VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load

VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

File information

Scanner results
Scanner results:0%Scanner(s) (0/32)found malware!
Behavior analysis report:         Habo file analysis
Time: 2015-07-02 18:33:03 (CST)
Scanner Engine Ver Sig Ver Sig Date Scan result Time
antiy AVL SDK 3.0 1970-01-01 Found nothing 5
asquared 9.0.0.4324 9.0.0.4324 2014-07-03 Found nothing 1
avast 141231-0 4.7.4 2014-12-31 Found nothing 39
avg 2109/8133 10.0.1405 2014-11-26 Found nothing 15
baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 7
baidusd 1.0 1.0 2014-04-02 Found nothing 1
bitdefender 7.58469 7.90123 2014-12-25 Found nothing 1
clamav 19745 0.97.5 2014-12-07 Found nothing 1
drweb 5.0.2.3300 5.0.1.1 2014-12-31 Found nothing 58
fortinet 23.345, 23.345 5.1.158 2014-12-08 Found nothing 1
fprot 4.6.2.117 6.5.1.5418 2014-12-31 Found nothing 15
fsecure 2014-04-02-01 9.13 2014-04-02 Found nothing 18
gdata 25.2328 25.2328 2015-07-02 Found nothing 9
ikarus 1.06.01 V1.32.31.0 2014-12-08 Found nothing 24
jiangmin 16.0.100 1.0.0.0 2014-08-20 Found nothing 41
kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 50
kingsoft 2.1 2.1 2013-09-22 Found nothing 31
mcafee 7638 5400.1158 2014-11-30 Found nothing 57
nod32 0920 3.0.21 2014-12-23 Found nothing 4
panda 9.05.01 9.05.01 2014-12-31 Found nothing 5
pcc 11.380.07 9.500-1005 2014-12-31 Found nothing 9
qh360 1.0.1 1.0.1 1.0.1 Found nothing 10
qqphone 1.0.0.0 1.0.0.0 2014-12-09 Found nothing 1
quickheal 14.00 14.00 2014-12-31 Found nothing 3
rising 25.46.06.04 25.46.06.04 2014-12-28 Found nothing 2
sophos 5.08 3.55.0 2014-12-01 Found nothing 23
symantec 20141230.001 1.3.0.24 2014-12-30 Found nothing 2
tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 6
thehacker 6.8.0.5 6.8.0.5 2014-12-29 Found nothing 2
tws 17.47.17308 1.0.2.2108 2014-12-08 Found nothing 12
vba 3.12.26.3 3.12.26.3 2014-12-31 Found nothing 53
virusbuster 15.0.985.0 5.5.2.13 2014-12-05 Found nothing 60
权限列表
许可名称 信息
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.READ_EXTERNAL_STORAGE 读外部存储器(如:SD卡)
android.permission.BLUETOOTH 连接蓝牙设备
android.permission.ACCESS_BLUETOOTH_SHARE
android.permission.BLUETOOTH_ADMIN 搜寻蓝牙设备
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
文件信息
VirSCANVirSCAN
安全评分 :
基本信息
VirSCANVirSCAN
MD5:a701e45a5b322bc832590fbd9f6861f2
文件大小:5.58MB
上传时间: 2014-09-22 10:36:30 (CST)
包名:coco.mobile
最低运行环境:Android 2.2.x
版权:
关键行为
VirSCANVirSCAN
行为描述: 写权限映射文件
详情信息: Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_0
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_1
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_2
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_3
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_4
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_5
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_6
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_7
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_8
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_9
行为描述: 按名称获取主机地址
详情信息: findville.xyz
文件行为
VirSCANVirSCAN
行为描述: 写权限映射文件
详情信息: Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_0
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_1
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_2
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_3
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_4
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_5
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_6
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_7
