{1ec00332-9da9-436d-9aaa-048787df45b6}.sys

CallbackDisk

EldoS Corporation

It runs as a Windows kernel mode device driver named “CBDisk”.
Publisher:
EldoS Corporation  (signed and verified)

Product:
CallbackDisk

Description:
CallbackDisk Virtual Storage Driver

Version:
1, 5, 74, 158

MD5:
62f2c9ac31eca5168740598e056397e2

SHA-1:
bcd166a7acf0a268cb898d585b54a15bbb65c759

SHA-256:
d43beb3b4558b9da2242213d31c481b61dbdd9078629e54b94201b2304e347d2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 12:08:07 AM UTC  (today)

File size:
56 KB (57,304 bytes)

Product version:
1, 1, 5, 0

Copyright:
Copyright (C) EldoS Corp. 2000-2009

Original file name:
cbdisk.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\{1ec00332-9da9-436d-9aaa-048787df45b6}.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
1/10/2007 4:20:07 PM

Valid to:
1/10/2010 4:20:07 PM

Subject:
E=info@eldos.com, CN=EldoS Corporation, O=EldoS Corporation, C=VG

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
010000000001100C983A31

File PE Metadata
Compilation timestamp:
9/15/2009 4:52:24 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
1536:S/YmM5ACqO9QUidVIM0qBWOZbekWqYCuic:eVM5ACv99xvqHZi9R

Entry address:
0xA444

Entry point:
8B, FF, 55, 8B, EC, A1, 04, 15, 01, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 1A, A1, B4, 10, 01, 00, 8B, 00, 35, 04, 15, 01, 00, A3, 04, 15, 01, 00, 75, 07, 8B, C1, A3, 04, 15, 01, 00, F7, D0, A3, 08, 15, 01, 00, 5D, E9, EE, FD, FF, FF, 49, 00, 6F, 00, 47, 00, 65, 00, 74, 00, 4C, 00, 6F, 00, 77, 00, 65, 00, 72, 00, 44, 00, 65, 00, 76, 00, 69, 00, 63, 00, 65, 00, 4F, 00, 62, 00, 6A, 00, 65, 00, 63, 00, 74, 00, 00, 00, 49, 00, 6F, 00, 47, 00, 65, 00, 74, 00, 44, 00, 69, 00, 73, 00, 6B, 00, 44, 00...
 
[+]

Code size:
41 KB (41,984 bytes)

Driver
Display name:
CBDisk

Type:
Kernel device driver (KernelDriver)


Scan {1ec00332-9da9-436d-9aaa-048787df45b6}.sys - Powered by Reason Core Security