VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, VirSCAN can scan compressed files with password 'infected' or 'virus'.

Language
Server load
Server Load



File information
File Name : noain_release_1.3.13.apk (File not down)
File Size :1275576 byte
File Type :application/zip
MD5:281e10a349d6b1cf99e1bd5a50e3cd30
SHA1:3b9a8553e1c35f0a49838ea0998464a914c97e5b
  • 扫描结果
  • 权限
  • 文件行为分析
  • Scanner results
    Scanner results:0%Scanner(s) (0/32)found malware!        Behavior
    Time: 2018-03-02 12:29:06 (CST)
    VirSCANVirSCAN
    Scanner Engine Ver Sig Ver Sig Date Scan result Time
    antiy AVL SDK 2.0 1970-01-01 Found nothing 5
    asquared 9.0.0.4799 9.0.0.4799 2015-03-08 Found nothing 1
    avast 170303-1 4.7.4 2017-03-03 Found nothing 60
    avg 2109/14933 10.0.1405 2018-02-26 Found nothing 60
    baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 11
    baidusd 1.0 1.0 2017-03-22 Found nothing 1
    bitdefender 7.58879 7.90123 2015-01-16 Found nothing 60
    clamav 24352 0.97.5 2018-02-27 Found nothing 60
    drweb 5.0.2.3300 5.0.1.1 2018-02-28 Found nothing 60
    fortinet 1.000, 55.522, 55.506, 55.360 5.4.247 2018-03-02 Found nothing 60
    fprot 4.6.2.117 6.5.1.5418 2016-02-05 Found nothing 60
    fsecure 2015-08-01-02 9.13 2015-08-01 Found nothing 60
    gdata 25.16189 25.16189 2018-03-02 Found nothing 14
    ikarus 4.00.06 V1.32.31.0 2018-03-01 Found nothing 60
    jiangmin 16.0.100 1.0.0.0 2017-12-22 Found nothing 2
    kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 60
    kingsoft 2.1 2.1 2018-03-01 Found nothing 60
    mcafee 8620 5400.1158 2017-08-12 Found nothing 60
    nod32 6980 3.0.21 2018-02-28 Found nothing 60
    panda 9.05.01 9.05.01 2018-03-01 Found nothing 4
    pcc 13.302.06 9.500-1005 2017-03-27 Found nothing 60
    qh360 1.0.1 1.0.1 1.0.1 Found nothing 3
    qqphone 1.0.0.0 1.0.0.0 2015-12-30 Found nothing 60
    quickheal 14.00 14.00 2017-11-18 Found nothing 3
    rising 3284 3284 2017-12-26 Found nothing 3
    sophos 5.32 3.65.2 2016-10-10 Found nothing 60
    symantec 20151230.005 1.3.0.24 2015-12-30 Found nothing 60
    tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 3
    thehacker 6.8.0.5 6.8.0.5 2018-02-25 Found nothing 2
    tws 17.47.17308 1.0.2.2108 2018-03-01 Found nothing 14
    vba 3.12.29.5 beta 3.12.29.5 beta 2018-03-01 Found nothing 60
    virusbuster 15.0.985.0 5.5.2.13 2014-12-05 Found nothing 60
    Heuristic/Suspicious Exact
    NOTICE: Results are not 100% accurate and can be reported as a false positive by some scannerswhen and if malware is found. Please judge these results for yourself.
