× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 07d1759a46a7e03f7111f9915566eb8d9f8280bfae27563d035f2274e4897d05
File name: 1397823601_com.gameloft.android.anmp.gloftuohm.apk
Detection ratio: 0 / 57
Analysis date: 2016-04-15 13:45:35 UTC ( 2 years, 10 months ago ) View latest
Antivirus Result Update
Ad-Aware 20160415
AegisLab 20160415
AhnLab-V3 20160414
Alibaba 20160415
ALYac 20160415
Antiy-AVL 20160415
Arcabit 20160415
Avast 20160415
AVG 20160415
Avira (no cloud) 20160415
AVware 20160415
Baidu 20160414
Baidu-International 20160415
BitDefender 20160415
Bkav 20160415
CAT-QuickHeal 20160415
ClamAV 20160415
CMC 20160412
Comodo 20160415
Cyren 20160415
DrWeb 20160415
Emsisoft 20160415
ESET-NOD32 20160415
F-Prot 20160415
F-Secure 20160415
Fortinet 20160413
GData 20160415
Ikarus 20160415
Jiangmin 20160415
K7AntiVirus 20160415
K7GW 20160415
Kaspersky 20160415
Kingsoft 20160415
Malwarebytes 20160415
McAfee 20160415
McAfee-GW-Edition 20160415
Microsoft 20160415
eScan 20160415
NANO-Antivirus 20160415
nProtect 20160415
Panda 20160414
Qihoo-360 20160415
Rising 20160415
Sophos AV 20160415
SUPERAntiSpyware 20160415
Symantec 20160415
Tencent 20160415
TheHacker 20160414
TotalDefense 20160415
TrendMicro 20160415
TrendMicro-HouseCall 20160415
VBA32 20160415
VIPRE 20160415
ViRobot 20160415
Yandex 20160414
Zillya 20160415
Zoner 20160415
The file being studied is Android related! APK Android file more specifically. The application's main package name is com.gameloft.android.ANMP.GloftUOHM. The internal version number of the application is 16122. The displayed version string of the application is 1.6.1c. The minimum Android API level for the application to run (MinSDKVersion) is 9. The target Android API level for the application to run (TargetSDKVersion) is 19.
Required permissions
android.permission.VIBRATE (control vibrator)
android.permission.READ_EXTERNAL_STORAGE (read from external storage)
android.permission.RECEIVE_BOOT_COMPLETED (automatically start at boot)
android.permission.READ_PHONE_STATE (read phone state and identity)
glshare.permission.ACCESS_SHARED_DATA (Unknown permission from android reference)
com.google.android.c2dm.permission.RECEIVE (Unknown permission from android reference)
android.permission.ACCESS_NETWORK_STATE (view network status)
android.permission.WAKE_LOCK (prevent phone from sleeping)
com.gameloft.android.ANMP.GloftUOHM.permission.C2D_MESSAGE (C2DM permission.)
android.permission.ACCESS_WIFI_STATE (view Wi-Fi status)
android.permission.INTERNET (full Internet access)
android.permission.WRITE_EXTERNAL_STORAGE (modify/delete SD card contents)
com.android.vending.BILLING (Unknown permission from android reference)
android.permission.GET_ACCOUNTS (discover known accounts)
Activities
com.gameloft.android.ANMP.GloftUOHM.UNOFGame
com.facebook.LoginActivity
com.gameloft.android.ANMP.GloftUOHM.installer.GameInstaller
com.gameloft.android.ANMP.GloftUOHM.iab.GMPActivity
com.gameloft.android.ANMP.GloftUOHM.MyLogoView
com.gameloft.android.ANMP.GloftUOHM.IGPFreemiumActivity
com.gameloft.android.ANMP.GloftUOHM.SplashScreenActivity
com.gameloft.android.ANMP.GloftUOHM.InGameBrowser
com.gameloft.android.ANMP.GloftUOHM.AdServerInterstitial
com.gameloft.android.ANMP.GloftUOHM.AdServerVideos
com.tapjoy.TJCOffersWebView
com.tapjoy.TapjoyFullScreenAdWebView
com.tapjoy.TapjoyDailyRewardAdWebView
com.tapjoy.TapjoyVideoView
com.tapjoy.TJAdUnitView
com.tapjoy.mraid.view.ActionHandler
com.tapjoy.mraid.view.Browser
com.gameloft.android.ANMP.GloftUOHM.YuMeActivity
com.applovin.adview.AppLovinInterstitialActivity
Services
com.yume.android.sdk.YuMeUUIDService
com.gameloft.android.ANMP.GloftUOHM.GCMIntentService
Receivers
com.google.android.gcm.GCMBroadcastReceiver
com.gameloft.android.ANMP.GloftUOHM.PushNotification.LocalPushReceiver
