0/62

Threat

com.samsung.android.incallui

Call

Analyzed on 2022-05-23T23:08:57.480409

63

permissions

13

activities

1

services

2

receivers

4

domains

File sums

MD5 3a5b4e918cde401031a5a7318c0ceeea
SHA1 05c29045e8d399bb208e78f92da24dc2905be462
SHA256 9536c2529fb86bacc1eb7bb0bdabbfe6e00a540dce16bb5c43084feea9d291f0
Size 16.11MB

APKiD

Information computed with APKiD.

/tmp/tmp1qab_whu!classes.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes10.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes11.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes12.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes13.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes14.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes15.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes16.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes17.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes18.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes19.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes2.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes20.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes21.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes22.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes23.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes24.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes25.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes26.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes27.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes28.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes29.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes3.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes30.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes31.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes32.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes33.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes34.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes35.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes36.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes37.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes38.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes39.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes4.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes40.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes41.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes42.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes43.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes44.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes45.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes46.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes47.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes48.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes49.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes5.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes50.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes51.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes52.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes53.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes54.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes55.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes56.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes57.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes58.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes59.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes6.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes60.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes61.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes62.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
anti_vm
  • possible Build.SERIAL check
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes63.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes64.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes65.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes66.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes67.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes68.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes69.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
anti_vm
  • device ID check
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes7.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes70.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes71.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes72.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes73.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes8.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)
/tmp/tmp1qab_whu!classes9.dex
yara_issue
  • yara issue - dex file recognized by apkid but not yara module
compiler
  • unknown (please file detection issue!)

SSdeep

Information computed with ssdeep.

