LanTalk.exe

LanTalk.NET Messenger

CEZEO software Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘LanTalk.NET’.
Publisher:
CEZEO software Ltd. (C)  (signed by CEZEO software Ltd.)

Product:
LanTalk.NET Messenger

Version:
3, 3, 53, 4

MD5:
16fc15d3f66e3aca6208a5d50668ec5f

SHA-1:
9cb898bcc8782e8a156d448af4c6a61b81a28f1b

SHA-256:
76f991a2c01ad8fc310ad910efbec1e018b6d37ee604ff4b9ccfefedc82e9fb6

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/16/2024 7:58:35 PM UTC  (today)

Scan engine
Detection
Engine version

Quick Heal
(Suspicious) - DNAScan
4.16.-

File size:
319.7 KB (327,336 bytes)

Product version:
3, 3, 53, 4

Copyright:
Copyright (C) 1999 - 2007

Trademarks:
LanTalk (R)

Original file name:
LanTalk.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\cezeo software\lantalk net\lantalk.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
3/17/2008 7:00:00 AM

Valid to:
3/18/2009 6:59:59 AM

Subject:
CN=CEZEO software Ltd., O=CEZEO software Ltd., STREET=Politehnicheskaya str. 6A - 3-N, L=Saint-Petersburg, S=Saint-Petersburg, PostalCode=194021, C=RU

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
6DDDA40B2DAA3B7B22D06BCDA8F5B8EF

File PE Metadata
Compilation timestamp:
6/11/2008 8:25:32 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:RGUe+hGtgcY8KLzWx+o58wnTjT4LNXDCbtx7MLBf4:R/8KnI+h0T7tu

Entry address:
0x1000

Entry point:
68, 01, 90, 48, 00, E8, 01, 00, 00, 00, C3, C3, 53, 56, 3C, 70, 52, 77, B5, 13, 90, 8F, 02, 05, 95, 69, 88, CC, 54, 43, D8, B9, BE, 3B, 7F, 95, A9, 61, DF, DF, 90, 67, E4, 22, 91, 27, 32, 83, 01, 1E, FA, A2, EF, 3B, 6F, 24, 1B, AF, F7, B2, EA, B6, 0F, 1A, CA, F4, 27, 74, 12, 82, EC, 48, 8A, 53, 58, C6, B7, 0F, F5, 3A, A5, 4B, 9B, C7, 4E, 34, 2A, 39, 9A, 2C, 18, 5D, 64, C1, D2, 89, 12, 80, 94, 14, BE, 76, F2, 07, B3, 1E, E8, 3B, F7, AD, 99, 91, 33, 9D, 80, A9, E7, 9E, 04, 1D, 64, 08, 32, 42, 56, 40, 0B, DD...
 
[+]

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
330.5 KB (338,432 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
LanTalk.NET

Command:
C:\Program Files\cezeo software\lantalk net\lantalk.exe


Scan LanTalk.exe - Powered by Reason Core Security