ZsFR.sys

DuoN

Hyundai Heavy Industries Co., Ltd

It runs as a Windows kernel mode device driver named “ZsFR”.
Publisher:
Hyundai Heavy Industries Co., Ltd.  (signed by Hyundai Heavy Industries Co., Ltd)

Product:
DuoN

Description:
File System Redirect Driver

Version:
1.8.0.2

MD5:
5d34b481f67901ae1bd8af03b28f3993

SHA-1:
3cad10d221d11d6fbec974a1d8b7ecff87352a13

SHA-256:
92b7cb76a384ca498c3f6270efdf6d11a5809e3ef84de275a69be37e6a69c771

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 7:12:50 PM UTC  (today)

File size:
28.1 KB (28,808 bytes)

Product version:
1.8.0.0

Copyright:
Copyright (C) 2008~2012 Hyundai Heavy Industries Co., Ltd. All rights reserved.

Original file name:
ZsFR.sys

File type:
Driver (Win32 SYS)

Common path:
C:\Program Files\hhi\duon\external\zsfr.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/13/2013 9:00:00 AM

Valid to:
9/13/2014 8:59:59 AM

Subject:
CN="Hyundai Heavy Industries Co., Ltd", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Hyundai Heavy Industries Co., Ltd", L=Dong-gu, S=Ulsan, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
53EEC1C6D9B15190CD0D9B6D5E7098BF

File PE Metadata
Compilation timestamp:
12/4/2013 10:24:44 AM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
384:+cH8FQR/Gqzal6axKSowRabUhq9hQ0TQjAlExyinYPLQrOQeMaN:uFMeqz0How0Kq9X6qYyiin

Entry address:
0x703E

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, 76, AD, FF, FF, CC, CC, F4, 70, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, D4, 73, 00, 00, 54, 50, 00, 00, E4, 70, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 2A, 74, 00, 00, 44, 50, 00, 00, A0, 70, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, CE, 75, 00, 00, 00, 50, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, B2, 75, 00, 00, 94, 75, 00, 00, 74, 75, 00, 00, 60, 75, 00, 00, 3C, 75, 00, 00, 1E, 75, 00, 00, 02, 75, 00, 00, EE, 74...
 
[+]

Entropy:
6.5648

Code size:
14.5 KB (14,848 bytes)

Driver
Display name:
ZsFR

Type:
Kernel device driver (KernelDriver)


Scan ZsFR.sys - Powered by Reason Core Security