APK file 196608:AIfuzwJxy26xHeo3E0yJdksnEuN2BXmGF/+lPvTEjTdnqS623+QcMb+jFwgGhyXv:ASy26xHeo3VyJSsnEYIWTyhnibRGhO3
Manifest 768:jkOLuH/kvOcy8/N5J2911WmsC1atG6j5K5SrVdpaaL0QJ1OB1qshn6TdxMiMeAmC:…
classes.dex 768:08cibOx9Op2dqoxOrfFEtN+dRNWtdRru15ZtNJ5G1RqgrP4FvSZQ+cK:ncUOLO3oA…
classes10.dex 192:NXHLpk4QNThxK9+mq8C5rOkrNaaqaypWyu4Vyc9guUfX1owUPduj7EhZx9xYxrxM:…
classes11.dex 768:GNxwmwVLBqX6PVDwAz1AfB6NAjx1zcaFj6i:GNSmwkzf8Y1zcm6i
classes12.dex 3072:eW19hSfl25qlOXJJzDyYTUj74lwHGwQgvUcZ:r194fMTOVGw7Z
classes13.dex 6144:uGyu+KqTkuLKIjKvF07M7k8ihIbH3lx7sRYn7D:Au+KqIoKEqF/TihIb1FR7D
classes14.dex 12288:2HBOMG+MuS84XAXQXUXgw16omAPxKRjHPHx0/Bps:4oX+MuSRXAXQXUXxKBHxgps
classes15.dex 3072:x+KHSLLqrL/Ny6XtlZ/RAAKBT0Z33j3S/ABFbwZHsxJF2/wg+b7z76vSd:EKHSfq…
classes16.dex 12288:sU3Qs05MdGPGf3Spb7YFw7jmuSgyxafAgX3G+X+wJFbLBlEpnDEb37TqO3m9/Py…
classes17.dex 192:BAbzSf/+VEfGeXg/W0x13uqgq7k667hj+JF+pkl/:ybzA+8Hgu41tB7k62+gkF
classes18.dex 96:W1Cr5XjPknUO3vvuRlvnMIhX2gxlUzlyQFcyEwCLOmuJxmuJ9lo7/tE23YD:95XjPk…
classes19.dex 96:HCIqBAHTQL91U2TxF+T41ny1ByR6Wu3S0Ete8tdZxS2b1L87TJg0L0E/UP5dfk7R:H…
classes2.dex 24576:1NJJo1Q1pxCv/Z1ixKYPL7hQE32I1u161jCeIZizbs7xjCP1iJp:1dxCXmL7hQE…
classes20.dex 384:I39vMYBVn8KpLFqjh0cm4L/M0yuJ0O8DC+0pTjbEqWwPyYY2dmHDzWG4IAWpy+Q:I…
classes21.dex 768:wlWNwl4cbxMbAOAOk14exSedWfKMmMcy4nfiWVOZW//lx:mWNXzbA4exSQWfK7Md4…
classes22.dex 3072:yHAsBXIWiQ4LjpYdSMTSFx7gP+cwUPVMYV52f28djfEFAoAPwn6FLW+R5tQ56nsj…
classes23.dex 96:9IuSWzJa4umCiKUavgqBRYDZiy14rlc9/Ss:yuA41TutBRY94rlKx
classes24.dex 6144:G6cbsw7stprVyuor4Cs1n29iP7W6874NAmmM1E3/8Ivr34VuaMS6g9t:wb5kx2WW…
classes25.dex 768:aSO+uNwj+RGOstKTD2gs4U2aTMr8We55YkEbSveA+nw6Cb/mviK5DkhZhiL3JnZJ:…
classes26.dex 3072:IBYzHdmIXdMG3CpJvQOYBfAwL847TDWsSSSfh2Nd9LUdwQ/FWn1s2g4WAN7G2vyL…
classes27.dex 96:dJRKCCiNqSgzNhiu16ylyBU5Cz++WdKHkOa9CtH5cP1aaZAMLwXZN:jRKCCiNqSgph…
classes28.dex 96:MxtzjfxAvzUb+K5abANuTiaHUvAI9xxVRZK7JHxjfPxPcPUTmdZ4Y/R:MfjJg4Cm8H…
classes29.dex 384:c7/79koUdJaXq1mstXEKLlF/E3pvKqm5OK2U5n9F0cD:Aj1UTf1LfRF/E3pLqOkg6
classes3.dex 1536:yWKTrPnGTVC8AumY8YkkpZxWP1xY/f/r8tbKViAO/mrgLp:sfG8umqvDxWPsf/41…
classes30.dex 12288:7LUuFRBv4vgixyhrWeDKDmX3OBD9idDmIjMgK6eA3gSxtXaL777sQjFpLbbWUCK…
classes31.dex 12288:AralR6dyU/X5xkaOjs3RCa1Zub8EXLQqMD4d/XzEscEoPukUseOPT8SFh48/uWx…
classes32.dex 192:0dTwUr6kNY1bbbb0P50uKw9TqHthpkYrcBtwOUo9pHF4t:dUOkebbbb0eFw9mVkzB…
classes33.dex 48:Hc4y/ucsxcWEkJUVFxNlA8gAJ9sGpAYpf0A5s1RrchOHpfWchjCyctaGYbl:62FnEk…
classes34.dex 3072:4Qe1bPuQ674FYwE37pkbvkoyDSRw/dPN43:VehLkosew/dPi
classes35.dex 6144:mhmxYKJJIwvqNVfTxhjsoRzm2oousEpI0F72tWK:mhaYjwvqNtTxJsoRKfsqK
classes36.dex 192:O1tKT7Bxu7vWJZynJQELiJo24VBm3HaUJ:Of01xxJZynJQdjt
classes37.dex 192:akX7MhDy26vWT1dWDOAapFBLZGOyO5Flgwsj:1n2xT1dWDgwO7lgw8
classes38.dex 384:2tYvwbpbsp81hPiB4Q0TEfdoQefqDO6v4X0fuYmg4CQpLgeUohw:PIdbspWxiGYlo…
classes39.dex 192:77V6wYOgaIqQ4et93Ax8Sj7taY6pBHETjI/T:crLtL3oj7sY8ms/T
classes4.dex 1536:mBU5kUF23jChoxD5GImcKhwMjuC+/EP1fbn5dGQE03JPZRdMrVnVrA32s76bOUJ2…
classes40.dex 384:aLU2GdwWpbvGietykWtJ6Z/9o6fhLIYqCSm3DW9pG:cGaW5vhUWoicLZPX
