Heimdall.sys

Heimdall

Canon Electronics Inc.

It runs as a Windows file system device driver named “Heimdall”.
Publisher:
Canon Electronics, Inc.  (signed by Canon Electronics Inc.)

Product:
Heimdall

Description:
for Windows 7, 2008R2 (x32)

Version:
2.0.2.1

MD5:
21c794b22190a444e71dbdcc76c53c10

SHA-1:
d8320e59072aa073e3e4e42104d10580f55cbf3f

SHA-256:
719ac3633c996b43abec13c718c1d48d49ffe259ca82eca7e21bdac4363809f4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 4:00:44 AM UTC  (today)

File size:
42.8 KB (43,792 bytes)

Product version:
8.2.8.12

Copyright:
Copyright (C) 2007-2010 Canon Electronics, Inc.

Original file name:
Heimdall.sys

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\heimdall.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/2/2010 9:00:00 AM

Valid to:
12/2/2013 8:59:59 AM

Subject:
CN=Canon Electronics Inc., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Canon Electronics Inc., L=Minato-ku, S=Tokyo, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
453E984CCAE4054B1952AEB5F9AE2FCE

File PE Metadata
Compilation timestamp:
8/22/2013 11:46:26 AM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

Entry address:
0xA112

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, EE, 6E, FF, FF, CC, CC, C4, A1, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 96, A7, 00, 00, 50, 80, 00, 00, B4, A1, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, EC, A7, 00, 00, 40, 80, 00, 00, 74, A1, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 5E, A9, 00, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 2E, A9, 00, 00, 18, A9, 00, 00, FE, A8, 00, 00, EC, A8, 00, 00, D6, A8, 00, 00, C2, A8, 00, 00, AC, A8, 00, 00, 98, A8...
 
[+]

Entropy:
6.4392

Code size:
28.5 KB (29,184 bytes)

Driver
Display name:
Heimdall

Description:
Heimdall mini-filter driver

Type:
File system 'filter' driver (FileSystemDriver)

Group:
FSFilter Activity Monitor

Depends on:
FltMgr


Scan Heimdall.sys - Powered by Reason Core Security