VBoxSF.sys

VirtualBox Guest Additions

InnoTek Systemberatung GmbH

Publisher:
innotek GmbH  (signed by InnoTek Systemberatung GmbH)

Product:
VirtualBox Guest Additions

Description:
VirtualBox Shared Folders Minirdr

Version:
1.5.2

MD5:
a7fd4984380f9c3b4759006a821bf552

SHA-1:
28cfa730d04bc254e46f892a1033851153d6b1b9

SHA-256:
d8e9eb58cb21daa3809f2a14a7e785bd80679330706dc6e60c181d8b346e1244

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 5:02:24 PM UTC  (today)

File size:
180.9 KB (185,248 bytes)

Product version:
1.5.2

Copyright:
Copyright (C) 2004-2007 innotek GmbH

Original file name:
VBoxSF.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\driver\vboxsf\vboxsf.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
1/9/2007 2:35:15 PM

Valid to:
1/9/2008 2:35:15 PM

Subject:
E=info@innotek.de, CN=InnoTek Systemberatung GmbH, O=InnoTek Systemberatung GmbH, C=DE

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000011006DAED6B

File PE Metadata
Compilation timestamp:
10/18/2007 3:09:45 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
3072:1YGi5YiZtPxeA/4NMSWR+nTiQGAlfaPsklwAd02gc3pDpL:PkLca0nKAlfaPskSFrCR

Entry address:
0x2390

Entry point:
55, 8B, EC, 6A, FF, 68, 08, 10, 41, 00, 68, 1C, 38, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 30, 53, 56, 57, 33, FF, 89, 7D, E0, 89, 7D, D0, 89, 7D, D4, E8, 4D, 18, 00, 00, 85, C0, 7C, 29, 57, 6A, 02, E8, E1, F6, FF, FF, 85, C0, 75, 1D, 8D, 45, D0, 50, E8, 54, 18, 00, 00, 83, C4, 04, 3B, C7, 7D, 25, 6A, 02, 57, E8, C5, F6, FF, FF, E8, 30, 18, 00, 00, B8, 01, 00, 00, C0, 8B, 4D, F0, 64, 89, 0D, 00, 00, 00, 00, 5F, 5E, 5B, 8B, E5, 5D, C2, 08, 00, 8B, 75, 08, C7, 46, 34, 30, 1F...
 
[+]

Entropy:
6.6970

Developed / compiled with:
Microsoft Visual C++

Code size:
151.9 KB (155,584 bytes)

Scan VBoxSF.sys - Powered by Reason Core Security