VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load

VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

File information

Scanner results
Scanner results:15%Scanner(s) (6/39)found malware!
Behavior analysis report:         Habo file analysis
Time: 2014-10-31 21:09:27 (CST)
Scanner Engine Ver Sig Ver Sig Date Scan result Time
ahnlab 9.9.9 9.9.9 2013-05-28 Found nothing 5
antivir 1.9.2.0 1.9.159.0 7.11.182.106 Found nothing 26
antiy 114714 AVL141029 2014-10-30 Found nothing 5
arcavir 1.0 2011 2014-05-30 Found nothing 8
asquared 9.0.0.4324 9.0.0.4324 2014-07-03 Found nothing 2
avast 141030-1 4.7.4 2014-10-30 Android:Sadpor-L [PUP] 35
avg 2109/7906 10.0.1405 2014-10-17 Found nothing 1
baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 5
baidusd 1.0 1.0 2014-04-02 Found nothing 1
bitdefender 7.57450 7.90123 2014-10-31 Found nothing 7
clamav 19554 0.97.5 2014-10-30 Found nothing 1
comodo 15023 5.1 2014-10-30 Found nothing 3
ctch 4.6.5 5.3.14 2013-12-01 Found nothing 1
drweb 5.0.2.3300 5.0.1.1 2014-10-31 Found nothing 49
fortinet Found nothing 1
fprot 4.6.2.117 6.5.1.5418 2014-10-30 Found nothing 2
fsecure 2014-04-02-01 9.13 2014-04-02 Found nothing 4
gdata 24.4683 24.4683 2014-10-31 Android:Agent-DOC 11
hauri 2.73 2.73 2014-10-30 Found nothing 1
ikarus 1.06.01 V1.32.31.0 2014-10-30 Found nothing 17
jiangmin 16.0.100 1.0.0.0 2014-08-20 Found nothing 31
kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 34
kingsoft 2.1 2.1 2013-09-22 Found nothing 6
mcafee 7520 5400.1158 2014-08-04 Found nothing 11
nod32 0436 3.0.21 2014-09-18 a variant of Android/Agent.FC trojan 1
panda 9.05.01 9.05.01 2014-10-30 Found nothing 8
pcc 11.242.06 9.500-1005 2014-10-29 Found nothing 2
qh360 1.0.1 1.0.1 1.0.1 Found nothing 13
qqphone 1.0.0.0 1.0.0.0 2014-10-31 a.gray.ninedown 2
quickheal 14.00 14.00 2014-10-28 Android.Agent.KU 3
rising 25.38.01.01 25.38.01.01 2014-10-28 Found nothing 2
sophos 5.04 3.51.0 2014-08-05 Andr/Ackposts-A 10
sunbelt 3.9.2595.2 3.9.2595.2 2014-10-29 Found nothing 3
symantec 20141028.001 1.3.0.24 2014-10-28 Found nothing 1
tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 4
thehacker 6.8.0.5 6.8.0.5 2014-10-27 Found nothing 2
tws 17.47.17308 1.0.2.2108 2014-10-30 Found nothing 7
vba 3.12.26.3 3.12.26.3 2014-10-30 Found nothing 6
virusbuster 15.0.952.0 5.5.2.13 2014-10-28 Found nothing 20
权限列表
许可名称 信息
android.permission.WRITE_SETTINGS 读写系统设置项
android.permission.INTERNET 连接网络(2G或3G)
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.READ_PHONE_STATE 读取电话状态
com.android.launcher.permission.INSTALL_SHORTCUT 创建快捷方式
android.permission.ACCESS_FINE_LOCATION 获取精确的位置(通过GPS)
android.permission.SYSTEM_ALERT_WINDOW 显示系统窗口
android.permission.GET_TASKS 获取有关当前或最近运行的任务信息
android.permission.DOWNLOAD_WITHOUT_NOTIFICATION
文件信息
VirSCANVirSCAN
安全评分 :82
基本信息
VirSCANVirSCAN
MD5:6bd04447f6b673ca8f9e0c61c8fd3a70
文件大小:5.58MB
上传时间: 2014-09-22 10:36:30 (CST)
包名:ales.veluscek.sdtools
最低运行环境:Android 2.1.x
版权:HTF
其他行为
VirSCANVirSCAN
行为描述: 窗口信息
详情信息: Pid = 984, Hwnd=0xb016a, Text = You can also use the /accepteula command-line switch to accept the EULA., ClassName = Static.
Pid = 984, Hwnd=0xb01de, Text = &Agree, ClassName = Button.
Pid = 984, Hwnd=0xc01d6, Text = &Decline, ClassName = Button.
Pid = 984, Hwnd=0xd01c8, Text = &Print, ClassName = Button.
Pid = 984, Hwnd=0xd0180, Text = Process Monitor License Agreement, ClassName = #32770.
