abpmn900.sys

AbpMon for Windows 9x/ME/NT/2k/XP

SoftLab-NSK

It runs as a Windows 64-bit kernel mode device driver named “ABPMN900.SYS”.
Publisher:
Igor Arsenin  (signed by SoftLab-NSK)

Product:
AbpMon for Windows 9x/ME/NT/2k/XP(TM)

Description:
ABPMN900 Kernel Driver

Version:
7.00

MD5:
fbdf9f9ae8945c2443348bf8783874f4

SHA-1:
49e4701bbe7ef5b673ae41d159fffad0f21eb365

SHA-256:
9fdfaa30b53fae3aad402acfb98c4453effecd9c075eb6e7c69a6b9304abcd43

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 6:48:12 AM UTC  (today)

File size:
17.8 KB (18,272 bytes)

Product version:
7.00

Copyright:
Copyright (C) Igor Arsenin. 1998-2005

Original file name:
ABPMN900

File type:
Driver (Win64 SYS)

Common path:
C:\Windows\System32\drivers\abpmn900.sys

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
9/28/2010 3:00:00 AM

Valid to:
9/28/2013 2:59:00 AM

Subject:
CN=SoftLab-NSK, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SoftLab-NSK, L=Novosibirsk, S=Novosibirsk, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
681FCC35DD25DC59BA3A80A84ED7F5DC

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
384:6IUyfFkjkD9Y2pteJ/l2ot2YoXalQ2CvK/YJLuu3bCK31M6jA:6IUytkjkD9ZEJ/l2ot2YoXalQ2CvbL90

Entry point:
55, 8B, EC, 83, EC, 14, 53, 56, 57, 33, FF, 89, 7D, FC, E8, 45, FF, FF, FF, 8B, 75, 08, 8B, 1D, BC, 02, 01, 00, 8D, 45, F4, 68, C4, 0D, 01, 00, 50, C7, 46, 38, B4, 0E, 01, 00, C7, 46, 40, D8, 0E, 01, 00, C7, 46, 70, DA, 1F, 01, 00, C7, 46, 34, 26, 0F, 01, 00, FF, D3, 8D, 45, FC, 50, 57, 57, 8D, 45, F4, 6A, 22, 50, 6A, 0C, 56, FF, 15, B8, 02, 01, 00, 3B, C7, 7C, 3F, 8B, 45, FC, 68, E8, 0D, 01, 00, 8B, 48, 28, 33, C0, 8B, F9, AB, AB, AB, 8B, 45, FC, 89, 31, 89, 41, 04, 8D, 45, EC, 50, FF, D3, 8D, 45, F4, 50...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Driver
Display name:
ABPMN900.SYS

Type:
Kernel device driver (KernelDriver)


Scan abpmn900.sys - Powered by Reason Core Security