xevtchn.sys

XenSource Windows PV drivers

XenSource, Inc

Scan xevtchn.sys - Powered by Reason Core Security
Publisher:
XenSource, Inc

Product:
XenSource Windows PV drivers

Description:
Xen platform driver

Version:
4.0.1.0001 built by: WinDDK

MD5:
82efe16cfb2ebd3196c514905662101f

SHA-1:
b86b279047ec5ce67708eb62ee5e0ce463a07ab1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/8/2016 1:14:53 AM UTC  (today)

File size:
85.5 KB (87,552 bytes)

Product version:
4.0.1.0001

Copyright:
Copyright (C) XenSource, Inc, 2006-2007

Original file name:
xevtchn.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Program Files\common files\acronis\universalrestore\driverspack\xendrivers\xevtchn.sys

File PE Metadata
Compilation timestamp:
8/6/2007 7:25:40 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
1536:pWUPsxWH8Q2kriMfUmrsvn1ohP8Gwkr9jtQDgRXDMNKDuMeu:HPn2k5smIv1ILjRJQ8VDMkuMe

Entry address:
0x2C005

Entry point:
8B, FF, 55, 8B, EC, A1, 80, 42, 02, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 1E, 8B, 15, 44, 31, 02, 00, B8, 80, 42, 02, 00, C1, E8, 08, 33, 02, A3, 80, 42, 02, 00, 75, 07, 8B, C1, A3, 80, 42, 02, 00, F7, D0, A3, 84, 42, 02, 00, 5D, E9, 7B, 69, FD, FF, CC, AC, C0, 02, 00, 00, 00, 00, 00, 00, 00, 00, 00, 90, C8, 02, 00, 28, 30, 01, 00, 84, C0, 02, 00, 00, 00, 00, 00, 00, 00, 00, 00, 4A, C9, 02, 00, 00, 30, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 22...
 
[+]

Entropy:
6.6494

Code size:
71.5 KB (73,216 bytes)

The file xevtchn.sys has been discovered within the following programs.

Publisher's description - “For disaster recovery and system migration in both physical and virtual environments, Acronis True Image Echo Enterprise Server delivers greater flexibility and value for networked Windows and Linux servers.”
www.acronis.com/en-us/promo/ATIES/true-image-echo.html?source=us_googleATIESW&ad=aties
About 9% of users remove it
www.acronis.com
About 9% of users remove it
 
Powered by Should I Remove It?

Scan xevtchn.sys - Powered by Reason Core Security