VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.
4, If your browser cannot upload files, please download VirSCAN uploader to upload.

Language
Server load
Server Load

VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

File information

Scanner results
Scanner results:9%Antivirus software(3/32)found malware!
Behavior analysis report:         Habo file analysis
Time: 2015-10-10 11:19:32 (CST)
Scanner Engine Ver Sig Ver Sig Date Scan result Time
antiy AVL SDK 3.0 1970-01-01 Found nothing 5
asquared 9.0.0.4324 9.0.0.4324 2014-07-03 Found nothing 1
avast 150725-1 4.7.4 2015-07-25 Found nothing 0
avg 2109/8133 10.0.1405 2014-11-26 Found nothing 0
baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 8
baidusd 1.0 1.0 2014-04-02 Found nothing 1
bitdefender 7.58469 7.90123 2014-12-25 Found nothing 0
clamav 19861 0.97.5 2014-12-31 Found nothing 0
drweb 5.0.2.3300 5.0.1.1 2014-12-31 Found nothing 0
fortinet 23.345, 23.345 5.1.158 2014-12-08 Found nothing 0
fprot 4.6.2.117 6.5.1.5418 2014-12-31 Found nothing 0
fsecure 2014-04-02-01 9.13 2014-04-02 Found nothing 0
gdata 25.3799 25.3799 2015-10-09 Android.Trojan.Clicker.H 9
ikarus 1.06.01 V1.32.31.0 2014-12-08 Found nothing 0
jiangmin 16.0.100 1.0.0.0 2015-07-25 Found nothing 40
kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 0
kingsoft 2.1 2.1 2013-09-22 Android.Troj.Masksys.yr.(kcloud) 5
mcafee 7638 5400.1158 2014-11-30 Found nothing 0
nod32 0920 3.0.21 2014-12-23 Found nothing 0
panda 9.05.01 9.05.01 2015-07-26 Found nothing 4
pcc 11.380.07 9.500-1005 2014-12-31 Found nothing 0
qh360 1.0.1 1.0.1 1.0.1 Found nothing 6
qqphone 1.0.0.0 1.0.0.0 2014-12-09 Found nothing 0
quickheal 14.00 14.00 2015-07-25 Android.Ztorg.A 2
rising 25.76.04.01 25.76.04.01 2015-07-24 Found nothing 1
sophos 5.08 3.55.0 2014-12-01 Found nothing 0
symantec 20141230.001 1.3.0.24 2014-12-30 Found nothing 0
tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 4
thehacker 6.8.0.5 6.8.0.5 2015-07-23 Found nothing 1
tws 17.47.17308 1.0.2.2108 2014-12-08 Found nothing 12
vba 3.12.26.3 3.12.26.3 2014-12-31 Found nothing 0
virusbuster 15.0.985.0 5.5.2.13 2014-12-05 Found nothing 0
权限列表
许可名称 信息
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.INTERNET 连接网络(2G或3G)
android.permission.RECEIVE_USER_PRESENT
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.KILL_BACKGROUND_PROCESSES 关闭后台进程
com.android.launcher.permission.INSTALL_SHORTCUT 创建快捷方式
android.permission.ACCESS_SUPERUSER
android.permission.CAMERA 访问照相机设备
android.permission.ACCESS_MTK_MMHW
android.permission.READ_SETTINGS
android.permission.WRITE_SETTINGS 读写系统设置项
android.permission.GET_ACCOUNTS 访问账户列表
文件信息
VirSCANVirSCAN
安全评分 :
基本信息
VirSCANVirSCAN
MD5:1391689f70dc4d27f8c30613cda7798c
文件大小:5.58MB
上传时间: 2014-09-22 10:36:30 (CST)
包名:com.android.service.utc0
