VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.
4, If your browser cannot upload files, please download VirSCAN uploader to upload.

Language
Server load
Server Load

VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

File information

Scanner results
Scanner results:12%Antivirus software(4/32)found malware!
Behavior analysis report:         Habo file analysis
Time: 2017-06-21 10:01:21 (CST)
Scanner Engine Ver Sig Ver Sig Date Scan result Time
antiy AVL SDK 2.0 1970-01-01 Found nothing 5
asquared 9.0.0.4799 9.0.0.4799 2015-03-08 Found nothing 1
avast 170303-1 4.7.4 2017-03-03 Found nothing 60
avg 2109/14054 10.0.1405 2017-06-14 Found nothing 60
baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 5
baidusd 1.0 1.0 2017-03-22 Found nothing 1
bitdefender 7.58879 7.90123 2015-01-16 Found nothing 60
clamav 23482 0.97.5 2017-06-17 Found nothing 60
drweb 5.0.2.3300 5.0.1.1 2017-06-18 Found nothing 60
fortinet 49.628, 49.628, 49.628 5.4.233 2017-06-20 Found nothing 60
fprot 4.6.2.117 6.5.1.5418 2016-02-05 Found nothing 60
fsecure 2015-08-01-02 9.13 2015-08-01 Found nothing 60
gdata 25.12967 25.12967 2017-06-21 Android.Trojan.FakeUpdates.AV 10
ikarus 1.06.01 V1.32.31.0 2016-11-28 Found nothing 60
jiangmin 16.0.100 1.0.0.0 2017-06-20 Found nothing 2
kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 60
kingsoft 2.1 2.1 2017-06-20 Android.Troj.at_gdownload.g.(kcloud) 5
mcafee 8261 5400.1158 2016-08-18 Found nothing 60
nod32 1777 3.0.21 2015-06-12 Found nothing 60
panda 9.05.01 9.05.01 2017-06-20 Found nothing 4
pcc 13.302.06 9.500-1005 2017-03-27 Found nothing 60
qh360 1.0.1 1.0.1 1.0.1 Android mobile malware 4
qqphone 1.0.0.0 1.0.0.0 2015-12-30 Found nothing 60
quickheal 14.00 14.00 2017-06-20 Android.Leech.GEN4942 2
rising 26.28.00.01 26.28.00.01 2016-07-18 Found nothing 1
sophos 5.32 3.65.2 2016-10-10 Found nothing 60
symantec 20151230.005 1.3.0.24 2015-12-30 Found nothing 60
tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 3
thehacker 6.8.0.5 6.8.0.5 2017-06-18 Found nothing 1
tws 17.47.17308 1.0.2.2108 2017-06-20 Found nothing 14
vba 3.12.29.5 beta 3.12.29.5 beta 2017-06-20 Found nothing 60
virusbuster 15.0.985.0 5.5.2.13 2014-12-05 Found nothing 60
权限列表
许可名称 信息
android.permission.RECEIVE_BOOT_COMPLETED 接收开机启动广播
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.CHANGE_WIFI_STATE 改变WIFI连接状态
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.MODIFY_PHONE_STATE 修改电话状态
android.permission.WAKE_LOCK 手机屏幕关闭后后台进程仍运行
android.permission.DEVICE_POWER 电源管理
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.INSTALL_PACKAGES 安装应用
android.permission.DELETE_PACKAGES 删除应用
文件信息
VirSCANVirSCAN
安全评分 :
基本信息
VirSCANVirSCAN
MD5:5d3a010a553228dd20a8beaadaeba15e
文件大小:5.58MB
上传时间: 2014-09-22 10:36:30 (CST)
包名:com.izkj.dclock
最低运行环境:Android 2.3, 2.3.1, 2.3.2
版权:izkj inc.
