× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: da6a36eb4ab74ebc7bd506066343333c912bc4f37b5b7745eba4905c3d1a052f
File name: Asphalt Nitro-1.7.0w.apk
Detection ratio: 0 / 60
Analysis date: 2017-03-28 11:21:15 UTC ( 2 years, 1 month ago ) View latest
Antivirus Result Update
Ad-Aware 20170328
AegisLab 20170328
AhnLab-V3 20170328
Alibaba 20170328
ALYac 20170328
Antiy-AVL 20170328
Arcabit 20170328
Avast 20170328
AVG 20170328
Avira (no cloud) 20170328
AVware 20170328
Baidu 20170328
BitDefender 20170328
Bkav 20170328
CAT-QuickHeal 20170327
ClamAV 20170328
CMC 20170328
Comodo 20170328
CrowdStrike Falcon (ML) 20170130
Cyren 20170328
DrWeb 20170327
Emsisoft 20170328
Endgame 20170317
ESET-NOD32 20170328
F-Prot 20170328
F-Secure 20170328
Fortinet 20170328
GData 20170328
Ikarus 20170328
Sophos ML 20170203
Jiangmin 20170328
K7AntiVirus 20170328
K7GW 20170328
Kaspersky 20170328
Kingsoft 20170328
Malwarebytes 20170328
McAfee 20170328
McAfee-GW-Edition 20170328
Microsoft 20170328
eScan 20170328
NANO-Antivirus 20170328
nProtect 20170328
Palo Alto Networks (Known Signatures) 20170328
Panda 20170327
Qihoo-360 20170328
Rising 20170328
SentinelOne (Static ML) 20170315
Sophos AV 20170328
SUPERAntiSpyware 20170328
Symantec 20170327
Symantec Mobile Insight 20170328
Tencent 20170328
TheHacker 20170327
TrendMicro 20170328
TrendMicro-HouseCall 20170328
Trustlook 20170328
VBA32 20170328
VIPRE 20170328
ViRobot 20170328
Webroot 20170328
WhiteArmor 20170327
Yandex 20170327
Zillya 20170328
ZoneAlarm by Check Point 20170328
Zoner 20170328
The file being studied is Android related! APK Android file more specifically. The application's main package name is com.gameloft.android.ANMP.GloftAGHM. The internal version number of the application is 17051. The displayed version string of the application is 1.7.0w. The minimum Android API level for the application to run (MinSDKVersion) is 14. The target Android API level for the application to run (TargetSDKVersion) is 24.
Required permissions
android.permission.VIBRATE (control vibrator)
android.permission.READ_EXTERNAL_STORAGE (read from external storage)
android.permission.RECEIVE_BOOT_COMPLETED (automatically start at boot)
glshare.permission.ACCESS_SHARED_DATA (Unknown permission from android reference)
com.google.android.c2dm.permission.RECEIVE (Unknown permission from android reference)
android.permission.ACCESS_WIFI_STATE (view Wi-Fi status)
android.permission.ACCESS_COARSE_LOCATION (coarse (network-based) location)
android.permission.WAKE_LOCK (prevent phone from sleeping)
android.permission.ACCESS_NETWORK_STATE (view network status)
android.permission.INTERNET (full Internet access)
com.gameloft.android.ANMP.GloftAGHM.permission.C2D_MESSAGE (C2DM permission.)
