VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.
4, If your browser cannot upload files, please download VirSCAN uploader to upload.

Language
Server load
Server Load

VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

File information

Scanner results
Scanner results:0%Scanner(s) (0/32)found malware!
Behavior analysis report:         Habo file analysis
Time: 2015-10-23 10:32:44 (CST)
Scanner Engine Ver Sig Ver Sig Date Scan result Time
antiy AVL SDK 3.0 1970-01-01 Found nothing 5
asquared 9.0.0.4324 9.0.0.4324 2014-07-03 Found nothing 1
avast 150725-1 4.7.4 2015-07-25 Found nothing 0
avg 2109/8133 10.0.1405 2014-11-26 Found nothing 0
baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 5
baidusd 1.0 1.0 2014-04-02 Found nothing 1
bitdefender 7.58469 7.90123 2014-12-25 Found nothing 0
clamav 19861 0.97.5 2014-12-31 Found nothing 0
drweb 5.0.2.3300 5.0.1.1 2014-12-31 Found nothing 0
fortinet 23.345, 23.345 5.1.158 2014-12-08 Found nothing 0
fprot 4.6.2.117 6.5.1.5418 2014-12-31 Found nothing 0
fsecure 2014-04-02-01 9.13 2014-04-02 Found nothing 0
gdata 25.4014 25.4014 2015-10-23 Found nothing 8
ikarus 1.06.01 V1.32.31.0 2014-12-08 Found nothing 0
jiangmin 16.0.100 1.0.0.0 2015-07-25 Found nothing 40
kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 0
kingsoft 2.1 2.1 2013-09-22 Found nothing 60
mcafee 7638 5400.1158 2014-11-30 Found nothing 0
nod32 0920 3.0.21 2014-12-23 Found nothing 0
panda 9.05.01 9.05.01 2015-07-26 Found nothing 4
pcc 11.380.07 9.500-1005 2014-12-31 Found nothing 0
qh360 1.0.1 1.0.1 1.0.1 Found nothing 6
qqphone 1.0.0.0 1.0.0.0 2014-12-09 Found nothing 0
quickheal 14.00 14.00 2015-07-25 Found nothing 2
rising 25.76.04.01 25.76.04.01 2015-07-24 Found nothing 1
sophos 5.08 3.55.0 2014-12-01 Found nothing 0
symantec 20141230.001 1.3.0.24 2014-12-30 Found nothing 0
tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 3
thehacker 6.8.0.5 6.8.0.5 2015-07-23 Found nothing 1
tws 17.47.17308 1.0.2.2108 2014-12-08 Found nothing 12
vba 3.12.26.3 3.12.26.3 2014-12-31 Found nothing 0
virusbuster 15.0.985.0 5.5.2.13 2014-12-05 Found nothing 0
权限列表
许可名称 信息
android.permission.INTERNET 连接网络(2G或3G)
com.android.browser.permission.READ_HISTORY_BOOKMARKS 读取浏览器书签
android.permission.INSTALL_PACKAGES 安装应用
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.ACCESS_COARSE_LOCATION 获取粗略的位置(通过wifi、基站)
android.permission.SYSTEM_ALERT_WINDOW 显示系统窗口
android.permission.MOUNT_UNMOUNT_FILESYSTEMS 挂载、反挂载外部文件系统
android.permission.CLEAR_APP_USER_DATA 清除用户数据
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.CLEAR_APP_CACHE 清除应用缓存
android.permission.DELETE_PACKAGES 删除应用
android.permission.BLUETOOTH 连接蓝牙设备
android.permission.GET_TASKS 获取有关当前或最近运行的任务信息
android.permission.SET_WALLPAPER 设置桌面壁纸
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.RECEIVE_BOOT_COMPLETED 接收开机启动广播
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
文件信息
VirSCANVirSCAN
安全评分 :
基本信息
VirSCANVirSCAN
MD5:bc1730b7b220fa8ed84a06c50094905f
文件大小:5.58MB
上传时间: 2014-09-22 10:36:30 (CST)
包名:com.android.fallen
最低运行环境:Android 2.2.x
版权:Android
进程行为
VirSCANVirSCAN
其他行为
VirSCANVirSCAN
行为描述: 样本控制台输出内容
详情信息: N/A
行为描述: 创建互斥体
详情信息: oleacc-msaa-loaded
危险行为
VirSCANVirSCAN
行为描述: 执行系统命令
详情信息: [u'service list']
[u'getprop']
动态列表行为
VirSCANVirSCAN
行为描述: 调用哈希算法
详情信息: MD5
行为描述: 读取文件
详情信息: path:/data/app/com.android.fallen-1.apk length:61
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:5
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
path:unknown length:6
行为描述: 获取加密实例
详情信息: [u'DES/CBC/PKCS5Padding']
行为描述: 获取用户ID
详情信息: 460000043140572
行为描述: 定位移动终端
详情信息: null
行为描述: 执行系统命令
详情信息: [u'service list']
[u'getprop']
行为描述: 添加View
详情信息: [u'com.android.internal.policy.impl.PhoneWindow$DecorView@414c8cc8', u'WM.LayoutParams{(0,0)(fillxfill) sim=#100 ty=1 fl=#1810100 pfl=0x8 wanim=0x10302e0}', u'android.view.CompatibilityInfoHolder@414af998']
[u'com.android.internal.policy.impl.PhoneWindow$DecorView@414e76d8', u'WM.LayoutParams{(0,0)(fillxfill) sim=#100 ty=1 fl=#1810100 pfl=0x8 wanim=0x10302e0}', u'android.view.CompatibilityInfoHolder@414af998']
