zsport.sys

Vasily Tarasov

It runs as a Windows 64-bit kernel mode device driver named “zonescreen”.
Publisher:
ZoneOS  (signed by Vasily Tarasov)

Product:
ZoneOS

Description:
ZoneScreen Video Miniport Driver

Version:
1.1.13.0

MD5:
9be8d207ca430947aa90c9f353760a3c

SHA-1:
52f7a18b1b2d21cd35e470374bc013cb1f2ac7b2

SHA-256:
b644a8fe4b444c00e10d2f0e1e0a113440f0af2eea5c03cd69eee0b2c3de7664

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 7:47:34 PM UTC  (today)

File size:
10.4 KB (10,616 bytes)

Product version:
1.1.13.0

Copyright:
(C) Vasily Tarasov. All rights reserved.

Original file name:
zsport.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\zsport.sys

Digital Signature
Signed by:

Authority:
The USERTRUST Network

Valid from:
9/22/2008 9:00:00 PM

Valid to:
9/23/2011 8:59:59 PM

Subject:
CN=Vasily Tarasov, O=Vasily Tarasov, STREET=Mamina 21b-25, L=Cheluabinsk, S=Russian Federation, PostalCode=454077, C=RU

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00D77C65A9FF82BD0485206987045BC417

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
192:NbB9H9L4H+waQGZ129byMrj6y2sg2YUcYOkg:NbTHR4hsLCOMCbAQ

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, 48, FF, FF, FF, CC, CC, CC, CC, CC, 8B, FF, 55, 8B, EC, 53, 56, 8B, 35, 1C, 05, 01, 00, 57, FF, 75, 08, 33, C0, 66, A3, 98, 0A, 01, 00, BB, 00, 01, 00, 00, 8B, C3, BF, 98, 0A, 01, 00, 57, 66, A3, 9A, 0A, 01, 00, C7, 05, 9C, 0A, 01, 00, 88, 06, 01, 00, FF, D6, 68, 94, 05, 01, 00, 57, 8B, 3D, 18, 05, 01, 00, FF, D7, FF, 75, 08, 66, 89, 1D, 92, 0A, 01, 00, 33, C0, BB, 90, 0A, 01, 00, 53, 66, A3, 90, 0A, 01, 00, C7, 05, 94, 0A, 01, 00, 88, 08, 01, 00, FF, D6, 68...
 
[+]

Entropy:
5.8329

Driver
Display name:
zonescreen

Type:
Kernel device driver (KernelDriver)

Group:
Video


Scan zsport.sys - Powered by Reason Core Security