0/64
Threat
Analyzed on 2021-03-01T12:40:23.655251
MD5 | 2368e0defcc2951b9defea2ca11dd098 | |
SHA1 | 5aa6021e60bc34362dd6bb43a48a0c9fff5784c2 | |
SHA256 | f5b429800603ce5bfb2a4247152a6dc9d0963a0e23cfd36aaa0229a6a04171df | |
Size | 19.43MB |
Information computed with APKiD.
/tmp/tmp4827hu0y!classes.dex | |
yara_issue |
|
anti_vm |
|
compiler |
|
/tmp/tmp4827hu0y!classes2.dex | |
yara_issue |
|
anti_vm |
|
compiler |
|
Information computed with AndroGuard and Pithus.
Information computed with AndroGuard.
Information computed with MobSF.
Findings | Files |
---|---|
Certificate/Key files hardcoded inside the app. |
SEC-INF/buildConfirm.crt |
Information computed with MobSF.
High | Activity (com.samsung.android.gallery.app.activity.external.CropImageActivity) is not Protected.An intent-filter exists. An Activity is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Activity is explicitly exported. |
High | Activity-Alias (com.sec.android.gallery3d.app.CropImage) is not Protected. [android:exported=true] An Activity-Alias is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. |
High | Activity (com.samsung.android.gallery.app.activity.external.GalleryExternalActivity) is not Protected.An intent-filter exists. An Activity is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Activity is explicitly exported. |
High | Activity-Alias (com.sec.android.gallery3d.app.Gallery) is not Protected. [android:exported=true] An Activity-Alias is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. |
High | Activity-Alias (com.sec.android.gallery3d.app.GalleryActivity) is not Protected.An intent-filter exists. An Activity-Alias is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Activity-Alias is explicitly exported. |
High | Activity-Alias (com.sec.android.gallery3d.app.GalleryOpaqueActivity) is not Protected.An intent-filter exists. An Activity-Alias is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Activity-Alias is explicitly exported. |
High | Activity (com.samsung.android.gallery.app.activity.UsbAttachActivity) is not Protected.An intent-filter exists. An Activity is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Activity is explicitly exported. |
High | Activity (com.samsung.android.gallery.app.activity.external.AppPermissionActivity) is not Protected.An intent-filter exists. An Activity is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Activity is explicitly exported. |
High | Broadcast Receiver (com.samsung.android.gallery.app.receiver.SharedAlbumNotificationReceiver) is Protected by a permission, but the protection level of the permission should be checked.Permission: com.samsung.android.mobileservice.permission.RECEIVE_SEMS_BROADCAST [android:exported=true] A Broadcast Receiver is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. It is protected by a permission which is not defined in the analysed application. As a result, the protection level of the permission should be checked where it is defined. If it is set to normal or dangerous, a malicious application can request and obtain the permission and interact with the component. If it is set to signature, only applications signed with the same certificate can obtain the permission. |
High | Broadcast Receiver (com.samsung.android.gallery.app.receiver.TrashUpdateReceiver) is not Protected.An intent-filter exists. A Broadcast Receiver is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Broadcast Receiver is explicitly exported. |
High | Broadcast Receiver (com.samsung.android.gallery.app.receiver.BackupAndRestoreReceiver) is Protected by a permission, but the protection level of the permission should be checked.Permission: com.wssnps.permission.COM_WSSNPS [android:exported=true] A Broadcast Receiver is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. It is protected by a permission which is not defined in the analysed application. As a result, the protection level of the permission should be checked where it is defined. If it is set to normal or dangerous, a malicious application can request and obtain the permission and interact with the component. If it is set to signature, only applications signed with the same certificate can obtain the permission. |
High | Broadcast Receiver (com.samsung.android.gallery.app.receiver.RetailModeReceiver) is not Protected.An intent-filter exists. A Broadcast Receiver is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Broadcast Receiver is explicitly exported. |
High | Broadcast Receiver (com.samsung.android.gallery.app.receiver.SmartSwitchReceiver) is not Protected.An intent-filter exists. A Broadcast Receiver is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Broadcast Receiver is explicitly exported. |
High | Content Provider (com.samsung.android.gallery.app.provider.LocalProvider) is not Protected. [android:exported=true] A Content Provider is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. |
High | Content Provider (com.samsung.android.gallery.app.provider.LocalProvider2) is not Protected. [android:exported=true] A Content Provider is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. |
High | Content Provider (com.samsung.android.gallery.app.provider.GallerySearchProvider) is not Protected. [android:exported=true] A Content Provider is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. |
High | Activity (com.samsung.android.gallery.settings.activity.SettingActivity) is not Protected.An intent-filter exists. An Activity is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Activity is explicitly exported. |