    Copy to clipboard
  • 权限列表
    许可名称信息
    android.permission.WRITE_SETTINGS读写系统设置项
    android.permission.WRITE_SECURE_SETTINGS读写系统敏感设置
    android.permission.BIND_ACCESSIBILITY_SERVICE绑定辅助服务
    android.permission.CHANGE_COMPONENT_ENABLED_STATE变更组件状态
    android.permission.GET_TASKS获取有关当前或最近运行的任务信息
    android.permission.REAL_GET_TASKS
    android.permission.READ_LOGS读取系统日志
    android.permission.READ_PHONE_STATE读取电话状态
    android.permission.ACCESS_FINE_LOCATION获取精确的位置(通过GPS)
    android.permission.ACCESS_NETWORK_STATE读取网络状态(2G或3G)
    android.permission.ACCESS_WIFI_STATE读取wifi网络状态
    android.permission.SET_ACTIVITY_WATCHER设置Activity观察器
    android.permission.RECEIVE_USER_PRESENT
    android.permission.RECEIVE_BOOT_COMPLETED接收开机启动广播
    android.permission.INSTALL_PACKAGES安装应用
    android.permission.DELETE_PACKAGES删除应用
    android.permission.INTERNET连接网络(2G或3G)
    android.permission.ACCESS_COARSE_LOCATION获取粗略的位置(通过wifi、基站)
    android.permission.WRITE_EXTERNAL_STORAGE写外部存储器(如:SD卡)
    android.permission.READ_EXTERNAL_STORAGE读外部存储器(如:SD卡)
    android.permission.SYSTEM_ALERT_WINDOW显示系统窗口
  • 文件信息
    安全评分 :
    基本信息
    MD5:281e10a349d6b1cf99e1bd5a50e3cd30
    包名:com.sales.statistic
    最低运行环境:Android 4.1, 4.1.1
    版权:Unknown
    文件行为
    行为描述:创建文件
    详情信息:C:\Users\Administrator\AppData\Roaming\TeamViewer\TeamViewer13_Logfile.log
    行为描述:修改文件内容
    详情信息:C:\Users\Administrator\AppData\Roaming\TeamViewer\TeamViewer13_Logfile.log ---> Offset = 0
    C:\Users\Administrator\AppData\Roaming\TeamViewer\TeamViewer13_Logfile.log ---> Offset = 58
    C:\Users\Administrator\AppData\Roaming\TeamViewer\TeamViewer13_Logfile.log ---> Offset = 123
    C:\Users\Administrator\AppData\Roaming\TeamViewer\TeamViewer13_Logfile.log ---> Offset = 178
    C:\Users\Administrator\AppData\Roaming\TeamViewer\TeamViewer13_Logfile.log ---> Offset = 292
    注册表行为
    行为描述:修改注册表
    详情信息:\REGISTRY\USER\S-*\Software\Microsoft\Direct3D\MostRecentApplication\Name
    其他行为
    行为描述:检测自身是否被调试
    详情信息:IsDebuggerPresent
    行为描述:创建互斥体
    详情信息:AMResourceMutex3
    Local\TeamViewer_LogMutex
    行为描述:打开互斥体
    详情信息:Global\TeamViewer_LogMutex
    Local\MSCTF.Asm.MutexDefault1
    行为描述:打开事件
    详情信息:HookSwitchHookEnabledEvent
    \KernelObjects\MaximumCommitCondition
    Local\{C15730E2-145C-4c5e-B005-3BC753F42475}-once-flagAHLGNICAEIIAAAAA
    Local\{C15730E2-145C-4c5e-B005-3BC753F42475}-once-flagEFOGNICAEIIAAAAA
    Local\{C15730E2-145C-4c5e-B005-3BC753F42475}-once-flagMPLGNICAEIIAAAAA
    Local\{C15730E2-145C-4c5e-B005-3BC753F42475}-once-flagEPKGNICAEIIAAAAA
    Local\{C15730E2-145C-4c5e-B005-3BC753F42475}-once-flagMLLGNICAEIIAAAAA
    Local\{C15730E2-145C-4c5e-B005-3BC753F42475}-once-flagMCMGNICAEIIAAAAA
    Local\{C15730E2-145C-4c5e-B005-3BC753F42475}-once-flagEDMGNICAEIIAAAAA
    Local\{C15730E2-145C-4c5e-B005-3BC753F42475}-once-flagMILGNICAEIIAAAAA
    Local\{C15730E2-145C-4c5e-B005-3BC753F42475}-once-flagILKGNICAEIIAAAAA
    Local\MSCTF.CtfActivated.Default1
    Local\MSCTF.AsmCacheReady.Default1
    Local\{C15730E2-145C-4c5e-B005-3BC753F42475}-once-flagMFOGNICAEIIAAAAA
    Local\{C15730E2-145C-4c5e-B005-3BC753F42475}-once-flagECMGNICAEIIAAAAA
    行为描述:窗口信息
    详情信息:Pid = 2180, Hwnd=0x101b4, Text = 确定, ClassName = Button.
    Pid = 2180, Hwnd=0x101b8, Text = Verification of your TeamViewer version failed! TeamViewer will quit for security reasons. Please reinstall TeamViewer., ClassName = Static.
    Pid = 2180, Hwnd=0x601b0, Text = Critical Error, ClassName = #32770.
