CryptoPrevent.exe

CryptoPrevent

Foolish IT LLC

It runs as a scheduled task under the Windows Task Scheduler triggered daily at a specified time. This is installed with CryptoPrevent.
Publisher:
Foolish IT LLC  (signed and verified)

Product:
CryptoPrevent

Version:
8.0.3.0

MD5:
98719548d024f27b04eb3cdecb95a4d0

SHA-1:
c6622d50343e9b5b741bd95f416be788c3da0ce9

SHA-256:
84bd848a3489321877087f55ba5127d082a358542eb3cfc9314bda182a3dbf15

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 2:19:37 AM UTC  (today)

File size:
2.3 MB (2,442,904 bytes)

Product version:
8.0.3.0

Copyright:
Copyright © 2015

Original file name:
CryptoPrevent.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\foolish it\cryptoprevent\cryptoprevent.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
1/1/2016 7:00:00 PM

Valid to:
1/9/2019 7:00:00 AM

Subject:
CN=Foolish IT LLC, O=Foolish IT LLC, L=High Point, S=North Carolina, C=US

Issuer:
CN=DigiCert SHA2 Assured ID Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
038984AD57101BE8A055614998BC5517

File PE Metadata
Compilation timestamp:
3/1/2017 4:24:05 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
48.0

.NET CLR dependent:
Yes

Entry address:
0x23B95E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.6517

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
2.2 MB (2,333,184 bytes)

Scheduled Task
Task name:
CryptoPrevent Update

Trigger:
Daily (Runs daily at 1:32 PM)

Description:
Updates the CryptoPrevent application files and malware signature definitions from Foolish IT LLC (www.foolishit.com)


The file CryptoPrevent.exe has been discovered within the following program.

CryptoPrevent  by Foolish IT, LLC
www.foolishit.com
About 3% of users remove it
 
Powered by Should I Remove It?

Scan CryptoPrevent.exe - Powered by Reason Core Security