phmburnr.sys

Phantombility Inc

It runs as a Windows kernel mode device driver named “phmburnr”.
Publisher:
Phantombility, Inc  (signed by Phantombility Inc)

Description:
Cbdrv Miniport Driver

Version:
1, 5, 1, 1851

MD5:
72a455fcca6b2ef788619136e6109aeb

SHA-1:
3263faee1023d77e31c335e50ea69776b9e59c10

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 4:00:54 AM UTC  (today)

File size:
44.1 KB (45,208 bytes)

Product version:
1, 5, 1, 1851

Copyright:
(C) Phantombility, Inc. All rights reserved.

Original file name:
cbdrv.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\phmburnr.sys

Digital Signature
Authority:
The USERTRUST Network

Valid from:
10/14/2008 7:00:00 AM

Valid to:
10/15/2009 6:59:59 AM

Subject:
CN=Phantombility Inc, O=Phantombility Inc, STREET=1788 19th Ave, L=San Francisco, S=CA, PostalCode=94122, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
0089586FA8416581AD7E3CA46AF8F9A5AA

File PE Metadata
Compilation timestamp:
11/6/2008 12:04:09 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
768:pqh38RA+wdg6xb3dsBC6se+EQwDfehW253ZnzzqYT04Z8Up/xHu:RjSiCte+1iAJ3t9T0FULHu

Entry address:
0xD005

Entry point:
8B, FF, 55, 8B, EC, A1, 04, 50, 01, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 1E, 8B, 15, 10, 40, 01, 00, B8, 04, 50, 01, 00, C1, E8, 08, 33, 02, A3, 04, 50, 01, 00, 75, 07, 8B, C1, A3, 04, 50, 01, 00, F7, D0, A3, 08, 50, 01, 00, 5D, E9, 69, 47, FF, FF, CC, C4, D0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, C8, D1, 00, 00, 18, 40, 00, 00, B8, D0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, D6, D1, 00, 00, 0C, 40, 00, 00, D4, D0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 90, D4, 00, 00, 28, 40, 00, 00, AC...
 
[+]

Code size:
35.5 KB (36,352 bytes)

Driver
Display name:
phmburnr

Type:
Kernel device driver (KernelDriver)

Group:
SCSI Miniport


Scan phmburnr.sys - Powered by Reason Core Security