apcryptoprotect.sys

Windows Win 7 DDK driver

Apsoft Bilgi Teknolojileri San. ve Tic. Ltd. Sti.

It runs as a Windows file system device driver named “APCryptoProtect”.
Publisher:
Windows (R) Win 7 DDK provider  (signed by Apsoft Bilgi Teknolojileri San. ve Tic. Ltd. Sti.)

Product:
Windows (R) Win 7 DDK driver

Description:
MiniSpy Filter Driver

Version:
6.1.7600.16385 built by: WinDDK

MD5:
c6da3552ddf216978df9a5986480da9a

SHA-1:
3e061548760e63f523c11fd09c69dfe97556c51a

SHA-256:
4793a0e37dcc357dbc5158ddd352c3db79aedca3eaac93ac297856f0df4c90a2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 10:43:24 PM UTC  (today)

File size:
17.5 KB (17,872 bytes)

Product version:
6.1.7600.16385

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
minispy.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\apcryptoprotect.sys

Digital Signature
Authority:
DigiCert Inc

Valid from:
7/13/2012 4:30:00 AM

Valid to:
7/22/2015 4:30:00 PM

Subject:
CN=Apsoft Bilgi Teknolojileri San. ve Tic. Ltd. Sti., O=Apsoft Bilgi Teknolojileri San. ve Tic. Ltd. Sti., L=Istanbul, C=TR

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
02A4E5FFE06FD6EE586BBC5919AE744D

File PE Metadata
Compilation timestamp:
6/8/2015 9:35:03 AM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
192:Ls7M9KfshpsyGihS8geAkkMkNyjRZ8Q8OdJ/PVyMrj1Ve7x0ZhNgYMujXTTbdupH:oI5hpsLi+e5HSC/daMkyv1MKm

Entry address:
0x1EBE

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, B8, E5, FF, FF, CC, CC, 44, 1F, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, EE, 21, 00, 00, 38, 13, 00, 00, 0C, 1F, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 20, 23, 00, 00, 00, 13, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, E6, 22, 00, 00, D6, 22, 00, 00, C8, 22, 00, 00, BC, 22, 00, 00, 9C, 22, 00, 00, 80, 22, 00, 00, 6A, 22, 00, 00, 4E, 22, 00, 00, 3A, 22, 00, 00, 24, 22, 00, 00, 10, 22, 00, 00, FC, 21, 00, 00, 04, 23...
 
[+]

Entropy:
6.0342

Code size:
4.9 KB (4,992 bytes)

Driver
Display name:
APCryptoProtect

Type:
File system 'filter' driver (FileSystemDriver)


Scan apcryptoprotect.sys - Powered by Reason Core Security