picturedoctor.exe

Picture Doctor

SoftOrbits

Publisher:
SoftOrbits  (signed and verified)

Product:
Picture Doctor

Version:
1, 7, 0, 2

MD5:
5b5f06db4db85cbad94d0fa7fdc9cf00

SHA-1:
e16557c659e910fdc0a12946a3815192b04046bc

SHA-256:
745e5e279d0941f7816f347817553b5c0e4369761c8f5e1d12d8641c313e89e6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/16/2024 3:53:09 AM UTC  (today)

File size:
673.3 KB (689,472 bytes)

Product version:
1, 7, 0, 2

Copyright:
Copyright (C) 2010

Original file name:
PicRecoverGui.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\picture doctor\picturedoctor.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
1/13/2011 1:00:00 AM

Valid to:
1/16/2012 12:59:59 AM

Subject:
CN=SoftOrbits, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=SoftOrbits, L=Smolensk, S=Smolenskaya, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
50391746C878885C965A967436E5649B

File PE Metadata
Compilation timestamp:
11/2/2011 2:26:43 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:4FKR2ubRav3PYrYd29cDq6z+82qBbYhFJ5Cx7shdw7bIizEe:4q0v3Pjs1F82qBbYHqFIiYe

Entry address:
0x1000

Entry point:
68, 01, A0, 49, 00, E8, 01, 00, 00, 00, C3, C3, 30, E4, F2, E8, 50, AB, D0, DA, 2B, FC, 5B, 01, CB, DC, 0E, 88, 28, 3F, 14, F0, 5F, C9, 40, 4B, 93, 72, 65, A7, F8, 98, 91, E2, 4F, 0C, 1D, 31, 69, 0B, 75, A1, 20, 3C, 9C, 87, DD, 3D, 5B, 87, 85, 07, 13, 62, 8C, 25, F0, E3, 0A, 6E, 25, 56, DC, E8, F0, 3F, 83, 6D, AF, C9, 75, CE, E3, 5B, 05, 32, 22, EA, 68, 46, 66, 77, E5, 33, F8, 66, DA, 60, 0E, 32, D5, AC, 2E, B9, 19, CE, FD, 8A, E8, 61, D1, 27, 84, AD, 35, 9F, 91, 06, B8, DF, ED, 45, 51, B0, 5A, 76, 8C, 44...
 
[+]

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
336 KB (344,064 bytes)

Scan picturedoctor.exe - Powered by Reason Core Security