spyshelter.sys

Datpol Janusz Siemienowicz

It runs as a Windows 64-bit kernel mode device driver named “Spyshelter”.
Publisher:
SpyShelter  (signed by Datpol Janusz Siemienowicz)

Product:
SpyShelter

Description:
SpyShelter Driver

Version:
9.4.00.00 built by: Windows

MD5:
4279f662015d0a2072aba0a813314a05

SHA-1:
e7cc1d5ebaac58a59134bab8684757df362c678a

SHA-256:
6871feb7610868af917589e81d3deaa01cda2b80bc1eff304a44ee171e300046

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 9:46:05 AM UTC  (today)

File size:
614.3 KB (629,088 bytes)

Product version:
9.4

Original file name:
SpyShelterDrv.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Program Files\spyshelter firewall\spyshelter.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
8/26/2014 12:14:04 PM

Valid to:
12/8/2014 4:09:30 PM

Subject:
E=biuro@datpol.com, CN=Datpol Janusz Siemienowicz, O=Datpol Janusz Siemienowicz, L=Olkusz, S=Malopolskie, C=PL

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121B2A7BEEB0FC74F69CC135D6161C7095F

File PE Metadata
Compilation timestamp:
10/7/2014 5:17:49 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
12288:8gka1llGeuVKRCH4Z7XT1tjeT1vmPOsobbxgIlUXUstZYc2RXaYj:vPlGD8RNlK5Wh6bxsXUmZYr

Entry address:
0x4C064

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, F6, 50, FB, FF, CC, CC, A0, C1, 04, 00, 00, 00, 00, 00, 00, 00, 00, 00, D2, D1, 04, 00, C8, C0, 02, 00, D8, C0, 04, 00, 00, 00, 00, 00, 00, 00, 00, 00, 22, D4, 04, 00, 00, C0, 02, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, E2, D3, 04, 00, 00, 00, 00, 00, C4, D3, 04, 00...
 
[+]

Entropy:
7.4810

Code size:
175 KB (179,200 bytes)

Driver
Display name:
Spyshelter

Description:
Spyshelter driver

Type:
Kernel device driver (KernelDriver)

Group:
FSFilter Activity Monitor

Depends on:
FltMgr


Scan spyshelter.sys - Powered by Reason Core Security