0/63
Threat
Analyzed on 2022-05-03T13:49:13.391871
MD5 | 56ec34106761686a20009d10773fae1b | |
SHA1 | dfed418bfa8e3bae961f77f097649c97c77dda41 | |
SHA256 | dbb78fafb0b7754830adbe07ea638dfbbb99e91f0ee280be7921f24dbb301810 | |
Size | 5.88MB |
Information computed with APKiD.
/tmp/tmpfzrkem2h!classes.dex | |
anti_vm |
|
compiler |
|
Information computed with ssdeep.
APK file | 98304:kzuhgOl3G3Jx6b5zB68QGVDs0Xl+iXWqCmSAT2Cm/poG9DopZ:kiPWZx6bhB68QGts01+iH3SGQ/pvopZ | |
Manifest | 384:GBgSbqZrywbVak7IZ6UvJgc+GwUAXAIFpzrYLq1THzWiME7ypcB/:GBgSbqZrywbV… | |
classes.dex | 49152:ihNwM1JJQCcMEztaAccUvq1QfoncYAi23r0wD/06irjRO184R/NWWZYkifQwm:i… |
Information computed with Dexofuzzy.
APK file | 3072:/sfnG+bDVocfmjCv4dKoMS/yhaDVcaGaO5stijCw9BvQ8trvei2Xp3aQFKsI9rin… | |
classes.dex | 3072:/sfnG+bDVocfmjCv4dKoMS/yhaDVcaGaO5stijCw9BvQ8trvei2Xp3aQFKsI9rin… |
Information computed with AndroGuard and Pithus.
Information computed with AndroGuard.
Information computed with MobSF.
High | Service (com.meizu.cloud.pushsdk.NotificationService) is not Protected. [android:exported=true] A Service is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. |
High | Broadcast Receiver (com.meizu.update.push.PushReceiver) is not Protected.An intent-filter exists. A Broadcast Receiver is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Broadcast Receiver is explicitly exported. |
Information computed with AndroGuard.
|
Information computed with AndroGuard.
|
Information computed with AndroGuard.
|
Information computed with AndroGuard.
|
Oldest file found in APK | Nov. 27, 2010, 2:09 a.m. |
Latest file found in APK | Nov. 27, 2010, 2:09 a.m. |
Certificate valid not before | Nov. 27, 2010, 9:09 a.m. |
First submission on VT | Jan. 28, 2021, 3:02 a.m. |
Last submission on VT | Jan. 28, 2021, 3:02 a.m. |
Upload on Pithus | May 3, 2022, 1:49 p.m. |
Certificate valid not after | April 14, 2038, 9:09 a.m. |
Score | 0/63 |
Report | https://www.virustotal.com/gui/file/dbb78fafb0b7754830adbe07ea638dfbbb99e91f0ee280be7921f24dbb301810/detection |
Information computed with MobSF.
FCS_RBG_EXT.1.1 | The application invoke platform-provided DRBG functionality for its cryptographic operations. Random Bit Generation Services |
FCS_STO_EXT.1.1 | The application does not store any credentials to non-volatile memory. Storage of Credentials |
FCS_CKM_EXT.1.1 | The application generate no asymmetric cryptographic keys. Cryptographic Key Generation Services |
FDP_DEC_EXT.1.1 | The application has access to ['location', 'NFC', 'network connectivity']. Access to Platform Resources |
FDP_DEC_EXT.1.2 | The application has access to no sensitive information repositories. Access to Platform Resources |
FDP_NET_EXT.1.1 | The application has user/application initiated network communications. Network Communications |
FDP_DAR_EXT.1.1 | The application implement functionality to encrypt sensitive data in non-volatile memory. Encryption Of Sensitive Application Data |
FMT_MEC_EXT.1.1 | The application invoke the mechanisms recommended by the platform vendor for storing and setting configuration options. Supported Configuration Mechanism |
FTP_DIT_EXT.1.1 | The application does encrypt some transmitted data with HTTPS/TLS/SSH between itself and another trusted IT product. Protection of Data in Transit |
FCS_RBG_EXT.2.1 FCS_RBG_EXT.2.2 |
The application perform all deterministic random bit generation (DRBG) services in accordance with NIST Special Publication 800-90A using Hash_DRBG. The deterministic RBG is seeded by an entropy source that accumulates entropy from a platform-based DRBG and a software-based noise source, with a minimum of 256 bits of entropy at least equal to the greatest security strength (according to NIST SP 800-57) of the keys and hashes that it will generate. Random Bit Generation from Application |
FCS_CKM.1.1(3) FCS_CKM.1.2(3) |
A password/passphrase shall perform [Password-based Key Derivation Functions] in accordance with a specified cryptographic algorithm.. Password Conditioning |
