fmkkc.sys

DUZON BizOn co., ltd.

It runs as a Windows kernel mode device driver named “fmkkc”.
Publisher:
DUZON BizOn co., ltd.  (signed and verified)

MD5:
3df3cdd581ab92373933db6277981d83

SHA-1:
b26b1dc8f1ce951112fc5bd0fb5a7b74766c5bde

SHA-256:
e38288fe17bae3a1ecc945c509366cbb92eb25ccd7fdddce5339ffb0ab1355a0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
7/7/2025 7:51:55 AM UTC  (today)

File size:
65.6 KB (67,160 bytes)

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\fmkkc.sys

Digital Signature
Authority:
Thawte, Inc.

Valid from:
1/27/2015 9:00:00 AM

Valid to:
1/28/2016 8:59:59 AM

Subject:
CN="DUZON BizOn co., ltd.", O="DUZON BizOn co., ltd.", L=Chuncheon-si, S=Gangwon-do, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
021F9B5806E7C50DBA9EA501FEA709FB

File PE Metadata
Compilation timestamp:
12/21/2015 5:53:22 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
768:QvOYgsdhstR/RUHzuIV8oE5OgjAFdWW3+dYnOalwu9tUFUhXof9/Aoz//96YyxU1:QvOYgsd2RZSzZnE5OjEW3+UlJ9t/oOx

Entry address:
0x1403E

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, F4, D1, FE, FF, CC, CC, 94, 40, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 4A, 45, 01, 00, 08, E0, 00, 00, 8C, 40, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 78, 45, 01, 00, 00, E0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 64, 45, 01, 00, 00, 00, 00, 00, 8C, 41, 01, 00, A0, 41, 01, 00, B8, 41, 01, 00, D0, 41, 01, 00, E2, 41, 01, 00, F4, 41, 01, 00, 16, 42, 01, 00, 2E, 42, 01, 00, 46, 42, 01, 00, 5E, 42, 01, 00, 74, 42...
 
[+]

Entropy:
6.7926

Code size:
52.5 KB (53,760 bytes)

Driver
Display name:
fmkkc

Type:
Kernel device driver (KernelDriver)


Scan fmkkc.sys - Powered by Reason Core Security