VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, VirSCAN can scan compressed files with password 'infected' or 'virus'.

Language
Server load
Server Load



File information
File Name :搜酷磁力_11_jiagu_sign.apk (File not down)
File Size :6258657 byte
File Type :application/zip
MD5:44ff4ea1a3787458405eec8c4e841d84
SHA1:7e46f128e16ad22e35bfe69d139c62a93e360ab3
  • 扫描结果
  • 权限
  • 文件行为分析
  • Scanner results
    Scanner results:12%Scanner(s) (4/32)found malware!
    Behavior analysis report:         Habo file analysis
    Time: 2018-09-26 11:46:55 (CST)
    VirSCANVirSCAN
    Scanner Engine Ver Sig Ver Sig Date Scan result Time
    antiy AVL SDK 2.0 AVL SDK 2.0 2018-05-1 Found nothing 6
    avast 18.4.3895.0 18.4.3895.0 2018-09-26 Found nothing 46
    avg 10.0.1405 10.0.1405 2018-09-26 Found nothing 1
    baidu 2.0.1.0 4.1.3.52192 2018-06-20 Found nothing 6
    baidusd 1.0 1.0 2018-06-21 Found nothing 60
    bitdefender 7.141118 7.141118 2018-09-26 Found nothing 6
    clamav 24981 0.97.5 2018-09-24 Found nothing 2
    drweb 5.0.2.3300 5.0.1.1 2018-09-06 Found nothing 58
    emsisoft 9.0.0.4799 9.0.0.4799 2018-06-21 Found nothing 1
    fortinet 1.000, 62.964, 62.804, 62.828 5.4.247 2018-09-26 Found nothing 1
    fprot 4.6.2.117 6.5.1.5418 2014-12-31 Found nothing 1
    fsecure 2015-08-01-02 9.13 2018-09-26 Found nothing 9
    gdata 25.18656 25.18656 2018-09-25 Android.Hacktool.SMSBomber.H 14
    ikarus 4.00.09 V1.32.39.0 2018-09-25 Found nothing 1
    jiangmin 16.0.100 1.0.0.0 2018-07-11 Found nothing 2
    kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 20
    kingsoft 2.1 2.1 2018-06-20 Found nothing 58
    mcafee 8974 5400.1158 2018-08-03 Found nothing 12
    nod32 7844 3.0.21 2018-08-07 a variant of Android/Packed.Jiagu.D application 2
    panda 9.05.01 9.05.01 2018-07-15 Found nothing 4
    pcc 11.380.07 9.500-1005 2014-12-31 Found nothing 2
    qh360 1.0.1 1.0.1 2018-06-20 Win32/Virus.DoS.6a0 3
    qqphone 2.0.0.0 2.0.0.0 2018-09-25 a.gray.sexpay.m 1
    quickheal 14.00 14.00 2018-08-07 Found nothing 3
    rising 4115 4115 2018-09-25 Found nothing 2
    sophos 4.62 3.16.1 2016-09-20 Found nothing 11
    symantec 20151230.005 1.3.0.24 2015-12-30 Found nothing 1
    tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 3
    thehacker 6.8.0.5 6.8.0.5 2018-07-12 Found nothing 2
    tws 17.47.17308 1.0.2.2108 2018-09-25 Found nothing 14
    vba 3.12.29.3 beta 3.12.29.3 beta 2016-09-19 Found nothing 5
    virusbuster 15.0.985.0 5.5.2.13 2014-12-05 Found nothing 20
    Heuristic/Suspicious Exact
    NOTICE: Results are not 100% accurate and can be reported as a false positive by some scannerswhen and if malware is found. Please judge these results for yourself.
