sptd.sys

SCSI Pass Through Direct

Duplex Secure Ltd

It runs as a Windows kernel mode device driver named “sptd”.
Publisher:
Duplex Secure Ltd.  (signed by Duplex Secure Ltd)

Product:
SCSI Pass Through Direct

Description:
SCSI Pass Through Direct Host

Version:
1.75.0.0 built by: WinDDK

MD5:
87b5595eb1c623ff5887e36a35e51ba2

SHA-1:
addfedaf578d257e815bad974356403a1b7dfd23

SHA-256:
49f70c0fb71da3f502057367af0411bfc21a2a9da600546f24719a0725257035

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/25/2024 10:15:20 PM UTC  (today)

Scan engine
Detection
Engine version

Trend Micro House Call
PAK_Generic.009
7.2.68

Trend Micro
PAK_Generic.009
10.465.09

File size:
411.1 KB (420,920 bytes)

Product version:
1.75.0.0

Copyright:
Copyright (C) 2004

Original file name:
sptd.sys

File type:
Driver (Win32 SYS)

Language:
Language Neutral

Common path:
C:\Windows\System32\drivers\sptd.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/20/2010 5:00:00 PM

Valid to:
8/21/2013 4:59:59 PM

Subject:
CN=Duplex Secure Ltd, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Duplex Secure Ltd, S=Nevis, C=KN

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
621126C5A45D51531C0B913750EBA75C

File PE Metadata
Compilation timestamp:
11/8/2010 4:24:31 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
12288:cUDMWsFA/atyAFsEW52juWZaEGgPtAFRnB:DqFAmDsF5o37P+nB

Entry address:
0xDC5B5

Entry point:
55, 88, 0C, 24, E8, 02, 05, 01, 00, 66, 0F, BA, E9, 04, 57, 0F, AB, CA, F9, 56, F9, 8B, 55, 08, 9C, 66, 0F, BD, F6, F8, 8D, 88, 91, 97, E0, E0, 8B, 75, 0C, C0, D1, 05, 66, D3, E1, 8B, 4D, 14, F5, E9, 19, 11, 01, 00, 00, 00, 49, 6F, 42, 75, 69, 6C, 64, 50, 61, 72, 74, 69, 61, 6C, 4D, 64, 6C, 00, 00, 00, 4B, 65, 52, 61, 69, 73, 65, 49, 72, 71, 6C, 54, 6F, 44, 70, 63, 4C, 65, 76, 65, 6C, 00, 8D, 64, 24, 04, 0F, 84, 42, 13, 01, 00, 66, 0F, A3, D1, 83, FB, 02, 9C, 60, 8D, 64, 24, 24, 0F, 84, D4, EC, FC, FF, 9C...
 
[+]

Entropy:
7.9154  (probably packed)

Code size:
423.5 KB (433,664 bytes)

Driver
Display name:
sptd

Type:
Kernel device driver (KernelDriver)

Group:
Boot Bus Extender


Scan sptd.sys - Powered by Reason Core Security