classes41.dex 3072:+icO5rgjKKGZjK+5PPGcPvpZBOFibqwK1p41wDMI01kl8CGST/DGWl:N5gef0+5V…
classes42.dex 384:N019YbTyuqgjN9KhQVcaXiITh3C9MteVZCkRCegZyU0SEmPi3GjyGlzI:N00bTy25…
classes43.dex 3072:23IOWdx6eTsMKHkbNjs9flnk6aWZ3s+QjCT4IyhfUTXc6:23hQxvTsMKHkbNjs9f…
classes44.dex 3072:puBmi+3ngUceQ0mfkDCf2Lz7UdyHlnb/xDatza9G3MnCb8v6Kzwdki0WQDZiZT00…
classes45.dex 3072:t+BHKmo1Xdc/vASljfkrWXIiKdcUhPyL6o1dY7vn3D:tOzo5d+LjfkrWXIiKdHof…
classes46.dex 3072:ZXaZ6+7eAv48JPxGHR2SmA997fNXp7ASy/Z5xoMnS/w62xtRXHs:UQg9PuEnA99j…
classes47.dex 3072:SveCo4MmlJetRfKVPWl6fbn1ZYxKdQ5HXlT15GI:SsvFfGI
classes48.dex 768:BEjO/T8PZ8T5qkX/V/auerjzZFTXcAbLYYnVuNmhH:CsTCZ8TwkPV/a3jjcAtVuuH
classes49.dex 96:d2pSJct8cm8lhgRmLj7AlGdDDLKEbzc/cQcd7oQDpxNe:ySL0hBv8l4rtzgPiHe
classes5.dex 12:HcdaYBy8kKUlo9TNvWiLtFTyjjg/lf6+EhF2FYMUYX3Tf+JXKiup6fLqluf4/sl:Hc…
classes50.dex 96:tNRtMuvRnbUFlJTvFT3A718+j3odNkWj+qdfJgUfqLKeIjI/tAEJ2MUDL0y51pdq:t…
classes51.dex 12288:4/xFFtolBqcKtE/1BP/lmkkSUB0MiRmqN6fPcd6Ro3oWt3LAG9KsimfDoOBP:ex…
classes52.dex 48:Hc8H88H91JfskZYoE+vqaGmwK7K7Iloi/:XHtd1JfxNRCtXK+7Id
classes53.dex 24:Hc+5BuMZwWit6REzh2p7MgMJbom9H1ltQ0LVEj/:HcSBuzWiWEl2p7ELtHK
classes54.dex 192:cTb2860IS7lHJzespt+LVY5Y3n0RbU9IKKvLTy3gWxa:cvQS7f/+LVw+0Rk0PyQ0a
classes55.dex 384:rTAFFSZ3X3QWadjInJh4nqDg2ma3MJeyp4VtI3dacQR1NSi4dpIsPM1sR2x0Lx:rT…
classes56.dex 96:xR6+cUm5ymPdqXb4bapJAj6H90tfo5q6MACvpSLVkw463W2VU1X3kf4kXO7UTDeu:e…
classes57.dex 192:bvOancz99iYq8ThSyxuJ1keaBmorD7WMQDjYhHG8JOxaUGh7HLivIF7UL0hOdBRX:…
classes58.dex 768:aPTRILjfZ1fd/7qAkxD5FiJZwZOQR4LL3u8k4gs6HQUAUsia:wcXfxfqiAZQ3u82K…
classes59.dex 3072:/IRRgoO5UuBlYtVQ8hIy8zEuR8P3ckAw0BOSAmRd:gW5UwYHQ8hIhzEuR0dAwZmd
classes6.dex 3072:tkCnTb7FAWmVF4TkSE0CdnN9g6FW6foEyW/eeGG:tk2bhAr4QbeeGG
classes60.dex 12288:FNRz+dYtNgyvqY584LHiXDyASCYBRSOpmQIGP9JmZ6mtX7KNY/8VKpFgTF+3vVR…
classes61.dex 192:FzwSPyhsNxRwsN6RuoFtWRE3M85fkJmGdX1/Az3+n4pa:FzCONNeTFtWOXo4z+nGa
classes62.dex 3072:aJMZ2UlC+e1TaFSSYtzjRB1dgW21ulWKinWlDzMfsndusQGSi+N:aDUlC+OTt5RB…
classes63.dex 96:MuVGroi85DT6u8S8IGABlYQl/N9WHkUD+jwSPFlcJJeEtTmsGEB:N4rolDTF8S1GuO…
classes64.dex 48:Hc04oQ71+DvmxHblnB2TYDRFMaiK064rG7/UH:AoQ7gm+YDRmaitnH
classes65.dex 24:HcuhRx/swq/JmhHrLNMGgMM8XZrsQ2rcebMvqdJ8DPzO:HcYR8RAL5d48XZ4Q2IebM…
classes66.dex 12288:O3p7XFzPBjDuwWdoFSxxs6iPV8LCCwsnEwSNihIEeMCUWIL+80Jq9aI4MtBnyyZ…
classes67.dex 3072:h/UZGprqmPq3v7CcM8FaOCr07KqBdxqKo/rYGtmVsMXTb4p/4v2gjTcfpZY:h/UZ…
classes68.dex 768:z/6COM/7gmBxi49+SRk5PaTbLtC/drqGWOwZ4btFRQqqfVWzz:ziCngw3LE1rHWLZ…
classes69.dex 24576:B/okJHj6Vw7y/2hbGX4blgb8RpUZ52Smu4Nja4wL/:BQiD6G7F+4blDnUZgSl
classes7.dex 6144:INd8fr3cHiKUcV9Sp2aBi/FZc3vkwyDZjJXwngEGmxWUT5cniR:rcHiKmi/FoSDl…
classes70.dex 192:GsW3gTrNn8yyjZP1z25hzZIEiIDNDRWINCL:D6yyjZP1kXIEiEWYCL
classes71.dex 3072:k7eZ/BFmAUfUxK4F11Mg//Ego2cZve4ym3x9FegE9bxpP0GBxQZBL0mHpZz:k7eZ…
classes72.dex 384:mit+nppqcan9KbY7JMBeQyIQ4R7LuMYeiq:zuPq791EeQyIQe6iiq
classes73.dex 6144:AKnY3pskQrCKF8Mx8TkdmgVzwOxFmxootTZOMP+Z/qenzLikEvBcCb:AKFrNaSX9…
classes8.dex 1536:usAXPi95ku4yg8EAo205ymP7/qy6KIl9XFg0yZr073e8YLGxtyTsWcdQkC2Ov++G…
classes9.dex 384:dmpug2tVV9i4efUXDS85PaZH1bsPDeA/QtdIp+:4pvE9i4/WvZH10//QdIp+