动态列表行为
VirSCANVirSCAN
行为描述: 启动服务
详情信息: com.android.musicfx.Compatibility$Service
com.android.mms.transaction.SmsReceiverService
行为描述: 读取文件
详情信息: path:/proc/783/cmdline length:105
path:/proc/799/cmdline length:105
path:/proc/811/cmdline length:105
path:/proc/842/cmdline length:105
path:/proc/852/cmdline length:105
行为描述: 数据加密
详情信息: {u'operation': u'keyalgo', u'algorithm': u'DES', u'key': u'104, 117, 116, 111, 117, 102, 101, 110'}
{u'operation': u'decryption', u'data': u'LD_LIBRARY_PATH=/vendor/lib:/system/lib pm install -r ', u'algorithm': u'DES/CBC/PKCS5Padding'}
{u'operation': u'decryption', u'data': u'chmod 777 ', u'algorithm': u'DES/CBC/PKCS5Padding'}
{u'operation': u'decryption', u'data': u'su', u'algorithm': u'DES/CBC/PKCS5Padding'}
{u'operation': u'decryption', u'data': u'http://api.hutoufeng.net:8688/ads/getBanner.html?app_id=', u'algorithm': u'DES/CBC/PKCS5Padding'}
{u'operation': u'decryption', u'data': u'/recommendApp/getAppList.html', u'algorithm': u'DES/CBC/PKCS5Padding'}
{u'operation': u'decryption', u'data': u'http://api.hutoufeng.net:8688/', u'algorithm': u'DES/CBC/PKCS5Padding'}
{u'operation': u'decryption', u'data': u'/push/getPush.html', u'algorithm': u'DES/CBC/PKCS5Padding'}
{u'operation': u'decryption', u'data': u'/apkUpdate/getUpadateApk.html', u'algorithm': u'DES/CBC/PKCS5Padding'}
行为描述: 类加载
详情信息: path:/system/app/PicoTts.apk
path:/system/app/MusicFX.apk
path:/system/framework/am.jar
path:/data/app/ales.veluscek.sdtools-1.apk
行为描述: 写入文件
详情信息: path:/data/data/com.android.gallery3d/shared_prefs/com.android.gallery3d_preferences.xml length:105
path:/data/data/com.android.musicfx/shared_prefs/musicfx.xml length:105
path:/data/data/com.android.gallery3d/shared_prefs/com.android.gallery3d_preferences.xml length:105
行为描述: 初始化Intent
详情信息: Ljava/lang/String;=android.intent.action.MAIN
行为描述: 获取设备ID
详情信息: 357242043237511
Activities
VirSCANVirSCAN
活动名 类型
.IzberiMenu ales.veluscek.sdtools.com.fgdirect.to
.IzberiMenu android.intent.category.DEFAULT
net.htfstudio.main.SplashSdkActivity android.intent.action.MAIN
net.htfstudio.main.SplashSdkActivity android.intent.category.LAUNCHER
net.htfstudio.widget.Recommend com.fgdirect.to
net.htfstudio.widget.Recommend android.intent.action.MAIN
net.htfstudio.widget.ShowActivity android.intent.action.MAIN
net.htfstudio.widget.ShowActivity android.intent.category.DEFAULT
危险函数
VirSCANVirSCAN
函数名称 信息
HttpClient;->execute 请求远程服务器
DefaultHttpClient;->execute 发送HTTP请求
ContentResolver;->query 读取联系人、短信等数据库
java/net/URL;->openConnection 连接URL
java/net/HttpURLConnection;->connect 连接URL
TelephonyManager;->getDeviceId 搜集用户手机IMEI码、电话号码、系统版本号等信息
LocationManager;->getLastKnownLocation 获取地址位置
TelephonyManager;->getLine1Number 获取手机号
TelephonyManager;->getSimSerialNumber 获取SIM序列号
getRuntime 获取命令行环境
java/lang/Runtime;->exec 执行字符串命令
启动方式
VirSCANVirSCAN
名称 信息
com.google.gson.a.XReceiver 网络连接改变时启动服务
com.google.gson.a.XReceiver 屏幕解锁启动服务
com.google.gson.a.XReceiver 应用卸载时启动服务
com.google.gson.a.XReceiver 应用安装时启动服务
net.htfstudio.receiver.ReceiverReceiver 屏幕解锁启动服务
net.htfstudio.receiver.ReceiverReceiver 网络连接改变时启动服务
net.htfstudio.receiver.ReceiverPackName 应用安装时启动服务
权限列表
VirSCANVirSCAN
许可名称 信息
android.permission.WRITE_SETTINGS 读写系统设置项
android.permission.INTERNET 连接网络(2G或3G)
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.READ_PHONE_STATE 读取电话状态
