LooknStop.exe

Look 'n' Stop Firewall

GLOANNEC Frederic

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Look 'n' Stop’.
Publisher:
Soft4Ever  (signed by GLOANNEC Frederic)

Product:
Look 'n' Stop Firewall

Version:
2, 0, 0, 7

MD5:
ababce41f4a89e88c2352fc653a80663

SHA-1:
b75bb5b3d8d4a6cab6894aac335d45f74ff093f9

SHA-256:
bb34d14212552865782f3978abde7c515a84045c55287fb4876aa5279cf6da85

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 7:24:27 PM UTC  (today)

File size:
697 KB (713,704 bytes)

Product version:
2, 0, 0, 7

Copyright:
Copyright © 2009

Original file name:
LooknStop.exe

File type:
Executable application (Win64 EXE)

Language:
French (France)

Common path:
C:\Program Files\soft4ever\looknstop\looknstop.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
11/13/2008 10:01:41 AM

Valid to:
11/13/2011 10:01:41 AM

Subject:
E=fgloannec@soft4ever.com, CN=GLOANNEC Frederic, O=GLOANNEC Frederic, C=FR

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000011D9515098B

File PE Metadata
Compilation timestamp:
10/10/2009 5:04:18 PM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:P3BH7OBfb6mfYnfspabVC8wzg9mSfBbeaSk:/l7WbHQnUYbo8SgbN

Entry address:
0x49390

Entry point:
48, 83, EC, 28, E8, D7, 03, 00, 00, 48, 83, C4, 28, E9, 4E, FC, FF, FF, FF, 25, 60, 2C, 00, 00, FF, 25, 52, 2C, 00, 00, FF, 25, 44, 2C, 00, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 48, 89, 4C, 24, 08, 48, 81, EC, 88, 00, 00, 00, 48, 8D, 0D, 4D, CC, 06, 00, FF, 15, 07, 20, 00, 00, 48, 8B, 05, 38, CD, 06, 00, 48, 89, 44, 24, 58, 45, 33, C0, 48, 8D, 54, 24, 60, 48, 8B, 4C, 24, 58, E8, 03, 06, 00, 00, 48, 89, 44, 24, 50, 48, 83, 7C, 24, 50, 00, 74, 41, 48, C7, 44, 24, 38, 00, 00, 00, 00, 48, 8D, 44...
 
[+]

Code size:
293.5 KB (300,544 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Look 'n' Stop

Command:
"C:\Program Files\soft4ever\looknstop\looknstop.exe" -auto


Scan LooknStop.exe - Powered by Reason Core Security