hwmdrv.sys

rc1 Application

BUFFALO INC.

It runs as a Windows 64-bit kernel mode device driver named “hwmdrv”.
Publisher:
UGSI   (signed by BUFFALO INC.)

Product:
rc1 Application

Description:
hwmdrv.sys

Version:
1, 3, 0, 0

MD5:
b8703211f654a499435db1595e0ce724

SHA-1:
ef02d50dfab343148eb6b7e019291fee7b153383

SHA-256:
3ccef1cae5bf09b91a4e2b09a9947ed4117678e5ad6366da11ef86490b12be8a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 11:42:13 AM UTC  (today)

File size:
14.8 KB (15,200 bytes)

Product version:
1, 3, 0, 0

Copyright:
Copyright (c) 2012 UGSI Corp.

Original file name:
hwmdrv.sys

File type:
Driver (Win64 SYS)

Language:
Chinese (Traditional, Taiwan)

Common path:
C:\Windows\System32\drivers\hwmdrv.sys

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
5/13/2013 5:00:00 PM

Valid to:
6/29/2014 4:59:59 PM

Subject:
CN=BUFFALO INC., OU=Engineering Administration Section, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=BUFFALO INC., L="30-20,Ohsu 3-chome,Naka-ku,Nagoya", S=Aichi, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
05B34732639A07B5A8BBC0C71F7BAA94

File PE Metadata
Compilation timestamp:
11/2/2012 1:38:41 AM

OS version:
6.2

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
11.0

CTPH (ssdeep):
192:r/2b5/KSWfdL455QH5vxvzLnN5SgE2nYe+PjPjrPcUXeu+vTr9ZCspE+TMQrivAn:z2A7f14kZVN/E2nYPLkUXeUeMzA

Entry address:
0x2008

Entry point:
48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8B, DA, 48, 8B, F9, E8, 5F, 50, 00, 00, 48, 8B, D3, 48, 8B, CF, 48, 8B, 5C, 24, 30, 48, 83, C4, 20, 5F, E9, D6, 4F, 00, 00, CC, CC, CC, CC, CC, CC, FF, 25, 1A, 10, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.6769

Code size:
4 KB (4,096 bytes)

Driver
Display name:
hwmdrv

Type:
Kernel device driver (KernelDriver)


Scan hwmdrv.sys - Powered by Reason Core Security