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_8
Global\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}_9
行为描述: 修改文件内容
详情信息: C:\monitor\sample.dat---> Offset = 4096
网络行为
VirSCANVirSCAN
行为描述: 按名称获取主机地址
详情信息: findville.xyz
注册表行为
VirSCANVirSCAN
行为描述: 修改注册表
详情信息: \REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{97041CD3-8E36-CD2C-BA5B-9998E1DC84D0}\{E4026B42-9C3B-1AC4-38B0-088D2D03FE3E}\
其他行为
VirSCANVirSCAN
行为描述: 创建互斥体
详情信息: 13965259350595890020d41d8cd98f00b204e9800998ecf8427e
动态列表行为
VirSCANVirSCAN
行为描述: 访问网络
详情信息: host:54.231.242.134 port:443
host:125.224.209.150 port:26668
host:114.42.28.179 port:26668
host:118.168.19.21 port:26668
host:36.232.88.124 port:26668
host:36.238.224.153 port:26668
行为描述: 读取文件
详情信息: path:/data/app/coco.mobile-1.apk length:7
path:/data/app/coco.mobile-1.apk length:15
path:/data/app/coco.mobile-1.apk length:810
path:/data/app/coco.mobile-1.apk length:1074
行为描述: Android运行时错误
详情信息: E/AndroidRuntime( 2464): FATAL EXCEPTION: main
E/AndroidRuntime( 2464): java.lang.RuntimeException: Unable to start activity ComponentInfo{coco.mobile/coco.mobile.LaunchPad}: java.lang.NullPointerException
E/AndroidRuntime( 2464): at android.app.ActivityThread.performLaunchActivity(ActivityThread.java:2059)
E/AndroidRuntime( 2464): at android.app.ActivityThread.handleLaunchActivity(ActivityThread.java:2084)
E/AndroidRuntime( 2464): at android.app.ActivityThread.access$600(ActivityThread.java:130)
E/AndroidRuntime( 2464): at android.app.ActivityThread$H.handleMessage(ActivityThread.java:1195)
E/AndroidRuntime( 2464): at android.os.Handler.dispatchMessage(Handler.java:99)
E/AndroidRuntime( 2464): at android.os.Looper.loop(Looper.java:137)
E/AndroidRuntime( 2464): at android.app.ActivityThread.main(ActivityThread.java:4745)
E/AndroidRuntime( 2464): at java.lang.reflect.Method.invokeNative(Native Method)
E/AndroidRuntime( 2464): at java.lang.reflect.Method.invoke(Method.java:511)
E/AndroidRuntime( 2464): at com.android.internal.os.ZygoteInit$MethodAndArgsCaller.run(ZygoteInit.java:786)
E/AndroidRuntime( 2464): at com.android.internal.os.ZygoteInit.main(ZygoteInit.java:553)
E/AndroidRuntime( 2464): at de.robv.android.xposed.XposedBridge.main(XposedBridge.java:135)
E/AndroidRuntime( 2464): at dalvik.system.NativeStart.main(Native Method)
E/AndroidRuntime( 2464): Caused by: java.lang.NullPointerException
E/AndroidRuntime( 2464): at coco.mobile.LaunchPad.onDestroy(Unknown Source)
E/AndroidRuntime( 2464): at coco.mobile.LaunchPad.onStop(Unknown Source)
E/AndroidRuntime( 2464): at coco.mobile.LaunchPad.onCreate(Unknown Source)
E/AndroidRuntime( 2464): at android.app.Activity.performCreate(Activity.java:5008)
E/AndroidRuntime( 2464): at android.app.Instrumentation.callActivityOnCreate(Instrumentation.java:1079)
E/AndroidRuntime( 2464): at android.app.ActivityThread.performLaunchActivity(ActivityThread.java:2023)
E/AndroidRuntime( 2464): ... 12 more
行为描述: 初始化IntentFilter
详情信息: [u'appstop']
行为描述: 添加悬浮窗口
详情信息: [u'com.android.internal.policy.impl.PhoneWindow$DecorView@414f2f10', u'WM.LayoutParams{(0,0)(wrapxwrap) gr=#11 sim=#120 ty=2 fl=#9020002 pfl=0x8 fmt=-2 wanim=0x1030002}', u'android.view.CompatibilityInfoHolder@414b4000']
行为描述: 初始化Intent
详情信息: [u'android.os.Parcel@414b28b0']
[u'netconn']
Activities
VirSCANVirSCAN
活动名 类型
.LaunchPad android.intent.action.MAIN
.LaunchPad android.intent.category.LAUNCHER
危险函数
VirSCANVirSCAN
函数名称 信息
ContentResolver;->query 读取联系人、短信等数据库
android/app/NotificationManager;->notify 信息通知栏
HttpClient;->execute 请求远程服务器
java/net/URL;->openConnection 连接URL
