× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: bac5953442e815eb24f7bb845dacd729ea3a880e8953d06b9b89a75b1341e885
File name: Droid4XInstaller_0.5.0.zip
Detection ratio: 0 / 61
Analysis date: 2018-01-06 14:47:02 UTC ( 6 months, 1 week ago ) View latest
Antivirus Result Update
Ad-Aware 20180106
AegisLab 20180105
AhnLab-V3 20180106
Alibaba 20180105
ALYac 20180106
Antiy-AVL 20180106
Arcabit 20180106
Avast 20180106
Avast-Mobile 20180105
AVG 20180106
Avira (no cloud) 20180106
AVware 20180103
Baidu 20180105
BitDefender 20180106
Bkav 20180106
CAT-QuickHeal 20180105
ClamAV 20180106
CMC 20180106
Comodo 20180106
CrowdStrike Falcon (ML) 20171016
Cybereason 20171103
Cylance 20180106
Cyren 20180106
DrWeb 20180106
eGambit 20180106
Emsisoft 20180106
Endgame 20171130
ESET-NOD32 20180106
F-Prot 20180106
F-Secure 20180106
Fortinet 20180106
GData 20180106
Ikarus 20180106
Sophos ML 20170914
Jiangmin 20180106
K7AntiVirus 20180106
K7GW 20180106
Kaspersky 20180106
Kingsoft 20180106
Malwarebytes 20180106
MAX 20180106
McAfee 20180102
McAfee-GW-Edition 20180106
Microsoft 20180106
eScan 20180106
NANO-Antivirus 20180106
nProtect 20180106
Palo Alto Networks (Known Signatures) 20180106
Panda 20180106
Qihoo-360 20180106
Rising 20180106
SentinelOne (Static ML) 20171224
Sophos AV 20180106
SUPERAntiSpyware 20180106
Symantec 20180106
Tencent 20180106
TheHacker 20180103
TotalDefense 20180106
TrendMicro 20180106
TrendMicro-HouseCall 20180106
Trustlook 20180106
VBA32 20180105
VIPRE 20180106
ViRobot 20180106
Webroot 20180106
WhiteArmor 20171226
Yandex 20171229
Zillya 20180105
ZoneAlarm by Check Point 20180106
Zoner 20180106
The file being studied is a compressed stream! More specifically, it is a ZIP file. It seems to be a bundled Mac OS X application.
File signature
Identifier Haiyu.DXInst
Format bundle with Mach-O thin (x86_64)
CDHash 0ab38ed34172503791f6f03501a5adb515df9272
Signature size 8566
Authority Developer ID Application: Beijing HaiYu Technology Co., Ltd. (SEDZ663NMY)
Authority Developer ID Certification Authority
Authority Apple Root CA
Timestamp Nov 9, 2014, 7:00:27 AM
Info.plist entries 22
TeamIdentifier SEDZ663NMY
Signers
[+] Beijing HaiYu Technology Co., Ltd.
Status Valid
Issuer Apple Inc.
Valid from 03:55 AM 09/17/2014
Valid to 03:55 AM 09/18/2019
Valid usage Digital Signature, Code Signing
Algorithm sha256WithRSAEncryption
Thumbprint C8FBBA05A035EF48609B4A76A52C313E6DEEBB54
Serial number 8A 5B C6 7C A8 C4 38
[+] Apple Inc.
Status Valid
Issuer Apple Inc.
Valid from 10:12 PM 02/01/2012
Valid to 10:12 PM 02/01/2027
Valid usage Digital Signature, Certificate Sign, CRL Sign
Algorithm sha256WithRSAEncryption
Thumbprint 3B166C3B7DC4B751C9FE2AFAB9135641E388E186
Serial number 18 7A A9 A8 C2 96 21 0C
[+] Apple Inc.
Status Valid
Issuer Apple Inc.
Valid from 09:40 PM 04/25/2006
Valid to 09:40 PM 02/09/2035
Valid usage Certificate Sign, CRL Sign
Algorithm sha1WithRSAEncryption
Thumbprint 611E5B662C593A08FF58D14AE22452D198DF6C60
Serial number 2
Interesting properties
The studied file contains at least one Mac OS X executable.
Contained files
Compression metadata
Contained files
28
Uncompressed size
650864
Highest datetime
2014-11-09 15:00:28
Lowest datetime
2014-11-09 15:00:28
Contained files by extension
png
4
nib
2
rtf
2
dat
1
Contained files by type
unknown
11
directory
8
PNG
4
XML
2
RTF
2
Mac OS X Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
10

ZipCRC
0x00000000

FileType
ZIP

ZipCompression
None

ZipUncompressedSize
0

ZipCompressedSize
0

FileTypeExtension
zip

ZipFileName
Droid4XInstaller_0.5.0.app/

ZipBitFlag
0

ZipModifyDate
2014:11:09 15:00:28

File identification
MD5 f767b0a2fd19b9a8b95ea712fc22061f
SHA1 04b5f25393fd6987691ca7cacc9f5337e8357b61
SHA256 bac5953442e815eb24f7bb845dacd729ea3a880e8953d06b9b89a75b1341e885
ssdeep
12288:q1PaDIEvWzQjdxlRLb5HzkIKyNBXAPkvcovu/Iyvi0p:q1PanvWmlRCZyNBH0CGn

File size 467.9 KB ( 479144 bytes )
File type ZIP
Magic literal
Zip archive data, at least v1.0 to extract

TrID ZIP compressed archive (80.0%)
PrintFox/Pagefox bitmap (var. P) (20.0%)
Tags
contains-macho mac-app zip

VirusTotal metadata
First submission 2017-02-14 13:01:05 UTC ( 1 year, 5 months ago )
Last submission 2018-05-22 23:16:03 UTC ( 1 month, 3 weeks ago )
File names Droid4XInstaller_0.5.0.zip
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Condensed report! The following is a condensed report of the behaviour of the file when executed in a controlled environment. The actions and events described were either performed by the file itself or by any other process launched by the executed file or subjected to code injection by the executed file.
Opened files
Read files
Written files
Moved files
Created processes
HTTP requests
DNS requests
TCP connections