× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: bc24b325df7501cb31a8a2832c861d4a07ddf4e497a149abc77d70848719ac1e
File name: base.apk
Detection ratio: 0 / 61
Analysis date: 2017-07-12 14:16:21 UTC ( 1 year, 7 months ago ) View latest
Antivirus Result Update
Ad-Aware 20170712
AegisLab 20170712
AhnLab-V3 20170712
Alibaba 20170712
ALYac 20170712
Antiy-AVL 20170712
Arcabit 20170712
Avast 20170712
AVG 20170712
Avira (no cloud) 20170712
AVware 20170712
Baidu 20170712
BitDefender 20170712
Bkav 20170712
CAT-QuickHeal 20170712
ClamAV 20170712
CMC 20170712
Comodo 20170712
CrowdStrike Falcon (ML) 20170420
Cylance 20170712
Cyren 20170712
DrWeb 20170712
Emsisoft 20170712
Endgame 20170706
ESET-NOD32 20170712
F-Prot 20170712
F-Secure 20170712
Fortinet 20170629
GData 20170712
Ikarus 20170712
Sophos ML 20170607
Jiangmin 20170712
K7AntiVirus 20170712
K7GW 20170712
Kaspersky 20170712
Kingsoft 20170712
Malwarebytes 20170712
MAX 20170712
McAfee 20170712
McAfee-GW-Edition 20170712
Microsoft 20170712
eScan 20170712
NANO-Antivirus 20170712
nProtect 20170712
Palo Alto Networks (Known Signatures) 20170712
Panda 20170712
Qihoo-360 20170712
Rising 20170712
SentinelOne (Static ML) 20170516
Sophos AV 20170712
SUPERAntiSpyware 20170712
Symantec 20170712
Symantec Mobile Insight 20170712
Tencent 20170712
TheHacker 20170712
TrendMicro 20170712
TrendMicro-HouseCall 20170712
Trustlook 20170712
VBA32 20170712
VIPRE 20170712
ViRobot 20170712
Webroot 20170712
WhiteArmor 20170706
Yandex 20170712
Zillya 20170712
ZoneAlarm by Check Point 20170712
Zoner 20170712
The file being studied is Android related! APK Android file more specifically. The application's main package name is net.mobigame.zombietsunami. The internal version number of the application is 74. The displayed version string of the application is 3.6.7. The minimum Android API level for the application to run (MinSDKVersion) is 15. The target Android API level for the application to run (TargetSDKVersion) is 19.
Required permissions
android.permission.VIBRATE (control vibrator)
android.permission.READ_EXTERNAL_STORAGE (read from external storage)
android.permission.RECEIVE_BOOT_COMPLETED (automatically start at boot)
android.permission.READ_PHONE_STATE (read phone state and identity)
com.google.android.c2dm.permission.RECEIVE (Unknown permission from android reference)
com.android.alarm.permission.SET_ALARM (set alarm in alarm clock)
android.permission.ACCESS_COARSE_LOCATION (coarse (network-based) location)
android.permission.WAKE_LOCK (prevent phone from sleeping)
android.permission.GET_TASKS (retrieve running applications)
net.mobigame.zombietsunami.permission.C2D_MESSAGE (C2DM permission.)
android.permission.ACCESS_WIFI_STATE (view Wi-Fi status)
android.permission.INTERNET (full Internet access)
android.permission.ACCESS_NETWORK_STATE (view network status)
android.permission.WRITE_INTERNAL_STORAGE (Unknown permission from android reference)
android.permission.WRITE_EXTERNAL_STORAGE (modify/delete SD card contents)
com.android.vending.BILLING (Unknown permission from android reference)
android.permission.GET_ACCOUNTS (discover known accounts)
Activities
net.mobigame.zombietsunami.ZombieActivity
com.facebook.ads.InterstitialAdActivity
com.tapjoy.TJCOffersWebView
com.tapjoy.TapjoyFeaturedAppWebView
com.tapjoy.TapjoyVideoView
com.mopub.mobileads.MoPubActivity
com.mopub.mobileads.MraidActivity
com.mopub.common.MoPubBrowser
com.mopub.mobileads.MraidVideoPlayerActivity
com.adcolony.sdk.AdColonyInterstitialActivity
com.adcolony.sdk.AdColonyAdViewActivity
com.chartboost.sdk.CBImpressionActivity
com.vungle.publisher.FullScreenAdActivity
com.applovin.adview.AppLovinInterstitialActivity
com.applovin.adview.AppLovinConfirmationActivity
com.facebook.FacebookActivity
com.google.android.gms.ads.AdActivity
com.google.android.gms.ads.purchase.InAppPurchaseActivity
com.google.android.gms.common.api.GoogleApiActivity
com.unity3d.ads.adunit.AdUnitActivity
com.unity3d.ads.adunit.AdUnitSoftwareActivity
Receivers
com.adjust.sdk.AdjustReferrerReceiver
net.mobigame.zombietsunami.ZombieLocalNotifAlarmReceiver
net.mobigame.zombietsunami.ZombieLocalNotifBootReceiver
com.amazon.inapp.purchasing.ResponseReceiver
Providers
com.facebook.FacebookContentProvider
Activity-related intent filters
net.mobigame.zombietsunami.ZombieActivity
actions: android.intent.action.MAIN
categories: android.intent.category.LAUNCHER
Receiver-related intent filters
com.adjust.sdk.AdjustReferrerReceiver
actions: com.android.vending.INSTALL_REFERRER
com.amazon.inapp.purchasing.ResponseReceiver
actions: com.amazon.inapp.purchasing.NOTIFY
net.mobigame.zombietsunami.ZombieLocalNotifBootReceiver
actions: android.intent.action.BOOT_COMPLETED
Application certificate information
Interesting strings
The file being studied is a compressed stream! Details about the compressed contents follow.
Interesting properties
The file under inspection contains at least one ELF file.
Contained files
Compression metadata
Contained files
296
Uncompressed size
89468903
Highest datetime
2017-07-12 12:09:50
Lowest datetime
2017-07-11 15:34:02
Contained files by extension
png
128
jet
61
xml
29
spr
28
so
14
dra
10
ttf
5
fsh
3
mp3
3
bin
1
dex
1
MF
1
zip
1
RSA
1
otf
1
js
1
fev
1
vsh
1
txt
1
SF
1
Contained files by type
PNG
128
unknown
122
XML
28
ELF
14
MP3
3
DEX
1
Compressed bundles
File identification
MD5 bae725a4fdaca093200cf7ae493e0455
SHA1 c74159d15d7e942accca8c3815bb0d2eb10f31f6
SHA256 bc24b325df7501cb31a8a2832c861d4a07ddf4e497a149abc77d70848719ac1e
ssdeep
1572864:7ZZfcyDHizEVdkPoiNtZ4M3DagBkuhagQWC2yHW0htCAohoO:PxDHyEVrUtZugBBQ2o7XCnx

