rsutils.sys

rsutils.sys

Beijing Rising Information Technology Corporation Limited

Publisher:
Beijing Rising Information Technology Co., Ltd.  (signed by Beijing Rising Information Technology Corporation Limited)

Product:
rsutils.sys

Version:
1, 0, 0, 48

MD5:
d8ec700b5c98be9cdd5b620245721b66

SHA-1:
f49311dd770f3b8d911046fb413bd6afad865ce4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/3/2024 5:32:45 AM UTC  (today)

File size:
218.4 KB (223,688 bytes)

Product version:
1, 0, 0, 48

Copyright:
Copyright(C) 2016-2017 Beijing Rising Information Technology Co., Ltd. All Rights Reserved.

Original file name:
rsutils.sys

File type:
Driver (Win32 SYS)

Common path:
C:\windows\temp\rav\download\hookbase\rsutils.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
6/9/2015 4:00:00 AM

Valid to:
9/8/2018 3:59:59 AM

Subject:
CN=Beijing Rising Information Technology Corporation Limited, O=Beijing Rising Information Technology Corporation Limited, L=Beijing, S=Beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
322A78CAB100B4B6D9A0CC66C16B802D

File PE Metadata
Compilation timestamp:
2/20/2017 6:34:42 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

Entry address:
0xBF50

Entry point:
55, 8B, EC, 83, E4, F8, 8B, 0D, 84, 02, 02, 00, 83, EC, 20, B8, 28, 0A, 00, 00, 56, 57, 66, 39, 01, 73, 0D, B8, BB, 00, 00, C0, 5F, 5E, 8B, E5, 5D, C2, 08, 00, 8B, 35, E0, 00, 02, 00, 68, EC, 33, 02, 00, 8D, 54, 24, 1C, 52, FF, D6, 68, 0C, 34, 02, 00, 8D, 44, 24, 14, 50, FF, D6, 68, D0, 33, 02, 00, 8D, 4C, 24, 24, 51, FF, D6, 8B, 75, 08, 8D, 54, 24, 0C, 52, 6A, 00, 8D, 44, 24, 20, 50, 6A, 00, 68, 00, 01, 00, 00, 6A, 22, 8D, 4C, 24, 28, 51, 6A, 00, 56, E8, 13, 28, 02, 00, 85, C0, 0F, 8C, A1, 00, 00, 00, 8B...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
71.6 KB (73,344 bytes)

Scan rsutils.sys - Powered by Reason Core Security