StartMenuX.exe

StartMenuX

OrdinarySoft

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘StartMenuX’.
Publisher:
OrdinarySoft  (signed and verified)

Product:
StartMenuX

Version:
4.2.3.0

MD5:
0aafae25a1902cdcee7b29b83c37b571

SHA-1:
b9f675255ca8ed2eb5f018069883581585c75124

SHA-256:
f925a22ea0577c7dc42d0aaa161bb0de3a60a3c4156861081aaa8be13143980d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 12:25:22 AM UTC  (today)

File size:
4.7 MB (4,900,784 bytes)

Product version:
4.23

Copyright:
StartMenuX

Trademarks:
StartMenuX

Original file name:
StartMenuX.exe

File type:
Executable application (Win64 EXE)

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Subject:
CN=OrdinarySoft, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=OrdinarySoft, L=Vishneve, S="Armed Forces Africa, Europe, Middle East", C=UA

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
71B7DB563D8E8A9F5EB466251A4EEE16

File PE Metadata
Compilation timestamp:
4/4/2012 6:51:53 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:W59XtzRUSqknQZQcJjgJLZ2pXiQGMnoETtSLOz:bkna5sLQ

Entry address:
0x3B1170

Entry point:
55, 48, 83, EC, 30, 48, 8B, EC, 48, C7, 45, 28, 00, 00, 00, 00, 48, C7, 45, 20, 00, 00, 00, 00, 90, 48, 8D, 0D, F8, 19, FF, FF, E8, FB, 20, C6, FF, 90, 48, 8B, 05, 7B, AF, 04, 00, 48, 8B, 08, E8, AB, C5, DD, FF, 48, 8B, 05, 6C, AF, 04, 00, 48, 8B, 00, C6, 80, B3, 00, 00, 00, 00, 48, 8B, 05, 5B, AF, 04, 00, 48, 8B, 08, 48, 33, D2, E8, C8, F1, DD, FF, 48, 8D, 4D, 20, C7, C2, 01, 00, 00, 00, E8, 19, 51, C5, FF, 48, 8D, 4D, 28, 48, 8B, 55, 20, E8, 6C, D5, C7, FF, 48, 8D, 0D, D1, 00, 00, 00, 48, 8B, 55, 28, E8...
 
[+]

Entropy:
5.9590

Code size:
3.7 MB (3,867,648 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
StartMenuX

Command:
C:\software\start menu x\startmenux.exe


Scan StartMenuX.exe - Powered by Reason Core Security