最低运行环境:Android 2.1.x
版权:
危险行为
VirSCANVirSCAN
行为描述: 执行系统命令
详情信息: [u'getprop']
[u'/system/bin/sh']
动态列表行为
VirSCANVirSCAN
行为描述: 调用哈希算法
详情信息: MD5
行为描述: 读取文件
详情信息: path:/system/build.prop length:996
path:/system/build.prop length:1002
行为描述: 获取加密实例
详情信息: [u'AES/ECB/PKCS5Padding']
行为描述: 启动服务
详情信息: Intent { flg=0x10000000 cmp=com.android.service.utc0/.service.PackageInstallService }
行为描述: 对指定数据计算哈希
详情信息: #beginbuildproperties #autogeneratedbybuildinfo.sh ro.build.id=MASTER ro.build.display.id=sdk-eng4.1.2MASTER495790test-keys ro.build.version.incremental=495790 ro.build.version.sdk=16 ro.build.version.codename=REL ro.build.version.release=4.1.2 ro.build.date=TueOct920:03:51UTC2012 ro.build.date.utc=1349813031 ro.build.type=eng ro.build.user=android-build ro.build.host=vpbs30.mtv.corp.google.com ro.build.tags=test-keys ro.product.model=sdk ro.product.brand=generic ro.product.name=sdk ro.product.device=generic ro.product.board= ro.product.cpu.abi=armeabi-v7a ro.product.cpu.abi2=armeabi ro.product.manufacturer=unknown ro.product.locale.language=en ro.product.locale.region=US ro.wifi.channels= ro.board.platform= #ro.build.productisobsolete;usero.product.device ro.build.product=generic #Donottrytoparsero.build.descriptionor.fingerprint ro.build.description=sdk-eng4.1.2MASTER495790test-keys ro.build.fingerprint=generic/sdk/generic:4.1.2/MASTER/495790:eng/test-keys ro.build.character
istics=default #endbuildproperties # #system.propforgenericsdk # rild.libpath=/system/lib/libreference-ril.so rild.libargs=-d/dev/ttyS0 # #ADDITIONAL_BUILD_PROPERTIES # ro.config.notification_sound=OnTheHunt.ogg ro.config.alarm_alert=Alarm_Classic.ogg ro.kernel.android.checkjni=1 xmpp.auto-presence=true ro.config.nocheckin=yes net.bt.name=Android dalvik.vm.stack-trace-file=/data/anr/traces.txt .com ro.build.tags=test-keys ro.product.model=sdk ro.product.brand=generic ro.product.name=sdk ro.product.device=generic ro.product.board= ro.product.cpu.abi=armeabi-v7a ro.product.cpu.abi2=armeabi ro.product.manufacturer=unknown ro.product.locale.language=en ro.product.locale.region=US ro.wifi.channels= ro.board.platform= #ro.build.productisobsolete;usero.product.device ro.build.product=generic #Donottrytoparsero.build.descriptionor.fingerprint ro.build.description=sdk-eng4.1.2MASTER495790test-keys ro.build.fingerprint=generic/sdk/generic:4.1.2/MASTER/495790:eng/test-keys ro.build.character
行为描述: 初始化URL
详情信息: [u'http://api.kfkx.net/rootadhome/downloadyb']
[u'http://rs.kfkx.net/rootadhome/downloadyb']
[u'http://rs.2010010.com/rootadhome/downloadyb']
[u'http://rs.wo-da.com/rootadhome/downloadyb']
[u'http://rs.zhiqupk.com/rootadhome/downloadyb']
[u'http://api.kfkx.net/rootadhome/download']
[u'http://rs.kfkx.net/rootadhome/download']
[u'http://rs.2010010.com/rootadhome/download']
