× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: bac5953442e815eb24f7bb845dacd729ea3a880e8953d06b9b89a75b1341e885
File name: Droid4XInstaller_0.5.0.zip
Detection ratio: 0 / 61
Analysis date: 2018-04-12 19:34:03 UTC ( 1 week, 3 days ago ) View latest
Antivirus Result Update
Ad-Aware 20180412
AegisLab 20180412
AhnLab-V3 20180412
Alibaba 20180412
ALYac 20180412
Antiy-AVL 20180412
Arcabit 20180412
Avast 20180412
Avast-Mobile 20180412
AVG 20180412
Avira (no cloud) 20180412
AVware 20180412
Baidu 20180412
BitDefender 20180412
Bkav 20180410
CAT-QuickHeal 20180411
ClamAV 20180412
CMC 20180412
Comodo 20180412
CrowdStrike Falcon (ML) 20170201
Cybereason None
Cylance 20180412
Cyren 20180412
DrWeb 20180412
eGambit 20180412
Emsisoft 20180412
Endgame 20180402
ESET-NOD32 20180412
F-Prot 20180412
F-Secure 20180412
Fortinet 20180412
GData 20180412
Ikarus 20180412
Sophos ML 20180120
Jiangmin 20180412
K7AntiVirus 20180412
K7GW 20180412
Kaspersky 20180412
Kingsoft 20180412
Malwarebytes 20180412
MAX 20180412
McAfee 20180412
McAfee-GW-Edition 20180412
Microsoft 20180412
eScan 20180412
NANO-Antivirus 20180412
nProtect 20180412
Palo Alto Networks (Known Signatures) 20180412
Panda 20180412
Qihoo-360 20180412
Rising 20180412
SentinelOne (Static ML) 20180225
Sophos AV 20180412
SUPERAntiSpyware 20180412
Symantec 20180412
Symantec Mobile Insight 20180411
Tencent 20180412
TheHacker 20180410
TotalDefense 20180412
TrendMicro 20180412
TrendMicro-HouseCall 20180412
Trustlook 20180412
VBA32 20180412
VIPRE 20180412
ViRobot 20180412
Webroot 20180412
WhiteArmor 20180408
Yandex 20180412
Zillya 20180412
ZoneAlarm by Check Point 20180412
Zoner 20180412
The file being studied is a compressed stream! More specifically, it is a ZIP file. It seems to be a bundled Mac OS X application.
File signature
Identifier Haiyu.DXInst
Format bundle with Mach-O thin (x86_64)
CDHash 0ab38ed34172503791f6f03501a5adb515df9272
Signature size 8566
Authority Developer ID Application: Beijing HaiYu Technology Co., Ltd. (SEDZ663NMY)
Authority Developer ID Certification Authority
Authority Apple Root CA
Timestamp Nov 9, 2014, 7:00:27 AM
Info.plist entries 22
TeamIdentifier SEDZ663NMY
Signers
[+] Beijing HaiYu Technology Co., Ltd.
Status Valid
Issuer Apple Inc.
Valid from 03:55 AM 09/17/2014
Valid to 03:55 AM 09/18/2019
Valid usage Digital Signature, Code Signing
Algorithm sha256WithRSAEncryption
Thumbprint C8FBBA05A035EF48609B4A76A52C313E6DEEBB54
Serial number 8A 5B C6 7C A8 C4 38
[+] Apple Inc.
Status Valid
Issuer Apple Inc.
Valid from 10:12 PM 02/01/2012
Valid to 10:12 PM 02/01/2027
Valid usage Digital Signature, Certificate Sign, CRL Sign
Algorithm sha256WithRSAEncryption
Thumbprint 3B166C3B7DC4B751C9FE2AFAB9135641E388E186
Serial number 18 7A A9 A8 C2 96 21 0C
[+] Apple Inc.
Status Valid
Issuer Apple Inc.
Valid from 09:40 PM 04/25/2006
Valid to 09:40 PM 02/09/2035
Valid usage Certificate Sign, CRL Sign
Algorithm sha1WithRSAEncryption
Thumbprint 611E5B662C593A08FF58D14AE22452D198DF6C60
Serial number 2
Interesting properties
The studied file contains at least one Mac OS X executable.
Contained files
Compression metadata
Contained files
28
Uncompressed size
650864
Highest datetime
2014-11-09 15:00:28
Lowest datetime
2014-11-09 15:00:28
Contained files by extension
png
4
nib
2
rtf
2
dat
1
Contained files by type
unknown
11
directory
8
PNG
4
XML
2
RTF
2
Mac OS X Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
10

ZipCRC
0x00000000

FileType
ZIP

ZipCompression
None

ZipUncompressedSize
0

ZipCompressedSize
0

FileTypeExtension
zip

ZipFileName
Droid4XInstaller_0.5.0.app/

ZipBitFlag
0

ZipModifyDate
2014:11:09 15:00:28

File identification
MD5 f767b0a2fd19b9a8b95ea712fc22061f
SHA1 04b5f25393fd6987691ca7cacc9f5337e8357b61
SHA256 bac5953442e815eb24f7bb845dacd729ea3a880e8953d06b9b89a75b1341e885
ssdeep
12288:q1PaDIEvWzQjdxlRLb5HzkIKyNBXAPkvcovu/Iyvi0p:q1PanvWmlRCZyNBH0CGn

File size 467.9 KB ( 479144 bytes )
File type ZIP
Magic literal
Zip archive data, at least v1.0 to extract

TrID ZIP compressed archive (100.0%)
Tags
mac-app contains-macho zip

VirusTotal metadata
First submission 2017-02-14 13:01:05 UTC ( 1 year, 2 months ago )
Last submission 2017-11-22 08:10:50 UTC ( 5 months ago )
File names Droid4XInstaller_0.5.0.zip
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Condensed report! The following is a condensed report of the behaviour of the file when executed in a controlled environment. The actions and events described were either performed by the file itself or by any other process launched by the executed file or subjected to code injection by the executed file.
Opened files
Read files
Written files
Moved files
Created processes
HTTP requests
DNS requests
TCP connections