usbpcap.sys

USBPcap Sniffer Driver

Wireshark Foundation, Inc.

It runs as a Windows 64-bit kernel mode device driver named “USBPcap Capture Service”.
Publisher:
USBPcap  (signed by Wireshark Foundation, Inc.)

Product:
USBPcap Sniffer Driver

Description:
USBPcap Driver

Version:
1.1.0.0-g794bf26

MD5:
bc26f06004e97cfbc8c04e995a320881

SHA-1:
184947a7d4049172623d7100813d5a55c500b360

SHA-256:
400844a3bd36fcf8c35d1b56d90dacdf8f445d94df3df352ab448c26f132d565

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/28/2024 3:58:37 PM UTC  (today)

File size:
49.9 KB (51,104 bytes)

Product version:
1.1.0.0-g794bf26

Copyright:
(c) 2013-2015 Tomasz Mon

Original file name:
USBPcap

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\usbpcap.sys

Digital Signature
Authority:
DigiCert Inc

Valid from:
7/21/2015 3:00:00 AM

Valid to:
7/27/2016 3:00:00 PM

Subject:
CN="Wireshark Foundation, Inc.", O="Wireshark Foundation, Inc.", L=Davis, S=California, C=US, PostalCode=95618, STREET=338 Madson Pl, SERIALNUMBER=C3061103, OID.1.3.6.1.4.1.311.60.2.1.2=California, OID.1.3.6.1.4.1.311.60.2.1.3=US, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA (SHA2), OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0B49E2E7A42940E43EDAC36D6386A3FC

File PE Metadata
Compilation timestamp:
10/2/2015 12:09:46 PM

OS version:
6.3

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
12.0

CTPH (ssdeep):
768:ov4BE8JgFDV3OgcGBuRoL4cTGf6WFP76IKEuq0QT0u3RoVhr:NkiXJPgqTBoVd

Entry address:
0x3F6C

Entry point:
48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8B, DA, 48, 8B, F9, E8, 7F, 70, 00, 00, 48, 8B, D3, 48, 8B, CF, 48, 8B, 5C, 24, 30, 48, 83, C4, 20, 5F, E9, A6, EA, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 0F, 1F, 84, 00, 00, 00, 00, 00, 48, 3B, 0D, 49, 20, 00, 00, 75, 10, 48, C1, C1, 10, 66, F7, C1, FF, FF, 75, 01, C3, 48, C1, C9, 10, E9, 02, 00, 00, 00, CC, CC, B9, 02, 00, 00, 00, CD, 29, CC, FF, 25, 22, 11, 00, 00, FF, 25, 4C, 11, 00, 00, FF, 25, BE, 11, 00, 00, FF, 25...
 
[+]

Entropy:
6.6856

Code size:
24.5 KB (25,088 bytes)

Driver
Display name:
USBPcap Capture Service

Service name:
USBPcap

Type:
Kernel device driver (KernelDriver)


Scan usbpcap.sys - Powered by Reason Core Security