bckd.sys

K9 Web Protection

Blue Coat Systems, Inc.

It runs as a Windows 64-bit kernel mode device driver named “bckd”.
Publisher:
Blue Coat Systems, Inc.  (signed and verified)

Product:
K9 Web Protection

Description:
K9 Web Protection Driver (WFP)

Version:
4.4.276

MD5:
ede6660dc25063ac4d003d6d088bdd28

SHA-1:
3044f00dd8de832f4d1708b2a848e0de4710e39e

SHA-256:
3dc3513b1c6dcda6fe42bb28e4e48bd34ed244b5f891f7e740f14068fbc71ffc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 8:00:00 AM UTC  (today)

File size:
104.2 KB (106,712 bytes)

Product version:
4.4.276

Copyright:
Copyright (C) 2006 - 2010 Blue Coat Systems, Inc.

Original file name:
bckd.sys

File type:
Driver (Win64 SYS)

Common path:
C:\Windows\System32\drivers\bckd.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/30/2013 4:00:00 AM

Valid to:
11/29/2016 3:59:59 AM

Subject:
CN="Blue Coat Systems, Inc.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Blue Coat Systems, Inc.", L=Sunnyvale, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
601E5D574BBD33EE8DF5DD661AB8ADE5

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
1536:/dd+MO7RV6Msf5rwwLJ1+t/Ing4O7CdBprvbSbsHBX:XCsf1wwL7s/IJO7CdT2bsHBX

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, DE, 65, FF, FF, CC, CC, 50, 91, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 9A, 95, 01, 00, 9C, 70, 01, 00, B4, 90, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 34, 96, 01, 00, 00, 70, 01, 00, E8, 90, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 0E, 99, 01, 00, 34, 70, 01, 00, CC, 90, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, C4, 99, 01, 00, 18, 70, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, C8, 95, 01, 00, EA, 95, 01, 00, 0C, 96...
 
[+]

Driver
Display name:
bckd

Type:
Kernel device driver (KernelDriver)


Scan bckd.sys - Powered by Reason Core Security