acsock64.sys

Cisco AnyConnect Secure Mobility Client

Cisco Systems, Inc.

It runs as a Windows 64-bit kernel mode device driver named “acsock”.
Publisher:
Cisco Systems, Inc.  (signed and verified)

Product:
Cisco AnyConnect Secure Mobility Client

Description:
Cisco AnyConnect Kernel Driver Framework Socket Layer Interceptor

Version:
3, 0, 0306

MD5:
d96b78b1c68d8fce1fab144c06dd5ed0

SHA-1:
ac9bd2b6b5d45584f2e139d2b537f73df18bfb67

SHA-256:
7b6a7928402c98d11f407dde508543eb779913138589372f01c85eec86553802

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 3:21:49 AM UTC  (today)

File size:
91.6 KB (93,840 bytes)

Product version:
3, 0, 0306

Copyright:
© Copyright 2004-2010, Cisco Systems, Inc.

Trademarks:
You can request legal trademarks and credits at anyconnect-credits@cisco.com

Original file name:
acsock64.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\acsock64.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/6/2010 1:00:00 AM

Valid to:
1/7/2011 12:59:59 AM

Subject:
CN="Cisco Systems, Inc.", OU=Endpoint Security Engineering, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Cisco Systems, Inc.", L=San Jose, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1CC9BA3EC032B556757B37157C1A7CB0

File PE Metadata
Compilation timestamp:
7/20/2010 4:13:00 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
1536:1tnWjdp20CwBXXZW25eG35IoROOtz6Yv2cSTrX93Yjl+p+gIaDDCd6:1opFDBXXZ5Pv2cSXt44p+gZd

Entry address:
0x16064

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, EA, AF, FE, FF, CC, CC, 48, 62, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 44, 64, 01, 00, 70, F1, 00, 00, D8, 60, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, A8, 64, 01, 00, 00, F0, 00, 00, 50, 61, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 38, 66, 01, 00, 78, F0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, A6, 69, 01, 00, 00, 00, 00, 00, E2, 69, 01, 00...
 
[+]

Code size:
65 KB (66,560 bytes)

Driver
Display name:
acsock

Description:
Cisco AnyConnect Kernel Driver Framework Socket Layer Interceptor x64

Type:
Kernel device driver (KernelDriver)