× Cookie が無効になっています。 このサイトを正しく動作させるには、Cookie を有効にする必要があります
SHA256: 7788d5beac2ab535b7d9e597c34719ab062d75c5515289b6ee58c663a1ad0422
ファイル名: Skype-8.36.0.52.exe
検出率: 0 / 68
分析日時: 2018-12-12 16:59:05 UTC (5 ヶ月, 1 週間前) 最新を表示
ウイルス対策ソフト 結果 更新日
Ad-Aware 20181212
AegisLab 20181212
AhnLab-V3 20181212
Alibaba 20180921
ALYac 20181212
Antiy-AVL 20181212
Arcabit 20181212
Avast 20181212
Avast-Mobile 20181212
AVG 20181212
Avira (no cloud) 20181212
Babable 20180918
Baidu 20181207
BitDefender 20181212
Bkav 20181212
CAT-QuickHeal 20181211
ClamAV 20181212
CMC 20181212
Comodo 20181212
CrowdStrike Falcon (ML) 20181022
Cybereason 20180225
Cylance 20181212
Cyren 20181212
DrWeb 20181212
eGambit 20181212
Emsisoft 20181212
Endgame 20181108
ESET-NOD32 20181212
F-Prot 20181212
F-Secure 20181212
Fortinet 20181212
GData 20181212
Ikarus 20181212
Sophos ML 20181128
Jiangmin 20181212
K7AntiVirus 20181212
K7GW 20181212
Kaspersky 20181212
Kingsoft 20181212
Malwarebytes 20181212
MAX 20181212
McAfee 20181212
McAfee-GW-Edition 20181212
Microsoft 20181212
eScan 20181212
NANO-Antivirus 20181212
Palo Alto Networks (Known Signatures) 20181212
Panda 20181212
Qihoo-360 20181212
Rising 20181212
SentinelOne (Static ML) 20181011
Sophos AV 20181211
SUPERAntiSpyware 20181212
Symantec 20181212
Symantec Mobile Insight 20181207
TACHYON 20181212
Tencent 20181212
TheHacker 20181210
Trapmine 20181205
TrendMicro 20181212
TrendMicro-HouseCall 20181212
Trustlook 20181212
VBA32 20181212
VIPRE None
ViRobot 20181212
Webroot 20181212
Yandex 20181212
Zillya 20181211
ZoneAlarm by Check Point 20181212
Zoner 20181212
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
Authenticode signature block and FileVersionInfo properties
Copyright
(c) 2018 Skype and/or Microsoft

Product Skype
File version 8.36.0.52
Description Skype Setup
Comments This installation was built with Inno Setup.
Signature verification Signed file, verified signature
Signing date 8:51 PM 12/11/2018
Signers
[+] Skype Software Sarl
Status Valid
Issuer Microsoft Code Signing PCA 2011
Valid from 07:07 PM 06/06/2018
Valid to 07:07 PM 05/29/2019
Valid usage Code Signing
Algorithm sha256RSA
Thumbprint 0233B2BFDEB37561B67318D82AC4FBA9F89FA6A9
Serial number 33 00 00 00 F4 84 EF DD 70 78 83 23 6F 00 00 00 00 00 F4
[+] Microsoft Code Signing PCA 2011
Status Valid
Issuer Microsoft Root Certificate Authority 2011
Valid from 08:59 PM 07/08/2011
Valid to 09:09 PM 07/08/2026
Valid usage All
Algorithm sha256RSA
Thumbprint F252E794FE438E35ACE6E53762C0A234A2C52135
Serial number 61 0E 90 D2 00 00 00 00 00 03
[+] Microsoft Root Certificate Authority 2011
Status Valid
Issuer Microsoft Root Certificate Authority 2011
Valid from 11:05 PM 03/22/2011
Valid to 11:13 PM 03/22/2036
Valid usage All
Algorithm sha256RSA
Thumbprint 8F43288AD272F3103B6FB1428485EA3014C0BCFE
Serial number 3F 8B C8 B5 FC 9F B2 96 43 B5 69 D6 6C 42 E1 44
Counter signers
[+] Microsoft Time-Stamp Service
Status Valid
Issuer Microsoft Time-Stamp PCA 2010
Valid from 08:27 PM 08/23/2018
Valid to 09:27 PM 11/23/2019
Valid usage Timestamp Signing
Algorithm sha256RSA
Thumbrint 9E911B257F1761647958DE151C4CBAEFB6912894
Serial number 33 00 00 00 E9 3B D1 B7 5B 8E 4B B9 EC 00 00 00 00 00 E9
[+] Microsoft Time-Stamp PCA 2010
Status Valid
Issuer Microsoft Root Certificate Authority 2010
Valid from 09:36 PM 07/01/2010
Valid to 09:46 PM 07/01/2025
Valid usage All
Algorithm sha256RSA
Thumbrint 2AA752FE64C49ABE82913C463529CF10FF2F04EE
Serial number 61 09 81 2A 00 00 00 00 00 02
[+] Microsoft Root Certificate Authority 2010
Status Valid
Issuer Microsoft Root Certificate Authority 2010
Valid from 09:57 PM 06/23/2010
Valid to 10:04 PM 06/23/2035
Valid usage All
Algorithm sha256RSA
Thumbrint 3B1EFD3A66EA28B16697394703A72CA340A05BD5
Serial number 28 CC 3A 25 BF BA 44 AC 44 9A 9B 58 6B 43 39 AA
Packers identified
F-PROT INNO, appended
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2018-06-14 13:27:46
Entry Point 0x0001181C
Number of sections 8
PE sections
Overlays
MD5 8b0b300f5f24890e90e54bf0aceaa759
File type data
Offset 404480
Size 64812128
Entropy 8.00
PE imports
RegCloseKey
OpenProcessToken
RegOpenKeyExW
AdjustTokenPrivileges
LookupPrivilegeValueW
RegQueryValueExW
InitCommonControls
GetLastError
GetStdHandle
GetUserDefaultLangID
GetSystemInfo
GetModuleFileNameW
WaitForSingleObject
GetVersionExW
FreeLibrary
QueryPerformanceCounter
GetTickCount
GetThreadLocale
VirtualProtect
GetFileAttributesW
RtlUnwind
lstrlenW
GetExitCodeProcess
CreateProcessW
GetStartupInfoA
SizeofResource
GetWindowsDirectoryW
LocalAlloc
LockResource
GetDiskFreeSpaceW
GetCommandLineW
SetErrorMode
UnhandledExceptionFilter
LoadLibraryExW
MultiByteToWideChar
EnumCalendarInfoW
GetCPInfo
DeleteFileW
GetProcAddress
InterlockedCompareExchange
GetLocaleInfoW
lstrcpynW
RaiseException
WideCharToMultiByte
RemoveDirectoryW
SetFilePointer
GetSystemDirectoryW
GetFullPathNameW
ReadFile
GetEnvironmentVariableW
InterlockedExchange
CreateDirectoryW
WriteFile
GetCurrentProcess
CloseHandle
FindFirstFileW
GetACP
GetModuleHandleW
SignalObjectAndWait
SetEvent
FormatMessageW
LoadLibraryW
CreateEventW
GetVersion
LoadResource
FindResourceW
CreateFileW
VirtualQuery
VirtualFree
FindClose
TlsGetValue
Sleep
SetEndOfFile
TlsSetValue
ExitProcess
GetCurrentThreadId
VirtualAlloc
GetFileSize
SetLastError
ResetEvent
SysReAllocStringLen
SysFreeString
SysAllocStringLen
GetSystemMetrics
SetWindowLongW
MessageBoxW
PeekMessageW
LoadStringW
MessageBoxA
CreateWindowExW
MsgWaitForMultipleObjects
TranslateMessage
CharUpperBuffW
CallWindowProcW
CharNextW
GetKeyboardType
ExitWindowsEx
DispatchMessageW
DestroyWindow
Number of PE resources by type
RT_STRING 6
RT_ICON 5
RT_RCDATA 4
RT_MANIFEST 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
NEUTRAL 9
ENGLISH US 9
PE resources
ExifTool file metadata
SubsystemVersion
5.0

