× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 09bfafd347c1294ab8fbd42b61fbfebd979e0f8a58314dce641e64accaca81d6
File name: filename
Detection ratio: 0 / 57
Analysis date: 2016-06-02 04:35:08 UTC ( 2 years, 7 months ago ) View latest
Antivirus Result Update
Ad-Aware 20160602
AegisLab 20160602
AhnLab-V3 20160602
Alibaba 20160602
ALYac 20160602
Antiy-AVL 20160602
Arcabit 20160601
Avast 20160601
AVG 20160602
Avira (no cloud) 20160602
AVware 20160602
Baidu 20160601
Baidu-International 20160601
BitDefender 20160602
Bkav 20160601
CAT-QuickHeal 20160601
ClamAV 20160602
CMC 20160530
Comodo 20160602
Cyren 20160602
DrWeb 20160602
Emsisoft 20160602
ESET-NOD32 20160602
F-Prot 20160602
F-Secure 20160602
Fortinet 20160602
GData 20160602
Ikarus 20160601
Jiangmin 20160602
K7AntiVirus 20160601
K7GW 20160602
Kaspersky 20160602
Kingsoft 20160602
Malwarebytes 20160601
McAfee 20160602
McAfee-GW-Edition 20160602
Microsoft 20160602
eScan 20160602
NANO-Antivirus 20160602
nProtect 20160601
Panda 20160601
Qihoo-360 20160602
Rising 20160602
Sophos AV 20160602
SUPERAntiSpyware 20160602
Symantec 20160602
Tencent 20160602
TheHacker 20160602
TotalDefense 20160602
TrendMicro 20160602
TrendMicro-HouseCall 20160602
VBA32 20160601
VIPRE 20160602
ViRobot 20160602
Yandex 20160601
Zillya 20160601
Zoner 20160602
The file being studied is Android related! APK Android file more specifically. The application's main package name is com.gameloft.android.ANMP.GloftCAHM. The internal version number of the application is 13038. The displayed version string of the application is 1.3.0v. The minimum Android API level for the application to run (MinSDKVersion) is 14. The target Android API level for the application to run (TargetSDKVersion) is 22.
Required permissions
android.permission.VIBRATE (control vibrator)
android.permission.READ_EXTERNAL_STORAGE (read from external storage)
android.permission.RECEIVE_BOOT_COMPLETED (automatically start at boot)
android.permission.INTERNET (full Internet access)
glshare.permission.ACCESS_SHARED_DATA (Unknown permission from android reference)
com.google.android.c2dm.permission.RECEIVE (Unknown permission from android reference)
android.permission.ACCESS_WIFI_STATE (view Wi-Fi status)
android.permission.ACCESS_COARSE_LOCATION (coarse (network-based) location)
android.permission.WAKE_LOCK (prevent phone from sleeping)
android.permission.ACCESS_NETWORK_STATE (view network status)
com.gameloft.android.ANMP.GloftCAHM.permission.C2D_MESSAGE (C2DM permission.)
android.permission.WRITE_EXTERNAL_STORAGE (modify/delete SD card contents)
com.android.vending.BILLING (Unknown permission from android reference)
android.permission.GET_ACCOUNTS (discover known accounts)
Activities
com.gameloft.android.ANMP.GloftCAHM.GL2JNIActivity
com.gameloft.android.ANMP.GloftCAHM.installer.GameInstaller
com.gameloft.android.ANMP.GloftCAHM.iab.GMPActivity
com.facebook.LoginActivity
com.gameloft.android.ANMP.GloftCAHM.IGPActivity
com.gameloft.android.ANMP.GloftCAHM.IGPFreemiumActivity
com.gameloft.android.ANMP.GloftCAHM.SplashScreenActivity
com.gameloft.android.ANMP.GloftCAHM.InGameBrowser
com.gameloft.android.ANMP.GloftCAHM.AdServerInterstitial
com.gameloft.android.ANMP.GloftCAHM.AdServerVideos
com.gameloft.glads.GLAdFullScreen
com.gameloft.glads.MRAIDFullScreen
com.gameloft.glads.vast.activity.VASTActivity
