Skype.exe

Skype

Skype Technologies SA

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Skype’.
Publisher:
Skype Technologies S.A.  (signed by Skype Technologies SA)

Product:
Skype

Description:
Skype

Version:
4.0.0.166

MD5:
05105517956c583ea9858205829d6ddc

SHA-1:
4de9e4e1dcec6dfd98b11cd637456878a79757eb

SHA-256:
4e4c7e626bb23b35579482fefef7fcde8326b474d3ba1a4aed8e7cb09c47e80e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 2:15:57 AM UTC  (today)

File size:
24.4 MB (25,565,992 bytes)

Product version:
4.0

Copyright:
(c) Skype Technologies S.A.

Original file name:
Skype.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\skype.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/26/2008 3:00:00 AM

Valid to:
5/27/2009 2:59:59 AM

Subject:
CN=Skype Technologies SA, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Skype Technologies SA, L=Luxembourg, S=Luxembourg, C=LU

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
06C0599FAFE4ABDC4862844F25055EE6

File PE Metadata
Compilation timestamp:
9/25/2008 10:55:22 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
393216:nwXJ1SGlqf6ncGpPzYPHCzAbrwm+W6aY7Ec:nwNlE6cG+vCzMcW6rj

Entry address:
0x11C738

Entry point:
EB, 57, BA, 04, 77, 77, 77, 52, B9, D4, C7, 51, 00, B8, 59, C7, 51, 00, 29, C1, BB, 03, 77, 77, 77, 30, 1C, 01, C1, C3, 03, E2, F8, 5A, 31, C9, BB, 41, 40, 39, 38, 81, FA, 38, C7, 51, 00, 75, 05, BA, 68, C9, 51, 00, 52, 68, A0, 8E, 9E, 8B, 52, 68, 31, A2, 31, 01, FF, 32, E8, 63, FF, FF, FF, 5A, 89, 02, 81, FA, 05, 77, 77, 77, 74, 05, 83, C2, 04, EB, D0, E8, EE, 00, 00, 00, 84, C0, 74, 1C, 6A, 00, FF, 35, 10, 82, DE, 00, FF, 35, 14, 82, DE, 00, 6A, 00, E8, 91, CB, EE, FF, 6A, 01, E8, 92, BE, EE, FF, BA, 01...
 
[+]

Entropy:
7.2961

Code size:
9.8 MB (10,280,960 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Skype

Command:
"C:\Program Files\skype\phone\skype.exe" \nosplash \minimized


Scan Skype.exe - Powered by Reason Core Security