sbmount.sys

ShadowProtect

StorageCraft Technology Corporation

It runs as a Windows kernel mode device driver named “StorageCraft Image Mount Driver”.
Publisher:
StorageCraft Technology Corporation  (signed and verified)

Product:
ShadowProtect (TM)

Description:
ShadowProtect Image Mount Driver

Version:
4.0.0.35 (32bit x86)

MD5:
bcef9a34dff24fff381c11cf61996472

SHA-1:
07ae8ea9c8893163e649f70801a07199ca28f2f6

SHA-256:
39e20666f4174ef4aaf51235b9d139dbc65253b08ec10947895546ac55c7e96d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/24/2024 1:45:07 PM UTC  (today)

File size:
100.4 KB (102,824 bytes)

Product version:
4.1.5.9475

Copyright:
Copyright © 2005-2009 StorageCraft Technology Corporation. All rights reserved.

Original file name:
sbmount.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\sbmount.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/2/2010 7:00:00 PM

Valid to:
1/19/2014 6:59:59 PM

Subject:
CN=StorageCraft Technology Corporation, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=StorageCraft Technology Corporation, L=Draper, S=Utah, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
08A06D567FA88E8E66D5F5044BA07FC5

File PE Metadata
Compilation timestamp:
5/5/2011 8:28:33 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
1536:gIzKj9bV1ofxZbBcx6qZrWqkHwhFyE3SoREqGHqnGngIICS4Av1ni+4:R+3aVyrWqkHC3FHGHqnGK91A

Entry address:
0x15C85

Entry point:
8B, FF, 55, 8B, EC, A1, 80, 4D, 02, 00, 85, C0, B9, 4E, E6, 40, BB, 74, 04, 3B, C1, 75, 1A, A1, AC, 1B, 02, 00, 8B, 00, 35, 80, 4D, 02, 00, A3, 80, 4D, 02, 00, 75, 07, 8B, C1, A3, 80, 4D, 02, 00, F7, D0, A3, 84, 4D, 02, 00, 5D, E9, 3F, EF, FE, FF, CC, 14, 5D, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 72, 64, 01, 00, 94, 1A, 01, 00, 00, 5D, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, D4, 64, 01, 00, 80, 1A, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, A8, 64, 01, 00, 94...
 
[+]

Entropy:
6.8885

Code size:
71.6 KB (73,344 bytes)

Driver
Display name:
StorageCraft Image Mount Driver

Service name:
sbmount

Type:
Kernel device driver (KernelDriver)


Scan sbmount.sys - Powered by Reason Core Security