dokanx.sys

Ole Stauning

It runs as a Windows 64-bit file system device driver named “Dokan”.
Publisher:
Ole Stauning  (signed and verified)

MD5:
75c2ad0f38d4a8e6c2a1fab224a8f17a

SHA-1:
1cae12090ef85413a1f49fb83972eddf34881852

SHA-256:
3fcbd2bb89ce2ad993a3832becd50a93c909a8bb32f16fcebce1cd6ad8f2fd50

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 1:11:59 PM UTC  (today)

File size:
53.9 KB (55,232 bytes)

File type:
Driver (Win64 SYS)

Common path:
C:\Windows\System32\drivers\dokanx.sys

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
4/13/2013 7:07:44 AM

Valid to:
3/15/2016 9:47:41 AM

Subject:
CN=Ole Stauning, C=DK

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112167DA5AB1B0AB7BF38F1828CA72FB1D84

File PE Metadata
Compilation timestamp:
1/20/2015 10:25:54 AM

OS version:
6.3

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
12.0

CTPH (ssdeep):
768:FIprEl9kbpIPInwmqCOYKDpKEkTz8f+2YgeOy5hXTb64cT4W4z1GfiWl0W4ySune:OpJKPDQB3E8xTbnwf5t9cagH

Entry address:
0x6AF8

Entry point:
48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8B, DA, 48, 8B, F9, E8, 5F, 97, 00, 00, 48, 8B, D3, 48, 8B, CF, 48, 8B, 5C, 24, 30, 48, 83, C4, 20, 5F, E9, 02, 00, 00, 00, CC, CC, 48, 89, 5C, 24, 08, 48, 89, 6C, 24, 10, 48, 89, 74, 24, 18, 57, 48, 83, EC, 20, 33, ED, 48, 8B, F2, 48, 8B, F9, 48, 85, C9, 75, 0A, E8, B6, 94, 00, 00, E9, E0, 00, 00, 00, 48, 89, 0D, A2, 45, 00, 00, 48, 8D, 05, B3, 45, 00, 00, 48, 8D, 0D, B4, 47, 00, 00, 48, 89, 05, B5, 47, 00, 00, C7, 05, A3, 47, 00, 00, 00, 00, 08, 02, FF, 15, 8D...
 
[+]

Entropy:
6.3346

Code size:
37.5 KB (38,400 bytes)

Driver
Display name:
Dokan

Type:
File system 'filter' driver (FileSystemDriver)


Scan dokanx.sys - Powered by Reason Core Security