LanTalk.exe

LanTalk.NET Messenger

CEZEO software Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘LanTalk.NET’.
Publisher:
CEZEO software (C)  (signed by CEZEO software Ltd.)

Product:
LanTalk.NET Messenger

Version:
3, 1, 52, 16

MD5:
054a8cca59dceb1661dbe010d0e2631d

SHA-1:
303a3b4461ca62b377b15b6d62e4e41ef85ab1db

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/16/2024 7:56:59 PM UTC  (today)

Scan engine
Detection
Engine version

Quick Heal
(Suspicious) - DNAScan
4.16.10.00

File size:
303.2 KB (310,440 bytes)

Product version:
3, 1, 52, 16

Copyright:
Copyright (C) 1999 - 2007

Trademarks:
LanTalk (R)

Original file name:
LanTalk.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\cezeo software\lantalk net\lantalk.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
3/18/2007 5:30:00 AM

Valid to:
3/18/2008 5:29:59 AM

Subject:
CN=CEZEO software Ltd., O=CEZEO software Ltd., STREET=Politehnicheskaya str. 6A - 3-N, L=Saint-Petersburg, S=Saint-Petersburg, PostalCode=194021, C=RU

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00EA1B69EC2248FDD3BAB62C737AEB3978

File PE Metadata
Compilation timestamp:
3/18/2007 8:55:55 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:O+W3+6f3vl8Atu5EFQQlxl1iyjc14gco243zWQXDCbtx7MR2v:z2+6fvl8AtLllljgcojYtXv

Entry address:
0x1000

Entry point:
68, 01, B0, 47, 00, E8, 01, 00, 00, 00, C3, C3, 5A, AA, 45, CA, 3C, 29, 89, C1, 30, 6D, 73, DB, F0, 81, D8, 26, 90, D0, 22, 21, 86, AB, FB, AF, C6, 4E, 82, FD, 30, 70, 1D, 27, 1E, 81, 09, D0, 86, 6B, 5D, 74, 3A, F3, B4, 42, 33, 4C, A6, 23, 6C, 44, 98, 8B, C0, D2, 25, F6, 6E, EA, AE, 2E, 71, 7C, B2, 77, 0B, 71, 10, 41, F6, 27, 88, 4B, 60, 64, FC, 02, 04, 5C, 69, 88, F2, 70, B0, 69, F3, C8, 5C, 8E, C9, EE, 82, 5E, 52, 8D, 4A, 76, 2F, F6, 9D, 99, 16, 24, D4, 63, 83, 66, 21, 12, FB, 53, 38, 95, 4A, FF, CD, E6...
 
[+]

Entropy:
7.5668

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
297 KB (304,128 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
LanTalk.NET

Command:
C:\Program Files\cezeo software\lantalk net\lantalk.exe


Scan LanTalk.exe - Powered by Reason Core Security