ksmon.sys

Filter Driver for the KS Filters

Microsoft Corporation

Publisher:
Microsoft Corporation  (signed and verified)

Product:
Microsoft® Windows® Operating System

Description:
Filter Driver for the KS Filters

Version:
6.3.9600.16384 (winblue_rtm.130821-1623)

MD5:
4286cf5607de29308f695622c5448ed2

SHA-1:
2f428006389a085e819063823ab0e79c3cc93e70

SHA-256:
7853de4cd7b1fcf28b2d0bb92faa12b84e1b0e84482c3b20abb4528af66008de

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
4/23/2024 1:43:42 PM UTC  (today)

File size:
23 KB (23,552 bytes)

Product version:
6.3.9600.16384

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
KSMON

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Program Files\windows kits\8.1\tools\arm\xp\ksmon.sys

Digital Signature
Authority:
Microsoft Corporation

Valid from:
12/17/2012 5:31:27 PM

Valid to:
3/17/2014 6:31:27 PM

Subject:
CN=Microsoft Windows Kits Publisher, OU=MOPR, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Issuer:
CN=Microsoft Code Signing PCA 2010, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Serial number:
330000002167711851029B91B2000000000021

File PE Metadata
Compilation timestamp:
8/21/2013 11:13:10 PM

OS version:
6.3

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
11.0

CTPH (ssdeep):
384:Ar7sKoT7ed8vRrw9TKuZXzxOWO9nWLRTIlC5aEl:ArPs7ed8OJNYyR/3

Entry address:
0x2BF5

Entry point:
E9, 30, 48, 0D, F1, 08, 0B, 0C, 46, 05, 46, 04, F0, 14, FA, 21, 46, 28, 46, 04, F0, FA, F9, BD, E8, 30, 88, 43, F2, 14, 0C, C0, F2, 01, 0C, DC, F8, 00, F0, 43, F2, 18, 0C, C0, F2, 01, 0C, DC, F8, 00, F0, 43, F2, 28, 0C, C0, F2, 01, 0C, DC, F8, 00, F0, 43, F2, 40, 0C, C0, F2, 01, 0C, DC, F8, 00, F0, 43, F2, 50, 0C, C0, F2, 01, 0C, DC, F8, 00, F0, 43, F2, 60, 0C, C0, F2, 01, 0C, DC, F8, 00, F0, 43, F2, 64, 0C, C0, F2, 01, 0C, DC, F8, 00, F0, 43, F2, 80, 0C, C0, F2, 01, 0C, DC, F8, 00, F0, 2D, E9, F0, 4B, 0D...
 
[+]

Entropy:
6.5355

Packer / compiler:
Xtreme-Protector v1.05

Code size:
9.5 KB (9,728 bytes)