netpeeker.sys

Net-Peeker

eMing Software Inc.

It runs as a Windows kernel mode device driver named “NetPeeker”.
Publisher:
eMing Software Inc.  (signed and verified)

Product:
Net-Peeker

Description:
NetPeeker Kernel Driver

Version:
3.42.0.1131

MD5:
9d9f27f83e190cf65d1d3f066dee36f5

SHA-1:
b62f99b49875962e1c79d22cf10928f6fa36472d

SHA-256:
cb6a095386d64a94fee6555c5fd6a006e84d8a8a8f2da32f9ceef8e6f9505bfb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 4:42:18 AM UTC  (today)

File size:
1.6 MB (1,652,648 bytes)

Product version:
3.42.0.1131

Copyright:
Copyright © 2002-2013 eMing Software Inc.

Original file name:
NetPeeker32.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\netpeeker.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
5/1/2010 11:23:31 PM

Valid to:
5/1/2013 11:23:27 PM

Subject:
CN=eMing Software Inc., O=eMing Software Inc., L=Irvine, S=CA, C=US

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000012855F725CB

File PE Metadata
Compilation timestamp:
1/9/2013 8:08:27 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
7.10

CTPH (ssdeep):
24576:57sBpFUCqXvkrltWqLqpQxI245TG1BZh7btaMhga2FHuaZ53uYsD:58pFjUoIwd2k1BLbeVduphD

Entry address:
0x3A2EC

Entry point:
55, 8B, EC, 51, 51, C7, 45, FC, 82, 01, 00, C0, FF, 75, 0C, FF, 75, 08, E8, FD, FC, FF, FF, 89, 45, FC, 83, 7D, FC, 00, 0F, 85, 56, 01, 00, 00, 8B, 45, 08, 83, C0, 38, 89, 45, F8, 8B, 45, F8, C7, 40, 6C, 88, E0, 02, 00, 8B, 45, F8, 8B, 4D, F8, 8B, 49, 6C, 89, 48, 5C, 8B, 45, F8, 8B, 4D, F8, 8B, 49, 5C, 89, 48, 58, 8B, 45, F8, 8B, 4D, F8, 8B, 49, 58, 89, 48, 68, 8B, 45, F8, 8B, 4D, F8, 8B, 49, 68, 89, 48, 64, 8B, 45, F8, 8B, 4D, F8, 8B, 49, 64, 89, 48, 60, 8B, 45, F8, 8B, 4D, F8, 8B, 49, 60, 89, 48, 54, 8B...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
227 KB (232,448 bytes)

Driver
Display name:
NetPeeker

Type:
Kernel device driver (KernelDriver)

Group:
PNP_TDI

Depends on:
Tcpip


Scan netpeeker.sys - Powered by Reason Core Security