startupmanager.dll

MRI Startup Manager

Geek Squad

Publisher:
Geek Squad  (signed and verified)

Product:
MRI Startup Manager

Version:
5.5.0.650

MD5:
ec4dcd2fb50b530e7ad93b32e81ea64c

SHA-1:
8df89ee083a0f7599fb670df3ab790d23c5883f1

SHA-256:
fbe1c4b175309b50f954f86d68490937ea98addfd0dfe70cf127247993963a58

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/26/2024 6:21:38 AM UTC  (today)

Scan engine
Detection
Engine version

Clam AntiVirus
PUA.Packed.PECompact-1
0.98/17411

File size:
87.6 KB (89,664 bytes)

Product version:
5.5.0.650

Copyright:
Confidential Trade Secret of ©2004-2010 Best Buy Enterprise Services, Inc. For internal use only.

Original file name:
StartupManager.exe

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
8/25/2009 5:00:00 PM

Valid to:
10/20/2012 4:59:59 PM

Subject:
CN=Geek Squad, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Geek Squad, L=Richfield, S=Minnesota, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
44980722CAD26153548BCFFFE3B23D73

File PE Metadata
Compilation timestamp:
6/24/2010 6:47:12 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
1536:gCkeP5m4GpHMb7MetQ7xPszinjwKtwZCCfCCC7CCCCCCluvv+CeCCC/k98kGQErh:g708xetQgRCCfCCC7CCCCCC4+CeCCCMm

Entry address:
0x4262F

Entry point:
B8, 64, 32, 04, 10, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 00, 00, 08, E1, 48, 01, E9, 30, F7, 07, 0A, 55, 8B, EC, 72, 83, 75, 34, 3C, 45, 08, 39, 48, F9, 38, 65, F0, 67, 08, F8, 00, 33, D2, 42, 53, 07, 56, 8B, 70, 0C, 57, 41, DA, D3, E3, 9E, 30, 04, F8, 7D, 79, FA, 01, E7, 89, 45, D4, 03, C8, B8, C3, A6, 68, F8, E0, 3F, 4B, 4F, 06, 75, EC, 05, 36, 81, 1C, C6, 45, 0B, 3E, 1F, 5D, D0, CE, 7D, CC, C6, 55, E8, 06, 40, E0, E4, 80...
 
[+]

Entropy:
6.9397

Packer / compiler:
PECompact v2

Scan startupmanager.dll - Powered by Reason Core Security