unins000.exe
- File Path:
C:\Program Files (x86)\Microsoft\Skype for Desktop\unins000.exe
- Description: Setup/Uninstall
Hashes
Type |
Hash |
MD5 |
C26D6DF4579EF884063859CE3879E798 |
SHA1 |
66C318CAF87388B109615D58CA3CFAB2FA45D4AD |
SHA256 |
1F038CDCEEA29CBE90255C9DA9F4A786BD8BF6FC75D1BFDBA7B6BC5181196E03 |
SHA384 |
59181B369A3C905B3D6EABBFB2FF449F7604079CA674A320C6892582CFE44ED9FF8886D78107C9170F94945D94E8AB56 |
SHA512 |
132AB81EF257D2CD3D1998544E8EC9584848DBBF08E01046DA023DD2DBBC0354458C94692CCE1EC262B0D9D1F8F39BE2155F627B0AAB6115C3F7110DF8BD3F6F |
SSDEEP |
24576:YnbbPImgK4brDi4IxgRqzwqNb+Yz73P2EMZbG0JEtXlCbWqx9q:uHeKh4nqzF3PYdStVCb7 |
IMP |
F62B90E31ECA404F228FCF7068B00F31 |
PESHA1 |
8AE1C348630D06FE8B6D1F165F84F1EF0A4308C5 |
PE256 |
FF797A2FECB43DCF835C6A7FCF7690C1E9AA35FCCBE0AA209DBE2F299A7F4617 |
Runtime Data
Child Processes:
_iu14D2N.tmp
Open Handles:
Path |
Type |
(R-D) C:\Windows\System32\en-US\KernelBase.dll.mui |
File |
(R-D) C:\Windows\System32\en-US\netmsg.dll.mui |
File |
(R-D) C:\Windows\SysWOW64\en-US\user32.dll.mui |
File |
(RW-) C:\Windows |
File |
(RW-) C:\Windows\SysWOW64 |
File |
(RW-) C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.488_none_11b1e5df2ffd8627 |
File |
\BaseNamedObjects\NLS_CodePage_1252_3_2_0_0 |
Section |
\BaseNamedObjects\NLS_CodePage_437_3_2_0_0 |
Section |
\Sessions\1\Windows\Theme2547664911 |
Section |
\Windows\Theme3854699184 |
Section |
Loaded Modules:
Path |
C:\Program Files (x86)\Microsoft\Skype for Desktop\unins000.exe |
C:\Windows\SYSTEM32\ntdll.dll |
C:\Windows\System32\wow64.dll |
C:\Windows\System32\wow64cpu.dll |
C:\Windows\System32\wow64win.dll |
Signature
- Status: Signature verified.
- Serial:
330000017BB47778D9105DF03500000000017B
- Thumbprint:
BEEAE4260DF5E82B6339FC4E31EF525A26A17AD0
- Issuer: CN=Microsoft Code Signing PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Subject: CN=Skype Software Sarl, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
- Original Filename:
- Product Name:
- Company Name:
- File Version: 51.1052.0.0
- Product Version:
- Language: Language Neutral
- Legal Copyright:
- Machine Type: 32-bit
File Scan
- VirusTotal Detections: 0/71
- VirusTotal Link: https://www.virustotal.com/gui/file/1f038cdceea29cbe90255c9da9f4a786bd8bf6fc75d1bfdba7b6bc5181196e03/detection/
File Similarity (ssdeep match)
MIT License. Copyright (c) 2020-2021 Strontic.