safemon.sys

System Safety Monitor Free Edition

System Safety Limited

It runs as a Windows kernel mode device driver named “System Safety Monitor 2.0 Core Engine”.
Publisher:
System Safety Limited  (signed and verified)

Product:
System Safety™ Monitor Free Edition

Description:
System Safety Monitor 2.0 extension for Windows security layer

Version:
2.0.8.583

MD5:
e533051656aae4fb20cc09ef1df8c4d9

SHA-1:
fc598564f22623a797d01ea7c629388bb0444ca4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/16/2024 3:10:55 AM UTC  (today)

File size:
140 KB (143,336 bytes)

Product version:
2.0

Copyright:
© 2005-2006 System Safety Limited. All rights reserved

Original file name:
safemon.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\safemon.sys

Digital Signature
Authority:
The USERTRUST Network

Valid from:
7/6/2006 3:00:00 AM

Valid to:
7/7/2007 2:59:59 AM

Subject:
CN=System Safety Limited, O=System Safety Limited, STREET="#24 Tangerine Street", L=Belmopan, S=N.A., PostalCode=N.A., C=BZ

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
40C27B1F54E219BD32E9F81B66EA86D2

File PE Metadata
Compilation timestamp:
10/27/2006 5:52:01 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
7.10

CTPH (ssdeep):
768:eUYu7bchgPSmXYZtZs07WzMYU1NglcHFheFK6CsS/uN9x5yD9qiX4NNEPgw9eF7e:vBbcKPSmMZGbvjGEL5yD9YEPgwslmp

Entry address:
0x1ED80

Entry point:
8B, 0D, C4, 79, 02, 00, 8B, 11, 33, C0, 85, D2, 75, 4C, 56, 57, 8B, 7C, 24, 0C, 57, E8, 86, 00, 00, 00, 8B, F0, 85, F6, 7C, 31, E8, BB, 00, 00, 00, 8B, F0, 85, F6, 7C, 26, 8B, 54, 24, 10, 52, 57, E8, 1A, 01, 00, 00, 8B, F0, 85, F6, 7C, 15, 6A, 00, 68, 00, A9, 02, 00, 57, FF, 15, CC, 79, 02, 00, 5F, 8B, C6, 5E, C2, 08, 00, E8, BA, 00, 00, 00, 5F, 8B, C6, 5E, C2, 08, 00, CC, CC, CC, B9, 28, 92, 02, 00, FF, 15, F0, 78, 02, 00, 3D, 00, 01, 00, 00, 75, 12, 6A, 00, 6A, 00, 6A, 00, 50, 68, 00, FF, E0, E0, FF, 15...
 
[+]

Code size:
117.5 KB (120,320 bytes)

Driver
Display name:
System Safety Monitor 2.0 Core Engine

Service name:
safemon

Type:
Kernel device driver (KernelDriver)

Group:
System Bus Extender


Scan safemon.sys - Powered by Reason Core Security