StartScreen.exe

StartIsBack

STANISLAV ZINUKHOV

Publisher:
www.startisback.com  (signed by STANISLAV ZINUKHOV)

Product:
StartIsBack

Description:
Start Screen Launcher

Version:
2.0.0

MD5:
39607bb86055418ba9f42d14b23c52a0

SHA-1:
500d2fdf653eab8c9a88c174e48c7a560fd4f5c3

SHA-256:
fd7541dcf7add1d2a62afda1aec771aca99504428058ecde7eca25c4fa676b9d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 12:15:27 AM UTC  (today)

File size:
34.9 KB (35,712 bytes)

Product version:
2.0.0

Copyright:
Copyright (C) 2013, Tihiy

Original file name:
StartScreen.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\startisback\startscreen.exe

Digital Signature
Authority:
StartCom Ltd.

Valid from:
11/26/2012 11:32:52 AM

Valid to:
11/27/2014 4:00:32 PM

Subject:
E=tihiy.mozg@gmail.com, CN=STANISLAV ZINUKHOV, L=Moscow, S=Moscow City, C=RU, Description=eSmLh1eo0jo6RFA5

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0817

File PE Metadata
Compilation timestamp:
3/12/2013 2:00:04 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
384:j7Q/kXQ7T9bMj2jYjYj2jWj4jLcjfe0j2jYjYj2jWj4jLcjfsZvGBnYPLoVVP0Vi:/Q/iQ/9kADGB1VVP0mMX0

Entry address:
0x1620

Entry point:
55, 8B, EC, 83, E4, F8, 56, 57, 6A, 00, FF, 15, 5C, 10, 40, 00, 8B, 35, 14, 10, 40, 00, 68, 64, 12, 40, 00, FF, D6, 8B, 3D, 50, 10, 40, 00, 50, FF, D7, 85, C0, 74, 0C, 6A, 01, E8, EF, FC, FF, FF, 83, C4, 04, EB, 1F, 68, 70, 12, 40, 00, FF, D6, 50, FF, D7, 85, C0, 74, 0C, 6A, 00, E8, D5, FC, FF, FF, 83, C4, 04, EB, 05, E8, 5B, FC, FF, FF, FF, 15, 58, 10, 40, 00, 6A, 00, FF, 15, 10, 10, 40, 00, CC, 2C, 17, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 8E, 17, 00, 00, 44, 10, 00, 00, E8, 16, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
4.1890

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
2.5 KB (2,560 bytes)

Scan StartScreen.exe - Powered by Reason Core Security