CryptoPrevent.exe

CryptoPrevent

Foolish IT LLC

It runs as a scheduled task under the Windows Task Scheduler triggered daily at a specified time. This is installed with CryptoPrevent.
Publisher:
Foolish IT LLC  (signed and verified)

Product:
CryptoPrevent

Version:
8.0.3.2

MD5:
a3a8cd01826f4f4ef878873efe63a9eb

SHA-1:
9267f4f1fd3351b49698c5c19dd70bf1b50fdaee

SHA-256:
b492c18e7e91a16e3a389c8c3604b7600a0e5dccdd53fce8f02118d5e6c06407

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/4/2024 10:23:06 AM UTC  (today)

File size:
2.3 MB (2,443,416 bytes)

Product version:
8.0.3.2

Copyright:
Copyright © 2015

Original file name:
CryptoPrevent.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\foolish it\cryptoprevent\cryptoprevent.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
1/2/2016 12:00:00 AM

Valid to:
1/9/2019 12:00:00 PM

Subject:
CN=Foolish IT LLC, O=Foolish IT LLC, L=High Point, S=North Carolina, C=US

Issuer:
CN=DigiCert SHA2 Assured ID Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
038984AD57101BE8A055614998BC5517

File PE Metadata
Compilation timestamp:
3/8/2017 12:05:51 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
48.0

.NET CLR dependent:
Yes

Entry address:
0x23BABE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.6425

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
2.2 MB (2,333,696 bytes)

Scheduled Task
Task name:
CryptoPrevent Update

Trigger:
Daily (Runs daily at 06:13)

Description:
Updates the CryptoPrevent application files and malware signature definitions from Foolish IT LLC (www.foolishit.com)


The file CryptoPrevent.exe has been discovered within the following programs.

CryptoPrevent  by Foolish IT, LLC
www.foolishit.com
About 3% of users remove it
 
Powered by Should I Remove It?

Scan CryptoPrevent.exe - Powered by Reason Core Security