× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 1fdcf5c3179ed01c946aa2f8769953567ca13cbf0e70f0fa0c66571fda01f910
File name: com.gta3freegam.game_1.apk
Detection ratio: 6 / 43
Analysis date: 2012-11-19 21:35:17 UTC ( 4 years, 4 months ago ) View latest
Antivirus Result Update
Comodo UnclassifiedMalware 20121119
DrWeb Adware.Airpush.7.origin 20121119
ESET-NOD32 a variant of Android/Adware.AirPush.D 20121119
F-Secure Adware:Android/AirPush 20121119
Ikarus AdWare.AndroidOS.AirPush 20121119
TrendMicro-HouseCall TROJ_GEN.F47V1115 20121119
Yandex 20121118
AhnLab-V3 20121118
AntiVir 20121119
Antiy-AVL 20121118
Avast 20121119
AVG 20121119
BitDefender 20121119
ByteHero 20121116
CAT-QuickHeal 20121119
ClamAV 20121119
Commtouch 20121119
Emsisoft 20121119
eSafe 20121115
F-Prot 20121119
Fortinet 20121119
GData 20121119
Jiangmin 20121119
K7AntiVirus 20121116
Kaspersky 20121119
Kingsoft 20121112
McAfee 20121119
McAfee-GW-Edition 20121119
Microsoft 20121119
eScan 20121119
Norman 20121119
nProtect 20121119
Panda 20121119
Rising 20121119
Sophos 20121119
SUPERAntiSpyware 20121119
Symantec 20121119
TheHacker 20121118
TotalDefense 20121118
TrendMicro 20121119
VBA32 20121119
VIPRE 20121119
ViRobot 20121119
The file being studied is Android related! APK Android file more specifically. The application's main package name is com.gta3freegam.game. The internal version number of the application is 1. The displayed version string of the application is 1.0. The minimum Android API level for the application to run (MinSDKVersion) is 7.
Risk summary
The studied DEX file makes use of API reflection
Permissions that allow the application to manipulate your location
Permissions that allow the application to access Internet
Permissions that allow the application to access private information
Other permissions that could be considered as dangerous in certain scenarios
Required permissions
android.permission.ACCESS_FINE_LOCATION (fine (GPS) location)
android.permission.VIBRATE (control vibrator)
android.permission.RECEIVE_BOOT_COMPLETED (automatically start at boot)
android.permission.INTERNET (full Internet access)
android.permission.ACCESS_NETWORK_STATE (view network status)
android.permission.ACCESS_COARSE_LOCATION (coarse (network-based) location)
android.permission.ACCESS_WIFI_STATE (view Wi-Fi status)
android.permission.READ_PHONE_STATE (read phone state and identity)
android.permission.GET_ACCOUNTS (discover known accounts)
Permission-related API calls
ACCESS_NETWORK_STATE
INTERNET
GET_ACCOUNTS
VIBRATE
ACCESS_WIFI_STATE
WAKE_LOCK
ACCESS_FINE_LOCATION
READ_PHONE_STATE
Ad-related libraries
airpush () with a probability
Main Activity
com.gta3freegam.game.Main
Activities
com.gta3freegam.game.Main
com.airpush.android.OptinActivity
Services
com.airpush.android.PushService
Receivers
com.airpush.android.BootReceiver
Activity-related intent filters
com.gta3freegam.game.Main
actions: android.intent.action.MAIN
categories: android.intent.category.LAUNCHER
Receiver-related intent filters
com.airpush.android.BootReceiver
actions: android.intent.action.BOOT_COMPLETED
categories: android.intent.category.HOME
Application certificate information
Application bundle files
Interesting strings
The file being studied is a compressed stream! Details about the compressed contents follow.
Contained files
Compression metadata
Contained files
8
Uncompressed size
149829
Highest datetime
2012-11-14 18:17:10
Lowest datetime
2012-11-14 18:17:10
Contained files by extension
xml
2
dex
1
MF
1
RSA
1
SF
1
png
1
Contained files by type
unknown
4
XML
2
DEX
1
PNG
1
File identification
MD5 69b115103fc388b63476110725b21f13
SHA1 955feadb4fb8726475e885bd268ccb8993df8bbf
SHA256 1fdcf5c3179ed01c946aa2f8769953567ca13cbf0e70f0fa0c66571fda01f910
ssdeep
1536:HVoFI1O5YwgAPIAJ9UWg6mG1juKoArz5SuVAnulW1D8MJvx:HVoFSAPIAJbJZ3Ann1D8MJx

File size 74.0 KB ( 75726 bytes )
File type Android
Magic literal
Zip archive data, at least v2.0 to extract

TrID Android Package (73.9%)
Java Archive (20.4%)
ZIP compressed archive (5.6%)
Tags
apk checks-gps android

VirusTotal metadata
First submission 2012-11-15 09:27:42 UTC ( 4 years, 4 months ago )
Last submission 2015-02-11 19:45:47 UTC ( 2 years, 1 month ago )
File names com.gta3freegam.game-1.apk
69b115103fc388b63476110725b21f13.apk
com.gta3freegam.game_1.apk
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Permissions checked
android.permission.ACCESS_COARSE_LOCATION:com.gta3freegam.game
android.permission.ACCESS_FINE_LOCATION:com.gta3freegam.game
Started activities
#Intent;launchFlags=0x14000000;component=com.gta3freegam.game/com.airpush.android.OptinActivity;end
Opened files
/data/data/com.gta3freegam.game/files
Accessed files
/data/data/com.gta3freegam.game/files
/sbin/su
/system/bin/su
/system/xbin/su
Interesting calls
Calls APIs that provide access to information about the telephony services on the device. Applications can use such methods to determine telephony services and states, as well as to access some types of subscriber information.
Calls APIs that provide access to the system location services. These services allow applications to obtain periodic updates of the device's geographical location, or to fire an application-specified Intent when the device enters the proximity of a given geographical location.