vbengnt.sys

VirusBuster Loader SYS for Windows NT/2000/XP

VirusBuster Ltd

It runs as a Windows 64-bit kernel mode device driver named “VBEngNT”.
Publisher:
VirusBuster Kft.  (signed by VirusBuster Ltd)

Product:
VirusBuster Loader SYS for Windows NT/2000/XP

Version:
5.2.0.37

MD5:
996ec05a00a6db016279930559a459be

SHA-1:
9c374b8a236442ddc1366b794b4a664cf07cdd35

SHA-256:
947751291bc8a9943fcf25f155bc882256076b7aed4771dade4914a34deb3967

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 7:30:22 AM UTC  (today)

File size:
282.4 KB (289,216 bytes)

Product version:
5.2.0.37

Copyright:
Copyright (C) VirusBuster Kft. 1999-2011.

Trademarks:
Trademark (tm) 1988-2011 VirusBuster Kft.

Original file name:
vbengnt.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\vbengnt.sys

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
7/19/2010 8:00:00 PM

Valid to:
9/3/2011 7:59:59 PM

Subject:
CN=VirusBuster Ltd, OU=Software Development, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=VirusBuster Ltd, L=Budapest, S=Budapest, C=HU

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
084B32FBFD93EAE9035356F7E3C88384

File PE Metadata
Compilation timestamp:
1/31/2011 9:01:32 AM

OS version:
5.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
3072:/dO8UfKrujmp8O2WaoMSwerWjmjSsRdHgFWaEgHfD6jIXj/V1nLA1Q6gFfn74rp6:/k8UfUwMZJeWaEe/V1s1RgFP7gzo

Entry address:
0x1F160

Entry point:
4C, 8B, DC, 53, 48, 81, EC, B0, 00, 00, 00, 48, 8D, 15, 8E, 0E, FE, FF, 48, 8B, D9, 49, 8D, 4B, A8, 48, 8B, 82, A0, 1F, 00, 00, 49, C7, 43, 18, 00, 00, 00, 00, 48, 89, 01, 48, 8B, 82, A8, 1F, 00, 00, 48, 89, 41, 08, 48, 8B, 82, B0, 1F, 00, 00, 48, 89, 41, 10, 48, 8B, 82, B8, 1F, 00, 00, 48, 89, 41, 18, 48, 8B, 82, 78, 1F, 00, 00, 49, 8D, 4B, C8, 48, 89, 01, 48, 8B, 82, 80, 1F, 00, 00, 48, 89, 41, 08, 48, 8B, 82, 88, 1F, 00, 00, 48, 89, 41, 10, 48, 8B, 82, 90, 1F, 00, 00, 48, 89, 41, 18, 48, 8B, 82, 98, 1F...
 
[+]

Entropy:
6.3854

Code size:
253 KB (259,104 bytes)

Driver
Display name:
VBEngNT

Type:
Kernel device driver (KernelDriver)


Scan vbengnt.sys - Powered by Reason Core Security