 35, 00, 25, 01, 00, A3, 00, 25, 01, 00, 75, 07, 8B, C1, A3, 00, 25, 01, 00, F7, D0, A3, 04, 25, 01, 00, 5D, E9, ED, FD, FF, FF, CC, 5C, 00, 44, 00, 6F, 00, 73, 00, 44, 00, 65, 00, 76, 00, 69, 00, 63, 00, 65, 00, 73, 00, 5C, 00, 44, 00, 65, 00, 76, 00, 43, 00, 74, 00, 72, 00, 6C, 00, 00, 00, 5C, 00, 47, 00, 4C, 00, 4F, 00, 42, 00, 41, 00, 4C, 00, 3F, 00, 3F, 00, 5C, 00, 44, 00, 65, 00, 76...
 
[+]

Code size:
9.6 KB (9,856 bytes)

Driver
Display name:
dtm device.control

Service name:
devctrl

Type:
Kernel device driver (KernelDriver)


Scan devctrl.sys - Powered by Reason Core Security