× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 728ff69727850657c39db594015496943d54a0491f7f9514630c9bbde25b86e6
File name: 9963cf045f9858dfe04f45996d5033838ba727a2f0efadc0823439e98e89f1ff6...
Detection ratio: 0 / 55
Analysis date: 2016-09-19 17:31:44 UTC ( 2 years, 6 months ago ) View latest
Antivirus Result Update
Ad-Aware 20160919
AegisLab 20160919
AhnLab-V3 20160919
Alibaba 20160919
ALYac 20160919
Antiy-AVL 20160919
Arcabit 20160919
Avast 20160919
AVG 20160919
Avira (no cloud) 20160919
AVware 20160919
Baidu 20160914
BitDefender 20160919
Bkav 20160919
CAT-QuickHeal 20160919
ClamAV 20160916
CMC 20160916
Comodo 20160919
Cyren 20160919
DrWeb 20160919
Emsisoft 20160919
ESET-NOD32 20160919
F-Prot 20160919
F-Secure 20160919
Fortinet 20160919
GData 20160919
Ikarus 20160919
Jiangmin 20160919
K7AntiVirus 20160919
K7GW 20160919
Kaspersky 20160919
Kingsoft 20160919
Malwarebytes 20160919
McAfee 20160919
McAfee-GW-Edition 20160919
Microsoft 20160919
eScan 20160919
NANO-Antivirus 20160919
nProtect 20160919
Panda 20160919
Qihoo-360 20160919
Rising 20160919
Sophos AV 20160919
SUPERAntiSpyware 20160919
Symantec 20160919
Tencent 20160919
TheHacker 20160918
TrendMicro 20160919
TrendMicro-HouseCall 20160919
VBA32 20160919
VIPRE 20160919
ViRobot 20160919
Yandex 20160919
Zillya 20160919
Zoner 20160919
The file being studied is Android related! APK Android file more specifically. The application's main package name is net.hideman. The internal version number of the application is 74. The displayed version string of the application is 4.0. The minimum Android API level for the application to run (MinSDKVersion) is 9. The target Android API level for the application to run (TargetSDKVersion) is 21.
Required permissions
android.permission.VIBRATE (control vibrator)
android.permission.INTERNET (full Internet access)
android.permission.ACCESS_WIFI_STATE (view Wi-Fi status)
android.permission.WAKE_LOCK (prevent phone from sleeping)
android.permission.ACCESS_NETWORK_STATE (view network status)
android.permission.READ_PHONE_STATE (read phone state and identity)
android.permission.WRITE_EXTERNAL_STORAGE (modify/delete SD card contents)
com.android.vending.BILLING (Unknown permission from android reference)
Activities
net.hideman.auth.views.LoginActivity
net.hideman.connection.views.LogActivity
net.hideman.connection.views.SelectCountryActivity
net.hideman.connection.views.TunErrorActivity
net.hideman.connection.views.VpnServicePrepareActivity
net.hideman.help.views.ChatActivity
net.hideman.help.views.FaqActivity
net.hideman.help.views.FaqAnswerActivity
net.hideman.help.views.TicketActivity
net.hideman.payment.views.AdvertiserActivity
net.hideman.payment.views.GooglePaymentActivity
net.hideman.payment.views.HidemanOfferActivity
net.hideman.payment.views.LinkAccountActivity
net.hideman.payment.views.PaymentMethodActivity
net.hideman.payment.views.SitePaymentActivity
net.hideman.payment.views.SmsPaymentActivity
net.hideman.payment.views.SubscriptionSelectActivity
com.tapjoy.TJCOffersWebView
com.tapjoy.TapjoyFullScreenAdWebView
com.tapjoy.TapjoyVideoView
com.tapjoy.TJAdUnitView
com.tapjoy.mraid.view.ActionHandler
com.tapjoy.mraid.view.Browser
com.sponsorpay.publisher.ofw.SPOfferWallActivity
com.supersonicads.sdk.controller.ControllerActivity
com.supersonicads.sdk.controller.InterstitialActivity
com.supersonicads.sdk.controller.OpenUrlActivity
com.jirbo.adcolony.AdColonyOverlay
com.jirbo.adcolony.AdColonyFullscreen
com.jirbo.adcolony.AdColonyBrowser
net.hideman.settings.views.PortForwardingActivity
net.hideman.settings.views.SettingsActivity
net.hideman.views.AboutActivity
net.hideman.views.BlockableActivity
net.hideman.views.BlockActivity
net.hideman.views.HtmlViewActivity
net.hideman.views.MainActivity
net.hideman.views.NotificationActivity
net.hideman.views.StarterActivity
net.hideman.views.TestingActivity
net.hideman.views.WaitNetworkActivity
Services
net.hideman.widget.Widget2x1UpdateService
net.hideman.widget.Widget1x1UpdateService
net.hideman.connection.ConnectorService
net.hideman.connection.openvpn.OpenVpnService
Receivers
net.hideman.widget.Widget_2x1
net.hideman.widget.Widget_1x1
net.hideman.utils.NetworkState
Activity-related intent filters
net.hideman.views.StarterActivity
actions: android.net.vpn.SETTINGS, android.intent.action.MAIN
categories: android.intent.category.DEFAULT, android.intent.category.LAUNCHER
Receiver-related intent filters
net.hideman.widget.Widget_1x1
actions: android.appwidget.action.APPWIDGET_UPDATE, net.hideman.action.NETWORK_STATE, net.hideman.connection.STATE_CHANGED
net.hideman.widget.Widget_2x1
actions: android.appwidget.action.APPWIDGET_UPDATE, net.hideman.action.NETWORK_STATE, net.hideman.connection.STATE_CHANGED, net.hideman.connection.IP_CHANGED
net.hideman.utils.NetworkState
actions: android.net.conn.CONNECTIVITY_CHANGE
Application certificate information
Interesting strings
The file being studied is a compressed stream! Details about the compressed contents follow.
Interesting properties
The file under inspection contains at least one ELF file.
Contained files
Compression metadata
Contained files
1119
Uncompressed size
1223273
Highest datetime
2015-02-27 20:16:30
Lowest datetime
2015-02-27 20:15:14
Contained files by extension
png
935
xml
53
x86
2
Contained files by type
PNG
935
XML
53
ELF
12
File identification
MD5 5a3950528c1447dc117ed6f85de1a811
SHA1 330671895de55892ecf5c2d4f1529a08780349de
SHA256 728ff69727850657c39db594015496943d54a0491f7f9514630c9bbde25b86e6
ssdeep
196608:KYfvH29+SoAc4oJ0m+QQvTOl3KElqu1Cad9CbIhBSMWT8cGz:XWU4oJ0m+Dyjlqu1CadcIhBSDT83z

