VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load

VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

File information

Scanner results
Scanner results:12%Antivirus software(4/32)found malware!
Behavior analysis report:         Habo file analysis
Time: 2017-06-21 10:08:40 (CST)
Scanner Engine Ver Sig Ver Sig Date Scan result Time
antiy AVL SDK 2.0 1970-01-01 Found nothing 5
asquared 9.0.0.4799 9.0.0.4799 2015-03-08 Found nothing 1
avast 170303-1 4.7.4 2017-03-03 Found nothing 60
avg 2109/14054 10.0.1405 2017-06-14 Found nothing 60
baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 8
baidusd 1.0 1.0 2017-03-22 Found nothing 1
bitdefender 7.58879 7.90123 2015-01-16 Found nothing 60
clamav 23482 0.97.5 2017-06-17 Found nothing 60
drweb 5.0.2.3300 5.0.1.1 2017-06-18 Found nothing 60
fortinet 49.628, 49.628, 49.628 5.4.233 2017-06-20 Found nothing 60
fprot 4.6.2.117 6.5.1.5418 2016-02-05 Found nothing 60
fsecure 2015-08-01-02 9.13 2015-08-01 Found nothing 60
gdata 25.12967 25.12967 2017-06-21 Android.Trojan.FakeUpdates.AV 10
ikarus 1.06.01 V1.32.31.0 2016-11-28 Found nothing 60
jiangmin 16.0.100 1.0.0.0 2017-06-20 Found nothing 2
kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 60
kingsoft 2.1 2.1 2017-06-20 Android.Troj.at_gdownload.g.(kcloud) 4
mcafee 8261 5400.1158 2016-08-18 Found nothing 60
nod32 1777 3.0.21 2015-06-12 Found nothing 60
panda 9.05.01 9.05.01 2017-06-20 Found nothing 3
pcc 13.302.06 9.500-1005 2017-03-27 Found nothing 60
qh360 1.0.1 1.0.1 1.0.1 Android mobile malware 3
qqphone 1.0.0.0 1.0.0.0 2015-12-30 Found nothing 60
quickheal 14.00 14.00 2017-06-20 Android.Leech.GEN4942 2
rising 26.28.00.01 26.28.00.01 2016-07-18 Found nothing 1
sophos 5.32 3.65.2 2016-10-10 Found nothing 60
symantec 20151230.005 1.3.0.24 2015-12-30 Found nothing 60
tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 3
thehacker 6.8.0.5 6.8.0.5 2017-06-18 Found nothing 1
tws 17.47.17308 1.0.2.2108 2017-06-20 Found nothing 13
vba 3.12.29.5 beta 3.12.29.5 beta 2017-06-20 Found nothing 60
virusbuster 15.0.985.0 5.5.2.13 2014-12-05 Found nothing 60
权限列表
许可名称 信息
android.permission.RECEIVE_BOOT_COMPLETED 接收开机启动广播
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.CHANGE_WIFI_STATE 改变WIFI连接状态
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.MODIFY_PHONE_STATE 修改电话状态
android.permission.WAKE_LOCK 手机屏幕关闭后后台进程仍运行
android.permission.DEVICE_POWER 电源管理
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.INSTALL_PACKAGES 安装应用
android.permission.DELETE_PACKAGES 删除应用
文件信息
VirSCANVirSCAN
安全评分 :
基本信息
VirSCANVirSCAN
MD5:5d3a010a553228dd20a8beaadaeba15e
文件大小:5.58MB
上传时间: 2014-09-22 10:36:30 (CST)
包名:com.izkj.dclock
最低运行环境:Android 2.3, 2.3.1, 2.3.2
版权:izkj inc.
关键行为
VirSCANVirSCAN
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
行为描述: 获取QQ临时密码
详情信息: HttpOpenRequestA: ui.ptlogin2.qq.com:80/cgi-bin/login?appid=21000115&style=13&daid=8&s_url=http://user.qzone.qq.com/975796865/main, hConnect = 0x00cc0008, hRequest = 0x00cc000c, Verb: GET, Referer: , Flags = 0x00400200
HttpOpenRequestA: ui.ptlogin2.qq.com:80/cgi-bin/login?appid=21000115&style=13&daid=8&s_url=http://user.qzone.qq.com/975796865/main, hConnect = 0x00cc0008, hRequest = 0x00cc000c, Verb: GET, Referer: , Flags = 0x00400010
行为描述: 获取TickCount值
详情信息: TickCount = 5492234, SleepMilliseconds = 60000.
TickCount = 5492250, SleepMilliseconds = 60000.
TickCount = 5492281, SleepMilliseconds = 60000.
TickCount = 5492312, SleepMilliseconds = 60000.
TickCount = 5492328, SleepMilliseconds = 60000.
TickCount = 5432521, SleepMilliseconds = 100.
