spyshelter.sys

Datpol Janusz Siemienowicz

It runs as a Windows 64-bit kernel mode device driver named “Spyshelter”.
Publisher:
SpyShelter  (signed by Datpol Janusz Siemienowicz)

Product:
SpyShelter

Description:
SpyShelter Driver

Version:
9.4.00.00 built by: Windows

MD5:
f29fb179939f4ce8b70f840f0df8e09a

SHA-1:
cc6bd063bf0594140c8e33a18d265d5fefb01c78

SHA-256:
99404b9879127512ff16da1ccdee72fe7a122b030f81076903c01f0a3f94f042

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/4/2024 5:12:45 PM UTC  (today)

File size:
530.3 KB (543,072 bytes)

Product version:
9.4

Original file name:
SpyShelterDrv.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Program Files\spyshelter premium\spyshelter.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
8/26/2014 2:14:04 PM

Valid to:
12/8/2014 6:09:30 PM

Subject:
E=biuro@datpol.com, CN=Datpol Janusz Siemienowicz, O=Datpol Janusz Siemienowicz, L=Olkusz, S=Malopolskie, C=PL

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121B2A7BEEB0FC74F69CC135D6161C7095F

File PE Metadata
Compilation timestamp:
10/7/2014 7:13:56 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
6144:tLigWb30RbXVLrrnxruqwbVeTE9uMFw3D7mSgrQaTpvbuCtulKS/PhyxV5j:tgz0F5rrnxruzJt9zeWuaTdbu2cJyx/j

Entry address:
0x4A064

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, F6, 70, FB, FF, CC, CC, A0, A1, 04, 00, 00, 00, 00, 00, 00, 00, 00, 00, 98, B1, 04, 00, C8, B0, 02, 00, D8, A0, 04, 00, 00, 00, 00, 00, 00, 00, 00, 00, E8, B3, 04, 00, 00, B0, 02, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, A8, B3, 04, 00, 00, 00, 00, 00, 8A, B3, 04, 00...
 
[+]

Code size:
169.5 KB (173,568 bytes)

Driver
Display name:
Spyshelter

Description:
Spyshelter driver

Type:
Kernel device driver (KernelDriver)

Group:
FSFilter Activity Monitor

Depends on:
FltMgr


Scan spyshelter.sys - Powered by Reason Core Security