startisback32.dll

StartIsBack

Stanislav Zinukhov

It is registered as a context menu handler (displays a menu when right-clicked in Explorer) named “{a2a9545d-a0c2-42b4-9708-a0b2badd77c9}”.
Publisher:
www.startisback.com  (signed by Stanislav Zinukhov)

Product:
StartIsBack

Description:
StartIsBack+ brains and soul

Version:
3.7.5

MD5:
951217f41fd289b9ec9864906dbabffc

SHA-1:
a3c2de588ef8ad99700c290632f03c4673d73408

SHA-256:
cfba638813d9ff130d3faae85ce9c2339d278d3bfa546e9399d1cc1cfa3114cc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 10:16:56 PM UTC  (today)

File size:
463.9 KB (475,024 bytes)

Product version:
3.7.5

Copyright:
Copyright (C) 2013-2015, Tihiy

Original file name:
STARTISBACK.NEXT.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\startisback32.dll

Digital Signature
Authority:
StartCom Ltd.

Valid from:
2/5/2016 7:15:14 AM

Valid to:
2/5/2018 7:15:14 AM

Subject:
CN=Stanislav Zinukhov, O=Stanislav Zinukhov, L=Moscow, S=Moscow City, C=RU

Issuer:
CN=StartCom Class 2 Object CA, OU=StartCom Certification Authority, O=StartCom Ltd., C=IL

Serial number:
5271F4614E0F58C89FEE1FA7211D7308

File PE Metadata
Compilation timestamp:
3/6/2015 4:15:34 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
12288:K6+9pVUHuPgx0HbsL87ZfEj+9vIino7/6:lJMI0oO

Entry address:
0x20DD0

Entry point:
55, 8B, EC, FF, 4D, 0C, 0F, 85, CC, 00, 00, 00, 56, 8B, 75, 08, 56, FF, 15, C8, 60, 02, 6C, 6A, 43, 89, 35, 2C, 31, 03, 6C, FF, 15, 18, 65, 02, 6C, 8B, 35, CC, 62, 02, 6C, 85, C0, 74, 5C, 8D, 45, 08, C7, 45, 0C, 00, 00, 00, 00, 50, 8D, 45, 0C, C7, 45, 08, 04, 00, 00, 00, 50, 6A, 00, 6A, 10, 68, 74, 03, 03, 6C, 68, 6C, CD, 02, 6C, 68, 01, 00, 00, 80, FF, D6, 8D, 45, 08, C7, 45, 08, 04, 00, 00, 00, 50, 8D, 45, 0C, 50, 6A, 00, 6A, 10, 68, 74, 03, 03, 6C, 68, 6C, CD, 02, 6C, 68, 02, 00, 00, 80, FF, D6, 33, C0...
 
[+]

Entropy:
6.0985

Developed / compiled with:
Microsoft Visual C++

Code size:
148 KB (151,552 bytes)

Context Menu Handler
Display name:
{a2a9545d-a0c2-42b4-9708-a0b2badd77c9}

CLSID:
{a2a9545d-a0c2-42b4-9708-a0b2badd77c9}


The file startisback32.dll has been discovered within the following program.

StartIsBack+  by startisback.com
About 7% of users remove it
 
Powered by Should I Remove It?

Scan startisback32.dll - Powered by Reason Core Security