× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 482ccb78dcbd985755e30c5f0ac276a32e34222597a0ccb71fb9290987bed60f
File name: MinewaysMac416.zip
Detection ratio: 0 / 54
Analysis date: 2017-06-15 06:07:35 UTC ( 11 months, 1 week ago )
Antivirus Result Update
Ad-Aware 20170615
AegisLab 20170615
AhnLab-V3 20170615
Alibaba 20170615
ALYac 20170615
Arcabit 20170615
Avast 20170615
AVG 20170615
Avira (no cloud) 20170614
Baidu 20170615
BitDefender 20170615
Bkav 20170614
CAT-QuickHeal 20170615
ClamAV 20170615
CMC 20170614
Comodo 20170615
CrowdStrike Falcon (ML) 20170420
Cyren 20170615
DrWeb 20170615
Emsisoft 20170615
Endgame 20170614
ESET-NOD32 20170615
F-Prot 20170615
F-Secure 20170615
Fortinet 20170615
GData 20170615
Ikarus 20170614
Sophos ML 20170607
Jiangmin 20170615
K7AntiVirus 20170615
K7GW 20170614
Kaspersky 20170615
Kingsoft 20170615
Malwarebytes 20170615
McAfee 20170615
McAfee-GW-Edition 20170615
Microsoft 20170615
eScan 20170615
NANO-Antivirus 20170615
nProtect 20170615
Palo Alto Networks (Known Signatures) 20170615
Panda 20170614
Qihoo-360 20170615
Rising 20170615
SentinelOne (Static ML) 20170516
Sophos AV 20170615
SUPERAntiSpyware 20170615
Symantec 20170615
Symantec Mobile Insight 20170614
Tencent 20170615
TheHacker 20170615
Trustlook 20170615
VBA32 20170614
VIPRE 20170615
ViRobot 20170615
Webroot 20170615
WhiteArmor 20170614
Yandex 20170614
Zillya 20170614
ZoneAlarm by Check Point 20170615
Zoner 20170615
The file being studied is a compressed stream! More specifically, it is a ZIP file. It seems to be a bundled Mac OS X application.
Interesting properties
The studied file contains at least one Portable Executable.
The studied file contains at least one Mac OS X executable.
Contained files
Compression metadata
Contained files
14702
Uncompressed size
25030744
Highest datetime
2016-03-23 16:32:12
Lowest datetime
2015-10-22 13:52:58
Contained files by extension
h
124
nib
58
txt
28
jpg
16
sh
16
png
6
d/
3
_A
3
exe
2
d
2
os2
2
23/
2
pem
2
FAQ
2
pl
2
aix
2
23
1
Contained files by type
unknown
731
directory
127
Mac OS X Executable
82
script
35
XML
10
JPG
8
HTML
3
PNG
3
Portable Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
10

ZipCRC
0x00000000

FileType
ZIP

ZipCompression
None

ZipUncompressedSize
0

ZipCompressedSize
0

FileTypeExtension
zip

ZipFileName
Mineways.app/

ZipBitFlag
0

ZipModifyDate
2016:03:13 12:28:15

File identification
MD5 e4203c8291d2138bf276ef65350b49ca
SHA1 8ff80920c2d78aaaa0f0d3e510360abe9ccf03e0
SHA256 482ccb78dcbd985755e30c5f0ac276a32e34222597a0ccb71fb9290987bed60f
ssdeep
1572864:wv5EKvkfnDlyetykWOe6RuFYJqVeAz5SZ2ok1kAHuPMff7y8KNPKhebvs:o/khe6RxJqVeAAMjHuPMH7y8KNPKsbvs

File size 80.3 MB ( 84205817 bytes )
File type ZIP
Magic literal
Zip archive data, at least v1.0 to extract

TrID Konfabulator widget (29.6%)
foobar2000 component (29.6%)
Mozilla Archive Format (gen) (25.9%)
ZIP compressed archive (14.8%)
Tags
mac-app contains-pe contains-macho zip

VirusTotal metadata
First submission 2017-06-15 06:05:00 UTC ( 11 months, 1 week ago )
Last submission 2017-06-15 06:07:35 UTC ( 11 months, 1 week ago )
File names MinewaysMac416.zip
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Condensed report! The following is a condensed report of the behaviour of the file when executed in a controlled environment. The actions and events described were either performed by the file itself or by any other process launched by the executed file or subjected to code injection by the executed file.
Opened files
Read files
Written files
Moved files
Created processes
HTTP requests
DNS requests
TCP connections