    Copy to clipboard
  • 权限列表
    许可名称信息
    com.android.launcher.permission.INSTALL_SHORTCUT创建快捷方式
    android.permission.MOUNT_UNMOUNT_FILESYSTEMS挂载、反挂载外部文件系统
    android.permission.READ_PHONE_STATE读取电话状态
    android.permission.SYSTEM_ALERT_WINDOW显示系统窗口
    android.permission.GET_TASKS获取有关当前或最近运行的任务信息
    android.permission.WRITE_SETTINGS读写系统设置项
    android.permission.WRITE_EXTERNAL_STORAGE写外部存储器(如:SD卡)
    android.permission.INTERNET连接网络(2G或3G)
    android.permission.ACCESS_FINE_LOCATION获取精确的位置(通过GPS)
    android.permission.ACCESS_WIFI_STATE读取wifi网络状态
    com.android.launcher.permission.READ_SETTINGS读取快捷方式信息
    android.permission.ACCESS_COARSE_LOCATION获取粗略的位置(通过wifi、基站)
    android.permission.WAKE_LOCK手机屏幕关闭后后台进程仍运行
    android.permission.ACCESS_NETWORK_STATE读取网络状态(2G或3G)
    android.permission.CHANGE_CONFIGURATION修改当前设置(如:本地化)
    android.permission.VIBRATE允许设备震动
    android.permission.RESTART_PACKAGES重启其他程序
    android.permission.DOWNLOAD_WITHOUT_NOTIFICATION
  • 文件信息
    安全评分 :
    基本信息
    MD5:44ff4ea1a3787458405eec8c4e841d84
    包名:com.soukucili
    最低运行环境:Android 2.2.x
    版权:E4A
    文件行为
    行为描述:查找文件
    详情信息:FileName = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe_7zdump\SoftanyCHMtoDOCConverter\Softany CHM to DOC converter.zh-CN
    FileName = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe_7zdump\SoftanyCHMtoDOCConverter\Softany CHM to DOC converter.zh-Hans
    FileName = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe_7zdump\SoftanyCHMtoDOCConverter\Softany CHM to DOC converter.zh
    FileName = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe_7zdump\SoftanyCHMtoDOCConverter\Softany CHM to DOC converter.CHS
    FileName = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe_7zdump\SoftanyCHMtoDOCConverter\Softany CHM to DOC converter.CH
    注册表行为
    行为描述:修改注册表
    详情信息:\REGISTRY\USER\S-*\Software\Microsoft\Internet Explorer\FullScreen
    行为描述:删除注册表键值
    详情信息:\REGISTRY\USER\S-*\Software\Microsoft\Internet Explorer\FullScreen
    行为描述:删除注册表键
    详情信息:\REGISTRY\USER\S-*\Software\Softany\CHM to DOC converter\
    其他行为
    行为描述:创建互斥体
    详情信息:CTF.LBES.MutexDefaultS-*
    CTF.Compart.MutexDefaultS-*
    CTF.Asm.MutexDefaultS-*
    CTF.Layouts.MutexDefaultS-*
    CTF.TMD.MutexDefaultS-*
    CTF.TimListCache.FMPDefaultS-*MUTEX.DefaultS-*
    MSCTF.Shared.MUTEX.IOH
    MSCTF.Shared.MUTEX.EGL
    行为描述:创建事件对象
    详情信息:EventName = MSCTF.SendReceive.Event.EGL.IC
    EventName = MSCTF.SendReceiveConection.Event.EGL.IC
    行为描述:窗口信息
    详情信息:Pid = 2912, Hwnd=0x1034a, Text = 输入注册码, ClassName = TBitBtn.
    Pid = 2912, Hwnd=0x10348, Text = 继续, ClassName = TBitBtn.
    Pid = 2912, Hwnd=0x10346, Text = 购买, ClassName = TBitBtn.
    Pid = 2912, Hwnd=0x10344, Text = Softany CHM 到 DOC 转换器, ClassName = TfrmTrialInfo.
    行为描述:查找指定窗口
    详情信息:NtUserFindWindowEx: [Class,Window] = [Shell_TrayWnd,]
    NtUserFindWindowEx: [Class,Window] = [CicLoaderWndClass,]
    行为描述:打开事件
    详情信息:HookSwitchHookEnabledEvent
    CTF.ThreadMIConnectionEvent.000007E8.00000000.0000000F
    CTF.ThreadMarshalInterfaceEvent.000007E8.00000000.0000000F
    MSCTF.SendReceiveConection.Event.IOH.IC
    MSCTF.SendReceive.Event.IOH.IC
    行为描述:枚举窗口
    详情信息:N/A
    行为描述:打开互斥体
    详情信息:ShimCacheMutex
    Activities
    活动名类型
    com.e4a.runtime.android.StartActivityandroid.intent.action.MAIN
    com.e4a.runtime.android.StartActivityandroid.intent.category.DEFAULT
    com.stub.plugin.Stub01android.intent.action.MAIN
