ndiskhaz.sys

Azzouzi HotSpot

Khalil Azzouzi

It runs as a Windows kernel mode device driver named “NDISKHAZ LightWeight Filter”.
Publisher:
Khalil Azzouzi  (signed and verified)

Product:
Azzouzi HotSpot

Description:
NDISKHAZ helper driver

Version:
3.1.2.1

MD5:
69186af387c4e126e020d724ec6c5074

SHA-1:
50cdadf7a4d1f0a820c0f12085bdc53a03b1c85c

SHA-256:
0cb50dfbf42b87a2c8741d733c49c39ce36c8722c14725424d0c1870c7f14a2d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/2/2024 1:59:27 PM UTC  (today)

File size:
35.4 KB (36,280 bytes)

Product version:
3.1.2.1

Copyright:
Copyright Khalil Azzouzi 2013

Trademarks:
Khalil Azzouzi

Original file name:
ndiskhaz.sys

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\ndiskhaz.sys

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
9/1/2015 11:55:12 AM

Valid to:
10/20/2018 1:09:17 PM

Subject:
CN=Khalil Azzouzi, O=Khalil Azzouzi, L=Muenster, S=Nordrhein Westfalen, C=DE

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11210ABE18200573CFF5C267229A1EAC3A63

File PE Metadata
Compilation timestamp:
5/24/2013 12:55:03 PM

OS version:
6.2

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
11.0

CTPH (ssdeep):
768:3/IwbCc4tvk0Cfk/neV7pLGRSaCB6nSHXb7L6BVgTK:3wwr4BnCMPeJ7fL39K

Entry address:
0x4ACA

Entry point:
8B, FF, 55, 8B, EC, E8, F6, 39, 00, 00, 5D, E9, 40, 36, 00, 00, CC, CC, CC, CC, CC, CC, 3B, 0D, 28, 70, 40, 00, 75, 03, C2, 00, 00, E9, 06, 00, 00, 00, CC, CC, CC, CC, CC, CC, 8B, FF, 55, 8B, EC, 51, 89, 4D, FC, 6A, 02, 59, CD, 29, CC, CC, CC, CC, CC, CC, FF, 25, C4, 60, 40, 00, CC, CC, CC, CC, CC, CC, CC, CC, 68, 80, 4B, 40, 00, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 28, 70, 40, 00, 31, 45, FC, 33, C5, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7...
 
[+]

Code size:
22 KB (22,528 bytes)

Driver
Display name:
NDISKHAZ LightWeight Filter

Service name:
ndiskhaz

Description:
@oem49.inf,%ndiskhaz_Desc%;NDISKHAZ LightWeight Filter

Type:
Kernel device driver (KernelDriver)

Group:
NDIS


Scan ndiskhaz.sys - Powered by Reason Core Security