High | Content Provider (com.samsung.android.gallery.settings.provider.SettingSearchIndexablesProvider) is Protected by a permission, but the protection level of the permission should be checked.Permission: android.permission.READ_SEARCH_INDEXABLES [android:exported=true] A Content Provider is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. It is protected by a permission which is not defined in the analysed application. As a result, the protection level of the permission should be checked where it is defined. If it is set to normal or dangerous, a malicious application can request and obtain the permission and interact with the component. If it is set to signature, only applications signed with the same certificate can obtain the permission. |
High | Activity (com.samsung.android.gallery.image360.activity.Image360Activity) is not Protected. [android:exported=true] An Activity is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. |
High | Activity (com.samsung.android.gallery.bixby.activity.GalleryBixbyActivity) is not Protected.An intent-filter exists. An Activity is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Activity is explicitly exported. |
High | Broadcast Receiver (com.samsung.android.gallery.bixby.bixbycard.GalleryCardProvider) is not Protected.An intent-filter exists. A Broadcast Receiver is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Broadcast Receiver is explicitly exported. |
High | Content Provider (com.sec.android.diagmonagent.log.provider.DiagMonProvider) is Protected by a permission, but the protection level of the permission should be checked.Permission: com.sec.android.diagmonagent.permission.PROVIDER [android:exported=true] A Content Provider is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. It is protected by a permission which is not defined in the analysed application. As a result, the protection level of the permission should be checked where it is defined. If it is set to normal or dangerous, a malicious application can request and obtain the permission and interact with the component. If it is set to signature, only applications signed with the same certificate can obtain the permission. |
High | Service (com.samsung.android.gallery.module.idleworker.IdleWorker) is Protected by a permission, but the protection level of the permission should be checked.Permission: android.permission.BIND_JOB_SERVICE [android:exported=true] A Service is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. It is protected by a permission which is not defined in the analysed application. As a result, the protection level of the permission should be checked where it is defined. If it is set to normal or dangerous, a malicious application can request and obtain the permission and interact with the component. If it is set to signature, only applications signed with the same certificate can obtain the permission. |
High | Service (com.samsung.android.gallery.gmp.location.LocationService) is Protected by a permission, but the protection level of the permission should be checked.Permission: android.permission.BIND_JOB_SERVICE [android:exported=true] A Service is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. It is protected by a permission which is not defined in the analysed application. As a result, the protection level of the permission should be checked where it is defined. If it is set to normal or dangerous, a malicious application can request and obtain the permission and interact with the component. If it is set to signature, only applications signed with the same certificate can obtain the permission. |
High | Service (com.samsung.android.gallery.gmp.mediasync.DataSyncJobService) is Protected by a permission, but the protection level of the permission should be checked.Permission: android.permission.BIND_JOB_SERVICE [android:exported=true] A Service is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. It is protected by a permission which is not defined in the analysed application. As a result, the protection level of the permission should be checked where it is defined. If it is set to normal or dangerous, a malicious application can request and obtain the permission and interact with the component. If it is set to signature, only applications signed with the same certificate can obtain the permission. |
High | Broadcast Receiver (com.samsung.android.gallery.gmp.location.LocationWriteReceiver) is not Protected.An intent-filter exists. A Broadcast Receiver is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Broadcast Receiver is explicitly exported. |
High | Broadcast Receiver (com.samsung.android.gallery.gmp.mediasync.GmpBroadcastReceiver) is not Protected.An intent-filter exists. A Broadcast Receiver is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. The presence of intent-filter indicates that the Broadcast Receiver is explicitly exported. |
High | Content Provider (com.samsung.android.sdk.bixby2.provider.CapsuleProvider) is not Protected. [android:exported=true] A Content Provider is found to be shared with other apps on the device therefore leaving it accessible to any other application on the device. |
Medium | High Intent Priority (500)[android:priority] By setting an intent priority higher than another intent, the app effectively overrides other requests. |
Information computed with MobSF.
