eastmanupdateservicedriver35275.sys

ECAT Driver

Silicium Security inc.

It runs as a Windows 64-bit kernel mode device driver named “EastmanUpdateServiceDriver35275”.
Publisher:
EMC Corporation  (signed by Silicium Security inc.)

Product:
ECAT Driver

Version:
3.5.3.1 built by: WinDDK

MD5:
3935c9fb7ecbc264984236687691a314

SHA-1:
e7fe776d29d7b01a3dacf061e0cf709545cb7962

SHA-256:
4e4284e22b46678d5beff99eea8095f72dfa579efb3cacec633192f9df743869

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 3:42:24 AM UTC  (today)

File size:
164.2 KB (168,128 bytes)

Product version:
3.5.3.1

Copyright:
Copyright © 2014 EMC Corporation All Rights Reserved.

Original file name:
ecat.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\eastmanupdateservicedriver35275.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/8/2011 7:00:00 PM

Valid to:
1/13/2015 6:59:59 PM

Subject:
CN=Silicium Security inc., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Silicium Security inc., S=Quebec, C=CA

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1150781872AF45DDD9AF0B0913DC56AF

File PE Metadata
Compilation timestamp:
8/29/2014 9:41:15 AM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
3072:ret5yINI4Xw6sPTVFhC3StvyHFXGj+cw9krajymc5stebgjMgtRB:r8A0wnCRXGjy912P6t+gjMcr

Entry address:
0x2C064

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, DA, 54, FD, FF, CC, CC, B0, C0, 02, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, D2, 02, 00, 00, E0, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 20, C5, 02, 00, 00, 00, 00, 00, 3A, C5, 02, 00, 00, 00, 00, 00, 4A, C5, 02, 00, 00, 00, 00, 00, 62, C5, 02, 00, 00, 00, 00, 00, 7A, C5, 02, 00, 00, 00, 00, 00, 8C, C5, 02, 00, 00, 00, 00, 00, 9C, C5, 02, 00...
 
[+]

Entropy:
7.6517

Code size:
135.5 KB (138,752 bytes)

Driver
Display name:
EastmanUpdateServiceDriver35275

Type:
Kernel device driver (KernelDriver)

Depends on:
Tcpip


Scan eastmanupdateservicedriver35275.sys - Powered by Reason Core Security