WTVComm.SYS

COM-Umlenkung Plug & Play

Wiesemann & Theis GmbH

It runs as a Windows 64-bit kernel mode device driver named “W&T COM Port Redirector PnP”.
Publisher:
Wiesemann & Theis GmbH  (signed and verified)

Product:
COM-Umlenkung Plug & Play

Description:
W&T Com-Server als virtuelle COM-Ports

Version:
4.03

MD5:
39170f23786fd471315c501f4c672d7d

SHA-1:
1b436f98c619f7388fa85ec1cb9d7f141b9794bb

SHA-256:
374ccaba42bfb971c6915cb05a17d076afe934b6dd8306f2fe61dc1d28cc3213

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 6:31:49 AM UTC  (today)

File size:
115.3 KB (118,040 bytes)

Product version:
4.03

Copyright:
(C) 2012-2013 Wiesemann & Theis GmbH

Original file name:
WTVComm.SYS

File type:
Driver (Win64 SYS)

Language:
German (Germany)

Common path:
C:\Windows\System32\drivers\wtvcomm.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/24/2011 1:00:00 AM

Valid to:
3/21/2014 12:59:59 AM

Subject:
CN=Wiesemann & Theis GmbH, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Wiesemann & Theis GmbH, L=Wuppertal, S=Nordrhein-Westfalen, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
230BC44BA3E3C2382B51624D8480DE46

File PE Metadata
Compilation timestamp:
4/9/2013 12:40:02 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
1536:G7PPeTcHHSGdKk0Wiwnlx+ceb6ljCQLz2SLONCrcIRWr4aOUmXVgm:SPPRHSgiwlxmb+jXRT+4aDmlR

Entry address:
0xF134

Entry point:
48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8B, DA, 48, 8B, F9, E8, 17, F1, 00, 00, 48, 8B, D3, 48, 8B, CF, 48, 8B, 5C, 24, 30, 48, 83, C4, 20, 5F, E9, AE, FE, FF, FF, CC, CC, CC, CC, CC, CC, 48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8B, 05, F3, 70, 00, 00, 48, 8B, F9, 48, 8D, 0D, D1, 70, 00, 00, 48, 8D, 1D, DA, 70, 00, 00, 48, 3B, C1, 74, 45, 48, 3B, D8, 77, 40, 48, 8B, 43, 40, 48, 85, C0, 74, 18, 4C, 8B, 05, 88, 7D, 00, 00, 48, 8D, 0D, 9B, 1D, 00, 00, 4C, 8B, CB, 48, 8B, D7, FF, D0, EB, 12, 48, 8B, 15...
 
[+]

Entropy:
6.4014

Code size:
90.5 KB (92,672 bytes)

Driver
Display name:
W&T COM Port Redirector PnP

Service name:
WTVComm

Type:
Kernel device driver (KernelDriver)

Group:
Extended Base


Scan WTVComm.SYS - Powered by Reason Core Security