Source: AndroidManifest.xml | String found in binary or memory: android.permission.SEND_SMS!android.permission.WRITE_SETTINGS#android.permission.DISABLE_KEYGUARD android.permission.READ_CONTACTS$android.permission.CHANGE_WIFI_STATE$android.permission.ACCESS_WIFI_STATE |
Source: com.Loader;->start:831 | API Call: android.os.PowerManager$WakeLock.acquire |
Source: com.Loader$b;->onCallStateChanged:81 | API Call: android.media.AudioManager.setRingerMode("0") |
Source: com.Loader$s;->onReceive:335 | API Call: android.media.AudioManager.setRingerMode("0") |
Source: com.Loader$u$1;->a:19 | API Call: android.media.AudioManager.setRingerMode("0") |
Source: com.Loader$w;->a:31 | API Call: android.media.AudioManager.setRingerMode("0") |
Source: com.n;->b:60 | API Call: android.media.AudioManager.setRingerMode("0") |
Source: chrome.apk | virustotal: Detection: 53% | Perma Link |
Source: com.Loader$c$2$1;->b:31 | API Call: android.content.Context.startActivity |
Source: com.Loader$ap;->run:13 | API Calls in same method context: File.listFiles,File.delete |
Source: com.Loader$s$e;->run:30 | API Call: javax.mail.Transport.sendMessage |
Source: com.sun.mail.util.logging.MailHandler;->verifySettings0:826 | API Call: javax.mail.Transport.sendMessage |
Source: javax.mail.Transport;->send0:29 | API Call: javax.mail.Transport.sendMessage |
Source: javax.mail.Transport;->send0:42 | API Call: javax.mail.Transport.sendMessage |
Source: com.Loader$aa;->a:24 | API Call: android.content.Context.startActivity |
Source: submitted apk | Request permission: android.permission.CALL_PHONE |
Source: submitted apk | Request permission: android.permission.SEND_SMS |
Source: submitted apk | Request permission: android.permission.WRITE_SMS |
Source: submitted apk | Request permission: android.permission.PROCESS_OUTGOING_CALLS |
Source: com.Loader$b;->onCallStateChanged:69 | API Call: java.lang.Class.getDeclaredMethod("getITelephony") |
Source: com.n;->b:61 | API Call: android.telephony.SmsManager.sendMultipartTextMessage |
Source: com.rwe.rtAdminReceiver;->a:7 | API Call: android.app.ReceiverRestrictedContext.startActivity("Intent { act=android.intent.action.MAIN cat=[android.intent.category.HOME] flg=0x10000000 }") |
Source: com.rwe.rtAdminReceiver;->onDisableRequested:19 | API Call: android.content.Context.startActivity (not executed) |
Source: submitted apk | Request permission: android.permission.RECORD_AUDIO |
Source: com.j;->a:48 | API Call: android.media.MediaRecorder.start |
Source: com.j;->a:36 | API Call: android.media.MediaRecorder.<init> |
Source: Lcom/c;-><clinit>()V | Method String: com.wooribank.pib.smart, com.kbstar.kbbank, com.ibk.neobanking, com.sc.danb.scbankapp, com.shinhan.sbanking, com.hanabank.ebk.channel.android.hananbank |
Source: com.Loader$an;->run:26 | API Call: WindowManager.addView |
Source: com.Loader;->start:938 | API Call: WindowManager.addView |
Source: submitted apk | Request permission: android.permission.GET_TASKS |
Source: com.Loader$s;->onReceive:229 | API Call: android.net.ConnectivityManager.getActiveNetworkInfo |
Source: com.Loader$s;->onReceive:238 | API Call: android.net.wifi.WifiManager.isWifiEnabled |
Source: com.Loader;->f:497 | API Call: android.net.ConnectivityManager.getActiveNetworkInfo |
Source: com.Loader;->f:515 | API Call: android.net.wifi.WifiManager.getConnectionInfo |
Source: com.Loader;->f:545 | API Call: android.net.wifi.WifiManager.getConnectionInfo |
Source: com.Loader;->onStop:701 | API Call: android.net.wifi.WifiManager.getConnectionInfo |
Source: com.p;->a:185 | API Call: android.net.wifi.WifiManager.isWifiEnabled |
Source: com.Loader;->a:174 | API Call: android.net.wifi.WifiManager.setWifiEnabled |
Source: com.p;->a:186 | API Call: android.net.wifi.WifiManager.setWifiEnabled |