[u'http://rs.wo-da.com/rootadhome/download']
[u'http://rs.zhiqupk.com/rootadhome/download']
行为描述: 访问URL
详情信息: http://api.kfkx.net/rootadhome/downloadyb
http://rs.kfkx.net/rootadhome/downloadyb
http://rs.2010010.com/rootadhome/downloadyb
http://rs.wo-da.com/rootadhome/downloadyb
http://rs.zhiqupk.com/rootadhome/downloadyb
http://api.kfkx.net/rootadhome/download
http://rs.kfkx.net/rootadhome/download
http://rs.2010010.com/rootadhome/download
http://rs.wo-da.com/rootadhome/download
http://rs.zhiqupk.com/rootadhome/download
行为描述: 获取用户ID
详情信息: 460011350503180
行为描述: 执行系统命令
详情信息: [u'getprop']
[u'/system/bin/sh']
行为描述: 缓冲区读取一行数据
详情信息: [ARGH]: [ARGH]
[dalvik.vm.execution-mode]: [int:portable]
[dalvik.vm.heapsize]: [64m]
[dalvik.vm.stack-trace-file]: [/data/anr/traces.txt]
[dev.bootcomplete]: [1]
[gsm.current.phone-type]: [1]
[gsm.defaultpdpcontext.active]: [false]
[gsm.network.type]: [UMTS]
[gsm.nitz.time]: [1422771647219]
[gsm.operator.alpha]: [Android]
[gsm.operator.iso-country]: [us]
[gsm.operator.isroaming]: [false]
[gsm.operator.numeric]: [310260]
[gsm.sim.operator.alpha]: [Android]
[gsm.sim.operator.iso-country]: [us]
[gsm.sim.operator.numeric]: [310260]
[gsm.sim.state]: [READY]
[gsm.version.ril-impl]: [android reference-ril 1.0]
[init.svc.adbd]: [running]
[init.svc.bootanim]: [stopped]
[init.svc.console]: [running]
[init.svc.debuggerd]: [running]
[init.svc.drm]: [running]
[init.svc.goldfish-logcat]: [stopped]
[init.svc.goldfish-setup]: [stopped]
[init.svc.installd]: [running]
[init.svc.keystore]: [running]
[init.svc.media]: [running]
[init.svc.netd]: [running]
[init.svc.qemu-props]: [stopped]
[init.svc.qemud]: [running]
[init.svc.ril-daemon]: [running]
[init.svc.servicemanager]: [running]
[init.svc.surfaceflinger]: [running]
[init.svc.ueventd]: [running]
[init.svc.vold]: [running]
[init.svc.zygote]: [running]
[net.bt.name]: [Android]
[net.change]: [net.qtaguid_enabled]
[net.dns1]: [10.0.2.3]
[net.dns2]: [10.0.2.4]
[net.dnschange]: [1]
[net.eth0.dns1]: [10.0.2.3]
[net.eth0.dns2]: [10.0.2.4]
[net.eth0.gw]: [10.0.2.2]
[net.gprs.local-ip]: [10.0.2.15]
[net.hostname]: [android-6d53bde89a4c31f0]
[net.qtaguid_enabled]: [0]
[net.tcp.buffersize.default]: [4096,87380,110208,4096,16384,110208]
[net.tcp.buffersize.edge]: [4093,26280,35040,4096,16384,35040]
[net.tcp.buffersize.gprs]: [4092,8760,11680,4096,8760,11680]
[net.tcp.buffersize.hspa]: [4094,87380,262144,4096,16384,262144]
[net.tcp.buffersize.lte]: [524288,1048576,2097152,262144,524288,1048576]
[net.tcp.buffersize.umts]: [4094,87380,110208,4096,16384,110208]
[net.tcp.buffersize.wifi]: [524288,1048576,2097152,262144,524288,1048576]
[persist.sys.country]: [US]
[persist.sys.language]: [en]
[persist.sys.localevar]: []
[persist.sys.profiler_ms]: [0]
[persist.sys.timezone]: [Asia/Shanghai]
[persist.sys.usb.config]: [adb]