FCS_COP.1.1(1) | The application perform encryption/decryption not in accordance with FCS_COP.1.1(1), AES-ECB mode is being used. Cryptographic Operation - Encryption/Decryption |
FCS_COP.1.1(2) | The application perform cryptographic hashing services not in accordance with FCS_COP.1.1(2) and uses the cryptographic algorithm RC2/RC4/MD4/MD5. Cryptographic Operation - Hashing |
FCS_COP.1.1(3) | The application perform cryptographic signature services (generation and verification) in accordance with a specified cryptographic algorithm RSA schemes using cryptographic key sizes of 2048-bit or greater. Cryptographic Operation - Signing |
FCS_HTTPS_EXT.1.1 | The application implement the HTTPS protocol that complies with RFC 2818. HTTPS Protocol |
FCS_HTTPS_EXT.1.2 | The application implement HTTPS using TLS. HTTPS Protocol |
FCS_HTTPS_EXT.1.3 | The application notify the user and not establish the connection or request application authorization to establish the connection if the peer certificate is deemed invalid. HTTPS Protocol |
FIA_X509_EXT.2.1 | The application use X.509v3 certificates as defined by RFC 5280 to support authentication for HTTPS , TLS. X.509 Certificate Authentication |
FCS_CKM.1.1(2) | The application shall generate symmetric cryptographic keys using a Random Bit Generator as specified in FCS_RBG_EXT.1 and specified cryptographic key sizes 128 bit or 256 bit. Cryptographic Symmetric Key Generation |
Information computed with MobSF.
Map computed by Pithus.
Information computed with MobSF.
Information computed with MobSF.
https://api-push.meizu.com/garcia/api/client/ https://api-push.in.meizu.com/garcia/api/client/ Defined in com/meizu/cloud/pushsdk/platform/api/PushAPI.java |
|
https://api-push.meizu.com/garcia/api/client/ https://api-push.in.meizu.com/garcia/api/client/ Defined in com/meizu/cloud/pushsdk/platform/api/PushAPI.java |
|
https://u.in.meizu.com https://upush.meizu.com Defined in com/meizu/update/b.java |
|
https://u.in.meizu.com https://upush.meizu.com Defined in com/meizu/update/b.java |
|
http://servicecut.meizu.com/interface/locate Defined in com/meizu/update/c/b/a.java |
|
https://uxip.meizu.com/api/v3/certificate Defined in com/meizu/statsapp/v3/lib/plugin/secure/HttpKeyMgr.java |
|
http://uxip.meizu.com/api/v3/event/ Defined in com/meizu/statsapp/v3/lib/plugin/vccoffline/RemoteEmitterWorker.java |
|
http://uxip.meizu.com/api/v3/event/ Defined in com/meizu/statsapp/v3/lib/plugin/emitter/local/LocalEmitterWorker.java |
|
http://uxip-config.meizu.com/api/v3/umid Defined in com/meizu/statsapp/v3/lib/plugin/sdk/UmidFetcher.java |
|
http://uxip-config.meizu.com/api/v3 http://uxip.meizu.com/api/v3/ http://uxip-config.meizu.com/api/v3/config/ http://uxip-res.meizu.com/resource/v3/config/ http://uxip-config.meizu.com/api/v3/umid http://uxip.meizu.com/api/v3/event/ Defined in com/meizu/statsapp/v3/lib/plugin/constants/UxipConstants.java |
|
http://uxip-config.meizu.com/api/v3 http://uxip.meizu.com/api/v3/ http://uxip-config.meizu.com/api/v3/config/ http://uxip-res.meizu.com/resource/v3/config/ http://uxip-config.meizu.com/api/v3/umid http://uxip.meizu.com/api/v3/event/ Defined in com/meizu/statsapp/v3/lib/plugin/constants/UxipConstants.java |
|
http://uxip-config.meizu.com/api/v3 http://uxip.meizu.com/api/v3/ http://uxip-config.meizu.com/api/v3/config/ http://uxip-res.meizu.com/resource/v3/config/ http://uxip-config.meizu.com/api/v3/umid http://uxip.meizu.com/api/v3/event/ Defined in com/meizu/statsapp/v3/lib/plugin/constants/UxipConstants.java |
|
http://uxip-config.meizu.com/api/v3 http://uxip.meizu.com/api/v3/ http://uxip-config.meizu.com/api/v3/config/ http://uxip-res.meizu.com/resource/v3/config/ http://uxip-config.meizu.com/api/v3/umid http://uxip.meizu.com/api/v3/event/ Defined in com/meizu/statsapp/v3/lib/plugin/constants/UxipConstants.java |
|
