wsddpp.sys

wsddpp

GAS INFORMATICA LTDA

It runs as a Windows kernel mode device driver named “Warsaw - Driver (PP)”.
Publisher:
GAS Tecnologia  (signed by GAS INFORMATICA LTDA)

Product:
wsddpp

Description:
GAS Tecnologia - PP

Version:
3,0,0,1

MD5:
db667b5c19798c95decb1dd7e49416ef

SHA-1:
188fa141ae785fbf2293b30567ccc5942b701d71

SHA-256:
bff217c78db517a94220fee55d6f29f805109d47aafbccc80ae0aad7fdda9615

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 10:42:59 PM UTC  (today)

File size:
77.2 KB (79,064 bytes)

Product version:
3,0,0,1

Copyright:
Copyright © 2015 - GAS Tecnologia

Original file name:
wsftpp.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\wsddpp.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/30/2012 9:00:00 PM

Valid to:
8/13/2015 8:59:59 PM

Subject:
CN=GAS INFORMATICA LTDA, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=GAS INFORMATICA LTDA, L=Brasilia, S=Distrito Federal, C=BR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
58C005F9811C3FD333668072A04E0D1B

File PE Metadata
Compilation timestamp:
3/18/2015 10:23:14 AM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
1536:wIJNQ3l6/KepPwlpNgUZhuHF2ynpwRMXuZ4DltSAlx9Qf:7zQ3lSnPupNrhUF2ypwRMXJqAlx9w

Entry address:
0xEEB6

Entry point:
9C, E8, BB, CF, FF, FF, E8, 53, C6, FF, FF, E9, B9, 45, 00, 00, F6, D3, E9, 6E, 55, 00, 00, F8, 9C, 9C, E9, 4A, E4, FF, FF, 68, E7, 52, FC, A9, FE, C3, 0F, 9C, C3, 41, F8, F6, DB, 80, F3, 5A, 9C, 95, F5, 58, D0, F3, 28, FB, 89, E8, 80, EB, C3, D2, E3, B3, 01, E8, AD, E2, FF, FF, 60, 10, C0, 68, 24, BA, E4, 95, 9C, 8D, 64, 24, 2C, 0F, 83, FE, 02, 00, 00, E9, 47, D1, FF, FF, 09, C0, 60, E8, B3, D4, FF, FF, E9, 15, 58, 00, 00, 9C, C6, 04, 24, FB, E9, D6, 73, 00, 00, 38, D8, E9, 49, 49, 00, 00, F9, D1, E0, E8...
 
[+]

Code size:
6 KB (6,144 bytes)

Driver
Display name:
Warsaw - Driver (PP)

Service name:
wsddpp

Type:
Kernel device driver (KernelDriver)


Scan wsddpp.sys - Powered by Reason Core Security