jraid.sys

Contoso.com(Test)

It runs as a Windows kernel mode device driver named “JRAID”.
Publisher:
Contoso.com(Test)  (signed and verified)

MD5:
69479b7815e98d0c96a431c3c546beb0

SHA-1:
1457629798590ff70fc41fff5e490d271a388567

SHA-256:
12796192b436b28652bc163e6049972445cb1e5c69f114ed07e8fe5c4e126bc9

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 11:33:31 AM UTC  (today)

File size:
74.9 KB (76,688 bytes)

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\jraid.sys

Digital Signature
Authority:
Root Agency

Valid from:
8/31/2007 9:53:51 AM

Valid to:
1/1/2040 12:59:59 AM

Subject:
CN=Contoso.com(Test)

Issuer:
CN=Root Agency

Serial number:
9739409CCAF19EBB4D4C4E0EC8F5FB9F

File PE Metadata
Compilation timestamp:
4/3/2008 8:25:56 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
1536:YZhfZHfDNT/I7tGB/VG5yY9ZXV3vRtRpBIYo8YHfClWSqxebvjli3wm:WT/JrT7aXVfRtK78wfClWnUQ3wm

Entry address:
0x15005

Entry point:
8B, FF, 55, 8B, EC, A1, 68, 40, 02, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 1A, A1, 08, 30, 02, 00, 8B, 00, 35, 68, 40, 02, 00, A3, 68, 40, 02, 00, 75, 07, 8B, C1, A3, 68, 40, 02, 00, F7, D0, A3, 6C, 40, 02, 00, 5D, E9, 9D, 09, FF, FF, CC, BC, 50, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 1E, 53, 01, 00, 14, 30, 01, 00, B0, 50, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 2C, 53, 01, 00, 08, 30, 01, 00, 08, 51, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, CA, 53, 01, 00, 60, 30, 01, 00, A8, 50, 01, 00, 00...
 
[+]

Code size:
70 KB (71,680 bytes)

Driver
Display name:
JRAID

Type:
Kernel device driver (KernelDriver)

Group:
SCSI Miniport


Scan jraid.sys - Powered by Reason Core Security