btfilter.sys

Windows Win 7 DDK driver

Qualcomm Atheros

It runs as a Windows kernel mode device driver named “BtFilter”.
Publisher:
Qualcomm Atheros  (signed and verified)

Product:
Windows (R) Win 7 DDK driver

Description:
Qualcomm Atheros BtFilter Driver

Version:
10.0.1.12 built by: WinDDK

MD5:
b0fc258b3593d89962955b97b92c6070

SHA-1:
0a0ecf9bee65ebd017807c7cfdc09226cce95da1

SHA-256:
34fa4bbfa957a3e0d0be816aaa78dc512a014d15d910964485b2b2dd1aa2103d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/25/2024 5:32:46 AM UTC  (today)

File size:
507.4 KB (519,584 bytes)

Product version:
10.0.1.12

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
btfilter.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\btfilter.sys

Digital Signature
Authority:
Symantec Corporation

Valid from:
2/25/2015 4:00:00 PM

Valid to:
3/27/2018 3:59:59 PM

Subject:
CN=Qualcomm Atheros, O=Qualcomm Atheros, L=San Jose, S=California, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
1DB6A714F412F084FFF0677F880D2883

File PE Metadata
Compilation timestamp:
10/18/2016 11:38:37 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

Entry address:
0x8803E

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, 48, E0, FF, FF, CC, CC, C8, 80, 08, 00, 00, 00, 00, 00, 00, 00, 00, 00, F6, 89, 08, 00, 28, 10, 07, 00, A0, 80, 08, 00, 00, 00, 00, 00, 00, 00, 00, 00, 40, 8A, 08, 00, 00, 10, 07, 00, BC, 80, 08, 00, 00, 00, 00, 00, 00, 00, 00, 00, 72, 8A, 08, 00, 1C, 10, 07, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 92, 8C, 08, 00, 68, 8C, 08, 00, 2C, 8A, 08, 00, 18, 8A, 08, 00, 04, 8A, 08, 00, 84, 8C, 08, 00, 00, 00, 00, 00, 48, 8A...
 
[+]

Entropy:
6.8588

Code size:
455.5 KB (466,432 bytes)

Driver
Display name:
BtFilter

Type:
Kernel device driver (KernelDriver)