lsi_aspi.sys

Version Full For Seven

White Wave Soft Inc.

It runs as a Windows 64-bit kernel mode device driver named “Farassoo”.
Publisher:
Farasoo  (signed by White Wave Soft Inc.)

Product:
Version Full For Seven

Description:
Farasoo.sys

Version:
Keyboard Driver built by: WinDDK

MD5:
db5e60c8236789060f362ae90636c7e9

SHA-1:
bf19fa7992471a1977941b4685c339f1d7d00884

SHA-256:
0dce3bcf65b205a5ea53616aed522b1fd351cecc0d61c80c1114c6b898bd53da

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/16/2024 9:29:55 PM UTC  (today)

File size:
8.7 KB (8,944 bytes)

Product version:
1.1.1.1

Copyright:
Farasoo <2011>

Original file name:
Farasoo.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\windows\syswow64\lsi_aspi.sys

Digital Signature
Authority:
White Wave Soft Inc.

Valid from:
9/24/2010 7:36:54 PM

Valid to:
9/24/2018 7:36:53 PM

Subject:
CN=White Wave Soft, O=White Wave Soft Inc., OU=Run In 64X, L=Reza Abdoli, S=CA, C=US

Issuer:
CN=White Wave Soft, O=White Wave Soft Inc., OU=Run In 64X, L=Reza Abdoli, S=CA, C=US

Serial number:
9EAFE6A55BBA8094466C87C027BFFFC5

File PE Metadata
Compilation timestamp:
1/18/2011 12:44:08 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
96:p1VkGtJQguPEx7hCrnPpSOG9yE0HI4kGsMMjX3wB1hu0+Vpf1zpupMZ:pEGXruOhwSOG9l0HDjux06JpcMZ

Entry address:
0x5064

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, 3A, C1, FF, FF, CC, CC, B0, 50, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, B4, 51, 00, 00, 00, 20, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 51, 00, 00, 00, 00, 00, 00, 18, 51, 00, 00, 00, 00, 00, 00, 32, 51, 00, 00, 00, 00, 00, 00, 4A, 51, 00, 00, 00, 00, 00, 00, 60, 51, 00, 00, 00, 00, 00, 00, 72, 51, 00, 00, 00, 00, 00, 00, 82, 51, 00, 00...
 
[+]

Entropy:
5.4066

Code size:
3.5 KB (3,584 bytes)

Driver
Display name:
Farassoo

Type:
Kernel device driver (KernelDriver)


Scan lsi_aspi.sys - Powered by Reason Core Security