Source: a.b;->a:20 | API Call: java.net.URL.openConnection (not executed) |
Source: com.b.a.a.q;->d:7 | API Call: java.net.Socket.connect (not executed) |
Source: javax.activation.URLDataSource;->getContentType:4 | API Call: java.net.URL.openConnection (not executed) |
Source: javax.activation.URLDataSource;->getOutputStream:14 | API Call: java.net.URL.openConnection (not executed) |
Source: com.Loader$y$1$1;->run:5 | API Call: java.net.URL.openConnection (not executed) |
Source: com.sun.mail.util.SocketFetcher;->createSocket:129 | API Call: java.net.Socket.connect (not executed) |
Source: com.sun.mail.util.SocketFetcher;->createSocket:151 | API Call: java.net.Socket.connect (not executed) |
Source: com.sun.mail.util.logging.MailHandler;->verifySettings0:942 | API Call: java.net.InetAddress.getByName (not executed) |
Source: javax.mail.Service;->connect:68 | API Call: java.net.InetAddress.getByName (not executed) |
Source: javax.mail.URLName;->getHostAddress:81 | API Call: java.net.InetAddress.getByName (not executed) |
Source: com.sun.mail.util.SocketFetcher;->getSocket:192 | API Call: java.net.InetAddress.getByName (not executed) |
Source: com.Loader;->c:303 | API Call: android.net.wifi.WifiManager.startScan |
Source: com.Loader;->f:520 | API Call: android.net.wifi.WifiManager.getScanResults |
Source: resources.arsc, test.dex.dr, android | String found in binary or memory: Facebook equals www.facebook.com (Facebook) |
Source: android | String found in binary or memory: http://127.0.0.1: |
Source: test.dex.dr, android | String found in binary or memory: http://my.tv.sohu.com/user/%s |
Source: AndroidManifest.xml | String found in binary or memory: http://schemas.android.com/apk/res/android |
Source: test.dex.dr, android | String found in binary or memory: https:// |
Source: rxjava.properties | String found in binary or memory: https://github.com/ReactiveX/RxJava.git |
Source: a.b;->a:42 | API Call: java.net.HttpURLConnection.connect |
Source: submitted apk | Request permission: android.permission.RECEIVE_BOOT_COMPLETED |
Source: com.Loader;->start:825 | API Call: android.os.PowerManager.newWakeLock |
Source: submitted apk | Request permission: android.permission.MOUNT_UNMOUNT_FILESYSTEMS |
Source: com.a;->a:24 | API Call: android.net.Uri.parse |
Source: com.Loader$ag$1;->a:12 | API Call: android.telephony.TelephonyManager.getSimState |
Source: com.Loader;->c:335 | API Call: android.telephony.TelephonyManager.getSimState |
Source: com.Loader$s;->onReceive:81 | API Call: android.telephony.SmsMessage.createFromPdu |
Source: submitted apk | Request permission: android.permission.READ_CONTACTS |
Source: submitted apk | Request permission: android.permission.READ_SMS |
Source: submitted apk | Request permission: android.permission.READ_PHONE_STATE |
Source: submitted apk | Request permission: android.permission.RECEIVE_SMS |
Source: submitted apk | Request permission: android.permission.GET_ACCOUNTS |
Source: com.vjdf.ytMyReceiver | Registered receiver: android.provider.Telephony.SMS_RECEIVED |
Source: com.Loader;->start:930 | API Call: android.net.Uri.parse("content://mms/#") |
Source: com.e;->a:10 | API Call: android.net.Uri.parse("content://mms") |
Source: com.e;->a:55 | API Call: android.net.Uri.parse("content://mms/part") |
Source: com.Loader$k$1;->a:30 | API Call: android.net.Uri.parse("content://sms/") |
Source: com.Loader$s;->onReceive:343 | API Call: android.net.Uri.parse("content://sms/inbox") |
Source: com.Loader$s;->onReceive:361 | API Call: android.net.Uri.parse("content://sms") |
Source: com.Loader$ab;->a:8 | API Call: android.content.pm.PackageManager.getInstalledPackages |
Source: com.Loader;->getFirstAppDate:639 | API Call: android.content.pm.PackageManager.getInstalledPackages |
