× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 246cadd28794cb4dffb891da0daa7f7c2de51c49988e24ff4993a6005c3c255d
File name: CarsFastasLightning_30516.apk
Detection ratio: 0 / 57
Analysis date: 2016-05-30 07:22:05 UTC ( 2 years, 11 months ago ) View latest
Antivirus Result Update
Ad-Aware 20160530
AegisLab 20160530
AhnLab-V3 20160529
Alibaba 20160530
ALYac 20160530
Antiy-AVL 20160530
Arcabit 20160530
Avast 20160530
AVG 20160530
Avira (no cloud) 20160529
AVware 20160530
Baidu 20160530
Baidu-International 20160529
BitDefender 20160530
Bkav 20160528
CAT-QuickHeal 20160530
ClamAV 20160530
CMC 20160523
Comodo 20160530
Cyren 20160530
DrWeb 20160530
Emsisoft 20160530
ESET-NOD32 20160530
F-Prot 20160530
F-Secure 20160530
Fortinet 20160530
GData 20160530
Ikarus 20160530
Jiangmin 20160530
K7AntiVirus 20160530
K7GW 20160530
Kaspersky 20160530
Kingsoft 20160530
Malwarebytes 20160530
McAfee 20160530
McAfee-GW-Edition 20160530
Microsoft 20160530
eScan 20160530
NANO-Antivirus 20160530
nProtect 20160527
Panda 20160529
Qihoo-360 20160530
Rising 20160530
Sophos AV 20160530
SUPERAntiSpyware 20160529
Symantec 20160530
Tencent 20160530
TheHacker 20160528
TotalDefense 20160530
TrendMicro 20160530
TrendMicro-HouseCall 20160530
VBA32 20160527
VIPRE 20160530
ViRobot 20160530
Yandex 20160530
Zillya 20160528
Zoner 20160530
The file being studied is Android related! APK Android file more specifically. The application's main package name is com.gameloft.android.ANMP.GloftCAHM. The internal version number of the application is 13423. The displayed version string of the application is 1.3.4d. The minimum Android API level for the application to run (MinSDKVersion) is 14. The target Android API level for the application to run (TargetSDKVersion) is 22.
Required permissions
android.permission.VIBRATE (control vibrator)
android.permission.READ_EXTERNAL_STORAGE (read from external storage)
android.permission.RECEIVE_BOOT_COMPLETED (automatically start at boot)
android.permission.INTERNET (full Internet access)
glshare.permission.ACCESS_SHARED_DATA (Unknown permission from android reference)
com.google.android.c2dm.permission.RECEIVE (Unknown permission from android reference)
android.permission.ACCESS_WIFI_STATE (view Wi-Fi status)
android.permission.ACCESS_COARSE_LOCATION (coarse (network-based) location)
android.permission.WAKE_LOCK (prevent phone from sleeping)
android.permission.ACCESS_NETWORK_STATE (view network status)
com.gameloft.android.ANMP.GloftCAHM.permission.C2D_MESSAGE (C2DM permission.)
com.android.browser.permission.READ_HISTORY_BOOKMARKS (read Browser's history and bookmarks)
android.permission.WRITE_EXTERNAL_STORAGE (modify/delete SD card contents)
com.android.vending.BILLING (Unknown permission from android reference)
android.permission.GET_ACCOUNTS (discover known accounts)
Activities
com.gameloft.android.ANMP.GloftCAHM.GL2JNIActivity
com.gameloft.android.ANMP.GloftCAHM.installer.GameInstaller
com.gameloft.android.ANMP.GloftCAHM.iab.GMPActivity
com.facebook.LoginActivity
com.gameloft.android.ANMP.GloftCAHM.IGPActivity
com.gameloft.android.ANMP.GloftCAHM.IGPFreemiumActivity
com.gameloft.android.ANMP.GloftCAHM.SplashScreenActivity
com.gameloft.android.ANMP.GloftCAHM.InGameBrowser
com.gameloft.android.ANMP.GloftCAHM.AdServerInterstitial
com.gameloft.android.ANMP.GloftCAHM.AdServerVideos
com.gameloft.glads.GLAdFullScreen
com.gameloft.glads.MRAIDFullScreen
com.gameloft.glads.vast.activity.VASTActivity
com.gameloft.glads.VASTFullScreen
Services
com.google.android.gms.analytics.CampaignTrackingService