File size 9.1 MB ( 9576180 bytes )
File type Android
Magic literal
Zip archive data, at least v2.0 to extract

TrID Android Package (73.9%)
Java Archive (20.4%)
ZIP compressed archive (5.6%)
Tags
apk android software-collection contains-elf

VirusTotal metadata
First submission 2015-02-28 00:30:56 UTC ( 4 years ago )
Last submission 2018-04-04 11:22:26 UTC ( 11 months, 3 weeks ago )
File names hideman-vpn-4-0-multi-android.apk
hideman-vpn.apk
hideman.apk
5A3950528C1447DC117ED6F85DE1A811
9963cf045f9858dfe04f45996d5033838ba727a2f0efadc0823439e98e89f1ff6c5ca23e2b70fe0ac5b5faeb20ef8139558f3392edc132f56214699eb6b83f35
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Permissions checked
android.permission.INTERNET:net.hideman
android.permission.READ_LOGS:net.hideman
Started activities
#Intent;component=net.hideman/.views.MainActivity;end
Started services
#Intent;component=net.hideman/.widget.Widget2x1UpdateService;end
#Intent;component=net.hideman/.widget.Widget1x1UpdateService;end
Started receivers
net.hideman.action.NETWORK_STATE
Opened files
/data/data/net.hideman/files/endpoints
/data/data/net.hideman/files/1349849017000-approved.stacktrace
/data/data/net.hideman/files/1349849017000.stacktrace
/data/data/net.hideman/files
Accessed files
/data/data/net.hideman/files
/data/data/net.hideman/cache/e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855.p12
/data/data/net.hideman/files/ACRA-INSTALLATION
Interesting calls
Calls APIs that provide access to information about the telephony services on the device. Applications can use such methods to determine telephony services and states, as well as to access some types of subscriber information.
Contacted URLs
https://www.hideman.net/api/call/
757365726E616D653D67756573742670617373776F72643D5A33566C63335125334425304126636F6D6D616E643D6765745F617574685F64617461267569643D61623537643465306162613335373235376466343031663636643266626165346431366534643930323636376333656431316636653538303230393239353563266C616E673D757326747970653D6D6F62696C65266C616E673D5553
https://docs.google.com/document/d/13lW4im07HsaBTX4WdvDuKb61j9FN4Ux2rNI3tb3fFWU/export/format=txt
http://www.hideman.net/api/call/
757365726E616D653D67756573742670617373776F72643D5A33566C63335125334425304126636F6D6D616E643D6765745F617574685F64617461267569643D61623537643465306162613335373235376466343031663636643266626165346431366534643930323636376333656431316636653538303230393239353563266C616E673D757326747970653D6D6F62696C65266C616E673D5553
https://www.dropbox.com/s/o4eicap49h5jzcj/API endpoints.txt/dl=1
http://www.hideman.net/api/call/
757365726E616D653D6D6235323738303539253430686964656D616E2E6E65742670617373776F72643D4F5759784D5455344E5125334425334425304126636F6D6D616E643D636F6E6E656374696F6E73267569643D61623537643465306162613335373235376466343031663636643266626165346431366534643930323636376333656431316636653538303230393239353563266C616E673D757326706B637331323D3126636F6E6669673D3026636F6E66696756657273696F6E3D31
http://www.hideman.net/api/call/
757365726E616D653D6D6235323738303539253430686964656D616E2E6E65742670617373776F72643D4F5759784D5455344E5125334425334425304126636F6D6D616E643D6765745F6C696D697473267569643D61623537643465306162613335373235376466343031663636643266626165346431366534643930323636376333656431316636653538303230393239353563266C616E673D7573
http://www.hideman.net/api/call/
757365726E616D653D6D6235323738303539253430686964656D616E2E6E65742670617373776F72643D4F5759784D5455344E5125334425334425304126636F6D6D616E643D6970267569643D61623537643465306162613335373235376466343031663636643266626165346431366534643930323636376333656431316636653538303230393239353563266C616E673D7573
https://www.hideman.net/bugs/api/store/
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