lsi_aspl.sys

Version Full For Seven

White Wave Soft Inc.

It runs as a Windows 64-bit kernel mode device driver named “Farassoo”.
Publisher:
Farasoo  (signed by White Wave Soft Inc.)

Product:
Version Full For Seven

Description:
Farasoo.sys

Version:
Keyboard Driver built by: WinDDK

MD5:
2a21ec54f36153016a262ef23492c13d

SHA-1:
d7751a76012f76d7e37a6032de64202e824c415d

SHA-256:
a98525093dd9b8cdbb65cf606efd2340c1b10669216924289e5b5eb59c455601

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 7:46:53 AM UTC  (today)

File size:
8.7 KB (8,944 bytes)

Product version:
1.1.1.1

Copyright:
Farasoo <2011>

Original file name:
Farasoo.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\windows\syswow64\lsi_aspl.sys

Digital Signature
Authority:
White Wave Soft Inc.

Valid from:
9/24/2010 7:36:54 PM

Valid to:
9/24/2018 7:36:53 PM

Subject:
CN=White Wave Soft, O=White Wave Soft Inc., OU=Run In 64X, L=Reza Abdoli, S=CA, C=US

Issuer:
CN=White Wave Soft, O=White Wave Soft Inc., OU=Run In 64X, L=Reza Abdoli, S=CA, C=US

Serial number:
9EAFE6A55BBA8094466C87C027BFFFC5

File PE Metadata
Compilation timestamp:
1/18/2011 9:46:19 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
96:dkC4iJHL/ZE3x11gkfBUFSQXmmwsk9L0VG1hu2+Vpf1zp2OpYB:2vi9ZEh1RZI5wsFJ26Jp6

Entry address:
0x5064

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, 9E, C5, FF, FF, CC, CC, B0, 50, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 88, 52, 00, 00, 00, 20, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 38, 51, 00, 00, 00, 00, 00, 00, 50, 51, 00, 00, 00, 00, 00, 00, 64, 51, 00, 00, 00, 00, 00, 00, 70, 51, 00, 00, 00, 00, 00, 00, 88, 51, 00, 00, 00, 00, 00, 00, 9A, 51, 00, 00, 00, 00, 00, 00, B0, 51, 00, 00...
 
[+]

Entropy:
5.0406

Code size:
3.5 KB (3,584 bytes)

Driver
Display name:
Farassoo

Type:
Kernel device driver (KernelDriver)


Scan lsi_aspl.sys - Powered by Reason Core Security