safemon.sys

System Safety Monitor 2

System Safety Limited

It runs as a Windows kernel mode device driver named “System Safety Monitor 2.0 Core Engine”.
Publisher:
System Safety Limited  (signed and verified)

Product:
System Safety™ Monitor 2

Description:
System Safety Monitor 2.x extension for Windows security layer

Version:
2.4.0.621

MD5:
97bc7732fe1ebd3dfc0ba43c7932e8d5

SHA-1:
1da0f96463e417019b65bea371445035673987fb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 9:58:08 AM UTC  (today)

File size:
223.4 KB (228,728 bytes)

Product version:
2.4

Copyright:
© 2005-2007 System Safety Limited. All rights reserved

Original file name:
safemon.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\safemon.sys

Digital Signature
Authority:
The USERTRUST Network

Valid from:
7/29/2007 10:00:00 AM

Valid to:
7/29/2008 9:59:59 AM

Subject:
CN=System Safety Limited, O=System Safety Limited, STREET="#24 Tangerine Street", L=Belmopan, S=N.A., PostalCode=N.A., C=BZ

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
0DA49CEFCB053F6D509C21FCEB394B6C

File PE Metadata
Compilation timestamp:
3/2/2008 1:14:55 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
6144:Y12wyu22scNSu1fE6Oh717zNRyqAlmOaeMUjFt2:YTSu1I1QqAl+eMqt2

Entry address:
0x3328F

Entry point:
8B, FF, 55, 8B, EC, A1, BC, 80, 03, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 1E, 8B, 15, 98, 57, 03, 00, B8, BC, 80, 03, 00, C1, E8, 08, 33, 02, A3, BC, 80, 03, 00, 75, 07, 8B, C1, A3, BC, 80, 03, 00, F7, D0, A3, C0, 80, 03, 00, 5D, E9, 3F, E6, FF, FF, CC, CC, CC, 34, 33, 03, 00, 00, 00, 00, 00, 00, 00, 00, 00, 0E, 41, 03, 00, A4, 55, 02, 00, 10, 33, 03, 00, 00, 00, 00, 00, 00, 00, 00, 00, C6, 41, 03, 00, 80, 55, 02, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
4.9421

Code size:
189 KB (193,536 bytes)

Driver
Display name:
System Safety Monitor 2.0 Core Engine

Service name:
safemon

Type:
Kernel device driver (KernelDriver)

Group:
System Bus Extender


Scan safemon.sys - Powered by Reason Core Security