mp110005.sys

Micropoint Proactive Defense Software

BeiJing Eastern Micropoint Info-Tech CO., LTD

It runs as a Windows kernel mode device driver named “mp110005”.
Publisher:
Micropoint Corporation  (signed by BeiJing Eastern Micropoint Info-Tech CO., LTD)

Product:
Micropoint Proactive Defense Software

Description:
mp110005

Version:
2, 0, 10582, 21

MD5:
75be0772693f67db05490981521eabba

SHA-1:
186adaf76a5556a423df40192217ea76a6450bd3

SHA-256:
065d87db8be68d472695010e7145bbfcdf134c5017a8c1cd67fa5ffc1434de27

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 12:23:37 PM UTC  (today)

File size:
30.9 KB (31,624 bytes)

Product version:
2, 0, 10582, 21

Copyright:
Copyright (c) 2005-2011 Micropoint Corporation

Original file name:
mp110005.sys

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\mp110005.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/2/2012 8:00:00 AM

Valid to:
7/2/2015 7:59:59 AM

Subject:
CN="BeiJing Eastern Micropoint Info-Tech CO., LTD", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="BeiJing Eastern Micropoint Info-Tech CO., LTD", L=Beijing, S=Beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2A02D658AA635EE8A99E5F46B5C567F7

File PE Metadata
Compilation timestamp:
9/28/2012 9:33:31 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
7.10

CTPH (ssdeep):
768:CYMUhOKEw3sa4ZRoF2Hp8vu+WbBhIIL0e:CYMUhO1wuRoEp8udbH7

Entry address:
0x489F

Entry point:
A1, 88, 44, 01, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 19, A1, 18, 43, 01, 00, 8B, 00, 35, 88, 44, 01, 00, A3, 88, 44, 01, 00, 75, 06, 89, 0D, 88, 44, 01, 00, E9, 85, FD, FF, FF, CC, D4, 49, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 08, 4E, 00, 00, 0C, 43, 00, 00, 48, 49, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 52, 4E, 00, 00, 80, 42, 00, 00, A8, 49, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, AA, 4E, 00, 00, E0, 42, 00, 00, 70, 49, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 20, 4F, 00, 00, A8, 42, 00...
 
[+]

Entropy:
6.6248

Code size:
17.9 KB (18,304 bytes)

Driver
Display name:
mp110005

Type:
Kernel device driver (KernelDriver)


Scan mp110005.sys - Powered by Reason Core Security