f5fltdrv.sys

BIG-IP Edge Client

F5 Networks

It runs as a Windows kernel mode device driver named “F5 Networks DNS Relay Driver”.
Publisher:
F5 Networks, Inc.  (signed by F5 Networks)

Product:
BIG-IP® Edge Client™

Description:
F5 Filter Driver for Windows

Version:
7002, 2010, 1014, 1117

MD5:
ca49816dd18bc3d6e3d926150c1c88d1

SHA-1:
de53298f415436a00515e2eff3b803df7103c066

SHA-256:
cdd6d6d26c9e2bde1c1e565c60ec53ddc6ed8dfd3fb259c86408dcf451f889a6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 11:13:44 PM UTC  (a few moments ago)

File size:
20.7 KB (21,240 bytes)

Product version:
7002, 2010, 1014, 1117

Copyright:
© 2008-2010 F5 Networks, Inc.

Original file name:
f5fltdrv.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\f5fltdrv.sys

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
3/18/2010 7:00:00 PM

Valid to:
3/17/2013 6:59:59 PM

Subject:
CN=F5 Networks, OU=PRODUCT DEVELOPMENT, O=F5 Networks, L=Seattle, S=Washington, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
3E0190A50E1038DB25E2A58808511729

File PE Metadata
Compilation timestamp:
10/14/2010 6:17:57 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

Entry address:
0x33CF

Entry point:
8B, FF, 55, 8B, EC, A1, 80, 1C, 01, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 1E, 8B, 15, D0, 15, 01, 00, B8, 80, 1C, 01, 00, C1, E8, 08, 33, 02, A3, 80, 1C, 01, 00, 75, 07, 8B, C1, A3, 80, 1C, 01, 00, F7, D0, A3, 84, 1C, 01, 00, 5D, E9, F5, FE, FF, FF, CC, 5C, 00, 44, 00, 6F, 00, 73, 00, 44, 00, 65, 00, 76, 00, 69, 00, 63, 00, 65, 00, 73, 00, 5C, 00, 46, 00, 35, 00, 54, 00, 64, 00, 69, 00, 46, 00, 6C, 00, 74, 00, 44, 00, 72, 00, 76, 00, 00, 00, 5C, 00, 44, 00, 65, 00, 76, 00, 69, 00, 63, 00, 65...
 
[+]

Entropy:
6.4724

Code size:
11.1 KB (11,392 bytes)

Driver
Display name:
F5 Networks DNS Relay Driver

Service name:
F5FltDrv

Type:
Kernel device driver (KernelDriver)