apsp.sys

Self Protection Driver

Apsoft Bilgi Teknolojileri San. ve Tic. Ltd. Sti.

It runs as a Windows kernel mode device driver named “Amnpardaz Protection”.
Publisher:

Product:
Self Protection Driver

Version:
1, 4, 19, 1407 built by: WinDDK

MD5:
aabbf2677ac1bdb562e2c8651a8faec7

SHA-1:
49303326203ab0e57a4c60356b6b5d06afb2ad9c

SHA-256:
1ee693f6fb8fab88c3e103990cc400361dcc1c224ba5548ad8b46c23a43d0199

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 12:26:45 PM UTC  (today)

File size:
29.1 KB (29,776 bytes)

Product version:
1, 4, 19, 1407

Copyright:
Copyright © APSoft Bilgi Teknolojileri San. ve Tic. Ltd. Sti.

Original file name:
apsp.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\apsp.sys

Digital Signature
Authority:
DigiCert Inc

Valid from:
7/13/2012 4:30:00 AM

Valid to:
7/22/2015 4:30:00 PM

Subject:
CN=Apsoft Bilgi Teknolojileri San. ve Tic. Ltd. Sti., O=Apsoft Bilgi Teknolojileri San. ve Tic. Ltd. Sti., L=Istanbul, C=TR

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
02A4E5FFE06FD6EE586BBC5919AE744D

File PE Metadata
Compilation timestamp:
12/10/2014 1:06:20 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
384:u72MTQWf3Vey0fwOMCNaMekxC5Cy8whwG9717y8MMCjyv1MKY:u72MTQWfFe0OMCNhwhFx77HBMv

Entry address:
0x7E03E

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, DA, 3C, F8, FF, CC, CC, 98, E0, 07, 00, 00, 00, 00, 00, 00, 00, 00, 00, C0, E6, 07, 00, 0C, 50, 00, 00, 8C, E0, 07, 00, 00, 00, 00, 00, 00, 00, 00, 00, 06, E7, 07, 00, 00, 50, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, DA, E6, 07, 00, F0, E6, 07, 00, 00, 00, 00, 00, CA, E1, 07, 00, E2, E1, 07, 00, EE, E1, 07, 00, 06, E2, 07, 00, 14, E2, 07, 00, 2E, E2, 07, 00, 46, E2, 07, 00, 64, E2, 07, 00, 76, E2, 07, 00, 8E, E2...
 
[+]

Entropy:
6.3272

Code size:
15.5 KB (15,872 bytes)

Driver
Display name:
Amnpardaz Protection

Service name:
apspDriver

Type:
Kernel device driver (KernelDriver)


Scan apsp.sys - Powered by Reason Core Security