rotel64.sys

M2Tech Snc di Manunta & Marino

It runs as a Windows 64-bit kernel mode device driver named “rotel64”.
Publisher:
M2Tech Snc di Manunta & Marino  (signed and verified)

Version:
1.0.3.140

MD5:
9909d59c80a3d8a0f4071a763b0aab17

SHA-1:
bbc844207ce611b75562fa015275e2fb01d83172

SHA-256:
f4133bab2865c1160a12e6fd91d6f36f189a6d323cd3ee275194191a37063752

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/29/2024 3:48:00 PM UTC  (today)

File size:
37.6 KB (38,552 bytes)

Product version:
1.0.3.140

Original file name:
rotel.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\rotel64.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
12/27/2010 3:53:08 PM

Valid to:
12/28/2011 3:53:06 PM

Subject:
CN=M2Tech Snc di Manunta & Marino, O=M2Tech Snc di Manunta & Marino, L=Pisa, S=PI, C=IT

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000012D2738C79D

File PE Metadata
Compilation timestamp:
5/19/2011 1:33:30 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
768:pybGO3bcgkjz3D+QIbk3194pRqzO3OY49ycBC+CsMiu9K:Cvok7U5BycBC+C5iu9K

Entry address:
0xA0A4

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, 46, FF, FF, FF, CC, CC, 30, A1, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, A6, 00, 00, 18, 60, 00, 00, 18, A1, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 58, A6, 00, 00, 00, 60, 00, 00, 80, A2, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 2E, A7, 00, 00, 68, 61, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 0E, A6, 00, 00, 00, 00, 00, 00, 34, A6, 00, 00...
 
[+]

Entropy:
6.3060

Code size:
21.5 KB (22,016 bytes)

Driver
Display name:
rotel64

Type:
Kernel device driver (KernelDriver)


Scan rotel64.sys - Powered by Reason Core Security