× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: f3e2eaf457debc0960e27e4454857f77f9d7775828645a9a484c89e7f14510b8
File name: tmp_29433-Hideman 5.11281405122.apk
Detection ratio: 0 / 59
Analysis date: 2017-06-08 22:36:34 UTC ( 1 year, 9 months ago ) View latest
Antivirus Result Update
Ad-Aware 20170608
AegisLab 20170608
AhnLab-V3 20170608
Alibaba 20170608
ALYac 20170608
Antiy-AVL 20170608
Arcabit 20170608
Avast 20170608
AVG 20170608
Avira (no cloud) 20170608
AVware 20170608
Baidu 20170608
BitDefender 20170608
Bkav 20170608
CAT-QuickHeal 20170608
ClamAV 20170608
CMC 20170608
Comodo 20170608
CrowdStrike Falcon (ML) 20170420
Cyren 20170608
DrWeb 20170608
Emsisoft 20170608
Endgame 20170515
ESET-NOD32 20170608
F-Prot 20170608
F-Secure 20170608
Fortinet 20170608
GData 20170608
Sophos ML 20170607
Jiangmin 20170608
K7AntiVirus 20170608
K7GW 20170608
Kaspersky 20170608
Kingsoft 20170608
Malwarebytes 20170608
McAfee 20170608
McAfee-GW-Edition 20170608
Microsoft 20170608
eScan 20170608
NANO-Antivirus 20170608
nProtect 20170608
Palo Alto Networks (Known Signatures) 20170608
Panda 20170608
Qihoo-360 20170608
Rising 20170608
SentinelOne (Static ML) 20170516
Sophos AV 20170608
SUPERAntiSpyware 20170608
Symantec 20170608
Symantec Mobile Insight 20170608
Tencent 20170608
TheHacker 20170607
TrendMicro 20170608
TrendMicro-HouseCall 20170608
Trustlook 20170608
VBA32 20170608
VIPRE 20170608
ViRobot 20170608
Webroot 20170608
WhiteArmor 20170608
Yandex 20170608
Zillya 20170608
ZoneAlarm by Check Point 20170608
Zoner 20170608
The file being studied is Android related! APK Android file more specifically. The application's main package name is net.hideman. The internal version number of the application is 87. The displayed version string of the application is 5.1. The minimum Android API level for the application to run (MinSDKVersion) is 10. The target Android API level for the application to run (TargetSDKVersion) is 25.
Required permissions
android.permission.READ_PHONE_STATE (read phone state and identity)
com.google.android.c2dm.permission.RECEIVE (Unknown permission from android reference)
android.permission.ACCESS_WIFI_STATE (view Wi-Fi status)
android.permission.WAKE_LOCK (prevent phone from sleeping)
android.permission.ACCESS_NETWORK_STATE (view network status)
android.permission.INTERNET (full Internet access)
net.hideman.permission.C2D_MESSAGE (C2DM permission.)
com.android.vending.BILLING (Unknown permission from android reference)
Activities
net.hideman.auth.ui.LoginActivity
net.hideman.auth.ui.AliasActivity
net.hideman.auth.ui.RegisterActivity
net.hideman.auth.ui.BannedActivity
net.hideman.auth.ui.RegisterUnavailableActivity
net.hideman.connection.ui.LogActivity
net.hideman.connection.ui.TunErrorActivity
net.hideman.connection.ui.VpnServicePrepareActivity
net.hideman.help.ui.ChatActivity
net.hideman.help.ui.FaqAnswerActivity
net.hideman.help.ui.TicketActivity
net.hideman.payment.ui.GooglePaymentActivity
net.hideman.payment.ui.SitePaymentActivity
net.hideman.payment.ui.SubscriptionSelectActivity
net.hideman.payment.ui.AdMobActivity
com.google.android.gms.ads.AdActivity
net.hideman.payment.ui.FyberActivity
com.fyber.ads.ofw.OfferWallActivity
net.hideman.payment.ui.SupersonicActivity
com.supersonicads.sdk.controller.ControllerActivity
com.supersonicads.sdk.controller.InterstitialActivity
com.supersonicads.sdk.controller.OpenUrlActivity
net.hideman.payment.ui.TapjoyActivity
com.tapjoy.TJAdUnitActivity
com.tapjoy.mraid.view.ActionHandler
com.tapjoy.mraid.view.Browser
com.tapjoy.TJContentActivity
net.hideman.settings.ui.AboutActivity
net.hideman.settings.ui.EndpointsActivity
net.hideman.settings.ui.ForwardingActivity
net.hideman.settings.ui.SettingsActivity
net.hideman.testing.ui.TestingActivity
net.hideman.testing.ui.TestingFragmentActivity
net.hideman.ui.BaseToolbarActivity
net.hideman.main.ui.MainActivity
net.hideman.ui.NotificationActivity
net.hideman.ui.PermissionActivity
net.hideman.ui.StarterActivity
net.hideman.ui.WaitNetworkActivity
net.hideman.ui.WebViewActivity
com.google.android.gms.ads.purchase.InAppPurchaseActivity
com.google.android.gms.common.api.GoogleApiActivity
com.fyber.ads.videos.RewardedVideoActivity
com.fyber.ads.interstitials.InterstitialActivity
Services
net.hideman.payment.inapp.UnfinishedPurchaseCheckerService
net.hideman.widget.Widget2x1UpdateService
net.hideman.widget.Widget1x1UpdateService
net.hideman.connection.ConnectorService
net.hideman.connection.openvpn.OpenVpnService
com.google.android.gms.measurement.AppMeasurementService
com.google.firebase.iid.FirebaseInstanceIdService
com.fyber.cache.CacheVideoDownloadService
Receivers
net.hideman.widget.Widget2x1
net.hideman.widget.Widget1x1
net.hideman.utils.NetworkState
com.google.android.gms.measurement.AppMeasurementReceiver
com.google.android.gms.measurement.AppMeasurementInstallReferrerReceiver
com.google.firebase.iid.FirebaseInstanceIdReceiver
com.google.firebase.iid.FirebaseInstanceIdInternalReceiver
Providers
com.google.firebase.provider.FirebaseInitProvider
Service-related intent filters
com.google.firebase.iid.FirebaseInstanceIdService
actions: com.google.firebase.INSTANCE_ID_EVENT
Activity-related intent filters
net.hideman.settings.ui.EndpointsActivity
actions: android.intent.action.VIEW
categories: android.intent.category.DEFAULT, android.intent.category.BROWSABLE
net.hideman.ui.StarterActivity
actions: android.net.vpn.SETTINGS, android.intent.action.MAIN
categories: android.intent.category.DEFAULT, android.intent.category.LAUNCHER
Receiver-related intent filters
com.google.android.gms.measurement.AppMeasurementInstallReferrerReceiver
actions: com.android.vending.INSTALL_REFERRER
com.google.firebase.iid.FirebaseInstanceIdReceiver
actions: com.google.android.c2dm.intent.RECEIVE, com.google.android.c2dm.intent.REGISTRATION
categories: net.hideman
net.hideman.widget.Widget1x1
actions: android.appwidget.action.APPWIDGET_UPDATE
net.hideman.widget.Widget2x1
actions: android.appwidget.action.APPWIDGET_UPDATE
net.hideman.utils.NetworkState
actions: android.net.conn.CONNECTIVITY_CHANGE
Application certificate information
Interesting strings
The file being studied is a compressed stream! Details about the compressed contents follow.
Interesting properties
The file under inspection contains at least one ELF file.
Contained files
Compression metadata
Contained files
1015
Uncompressed size
20341990
Highest datetime
1980-00-00 00:00:00
Lowest datetime
1980-00-00 00:00:00
Contained files by extension
png
541
xml
421
so
18
x86
2
dex
1
MF
1
RSA
1
js
1
ttf
1
SF
1
Contained files by type
PNG
541
XML
420
ELF
30
unknown
8
DEX
1
File identification
MD5 a649abc6fe9c7769fccefc563ccee86b
SHA1 bfe8bbfcf6ccbc4d0c18b60f344aaf8e9a35e348
SHA256 f3e2eaf457debc0960e27e4454857f77f9d7775828645a9a484c89e7f14510b8
ssdeep
196608:TUodQ7Bx2xYKpVy3zB68c4qsynmgtVJ8dF5Z7Zfa3qt+GDfaly+q1wu:3GB+GzBs4qXmgtVudFzdl3falmwu