com.gameloft.android.ANMP.GloftCAHM.GCMIntentService
Receivers
com.google.android.gcm.GCMBroadcastReceiver
com.gameloft.android.ANMP.GloftCAHM.PushNotification.LocalPushReceiver
com.gameloft.android.ANMP.GloftCAHM.PushNotification.PushIntentReceiver
com.gameloft.android.ANMP.GloftCAHM.PushNotification.PushDeleteReceiver
com.gameloft.android.ANMP.GloftCAHM.GLUtils.NetworkStateReceiver
com.gameloft.android.ANMP.GloftCAHM.BootCompletedReceiver
com.gameloft.android.ANMP.GloftCAHM.installer.IReferrerReceiver
com.gameloft.android.ANMP.GloftCAHM.ApplicationSetUp
Providers
com.gameloft.android.ANMP.GloftCAHM.KeyProvider
Activity-related intent filters
com.gameloft.android.ANMP.GloftCAHM.IGPFreemiumActivity
actions: android.intent.action.MAIN
com.gameloft.android.ANMP.GloftCAHM.GL2JNIActivity
actions: android.intent.action.MAIN
categories: android.intent.category.LAUNCHER
com.gameloft.android.ANMP.GloftCAHM.SplashScreenActivity
actions: android.intent.action.MAIN
com.gameloft.android.ANMP.GloftCAHM.IGPActivity
actions: android.intent.action.MAIN
Receiver-related intent filters
com.google.android.gcm.GCMBroadcastReceiver
actions: com.google.android.c2dm.intent.RECEIVE, com.google.android.c2dm.intent.REGISTRATION
categories: com.gameloft.android.ANMP.GloftCAHM
com.gameloft.android.ANMP.GloftCAHM.installer.IReferrerReceiver
actions: com.android.vending.INSTALL_REFERRER
com.gameloft.android.ANMP.GloftCAHM.GLUtils.NetworkStateReceiver
actions: android.net.conn.CONNECTIVITY_CHANGE
com.gameloft.android.ANMP.GloftCAHM.PushNotification.PushDeleteReceiver
actions: com.gameloft.android.ANMP.GloftCAHM.PNDeleteBroadcast
com.gameloft.android.ANMP.GloftCAHM.ApplicationSetUp
actions: com.gameloft.android.ApplicationSetUp
com.gameloft.android.ANMP.GloftCAHM.PushNotification.LocalPushReceiver
actions: android.intent.action.BOOT_COMPLETED
com.gameloft.android.ANMP.GloftCAHM.BootCompletedReceiver
actions: android.intent.action.BOOT_COMPLETED
categories: android.intent.category.DEFAULT
com.gameloft.android.ANMP.GloftCAHM.PushNotification.PushIntentReceiver
actions: com.gameloft.android.ANMP.GloftCAHM.PNBroadcast
Application certificate information
Interesting strings
The file being studied is a compressed stream! Details about the compressed contents follow.
Interesting properties
The file under inspection contains at least one ELF file.
Contained files
Compression metadata
Contained files
474
Uncompressed size
54830624
Highest datetime
2015-10-06 12:35:54
Lowest datetime
2015-07-16 10:25:40
Contained files by extension
png
356
xml
96
m4a
4
so
4
txt
4
bin
1
MF
1
RSA
1
dat
1
dex
1
SF
1
Contained files by type
PNG
356
XML
94
unknown
19
ELF
4
DEX
1
File identification
MD5 be8b180820efda95ebfc29c92a58a995
SHA1 ebdb78e9d25b8a017c300d0192179059a092cdde
SHA256 246cadd28794cb4dffb891da0daa7f7c2de51c49988e24ff4993a6005c3c255d
ssdeep
393216:Ww4Fw74S3gzPKDTAOBK5g2CP4h7vlpQkMpznQqbXppOdy1nj/5Pm085y+5/ro:Ww4IEbKDUOB2g4h7vlpTozQqSdk5Syi0

File size 23.7 MB ( 24851632 bytes )
File type Android
Magic literal
Zip archive data, at least v2.0 to extract

TrID Android Package (72.9%)
Java Archive (20.1%)
ZIP compressed archive (5.5%)
PrintFox/Pagefox bitmap (var. P) (1.3%)
Tags
apk android contains-elf via-tor

VirusTotal metadata
First submission 2015-10-12 12:20:53 UTC ( 3 years, 7 months ago )
Last submission 2018-11-05 13:28:52 UTC ( 6 months, 2 weeks ago )
File names CarsFastasLightning_30516.apk
Cars_13423.apk
com.gameloft.android.ANMP.GloftCAHM_1.3.4d_liqucn.com.apk
2_3a10ccae8bd675374274df7845613079.apk
