nvtyaguard.sys

NoVirusThanks YAGuard KDriver

NoVirusThanks Company Srl

Publisher:
NoVirusThanks Company Srl  (signed and verified)

Product:
NoVirusThanks YAGuard KDriver

Version:
1.0.0.0 built by: WinDDK

MD5:
dbb8dc0c69387f44a99c8e4985ce9443

SHA-1:
017db8a7b78640a8ab503487ef7d0e20f1b3bdfc

SHA-256:
d6ca115e69b6e14a5822a1d5aa6a602b4601af4f77f96c593fb6d13cd1ed904f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 11:45:58 PM UTC  (a few moments ago)

File size:
16.6 KB (17,016 bytes)

Product version:
1.0.0.0

Copyright:
NoVirusThanks Company Srl

Original file name:
nvtyaguard.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\yaguard\yaguard\x86\nvtyaguard.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
3/10/2014 10:07:46 AM

Valid to:
4/24/2015 11:31:15 AM

Subject:
E=support@novirusthanks.org, CN=NoVirusThanks Company Srl, O=NoVirusThanks Company Srl, L=Castiglione Del Lago, S=Perugia, C=IT

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121DCF3B9B62F534CB895AB6644359C84B9

File PE Metadata
Compilation timestamp:
3/30/2015 7:13:30 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
192:PM2vzIsaPZSOtJpTF/fVtVkUTgBxe1HCjv4pdhhmGdYaPJalUEl0i0Vsxxmwq/PU:P5zaPU8F/fTIKJ7ZE50WY0

Entry address:
0x21003E

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, 96, 18, DF, FF, CC, CC, 78, 00, 21, 00, 00, 00, 00, 00, 00, 00, 00, 00, A4, 03, 21, 00, 00, 20, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, FC, 00, 21, 00, 06, 01, 21, 00, 10, 01, 21, 00, 26, 01, 21, 00, 42, 01, 21, 00, 5A, 01, 21, 00, 6A, 01, 21, 00, 74, 01, 21, 00, 8A, 01, 21, 00, A6, 01, 21, 00, C0, 01, 21, 00, D8, 01, 21, 00, F0, 01, 21, 00, 08, 02, 21, 00, 22, 02, 21, 00, 3A, 02, 21, 00, 58, 02, 21, 00, 72, 02...
 
[+]

Entropy:
6.1950

Code size:
4.5 KB (4,608 bytes)

Scan nvtyaguard.sys - Powered by Reason Core Security