unins000.exe
- File Path:
C:\Program Files\TeraCopy\unins000.exe
- Description: Setup/Uninstall
Hashes
Type |
Hash |
MD5 |
27C1EE5D11DFDE7E96ED56174C432ACF |
SHA1 |
A6CCFC60730A05E1EC89225C2F284A46FB2F0AA5 |
SHA256 |
7704A152B705AB0A1E4A605B590972D2B0CFE83D363E27CE846E847134135FCB |
SHA384 |
37B22EEF8C58086E7ADD10C537489379ED11506807143B750B334A8A01730A8FA7BA01D4C2775B6D1DE12E8182CF548B |
SHA512 |
1BA9FFFC197892A9981AF864FC956128EFC6D95CCF8BB672F354CEAB519A39AA29205CE3144B99635A276EAD6DDA6CCD2701DD0D620BC58464B4EC4F3ECBE404 |
SSDEEP |
24576:ltdAm9DUi/CR3wCkCiRgoG7hBaHkbEXXeG/jFt5lTxyts:LqTytRFk6ek1LZ |
IMP |
F62B90E31ECA404F228FCF7068B00F31 |
PESHA1 |
22D93FCFF5C9E0A4A749CE9DB759BC32440F0616 |
PE256 |
2ED4576D38CF9A3E7DA10C0E708B92C43D2FBF75941CF1A94C7CCA76868EC46E |
Runtime Data
Child Processes:
_iu14D2N.tmp
Open Handles:
Path |
Type |
(R-D) C:\Windows\System32\en-US\KernelBase.dll.mui |
File |
(R-D) C:\Windows\System32\en-US\netmsg.dll.mui |
File |
(R-D) C:\Windows\SysWOW64\en-US\user32.dll.mui |
File |
(RW-) C:\Windows |
File |
(RW-) C:\Windows\SysWOW64 |
File |
(RW-) C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.488_none_11b1e5df2ffd8627 |
File |
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 |
Section |
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 |
Section |
\Sessions\1\Windows\Theme2547664911 |
Section |
\Windows\Theme3854699184 |
Section |
Loaded Modules:
Path |
C:\Program Files\TeraCopy\unins000.exe |
C:\Windows\SYSTEM32\ntdll.dll |
C:\Windows\System32\wow64.dll |
C:\Windows\System32\wow64cpu.dll |
C:\Windows\System32\wow64win.dll |
Signature
- Status: Signature verified.
- Serial:
10EB1CAFF23CFA81BF0649EFD5024332
- Thumbprint:
8EFBA7200B7D9D7F891CB78897A848F2427F4DD4
- Issuer: CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB
- Subject: CN=Code Sector, O=Code Sector, STREET=506/78 Mountain St, STREET=Ultimo, L=Sydney, S=NSW, PostalCode=2007, C=AU
- Original Filename:
- Product Name:
- Company Name:
- File Version: 51.1052.0.0
- Product Version:
- Language: Language Neutral
- Legal Copyright:
- Machine Type: 32-bit
File Scan
- VirusTotal Detections: 0/67
- VirusTotal Link: https://www.virustotal.com/gui/file/7704a152b705ab0a1e4a605b590972d2b0cfe83d363e27ce846e847134135fcb/detection/
File Similarity (ssdeep match)
MIT License. Copyright (c) 2020-2021 Strontic.