VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load

VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

File information

Scanner results
Scanner results:0%Scanner(s) (0/39)found malware!
Behavior analysis report:         Habo file analysis
Time: 2014-10-31 09:36:12 (CST)
Scanner Engine Ver Sig Ver Sig Date Scan result Time
ahnlab 9.9.9 9.9.9 2013-05-28 Found nothing 4
antivir 1.9.2.0 1.9.159.0 7.11.182.106 Found nothing 14
antiy 114714 AVL141029 2014-10-30 Found nothing 5
arcavir 1.0 2011 2014-05-30 Found nothing 8
asquared 9.0.0.4324 9.0.0.4324 2014-07-03 Found nothing 1
avast 141030-1 4.7.4 2014-10-30 Found nothing 9
avg 2109/7906 10.0.1405 2014-10-17 Found nothing 1
baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 4
baidusd 1.0 1.0 2014-04-02 Found nothing 1
bitdefender 7.57450 7.90123 2014-10-31 Found nothing 6
clamav 19554 0.97.5 2014-10-30 Found nothing 1
comodo 15023 5.1 2014-10-30 Found nothing 3
ctch 4.6.5 5.3.14 2013-12-01 Found nothing 1
drweb 5.0.2.3300 5.0.1.1 2014-10-31 Found nothing 30
fortinet Found nothing 1
fprot 4.6.2.117 6.5.1.5418 2014-10-30 Found nothing 1
fsecure 2014-04-02-01 9.13 2014-04-02 Found nothing 5
gdata 24.4683 24.4683 2014-10-31 Found nothing 8
hauri 2.73 2.73 2014-10-30 Found nothing 1
ikarus 1.06.01 V1.32.31.0 2014-10-30 Found nothing 13
jiangmin 16.0.100 1.0.0.0 2014-08-20 Found nothing 32
kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 20
kingsoft 2.1 2.1 2013-09-22 Found nothing 5
mcafee 7520 5400.1158 2014-08-04 Found nothing 8
nod32 0436 3.0.21 2014-09-18 Found nothing 1
panda 9.05.01 9.05.01 2014-10-30 Found nothing 5
pcc 11.242.06 9.500-1005 2014-10-29 Found nothing 1
qh360 1.0.1 1.0.1 1.0.1 Found nothing 12
qqphone 1.0.0.0 1.0.0.0 2014-10-31 Found nothing 1
quickheal 14.00 14.00 2014-10-28 Found nothing 2
rising 25.38.01.01 25.38.01.01 2014-10-28 Found nothing 1
sophos 5.04 3.51.0 2014-08-05 Found nothing 6
sunbelt 3.9.2595.2 3.9.2595.2 2014-10-29 Found nothing 1
symantec 20141028.001 1.3.0.24 2014-10-28 Found nothing 1
tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 3
thehacker 6.8.0.5 6.8.0.5 2014-10-27 Found nothing 1
tws 17.47.17308 1.0.2.2108 2014-10-30 Found nothing 6
vba 3.12.26.3 3.12.26.3 2014-10-30 Found nothing 3
virusbuster 15.0.952.0 5.5.2.13 2014-10-28 Found nothing 15
权限列表
许可名称 信息
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
文件信息
VirSCANVirSCAN
安全评分 :86
基本信息
VirSCANVirSCAN
MD5:e4275f88e5510ad0dd8b013ecc9553f1
文件大小:5.58MB
上传时间: 2014-09-22 10:36:30 (CST)
包名:com.amnoon
最低运行环境:Android 2.3.3, 2.3.4
版权:amttgroup.com
关键行为
VirSCANVirSCAN
行为描述: 隐藏指定窗口
详情信息: [Window,Class] = [InstallShield Wizard,#32770]
[Window,Class] = [Windows Installer,#32770]
进程行为
VirSCANVirSCAN
行为描述: 隐藏指定窗口
详情信息: [Window,Class] = [InstallShield Wizard,#32770]
[Window,Class] = [Windows Installer,#32770]
文件行为
VirSCANVirSCAN
行为描述: 写权限映射文件
详情信息: \DOCUME~1\ADMINI~1\LOCALS~1\Temp\~2.tmp
\DOCUME~1\ADMINI~1\LOCALS~1\Temp\_is3\Setup.INI
\DOCUME~1\ADMINI~1\LOCALS~1\Temp\_is3\0x0409.ini
\DOCUME~1\ADMINI~1\LOCALS~1\Temp\_is3\Applied Discovery"s Redaction and Print Components.msi
DfSharedHeapBEDC7
DfRoot0000BEDC7
DfSharedHeapBEFF3
DfRoot0000BEFF3
行为描述: 创建可执行文件
详情信息: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\MSI4.tmp
行为描述: 修改文件内容