java/net/HttpURLConnection;->connect 连接URL
权限列表
VirSCANVirSCAN
许可名称 信息
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.READ_EXTERNAL_STORAGE 读外部存储器(如:SD卡)
android.permission.BLUETOOTH 连接蓝牙设备
android.permission.ACCESS_BLUETOOTH_SHARE
android.permission.BLUETOOTH_ADMIN 搜寻蓝牙设备
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
服务列表
VirSCANVirSCAN
名称
coco.mobile.VpnClient
coco.mobile.PipeService
文件列表
VirSCANVirSCAN
文件名 校验码
AndroidManifest.xml 0xb543a352
assets/landing.html 0xfe6d3dde
res/drawable-land/soh.jpg 0xb4beb949
res/drawable-ldpi-v4/iconbar.png 0xc53f3a0d
res/drawable-mdpi-v4/iconbar.png 0x5e8b25da
res/drawable-port/soh.jpg 0x73f0454
res/drawable/audio.jpg 0xa9521613
res/drawable/border.xml 0x1b86580
res/drawable/button.xml 0xe5f1deca
res/drawable/button1.xml 0x90f307d2
res/drawable/circle.xml 0xd43ea8b9
res/drawable/drawer_shadow.png 0xe7d74c2b
res/drawable/ic_menu_back.png 0xef9a1cc5
res/drawable/ic_menu_forward.png 0x8c06912b
res/drawable/ic_menu_home.png 0x251a47c0
res/drawable/ic_menu_refresh.png 0x5b3150dc
res/drawable/ic_menu_stop.png 0xda65d2c9
res/drawable/icon.png 0x1a60f725
res/drawable/iconbar.png 0x5b91d314
res/drawable/menubutton.png 0xaa084de5
res/drawable/tvbg.JPG 0xb59fe1dd
res/layout/activity_main.xml 0xfe4da719
res/layout/addbookmark.xml 0x9e258f0c
res/layout/bluetooth.xml 0xf83672ca
res/layout/bookmark.xml 0xc6c73fe7
res/layout/brightbar.xml 0xa073d0e5
res/layout/device_list.xml 0x99dfaa10
res/layout/device_name.xml 0x8ad2a8ef
res/layout/drawer_list_item.xml 0x3223e5a4
res/layout/history.xml 0x775ad97f
res/layout/historyitem.xml 0xeba34017
res/layout/item_tv.xml 0xaa6c0902
res/layout/main.xml 0x9d911244
res/layout/main_tv.xml 0xcacf377a
res/layout/sendsms.xml 0xba7edf44
res/layout/toolmenu.xml 0xb4081793
res/layout/toolmenutv.xml 0xb3f46996
res/layout/videoplayer.xml 0x52507305
res/layout/videoview.xml 0xd90013a
res/xml/preferences.xml 0x3dccdb42
resources.arsc 0x50fc5712
classes.dex 0xa82206f0
drawable/audio.jpg 0xa9521613
drawable/border.xml 0x8883e476
drawable/button.xml 0x7585ad5b
drawable/button1.xml 0xea100699
drawable/circle.xml 0x7a508a12
drawable/drawer_shadow.png 0x19900aef
drawable/ic_menu_back.png 0xfa13429
drawable/ic_menu_forward.png 0xc10ae2ff
drawable/ic_menu_home.png 0x85a0c505
drawable/ic_menu_refresh.png 0x9f7d85da
drawable/ic_menu_stop.png 0xb4b7fc58
drawable/icon.png 0xe79c02cb
drawable/iconbar.png 0x381745d1
drawable/menubutton.png 0xe2024fc0
drawable/tvbg.JPG 0xb59fe1dd
drawable-land/soh.jpg 0xb4beb949
drawable-ldpi/iconbar.png 0x683f0c87
drawable-mdpi/iconbar.png 0x6d93849f
drawable-port/soh.jpg 0x73f0454
layout/activity_main.xml 0xcc8cae6c
layout/addbookmark.xml 0x12d4981
layout/bluetooth.xml 0xe666ea79
layout/bookmark.xml 0xd5ec539b
layout/brightbar.xml 0x26f2f0c2
layout/device_list.xml 0x84b6745f
layout/device_name.xml 0xd4e94fa7
layout/drawer_list_item.xml 0x83719607
layout/history.xml 0x580b0a2f
layout/historyitem.xml 0x4c744c40
layout/item_tv.xml 0x80376229
layout/main.xml 0x257c9539
layout/main_tv.xml 0xb368ec37
layout/sendsms.xml 0x6ee7b80
layout/toolmenu.xml 0x8b7c4e35
layout/toolmenutv.xml 0x747c21ee
layout/videoplayer.xml 0x23238707
layout/videoview.xml 0xdd3b8b45
values/resource.xml 0xbcec6e7
values/strings.xml 0x4ee2d14b
values-zh-rTW/string.xml 0xdf9c50bc
xml/preferences.xml 0x3cb9f93e
lib/armeabi/libumcpart.so 0x7eba45fb
lib/armeabi-v7a/libumcpart.so 0x14c67c54
lib/mips/libumcpart.so 0xed549fb7
lib/x86/libumcpart.so 0x221d5122
META-INF/MANIFEST.MF 0xf95b4071
META-INF/CERT.SF 0x6537c989
META-INF/CERT.RSA 0x8333596c
运行截图
VirSCANVirSCAN
VirSCAN