waclient.sys

PortWise VPN Access Client

Technology Nexus AB

It runs as a Windows kernel mode device driver named “Portwise Access Client Driver”.
Publisher:
PortWise  (signed by Technology Nexus AB)

Product:
PortWise VPN Access Client

Description:
PortWise VPN Access Client Driver for Windows Vista

Version:
4.100.02.0000

MD5:
6046c4bb264f4620afb4aa01aa46f4ae

SHA-1:
24afc753d043f73feb17626c58c8474dd07b6395

SHA-256:
8d797f1b52ec7f99bbec76832d12b4487aeda0a97c11ca419f3713cf07bc484b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 7:46:51 PM UTC  (today)

File size:
48.1 KB (49,224 bytes)

Product version:
4.100.02.0000

Copyright:
Copyright (c) PortWise. All rights reserved.

Original file name:
waclient.sys

File type:
Driver (Win32 SYS)

Language:
Language Neutral

Common path:
C:\Windows\System32\drivers\waclient.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/19/2012 5:30:00 AM

Valid to:
3/20/2015 5:29:59 AM

Subject:
CN=Technology Nexus AB, OU=Digital ID Class 3 - Java Object Signing, O=Technology Nexus AB, L=Marievik, S=Stockholm, C=SE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
203FF0DFACB36339A79798CABF96B031

File PE Metadata
Compilation timestamp:
3/26/2013 12:09:40 AM

OS version:
6.2

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
11.0

CTPH (ssdeep):
768:Ss6NrZxINO5P2Mc7QiefecQgc1OY9DoNKQww3ZsTmtoP2fs:dO66tfpsUNKQlZtN0

Entry address:
0x762C

Entry point:
8B, FF, 55, 8B, EC, E8, E2, 3A, 00, 00, 5D, E9, 1C, FF, FF, FF, CC, CC, CC, CC, CC, CC, E8, 31, 00, 00, 00, C2, 08, 00, CC, CC, CC, CC, CC, CC, 8B, FF, 55, 8B, EC, A1, 64, 97, 40, 00, 85, C0, 74, 0C, 3D, 50, 76, 40, 00, 74, 05, FF, 75, 08, FF, D0, E8, 09, 00, 00, 00, 5D, C2, 04, 00, CC, CC, CC, CC, CC, 8B, FF, 56, BE, 08, 90, 40, 00, 56, E8, 6C, 00, 00, 00, FF, 35, 68, 97, 40, 00, 56, 68, 80, 99, 40, 00, E8, 23, 01, 00, 00, 5E, C3, CC, CC, CC, CC, CC, 8B, FF, 57, B8, 38, 90, 40, 00, BF, 40, 90, 40, 00, 3B...
 
[+]

Entropy:
6.6541

Code size:
32.5 KB (33,280 bytes)

Driver
Display name:
Portwise Access Client Driver

Service name:
waclient

Type:
Kernel device driver (KernelDriver)

Depends on:
tcpip bfe


Scan waclient.sys - Powered by Reason Core Security