    com.stub.plugin.Stub01android.intent.category.LAUNCHER
    com.e4a.runtime.android.mainActivityandroid.intent.action.MAIN
    com.e4a.runtime.android.mainActivityandroid.intent.category.DEFAULT
    权限列表
    许可名称信息
    com.android.launcher.permission.INSTALL_SHORTCUT创建快捷方式
    android.permission.MOUNT_UNMOUNT_FILESYSTEMS挂载、反挂载外部文件系统
    android.permission.READ_PHONE_STATE读取电话状态
    android.permission.SYSTEM_ALERT_WINDOW显示系统窗口
    android.permission.GET_TASKS获取有关当前或最近运行的任务信息
    android.permission.WRITE_SETTINGS读写系统设置项
    android.permission.WRITE_EXTERNAL_STORAGE写外部存储器(如:SD卡)
    android.permission.INTERNET连接网络(2G或3G)
    android.permission.ACCESS_FINE_LOCATION获取精确的位置(通过GPS)
    android.permission.ACCESS_WIFI_STATE读取wifi网络状态
    com.android.launcher.permission.READ_SETTINGS读取快捷方式信息
    android.permission.ACCESS_COARSE_LOCATION获取粗略的位置(通过wifi、基站)
    android.permission.WAKE_LOCK手机屏幕关闭后后台进程仍运行
    android.permission.ACCESS_NETWORK_STATE读取网络状态(2G或3G)
    android.permission.CHANGE_CONFIGURATION修改当前设置(如:本地化)
    android.permission.VIBRATE允许设备震动
    android.permission.RESTART_PACKAGES重启其他程序
    android.permission.DOWNLOAD_WITHOUT_NOTIFICATION
    服务列表
    名称
    com.stub.plugin.Stub02
    Providers
    名字信息
    com.stub.plugin.Stub04
    文件列表
    文件名 校验码
    AndroidManifest.xml 0x44426379
    assets/.appkey 0xcdffcd0e
    assets/fenlei.png 0xb1df8232
    assets/home_back.png 0xe77fb8af
    assets/home_top_search.png 0x1262047a
    assets/ic_dl_magnet.png 0xbb26a935
    assets/ic_home_add.png 0xe278ab97
    assets/ic_home_fankui.png 0x97dd76e9
    assets/ic_home_fenxiang.png 0x6e105895
    assets/ic_home_geren.png 0x62de515c
    assets/ic_home_move.png 0x3cdb44a0
    assets/libjiagu.so 0x38dc708c
    assets/libjiagu_ls.so 0xdbe80902
    assets/libjiagu_rpa.so 0x6ef8c2b8
    assets/libjiagu_x86.so 0xaaeb3f28
    assets/listjiantou.png 0xc1e89155
    assets/shadowlist.png 0xa998a25a
    classes.dex 0xdf70f710
    lib/armeabi/libcyberplayer-core.so 0xe65c4104
    lib/armeabi/libcyberplayer.so 0x80bf7811
    res/drawable-hdpi/mo_shang_1.png 0x7795257d
    res/drawable-hdpi/mo_shang_2.png 0x8ab606b3
    res/drawable-hdpi/mo_xia_1.png 0x6ddd558d
    res/drawable-hdpi/mo_xia_a.png 0x7cc1ef0d
    res/drawable-xhdpi/ok_win101.xml 0x253f5ad0
    res/drawable-xhdpi/ok_win101_1.png 0xbe6f458f
    res/drawable-xhdpi/p_phone_account_back_small.png 0xc15ac5c4
    res/drawable-xhdpi/p_phone_account_back_small_caidan.png 0x6fd891c7
    res/drawable-xhdpi/p_phone_account_back_small_jietu.png 0x49f38474
    res/drawable-xhdpi/p_phone_account_back_small_selected.png 0xc3b7476d
    res/drawable-xhdpi/p_phone_account_back_small_selected_caidan.png 0xd1dec9c3
    res/drawable-xhdpi/p_phone_account_back_small_selected_jietu.png 0x97df35a6
    res/drawable-xhdpi/pause_btn_caidan_apy_style.xml 0x2423f783
    res/drawable-xhdpi/pause_btn_fanhui_apy_style.xml 0x61c8c456
    res/drawable-xhdpi/pause_btn_fenx_apy_style.xml 0xa732f8d9
    res/drawable-xhdpi/pause_btn_hou_apy_style.xml 0x980da738
    res/drawable-xhdpi/pause_btn_jietu_apy_style.xml 0xb037d74b
    res/drawable-xhdpi/pause_btn_jin2_apy_style.xml 0x386e513c
    res/drawable-xhdpi/pause_btn_jin_apy_style.xml 0xc1987f0
    res/drawable-xhdpi/pause_btn_shoc_apy_style.xml 0xfd8e30d2
    res/drawable-xhdpi/pause_btn_shocz_apy_style.xml 0xa0a23e63
    res/drawable-xhdpi/pause_btn_suo1_apy_style.xml 0x1d6ae5bb
    res/drawable-xhdpi/pause_btn_suo_apy_style.xml 0x5e9743c0
