VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.
4, If your browser cannot upload files, please download VirSCAN uploader to upload.

Language
Server load
Server Load

VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

File information

Scanner results
Scanner results:0%Antivirus software(0/32)found malware!
Behavior analysis report:         Habo file analysis
Time: 2015-10-30 17:41:14 (CST)
Scanner Engine Ver Sig Ver Sig Date Scan result Time
antiy AVL SDK 3.0 1970-01-01 Found nothing 5
asquared 9.0.0.4324 9.0.0.4324 2014-07-03 Found nothing 2
avast 150725-1 4.7.4 2015-07-25 Found nothing 0
avg 2109/8133 10.0.1405 2014-11-26 Found nothing 0
baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 4
baidusd 1.0 1.0 2014-04-02 Found nothing 1
bitdefender 7.58469 7.90123 2014-12-25 Found nothing 0
clamav 19861 0.97.5 2014-12-31 Found nothing 0
drweb 5.0.2.3300 5.0.1.1 2014-12-31 Found nothing 0
fortinet 23.345, 23.345 5.1.158 2014-12-08 Found nothing 0
fprot 4.6.2.117 6.5.1.5418 2014-12-31 Found nothing 0
fsecure 2014-04-02-01 9.13 2014-04-02 Found nothing 0
gdata 25.4121 25.4121 2015-10-30 Found nothing 10
ikarus 1.06.01 V1.32.31.0 2014-12-08 Found nothing 0
jiangmin 16.0.100 1.0.0.0 2015-07-25 Found nothing 42
kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 0
kingsoft 2.1 2.1 2013-09-22 Found nothing 6
mcafee 7638 5400.1158 2014-11-30 Found nothing 0
nod32 0920 3.0.21 2014-12-23 Found nothing 0
panda 9.05.01 9.05.01 2015-07-26 Found nothing 4
pcc 11.380.07 9.500-1005 2014-12-31 Found nothing 0
qh360 1.0.1 1.0.1 1.0.1 Found nothing 2
qqphone 1.0.0.0 1.0.0.0 2014-12-09 Found nothing 0
quickheal 14.00 14.00 2015-07-25 Found nothing 5
rising 25.76.04.01 25.76.04.01 2015-07-24 Found nothing 1
sophos 5.08 3.55.0 2014-12-01 Found nothing 0
symantec 20141230.001 1.3.0.24 2014-12-30 Found nothing 0
tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 5
thehacker 6.8.0.5 6.8.0.5 2015-07-23 Found nothing 2
tws 17.47.17308 1.0.2.2108 2014-12-08 Found nothing 13
vba 3.12.26.3 3.12.26.3 2014-12-31 Found nothing 0
virusbuster 15.0.985.0 5.5.2.13 2014-12-05 Found nothing 0
权限列表
许可名称 信息
android.permission.SYSTEM_ALERT_WINDOW 显示系统窗口
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.ACCESS_COARSE_LOCATION 获取粗略的位置(通过wifi、基站)
文件信息
VirSCANVirSCAN
安全评分 :
基本信息
VirSCANVirSCAN
MD5:e11bb5a1acd793a46ffc4699b425be89
文件大小:5.58MB
上传时间: 2014-09-22 10:36:30 (CST)
包名:com.longxk.screentranslator
最低运行环境:Android 2.1.x
版权:
关键行为
VirSCANVirSCAN
行为描述: 写权限映射文件
详情信息: CiceroSharedMemDefaultS-*
MSCTF.MarshalInterface.FileMap.MFF..ECHGH
MSCTF.MarshalInterface.FileMap.MFF.B.ECHGH