com.android.launcher.permission.INSTALL_SHORTCUT 创建快捷方式
android.permission.ACCESS_FINE_LOCATION 获取精确的位置(通过GPS)
android.permission.SYSTEM_ALERT_WINDOW 显示系统窗口
android.permission.GET_TASKS 获取有关当前或最近运行的任务信息
android.permission.DOWNLOAD_WITHOUT_NOTIFICATION
服务列表
VirSCANVirSCAN
名称
com.google.gson.a.XService
net.htfstudio.widget.PackService
net.htfstudio.floatwindow.FloatWindowService
net.htfstudio.widget.PMInstallService
文件列表
VirSCANVirSCAN
文件名 校验码
META-INF/MANIFEST.MF 0x38e99cf9
META-INF/HTF.SF 0x94f34eec
META-INF/HTF.RSA 0xaf91444c
assets/bt.dat 0x81483168
assets/htf.dat 0x5437f67
assets/htfstudio_apps.png 0x87678029
assets/htfstudio_below_bg.9.png 0xe7dab2cd
assets/htfstudio_corner_0.png 0x79003ce0
assets/htfstudio_corner_1.png 0x4009a2e2
assets/htfstudio_default.jpg 0x1336dc79
assets/htfstudio_default.png 0x98cffef6
assets/htfstudio_delete.png 0x6d529b88
assets/htfstudio_detail_default.jpg 0xd85361f6
assets/htfstudio_download.png 0xb7b6e8a9
assets/htfstudio_error.png 0xfc1aa6a4
assets/htfstudio_floatwindow.png 0x73c7ecb6
assets/htfstudio_floatwindow_left.png 0xd6578ab0
assets/htfstudio_floatwindow_right.png 0x2bd80d15
assets/htfstudio_green.png 0x218d084a
assets/htfstudio_hot.png 0x67fe0c3a
assets/htfstudio_indicator_indicator.png 0x670b3c5c
assets/htfstudio_indicator_selected.png 0x92a0b7b
assets/htfstudio_information.png 0x18ec6467
assets/htfstudio_loading.png 0x64f211d2
assets/htfstudio_orange.png 0xc31f22a5
assets/htfstudio_push_cancel_hl.9.png 0x313440eb
assets/htfstudio_push_cancel_nor.9.png 0x68dff882
assets/htfstudio_push_confirm_hl.9.png 0xbca31538
assets/htfstudio_push_confirm_nor.9.png 0x200679e5
assets/htfstudio_push_top_bg.9.png 0x4a47a53d
assets/htfstudio_start_hl.png 0x4dd72e85
assets/htfstudio_start_nor.png 0x70701a59
assets/htfstudio_topbg.9.png 0x6bd220d9
assets/left_arrow.png 0x54827195
assets/right_arrow.png 0xb16b8854
assets/x_close.png 0x4c235e5e
assets/x_down.png 0xc3be5588
assets/x_pic320.jpg 0xbb751117
assets/x_pic480.jpg 0x36100350
lib/armeabi/libreadwrite.so 0x882516f8
res/drawable-hdpi/background.png 0x8e687a06
res/drawable-hdpi/bar_rd.png 0xebb871af
res/drawable-hdpi/bar_wr.png 0xe87612ee
res/drawable-hdpi/btn_close_normal.png 0xc30e184d
res/drawable-hdpi/ic_menu_info_details.png 0xab72a09e
res/drawable-hdpi/icon.png 0x1e7a470c
res/drawable-hdpi/paypal.png 0x4acf148a
res/drawable-hdpi/readspeeds.png 0x4be06019
res/drawable-hdpi/results.png 0x5ec53647
res/drawable-hdpi/start_speed.png 0xd3312c58
res/drawable-hdpi/stevec_kazalec.png 0x1a275796
res/drawable-hdpi/stevec_mpg.png 0x8c7101f4
res/drawable-hdpi/stevec_pika.png 0x586c996e
res/drawable-hdpi/stevec_read.png 0x1982ffd8
res/drawable-hdpi/stevec_read_speed.png 0x6afd3a92
res/drawable-hdpi/stevec_stevilke.png 0x6643b965
res/drawable-hdpi/stevec_write.png 0x4864c976
res/drawable-hdpi/stevec_write_speed.png 0x34aab152
res/drawable-hdpi/writespeeds.png 0xcfd90c95
res/layout/aboutdialog.xml 0x153bd8c7
res/layout/main.xml 0xa32db6cf
res/layout/main2432.xml 0xecbc5859
res/layout/main3248.xml 0x43592372
res/layout/result.xml 0xe4c2cbf9
res/layout/result2432.xml 0x897adbea
res/layout/results.xml 0xb7cc8ed8
res/menu/menuabout.xml 0x3a386045
res/menu/menuizberi.xml 0xc6328d16
AndroidManifest.xml 0x80a35276
classes.dex 0x68b6314b
resources.arsc 0x6fd65a87
assets/ 0x0
运行截图
VirSCANVirSCAN
VirSCAN