d3_kafm.sys

Datev Datensafe

DATEV eG

It runs as a Windows 64-bit kernel mode device driver named “SC_SERV3D”.
Publisher:
DATEV eG  (signed and verified)

Product:
Datev Datensafe

Description:
d3_kafm.sys, virtual disk driver (64bit)

Version:
2012, 01, 10, 1

MD5:
96ad7163bdbb94d2c6b57ff294c7064c

SHA-1:
3978ff92ad54812e7abfea0b4f126d58df2f8498

SHA-256:
c750c123511b29602d3f8d73a4c28704ac798ba8a6b7e35e5b519a651259350e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 12:54:28 PM UTC  (today)

File size:
94.7 KB (96,952 bytes)

Product version:
1, 0, 15, 4

Copyright:
Copyright © 2008-2012 Datev eG

Original file name:
d3_kafm.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\d3_kafm.sys

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
10/22/2012 2:00:00 AM

Valid to:
10/23/2015 1:59:59 AM

Subject:
CN=DATEV eG, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=DATEV eG, L=Nuernberg, S=Bayern, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
57663F68B53E5096C7092573C28F8596

File PE Metadata
Compilation timestamp:
3/3/2014 2:23:37 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
1536:t7NsfJxDgLRrNWpQMqRtxnxLlMfWyrh6+0VnfqxKxJCZXnM6iOYfyuI:IeRrQpQRRt1xhqxCCZkOeyh

Entry address:
0x170B8

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, 3A, EF, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 32, 30, 31, 33, 2C, 31, 2C, 31, 33, 2C, 31, 00, CC, CC, CC, CC, 44, 41, 54, 45, 56, 20, 44, 61, 74, 65, 6E, 73, 61, 66, 65, 2D, 54, 72, 65, 69, 62, 65, 72, 20, 69, 73, 20, 73, 74, 61, 72, 74, 69, 6E, 67, 2C, 20, 56, 65, 72, 73, 69, 6F, 6E, 20, 25, 73, 0A, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 5C, 00, 52, 00, 45, 00, 47, 00...
 
[+]

Code size:
78.5 KB (80,384 bytes)

Driver
Display name:
SC_SERV3D

Type:
Kernel device driver (KernelDriver)

Group:
vdd group ka_driver


Scan d3_kafm.sys - Powered by Reason Core Security