lnktwo.exe

Dell Inc.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘lnktwo.exe’.
Publisher:
Dell Inc.  (signed and verified)

MD5:
12d49f45a3fa4822f8ba407ae2f2a0e2

SHA-1:
49ac82a0812324e74e096ab327b276e92460a061

SHA-256:
6b6f5aecd2a8e56b09a1844bd38de54706d96be66252df4b9d0a7d1765de29e3

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 2:18:25 PM UTC  (today)

File size:
4.6 MB (4,842,488 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\ProgramData\lnktwo.exe

Digital Signature
Signed by:

Authority:
Dell Inc.

Valid from:
1/20/2012 8:32:44 PM

Valid to:
1/20/2014 8:42:44 PM

Subject:
CN=Dell Inc., OU=PG, O=Dell Inc., L=Round Rock, S=Texas, C=US

Issuer:
CN=Dell Inc. Enterprise Issuing CA2, O=Dell Inc.

Serial number:
1519F35D000100000566

File PE Metadata
Compilation timestamp:
2/15/2017 1:21:57 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x1E9F30

Entry point:
55, 8B, EC, B9, 06, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, B8, 5C, EE, E5, 00, E8, 3E, 0E, E2, FF, 33, C0, 55, 68, EF, A0, E6, 00, 64, FF, 30, 64, 89, 20, E8, F3, 4E, FF, FF, 48, 0F, 85, 6B, 01, 00, 00, 68, FC, A0, E6, 00, 6A, FF, 6A, 00, E8, CE, 43, E2, FF, E8, E1, 44, E2, FF, 3D, B7, 00, 00, 00, 75, 07, 6A, 00, E8, 0B, 44, E2, FF, B0, 01, E8, F0, B8, FE, FF, A1, 70, 67, E7, 00, 83, C0, 1C, BA, 24, A1, E6, 00, E8, DA, D0, E1, FF, A1, 70, 67, E7, 00, C7, 40, 24, B9, 20, 00, 00, 8D, 45, EC, E8, 06, E3...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1.9 MB (2,001,408 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
lnktwo.exe

Command:
C:\ProgramData\lnktwo.exe


Scan lnktwo.exe - Powered by Reason Core Security