mmpguidrv.sys

SageTech

It runs as a Windows kernel mode device driver named “MiniAide Magic Partition Gui Driver”.
Publisher:
SageTech  (signed and verified)

MD5:
a66b41d3bec3df5bacdaf1832440b3ac

SHA-1:
bc4dd3750367d5bc0fd2005657099f1f4bb2f136

SHA-256:
c8fca98b3cbf11751ed5213641a8ad7b2dfece117224656e09bf6d33136847a3

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 11:01:38 PM UTC  (a few moments ago)

File size:
12.7 KB (13,048 bytes)

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\mmpguidrv.sys

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
5/11/2011 9:00:00 PM

Valid to:
5/19/2014 8:59:59 PM

Subject:
CN=SageTech, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SageTech, L=San Jose, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
31309A599C3FE22C5AF29A1415C31BC5

File PE Metadata
Compilation timestamp:
9/3/2012 11:18:10 AM

OS version:
5.2

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
192:6wr9+UwMTb2335/wJirNmL/yu72kEkdZgjl+rBE0t0/h+vPr9ZCspE+TMIr+rfk2:6wr9+Uwr3mirILypkEkd6jG2neM360

Entry address:
0x1450

Entry point:
18, 68, 74, 74, 70, 3A, 2F, 2F, 6F, 63, 73, 70, 2E, 76, 65, 72, 69, 73, 69, 67, 6E, 2E, 63, 6F, 6D, 30, 0E, 06, 03, 55, 1D, 0F, 01, 01, FF, 04, 04, 03, 02, 07, 80, 30, 1E, 06, 03, 55, 1D, 11, 04, 17, 30, 15, A4, 13, 30, 11, 31, 0F, 30, 0D, 06, 03, 55, 04, 03, 13, 06, 54, 53, 41, 31, 2D, 33, 30, 1D, 06, 03, 55, 1D, 0E, 04, 16, 04, 14, B4, B7, F1, 89, 49, 26, 60, E7, 65, EA, 73, AE, DC, D3, 38, CD, BF, 57, 92, 6F, 30, 0D, 06, 09, 2A, 86, 48, 86, F7, 0D, 01, 01, 05, 05, 00, 03, 82, 01, 01, 00, 1E, 98, AA, 27...
 
[+]

Code size:
2.5 KB (2,560 bytes)

Driver
Display name:
MiniAide Magic Partition Gui Driver

Service name:
mmpguidrv

Type:
Kernel device driver (KernelDriver)


Scan mmpguidrv.sys - Powered by Reason Core Security