ramirr.sys

RemotelyAnywhere

3am Labs, Inc.

Publisher:
3am Labs, Inc.  (signed and verified)

Product:
RemotelyAnywhere

Description:
RemotelyAnywhere Mirror Miniport Driver

Version:
7.00.528

MD5:
510edba95d5fb8b85b2897b777a3c9b4

SHA-1:
8a2f71d331702e82646ae73fc1094f184cf5ee55

SHA-256:
821270aeead582b3c1940aebcc18c613061e29bee687c06cacf36e74442fde5e

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/24/2024 2:12:36 PM UTC  (today)

Scan engine
Detection
Engine version

IKARUS anti.virus
not-a-virus:RemoteAdmin.Win32.RemotelyAnywhere.a
15.11.22

File size:
7.9 KB (8,064 bytes)

Product version:
7.00.528

Copyright:
Copyright © 1998-2005 3am Labs, Inc. All rights reserved.

Original file name:
ramirr.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Program Files\remotelyanywhere\ramirr.sys

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
10/5/2005 2:52:50 PM

Valid to:
10/7/2006 2:36:28 PM

Subject:
CN="3am Labs, Inc.", OU=Secure Application Development, O="3am Labs, Inc.", L=Woburn, S=Massachusetts, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
21E60D

File PE Metadata
Compilation timestamp:
1/15/2006 4:24:47 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
7.10

CTPH (ssdeep):
96:YK3+tZJJ+kt3xEz6vuegOH9C3gXzv7zQMLy+Cgzdew5mog+MSNrAZ8pg:ah9VWOA3gtL/CldolMKAmG

Entry address:
0x705

Entry point:
A1, 80, 06, 01, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 19, A1, 8C, 05, 01, 00, 8B, 00, 35, 80, 06, 01, 00, A3, 80, 06, 01, 00, 75, 06, 89, 0D, 80, 06, 01, 00, E9, AB, FD, FF, FF, CC, CC, CC, 80, 07, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 96, 07, 00, 00, 8C, 05, 00, 00, 74, 07, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, D0, 07, 00, 00, 80, 05, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, BA, 07, 00, 00, A4, 07, 00, 00, 00, 00, 00, 00, 88, 07, 00, 00, 00...
 
[+]

Entropy:
6.1573

Code size:
512 Bytes (512 bytes)

Scan ramirr.sys - Powered by Reason Core Security