com.gameloft.android.ANMP.GloftUOHM.GLUtils.NetworkStateReceiver
com.gameloft.android.ANMP.GloftUOHM.BootCompletedReceiver
com.gameloft.android.ANMP.GloftUOHM.installer.IReferrerReceiver
com.gameloft.android.ANMP.GloftUOHM.ApplicationSetUp
Providers
com.gameloft.android.ANMP.GloftUOHM.KeyProvider
Service-related intent filters
com.yume.android.sdk.YuMeUUIDService
actions: com.yume.android.sdk.GETDEVICEUUID
Activity-related intent filters
com.gameloft.android.ANMP.GloftUOHM.iab.GMPActivity
actions: android.intent.action.MAIN
com.gameloft.android.ANMP.GloftUOHM.MyLogoView
actions: android.intent.action.MAIN
com.gameloft.android.ANMP.GloftUOHM.UNOFGame
actions: android.intent.action.MAIN
categories: android.intent.category.LAUNCHER
com.gameloft.android.ANMP.GloftUOHM.IGPFreemiumActivity
actions: android.intent.action.MAIN
com.gameloft.android.ANMP.GloftUOHM.SplashScreenActivity
actions: android.intent.action.MAIN
Receiver-related intent filters
com.google.android.gcm.GCMBroadcastReceiver
actions: com.google.android.c2dm.intent.RECEIVE, com.google.android.c2dm.intent.REGISTRATION
categories: com.gameloft.android.ANMP.GloftUOHM
com.gameloft.android.ANMP.GloftUOHM.installer.IReferrerReceiver
actions: com.android.vending.INSTALL_REFERRER
com.gameloft.android.ANMP.GloftUOHM.GLUtils.NetworkStateReceiver
actions: android.net.conn.CONNECTIVITY_CHANGE
com.gameloft.android.ANMP.GloftUOHM.BootCompletedReceiver
actions: android.intent.action.BOOT_COMPLETED
categories: android.intent.category.DEFAULT
com.gameloft.android.ANMP.GloftUOHM.PushNotification.LocalPushReceiver
actions: android.intent.action.BOOT_COMPLETED
com.gameloft.android.ANMP.GloftUOHM.ApplicationSetUp
actions: com.gameloft.android.ApplicationSetUp
Application certificate information
Interesting strings
The file being studied is a compressed stream! Details about the compressed contents follow.
Interesting properties
The file under inspection contains at least one ELF file.
Contained files
Compression metadata
Contained files
298
Uncompressed size
65904525
Highest datetime
2014-04-01 15:40:40
Lowest datetime
2014-02-10 16:58:34
Contained files by extension
png
207
xml
73
so
6
txt
3
bin
1
MF
1
RSA
1
js
1
dex
1
SF
1
Contained files by type
PNG
207
XML
72
unknown
12
ELF
6
DEX
1
File identification
MD5 cc44fb879a5bfa89dbfe088b49ed45cb
SHA1 0840fe00e5855879abaf0f879cb6716571959c68
SHA256 07d1759a46a7e03f7111f9915566eb8d9f8280bfae27563d035f2274e4897d05
ssdeep
786432:DywfCwfY5whfhuRN9v7Wi+6+RTAf1AfNTwSHTmWKyuXvay1TCza:WIhuRiFRm1AfNTfHTmyuf3Tsa

File size 27.7 MB ( 29028764 bytes )
File type Android
Magic literal
Zip archive data, at least v2.0 to extract

TrID Android Package (73.9%)
Java Archive (20.4%)
ZIP compressed archive (5.6%)
Tags
apk android software-collection contains-elf

VirusTotal metadata
First submission 2014-04-08 20:30:27 UTC ( 4 years, 10 months ago )
Last submission 2016-11-27 13:20:19 UTC ( 2 years, 2 months ago )
File names 18-746-1480252802-24587.apk
1397823601_com.gameloft.android.anmp.gloftuohm.apk
com.gameloft.android.ANMP.GloftUOHM-1.apk
656a14cc841900182b0a4d7839f495b11979c73a59b0b70d0b9cfa3b3e0f8081be05fd3ec027a6a0ee5837aface8a92f684172d13ca8750346057b19ff603069
uno-and-friends-1-6-1-en-android.apk
unoa-friends.apk
B35kvEpVMH4-U8RAne0RVuyJdiehNtu-.apk
18-746-1472497324-36176.apk
UNOFriends.apk
com.gameloft.android.ANMP.GloftUOHM.apk
com.gameloft.android.ANMP.GloftUOHM.apk
unoa-friends.apk
com.gameloft.android.ANMP.GloftUOHM.apk
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Permissions checked
glshare.permission.ACCESS_SHARED_DATA:com.gameloft.android.ANMP.GloftUOHM
android.permission.INTERNET:com.gameloft.android.ANMP.GloftUOHM
android.permission.READ_PHONE_STATE:com.gameloft.android.ANMP.GloftUOHM
