ISTFSF.sys

IST File System Filter Driver

Philips Medical Systems Cleveland

It runs as a Windows kernel mode device driver named “ISTFSF”.
Publisher:
Philips Medical Systems.  (signed by Philips Medical Systems Cleveland)

Product:
IST File System Filter Driver

Description:
Decrypting File System Filter

Version:
1, 0, 1, 20

MD5:
e0900ebed299f985a42c8982683c05d3

SHA-1:
2c93b999fb0d6cbeaf7809a289857e4ba72f79fe

SHA-256:
a6679541989d0163c22072451239a33402247b4257de1ba31f9fb730eb10ce2b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/2/2024 2:59:57 AM UTC  (today)

File size:
55.1 KB (56,392 bytes)

Product version:
1, 0, 1, 20

Copyright:
Copyright © 2009

Original file name:
ISTFSF.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Program Files\philips\ist\i386\istfsf.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/13/2009 7:00:00 AM

Valid to:
4/14/2010 6:59:59 AM

Subject:
CN=Philips Medical Systems Cleveland, OU=Global Customer Service, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Philips Medical Systems Cleveland, L=Highland Heights, S=Ohio, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1EDDC7A7FEA77679AC90B8A31FC6B974

File PE Metadata
Compilation timestamp:
7/27/2009 10:27:23 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
1536:99Z6/dXhteV6Pu/eLVD4p4gFwSNhrreLz47v:9Mh7PNQr3r

Entry address:
0xE1D6

Entry point:
8B, FF, 55, 8B, EC, A1, CC, C0, 01, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 1A, A1, 90, B0, 01, 00, 8B, 00, 35, CC, C0, 01, 00, A3, CC, C0, 01, 00, 75, 07, 8B, C1, A3, CC, C0, 01, 00, F7, D0, A3, D0, C0, 01, 00, 5D, E9, FC, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 44, 72, 69, 76, 65, 72, 45, 6E, 74, 72, 79, 3A, 20, 46, 61, 69, 6C, 65, 64, 20, 74, 6F, 20, 63, 72, 65, 61, 74, 65, 20, 77, 6F, 72, 6B, 65, 72, 20, 74, 68, 72, 65, 61, 64, 2E, 20, 53, 74, 61, 74, 75, 73, 20, 3D, 20...
 
[+]

Entropy:
6.5265

Code size:
43.5 KB (44,544 bytes)

Driver
Display name:
ISTFSF

Type:
Kernel device driver (KernelDriver)

Group:
FSFilter Encryption

Depends on:
FltMgr


Scan ISTFSF.sys - Powered by Reason Core Security