× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 272b738d6a0fcb81b274b04e343555bbace91ab99f3c4cd1d5de31613ee78910
File name: AdobePVXInstaller.dmg
Detection ratio: 0 / 60
Analysis date: 2018-06-19 03:31:02 UTC ( 11 months, 1 week ago )
Antivirus Result Update
Ad-Aware 20180619
AegisLab 20180619
AhnLab-V3 20180619
Alibaba 20180615
ALYac 20180619
Antiy-AVL 20180619
Arcabit 20180619
Avast 20180619
Avast-Mobile 20180619
AVG 20180619
Avira (no cloud) 20180619
AVware 20180618
Babable 20180406
Baidu 20180615
BitDefender 20180619
Bkav 20180619
CAT-QuickHeal 20180619
ClamAV 20180619
CMC 20180618
Comodo 20180619
CrowdStrike Falcon (ML) 20180530
Cybereason 20180225
Cylance 20180619
Cyren 20180619
DrWeb 20180619
eGambit 20180619
Emsisoft 20180619
Endgame 20180612
ESET-NOD32 20180619
F-Prot 20180619
F-Secure 20180619
Fortinet 20180619
GData 20180619
Ikarus 20180618
Sophos ML 20180601
Jiangmin 20180619
K7AntiVirus 20180618
K7GW 20180619
Kaspersky 20180619
Kingsoft 20180619
Malwarebytes 20180619
MAX 20180619
McAfee 20180619
McAfee-GW-Edition 20180619
Microsoft 20180619
eScan 20180619
NANO-Antivirus 20180619
Palo Alto Networks (Known Signatures) 20180619
Panda 20180618
Qihoo-360 20180619
Rising 20180618
SentinelOne (Static ML) 20180618
Sophos AV 20180618
SUPERAntiSpyware 20180618
Symantec 20180618
Symantec Mobile Insight 20180619
TACHYON 20180619
Tencent 20180619
TheHacker 20180613
TotalDefense 20180618
TrendMicro 20180619
TrendMicro-HouseCall 20180618
Trustlook 20180619
VBA32 20180618
VIPRE 20180619
ViRobot 20180618
Webroot 20180619
Yandex 20180618
Zillya 20180618
ZoneAlarm by Check Point 20180619
Zoner 20180619
The file being studied is an Apple Disk Image! More specifically it follows the Universal Disk Image Format, commonly found with the DMG extension.
File signature
Identifier com.adobe.elearning.oratemac
Format bundle with Mach-O thin (x86_64)
CDHash d60c14b05bbc371aade609d4bf2423fb7a28ffd5
Signature size 8523
Authority Developer ID Application: Adobe Systems, Inc.
Authority Developer ID Certification Authority
Authority Apple Root CA
Timestamp Mar 17, 2016, 8:11:56 PM
Info.plist entries 24
TeamIdentifier JQ525L2MZD
Signature verification Valid Signature
Signing Certificates
[+] Adobe Systems, Inc.
Status Valid
Issuer Apple Inc.
Valid from 07:37 PM 02/21/2012
Valid to 07:37 PM 02/21/2017
Valid usage Digital Signature, Code Signing
Algorithm sha256WithRSAEncryption
Thumbprint DE07213782FFA303B355BA8202EE36F772C714B3
Serial number 44 D6 43 40 D9 D9 81 9A
[+] Apple Inc.
Status Valid
Issuer Apple Inc.
Valid from 10:12 PM 02/01/2012
Valid to 10:12 PM 02/01/2027
Valid usage Digital Signature, Certificate Sign, CRL Sign
Algorithm sha256WithRSAEncryption
Thumbprint 3B166C3B7DC4B751C9FE2AFAB9135641E388E186
Serial number 18 7A A9 A8 C2 96 21 0C
[+] Apple Inc.
Status Valid
Issuer Apple Inc.
Valid from 09:40 PM 04/25/2006
Valid to 09:40 PM 02/09/2035
Valid usage Certificate Sign, CRL Sign
Algorithm sha1WithRSAEncryption
