easytthr.sys

EasyTether

Polyclef Software

It runs as a Windows kernel mode device driver named “easytether”.
Publisher:
Mobile Stream  (signed by Polyclef Software)

Product:
EasyTether

Description:
EasyTether Network Driver

Version:
1.1.9.7

MD5:
312b74dc21c0ee503905740852dae28b

SHA-1:
f2c56cadd895ebae3145b36756238aee9223da3f

SHA-256:
24726f2cb5fced6f260e408431547dde0594c00978dd8da99f640f09f3025679

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
10/22/2018 10:15:31 PM UTC  (today)

File size:
16.9 KB (17,328 bytes)

Product version:
1.1.9.7

Copyright:
Copyright (c) 2010-2012 Mobile Stream

Original file name:
easytthr.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\easytthr.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/2/2012 7:00:00 AM

Valid to:
2/23/2013 6:59:59 AM

Subject:
CN=Polyclef Software, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Polyclef Software, L=Lafayette, S=Louisiana, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
27D4EB9D5987E8AB98D3E213776211BA

File PE Metadata
Compilation timestamp:
6/6/2012 6:54:27 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
384:kRddZ83STr7NTGot8Vlae4u3mirILjp1P6jpJVgL:k7Dr7Cfae4IILLm/Vq

Entry address:
0x19A6

Entry point:
8B, FF, 55, 8B, EC, 83, EC, 7C, 56, 6A, 00, FF, 75, 0C, FF, 75, 08, 68, 20, 1D, 01, 00, FF, 15, 50, 1B, 01, 00, 8B, 35, 20, 1D, 01, 00, 85, F6, 75, 0A, B8, 01, 00, 00, C0, E9, A5, 00, 00, 00, 83, 25, 30, 1D, 01, 00, 00, B8, 28, 1D, 01, 00, 6A, 7C, A3, 2C, 1D, 01, 00, A3, 28, 1D, 01, 00, 8D, 45, 84, 6A, 00, 50, E8, A5, 00, 00, 00, 83, C4, 0C, 6A, 7C, 8D, 45, 84, 50, 56, C6, 45, 84, 05, C6, 45, 85, 01, C7, 45, A0, 72, 16, 01, 00, C7, 45, A8, D4, 10, 01, 00, C7, 45, B8, 6E, 13, 01, 00, C7, 45, C0, 12, 08, 01...
 
[+]

Entropy:
6.6732

Code size:
7 KB (7,168 bytes)

Driver
Display name:
easytether

Type:
Kernel device driver (KernelDriver)

Group:
NDIS


Scan easytthr.sys - Powered by Reason Core Security