VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load

VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

File information

Scanner results
Scanner results:5%Scanner(s) (2/39)found malware!
Behavior analysis report:         Habo file analysis
Time: 2014-11-04 16:18:47 (CST)
Scanner Engine Ver Sig Ver Sig Date Scan result Time
ahnlab 9.9.9 9.9.9 2013-05-28 Found nothing 4
antivir 1.9.2.0 1.9.159.0 7.11.182.228 Found nothing 15
antiy 104619 AVL141102 2014-11-03 Found nothing 5
arcavir 1.0 2011 2014-05-30 Found nothing 8
asquared 9.0.0.4324 9.0.0.4324 2014-07-03 Found nothing 2
avast 141103-1 4.7.4 2014-11-03 Found nothing 18
avg 2109/7906 10.0.1405 2014-10-17 Found nothing 1
baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 4
baidusd 1.0 1.0 2014-04-02 Found nothing 1
bitdefender 7.57535 7.90123 2014-11-03 Found nothing 7
clamav 19574 0.97.5 2014-11-02 Found nothing 1
comodo 15023 5.1 2014-11-03 Found nothing 3
ctch 4.6.5 5.3.14 2013-12-01 Found nothing 1
drweb 5.0.2.3300 5.0.1.1 2014-10-31 Found nothing 32
fortinet 23.108, 23.108 5.1.158 2014-11-03 Found nothing 1
fprot 4.6.2.117 6.5.1.5418 2014-11-03 Found nothing 1
fsecure 2014-04-02-01 9.13 2014-04-02 Found nothing 6
gdata 24.4760 24.4760 2014-11-03 Found nothing 8
hauri 2.73 2.73 2014-11-03 Found nothing 1
ikarus 1.06.01 V1.32.31.0 2014-11-03 Found nothing 15
jiangmin 16.0.100 1.0.0.0 2014-08-20 Found nothing 31
kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 20
kingsoft 2.1 2.1 2013-09-22 Found nothing 3
mcafee 7520 5400.1158 2014-08-04 Found nothing 8
nod32 0436 3.0.21 2014-09-18 a variant of Android/AdDisplay.Dowgin.AC application 1
panda 9.05.01 9.05.01 2014-11-03 Found nothing 4
pcc 11.254.05 9.500-1005 2014-11-03 Found nothing 1
qh360 1.0.1 1.0.1 1.0.1 Found nothing 13
qqphone 1.0.0.0 1.0.0.0 2014-11-04 易盟(a.notifyad.1mob) 1
quickheal 14.00 14.00 2014-11-03 Found nothing 2
rising 25.38.01.01 25.38.01.01 2014-10-28 Found nothing 1
sophos 5.04 3.51.0 2014-08-05 Found nothing 7
sunbelt 3.9.2595.2 3.9.2595.2 2014-11-01 Found nothing 2
symantec 20141028.001 1.3.0.24 2014-10-28 Found nothing 1
tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 4
thehacker 6.8.0.5 6.8.0.5 2014-10-31 Found nothing 1
tws 17.47.17308 1.0.2.2108 2014-11-03 Found nothing 6
vba 3.12.26.3 3.12.26.3 2014-11-03 Found nothing 4
virusbuster 15.0.957.1 5.5.2.13 2014-11-03 Found nothing 14
权限列表
许可名称 信息
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.GET_TASKS 获取有关当前或最近运行的任务信息
android.permission.ACCESS_COARSE_LOCATION 获取粗略的位置(通过wifi、基站)
android.permission.SYSTEM_ALERT_WINDOW 显示系统窗口
文件信息
VirSCANVirSCAN
安全评分 :70
基本信息
VirSCANVirSCAN
MD5:39611e8fa0fbb38a448d2644ca0e3cb8
文件大小:5.58MB
上传时间: 2014-09-22 10:36:30 (CST)
包名:com.ktgame.daddy
最低运行环境:Android 1.6
版权:ktstudio
其他行为
VirSCANVirSCAN
行为描述: 窗口信息
详情信息: Pid = 1748, Hwnd=0xb016a, Text = Name:, ClassName = Static.
Pid = 1748, Hwnd=0xb01de, Text = AXiS - FFF, ClassName = Edit.
Pid = 1748, Hwnd=0xc01d6, Text = Hardware ID:, ClassName = Static.
Pid = 1748, Hwnd=0xd01c8, Text = 098C-9D39-6CD3-54B4, ClassName = Edit.
Pid = 1748, Hwnd=0xc01c2, Text = Exit, ClassName = Button.
Pid = 1748, Hwnd=0xb01c6, Text = Patch, ClassName = Button.
Pid = 1748, Hwnd=0xb0184, Text = Activate, ClassName = Button.
