Should I block it?

No, this file is 100% safe to run.

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
GetLengthSid, GetTokenInformation, RegQueryValueA, RegEnumKeyA, RegDeleteKeyA, RegSetValueExA, RegCreateKeyExA, RegOpenKeyExA, RegQueryValueExA, RegOpenKeyA, RegCloseKey, StartServiceCtrlDispatcherA, RegisterServiceCtrlHandlerA, ControlService, StartServiceA, DeleteService, CreateServiceA, ChangeServiceConfig2A, SetServiceStatus, SetNamedSecurityInfoA, LogonUserA, ImpersonateLoggedOnUser, CreateProcessAsUserA, RevertToSelf, QueryServiceStatusEx, OpenSCManagerA, OpenServiceA, CloseServiceHandle, AddAccessAllowedAce, InitializeSecurityDescriptor, GetSecurityDescriptorDacl, GetAclInformation, InitializeAcl, GetAce, AddAce, SetSecurityDescriptorDacl, CopySid
comdlg32.dll
GetFileTitleA
gdi32.dll
Escape, GetStockObject, CreateBitmap, DeleteDC, ScaleWindowExtEx, SetWindowExtEx, ScaleViewportExtEx, SetViewportExtEx, OffsetViewportOrgEx, SetViewportOrgEx, SetMapMode, ExtTextOutA, TextOutA, RectVisible, PtVisible, DeleteObject, GetClipBox, GetDeviceCaps, SaveDC, RestoreDC, SetBkColor, SetTextColor, SelectObject
kernel32.dll
GlobalFlags, GetCPInfo, GetOEMCP, VirtualProtect, VirtualAlloc, GetSystemInfo, VirtualQuery, RtlUnwind, ExitProcess, GetSystemTimeAsFileTime, GetTimeFormatA, GetDateFormatA, HeapReAlloc, TerminateProcess, SetStdHandle, GetFileType, HeapSize, HeapDestroy, HeapCreate, VirtualFree, IsBadWritePtr, WritePrivateProfileStringA, GetCurrentProcessId, LCMapStringA, LCMapStringW, GetTimeZoneInformation, SetUnhandledExceptionFilter, GetStdHandle, UnhandledExceptionFilter, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, SetHandleCount, GetStartupInfoA, GetStringTypeA, GetStringTypeW, IsBadReadPtr, IsBadCodePtr, SetEnvironmentVariableA, GlobalGetAtomNameA, GlobalAddAtomA, GlobalFindAtomA, lstrcmpW, TlsFree, LocalReAlloc, TlsSetValue, TlsAlloc, TlsGetValue, EnterCriticalSection, GlobalHandle, GlobalReAlloc, LeaveCriticalSection, LocalAlloc, InterlockedIncrement, InterlockedDecrement, DeleteCriticalSection, InitializeCriticalSection, RaiseException, GetFullPathNameA, GetVolumeInformationA, GetCurrentProcess, DuplicateHandle, SetEndOfFile, UnlockFile, LockFile, FlushFileBuffers, SetFilePointer, WriteFile, ReadFile, GetCurrentThread, GetCurrentThreadId, GlobalDeleteAtom, lstrcmpA, ConvertDefaultLocale, EnumResourceLanguagesA, LoadLibraryA, SetErrorMode, GetProcAddress, lstrcatA, GetFileTime, GetFileSize, GetFileAttributesA, CreateFileA, FindFirstFileA, FindClose, FileTimeToLocalFileTime, FileTimeToSystemTime, SetLastError, GlobalFree, GlobalAlloc, GlobalLock, GlobalUnlock, FormatMessageA, lstrcpynA, LocalFree, FreeLibrary, CreateDirectoryA, GetCommandLineA, GetModuleHandleA, OpenFileMappingA, lstrcpyA, GetTickCount, GetCurrentDirectoryA, CreateFileMappingA, MapViewOfFile, UnmapViewOfFile, WaitForSingleObject, GetExitCodeProcess, Sleep, CloseHandle, GetModuleFileNameA, GetShortPathNameA, GetTempPathA, CopyFileA, CreateProcessA, DeleteFileA, HeapAlloc, GetProcessHeap, HeapFree, FindResourceA, LoadResource, LockResource, SizeofResource, GetEnvironmentVariableA, CompareStringW, CompareStringA, lstrlenA, lstrcmpiA, GetVersion, GetLastError, WideCharToMultiByte, MultiByteToWideChar, GetVersionExA, GetThreadLocale, GetLocaleInfoA, GetACP, QueryPerformanceCounter, InterlockedExchange
ole32.dll
CoInitializeEx, CoUninitialize
shell32.dll
SHGetPathFromIDListA, SHGetSpecialFolderLocation, ShellExecuteExA
shlwapi.dll
PathFindExtensionA, PathStripToRootA, PathIsUNCA, PathFindFileNameA
user32.dll
SetWindowTextA, SetMenuItemBitmaps, ModifyMenuA, EnableMenuItem, CheckMenuItem, GetMenuCheckMarkDimensions, LoadBitmapA, SetCursor, GetMessageA, TranslateMessage, GetActiveWindow, GetCursorPos, ValidateRect, RegisterWindowMessageA, WinHelpA, GetCapture, CreateWindowExA, SetWindowsHookExA, CallNextHookEx, GetClassLongA, GetClassInfoExA, GetClassNameA, SetPropA, GetPropA, RemovePropA, GetFocus, GetForegroundWindow, DispatchMessageA, GetDlgItem, GetTopWindow, DestroyWindow, GetMessagePos, LoadIconA, PeekMessageA, MapWindowPoints, GetKeyState, CharUpperA, SetUserObjectSecurity, GetUserObjectSecurity, CloseDesktop, CloseWindowStation, SetForegroundWindow, IsWindowVisible, GetClientRect, GetMenu, AdjustWindowRectEx, GetClassInfoA, RegisterClassA, GetDlgCtrlID, DefWindowProcA, CallWindowProcA, SetWindowLongA, SetWindowPos, SystemParametersInfoA, IsIconic, GetWindowPlacement, GetWindowRect, CopyRect, PtInRect, GetWindow, ClientToScreen, GrayStringA, DrawTextExA, DrawTextA, TabbedTextOutA, ShowWindow, DestroyMenu, GetWindowTextA, OpenDesktopA, SetProcessWindowStation, OpenWindowStationA, GetProcessWindowStation, wsprintfA, MessageBoxA, GetSubMenu, GetMenuItemCount, GetMenuItemID, GetMenuState, PostQuitMessage, PostMessageA, GetSystemMetrics, UnregisterClassA, GetSysColorBrush, GetSysColor, SendMessageA, GetParent, GetWindowLongA, GetLastActivePopup, IsWindowEnabled, EnableWindow, UnhookWindowsHookEx, LoadCursorA, GetDC, ReleaseDC, GetMessageTime
winspool.drv
OpenPrinterA, DocumentPropertiesA, ClosePrinter

