tmp0000aa1c

Microsoft Skype

Baltimore

Publisher:
Microsoft Corporation  (signed by Baltimore)

Product:
Microsoft® Skype

Description:
Microsoft Skype

Version:
10.1.2123.10

MD5:
a5d5e4073256076b8fc58067fe838952

SHA-1:
65f11e06a8b0e5054ddf79bc2020ba19b44b03c4

SHA-256:
42f56eff9cac53135d6558ea271413fa02de6e4f24dd1b0f0ccf118cc1d9ba8f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/16/2024 10:38:35 AM UTC  (today)

File size:
21.5 MB (22,498,816 bytes)

Product version:
10.1.2123.10

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
SkyWrap.dll

Language:
English (United States)

Common path:
C:\windows\temp\ff2906b1-73dd-4bf6-8ea4-ba7874a85bf2\tmp000016a5\tmp0000aa1c

Digital Signature
Signed by:

Authority:
Baltimore

Valid from:
5/12/2000 9:46:00 PM

Valid to:
5/13/2025 2:59:00 AM

Subject:
CN=Baltimore CyberTrust Root, OU=CyberTrust, O=Baltimore, C=IE

Issuer:
CN=Baltimore CyberTrust Root, OU=CyberTrust, O=Baltimore, C=IE

Serial number:
020000B9

File PE Metadata
Compilation timestamp:
1/9/2016 2:31:05 AM

OS version:
6.2

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
196608:D/7rbJxnYY/rVTho3gD2cL539EPrcSJF4oP/ZYygAtVs6LXMzhyAgKYBd574x0EZ:rhhPyIArDF42eyz1XYYBd574i0oxIa

Entry address:
0xE0342E

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, B5, 0D, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, 07, 00, 00, 00, 83, C4, 0C, 5D, C2, 0C, 00, 6A, 10, 68, B8, 86, 69, 63, E8, D3, 0B, 00, 00, 33, C0, 40, 8B, F0, 89, 75, E4, 33, DB, 89, 5D, FC, 8B, 7D, 0C, 89, 3D, B0, C1, 6A, 63, 89, 45, FC, 85, FF, 75, 0C, 39, 3D, CC, E1, 78, 63, 0F, 84, D4, 00, 00, 00, 3B, F8, 74, 05, 83, FF, 02, 75, 38, A1, 64, 1F, 42, 63, 85, C0, 74, 0E, FF, 75, 10, 57, FF, 75, 08, FF, D0, 8B, F0, 89, 75, E4, 85, F6, 0F, 84, B1, 00, 00, 00...
 
[+]

Entropy:
6.8187

Developed / compiled with:
Microsoft Visual C++

Code size:
14.8 MB (15,552,000 bytes)

Scan tmp0000aa1c - Powered by Reason Core Security