picpick.exe

PicPick

Wiziple software

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘PicPick Start’.
Publisher:
NGWIN  (signed by Wiziple software)

Product:
PicPick

Version:
4.1.0.0

MD5:
a616728a1d1747e50a099394e5a19e7b

SHA-1:
4b30e392c5d26b3699f6d530df5bf0f8f06c1ea2

SHA-256:
b4de1e95291c28e2b1c7c1e1da82ca846aadf1eedeb42a494a71be2b44029eb5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 8:20:16 PM UTC  (today)

File size:
19 MB (19,964,736 bytes)

Product version:
4.0.0.0

Original file name:
picpick.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\picpick\picpick.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/22/2013 9:00:00 AM

Valid to:
10/21/2016 8:59:59 AM

Subject:
CN=Wiziple software, OU=IT, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Wiziple software, L=Seoul, S=Seoul, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
018C76F7E4465E8C3EC45F082BEB6FEF

File PE Metadata
Compilation timestamp:
1/13/2016 3:40:26 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
393216:IjP9F0tvOZL29wM1wPvh46CzdkYIaRo20BDx3GX5Y3lMc7a:mPWI2Gnyo223sY3j7a

Entry address:
0x121DFF7

Entry point:
9C, 55, E8, F6, 86, 00, 00, C6, 64, 67, 71, 8E, C7, E5, F9, 5A, 6B, 34, 14, CA, 37, 35, 3D, 44, 8E, 95, BF, FD, FB, A0, 68, 64, 59, 51, 92, A5, D0, DF, F8, 3D, 3B, 32, 43, 0D, D6, EB, 47, 8A, 96, FB, DE, D9, 7D, BB, F1, 8F, EB, 16, B3, 46, 61, 9D, D5, CD, FC, E1, E1, 86, 51, 56, 07, 67, A6, A3, 9D, 94, 6C, 79, 67, B4, B5, 19, 3F, 90, 04, 69, 40, 79, AD, B5, 9F, 78, 69, 47, B3, 8C, E9, 44, 7D, 73, AA, AC, 4E, 69, 95, F2, F9, E1, D9, E4, 7A, 86, 54, 7A, A5, 5A, 67, 60, 9C, F4, 0B, 61, 20, F1, 8F, EB, 58, 49...
 
[+]

Entropy:
7.3375

Code size:
10.2 MB (10,677,760 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
PicPick Start

Command:
"C:\Program Files\picpick\picpick.exe" \startup


Scan picpick.exe - Powered by Reason Core Security