http://uxip-config.meizu.com/api/v3 http://uxip.meizu.com/api/v3/ http://uxip-config.meizu.com/api/v3/config/ http://uxip-res.meizu.com/resource/v3/config/ http://uxip-config.meizu.com/api/v3/umid http://uxip.meizu.com/api/v3/event/ Defined in com/meizu/statsapp/v3/lib/plugin/constants/UxipConstants.java |
|
http://uxip-config.meizu.com/api/v3 http://uxip.meizu.com/api/v3/ http://uxip-config.meizu.com/api/v3/config/ http://uxip-res.meizu.com/resource/v3/config/ http://uxip-config.meizu.com/api/v3/umid http://uxip.meizu.com/api/v3/event/ Defined in com/meizu/statsapp/v3/lib/plugin/constants/UxipConstants.java |
|
http://pfile-dl.flyme.cn/exchangerate/exchangerate_flyme5.json Defined in com/meizu/flyme/calculator/view/e.java |
|
http://pfile-dl.flyme.cn//exchangerate/insurancehousingfund.json http://pfile-dl.flyme.cn//exchangerate/lrhf.json Defined in com/meizu/flyme/calculator/util/b.java |
|
http://pfile-dl.flyme.cn//exchangerate/insurancehousingfund.json http://pfile-dl.flyme.cn//exchangerate/lrhf.json Defined in com/meizu/flyme/calculator/util/b.java |
|
http://pfile-dl.flyme.cn/exchangerate/exchangerate_flyme5.json Defined in com/meizu/flyme/calculator/service/RateService.java |
Information computed with MobSF.
Information computed with Quark-Engine.
Confidence:
|
Write HTTP input stream into a file |
Confidence:
|
Start another application from current application |
Confidence:
|
Load external class |
Confidence:
|
Query the current data network type |
Confidence:
|
Implicit intent(view a web page, make a phone call, etc.) |
Confidence:
|
Query the list of the installed packages |
Confidence:
|
Get absolute path of file and put it to JSON object |
Confidence:
|
Find a method from given class name, usually for reflection |
Confidence:
|
Connect to a URL and receive input stream from the server |
Confidence:
|
Method reflection |
Confidence:
|
Get the network operator name |
Confidence:
|
Load class from given class name |
Confidence:
|
Retrieve data from broadcast |
Confidence:
|
Read sensitive data(SMS, CALLLOG, etc) |
Confidence:
|
Open a file from given absolute path of the file |
Confidence:
|
Check if the given path is directory |
Confidence:
|
Implicit intent(view a web page, make a phone call, etc.) via setData |
Confidence:
|
Connect to a URL and get the response code |
Confidence:
|
Send notification |
Confidence:
|
Monitor the broadcast action events (BOOT_COMPLETED) |
Confidence:
|
Return dynamic information about the current Wi-Fi connection |
Confidence:
|
Get absolute path of the file and store in string |
Confidence:
|
Get last known location of the device |
Confidence:
|
Get calendar information |
Confidence:
|
Get the current WIFI information |
Confidence:
|
Get the current WiFi information and put it into JSON |
Confidence:
|
Get location of the device |
Confidence:
|
Query the IMEI number |
Confidence:
|
Check if the given file path exist |
Confidence:
|
Method reflection |
Confidence:
|
Query WiFi information and WiFi Mac Address |
Confidence:
|
Get the time of current location |
Confidence:
|
Get the current WiFi MAC address and put it into JSON |
Confidence:
|
Initialize class object dynamically |
Confidence:
|
Read the input stream from given URL |
Confidence:
|
Get the current WiFi MAC address |
Confidence:
|
Check the list of currently running applications |
Confidence:
|
Connect to a URL and set request method |
Confidence:
|
Connect to a URL and read data from it |
Confidence:
|
Read file and put it into a stream |
Confidence:
|
Write the IMEI number into a file |
Confidence:
|
Query the SIM card status |
Confidence:
|
Read file into a stream and put it into a JSON object |
Confidence:
|
Executes the specified string Linux command |
Confidence:
|
Get filename and put it to JSON object |
Confidence:
|
Get resource file from res/raw directory |
Confidence:
|
Get specific method from other Dex files |
Information computed with MobSF.
Information computed by Pithus.