nvlddmkm-patched.sys

NVIDIA Windows Kernel Mode Driver, Version 311.41

Edgard Roberto Viera

It runs as a Windows 64-bit kernel mode device driver named “nvlddmkm”.
Publisher:
NVIDIA Corporation  (signed by Edgard Roberto Viera)

Product:
NVIDIA Windows Kernel Mode Driver, Version 311.41

Version:
9.18.13.1141

MD5:
40c66e81941acf2b2e15540d1e0bc539

SHA-1:
49fd13f9e0d61b0e423987a41afad2b4e2b80f72

SHA-256:
7929e1c00d7218798cd27b7f0b3b5299cddba848de3e6785e3c4a73f45d668a6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 9:59:27 PM UTC  (today)

File size:
10.6 MB (11,065,920 bytes)

Product version:
9.18.13.1141

Copyright:
(C) 2013 NVIDIA Corporation. All rights reserved.

Original file name:
nvlddmkm.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\nvlddmkm-patched.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
6/25/2012 11:51:29 PM

Valid to:
6/26/2013 11:51:29 PM

Subject:
CN=Edgard Roberto Viera, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121C44616E3C635CF293F8BE9DCAB685E6B

File PE Metadata
Compilation timestamp:
3/7/2013 5:01:05 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
10.10

Entry address:
0xA7D000

Entry point:
48, 89, 5C, 24, 10, 55, 48, 8B, EC, 56, 57, 41, 54, 41, 55, 41, 56, 41, 57, 48, 81, EC, 90, 03, 00, 00, 4C, 8B, F1, 4C, 8B, FA, 45, 33, E4, 48, 8D, 0D, E6, 0C, DD, FF, 33, D2, 41, B8, 40, DE, 00, 00, 4C, 89, A4, 24, 80, 00, 00, 00, 4C, 89, A4, 24, 88, 00, 00, 00, E8, C9, 36, 6F, FF, 4C, 8D, 05, 8A, 34, DD, FF, 48, 8D, 15, 7F, 34, DD, FF, 48, 8D, 0D, 74, 34, DD, FF, 45, 33, C9, 4C, 89, 35, AA, 0C, DD, FF, FF, 15, 64, A4, A8, FF, 83, 0D, BD, 0D, DD, FF, FF, 44, 38, 25, B6, EA, DD, FF, 41, 8D, 74, 24, 01, 48...
 
[+]

Entropy:
6.3601

Code size:
6.6 MB (6,919,168 bytes)

Driver
Display name:
nvlddmkm

Type:
Kernel device driver (KernelDriver)

Group:
Video


Scan nvlddmkm-patched.sys - Powered by Reason Core Security