TGBMPEnum.sys

TheGreenBow IPSec VPN Client

TheGreenBow

It runs as a Windows 64-bit kernel mode device driver named “TheGreenBow VPN Miniport Enumerator”.
Publisher:
TheGreenBow  (signed and verified)

Product:
TheGreenBow IPSec VPN Client

Description:
TheGreenBow VPN Miniport Enumerator

Version:
1.00.02.0004 built by: WinDDK

MD5:
065a1b7073b1a611cd7ad39cbe37c53a

SHA-1:
d77c12022d54da17d709877334b82ca5e37884b2

SHA-256:
6073fae60fcb054e1326cbc9d97c2ffca55bd0f8a18451ecc1d0cead4cded91f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 12:18:08 AM UTC  (today)

File size:
37.7 KB (38,584 bytes)

Product version:
1.00.02.0004

Copyright:
© TheGreenBow 2012. All rights reserved.

Original file name:
TGBMPEnum.sys

File type:
Driver (Win64 SYS)

Language:
Language Neutral

Common path:
C:\Windows\System32\drivers\tgbmpenum.sys

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/26/2012 8:00:00 PM

Valid to:
8/30/2015 7:59:59 PM

Subject:
CN=TheGreenBow, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=TheGreenBow, L=Paris, S=Paris, C=FR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
27A8C140A512096F00E49C46C0B2FE90

File PE Metadata
Compilation timestamp:
12/15/2011 7:45:35 AM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
768:iRYCblcX6GOEHYRP4cTBOhXi6m11RBjojhrXjn4e/r+eOAF9Xv:iz2qGOE4R5OhW1IrXt+eOAFZv

Entry address:
0xA218

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, D2, FD, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 54, 47, 42, 4D, 50, 45, 6E, 75, 6D, 3A, 20, 00, CC, CC, CC, CC, 31, 2E, 30, 30, 2E, 30, 32, 2E, 30, 30, 30, 34, 00, CC, CC, CC, 44, 72, 69, 76, 65, 72, 45, 6E, 74, 72, 79, 20, 62, 75, 69, 6C, 74, 20, 6F, 6E, 20, 44, 65, 63, 20, 31, 35, 20, 32, 30, 31, 31, 20, 61, 74, 20, 31, 33, 3A, 34, 35, 3A, 33, 34, 20, 56, 65, 72, 73, 69, 6F, 6E, 20, 25, 73, 0A...
 
[+]

Entropy:
6.3902

Code size:
21.5 KB (22,016 bytes)

Driver
Display name:
TheGreenBow VPN Miniport Enumerator

Service name:
TGBMPEnum

Type:
Kernel device driver (KernelDriver)

Group:
Extended Base


Scan TGBMPEnum.sys - Powered by Reason Core Security