Dexofuzzy

Information computed with Dexofuzzy.

classes.dex None
classes10.dex None
classes11.dex None
classes12.dex None
classes13.dex None
classes14.dex None
classes15.dex None
classes16.dex None
classes17.dex None
classes18.dex None
classes19.dex None
classes2.dex None
classes20.dex None
classes21.dex None
classes22.dex None
classes23.dex None
classes24.dex None
classes25.dex None
classes26.dex None
classes27.dex None
classes28.dex None
classes29.dex None
classes3.dex None
classes30.dex None
classes31.dex None
classes32.dex None
classes33.dex None
classes34.dex None
classes35.dex None
classes36.dex None
classes37.dex None
classes38.dex None
classes39.dex None
classes4.dex None
classes40.dex None
classes41.dex None
classes42.dex None
classes43.dex None
classes44.dex None
classes45.dex None
classes46.dex None
classes47.dex None
classes48.dex None
classes49.dex None
classes5.dex None
classes50.dex None
classes51.dex None
classes52.dex None
classes53.dex None
classes54.dex None
classes55.dex None
classes56.dex None
classes57.dex None
classes58.dex None
classes59.dex None
classes6.dex None
classes60.dex None
classes61.dex None
classes62.dex None
classes63.dex None
classes64.dex None
classes65.dex None
classes66.dex None
classes67.dex None
classes68.dex None
classes69.dex None
classes7.dex None
classes70.dex None
classes71.dex None
classes72.dex None
classes73.dex None
classes8.dex None
classes9.dex None

APK details

Information computed with AndroGuard and Pithus.

