MftWipeFilter.sys

Jetico BCWipe

Jetico Inc. Oy

Publisher:
Windows (R) Win 7 DDK provider  (signed by Jetico Inc. Oy)

Product:
Jetico® BCWipe®

Description:
MFT Wiping Process Filtering Driver

Version:
1.0.0.4 built by: WinDDK

MD5:
a52d4936e07defc63b7a6cccce016823

SHA-1:
49f1f0c6355f449a529410195e1aed10f8deca88

SHA-256:
93dda8eba1bc6fac556d592181db2850e68ad3a86cb7707518ff6c712830f990

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 4:51:21 AM UTC  (today)

File size:
50.2 KB (51,392 bytes)

Product version:
1.0.0.4

Copyright:
© Jetico Inc. All rights reserved.

Original file name:
MftWipeFilter.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\driversxp_ia64\mftwipefilter.sys

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
9/7/2012 2:00:00 AM

Valid to:
9/9/2015 1:59:59 AM

Subject:
CN=Jetico Inc. Oy, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Jetico Inc. Oy, L=Espoo, S=Uusimaa, C=FI

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
31C10146F5E05334B854758765316025

File PE Metadata
Compilation timestamp:
6/18/2013 11:18:38 AM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

Entry address:
0x8020

Entry point:
60, 44, 02, 00, 00, 00, 00, 00, 00, C0, 21, 00, 00, 00, 00, 00, E0, 42, 01, 00, 00, 00, 00, 00, 00, C0, 21, 00, 00, 00, 00, 00, 80, 23, 01, 00, 00, 00, 00, 00, 00, C0, 21, 00, 00, 00, 00, 00, 60, 23, 01, 00, 00, 00, 00, 00, 00, C0, 21, 00, 00, 00, 00, 00, 80, 22, 01, 00, 00, 00, 00, 00, 00, C0, 21, 00, 00, 00, 00, 00, A0, 21, 01, 00, 00, 00, 00, 00, 00, C0, 21, 00, 00, 00, 00, 00, 00, 21, 01, 00, 00, 00, 00, 00, 00, C0, 21, 00, 00, 00, 00, 00, 20, 23, 02, 00, 00, 00, 00, 00, 00, C0, 21, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.1970

Code size:
30 KB (30,720 bytes)

Scan MftWipeFilter.sys - Powered by Reason Core Security