lsmdaemon.exe

LaCie

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘LaCie Safe Manager Startup’.
Publisher:
LaCie  (signed and verified)

MD5:
fc780cc5471621db3437376ab82710b6

SHA-1:
450740b5907c008a9167f9a9dc9297f8611ad53c

SHA-256:
bf176fd5a63d2472bcc446a2428c0122b3253313d758ba613208169373f004a6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/8/2024 7:00:31 PM UTC  (today)

File size:
63.2 KB (64,720 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\lacie\safe manager\lsmdaemon.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
9/14/2011 2:00:00 AM

Valid to:
9/14/2012 1:59:59 AM

Subject:
CN=LaCie, O=LaCie, STREET=22985 NW Evergreen Parkway, L=Hillsboro, S=OR, PostalCode=97124, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
3BCED2B65FD9E0E5D9BCF9D7619F94EA

File PE Metadata
Compilation timestamp:
3/13/2012 10:39:28 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
768:o7OuNT1zhd80iqXYtQttnKyjQq6XCGZewSOTvvU+Ujjm3ioAfI2gvOzSNSMNWp:oFz80iq2QttxEXCGZewvvvU+nOG4MNWp

Entry address:
0x763F

Entry point:
E8, 44, 05, 00, 00, E9, 36, FD, FF, FF, CC, FF, 25, 04, 91, 40, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, C0, F4, 40, 00, 89, 0D, BC, F4, 40, 00, 89, 15, B8, F4, 40, 00, 89, 1D, B4, F4, 40, 00, 89, 35, B0, F4, 40, 00, 89, 3D, AC, F4, 40, 00, 66, 8C, 15, D8, F4, 40, 00, 66, 8C, 0D, CC, F4, 40, 00, 66, 8C, 1D, A8, F4, 40, 00, 66, 8C, 05, A4, F4, 40, 00, 66, 8C, 25, A0, F4, 40, 00, 66, 8C, 2D, 9C, F4, 40, 00, 9C, 8F, 05, D0, F4, 40, 00, 8B, 45, 00, A3, C4, F4, 40, 00, 8B, 45, 04, A3, C8, F4, 40, 00...
 
[+]

Code size:
31.5 KB (32,256 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
LaCie Safe Manager Startup

Command:
"C:\Program Files\lacie\safe manager\lsmdaemon.exe"


Scan lsmdaemon.exe - Powered by Reason Core Security