Source: com.Loader;->start:887 | API Call: android.content.pm.PackageManager.getInstalledPackages |
Source: com.a;->a:11 | Field access: android.provider.ContactsContract$CommonDataKinds$Phone.CONTENT_URI |
Source: com.p;->a:152 | API Call: android.net.Uri.parse content://com.android.contacts/data |
Source: com.Loader$at;->a:20 | API Call: android.accounts.Account.name |
Source: com.Loader$aw;->a:18 | API Call: android.accounts.Account.name |
Source: com.Loader$aw;->a:27 | API Call: android.accounts.Account.name |
Source: com.Loader$b$a$a;->onClick:10 | API Call: android.accounts.AccountManager.getAccounts |
Source: com.Loader$b$a$a;->onClick:12 | API Call: android.accounts.Account.type |
Source: com.Loader$s;->onReceive:404 | API Call: android.accounts.AccountManager.getAccounts |
Source: com.Loader$s;->onReceive:406 | API Call: android.accounts.Account.type |
Source: com.Loader;->c:249 | API Call: android.accounts.AccountManager.getAccounts |
Source: com.Loader;->c:252 | API Call: android.accounts.Account.name |
Source: com.Loader;->c:256 | API Call: android.accounts.Account.type |
Source: com.p$a;->run:3 | API Call: android.net.wifi.WifiManager.getConfiguredNetworks |
Source: com.j;->a:44 | API Call: android.media.MediaRecorder.setOutputFile |
Source: com.b;->a:18 | API Call: android.content.Intent.setDataAndType(n/a,"application/vnd.android.package-archive") |
Source: Lcom/Loader;-><init>()V | Method string: \n body {\n font-family: Roboto-Regular, HelveticaNeue, Arial, sans-serif;\n }\n\n label {\n color: #222;\n line-height: 16px;\n font-size: 100%;\n text-decoration: none;\n Length: 5599 |
Source: com.wefd.esMyApplication;->onCreate:60 | API Call: Constructor call: public dalvik.system.DexClassLoader(java.lang.String,java.lang.String,java.lang.String,java.lang.ClassLoader) |
Source: chrome.apk | Total valid method names: 44% |
Source: com.rwe.rtAdminReceiver$1;->run:12 | API Call: java.lang.reflect.Method.invoke |
Source: javax.activation.CommandInfo$Beans;->instantiate:8 | API Call: java.lang.reflect.Method.invoke |
Source: org.msgpack.core.buffer.b;->a:54 | API Call: java.lang.reflect.Method.invoke |
Source: org.msgpack.core.buffer.b;->a:80 | API Call: java.lang.reflect.Method.invoke |
Source: org.msgpack.core.buffer.b;->b:85 | API Call: java.lang.reflect.Method.invoke |
Source: org.msgpack.core.buffer.b;->b:87 | API Call: java.lang.reflect.Method.invoke |
Source: org.msgpack.core.buffer.c;-><clinit>:27 | API Call: java.lang.reflect.Field.get |
Source: com.Loader$aq;->onSignalStrengthsChanged:9 | API Call: java.lang.reflect.Method.invoke |
Source: com.Loader$b;->onCallStateChanged:71 | API Call: java.lang.reflect.Method.invoke |
Source: com.Loader;->f:486 | API Call: java.lang.reflect.Method.invoke |
Source: com.Loader;->requestIgnoreBatteryOpt:729 | API Call: java.lang.reflect.Method.invoke |
Source: com.Loader;->start:911 | API Call: java.lang.reflect.Method.invoke |
Source: com.a$1;->run:8 | API Call: java.lang.reflect.Method.invoke |
Source: com.das.vgMainService;->a:8 | API Call: java.lang.reflect.Method.invoke |
Source: com.das.vgMainService;->a:15 | API Call: java.lang.reflect.Method.invoke |
Source: com.sun.mail.util.MimeUtil;->cleanContentType:22 | API Call: java.lang.reflect.Method.invoke |
Source: com.sun.mail.util.SocketFetcher;->createSocket:123 | API Call: java.lang.reflect.Method.invoke |
Source: com.sun.mail.util.SocketFetcher;->getSocketFactory:292 | API Call: java.lang.reflect.Method.invoke |
Source: com.sun.mail.util.SocketFetcher;->matchCert:310 | API Call: java.lang.reflect.Method.invoke |
Source: com.sun.mail.util.SocketFetcher;->matchCert:322 | API Call: java.lang.reflect.Method.invoke |