    res/drawable-xhdpi/pause_btn_ting_apy_style.xml 0x99999af0
    res/drawable-xhdpi/pause_btn_xiazai_apy_style.xml 0xda643c8b
    res/drawable-xhdpi/pause_btn_zan_apy_style.xml 0x8f3c45c
    res/drawable-xhdpi/play_ctrl_battery.png 0x17f7be70
    res/drawable-xhdpi/play_ctrl_battery1.png 0x3aef9f86
    res/drawable-xhdpi/play_ctrl_battery2.png 0x2ca1eba9
    res/drawable-xhdpi/player_landscape_download_normal.png 0x6a357a7d
    res/drawable-xhdpi/player_landscape_download_pressed.png 0x1549bd49
    res/drawable-xhdpi/player_landscape_next_normal.png 0x98d1268f
    res/drawable-xhdpi/player_landscape_next_normal_1.png 0x8c07631c
    res/drawable-xhdpi/player_landscape_next_normals.png 0x15ae1191
    res/drawable-xhdpi/player_landscape_next_pressed.png 0x41f5238c
    res/drawable-xhdpi/player_landscape_next_pressed_1.png 0xa127802
    res/drawable-xhdpi/player_landscape_next_presseds.png 0x6355b68f
    res/drawable-xhdpi/player_landscape_screen_off_normal.png 0xc89409e2
    res/drawable-xhdpi/player_landscape_screen_off_pressed.png 0xe64a854e
    res/drawable-xhdpi/player_landscape_screen_on_noraml.png 0xef2c5752
    res/drawable-xhdpi/player_landscape_screen_on_pressed.png 0xd0e5e947
    res/drawable-xhdpi/player_landscape_share_normal.png 0x5bfc76c
    res/drawable-xhdpi/player_landscape_share_pressed.png 0xcd6ce27f
    res/drawable-xhdpi/qiyi_sdk_play_portrait_btn_pause_normal.png 0x215e82a
    res/drawable-xhdpi/qiyi_sdk_play_portrait_btn_pause_pressed.png 0xac28b818
    res/drawable-xhdpi/qiyi_sdk_play_portrait_btn_player_normal.png 0x2a8033b5
    res/drawable-xhdpi/qiyi_sdk_play_portrait_btn_player_pressed.png 0xc458f006
    res/drawable-xhdpi/round_46px_1071539_easyicon.png 0xb179d7c2
    res/drawable-xhdpi/toast_collect.png 0x960bb6c9
    res/drawable-xhdpi/toast_collectz.png 0xa5fc1274
    res/drawable-xhdpi/toast_uncollect.png 0x1a1382d4
    res/drawable-xhdpi/toast_uncollectz.png 0x5a76eab6
    res/drawable-xhdpi/video_rotate_land_btn_fg.png 0x1250759f
    res/drawable-xhdpi/video_rotate_land_btn_fga.png 0x6804f0a4
    res/drawable-xhdpi/video_rotate_protrait_btn_fg.png 0x117605c1
    res/drawable-xhdpi/video_rotate_protrait_btn_fga.png 0x1cada4b7
    res/drawable/caidan_btn_style.xml 0xe7d7fc0b
    res/drawable/caidian_lie_style.xml 0xa3e3b0d5
    res/drawable/cover_mask.xml 0x272d57ea
    res/drawable/e4alistview_new_message.png 0x1cdc5409
    res/drawable/fancircle_banner_cover.png 0x635e2d55
    res/drawable/hou.png 0x356ecd7c
    res/drawable/icon.png 0x76468674
    res/drawable/img_column_article_cover.png 0x65ff4150
    res/drawable/moren.png 0x8a1f4b00
    res/drawable/qian1.png 0x4d21bfbe
    res/drawable/qian3.png 0xc6e2c843
    res/drawable/seekbar_define2_style.xml 0x4b8f319d
    res/drawable/seekbar_define3_style.xml 0xc209cd27
    res/drawable/shadowlist.png 0xcddd92be
    res/layout/item_grid_advise.xml 0x238e6d48
    res/layout/main_gridview.xml 0x4fb6bd5c
    res/layout/ok_tu_liebiao_71117.xml 0x9e60887
    res/layout/okx_bd_caidan.xml 0x1d6b95ad
    res/layout/okx_bd_sougou.xml 0x98e828b8
    res/layout/webview_layout.xml 0x9aa79369
    resources.arsc 0xdb0fe813
    META-INF/SOUKU.SF 0xc87dd2f2
    META-INF/SOUKU.RSA 0x989798f6
    META-INF/MANIFEST.MF 0xe878960f
    运行截图
    VirSCAN

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
Translated by Keith Miller, United States
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号