acsint64.sys

Cisco AnyConnect Secure Mobility Client

Cisco Systems, Inc.

It runs as a Windows 64-bit kernel mode device driver named “acsint”.
Publisher:
Cisco Systems, Inc.  (signed and verified)

Product:
Cisco AnyConnect Secure Mobility Client

Description:
Cisco AnyConnect Kernel Driver Framework Socket Layer Interceptor

Version:
3, 0, 0578

MD5:
f82d801eedc963edbddfe3e6711a9826

SHA-1:
209affb1097c15a9a94e0da6914194206416ef85

SHA-256:
52ebcba644c93ae638d05a433092b0b6dd5566029f4053a738c3608483c3172d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 11:54:57 PM UTC  (a few moments ago)

File size:
42.6 KB (43,664 bytes)

Product version:
3, 0, 0578

Copyright:
© Copyright 2004-2010, Cisco Systems, Inc.

Trademarks:
You can request legal trademarks and credits at anyconnect-credits@cisco.com

Original file name:
acsint64.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\acsint64.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/5/2010 4:00:00 PM

Valid to:
1/6/2011 3:59:59 PM

Subject:
CN="Cisco Systems, Inc.", OU=Endpoint Security Engineering, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Cisco Systems, Inc.", L=San Jose, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1CC9BA3EC032B556757B37157C1A7CB0

File PE Metadata
Compilation timestamp:
11/18/2010 11:31:08 AM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
768:HWaokXZZKDpAFG2pbtkD2fw9vl1c9V6v+2WYCUfl4cTF4huB7sdXWcgaNqrfLLQg:HWWGDpAHpbCiZzocUfn49XIrLk6aDDC9

Entry address:
0xB064

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, 86, 5F, FF, FF, CC, CC, 08, B1, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 3A, B4, 00, 00, 30, 60, 00, 00, D8, B0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 9E, B4, 00, 00, 00, 60, 00, 00, F8, B0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, BC, B4, 00, 00, 20, 60, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 80, B4, 00, 00, 00, 00, 00, 00, 64, B4, 00, 00...
 
[+]

Entropy:
6.2001

Code size:
27.5 KB (28,160 bytes)

Driver
Display name:
acsint

Description:
Cisco AnyConnect Kernel Driver Framework Socket Layer Interceptor x64

Type:
Kernel device driver (KernelDriver)

Group:
PNP_TDI