关键行为
VirSCANVirSCAN
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
行为描述: 获取QQ临时密码
详情信息: HttpOpenRequestA: ui.ptlogin2.qq.com:80/cgi-bin/login?appid=21000115&style=13&daid=8&s_url=http://user.qzone.qq.com/975796865/main, hConnect = 0x00cc0008, hRequest = 0x00cc000c, Verb: GET, Referer: , Flags = 0x00400200
HttpOpenRequestA: ui.ptlogin2.qq.com:80/cgi-bin/login?appid=21000115&style=13&daid=8&s_url=http://user.qzone.qq.com/975796865/main, hConnect = 0x00cc0008, hRequest = 0x00cc000c, Verb: GET, Referer: , Flags = 0x00400010
行为描述: 获取TickCount值
详情信息: TickCount = 5492234, SleepMilliseconds = 60000.
TickCount = 5492250, SleepMilliseconds = 60000.
TickCount = 5492281, SleepMilliseconds = 60000.
TickCount = 5492312, SleepMilliseconds = 60000.
TickCount = 5492328, SleepMilliseconds = 60000.
TickCount = 5432521, SleepMilliseconds = 100.
TickCount = 5432553, SleepMilliseconds = 100.
TickCount = 5432600, SleepMilliseconds = 100.
TickCount = 5432646, SleepMilliseconds = 100.
TickCount = 5492578, SleepMilliseconds = 60000.
TickCount = 5492609, SleepMilliseconds = 60000.
TickCount = 5492625, SleepMilliseconds = 60000.
TickCount = 5492640, SleepMilliseconds = 60000.
TickCount = 5492656, SleepMilliseconds = 60000.
TickCount = 5492828, SleepMilliseconds = 60000.
进程行为
VirSCANVirSCAN
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
行为描述: 获取QQ临时密码
详情信息: HttpOpenRequestA: ui.ptlogin2.qq.com:80/cgi-bin/login?appid=21000115&style=13&daid=8&s_url=http://user.qzone.qq.com/975796865/main, hConnect = 0x00cc0008, hRequest = 0x00cc000c, Verb: GET, Referer: , Flags = 0x00400200
HttpOpenRequestA: ui.ptlogin2.qq.com:80/cgi-bin/login?appid=21000115&style=13&daid=8&s_url=http://user.qzone.qq.com/975796865/main, hConnect = 0x00cc0008, hRequest = 0x00cc000c, Verb: GET, Referer: , Flags = 0x00400010
行为描述: 获取TickCount值
详情信息: TickCount = 5492234, SleepMilliseconds = 60000.
TickCount = 5492250, SleepMilliseconds = 60000.
TickCount = 5492281, SleepMilliseconds = 60000.
TickCount = 5492312, SleepMilliseconds = 60000.
TickCount = 5492328, SleepMilliseconds = 60000.
TickCount = 5432521, SleepMilliseconds = 100.
TickCount = 5432553, SleepMilliseconds = 100.
TickCount = 5432600, SleepMilliseconds = 100.
TickCount = 5432646, SleepMilliseconds = 100.
TickCount = 5492578, SleepMilliseconds = 60000.
TickCount = 5492609, SleepMilliseconds = 60000.
TickCount = 5492625, SleepMilliseconds = 60000.
TickCount = 5492640, SleepMilliseconds = 60000.
TickCount = 5492656, SleepMilliseconds = 60000.
TickCount = 5492828, SleepMilliseconds = 60000.
