cfp.exe

COMODO Internet Security

Comodo Security Solutions, Inc.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘COMODO Internet Security’.
Publisher:
COMODO  (signed by Comodo Security Solutions, Inc.)

Product:
COMODO Internet Security

Version:
5, 9, 219747, 2195

MD5:
9808e8a31bcb524a3622d46bcadc6e19

SHA-1:
1cb906bdaa162e590f51e4534466fef97428ef71

SHA-256:
5b3193bf74074ff50bb6665cdedeb922dc21f7363b74eb30eca8e212b85c772e

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/26/2024 3:19:41 PM UTC  (today)

Scan engine
Detection
Engine version

F-Prot
W32/Patched.Y.gen
4.6.5.141

File size:
6.4 MB (6,676,808 bytes)

Product version:
5, 9, 219747, 2195

Copyright:
2005-2012 COMODO. All rights reserved.

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\comodo\comodo internet security\cfp.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
4/8/2009 3:00:00 AM

Valid to:
4/8/2012 2:59:59 AM

Subject:
CN="Comodo Security Solutions, Inc.", O="Comodo Security Solutions, Inc.", STREET=525 Washington Blvd, L=Jersey City, S=New Jersey, PostalCode=07310, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00A59F518424A191FC34E8B637F7FB20C3

File PE Metadata
Compilation timestamp:
12/19/2011 8:47:45 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
196608:wFCQdQGVJ32LqOzSQ/0V6j8/1eU8b9jWC7uO9h:AC0v8bAC7uy

Entry address:
0x1B47D7

Entry point:
C3, C3, C3, C3, C3, C3, C3, C3, FF, FF, 3B, 0D, 00, 7E, 97, 00, 75, 02, F3, C3, E9, CC, A8, 00, 00, 8B, FF, 51, C7, 01, 2C, 61, 85, 00, E8, C4, A9, 00, 00, 59, C3, 8B, FF, 55, 8B, EC, 56, 8B, F1, E8, E3, FF, FF, FF, F6, 45, 08, 01, 74, 07, 56, E8, 8D, 47, FD, FF, 59, 8B, C6, 5E, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, 8B, 45, 08, 83, C1, 09, 51, 83, C0, 09, 50, E8, 0A, 52, 00, 00, F7, D8, 59, 1B, C0, 59, 40, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, 51, 53, 56, 57, FF, 35, 4C, 29, 9C, 00, E8, D4, A1, 00, 00, FF, 35...
 
[+]

Entropy:
6.1660

Code size:
4.3 MB (4,509,696 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
COMODO Internet Security

Command:
"C:\Program Files\comodo\comodo internet security\cfp.exe" -h


Scan cfp.exe - Powered by Reason Core Security