keyctrl.sys

dtm key.control

Stefanie Meyer - dtm-systems

It runs as a Windows kernel mode device driver named “dtm key.control”.
Publisher:
dtm-systems  (signed by Stefanie Meyer - dtm-systems)

Product:
dtm key.control

Version:
0.9.0.0

MD5:
a08b55673cdc6874a06f4aa34b1235d1

SHA-1:
151ff6836f02d9d674fcdf62c04e82627789daa7

SHA-256:
13a820c1dda31376ddab23a5e00e0b4712b6f523c6b2fb85a3217e7ec29db91b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 7:45:00 PM UTC  (today)

File size:
12.4 KB (12,656 bytes)

Product version:
1.0.0.0

Copyright:
© 2007 dtm-systems

Original file name:
keyctrl.sys

File type:
Driver (Win32 SYS)

Language:
Language Neutral

Common path:
C:\Windows\System32\drivers\keyctrl.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
4/22/2008 2:30:53 PM

Valid to:
4/22/2009 2:30:53 PM

Subject:
E=info@dtm-systems.de, CN=Stefanie Meyer - dtm-systems, O=Stefanie Meyer - dtm-systems, C=DE

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
01000000000119761D9CE0

File PE Metadata
Compilation timestamp:
12/2/2007 10:24:24 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
7.0

CTPH (ssdeep):
192:BJrfg/UcNIlWVgfjAbXK41wAoxhSF6Oeeuc54NfzQXPWPf5j:BNfAcWVgLA7Kdf2eK4Ncij

Entry address:
0xD6C

Entry point:
55, 8B, EC, 83, EC, 10, 53, 56, 8B, 75, 08, 8B, 46, 18, 57, 6A, 1C, 33, DB, 89, 5E, 34, C7, 40, 04, 2E, 06, 01, 00, 8D, 56, 38, 59, B8, EA, 04, 01, 00, 8B, FA, F3, AB, 8B, 7D, 0C, B8, C2, 04, 01, 00, 89, 02, 89, 46, 40, C7, 86, A4, 00, 00, 00, 84, 07, 01, 00, C7, 86, 90, 00, 00, 00, FE, 03, 01, 00, C7, 86, 94, 00, 00, 00, EA, 04, 01, 00, C7, 46, 44, EA, 04, 01, 00, C7, 46, 48, EA, 04, 01, 00, C7, 46, 70, AA, 0A, 01, 00, C7, 46, 74, E6, 08, 01, 00, 0F, B7, 07, 40, 68, 64, 74, 6D, 20, 40, 50, 6A, 01, FF, 15...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
3.4 KB (3,456 bytes)

Driver
Display name:
dtm key.control

Service name:
keyctrl

Type:
Kernel device driver (KernelDriver)


Scan keyctrl.sys - Powered by Reason Core Security