Thumbprint 611E5B662C593A08FF58D14AE22452D198DF6C60
Serial number 2
Main executable
Package path /Adobe-PVX-Installer.app/Contents/MacOS/Adobe-PVX-Installer
Detection ratio 0 / 54 when this report was generated
File size 1241120 Bytes
HFS File ID 81
DMG HFS Property List
CFBundleInfoDictionaryVersion 6.0
NSHumanReadableCopyright "Copyright � 2001-15 Adobe Systems Incorporated and its licensors. All rights reserved.\0"
DTXcodeBuild 5A3005
CFBundleGetInfoString 11,0,2,163, "Copyright � 2001-15 Adobe Systems Incorporated and its licensors. All rights reserved.\0"
CFBundleIdentifier com.adobe.elearning.oratemac
CFBundleLongVersionString 11,0,2,163
DTSDKName macosx10.8
DTSDKBuild 12F37
CFBundleShortVersionString 11,0,2,163
BuildMachineOSBuild 13F34
CFBundleExecutable Adobe-PVX-Installer
LSMinimumSystemVersion 10.7.0
CFBundleVersion 11,0,2,163
Principal Class NSApplication
CFBundleIconFile orate.icns
DTPlatformBuild 5A3005
Scriptable False
DTXcode 0502
CFBundleDevelopmentRegion English
LSApplicationCategoryType public.app-category.productivity
DTCompiler com.apple.compilers.llvm.clang.1_0
CFBundleSignature ORTE
DTPlatformVersion GM
CFBundlePackageType APPL
Contained Mac OS X executables
BLKX Table
Entry Attributes
Protective Master Boot Record (MBR : 0) 0x0050
GPT Header (Primary GPT Header : 1) 0x0050
GPT Partition Data (Primary GPT Table : 2) 0x0050
(Apple_Free : 3) 0x0050
disk image (Apple_HFS : 4) 0x0050
(Apple_Free : 5) 0x0050
GPT Partition Data (Backup GPT Table : 6) 0x0050
GPT Header (Backup GPT Header : 7) 0x0050
DMG XML Property List
Entry Attributes
ID:0 0x0050
DMG structural properties
DMG version
4
Data fork offset
0x0
Data fork length
5614678
Resource fork offset
0x0
Resource fork length
0
Resource fork keys
blkx, plst
Running data fork offset
0x0
XML offset
0x5614678
XML length
11351
PLST keys
resource-fork
File identification
MD5 b0383bcc696fc8e8b98b40965fecbe4b
SHA1 29d37c3a2b2b5a43a2bfd242892ffe6b2712ccad
SHA256 272b738d6a0fcb81b274b04e343555bbace91ab99f3c4cd1d5de31613ee78910
ssdeep
98304:0FrGyFPytrCOwUcMzL+N4Cb3ykqQVcoLIgQ6FgisANpTGGBTEM0nN/UT:orGyPytGVUcsxCb3y5QVcKQ6FTsANpT1

File size 5.4 MB ( 5626541 bytes )
File type Macintosh Disk Image
Magic literal
VAX COFF executable not stripped

TrID Macintosh Disk image (BZlib compressed) (97.6%)
ZLIB compressed data (var. 1) (2.3%)
Tags
dmg

VirusTotal metadata
First submission 2016-10-10 10:59:32 UTC ( 2 years, 7 months ago )
Last submission 2018-05-23 09:15:03 UTC ( 1 year ago )
File names AdobePVXInstaller.dmg
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Condensed report! The following is a condensed report of the behaviour of the file when executed in a controlled environment. The actions and events described were either performed by the file itself or by any other process launched by the executed file or subjected to code injection by the executed file.
Opened files
Read files
Written files
Moved files
Created processes
HTTP requests
DNS requests
TCP connections