Partizan.sys

RegRun Security Suite

Greatis Software LLC

This is installed with RegRun Security Suite Platinum.
Publisher:
Greatis Software  (signed by Greatis Software LLC)

Product:
RegRun Security Suite

Description:
Partizan - Rootkit detector

Version:
1, 0, 0, 5

MD5:
032f1c32a6a97c317aeff9d64d2a1d8a

SHA-1:
50d027eb8240a4c0d4610e47a912dc8e4d6d88e5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 3:43:29 PM UTC  (today)

File size:
39.4 KB (40,304 bytes)

Product version:
6, 8, 0, 0

Copyright:
Copyright © 2007-2010

Trademarks:
Partizan

Original file name:
Partizan.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\partizan.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/3/2013 7:00:00 PM

Valid to:
11/2/2016 6:59:59 PM

Subject:
CN=Greatis Software LLC, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Greatis Software LLC, L=Yaroslavl, S=YAROSLAVL, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5742A26DD75261476201E40AD8B8FC55

File PE Metadata
Compilation timestamp:
4/5/2010 4:59:50 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
6.0

CTPH (ssdeep):
384:pCjkC7bpF1Th0FCTKb4dvQfaWe+zXON9TAgSu2+UHeMKJRgWsG8lfa:pCRxThRTkVaN1qWgTA

Entry address:
0x1DCB

Entry point:
55, 8B, EC, 81, EC, AC, 01, 00, 00, 56, 57, B9, 08, 00, 00, 00, BE, 80, 1C, 01, 00, 8D, BD, 0C, FF, FF, FF, F3, A5, 66, A5, B9, 0A, 00, 00, 00, BE, A4, 1C, 01, 00, 8D, BD, 48, FF, FF, FF, F3, A5, 66, A5, A1, D0, 1C, 01, 00, 89, 85, E8, FE, FF, FF, 8B, 0D, D4, 1C, 01, 00, 89, 8D, EC, FE, FF, FF, 8B, 15, D8, 1C, 01, 00, 89, 95, F0, FE, FF, FF, B9, 22, 00, 00, 00, BE, DC, 1C, 01, 00, 8D, BD, 74, FF, FF, FF, F3, A5, 66, A5, 68, 44, 64, 6B, 20, 8B, 45, 0C, 33, C9, 66, 8B, 08, 83, C1, 02, 51, 6A, 01, FF, 15, 24...
 
[+]

Entropy:
4.7420

Developed / compiled with:
Microsoft Visual C++

Code size:
12.6 KB (12,896 bytes)

The file Partizan.sys has been discovered within the following programs.

RegRun Security Suite Platinum  by Greatis Software
www.regrun.com
About 9% of users remove it
 
Powered by Should I Remove It?

Scan Partizan.sys - Powered by Reason Core Security