GUMHFilter.sys

Glarysoft

Glarysoft LTD

It runs as a Windows 64-bit file system device driver named “GUMHFilters”.
Publisher:
Glarysoft LTD  (signed and verified)

Product:
Glarysoft

Description:
GUMHFilter Driver

Version:
1.0.0.2

MD5:
8acf9b966bc1d3cca18ee7cb5158fd91

SHA-1:
0004a930a95e0f174ff157b96667257869220d48

SHA-256:
565c533acc6695485a3c908a1614e51d2c84af5879f3f927033399e3740885fc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/30/2024 6:47:11 PM UTC  (today)

File size:
36.8 KB (37,688 bytes)

Product version:
1.0.0.2

Copyright:
Copyright (c) 2003-2016 Glarysoft Ltd

Original file name:
GUMHFilter.sys

File type:
Driver (Win64 SYS)

Common path:
C:\Program Files\glarysoft\malware hunter\native\winxp_x64\gumhfilter.sys

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
1/21/2016 3:00:00 AM

Valid to:
1/2/2019 2:59:59 AM

Subject:
CN=Glarysoft LTD, O=Glarysoft LTD, L=Beijing, S=Beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2051DD6C5D5A858EBA1974D70B224A2F

File PE Metadata
Compilation timestamp:
10/21/2016 6:08:12 AM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
384:EARe9e0mtJzYfqeV9bopM23Y95KDb3PMxwEgZHHUKXPafIDhnYPLptUHeMGxu9Op:EPe3tJzeqe/gMd95/GEgZHZPhyx6wPGk

Entry address:
0x91A4

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, 46, FE, FF, FF, CC, CC, E0, 92, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 42, 98, 00, 00, E0, 20, 00, 00, 00, 92, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, D8, 9A, 00, 00, 00, 20, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, AE, 9A, 00, 00, 00, 00, 00, 00, 98, 9A, 00, 00, 00, 00, 00, 00, 80, 9A, 00, 00, 00, 00, 00, 00, 6C, 9A, 00, 00, 00, 00, 00, 00, 4E, 9A, 00, 00...
 
[+]

Code size:
15 KB (15,360 bytes)

Driver
Display name:
GUMHFilters

Type:
File system 'filter' driver (FileSystemDriver)


Scan GUMHFilter.sys - Powered by Reason Core Security