usbpcap.sys

USBPcap Sniffer Driver

Tomasz Mon

It runs as a Windows kernel mode device driver named “USBPcap Capture Service”.
Publisher:
USBPcap  (signed by Tomasz Mon)

Product:
USBPcap Sniffer Driver

Description:
USBPcap Driver

Version:
1.0.0.6

MD5:
57537600dfb72f280f01f74599bf7cce

SHA-1:
a3a587a3595d4025e1d765d389aa294cf5643a88

SHA-256:
0ddc833bacf387dc0d9bd232c08aaa46ca78453f7ab636a19b6ff0caeb86c9ea

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 8:06:54 PM UTC  (today)

File size:
32.2 KB (33,000 bytes)

Product version:
1.0.0.6

Copyright:
(c) 2013 Tomasz Mon

Original file name:
USBPcap

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\usbpcap.sys

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
5/7/2013 2:00:00 AM

Valid to:
5/8/2014 1:59:59 AM

Subject:
CN=Tomasz Mon, OU=Individual Developer, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=No Organization Affiliation, L=Jankowice, S=Śląskie, C=PL

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0EB0BE2C840D900490868FC067DBC69D

File PE Metadata
Compilation timestamp:
2/19/2014 8:09:18 PM

OS version:
6.2

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
11.0

CTPH (ssdeep):
384:RtgYAzfSei/1Y5800yx64YEkgTMJ1m9rs121fnfgG/YUlq9knYPLtbJ2UHeM/p:XAzfSbd/484YEkgTMJIru6Yj9k23p

Entry address:
0x32B4

Entry point:
8B, FF, 55, 8B, EC, E8, 48, 4D, 00, 00, 5D, E9, A8, ED, FF, FF, CC, CC, CC, CC, CC, CC, 3B, 0D, 00, 50, 40, 00, 75, 03, C2, 00, 00, E9, 06, 00, 00, 00, CC, CC, CC, CC, CC, CC, 8B, FF, 55, 8B, EC, 51, 89, 4D, FC, 6A, 02, 59, CD, 29, CC, CC, CC, CC, CC, CC, FF, 25, 1C, 40, 40, 00, CC, CC, CC, CC, CC, CC, FF, 25, 20, 40, 40, 00, CC, CC, CC, CC, CC, CC, FF, 25, 24, 40, 40, 00, CC, CC, CC, CC, CC, CC, FF, 25, 5C, 40, 40, 00, CC, CC, CC, CC, CC, CC, FF, 25, 98, 40, 40, 00, CC, CC, CC, CC, CC, CC, 8B, FF, 55, 8B...
 
[+]

Code size:
19.5 KB (19,968 bytes)

Driver
Display name:
USBPcap Capture Service

Service name:
USBPcap

Type:
Kernel device driver (KernelDriver)


Scan usbpcap.sys - Powered by Reason Core Security