× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 35c541cb0566d183008e97e672c693165cafe96b02409af6106341e4b8c39a56
File name: Mineways.zip
Detection ratio: 0 / 55
Analysis date: 2017-06-15 06:09:18 UTC ( 1 year, 2 months ago )
Antivirus Result Update
Ad-Aware 20170615
AegisLab 20170615
AhnLab-V3 20170615
Alibaba 20170615
ALYac 20170615
Arcabit 20170615
Avast 20170615
AVG 20170615
Avira (no cloud) 20170614
AVware 20170615
Baidu 20170615
BitDefender 20170615
Bkav 20170614
CAT-QuickHeal 20170615
ClamAV 20170615
CMC 20170614
Comodo 20170615
CrowdStrike Falcon (ML) 20170420
Cyren 20170615
DrWeb 20170615
Emsisoft 20170615
Endgame 20170614
ESET-NOD32 20170615
F-Prot 20170615
F-Secure 20170615
Fortinet 20170615
GData 20170615
Ikarus 20170614
Sophos ML 20170607
Jiangmin 20170615
K7AntiVirus 20170615
K7GW 20170614
Kingsoft 20170615
Malwarebytes 20170615
McAfee 20170615
McAfee-GW-Edition 20170615
Microsoft 20170615
eScan 20170615
NANO-Antivirus 20170615
nProtect 20170615
Palo Alto Networks (Known Signatures) 20170615
Panda 20170614
Qihoo-360 20170615
Rising 20170615
SentinelOne (Static ML) 20170516
Sophos AV 20170615
SUPERAntiSpyware 20170615
Symantec 20170615
Symantec Mobile Insight 20170614
Tencent 20170615
TheHacker 20170615
TrendMicro 20170615
Trustlook 20170615
VBA32 20170614
VIPRE 20170615
ViRobot 20170615
Webroot 20170615
WhiteArmor 20170614
Yandex 20170614
Zillya 20170614
ZoneAlarm by Check Point 20170615
Zoner 20170615
The file being studied is a compressed stream! More specifically, it is a ZIP file. It seems to be a bundled Mac OS X application.
Interesting properties
The studied file contains at least one Portable Executable.
The studied file contains at least one Mac OS X executable.
Contained files
Compression metadata
Contained files
15776
Uncompressed size
25070218
Highest datetime
2017-06-15 09:08:12
Lowest datetime
2015-12-14 16:25:58
Contained files by extension
h
119
nib
59
txt
28
jpg
16
sh
16
png
6
d/
3
_A
3
exe
2
d
2
os2
2
pem
2
23/
2
pl
2
FAQ
2
aix
2
23
1
Contained files by type
unknown
731
directory
127
Mac OS X Executable
82
script
35
XML
10
JPG
8
HTML
3
PNG
3
Portable Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
10

ZipCRC
0x00000000

FileType
ZIP

ZipCompression
None

ZipUncompressedSize
0

ZipCompressedSize
0

FileTypeExtension
zip

ZipFileName
Mineways.app/

ZipBitFlag
0

ZipModifyDate
2016:10:07 21:41:29

File identification
MD5 466ead71f1393731bbb7d0572e86e88a
SHA1 2dd8c2104ccd721c17c4953495935560983a043a
SHA256 35c541cb0566d183008e97e672c693165cafe96b02409af6106341e4b8c39a56
ssdeep
1572864:FI5EKvkV8oXfWmbvtyWADmkzJfHQ11vdlH6+nrHReQpuyALa+qljpYn44PjPPN:nbvt5ADRz92vDDDpuyAmFonH

File size 84.7 MB ( 88803064 bytes )
File type ZIP
Magic literal
Zip archive data, at least v1.0 to extract

TrID Konfabulator widget (29.6%)
foobar2000 component (29.6%)
Mozilla Archive Format (gen) (25.9%)
ZIP compressed archive (14.8%)
Tags
contains-macho contains-pe mac-app zip

VirusTotal metadata
First submission 2017-06-15 06:09:18 UTC ( 1 year, 2 months ago )
Last submission 2017-06-15 06:09:18 UTC ( 1 year, 2 months ago )
File names Mineways.zip
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Condensed report! The following is a condensed report of the behaviour of the file when executed in a controlled environment. The actions and events described were either performed by the file itself or by any other process launched by the executed file or subjected to code injection by the executed file.
Opened files
Read files
Written files
Created processes
HTTP requests
DNS requests
TCP connections