dwall.sys

DefenseWall

Ilya Rabinovich

It runs as a Windows 64-bit kernel mode device driver named “DefenseWall driver”.
Publisher:
SoftSphere Technologies  (signed by Ilya Rabinovich)

Product:
DefenseWall

Version:
3.21

MD5:
b365dd809489354f56c1b38394c93cf3

SHA-1:
9eeef8af418903f596fdbbc7d854a6da3e92ef4e

SHA-256:
abff47fea802f8e2c0b0ccf122b8790733d1c0690a5b178f97d8e3d4114d194d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 5:10:56 PM UTC  (today)

File size:
1.1 MB (1,135,296 bytes)

Product version:
3.21

Copyright:
Copyright © 2005-2013 Ilya Rabinovich, SoftSphere Technologies

Original file name:
dwall.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\dwall.sys

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
3/20/2012 3:29:40 PM

Valid to:
3/22/2014 4:42:32 AM

Subject:
E=info@softsphere.com, CN=Ilya Rabinovich, L=Khimky, S=Moskva Oblast, C=RU, Description=nN5tG4tb6ZbGO8b4

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0595

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
12288:A5gTgWifsw7RaWHdtTYLMBe7rFKDFZCLruMG+gaHUXAi+6VKzGoNHDAbMP7O49Mv:AQU1kCV98QPvSpU65kK6Is

Driver
Display name:
DefenseWall driver

Service name:
dwall

Type:
Kernel device driver (KernelDriver)

Group:
PNP_TDI

Depends on:
Tdx Tcpip


Scan dwall.sys - Powered by Reason Core Security