tizeq32.sys

Tomislav Zubcic

It runs as a Windows kernel mode device driver named “tizeqdrv”.
Publisher:
Tomislav Zubcic  (signed and verified)

MD5:
fcb15953b866ab20516e42e38036083f

SHA-1:
bac72f0edf390911465c501359c9fd969cfc8e7b

SHA-256:
7554a6245ee0bd482c3dbeb176512f89c364680627bc48c829a6bd684dbfe160

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 1:03:50 AM UTC  (today)

File size:
115.7 KB (118,456 bytes)

File type:
Driver (Win32 SYS)

Common path:
C:\users\{user}\appdata\roaming\tzac2\tizeq32.sys

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
8/25/2011 2:55:20 PM

Valid to:
7/25/2012 4:05:18 PM

Subject:
CN=Tomislav Zubcic, C=HR

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121A766DBF7828D34AE4359F29127FBC4C0

File PE Metadata
Compilation timestamp:
5/30/2012 5:42:13 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
3072:GUqS/TJqrBhTXFmOiIYVoAO7ioYcOB7RrROQl:HJFqr0OiiA6igkNx

Entry address:
0x6060D

Entry point:
9C, 68, 85, 41, 60, 5B, 52, C7, 44, 24, 08, B4, CE, 45, 00, 9C, C7, 44, 24, 08, 9A, 96, E6, 3B, 60, 9C, C6, 04, 24, 03, 8D, 64, 24, 2C, E9, B3, 0D, 00, 00, E9, 3B, E0, FF, FF, C8, 6B, F3, A6, E9, AE, A3, C5, 5A, 21, 98, E6, F2, 43, A4, 92, 4A, 68, 64, D7, D6, AA, 20, 94, 32, 0D, B4, 02, BE, 83, 5B, 8F, 96, AF, 94, 6E, 0A, 51, A8, 4F, 49, EC, 44, 29, 14, 36, 1B, FE, 2D, FE, 66, 0E, 48, 69, CB, C8, C2, E9, D0, A8, 1A, 63, 70, 3B, 09, 33, 7D, 4A, 14, 5B, E2, 92, 32, 3E, B3, F6, 01, 03, D2, 0A, C2, 41, 18, C3...
 
[+]

Code size:
10 KB (10,240 bytes)

Driver
Display name:
tizeqdrv

Type:
Kernel device driver (KernelDriver)


Scan tizeq32.sys - Powered by Reason Core Security