tumdrv.sys

tumdrv

LLP Scientific-Research Laboratory of Gamma Technologies

It runs as a Windows 64-bit kernel mode device driver named “tumdrv”.
Publisher:
Scientific Lab. Gamma Technologies  (signed by LLP Scientific-Research Laboratory of Gamma Technologies)

Product:
tumdrv

Description:
GOST Cryptography function Driver

Version:
1.0.1.1

MD5:
8033b93b3002b709eb7b342c8d822b60

SHA-1:
4a99fb443645df232ac7a90803f3f2e2a22af219

SHA-256:
d4f98d7d631fa717d71b86f09dbd855af79f7519dcda0878180c7ad36ce37a4e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 4:14:00 PM UTC  (today)

File size:
27.8 KB (28,416 bytes)

Product version:
1.0.1.1

Copyright:
Copyright © 2013 Gamma Technologies

Original file name:
tumdrv.sys

File type:
Driver (Win64 SYS)

Common path:
C:\Windows\System32\drivers\tumdrv.sys

Digital Signature
Authority:
thawte, Inc.

Valid from:
6/16/2015 6:00:00 AM

Valid to:
8/15/2017 5:59:59 AM

Subject:
CN=LLP Scientific-Research Laboratory of Gamma Technologies, O=LLP Scientific-Research Laboratory of Gamma Technologies, L=Almaty, S=Almaty, C=KZ

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
55D3700C141F019CB3B66220631646FF

File PE Metadata
Compilation timestamp:
4/9/2015 11:22:14 AM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

Entry address:
0x940C

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, DE, FB, FF, FF, CC, CC, CC, CC, CC, CC, 58, 94, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 0C, 9A, 00, 00, 00, 30, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, F0, 95, 00, 00, 00, 00, 00, 00, FC, 95, 00, 00, 00, 00, 00, 00, 0E, 96, 00, 00, 00, 00, 00, 00, 26, 96, 00, 00, 00, 00, 00, 00, 42, 96, 00, 00, 00, 00, 00, 00, 56, 96, 00, 00, 00, 00, 00, 00, 68, 96, 00, 00...
 
[+]

Code size:
17 KB (17,408 bytes)

Driver
Display name:
tumdrv

Type:
Kernel device driver (KernelDriver)


Scan tumdrv.sys - Powered by Reason Core Security