× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 625a9570049ba1c0e0256a939f9cbd657da55b28bb4948f420cdf6ebfd5968b2
File name: file
Detection ratio: 0 / 56
Analysis date: 2016-02-22 17:00:53 UTC ( 2 years, 11 months ago ) View latest
Antivirus Result Update
Ad-Aware 20160222
AegisLab 20160222
Yandex 20160221
AhnLab-V3 20160222
Alibaba 20160222
ALYac 20160222
Antiy-AVL 20160222
Arcabit 20160222
Avast 20160222
AVG 20160222
Avira (no cloud) 20160222
AVware 20160222
Baidu-International 20160221
BitDefender 20160222
Bkav 20160222
ByteHero 20160222
CAT-QuickHeal 20160222
ClamAV 20160222
CMC 20160222
Comodo 20160222
Cyren 20160222
DrWeb 20160222
Emsisoft 20160222
ESET-NOD32 20160222
F-Prot 20160221
F-Secure 20160222
Fortinet 20160222
GData 20160222
Ikarus 20160222
Jiangmin 20160222
K7AntiVirus 20160222
K7GW 20160222
Kaspersky 20160222
Malwarebytes 20160222
McAfee 20160222
McAfee-GW-Edition 20160222
Microsoft 20160222
eScan 20160222
NANO-Antivirus 20160222
nProtect 20160222
Panda 20160222
Qihoo-360 20160222
Rising 20160222
Sophos AV 20160222
SUPERAntiSpyware 20160222
Symantec 20160222
Tencent 20160222
TheHacker 20160222
TotalDefense 20160222
TrendMicro 20160222
TrendMicro-HouseCall 20160222
VBA32 20160222
VIPRE 20160222
ViRobot 20160222
Zillya 20160222
Zoner 20160222
The file being studied is Android related! APK Android file more specifically. The application's main package name is com.venmo. The internal version number of the application is 180. The displayed version string of the application is 6.8.0. The minimum Android API level for the application to run (MinSDKVersion) is 14. The target Android API level for the application to run (TargetSDKVersion) is 22.
Required permissions
android.permission.ACCESS_FINE_LOCATION (fine (GPS) location)
android.permission.VIBRATE (control vibrator)
android.permission.INTERNET (full Internet access)
com.venmo.permission.C2D_MESSAGE (C2DM permission.)
android.permission.SEND_SMS (send SMS messages)
com.google.android.c2dm.permission.RECEIVE (Unknown permission from android reference)
android.permission.ACCESS_NETWORK_STATE (view network status)
android.permission.WAKE_LOCK (prevent phone from sleeping)
android.permission.READ_CONTACTS (read contact data)
android.permission.WRITE_EXTERNAL_STORAGE (modify/delete SD card contents)
android.permission.GET_ACCOUNTS (discover known accounts)
Activities
com.venmo.TabCentralActivity
com.venmo.WebViewActivity
com.venmo.controller.InviteActivity
com.venmo.SearchFriendsActivity
com.venmo.ProfileActivity
com.venmo.VenmoURLActivity
com.venmo.firstrun.WelcomeActivity
com.venmo.firstrun.FBCompleteSignupActivity
com.venmo.firstrun.LoginActivity
com.venmo.firstrun.VerifyActivity
com.venmo.firstrun.PinActivity
com.venmo.auth.TwoFactorActivity
com.venmo.controller.TrustedDevicesActivity
com.facebook.FacebookActivity
com.venmo.firstrun.SignupActivity
com.venmo.controller.ConnectFacebookActivity
com.venmo.SettingsAudienceActivity
com.venmo.FacebookSharingSettingsActivity
com.venmo.SettingsAutofriendActivity
com.venmo.SignupProfileActivity
com.venmo.FriendsFriendsActivity
com.venmo.PinSettingsActivity
com.venmo.ComposeActivity
com.venmo.ServerPreferenceActivity
com.venmo.controller.FriendsListActivity