android.permission.WRITE_EXTERNAL_STORAGE (modify/delete SD card contents)
com.android.vending.BILLING (Unknown permission from android reference)
android.permission.GET_ACCOUNTS (discover known accounts)
Activities
com.gameloft.android.ANMP.GloftAGHM.MainActivity
com.facebook.LoginActivity
com.gameloft.android2d.iap.utils.MyWebView
com.gameloft.igp.IGPFreemiumActivity
com.gameloft.android.ANMP.GloftAGHM.PackageUtils.PermissionActivity
com.facebook.ads.InterstitialAdActivity
com.facebook.ads.RewardedVideoAdActivity
com.facebook.ads.AudienceNetworkActivity
com.google.android.gms.ads.AdActivity
com.vungle.publisher.VideoFullScreenAdActivity
com.vungle.publisher.MraidFullScreenAdActivity
com.mopub.mobileads.MoPubActivity
com.mopub.mobileads.MraidActivity
com.mopub.common.MoPubBrowser
com.mopub.mobileads.MraidVideoPlayerActivity
com.gameloft.glads.GLAdFullScreen
com.gameloft.glads.MRAIDFullScreen
com.gameloft.glads.vast.activity.VASTActivity
com.gameloft.glads.VASTFullScreen
com.gameloft.android.ANMP.GloftAGHM.ParseDeepLinkActivity
com.google.android.gms.ads.purchase.InAppPurchaseActivity
com.google.android.gms.appinvite.PreviewActivity
com.google.android.gms.auth.api.signin.internal.SignInHubActivity
com.google.android.gms.common.api.GoogleApiActivity
com.unity3d.ads.adunit.AdUnitActivity
com.unity3d.ads.adunit.AdUnitSoftwareActivity
Services
com.google.android.gms.analytics.CampaignTrackingService
com.gameloft.android.ANMP.GloftAGHM.GCMIntentService
com.google.android.gms.auth.api.signin.RevocationBoundService
Receivers
com.google.android.gcm.GCMBroadcastReceiver
com.gameloft.android.ANMP.GloftAGHM.PushNotification.LocalPushReceiver
com.gameloft.android.ANMP.GloftAGHM.PushNotification.PushIntentReceiver
com.gameloft.android.ANMP.GloftAGHM.PushNotification.PushDeleteReceiver
com.gameloft.android.ANMP.GloftAGHM.GLUtils.NetworkStateReceiver
com.gameloft.android.ANMP.GloftAGHM.BootCompletedReceiver
com.gameloft.android.ANMP.GloftAGHM.installer.IReferrerReceiver
com.gameloft.android.ANMP.GloftAGHM.ApplicationSetUp
Providers
com.gameloft.android.ANMP.GloftAGHM.KeyProvider
Activity-related intent filters
com.google.android.gms.appinvite.PreviewActivity
actions: com.google.android.gms.appinvite.ACTION_PREVIEW
categories: android.intent.category.DEFAULT
com.gameloft.igp.IGPFreemiumActivity
actions: android.intent.action.MAIN
com.gameloft.android.ANMP.GloftAGHM.MainActivity
actions: android.intent.action.MAIN
categories: android.intent.category.LAUNCHER
com.gameloft.android.ANMP.GloftAGHM.ParseDeepLinkActivity
actions: com.google.android.apps.plus.VIEW_DEEP_LINK
categories: android.intent.category.DEFAULT, android.intent.category.BROWSABLE
Receiver-related intent filters
com.google.android.gcm.GCMBroadcastReceiver
actions: com.google.android.c2dm.intent.RECEIVE, com.google.android.c2dm.intent.REGISTRATION
categories: com.gameloft.android.ANMP.GloftAGHM
com.gameloft.android.ANMP.GloftAGHM.ApplicationSetUp
actions: com.gameloft.android.ApplicationSetUp
com.gameloft.android.ANMP.GloftAGHM.PushNotification.LocalPushReceiver
actions: android.intent.action.BOOT_COMPLETED
com.gameloft.android.ANMP.GloftAGHM.PushNotification.PushDeleteReceiver
actions: com.gameloft.android.ANMP.GloftAGHM.PNDeleteBroadcast
com.gameloft.android.ANMP.GloftAGHM.GLUtils.NetworkStateReceiver
actions: android.net.conn.CONNECTIVITY_CHANGE
com.gameloft.android.ANMP.GloftAGHM.PushNotification.PushIntentReceiver
actions: com.gameloft.android.ANMP.GloftAGHM.PNBroadcast
com.gameloft.android.ANMP.GloftAGHM.BootCompletedReceiver
actions: android.intent.action.BOOT_COMPLETED
categories: android.intent.category.DEFAULT
com.gameloft.android.ANMP.GloftAGHM.installer.IReferrerReceiver
actions: com.android.vending.INSTALL_REFERRER
Application certificate information
Interesting strings
The file being studied is a compressed stream! Details about the compressed contents follow.
Interesting properties
The file under inspection contains at least one ELF file.
