TGBMPEnum.sys

TheGreenBow IPSec VPN Client

TheGreenBow

It runs as a Windows kernel mode device driver named “TheGreenBow VPN Miniport Enumerator”.
Publisher:
TheGreenBow  (signed and verified)

Product:
TheGreenBow IPSec VPN Client

Description:
TheGreenBow VPN Miniport Enumerator

Version:
1.00.01.0004 built by: WinDDK

MD5:
66021421e6aa8ccc38f7ec2afa77da42

SHA-1:
932513a5b7a324832cf338d6e2c876c94c0aceaa

SHA-256:
d70c873525f567dd59cbbb74666786a9bf217515bc3ac9ab58c530fca88ed87a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 6:10:42 AM UTC  (today)

File size:
33.7 KB (34,480 bytes)

Product version:
1.00.01.0004

Copyright:
© TheGreenBow 2012. All rights reserved.

Original file name:
TGBMPEnum.sys

File type:
Driver (Win32 SYS)

Language:
Language Neutral

Common path:
C:\Windows\System32\drivers\tgbmpenum.sys

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/19/2011 4:00:00 AM

Valid to:
8/31/2012 3:59:59 AM

Subject:
CN=TheGreenBow, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=TheGreenBow, L=Paris, S=Paris, C=FR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5F85C948AEBC23623D997810DDE83C4C

File PE Metadata
Compilation timestamp:
12/15/2011 3:45:24 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
768:LQc6ceTVOdaukgT4qzr5VK9FIG7O+tWLFmUkCp:LQcpexOdQqzr5VdKO+EoUk4

Entry address:
0x8111

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, E5, FE, FF, FF, CC, 44, 72, 69, 76, 65, 72, 45, 6E, 74, 72, 79, 20, 62, 75, 69, 6C, 74, 20, 6F, 6E, 20, 44, 65, 63, 20, 31, 35, 20, 32, 30, 31, 31, 20, 61, 74, 20, 31, 33, 3A, 34, 35, 3A, 32, 33, 20, 56, 65, 72, 73, 69, 6F, 6E, 20, 25, 73, 0A, 00, CC, 31, 2E, 30, 30, 2E, 30, 31, 2E, 30, 30, 30, 34, 00, CC, 54, 47, 42, 4D, 50, 45, 6E, 75, 6D, 3A, 20, 00, CC, CC, E0, 81, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 6C, 85, 00, 00, 18, 30, 00, 00, C8, 81, 00, 00, 00...
 
[+]

Entropy:
6.6516

Code size:
17.5 KB (17,920 bytes)

Driver
Display name:
TheGreenBow VPN Miniport Enumerator

Service name:
TGBMPEnum

Type:
Kernel device driver (KernelDriver)

Group:
Extended Base


Scan TGBMPEnum.sys - Powered by Reason Core Security