× Cookie が無効になっています。 このサイトを正しく動作させるには、Cookie を有効にする必要があります
SHA256: 244696af41f9c3b6a33906a8bab7476cfa8e58f17e74672d87b68fb04e060b5a
ファイル名: Skype-8.38.0.138.exe
検出率: 0 / 68
分析日時: 2019-01-31 13:58:03 UTC (2 週間, 2 日前) 最新を表示
ウイルス対策ソフト 結果 更新日
Acronis 20190130
Ad-Aware 20190131
AegisLab 20190131
AhnLab-V3 20190131
Alibaba 20180921
ALYac 20190131
Antiy-AVL 20190131
Arcabit 20190131
Avast 20190131
Avast-Mobile 20190131
AVG 20190131
Avira (no cloud) 20190131
Babable 20180918
Baidu 20190131
BitDefender 20190131
Bkav 20190130
CAT-QuickHeal 20190131
ClamAV 20190131
CMC 20190131
Comodo 20190131
CrowdStrike Falcon (ML) 20181023
Cybereason 20190109
Cylance 20190131
Cyren 20190131
DrWeb 20190131
eGambit 20190131
Emsisoft 20190131
Endgame 20181108
ESET-NOD32 20190131
F-Prot 20190131
F-Secure 20190131
Fortinet 20190131
GData 20190131
Ikarus 20190131
Sophos ML 20181128
Jiangmin 20190131
K7AntiVirus 20190131
K7GW 20190131
Kaspersky 20190131
Kingsoft 20190131
Malwarebytes 20190131
MAX 20190131
McAfee 20190131
McAfee-GW-Edition 20190131
Microsoft 20190131
eScan 20190131
NANO-Antivirus 20190131
Palo Alto Networks (Known Signatures) 20190131
Panda 20190131
Qihoo-360 20190131
Rising 20190131
SentinelOne (Static ML) 20190124
Sophos AV 20190131
SUPERAntiSpyware 20190130
Symantec 20190131
TACHYON 20190131
Tencent 20190131
TheHacker 20190129
Trapmine 20190123
TrendMicro-HouseCall 20190131
Trustlook 20190131
VBA32 20190131
VIPRE 20190131
ViRobot 20190131
Webroot 20190131
Yandex 20190129
Zillya 20190130
ZoneAlarm by Check Point 20190131
Zoner 20190128
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
Authenticode signature block and FileVersionInfo properties
Copyright
(c) 2019 Skype and/or Microsoft

Product Skype
File version 8.38.0.138
Description Skype Setup
Comments This installation was built with Inno Setup.
Signature verification Signed file, verified signature
Signing date 1:11 AM 1/26/2019
Signers
[+] Skype Software Sarl
Status Valid
Issuer Microsoft Code Signing PCA 2011
Valid from 07:07 PM 06/06/2018
Valid to 07:07 PM 05/29/2019
Valid usage Code Signing
Algorithm sha256RSA
Thumbprint 0233B2BFDEB37561B67318D82AC4FBA9F89FA6A9
Serial number 33 00 00 00 F4 84 EF DD 70 78 83 23 6F 00 00 00 00 00 F4
[+] Microsoft Code Signing PCA 2011
Status Valid
Issuer Microsoft Root Certificate Authority 2011
Valid from 08:59 PM 07/08/2011
Valid to 09:09 PM 07/08/2026
Valid usage All
Algorithm sha256RSA
Thumbprint F252E794FE438E35ACE6E53762C0A234A2C52135
Serial number 61 0E 90 D2 00 00 00 00 00 03
[+] Microsoft Root Certificate Authority 2011
Status Valid
Issuer Microsoft Root Certificate Authority 2011
Valid from 10:05 PM 03/22/2011
Valid to 10:13 PM 03/22/2036
Valid usage All
Algorithm sha256RSA
Thumbprint 8F43288AD272F3103B6FB1428485EA3014C0BCFE
Serial number 3F 8B C8 B5 FC 9F B2 96 43 B5 69 D6 6C 42 E1 44
Counter signers
[+] Microsoft Time-Stamp Service
Status Valid
Issuer Microsoft Time-Stamp PCA 2010
Valid from 09:14 PM 10/24/2018
Valid to 09:14 PM 01/10/2020
Valid usage Timestamp Signing
Algorithm sha256RSA
Thumbrint 0F1747C27BD60337C25AD39BF3C85B9BF5569A91
Serial number 33 00 00 00 F6 AC CF 76 2A 73 74 9A DA 00 00 00 00 00 F6
[+] Microsoft Time-Stamp PCA 2010
Status Valid
Issuer Microsoft Root Certificate Authority 2010
Valid from 09:36 PM 07/01/2010
Valid to 09:46 PM 07/01/2025
Valid usage All
Algorithm sha256RSA
Thumbrint 2AA752FE64C49ABE82913C463529CF10FF2F04EE
Serial number 61 09 81 2A 00 00 00 00 00 02
[+] Microsoft Root Certificate Authority 2010
Status Valid
Issuer Microsoft Root Certificate Authority 2010
Valid from 09:57 PM 06/23/2010
Valid to 10:04 PM 06/23/2035
Valid usage All
Algorithm sha256RSA
Thumbrint 3B1EFD3A66EA28B16697394703A72CA340A05BD5
Serial number 28 CC 3A 25 BF BA 44 AC 44 9A 9B 58 6B 43 39 AA
Packers identified
F-PROT INNO, appended
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2018-06-14 13:27:46
Entry Point 0x0001181C
Number of sections 8
PE sections
Overlays
MD5 c33d86b3026dbf5319424d8ef6c8c36b
File type data
Offset 404480
Size 63522176
Entropy 8.00
PE imports
RegCloseKey
OpenProcessToken
RegOpenKeyExW
AdjustTokenPrivileges
LookupPrivilegeValueW
RegQueryValueExW
InitCommonControls
GetLastError
GetStdHandle
GetUserDefaultLangID
GetSystemInfo
GetModuleFileNameW
WaitForSingleObject
GetVersionExW
FreeLibrary
QueryPerformanceCounter
GetTickCount
GetThreadLocale
VirtualProtect
GetFileAttributesW
RtlUnwind
lstrlenW
GetExitCodeProcess
CreateProcessW
GetStartupInfoA
SizeofResource
GetWindowsDirectoryW
LocalAlloc
LockResource
GetDiskFreeSpaceW
GetCommandLineW
SetErrorMode
UnhandledExceptionFilter
LoadLibraryExW
MultiByteToWideChar
EnumCalendarInfoW
GetCPInfo
DeleteFileW
GetProcAddress
InterlockedCompareExchange
GetLocaleInfoW
lstrcpynW
RaiseException
WideCharToMultiByte
RemoveDirectoryW
SetFilePointer
GetSystemDirectoryW
GetFullPathNameW
ReadFile
GetEnvironmentVariableW
InterlockedExchange
CreateDirectoryW
WriteFile
GetCurrentProcess
CloseHandle
FindFirstFileW
GetACP
GetModuleHandleW
SignalObjectAndWait
SetEvent
FormatMessageW
LoadLibraryW
CreateEventW
GetVersion
LoadResource
FindResourceW
CreateFileW
VirtualQuery
VirtualFree
FindClose
TlsGetValue
Sleep
SetEndOfFile
TlsSetValue
ExitProcess
GetCurrentThreadId
VirtualAlloc
GetFileSize
SetLastError
ResetEvent
SysReAllocStringLen
SysFreeString
SysAllocStringLen
GetSystemMetrics
SetWindowLongW
MessageBoxW
PeekMessageW
LoadStringW
MessageBoxA
CreateWindowExW
MsgWaitForMultipleObjects
TranslateMessage
CharUpperBuffW
CallWindowProcW
CharNextW
GetKeyboardType
ExitWindowsEx
DispatchMessageW
DestroyWindow
Number of PE resources by type
RT_STRING 6
RT_ICON 5
RT_RCDATA 4
RT_MANIFEST 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
NEUTRAL 9
ENGLISH US 9
PE resources
ExifTool file metadata
SubsystemVersion
5.0