TickCount = 5432553, SleepMilliseconds = 100.
TickCount = 5432600, SleepMilliseconds = 100.
TickCount = 5432646, SleepMilliseconds = 100.
TickCount = 5492578, SleepMilliseconds = 60000.
TickCount = 5492609, SleepMilliseconds = 60000.
TickCount = 5492625, SleepMilliseconds = 60000.
TickCount = 5492640, SleepMilliseconds = 60000.
TickCount = 5492656, SleepMilliseconds = 60000.
TickCount = 5492828, SleepMilliseconds = 60000.
进程行为
VirSCANVirSCAN
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
行为描述: 获取QQ临时密码
详情信息: HttpOpenRequestA: ui.ptlogin2.qq.com:80/cgi-bin/login?appid=21000115&style=13&daid=8&s_url=http://user.qzone.qq.com/975796865/main, hConnect = 0x00cc0008, hRequest = 0x00cc000c, Verb: GET, Referer: , Flags = 0x00400200
HttpOpenRequestA: ui.ptlogin2.qq.com:80/cgi-bin/login?appid=21000115&style=13&daid=8&s_url=http://user.qzone.qq.com/975796865/main, hConnect = 0x00cc0008, hRequest = 0x00cc000c, Verb: GET, Referer: , Flags = 0x00400010
行为描述: 获取TickCount值
详情信息: TickCount = 5492234, SleepMilliseconds = 60000.
TickCount = 5492250, SleepMilliseconds = 60000.
TickCount = 5492281, SleepMilliseconds = 60000.
TickCount = 5492312, SleepMilliseconds = 60000.
TickCount = 5492328, SleepMilliseconds = 60000.
TickCount = 5432521, SleepMilliseconds = 100.
TickCount = 5432553, SleepMilliseconds = 100.
TickCount = 5432600, SleepMilliseconds = 100.
TickCount = 5432646, SleepMilliseconds = 100.
TickCount = 5492578, SleepMilliseconds = 60000.
TickCount = 5492609, SleepMilliseconds = 60000.
TickCount = 5492625, SleepMilliseconds = 60000.
TickCount = 5492640, SleepMilliseconds = 60000.
TickCount = 5492656, SleepMilliseconds = 60000.
TickCount = 5492828, SleepMilliseconds = 60000.
文件行为
VirSCANVirSCAN
行为描述: 创建文件
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6P4O8QNJ\login[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6P4O8QNJ\navcancl[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\ErrorPageTemplate[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\errorPageStrings[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\httpErrorPagesScripts[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\background_gradient[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\info_48[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\bullet[1]
行为描述: 覆盖已有文件
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6P4O8QNJ\navcancl[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\ErrorPageTemplate[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\errorPageStrings[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\httpErrorPagesScripts[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\background_gradient[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\info_48[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\bullet[1]
行为描述: 查找文件
详情信息: FileName = C:\Documents and Settings
FileName = C:\Documents and Settings\Administrator
FileName = C:\Documents and Settings\Administrator\Local Settings
FileName = C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Connections\Pbk\*.pbk
FileName = C:\WINDOWS\system32\Ras\*.pbk
FileName = C:\Documents and Settings\Administrator\Application Data\Microsoft\Network\Connections\Pbk\*.pbk
FileName = C:\WINDOWS
FileName = C:\WINDOWS\system32
FileName = C:\WINDOWS\system32\urlmon.dll
FileName = C:\WINDOWS\system32\ieframe.dll
行为描述: 删除文件
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6P4O8QNJ\login[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\navcancl[2]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\ErrorPageTemplate[2]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\errorPageStrings[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\httpErrorPagesScripts[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\background_gradient[2]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\info_48[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IUKHR8T2\bullet[1]
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
行为描述: 修改文件内容
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6P4O8QNJ\navcancl[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\ErrorPageTemplate[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\errorPageStrings[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\httpErrorPagesScripts[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\background_gradient[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\info_48[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\bullet[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Internet Explorer\MSIMGSIZ.DAT ---> Offset = 4096
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Internet Explorer\MSIMGSIZ.DAT ---> Offset = 12288
网络行为
VirSCANVirSCAN
行为描述: 连接指定站点
详情信息: InternetConnectA: ServerName = ui****om, PORT = 80, UserName = , Password = , hSession = 0x00cc0004, hConnect = 0x00cc0008, Flags = 0x00000000
行为描述: 打开HTTP连接
详情信息: InternetOpenA: UserAgent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; .NET4.0C; .NET4.0E; KB974489), hSession = 0x00cc0004
行为描述: 建立到一个指定的套接字连接
详情信息: URL: ui****om, IP: **.133.40.**:80, SOCKET = 0x00000338
URL: ui****om, IP: **.133.40.**:80, SOCKET = 0x00000428
行为描述: 读取网络文件
详情信息: hFile = 0x00cc000c, BytesToRead =4096, BytesRead = 4096.