[qemu.hw.mainkeys]: [0]
[qemu.sf.fake_camera]: [none]
[qemu.sf.lcd_density]: [320]
[rild.libargs]: [-d /dev/ttyS0]
[rild.libpath]: [/system/lib/libreference-ril.so]
[ro.allow.mock.location]: [1]
[ro.baseband]: [unknown]
[ro.board.platform]: []
[ro.bootloader]: [unknown]
[ro.bootmode]: [unknown]
[ro.build.characteristics]: [default]
[ro.build.date.utc]: [1349813031]
[ro.build.date]: [Tue Oct 9 20:03:51 UTC 2012]
[ro.build.description]: [sdk-eng 4.1.2 MASTER 495790 test-keys]
[ro.build.display.id]: [sdk-eng 4.1.2 MASTER 495790 test-keys]
[ro.build.fingerprint]: [generic/sdk/generic:4.1.2/MASTER/495790:eng/test-keys]
[ro.build.host]: [vpbs30.mtv.corp.google.com]
[ro.build.id]: [MASTER]
[ro.build.product]: [generic]
[ro.build.tags]: [test-keys]
[ro.build.type]: [eng]
[ro.build.user]: [android-build]
[ro.build.version.codename]: [REL]
[ro.build.version.incremental]: [495790]
[ro.build.version.release]: [4.1.2]
[ro.build.version.sdk]: [16]
[ro.com.google.locationfeatures]: [1]
[ro.config.alarm_alert]: [Alarm_Classic.ogg]
[ro.config.nocheckin]: [yes]
[ro.config.notification_sound]: [OnTheHunt.ogg]
[ro.debuggable]: [1]
[ro.factorytest]: [0]
[ro.hardware]: [goldfish]
[ro.kernel.android.checkjni]: [1]
[ro.kernel.android.qemud]: [ttyS1]
[ro.kernel.console]: [ttyS0]
[ro.kernel.ndns]: [2]
[ro.kernel.qemu.gles]: [0]
[ro.kernel.qemu]: [1]
[ro.product.board]: []
[ro.product.brand]: [generic]
[ro.product.cpu.abi2]: [armeabi]
[ro.product.cpu.abi]: [armeabi-v7a]
[ro.product.device]: [generic]
[ro.product.locale.language]: [en]
[ro.product.locale.region]: [US]
[ro.product.manufacturer]: [unknown]
[ro.product.model]: [sdk]
[ro.product.name]: [sdk]
[ro.radio.use-ppp]: [no]
[ro.revision]: [0]
[ro.runtime.firstboot]: [1422771678315]
[ro.secure]: [0]
[ro.serialno]: []
[ro.setupwizard.mode]: [EMULATOR]
[ro.wifi.channels]: []
[service.bootanim.exit]: [1]
[status.battery.level]: [5]
[status.battery.level_raw]: [50]
[status.battery.level_scale]: [9]
[status.battery.state]: [Slow]
[sys.boot_completed]: [1]
[sys.settings_secure_version]: [13]
[sys.settings_system_version]: [2]
[sys.usb.config]: [adb]
[sys.usb.state]: [adb]
[system_init.startsurfaceflinger]: [0]
[xmpp.auto-presence]: [true]
行为描述: 初始化Intent
详情信息: [u'android.os.Parcel@414aed20']
[u'android.os.Parcel@414aece0']
行为描述: 获取本机电话号码
详情信息: 18501353180
行为描述: 获取设备ID
详情信息: 353490061623662
行为描述: 写入文件
详情信息: path:/data/data/com.android.service.utc0/shared_prefs/com.android.service.utc0_preferences.xml length:114
path:unknown length:5
path:unknown length:9
Activities
VirSCANVirSCAN
活动名 类型
com.example.demo10.WakeActivity android.intent.action.MAIN
com.example.demo10.WakeActivity android.intent.category.DEFAULT
com.example.demo10.PackageInstallActivity android.intent.action.MAIN
