LooknStop.exe

Look 'n' Stop Firewall

GLOANNEC Frederic

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Look 'n' Stop’.
Publisher:
Soft4Ever  (signed by GLOANNEC Frederic)

Product:
Look 'n' Stop Firewall

Version:
2, 0, 0, 7

MD5:
1ef711f00a6e1b5ebfe2691a238d9a88

SHA-1:
3fe02d0b58bc2e70f6790d85b8ce7989c65907dd

SHA-256:
72cd67f602e2fcca863d5473cd203cb4bfbdc901203f5d88c77998a5e35940d1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 6:25:41 AM UTC  (today)

File size:
692 KB (708,560 bytes)

Product version:
2, 0, 0, 7

Copyright:
Copyright © 2009

Original file name:
LooknStop.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\soft4ever\looknstop\looknstop.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
11/13/2008 11:01:41 AM

Valid to:
11/13/2011 11:01:41 AM

Subject:
E=fgloannec@soft4ever.com, CN=GLOANNEC Frederic, O=GLOANNEC Frederic, C=FR

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000011D9515098B

File PE Metadata
Compilation timestamp:
10/10/2009 6:04:34 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:X3BH7OBfb6mfYnfspabjR8yzRuuHRBbeaSa:nl7WbHQnUYb98sRdbL

Entry address:
0x49390

Entry point:
48, 83, EC, 28, E8, D7, 03, 00, 00, 48, 83, C4, 28, E9, 4E, FC, FF, FF, FF, 25, 60, 2C, 00, 00, FF, 25, 52, 2C, 00, 00, FF, 25, 44, 2C, 00, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 48, 89, 4C, 24, 08, 48, 81, EC, 88, 00, 00, 00, 48, 8D, 0D, 4D, CC, 06, 00, FF, 15, 07, 20, 00, 00, 48, 8B, 05, 38, CD, 06, 00, 48, 89, 44, 24, 58, 45, 33, C0, 48, 8D, 54, 24, 60, 48, 8B, 4C, 24, 58, E8, 03, 06, 00, 00, 48, 89, 44, 24, 50, 48, 83, 7C, 24, 50, 00, 74, 41, 48, C7, 44, 24, 38, 00, 00, 00, 00, 48, 8D, 44...
 
[+]

Code size:
293.5 KB (300,544 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Look 'n' Stop

Command:
"C:\Program Files\soft4ever\looknstop\looknstop.exe" -auto


Scan LooknStop.exe - Powered by Reason Core Security