ntiopnp.sys

NT IO driver

Podien.de

It runs as a Windows 64-bit kernel mode device driver named “ntiopnp”.
Publisher:
Podien.de  (signed and verified)

Product:
NT IO driver

Description:
1.00

Version:
1.00

MD5:
a450df6a429ac8c15878dc99e7f57227

SHA-1:
c7f01e5147be00dcd9dda6899329d826e33a60eb

SHA-256:
7caaa7a93c0f6cad81c5eafea6d18712c1fe09676c3b5f2bea15c143f10279f4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 11:41:46 PM UTC  (a few moments ago)

File size:
11.9 KB (12,216 bytes)

Product version:
1.00

Copyright:
Copyright (C) 1998 by WP

Original file name:
NTIOWP.SYS

File type:
Driver (Win64 SYS)

Common path:
C:\Windows\System32\drivers\ntiopnp.sys

Digital Signature
Signed by:

Authority:
Podien.de

Valid from:
11/9/2009 1:51:13 AM

Valid to:
1/1/2040 8:59:59 AM

Subject:
CN=Podien.de

Issuer:
CN=Podien.de

Serial number:
066E77D2E647E79649E7945DBE9D47B9

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
192:Uprx4J8Fke3X5ucpYtPoaU2uZYwI7m54HwmrgwkgUO:Uto8KeH5ZpY5ov6w6gXgL

Entry point:
48, 8B, 05, F1, E0, FF, FF, 49, B9, 32, A2, DF, 2D, 99, 2B, 00, 00, 48, 85, C0, 74, 05, 49, 3B, C1, 75, 2F, 4C, 8D, 05, D6, E0, FF, FF, 48, B8, 20, 03, 00, 00, 80, F7, FF, FF, 48, 8B, 00, 49, 33, C0, 49, B8, FF, FF, FF, FF, FF, FF, 00, 00, 49, 23, C0, 49, 0F, 44, C1, 48, 89, 05, AE, E0, FF, FF, 48, F7, D0, 48, 89, 05, AC, E0, FF, FF, E9, E3, C2, FF, FF, CC, CC, CC, 90, 60, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, F6, 61, 00, 00, 00, 30, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Driver
Display name:
ntiopnp

Type:
Kernel device driver (KernelDriver)

Group:
Extended Base


Scan ntiopnp.sys - Powered by Reason Core Security