vb28qyvpo2.sys

Kingsoft Internet Security

Beijing Kingsoft Security software Co.,Ltd

Publisher:
Kingsoft Corporation  (signed by Beijing Kingsoft Security software Co.,Ltd)

Product:
Kingsoft Internet Security

Version:
2014,02,10,254

MD5:
2275f9bbc028355a976bae6a520e3ba8

SHA-1:
f35712258d96024dbe76ffa20d173c154a51f249

SHA-256:
db659066ac8606aa8ae600e6f62a8f386ef40e7b42bc0004e4591b36cdf33c5b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 2:19:19 PM UTC  (today)

File size:
51.3 KB (52,536 bytes)

Product version:
9,0,146900,254

Copyright:
Copyright (C) 1998-2014 Kingsoft Corporation

Original file name:
kisfly.sys

File type:
Driver (Win32 SYS)

Common path:
C:\Program Files\kingsoft\kingsoft antivirus\vb28qyvpo2.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/26/2011 1:00:00 AM

Valid to:
12/26/2014 12:59:59 AM

Subject:
CN="Beijing Kingsoft Security software Co.,Ltd", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Beijing Kingsoft Security software Co.,Ltd", L=beijing, S=beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
07BC3A51B589E5AF43291DF84EA4C571

File PE Metadata
Compilation timestamp:
2/10/2014 9:28:08 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
768:ILffGN8/s/WVj0Zx4QTIp8ItadGPE9rTymH:ILffGq/nVjaGrtadGPE9rV

Entry address:
0x5F3C

Entry point:
A1, 28, 10, 01, 00, 53, 33, DB, 39, 18, 76, 07, BB, 22, 00, 00, C0, EB, 6A, E8, 05, 1C, 00, 00, 39, 1D, 78, AD, 01, 00, 74, EC, 56, 8B, 74, 24, 0C, 53, 56, 68, 4C, 11, 01, 00, 68, 94, 11, 01, 00, 89, 35, 88, AD, 01, 00, E8, 34, FE, FF, FF, 3B, C3, A3, 8C, AD, 01, 00, 74, 37, 57, 6A, 1C, 59, 53, B8, 74, 89, 01, 00, 8D, 7E, 38, 68, 60, 5E, 01, 00, F3, AB, E8, 40, 34, 00, 00, E8, 5F, FE, FF, FF, FF, 74, 24, 14, E8, 49, 02, 00, 00, E8, 01, 30, 00, 00, E8, F8, 33, 00, 00, E8, 03, 29, 00, 00, 5F, 5E, 8B, C3, 5B...
 
[+]

Entropy:
5.7550

Code size:
35.5 KB (36,352 bytes)

Scan vb28qyvpo2.sys - Powered by Reason Core Security