picpick.exe

PicPick

Wiziple software

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘PicPick Start’.
Publisher:
NGWIN  (signed by Wiziple software)

Product:
PicPick

Version:
4.0.9.0

MD5:
2ad3204c6be8f1680bb27e93a512fa14

SHA-1:
60282c6b7d8c9867374237e1eaa0287c8a0c65d9

SHA-256:
e053dfccaf6a3ff82ddf002fcd6757d64adbd1e0f6ca4fa4f17ec8088a190ff0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 6:21:22 AM UTC  (today)

File size:
19 MB (19,965,760 bytes)

Product version:
4.0.0.0

Original file name:
picpick.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\picpick\picpick.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/22/2013 2:00:00 AM

Valid to:
10/21/2016 1:59:59 AM

Subject:
CN=Wiziple software, OU=IT, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Wiziple software, L=Seoul, S=Seoul, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
018C76F7E4465E8C3EC45F082BEB6FEF

File PE Metadata
Compilation timestamp:
12/17/2015 2:26:06 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
393216:Q8vfF0tym4LCLvIsoMWRpJXM6SaziKIas4gbBSI3GX5Y3B97+:dvU2NXwgiRnFJ3sY3H7+

Entry address:
0x121DFF7

Entry point:
9C, 55, E8, F6, 86, 00, 00, C6, 64, 67, 71, 8E, C7, E5, F9, 5A, 6B, 34, 14, CA, 37, 35, 3D, 44, 8E, 95, BF, FD, FB, A0, 68, 64, 59, 51, 92, A5, D0, DF, F8, 3D, 3B, 32, 43, 0D, D6, EB, 47, 8A, 96, FB, DE, D9, 7D, BB, F1, 8F, EB, 16, B3, 46, 61, 9D, D5, CD, FC, E1, E1, 86, 51, 56, 07, 67, A6, A3, 9D, 94, 6C, 79, 67, B4, B5, 19, 3F, 90, 04, 69, 40, 79, AD, B5, 9F, 78, 69, 47, B3, 8C, E9, 44, 7D, 73, AA, AC, 4E, 69, 95, F2, F9, E1, D9, E4, 7A, 86, 54, 7A, A5, 5A, 67, 60, 9C, F4, 0B, 61, 20, F1, 8F, EB, 58, 49...
 
[+]

Entropy:
7.3374

Code size:
10.2 MB (10,678,784 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
PicPick Start

Command:
"C:\Program Files\picpick\picpick.exe" \startup


Scan picpick.exe - Powered by Reason Core Security