× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 285e9e9c11b77fffb45c039943ec548f6bdb9d44c09c77a29ed4b959192f8510
File name: sS1UzxK3v4ssDAbm4bsS20190109-42736-1cfx0rh
Detection ratio: 0 / 60
Analysis date: 2019-01-09 14:56:06 UTC ( 2 months, 2 weeks ago ) View latest
Antivirus Result Update
Acronis 20181227
Ad-Aware 20190109
AegisLab 20190109
AhnLab-V3 20190108
Alibaba 20180921
ALYac 20190109
Antiy-AVL 20190109
Arcabit 20190109
Avast 20190109
Avast-Mobile 20190109
AVG 20190109
Avira (no cloud) 20190109
AVware 20180925
Babable 20180918
Baidu 20190109
BitDefender 20190109
Bkav 20190108
CAT-QuickHeal 20190108
ClamAV 20190109
CMC 20190108
Comodo 20190109
CrowdStrike Falcon (ML) 20181022
Cybereason 20190109
Cyren 20190109
DrWeb 20190109
eGambit 20190109
Emsisoft 20190109
Endgame 20181108
ESET-NOD32 20190109
F-Prot 20190109
F-Secure 20190109
Fortinet 20190109
GData 20190109
Sophos ML 20181128
Jiangmin 20190109
K7AntiVirus 20190109
K7GW 20190109
Kaspersky 20190109
Kingsoft 20190109
Malwarebytes 20190109
MAX 20190109
McAfee 20190109
McAfee-GW-Edition 20190109
Microsoft 20190109
eScan 20190109
NANO-Antivirus 20190109
Palo Alto Networks (Known Signatures) 20190109
Panda 20190109
Qihoo-360 20190109
Rising 20190109
SentinelOne (Static ML) 20181223
Sophos AV 20190109
SUPERAntiSpyware 20190102
Symantec 20190109
TACHYON 20190109
Tencent 20190109
TheHacker 20190106
TotalDefense 20190109
Trapmine 20190103
TrendMicro 20190109
TrendMicro-HouseCall 20190109
Trustlook 20190109
VBA32 20190108
VIPRE 20190109
ViRobot 20190109
Webroot 20190109
Yandex 20181229
Zillya 20190108
ZoneAlarm by Check Point 20190109
Zoner 20190109
The file being studied is Android related! APK Android file more specifically. The application's main package name is com.werewolfapps.online. The internal version number of the application is 120. The displayed version string of the application is 0.28.6. The minimum Android API level for the application to run (MinSDKVersion) is 16. The target Android API level for the application to run (TargetSDKVersion) is 27.
Required permissions
android.permission.VIBRATE (control vibrator)
android.permission.READ_EXTERNAL_STORAGE (read from external storage)
android.permission.RECEIVE_BOOT_COMPLETED (automatically start at boot)
com.google.android.c2dm.permission.RECEIVE (Unknown permission from android reference)
android.permission.ACCESS_NETWORK_STATE (view network status)
com.werewolfapps.online.permission.C2D_MESSAGE (C2DM permission.)
android.permission.WAKE_LOCK (prevent phone from sleeping)
android.permission.INTERNET (full Internet access)
com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE (Unknown permission from android reference)
android.permission.WRITE_EXTERNAL_STORAGE (modify/delete SD card contents)
com.android.vending.BILLING (Unknown permission from android reference)
Activities
com.werewolfapps.online.MainActivity
com.facebook.react.devsupport.DevSettingsActivity
com.applovin.adview.AppLovinInterstitialActivity
com.applovin.adview.AppLovinConfirmationActivity
com.chartboost.sdk.CBImpressionActivity
com.facebook.ads.AudienceNetworkActivity
com.google.firebase.auth.internal.FederatedSignInActivity
com.google.android.gms.appinvite.PreviewActivity
com.google.android.gms.auth.api.signin.internal.SignInHubActivity
com.google.android.gms.common.api.GoogleApiActivity
com.google.android.gms.ads.AdActivity
com.facebook.FacebookActivity
com.facebook.CustomTabMainActivity
com.facebook.CustomTabActivity
com.unity3d.ads.adunit.AdUnitActivity
com.unity3d.ads.adunit.AdUnitTransparentActivity
com.unity3d.ads.adunit.AdUnitTransparentSoftwareActivity
com.unity3d.ads.adunit.AdUnitSoftwareActivity
com.android.billingclient.api.ProxyBillingActivity
Services
io.invertase.firebase.messaging.RNFirebaseMessagingService
io.invertase.firebase.messaging.RNFirebaseInstanceIdService
io.invertase.firebase.messaging.RNFirebaseBackgroundMessagingService