com.example.demo10.PackageInstallActivity android.intent.category.DEFAULT
危险函数
VirSCANVirSCAN
函数名称 信息
ContentResolver;->query 读取联系人、短信等数据库
java/net/URL;->openConnection 连接URL
java/net/HttpURLConnection;->connect 连接URL
HttpClient;->execute 请求远程服务器
getRuntime 获取命令行环境
java/lang/Runtime;->exec 执行字符串命令
DefaultHttpClient;->execute 发送HTTP请求
TelephonyManager;->getDeviceId 搜集用户手机IMEI码、电话号码、系统版本号等信息
TelephonyManager;->getLine1Number 获取手机号
ActivityManager;->killBackgroundProcesses 中断进程,可用于关闭杀软
LocationManager;->getLastKnownLocation 获取地址位置
android/app/NotificationManager;->notify 信息通知栏
启动方式
VirSCANVirSCAN
名称 信息
com.android.service.utc0.receiver.BootReceiver 屏幕解锁启动服务
com.android.service.utc0.receiver.InstallFinishReceiver 应用安装时启动服务
权限列表
VirSCANVirSCAN
许可名称 信息
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.INTERNET 连接网络(2G或3G)
android.permission.RECEIVE_USER_PRESENT
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.KILL_BACKGROUND_PROCESSES 关闭后台进程
com.android.launcher.permission.INSTALL_SHORTCUT 创建快捷方式
android.permission.ACCESS_SUPERUSER
android.permission.CAMERA 访问照相机设备
android.permission.ACCESS_MTK_MMHW
android.permission.READ_SETTINGS
android.permission.WRITE_SETTINGS 读写系统设置项
android.permission.GET_ACCOUNTS 访问账户列表
服务列表
VirSCANVirSCAN
名称
com.android.service.utc0.service.UpdateService
com.android.service.utc0.service.UpdateJsonService
com.android.service.utc0.service.DownloadService
com.android.service.utc0.service.ActivateService
com.android.service.utc0.service.PackageInstallService
文件列表
VirSCANVirSCAN
文件名 校验码
lib/armeabi/libjackpal-androidterm4.so 0xf4a0b1c2
lib/mips/libjackpal-androidterm4.so 0x4db6a2cf
lib/x86/libjackpal-androidterm4.so 0x4984c21
res/drawable-hdpi/ic_launcher.png 0x66587dba
res/drawable-hdpi/icon_360.png 0x41d58061
res/drawable-hdpi/icon_360ws.png 0x45bd1dbe
res/drawable-hdpi/icon_91.png 0x9245a6c2
res/drawable-hdpi/icon_anzhi.png 0x411aadc5
res/drawable-hdpi/icon_anzhuo.png 0x8f924437
res/drawable-hdpi/icon_baidu.png 0x617167c9
res/drawable-hdpi/icon_baidusearch.png 0xddf3b556
res/drawable-hdpi/icon_qq.png 0xdc31ee7c
res/drawable-hdpi/icon_taobao.png 0x9ae7d03e
res/drawable-hdpi/icon_wandoujia.png 0x4ec279cb
res/drawable-hdpi/icon_weibo.png 0x69ea76af
res/drawable-hdpi/icon_weixin.png 0x5eda126a
res/drawable-hdpi/icon_yingyongbao.png 0xad2e0a8c
res/drawable-hdpi/icon_yingyonghui.png 0x8c5dee4d
res/drawable-mdpi/ic_launcher.png 0xb76f8e32
res/drawable-xhdpi/ic_launcher.png 0x5f58f4d5
res/drawable-xxhdpi/ic_launcher.png 0xce43d39a
res/drawable-zh/ic_launcher.png 0xb4b420af
res/layout/activity_main.xml 0xd14dc07c
res/layout/notification_layout.xml 0x17e877d8
AndroidManifest.xml 0xfa215c4
classes.dex 0xac52720c
resources.arsc 0x7f9e6764
META-INF/MANIFEST.MF 0x44129561
META-INF/CERT.SF 0x628ee333
META-INF/CERT.RSA 0xfdea4c02
运行截图
VirSCANVirSCAN
VirSCAN