× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 8ba235f9719467a5e4a51d70bb38985ebf1807dc69940f2da1fd65fbebc48fb8
File name: rider.apk
Detection ratio: 0 / 62
Analysis date: 2017-07-19 15:20:12 UTC ( 1 year, 7 months ago ) View latest
Antivirus Result Update
Ad-Aware 20170719
AegisLab 20170719
AhnLab-V3 20170719
Alibaba 20170719
ALYac 20170719
Antiy-AVL 20170719
Arcabit 20170719
Avast 20170719
AVG 20170719
Avira (no cloud) 20170719
AVware 20170719
Baidu 20170719
BitDefender 20170719
Bkav 20170719
CAT-QuickHeal 20170719
ClamAV 20170719
CMC 20170719
Comodo 20170719
CrowdStrike Falcon (ML) 20170710
Cylance 20170719
Cyren 20170719
DrWeb 20170719
Emsisoft 20170719
Endgame 20170713
ESET-NOD32 20170719
F-Prot 20170719
F-Secure 20170719
Fortinet 20170719
GData 20170719
Ikarus 20170719
Sophos ML 20170607
Jiangmin 20170719
K7AntiVirus 20170719
K7GW 20170719
Kaspersky 20170719
Kingsoft 20170719
Malwarebytes 20170719
MAX 20170719
McAfee 20170719
McAfee-GW-Edition 20170719
Microsoft 20170719
eScan 20170719
NANO-Antivirus 20170719
nProtect 20170719
Palo Alto Networks (Known Signatures) 20170719
Panda 20170719
Qihoo-360 20170719
Rising 20170719
SentinelOne (Static ML) 20170718
Sophos AV 20170719
SUPERAntiSpyware 20170719
Symantec 20170719
Symantec Mobile Insight 20170719
Tencent 20170719
TheHacker 20170719
TotalDefense 20170719
TrendMicro 20170719
TrendMicro-HouseCall 20170719
Trustlook 20170719
VBA32 20170719
VIPRE 20170719
ViRobot 20170719
Webroot 20170719
WhiteArmor 20170713
Yandex 20170719
Zillya 20170719
ZoneAlarm by Check Point 20170719
Zoner 20170719
The file being studied is Android related! APK Android file more specifically. The application's main package name is com.ketchapp.rider. The internal version number of the application is 120. The displayed version string of the application is 1.2. The minimum Android API level for the application to run (MinSDKVersion) is 15. The target Android API level for the application to run (TargetSDKVersion) is 25.
Required permissions
android.permission.READ_EXTERNAL_STORAGE (read from external storage)
android.permission.ACCESS_NETWORK_STATE (view network status)
android.permission.INTERNET (full Internet access)
com.android.vending.CHECK_LICENSE (Unknown permission from android reference)
android.permission.WRITE_EXTERNAL_STORAGE (modify/delete SD card contents)
com.android.vending.BILLING (Unknown permission from android reference)
Activities
com.ansca.corona.CoronaActivity
com.ansca.corona.CameraActivity
com.ansca.corona.VideoActivity
com.ansca.corona.purchasing.StoreActivity
com.amazon.device.ads.AdActivity
com.ketchapp.promotion.PromotionActivity
com.google.android.gms.ads.AdActivity
com.applovin.adview.AppLovinInterstitialActivity
com.applovin.adview.AppLovinConfirmationActivity
com.facebook.ads.InterstitialAdActivity
com.unity3d.ads.adunit.AdUnitActivity
com.unity3d.ads.adunit.AdUnitSoftwareActivity
com.vungle.publisher.VideoFullScreenAdActivity
com.vungle.publisher.MraidFullScreenAdActivity
com.heyzap.sdk.ads.HeyzapInterstitialActivity
com.heyzap.sdk.ads.HeyzapVideoActivity
com.heyzap.sdk.ads.HeyzapProxyActivity
com.heyzap.sdk.ads.VASTActivity
com.heyzap.sdk.ads.MediationTestActivity
com.facebook.ads.AudienceNetworkActivity
com.google.android.gms.ads.purchase.InAppPurchaseActivity
com.google.android.gms.common.api.GoogleApiActivity
Services
com.ansca.corona.CoronaService
Receivers
com.ansca.corona.SystemStartupBroadcastReceiver
com.ansca.corona.notifications.AlarmManagerBroadcastReceiver
com.ansca.corona.notifications.StatusBarBroadcastReceiver
com.ansca.corona.notifications.GoogleCloudMessagingBroadcastReceiver
com.ansca.corona.purchasing.GoogleStoreBroadcastReceiver
com.heyzap.sdk.ads.PackageAddedReceiver
Providers
com.ansca.corona.storage.FileContentProvider
Activity-related intent filters
com.ansca.corona.CoronaActivity
actions: android.intent.action.MAIN
categories: android.intent.category.LAUNCHER
Receiver-related intent filters
com.heyzap.sdk.ads.PackageAddedReceiver
actions: android.intent.action.PACKAGE_ADDED
com.ansca.corona.notifications.GoogleCloudMessagingBroadcastReceiver
actions: com.google.android.c2dm.intent.RECEIVE, com.google.android.c2dm.intent.REGISTRATION
categories: com.ketchapp.rider
com.ansca.corona.SystemStartupBroadcastReceiver
actions: android.intent.action.BOOT_COMPLETED
com.ansca.corona.purchasing.GoogleStoreBroadcastReceiver
actions: com.android.vending.billing.IN_APP_NOTIFY, com.android.vending.billing.RESPONSE_CODE, com.android.vending.billing.PURCHASE_STATE_CHANGED
Application certificate information
Interesting strings
The file being studied is a compressed stream! Details about the compressed contents follow.
Interesting properties
The file under inspection contains at least one ELF file.
Contained files
Compression metadata
Contained files
1227
Uncompressed size
91054123
Highest datetime
1980-00-00 00:00:00
Lowest datetime
1980-00-00 00:00:00
Contained files by extension
png
573
mp3
55
ogg
55
xml
54
jpg
29
so
17
ttf
4
dex
2
md
1
MF
1
car
1
RSA
1
SF
1
Contained files by type
PNG
573
unknown
214
MP3
55
OGG
55
XML
53
JPG
29
ELF
17
DEX
2
JSON
2
File identification
MD5 762bd5aa15d3b8e7ad12ed92f6380e8b
SHA1 39634c77da875626b03a7eb906bb971f374a4615
SHA256 8ba235f9719467a5e4a51d70bb38985ebf1807dc69940f2da1fd65fbebc48fb8
ssdeep
1572864:f1BWln8vmJfRdAI/dy2fj2sH9FqQpli951hXU1e031pJ8KW6NX:f1FmJp5/hLHH3PbwhXUzFp66NX

File size 72.0 MB ( 75543295 bytes )
File type Android
Magic literal
Zip archive data, at least v2.0 to extract

TrID Android Package (72.9%)
Java Archive (20.1%)
ZIP compressed archive (5.5%)
PrintFox/Pagefox bitmap (var. P) (1.3%)
Tags
apk android contains-elf

VirusTotal metadata
First submission 2017-07-08 18:52:15 UTC ( 1 year, 7 months ago )
Last submission 2018-09-29 21:15:06 UTC ( 4 months, 3 weeks ago )
File names 855576_110ac0_rider_v1.2.apk
base.apk
rider.apk
861521_aeb2b0_rider.apk
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!