    Activities
    活动名类型
    net.ihttp.app.activity.ActiveActivityDialogcustom.action.active.activity.dialog
    net.ihttp.app.activity.ActiveActivityDialogandroid.intent.category.DEFAULT
    net.ihttp.app.activity.ResetActiveActivityDialogcustom.action.reset.active.activity.dialog
    net.ihttp.app.activity.ResetActiveActivityDialogandroid.intent.category.DEFAULT
    危险函数
    函数名称信息
    ContentResolver;->query读取联系人、短信等数据库
    启动方式
    名称信息
    net.ihttp.app.s.UBR
    net.ihttp.app.s.AR应用安装时启动服务
    net.ihttp.app.s.AR应用卸载时启动服务
    net.ihttp.app.s.BT开机启动服务
    net.ihttp.app.s.BT屏幕解锁启动服务
    net.ihttp.app.s.BT
    net.ihttp.app.s.BTWIFI状态改变时启动服务
    net.ihttp.app.s.BT
    net.ihttp.app.s.BT
    net.ihttp.app.s.UR屏幕解锁启动服务
    net.ihttp.app.s.UR网络连接改变时启动服务
    net.ihttp.app.s.UR
    net.ihttp.app.s.CKR屏幕解锁启动服务
    net.ihttp.app.s.CKR网络连接改变时启动服务
    net.ihttp.app.s.CKR
    net.ihttp.app.s.CKR
    net.ihttp.app.s.CKR应用安装时启动服务
    权限列表
    许可名称信息
    android.permission.WRITE_SETTINGS读写系统设置项
    android.permission.WRITE_SECURE_SETTINGS读写系统敏感设置
    android.permission.BIND_ACCESSIBILITY_SERVICE绑定辅助服务
    android.permission.CHANGE_COMPONENT_ENABLED_STATE变更组件状态
    android.permission.GET_TASKS获取有关当前或最近运行的任务信息
    android.permission.REAL_GET_TASKS
    android.permission.READ_LOGS读取系统日志
    android.permission.READ_PHONE_STATE读取电话状态
    android.permission.ACCESS_FINE_LOCATION获取精确的位置(通过GPS)
    android.permission.ACCESS_NETWORK_STATE读取网络状态(2G或3G)
    android.permission.ACCESS_WIFI_STATE读取wifi网络状态
    android.permission.SET_ACTIVITY_WATCHER设置Activity观察器
    android.permission.RECEIVE_USER_PRESENT
    android.permission.RECEIVE_BOOT_COMPLETED接收开机启动广播
    android.permission.INSTALL_PACKAGES安装应用
    android.permission.DELETE_PACKAGES删除应用
    android.permission.INTERNET连接网络(2G或3G)
    android.permission.ACCESS_COARSE_LOCATION获取粗略的位置(通过wifi、基站)
    android.permission.WRITE_EXTERNAL_STORAGE写外部存储器(如:SD卡)
    android.permission.READ_EXTERNAL_STORAGE读外部存储器(如:SD卡)
    android.permission.SYSTEM_ALERT_WINDOW显示系统窗口
    服务列表
    名称
    net.ihttp.app.s.B
    net.ihttp.app.s.A
    net.ihttp.app.s.C
    net.ihttp.app.s.TimeService
    net.ihttp.app.s.DRCA
    net.ihttp.app.s.DRC
    net.ihttp.app.s.P
    net.ihttp.app.s.PInnerService
    文件列表
    文件名 校验码
    META-INF/MANIFEST.MF 0x47c61c23
    META-INF/STONE.SF 0x6fe2002c
    META-INF/STONE.RSA 0xcfddf578
    AndroidManifest.xml 0x45d1f873
    assets/data/address.bin 0x8ca1507d
    assets/data/channel.bin 0x3aafc1dd
    assets/data/libclient.so 0xf152f61d
    assets/data/libsdk2.so 0xd9b0bfeb
    assets/data/nav.bin 0x6cf952f8
    assets/data/platform.pk8 0x7d91e3b8
    assets/data/platform.x509.pem 0x32515e5
    assets/data/running_mode 0x583776d
    assets/www/error.html 0xdf86af1b
    assets/www/home.html 0xbed8930b
    classes.dex 0xc794c47a
    res/color/vip_light_theme2.xml 0xdb48c158
    res/color/vip_light_theme2_custom.xml 0xb6bede52
    res/color/vpi_vm_dark_theme.xml 0x1d975e3f
    res/color/vpi_vm_light_theme.xml 0x5570b2c7
    res/drawable-hdpi-v4/ic_default_launcher.png 0x776a076c
    res/drawable-hdpi-v4/ic_launcher.png 0x776a076c