be8b180820efda95ebfc29c92a58a995.tmp.32432
omsalQxNRlfK36upG6p7KsI53EwhlrkGOMvmDikglJTuxGChf1ExL0kqNujeHCgo2VDL
com.gameloft.android.ANMP.GloftCAHM_13423.apk
109_5a91836e7ca22351f854e4a2a827fc87.apk
filename
pkg.apk
22537-carsrapidosrayo.apk
qZWQbEoEVyWqYr9uF9iE20170731-22383-q11s5c
cars-fast-as-lightning-1-3-4d-multi-android.apk
Cars-Fast-as-Lightning-1.3.4d(www.farsroid.com).apk
smaa93Na0A2MrDz
cars-fast-as-lightning.apk
com.gameloft.android.ANMP.GloftCAHM.apk
cars-fast-lightning-1-3-4d.apk
saichezongdongyuanjisushandian.apk
eb60eba779c44a9106f1d9ad349f2e2e28a1ce9760b2353cd6dd47af6bae826eae590c4fa1d508223a62a187ded25a17701744d97bc221a40b856c2c6c3d01a1
Тачки-v1-3-4d-Pdalife.ru.apk
be8b180820efda95ebfc29c92a58a995.apk
APKupdate_com_gameloft_android_ANMP_GloftCAHM-13423.apk
samoDFugKI8GjRlp1EmVkCgp3EEWLHdG6y5YulrxBX
asomOqgZeYxic2q1pfA0pguz6U3axgt
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Permissions checked
glshare.permission.ACCESS_SHARED_DATA:com.gameloft.android.ANMP.GloftCAHM
Started receivers
android.net.conn.CONNECTIVITY_CHANGE
com.google.analytics.RADIO_POWERED
Opened files
/data/data/com.gameloft.android.ANMP.GloftCAHM/files/gaClientId
/data/data/com.gameloft.android.ANMP.GloftCAHM/files/gaInstallData
/data/data/com.gameloft.android.ANMP.GloftCAHM/files
/data/data/com.gameloft.android.ANMP.GloftCAHM/filesglads
/mnt/sdcard/Android/data/com.gameloft.android.ANMP.GloftCAHM/files
/sdcard/Android/data/com.gameloft.android.ANMP.GloftCAHM/files
Accessed files
/data/data/com.gameloft.android.ANMP.GloftCAHM/files
/system/app/Superuser.apk
/mnt/sdcard/Android/data/com.gameloft.android.ANMP.GloftCAHM/files
/sdcard/Android/data/com.gameloft.android.ANMP.GloftCAHM/files
/
/data/data/com.gameloft.android.ANMP.GloftCAHM/files/pack.info
Interesting calls
Calls APIs that provide access to information about the telephony services on the device. Applications can use such methods to determine telephony services and states, as well as to access some types of subscriber information.
Contacted URLs
http://ingameads.gameloft.com/redir/hdloading.php?game=CAHM&country=US&lg=en&ver=2.1&device=samsung_NexusS&f=4.0.4&udid=bfAeESCtHVjXeLd2O3p3nlD1ENkvNoVcrGXq7CvZ1Oo=&hdidfv=6f7d7057-3fe6-47c8-b632-40ad40bbc210&androidid=6bfb4e3d818505b5&g_ver=1.3.4d&line_number=mpRd14q8qARUoHkwKMkdaVD1ENkvNoVcrGXq7CvZ1Oo=&google_adid=&google_optout=1&appType=3&check=1&enc=1
https://secure.gameloft.com/android/3g_carrier.php?version=2&game=CAHM&network_country_ISO=us&network_operator=310260&network_operator_name=Android&sim_country_iso=us&sim_operator=310260&sim_operator_name=Android&is_network_roaming=false&android_build_device=crespo&android_build_model=Nexus+S&d=null&return_allowed=1&http=1_0
https://secure.gameloft.com/tryandbuy/notifications/?version=2&game=CAHM&network_country_ISO=us&network_operator=310260&network_operator_name=Android&sim_country_iso=us&sim_operator=310260&sim_operator_name=Android&is_network_roaming=false&android_build_device=crespo&android_build_model=Nexus+S&d=null&action=LaunchinstallerBNOWifi
http://dl.gameloft.com/partners/androidmarket/d.cdn.php?model=Nexus+S&device=crespo&product=2044&version=1.3.4&portal=google_market&head=1
http://dl.gameloft.com/partners/androidmarket/d.cdn.php?model=Nexus+S&device=crespo&product=2044&version=1.3.4&portal=google_market
http://media06.gameloft.com/marketplace/31350/31350/6860378/108578/Cars_HTCNexus9_ETC.jar
Accessed URIs
content://com.gameloft.android.ANMP.GloftCAHM.KeyProvider/key
content://com.gameloft.android.ANMP.GloftCAHM.KeyProvider/key/