gdkbb64.sys

G Data Security Software

G DATA Software AG

It runs as a Windows 64-bit kernel mode device driver named “G Data GDKBB Driver”.
Publisher:
G DATA Software AG  (signed and verified)

Product:
G Data Security Software

Description:
G Data Security Software G Data GDKBB

Version:
1.0.14336.311

MD5:
35907e19372fcdebf0a03eb5ecdb3fee

SHA-1:
774c435f33eb78906c53df287ce05a7ae00935e6

SHA-256:
9c32323e85994990f36b39d3843cec1a2902445c7594037d415087c03f903d37

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/29/2024 4:26:26 PM UTC  (today)

File size:
25.5 KB (26,112 bytes)

Product version:
1.0.0.0

Copyright:
© G Data Software AG. All rights reserved.

Original file name:
GDKBBlocker.sys

File type:
Driver (Win64 SYS)

Common path:
C:\Windows\System32\drivers\gdkbb64.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
8/1/2013 11:12:48 PM

Valid to:
11/1/2016 11:12:48 PM

Subject:
E=sign@gdata.de, CN=G DATA Software AG, O=G DATA Software AG, L=Bochum, S=Nordrhein-Westfalen, C=DE

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121FEDA96298ED9EAE4AB60382E55E4FD9F

File PE Metadata
Compilation timestamp:
12/2/2014 12:11:43 PM

OS version:
6.0

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
384:VWqVmXnua07yUsNEoIr/xiUmBFU0roKQn2KtPL6bNz5XzdUb+3:Ul04NTukDUGoKQ2LNzpWi3

Entry address:
0x342C

Entry point:
48, 89, 5C, 24, 08, 48, 89, 6C, 24, 10, 48, 89, 74, 24, 18, 57, 48, 83, EC, 20, 48, 85, C9, 48, 8B, EA, 48, 8B, F9, 75, 0A, E8, B8, 4B, 00, 00, E9, F1, 00, 00, 00, 66, 83, 25, F3, 29, 00, 00, 00, 48, 89, 0D, 14, 2A, 00, 00, 48, 8D, 05, 15, 2A, 00, 00, 48, 8D, 0D, DE, 29, 00, 00, 48, 89, 05, DF, 29, 00, 00, 66, C7, 05, D0, 29, 00, 00, 08, 02, FF, 15, 18, 0C, 00, 00, 4C, 8D, 0D, E1, 29, 00, 00, 4C, 8D, 05, 7A, 1C, 00, 00, 48, 8D, 15, B3, 29, 00, 00, 48, 8B, CF, E8, 37, 01, 00, 00, 85, C0, 0F, 88, 99, 00, 00...
 
[+]

Entropy:
6.2343

Code size:
12 KB (12,288 bytes)

Driver
Display name:
G Data GDKBB Driver

Service name:
GDKBB

Description:
G Data GDKBB

Type:
Kernel device driver (KernelDriver)


Scan gdkbb64.sys - Powered by Reason Core Security