com.venmo.StoryActivity
com.venmo.TransferStoryActivity
com.venmo.SettingsActivity
com.venmo.SettingsNotificationsActivity
com.venmo.SettingsPushNotificationsActivity
com.venmo.SettingsEmailNotificationsActivity
com.venmo.SettingsSMSNotificationsActivity
com.venmo.LikesListActivity
com.venmo.LoggingOutActivity
com.venmo.tests.ActivityInTestPackageActivity
com.venmo.CardChooserActivity
com.braintreepayments.api.dropin.BraintreePaymentActivity
com.braintreepayments.api.threedsecure.ThreeDSecureWebViewActivity
com.paypal.android.sdk.payments.PayPalProfileSharingActivity
com.paypal.android.sdk.payments.ProfileSharingConsentActivity
com.paypal.android.sdk.payments.FuturePaymentInfoActivity
com.paypal.android.sdk.payments.LoginActivity
com.paypal.android.sdk.payments.PayPalTouchActivity
com.venmo.android.pin.TestActivity
com.mixpanel.android.surveys.SurveyActivity
Services
com.venmo.InviteIntentService
com.venmo.service.ReadAddressBookService
com.venmo.notifications.NotificationService
com.paypal.android.sdk.payments.PayPalService
Receivers
com.venmo.ReferralReceiver
com.venmo.notifications.NotificationReceiver
com.venmo.notifications.PackageReplacedReceiver
com.mixpanel.android.mpmetrics.InstallReferrerReceiver
Activity-related intent filters
com.venmo.ComposeActivity
actions: android.intent.action.VIEW
categories: android.intent.category.DEFAULT, android.intent.category.BROWSABLE
com.venmo.TabCentralActivity
actions: android.intent.action.MAIN, android.intent.action.VIEW
categories: android.intent.category.LAUNCHER, android.intent.category.DEFAULT, android.intent.category.BROWSABLE
com.venmo.VenmoURLActivity
actions: android.intent.action.VIEW
categories: android.intent.category.DEFAULT, android.intent.category.BROWSABLE
Receiver-related intent filters
com.venmo.notifications.PackageReplacedReceiver
actions: android.intent.action.MY_PACKAGE_REPLACED
com.mixpanel.android.mpmetrics.InstallReferrerReceiver
actions: com.android.vending.INSTALL_REFERRER
com.venmo.notifications.NotificationReceiver
actions: com.google.android.c2dm.intent.RECEIVE
categories: com.venmo
com.venmo.ReferralReceiver
actions: com.android.vending.INSTALL_REFERRER
Application certificate information
Interesting strings
The file being studied is a compressed stream! Details about the compressed contents follow.
Contained files
Compression metadata
Contained files
1164
Uncompressed size
8444856
Highest datetime
2015-04-27 20:21:58
Lowest datetime
2015-04-27 20:20:52
Contained files by extension
png
500
xml
258
wav
1
dex
1
Contained files by type
PNG
500
XML
258
unknown
241
DEX
1
File identification
MD5 fe2f749e82bda324547f163e52ff2c8e
SHA1 97828de90680e1c08dde180930657cca94e78345
SHA256 625a9570049ba1c0e0256a939f9cbd657da55b28bb4948f420cdf6ebfd5968b2
ssdeep
98304:r4BbdO/kLyra7wht78PZbie2U1wMWjkIHHkk/BoJE:r4BbM/c32U1EjkInV/t

File size 4.1 MB ( 4335066 bytes )
File type Android
Magic literal
Zip archive data, at least v2.0 to extract

TrID Android Package (56.7%)
OpenOffice Extension (23.2%)
Java Archive (15.6%)
ZIP compressed archive (4.3%)
Tags
apk android dyn-calls

VirusTotal metadata
First submission 2015-04-30 23:26:42 UTC ( 3 years, 8 months ago )
Last submission 2016-10-13 07:16:49 UTC ( 2 years, 3 months ago )
