start_menu_8_v3.0.0.1.exe

Start Menu 8

IObit Information Technology

This is a self-extracting archive and installer. The file has been seen being downloaded from www.majorgeeks.com and multiple other hosts.
Publisher:
IObit   (signed by IObit Information Technology)

Product:
Start Menu 8

Description:
Start Menu 8 Setup

Version:
3.0.0.1

MD5:
88dd0cd92f038ab4c23207db2b894e7e

SHA-1:
0d6d15329fe36b7c4081541bc017367676a0ccde

SHA-256:
6236bdb4f603d52f1dcb30d2078eff33e576cc67cfa52468ff49cc1411f5b496

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 1:35:44 AM UTC  (today)

File size:
11.2 MB (11,751,368 bytes)

Product version:
3.0.0.1

Copyright:
Copyright © 2012-2016

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\start_menu_8_v3.0.0.1.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
12/22/2015 6:00:00 PM

Valid to:
3/23/2018 6:59:59 PM

Subject:
CN=IObit Information Technology, O=IObit Information Technology, L=Chengdu, S=Sichuan, C=CN

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
454A6CD2E1E63CA9D542DFDAB518FED9

File PE Metadata
Compilation timestamp:
7/16/2015 8:24:20 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:Hhht4Wkz8iI+dkzfRgr268uwiNC4rWNY83KRIi0xtCbd2GxB2cMgrF8X6UJrLj:H5kz13dkjirn8uwioIWNh6RlECoAQX6Q

Entry address:
0x113BC

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, 34, 00, 41, 00, E8, E8, 51, FF, FF, 33, C0, 55, 68, 9E, 1A, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 5A, 1A, 41, 00, 64, FF, 32, 64, 89, 22, A1, 48, 5B, 41, 00, E8, 1E, D8, FF, FF, E8, 6D, D3, FF, FF, 80, 3D, DC, 2A, 41, 00, 00, 74, 0C, E8, 33, D9, FF, FF, 33, C0, E8, 80, 32, FF, FF, 8D, 55, EC, 33, C0, E8, E2, A3, FF, FF, 8B, 55, EC, B8, 54, 86...
 
[+]

Entropy:
7.9982

Developed / compiled with:
Microsoft Visual C++

Code size:
63.5 KB (65,024 bytes)

The file start_menu_8_v3.0.0.1.exe has been seen being distributed by the following 25 URLs.

http://www.majorgeeks.com/index.php?ct=files&action=download&PHPSESSID=2oes7bh0vbjr5gp31letmcef74

http://szoftverhotel.hu/d.php?file=startmenu8_3.0.0.1.exe&p=1470220952.5131

http://files.downloadnow.com/s/software/14/48/98/.../sm8-setup.exe

http://9919.co.kr/.../sm8-setup.exe

http://lb.cdn.m6web.fr/d/c/a/e6e46ed10c8477391792956eb18d9a7c/56a75f0f/soft/.../start-menu-8_3-0-0-1_fr_425349.exe

temp:sm8-setup.exe

&onid=2072&oid=3001-2072_4-75852660&rsid=cbsidownloadcomsite&sl=en&sc=us&topicguid=desktop/shell-desktop-management&topicbrcrm=&pid=14495869&mfgid=6271865&merid=6271865&ctype=dm&cval=NONE&devicetype=desktop&pguid=e2be877df2563015ffeeb2f0&viewguid=a2HJyHTO2biyXPIAjnnqwhAOxgnzEdPnqphv&destUrl=http://software-files-a.cnet.com/s/software/14/49/58/.../sm8-setup.exe

&onid=2072&oid=3001-2072_4-75852660&rsid=cbsidownloadcomsite&sl=en&sc=us&topicguid=desktop/shell-desktop-management&topicbrcrm=&pid=14495869&mfgid=6271865&merid=6271865&ctype=dm&cval=NONE&devicetype=desktop&pguid=d1e80bfc96e79cfbda861790&viewguid=anqYgedAGOTs@BLnS@7bn@YPXyPftL7dP4Gt&destUrl=http://software-files-a.cnet.com/s/software/14/49/58/.../sm8-setup.exe

&onid=2072&oid=3001-2072_4-75852660&rsid=cbsidownloadcomsite&sl=en&sc=us&topicguid=desktop/shell-desktop-management&topicbrcrm=&pid=14495869&mfgid=6271865&merid=6271865&ctype=dm&cval=NONE&devicetype=desktop&pguid=6441988bc177187da34c6c34&viewguid=bTircshesM04ORgkqk-FCVDsYScP6powLtdD&destUrl=http://files.downloadnow.com/s/software/14/49/58/.../sm8-setup.exe

&onid=2072&oid=3001-2072_4-75852660&rsid=cbsidownloadcomsite&sl=en&sc=us&topicguid=desktop/shell-desktop-management&topicbrcrm=&pid=14495869&mfgid=6271865&merid=6271865&ctype=dm&cval=NONE&devicetype=desktop&pguid=102fd055ca0e279707c6265b&viewguid=bMbY1fb3Jb65EdpN9dF-0w34IMGM@0Q3qvSg&destUrl=http://files.downloadnow.com/s/software/14/49/58/.../sm8-setup.exe

Scan start_menu_8_v3.0.0.1.exe - Powered by Reason Core Security