com.sec.android.gallery3d.app.GalleryActivity |
Schemes: http:// https:// content:// file:// Mime types: image/* application/vnd.google.panorama360+jpg vnd.android.cursor.dir/image |
com.samsung.android.gallery.bixby.activity.GalleryBixbyActivity |
Hosts: com.sec.android.gallery3d Schemes: applink:// |
Information computed with AndroGuard.
|
Information computed with AndroGuard.
|
Information computed with AndroGuard.
|
Information computed with AndroGuard.
|
Score | 0/64 |
Report | https://www.virustotal.com/gui/file/f5b429800603ce5bfb2a4247152a6dc9d0963a0e23cfd36aaa0229a6a04171df/detection |
Information computed with MobSF.
FCS_RBG_EXT.1.1 | The application invoke platform-provided DRBG functionality for its cryptographic operations. Random Bit Generation Services |
FCS_STO_EXT.1.1 | The application does not store any credentials to non-volatile memory. Storage of Credentials |
FCS_CKM_EXT.1.1 | The application generate no asymmetric cryptographic keys. Cryptographic Key Generation Services |
FDP_DEC_EXT.1.1 | The application has access to ['bluetooth', 'network connectivity', 'NFC', 'location', 'USB']. Access to Platform Resources |
FDP_DEC_EXT.1.2 | The application has access to ['address book']. Access to Platform Resources |
FDP_NET_EXT.1.1 | The application has user/application initiated network communications. Network Communications |
FDP_DAR_EXT.1.1 | The application implement functionality to encrypt sensitive data in non-volatile memory. Encryption Of Sensitive Application Data |
FMT_MEC_EXT.1.1 | The application invoke the mechanisms recommended by the platform vendor for storing and setting configuration options. Supported Configuration Mechanism |
FTP_DIT_EXT.1.1 | The application does encrypt some transmitted data with HTTPS/TLS/SSH between itself and another trusted IT product. Protection of Data in Transit |
FCS_RBG_EXT.2.1 FCS_RBG_EXT.2.2 |
The application perform all deterministic random bit generation (DRBG) services in accordance with NIST Special Publication 800-90A using Hash_DRBG. The deterministic RBG is seeded by an entropy source that accumulates entropy from a platform-based DRBG and a software-based noise source, with a minimum of 256 bits of entropy at least equal to the greatest security strength (according to NIST SP 800-57) of the keys and hashes that it will generate. Random Bit Generation from Application |
FCS_CKM.1.1(3) FCS_CKM.1.2(3) |
A password/passphrase shall perform [Password-based Key Derivation Functions] in accordance with a specified cryptographic algorithm.. Password Conditioning |
FCS_COP.1.1(1) | The application perform encryption/decryption in accordance with a specified cryptographic algorithm AES-CBC (as defined in NIST SP 800-38A) mode or AES-GCM (as defined in NIST SP 800-38D) and cryptographic key sizes 256-bit/128-bit. Cryptographic Operation - Encryption/Decryption |
FCS_COP.1.1(2) | The application perform cryptographic hashing services not in accordance with FCS_COP.1.1(2) and uses the cryptographic algorithm RC2/RC4/MD4/MD5. Cryptographic Operation - Hashing |
FCS_HTTPS_EXT.1.1 | The application implement the HTTPS protocol that complies with RFC 2818. HTTPS Protocol |
FCS_HTTPS_EXT.1.2 | The application implement HTTPS using TLS. HTTPS Protocol |
FCS_HTTPS_EXT.1.3 | The application notify the user and not establish the connection or request application authorization to establish the connection if the peer certificate is deemed invalid. HTTPS Protocol |
FIA_X509_EXT.2.1 | The application use X.509v3 certificates as defined by RFC 5280 to support authentication for HTTPS , TLS. X.509 Certificate Authentication |
FPT_TUD_EXT.2.1 | The application shall be distributed using the format of the platform-supported package manager. Integrity for Installation and Update |
Information computed with MobSF.