Package com.samsung.android.incallui
App name Call
Version name 10.1.30.12
Version code 1013000012
SDK 28 - 28
UAID f80b1fc3048ddcdf37993838ccbbad376406fa97
Signature Signature V1 Signature V2
Frosting Not frosted
Blocks found within V2 signature:
  • 0x7109871a: Unknown

Certificate details

Information computed with AndroGuard.

MD5 d087e72912fba064cafa78dc34aea839
SHA1 9ca5170f381919dfe0446fcdab18b19a143b3163
SHA256 34df0e7a9f1cf1892e45c056b4973cd81ccf148a4050d11aea4ac5a65f900a42
Issuer Email Address: android.os@samsung.com, Common Name: Samsung Cert, Organizational Unit: DMC, Organization: Samsung Corporation, Locality: Suwon City, State/Province: South Korea, Country: KR
Not before 2011-06-22T12:25:12+00:00
Not after 2038-11-07T12:25:12+00:00

File Analysis

Information computed with MobSF.

Findings Files
Certificate/Key files hardcoded inside the app. SEC-INF/buildConfirm.crt

Manifest analysis

Information computed with MobSF.

Low App is direct-boot aware [android:directBootAware=true]
This app can run before the user unlocks the device. If you're using a custom subclass of Application, and if any component inside your application is direct - boot aware, then your entire custom application is considered to be direct - boot aware.During Direct Boot, your application can only access the data that is stored in device protected storage.
High Activity (com.android.incallui.license.OpenSourceLicenseActivity) is not Protected.An intent-filter exists.
An Activity is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Activity is explicitly exported.
Low Activity (com.android.incallui.call.dialog.CallProtectBlockDialogActivity) is Protected by a permission, but the protection level of the permission should be checked.
Permission: com.android.incallui.permission.SMART_CALL_FUNCTION
protectionLevel: signatureOrSystem [android:exported=true]
An Activity is found to be exported, but is protected by a permission. However, the protection level of the permission is set to signatureOrSystem. It is recommended that signature level is used instead. Signature level should suffice for most purposes, and does not depend on where the applications are installed on the device.
High Activity (com.android.incallui.RTTChatHistoryActivity) is not Protected. [android:exported=true]
An Activity is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device.
High Service (com.android.incallui.InCallServiceImpl) is Protected by a permission, but the protection level of the permission should be checked.
Permission: android.permission.BIND_INCALL_SERVICE [android:exported=true]
A Service is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. It is protected by a permission which is not defined in the analysed application. As a result, the protection level of the permission should be checked where it is defined. If it is set to normal or dangerous, a malicious application can request and obtain the permission and interact with the component. If it is set to signature, only applications signed with the same certificate can obtain the permission.
High Broadcast Receiver (com.android.incallui.call.LocaleChangedReceiver) is not Protected.An intent-filter exists.
A Broadcast Receiver is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Broadcast Receiver is explicitly exported.
High Content Provider (com.sec.android.diagmonagent.log.provider.DiagMonProvider) is Protected by a permission, but the protection level of the permission should be checked.
Permission: com.sec.android.diagmonagent.permission.PROVIDER [android:exported=true]
A Content Provider is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. It is protected by a permission which is not defined in the analysed application. As a result, the protection level of the permission should be checked where it is defined. If it is set to normal or dangerous, a malicious application can request and obtain the permission and interact with the component. If it is set to signature, only applications signed with the same certificate can obtain the permission.
High Content Provider (com.android.incallui.rtt.RttChatHistoryProvider) is not Protected. [android:exported=true]
A Content Provider is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device.
High Content Provider (com.samsung.android.sdk.bixby2.provider.CapsuleProvider) is not Protected. [android:exported=true]
A Content Provider is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device.
Medium High Intent Priority (999)[android:priority]
By setting an intent priority higher than another intent, the app effectively overrides other requests.

Activities

Information computed with AndroGuard.

com.android.incallui.call.InCallActivity
com.android.incallui.call.InExternalCallActivity
com.android.incallui.carrier.chn.OuterScreenLogoActivity
com.android.incallui.license.OpenSourceLicenseActivity
com.android.incallui.call.ReportActivity
com.android.incallui.call.dialog.RttHintDialogActivity
com.android.incallui.call.dialog.OneSimMultiNumberDialogActivity
com.android.incallui.call.dialog.DisconnectCauseDialogActivity
com.android.incallui.call.dialog.CallProtectBlockDialogActivity
com.android.incallui.call.dialog.SelectPhoneAccountDialogActivity
com.android.incallui.call.dialog.SelectPhoneAccountCarrierMatchingDialogActivity
com.android.incallui.RTTChatHistoryActivity
com.android.incallui.call.dialog.CommunicationActivity

Receivers

Information computed with AndroGuard.

com.android.incallui.call.RecordNotificationReceiver
com.android.incallui.call.LocaleChangedReceiver

Services

Information computed with AndroGuard.

com.android.incallui.InCallServiceImpl

Sample timeline

Oldest file found in APK Jan. 1, 2009, midnight
Latest file found in APK Jan. 1, 2009, midnight
Certificate valid not before June 22, 2011, 12:25 p.m.
First submission on VT April 27, 2021, 3:55 a.m.
Last submission on VT April 27, 2021, 3:55 a.m.
Upload on Pithus May 23, 2022, 11:08 p.m.
Certificate valid not after Nov. 7, 2038, 12:25 p.m.

NIAP analysis

Information computed with MobSF.

