vhhub.sys

VirtualHere USB Hub

VirtualHere Pty. Ltd.

It runs as a Windows 64-bit kernel mode device driver named “VirtualHere USB Root Hub”.
Publisher:
VirtualHere Pty. Ltd.  (signed and verified)

Product:
VirtualHere USB Hub

Version:
built by: WinDDK

MD5:
dbe1fd2413f5fca13992b52ab985685a

SHA-1:
0014a34f791b8817fb85d0b100c2571ebaa9115b

SHA-256:
c67b9f1dc1a290398ee2ff798e3d0cebc5d163768d01e9f0d0c3f3fedba38d7b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/28/2024 11:07:35 AM UTC  (today)

File size:
59.2 KB (60,624 bytes)

Product version:
2.0.0

Copyright:
VirtualHere Pty. Ltd.

Original file name:
vhhub.sys

File type:
Driver (Win64 SYS)

Common path:
C:\Windows\System32\drivers\vhhub.sys

Digital Signature
Authority:
StartCom Ltd.

Valid from:
3/24/2014 2:20:22 PM

Valid to:
3/23/2016 5:21:42 PM

Subject:
E=mail@virtualhere.com, CN=VirtualHere Pty. Ltd., O=VirtualHere Pty. Ltd., L=Manly, S=New South Wales, C=AU, Description=NixqMW3S42GFLVk6

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0DAE

File PE Metadata
Compilation timestamp:
9/19/2014 6:22:40 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
1536:bfl6QEFshXxXFjMzMZb9SUVES9xfhhjG:8QEFsBNFwgZboUES3fh

Entry address:
0x9B9C

Entry point:
48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8B, DA, 48, 8B, F9, E8, 57, 64, 00, 00, 48, 8B, D3, 48, 8B, CF, 48, 8B, 5C, 24, 30, 48, 83, C4, 20, 5F, E9, AE, FE, FF, FF, CC, CC, CC, CC, CC, CC, 48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8B, 05, 9B, 36, 00, 00, 48, 8B, F9, 48, 8D, 0D, 79, 36, 00, 00, 48, 8D, 1D, 82, 36, 00, 00, 48, 3B, C1, 74, 45, 48, 3B, D8, 77, 40, 48, 8B, 43, 40, 48, 85, C0, 74, 18, 4C, 8B, 05, 20, 43, 00, 00, 48, 8D, 0D, 57, 01, 00, 00, 4C, 8B, CB, 48, 8B, D7, FF, D0, EB, 12, 48, 8B, 15...
 
[+]

Entropy:
6.3674

Code size:
44 KB (45,056 bytes)

Driver
Display name:
VirtualHere USB Root Hub

Service name:
vhhub

Type:
Kernel device driver (KernelDriver)

Group:
Extended Base


Scan vhhub.sys - Powered by Reason Core Security