MSCTF.MarshalInterface.FileMap.MFF.C.ECHGH
MSCTF.MarshalInterface.FileMap.MFF.D.ECHGH
MSCTF.MarshalInterface.FileMap.MFF.E.ECHGH
MSCTF.MarshalInterface.FileMap.MFF.F.ECHGH
MSCTF.MarshalInterface.FileMap.MFF.G.ECHGH
MSCTF.Shared.SFM.MFF
行为描述: 隐藏指定窗口
详情信息: [Window,Class] = [Pixart Mouse Commander,#32770]
进程行为
VirSCANVirSCAN
行为描述: 写权限映射文件
详情信息: CiceroSharedMemDefaultS-*
MSCTF.MarshalInterface.FileMap.MFF..ECHGH
MSCTF.MarshalInterface.FileMap.MFF.B.ECHGH
MSCTF.MarshalInterface.FileMap.MFF.C.ECHGH
MSCTF.MarshalInterface.FileMap.MFF.D.ECHGH
MSCTF.MarshalInterface.FileMap.MFF.E.ECHGH
MSCTF.MarshalInterface.FileMap.MFF.F.ECHGH
MSCTF.MarshalInterface.FileMap.MFF.G.ECHGH
MSCTF.Shared.SFM.MFF
行为描述: 隐藏指定窗口
详情信息: [Window,Class] = [Pixart Mouse Commander,#32770]
文件行为
VirSCANVirSCAN
行为描述: 写权限映射文件
详情信息: CiceroSharedMemDefaultS-*
MSCTF.MarshalInterface.FileMap.MFF..ECHGH
MSCTF.MarshalInterface.FileMap.MFF.B.ECHGH
MSCTF.MarshalInterface.FileMap.MFF.C.ECHGH
MSCTF.MarshalInterface.FileMap.MFF.D.ECHGH
MSCTF.MarshalInterface.FileMap.MFF.E.ECHGH
MSCTF.MarshalInterface.FileMap.MFF.F.ECHGH
MSCTF.MarshalInterface.FileMap.MFF.G.ECHGH
MSCTF.Shared.SFM.MFF
其他行为
VirSCANVirSCAN
行为描述: 查找指定窗口
详情信息: NtUserFindWindowEx: [Class,Window] = [Shell_TrayWnd,]
NtUserFindWindowEx: [Class,Window] = [CicLoaderWndClass,]
行为描述: 隐藏指定窗口
详情信息: [Window,Class] = [Pixart Mouse Commander,#32770]
行为描述: 创建互斥体
详情信息: CTF.LBES.MutexDefaultS-*
CTF.Compart.MutexDefaultS-*
CTF.Asm.MutexDefaultS-*
CTF.Layouts.MutexDefaultS-*
CTF.TMD.MutexDefaultS-*
CTF.TimListCache.FMPDefaultS-*MUTEX.DefaultS-*
MSCTF.Shared.MUTEX.ELH
MSCTF.Shared.MUTEX.MFF
行为描述: 获取TickCount值
详情信息: TickCount = 485156, SleepMilliseconds = 500.
TickCount = 495843, SleepMilliseconds = 500.
TickCount = 495875, SleepMilliseconds = 500.
动态列表行为
VirSCANVirSCAN
行为描述: 初始化URL
详情信息: [u'http://r.domob.cn/a/']
[u'http://r.domob.cn/a/']
行为描述: 读取文件
详情信息: path:/proc/meminfo length:69
path:/proc/meminfo length:69
path:/proc/meminfo length:69
path:/proc/meminfo length:69
path:/proc/meminfo length:69
行为描述: 注册广播接收器
详情信息: [u'android.webkit.WebViewClassic$PackageListener@414f87d8', u'android.content.IntentFilter@414a69f0']
[u'android.webkit.WebViewClassic$ProxyReceiver@414ed9c0', u'android.content.IntentFilter@41502748']
[u'android.webkit.WebViewClassic$TrustStorageListener@41507bf8', u'android.content.IntentFilter@415079e8']
[u'cn.domob.android.ads.e@415eb5e8', u'android.content.IntentFilter@415eb670']
[u'android.widget.ViewFlipper$1@4150b9b0', u'android.content.IntentFilter@414c03a8']
行为描述: 访问URL
详情信息: http://r.domob.cn/a/
http://r.domob.cn/a/
行为描述: 读取系统设置
