× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: bac5953442e815eb24f7bb845dacd729ea3a880e8953d06b9b89a75b1341e885
File name: Droid4XInstaller_0.5.0.zip
Detection ratio: 0 / 60
Analysis date: 2018-05-16 06:38:05 UTC ( 1 week, 4 days ago ) View latest
Antivirus Result Update
Ad-Aware 20180516
AegisLab 20180516
AhnLab-V3 20180515
Alibaba 20180516
ALYac 20180516
Antiy-AVL 20180515
Arcabit 20180516
Avast 20180516
Avast-Mobile 20180516
AVG 20180516
Avira (no cloud) 20180515
AVware 20180428
Babable 20180406
Baidu 20180511
BitDefender 20180516
Bkav 20180515
CAT-QuickHeal 20180516
ClamAV 20180516
CMC 20180515
Comodo 20180516
CrowdStrike Falcon (ML) 20180418
Cybereason None
Cylance 20180516
Cyren 20180516
eGambit 20180516
Emsisoft 20180516
Endgame 20180507
ESET-NOD32 20180516
F-Prot 20180516
F-Secure 20180516
Fortinet 20180516
GData 20180516
Ikarus 20180515
Sophos ML 20180503
Jiangmin 20180516
K7AntiVirus 20180516
K7GW 20180516
Kaspersky 20180516
Kingsoft 20180516
Malwarebytes 20180516
MAX 20180516
McAfee 20180516
McAfee-GW-Edition 20180516
Microsoft 20180516
eScan 20180516
NANO-Antivirus 20180516
nProtect 20180516
Palo Alto Networks (Known Signatures) 20180516
Panda 20180515
Qihoo-360 20180516
Rising 20180516
SentinelOne (Static ML) 20180225
Sophos AV 20180515
SUPERAntiSpyware 20180516
Symantec 20180516
Symantec Mobile Insight 20180516
Tencent 20180516
TheHacker 20180516
TotalDefense 20180516
TrendMicro 20180516
TrendMicro-HouseCall 20180516
Trustlook 20180516
VBA32 20180515
VIPRE 20180516
ViRobot 20180516
Webroot 20180516
Yandex 20180513
Zillya 20180514
ZoneAlarm by Check Point 20180516
Zoner 20180515
The file being studied is a compressed stream! More specifically, it is a ZIP file. It seems to be a bundled Mac OS X application.
File signature
Identifier Haiyu.DXInst
Format bundle with Mach-O thin (x86_64)
CDHash 0ab38ed34172503791f6f03501a5adb515df9272
Signature size 8566
Authority Developer ID Application: Beijing HaiYu Technology Co., Ltd. (SEDZ663NMY)
Authority Developer ID Certification Authority
Authority Apple Root CA
Timestamp Nov 9, 2014, 7:00:27 AM
Info.plist entries 22
TeamIdentifier SEDZ663NMY
Signers
[+] Beijing HaiYu Technology Co., Ltd.
Status Valid
Issuer Apple Inc.
Valid from 03:55 AM 09/17/2014
Valid to 03:55 AM 09/18/2019
Valid usage Digital Signature, Code Signing
Algorithm sha256WithRSAEncryption
Thumbprint C8FBBA05A035EF48609B4A76A52C313E6DEEBB54
Serial number 8A 5B C6 7C A8 C4 38
[+] Apple Inc.
Status Valid
Issuer Apple Inc.
Valid from 10:12 PM 02/01/2012
Valid to 10:12 PM 02/01/2027
Valid usage Digital Signature, Certificate Sign, CRL Sign
Algorithm sha256WithRSAEncryption
Thumbprint 3B166C3B7DC4B751C9FE2AFAB9135641E388E186
Serial number 18 7A A9 A8 C2 96 21 0C
[+] Apple Inc.
Status Valid
Issuer Apple Inc.
Valid from 09:40 PM 04/25/2006
Valid to 09:40 PM 02/09/2035
Valid usage Certificate Sign, CRL Sign
Algorithm sha1WithRSAEncryption
Thumbprint 611E5B662C593A08FF58D14AE22452D198DF6C60
Serial number 2
Interesting properties
The studied file contains at least one Mac OS X executable.
Contained files
Compression metadata
Contained files
28
Uncompressed size
650864
Highest datetime
2014-11-09 15:00:28
Lowest datetime
2014-11-09 15:00:28
Contained files by extension
png
4
nib
2
rtf
2
dat
1
Contained files by type
unknown
11
directory
8
PNG
4
XML
2
RTF
2
Mac OS X Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
10

ZipCRC
0x00000000

FileType
ZIP

ZipCompression
None

ZipUncompressedSize
0

ZipCompressedSize
0

FileTypeExtension
zip

ZipFileName
Droid4XInstaller_0.5.0.app/

ZipBitFlag
0

ZipModifyDate
2014:11:09 15:00:28

File identification
MD5 f767b0a2fd19b9a8b95ea712fc22061f
SHA1 04b5f25393fd6987691ca7cacc9f5337e8357b61
SHA256 bac5953442e815eb24f7bb845dacd729ea3a880e8953d06b9b89a75b1341e885
ssdeep
12288:q1PaDIEvWzQjdxlRLb5HzkIKyNBXAPkvcovu/Iyvi0p:q1PanvWmlRCZyNBH0CGn

File size 467.9 KB ( 479144 bytes )
File type ZIP
Magic literal
Zip archive data, at least v1.0 to extract

TrID ZIP compressed archive (100.0%)
Tags
contains-macho mac-app zip

VirusTotal metadata
First submission 2017-02-14 13:01:05 UTC ( 1 year, 3 months ago )
Last submission 2018-05-22 23:16:03 UTC ( 4 days, 14 hours ago )
File names Droid4XInstaller_0.5.0.zip
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Condensed report! The following is a condensed report of the behaviour of the file when executed in a controlled environment. The actions and events described were either performed by the file itself or by any other process launched by the executed file or subjected to code injection by the executed file.
Opened files
Read files
Written files
Moved files
Created processes
HTTP requests
DNS requests
TCP connections