ALSysIO.sys

ALSysIO

CoolIT Systems Inc.

It runs as a Windows kernel mode device driver named “ALSysIO”.
Publisher:
Arthur Liberman  (signed by CoolIT Systems Inc.)

Product:
ALSysIO

Version:
2, 0, 5, 0

MD5:
8546148144acfd2050e008301f600683

SHA-1:
b3a9221882fb603b3ecfed80cca13779e8b8c272

SHA-256:
90ef0bc97ecec0cd2efde8cbd5e7a3e72ca18e194ffc03d3628651b2db6f50bf

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/3/2024 3:21:06 AM UTC  (today)

File size:
16.5 KB (16,904 bytes)

Product version:
2, 0, 5, 0

Copyright:
Copyright (C) 2003-2009 Arthur Liberman

Original file name:
ALSysIO.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\alsysio.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/11/2009 2:00:00 AM

Valid to:
1/24/2010 1:59:59 AM

Subject:
CN=CoolIT Systems Inc., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=CoolIT Systems Inc., L=Calgary, S=Alberta, C=CA

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0C452A606652E036EE0AC6A8FD3EA4A0

File PE Metadata
Compilation timestamp:
4/19/2009 9:41:19 PM

OS version:
5.2

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
7.10

CTPH (ssdeep):
192:+y0h6UUgJaSqnsdASqngzZ2SqnLzZVLiw0Liw7Ej3q7EC1GHqt3iyowJL/aMjGwY:nyFPGHqtSYJLWWJueb+6jbSN1

Entry address:
0x5005

Entry point:
8B, FF, 55, 8B, EC, A1, 10, 40, 01, 00, 85, C0, B9, 40, BB, 00, 00, 74, 04, 3B, C1, 75, 23, 8B, 15, 34, 30, 01, 00, B8, 10, 40, 01, 00, C1, E8, 08, 33, 02, 25, FF, FF, 00, 00, A3, 10, 40, 01, 00, 75, 07, 8B, C1, A3, 10, 40, 01, 00, F7, D0, A3, 20, 40, 01, 00, 5D, E9, A4, C3, FF, FF, 90, 50, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, DE, 51, 00, 00, 08, 30, 00, 00, 88, 50, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 52, 00, 00, 00, 30, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.2616

Code size:
6.5 KB (6,656 bytes)

Driver
Display name:
ALSysIO

Type:
Kernel device driver (KernelDriver)


Scan ALSysIO.sys - Powered by Reason Core Security