× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: bef24ed99600d080f4a657985dd7ce1cf33096e4572038b6a1d059199a775763
File name: PDF OCR X Community Edition 2.0.8 Setup.exe
Detection ratio: 0 / 55
Analysis date: 2016-02-05 19:04:52 UTC ( 3 years, 1 month ago ) View latest
Antivirus Result Update
Ad-Aware 20160205
AegisLab 20160205
Yandex 20160205
AhnLab-V3 20160205
Alibaba 20160204
ALYac 20160205
Antiy-AVL 20160205
Arcabit 20160205
Avast 20160205
AVG 20160207
Avira (no cloud) 20160205
Baidu-International 20160205
BitDefender 20160205
Bkav 20160204
ByteHero 20160206
CAT-QuickHeal 20160205
ClamAV 20160204
CMC 20160205
Comodo 20160205
Cyren 20160205
DrWeb 20160205
Emsisoft 20160205
ESET-NOD32 20160205
F-Prot 20160129
F-Secure 20160205
Fortinet 20160205
GData 20160205
Ikarus 20160205
Jiangmin 20160205
K7AntiVirus 20160205
K7GW 20160205
Kaspersky 20160205
Malwarebytes 20160205
McAfee 20160205
McAfee-GW-Edition 20160205
Microsoft 20160205
eScan 20160205
NANO-Antivirus 20160205
nProtect 20160205
Panda 20160205
Qihoo-360 20160206
Rising 20160205
Sophos AV 20160205
SUPERAntiSpyware 20160205
Symantec 20160205
Tencent 20160206
TheHacker 20160205
TotalDefense 20160205
TrendMicro 20160205
TrendMicro-HouseCall 20160205
VBA32 20160204
VIPRE 20160205
ViRobot 20160205
Zillya 20160205
Zoner 20160205
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
Authenticode signature block and FileVersionInfo properties
Copyright
Copyright (c) 2008-2013 Web Lite Solutions Corp.

Product PDF OCR X Community Edition
File version
Description PDF OCR X Community Edition Setup
Comments This installation was built with Inno Setup.
Signature verification Certificate out of its validity period
Signers
[+] Web Lite Solutions Corp.
Status This certificate or one of the certificates in the certificate chain is not time valid.
Issuer VeriSign Class 3 Code Signing 2010 CA
Valid from 1:00 AM 10/25/2013
Valid to 12:59 AM 10/26/2014
Valid usage Code Signing
Algorithm sha1RSA
Thumbprint C55591DC4AE3CE316E07B57EAB07E462F22E3C6D
Serial number 37 1D 5C 80 AE 7E B5 6B C4 E4 D2 EF E0 54 CF 26
[+] VeriSign Class 3 Code Signing 2010 CA
Status Valid
Issuer VeriSign Class 3 Public Primary Certification Authority - G5
Valid from 1:00 AM 2/8/2010
Valid to 12:59 AM 2/8/2020
Valid usage Client Auth, Code Signing
Algorithm sha1RSA
Thumbprint 495847A93187CFB8C71F840CB7B41497AD95C64F
Serial number 52 00 E5 AA 25 56 FC 1A 86 ED 96 C9 D4 4B 33 C7
[+] VeriSign
Status Valid
Issuer VeriSign Class 3 Public Primary Certification Authority - G5
Valid from 1:00 AM 11/8/2006
Valid to 12:59 AM 7/17/2036
Valid usage Server Auth, Client Auth, Email Protection, Code Signing
Algorithm sha1RSA
Thumbprint 4EB6D578499B1CCF5F581EAD56BE3D9B6744A5E5
Serial number 18 DA D1 9E 26 7D E8 BB 4A 21 58 CD CC 6B 3B 4A
Packers identified
F-PROT INNO, appended
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2013-01-30 14:21:56
Entry Point 0x000113BC
Number of sections 8
PE sections
Overlays
MD5 90b7e2bb8744c218c882faed7b86ce64
File type data
Offset 484352
Size 49297192
Entropy 8.00
PE imports
RegCloseKey
OpenProcessToken
RegOpenKeyExW
AdjustTokenPrivileges
LookupPrivilegeValueW
RegQueryValueExW
InitCommonControls
GetLastError
GetStdHandle
GetUserDefaultLangID
GetSystemInfo
GetModuleFileNameW
WaitForSingleObject
GetVersionExW
FreeLibrary
QueryPerformanceCounter
GetTickCount
GetThreadLocale
VirtualProtect
GetFileAttributesW
RtlUnwind
lstrlenW
GetExitCodeProcess
CreateProcessW
GetStartupInfoA
SizeofResource
GetWindowsDirectoryW
LocalAlloc
LockResource
GetDiskFreeSpaceW
GetCommandLineW
SetErrorMode
UnhandledExceptionFilter
LoadLibraryExW
MultiByteToWideChar
EnumCalendarInfoW
GetCPInfo
DeleteFileW
GetProcAddress
InterlockedCompareExchange
GetLocaleInfoW
lstrcpynW
RaiseException
WideCharToMultiByte
RemoveDirectoryW
SetFilePointer
GetFullPathNameW
ReadFile
GetEnvironmentVariableW
InterlockedExchange
CreateDirectoryW
WriteFile
GetCurrentProcess
CloseHandle
FindFirstFileW
GetACP
GetModuleHandleW
SignalObjectAndWait
SetEvent
FormatMessageW
LoadLibraryW
CreateEventW
GetVersion
LoadResource
FindResourceW
CreateFileW
VirtualQuery
VirtualFree
FindClose
TlsGetValue
Sleep
SetEndOfFile
TlsSetValue
ExitProcess
GetCurrentThreadId
VirtualAlloc
GetFileSize
SetLastError
ResetEvent
SysReAllocStringLen
SysFreeString
SysAllocStringLen
GetSystemMetrics
SetWindowLongW
MessageBoxW
PeekMessageW
LoadStringW
MessageBoxA
CreateWindowExW
MsgWaitForMultipleObjects
TranslateMessage
CharUpperBuffW
CallWindowProcW
CharNextW
GetKeyboardType
ExitWindowsEx
DispatchMessageW
DestroyWindow
Number of PE resources by type
RT_ICON 6
RT_STRING 6
RT_RCDATA 4
RT_MANIFEST 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
ENGLISH US 10
NEUTRAL 9
PE resources
ExifTool file metadata
SubsystemVersion
5.0

