spyshelter.sys

Datpol Janusz Siemienowicz

It runs as a Windows kernel mode device driver named “Spyshelter”.
Publisher:
SpyShelter  (signed by Datpol Janusz Siemienowicz)

Product:
SpyShelter

Description:
SpyShelter Driver

Version:
10.1.0.0 built by: Windows

MD5:
fe30bab1fbd321d3ad58df5fbb48e17b

SHA-1:
43f2195e553caeccac19a02545ae79dae39f4ae4

SHA-256:
89a50d2d6af30b17c70387b0e021b96da88c7e5aa91eb24fd97d83d2197eb34b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 7:41:38 AM UTC  (today)

File size:
467.3 KB (478,472 bytes)

Product version:
10.1

Copyright:
(C) Datpol. All rights reserved.

Original file name:
SpyShelterDrv.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Program Files\spyshelter firewall\spyshelter.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
11/5/2014 7:08:03 PM

Valid to:
1/8/2016 5:09:30 PM

Subject:
E=biuro@datpol.com, CN=Datpol Janusz Siemienowicz, O=Datpol Janusz Siemienowicz, L=Olkusz, S=Malopolskie, C=PL

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121D2FCC60F24553FA9E8F529B814703D51

File PE Metadata
Compilation timestamp:
8/28/2015 1:36:31 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
6144:vLwEkRA8tTs9aE7z5ncCfwPcz7oHTRUYI2vLKt3JUYxfg0Yyrp+6RP4ZXph5yzAn:vLwEkXtTSa4B9IYoHTqhxJUDK4tRiAvv

Entry address:
0xB0BCA

Entry point:
0F, 87, 29, D4, 04, 00, 60, C7, 44, 24, 1C, F2, FF, 88, C8, E9, E8, D8, 04, 00, CD, F9, 17, 61, 52, D0, 6D, 3A, 74, 67, 9C, F0, 03, 1A, 4D, 62, AE, 6E, 0D, 11, 42, 1C, 87, 7B, 6D, AB, C8, B2, 29, 95, AE, 04, 27, 23, C9, 04, DC, 5C, FF, 20, CE, 87, 54, 59, 48, BD, 52, 37, 43, F8, A6, 09, 32, 7B, 27, 25, F6, 30, DF, 20, 2E, 9A, 4D, B2, 9A, 63, 08, 6A, 07, 6C, 38, 5E, 01, C2, F8, 70, CB, 08, F5, 80, 01, 3B, D8, 83, 1D, F9, 04, 37, 03, 83, FF, 3C, A0, 11, 5C, DD, E2, 56, 24, B1, 86, 89, 1D, 6A, 01, B0, DE, 65...
 
[+]

Code size:
165.5 KB (169,472 bytes)

Driver
Display name:
Spyshelter

Description:
Spyshelter driver

Type:
Kernel device driver (KernelDriver)

Group:
FSFilter Activity Monitor

Depends on:
FltMgr


Scan spyshelter.sys - Powered by Reason Core Security