unins000.exe

VOXX Accessories

This is the uninstaller utility registered in the Windows Control Panel for the program RCA Digital Voice Manager 7.1.6.0 by RCA. The file has been seen being downloaded from mg.mail.yahoo.com.
Publisher:
VOXX Accessories  (signed and verified)

Description:
Setup/Uninstall

Version:
51.52.0.0

MD5:
2c3bd00a5e6dbc318ecc4def382ac5b6

SHA-1:
b0c1970c0d86f68f8407d56c84d2f5dee78b8586

SHA-256:
6eb5b963afd012b6127f6547011494a11ed5fd68b0479768f42af0c94473fc39

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 2:27:18 PM UTC  (today)

File size:
706.8 KB (723,808 bytes)

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Digital Signature
Authority:
Thawte, Inc.

Valid from:
5/30/2012 5:00:00 PM

Valid to:
5/31/2013 4:59:59 PM

Subject:
CN=VOXX Accessories, O=VOXX Accessories, L=Indianapolis, S=Indiana, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
33A82219636B9F4D02BB60CEAE1DA1F5

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:khu7eEcdCP8trP837szHUA6JCzS9Ntc3l3ER6orNjURfrmDEx9Dw:Gu7eEYCP8trP837szHUA60SLtcV3E9O6

Entry address:
0x98578

Entry point:
55, 8B, EC, 83, C4, F4, 53, 56, 57, E8, BE, AD, F6, FF, E8, 15, D1, F6, FF, E8, A4, DD, F6, FF, E8, BF, 13, F7, FF, E8, EE, 15, F7, FF, E8, C5, 83, F7, FF, E8, 38, 84, F7, FF, E8, 8F, A3, F7, FF, E8, A2, 0A, F8, FF, E8, 9D, C9, F8, FF, E8, 60, 71, F9, FF, E8, 47, 84, F9, FF, E8, 92, 71, FB, FF, E8, 35, 76, FB, FF, E8, 34, 7E, FB, FF, E8, 13, 92, FB, FF, E8, 06, AC, FB, FF, E8, 11, E9, FB, FF, E8, 14, F8, FB, FF, E8, 4F, 10, FC, FF, E8, 76, C3, FC, FF, E8, A9, 4A, FD, FF, E8, 48, 05, FE, FF, E8, 0F, B4, FE...
 
[+]

Entropy:
6.5389

Developed / compiled with:
Microsoft Visual C++

Code size:
606 KB (620,544 bytes)

Program Uninstaller
Program name:
RCA Digital Voice Manager 7.1.6.0

Display publisher:
RCA

Uninstall string:
"C:\users\{user}\documents\rca digital voice manager\unins000.exe"


The file unins000.exe has been seen being distributed by the following URL.

https://mg.mail.yahoo.com/.../download?m=YaDownload&mid=2_0_0_3_15321_AKh2imIAAA vU5sLGvC9wCOVyYw&fid=Draft&pid=2&clean=0&appid=YahooMailNeo

Scan unins000.exe - Powered by Reason Core Security