pcid32.sys

Newtone Corporation

It runs as a Windows kernel mode device driver named “PCID32”.
Publisher:
Newtone Corporation  (signed and verified)

MD5:
52b69c2f76df7a2fe7954e3be800397b

SHA-1:
27604ea39f0c0f5f043adb0db0c189f4f32bc0d9

SHA-256:
624ce51d43d37abdf7e5042c5e6c6923741bcff25d75f8e33d7af94b73ef5e21

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 6:40:49 AM UTC  (today)

File size:
14.3 KB (14,600 bytes)

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\pcid32.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
6/28/2011 4:17:31 PM

Valid to:
8/23/2013 9:40:15 AM

Subject:
CN=Newtone Corporation, O=Newtone Corporation, C=JP

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112149B7AA331A08A38CF57A43CB4DBFEC9F

File PE Metadata
Compilation timestamp:
4/22/2008 2:22:54 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
5.12

CTPH (ssdeep):
192:fvfxpIqVdlcVAyyoHyp3YYVSNV8vG8u88TgBxe1HCjm+dl014sxxm10qOgW:fvfAklcmRVLOF8pK5+dYPYqqe

Entry address:
0x2A6

Entry point:
55, 8B, EC, 83, EC, 1C, 56, 83, 65, FC, 00, 57, 6A, 01, FF, 75, 0C, 8D, 45, E4, 50, FF, 15, F8, 14, 01, 00, 8D, 45, E4, 50, FF, 15, F4, 14, 01, 00, 8B, 3D, F0, 14, 01, 00, 8D, 45, F4, 68, 60, 02, 01, 00, 50, FF, D7, 8B, 75, 08, 8D, 45, FC, 50, 6A, 00, 6A, 00, 8D, 45, F4, 6A, 22, 50, 6A, 30, 56, FF, 15, EC, 14, 01, 00, 85, C0, 7C, 63, 8D, 45, EC, 68, 80, 02, 01, 00, 50, C7, 46, 38, 7A, 03, 01, 00, C7, 46, 40, 7A, 03, 01, 00, C7, 46, 70, 64, 03, 01, 00, C7, 46, 34, C4, 03, 01, 00, FF, D7, 8D, 45, F4, 50, 8D...
 
[+]

Entropy:
7.0000

Developed / compiled with:
Microsoft Visual C++

Code size:
5.4 KB (5,568 bytes)

Driver
Display name:
PCID32

Type:
Kernel device driver (KernelDriver)


Scan pcid32.sys - Powered by Reason Core Security