CryptoPreventTestCLI.exe

CryptoPreventTestCLI

Foolish IT LLC

This is a setup program which is used to install the application. The file has been seen being downloaded from cpt-zinfandel.centrastage.net.
Publisher:
Foolish IT LLC  (signed and verified)

Product:
CryptoPreventTestCLI

Version:
1.04.0001

MD5:
9fc33b2b98bfcf3de6819bba7928c9c4

SHA-1:
84a4dbf1afe977308cff4aa17b5648288af8f942

SHA-256:
5c8ba14ecb6d514e3a5319fbfb682f984cd1ef66d3d65273a9a467d59a764b42

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/29/2024 7:23:10 AM UTC  (today)

File size:
303.4 KB (310,632 bytes)

Product version:
1.04.0001

Original file name:
CryptoPreventTestCLI.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
4/16/2012 6:35:47 AM

Valid to:
4/17/2014 11:09:32 PM

Subject:
E=foolishtech@foolishit.com, CN=Foolish IT LLC, O=Foolish IT LLC, L=Manteo, S=North Carolina, C=US, Description=2pFb02OGysYZ6764

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
05DE

File PE Metadata
Compilation timestamp:
10/20/2013 4:39:11 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
6.0

CTPH (ssdeep):
3072:T94l0xj9EJjif/aqdtM8fUGr+CjS2FNcqIifz96QruQFrumNzPlGOEYc/5hKi9DF:TJ/a1B2FNcqIxQdumNztGBV/54ODSk

Entry address:
0x3974

Entry point:
68, C8, 3C, 40, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 48, 00, 00, 00, 00, 00, 00, 00, 6D, 1E, B9, 8D, 8E, 06, F2, 4F, 94, 91, E5, 0D, 07, 69, E9, 3E, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 43, 72, 79, 70, 74, 6F, 50, 72, 65, 76, 65, 6E, 74, 54, 65, 73, 74, 43, 4C, 49, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 06, 00, 98, 56, 40, 00, 00, 00, 00, 00, FF, FF, FF, FF, FF, FF, FF, FF, 00, 00, 00, 00, 0C, 58, 40, 00, 1C, 81, 43, 00, 00, 00, 00, 00, D8, A5, 25, 00...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
220 KB (225,280 bytes)

The file CryptoPreventTestCLI.exe has been seen being distributed by the following URL.

Scan CryptoPreventTestCLI.exe - Powered by Reason Core Security