acedrv08.sys

Protect Software GmbH

It runs as a Windows 64-bit kernel mode device driver named “ACEDRV08”.
Publisher:
Protect Software GmbH  (signed and verified)

Description:
Filter Driver ProtectDisc

Version:
8, 0, 0, 6116

MD5:
da06d89cdfdd0d24de75165cf6d4270b

SHA-1:
dc0d7f1a5dd21d303ec638fedf9d754bcc9909aa

SHA-256:
39c2b53e7baf15a5b536e70b834b32d1d0e50617e697db318816c828825e61c1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 12:32:21 PM UTC  (today)

File size:
106.2 KB (108,768 bytes)

Product version:
7, 5, 0, 0

Copyright:
(C) Copyright 2004-2007 Protect Software GmbH

Original file name:
hwctrl.drv

File type:
Driver (Win64 SYS)

Language:
German (Germany)

Common path:
C:\Windows\System32\drivers\acedrv08.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
11/16/2006 3:52:12 PM

Valid to:
11/16/2007 3:52:12 PM

Subject:
E=ttaschner@movieid.de, CN=Protect Software GmbH, O=Protect Software GmbH, C=DE

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000010EF140E669

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
1536:BMTeIDq+WwOY8rrThGGO58SdwWoZrIKCpemVUvypYfyZRf8LAQvKXKUYeWik:B4eItjOnZwErxmSvGfIxUYv

Entry point:
68, 80, 50, 44, 00, 68, 80, C1, 45, 00, 68, 00, 00, 00, 00, E8, 6C, 71, 01, 00, E9, 27, AB, FE, FF, 40, 28, 43, 29, 20, 32, 30, 30, 34, 20, 41, 43, 45, 20, 47, 6D, 62, 48, 2C, 20, 41, 6C, 6C, 20, 52, 69, 67, 68, 74, 73, 20, 52, 65, 73, 65, 72, 76, 65, 64, 20, 57, 6F, 72, 6C, 64, 77, 69, 64, 65, 2E, 20, 41, 43, 45, 20, 53, 65, 63, 75, 72, 69, 74, 79, 20, 44, 72, 69, 76, 65, 72, 20, 57, 69, 6E, 64, 6F, 77, 73, 32, 4B, 58, 50, 00, 00, 10, 01, 00, 00, AE, C4, 65, 45, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC...
 
[+]

Packer / compiler:
PKLITE32, 0x1.1

Driver
Display name:
ACEDRV08

Type:
Kernel device driver (KernelDriver)

Group:
Filter


Scan acedrv08.sys - Powered by Reason Core Security