tmp00009aa9

Microsoft Skype

Baltimore

Publisher:
Microsoft Corporation  (signed by Baltimore)

Product:
Microsoft® Skype

Description:
Microsoft Skype

Version:
10.1.2123.10

MD5:
d5d261dac31c2b52c7a17e1f24a26e75

SHA-1:
2a7d0a73e969c50fd4c7d0373e1c40b895345700

SHA-256:
3abb750a774e8b3d9b8a5532427620edecbc6dab4120c06788c84209f7a3a204

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 2:47:45 PM UTC  (today)

File size:
21.5 MB (22,515,712 bytes)

Product version:
10.1.2123.10

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
SkyWrap.dll

Language:
English (United States)

Common path:
C:\windows\temp\5e3b52af-b531-44a3-9463-bcf65f9dbe0f\tmp00000086\tmp00009aa9

Digital Signature
Signed by:

Authority:
Baltimore

Valid from:
5/12/2000 2:46:00 PM

Valid to:
5/12/2025 7:59:00 PM

Subject:
CN=Baltimore CyberTrust Root, OU=CyberTrust, O=Baltimore, C=IE

Issuer:
CN=Baltimore CyberTrust Root, OU=CyberTrust, O=Baltimore, C=IE

Serial number:
020000B9

File PE Metadata
Compilation timestamp:
1/8/2016 7:31:05 PM

OS version:
6.2

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
393216:70nm2EgrDhg5kmCY64NnJa4O7BTqeX9xIa:7kFrDhg5knYU4OBTnNxI

Entry address:
0xE0342E

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, B5, 0D, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, 07, 00, 00, 00, 83, C4, 0C, 5D, C2, 0C, 00, 6A, 10, 68, B8, 86, 41, 6B, E8, D3, 0B, 00, 00, 33, C0, 40, 8B, F0, 89, 75, E4, 33, DB, 89, 5D, FC, 8B, 7D, 0C, 89, 3D, B0, C1, 42, 6B, 89, 45, FC, 85, FF, 75, 0C, 39, 3D, CC, E1, 50, 6B, 0F, 84, D4, 00, 00, 00, 3B, F8, 74, 05, 83, FF, 02, 75, 38, A1, 64, 1F, 1A, 6B, 85, C0, 74, 0E, FF, 75, 10, 57, FF, 75, 08, FF, D0, 8B, F0, 89, 75, E4, 85, F6, 0F, 84, B1, 00, 00, 00...
 
[+]

Entropy:
6.8246

Developed / compiled with:
Microsoft Visual C++

Code size:
14.8 MB (15,552,000 bytes)

Scan tmp00009aa9 - Powered by Reason Core Security