drv64.exe

Shenzhen Qitu Software Technolgy Co., Ltd.

Publisher:

MD5:
fa07980e5af92a796fb292046ad18e02

SHA-1:
e8a35bbb61e371c70515d0257154844bdb6cf7c1

SHA-256:
2858111ecd500e8f042c0ad5c61ed8f967386906e5d5d13b9246132f022c4718

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 5:00:51 AM UTC  (today)

File size:
188.4 KB (192,896 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\angelroot\devices\drv64\drv64.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/11/2012 8:00:00 AM

Valid to:
12/12/2015 7:59:59 AM

Subject:
CN="Shenzhen Qitu Software Technolgy Co., Ltd.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Shenzhen Qitu Software Technolgy Co., Ltd.", L=Shenzhen, S=Guangdong, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
30F8759F4918CF4E5F01C2641B4AB9D9

File PE Metadata
Compilation timestamp:
7/23/2013 3:21:41 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
3072:U+cQjBdUocGh0sJtZJu94HdbZOfOuaem2uiMlrwgpzmt+Cuq:UiUoysZW4HJZOfOua/2pMVnmt+Cb

Entry address:
0xBCC4

Entry point:
48, 83, EC, 28, E8, EF, 6D, 00, 00, 48, 83, C4, 28, E9, 56, FE, FF, FF, CC, CC, 48, 89, 5C, 24, 10, 57, 48, 83, EC, 60, 48, 8B, FA, 48, 8B, D9, 48, 8D, 4C, 24, 20, 48, 8D, 15, 7C, 69, 01, 00, 41, B8, 40, 00, 00, 00, E8, 61, E7, FF, FF, 48, 8D, 54, 24, 70, 48, 8B, CF, 48, 89, 5C, 24, 48, 48, 89, 7C, 24, 50, E8, C2, BD, 00, 00, 4C, 8B, D8, 48, 89, 44, 24, 70, 48, 89, 44, 24, 58, 48, 85, FF, 74, 1E, F6, 07, 08, B9, 00, 40, 99, 01, 74, 06, 89, 4C, 24, 40, EB, 0E, 8B, 44, 24, 40, 4D, 85, DB, 0F, 44, C1, 89, 44...
 
[+]

Entropy:
6.1827

Code size:
131.5 KB (134,656 bytes)

Scan drv64.exe - Powered by Reason Core Security