xzdec

JSON
executablemacOS68.1 KBarm64

Network utility — connects to remote endpoints and transfers data

Executable that initiates outbound network connections to two remote endpoints. Contains URL and endpoint configuration for communication. Compiled as ARM64 native code with minimal dependencies, signed with ad-hoc signing. The specific network targets and data transfer patterns indicate either a diagnostic tool, data collector, or network client component. Security analysts should identify the remote endpoints and verify their legitimacy given the ad-hoc signing and limited visibility into intended purpose.AI

Fingerprint

Platform
macOS
Type
executable
Arch
arm64
Min OS
26.0.0
SDK
26.1.0
File Size
68.1 KB
UUID
73621553-0909-31B4-9287-9FA12A659B47
Analyzed
2026-04-09T09:24:45Z
CDHash
593b1445a50182c72874522b8e381dda58dd89e7b9cc5d6b70be051a4e9f0aaa

Interesting Strings

Network Surface

DNA Capability Vector

Location
0
Keychain
0
Network
0
Storage
0
Hardware
0
IPC
0
Analytics
0
Security
0
System
0

Behavioral Profile

URL Endpoints
1
Telemetry Strings
0
File Paths
0
Bundle IDs
0
IOKit Constants
0
Library Functions
3

Structural HashesSHA-256

Static Libraries3 / 11 functions identified

Functions(11)

0x100000e68main
0x100001054uncompress
0x1000012a4my_errorf
0x100001320help
0x10000135cversion
0x100001390tuklib_progname_init
0x1000013a0tuklib_has_nonprint
0x10000141ctuklib_mask_nonprint_r
0x100001534is_next_printable
0x100001618tuklib_mask_nonprint
0x100001624tuklib_exit

Imports31 symbols from 2 dylibs

Exports1

_mh_execute_header0x0