VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load

VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

File information

Scanner results
Scanner results:12%Scanner(s) (5/39)found malware!
Behavior analysis report:         Habo file analysis
Time: 2014-11-03 19:55:27 (CST)
Scanner Engine Ver Sig Ver Sig Date Scan result Time
ahnlab 9.9.9 9.9.9 2013-05-28 Found nothing 3
antivir 1.9.2.0 1.9.159.0 7.11.182.198 Found nothing 21
antiy 114701 AVL141003 2014-10-04 Found nothing 5
arcavir 1.0 2011 2014-05-30 Found nothing 8
asquared 9.0.0.4157 9.0.0.4157 2014-07-30 Found nothing 1
avast 141102-0 4.7.4 2014-11-02 Found nothing 28
avg 2109/7906 10.0.1405 2014-10-17 Found nothing 1
baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 1
baidusd 1.0 1.0 2014-04-02 Found nothing 1
bitdefender 7.57515 7.90123 2014-11-03 Found nothing 6
clamav 19571 0.97.5 2014-11-02 Found nothing 1
comodo 15023 5.1 2014-10-03 Found nothing 3
ctch 4.6.5 5.3.14 2013-12-01 Found nothing 1
drweb 5.0.2.3300 5.0.1.1 2014-10-31 Found nothing 29
fortinet 23.108, 23.108 5.1.158 2014-11-03 Adware/Youmi.B 1
fprot 4.6.2.117 6.5.1.5418 2014-10-31 Found nothing 1
fsecure 2014-04-02-01 9.13 2014-04-02 Trojan:Android/AutoSMS.T 7
gdata 24.3819 24.3819 2014-08-29 Found nothing 7
hauri 2.73 2.73 2014-06-13 Found nothing 1
ikarus 1.06.01 V1.32.31.0 2014-11-02 PUA.AndroidOS.Youmi 14
jiangmin 16.0.100 1.0.0.0 2014-07-28 Found nothing 14
kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 19
kingsoft 2.1 2.1 2013-09-22 Found nothing 3
mcafee 7520 5400.1158 2014-08-04 Found nothing 8
nod32 0436 3.0.21 2014-09-18 a variant of Android/AdDisplay.Youmi.G application 1
panda 9.05.01 9.05.01 2014-06-15 Found nothing 3
pcc 11.252.05 9.500-1005 2014-11-02 Found nothing 2
qh360 1.0.1 1.0.1 1.0.1 Found nothing 15
qqphone 1.0.0.0 1.0.0.0 2014-11-03 Found nothing 1
quickheal 14.00 14.00 2014-06-14 Found nothing 2
rising 25.17.00.04 25.17.00.04 2014-06-02 Found nothing 1
sophos 5.04 3.51.0 2014-08-05 Found nothing 9
sunbelt 3.9.2589.2 3.9.2589.2 2014-06-13 Adware.AndroidOS.Youmi.g 1
symantec 20141028.001 1.3.0.24 2014-10-28 Found nothing 1
tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 3
thehacker 6.8.0.5 6.8.0.5 2014-06-12 Found nothing 1
tws 17.47.17308 1.0.2.2108 2014-06-16 Found nothing 6
vba 3.12.26.3 3.12.26.3 2014-10-31 Found nothing 3
virusbuster 15.0.956.0 5.5.2.13 2014-11-02 Found nothing 14
权限列表
许可名称 信息
android.permission.READ_PHONE_STATE 读取电话状态
com.android.launcher.permission.INSTALL_SHORTCUT 创建快捷方式
android.permission.MOUNT_UNMOUNT_FILESYSTEMS 挂载、反挂载外部文件系统
android.permission.SYSTEM_ALERT_WINDOW 显示系统窗口
android.permission.GET_TASKS 获取有关当前或最近运行的任务信息
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
com.android.launcher.permission.READ_SETTINGS 读取快捷方式信息
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
文件信息
VirSCANVirSCAN
安全评分 :77
基本信息
VirSCANVirSCAN
MD5:19830c99525a126ce395f8de7c7ca45f
文件大小:5.58MB
上传时间: 2014-09-22 10:36:30 (CST)
包名:com.zyx.zidiansc
最低运行环境:Android 2.2.x
版权:zyx
其他行为
VirSCANVirSCAN
行为描述: 窗口信息
详情信息: Pid = 1460, Hwnd=0xc01c2, Text = 取消, ClassName = TRzButton.
Pid = 1460, Hwnd=0xd01c8, Text = 登陆, ClassName = TRzButton.
Pid = 1460, Hwnd=0xa0198, Text = 确定, ClassName = Button.
