KillEmAll.exe

KillEmAll

Foolish IT LLC

This is installed with CryptoPrevent.
Publisher:
Foolish IT LLC (FoolishIT.com)  (signed by Foolish IT LLC)

Product:
KillEmAll

Description:
KillEmAll v5 (built on d7x technology)

Version:
5.00.0012

MD5:
d956f9e1de264ad3a8153f76433cbf37

SHA-1:
66a3c0c445097a823ee2b6c9fa0585d37497d862

SHA-256:
235652c020c6ca49e06236b5ea778a216228b2b3eed8c58f90a841f46cd19bca

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 2:57:44 AM UTC  (today)

File size:
1.8 MB (1,839,672 bytes)

Product version:
5.00.0012

Copyright:
Foolish IT LLC

Original file name:
KillEmAll.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\killemall_portable\killemall.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
1/4/2016 12:00:00 AM

Valid to:
3/5/2019 12:00:00 PM

Subject:
CN=Foolish IT LLC, O=Foolish IT LLC, L=High Point, S=North Carolina, C=US, PostalCode=27262, STREET=1213 Johnson St, SERIALNUMBER=1254817, OID.1.3.6.1.4.1.311.60.2.1.2=North Carolina, OID.1.3.6.1.4.1.311.60.2.1.3=US, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA (SHA2), OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
075C1E55AD77D270ECE75D59FE1A7560

File PE Metadata
Compilation timestamp:
2/5/2016 8:12:26 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:3zLanlwgcYSaCTqaB53Bw6IfYMyhyUZIaW1otKU1LyUVMZpNn5PX7yr2twsQU0D8:qlNcYRCT+

Entry address:
0x13DC8

Entry point:
68, 30, 41, 41, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 67, 69, 20, ED, A9, 05, 16, 47, AF, 21, C8, F4, CB, B6, 9D, 0F, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 4B, 69, 6C, 6C, 45, 6D, 41, 6C, 6C, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 16, 00, 2C, F3, 41, 00, 00, 00, 00, 00, FF, FF, FF, FF, FF, FF, FF, FF, 00, 00, 00, 00, A0, F7, 41, 00, 04, 38, 51, 00, 00, 00, 00, 00, 10, 20, DE, 09, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.2952

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
1.1 MB (1,122,304 bytes)

The file KillEmAll.exe has been discovered within the following programs.

CryptoPrevent  by Foolish IT, LLC
www.foolishit.com
About 3% of users remove it
 
Powered by Should I Remove It?

Scan KillEmAll.exe - Powered by Reason Core Security