× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 23735f4238821df0fce7c59bc4f83211d516e4a18efd42801b73766888f1a7f5
File name: myfile.apk
Detection ratio: 36 / 60
Analysis date: 2017-03-15 10:34:51 UTC ( 6 months, 1 week ago )
Antivirus Result Update
Ad-Aware Android.Trojan.DroidKungFu.L 20170315
AegisLab KungFu_1 20170315
AhnLab-V3 Android-Trojan/Anserver.22fa9 20170314
Alibaba A.H.Sys.NstrInst 20170228
ALYac Android.Exploit.Exploid.G 20170315
Antiy-AVL Trojan[Backdoor]/Android.KungFu.z 20170315
Arcabit Android.Trojan.DroidKungFu.B 20170315
Avast ELF:KungFu-C [Trj] 20170315
AVG Android/Kungf 20170315
Avira (no cloud) ANDROID/Malmix2.3 20170315
AVware Trojan.AndroidOS.DroidKungFu.a 20170315
Baidu Android.Trojan.DroidKungFu.v 20170315
BitDefender Android.Trojan.DroidKungFu.L 20170315
Bkav Android.Backdoor.KungFu.A.Rubik.64A6 20170314
CAT-QuickHeal Linux.Trojan.DroidKrungFu.A 20170314
ClamAV Andr.Trojan.KungFu-9 20170315
Cyren ELF/Trojan.IDDO-3 20170315
DrWeb Android.Gongfu.6 20170315
Emsisoft Android.Trojan.DroidKungFu.L (B) 20170315
ESET-NOD32 Android/DroidKungFu.C 20170315
F-Secure Android.Trojan.DroidKungFu.L 20170315
Fortinet Android/DroidKungFu.B!tr 20170315
GData Android.Trojan.DroidKungFu.L 20170315
Ikarus PUA.AndroidOS.Youmi 20170315
Jiangmin Exploit.Linux.ao 20170315
Kaspersky Exploit.Linux.Lotoor.x 20170315
eScan Android.Trojan.DroidKungFu.B 20170315
NANO-Antivirus Trojan.KungFu.bfnfgi 20170315
Sophos AV Andr/DroidRt-A 20170315
Tencent SH.!Android.EExtra.Gen.3f 20170315
TotalDefense Kugfu.XAWM!suspicious 20170315
TrendMicro ELF_LOTOOR.A 20170315
TrendMicro-HouseCall ELF_LOTOOR.A 20170315
WhiteArmor Android-Malware.SN-Sure.0636112928363846.[Trojan] 20170303
Zillya Trojan.DroidKungFu..6 20170314
ZoneAlarm by Check Point HEUR:Exploit.AndroidOS.Lotoor.by 20170315
CMC 20170315
Comodo 20170315
CrowdStrike Falcon (ML) 20170130
Endgame 20170222
F-Prot 20170315
Sophos ML 20170203
K7AntiVirus 20170315
K7GW 20170315
Kingsoft 20170315
Malwarebytes 20170315
McAfee 20170315
McAfee-GW-Edition 20170315
Microsoft 20170315
nProtect 20170315
Palo Alto Networks (Known Signatures) 20170315
Panda 20170314
Qihoo-360 20170315
Rising 20170315
SUPERAntiSpyware 20170315
Symantec 20170314
TheHacker 20170315
Trustlook 20170315
VBA32 20170315
VIPRE 20170315
ViRobot 20170315
Webroot 20170315
Yandex 20170312
Zoner 20170315
The file being studied is Android related! APK Android file more specifically. The application's main package name is com.allen.txtshdys. The internal version number of the application is 1. The displayed version string of the application is 1.0. The minimum Android API level for the application to run (MinSDKVersion) is 4.
Required permissions
android.permission.WRITE_EXTERNAL_STORAGE (modify/delete SD card contents)
android.permission.CHANGE_WIFI_STATE (change Wi-Fi status)
android.permission.ACCESS_WIFI_STATE (view Wi-Fi status)
android.permission.INTERNET (full Internet access)
android.permission.READ_PHONE_STATE (read phone state and identity)
Activities
com.allen.txtshdys.txtReader
com.allen.txtshdys.ViewFileAct_Float
com.allen.txtshdys.Settings
com.eguan.state.Dialog
Services
com.eguan.state.StateService
Receivers
com.eguan.state.Receiver
Activity-related intent filters
com.allen.txtshdys.txtReader
actions: android.intent.action.MAIN
categories: android.intent.category.LAUNCHER
Receiver-related intent filters
com.eguan.state.Receiver
actions: android.intent.action.BATTERY_CHANGED_ACTION, android.intent.action.SIG_STR, android.intent.action.BOOT_COMPLETED
Application certificate information
The file being studied is a compressed stream! Details about the compressed contents follow.
Interesting properties
The file under inspection contains at least one ELF file.
Contained files
Compression metadata
Contained files
30
Uncompressed size
1274777
Highest datetime
2014-02-23 18:58:50
Lowest datetime
2014-02-23 18:58:50
Contained files by extension
xml
10
jpg
6
png
2
dex
1
MF
1
RSA
1
so
1
PNG
1
txt
1
SF
1
Contained files by type
XML
10
unknown
6
JPG
6
ELF
4
PNG
3
DEX
1
File identification
MD5 a84ff0091c72e94ab253620c7318c959
SHA1 9010ed1efe1a2bf78e2ae7d593dd90d10cf3e256
SHA256 23735f4238821df0fce7c59bc4f83211d516e4a18efd42801b73766888f1a7f5
ssdeep
24576:bAQwACGosfuK0bTa4e/5PzSxdkQ0VGv6Pi8Ga6UAPUFXNdju:hwAEsfuK0bDcmdkVHPbEPUFi

File size 959.3 KB ( 982286 bytes )
File type Android
Magic literal
Zip archive data, at least v1.0 to extract

TrID Android Package (73.9%)
Java Archive (20.4%)
ZIP compressed archive (5.6%)
Tags
apk android contains-elf

VirusTotal metadata
First submission 2017-03-15 10:34:51 UTC ( 6 months, 1 week ago )
Last submission 2017-03-15 10:34:51 UTC ( 6 months, 1 week ago )
File names myfile.apk
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!