Comments
This installation was built with Inno Setup.

InitializedDataSize
418304

ImageVersion
6.0

ProductName
PDF OCR X Community Edition

FileVersionNumber
0.0.0.0

UninitializedDataSize
0

LanguageCode
Neutral

FileFlagsMask
0x003f

ImageFileCharacteristics
No relocs, Executable, No line numbers, No symbols, Bytes reversed lo, 32-bit, Bytes reversed hi

CharacterSet
Unicode

LinkerVersion
2.25

FileTypeExtension
exe

MIMEType
application/octet-stream

Subsystem
Windows GUI

TimeStamp
2013:01:30 15:21:56+01:00

FileType
Win32 EXE

PEType
PE32

ProductVersion
2.0.8

FileDescription
PDF OCR X Community Edition Setup

OSVersion
5.0

FileOS
Win32

LegalCopyright
Copyright (c) 2008-2013 Web Lite Solutions Corp.

MachineType
Intel 386 or later, and compatibles

CompanyName
Web Lite Solutions Corp.

CodeSize
65024

FileSubtype
0

ProductVersionNumber
0.0.0.0

EntryPoint
0x113bc

ObjectFileType
Executable application

File identification
MD5 2c33890783bc69dfc3012614f742f338
SHA1 4199641ab2211053e86c382031bed2276d0bc9b6
SHA256 bef24ed99600d080f4a657985dd7ce1cf33096e4572038b6a1d059199a775763
ssdeep
786432:YVkLhSOp8TNDAwM1mCWOcaaMQKDdr4gQ0peev/zqolAC94Yz0/yT2E7VkCW1nuIl:vhSy+DNyyaapwVQ0pzvrLlAi4qiES1Rl

authentihash 7c59476ce1da8fda4d946a9c73fd160a52456cb699e5c670cc18130c9ea5726b
imphash 48aa5c8931746a9655524f67b25a47ef
File size 47.5 MB ( 49781544 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID Win32 Executable (generic) (35.7%)
Win16/32 Executable Delphi generic (16.4%)
OS/2 Executable (generic) (16.0%)
Generic Win/DOS Executable (15.8%)
DOS Executable Generic (15.8%)
Tags
peexe signed overlay

VirusTotal metadata
First submission 2013-12-01 20:36:00 UTC ( 5 years, 3 months ago )
Last submission 2016-08-31 11:54:36 UTC ( 2 years, 6 months ago )
File names PDF OCR X Community Edition 2.0.8 Setup.exe
PDF OCR X Community Edition 2.0.8 Setup.exe
PDF OCR X Community Edition 2.0.8 Setup.exe
657454
PDF OCR X Community Edition 2.0.8 Setup.exe.part
PDF OCR X Community Edition 2.0.8 Setup.exe
PDF OCR X Community Edition 2.0.8 Setup.exe
PDF OCR X Community Edition 2.0.8 Setup.exe
BEF24ED99600D080F4A657985DD7CE1CF33096E4572038B6A1D059199A775763
PDF OCR X Community Edition 2.0.8 Setup.exe
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!