行为描述: 发送HTTP包
详情信息: GET /cgi-bin/login?appid=21000115&style=13&daid=8&s_url=http://user.qzone.qq.com/975796865/main HTTP/1.1 Accept: */* Accept-Language: zh-cn Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; .NET4.0C; .NET4.0E; KB974489) Host: ui****om Connection: Keep-Alive
行为描述: 按名称获取主机地址
详情信息: GetAddrInfoW: ui****om
注册表行为
VirSCANVirSCAN
行为描述: 修改注册表
详情信息: \REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\SavedLegacySettings
行为描述: 删除注册表键值
详情信息: \REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer
\REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoConfigURL
其他行为
VirSCANVirSCAN
行为描述: 调整进程token权限
详情信息: SE_LOAD_DRIVER_PRIVILEGE
行为描述: 创建互斥体
详情信息: RasPbFile
CTF.LBES.MutexDefaultS-*
CTF.Compart.MutexDefaultS-*
CTF.Asm.MutexDefaultS-*
CTF.Layouts.MutexDefaultS-*
CTF.TMD.MutexDefaultS-*
CTF.TimListCache.FMPDefaultS-*MUTEX.DefaultS-*
Local\ZonesCounterMutex
Local\ZoneAttributeCacheCounterMutex
Local\ZonesCacheCounterMutex
Local\ZonesLockedCacheCounterMutex
CritOpMutex
Local\!PrivacIE!SharedMemory!Mutex
MSIMGSIZECacheMutex
MSCTF.Shared.MUTEX.ELH
行为描述: 创建事件对象
详情信息: EventName = DINPUTWINMM
EventName = Global\userenv: User Profile setup event
EventName = MSCTF.SendReceive.Event.AHE.IC
EventName = MSCTF.SendReceiveConection.Event.AHE.IC
行为描述: 查找指定窗口
详情信息: NtUserFindWindowEx: [Class,Window] = [MS_AutodialMonitor,]
NtUserFindWindowEx: [Class,Window] = [MS_WebCheckMonitor,]
NtUserFindWindowEx: [Class,Window] = [Shell_TrayWnd,]
NtUserFindWindowEx: [Class,Window] = [CicLoaderWndClass,]
行为描述: 获取QQ临时密码
详情信息: HttpOpenRequestA: ui.ptlogin2.qq.com:80/cgi-bin/login?appid=21000115&style=13&daid=8&s_url=http://user.qzone.qq.com/975796865/main, hConnect = 0x00cc0008, hRequest = 0x00cc000c, Verb: GET, Referer: , Flags = 0x00400200
HttpOpenRequestA: ui.ptlogin2.qq.com:80/cgi-bin/login?appid=21000115&style=13&daid=8&s_url=http://user.qzone.qq.com/975796865/main, hConnect = 0x00cc0008, hRequest = 0x00cc000c, Verb: GET, Referer: , Flags = 0x00400010
行为描述: 窗口信息
详情信息: Pid = 1456, Hwnd=0xa03ac, Text = 下载完毕, ClassName = Static.
Pid = 1456, Hwnd=0x100398, Text = 获取文件信息:, ClassName = Static.
Pid = 1456, Hwnd=0x170340, Text = login (来自 ui.ptlogin2.qq.com), ClassName = Static.
Pid = 1456, Hwnd=0xf03c8, Text = 文件大小未知, ClassName = Static.
Pid = 1456, Hwnd=0x303d2, Text = 估计剩余时间:, ClassName = Static.
Pid = 1456, Hwnd=0x303d4, Text = 已下载:, ClassName = Static.
Pid = 1456, Hwnd=0x503ae, Text = 下载到:, ClassName = Static.
Pid = 1456, Hwnd=0xb037c, Text = 传输速度:, ClassName = Static.
Pid = 1456, Hwnd=0x503de, Text = 下载完成后关闭此对话框(&C), ClassName = Button(CheckBox).
Pid = 1456, Hwnd=0x13035e, Text = 打开(&O), ClassName = Button.
Pid = 1456, Hwnd=0x1502c8, Text = 打开文件夹(&F), ClassName = Button.
Pid = 1456, Hwnd=0x903a2, Text = 取消, ClassName = Button.
Pid = 1456, Hwnd=0x603c6, Text = 已完成安装 0% - login (来自 ui.ptlogin2.qq.com), ClassName = #32770.
Pid = 1456, Hwnd=0x60380, Text = 登录窗口, ClassName = WTWindow.
Pid = 1456, Hwnd=0xf032c, Text = 您想运行或保存此文件吗?, ClassName = Static.
行为描述: 获取TickCount值
详情信息: TickCount = 5492234, SleepMilliseconds = 60000.
TickCount = 5492250, SleepMilliseconds = 60000.
