× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 0afb5e6029be4d3dc5f7b7fa20d0e8f998624ca5a17fedcc636594abc54af9d9
File name: 94c3d11ad5dd15f7d09218068e232951
Detection ratio: 0 / 56
Analysis date: 2019-03-02 18:38:29 UTC ( 2 months, 2 weeks ago ) View latest
Antivirus Result Update
Acronis 20190222
Ad-Aware 20190302
AegisLab 20190302
AhnLab-V3 20190302
Alibaba 20180921
Antiy-AVL 20190302
Arcabit 20190302
Avast-Mobile 20190302
Avira (no cloud) 20190302
Babable 20180918
Baidu 20190215
BitDefender 20190302
Bkav 20190301
CAT-QuickHeal 20190228
ClamAV 20190302
CMC 20190302
Comodo 20190302
CrowdStrike Falcon (ML) 20190212
Cybereason 20190109
Cylance 20190302
Cyren 20190302
DrWeb 20190302
eGambit 20190302
Emsisoft 20190302
Endgame 20190215
ESET-NOD32 20190302
F-Prot 20190303
F-Secure 20190302
Fortinet 20190302
GData 20190302
Sophos ML 20181128
Jiangmin 20190302
K7AntiVirus 20190302
K7GW 20190302
Kaspersky 20190302
Kingsoft 20190302
Malwarebytes 20190302
MAX 20190302
McAfee 20190302
McAfee-GW-Edition 20190302
Microsoft 20190302
eScan 20190302
NANO-Antivirus 20190302
Palo Alto Networks (Known Signatures) 20190302
Panda 20190302
Qihoo-360 20190302
Rising 20190302
SentinelOne (Static ML) 20190203
Sophos AV 20190302
SUPERAntiSpyware 20190227
Symantec 20190302
Symantec Mobile Insight 20190220
TACHYON 20190302
Tencent 20190302
TheHacker 20190225
TotalDefense 20190302
Trapmine 20190301
TrendMicro 20190302
TrendMicro-HouseCall 20190302
Trustlook 20190302
VBA32 20190301
VIPRE None
ViRobot 20190302
Webroot 20190302
Yandex 20190301
Zillya 20190302
ZoneAlarm by Check Point 20190302
Zoner 20190302
The file being studied is a compressed stream! More specifically, it is a Google Chrome Extension file.
Interesting properties
The ZIP magic number has been left instead of substituting it with Cr24, this is perfectly legit.
Contained files
Compression metadata
Contained files
4
Uncompressed size
178174307
Highest datetime
1985-12-24 08:50:00
Lowest datetime
1985-12-24 08:50:00
Contained files by extension
apk
1
obb
1
png
1
Contained files by type
ZIP
2
JSON
1
PNG
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0x3766df06

FileType
ZIP

ZipCompression
None

ZipUncompressedSize
64059292

ZipCompressedSize
64059292

FileTypeExtension
zip

ZipFileName
com.rovio.baba.apk

ZipBitFlag
0x0008

ZipModifyDate
1985:12:24 08:50:00

File identification
MD5 94c3d11ad5dd15f7d09218068e232951
SHA1 fc6681714f23e4cf1a45cee9d036665aaa1d965f
SHA256 0afb5e6029be4d3dc5f7b7fa20d0e8f998624ca5a17fedcc636594abc54af9d9
ssdeep
3145728:7Q9BWrUsg46o25a6RVWC6JDeG2V79X0guev1CpyvFkB0gaSeO72911I+/C/JSVy5:7Q7Wdg4rmnPWCAehR9X0gL4pyvJRR6hv

File size 169.9 MB ( 178175007 bytes )
File type Google Chrome Extension
Magic literal
Zip archive data, at least v2.0 to extract

TrID ZIP compressed archive (80.0%)
PrintFox/Pagefox bitmap (var. P) (20.0%)
Tags
zipped crx

VirusTotal metadata
First submission 2019-03-02 18:38:29 UTC ( 2 months, 2 weeks ago )
Last submission 2019-03-27 08:37:18 UTC ( 1 month, 3 weeks ago )
File names angry-birds-2.apk
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!