Comments
This installation was built with Inno Setup.

InitializedDataSize
336896

ImageVersion
6.0

ProductName
Skype

FileVersionNumber
8.36.0.52

UninitializedDataSize
0

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

ImageFileCharacteristics
No relocs, Executable, No line numbers, No symbols, Bytes reversed lo, 32-bit, Bytes reversed hi

CharacterSet
Windows, Latin1

LinkerVersion
2.25

FileTypeExtension
exe

MIMEType
application/octet-stream

Subsystem
Windows GUI

FileVersion
8.36.0.52

TimeStamp
2018:06:14 15:27:46+02:00

FileType
Win32 EXE

PEType
PE32

ProductVersion
8.36

FileDescription
Skype Setup

OSVersion
5.0

FileOS
Win32

LegalCopyright
(c) 2018 Skype and/or Microsoft

MachineType
Intel 386 or later, and compatibles

CompanyName
Skype Technologies S.A.

CodeSize
66560

FileSubtype
0

ProductVersionNumber
8.36.0.52

EntryPoint
0x1181c

ObjectFileType
Executable application

File identification
MD5 c4bfb4e4a78e4d4f315a46df8e14932f
SHA1 6bbec047d1a8f89ad118905322a918efae5eaeae
SHA256 7788d5beac2ab535b7d9e597c34719ab062d75c5515289b6ee58c663a1ad0422
ssdeep
1572864:R2BLUE+stA8/i1Pu5BopKHwPrF2KsLn8uLtNGidZkd8i:Rt8/oWhkSL8mtbg

authentihash 5a892b95a9c438817725980dd600ef4ab17e22d0b6f7606679e078e54c3d0609
imphash 20dd26497880c05caed9305b3c8b9109
File size 62.2 MB ( 65216608 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID Win32 Executable (generic) (35.7%)
Win16/32 Executable Delphi generic (16.4%)
OS/2 Executable (generic) (16.0%)
Generic Win/DOS Executable (15.8%)
DOS Executable Generic (15.8%)
Tags
peexe signed overlay

VirusTotal metadata
First submission 2018-12-12 01:23:45 UTC (5 ヶ月, 1 週間前)
Last submission 2019-03-09 10:24:24 UTC (2 ヶ月, 1 週間前)
ファイル名 Skype-8.36.0.52.exe
c884b497-79e2-4d46-bd6e-d4d9a727905e.exe
Skype-8.36.0.52.exe
Skype-Setup.exe
Skype-Setup.exe
Skype-8.36.0.52.exe
7788D5BEAC2AB535B7D9E597C34719AB062D75C5515289B6EE58C663A1AD0422.exe
skype_8.36.0.52.exe
Skype-8.36.0.52.exe
Skype_v8.36.0.52.exe
Skype-Setup.exe
Skype-Setup.exe
Skype-Setup.exe
Skype-Setup.exe
Skype-Setup.exe
Skype-8.36.0.52.exe
Skype-8.36.0.52.exe
コメントはありません. この項目について、VirusTotal コミュニティのメンバーはまだ誰もコメントしていません。是非、コメントしてください。

コメントを投稿してください...

?
コメントを投稿

サインインしていません。登録ユーザーのみがコメントを投稿できます。サインインして意見をお聞かせください。

投票はありません. この項目に対してまだ誰も投票していません。是非、投票してください。