VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load

File information
Safety rating:
Behavior list
Basic Information
MD5:7dbf812267dc61f539f317ed19aab0d2
Package names:com.ascendapps.cameratimestamp.pro
Minimum operating environment:Android 3.0.x
copyright:AntiLVL
Key behavior
Behavior description:探测 Virtual PC是否存在
details:N/A
Behavior description:隐藏指定窗口
details:[Window,Class] = [,#32770]
[Window,Class] = [HtmlWebFrame,AfxWnd100s]
[Window,Class] = [,Shell Embedding]
[Window,Class] = [,SysListView32]
[Window,Class] = [设置,Button]
[Window,Class] = [,ComboLBox]
[Window,Class] = [,Static]
[Window,Class] = [英雄设置,Static]
[Window,Class] = [天赋技能,Static]
[Window,Class] = [死亡喊话,Static]
[Window,Class] = [地图设置,Static]
[Window,Class] = [其他设置,Static]
[Window,Class] = [,Edit]
[Window,Class] = [显示设置,Static]
[Window,Class] = [用户信息,Static]
Behavior description:设置消息钩子
details:C:\WINDOWS\system32\DINPUT8.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.044362.exe_7zdump\辅助程序\cfgdll.dll
Behavior description:写权限映射文件
details:CiceroSharedMemDefaultS-*
\WINDOWS\system32\zh-cn\ieframe.dll.mui
422015MMRunning
Local\!PrivacIE!SharedMem!Counter
Local\UrlZonesSM_Administrator
d
DfRoot0003DBA01
DfRoot0003DC0A5
DfRoot0003DC546
DfRoot0003DD246
\WINDOWS\system32\zh-cn\vbscript.dll.mui
Local\C:_Documents and Settings_Administrator_IETldCache_index.dat_245760
MSCTF.MarshalInterface.FileMap.EDC..MJEJH
\WINDOWS\system32\zh-cn\mshtml.dll.mui
MSCTF.MarshalInterface.FileMap.EDC.B.BMLJH
Behavior description:设置特殊文件夹属性
details:C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
C:\Documents and Settings\Administrator\IETldCache
Behavior description:查询注册表_检测虚拟机相关
details:\REGISTRY\MACHINE\HARDWARE\DESCRIPTION\System\SystemBiosVersion
\REGISTRY\MACHINE\HARDWARE\DESCRIPTION\System\VideoBiosVersion
Behavior description:按名称获取主机地址
details:hi.vrbrothers.com
Process behavior
Behavior description:枚举进程
details:N/A
File behavior
Behavior description:创建可执行文件
details:C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.065135.exe_7zdump\辅助程序\cfgdll.dll
C:\Documents and Settings\Administrator\Application Data\mymacro\qdisp.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.072045.exe_7zdump\辅助程序\plugin\SYS.DLL
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.075500.exe_7zdump\辅助程序\plugin\COLOR.DLL
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.078973.exe_7zdump\辅助程序\plugin\WINDOW.DLL
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.082417.exe_7zdump\辅助程序\plugin\MSG.DLL
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.085896.exe_7zdump\辅助程序\plugin\WNDEX6.DLL
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.089348.exe_7zdump\辅助程序\plugin\MEMORY.DLL
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.092839.exe_7zdump\辅助程序\plugin\WEB.DLL
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.096299.exe_7zdump\辅助程序\plugin\FILE.DLL
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.099770.exe_7zdump\辅助程序\plugin\DAMA2QMPLUGIN.DLL
C:\Documents and Settings\Administrator\Application Data\qmacro\shield\SD001.dat
C:\Documents and Settings\Administrator\Application Data\qmacro\shield\SD002.dat
Behavior description:查找文件
details:FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512226.512404.exe_7zdump\辅助程序\plugin\*.dll
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512226.517574.exe_7zdump
FileName = C:\DOCUME~1
FileName = C:\DOCUME~1\ADMINI~1
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512226.549199.exe_7zdump\辅助程序
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512226.554432.exe_7zdump\辅助程序\plugin
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512226.559762.exe_7zdump\辅助程序\plugin\DAMA2QMPLUGIN.DLL
FileName = C:\Documents and Settings
FileName = C:\Documents and Settings\Administrator
FileName = C:\Documents and Settings\Administrator\Local Settings
FileName = C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Connections\Pbk\*.pbk
