wiawfp.sys

UBT (EU) Ltd.

It runs as a Windows kernel mode device driver named “wiawfp”.
Publisher:
UBT (EU) Ltd.  (signed and verified)

Version:
2.3.4.5

MD5:
2c25281dca0af5c82c208d4765b77944

SHA-1:
366a138930a0a5a05f1ea6325f59cc4d89f114e4

SHA-256:
045273dec419445a320802cc8976e692e9a18986cec6d938f9ce6fe6eb9f9b67

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 11:32:03 PM UTC  (a few moments ago)

File size:
43.4 KB (44,448 bytes)

Product version:
1.4.4.11370

Original file name:
wiawfp.sys

File type:
Driver (Win32 SYS)

Language:
Swedish (Sweden)

Common path:
C:\Windows\System32\drivers\wiawfp.sys

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
4/8/2015 2:00:00 AM

Valid to:
12/30/2015 1:00:00 PM

Subject:
CN=UBT (EU) Ltd., O=UBT (EU) Ltd., L=Warwick, S=Warwickshire, C=GB, PostalCode=CV34 6BY, STREET=Exchange Place, STREET=Poseidon Way, SERIALNUMBER=04938684, OID.1.3.6.1.4.1.311.60.2.1.3=GB, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
02BF7A8A72B044F1B65F8EC6A935942E

File PE Metadata
Compilation timestamp:
6/19/2015 11:04:35 AM

OS version:
6.2

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
11.0

CTPH (ssdeep):
768:Q5MsYLt4p9hLjFylHhxtjab6WixxEXVVBKgcv:QqK9VjFqtjab6Wi8XVVB2v

Entry address:
0x66B0

Entry point:
8B, FF, 55, 8B, EC, E8, 4C, 69, 04, 00, 5D, E9, 48, CE, FF, FF, CC, CC, CC, CC, CC, CC, 3B, 0D, 00, 80, 40, 00, 75, 03, C2, 00, 00, E9, 06, 00, 00, 00, CC, CC, CC, CC, CC, CC, 8B, FF, 55, 8B, EC, 51, 89, 4D, FC, 6A, 02, 59, CD, 29, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, B8, 01, 00, 00, 00, C2, 10, 00, 65, 00, 6E, 00, 75, 00, 6D, 00, 00, 00, 5C, 00, 00, 00, 61, 00, 70, 00, 70, 00, 54, 00, 61, 00, 62, 00, 6C, 00, 65, 00, 00, 00, 69, 00, 70, 00, 54, 00, 61, 00, 62, 00, 6C, 00, 65, 00, 00, 00, 70, 00, 6F, 00...
 
[+]

Code size:
25.5 KB (26,112 bytes)

Driver
Display name:
wiawfp

Type:
Kernel device driver (KernelDriver)

Group:
networkprovider

Depends on:
BFE


Scan wiawfp.sys - Powered by Reason Core Security