ssdt.sys

Antiy Labs CheckSSDT

Antiy Technology Co. Ltd

Publisher:
Antiy Labs  (signed by Antiy Technology Co. Ltd)

Product:
Antiy Labs CheckSSDT

Description:
Antiy Labs CheckSSDT Device

Version:
1, 0, 0, 1

MD5:
c9133be10200bdca79b37048f1585776

SHA-1:
4c11d14e2d6679aca28a4e66aff3ea0205d25d1d

SHA-256:
f566372f655857db328b50f139115ff0cdf6ff82002e5d785b02616571a02ebe

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 12:50:41 PM UTC  (today)

File size:
8.6 KB (8,856 bytes)

Product version:
1, 0, 0, 1

Copyright:
Copyright (C) 2002 - 2008 Antiy Labs

Original file name:
CheckSSDT.sys

File type:
Driver (Win32 SYS)

Language:
Chinese (Simplified, China)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/18/2007 3:00:00 AM

Valid to:
9/18/2008 2:59:59 AM

Subject:
CN=Antiy Technology Co. Ltd, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Antiy Technology Co. Ltd, L=Harbin, S=Heilongjiang, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7929D836AC197903F3BC280C66529E77

File PE Metadata
Compilation timestamp:
7/3/2007 11:50:15 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
7.10

CTPH (ssdeep):
192:7iwGqFVcKGK9phdmKdphdzMjGwP7BMQFCG+ebMfUMqFi:2wGqFiPK9phIKdph70sobkc0

Entry address:
0x99E

Entry point:
A1, 00, 06, 01, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 19, A1, 28, 05, 01, 00, 8B, 00, 35, 00, 06, 01, 00, A3, 00, 06, 01, 00, 75, 06, 89, 0D, 00, 06, 01, 00, E9, 28, FF, FF, FF, CC, CC, F8, 09, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 06, 0B, 00, 00, 00, 05, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 28, 0A, 00, 00, 3E, 0A, 00, 00, 4C, 0A, 00, 00, 64, 0A, 00, 00, 80, 0A, 00, 00, 8C, 0A, 00, 00, 9E, 0A, 00, 00, B6, 0A, 00, 00, CE, 0A, 00, 00, E6, 0A...
 
[+]

Entropy:
5.6862

Code size:
1.4 KB (1,408 bytes)

Scan ssdt.sys - Powered by Reason Core Security