classicstartmenu.exe

Classic Start menu

OrdinarySoft

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘ClassicStartMenu’.
Publisher:
OrdinarySoft  (signed and verified)

Product:
Classic Start menu

Description:
Classic Start Menu program

Version:
3.4.0.0

MD5:
7fbe67d15d6b6a3c5e0b5384faed1650

SHA-1:
def58a18eae759fc0ccbefaacf85bdaf43ca5cb6

SHA-256:
2e0dcd8f25448c5557fdc0af325b4275defdee85e188300cc86e7e3a03d2c8c7

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/18/2024 6:12:22 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
W32/Sality.AT
7.11.30.172

File size:
2.1 MB (2,221,920 bytes)

Product version:
3.4

Copyright:
OrdinarySoft

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\classic start menu\classicstartmenu.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
10/1/2009 2:00:00 AM

Valid to:
10/2/2010 1:59:59 AM

Subject:
CN=OrdinarySoft, O=OrdinarySoft, L=Vishneve, S=Kievskaya, C=UA

Issuer:
CN=Organization Validation Private CA, O="VeriSign, Inc.", C=US

Serial number:
33ED7F0F72A87C0D6F5E5B00D626DE95

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:NT0jSkZBxNogtrmnqcKk/urcEQuDx7nG0+Qx:NGZtK/urcEQuF7X

Entry address:
0x188F3C

Entry point:
55, 8B, EC, 83, C4, E8, 33, C0, 89, 45, EC, 89, 45, E8, B8, 74, 88, 58, 00, E8, B8, E9, E7, FF, 33, C0, 55, 68, D3, 90, 58, 00, 64, FF, 30, 64, 89, 20, 6A, EC, A1, 10, E7, 58, 00, 8B, 00, 8B, 40, 30, 50, E8, 98, F7, E7, FF, 0D, 80, 00, 00, 00, 25, FF, FF, FB, FF, 50, 6A, EC, A1, 10, E7, 58, 00, 8B, 00, 8B, 40, 30, 50, E8, 23, FA, E7, FF, 6A, 00, A1, 10, E7, 58, 00, 8B, 00, 8B, 40, 30, 50, E8, 81, FA, E7, FF, E8, 7C, 82, FB, FF, A1, 90, E4, 58, 00, 8B, 00, 50, E8, 27, F9, E7, FF, 8B, 15, 3C, E6, 58, 00, 89...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1.5 MB (1,606,144 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
ClassicStartMenu

Command:
"C:\Program Files\classic start menu\classicstartmenu.exe"


Scan classicstartmenu.exe - Powered by Reason Core Security