sddiskctrl.sys

DriverDevelop.com

The file sddiskctrl.sys by DriverDevelop.com has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It is also typically executed from the user's temporary directory.
Publisher:
DriverDevelop.com  (signed and verified)

MD5:
7be547f6a1e2540f57bf38bf5a560d17

SHA-1:
f08187f33749f7f6d7bd0ad8b866216bc1f78fe5

SHA-256:
9a7636781a66118d639138ede6e7c6683b828d1174461a59ae43eabd595545ec

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/16/2024 11:06:38 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.11.13.0

File size:
14.9 KB (15,272 bytes)

File type:
Driver (Win64 SYS)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\dxr格式化工具 v20141212\amd64\sddiskctrl.sys

Digital Signature
Authority:
DriverDevelop.com

Valid from:
8/15/2009 11:02:01 AM

Valid to:
8/13/2019 11:02:01 AM

Subject:
E=ca@zndev.com, CN=DriverDevelop.com Signtools Test cert, OU=Dept. CodeSign CA, O=DriverDevelop.com, S=BeiJing, C=CN

Issuer:
E=ca@zndev.com, CN=DriverDevelop.com CA, OU=DriverDevelop.com CA, O=DriverDevelop.com, L=BeiJing, S=BeiJing, C=CN

Serial number:
011E

File PE Metadata
Compilation timestamp:
6/6/2012 2:44:27 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
192:ihvfc9HJDw9l0HWWJC2BVTC335/wJirNmL/FZgjlyV:kc9H5Y0HFC2B1C3mirILF6jC

Entry address:
0x6064

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, 86, AF, FF, FF, CC, CC, B0, 60, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 3A, 63, 00, 00, 00, 30, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 68, 61, 00, 00, 00, 00, 00, 00, 80, 61, 00, 00, 00, 00, 00, 00, 94, 61, 00, 00, 00, 00, 00, 00, AC, 61, 00, 00, 00, 00, 00, 00, BE, 61, 00, 00, 00, 00, 00, 00, D0, 61, 00, 00, 00, 00, 00, 00, E6, 61, 00, 00...
 
[+]

Entropy:
5.7815

Code size:
5.5 KB (5,632 bytes)

Remove sddiskctrl.sys - Powered by Reason Core Security