pbprocessmonitor232.sys

PolderbitS Video Recorder

PolderbitS Software

It runs as a Windows kernel mode device driver named “PolderbitS Process Monitor Driver 2”.
Publisher:
PolderbitS Software  (signed and verified)

Product:
PolderbitS Video Recorder

Description:
PolderbitS ProcessMonitor Driver

Version:
1, 0, 0, 26 built by: WinDDK

MD5:
54dfa1812687909a29b8268c8ff74d18

SHA-1:
da4cc3462a2c7253f919c742c9e5dd11606170e4

SHA-256:
145575653d9d2c656536bff96efe29318e6f327218d0645dd13b2c946ec48f97

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 9:36:54 AM UTC  (today)

File size:
16.5 KB (16,880 bytes)

Product version:
1, 0, 0, 26

Copyright:
Copyright © PolderbitS Software

Original file name:
PBProcessMonitor32.sys

File type:
Driver (Win32 SYS)

Language:
English (United States)

Common path:
C:\Program Files\polderbits\video recorder\pbprocessmonitor232.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
12/11/2010 5:39:17 PM

Valid to:
2/26/2012 4:06:39 PM

Subject:
E=info@polderbits.com, CN=PolderbitS Software, O=PolderbitS Software, S=The Netherlands, C=NL

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000012CD4FDD71B

File PE Metadata
Compilation timestamp:
7/6/2011 8:39:09 PM

OS version:
6.1

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
9.0

CTPH (ssdeep):
384:p56IbAyyrXNhcL4iUzxsh6LR/oZpAtrNzFfrYJLdNSbZfdUb+2I80:/6IAHrXDe4iUzxsho/fvd6LHiW0

Entry address:
0x1940

Entry point:
8B, FF, 55, 8B, EC, E8, BD, FF, FF, FF, 5D, E9, B6, FD, FF, FF, 5C, 00, 44, 00, 6F, 00, 73, 00, 44, 00, 65, 00, 76, 00, 69, 00, 63, 00, 65, 00, 73, 00, 5C, 00, 47, 00, 6C, 00, 6F, 00, 62, 00, 61, 00, 6C, 00, 5C, 00, 00, 00, 33, 00, 32, 00, 00, 00, 50, 00, 42, 00, 50, 00, 72, 00, 6F, 00, 63, 00, 65, 00, 73, 00, 73, 00, 4D, 00, 6F, 00, 6E, 00, 69, 00, 74, 00, 6F, 00, 72, 00, 32, 00, 00, 00, 5C, 00, 44, 00, 65, 00, 76, 00, 69, 00, 63, 00, 65, 00, 5C, 00, 00, 00, 04, 1A, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.7505

Code size:
5.8 KB (5,888 bytes)

Driver
Display name:
PolderbitS Process Monitor Driver 2

Service name:
PBProcessMonitor232

Type:
Kernel device driver (KernelDriver)


Scan pbprocessmonitor232.sys - Powered by Reason Core Security