rotel64.sys

M2Tech Snc di Manunta & Marino

It runs as a Windows 64-bit kernel mode device driver named “rotel64”.
Publisher:
M2Tech Snc di Manunta & Marino  (signed and verified)

Version:
1.0.3.140

MD5:
708512dda9974048cc01beaf375356a4

SHA-1:
a11b0a42d1c7898ecb0c1e53e475a09124efca3b

SHA-256:
0a9e157e2067cbc561a2b54ba23d0ef612ad60921f82e534b4fed10ecde4314a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/29/2024 3:41:31 PM UTC  (today)

File size:
37.6 KB (38,552 bytes)

Product version:
1.0.3.140

Original file name:
rotel.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\rotel64.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
12/27/2010 4:53:08 PM

Valid to:
12/28/2011 4:53:06 PM

Subject:
CN=M2Tech Snc di Manunta & Marino, O=M2Tech Snc di Manunta & Marino, L=Pisa, S=PI, C=IT

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000012D2738C79D

File PE Metadata
Compilation timestamp:
5/19/2011 2:33:58 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
768:iNeEUKZZigD6vD4hCX9CM01peev5RO2YR9/y6C+CsMiGdk:i9rwK40shj/y6C+C5iGdk

Entry address:
0xA0A4

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, 46, FF, FF, FF, CC, CC, 30, A1, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, A6, 00, 00, 18, 60, 00, 00, 18, A1, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 58, A6, 00, 00, 00, 60, 00, 00, 80, A2, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 2E, A7, 00, 00, 68, 61, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 0E, A6, 00, 00, 00, 00, 00, 00, 34, A6, 00, 00...
 
[+]

Entropy:
6.3597

Code size:
21.5 KB (22,016 bytes)

Driver
Display name:
rotel64

Type:
Kernel device driver (KernelDriver)


Scan rotel64.sys - Powered by Reason Core Security