bnmtfilter.sys

Beniamin.pl (Multisoft Joanna Kobylec)

It runs as a Windows kernel mode device driver named “BnmtFilter”.
Publisher:
beniamin.pl  (signed by Beniamin.pl (Multisoft Joanna Kobylec))

Product:
beniamin.pl

Version:
1.4.8.1 built by: WinDDK

MD5:
d75df8745622dcf3551c21fe50a73774

SHA-1:
11e73be23ffb4743d17c52f2b6a6156afbbd1e1e

SHA-256:
8f05f91289bc29416e0a1b566f7d9a37fa0d2721ca8658f35a7c13e30aa375d2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 3:26:12 PM UTC  (today)

File size:
62.5 KB (63,960 bytes)

Product version:
1.5.1.0

Copyright:
beniamin.pl

Original file name:
bnmtfilter.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Windows\System32\drivers\bnmtfilter.sys

Digital Signature
Authority:
Unizeto Technologies S.A.

Valid from:
3/21/2016 1:49:17 AM

Valid to:
1/10/2017 6:10:14 PM

Subject:
E=info@beniamin.pl, CN=beniamin.pl, O=Beniamin.pl (Multisoft Joanna Kobylec), C=PL

Issuer:
CN=Certum Code Signing CA SHA2, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL

Serial number:
1E358EE93C338195ED154B3CA798E9B8

File PE Metadata
Compilation timestamp:
3/31/2016 12:26:55 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
1536:JB7S/TnS5JSmE8DqZrj0MamT7FKECF4ET:JB7SQSmEqqpj0MamT7UHWq

Entry address:
0xAEBE

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, 80, E3, FF, FF, CC, CC, 34, AF, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 70, B3, 00, 00, 14, 98, 00, 00, 20, AF, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, A6, B3, 00, 00, 00, 98, 00, 00, 2C, AF, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, C2, B3, 00, 00, 0C, 98, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 92, B3, 00, 00, 7E, B3, 00, 00, 00, 00, 00, 00, AE, B3, 00, 00, 00, 00, 00, 00, 3C, B0, 00, 00, 54, B0, 00, 00, 66, B0...
 
[+]

Code size:
38.3 KB (39,168 bytes)

Driver
Display name:
BnmtFilter

Type:
Kernel device driver (KernelDriver)

Group:
PNP_TDI


Scan bnmtfilter.sys - Powered by Reason Core Security