pad.sys

SOCIEDADE EDUCACIONAL POSITIVO LTDA

It runs as a Windows 64-bit kernel mode device driver named “Positivo Audio Driver (WDM)”.
Publisher:
SOCIEDADE EDUCACIONAL POSITIVO LTDA  (signed and verified)

MD5:
4312d307729ebc73fea44e32d6bb2f97

SHA-1:
3782713cf9623200f6f8408cb5086942707ba356

SHA-256:
e1a52b4c7a08eaaadb6d64cecc4a737d6bbcc6e59832d5760098804671ba9951

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 3:16:38 AM UTC  (today)

File size:
51.3 KB (52,496 bytes)

File type:
Driver (Win64 SYS)

Common path:
C:\Windows\System32\drivers\pad.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
8/16/2010 12:18:36 PM

Valid to:
8/17/2011 12:18:34 PM

Subject:
CN=SOCIEDADE EDUCACIONAL POSITIVO LTDA, O=SOCIEDADE EDUCACIONAL POSITIVO LTDA, L=Curitiba, S=PR, C=BR

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000012A7B92DCEF

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
1536:vUw7uuL13uqooWToGNlfnhGRRNICKC+7/ioxU:vTKMuqVGXnhGRRNjY70

Entry point:
8B, FF, 55, 8B, EC, 56, 57, B1, 50, E8, 12, E8, FF, FF, A1, 3C, 9B, 01, 00, 85, C0, 74, 12, BE, 0E, 01, 00, C0, E8, 4F, 91, FF, FF, 5F, 8B, C6, 5E, 5D, C2, 08, 00, E8, 72, E6, FF, FF, 84, C0, 74, 2E, E8, 99, E7, FF, FF, 8B, 7D, 0C, 0F, B7, 0F, 8B, 47, 04, 50, D1, E9, 51, 68, BC, 8E, 01, 00, 68, 50, 9B, 01, 00, FF, 15, 94, 88, 01, 00, 83, C4, 10, E8, F4, 98, FF, FF, 84, C0, 75, 12, BE, 01, 00, 00, C0, E8, 06, 91, FF, FF, 5F, 8B, C6, 5E, 5D, C2, 08, 00, C7, 05, 48, 9B, 01, 00, 00, 00, 00, 00, 66, C7, 05, 44...
 
[+]

Driver
Display name:
Positivo Audio Driver (WDM)

Service name:
PositivoAudioDriverWdm

Type:
Kernel device driver (KernelDriver)


Scan pad.sys - Powered by Reason Core Security