Source: com.wefd.esMyApplication;->a:15 | API Call: java.lang.reflect.Method.invoke |
Source: submitted apk | Request permission: android.permission.CHANGE_WIFI_STATE |
Source: com.Loader$x;->a:8 | API Call: android.os.Environment.getExternalStorageState |
Source: com.Loader$x;->a:15 | API Call: android.os.Environment.getExternalStorageDirectory |
Source: com.c;-><clinit>:21 | API Call: android.os.Environment.getExternalStorageDirectory |
Source: com.j;-><init>:3 | API Call: android.os.Environment.getExternalStorageState |
Source: com.j;-><init>:7 | API Call: android.os.Environment.getExternalStorageDirectory |
Source: submitted apk | Request permission: android.permission.BROADCAST_SMS |
Source: submitted apk | Request permission: android.permission.PACKAGE_USAGE_STATS |
Source: submitted apk | Request permission: android.permission.STOP_APP_SWITCHES |
Source: submitted apk | Request permission: android.permission.CALL_PHONE |
Source: submitted apk | Request permission: android.permission.CHANGE_NETWORK_STATE |
Source: submitted apk | Request permission: android.permission.CHANGE_WIFI_STATE |
Source: submitted apk | Request permission: android.permission.GET_TASKS |
Source: submitted apk | Request permission: android.permission.INTERNET |
Source: submitted apk | Request permission: android.permission.MODIFY_AUDIO_SETTINGS |
Source: submitted apk | Request permission: android.permission.MODIFY_PHONE_STATE |
Source: submitted apk | Request permission: android.permission.MOUNT_UNMOUNT_FILESYSTEMS |
Source: submitted apk | Request permission: android.permission.PROCESS_OUTGOING_CALLS |
Source: submitted apk | Request permission: android.permission.READ_CONTACTS |
Source: submitted apk | Request permission: android.permission.READ_PHONE_STATE |
Source: submitted apk | Request permission: android.permission.READ_SMS |
Source: submitted apk | Request permission: android.permission.RECEIVE_MMS |
Source: submitted apk | Request permission: android.permission.RECEIVE_SMS |
Source: submitted apk | Request permission: android.permission.RECORD_AUDIO |
Source: submitted apk | Request permission: android.permission.SEND_SMS |
Source: submitted apk | Request permission: android.permission.SYSTEM_ALERT_WINDOW |
Source: submitted apk | Request permission: android.permission.WAKE_LOCK |
Source: submitted apk | Request permission: android.permission.WRITE_EXTERNAL_STORAGE |
Source: submitted apk | Request permission: android.permission.WRITE_SETTINGS |
Source: submitted apk | Request permission: android.permission.WRITE_SMS |
Source: classification engine | Classification label: mal76.evad.expl.adwa.spyw.andAPK@0/252@0/0 |
Source: a.a;->a:5 | API Call: android.content.SharedPreferences.getString |
Source: com.Loader$ai;->a:8 | API Call: android.content.SharedPreferences.getString |
Source: com.Loader$b;->onCallStateChanged:48 | API Call: android.content.SharedPreferences.getBoolean |
Source: com.Loader$b;->onCallStateChanged:80 | API Call: android.content.SharedPreferences.getBoolean |
Source: com.Loader$i;->b:10 | API Call: android.content.SharedPreferences.getString |
Source: com.Loader$i;->b:24 | API Call: android.content.SharedPreferences.getString |
Source: com.Loader$i;->b:34 | API Call: android.content.SharedPreferences.getString |
Source: com.Loader$i;->b:69 | API Call: android.content.SharedPreferences.getString |
Source: com.Loader$k$1;->a:10 | API Call: android.content.SharedPreferences.getBoolean |
Source: com.Loader$s;->onReceive:137 | API Call: android.content.SharedPreferences.getString |
Source: com.Loader$s;->onReceive:161 | API Call: android.content.SharedPreferences.getString |
Source: com.Loader$s;->onReceive:391 | API Call: android.content.SharedPreferences.getBoolean |