    res/drawable-hdpi-v4/vip_m_default_p_icon.png 0xe4485b5d
    res/drawable-hdpi-v4/vip_m_default_pp_image.png 0x83439505
    res/drawable-hdpi-v4/vip_m_ic_brand.png 0x776a076c
    res/drawable-hdpi-v4/vip_m_splash_drag_text_bg.png 0x38b96acc
    res/drawable-hdpi-v4/vpi_vm_tab_selected_focused_holo.9.png 0xcd8b95b0
    res/drawable-hdpi-v4/vpi_vm_tab_selected_holo.9.png 0x3c3aed54
    res/drawable-hdpi-v4/vpi_vm_tab_selected_pressed_holo.9.png 0xcbdab7f1
    res/drawable-hdpi-v4/vpi_vm_tab_unselected_focused_holo.9.png 0x91ed13ab
    res/drawable-hdpi-v4/vpi_vm_tab_unselected_holo.9.png 0x5995d5bf
    res/drawable-hdpi-v4/vpi_vm_tab_unselected_pressed_holo.9.png 0x2900ff50
    res/drawable-mdpi-v4/ic_launcher.png 0x776a076c
    res/drawable-mdpi-v4/vpi_vm_tab_selected_focused_holo.9.png 0x26e5dc86
    res/drawable-mdpi-v4/vpi_vm_tab_selected_holo.9.png 0x59e9a6a7
    res/drawable-mdpi-v4/vpi_vm_tab_selected_pressed_holo.9.png 0x89c6b495
    res/drawable-mdpi-v4/vpi_vm_tab_unselected_focused_holo.9.png 0x10dc7d91
    res/drawable-mdpi-v4/vpi_vm_tab_unselected_holo.9.png 0xe909a232
    res/drawable-mdpi-v4/vpi_vm_tab_unselected_pressed_holo.9.png 0x34d82257
    res/drawable-xhdpi-v4/ic_launcher.png 0x776a076c
    res/drawable-xhdpi-v4/vpi_vm_tab_selected_focused_holo.9.png 0xa988d9cc
    res/drawable-xhdpi-v4/vpi_vm_tab_selected_holo.9.png 0xabd1663b
    res/drawable-xhdpi-v4/vpi_vm_tab_selected_pressed_holo.9.png 0x6ceb5eb1
    res/drawable-xhdpi-v4/vpi_vm_tab_unselected_focused_holo.9.png 0xb9355c81
    res/drawable-xhdpi-v4/vpi_vm_tab_unselected_holo.9.png 0x13d29f09
    res/drawable-xhdpi-v4/vpi_vm_tab_unselected_pressed_holo.9.png 0xed4deb7a
    res/drawable/ic_yun_launcher.png 0x776a076c
    res/drawable/vip_m_b_gray_border_bg_normal.xml 0xb6091a50
    res/drawable/vip_m_b_gray_btn_normal.xml 0x8c4df2cc
    res/drawable/vip_m_b_gray_btn_selector.xml 0x86b99fb4
    res/drawable/vip_m_b_primary_btn_normal.xml 0x56cd12b4
    res/drawable/vip_m_b_primary_btn_pressed.xml 0x254dc8f
    res/drawable/vip_m_b_primary_btn_selector.xml 0x34c97940
    res/drawable/vip_m_b_white_corner_bg.xml 0x9ab918c0
    res/drawable/vip_m_blue_btn_normal.xml 0xddc51a73
    res/drawable/vip_m_blue_btn_selector.xml 0xe7666fbe
    res/drawable/vip_m_bottom_nav_btn_selector.xml 0x2e44ae80
    res/drawable/vip_m_bottom_tab_nav_layout_bg.xml 0x9f227140
    res/drawable/vip_m_custom_vpi_tab_bg_normal.xml 0xba7262f8
    res/drawable/vip_m_custom_vpi_tab_bg_pressed.xml 0x30a4cfd7
    res/drawable/vip_m_custom_vpi_tab_in_selector.xml 0x15a90a70
    res/drawable/vip_m_darkgray_btn_normal.xml 0x9b77a50
    res/drawable/vip_m_darkgray_btn_selector.xml 0xb119ed67
    res/drawable/vip_m_gray_border_bg_normal.xml 0x2220fdc0
    res/drawable/vip_m_gray_btn_normal.xml 0xfde0b8a8
    res/drawable/vip_m_gray_btn_selector.xml 0xac36f65f
    res/drawable/vip_m_header_icon_selector.xml 0x1cd3f15
    res/drawable/vip_m_listview_selector.xml 0xca51c166
    res/drawable/vip_m_p_blue_btn_normal.xml 0x8f24f0d1
    res/drawable/vip_m_p_blue_btn_selector.xml 0xf7e8581d
