snswfp.sys

SafenSoft SysWatch

SnS Soft

It runs as a Windows 64-bit kernel mode device driver named “SnsWfp”.
Publisher:
S.N.Safe&Software  (signed by SnS Soft)

Product:
SafenSoft SysWatch

Description:
SafenSoft SysWatch Network Driver

Version:
3.6.1.21

MD5:
26a226848c2b32dd4565917cdafe4da0

SHA-1:
8846ed6ce1b2cd42ec1fa7c65f34dc9df3feedc9

SHA-256:
aa554b9f787f112e913f7508831844e32c1813a33edd00d10c70e0f9623a1dd0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 2:52:53 AM UTC  (today)

File size:
22.8 KB (23,328 bytes)

Product version:
3.6.1.0

Copyright:
© S.N.Safe&Software, 2004-2011. All rights reserved.

Original file name:
snswfp.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\snswfp.sys

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
5/30/2011 2:00:00 AM

Valid to:
6/5/2012 1:59:59 AM

Subject:
CN=SnS Soft, OU=R&D, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SnS Soft, L=Moscow, S=Moscow, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2A3BF7AEAA203975A48592156B874F87

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
384:uM7DWLrBR3KoLqe9YtefZHaZct/m5KYJLca6j2FeMB2:0tO+5nRm5DLFmq2

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, 80, C8, FF, FF, CC, CC, 64, 51, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, F8, 53, 00, 00, 9C, 30, 00, 00, C8, 50, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 72, 54, 00, 00, 00, 30, 00, 00, F8, 50, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 52, 57, 00, 00, 30, 30, 00, 00, DC, 50, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, A0, 57, 00, 00, 14, 30, 00, 00, E8, 50, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, F0, 57, 00, 00, 20, 30, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Driver
Display name:
SnsWfp

Description:
WFP-filter Event Service

Type:
Kernel device driver (KernelDriver)

Group:
FSFilter Anti-Virus


Scan snswfp.sys - Powered by Reason Core Security