dlmfenc.sys

DESlock+

DESlock Limited

It runs as a Windows file system device driver named “DLMFENC”.
Publisher:
DESlock Ltd.  (signed by DESlock Limited)

Product:
DESlock+

Description:
DESlock+ Encryption MiniFilter

Version:
1.11.4.143

MD5:
95bdca3d60102657417fc386a9a5f2dd

SHA-1:
fa5c9ac9708e482ff741967e269695a831c2bd9e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 5:16:15 AM UTC  (today)

File size:
142.5 KB (145,920 bytes)

Product version:
4.0.0.0

Copyright:
Copyright ©2012-2016 DESlock Ltd.

Trademarks:
DESlock+

Original file name:
dlmfenc.sys

File type:
Driver (Win32 SYS)

Language:
Anglictina (Spojené království)

Common path:
C:\Windows\System32\drivers\dlmfenc.sys

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
4/5/2016 2:00:00 AM

Valid to:
5/17/2017 1:59:59 AM

Subject:
CN=DESlock Limited, O=DESlock Limited, L=Taunton, S=Somerset, C=GB

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
041E44B80741628879A0559B824FF645

File PE Metadata
Compilation timestamp:
7/12/2016 10:42:10 AM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
3072:/sdFjYjhlcpXsY2sOdsOva5Lh9nWGIOIjMqqDLtGgzyHH9Pk:UdItY2sO6dxqqDLtGgKPk

Entry address:
0x1F03E

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, DC, 0F, FF, FF, CC, CC, 60, F1, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 96, FA, 01, 00, C0, 50, 01, 00, 54, F1, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, E0, FA, 01, 00, B4, 50, 01, 00, A0, F0, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 78, 01, 02, 00, 00, 50, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 4E, 01, 02, 00, 2E, 01, 02, 00, 16, 01, 02, 00, FE, 00, 02, 00, E4, 00, 02, 00, CA, 00, 02, 00, B0, 00, 02, 00, 9A, 00...
 
[+]

Code size:
89 KB (91,136 bytes)

Driver
Display name:
DLMFENC

Description:
DESlock+ Encryption Mini-Filter Driver

Type:
File system 'filter' driver (FileSystemDriver)

Group:
FSFilter Encryption

Depends on:
FltMgr


Scan dlmfenc.sys - Powered by Reason Core Security