详情信息: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\~2.tmp---> Offset = 1024
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\_is3\Setup.INI---> Offset = 1024
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\_is3\_ISMSIDEL.INI---> Offset = 0
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\_is3\0x0409.ini---> Offset = 4096
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\_is3\_ISMSIDEL.INI---> Offset = 70
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\_is3\Applied Discovery"s Redaction and Print Components.msi---> Offset = 4096
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\14ad75.msi---> Offset = 89286
其他行为
VirSCANVirSCAN
行为描述: 窗口信息
详情信息: Pid = 1748, Hwnd=0xd0166, Text = Cancel, ClassName = Button.
Pid = 1748, Hwnd=0xb016a, Text = Preparing to Install..., ClassName = Static.
Pid = 1748, Hwnd=0xb01de, Text = Applied Discovery"s Redaction and Print Components Setup is preparing the InstallShield Wizard, which will guide you through the , ClassName = Static.
Pid = 1748, Hwnd=0xc01d6, Text = Configuring Windows Installer, ClassName = Static.
Pid = 1748, Hwnd=0xd01c8, Text = Progress1, ClassName = msctls_progress32.
Pid = 1748, Hwnd=0xb01b0, Text = IDR_GIF1, ClassName = is_gif_class.
Pid = 1748, Hwnd=0xa0186, Text = InstallShield Wizard, ClassName = #32770.
Pid = 180, Hwnd=0xe016e, Text = &OK, ClassName = Button.
Pid = 180, Hwnd=0xa0198, Text = Adobe Acrobat cannot be found. Please install Adobe Acrobat Full Version 6.0 or greater., ClassName = Static.
Pid = 180, Hwnd=0xd01a4, Text = NewBinary4, ClassName = Static.
Pid = 180, Hwnd=0xe0180, Text = Applied Discovery"s Redaction and Print Components Installer Information, ClassName = MsiDialogCloseClass.
行为描述: 隐藏指定窗口
详情信息: [Window,Class] = [InstallShield Wizard,#32770]
[Window,Class] = [Windows Installer,#32770]
行为描述: 创建互斥体
详情信息: SHIMLIB_LOG_MUTEX
行为描述: 获取系统权限
详情信息: SE_SHUTDOWN_PRIVILEGE
SE_INCREASE_QUOTA_PRIVILEGE
SE_CREATE_TOKEN_PRIVILEGE
动态列表行为
VirSCANVirSCAN
行为描述: 启动服务
详情信息: com.android.musicfx.Compatibility$Service
com.android.mms.transaction.SmsReceiverService
行为描述: 读取文件
详情信息: path:/proc/783/cmdline length:105
path:/proc/799/cmdline length:105
path:/proc/811/cmdline length:105
path:/proc/841/cmdline length:105
path:/proc/853/cmdline length:105
行为描述: 类加载
详情信息: path:/system/app/PicoTts.apk
path:/system/app/MusicFX.apk
path:/system/framework/am.jar
path:/data/app/com.amnoon-1.apk
行为描述: 写入文件
详情信息: path:/data/data/com.android.gallery3d/shared_prefs/com.android.gallery3d_preferences.xml length:105
path:/data/data/com.android.musicfx/shared_prefs/musicfx.xml length:105
path:/data/data/com.android.gallery3d/shared_prefs/com.android.gallery3d_preferences.xml length:105
Activities
VirSCANVirSCAN
活动名 类型
.SupplicantActivity android.intent.action.MAIN
.SupplicantActivity android.intent.category.LAUNCHER
权限列表
VirSCANVirSCAN
许可名称 信息
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
文件列表
VirSCANVirSCAN
文件名 校验码
res/drawable/amnoon.png 0xd3fd2471
res/layout/main.xml 0xc840e86c
AndroidManifest.xml 0x7746c09a
resources.arsc 0xccea5c1e
res/drawable-hdpi/icon.png 0x40b8b2a2
res/drawable-ldpi/icon.png 0x159f0e12
res/drawable-mdpi/icon.png 0xcd7d6924
classes.dex 0xee60db09
META-INF/MANIFEST.MF 0xcf4ae787
META-INF/CERT.SF 0x204aacf4
META-INF/CERT.RSA 0x2bc0e994
运行截图
VirSCANVirSCAN
VirSCAN