usbpcap.sys

USBPcap Sniffer Driver

Wireshark Foundation, Inc.

It runs as a Windows kernel mode device driver named “USBPcap Capture Service”.
Publisher:
USBPcap  (signed by Wireshark Foundation, Inc.)

Product:
USBPcap Sniffer Driver

Description:
USBPcap Driver

Version:
1.1.0.0-g794bf26

MD5:
c7128f7a91bb7b700259b83d66f82057

SHA-1:
ec0316a661581b09394f04a3887f5e47d7e418d0

SHA-256:
ad7a1bd12fd0822bd6165e528b8e00e674e1d1ee9b3ab32a28dcd4c82f0ea127

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/28/2024 4:04:37 PM UTC  (today)

File size:
41.4 KB (42,400 bytes)

Product version:
1.1.0.0-g794bf26

Copyright:
(c) 2013-2015 Tomasz Mon

Original file name:
USBPcap

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\usbpcap.sys

Digital Signature
Authority:
DigiCert Inc

Valid from:
7/21/2015 3:00:00 AM

Valid to:
7/27/2016 3:00:00 PM

Subject:
CN="Wireshark Foundation, Inc.", O="Wireshark Foundation, Inc.", L=Davis, S=California, C=US, PostalCode=95618, STREET=338 Madson Pl, SERIALNUMBER=C3061103, OID.1.3.6.1.4.1.311.60.2.1.2=California, OID.1.3.6.1.4.1.311.60.2.1.3=US, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA (SHA2), OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0B49E2E7A42940E43EDAC36D6386A3FC

File PE Metadata
Compilation timestamp:
10/2/2015 12:09:26 PM

OS version:
6.3

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
12.0

CTPH (ssdeep):
768:hEhaxgeTtaifpkgT+QdaUOckqKuk0u3koVht:h4axRtagSIq0oVT

Entry address:
0x32C8

Entry point:
8B, FF, 55, 8B, EC, E8, 2E, 4D, 00, 00, 5D, E9, 54, EE, FF, FF, 3B, 0D, 04, 50, 40, 00, 75, 03, C2, 00, 00, E9, 00, 00, 00, 00, 8B, FF, 55, 8B, EC, 51, 89, 4D, FC, 6A, 02, 59, CD, 29, FF, 25, 20, 40, 40, 00, FF, 25, 24, 40, 40, 00, FF, 25, 28, 40, 40, 00, FF, 25, 60, 40, 40, 00, FF, 25, 9C, 40, 40, 00, FF, 25, E4, 40, 40, 00, FF, 25, 04, 41, 40, 00, FF, 25, 08, 41, 40, 00, C3, CC, 00, CC, 52, 00, 74, 00, 6C, 00, 51, 00, 75, 00, 65, 00, 72, 00, 79, 00, 52, 00, 65, 00, 67, 00, 69, 00, 73, 00, 74, 00, 72, 00...
 
[+]

Code size:
19 KB (19,456 bytes)

Driver
Display name:
USBPcap Capture Service

Service name:
USBPcap

Type:
Kernel device driver (KernelDriver)


Scan usbpcap.sys - Powered by Reason Core Security