× Cookies sind ausgeschaltet! Diese Seite erfordert aktivierte Cookies, um vollständig zu funktionieren.
SHA256: 7f64a79ad7584ebcbe7e67ba940896ba9207daf070a6ec31e08a8c37761f1d70
Dateiname: APA.apk
Erkennungsrate: 28 / 56
Analyse-Datum: 2017-05-05 16:38:17 UTC ( vor 1 Jahr, 9 Monate ) Zeige Neueste
Antivirus Ergebnis Aktualisierung
Ad-Aware Android.Monitor.Agent.Z 20170505
AegisLab SUSPICIOUS 20170505
AhnLab-V3 Android-Trojan/Agent.5299c 20170505
Alibaba A.L.Pri.ErosYs 20170505
Antiy-AVL Trojan[Spy]/Android.Fyec 20170505
Arcabit Android.Monitor.Agent.Z 20170505
Avast Android:Agent-PEC [Trj] 20170505
Avira (no cloud) ANDROID/Dropper.Agent.DH.Gen 20170505
BitDefender Android.Monitor.Agent.Z 20170505
CAT-QuickHeal Android.Fyec.A4371 (PUP) 20170504
DrWeb Android.Hidden.2042 20170505
Emsisoft Android.Monitor.Agent.Z (B) 20170505
ESET-NOD32 Android/Spy.Agent.ACU 20170505
F-Secure Android.Monitor.Agent.Z 20170505
Fortinet Android/Agent.ACU!tr.spy 20170505
GData Android.Monitor.Agent.Z 20170505
Ikarus Trojan.AndroidOS.Clicker 20170505
K7GW Spyware ( 005064331 ) 20170505
Kaspersky HEUR:Trojan.AndroidOS.Boogr.gsh 20170505
McAfee Artemis!87981FFBA324 20170505
NANO-Antivirus Trojan.Android.Agent.elrgkt 20170505
Rising Spyware.Agent/Android!8.3BE (cloud:98S0s6oHgNC) 20170505
Sophos AV Andr/Xgen-Y 20170505
Symantec Trojan.Gen.2 20170505
Tencent SH.!Android.GenA.271a8 20170505
WhiteArmor Android-Malware.SN-Sure.0607434104451113326214.[PUA] 20170502
ZoneAlarm by Check Point HEUR:Trojan.AndroidOS.Boogr.gsh 20170505
Zoner Trojan.AndroidOS.Spy.D 20170505
ALYac 20170505
AVG 20170505
AVware 20170505
Baidu 20170503
Bkav 20170505
ClamAV 20170505
Comodo 20170505
CrowdStrike Falcon (ML) 20170130
Cyren 20170505
Endgame 20170503
F-Prot 20170505
Sophos ML 20170413
Jiangmin 20170505
K7AntiVirus 20170505
Kingsoft 20170505
Malwarebytes 20170505
McAfee-GW-Edition 20170505
Microsoft 20170505
eScan 20170505
nProtect 20170505
Palo Alto Networks (Known Signatures) 20170505
Panda 20170505
Qihoo-360 20170505
SentinelOne (Static ML) 20170330
SUPERAntiSpyware 20170505
Symantec Mobile Insight 20170504
TheHacker 20170505
Trustlook 20170505
VBA32 20170505
VIPRE 20170505
ViRobot 20170505
Webroot 20170505
Yandex 20170504
The file being studied is Android related! APK Android file more specifically. The application's main package name is sys.power.sys. The internal version number of the application is 1. The displayed version string of the application is @7F070029. The minimum Android API level for the application to run (MinSDKVersion) is 10. The target Android API level for the application to run (TargetSDKVersion) is 25.
Required permissions
android.permission.PROCESS_OUTGOING_CALLS (intercept outgoing calls)
android.permission.ACCESS_COARSE_LOCATION (coarse (network-based) location)
android.permission.ACCESS_WIFI_STATE (view Wi-Fi status)
android.permission.INTERNET (full Internet access)
android.permission.SET_WALLPAPER_HINTS (set wallpaper size hints)
android.permission.WRITE_CONTACTS (write contact data)
android.permission.SEND_SMS (send SMS messages)
android.permission.ACCESS_NETWORK_STATE (view network status)
android.permission.WRITE_CALL_LOG (write (but not read) the user's contacts data.)
android.permission.SET_WALLPAPER (set wallpaper)
android.permission.READ_CALL_LOG (read the user's call log.)
com.android.browser.permission.READ_HISTORY_BOOKMARKS (read Browser's history and bookmarks)
android.permission.WRITE_EXTERNAL_STORAGE (modify/delete SD card contents)
android.permission.RECORD_AUDIO (record audio)
android.permission.ACCESS_FINE_LOCATION (fine (GPS) location)
android.permission.READ_EXTERNAL_STORAGE (read from external storage)
android.permission.RECEIVE_BOOT_COMPLETED (automatically start at boot)
android.permission.CALL_PHONE (directly call phone numbers)
android.permission.WRITE_SETTINGS (modify global system settings)
android.permission.READ_PHONE_STATE (read phone state and identity)
android.permission.READ_SMS (read SMS or MMS)
android.permission.VIBRATE (control vibrator)
android.permission.SYSTEM_ALERT_WINDOW (display system-level alerts)
android.permission.KILL_BACKGROUND_PROCESSES (kill background processes)
android.permission.CAMERA (take pictures and videos)
android.permission.WAKE_LOCK (prevent phone from sleeping)
android.permission.CHANGE_WIFI_STATE (change Wi-Fi status)
android.permission.RECEIVE_SMS (receive SMS)
android.permission.READ_CONTACTS (read contact data)
android.permission.GET_ACCOUNTS (discover known accounts)
Activities
sys.power.sys.MainActivity
Services
sys.power.sys.AutoStartUp
sys.power.sys.NotificationService
sys.power.sys.PhotoTakingService
Receivers
sys.power.sys.BootComplete
sys.power.sys.PhonecallReceiver
sys.power.sys.IncomingSms
Service-related intent filters
sys.power.sys.NotificationService
actions: android.service.notification.NotificationListenerService
Activity-related intent filters
sys.power.sys.MainActivity
actions: android.intent.action.MAIN
categories: android.intent.category.LAUNCHER
Receiver-related intent filters
sys.power.sys.PhonecallReceiver
actions: android.intent.action.PHONE_STATE, android.intent.action.NEW_OUTGOING_CALL
sys.power.sys.IncomingSms
actions: android.provider.Telephony.SMS_RECEIVED
sys.power.sys.BootComplete
actions: android.intent.action.BOOT_COMPLETED
Application certificate information
Interesting strings
The file being studied is a compressed stream! Details about the compressed contents follow.
Contained files
Compression metadata
Contained files
430
Uncompressed size
7768639
Highest datetime
2017-05-04 21:46:04
Lowest datetime
2017-05-04 21:45:58
Contained files by extension
png
249
xml
175
dex
1
MF
1
RSA
1
apk
1
SF
1
Contained files by type
PNG
249
XML
175
unknown
4
DEX
1
ZIP
1
File identification
MD5 c65e3a04a31f129f0b5ab403b5de621c
SHA1 8a3badf1f578340c339d7d8626962dc5e98f73ad
SHA256 7f64a79ad7584ebcbe7e67ba940896ba9207daf070a6ec31e08a8c37761f1d70
ssdeep
196608:LxgYUpDh70nY80uQhe+PMdh2LQTlWYn3V3QCvHC1JWlz47M:Lx7Y9OQhe6MGLK3V3QcHC1gu7M