Pid = 1460, Hwnd=0xd01a4, Text = 密码不正确, ClassName = Static.
Pid = 1460, Hwnd=0xe016e, Text = 提示, ClassName = #32770.
Pid = 1460, Hwnd=0xe01a4, Text = 确定, ClassName = Button.
Pid = 1460, Hwnd=0xb0198, Text = 密码不正确, ClassName = Static.
Pid = 1460, Hwnd=0xf016e, Text = 提示, ClassName = #32770.
Pid = 1460, Hwnd=0xc0198, Text = 确定, ClassName = Button.
Pid = 1460, Hwnd=0xf01a4, Text = 密码不正确, ClassName = Static.
Pid = 1460, Hwnd=0x10016e, Text = 提示, ClassName = #32770.
Pid = 1460, Hwnd=0x1001a4, Text = 确定, ClassName = Button.
Pid = 1460, Hwnd=0xd0198, Text = 密码不正确, ClassName = Static.
Pid = 1460, Hwnd=0x11016e, Text = 提示, ClassName = #32770.
Pid = 1460, Hwnd=0xe0198, Text = 确定, ClassName = Button.
行为描述: 枚举窗口
详情信息: N/A
动态列表行为
VirSCANVirSCAN
行为描述: 启动服务
详情信息: com.android.musicfx.Compatibility$Service
com.android.mms.transaction.SmsReceiverService
行为描述: 读取文件
详情信息: path:/proc/791/cmdline length:105
path:/proc/805/cmdline length:105
path:/proc/817/cmdline length:105
path:/proc/848/cmdline length:105
path:/proc/861/cmdline length:105
path:/proc/880/cmdline length:105
path:/proc/882/cmdline length:105
行为描述: 类加载
详情信息: path:/system/app/PicoTts.apk
path:/system/app/MusicFX.apk
path:/system/framework/am.jar
path:/data/app/com.zyx.zidiansc-1.apk
行为描述: 写入文件
详情信息: path:/data/data/com.android.gallery3d/shared_prefs/com.android.gallery3d_preferences.xml length:105
path:/data/data/com.android.musicfx/shared_prefs/musicfx.xml length:105
path:/data/data/com.android.gallery3d/shared_prefs/com.android.gallery3d_preferences.xml length:105
Activities
VirSCANVirSCAN
活动名 类型
com.e4a.runtime.android.mainActivity android.intent.action.MAIN
com.e4a.runtime.android.mainActivity android.intent.category.DEFAULT
com.e4a.runtime.android.mainActivity android.intent.category.LAUNCHER
危险函数
VirSCANVirSCAN
函数名称 信息
ContentResolver;->query 读取联系人、短信等数据库
android/app/NotificationManager;->notify 信息通知栏
Camera;->open 开启相机
java/net/URL;->openConnection 连接URL
WifiManager;->setWifiEnabled 变更WIFI状态
LocationManager;->getLastKnownLocation 获取地址位置
MediaRecorder;->setAudioSource 开启录音功能
SmsManager;->sendTextMessage 发送普通短信
TelephonyManager;->getDeviceId 搜集用户手机IMEI码、电话号码、系统版本号等信息
TelephonyManager;->getLine1Number 获取手机号
getRuntime 获取命令行环境
java/lang/Runtime;->exec 执行字符串命令
HttpClient;->execute 请求远程服务器
DefaultHttpClient;->execute 发送HTTP请求
启动方式
VirSCANVirSCAN
名称 信息
net.youmi.android.AdReceiver 应用安装时启动服务
广告信息
VirSCANVirSCAN
名称 信息
net.youmi 有米广告
权限列表
VirSCANVirSCAN
许可名称 信息
android.permission.READ_PHONE_STATE 读取电话状态
com.android.launcher.permission.INSTALL_SHORTCUT 创建快捷方式
android.permission.MOUNT_UNMOUNT_FILESYSTEMS 挂载、反挂载外部文件系统
android.permission.SYSTEM_ALERT_WINDOW 显示系统窗口
android.permission.GET_TASKS 获取有关当前或最近运行的任务信息
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
com.android.launcher.permission.READ_SETTINGS 读取快捷方式信息
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
服务列表
VirSCANVirSCAN
名称
net.youmi.android.AdService
net.youmi.android.ExpService
文件列表
VirSCANVirSCAN
文件名 校验码
META-INF/MANIFEST.MF 0xe6a2fce0
META-INF/ZYX_KEYS.SF 0xe3df2097
META-INF/ZYX_KEYS.RSA 0xdf988fec
res/drawable/icon.png 0x3d0cdb34
AndroidManifest.xml 0x876e3dc
resources.arsc 0x1c13c0e0
classes.dex 0x7b8e1706
运行截图
VirSCANVirSCAN
VirSCAN