File size 62.9 MB ( 65997625 bytes )
File type Android
Magic literal
Zip archive data, at least v2.0 to extract

TrID Java Archive (74.3%)
ZIP compressed archive (20.5%)
PrintFox/Pagefox bitmap (var. P) (5.1%)
Tags
apk android contains-elf

VirusTotal metadata
First submission 2017-07-12 14:16:21 UTC ( 1 year, 7 months ago )
Last submission 2018-11-21 23:39:11 UTC ( 3 months ago )
File names samsQw8bZsJ6AFi2knzk6uJ8v20FgdzZ2h9wKLfMV5rhXRD
zombie-tsunami-3.6.7.apk
866268_4444d4_net.mobigame.zombietsunami-74.apk
localfile~
base.apk
zombie-tsunami.apk
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Permissions checked
android.permission.INTERNET:net.mobigame.zombietsunami
android.permission.ACCESS_NETWORK_STATE:net.mobigame.zombietsunami
android.permission.READ_PHONE_STATE:net.mobigame.zombietsunami
android.permission.ACCESS_WIFI_STATE:net.mobigame.zombietsunami
android.permission.ACCESS_FINE_LOCATION:net.mobigame.zombietsunami
android.permission.GET_TASKS:net.mobigame.zombietsunami
Started receivers
android.intent.action.BATTERY_CHANGED
Opened files
/data/data/net.mobigame.zombietsunami/files/AdjustAttribution
/data/data/net.mobigame.zombietsunami/files/AdjustIoActivityState
/data/data/net.mobigame.zombietsunami/files/AdjustIoPackageQueue
/data/app/net.mobigame.zombietsunami-1.apk
/data/data/net.mobigame.zombietsunami
/data/data/net.mobigame.zombietsunami/files
/mnt/sdcard/Android/data/net.mobigame.zombietsunami/files
/mnt/sdcard/Android/data/net.mobigame.zombietsunami/files/al
/mnt/sdcard/Android/data/net.mobigame.zombietsunami/files/al/.nomedia
/data
/mnt/sdcard
Accessed files
/data/data/net.mobigame.zombietsunami/files
/mnt/sdcard/Android/data/net.mobigame.zombietsunami/files/al/.nomedia
/data/data/net.mobigame.zombietsunami/files/didCrash.txt
/data/data/net.mobigame.zombietsunami/files/com.crittercism/dumps
Interesting calls
Calls APIs that provide access to information about the telephony services on the device. Applications can use such methods to determine telephony services and states, as well as to access some types of subscriber information.
Contacted URLs
https://api.crittercism.com/android_v2/handle_app_loads
https://rt.applovin.com/pix?os=4.0.4&platform=Android&adr=0&model=Nexus S&tz_offset=2.0&ts=1349803747166&api_did=&package_name=net.mobigame.zombietsunami&app_version=3.6.7&sdk_version=7.0.0&dnt=false&country_code=US&sdk_key=2Zi50J20zKzq6oNDMdOxN9sTaKgwrZot8Uz9p09nK6bQuzeFa2AzB1QmM6fBgS3py0ym15WLC6n54PKfRVccX2&revision=crespo&ia=1349803692000&event=landing&volume=0&carrier=Android&brand=samsung&orientation_lock=landscape&idfa=&postback_ts=1349803751460
https://a.applovin.com/3.0/ad?v1=true&dt=0&model=Nexus+S&adr=0&dx=800&v4=true&dy=480&v3=true&accept=custom_size,launch_app,video&v2=true&api_did=&locale=en_US&app_version=3.6.7&network=3g&revision=crespo&preloading=true&ia=1349803692000&carrier=Android&wvvc=0&os=4.0.4&platform=android&tz_offset=2.0&adnsd=240&sdk_version=7.0.0&format=json&m=DIRECT&dnt=false&country_code=US&sdk_key=2Zi50J20zKzq6oNDMdOxN9sTaKgwrZot8Uz9p09nK6bQuzeFa2AzB1QmM6fBgS3py0ym15WLC6n54PKfRVccX2&ct=0&size=INTER&si=0&pd=0&li=0&adns=1.5&ld=0&vz=6655c697b7d459eb&volume=73&brand=samsung&require=REGULAR&orientation_lock=landscape
Accessed URIs
content://com.facebook.katana.provider.AttributionIdProvider
https://rt.applovin.com/pix
https://rt.applvn.com/pix
market://details