Map computed by Pithus.
Information computed with MobSF.
Information computed with MobSF.
http://tm.amap.com http://wprd0%d.is.autonavi.com http://webrd0%d.is.autonavi.com http://grid.amap.com/grid/%d/%d/%d?ds= http://mst0%d.is.autonavi.com Defined in com/amap/api/mapcore2d/ax.java |
|
http://restapi.amap.com Defined in com/amap/api/mapcore2d/cy.java |
|
https://restapi.amap.com/v3/iasdkauth http://restapi.amap.com/v3/iasdkauth Defined in com/amap/api/mapcore2d/cr.java |
|
http://apilocate.amap.com/mobile/binary Defined in com/amap/api/mapcore2d/gu.java |
|
https://adiu.amap.com/ws/device/adius Defined in com/amap/api/mapcore2d/eq.java |
|
https://stg-api.di.atlas.samsung.com https://regi.di.atlas.samsung.com https://dc.di.atlas.samsung.com Defined in com/samsung/context/sdk/samsunganalytics/internal/connection/Domain.java |
|
data://app_context Defined in com/samsung/android/gallery/bixby/bixby/handler/SearchInfoActionHandler.java |
|
data://app_context Defined in com/samsung/android/gallery/bixby/bixby/handler/TrashInfoActionHandler.java |
|
data://app_context Defined in com/samsung/android/gallery/bixby/bixby/handler/MoveToGroupInfoActionHandler.java |
|
data://app_context Defined in com/samsung/android/gallery/bixby/bixby/handler/MoveToAlbumInfoActionHandler.java |
|
data://app_context data://bixby_mediaItem Defined in com/samsung/android/gallery/bixby/bixby/handler/ReminderActionHandler.java |
|
data://app_context data://bixby_mediaItem Defined in com/samsung/android/gallery/bixby/bixby/handler/DeleteActionHandler.java |
|
data:androidx.lifecycle:lifecycle-livedata:2.2.0 Defined in com/samsung/android/gallery/module/exception/ExceptionHandler.java |
|
data://badge/stories Defined in com/samsung/android/gallery/module/badge/BadgeManager.java |
|
data://badge/stories Defined in com/samsung/android/gallery/module/badge/$$Lambda$BadgeManager$irn_v8A9QyJJKbcyaOsmaKJMgoU.java |
|
http://ns.google.com/photos/1.0/panorama/ http://ns.adobe.com/xap/1.0/ Defined in com/samsung/android/gallery/module/media/XmpDecoder.java |
|
http://ns.google.com/photos/1.0/panorama/ Defined in com/samsung/android/gallery/module/media/XmpUtils.java |
|
data://app_context Defined in com/samsung/android/gallery/module/publisher/ListDataPublisher.java |
|
data://badge/all data://badge/notifications data://badge/stories data://badge/sharings Defined in com/samsung/android/gallery/module/publisher/BadgeDataPublisher.java |
|
data://app_context data://user/recommendation/SuggestionKeyword data://user/recommendation/History data://user/category/PartialCategoryReady data://launch_intent data://user/AutoComplete Defined in com/samsung/android/gallery/module/publisher/SearchDataPublisher.java |
|
data://app_context data://bitmap/viewer/# data://bitmap/viewer/ Defined in com/samsung/android/gallery/module/publisher/BitmapDataPublisher.java |
|
data://user/Beam Defined in com/samsung/android/gallery/module/publisher/BeamHandler.java |
|
data://app_context Defined in com/samsung/android/gallery/module/publisher/DataChangeEventPublisher.java |
|
data://remote/updateWindowMode Defined in com/samsung/android/gallery/module/remote/RemoteUtil.java |
|
data://user/memoryContentBitmap Defined in com/samsung/android/gallery/module/service/support/MemoryServiceHelper.java |
|
data://user/storyUpdated Defined in com/samsung/android/gallery/module/story/StoryHelper.java |
|
