pbsaudrv.sys

PolderbitS Software

It runs as a Windows kernel mode device driver named “PolderbitS Audio Driver”.
Publisher:
PolderbitS Software  (signed and verified)

MD5:
3e63d7cb53a11d6391d9a3e13855aac7

SHA-1:
7f29bbdc6c05621690cb85b8d967e7708c1af88f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 5:01:21 PM UTC  (today)

File size:
101.4 KB (103,824 bytes)

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\pbsaudrv.sys

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
2/8/2008 2:00:00 AM

Valid to:
5/5/2009 2:59:59 AM

Subject:
CN=PolderbitS Software, OU=SECURE APPLICATION DEVELOPMENT, O=PolderbitS Software, L=Enschede, S=Overijssel, C=NL

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
478AC8745AAD9B7759CD8182B7B2546F

File PE Metadata
Compilation timestamp:
10/10/2008 5:02:18 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
1536:C6oPmA3p7uljgZFKyUGGEPloMSgh1EeNCPyfYyU0XoFCM8Q5pwiybnvFAbpn4X:o3p61gn3LFkqbNC9y7XooIytbnvmbpnK

Entry address:
0xE7B3

Entry point:
8B, FF, 55, 8B, EC, A1, 90, 52, 01, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 1E, 8B, 15, 00, 29, 01, 00, B8, 90, 52, 01, 00, C1, E8, 08, 33, 02, A3, 90, 52, 01, 00, 75, 07, 8B, C1, A3, 90, 52, 01, 00, F7, D0, A3, 94, 52, 01, 00, 5D, E9, 91, FF, FF, FF, CC, CC, CC, 54, E8, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, DC, EE, 00, 00, 0C, 28, 00, 00, 48, E8, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 2E, EF, 00, 00, 00, 28, 00, 00, 74, E9, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, F2, EF, 00, 00, 2C, 29, 00...
 
[+]

Entropy:
6.0970

Code size:
48.3 KB (49,408 bytes)

Driver
Display name:
PolderbitS Audio Driver

Service name:
PbsAuDrv

Type:
Kernel device driver (KernelDriver)


Scan pbsaudrv.sys - Powered by Reason Core Security