× Cookie が無効になっています。 このサイトを正しく動作させるには、Cookie を有効にする必要があります
SHA256: a581f827f9c5950ce59bba1a4f47f242c15584344bbf0002fd1175b496ba3885
ファイル名: 2e42376b834735e2cd48de5b4467707b
検出率: 0 / 70
分析日時: 2019-02-06 09:51:32 UTC (1 週間, 3 日前) 最新を表示
ウイルス対策ソフト 結果 更新日
Acronis 20190130
Ad-Aware 20190205
AegisLab 20190206
AhnLab-V3 20190205
Alibaba 20180921
ALYac 20190205
Antiy-AVL 20190206
Arcabit 20190205
Avast 20190205
Avast-Mobile 20190206
AVG 20190205
Avira (no cloud) 20190205
Babable 20180917
Baidu 20190201
BitDefender 20190205
Bkav 20190201
CAT-QuickHeal 20190205
ClamAV 20190205
CMC 20190205
Comodo 20190206
CrowdStrike Falcon (ML) 20181023
Cybereason 20190109
Cylance 20190206
Cyren 20190205
DrWeb 20190205
eGambit 20190206
Emsisoft 20190205
Endgame 20181108
ESET-NOD32 20190205
F-Prot 20190205
F-Secure 20190205
Fortinet 20190206
GData 20190205
Ikarus 20190206
Sophos ML 20181128
Jiangmin 20190205
K7AntiVirus 20190205
K7GW 20190206
Kaspersky 20190206
Kingsoft 20190206
Malwarebytes 20190206
MAX 20190206
McAfee 20190205
McAfee-GW-Edition 20190205
Microsoft 20190205
eScan 20190205
NANO-Antivirus 20190205
Palo Alto Networks (Known Signatures) 20190206
Panda 20190205
Qihoo-360 20190206
Rising 20190205
SentinelOne (Static ML) 20190203
Sophos AV 20190205
SUPERAntiSpyware 20190130
Symantec 20190205
TACHYON 20190205
Tencent 20190206
TheHacker 20190203
TotalDefense 20190205
Trapmine 20190123
TrendMicro 20190206
TrendMicro-HouseCall 20190206
Trustlook 20190206
VBA32 20190206
VIPRE 20190202
ViRobot 20190205
Webroot 20190206
Yandex 20190206
Zillya 20190206
ZoneAlarm by Check Point 20190205
Zoner 20190205
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
Authenticode signature block and FileVersionInfo properties
Copyright
(c) 2019 Skype and/or Microsoft

Product Skype
File version 8.38.0.161
Description Skype Setup
Comments This installation was built with Inno Setup.
Signature verification Signed file, verified signature
Signing date 8:07 PM 2/2/2019
Signers
[+] Skype Software Sarl
Status Valid
Issuer Microsoft Code Signing PCA 2011
Valid from 07:07 PM 06/06/2018
Valid to 07:07 PM 05/29/2019
Valid usage Code Signing
Algorithm sha256RSA
Thumbprint 0233B2BFDEB37561B67318D82AC4FBA9F89FA6A9
Serial number 33 00 00 00 F4 84 EF DD 70 78 83 23 6F 00 00 00 00 00 F4
[+] Microsoft Code Signing PCA 2011
Status Valid
Issuer Microsoft Root Certificate Authority 2011
Valid from 08:59 PM 07/08/2011
Valid to 09:09 PM 07/08/2026
Valid usage All
Algorithm sha256RSA
Thumbprint F252E794FE438E35ACE6E53762C0A234A2C52135
Serial number 61 0E 90 D2 00 00 00 00 00 03
[+] Microsoft Root Certificate Authority 2011
Status Valid
Issuer Microsoft Root Certificate Authority 2011
Valid from 10:05 PM 03/22/2011
Valid to 10:13 PM 03/22/2036
Valid usage All
Algorithm sha256RSA
Thumbprint 8F43288AD272F3103B6FB1428485EA3014C0BCFE
Serial number 3F 8B C8 B5 FC 9F B2 96 43 B5 69 D6 6C 42 E1 44
Counter signers
[+] Microsoft Time-Stamp Service
Status Valid
Issuer Microsoft Time-Stamp PCA 2010
Valid from 08:26 PM 08/23/2018
Valid to 08:26 PM 11/23/2019
Valid usage Timestamp Signing
Algorithm sha256RSA
Thumbrint 80F5EB747D60EF7636A9BF1FEE2A8A4F3F1AA723
Serial number 33 00 00 00 CD A6 DB 38 AF BD 2D 41 00 00 00 00 00 00 CD
[+] Microsoft Time-Stamp PCA 2010
Status Valid
Issuer Microsoft Root Certificate Authority 2010
Valid from 09:36 PM 07/01/2010
Valid to 09:46 PM 07/01/2025
Valid usage All
Algorithm sha256RSA
Thumbrint 2AA752FE64C49ABE82913C463529CF10FF2F04EE
Serial number 61 09 81 2A 00 00 00 00 00 02
[+] Microsoft Root Certificate Authority 2010
Status Valid
Issuer Microsoft Root Certificate Authority 2010
Valid from 09:57 PM 06/23/2010
Valid to 10:04 PM 06/23/2035
Valid usage All
Algorithm sha256RSA
Thumbrint 3B1EFD3A66EA28B16697394703A72CA340A05BD5
Serial number 28 CC 3A 25 BF BA 44 AC 44 9A 9B 58 6B 43 39 AA
Packers identified
F-PROT INNO, appended
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2018-06-14 13:27:46
Entry Point 0x0001181C
Number of sections 8
PE sections
Overlays
MD5 45ef2ec9ea81bb04c090d5ff91cfcb98
File type data
Offset 404480
Size 63523040
Entropy 8.00
PE imports
RegCloseKey
OpenProcessToken
RegOpenKeyExW
AdjustTokenPrivileges
LookupPrivilegeValueW
RegQueryValueExW
InitCommonControls
GetLastError
GetStdHandle
GetUserDefaultLangID
GetSystemInfo
GetModuleFileNameW
WaitForSingleObject
GetVersionExW
FreeLibrary
QueryPerformanceCounter
GetTickCount
GetThreadLocale
VirtualProtect
GetFileAttributesW
RtlUnwind
lstrlenW
GetExitCodeProcess
CreateProcessW
GetStartupInfoA
SizeofResource
GetWindowsDirectoryW
LocalAlloc
LockResource
GetDiskFreeSpaceW
GetCommandLineW
SetErrorMode
UnhandledExceptionFilter
LoadLibraryExW
MultiByteToWideChar
EnumCalendarInfoW
GetCPInfo
DeleteFileW
GetProcAddress
InterlockedCompareExchange
GetLocaleInfoW
lstrcpynW
RaiseException
WideCharToMultiByte
RemoveDirectoryW
SetFilePointer
GetSystemDirectoryW
GetFullPathNameW
ReadFile
GetEnvironmentVariableW
InterlockedExchange
CreateDirectoryW
WriteFile
GetCurrentProcess
CloseHandle
FindFirstFileW
GetACP
GetModuleHandleW
SignalObjectAndWait
SetEvent
FormatMessageW
LoadLibraryW
CreateEventW
GetVersion
LoadResource
FindResourceW
CreateFileW
VirtualQuery
VirtualFree
FindClose
TlsGetValue
Sleep
SetEndOfFile
TlsSetValue
ExitProcess
GetCurrentThreadId
VirtualAlloc
GetFileSize
SetLastError
ResetEvent
SysReAllocStringLen
SysFreeString
SysAllocStringLen
GetSystemMetrics
SetWindowLongW
MessageBoxW
PeekMessageW
LoadStringW
MessageBoxA
CreateWindowExW
MsgWaitForMultipleObjects
TranslateMessage
CharUpperBuffW
CallWindowProcW
CharNextW
GetKeyboardType
ExitWindowsEx
DispatchMessageW
DestroyWindow
Number of PE resources by type
RT_STRING 6
RT_ICON 5
RT_RCDATA 4
RT_MANIFEST 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
NEUTRAL 9
ENGLISH US 9
PE resources
ExifTool file metadata
SubsystemVersion
5.0