com.google.firebase.components.ComponentDiscoveryService
com.google.android.gms.auth.api.signin.RevocationBoundService
com.google.firebase.messaging.FirebaseMessagingService
com.google.android.gms.measurement.AppMeasurementService
com.google.android.gms.measurement.AppMeasurementJobService
com.google.firebase.iid.FirebaseInstanceIdService
Receivers
io.invertase.firebase.notifications.RNFirebaseNotificationReceiver
io.invertase.firebase.notifications.RNFirebaseNotificationsRebootReceiver
com.google.android.gms.measurement.AppMeasurementReceiver
com.google.android.gms.measurement.AppMeasurementInstallReferrerReceiver
com.google.firebase.iid.FirebaseInstanceIdReceiver
com.facebook.CurrentAccessTokenExpirationBroadcastReceiver
Providers
com.google.firebase.provider.FirebaseInitProvider
com.facebook.marketing.internal.MarketingInitProvider
com.facebook.internal.FacebookInitProvider
com.crashlytics.android.CrashlyticsInitProvider
Service-related intent filters
com.google.firebase.messaging.FirebaseMessagingService
actions: com.google.firebase.MESSAGING_EVENT
io.invertase.firebase.messaging.RNFirebaseMessagingService
actions: com.google.firebase.MESSAGING_EVENT
io.invertase.firebase.messaging.RNFirebaseInstanceIdService
actions: com.google.firebase.INSTANCE_ID_EVENT
com.google.firebase.iid.FirebaseInstanceIdService
actions: com.google.firebase.INSTANCE_ID_EVENT
Activity-related intent filters
com.google.android.gms.appinvite.PreviewActivity
actions: com.google.android.gms.appinvite.ACTION_PREVIEW
categories: android.intent.category.DEFAULT
com.werewolfapps.online.MainActivity
actions: android.intent.action.MAIN, android.intent.action.VIEW
categories: android.intent.category.LAUNCHER, android.intent.category.DEFAULT, android.intent.category.BROWSABLE
Receiver-related intent filters
io.invertase.firebase.notifications.RNFirebaseNotificationsRebootReceiver
actions: android.intent.action.BOOT_COMPLETED, android.intent.action.QUICKBOOT_POWERON, com.htc.intent.action.QUICKBOOT_POWERON
categories: android.intent.category.DEFAULT
com.facebook.CurrentAccessTokenExpirationBroadcastReceiver
actions: com.facebook.sdk.ACTION_CURRENT_ACCESS_TOKEN_CHANGED
com.google.android.gms.measurement.AppMeasurementInstallReferrerReceiver
actions: com.android.vending.INSTALL_REFERRER
com.google.firebase.iid.FirebaseInstanceIdReceiver
actions: com.google.android.c2dm.intent.RECEIVE
Application certificate information
Interesting strings
The file being studied is a compressed stream! Details about the compressed contents follow.
Interesting properties
The file under inspection contains at least one ELF file.
Contained files
Compression metadata
Contained files
10804
Uncompressed size
45892819
Highest datetime
1980-00-00 00:00:00
Lowest datetime
1980-00-00 00:00:00
Contained files by extension
png
796
xml
55
so
22
ttf
19
dex
2
txt
2
MF
1
RSA
1
jpg
1
SF
1
Contained files by type
PNG
796
unknown
124
XML
55
ELF
22
DEX
2
JPG
1
File identification
MD5 286bc60f2b2663271868794fab1bec25
SHA1 67c09ef64ed1db94fb0bc3aefe6563526b8ebc67
SHA256 285e9e9c11b77fffb45c039943ec548f6bdb9d44c09c77a29ed4b959192f8510
ssdeep
1572864:LoOAymYHeyj9EtJsgr8w9C7w+xyRCpdXfmZHoH3fQehMbKB/tQaULxRkia:LWymYH9uYDw9lspdPzlBBhUL6

File size 91.4 MB ( 95798467 bytes )
File type Android
Magic literal
Zip archive data, at least v2.0 to extract

TrID Java Archive (39.1%)
Sweet Home 3D design (generic) (28.3%)
Mozilla Archive Format (gen) (18.9%)
ZIP compressed archive (10.8%)
PrintFox/Pagefox bitmap (var. P) (2.7%)
Tags
apk android contains-elf

VirusTotal metadata
First submission 2019-01-08 16:33:30 UTC ( 2 months, 2 weeks ago )
Last submission 2019-02-14 08:19:43 UTC ( 1 month, 1 week ago )
File names sS1UzxK3v4ssDAbm4bsS20190109-42736-1cfx0rh
werewolf-online.apk
com.werewolfapps.online-4.apk
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!