prtdrv.sys

E-Prime 2.0 (SP1)

Psychology Software Tools, Inc

It runs as a Windows 64-bit kernel mode device driver named “PRTDRV”.
Publisher:
Psychology Software Tools  (signed by Psychology Software Tools, Inc)

Product:
E-Prime 2.0 (SP1)

Description:
Port Driver

Version:
2, 0, 10, 259

MD5:
d88ff3edda88d34efefba6bbf7ad91b6

SHA-1:
957d431da0131f85692557ef2fcb3e0b5ad15b9e

SHA-256:
36759d8613dc12883c8fe3ddddc24f49aa4623911a4691399fcf26f5daa08cba

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/26/2024 7:03:20 PM UTC  (today)

Scan engine
Detection
Engine version

F-Secure
Gen:Variant.Adware.SwiftBrowse.4
5.13.68

File size:
33.3 KB (34,088 bytes)

Product version:
2, 0, 10, 353

Copyright:
Copyright © 2013

Original file name:
prtdrv.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\prtdrv.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/8/2013 2:00:00 AM

Valid to:
6/8/2015 1:59:59 AM

Subject:
CN="Psychology Software Tools, Inc", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Psychology Software Tools, Inc", L=Sharpsburg, S=Pennsylvania, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3887878DCDA74989C464C583BAEF65B4

File PE Metadata
Compilation timestamp:
10/14/2013 11:38:51 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
768:XnKs2uhSY/4iCRS/Cgyey/jVe9MZ4MqmymZ:XfhSYU3gI4MqYZ

Entry address:
0x3160

Entry point:
48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8B, DA, 48, 8B, F9, E8, DF, 70, 00, 00, 48, 8B, D3, 48, 8B, CF, 48, 8B, 5C, 24, 30, 48, 83, C4, 20, 5F, E9, AE, FE, FF, FF, CC, CC, CC, CC, CC, CC, 48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8B, 05, 57, 20, 00, 00, 48, 8B, F9, 48, 8D, 0D, 35, 20, 00, 00, 48, 8D, 1D, 3E, 20, 00, 00, 48, 3B, C1, 74, 45, 48, 3B, D8, 77, 40, 48, 8B, 43, 40, 48, 85, C0, 74, 18, 4C, 8B, 05, DC, 2C, 00, 00, 48, 8D, 0D, 21, 04, 00, 00, 4C, 8B, CB, 48, 8B, D7, FF, D0, EB, 12, 48, 8B, 15...
 
[+]

Entropy:
6.2989

Code size:
18 KB (18,432 bytes)

Driver
Display name:
PRTDRV

Type:
Kernel device driver (KernelDriver)


Scan prtdrv.sys - Powered by Reason Core Security