prl_vamp.sys

Parallels Tools 4.0

Parallels Software Inc.

It runs as a Windows kernel mode device driver named “Parallels Video Adapter”.
Publisher:
Parallels, Inc.  (signed by Parallels Software Inc.)

Product:
Parallels Tools 4.0

Description:
Parallels Video Miniport

Version:
6.14.10.3522

MD5:
fe727949e3be8ee870e36f494c96b1f2

SHA-1:
d918f7c8dedae5210b4ddf80153da9f36b24de66

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 4:37:11 PM UTC  (today)

File size:
19.4 KB (19,904 bytes)

Product version:
4.0 build 3522205912

Copyright:
Copyright 2008 Parallels, Inc. All rights reserved.

Trademarks:
Parallels is a trademark of Parallels, Inc.

Original file name:
prl_vamp.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\prl_vamp.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
4/15/2008 10:56:43 PM

Valid to:
4/15/2009 10:56:43 PM

Subject:
E=sales@parallels.com, CN=Parallels Software Inc., O=Parallels Software Inc., C=US

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000011952CD94CB

File PE Metadata
Compilation timestamp:
11/8/2008 4:15:44 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
384:+ETu6E7ZAtY+v/wcul48C+EBgYJLFHJ0SqydUb+2:+R13+vUlrnEBFLwSwi2

Entry address:
0x5006

Entry point:
8B, FF, 55, 8B, EC, A1, 0C, 31, 01, 00, 01, 05, D0, 30, 01, 00, 56, 8B, 35, 58, 20, 01, 00, 57, 6A, 00, BF, B8, 30, 01, 00, 57, FF, 75, 0C, FF, 75, 08, FF, D6, 85, C0, 75, 04, 33, C0, EB, 40, 6A, 00, 57, FF, 75, 0C, 66, C7, 05, 00, 30, 01, 00, 00, 05, FF, 75, 08, C7, 05, B8, 30, 01, 00, 50, 00, 00, 00, FF, D6, 85, C0, 74, DA, 6A, 00, 57, FF, 75, 0C, 66, C7, 05, 00, 30, 01, 00, 00, 04, FF, 75, 08, C7, 05, B8, 30, 01, 00, 28, 00, 00, 00, FF, D6, 5F, 5E, 5D, C2, 08, 00, 30, 51, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.3976

Code size:
8 KB (8,192 bytes)

Driver
Display name:
Parallels Video Adapter

Service name:
prl_va

Type:
Kernel device driver (KernelDriver)


Scan prl_vamp.sys - Powered by Reason Core Security