RzDev_009d.sys - Clean (8/100) - DriverShield Analysis
Analysis of RzDev_009d.sys: clean verdict, risk score 8/100. 0 YARA matches, 0/76 multi-engine detections. SHA256 1caa0204825ac23b. Kernel imports, IOCTL codes, MITRE ATT&CK, and code-signing details.
RzDev_009d.sys - Analysis Report
DriverShield analyzed the Windows kernel driver RzDev_009d.sys and assigned a verdict of Clean with a composite risk score of 8/100, indicating no notable risk signals (0-29 band).
| Verdict | Clean (8/100) |
| YARA matches | 0 |
| Multi-engine detections | 0 / 76 |
| File size | 67736 bytes |
| Code-signing signer | DigiCert Trusted Root G4 |
| Analyzed | 2026-03-23 |
| SHA256 | 1caa0204825ac23b41aef38ac417f166e66f3a2175aab4fc2834c6404a416e8a |
| SHA1 | 0838afc983899fc5d05643339f84eda47497365e |
| MD5 | d58f60ad1f76cd7252cb746cad2f4c97 |
The full report includes the kernel Import Address Table, extracted IOCTL dispatch codes, YARA rule names, MITRE ATT&CK technique mapping, and the Authenticode certificate chain. See the analysis methodology for how the risk score is computed, or browse the driver database for related samples.
Related:
Other drivers signed by DigiCert Trusted Root G4 · Browse the full driver database · CVE library · code signing atlas · BYOVD research index · security glossary
DriverShield © 2025-2026 · Terms · Privacy · Contact