FileName = C:\WINDOWS\system32\Ras\*.pbk
Behavior description:写权限映射文件
details:CiceroSharedMemDefaultS-*
\WINDOWS\system32\zh-cn\ieframe.dll.mui
422015MMRunning
Local\!PrivacIE!SharedMem!Counter
Local\UrlZonesSM_Administrator
d
DfRoot0003DBA01
DfRoot0003DC0A5
DfRoot0003DC546
DfRoot0003DD246
\WINDOWS\system32\zh-cn\vbscript.dll.mui
Local\C:_Documents and Settings_Administrator_IETldCache_index.dat_245760
MSCTF.MarshalInterface.FileMap.EDC..MJEJH
\WINDOWS\system32\zh-cn\mshtml.dll.mui
MSCTF.MarshalInterface.FileMap.EDC.B.BMLJH
Behavior description:重命名文件
details:C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\adcon\mm\liveupdate8.dat.tmp ---> C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\adcon\mm\liveupdate8.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\ad-mymacro9.xml.tmp ---> C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\ad-mymacro9.xml
Behavior description:设置特殊文件夹属性
details:C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
C:\Documents and Settings\Administrator\IETldCache
Behavior description:修改文件内容
details:C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\ad-mymacro9.xml---> Offset = 0
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\adcon\mm\tmpad.xml---> Offset = 0
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.117056.exe_7zdump\辅助程序\ShieldModule.dat---> Offset = 12288
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\mac4.tmp---> Offset = 0
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\mac5.tmp.Qtmp---> Offset = 12288
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\plugin.zip---> Offset = 12288
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\mymacro.zip---> Offset = 0
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.134317.exe_7zdump\辅助程序\plugin\COLOR.ini---> Offset = 0
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.137807.exe_7zdump\辅助程序\plugin\COLOR.ini---> Offset = 35
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.141258.exe_7zdump\辅助程序\plugin\COLOR.ini---> Offset = 182
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.144754.exe_7zdump\辅助程序\plugin\COLOR.ini---> Offset = 279
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.148212.exe_7zdump\辅助程序\plugin\COLOR.ini---> Offset = 434
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.151702.exe_7zdump\辅助程序\plugin\COLOR.ini---> Offset = 499
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.155173.exe_7zdump\辅助程序\plugin\COLOR.ini---> Offset = 662
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.158659.exe_7zdump\辅助程序\plugin\COLOR.ini---> Offset = 759
Network behavior
Behavior description:联网打开网址
details:InternetOpenUrlA: http://hi.vrbrothers.com/xjl/mmcount.aspx?mm=00001012E2242FAFB244928BF66E23D553708F2A8FBB2B93D61A3B278318298CD3F5ADCE079C740B73B57612&randcode=00000EAB4128A14EBB37B988ABEDC0053D4E0A87038BE28DEC15EE3B330D2A2C272B1B1DD4094F5F3ABE7CBFB051CC37DE
InternetOpenUrlA: http://ad.vrbrothers.com/qmacro/ad-mymacro8-b.htm hInternet = 0x00000258
Behavior description:下载文件
details:URLDownloadToFileW: http://soft.anjian.com/V2014V2/Config/ad-mymacro.xml ---> C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\ad-mymacro9.xml.tmp
URLDownloadToFileW: http://down.vrbrothers.com/qmacro/up_mymacro/liveupdate8.dat ---> C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\adcon\mm\liveupdate8.dat.tmp
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\adcon\mm\liveupdate8.dat.tmp
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\ad-mymacro9.xml.tmp
Behavior description:连接指定站点
details:InternetConnectA: ServerName = soft.anjian.com, PORT = 80
InternetConnectA: ServerName = ad.vrbrothers.com, PORT = 80
InternetConnectA: ServerName = hope.betiy.cn, PORT = 80
Behavior description:建立到一个指定的套接字连接
details:127.0.0.1:1031
Behavior description:读取网络文件
details:hFile = 0x00000348, BytesToRead =4096, BytesRead = 4096.
hFile = 0x00000258, BytesToRead =4096, BytesRead = 4096.
hFile = 0x00000208, BytesToRead =4096, BytesRead = 4096.