File names fe2f749e82bda324547f163e52ff2c8e.apk
venmo.apk
179769f0bec1aff9fffc1c12ecf76e04be602b74d6bd99b10a2162d2c78a268d5fbf12fb635f1eb4484eba6a6518427d9cf8f6990fbd752703a03c954ea87c23
com.venmo.apk
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Started services
#Intent;component=com.venmo/.service.ReadAddressBookService;end
Started receivers
com.venmo.FEED_ERROR
android.intent.action.ACTION_POWER_CONNECTED
android.intent.action.ACTION_POWER_DISCONNECTED
com.venmo.sms_sent_complete
Opened files
/data/data/com.venmo/files/.Fabric/com.crashlytics.sdk.android:crashlytics
/data/data/com.venmo/files/.Fabric/com.crashlytics.sdk.android:crashlytics/507456E500A0-0001-05DA-3338E20CBD35BeginSession.cls_temp
/data/data/com.venmo/files/.Fabric/com.crashlytics.sdk.android:crashlytics/507456E500A0-0001-05DA-3338E20CBD35SessionApp.cls_temp
/data/data/com.venmo/files/.Fabric/com.crashlytics.sdk.android:crashlytics/507456E500A0-0001-05DA-3338E20CBD35SessionOS.cls_temp
/data/data/com.venmo/files/.Fabric/com.crashlytics.sdk.android:answers/session_analytics.tap.tmp
/data/data/com.venmo/files/.Fabric/io.fabric.sdk.android:fabric
/data/data/com.venmo/files/.Fabric/com.crashlytics.sdk.android:answers
/data/data/com.venmo/files/.Fabric/com.crashlytics.sdk.android:answers/session_analytics_to_send
/mnt/sdcard
/data
/data/data/com.venmo/files/.Fabric/com.crashlytics.sdk.android:answers/session_analytics.tap
Accessed files
/data/data/com.venmo/files/.Fabric/com.crashlytics.sdk.android:crashlytics
/data/data/com.venmo/files/.Fabric/io.fabric.sdk.android:fabric
/data/data/com.venmo/files/.Fabric/com.crashlytics.sdk.android:answers
/data/data/com.venmo/files/.Fabric/com.crashlytics.sdk.android:crashlytics/crash_marker
/data/data/com.venmo/files/.Fabric/com.crashlytics.sdk.android:crashlytics/initialization_marker
/system/app/Superuser.apk
/system/xbin/su
/proc/meminfo
/data/data/com.venmo/files/.Fabric/io.fabric.sdk.android:fabric/com.crashlytics.settings.json
/data/data/com.venmo/files/.Fabric/com.crashlytics.sdk.android:answers/session_analytics.tap
/data/data/com.venmo/files/.Fabric/com.crashlytics.sdk.android:answers/session_analytics_to_send
/data/data/com.venmo/files/.Fabric/com.crashlytics.sdk.android:crashlytics/invalidClsFiles
Interesting calls
Calls APIs that provide access to information about the telephony services on the device. Applications can use such methods to determine telephony services and states, as well as to access some types of subscriber information.
Dynamically called methods
android.app.ApplicationPackageManager.hasSystemFeature 1 argument.
u'android.hardware.nfc'
android.app.ApplicationPackageManager.hasSystemFeature 1 argument.
u'android.hardware.telephony'
Contacted URLs
https://graph.facebook.com/v2.3/180347063770?format=json&sdk=android&fields=supports_implicit_sdk_logging%2Cgdpv4_nux_content%2Cgdpv4_nux_enabled%2Candroid_dialog_configs%2Candroid_sdk_error_categories
https://settings.crashlytics.com/spi/v2/platforms/android/apps/com.venmo/settings?instance=65b032e6a9d82f48341d1306a560daec9800cc1a&source=1&build_version=180&icon_hash=79e222d0eb1403099bb51339aaf41ee4d98a91a9&display_version=6.8.0
Accessed URIs
content://com.facebook.katana.provider.AttributionIdProvider