com.gameloft.glads.VASTFullScreen
Services
com.google.android.gms.analytics.CampaignTrackingService
com.gameloft.android.ANMP.GloftCAHM.GCMIntentService
Receivers
com.google.android.gcm.GCMBroadcastReceiver
com.gameloft.android.ANMP.GloftCAHM.PushNotification.LocalPushReceiver
com.gameloft.android.ANMP.GloftCAHM.PushNotification.PushIntentReceiver
com.gameloft.android.ANMP.GloftCAHM.PushNotification.PushDeleteReceiver
com.gameloft.android.ANMP.GloftCAHM.GLUtils.NetworkStateReceiver
com.gameloft.android.ANMP.GloftCAHM.BootCompletedReceiver
com.gameloft.android.ANMP.GloftCAHM.installer.IReferrerReceiver
com.gameloft.android.ANMP.GloftCAHM.ApplicationSetUp
Providers
com.gameloft.android.ANMP.GloftCAHM.KeyProvider
Activity-related intent filters
com.gameloft.android.ANMP.GloftCAHM.IGPFreemiumActivity
actions: android.intent.action.MAIN
com.gameloft.android.ANMP.GloftCAHM.GL2JNIActivity
actions: android.intent.action.MAIN
categories: android.intent.category.LAUNCHER
com.gameloft.android.ANMP.GloftCAHM.SplashScreenActivity
actions: android.intent.action.MAIN
com.gameloft.android.ANMP.GloftCAHM.IGPActivity
actions: android.intent.action.MAIN
Receiver-related intent filters
com.google.android.gcm.GCMBroadcastReceiver
actions: com.google.android.c2dm.intent.RECEIVE, com.google.android.c2dm.intent.REGISTRATION
categories: com.gameloft.android.ANMP.GloftCAHM
com.gameloft.android.ANMP.GloftCAHM.installer.IReferrerReceiver
actions: com.android.vending.INSTALL_REFERRER
com.gameloft.android.ANMP.GloftCAHM.GLUtils.NetworkStateReceiver
actions: android.net.conn.CONNECTIVITY_CHANGE
com.gameloft.android.ANMP.GloftCAHM.PushNotification.PushDeleteReceiver
actions: com.gameloft.android.ANMP.GloftCAHM.PNDeleteBroadcast
com.gameloft.android.ANMP.GloftCAHM.ApplicationSetUp
actions: com.gameloft.android.ApplicationSetUp
com.gameloft.android.ANMP.GloftCAHM.PushNotification.LocalPushReceiver
actions: android.intent.action.BOOT_COMPLETED
com.gameloft.android.ANMP.GloftCAHM.BootCompletedReceiver
actions: android.intent.action.BOOT_COMPLETED
categories: android.intent.category.DEFAULT
com.gameloft.android.ANMP.GloftCAHM.PushNotification.PushIntentReceiver
actions: com.gameloft.android.ANMP.GloftCAHM.PNBroadcast
Application certificate information
Interesting strings
The file being studied is a compressed stream! Details about the compressed contents follow.
Interesting properties
The file under inspection contains at least one ELF file.
Contained files
Compression metadata
Contained files
474
Uncompressed size
53780942
Highest datetime
2015-06-22 18:20:06
Lowest datetime
2015-02-11 09:25:10
Contained files by extension
png
356
xml
96
m4a
4
so
4
txt
4
bin
1
MF
1
RSA
1
dat
1
dex
1
SF
1
Contained files by type
PNG
356
XML
94
unknown
19
ELF
4
DEX
1
Compressed bundles
File identification
MD5 a7735caf3541253cc0628ba608e1fcd1
SHA1 223cbaa3c2e82a44c8b50952f952508b649d1546
SHA256 09bfafd347c1294ab8fbd42b61fbfebd979e0f8a58314dce641e64accaca81d6
ssdeep
393216:Tw4Fd7dQHEyLKqvmrVQYTbMfYdakcGd53hVC1VtKMgPd8oSwPzyjPpzXed/i5y8N:Tw4DtyvmSKAftzGd53hk1DKVQjPpDPOq

File size 23.2 MB ( 24375852 bytes )
File type Android
Magic literal
Zip archive data, at least v2.0 to extract

TrID Android Package (73.9%)
Java Archive (20.4%)
ZIP compressed archive (5.6%)
Tags
apk android contains-elf

