ntiopnp.sys

NT IO driver

Wolfram Podien

It runs as a Windows 64-bit kernel mode device driver named “ntiopnp”.
Publisher:
Wolfram Podien  (signed and verified)

Product:
NT IO driver

Description:
1.00

Version:
1.00

MD5:
5850c28057ddea04390b88f8cc482504

SHA-1:
a9c8204658e2fe2f23d4609d526a6a9f4169a057

SHA-256:
7023709d3e91ddf165d6cd5e20fb6acc36ea87fc5cbb87c16b5690fb2c54645d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 6:55:26 AM UTC  (today)

File size:
20.6 KB (21,080 bytes)

Product version:
1.00

Copyright:
Copyright (C) 1998 by WP

Original file name:
NTIOWP.SYS

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\ntiopnp.sys

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
11/11/2010 3:36:17 PM

Valid to:
11/12/2011 3:36:12 PM

Subject:
CN=Wolfram Podien, C=DE

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000012C3BA83FF0

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
384:1m7zVuh7I4ZMBwRLUdrjitKYYFs8j+1hQYWZfdUb+jhkw:1m7zVuh7bvtKKC+Dijhkw

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, C8, D5, FF, FF, CC, CC, A8, 50, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, E2, 51, 00, 00, 1C, 30, 00, 00, 8C, 50, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 70, 52, 00, 00, 00, 30, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 48, 52, 00, 00, 34, 52, 00, 00, 22, 52, 00, 00, 0E, 52, 00, 00, FC, 51, 00, 00, 5C, 52, 00, 00, 00, 00, 00, 00, 6E, 51, 00, 00, 78, 51, 00, 00, 90, 51, 00, 00, A2, 51, 00, 00, 64, 51, 00, 00, C8, 51...
 
[+]

Driver
Display name:
ntiopnp

Type:
Kernel device driver (KernelDriver)

Group:
Extended Base


Scan ntiopnp.sys - Powered by Reason Core Security