hicomsta.sys

AlBack 7.1.x

Solusseum Inc

It runs as a Windows kernel mode device driver named “XcoveryState”.
Publisher:
Solusseum Inc.  (signed by Solusseum Inc)

Product:
AlBack 7.1.x

Description:
AlBack status interface

Version:
7.1.x built by: WinDDK

MD5:
cb4c0245f7469d989aec007d44b70418

SHA-1:
b1f07c87329162a06ac9facc225ce46ab96fd2c7

SHA-256:
dd6860bc86049ecc2717112b8db36c2f9c968b708a76bdc862cad86378238dcf

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 10:34:35 PM UTC  (today)

File size:
10.7 KB (10,912 bytes)

Product version:
7.1.x

Copyright:
(C) 2004-, Solusseum Inc.

Original file name:
hicomsta.sys

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\hicomsta.sys

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
5/16/2012 9:00:00 AM

Valid to:
6/16/2013 8:59:59 AM

Subject:
CN=Solusseum Inc, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Solusseum Inc, L=Guro-gu, S=Seoul, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
40A30808B4249FF1EBA8F911D34E08CB

File PE Metadata
Compilation timestamp:
8/9/2012 9:38:30 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
192:OOqZMZ335/wJirNmL/Kr9ZCApkT1rrZgjl3rM+wS+vIdjrDM8y:OJMZ3mirILjp1P6jhVdTMb

Entry address:
0x9BE

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, C8, FC, FF, FF, CC, CC, F8, 09, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 50, 0B, 00, 00, 00, 08, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 30, 0A, 00, 00, 46, 0A, 00, 00, 5E, 0A, 00, 00, 76, 0A, 00, 00, 86, 0A, 00, 00, A6, 0A, 00, 00, BA, 0A, 00, 00, D6, 0A, 00, 00, EE, 0A, 00, 00, 06, 0B, 00, 00, 18, 0B, 00, 00, 30, 0B, 00, 00, 42, 0B, 00, 00, 00, 00, 00, 00, E3, 01, 49, 6F, 66, 43, 6F, 6D, 70, 6C, 65, 74, 65, 52...
 
[+]

Entropy:
6.6083

Code size:
1.4 KB (1,408 bytes)

Driver
Display name:
XcoveryState

Type:
Kernel device driver (KernelDriver)

Group:
Base


Scan hicomsta.sys - Powered by Reason Core Security