文件行为
VirSCANVirSCAN
行为描述: 创建文件
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6P4O8QNJ\login[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6P4O8QNJ\navcancl[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\ErrorPageTemplate[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\errorPageStrings[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\httpErrorPagesScripts[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\background_gradient[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\info_48[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\bullet[1]
行为描述: 覆盖已有文件
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6P4O8QNJ\navcancl[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\ErrorPageTemplate[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\errorPageStrings[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\httpErrorPagesScripts[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\background_gradient[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\info_48[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\bullet[1]
行为描述: 查找文件
详情信息: FileName = C:\Documents and Settings
FileName = C:\Documents and Settings\Administrator
FileName = C:\Documents and Settings\Administrator\Local Settings
FileName = C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Connections\Pbk\*.pbk
FileName = C:\WINDOWS\system32\Ras\*.pbk
FileName = C:\Documents and Settings\Administrator\Application Data\Microsoft\Network\Connections\Pbk\*.pbk
FileName = C:\WINDOWS
FileName = C:\WINDOWS\system32
FileName = C:\WINDOWS\system32\urlmon.dll
FileName = C:\WINDOWS\system32\ieframe.dll
行为描述: 删除文件
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6P4O8QNJ\login[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\navcancl[2]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\ErrorPageTemplate[2]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\errorPageStrings[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\httpErrorPagesScripts[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\background_gradient[2]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\info_48[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IUKHR8T2\bullet[1]
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
行为描述: 修改文件内容
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6P4O8QNJ\navcancl[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\ErrorPageTemplate[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\errorPageStrings[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\httpErrorPagesScripts[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\background_gradient[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\info_48[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\bullet[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Internet Explorer\MSIMGSIZ.DAT ---> Offset = 4096
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Internet Explorer\MSIMGSIZ.DAT ---> Offset = 12288
网络行为
VirSCANVirSCAN
行为描述: 连接指定站点
详情信息: InternetConnectA: ServerName = ui****om, PORT = 80, UserName = , Password = , hSession = 0x00cc0004, hConnect = 0x00cc0008, Flags = 0x00000000
行为描述: 打开HTTP连接
详情信息: InternetOpenA: UserAgent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; .NET4.0C; .NET4.0E; KB974489), hSession = 0x00cc0004
行为描述: 建立到一个指定的套接字连接
详情信息: URL: ui****om, IP: **.133.40.**:80, SOCKET = 0x00000338
URL: ui****om, IP: **.133.40.**:80, SOCKET = 0x00000428
行为描述: 读取网络文件
详情信息: hFile = 0x00cc000c, BytesToRead =4096, BytesRead = 4096.
行为描述: 发送HTTP包