VirusTotal metadata
First submission 2015-06-25 02:25:56 UTC ( 3 years, 7 months ago )
Last submission 2016-10-19 07:59:04 UTC ( 2 years, 3 months ago )
File names a7735caf3541253cc0628ba608e1fcd1.apk
77adfae3414e09d3225dde5510a6efcf0074347f6ed9fa0677004410087e5273e65ef7b603f6ed9839a7178d2305727fa559d7b798115ab4350bb78153f15d94
cars-fast-as-lightning.apk
com.gameloft.android.ANMP.GloftCAHM-1.apk
myapk.apk
carsfastlightning.apk
com.gameloft.android.ANMP.GloftCAHM.apk
a7735caf3541253cc0628ba608e1fcd1.tmp.3491
filename
com.gameloft.android.anmp.gloftcahm_1.3.0_liqucn.com.apk
carsrapidosrayo.apk
09bfafd347c1294ab8fbd42b61fbfebd979e0f8a58314dce641e64accaca81d6
Тачки-v1-3-0v.apk
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Permissions checked
glshare.permission.ACCESS_SHARED_DATA:com.gameloft.android.ANMP.GloftCAHM
Started receivers
android.net.conn.CONNECTIVITY_CHANGE
com.google.analytics.RADIO_POWERED
Opened files
/data/data/com.gameloft.android.ANMP.GloftCAHM/files/gaClientId
/data/data/com.gameloft.android.ANMP.GloftCAHM/files/gaInstallData
/data/data/com.gameloft.android.ANMP.GloftCAHM/files
/data/data/com.gameloft.android.ANMP.GloftCAHM/filesglads
/mnt/sdcard/Android/data/com.gameloft.android.ANMP.GloftCAHM/files
/sdcard/Android/data/com.gameloft.android.ANMP.GloftCAHM/files
Accessed files
/data/data/com.gameloft.android.ANMP.GloftCAHM/files
/system/app/Superuser.apk
/mnt/sdcard/Android/data/com.gameloft.android.ANMP.GloftCAHM/files
/sdcard/Android/data/com.gameloft.android.ANMP.GloftCAHM/files
/
Interesting calls
Calls APIs that provide access to information about the telephony services on the device. Applications can use such methods to determine telephony services and states, as well as to access some types of subscriber information.
Contacted URLs
https://secure.gameloft.com/android/3g_carrier.php?version=2&game=CAHM&network_country_ISO=us&network_operator=310260&network_operator_name=Android&sim_country_iso=us&sim_operator=310260&sim_operator_name=Android&is_network_roaming=false&android_build_device=crespo&android_build_model=Nexus+S&d=null&return_allowed=1&http=1_0
http://ingameads.gameloft.com/redir/hdloading.php?game=CAHM&country=US&lg=en&ver=2.1&device=samsung_NexusS&f=4.0.4&udid=bfAeESCtHVjXeLd2O3p3nlD1ENkvNoVcrGXq7CvZ1Oo=&hdidfv=c72a5d31-e5ee-41c8-b479-3cd1372d0b45&androidid=f1d829626470c18&g_ver=1.3.0v&line_number=mpRd14q8qARUoHkwKMkdaVD1ENkvNoVcrGXq7CvZ1Oo=&google_adid=&google_optout=1&appType=3&check=1&enc=1
https://secure.gameloft.com/tryandbuy/notifications/?version=2&game=CAHM&network_country_ISO=us&network_operator=310260&network_operator_name=Android&sim_country_iso=us&sim_operator=310260&sim_operator_name=Android&is_network_roaming=false&android_build_device=crespo&android_build_model=Nexus+S&d=null&action=LaunchinstallerBNOWifi
http://dl.gameloft.com/partners/androidmarket/d.cdn.php?model=Nexus+S&device=crespo&product=2044&version=1.3.0&portal=google_market&head=1
http://dl.gameloft.com/partners/androidmarket/d.cdn.php?model=Nexus+S&device=crespo&product=2044&version=1.3.0&portal=google_market
http://media06.gameloft.com/marketplace/31350/31350/6824705/107019/Cars_HTCNexus9_ETC_130v.jar
Accessed URIs
content://com.gameloft.android.ANMP.GloftCAHM.KeyProvider/key
content://com.gameloft.android.ANMP.GloftCAHM.KeyProvider/key/