File size 7.0 MB ( 7342538 bytes )
File type Android
Magic literal
Zip archive data, at least v2.0 to extract

TrID Android Package (73.9%)
Java Archive (20.4%)
ZIP compressed archive (5.6%)
Tags
apk android

VirusTotal metadata
First submission 2017-05-05 16:38:17 UTC ( vor 1 Jahr, 9 Monate )
Last submission 2018-01-18 13:23:53 UTC ( vor 1 Jahr )
Dateinamen APA.apk
Keine Kommentare. Bisher hat kein Mitglied der VirusTotal-Community einen Kommentar zu diesem Punkt verfasst, seien Sie der Erste!

Hinterlassen Sie Ihren Kommentar...

?
Kommentar abschicken

Sie sind nicht angemeldet. Nur registrierte Nutzer können Kommentare hinterlassen, melden Sie sich an und sagen Sie etwas dazu!

Keine Bewertungen. Niemand hat diesen Punkt bisher bewertet, seien Sie der Erste!
Started services
#Intent;component=sys.power.sys/.AutoStartUp;end
Opened files
/mnt/sdcard/apa.apk
Interesting calls
Calls APIs that manage SMS operations such as sending data, text, and pdu SMS messages.
Accessed URIs
file:///mnt/sdcard/apa.apk