TGBMPEnum.sys

TheGreenBow IPSec VPN Client

TheGreenBow

It runs as a Windows kernel mode device driver named “TheGreenBow VPN Miniport Enumerator”.
Publisher:
TheGreenBow  (signed and verified)

Product:
TheGreenBow IPSec VPN Client

Description:
TheGreenBow VPN Miniport Enumerator

Version:
1.00.01.0004 built by: WinDDK

MD5:
46367d3f249ff902becb05c6adee968c

SHA-1:
8eb6b5c77c7b738df8cd7867339a72c2b3b60d7e

SHA-256:
914b4f6f43c2a7b43f9dc1964e298ab46c9075786e00da0cde9a9ed545cb0961

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/19/2024 2:30:35 PM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
W32/Virut.Gen
7.11.30.172

File size:
33.7 KB (34,480 bytes)

Product version:
1.00.01.0004

Copyright:
© TheGreenBow 2012. All rights reserved.

Original file name:
TGBMPEnum.sys

File type:
Driver (Win32 SYS)

Language:
Language Neutral

Common path:
C:\Windows\System32\drivers\tgbmpenum.sys

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/19/2011 2:00:00 AM

Valid to:
8/31/2012 1:59:59 AM

Subject:
CN=TheGreenBow, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=TheGreenBow, L=Paris, S=Paris, C=FR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5F85C948AEBC23623D997810DDE83C4C

File PE Metadata
Compilation timestamp:
12/15/2011 1:45:24 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
768:xQc6ceTVOdaukgT4qzr5VK9FIG7O+tWLFmUkCW:xQcpexOdQqzr5VdKO+EoUkb

Entry address:
0x8111

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, E5, FE, FF, FF, CC, 44, 72, 69, 76, 65, 72, 45, 6E, 74, 72, 79, 20, 62, 75, 69, 6C, 74, 20, 6F, 6E, 20, 44, 65, 63, 20, 31, 35, 20, 32, 30, 31, 31, 20, 61, 74, 20, 31, 33, 3A, 34, 35, 3A, 32, 33, 20, 56, 65, 72, 73, 69, 6F, 6E, 20, 25, 73, 0A, 00, CC, 31, 2E, 30, 30, 2E, 30, 31, 2E, 30, 30, 30, 34, 00, CC, 54, 47, 42, 4D, 50, 45, 6E, 75, 6D, 3A, 20, 00, CC, CC, E0, 81, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 6C, 85, 00, 00, 18, 30, 00, 00, C8, 81, 00, 00, 00...
 
[+]

Code size:
17.5 KB (17,920 bytes)

Driver
Display name:
TheGreenBow VPN Miniport Enumerator

Service name:
TGBMPEnum

Type:
Kernel device driver (KernelDriver)

Group:
Extended Base


Scan TGBMPEnum.sys - Powered by Reason Core Security