capturewiz.exe

CaptureWizPro

PixelMetrics

Publisher:
PixelMetrics  (signed and verified)

Product:
CaptureWizPro

Description:
CaptureWiz Pro application file

Version:
5.4.3.0

MD5:
d5db32f1be49e1b89ddcc0ed76cb263b

SHA-1:
abb0180f4a5e98918bbe4f049fdc7d7b83889d55

SHA-256:
92eb9d2b7b5a63a9732645c55f421c96078c2af5d7f140c7ef297ca11094b973

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/8/2024 7:52:22 AM UTC  (today)

File size:
4.9 MB (5,187,184 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © PixelMetrics 2000-2015

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\capturewiz.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
2/25/2015 12:00:00 AM

Valid to:
2/25/2020 11:59:59 PM

Subject:
CN=PixelMetrics, O=PixelMetrics, STREET=2250 S Joliet Way, L=Aurora, S=CO, PostalCode=80014, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
774A8157A4C3AA02779E33FFBEED5820

File PE Metadata
Compilation timestamp:
8/30/2015 4:33:01 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:6Rnp8XSS20tXBc9Kl9WagRRyuwCMZE1a2jcK3PY0Atb4yRDFQUwjaPG2aK8rMbTk:6rkYKlzIRy1ZsUtbLRiUaKwMNbu

Entry address:
0x329BCC

Entry point:
55, 8B, EC, B9, 05, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, B8, C0, B3, 71, 00, E8, 2B, 16, CE, FF, 33, C0, 55, 68, 4B, 9E, 72, 00, 64, FF, 30, 64, 89, 20, A1, 44, 64, 73, 00, 8B, 00, E8, 11, 1F, DF, FF, 8D, 55, E8, B8, 01, 00, 00, 00, E8, 0C, AB, CD, FF, 8B, 45, E8, 8D, 55, EC, E8, 05, B5, CE, FF, 8B, 55, EC, B8, 6C, EF, 7B, 00, E8, B4, D9, CD, FF, 33, C0, 55, 68, 29, 9E, 72, 00, 64, FF, 30, 64, 89, 20, A1, 6C, EF, 7B, 00, BA, 64, 9E, 72, 00, E8, 1F, E1, CD, FF, 75, 2E, A1, 44, 64, 73, 00, 8B, 00, BA, 7C...
 
[+]

Entropy:
6.3528

Developed / compiled with:
Microsoft Visual C++

Code size:
3.2 MB (3,310,592 bytes)

Scan capturewiz.exe - Powered by Reason Core Security