data://bursts/ Defined in com/samsung/android/gallery/module/tag/MyTagUpdater.java |
|
https://play.google.com/store/apps/details?id=com.microsoft.skydrive Defined in com/samsung/android/gallery/module/onedrive/OneDriveManager.java |
|
data://user/recommendation/DynamicSuggestionKeyword Defined in com/samsung/android/gallery/module/search/recommendation/SCSQuerySuggester.java |
|
data://user/recommendation/DynamicSuggestionKeyword Defined in com/samsung/android/gallery/module/search/recommendation/BixbyQuerySuggester.java |
|
data://launch_intent Defined in com/samsung/android/gallery/module/album/ShortcutHelper.java |
|
data://running_service Defined in com/samsung/android/gallery/module/utils/ProgressServiceUtil.java |
|
data://FoldStateManager data://activity data://app_context Defined in com/samsung/android/gallery/module/utils/FoldStateManager.java |
|
data://launch_intent data://launch_mode_type Defined in com/samsung/android/gallery/module/utils/PickerUtil.java |
|
data://user/dialog/AppRating Defined in com/samsung/android/gallery/module/utils/AppRatingHelper.java |
|
data://app_context data://activity data://bitmap/viewer/ data://mediaItem/ data://shrink_active data://shared_original_bitmap data://viewer_app_transition_callback Defined in com/samsung/android/gallery/module/utils/BlackboardUtils.java |
|
data://user/fromMtpViewer data://user/dialog/SimpleSpinner Defined in com/samsung/android/gallery/module/data/MtpMediaItemLoader.java |
|
data://bitmap/viewer/ Defined in com/samsung/android/gallery/module/data/MediaItemUtil.java |
|
data://share_data_list_for_android_beam Defined in com/samsung/android/gallery/module/beam/AndroidBeamProvider.java |
|
data://user/selected data:// Defined in com/samsung/android/gallery/support/blackboard/key/DataKey.java |
|
data:// Defined in com/samsung/android/gallery/support/blackboard/key/CommandKey.java |
|
https://vas.samsungapps.com/stub/stubUpdateCheck.as Defined in com/samsung/android/gallery/support/utils/MarketHelper.java |
|
data://user/popoverInfo data://user/shareViaAnchorPos Defined in com/samsung/android/gallery/widget/popover/PopoverHelper.java |
|
data://app_bar_invisible data://shared_original_bitmap data://shrink_active Defined in com/samsung/android/gallery/widget/listview/PinchShrinkAnimationHandler.java |
|
data://bottomtab/focus Defined in com/samsung/android/gallery/widget/listview/GalleryPinchView.java |
|
data://dragging_selection data://key_combination_ctrl data://virtual_ctrl_pressed_on_dex_live data://key_combination_shift Defined in com/samsung/android/gallery/widget/listview/GalleryListAdapter.java |
|
data://last_selected_view_position_on_motion_event_down Defined in com/samsung/android/gallery/widget/listview/GalleryListView.java |
|
data://user/recommendation/DynamicSuggestionKeyword Defined in com/samsung/android/gallery/widget/toolbar/SearchToolbarPresenter.java |
|
data://shared_original_bitmap Defined in com/samsung/android/gallery/widget/abstraction/TransitionInfo.java |
|
data://user/dialog/GDPRLocation https://foursquare.com/legal/privacy Defined in com/samsung/android/gallery/widget/dialog/PlaceGdprDialog.java |
|
http://cache.amap.com/h5/h5/publish/238/index.html? https://foursquare.com/legal/privacy data://user/dialog/GDPRLocation Defined in com/samsung/android/gallery/widget/dialog/ChinaGdprDialog.java |
|
data://album_move Defined in com/samsun |