Pid = 1748, Hwnd=0xa0186, Text = FFF : VB Decompiler Pro 9.2 - Keygen + Patch, ClassName = #32770.
动态列表行为
VirSCANVirSCAN
行为描述: 启动服务
详情信息: com.android.musicfx.Compatibility$Service
com.android.mms.transaction.SmsReceiverService
行为描述: 读取文件
详情信息: path:/proc/783/cmdline length:105
path:/proc/799/cmdline length:105
path:/proc/811/cmdline length:105
path:/proc/842/cmdline length:105
path:/proc/852/cmdline length:105
path:/proc/880/cmdline length:105
path:/proc/882/cmdline length:105
行为描述: 类加载
详情信息: path:/system/app/PicoTts.apk
path:/system/app/MusicFX.apk
path:/system/framework/am.jar
path:/data/app/com.ktgame.daddy-1.apk
行为描述: 写入文件
详情信息: path:/data/data/com.android.gallery3d/shared_prefs/com.android.gallery3d_preferences.xml length:105
path:/data/data/com.android.musicfx/shared_prefs/musicfx.xml length:105
path:/data/data/com.android.gallery3d/shared_prefs/com.android.gallery3d_preferences.xml length:105
Activities
VirSCANVirSCAN
活动名 类型
Main android.intent.action.MAIN
Main android.intent.category.LAUNCHER
危险函数
VirSCANVirSCAN
函数名称 信息
ContentResolver;->query 读取联系人、短信等数据库
java/net/URL;->openConnection 连接URL
java/net/URLConnection;->connect 连接URL
getRuntime 获取命令行环境
HttpClient;->execute 请求远程服务器
java/net/HttpURLConnection;->connect 连接URL
TelephonyManager;->getLine1Number 获取手机号
java/lang/Runtime;->exec 执行字符串命令
android/app/NotificationManager;->notify 信息通知栏
TelephonyManager;->getDeviceId 搜集用户手机IMEI码、电话号码、系统版本号等信息
TelephonyManager;->getSimSerialNumber 获取SIM序列号
启动方式
VirSCANVirSCAN
名称 信息
com.feiwo.receiver.InReceiver 应用安装时启动服务
com.feiwo.receiver.InReceiver 应用卸载时启动服务
com.feiwo.receiver.ConnectReceiver 网络连接改变时启动服务
com.feiwo.receiver.ConnectReceiver 屏幕解锁启动服务
com.feiwo.receiver.ConnectReceiver 开机启动服务
权限列表
VirSCANVirSCAN
许可名称 信息
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.GET_TASKS 获取有关当前或最近运行的任务信息
android.permission.ACCESS_COARSE_LOCATION 获取粗略的位置(通过wifi、基站)
android.permission.SYSTEM_ALERT_WINDOW 显示系统窗口
文件列表
VirSCANVirSCAN
文件名 校验码
res/drawable/ic_launcher.png 0xa227fc8a
res/layout/forward.xml 0xea588788
AndroidManifest.xml 0x8608ca52
resources.arsc 0x528e74a9
res/drawable-hdpi/icon.png 0xcebe2391
res/drawable-ldpi/icon.png 0xcebe2391
res/drawable-mdpi/icon.png 0xcebe2391
res/drawable-xhdpi/icon.png 0x98ae7737
classes.dex 0xa4b4eee9
assets/feiwo_interstitial_close.png 0xdf07e88f
assets/feiwo_interstitial_dl_normal.png 0x78fc4bb8
assets/feiwo_interstitial_dl_pressed.png 0x40262ef4
assets/feiwo_la_da_horizontal_line.png 0x53359994
assets/feiwo_la_title_back.png 0x3b9cc739
assets/feiwo_recommend_check_false.png 0xf0f4baeb
assets/feiwo_recommend_check_true.png 0x16d0f970
assets/feiwo_recommend_da_details_line.png 0x58d61164
assets/feiwo_recommend_loadfaild_icon.png 0x1ef0ef7c
assets/feiwo_recommend_right_arrow.png 0xc5e88c19
assets/feiwo_recommend_rloding_1.png 0x65ab2d1b
assets/feiwo_recommend_rloding_2.png 0xc7b200b
assets/feiwo_recommend_rloding_3.png 0xdd079eca
assets/feiwo_recommend_rloding_4.png 0xd874b81f
assets/feiwo_recommend_safety_certification.png 0x1766599d
assets/feiwo_recommend_surprise.png 0x231ef625
assets/loon_logo.png 0x40d070f8
META-INF/MANIFEST.MF 0xb9c32313
META-INF/CERT.SF 0x7bda9075
META-INF/CERT.RSA 0x81da92e6
运行截图
VirSCANVirSCAN
VirSCAN