prl_vtdhook_32.sys

Parallels Desktop 5.0

Parallels Inc

Publisher:
Parallels Holdings, Ltd. and its affiliates.  (signed by Parallels Inc)

Product:
Parallels Desktop 5.0

Description:
Parallels directed PCI device with Intel(r) VT-d

Version:
5.0.10904.574350

MD5:
32ab3738d63905f2a6e6848347a653a7

SHA-1:
b1069b6873b0762c2dc7b8c193331057fc99a568

SHA-256:
d812d859ae0aeaeb59339029387f188b5ebfce47c65405a29e69fcc59d26c3cb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 9:51:17 AM UTC  (today)

File size:
34.4 KB (35,272 bytes)

Product version:
5.0 build 10904574350

Copyright:
Copyright 1999-2010 Parallels Holdings, Ltd. and its affiliates. All rights reserved.

Trademarks:
Parallels is a trademark of Parallels Holdings, Ltd. and its affiliates.

Original file name:
prl_vtdhook

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Program Files\parallels\parallels desktop\drivers\prl_vtdhook_32.sys

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
4/9/2009 12:41:45 PM

Valid to:
4/9/2012 12:41:45 PM

Subject:
E=bgoode@parallels.com, CN=Parallels Inc, O=Parallels Inc, C=US

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
010000000001208BF6728F

File PE Metadata
Compilation timestamp:
5/12/2010 12:47:23 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
384:oz82/QfOqU1teNZHwpEPG7ETuQiVYO+Iz635TBFL+Fl4RnEJClSrYJLeX6pNE54d:s8vfO9HeQF9VYLBkSqClS6L0i

Entry address:
0x5B05

Entry point:
8B, FF, 55, 8B, EC, A1, 00, 59, 01, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 1E, 8B, 15, EC, 56, 01, 00, B8, 00, 59, 01, 00, C1, E8, 08, 33, 02, A3, 00, 59, 01, 00, 75, 07, 8B, C1, A3, 00, 59, 01, 00, F7, D0, A3, 04, 59, 01, 00, 5D, E9, 35, D6, FF, FF, CC, 90, 5B, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 70, 61, 00, 00, 0C, 56, 00, 00, 84, 5B, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, AE, 61, 00, 00, 00, 56, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 7E...
 
[+]

Code size:
22.5 KB (23,040 bytes)

Scan prl_vtdhook_32.sys - Powered by Reason Core Security