FCS_RBG_EXT.1.1 The application invoke platform-provided DRBG functionality for its cryptographic operations.
Random Bit Generation Services
FCS_STO_EXT.1.1 The application does not store any credentials to non-volatile memory.
Storage of Credentials
FCS_CKM_EXT.1.1 The application generate no asymmetric cryptographic keys.
Cryptographic Key Generation Services
FDP_DEC_EXT.1.1 The application has access to ['bluetooth', 'camera', 'network connectivity'].
Access to Platform Resources
FDP_DEC_EXT.1.2 The application has access to ['address book'].
Access to Platform Resources
FDP_NET_EXT.1.1 The application has no network communications.
Network Communications
FDP_DAR_EXT.1.1 The application implement functionality to encrypt sensitive data in non-volatile memory.
Encryption Of Sensitive Application Data
FMT_MEC_EXT.1.1 The application invoke the mechanisms recommended by the platform vendor for storing and setting configuration options.
Supported Configuration Mechanism
FTP_DIT_EXT.1.1 The application does encrypt some transmitted data with HTTPS/TLS/SSH between itself and another trusted IT product.
Protection of Data in Transit
FCS_RBG_EXT.2.1
FCS_RBG_EXT.2.2
The application perform all deterministic random bit generation (DRBG) services in accordance with NIST Special Publication 800-90A using Hash_DRBG. The deterministic RBG is seeded by an entropy source that accumulates entropy from a platform-based DRBG and a software-based noise source, with a minimum of 256 bits of entropy at least equal to the greatest security strength (according to NIST SP 800-57) of the keys and hashes that it will generate.
Random Bit Generation from Application
FCS_COP.1.1(2) The application perform cryptographic hashing services not in accordance with FCS_COP.1.1(2) and uses the cryptographic algorithm RC2/RC4/MD4/MD5.
Cryptographic Operation - Hashing
FCS_HTTPS_EXT.1.1 The application implement the HTTPS protocol that complies with RFC 2818.
HTTPS Protocol
FCS_HTTPS_EXT.1.2 The application implement HTTPS using TLS.
HTTPS Protocol
FIA_X509_EXT.2.1 The application use X.509v3 certificates as defined by RFC 5280 to support authentication for HTTPS , TLS.
X.509 Certificate Authentication

Code analysis

Information computed with MobSF.