Contained files
Compression metadata
Contained files
402
Uncompressed size
50289792
Highest datetime
2017-03-20 15:18:26
Lowest datetime
1980-01-01 07:00:00
Contained files by extension
png
307
xml
67
txt
7
so
4
bin
1
MF
1
zip
1
RSA
1
dex
1
ogg
1
SF
1
Contained files by type
PNG
307
XML
66
unknown
22
ELF
4
DEX
1
ZIP
1
OGG
1
File identification
MD5 7a3c8e549a625d25ab81865f36beb9a8
SHA1 20bd314897c7c5e489aa6199c6115b8305adaf68
SHA256 da6a36eb4ab74ebc7bd506066343333c912bc4f37b5b7745eba4905c3d1a052f
ssdeep
786432:50ZG0LDyzAw/bwp+47bA6rRPfH82joD7f/s8xSCnTg1NzNXD6P8:50I0aNbG+oU6rRn82joffgT

File size 37.4 MB ( 39246562 bytes )
File type Android
Magic literal
Zip archive data, at least v2.0 to extract

TrID Java Archive (74.3%)
ZIP compressed archive (20.5%)
PrintFox/Pagefox bitmap (var. P) (5.1%)
Tags
apk android contains-elf via-tor

VirusTotal metadata
First submission 2017-03-22 15:30:34 UTC ( 2 years, 2 months ago )
Last submission 2018-05-07 18:23:28 UTC ( 1 year ago )
File names asphalt-nitro.apk
asphalt-nitro-1.7.0w.apk
Asphalt Nitro-1.7.0w.apk
asphalt-nitro-1-7-0w.apk
base.apk
com.gameloft.android.ANMP.GloftAGHM_v1.7.0w-17051_Android-4.0.apk
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Permissions checked
glshare.permission.ACCESS_SHARED_DATA:com.gameloft.android.ANMP.GloftAGHM
Started receivers
com.gameloft.android.ANMP.GloftAGHM_pushbroadcast
android.intent.action.BATTERY_CHANGED
android.net.conn.CONNECTIVITY_CHANGE
android.intent.action.BATTERY_LOW
android.intent.action.BATTERY_OKAY
android.intent.action.ACTION_POWER_CONNECTED
android.intent.action.ACTION_POWER_DISCONNECTED
Opened files
/data/data/com.gameloft.android.ANMP.GloftAGHM/files/AppEventsLogger.persistedevents
/data/data/com.gameloft.android.ANMP.GloftAGHM/files/AppEventsLogger.persistedsessioninfo
/sdcard/Android/data/com.gameloft.android.ANMP.GloftAGHM/files
/mnt/sdcard
/mnt/sdcard/Android/data/com.gameloft.android.ANMP.GloftAGHM/files
/data/data/com.gameloft.android.ANMP.GloftAGHM/files
/data/data/com.gameloft.android.ANMP.GloftAGHM/cache
/mnt/sdcard/Android/data
Accessed files
/data/data/com.gameloft.android.ANMP.GloftAGHM/files
/sdcard/Android/data/com.gameloft.android.ANMP.GloftAGHM/files
/data/data/com.gameloft.android.ANMP.GloftAGHM/databases/PN.db
/proc/cpuinfo
/mnt/sdcard/Android/data
Deleted files
/data/data/com.gameloft.android.ANMP.GloftAGHM/filesAppEventsLogger.persistedsessioninfo
Interesting calls
Calls APIs that provide access to information about the telephony services on the device. Applications can use such methods to determine telephony services and states, as well as to access some types of subscriber information.
Contacted URLs
https://201205igp.gameloft.com/redir/hdloading.php?game=AGHM&country=US&lg=en&ver=2.1&device=samsung_NexusS&f=4.0.4&udid=bfAeESCtHVjXeLd2O3p3nlD1ENkvNoVcrGXq7CvZ1Oo=&hdidfv=cc33efe0-d79e-4ecb-8cc2-9f27b0e8dad4&androidid=bfc1484e2df11cc2&g_ver=1.7.0w&line_number=mpRd14q8qARUoHkwKMkdaVD1ENkvNoVcrGXq7CvZ1Oo=&google_adid=&google_optout=1&appType=3&check=2&enc=1
https://graph.facebook.com/v2.2/377180559157719/activities?format=json&sdk=android
https://graph.facebook.com/v2.2/377180559157719?format=json&sdk=android&fields=supports_implicit_sdk_logging%2Cgdpv4_nux_content%2Cgdpv4_nux_enabled%2Candroid_dialog_configs
Accessed URIs
content://com.gameloft.android.ANMP.GloftAGHM.KeyProvider/key
content://com.gameloft.android.ANMP.GloftAGHM.KeyProvider/key/
content://com.facebook.katana.provider.AttributionIdProvider