prviewer.exe

PowerReader

RamSoft Inc

Publisher:
RamSoft Inc.  (signed by RamSoft Inc)

Product:
PowerReader

Description:
PowerReader Viewer

Version:
6.0.1.1098

MD5:
c5f933670fc8281087cef0c74845a97e

SHA-1:
35b7e46c142dd9a2ba0dc420a16dca8e2558c4e3

SHA-256:
54672039e97d2c5e7b3448f97fd9dcf46fbd3b2419f011ea25dee7c9b7f4b1f2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/30/2024 3:49:30 PM UTC  (today)

File size:
47.5 MB (49,817,688 bytes)

Product version:
6.0.1.1098

Copyright:
Copyright © 2014 RamSoft Inc. All rights reserved.

Trademarks:
PowerReader is a trademark of RamSoft Inc.

Original file name:
Ultrapro

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\powerreader viewer\prviewer.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
8/14/2013 8:00:00 PM

Valid to:
9/9/2015 7:59:59 PM

Subject:
CN=RamSoft Inc, O=RamSoft Inc, L=Toronto, S=Ontario, C=CA

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
7F1A7CAE4B25C5522370367CAF42FC11

File PE Metadata
Compilation timestamp:
6/22/2015 2:02:42 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
786432:OAfE6yoP0YmpgoeUOwIgHFijtdvZ1tdNLHD4bpf:OT6yoPIg3UOwIgHEtdPtdNLHDMh

Entry address:
0x2022618

Entry point:
55, 8B, EC, B9, 05, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 53, B8, 88, B7, 3C, 02, E8, EA, E9, FE, FD, 33, C0, 55, 68, 4D, 29, 42, 02, 64, FF, 30, 64, 89, 20, A1, 18, A4, 7D, 00, E8, C2, 88, 3B, FE, 50, 8B, 15, B4, 77, 4A, 02, 8B, 12, 8D, 45, E8, B9, 68, 29, 42, 02, E8, D8, A0, FE, FD, 8B, 55, E8, 58, E8, 8F, 8F, 3B, FE, 8D, 45, EC, BA, 90, 29, 42, 02, E8, BA, 90, FE, FD, B3, 01, 33, C0, 55, 68, BA, 26, 42, 02, 64, FF, 30, 64, 89, 20, 8B, 45, EC, 50, 53, A1, 18, A4, 7D, 00, E8, 77, 88, 3B, FE, 8B, 0D, D0...
 
[+]

Entropy:
6.5876

Developed / compiled with:
Microsoft Visual C++

Code size:
32.1 MB (33,692,160 bytes)

Scan prviewer.exe - Powered by Reason Core Security