android.permission.ACCESS_NETWORK_STATE:com.gameloft.android.ANMP.GloftUOHM
Started services
#Intent;action=com.google.android.c2dm.intent.REGISTER;package=com.google.android.gms;S.sender=108176907654;end
Opened files
/data/data/com.gameloft.android.ANMP.GloftUOHM/files/gaClientId
/data/data/com.gameloft.android.ANMP.GloftUOHM/files/gaInstallData
/data/app/com.gameloft.android.ANMP.GloftUOHM-1.apk
/system/app/Browser.apk
/system/app/Gallery.apk
/system/app/Camera.apk
/system/app/Contacts.apk
/system/app/Calculator.apk
/system/app/Calendar.apk
/system/app/Music.apk
/system/app/Settings.apk
/system/app/Email.apk
/system/app/Mms.apk
/system/app/DeskClock.apk
/data/app/GestureBuilder.apk
/data/app/WidgetPreview.apk
/data/app/ApiDemos.apk
/system/app/CustomLocale.apk
/system/app/SpeechRecorder.apk
/system/app/DownloadProviderUi.apk
/system/app/Development.apk
/system/app/QuickSearchBox.apk
/data/data/com.gameloft.android.ANMP.GloftUOHM/files
/mnt/sdcard/Android/data/com.gameloft.android.ANMP.GloftUOHM/files
sdcard/Android/data/com.gameloft.android.ANMP.GloftUOHM/files
Accessed files
/data/data/com.gameloft.android.ANMP.GloftUOHM/files
/proc/cpuinfo
/data/data/com.gameloft.android.ANMP.GloftUOHM/files/gaOptOut
/mnt/sdcard/Android/data/com.gameloft.android.ANMP.GloftUOHM/files
/sdcard/Android/data/com.gameloft.android.ANMP.GloftUOHM/files
Interesting calls
Calls APIs that provide access to information about the telephony services on the device. Applications can use such methods to determine telephony services and states, as well as to access some types of subscriber information.
Contacted URLs
http://d.applovin.com/device?api_key=qdDrLWNtqEMzN5GEnXscG16Cnt3_OPRHSAfLB6O5KuXas7DGxfwERtRtoTz-mLum6hTnuhJR6cmQRclGAwdp-h
http://gllive.gameloft.com/ope/tapjoy.php?action=retrieveitems&game=53275&user=udid:190909821315141
http://a.applovin.com/2.0/ad?cpu_speed=320.30&os=4.0.4&platform=android&model=Nexus+S&accept=inter_size,custom_size,launch_app,multi_click,video&api_did=100a2a84a5389f354c&hudid=976fbefc12730589e9d26f1538d82aad5c6b0c95&locale=en_US&sdk_version=5.2.2-5.2.2&format=json&total_imps=0&hadid=9d453a592aec30c5a8b48c39ecb09b573f712f0c&sdk_key=qdDrLWNtqEMzN5GEnXscG16Cnt3_OPRHSAfLB6O5KuXas7DGxfwERtRtoTz-mLum6hTnuhJR6cmQRclGAwdp-h&session_imps=0&network=3g&sources=tpa&size=BANNER&preloading=true&adid=bfc1484e2df11cc2&brand=samsung&carrier=Android&require=REGULAR&app_id=999086b85d71a5f7&vx=999086b85d71a5f7,febbc860d4d7a2fc,16568adb3f980bfc,fc991f708b270f04,7de8736fbac195c9,eec390d1aa173f03,bfc5013ffc85f778,fbb138470313edf4,27717f5c9c6d559c,3f816fa6882ad841,e3c4c9788f818fd9,a9d65cee7359afc1,e2d07cb448d55c1d,6c801094f6504785,0a8e27d912567be3,2bf5b1f5c88af849,dbca1157358a2895,12c8b3d835ba9e21,9c40104f66412490,e2bc2938862baf48
http://a.applovin.com/2.0/ad?cpu_speed=320.30&os=4.0.4&platform=android&model=Nexus+S&accept=inter_size,custom_size,launch_app,multi_click,video&api_did=100a2a84a5389f354c&hudid=976fbefc12730589e9d26f1538d82aad5c6b0c95&locale=en_US&sdk_version=5.2.2-5.2.2&format=json&total_imps=0&hadid=9d453a592aec30c5a8b48c39ecb09b573f712f0c&sdk_key=qdDrLWNtqEMzN5GEnXscG16Cnt3_OPRHSAfLB6O5KuXas7DGxfwERtRtoTz-mLum6hTnuhJR6cmQRclGAwdp-h&session_imps=0&network=3g&sources=tpa&size=INTER&preloading=true&adid=bfc1484e2df11cc2&brand=samsung&carrier=Android&require=REGULAR&app_id=999086b85d71a5f7&vx=999086b85d71a5f7,febbc860d4d7a2fc,16568adb3f980bfc,fc991f708b270f04,7de8736fbac195c9,eec390d1aa173f03,bfc5013ffc85f778,fbb138470313edf4,27717f5c9c6d559c,3f816fa6882ad841,e3c4c9788f818fd9,a9d65cee7359afc1,e2d07cb448d55c1d,6c801094f6504785,0a8e27d912567be3,2bf5b1f5c88af849,dbca1157358a2895,12c8b3d835ba9e21,9c40104f66412490,e2bc2938862baf48
Accessed URIs
content://com.gameloft.android.ANMP.GloftUOHM.KeyProvider/key
content://com.gameloft.android.ANMP.GloftUOHM.KeyProvider/key/