dsmemberutil

JSON
executablemacOS100.0 KBx86_64, arm64

System utility — performs unsigned code detection and reporting

Scans executables and bundles to identify unsigned or improperly signed code. Communicates with Apple's security infrastructure across 6 network endpoints to validate code signatures and report findings. Maintains a single bundle identifier for internal organization. Runs as a system-level utility with minimal external dependencies, using only public frameworks for its core signing validation logic.AI

Fingerprint

Platform
macOS
Type
executable
Arch
x86_64, arm64
Min OS
26.1.0
SDK
26.1.0
File Size
100.0 KB
UUID
C7A3FA3D-0A42-33E2-902F-6741BE84FB68
Analyzed
2026-04-07T05:21:10Z
CDHash
aeb7f48227719616131e7e60942fca0660f879609e2d2216fd2373c7a4bcc20f

Interesting Strings

Network Surface

DNA Capability Vector

Location
0
Keychain
0
Network
0
Storage
0
Hardware
0
IPC
0
Analytics
0
Security
0
System
0

Behavioral Profile

URL Endpoints
4
Telemetry Strings
0
File Paths
0
Bundle IDs
1
IOKit Constants
0
Library Functions
0

Structural HashesSHA-256

Static Libraries0 / 9 functions identified

Functions(9)

0x100000598sub_100000598
0x100000b88sub_100000b88
0x100000d68sub_100000d68
0x100000ec4sub_100000ec4
0x1000010b4sub_1000010b4
0x1000011d8sub_1000011d8
0x100001344sub_100001344
0x10000140csub_10000140c
0x1000014f8sub_1000014f8

Imports30 symbols from 1 dylibs

Exports1

_mh_execute_header0x0