详情信息: GET /cgi-bin/login?appid=21000115&style=13&daid=8&s_url=http://user.qzone.qq.com/975796865/main HTTP/1.1 Accept: */* Accept-Language: zh-cn Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; .NET4.0C; .NET4.0E; KB974489) Host: ui****om Connection: Keep-Alive
行为描述: 按名称获取主机地址
详情信息: GetAddrInfoW: ui****om
注册表行为
VirSCANVirSCAN
行为描述: 修改注册表
详情信息: \REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\SavedLegacySettings
行为描述: 删除注册表键值
详情信息: \REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer
\REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoConfigURL
其他行为
VirSCANVirSCAN
行为描述: 调整进程token权限
详情信息: SE_LOAD_DRIVER_PRIVILEGE
行为描述: 创建互斥体
详情信息: RasPbFile
CTF.LBES.MutexDefaultS-*
CTF.Compart.MutexDefaultS-*
CTF.Asm.MutexDefaultS-*
CTF.Layouts.MutexDefaultS-*
CTF.TMD.MutexDefaultS-*
CTF.TimListCache.FMPDefaultS-*MUTEX.DefaultS-*
Local\ZonesCounterMutex
Local\ZoneAttributeCacheCounterMutex
Local\ZonesCacheCounterMutex
Local\ZonesLockedCacheCounterMutex
CritOpMutex
Local\!PrivacIE!SharedMemory!Mutex
MSIMGSIZECacheMutex
MSCTF.Shared.MUTEX.ELH
行为描述: 创建事件对象
详情信息: EventName = DINPUTWINMM
EventName = Global\userenv: User Profile setup event
EventName = MSCTF.SendReceive.Event.AHE.IC
EventName = MSCTF.SendReceiveConection.Event.AHE.IC
行为描述: 查找指定窗口
详情信息: NtUserFindWindowEx: [Class,Window] = [MS_AutodialMonitor,]
NtUserFindWindowEx: [Class,Window] = [MS_WebCheckMonitor,]
NtUserFindWindowEx: [Class,Window] = [Shell_TrayWnd,]
NtUserFindWindowEx: [Class,Window] = [CicLoaderWndClass,]
行为描述: 获取QQ临时密码
详情信息: HttpOpenRequestA: ui.ptlogin2.qq.com:80/cgi-bin/login?appid=21000115&style=13&daid=8&s_url=http://user.qzone.qq.com/975796865/main, hConnect = 0x00cc0008, hRequest = 0x00cc000c, Verb: GET, Referer: , Flags = 0x00400200
HttpOpenRequestA: ui.ptlogin2.qq.com:80/cgi-bin/login?appid=21000115&style=13&daid=8&s_url=http://user.qzone.qq.com/975796865/main, hConnect = 0x00cc0008, hRequest = 0x00cc000c, Verb: GET, Referer: , Flags = 0x00400010
行为描述: 窗口信息
详情信息: Pid = 1456, Hwnd=0xa03ac, Text = 下载完毕, ClassName = Static.
Pid = 1456, Hwnd=0x100398, Text = 获取文件信息:, ClassName = Static.
Pid = 1456, Hwnd=0x170340, Text = login (来自 ui.ptlogin2.qq.com), ClassName = Static.
Pid = 1456, Hwnd=0xf03c8, Text = 文件大小未知, ClassName = Static.
Pid = 1456, Hwnd=0x303d2, Text = 估计剩余时间:, ClassName = Static.
Pid = 1456, Hwnd=0x303d4, Text = 已下载:, ClassName = Static.
Pid = 1456, Hwnd=0x503ae, Text = 下载到:, ClassName = Static.
Pid = 1456, Hwnd=0xb037c, Text = 传输速度:, ClassName = Static.
Pid = 1456, Hwnd=0x503de, Text = 下载完成后关闭此对话框(&C), ClassName = Button(CheckBox).
Pid = 1456, Hwnd=0x13035e, Text = 打开(&O), ClassName = Button.
Pid = 1456, Hwnd=0x1502c8, Text = 打开文件夹(&F), ClassName = Button.
Pid = 1456, Hwnd=0x903a2, Text = 取消, ClassName = Button.
Pid = 1456, Hwnd=0x603c6, Text = 已完成安装 0% - login (来自 ui.ptlogin2.qq.com), ClassName = #32770.
Pid = 1456, Hwnd=0x60380, Text = 登录窗口, ClassName = WTWindow.
Pid = 1456, Hwnd=0xf032c, Text = 您想运行或保存此文件吗?, ClassName = Static.
行为描述: 获取TickCount值
详情信息: TickCount = 5492234, SleepMilliseconds = 60000.
TickCount = 5492250, SleepMilliseconds = 60000.
TickCount = 5492281, SleepMilliseconds = 60000.
TickCount = 5492312, SleepMilliseconds = 60000.
TickCount = 5492328, SleepMilliseconds = 60000.
TickCount = 5432521, SleepMilliseconds = 100.
TickCount = 5432553, SleepMilliseconds = 100.
TickCount = 5432600, SleepMilliseconds = 100.
TickCount = 5432646, SleepMilliseconds = 100.
TickCount = 5492578, SleepMilliseconds = 60000.
TickCount = 5492609, SleepMilliseconds = 60000.
TickCount = 5492625, SleepMilliseconds = 60000.
TickCount = 5492640, SleepMilliseconds = 60000.
TickCount = 5492656, SleepMilliseconds = 60000.
TickCount = 5492828, SleepMilliseconds = 60000.
行为描述: 获取光标位置
详情信息: CursorPos = (96,18500), SleepMilliseconds = 60000.
