startisbackcfg.exe

STANISLAV ZINUKHOV

Publisher:
STANISLAV ZINUKHOV  (signed and verified)

Description:
StartIsBack configuration

Version:
3.5.0.38

MD5:
d4f44f5dcf7cb641d89b249264be7c29

SHA-1:
a049ad012667020bd5547365f7ce9346d8c730dc

SHA-256:
991c354581a8d06bb9766b704cce00ffc02e22e5a9d8158c8462f9455c662e84

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 2:09:13 AM UTC  (today)

File size:
2 MB (2,142,624 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
Russo (Russia)

Common path:
C:\Program Files\startisback\startisbackcfg.exe

Digital Signature
Authority:
StartCom Ltd.

Valid from:
11/25/2012 11:32:52 PM

Valid to:
11/27/2014 4:00:32 AM

Subject:
E=tihiy.mozg@gmail.com, CN=STANISLAV ZINUKHOV, L=Moscow, S=Moscow City, C=RU, Description=eSmLh1eo0jo6RFA5

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0817

File PE Metadata
Compilation timestamp:
12/17/2013 1:28:28 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:3XdZW/KpJKnD5r3NBIQd5NRTygdGyE1Jf7sZGWUat:TERB38Qdfu1d4bN

Entry address:
0xF4F88

Entry point:
55, 8B, EC, B9, 04, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, 53, B8, A0, 33, 4F, 00, E8, DD, 33, F1, FF, 33, C0, 55, 68, 41, 51, 4F, 00, 64, FF, 30, 64, 89, 20, E8, 4A, 41, F1, FF, 8B, D0, A1, 4C, B6, 4F, 00, 8B, 00, B1, 02, E8, B6, 65, FA, FF, 8B, D8, 68, 01, 80, 00, 00, E8, 9E, 3B, F1, FF, A1, 74, B4, 4F, 00, 8B, 00, E8, 52, 83, FA, FF, A1, 74, B4, 4F, 00, 8B, 00, B2, 01, E8, B8, 9E, FA, FF, A1, 74, B4, 4F, 00, 8B, 00, BA, 5C, 51, 4F, 00, E8, 97, 7D, FA, FF, 8D, 55, EC, B8, 01, 00, 00, 00, E8, 1A, E4...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
975 KB (998,400 bytes)

The file startisbackcfg.exe has been discovered within the following program.

StartIsBack+  by startisback.com
About 7% of users remove it
 
Powered by Should I Remove It?

Scan startisbackcfg.exe - Powered by Reason Core Security