177835591_setup.exe

Skype

Skype Technologies SA

This is a setup and installation application. The file has been seen being downloaded from dls.nicdls.com and multiple other hosts.
Publisher:
Skype Technologies S.A.  (signed by Skype Technologies SA)

Product:
Skype

Description:
Skype

Version:
6.3.60.105

MD5:
c5001910be2d03d592f3342c07cd5960

SHA-1:
cec01c95f0f5cefdd6205d71766e314b4aeb924b

SHA-256:
584aa6d382d10a6e440666e8159719cab6a7f0ef37963247d00664f81c55f53d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/24/2024 3:11:47 PM UTC  (today)

File size:
29.2 MB (30,646,376 bytes)

Product version:
6.3

Copyright:
(c) Skype Technologies S.A.

Original file name:
SkypeSetup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\177835591_setup.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/18/2011 2:00:00 AM

Valid to:
8/18/2013 1:59:59 AM

Subject:
CN=Skype Technologies SA, OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=Information Security, O=Skype Technologies SA, L=Luxembourg, S=Luxembourg, C=LU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
200A7D1C4C0EF383111D1C1CE02C9608

File PE Metadata
Compilation timestamp:
2/28/2013 8:16:18 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
786432:HIrG1XPoT2p+XFcWFNzaB1M0ds3exVO4jLLkKu5:HIrgXP3sZmB+pWbkKu5

Entry address:
0x20768B0

Entry point:
60, BE, 00, 80, 78, 00, 8D, BE, 00, 90, C7, FF, 57, 89, E5, 8D, 9C, 24, 80, C1, FF, FF, 31, C0, 50, 39, DC, 75, FB, 46, 46, 53, 68, 4F, 46, 07, 02, 57, 83, C3, 04, 53, 68, AA, E8, CE, 01, 56, 83, C3, 04, 53, 50, C7, 03, 03, 00, 02, 00, 90, 90, 90, 90, 90, 55, 57, 56, 53, 83, EC, 7C, 8B, 94, 24, 90, 00, 00, 00, C7, 44, 24, 74, 00, 00, 00, 00, C6, 44, 24, 73, 00, 8B, AC, 24, 9C, 00, 00, 00, 8D, 42, 04, 89, 44, 24, 78, B8, 01, 00, 00, 00, 0F, B6, 4A, 02, 89, C3, D3, E3, 89, D9, 49, 89, 4C, 24, 6C, 0F, B6, 4A...
 
[+]

Code size:
28.9 MB (30,343,168 bytes)

The file 177835591_setup.exe has been discovered within the following program.

360Amigo is registry optimizer. 360Amigo System Speedup bundles a branded version of the Conduit Toolbar, designed to deliver search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar (on by default).
www.360amigo.com
53% remove it
 
Powered by Should I Remove It?

The file 177835591_setup.exe has been seen being distributed by the following 13 URLs.

http://dls.nicdls.com/p/108/SkypeSetupFull/.../491

http://s6134.chomikuj.pl/File.aspx?e=YrgHhde8sDa1u1GBC6_O4aEIBW5i4R6_0yJWJoPfDwpmk8X0A52wtaxJnM4d6vedLdHxBFZYBh_QiSFBjQJvT1fA7wbLrqAebTHj0O4181KGHGjYjyj8CsS_G2roJXP3k7wtzQVpN0Fi1fpvRHUVXA&pv=2

http://download.skype.com/7781251b62871315174c8fca7d5adca8/partner/.../SkypeSetupFull.exe