CursorPos = (6389,26533), SleepMilliseconds = 60000.
CursorPos = (19224,15757), SleepMilliseconds = 60000.
行为描述: 打开事件
详情信息: HookSwitchHookEnabledEvent
\SECURITY\LSA_AUTHENTICATION_INITIALIZED
Global\SvcctrlStartEvent_A3752DX
\INSTALLATION_SECURITY_HOLD
MSFT.VSA.COM.DISABLE.1456
MSFT.VSA.IEC.STATUS.6c736db0
_fCanRegisterWithShellService
CTF.ThreadMIConnectionEvent.000007B4.00000000.00000054
CTF.ThreadMarshalInterfaceEvent.000007B4.00000000.00000054
MSCTF.SendReceiveConection.Event.ELH.IC
MSCTF.SendReceive.Event.ELH.IC
行为描述: 调用Sleep函数
详情信息: [1]: MilliSeconds = 60000.
[2]: MilliSeconds = 100.
[3]: MilliSeconds = 60000.
[4]: MilliSeconds = 0.
[5]: MilliSeconds = 0.
[6]: MilliSeconds = 0.
行为描述: 隐藏指定窗口
详情信息: [Window,Class] = [,Afx:400000:8:10011:1900015:0]
[Window,Class] = [,SysLink]
[Window,Class] = [,Static]
[Window,Class] = [文件大小未知,Static]
[Window,Class] = [打开此类文件前总是询问(&W),Button]
[Window,Class] = [发行者:,Static]
[Window,Class] = [,Shell Embedding]
[Window,Class] = [,Internet Explorer_Server]
行为描述: 打开互斥体
详情信息: RasPbFile
ShimCacheMutex
Local\!IETld!Mutex
Local\_!MSFTHISTORY!_
Local\c:!documents and settings!administrator!local settings!temporary internet files!content.ie5!
Local\c:!documents and settings!administrator!cookies!
Local\c:!documents and settings!administrator!local settings!history!history.ie5!
Local\WininetStartupMutex
Local\WininetConnectionMutex
Local\WininetProxyRegistryMutex
CtfmonInstMutexDefaultS-*
危险函数
VirSCANVirSCAN
函数名称 信息
TelephonyManager;->getDeviceId 搜集用户手机IMEI码、电话号码、系统版本号等信息
java/net/URL;->openConnection 连接URL
TelephonyManager;->getSimSerialNumber 获取SIM序列号
WifiManager;->setWifiEnabled 变更WIFI状态
getRuntime 获取命令行环境
java/lang/Runtime;->exec 执行字符串命令
启动方式
VirSCANVirSCAN
名称 信息
com.izkj.dclock.DReceiver 网络连接改变时启动服务
com.izkj.dclock.DReceiver 开机启动服务
权限列表
VirSCANVirSCAN
许可名称 信息
android.permission.RECEIVE_BOOT_COMPLETED 接收开机启动广播
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.CHANGE_WIFI_STATE 改变WIFI连接状态
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.MODIFY_PHONE_STATE 修改电话状态
android.permission.WAKE_LOCK 手机屏幕关闭后后台进程仍运行
android.permission.DEVICE_POWER 电源管理
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.INSTALL_PACKAGES 安装应用
android.permission.DELETE_PACKAGES 删除应用
服务列表
VirSCANVirSCAN
名称
com.izkj.dclock.BaseService
com.izkj.dclock.DService
文件列表
VirSCANVirSCAN
文件名 校验码
AndroidManifest.xml 0x3595b447
resources.arsc 0xc61b6cb2
res/drawable-hdpi/ic_launcher.png 0xd724f2ee
classes.dex 0x9388d493
META-INF/MANIFEST.MF 0x2f888b1c
META-INF/CERT.SF 0x4635bc55
META-INF/CERT.RSA 0x1397e41a
运行截图
VirSCANVirSCAN
VirSCAN