FPAV_RTP.sys

F-PROT Antivirus for Windows

FRISK Software International

It runs as a Windows file system device driver named “FPAV_RTP”.
Publisher:
FRISK Software International  (signed and verified)

Product:
F-PROT Antivirus for Windows

Description:
FPAV - RealTime Protector

Version:
4.6.2.5430

MD5:
9a8fc83de2a11f838a59b58de9da0f58

SHA-1:
c1a61eaf9b769e63fbb64b05ef6b06b06e153895

SHA-256:
9f1afd6deb1454d39f6be8bb80a190ece8b8617b5cbe16e0694136ff448f068c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 6:39:48 PM UTC  (today)

File size:
676.8 KB (693,080 bytes)

Product version:
4.6.2.117

Copyright:
Copyright © FRISK Software International

Original file name:
FPAV_RTP.sys

File type:
Driver (Win32 SYS)

Language:
Language Neutral

Common path:
C:\Windows\System32\drivers\fpav_rtp.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/28/2008 5:00:00 PM

Valid to:
11/1/2011 4:59:59 PM

Subject:
CN=FRISK Software International, OU=Software Development and Distribution Department, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=FRISK Software International, L=Reykjavik, S=Reykjavik, C=IS

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2B99ADD49CB316F9B6A090B13E2C622B

File PE Metadata
Compilation timestamp:
9/22/2010 5:47:11 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
12288:/+dDA5kCmo+7thucuTIhzVSVtDOaZMMIkYyi2/gCo/fwVFPZNMxfC:MP97tgn0hUVZ/bYyiQgCw6FPZN/

Entry address:
0xA36F9

Entry point:
8B, FF, 55, 8B, EC, A1, 3C, FE, 0A, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 1A, A1, E8, 27, 0A, 00, 8B, 00, 35, 3C, FE, 0A, 00, A3, 3C, FE, 0A, 00, 75, 07, 8B, C1, A3, 3C, FE, 0A, 00, F7, D0, A3, 40, FE, 0A, 00, 5D, E9, 4F, FE, FF, FF, CC, DC, 37, 0A, 00, 00, 00, 00, 00, 00, 00, 00, 00, 1E, 3E, 0A, 00, 54, 27, 09, 00, D0, 37, 0A, 00, 00, 00, 00, 00, 00, 00, 00, 00, 58, 3E, 0A, 00, 48, 27, 09, 00, 88, 37, 0A, 00, 00, 00, 00, 00, 00, 00, 00, 00, DE, 3F, 0A, 00, 00, 27, 09, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.5685

Code size:
587.6 KB (601,728 bytes)

Driver
Display name:
FPAV_RTP

Description:
F-Prot Antivirus - RealTime Protector File System Filter Driver

Type:
File system 'filter' driver (FileSystemDriver)

Group:
FSFilter Anti-Virus

Depends on:
FltMgr