Comments
This installation was built with Inno Setup.

LinkerVersion
2.25

ImageVersion
6.0

FileSubtype
0

FileVersionNumber
8.38.0.138

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

FileDescription
Skype Setup

ImageFileCharacteristics
No relocs, Executable, No line numbers, No symbols, Bytes reversed lo, 32-bit, Bytes reversed hi

CharacterSet
Windows, Latin1

InitializedDataSize
336896

EntryPoint
0x1181c

MIMEType
application/octet-stream

LegalCopyright
(c) 2019 Skype and/or Microsoft

FileVersion
8.38.0.138

TimeStamp
2018:06:14 14:27:46+01:00

FileType
Win32 EXE

PEType
PE32

ProductVersion
8.38

UninitializedDataSize
0

OSVersion
5.0

FileOS
Win32

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
Skype Technologies S.A.

CodeSize
66560

ProductName
Skype

ProductVersionNumber
8.38.0.138

FileTypeExtension
exe

ObjectFileType
Executable application

File identification
MD5 5c0afbd59656cb48b01bd9da668ff657
SHA1 1e26d368ea178e4e91ba7637a3a491ad1128b7b7
SHA256 244696af41f9c3b6a33906a8bab7476cfa8e58f17e74672d87b68fb04e060b5a
ssdeep
1572864:K2bLUolKX2YI3pTFuZ55VqmxR4ps7dAoHbIRM/C:KWKGYI3dQr5Q+4pGdxbyMa

authentihash 6b4e3694f98902222b526eaf0e6c10ad39b9675821980ed465a3e1a91baeba9c
imphash 20dd26497880c05caed9305b3c8b9109
File size 61.0 MB ( 63926656 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID Win32 Executable (generic) (35.7%)
Win16/32 Executable Delphi generic (16.4%)
OS/2 Executable (generic) (16.0%)
Generic Win/DOS Executable (15.8%)
DOS Executable Generic (15.8%)
Tags
peexe signed overlay

VirusTotal metadata
First submission 2019-01-30 22:04:45 UTC (2 週間, 3 日前)
Last submission 2019-02-05 15:19:21 UTC (1 週間, 4 日前)
ファイル名 Skype-8.38.0.138.exe
Skype-8.38.0.138.exe
Skype-8.38.0.138.exe
Skype-8.38.0.138.exe
skype_8.38.0.138.exe
target.exe
Skype-8.38.0.138.exe
target.exe
Skype-8.38.0.138.exe
Skype 8.38.0.138.exe
Skype-Setup.exe
Skype-8.38.0.138.exe
target.exe
Skype-Setup.exe
Skype-8.38.0.138.exe
コメントはありません. この項目について、VirusTotal コミュニティのメンバーはまだ誰もコメントしていません。是非、コメントしてください。

コメントを投稿してください...

?
コメントを投稿

サインインしていません。登録ユーザーのみがコメントを投稿できます。サインインして意見をお聞かせください。

投票はありません. この項目に対してまだ誰も投票していません。是非、投票してください。