HttpDebuggerSdk.sys

Windows Win 7 DDK driver

IP Petrosyan Khachatur Aramaisovich

It runs as a Windows kernel mode device driver named “HttpDebuggerSdk”.
Publisher:
Windows (R) Win 7 DDK provider  (signed by IP Petrosyan Khachatur Aramaisovich)

Product:
Windows (R) Win 7 DDK driver

Description:
HttpDebuggerSdk WFP Driver (WPP)

Version:
1.5.0.5 built by: WinDDK

MD5:
1939b23153f4775835d63c112fd3650f

SHA-1:
d9287a2cadb1f24a2f55447dce6fba064fbed4ca

SHA-256:
aa7da1a92cc80ad3b0d3c03a3ddb50a550045941bd86b9e2de1bfa5d88bdf1e8

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
11/28/2024 10:47:13 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/NetFilter.E potentially unsafe application
8.0.319.0

Rising Antivirus
Malware.Generic!KSqEZguPxbC@5 (Thunder)
23.00.65.16629

File size:
96 KB (98,296 bytes)

Product version:
6.1.7600.16385

Copyright:
Copyright © HttpDebugger.com

Original file name:
HttpDebuggerSdk.sys

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\httpdebuggersdk.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
4/7/2016 11:28:47 AM

Valid to:
4/8/2017 11:28:47 AM

Subject:
CN=IP Petrosyan Khachatur Aramaisovich, O=IP Petrosyan Khachatur Aramaisovich, S=Respublika Krym, C=RU

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121978CE765BC8F2C5F8EF4E74EFB0CBAE4

File PE Metadata
Compilation timestamp:
4/22/2016 9:25:51 AM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
768:hJKrO0zelpc6abMT1+P05+Ucsiiaj8tQY39To5qlLNJ9LX/XtgTABLX/En23+zjR:hJKanHcVoT1Ig2siikBY39N5viAhvZ2R

Entry address:
0x1503E

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, EE, D0, FE, FF, CC, CC, 94, 51, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 56, 01, 00, E0, 30, 01, 00, B4, 50, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 76, 56, 01, 00, 00, 30, 01, 00, EC, 50, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, F2, 5A, 01, 00, 38, 30, 01, 00, C4, 50, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, EA, 5B, 01, 00, 10, 30, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 40, 56, 01, 00, 62, 56, 01, 00, 1E, 56...
 
[+]

Entropy:
6.7738

Code size:
72 KB (73,728 bytes)

Driver
Display name:
HttpDebuggerSdk

Type:
Kernel device driver (KernelDriver)

Group:
PNP_TDI


Scan HttpDebuggerSdk.sys - Powered by Reason Core Security