Comments
This installation was built with Inno Setup.

LinkerVersion
2.25

ImageVersion
6.0

FileSubtype
0

FileVersionNumber
8.38.0.161

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

FileDescription
Skype Setup

ImageFileCharacteristics
No relocs, Executable, No line numbers, No symbols, Bytes reversed lo, 32-bit, Bytes reversed hi

CharacterSet
Windows, Latin1

InitializedDataSize
336896

EntryPoint
0x1181c

MIMEType
application/octet-stream

LegalCopyright
(c) 2019 Skype and/or Microsoft

FileVersion
8.38.0.161

TimeStamp
2018:06:14 14:27:46+01:00

FileType
Win32 EXE

PEType
PE32

ProductVersion
8.38

UninitializedDataSize
0

OSVersion
5.0

FileOS
Win32

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
Skype Technologies S.A.

CodeSize
66560

ProductName
Skype

ProductVersionNumber
8.38.0.161

FileTypeExtension
exe

ObjectFileType
Executable application

File identification
MD5 2e42376b834735e2cd48de5b4467707b
SHA1 f8fea4277b6f97f3ddc710c4b492f24a36e1c06d
SHA256 a581f827f9c5950ce59bba1a4f47f242c15584344bbf0002fd1175b496ba3885
ssdeep
1572864:s2+LUoljZxHkjwiZjrEozr7QzyTrBUN5awtL9Gtr:sVcwiZdiyTeN5oV

authentihash 34d65f12b70ed081e0f2816db994bc4d79b69a740601198d0ab692e455f2f880
imphash 20dd26497880c05caed9305b3c8b9109
File size 61.0 MB ( 63927520 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID Win32 Executable (generic) (35.7%)
Win16/32 Executable Delphi generic (16.4%)
OS/2 Executable (generic) (16.0%)
Generic Win/DOS Executable (15.8%)
DOS Executable Generic (15.8%)
Tags
peexe signed overlay

VirusTotal metadata
First submission 2019-02-05 16:15:08 UTC (1 週間, 4 日前)
Last submission 2019-02-13 18:48:08 UTC (3 日, 12 時間前)
ファイル名 Skype-8.38.0.161.exe
Skype 8.38.0.161.exe
Skype-8.38.0.161 (2).exe
SkypeInstaller.exe
SkypeInstaller.exe
Skype_v8.38.0.161.exe
Skype-Setup.exe
Skype-8.38.0.161.exe
SkypeSetupFull.exe
Skype-8.38.0.161 (1).exe
SkypeInstaller.exe
コメントはありません. この項目について、VirusTotal コミュニティのメンバーはまだ誰もコメントしていません。是非、コメントしてください。

コメントを投稿してください...

?
コメントを投稿

サインインしていません。登録ユーザーのみがコメントを投稿できます。サインインして意見をお聞かせください。

投票はありません. この項目に対してまだ誰も投票していません。是非、投票してください。