dokanx.sys

Ole Stauning

It runs as a Windows 64-bit file system device driver named “Dokan”.
Publisher:
Ole Stauning  (signed and verified)

MD5:
ebcd7a85c5269af81f048efa7e9f56af

SHA-1:
f095b8f5fcf40c16357159b81ef6c33e865a6ae8

SHA-256:
c14ebd8d958fa0f42a421e993e75b2302c0ad0a620dfec244b85186ad60f3ac7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 5:54:55 PM UTC  (today)

File size:
55.3 KB (56,648 bytes)

File type:
Driver (Win64 SYS)

Common path:
C:\Windows\System32\drivers\dokanx.sys

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
4/13/2013 7:07:44 AM

Valid to:
3/15/2016 9:47:41 AM

Subject:
CN=Ole Stauning, C=DK

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112167DA5AB1B0AB7BF38F1828CA72FB1D84

File PE Metadata
Compilation timestamp:
6/29/2013 3:18:40 AM

OS version:
6.2

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
11.0

CTPH (ssdeep):
768:tRDTNF+tN9vb1gFQck5aU4n8Kwo4eTgrhVt8Ki7IaArEYeZb4cTJDzy5oKc1x0IZ:sjeOfWvwZtfSkBeZ9+y8+gtD+9izs

Entry address:
0x6E20

Entry point:
48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8B, DA, 48, 8B, F9, E8, 47, 94, 00, 00, 48, 8B, D3, 48, 8B, CF, 48, 8B, 5C, 24, 30, 48, 83, C4, 20, 5F, E9, AE, FE, FF, FF, CC, CC, CC, CC, CC, CC, E9, 37, 00, 00, 00, CC, CC, CC, CC, CC, CC, CC, 48, 83, EC, 28, 48, 8B, 05, 81, 43, 00, 00, 48, 85, C0, 74, 0E, 48, 8D, 15, E9, FF, FF, FF, 48, 3B, C2, 74, 02, FF, D0, 48, 83, C4, 28, E9, 09, 00, 00, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, 48, 83, EC, 28, 48, 8D, 0D, 79, 34, 00, 00, E8, 98, 00, 00, 00, 4C, 8B, 05, 4D...
 
[+]

Entropy:
6.3416

Code size:
39 KB (39,936 bytes)

Driver
Display name:
Dokan

Type:
File system 'filter' driver (FileSystemDriver)


Scan dokanx.sys - Powered by Reason Core Security