arta.sys

Sheed Antivirus (not for sale/use outside IRAN)

SheedSoftLtd

It runs as a Windows file system device driver named “ArtaFilter”.
Publisher:
SheedSoft Ltd.  (signed by SheedSoftLtd)

Product:
Sheed Antivirus (not for sale/use outside IRAN)

Description:
Sheed Arta File System Filter Driver

Version:
1.0 built by: WinDDK

MD5:
a9fd9241fc8f6b5ef1f769ba50f346ea

SHA-1:
3800b796fb507ac63565eac6702070d0395268f5

SHA-256:
1ddac046875c50841a2533090f3e161442ddb162d0971bcd9e219e19e528d2b8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 5:36:21 AM UTC  (today)

File size:
74.7 KB (76,528 bytes)

Product version:
6.1.7600.16385

Copyright:
© Sheedsoft Corporation. All rights reserved.

Original file name:
arta.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\arta.sys

Digital Signature
Signed by:

Authority:
SheedSoftLtd

Valid from:
4/18/2012 1:00:43 PM

Valid to:
1/1/2040 3:29:59 AM

Subject:
CN=SheedSoftLtd

Issuer:
CN=SheedSoftLtd

Serial number:
B8E2EE2B341DD9894BEAE151FB7071E6

File PE Metadata
Compilation timestamp:
6/12/2012 5:41:44 AM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
1536:SyXyOTYZfEkKWebEzGXKFHgE/HKruMgx:ZCOTYZ8kKIzpAEfKl

Entry address:
0x16874

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, 7C, FA, FF, FF, 52, 00, 74, 00, 6C, 00, 47, 00, 65, 00, 74, 00, 56, 00, 65, 00, 72, 00, 73, 00, 69, 00, 6F, 00, 6E, 00, 00, 00, 49, 00, 6F, 00, 47, 00, 65, 00, 74, 00, 41, 00, 74, 00, 74, 00, 61, 00, 63, 00, 68, 00, 65, 00, 64, 00, 44, 00, 65, 00, 76, 00, 69, 00, 63, 00, 65, 00, 52, 00, 65, 00, 66, 00, 65, 00, 72, 00, 65, 00, 6E, 00, 63, 00, 65, 00, 00, 00, 49, 00, 6F, 00, 47, 00, 65, 00, 74, 00, 44, 00, 69, 00, 73, 00, 6B, 00, 44, 00, 65, 00, 76, 00, 69, 00...
 
[+]

Entropy:
5.9534

Code size:
39.5 KB (40,448 bytes)

Driver
Display name:
ArtaFilter

Description:
Sheed Antivirus Arta Filter Driver

Type:
File system 'filter' driver (FileSystemDriver)

Group:
FSFilter Activity Monitor


Scan arta.sys - Powered by Reason Core Security