retouche-photo.exe

Serif PhotoPlus X2

Serif (Europe) Ltd

This is a setup program which is used to install the application. The file has been seen being downloaded from tracking.publicidees.com and multiple other hosts.
Publisher:
Serif (Europe) Ltd., support@serif.co.uk  (signed by Serif (Europe) Ltd)

Product:
Serif PhotoPlus X2

Version:
1.0.0.0

MD5:
120c63d565281ead9d6e360f088d80fa

SHA-1:
40046cd7e51d6405b10d8222701f51edaf2a4ae8

SHA-256:
36a3b29f934e25fc74364e13e41bad9d7d223363ef536f2ad1f298e41b9fba69

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 10:14:41 PM UTC  (today)

File size:
239.4 MB (251,042,760 bytes)

Product version:
12.0.2.011

Copyright:
Serif PhotoPlus 12.0.2 © 2008 Serif (Europe) Ltd. Tous droits réservés.

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\retouche-photo.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/3/2008 2:00:00 AM

Valid to:
4/5/2010 1:59:59 AM

Subject:
CN=Serif (Europe) Ltd, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Serif (Europe) Ltd, L=Nottingham, S=Nottinghamshire, C=GB

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7D8705FE315951DA57A49341812D8318

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6291456:nZD2qWk1fdnYASZDcf+vCIwwrQKUkSE3GSIYsY7+f:ZzdnYASZQ2vYwikSDSIQKf

Entry address:
0x2EF4

Entry point:
55, 8B, EC, 83, C4, F4, B8, CC, 2E, 40, 00, E8, F8, EC, FF, FF, E8, 5B, F6, FF, FF, E8, 36, F5, FF, FF, E8, 11, E8, FF, FF, 90, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
8 KB (8,192 bytes)

The file retouche-photo.exe has been seen being distributed by the following 2 URLs.

Scan retouche-photo.exe - Powered by Reason Core Security