Behavior description:打开HTTP请求
details:HttpOpenRequestA: soft.anjian.com:80/v2014v2/userexperience/softwareexperience.shtml?mymacro2014=2014.02.15042&mmid=0010bdfbf195046ed175ed71e46c2f29f65151a450281363ea6e9a1525ff55d147c6e56a0889bbec1f10127565d76228fdb4a7a85839356c182f380440ef91b5a6787b412d6ac53
HttpOpenRequestA: ad.vrbrothers.com:80/qmacro/ad-mymacro8-n.htm, hConnect = 0x00000374
HttpOpenRequestA: hope.betiy.cn:80/post/1d4ffd35_791e537, hConnect = 0x0000020c
HttpOpenRequestA: ad.vrbrothers.com:80/qmacro/ad-mymacro8-p.htm, hConnect = 0x00000278
HttpOpenRequestA: ad.vrbrothers.com:80/qmacro/ad-mymacro8-p.htm, hConnect = 0x000001dc
Behavior description:按名称获取主机地址
details:hi.vrbrothers.com
Registry behavior
Behavior description:修改注册表
details:\REGISTRY\MACHINE\SOFTWARE\Classes\QMDispatch.QMVBSRoutine\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{241D7F03-9232-4024-8373-149860BE27C0}\
\REGISTRY\MACHINE\SOFTWARE\Classes\QMDispatch.QMVBSRoutine\CLSID\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{241D7F03-9232-4024-8373-149860BE27C0}\ProgID\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{241D7F03-9232-4024-8373-149860BE27C0}\InProcServer32\
\REGISTRY\MACHINE\SOFTWARE\Classes\QMDispatch.QMRoutine\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{C07DB6A3-34FC-4084-BE2E-76BB9203B049}\
\REGISTRY\MACHINE\SOFTWARE\Classes\QMDispatch.QMRoutine\CLSID\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{C07DB6A3-34FC-4084-BE2E-76BB9203B049}\ProgID\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{C07DB6A3-34FC-4084-BE2E-76BB9203B049}\InProcServer32\
\REGISTRY\MACHINE\SOFTWARE\Classes\QMDispatch.QMLibrary\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{EBEB87A6-E151-4054-AB45-A6E094C5334B}\
\REGISTRY\MACHINE\SOFTWARE\Classes\QMDispatch.QMLibrary\CLSID\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{EBEB87A6-E151-4054-AB45-A6E094C5334B}\ProgID\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{EBEB87A6-E151-4054-AB45-A6E094C5334B}\InProcServer32\
Behavior description:删除注册表键值_IE连接设置
details:\REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer
\REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoConfigURL
Other behavior
Behavior description:探测 Virtual PC是否存在
details:N/A
Behavior description:创建互斥体
details:oleacc-msaa-loaded
CTF.LBES.MutexDefaultS-*
CTF.Compart.MutexDefaultS-*
CTF.Asm.MutexDefaultS-*
CTF.Layouts.MutexDefaultS-*
CTF.TMD.MutexDefaultS-*
CTF.TimListCache.FMPDefaultS-*MUTEX.DefaultS-*
Local\!PrivacIE!SharedMemory!Mutex
Local\ZonesCounterMutex
Local\ZoneAttributeCacheCounterMutex
Local\ZonesCacheCounterMutex
Local\ZonesLockedCacheCounterMutex
RasPbFile
Local\c:!documents and settings!administrator!ietldcache!
MSCTF.Shared.MUTEX.ELH
Behavior description:隐藏指定窗口
details:[Window,Class] = [,#32770]
[Window,Class] = [HtmlWebFrame,AfxWnd100s]
[Window,Class] = [,Shell Embedding]
[Window,Class] = [,SysListView32]
[Window,Class] = [设置,Button]
[Window,Class] = [,ComboLBox]
[Window,Class] = [,Static]
[Window,Class] = [英雄设置,Static]
[Window,Class] = [天赋技能,Static]
[Window,Class] = [死亡喊话,Static]
[Window,Class] = [地图设置,Static]
[Window,Class] = [其他设置,Static]
[Window,Class] = [,Edit]
[Window,Class] = [显示设置,Static]
[Window,Class] = [用户信息,Static]
Behavior description:设置消息钩子
details:C:\WINDOWS\system32\DINPUT8.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\1445512224.044362.exe_7zdump\辅助程序\cfgdll.dll
Behavior description:查找指定窗口
details:NtUserFindWindowEx: [Class,Window] = [MS_AutodialMonitor,]
NtUserFindWindowEx: [Class,Window] = [MS_WebCheckMonitor,]
NtUserFindWindowEx: [Class,Window] = [Shell_TrayWnd,]
NtUserFindWindowEx: [Class,Window] = [,PotPlayer]
NtUserFindWindowEx: [Class,Window] = [#32770,LOL酷魅-主窗口]
NtUserFindWindowEx: [Class,Window] = [CicLoaderWndClass,]
NtUserFindWindowEx: [Class,Window] = [OleMainThreadWndClass,]
NtUserFindWindowEx: [Class,Window] = [,PVP.net 客户端]
NtUserFindWindowEx: [Class,Window] = [,League of Legends (TM) Client]
NtUserFindWindowEx: [Class,Window] = [,英雄联盟登录程序]
Behavior description:窗口信息
details:Pid = 1316, Hwnd=0x60298, Text = 确定, ClassName = Button.