File size 9.4 MB ( 9871098 bytes )
File type Android
Magic literal
Zip archive data, at least v2.0 to extract

TrID Android Package (42.0%)
SPSS Extension (24.0%)
Java Archive (11.6%)
VYM Mind Map (10.0%)
Sweet Home 3D design (generic) (8.4%)
Tags
apk android dyn-calls contains-elf

VirusTotal metadata
First submission 2017-01-11 14:31:23 UTC ( 2 years, 2 months ago )
Last submission 2019-02-13 07:25:54 UTC ( 1 month ago )
File names net.hideman.apk
Hideman 5.1.apk
tmp_29433-Hideman 5.11281405122.apk
net.hideman_5.1-87_minAPI10_arm64-v8a_armeabi_armeabi-v7a_mips_x86_x86_64__nodpi__APKdot.com.apk
hideman-vpn-5-1-apkplz.com.apk
base.apk
hideman-vpn-5-1.apk
746193_70dcd7_net.hideman-87.apk
Hideman-VPN-v5.1.apk
net.hideman.apk
bfe8bbfcf6ccbc4d0c18b60f344aaf8e9a35e348
net.hideman-87.apk
hideman-vpn-5-1.apk
Hideman-VPN.5.1.apk
Hideman_VPN_v5.1_apkpure.com.apk
Hideman VPN v5.1.apk
A649ABC6FE9C7769FCCEFC563CCEE86B
net.hideman.apk
Hideman_VPN_5.1_.apk"; modification-date="Tue, 07 Feb 2017 18:59:48 +0000"; read-date="Tue, 07 Feb 2017 17:04:25 +0000
Hideman_5.1.apk
hideman-vpn.apk
net.hideman.apk
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Opened files
/data/data/net.hideman/files/persisted_config
/data/data/net.hideman/no_backup
Accessed files
/data/data/net.hideman/no_backup
/data/data/net.hideman/no_backup/com.google.android.gms.appid-no-backup
/data/data/net.hideman/databases/google_app_measurement.db
/data/data/net.hideman/databases/google_app_measurement_local.db
Interesting calls
Calls APIs that provide access to information about the telephony services on the device. Applications can use such methods to determine telephony services and states, as well as to access some types of subscriber information.
Dynamically called methods
android.os.SystemProperties.get 2 arguments.
u'debug.firebase.analytics.app'
u''
Accessed URIs
content://com.google.android.gms.chimera/api_force_staging/com.google.android.gms.flags
content://com.google.android.gms.chimera/api_force_staging/com.google.android.gms.crash
https://www.hideman.net/api/v2
http://www.hideman.net/api/v2