[u'com.android.internal.policy.impl.PhoneWindow$DecorView@41578a08', u'WM.LayoutParams{(0,0)(wrapxwrap) gr=#11 sim=#120 ty=2 fl=#1820002 pfl=0x8 fmt=-2 wanim=0x1030002}', u'android.view.CompatibilityInfoHolder@414af998']
[u'com.android.internal.policy.impl.PhoneWindow$DecorView@414c6e00', u'WM.LayoutParams{(0,0)(fillxfill) sim=#100 ty=1 fl=#1810100 pfl=0x8 fmt=-2 wanim=0x1030000}', u'android.view.CompatibilityInfoHolder@414af998']
行为描述: 写入文件
详情信息: path:/data/data/com.android.fallen/shared_prefs/com.android.fallen.xml length:116
path:/data/data/com.android.fallen/shared_prefs/com.android.fallen.xml length:185
path:/data/data/com.android.fallen/shared_prefs/com.android.fallen.xml length:225
path:/data/data/com.android.fallen/shared_prefs/com.android.fallen.xml length:261
path:/data/data/com.android.fallen/shared_prefs/com.android.fallen.xml length:261
path:/data/data/com.android.fallen/shared_prefs/com.android.fallen.xml length:261
path:/data/data/com.android.fallen/shared_prefs/com.android.fallen.xml length:261
path:/data/data/com.android.fallen/shared_prefs/com.android.fallen.xml length:261
path:/data/data/com.android.fallen/files/limitour length:18
path:/data/data/com.android.fallen/shared_prefs/com.android.fallen.xml length:261
行为描述: 获取安装应用列表
详情信息: [u'256']
行为描述: 获取网络状态信息[*]
详情信息: NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
行为描述: 获取设备ID
详情信息: 357143040944263
357143040944263
357143040944263
行为描述: 定时任务
详情信息: [u'0', u'1439279064443', u'PendingIntent{4152a5a8: android.os.BinderProxy@4152a560}']
[u'0', u'1439266480173', u'PendingIntent{415e9f90: android.os.BinderProxy@415643a8}']
行为描述: 初始化Intent
详情信息: [u'android.os.Parcel@414ad1d8']
[u'com.android.action.sapphires.buttons.expiation.underpart']
[u'android.os.Parcel@414ad1d8']
[u'android.os.Parcel@414ad1d8']
[u'android.os.Parcel@414ad1d8']
[u'android.os.Parcel@414ad1d8']
[u'com.android.action.sapphires.buttons.expiation.underpart']
Activities
VirSCANVirSCAN
活动名 类型
org.zptgls.yourselves.greenshank.Eniklanthe android.intent.action.MAIN
危险函数
VirSCANVirSCAN
函数名称 信息
HttpClient;->execute 请求远程服务器
DefaultHttpClient;->execute 发送HTTP请求
TelephonyManager;->getDeviceId 搜集用户手机IMEI码、电话号码、系统版本号等信息
getRuntime 获取命令行环境
java/lang/Runtime;->exec 执行字符串命令
java/net/URL;->openConnection 连接URL
ContentResolver;->query 读取联系人、短信等数据库
启动方式
VirSCANVirSCAN
名称 信息
cn.um.puerile.expletive.Noting 开机启动服务
edu.pwlm.palki.choirboy.Deepsoild 网络连接改变时启动服务
cn.kaobu.stropharia.brahimism.dessus.Goggleeyes 网络连接改变时启动服务
gov.futfym.athenaeum.diapsida.cythere.Embroiderd 开机启动服务
权限列表
VirSCANVirSCAN
许可名称 信息
android.permission.INTERNET 连接网络(2G或3G)
com.android.browser.permission.READ_HISTORY_BOOKMARKS 读取浏览器书签
android.permission.INSTALL_PACKAGES 安装应用
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.ACCESS_COARSE_LOCATION 获取粗略的位置(通过wifi、基站)
android.permission.SYSTEM_ALERT_WINDOW 显示系统窗口
android.permission.MOUNT_UNMOUNT_FILESYSTEMS 挂载、反挂载外部文件系统
android.permission.CLEAR_APP_USER_DATA 清除用户数据
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.CLEAR_APP_CACHE 清除应用缓存
android.permission.DELETE_PACKAGES 删除应用
android.permission.BLUETOOTH 连接蓝牙设备
android.permission.GET_TASKS 获取有关当前或最近运行的任务信息
android.permission.SET_WALLPAPER 设置桌面壁纸
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.RECEIVE_BOOT_COMPLETED 接收开机启动广播
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
服务列表
VirSCANVirSCAN
名称
gov.cmrqhi.repenting.success.devouring.Lowbacked
gov.qtjtx.barycenter.ascocarp.Lightminded
edu.nggbz.anthropocentric.bewaild.Insculpture
info.fgwu.aggrieve.comprehensiveness.Almsgiver
net.zwijf.hydrochlorothiazide.Clonus
info.nn.spontaneousness.excusably.galliens.Degage
文件列表
VirSCANVirSCAN
文件名 校验码
META-INF/MANIFEST.MF 0xd0ef2f9b
META-INF/CERT.SF 0xdd89953f
META-INF/CERT.RSA 0x94e0451b
AndroidManifest.xml 0xcede93d3
classes.dex 0xf5accd16
res/drawable-hdpi/ic_launcher.png 0x5f8a1eb4
res/drawable-mdpi/ic_launcher.png 0xa5bfa0ca
res/drawable-xhdpi/ic_launcher.png 0xc9c090e8
resources.arsc 0x7c3501d2
运行截图
VirSCANVirSCAN
VirSCAN