iamt.sys

amtium bras helper

Beijing Amtium Union-Creation Tech Co., Ltd.

It runs as a Windows kernel mode device driver named “Supplicant Helper”.
Publisher:
amtium  (signed by Beijing Amtium Union-Creation Tech Co., Ltd.)

Product:
amtium bras helper

Description:
bras helper

Version:
2006.9.5

MD5:
14374fedd24f6447a8c905c5295ec43b

SHA-1:
e2c3489e717a3cd28b02afb06fa471486b59bce0

SHA-256:
c47ea57477ddca7bd765d1e0c926760d243332f3fa1e727fdc213f06873ed7f6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 8:29:21 PM UTC  (today)

File size:
23.4 KB (23,960 bytes)

Product version:
2.0

Copyright:
Copyright (C) amtium 2006

Original file name:
iamt.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\iamt.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
7/22/2009 5:08:34 PM

Valid to:
7/22/2010 5:08:34 PM

Subject:
CN="Beijing Amtium Union-Creation Tech Co., Ltd.", O="Beijing Amtium Union-Creation Tech Co., Ltd.", C=CN

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
01000000000122A1E95C1E

File PE Metadata
Compilation timestamp:
1/4/2009 2:29:57 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
384:m3pVc/HU/WBMGOfvoM5lR+U0U4HiSpCj5+Wjj3D5QNE54XdUb+q:6pVi0/WqvJSpeUWjXiq

Entry address:
0x2D1E8

Entry point:
8B, FF, 55, 8B, EC, A1, 34, 50, 01, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 1E, 8B, 15, D4, 40, 01, 00, B8, 34, 50, 01, 00, C1, E8, 08, 33, 02, A3, 34, 50, 01, 00, 75, 07, 8B, C1, A3, 34, 50, 01, 00, F7, D0, A3, 38, 50, 01, 00, 5D, E9, DC, FD, FF, FF, 49, 00, 41, 00, 6D, 00, 74, 00, 00, 00, 54, D3, 02, 00, 00, 00, 00, 00, 00, 00, 00, 00, 38, D4, 02, 00, D0, 40, 00, 00, 84, D2, 02, 00, 00, 00, 00, 00, 00, 00, 00, 00, 6E, D4, 02, 00, 00, 40, 00, 00, 90, D2, 02, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.4365

Code size:
13.5 KB (13,824 bytes)

Driver
Display name:
Supplicant Helper

Service name:
IAmt

Type:
Kernel device driver (KernelDriver)

Group:
PNP_TDI


Scan iamt.sys - Powered by Reason Core Security