startmenu.dll

Evgeni Shmakov

Publisher:
Evgeni Shmakov  (signed and verified)

MD5:
a21d867f9a14e71d1eb68c3aab7cd488

SHA-1:
5b523c4940cf72c3526e06b39421e911b787fa78

SHA-256:
adfe3a20125f06f6cd250f4f843639f4dc9fd7769e7a38ba5e8ce44a07b9a488

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 6:42:46 PM UTC  (today)

File size:
11.6 KB (11,896 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\startmenu.dll

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
3/23/2012 12:04:04 AM

Valid to:
3/23/2014 5:58:21 PM

Subject:
E=evgeni@neosoft-tools.com, CN=Evgeni Shmakov, L=Yekaterinburg, S=Sverdlovsk Oblast, C=RU, Description=69m13gixZc30Ix8f

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
059A

File PE Metadata
Compilation timestamp:
12/5/2009 4:50:20 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
192:NiqP7OHX1Q4xtcf8qo/ttgfRx2WsVvwpy9MsPa1M15lwy9:NtCFQ4xtcf8qoVtgpx2lVVPa2zlwI

Entry address:
0x18F7

Entry point:
8B, 44, 24, 04, A3, 20, 35, 00, 10, 33, C0, 40, C2, 0C, 00, 55, 8B, EC, 81, EC, 40, 01, 00, 00, 56, 8D, 45, 08, 57, 80, 25, 40, 35, 00, 10, 00, 50, FF, 75, 08, FF, 35, 80, 45, 00, 10, FF, 15, 3C, 20, 00, 10, 85, C0, BE, 40, 35, 00, 10, 75, 13, 56, FF, 75, 08, FF, 15, 40, 20, 00, 10, FF, 75, 08, FF, 15, B4, 20, 00, 10, 80, 3D, 40, 35, 00, 10, 00, 0F, 84, 9C, 00, 00, 00, 68, 04, 31, 00, 10, 56, FF, 15, 10, 20, 00, 10, 8D, 85, C0, FE, FF, FF, 50, 56, FF, 15, 30, 20, 00, 10, 8B, F8, 83, FF, FF, 74, 7B, 8B, 35...
 
[+]

Entropy:
5.8756

Code size:
3 KB (3,072 bytes)

Scan startmenu.dll - Powered by Reason Core Security