suservice.exe

IBM Lotus Notes/Domino by International Business Machines Corporation (Signed)

Remove suservice.exe
Version:   8.5.30.11258
MD5:   2098af12149789fa6608422c8796f77c
SHA1:   e1ad35cecba2118d27624024c03a36dad9fb8d86
SHA256:   600772098454156ecc9cd7633bd503fc3fa3124c991b6ae4ef6be6fd3ede5ada

Overview

suservice.exe runs as a service under the name LNSUSvc (LNSUSvc) with extensive SYSTEM privileges (full administrator access). The file is digitally signed by International Business Machines Corporation which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:suservice.exe
Publisher:IBM Corp
Product name:IBM Lotus Notes/Domino
Typical file path:C:\notes\suservice.exe
File version:8.5.30.11258
Size:185.38 KB (189,832 bytes)
Certificate
Issued to:International Business Machines Corporation
Authority (CA):VeriSign
Effective date:Tuesday, March 17, 2009
Expiration date:Saturday, May 19, 2012
Digital DNA
PE subsystem:Windows Console
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • LNSUSvc
  • 'LNSUSvc' (Lotus Notes Smart Upgrade Service)

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00007446%
0.028634%
Kernel CPU:0.00007319%
0.013761%
User CPU:0.00000128%
0.014873%
Kernel CPU time:1,859 ms/min
100,923,805ms/min
Memory
Private memory:1.41 MB
21.59 MB
Private (maximum):476 KB
Private (minimum):236 KB
Non-paged memory:1.41 MB
21.59 MB
Virtual memory:30.2 MB
140.96 MB
Virtual memory (peak):36.23 MB
169.69 MB
Working set:476 KB
18.61 MB
Working set (peak):3.9 MB
37.95 MB
Page faults:1,208/min
2,039/min
I/O
I/O read transfer:0 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:0 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:3 Bytes/sec
448.09 KB/min
I/O other operations:1/sec
1,671/min
Resource allocations
Threads:2
12
Handles:49
600
GUI GDI count:9
103
GUI USER count:1
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command line:C:\notes\suservice.exe
Owner:SYSTEM
Windows Service
Service name:LNSUSvc
Display name:LNSUSvc
Description:“A service that helps upgrade the Lotus Notes client. ”
Type:Win32OwnProcess, InteractiveProcess
Parent process:services.exe (Services and Controller app by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows Vista Home Premium 50.00%
Microsoft Windows XP 50.00%

Distribution by countryDistribution by country

United States installs about 100.00% of IBM Lotus Notes/Domino.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE