xsnm.sys

Jiransoft Co., Ltd.

It runs as a Windows kernel mode device driver named “NETWORK MONITOR DRIVER XSNM”.
Publisher:
Jiransoft Co., Ltd.  (signed and verified)

MD5:
82929547f5554bae3f2543dad4a697e1

SHA-1:
dfe4841346a436890c5e9249018fa49370166d04

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 3:08:21 AM UTC  (today)

File size:
16.6 KB (16,960 bytes)

File type:
Driver (Win32 SYS)

Common path:
C:\Windows\System32\drivers\xsnm.sys

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
3/29/2010 9:00:00 AM

Valid to:
5/28/2012 8:59:59 AM

Subject:
CN="Jiransoft Co., Ltd.", O="Jiransoft Co., Ltd.", L=Gangnam-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
4500A6DF76514260D830DADB083D86F9

File PE Metadata
Compilation timestamp:
3/14/2011 1:56:18 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

Entry address:
0x273E

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, 6E, E5, FF, FF, CC, CC, C0, 27, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 34, 2A, 00, 00, A0, 23, 00, 00, A0, 27, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, AA, 2A, 00, 00, 80, 23, 00, 00, B8, 27, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, C6, 2A, 00, 00, 98, 23, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 94, 2A, 00, 00, 7E, 2A, 00, 00, 6A, 2A, 00, 00, 56, 2A, 00, 00, 42, 2A, 00, 00, 00, 00, 00, 00, B2, 2A, 00, 00, 00, 00...
 
[+]

Entropy:
6.7067

Code size:
8.8 KB (8,960 bytes)

Driver
Display name:
NETWORK MONITOR DRIVER XSNM

Service name:
xsnm

Type:
Kernel device driver (KernelDriver)

Group:
PNP_TDI

Depends on:
tcpip


Scan xsnm.sys - Powered by Reason Core Security