    res/drawable/vip_m_p_bottom_half_gray_btn_normal.xml 0xc1f56970
    res/drawable/vip_m_p_bottom_half_gray_btn_selector.xml 0x8df11699
    res/drawable/vip_m_p_buttom_half_gray_btn_pressed.xml 0x8843bc73
    res/drawable/vip_m_p_default_p_icon.png 0xe4485b5d
    res/drawable/vip_m_p_default_pp_image.png 0x83439505
    res/drawable/vip_m_p_gray_btn_normal.xml 0x781a3034
    res/drawable/vip_m_p_oval_bg.xml 0xee23cddf
    res/drawable/vip_m_p_progress_bar.xml 0xb135106e
    res/drawable/vip_m_p_top_half_gray_btn_normal.xml 0x4aabc39e
    res/drawable/vip_m_p_white_corner_bg.xml 0x7df036e
    res/drawable/vip_m_primary_btn_normal.xml 0x5d752b16
    res/drawable/vip_m_primary_btn_pressed.xml 0x73f996eb
    res/drawable/vip_m_primary_btn_selector.xml 0x1a65d584
    res/drawable/vip_m_progress_bar.xml 0xe8975d6e
    res/drawable/vip_m_red_btn_normal.xml 0xfaefa846
    res/drawable/vip_m_red_btn_pressed.xml 0x9ece52d
    res/drawable/vip_m_red_btn_selector.xml 0x54225a21
    res/drawable/vip_m_white_corner_bg.xml 0x7df036e
    res/drawable/vpi_vm_tab_indicator.xml 0xb706105
    res/layout/vip_m_activity_active_layout.xml 0x22fb3d97
    res/layout/vip_m_activity_splash_layout.xml 0xb98b2e6c
    res/layout/vip_m_bottom_nav_sub_layout.xml 0x9d61cd02
    res/layout/vip_m_connect_tips_dialog.xml 0x9635e7cb
    res/layout/vip_m_custom_dialog_base_layout.xml 0xeacc273a
    res/layout/vip_m_custom_notification.xml 0x53b29be5
    res/layout/vip_m_float_active_signed_code.xml 0xee11edb
    res/layout/vip_m_float_active_tips.xml 0x1ad38c06
    res/layout/vip_m_float_bottom.xml 0xd47dcbbe
    res/layout/vip_m_float_header.xml 0xfd01f6a3
    res/layout/vip_m_float_protocal.xml 0xeef5d974
    res/layout/vip_m_fragment_child_comment_layout.xml 0xb0690388
    res/layout/vip_m_fragment_child_my_btn_layout.xml 0x3f3d4c97
    res/layout/vip_m_fragment_child_my_no_btn_layout.xml 0xde514197
    res/layout/vip_m_fragment_child_outlink_layout.xml 0x8c814818
    res/layout/vip_m_fragment_child_service_adr_layout.xml 0x97fb7ba
    res/layout/vip_m_fragment_phone_info_item.xml 0x66fa6e6f
    res/layout/vip_m_fragment_service_adr_item_content_layout.xml 0x38eb086c
    res/layout/vip_m_fragment_service_adr_item_title_layout.xml 0x32d829ae
    res/layout/vip_m_header.xml 0xb3935e45
    res/layout/vip_m_main_tab_layout.xml 0xa76d226a
    res/layout/vip_m_main_tab_viewpager.xml 0xf4b6c815
    res/layout/vip_m_p_dview.xml 0x64ac1fe6
    res/layout/vip_m_p_notification.xml 0xfbf559f6
    res/layout/vip_m_p_notification2.xml 0xb596f785
    res/layout/vip_m_p_text_notification.xml 0x72a970ef
    res/layout/vip_m_progress_center_layout.xml 0xac5d8f6d
    res/layout/vip_m_progress_dialog_view.xml 0x30915871
    res/layout/vip_m_tab_item_layout.xml 0x23030976
    res/layout/vip_m_toast_pop_view.xml 0xa84aba43
    res/xml/accessibility_service_config.xml 0x20e248b0
    res/xml/accessibility_service_config2.xml 0xcf676b6c
    resources.arsc 0xc510d485
    运行截图
    VirSCAN

About VirSCAN | Privacy Policy | Contact us | link | Help VirSCAN
Translated by Keith Miller, United States
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号