TickCount = 5492281, SleepMilliseconds = 60000.
TickCount = 5492312, SleepMilliseconds = 60000.
TickCount = 5492328, SleepMilliseconds = 60000.
TickCount = 5432521, SleepMilliseconds = 100.
TickCount = 5432553, SleepMilliseconds = 100.
TickCount = 5432600, SleepMilliseconds = 100.
TickCount = 5432646, SleepMilliseconds = 100.
TickCount = 5492578, SleepMilliseconds = 60000.
TickCount = 5492609, SleepMilliseconds = 60000.
TickCount = 5492625, SleepMilliseconds = 60000.
TickCount = 5492640, SleepMilliseconds = 60000.
TickCount = 5492656, SleepMilliseconds = 60000.
TickCount = 5492828, SleepMilliseconds = 60000.
行为描述: 获取光标位置
详情信息: CursorPos = (96,18500), SleepMilliseconds = 60000.
CursorPos = (6389,26533), SleepMilliseconds = 60000.
CursorPos = (19224,15757), SleepMilliseconds = 60000.
行为描述: 打开事件
详情信息: HookSwitchHookEnabledEvent
\SECURITY\LSA_AUTHENTICATION_INITIALIZED
Global\SvcctrlStartEvent_A3752DX
\INSTALLATION_SECURITY_HOLD
MSFT.VSA.COM.DISABLE.1456
MSFT.VSA.IEC.STATUS.6c736db0
_fCanRegisterWithShellService
CTF.ThreadMIConnectionEvent.000007B4.00000000.00000054
CTF.ThreadMarshalInterfaceEvent.000007B4.00000000.00000054
MSCTF.SendReceiveConection.Event.ELH.IC
MSCTF.SendReceive.Event.ELH.IC
行为描述: 调用Sleep函数
详情信息: [1]: MilliSeconds = 60000.
[2]: MilliSeconds = 100.
[3]: MilliSeconds = 60000.
[4]: MilliSeconds = 0.
[5]: MilliSeconds = 0.
[6]: MilliSeconds = 0.
行为描述: 隐藏指定窗口
详情信息: [Window,Class] = [,Afx:400000:8:10011:1900015:0]
[Window,Class] = [,SysLink]
[Window,Class] = [,Static]
[Window,Class] = [文件大小未知,Static]
[Window,Class] = [打开此类文件前总是询问(&W),Button]
[Window,Class] = [发行者:,Static]
[Window,Class] = [,Shell Embedding]
[Window,Class] = [,Internet Explorer_Server]
行为描述: 打开互斥体
详情信息: RasPbFile
ShimCacheMutex
Local\!IETld!Mutex
Local\_!MSFTHISTORY!_
Local\c:!documents and settings!administrator!local settings!temporary internet files!content.ie5!
Local\c:!documents and settings!administrator!cookies!
Local\c:!documents and settings!administrator!local settings!history!history.ie5!
Local\WininetStartupMutex
Local\WininetConnectionMutex
Local\WininetProxyRegistryMutex
CtfmonInstMutexDefaultS-*
危险函数
VirSCANVirSCAN
函数名称 信息
TelephonyManager;->getDeviceId 搜集用户手机IMEI码、电话号码、系统版本号等信息
java/net/URL;->openConnection 连接URL
TelephonyManager;->getSimSerialNumber 获取SIM序列号
WifiManager;->setWifiEnabled 变更WIFI状态
getRuntime 获取命令行环境
java/lang/Runtime;->exec 执行字符串命令
启动方式
VirSCANVirSCAN
名称 信息
com.izkj.dclock.DReceiver 网络连接改变时启动服务
com.izkj.dclock.DReceiver 开机启动服务
权限列表
VirSCANVirSCAN
许可名称 信息
android.permission.RECEIVE_BOOT_COMPLETED 接收开机启动广播
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.CHANGE_WIFI_STATE 改变WIFI连接状态
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.MODIFY_PHONE_STATE 修改电话状态
android.permission.WAKE_LOCK 手机屏幕关闭后后台进程仍运行
android.permission.DEVICE_POWER 电源管理
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.INSTALL_PACKAGES 安装应用
android.permission.DELETE_PACKAGES 删除应用
服务列表
VirSCANVirSCAN
名称
com.izkj.dclock.BaseService
com.izkj.dclock.DService
文件列表
VirSCANVirSCAN
文件名 校验码
AndroidManifest.xml 0x3595b447
resources.arsc 0xc61b6cb2
res/drawable-hdpi/ic_launcher.png 0xd724f2ee
classes.dex 0x9388d493
META-INF/MANIFEST.MF 0x2f888b1c
META-INF/CERT.SF 0x4635bc55
META-INF/CERT.RSA 0x1397e41a
运行截图
VirSCANVirSCAN
VirSCAN