Source: com.Loader$s;->onReceive:414 | API Call: android.content.SharedPreferences.getBoolean |
Source: com.Loader$s;->onReceive:449 | API Call: android.content.SharedPreferences.getBoolean |
Source: com.Loader;->a:139 | API Call: android.content.SharedPreferences.getString |
Source: com.Loader;->a:152 | API Call: android.content.SharedPreferences.getString |
Source: com.Loader;->a:159 | API Call: android.content.SharedPreferences.getString |
Source: com.Loader;->f:592 | API Call: android.content.SharedPreferences.getBoolean |
Source: com.Loader;->start:901 | API Call: android.content.SharedPreferences.getString |
Source: com.Loader;->c:324 | Field Access: android.os.Build$VERSION.RELEASE |
Source: com.Loader;->c:326 | Field Access: android.os.Build.MODEL |
Source: com.Loader;->c:330 | Field Access: android.os.Build.DISPLAY |
Source: a.a;->a:12 | API Call: android.provider.Settings$Secure.getString |
Source: test.dex.dr | Binary or memory string: Ljava/lang/VirtualMachineError; |
Source: com.Loader$s;->onReceive:341 | API Call: com.Loader$s.abortBroadcast |
Source: submitted apk | Request permission: android.permission.SYSTEM_ALERT_WINDOW |
Source: submitted apk | Request permission: android.permission.GET_TASKS |
Source: submitted apk | Request permission: android.permission.PROCESS_OUTGOING_CALLS |
Source: com.Loader;->getTopActivityName$loader_release:659 | API Call: android.app.ActivityManager.getRunningTasks |
Source: com.rwe.gsActivity$1;->run:8 | API Call: android.content.pm.PackageManager.setComponentEnabledSetting |
Source: com.p;->a:211 | API Call: javax.crypto.Cipher.getInstance |
Source: com.p;->a:212 | API Call: javax.crypto.Cipher.init |
Source: com.p;->a:213 | API Call: javax.crypto.Cipher.doFinal |
Source: com.sun.mail.smtp.DigestMD5;->authClient:49 | API Call: java.security.MessageDigest.getInstance |
Source: com.sun.mail.smtp.DigestMD5;->authClient:88 | API Call: java.security.MessageDigest.digest |
Source: com.sun.mail.smtp.DigestMD5;->authClient:89 | API Call: java.security.MessageDigest.update |
Source: com.sun.mail.smtp.DigestMD5;->authClient:100 | API Call: java.security.MessageDigest.update |
Source: com.sun.mail.smtp.DigestMD5;->authClient:103 | API Call: java.security.MessageDigest.digest |
Source: com.sun.mail.smtp.DigestMD5;->authClient:129 | API Call: java.security.MessageDigest.update |
Source: com.sun.mail.smtp.DigestMD5;->authClient:135 | API Call: java.security.MessageDigest.digest |
Source: com.sun.mail.smtp.DigestMD5;->authClient:140 | API Call: java.security.MessageDigest.update |
Source: com.sun.mail.smtp.DigestMD5;->authClient:198 | API Call: java.security.MessageDigest.digest |
Source: com.sun.mail.smtp.DigestMD5;->authServer:236 | API Call: java.security.MessageDigest.update |
Source: com.sun.mail.smtp.DigestMD5;->authServer:242 | API Call: java.security.MessageDigest.digest |
Source: com.sun.mail.smtp.DigestMD5;->authServer:247 | API Call: java.security.MessageDigest.update |
Source: com.sun.mail.smtp.DigestMD5;->authServer:249 | API Call: java.security.MessageDigest.digest |
Source: com.Loader;->f:546 | API Call: android.net.wifi.WifiInfo.getMacAddress |
Source: com.Loader;->f:585 | API Call: android.telephony.TelephonyManager.getNetworkOperatorName |
Source: a.a;->a:26 | API Call: android.telephony.TelephonyManager.getDeviceId |
Source: com.Loader$at;->a:14 | API Call: android.telephony.TelephonyManager.getLine1Number |
Source: com.Loader$s$e$1;->a:16 | API Call: android.telephony.TelephonyManager.getLine1Number |
Source: com.Loader;->c:337 | API Call: android.telephony.TelephonyManager.getLine1Number |
Source: com.Loader;->c:338 | API Call: android.telephony.TelephonyManager.getDeviceId |
Source: com.Loader;->start:797 | API Call: android.telephony.TelephonyManager.getLine1Number |