详情信息: [u'android.app.ContextImpl$ApplicationContentResolver@4154d078', u'show_password']
[u'android.app.ContextImpl$ApplicationContentResolver@4154d078', u'show_password']
[u'android.app.ContextImpl$ApplicationContentResolver@4154d078', u'show_password']
[u'android.app.ContextImpl$ApplicationContentResolver@4154d078', u'show_password']
[u'android.app.ContextImpl$ApplicationContentResolver@4154d078', u'show_password']
行为描述: 初始化IntentFilter
详情信息: [u'android.intent.action.PACKAGE_ADDED']
行为描述: 获取用户ID
详情信息: 460000043140572
行为描述: 窗口信息
详情信息: {"text": "屏幕词典", "class": "android.widget.TextView"}
{"text": "-- 点击启动屏幕词典 --", "class": "android.widget.TextView"}
{"text": "查词方式:", "class": "android.widget.TextView"}
{"text": "自带本地词典", "class": "android.widget.TextView"}
{"text": "同时复制到剪贴板", "class": "android.widget.CheckBox"}
{"text": "版本:", "class": "android.widget.TextView"}
{"text": "1.1 beta", "class": "android.widget.TextView"}
{"text": " 联系作者 ", "class": "android.widget.TextView"}
{"text": " 给我评价 ", "class": "android.widget.TextView"}
行为描述: 缓冲区读取一行数据
详情信息: f=jsonp&e=UTF-8&pb%5Bidentifier%5D=com.longxk.screentranslator&ts=1439264630265&c=gif%2Cltx%2Cla%2Chv%2Cexpd%2Ciad%2Cspi&so=v&idv=357143040944263%2C460000043140572%2C72c0258c73ad917e&pb%5Bversion%5D=1.1+beta&sd=2.0&l=zh&d%5Bcoord_status%5D=0&sh=1184&cid=&network=wifi&dim=320x50&v=20120604-android-20120321&ipb=56OJz%2Fm4uMx5o0Opwe&pt=1&sv=030002&ua=android%2C%2C4.1.2%2C%2Csdk%2C%E4%B8%AD%E5%9B%BD%E7%A7%BB%E5%8A%A8+4G%2C%2C%2C&rt=1&pb%5Bname%5D=%E5%B1%8F%E5%B9%95%E8%AF%8D%E5%85%B8&sdk=1&apn=&sw=768
null
f=jsonp&e=UTF-8&pb%5Bidentifier%5D=com.longxk.screentranslator&ts=1439264652128&c=gif%2Cltx%2Cla%2Chv%2Cexpd%2Ciad%2Cspi&so=v&idv=357143040944263%2C460000043140572%2C72c0258c73ad917e&pb%5Bversion%5D=1.1+beta&sd=2.0&l=zh&d%5Bcoord_status%5D=0&sh=1184&cid=&network=wifi&dim=320x50&v=20120604-android-20120321&ipb=56OJz%2Fm4uMx5o0Opwe&pt=1&sv=030002&ua=android%2C%2C4.1.2%2C%2Csdk%2C%E4%B8%AD%E5%9B%BD%E7%A7%BB%E5%8A%A8+4G%2C%2C%2C&rt=1&pb%5Bname%5D=%E5%B1%8F%E5%B9%95%E8%AF%8D%E5%85%B8&sdk=1&apn=&sw=768
null
行为描述: 添加View
详情信息: [u'com.android.internal.policy.impl.PhoneWindow$DecorView@4154fe68', u'WM.LayoutParams{(0,0)(fillxfill) sim=#100 ty=1 fl=#8010100 pfl=0x8 wanim=0x1030001}', u'android.view.CompatibilityInfoHolder@414afa90']
行为描述: 写入文件
详情信息: path:/data/data/com.longxk.screentranslator/shared_prefs/preferences.xml length:116
行为描述: 初始化Intent
详情信息: [u'android.os.Parcel@414ad1e8']
行为描述: 获取网络状态信息[*]
详情信息: NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
行为描述: 查询上次位置信息
详情信息: [u'network']
[u'network']
行为描述: 数据库查询
详情信息: [u'formurl', u'null', u'null', u'null', u'null', u'null', u'null']