Low
CVSS:7.5
The App logs information. Sensitive information should never be logged.
MASVS: MSTG-STORAGE-3
CWE-532 Insertion of Sensitive Information into Log File
Files:
 com/bumptech/glide/manager/RequestManagerRetriever.java
junit/runner/Version.java
com/bumptech/glide/load/resource/bitmap/TransformationUtils.java
com/bumptech/glide/manager/RequestManagerFragment.java
com/sec/android/diagmonagent/log/provider/DiagMonUtil.java
com/samsung/android/sdk/mobileservice/social/activity/ActivityApi.java
junit/runner/BaseTestRunner.java
com/bumptech/glide/load/resource/bitmap/BitmapEncoder.java
com/bumptech/glide/load/resource/bitmap/DrawableToBitmapConverter.java
com/samsung/android/sdk/mobileservice/SeMobileService.java
com/bumptech/glide/load/engine/cache/DiskLruCacheWrapper.java
com/samsung/android/sdk/mobileservice/social/share/ShareController.java
com/samsung/context/sdk/samsunganalytics/internal/util/Debug.java
com/samsung/android/sdk/mobileservice/common/CommonUtils.java
com/airbnb/lottie/parser/MaskParser.java
com/samsung/android/sdk/mobileservice/SeMobileServiceSessionFactory.java
com/sec/android/td/math_lib/math/MATRIX.java
com/bumptech/glide/load/model/FileLoader.java
com/bumptech/glide/load/data/LocalUriFetcher.java
com/airbnb/lottie/LottieTask.java
com/bumptech/glide/load/resource/bitmap/VideoDecoder.java
com/airbnb/lottie/PerformanceTracker.java
com/bumptech/glide/load/data/HttpUrlFetcher.java
com/bumptech/glide/load/engine/cache/MemorySizeCalculator.java
com/samsung/android/sdk/cover/CoverListenerDelegate.java
com/yulore/android/common/util/FileUtils.java
com/bumptech/glide/request/SingleRequest.java
com/samsung/android/sdk/cover/ScoverManager.java
com/bumptech/glide/signature/ApplicationVersionSignature.java
com/rcs/rcsintents/RcsIntentUtils.java
com/bumptech/glide/manager/SupportRequestManagerFragment.java
com/bumptech/glide/load/engine/DecodeJob.java
com/bumptech/glide/load/engine/DecodePath.java
com/airbnb/lottie/manager/FontAssetManager.java
com/bumptech/glide/load/resource/gif/StreamGifDecoder.java
com/bumptech/glide/load/engine/SourceGenerator.java
com/bumptech/glide/gifdecoder/GifHeaderParser.java
com/bumptech/glide/load/resource/gif/GifDrawableEncoder.java
com/bumptech/glide/load/engine/Engine.java
com/samsung/android/sdk/mobileservice/util/SdkLog.java
com/bumptech/glide/Glide.java
com/samsung/android/sdk/mobileservice/auth/AuthApi.java
com/bumptech/glide/load/data/mediastore/ThumbFetcher.java
com/sec/android/gradient_color_extractor/CallGradient_V2.java
com/bumptech/glide/load/model/StreamEncoder.java
com/sec/android/diagmonagent/log/provider/DiagMonConfig.java
com/airbnb/lottie/parser/ContentModelParser.java
org/mockito/internal/util/ConsoleMockitoLogger.java
org/mockito/internal/debugging/MockitoDebuggerImpl.java
com/samsung/android/sdk/mobileservice/social/group/GroupApi.java
com/samsung/android/sdk/mobileservice/common/ErrorCodeConvertor.java
com/airbnb/lottie/manager/ImageAssetManager.java
com/airbnb/lottie/LottieDrawable.java
com/bumptech/glide/module/ManifestParser.java
com/samsung/android/sdk/mobileservice/social/buddy/BuddyApi.java
com/bumptech/glide/load/resource/bitmap/HardwareConfigState.java
com/bumptech/glide/load/engine/executor/GlideExecutor.java
com/bumptech/glide/load/engine/GlideException.java
com/samsung/android/sdk/mobileservice/social/share/ShareApi.java
com/bumptech/glide/manager/RequestTracker.java
com/bumptech/glide/load/model/ByteBufferFileLoader.java
com/bumptech/glide/load/model/ResourceLoader.java
com/sec/android/td/utils/BitmapHelper.java
com/bumptech/glide/load/resource/bitmap/DefaultImageHeaderParser.java
com/airbnb/lottie/parser/AnimatableTransformParser.java
com/samsung/android/cmcproviderparser/CmcProviderParser.java
com/bst/spamcall/numbermark/BinderReportNumInfo.java
com/bumptech/glide/load/engine/prefill/BitmapPreFillRunner.java
com/bumptech/glide/util/pool/FactoryPools.java
com/samsung/android/sdk/mobileservice/social/SocialApi.java
com/samsung/android/sdk/cover/LegacyLedSystemEventListenerDelegate.java
com/bumptech/glide/load/resource/gif/ByteBufferGifDecoder.java
com/bumptech/glide/gifdecoder/StandardGifDecoder.java
com/samsung/android/sdk/mobileservice/SeMobileServiceSessionImpl.java
com/bumptech/glide/manager/DefaultConnectivityMonitor.java
com/bumptech/glide/manager/DefaultConnectivityMonitorFactory.java
com/nineoldandroids/animation/PropertyValuesHolder.java
com/bumptech/glide/load/engine/bitmap_recycle/LruBitmapPool.java
com/bumptech/glide/request/target/ViewTarget.java
com/bumptech/glide/load/resource/bitmap/Downsampler.java
junit/textui/TestRunner.java
com/yulore/android/common/util/Logger.java
com/airbnb/lottie/LottieAnimationView.java
com/airbnb/lottie/LottieComposition.java
com/samsung/android/sdk/mobileservice/profile/ProfileApi.java
com/samsung/android/sdk/bixby2/LogUtil.java
com/sec/android/diagmonagent/log/provider/DiagMonSDK.java
com/bumptech/glide/disklrucache/DiskLruCache.java
com/bumptech/glide/load/data/AssetPathFetcher.java
com/bumptech/glide/load/engine/bitmap_recycle/LruArrayPool.java
com/airbnb/lottie/L.java
com/bumptech/glide/util/ContentLengthInputStream.java
com/sec/android/diagmonagent/log/provider/IssueBuilder.java
com/bumptech/glide/load/model/ByteBufferEncoder.java
Medium
CVSS:5.5
App creates temp file. Sensitive information should never be written into a temp file.
MASVS: MSTG-STORAGE-2
CWE-276 Incorrect Default Permissions
M2: Insecure Data Storage
Files:
 org/mockito/internal/creation/bytebuddy/InlineByteBuddyMockMaker.java
org/junit/rules/TemporaryFolder.java
Low
CVSS:0
This App uses SQL Cipher. Ensure that secrets are not hardcoded in code.
MASVS: MSTG-CRYPTO-1
Files:
 com/yulore/android/common/db/SQLiteOpenHelperBaseDAO.java
Medium
CVSS:7.4
Files may contain hardcoded sensitive information like usernames, passwords, keys etc.
MASVS: MSTG-STORAGE-14
CWE-312 Cleartext Storage of Sensitive Information
M9: Reverse Engineering
Files:
 com/airbnb/lottie/LottieCompositionFactory.java
com/samsung/android/sdk/mobileservice/common/ErrorCodeConvertor.java
com/bumptech/glide/load/Option.java
com/bumptech/glide/load/engine/ResourceCacheKey.java
com/bumptech/glide/load/engine/DataCacheKey.java
io/reactivex/internal/schedulers/SchedulerPoolFactory.java
com/bumptech/glide/load/engine/EngineResource.java
Medium
CVSS:7.5
The App uses an insecure Random Number Generator.
MASVS: MSTG-CRYPTO-6
CWE-330 Use of Insufficiently Random Values
M5: Insufficient Cryptography
Files:
 org/mockito/internal/creation/bytebuddy/SubclassBytecodeGenerator.java
com/sec/android/td/math_lib/math/MathUtils.java
High
CVSS:5.5
App can read/write to External Storage. Any App can read data written to External Storage.
MASVS: MSTG-STORAGE-2
CWE-276 Incorrect Default Permissions
M2: Insecure Data Storage
Files:
 com/sec/android/td/utils/BitmapHelper.java
com/yulore/android/common/util/AppUtils.java
com/yulore/android/common/util/SystemUtils.java
com/yulore/android/common/util/FileUtils.java
Info
CVSS:0
This App uses SSL certificate pinning to detect or prevent MITM attacks in secure communication channel.
MASVS: MSTG-NETWORK-4
Files:
 com/samsung/context/sdk/samsunganalytics/internal/security/CertificateManager.java
Medium
CVSS:7.4
MD5 is a weak hash known to have hash collisions.
MASVS: MSTG-CRYPTO-4
CWE-327 Use of a Broken or Risky Cryptographic Algorithm
M5: Insufficient Cryptography
Files:
 com/yulore/android/common/util/CypherUtil.java
Medium
CVSS:5.9
SHA-1 is a weak hash known to have hash collisions.
MASVS: MSTG-CRYPTO-4
CWE-327 Use of a Broken or Risky Cryptographic Algorithm
M5: Insufficient Cryptography
Files:
 com/yulore/android/common/util/CypherUtil.java
Medium
CVSS:5.9
App uses SQLite Database and execute raw SQL query. Untrusted user input in raw SQL queries can cause SQL Injection. Also sensitive information should be encrypted and written to the database.
CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
M7: Client Code Quality
Files:
 com/samsung/context/sdk/samsunganalytics/internal/sender/buffering/database/DbManager.java
com/samsung/context/sdk/samsunganalytics/internal/sender/buffering/database/DefaultDBOpenHelper.java
Pygal United States: 400

