cbfs3.sys

Callback File System

Division-M Pty Ltd

It runs as a Windows kernel mode device driver named “Drive Bender CallbackFS driver v3”.
Publisher:
EldoS Corporation  (signed by Division-M Pty Ltd)

Product:
Callback File System (TM)

Description:
Callback File System Driver

Version:
3.2.98.341

MD5:
a6adc5301fcf42e301f31eb18c5d46bf

SHA-1:
bf2780e350de0b87bd5d27b114d05d99dc61f6b9

SHA-256:
27a6a17b47b760afa87ed64ae6194c1a0dd296dddd7ad45137b72d513f392071

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/20/2024 10:43:02 AM UTC  (today)

File size:
279.1 KB (285,784 bytes)

Product version:
3, 2, 98, 14

Copyright:
Copyright (C) EldoS Corp. 2006-2011

Original file name:
cbfs3.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\cbfs3.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
7/6/2011 7:07:44 AM

Valid to:
7/6/2012 7:07:44 AM

Subject:
CN=Division-M Pty Ltd, O=Division-M Pty Ltd, L=Mosman, S=NSW, C=AU

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121AD0FFA96908912C7A155DB5332EC14AB

File PE Metadata
Compilation timestamp:
9/21/2011 11:13:12 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

Entry address:
0x3E167

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, 1B, FB, FF, FF, CC, CC, CC, CC, CC, 8B, FF, 55, 8B, EC, 51, 51, 53, 56, 57, 33, F6, 56, BF, 53, 74, 4C, 69, 57, 6A, 1C, 56, 56, 56, 68, 48, 8D, 02, 00, C6, 45, FF, 00, FF, 15, 90, A5, 01, 00, A1, 48, A9, 01, 00, 8D, 48, 02, 66, 8B, 10, 40, 40, 66, 3B, D6, 75, F6, 8B, 1D, CC, A7, 01, 00, 2B, C1, D1, F8, 03, C0, 0F, B7, F0, 8D, 46, 16, 66, A3, 22, 8D, 02, 00, 0F, B7, C0, 57, 50, 6A, 01, FF, D3, A3, 24, 8D, 02, 00, 85, C0, 75, 0C, C7, 45, F8, 9A, 00, 00, C0, E9...
 
[+]

Code size:
196.4 KB (201,088 bytes)

Driver
Display name:
Drive Bender CallbackFS driver v3

Service name:
cbfs3

Type:
Kernel device driver (KernelDriver)


Scan cbfs3.sys - Powered by Reason Core Security