sr.exe

Bayden SlickRun

Eric Lawrence

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘SlickRun’.
Publisher:
Bayden Systems  (signed by Eric Lawrence)

Product:
Bayden SlickRun

Description:
SlickRun Command Line

Version:
4.1.3.0

MD5:
f528197eb6cc63ef7943f1f18f760e31

SHA-1:
d09a847e07922f33fae64c96e5312084a8defbb0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 3:34:46 AM UTC  (today)

File size:
1.6 MB (1,649,560 bytes)

Product version:
4.1.3.0

Copyright:
©1996-2011 Eric Lawrence

Original file name:
sr.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\slickrun\sr.exe

Digital Signature
Signed by:

Authority:
The USERTRUST Network

Valid from:
1/20/2009 12:00:00 AM

Valid to:
1/20/2012 11:59:59 PM

Subject:
CN=Eric Lawrence, O=Eric Lawrence, STREET=15724 NE 53rd Street, L=Redmond, S=WA, PostalCode=98052, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
38CEB32690C00579D1C57DFBEA8880C8

File PE Metadata
Compilation timestamp:
2/13/2011 10:01:52 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:lUhql03FUEGUeZJGe+MqF/iBdSYbfww8D/J8PFwH9oMTcL8ih8ONI:AXD6T3SmO/J8Pcox8iCx

Entry address:
0x1571A8

Entry point:
55, 8B, EC, 83, C4, F0, B8, 24, 05, 55, 00, E8, E8, 41, EB, FF, A1, 0C, AD, 55, 00, 8B, 00, E8, 24, 9A, FA, FF, A1, 0C, AD, 55, 00, 8B, 00, 33, D2, E8, 0A, B7, FA, FF, A1, 0C, AD, 55, 00, 8B, 00, BA, 60, 72, 55, 00, E8, 3D, 94, FA, FF, E8, 84, 92, FF, FF, 84, C0, 75, 52, B2, 01, A1, 00, 32, 54, 00, E8, 2C, CF, FE, FF, 8B, 15, 64, AF, 55, 00, 89, 02, 8B, 0D, BC, A9, 55, 00, A1, 0C, AD, 55, 00, 8B, 00, 8B, 15, 5C, C4, 54, 00, E8, E8, 99, FA, FF, E8, 43, D5, EA, FF, 85, C0, 7E, 11, A1, BC, A9, 55, 00, 8B, 00...
 
[+]

Entropy:
6.5399

Developed / compiled with:
Microsoft Visual C++

Code size:
1.3 MB (1,401,856 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
SlickRun

Command:
"C:\Program Files\slickrun\sr.exe"


Scan sr.exe - Powered by Reason Core Security