行为描述: 获取设备ID
详情信息: 357143040944263
Activities
VirSCANVirSCAN
活动名 类型
.MainActivity android.intent.action.MAIN
.MainActivity android.intent.category.LAUNCHER
危险函数
VirSCANVirSCAN
函数名称 信息
android/app/NotificationManager;->notify 信息通知栏
ContentResolver;->query 读取联系人、短信等数据库
java/net/URL;->openConnection 连接URL
getRuntime 获取命令行环境
java/lang/Runtime;->exec 执行字符串命令
java/net/HttpURLConnection;->connect 连接URL
LocationManager;->getLastKnownLocation 获取地址位置
HttpClient;->execute 请求远程服务器
DefaultHttpClient;->execute 发送HTTP请求
TelephonyManager;->getDeviceId 搜集用户手机IMEI码、电话号码、系统版本号等信息
广告信息
VirSCANVirSCAN
名称 信息
cn.domob.android 多盟
权限列表
VirSCANVirSCAN
许可名称 信息
android.permission.SYSTEM_ALERT_WINDOW 显示系统窗口
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.ACCESS_COARSE_LOCATION 获取粗略的位置(通过wifi、基站)
服务列表
VirSCANVirSCAN
名称
com.longxk.screentranslator.WordPointerService
文件列表
VirSCANVirSCAN
文件名 校验码
assets/bin/mfb 0xaf311bad
assets/bin/msf_gb 0xeb1029b8
assets/bin/msf_ics 0x372a5c3f
assets/bin/shot 0x6c46f1
assets/guide1.html 0x82e6cd83
assets/guide2.html 0x30e3e38b
assets/phonetic.ttf 0x9a6eb23a
assets/pic1.png 0xf7747bec
assets/style.css 0x61a22c3b
res/anim/hide.xml 0xf67f824f
res/anim/reveal.xml 0xb8c1760a
res/drawable/bg.png 0x85dce757
res/drawable/button0.png 0xa95b9289
res/drawable/button1.png 0xdf99058c
res/drawable/more.png 0x86fb607d
res/drawable/pointer.png 0x756fef48
res/drawable/popup_bg.9.png 0x48852a46
res/drawable/start.png 0x96e36f2f
res/drawable/stop.png 0xc7baf5d2
res/drawable/tilebg.xml 0x1f4bd37d
res/layout/firstrun.xml 0x24cc76fb
res/layout/main.xml 0x465c5915
res/layout/notification.xml 0x29802fea
res/layout/pointer.xml 0xdbd4e161
res/layout/popup.xml 0x70de7d33
res/layout/popup_more.xml 0x6143c5e2
AndroidManifest.xml 0xd4ef91fb
resources.arsc 0xbb9da1a0
res/drawable-hdpi/icon.png 0x34cd6db9
res/drawable-ldpi/icon.png 0xb5ffe559
res/drawable-mdpi/icon.png 0x745c38ce
classes.dex 0xbb2dd852
assets/domob.js 0x87ad5d91
assets/domob_banner.png 0x2d824ee
assets/domob_close.png 0xc60adaed
assets/domob_exit.png 0x6e628d21
assets/domob_loading.png 0x48342286
assets/domob_next.png 0xc667afa3
assets/domob_next_off.png 0x72b7a470
assets/domob_out.png 0x75b3379b
assets/domob_preview.png 0xe1ad2a0e
assets/domob_preview_off.png 0x2949548e
assets/domob_refresh.png 0x16696e6a
lib/armeabi/libeng.so 0x5b79c7b0
lib/armeabi/libsun_dict_e2c.idx.gz.so 0x90e22528
lib/armeabi/libtess.so 0xb0ea2e32
lib/armeabi/libsun_dict_e2c.dict.gz.so 0xa18ce328
lib/armeabi/libldict.so 0x707ea15f
META-INF/MANIFEST.MF 0x2a580d86
META-INF/CERT.SF 0xc2b14bbb
META-INF/CERT.RSA 0x9ead8146
运行截图
VirSCANVirSCAN
VirSCAN