storvsc.sys

Windows Main Build Lab Account

It runs as a Windows kernel mode device driver named “storvsc”.
Publisher:
Windows Main Build Lab Account  (signed and verified)

MD5:
acb97bcfe6ee0ebd7cf625ff77611438

SHA-1:
0a47ce662737d8a9a56da811ced9b558dd916493

SHA-256:
67cf8d186e5aedea8a161cc1dbedbcf5856720a7b93a552fe51ec0f07b30582f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/5/2024 10:14:14 PM UTC  (today)

File size:
24.7 KB (25,312 bytes)

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\storvsc.sys

Digital Signature
Authority:
MSIT Test CodeSign CA 2

Valid from:
3/13/2009 1:39:14 AM

Valid to:
3/13/2010 12:39:14 AM

Subject:
CN=Windows Main Build Lab Account

Issuer:
CN=MSIT Test CodeSign CA 2, DC=redmond, DC=corp, DC=microsoft, DC=com

Serial number:
29C9F976000100003536

File PE Metadata
Compilation timestamp:
4/8/2009 7:45:43 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
384://sP7gMZS+xVmoHdCHf/+uReBpgWqRIu2wbtYJsL9WSJs/wWbHNqsDWyp2n:XMgMZS+xVhC//NKpwYwbtOsLvs9sqWQI

Entry address:
0x80D1

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, 25, FF, FF, FF, CC, CC, CC, 48, 81, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, EC, 82, 00, 00, 14, 40, 00, 00, D8, 81, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 58, 83, 00, 00, A4, 40, 00, 00, 34, 81, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 32, 85, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 90, 85, 00, 00, F6, 84, 00, 00, 0A, 85, 00, 00, 1E, 85, 00, 00, 00, 00, 00, 00, 3E, 82, 00, 00, 5A, 82, 00, 00, 72...
 
[+]

Entropy:
6.5560

Code size:
16.5 KB (16,896 bytes)

Driver
Display name:
storvsc

Type:
Kernel device driver (KernelDriver)

Group:
Base


Scan storvsc.sys - Powered by Reason Core Security