hrwfpdrv.sys

Huorong Internet Security

HuoRongBoRui (Beijing) Technology Co.,Ltd

It runs as a Windows 64-bit kernel mode device driver named “Huorong Network Security Firewall Core Kext (WFP)”.
Publisher:
Beijing Huorong Network Technology Co., Ltd.  (signed by HuoRongBoRui (Beijing) Technology Co.,Ltd)

Product:
Huorong Internet Security

Description:
Huorong Internet Security Firewall Core Kext (WFP)

Version:
4.0.0.0

MD5:
5ab8c4d3e3900263de8a05baca30ce1c

SHA-1:
80ad2d48379bc92bacb34253743a9f86c0373280

SHA-256:
f8dd84345dff82d67fd06f3eb454c4c5db1c07db32163564c94b7ba3ce6fc29c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 1:05:09 PM UTC  (today)

File size:
43.9 KB (44,992 bytes)

Product version:
4.0.0.0

Copyright:
Beijing Huorong Network Technology Co., Ltd.

Original file name:
hrwfpdrv.sys

File type:
Driver (Win64 SYS)

Common path:
C:\Windows\System32\drivers\hrwfpdrv.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/25/2015 8:00:00 AM

Valid to:
6/24/2018 7:59:59 AM

Subject:
CN="HuoRongBoRui (Beijing) Technology Co.,Ltd", O="HuoRongBoRui (Beijing) Technology Co.,Ltd", L=beijing, S=beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
705BAFA86C31B25B22F23B09AB056BCF

File PE Metadata
Compilation timestamp:
3/15/2017 4:20:33 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
14.0

Entry address:
0x2000

Entry point:
48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 50, 33, DB, 48, 8B, F1, 66, 89, 5C, 24, 30, 48, 8D, 0D, 20, 60, 00, 00, 89, 5C, 24, 28, 45, 33, C9, 45, 33, C0, 48, C7, 44, 24, 20, 6C, 07, 00, 00, 33, D2, FF, 15, 5D, 51, 00, 00, 48, 8D, 15, 26, 53, 00, 00, 48, 8D, 4C, 24, 40, FF, 15, 63, 51, 00, 00, 48, 8D, 44, 24, 70, BA, F0, 00, 00, 00, 48, 89, 44, 24, 30, 44, 8D, 4B, 12, 88, 5C, 24, 28, 4C, 8D, 44, 24, 40, 48, 8B, CE, 89, 5C, 24, 20, FF, 15, 12, 51, 00, 00, 8B, F8, 85, C0, 0F, 88, AC, 00, 00, 00...
 
[+]

Entropy:
6.8047

Code size:
21 KB (21,504 bytes)

Driver
Display name:
Huorong Network Security Firewall Core Kext (WFP)

Service name:
hrwfpdrv

Type:
Kernel device driver (KernelDriver)


Scan hrwfpdrv.sys - Powered by Reason Core Security