TcIo.sys

BECKHOFF TwinCAT System

Beckhoff Automation GmbH

It runs as a Windows kernel mode device driver named “TwinCAT IO Server”.
Publisher:
Beckhoff Automation GmbH  (signed and verified)

Product:
BECKHOFF TwinCAT System

Description:
TwinCAT IO Server

Version:
2, 11, 0, 816

MD5:
972c7f35d4a464493eb10df7598362e9

SHA-1:
c8cd2c009b0b88c4af103163b716a52fa8811024

SHA-256:
6d74eb4721ead3d0c0a36c5acfc5897a675a1a608a347e2623a3287d14e1b92d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 5:16:32 PM UTC  (today)

File size:
906.7 KB (928,440 bytes)

Product version:
2,11,1549,0

Copyright:
Copyright © BECKHOFF 1997 - 2010

Original file name:
TcIo.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
2/4/2008 11:18:43 PM

Valid to:
2/4/2011 11:18:43 PM

Subject:
E=info@beckhoff.de, CN=Beckhoff Automation GmbH, O=Beckhoff Automation GmbH, C=DE

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
01000000000117E53E07D1

File PE Metadata
Compilation timestamp:
7/8/2010 9:24:27 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
12288:uEVo/Huf4LvRdfDsUk5/BYe8XRQpqBaM6LR2Pi3xodpkwHIp2IrCQb:7m/jLv3K5/d8hKab226346whvm

Entry address:
0xBF230

Entry point:
53, 56, 57, E8, 58, F2, FF, FF, 8B, 5C, 24, 14, 8B, 74, 24, 10, 53, 56, E8, B9, FD, FF, FF, 8B, F8, 85, FF, 75, 3D, B8, 90, 2C, 0B, 00, C7, 46, 34, 60, 35, 0B, 00, 89, 46, 38, 89, 46, 40, 89, 46, 70, 89, 46, 44, 89, 46, 48, C7, 86, 80, 00, 00, 00, E0, 2C, 0B, 00, C7, 46, 78, 00, 2D, 0B, 00, 8B, 0D, 80, BB, 0E, 00, 8B, 01, 8B, 50, 1C, 53, 56, FF, D2, 8B, C7, 5F, 5E, 5B, C2, 08, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.4929

Code size:
760.5 KB (778,752 bytes)

Driver
Display name:
TwinCAT IO Server

Service name:
TcIo

Type:
Kernel device driver (KernelDriver)

Group:
Base


Scan TcIo.sys - Powered by Reason Core Security