Map computed by Pithus.

Domains analysis

Information computed with MobSF.

US github.com 140.82.121.4
US regi.di.atlas.samsung.com 34.102.190.55
US stg-api.di.atlas.samsung.com 34.149.149.71
US dc.di.atlas.samsung.com 34.120.24.208

URL analysis

Information computed with MobSF.

https://stg-api.di.atlas.samsung.com
https://regi.di.atlas.samsung.com
https://dc.di.atlas.samsung.com
Defined in com/samsung/context/sdk/samsunganalytics/internal/connection/Domain.java
https://stg-api.di.atlas.samsung.com
https://regi.di.atlas.samsung.com
https://dc.di.atlas.samsung.com
Defined in com/samsung/context/sdk/samsunganalytics/internal/connection/Domain.java
https://stg-api.di.atlas.samsung.com
https://regi.di.atlas.samsung.com
https://dc.di.atlas.samsung.com
Defined in com/samsung/context/sdk/samsunganalytics/internal/connection/Domain.java
https://github.com/mockito/mockito/issues/new
Defined in org/mockito/internal/invocation/TypeSafeMatching.java

Permissions analysis

Information computed with MobSF.

High android.permission.CALL_PHONE directly call phone numbers
Allows the application to call phone numbers without your intervention. Malicious applications may cause unexpected calls on your phone bill. Note that this does not allow the application to call emergency numbers.
High android.permission.READ_PHONE_STATE read phone state and identity
Allows the application to access the phone features of the device. An application with this permission can determine the phone number and serial number of this phone, whether a call is active, the number that call is connected to and so on.
High android.permission.SYSTEM_ALERT_WINDOW display system-level alerts
Allows an application to show system-alert windows. Malicious applications can take over the entire screen of the phone.
High android.permission.CAMERA take pictures and videos
Allows application to take pictures and videos with the camera. This allows the application to collect images that the camera is seeing at any time.
High android.permission.READ_CONTACTS read contact data
Allows an application to read all of the contact (address) data stored on your phone. Malicious applications can use this to send your data to other people.
High android.permission.WRITE_CONTACTS write contact data
Allows an application to modify the contact (address) data stored on your phone. Malicious applications can use this to erase or modify your contact data.
High android.permission.READ_EXTERNAL_STORAGE read external storage contents
Allows an application to read from external storage.
High android.permission.READ_SMS read SMS or MMS
Allows application to read SMS messages stored on your phone or SIM card. Malicious applications may read your confidential messages.
High android.permission.WRITE_EXTERNAL_STORAGE read/modify/delete external storage contents
Allows an application to write to external storage.
Low android.permission.FOREGROUND_SERVICE Allows a regular application to use Service.startForeground.
Low android.permission.BLUETOOTH create Bluetooth connections
Allows applications to connect to paired bluetooth devices.
Low android.permission.EXPAND_STATUS_BAR expand/collapse status bar
Allows application to expand or collapse the status bar.
Low android.permission.MANAGE_OWN_CALLS Allows a calling application which manages it own calls through the self-managed ConnectionService APIs.
Low android.permission.VIBRATE control vibrator
Allows the application to control the vibrator.
Low android.permission.ACCESS_NETWORK_STATE view network status
Allows an application to view the status of all networks.
Medium android.permission.SET_ACTIVITY_WATCHER monitor and control all application launching
Allows an application to monitor and control how the system launches activities. Malicious applications may compromise the system completely. This permission is needed only for development, never for common phone usage.
Medium android.permission.STATUS_BAR_SERVICE status bar
Allows the application to be the status bar.
Medium android.permission.MODIFY_PHONE_STATE modify phone status
Allows the application to control the phone features of the device. An application with this permission can switch networks, turn the phone radio on and off and the like, without ever notifying you.
android.permission.CONTROL_KEYGUARD Unknown permission
Unknown permission from android reference
android.permission.MANAGE_ACTIVITY_STACKS Unknown permission
Unknown permission from android reference
android.permission.INTERACT_ACROSS_USERS Unknown permission
Unknown permission from android reference
android.permission.INTERACT_ACROSS_USERS_FULL Unknown permission
Unknown permission from android reference
android.permission.MANAGE_USERS Unknown permission
Unknown permission from android reference
android.permission.READ_DREAM_STATE Unknown permission
Unknown permission from android reference
android.permission.WRITE_DREAM_STATE Unknown permission
Unknown permission from android reference
com.sec.spp.permission.TOKEN_693697a3f04163a6e53f66fa9dbf0cd3e8a9d6face40e7e2483ff106fd22… Unknown permission
Unknown permission from android reference
com.sec.android.diagmonagent.permission.DIAGMON Unknown permission
Unknown permission from android reference
com.sec.android.diagmonagent.permission.PROVIDER Unknown permission
Unknown permission from android reference
com.samsung.android.permisson.START_DOCK_OR_HOME Unknown permission
Unknown permission from android reference
com.sec.android.phone.permission.UPDATE_MUTE_STATUS Unknown permission
Unknown permission from android reference
com.samsung.android.provider.rttcallprovider.permission.READ_RTT_HISTORY Unknown permission
Unknown permission from android reference
com.samsung.android.provider.rttcallprovider.permission.WRITE_RTT_HISTORY Unknown permission
Unknown permission from android reference
com.android.incallui.permission.RTT_CHAT_HISTORY Unknown permission
Unknown permission from android reference
com.sec.android.phone.permission.TRANSPORTING_CALLER_NAME Unknown permission
Unknown permission from android reference
com.sec.android.phone.permission.READ_CALL_SETTINGS Unknown permission
Unknown permission from android reference
com.hiya.aegis.lookup_service.ACCESS Unknown permission
Unknown permission from android reference
android.permission.REAL_GET_TASKS Unknown permission
Unknown permission from android reference
com.sec.android.app.yellowpage.permission.ACCESS_YELLOWPAGE_PROVIDER Unknown permission
Unknown permission from android reference
com.cequint.ecid.CALLER_ID_LOOKUP Unknown permission
Unknown permission from android reference
com.sec.enterprise.knox.MDM_CONTENT_PROVIDER Unknown permission
Unknown permission from android reference
com.samsung.android.app.telephonyui.permission.USE_PHONE_VOICE_RECORDER Unknown permission
Unknown permission from android reference
com.nttdocomo.android.phonemotion.permission.GET_STATUS Unknown permission
Unknown permission from android reference
com.sec.epdg.PERMISSION Unknown permission
Unknown permission from android reference
com.android.server.telecom.SMART_CALL_FUNCTION Unknown permission
Unknown permission from android reference
com.sgmc.phonenumberlocatorservice.permission.GET_LOCATION Unknown permission
Unknown permission from android reference
com.samsung.rcs.serviceprovider.READ_PERMISSION Unknown permission
Unknown permission from android reference
com.samsung.rcs.serviceprovider.WRITE_PERMISSION Unknown permission
Unknown permission from android reference
com.samsung.rcs.permission.RCS_APP_PERMISSION Unknown permission
Unknown permission from android reference
com.sec.ims.android.PERMISSION Unknown permission
Unknown permission from android reference
com.sec.ims.android.rcs.READ_PERMISSION Unknown permission
Unknown permission from android reference
com.sec.ims.android.rcs.WRITE_PERMISSION Unknown permission
Unknown permission from android reference
com.samsung.crane.permission.ENRICHED_CALL Unknown permission
Unknown permission from android reference
com.vodafone.callplus.provider.READ_DATABASE Unknown permission
Unknown permission from android reference
com.vodafone.callplus.provider.WRITE_DATABASE Unknown permission
Unknown permission from android reference
com.vodafone.callplushybrid.provider.USER_CONTENT Unknown permission
Unknown permission from android reference
com.samsung.crane.callcomposer.CallComposerProvider.READ_DATABASE Unknown permission
Unknown permission from android reference
com.samsung.crane.callcomposer.CallComposerProvider.WRITE_DATABASE Unknown permission
Unknown permission from android reference
com.samsung.android.app.telephonyui.permission.USE_PHOTORING Unknown permission
Unknown permission from android reference
com.shhphone.autoanswer.USE_AUTOANSWER Unknown permission
Unknown permission from android reference
com.samsung.android.carriermatching.READ_PERMISSION Unknown permission
Unknown permission from android reference
com.samsung.permission.SSENSOR Unknown permission
Unknown permission from android reference
com.sec.nsds.READ_NSDS_PERMISSION Unknown permission
Unknown permission from android reference
com.sec.nsds.WRITE_NSDS_PERMISSION Unknown permission
Unknown permission from android reference

Threat analysis

Information computed with Quark-Engine.

Confidence:
100%
Load external class
Confidence:
100%
Implicit intent(view a web page, make a phone call, etc.)
Confidence:
100%
Find a method from given class name, usually for reflection
Confidence:
100%
Connect to a URL and receive input stream from the server
Confidence:
100%
Method reflection
Confidence:
100%
Connect to a URL and read data from it
Confidence:
100%
Load class from given class name
Confidence:
100%
Retrieve data from broadcast
Confidence:
100%
Read sensitive data(SMS, CALLLOG, etc)
Confidence:
100%
Open a file from given absolute path of the file
Confidence:
100%
Implicit intent(view a web page, make a phone call, etc.) via setData
Confidence:
100%
Connect to a URL and get the response code
Confidence:
100%
Monitor the broadcast action events (BOOT_COMPLETED)
Confidence:
100%
Get absolute path of the file and store in string
Confidence:
100%
Query the IMSI number
Confidence:
100%
Get last known location of the device
Confidence:
100%
Get the current WIFI information