LNStart.exe

CAESAR Connector for Lotus Notes

CASERIS GmbH

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘LNSTART’.
Publisher:
CASERIS GmbH  (signed and verified)

Product:
CAESAR Connector for Lotus Notes

Description:
Fax Helper Application

Version:
10.06 01

MD5:
bd749f28f3fb4799da5fea67d735b151

SHA-1:
fef3e74681a4f29d662911b8968cb33117820f61

SHA-256:
687dbe2b12da7f3b5d36cc1c0a0aa25bdc28dee715853d09d60232bd88130f17

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 12:57:07 AM UTC  (today)

File size:
32.3 KB (33,104 bytes)

Product version:
10.06 01

Copyright:
Copyright © 2001-2010

Original file name:
LNStart.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\caesar\client\lnstart.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
9/21/2010 2:00:00 AM

Valid to:
11/6/2011 12:59:59 AM

Subject:
CN=CASERIS GmbH, OU=Development Telecom, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=CASERIS GmbH, L=Stolberg, S=NRW, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
19741DB58FC1D0E703EDA044FBA31DB8

File PE Metadata
Compilation timestamp:
10/27/2010 1:40:42 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
768:ukEjRBONOVHrdGAbyzumGfvLiKsltpWLWkbCo:ukKX6OVLdGeya6nltpWaACo

Entry address:
0x180E

Entry point:
6A, 60, 68, 60, 62, 40, 00, E8, A2, 18, 00, 00, BF, 94, 00, 00, 00, 8B, C7, E8, FA, 19, 00, 00, 89, 65, E8, 8B, F4, 89, 3E, 56, FF, 15, 88, 60, 40, 00, 8B, 4E, 10, 89, 0D, C0, 82, 40, 00, 8B, 46, 04, A3, CC, 82, 40, 00, 8B, 56, 08, 89, 15, D0, 82, 40, 00, 8B, 76, 0C, 81, E6, FF, 7F, 00, 00, 89, 35, C4, 82, 40, 00, 83, F9, 02, 74, 0C, 81, CE, 00, 80, 00, 00, 89, 35, C4, 82, 40, 00, C1, E0, 08, 03, C2, A3, C8, 82, 40, 00, 33, F6, 56, 8B, 3D, 7C, 60, 40, 00, FF, D7, 66, 81, 38, 4D, 5A, 75, 1F, 8B, 48, 3C, 03...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v7.0

Code size:
17.5 KB (17,920 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
LNSTART

Command:
C:\Program Files\caesar\client\lnstart.exe


Scan LNStart.exe - Powered by Reason Core Security