agilevpn.sys

RAS Agile Vpn Miniport Call Manager

Microsoft Corporation

It runs as a Windows 64-bit kernel mode device driver named “WAN Miniport (IKEv2)”.
Publisher:
Microsoft Corporation

Product:
Microsoft® Windows® Operating System

Description:
RAS Agile Vpn Miniport Call Manager

 
Part of the Windows Operating System

Version:
6.3.9600.17111 (winblue_gdr.140429-1523)

MD5:
674a4702e4e144e8710ed1a2ec6dd049

SHA-1:
0de23c02d85d093597d1d095b6de58c156d056db

SHA-256:
613a921101a6815c9185d5ef3e251a592604e56fade945bb7e256885cad473bc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
12/6/2016 7:06:34 PM UTC  (today)

File size:
94.5 KB (96,768 bytes)

Product version:
6.3.9600.17111

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
agilevpn.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\agilevpn.sys

File PE Metadata
Compilation timestamp:
4/30/2014 2:41:07 AM

OS version:
6.3

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
11.0

CTPH (ssdeep):
1536:BJx2iXR/feS16YkV1gQCI4bvLMGP2QzcBOTAq3iyMFONheACg+3:DxjXRXRGVSvbvX2zBGStOLeAz+3

Entry address:
0x3330

Entry point:
48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8B, DA, 48, 8B, F9, E8, CB, 7C, 01, 00, 48, 8B, D3, 48, 8B, CF, 48, 8B, 5C, 24, 30, 48, 83, C4, 20, 5F, E9, 16, F7, 00, 00, CC, 90, 90, 90, 90, 90, 90, 90, 90, 90, 4C, 8B, DC, 49, 89, 5B, 08, 49, 89, 73, 18, 49, 89, 7B, 20, 55, 48, 8B, EC, 48, 83, EC, 60, 48, 8B, 05, 7E, AC, 00, 00, 48, 33, C4, 48, 89, 45, F8, 33, DB, 89, 5D, E0, 48, 85, C9, 0F, 84, 0D, 16, 00, 00, 48, 85, D2, 0F, 84, 04, 16, 00, 00, 48, 8D, 05, 95, 33, 00, 00, 48, 85, C0, 0F, 84, F4, 15, 00, 00...
 
[+]

Entropy:
6.2400

Code size:
80.5 KB (82,432 bytes)

Driver
Display name:
WAN Miniport (IKEv2)

Service name:
RasAgileVpn

Description:
@netavpna.inf,%Svc-Mp-AgileVpn-DispName%;WAN Miniport (IKEv2)

Type:
Kernel device driver (KernelDriver)