Pid = 1316, Hwnd=0x6029a, Text = 辅助已更新至【, ClassName = Static.
Pid = 1316, Hwnd=0x1031c, Text = 雾语工作室-酷魅辅助@Hope, ClassName = #32770.
Pid = 1316, Hwnd=0x10414, Text = 挂机设置, ClassName = Static.
Pid = 1316, Hwnd=0x1045c, Text = 退出界面, ClassName = Button.
Pid = 1316, Hwnd=0x10458, Text = 上次登陆, ClassName = ComboBox.
Pid = 1316, Hwnd=0x10450, Text = 上次登陆, ClassName = ComboBox.
Pid = 1316, Hwnd=0x1044a, Text = 大区, ClassName = Static.
Pid = 1316, Hwnd=0x10448, Text = QQ密码, ClassName = Static.
Pid = 1316, Hwnd=0x10446, Text = QQ号码, ClassName = Static.
Pid = 1316, Hwnd=0x10444, Text = 账号二, ClassName = Static.
Pid = 1316, Hwnd=0x10442, Text = 大区, ClassName = Static.
Pid = 1316, Hwnd=0x10440, Text = QQ密码, ClassName = Static.
Pid = 1316, Hwnd=0x1043e, Text = QQ号码, ClassName = Static.
Pid = 1316, Hwnd=0x1043c, Text = 账号三, ClassName = Static.
Behavior description:枚举窗口
details:N/A
Behavior description:直接操作物理设备
details:\??\PhysicalDrive0
Behavior description:查询注册表_检测虚拟机相关
details:\REGISTRY\MACHINE\HARDWARE\DESCRIPTION\System\SystemBiosVersion
\REGISTRY\MACHINE\HARDWARE\DESCRIPTION\System\VideoBiosVersion
Behavior description:打开图片文件
details:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\524background.bmp
\DOCUME~1\ADMINI~1\LOCALS~1\Temp\background.bmp
Dynamic list behavior
Behavior description:调用哈希算法
details:SHA
Behavior description:读取文件
details:path:unknown length:24
Behavior description:获取加密实例
details:[u'AES/CBC/PKCS5Padding']
Behavior description:读取系统设置
details:[u'android.app.ContextImpl$ApplicationContentResolver@41517a48', u'sound_effects_enabled']
Behavior description:窗口信息
details:{"text": "Welcome", "class": "android.widget.TextView"}
{"text": "Thank you for using this application. By using this application, you agree to the End User License Agreement.
If you have any questions or comments, please contact us at admin@ascendapps.net. ", "class": "android.widget.TextView"}
{"text": "Cancel", "class": "android.widget.Button"}
{"text": "OK", "class": "android.widget.Button"}
{"text": "TIMESTAMP", "class": "android.widget.TextView"}
{"text": "CAMERA ADD-ON", "class": "android.widget.TextView"}
{"text": "Timestamp Setup", "class": "android.widget.TextView"}
{"text": "About", "class": "android.widget.TextView"}
{"text": "Exit", "class": "android.widget.TextView"}
Behavior description:缓冲区读取一行数据
details:Thank you for using this application. By using this application, you agree to the <a href="http://ascendapps.net/eula">End User License Agreement</a>.<br><br>
If you have any questions or comments, please contact us at admin@ascendapps.net.
