lsmdaemon.exe

LaCie

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘LaCie Safe Manager Startup’.
Publisher:
LaCie  (signed and verified)

MD5:
d2c3780fd2d730c422b44ed7d341b00c

SHA-1:
adee26df2ed7a3e344e342449a4e898157f08061

SHA-256:
cc8efcdd0113f0ae4a278bfedbbfda8f4829ad8d95306e724458a5fd34d016c1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/8/2024 7:00:31 PM UTC  (today)

File size:
64.9 KB (66,480 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\lacie\safe manager\lsmdaemon.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
9/14/2011 8:00:00 AM

Valid to:
9/14/2012 7:59:59 AM

Subject:
CN=LaCie, O=LaCie, STREET=22985 NW Evergreen Parkway, L=Hillsboro, S=OR, PostalCode=97124, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
3BCED2B65FD9E0E5D9BCF9D7619F94EA

File PE Metadata
Compilation timestamp:
6/26/2012 3:37:49 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
1536:2Fz80iq2QttxEXCGZewvvvU+nOG4MNXhO:2FY6fasWOG4MNc

Entry address:
0x763F

Entry point:
E8, 44, 05, 00, 00, E9, 36, FD, FF, FF, CC, FF, 25, 04, 91, 40, 00, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, C0, F4, 40, 00, 89, 0D, BC, F4, 40, 00, 89, 15, B8, F4, 40, 00, 89, 1D, B4, F4, 40, 00, 89, 35, B0, F4, 40, 00, 89, 3D, AC, F4, 40, 00, 66, 8C, 15, D8, F4, 40, 00, 66, 8C, 0D, CC, F4, 40, 00, 66, 8C, 1D, A8, F4, 40, 00, 66, 8C, 05, A4, F4, 40, 00, 66, 8C, 25, A0, F4, 40, 00, 66, 8C, 2D, 9C, F4, 40, 00, 9C, 8F, 05, D0, F4, 40, 00, 8B, 45, 00, A3, C4, F4, 40, 00, 8B, 45, 04, A3, C8, F4, 40, 00...
 
[+]

Entropy:
6.3411

Code size:
31.5 KB (32,256 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
LaCie Safe Manager Startup

Command:
"C:\Program Files\lacie\safe manager\lsmdaemon.exe"


Scan lsmdaemon.exe - Powered by Reason Core Security