utility.exe

Lenovo Utility

Lenovo (Beijing) Limited

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Lenovo Utility’.
Publisher:
Lenovo(beijing) Limited  (signed by Lenovo (Beijing) Limited)

Product:
Lenovo Utility

Version:
1.5.0.17

MD5:
4e2ff8b63b3e9ec911101f0392b3a3a7

SHA-1:
215ee72a6b6e0568d13ebbc2500ed617f5ec545d

SHA-256:
df2ac8bbdb86dc132b46b4dfa719fcc0ae961262055892609394d34ffcbd676b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 12:09:44 AM UTC  (today)

File size:
10.3 MB (10,842,096 bytes)

Product version:
1.5.0.17

Copyright:
Lenovo(beijing) Limited All rights reserved.

Original file name:
utility.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\lenovo\energy manager\utility.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/21/2011 1:00:00 AM

Valid to:
3/22/2015 12:59:59 AM

Subject:
CN=Lenovo (Beijing) Limited, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Lenovo (Beijing) Limited, L=Beijing, S=Beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2D5239E702A5EAD6CF85DA4853BD22E9

File PE Metadata
Compilation timestamp:
3/26/2014 4:14:40 AM

OS version:
6.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
49152:6624pX0uOv5WPEyaRe3kgU6uW2hj4jRuptBcPJDoxuTehVirZvk2yEtNCzsHnKBu:66248sYvGbdrz7Dktlc

Entry address:
0x3342A0

Entry point:
48, 83, EC, 28, E8, 27, 7C, 01, 00, E8, E2, FD, FF, FF, 48, 83, C4, 28, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 4C, 89, 4C, 24, 20, 4C, 89, 44, 24, 18, 48, 89, 54, 24, 10, 48, 89, 4C, 24, 08, 48, 83, EC, 58, 48, 83, 7C, 24, 78, 00, 75, 07, 33, C0, E9, 3F, 02, 00, 00, 48, 83, 7C, 24, 60, 00, 74, 0A, C7, 44, 24, 30, 01, 00, 00, 00, EB, 08, C7, 44, 24, 30, 00, 00, 00, 00, 8B, 44, 24, 30, 89, 44, 24, 34, 83, 7C, 24, 34, 00, 75, 3A, 48, 8D, 05, 69, 8F, 15, 00, 48, 89, 44, 24, 28, 48, 8D, 05, 45...
 
[+]

Code size:
3.7 MB (3,831,296 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Lenovo Utility

Command:
C:\Program Files\lenovo\energy manager\utility.exe


Scan utility.exe - Powered by Reason Core Security