logoproductmanager.exe

LOGO YAZILIM SANAYI VE TICARET A.S.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘LPManager’.
Publisher:
LOGO YAZILIM SANAYI VE TICARET A.S.  (signed and verified)

Version:
1.0.0.5

MD5:
6b894e1c9be6bb2fb27edb41c2942069

SHA-1:
baf890c9643255141c4a6936af98fce4986f8210

SHA-256:
71495ea71c269870fe8a78e0a9de16594aa3733aea8cf46a2bf5f99950a9421e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 12:21:15 AM UTC  (today)

File size:
41.8 MB (43,787,480 bytes)

Product version:
1.0.0.5

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\logo\lpmanager\logoproductmanager.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
7/26/2010 3:00:00 AM

Valid to:
7/31/2012 2:59:59 AM

Subject:
CN=LOGO YAZILIM SANAYI VE TICARET A.S., OU=Software Development, O=LOGO YAZILIM SANAYI VE TICARET A.S., L=Gebze, S=Kocaeli, C=TR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
1979E891641610526706A06EA68808C8

File PE Metadata
Compilation timestamp:
1/18/2012 1:19:00 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
393216:1YgPQoZxicOi2iKcVVsOJ2+LkhZyvmmJg4Wm4uYupkEb6a+8PNrTSBOPKlvrmH8i:hQod9svbvsJevM81lvvmvxf

Entry address:
0x142CA78

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, D0, 89, 45, CC, 89, 45, C8, 89, 45, D4, 89, 45, DC, 89, 45, D8, B8, 2C, A2, 7F, 01, E8, 86, 0A, BE, FE, 33, C0, 55, 68, F7, CC, 82, 01, 64, FF, 30, 64, 89, 20, 6A, 00, 68, 08, CD, 82, 01, E8, 84, 4A, BE, FE, A3, F8, C9, 97, 01, 8D, 55, D8, A1, CC, BC, 89, 01, 8B, 00, E8, F0, 1F, CE, FE, 8B, 45, D8, 8D, 55, DC, E8, C5, E5, BE, FE, 8B, 45, DC, 89, 45, EC, 6A, FF, 68, 28, CD, 82, 01, 6A, FF, 8B, 45, EC, 50, 6A, 01, 68, 00, 04, 00, 00, E8, 0E, 39...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
20.2 MB (21,150,720 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
LPManager

Command:
C:\Program Files\logo\lpmanager\logoproductmanager.exe


Scan logoproductmanager.exe - Powered by Reason Core Security