null
Behavior description:添加View
details:[u'com.android.internal.policy.impl.PhoneWindow$DecorView@4156d0b0', u'WM.LayoutParams{(0,0)(wrapxwrap) gr=#11 sim=#120 ty=2 fl=#1820002 pfl=0x8 fmt=-2 wanim=0x1030290}', u'android.view.CompatibilityInfoHolder@414afcb0']
[u'com.android.internal.policy.impl.PhoneWindow$DecorView@41560c60', u'WM.LayoutParams{(0,0)(fillxfill) sim=#100 ty=1 fl=#1810580 pfl=0x8 wanim=0x103028f}', u'android.view.CompatibilityInfoHolder@414afcb0']
[u'com.android.internal.policy.impl.PhoneWindow$DecorView@41599c80', u'WM.LayoutParams{(0,0)(wrapxwrap) gr=#11 sim=#120 ty=2 fl=#1820002 pfl=0x8 fmt=-2 wanim=0x1030290}', u'android.view.CompatibilityInfoHolder@414afcb0']
[u'com.android.internal.policy.impl.PhoneWindow$DecorView@414d5338', u'WM.LayoutParams{(0,0)(fillxfill) sim=#100 ty=1 fl=#1810100 pfl=0x8 wanim=0x103028f}', u'android.view.CompatibilityInfoHolder@414afcb0']
[u'android.widget.LinearLayout@414d6b20', u'WM.LayoutParams{(0,128)(wrapxwrap) gr=#51 ty=2005 fl=#98 fmt=-3 wanim=0x1030004}']
Behavior description:写入文件
details:path:/data/data/com.ascendapps.cameratimestamp.pro/shared_prefs/AscendAppsPrefs.xml length:150
path:/data/data/com.ascendapps.cameratimestamp.pro/shared_prefs/AscendAppsPrefs.xml length:261
path:/data/data/com.ascendapps.cameratimestamp.pro/shared_prefs/com.ascendapps.cameratimestamp.pro_preferences.xml length:121
Behavior description:Toast->makeText弹出提示
details:text:Camera TimeStamp Add-On 3.02 duration:0
Behavior description:激活Activity
details:{"FLAG":0,"COMPONENT_NAME":"ComponentInfo{com.ascendapps.cameratimestamp.pro\/com.ascendapps.cameratimestamp.pro.ProActivity}"}
Behavior description:初始化Intent
details:[u'android.app.ContextImpl@4152b1e0', u'class com.ascendapps.cameratimestamp.pro.ProActivity']
[u'android.os.Parcel@414ad210']
[u'android.os.Parcel@414ad210']
Activities
Activity nameTypes of
com.ascendapps.cameratimestamp.EULAActivityandroid.intent.action.MAIN
com.ascendapps.cameratimestamp.EULAActivityandroid.intent.category.LAUNCHER
Dangerous function
Function nameinformation
ContentResolver;->query读取联系人、短信等数据库
Permission list
License nameinformation
android.permission.READ_EXTERNAL_STORAGE读外部存储器(如:SD卡)
android.permission.WRITE_EXTERNAL_STORAGE写外部存储器(如:SD卡)
android.permission.INTERNET连接网络(2G或3G)
com.android.vending.CHECK_LICENSE
Service list
name
com.ascendapps.cameratimestamp.CameraService
File List
file name Check code
META-INF/MANIFEST.MF 0xe58bb4cf
META-INF/CERT.SF 0x25e56f9d
META-INF/CERT.RSA 0x519134bc
AndroidManifest.xml 0x1fa60dc2
assets/fonts/CaviarDreams.ttf 0x9794569a
assets/fonts/Futura-Book.ttf 0x4f08c251
assets/fonts/Raleway-Regular.ttf 0xb97dc75b
assets/fonts/old_stamper.ttf 0x7f29f2b
classes.dex 0xb820f1ab
res/drawable-hdpi-v4/checked.png 0xaea9bdd6
res/drawable-hdpi-v4/ic_action_add_directory.png 0xac7d68c
res/drawable-hdpi-v4/ic_action_camera.png 0x4918986a
res/drawable-hdpi-v4/ic_action_delete.png 0xf50f1ee2
res/drawable-hdpi-v4/ic_action_faq.png 0x85dcbed3
res/drawable-hdpi-v4/ic_action_gallery.png 0xfe2ecba0
res/drawable-hdpi-v4/ic_action_rate.png 0x2ebca168
