bdsandbox.sys

Windows Win 7 DDK driver

BITDEFENDER LLC

It runs as a Windows 64-bit file system device driver named “bdsandbox”.
Publisher:
Windows (R) Win 7 DDK provider  (signed by BITDEFENDER LLC)

Product:
Windows (R) Win 7 DDK driver

Description:
BDSandBox Filter Driver

Version:
6.1.7600.16385 built by: WinDDK

MD5:
803cbfcfd4bd6e71c60bff46ed999b22

SHA-1:
ddaaa1408da7ad63354cd3d5276cb0275af5927d

SHA-256:
771af047127e9d9357ed61dda0f852f20d07fb2887639a39b7dbb242c0f49790

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 4:21:09 PM UTC  (today)

File size:
72.6 KB (74,320 bytes)

Product version:
6.1.7600.16385

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
bdsandbox.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\bdsandbox.sys

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
1/20/2010 5:00:00 AM

Valid to:
1/25/2012 4:59:59 AM

Subject:
CN=BITDEFENDER LLC, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=BITDEFENDER LLC, L=Fort Lauderdale, S=Florida, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1C2DD61A35E65DF6299701FF9BE5CA44

File PE Metadata
Compilation timestamp:
4/19/2011 11:12:21 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
1536:RSC+m3orLxITQfLEi0oLxA1NoAJyvOaTCND:4CYrLxTDEi0oLq1N3JyvE

Entry address:
0x12064

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, EE, F1, FE, FF, CC, CC, D8, 21, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 34, 2F, 01, 00, 18, E1, 00, 00, C0, 20, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, FE, 32, 01, 00, 00, E0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, CA, 32, 01, 00, 00, 00, 00, 00, AE, 32, 01, 00, 00, 00, 00, 00, 94, 32, 01, 00, 00, 00, 00, 00, 74, 32, 01, 00, 00, 00, 00, 00, 66, 32, 01, 00...
 
[+]

Entropy:
6.3406

Code size:
57 KB (58,368 bytes)

Driver
Display name:
bdsandbox

Type:
File system 'filter' driver (FileSystemDriver)

Depends on:
FltMgr


Scan bdsandbox.sys - Powered by Reason Core Security