maduninstall.exe

Systemsoftware Mathias Rauen (Mathias Rauen)

This is the uninstaller utility registered in the Windows Control Panel for the program madshi's madCollection.
Publisher:

MD5:
b6a99444362fd244f324e71ee4fa33f3

SHA-1:
053176b324e637e279ca2825d89ffb5d259de884

SHA-256:
fb738f0fdcb7df48fde202d73d573d6d92be9f520181832a1288a61f7dfbb030

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 3:53:09 PM UTC  (today)

File size:
959.6 KB (982,640 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\madcollection\maduninstall.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
8/9/2012 1:02:35 AM

Valid to:
9/21/2013 6:10:32 PM

Subject:
E=madshi@gmail.com, CN=Systemsoftware Mathias Rauen (Mathias Rauen), O=Systemsoftware Mathias Rauen (Mathias Rauen), L=Hamburg, S=Hamburg, C=DE

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112119E468AD4DAA7C3DC40F38AC9697CE31

File PE Metadata
Compilation timestamp:
6/19/1992 11:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:OIIniWQc//////Wss2oBYORrgOE9peWU+2m9Is5vj2oPySOjPl/M9u:68c//////W6oBYnhl5OPjlk

Entry address:
0xBD0DC

Entry point:
55, 8B, EC, 83, C4, E8, 53, 56, 33, C0, 89, 45, EC, 89, 45, E8, B8, 84, CE, 4B, 00, E8, DE, 9B, F4, FF, 33, C0, 55, 68, 42, D3, 4B, 00, 64, FF, 30, 64, 89, 20, E8, 37, 5C, FF, FF, 68, 01, 80, 00, 00, E8, 19, A3, F4, FF, E8, 64, 59, F4, FF, 8B, D8, 83, EB, 02, 0F, 8C, 53, 01, 00, 00, 43, BE, 02, 00, 00, 00, BA, 1C, 4E, 4C, 00, 8B, C6, E8, A7, 59, F4, FF, B8, 1C, 4E, 4C, 00, BA, 58, D3, 4B, 00, E8, 74, B6, F4, FF, 83, 3D, 1C, 4E, 4C, 00, 00, 74, 3B, B8, 01, 00, 00, 00, 8B, 15, 1C, 4E, 4C, 00, 48, 85, D2, 74...
 
[+]

Entropy:
6.7133

Developed / compiled with:
Microsoft Visual C++

Code size:
753.5 KB (771,584 bytes)

Program Uninstaller
Program name:
madshi's madCollection

Uninstall string:
C:\Program Files\madCollection\madUninstall.exe


Scan maduninstall.exe - Powered by Reason Core Security