LooknStop.exe

Look 'n' Stop Firewall

GLOANNEC Frederic

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Look 'n' Stop’.
Publisher:
Soft4Ever  (signed by GLOANNEC Frederic)

Product:
Look 'n' Stop Firewall

Version:
2, 0, 0, 7

MD5:
f881b72fa102295208b33dc22e84a3fc

SHA-1:
b4c9daa0152c69a61798d6d30cc661f7b6c9d7e3

SHA-256:
368b4c8db963d1f6b9ef6749933d71dca9c9d1c8b9781e73cdb8f84d38b04910

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 11:58:42 PM UTC  (a few moments ago)

File size:
579.2 KB (593,128 bytes)

Product version:
2, 0, 0, 7

Copyright:
Copyright © 2009

Original file name:
LooknStop.exe

File type:
Executable application (Win32 EXE)

Language:
French (France)

Common path:
C:\Program Files\soft4ever\looknstop\looknstop.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
11/13/2008 10:01:41 AM

Valid to:
11/13/2011 10:01:41 AM

Subject:
E=fgloannec@soft4ever.com, CN=GLOANNEC Frederic, O=GLOANNEC Frederic, C=FR

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000011D9515098B

File PE Metadata
Compilation timestamp:
10/10/2009 5:03:06 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:H5C6ioYPMGvjMno2ulCuFpp/PtNqyesyT3nyONmn11yqbeaxxIZda8:HKnjQonldNP2yesyT33qbea0Z

Entry address:
0x3B93F

Entry point:
E8, 84, 05, 00, 00, E9, DD, FC, FF, FF, CC, FF, 25, 10, 08, 44, 00, FF, 25, 0C, 08, 44, 00, CC, CC, 68, B9, B2, 43, 00, 64, FF, 35, 00, 00, 00, 00, 8B, 44, 24, 10, 89, 6C, 24, 10, 8D, 6C, 24, 10, 2B, E0, 53, 56, 57, A1, 00, 34, 45, 00, 31, 45, FC, 33, C5, 89, 45, E4, 50, 89, 65, E8, FF, 75, F8, 8B, 45, FC, C7, 45, FC, FE, FF, FF, FF, 89, 45, F8, 8D, 45, F0, 64, A3, 00, 00, 00, 00, C3, 8B, 4D, E4, 33, CD, E8, F6, F7, FF, FF, E9, 7A, 02, 00, 00, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C...
 
[+]

Code size:
252 KB (258,048 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Look 'n' Stop

Command:
"C:\Program Files\soft4ever\looknstop\looknstop.exe" -auto


Scan LooknStop.exe - Powered by Reason Core Security