res/drawable-hdpi-v4/ic_action_search.png 0x64275be8
res/drawable-hdpi-v4/ic_action_stamp.png 0x66aea4d4
res/drawable-hdpi-v4/ic_add_camera.png 0x34b771a1
res/drawable-hdpi-v4/ic_add_stamp.png 0x85fec87
res/drawable-hdpi-v4/ic_ascend_apps.png 0x277fe09a
res/drawable-hdpi-v4/ic_back.png 0x24664d0c
res/drawable-hdpi-v4/ic_camera.png 0x4918986a
res/drawable-hdpi-v4/ic_delete.png 0xf50f1ee2
res/drawable-hdpi-v4/ic_email.png 0xe9401d72
res/drawable-hdpi-v4/ic_exit.png 0xceb64b06
res/drawable-hdpi-v4/ic_extend.png 0xf777bd4d
res/drawable-hdpi-v4/ic_file.png 0x55617a54
res/drawable-hdpi-v4/ic_folder.png 0x42b6529
res/drawable-hdpi-v4/ic_folder_large.png 0x19bd4a71
res/drawable-hdpi-v4/ic_folder_white.png 0x42b6529
res/drawable-hdpi-v4/ic_google_plus.png 0x4e86d76c
res/drawable-hdpi-v4/ic_hide.png 0x1008c759
res/drawable-hdpi-v4/ic_language.png 0x65970bb6
res/drawable-hdpi-v4/ic_launcher.png 0x5fb5b4bf
res/drawable-hdpi-v4/ic_like.png 0x758b1e32
res/drawable-hdpi-v4/ic_menu.png 0x576458e
res/drawable-hdpi-v4/ic_next.png 0x50cf2d5
res/drawable-hdpi-v4/ic_next_blue.png 0xf0047f5f
res/drawable-hdpi-v4/ic_other_apps.png 0xac7d68c
res/drawable-hdpi-v4/ic_run_in_background.png 0xc008bb95
res/drawable-hdpi-v4/ic_settings.png 0x78dc5f0c
res/drawable-hdpi-v4/ic_stamp.png 0x66aea4d4
res/drawable-hdpi-v4/ic_star.png 0x7ca2d8f9
res/drawable-hdpi-v4/ic_up.png 0xfe7c6ed2
res/drawable-hdpi-v4/ic_upgrade.png 0x724b6b68
res/drawable-hdpi-v4/ic_zoom_in.png 0x7180d855
res/drawable-hdpi-v4/ic_zoom_out.png 0xc59292ce
res/drawable-hdpi-v4/icon.png 0x3c13576b
res/drawable-hdpi-v4/unchecked.png 0x3e059cf5
res/drawable-ldpi-v4/icon.png 0x8ef78580
res/drawable-mdpi-v4/checked.png 0xf2b5bd0a
res/drawable-mdpi-v4/ic_action_add_camera.png 0x66f6fd48
res/drawable-mdpi-v4/ic_action_add_directory.png 0xc68da448
res/drawable-mdpi-v4/ic_action_camera.png 0x27de64ab
res/drawable-mdpi-v4/ic_action_close.png 0x55ae85a2
res/drawable-mdpi-v4/ic_action_delete.png 0xd7564c5c
res/drawable-mdpi-v4/ic_action_edit.png 0x20406954
res/drawable-mdpi-v4/ic_action_faq.png 0xf7b6d39e
res/drawable-mdpi-v4/ic_action_gallery.png 0xbf84f8c2
res/drawable-mdpi-v4/ic_action_rate.png 0xe24a01d2
res/drawable-mdpi-v4/ic_action_save.png 0xa91db2eb
res/drawable-mdpi-v4/ic_action_search.png 0xb4091fdc
res/drawable-mdpi-v4/ic_action_stamp.png 0xba4472ff
res/drawable-mdpi-v4/ic_add_camera.png 0x5305c567
res/drawable-mdpi-v4/ic_add_stamp.png 0x9401219b
res/drawable-mdpi-v4/ic_ascend_apps.png 0x46738434
res/drawable-mdpi-v4/ic_back.png 0x63fad153
res/drawable-mdpi-v4/ic_camera.png 0x27de64ab
res/drawable-mdpi-v4/ic_delete.png 0xd7564c5c
res/drawable-mdpi-v4/ic_email.png 0xbaf3ed26
res/drawable-mdpi-v4/ic_exit.png 0x847c2ef1
res/drawable-mdpi-v4/ic_extend.png 0x8de646c8
res/drawable-mdpi-v4/ic_file.png 0xc48edb1e
res/drawable-mdpi-v4/ic_folder.png 0x355678d7
res/drawable-mdpi-v4/ic_folder_large.png 0xaaef5b0c
res/drawable-mdpi-v4/ic_folder_white.png 0x355678d7
res/drawable-mdpi-v4/ic_google_plus.png 0x2195c06b
res/drawable-mdpi-v4/ic_hide.png 0x9d7085ad
res/drawable-mdpi-v4/ic_language.png 0x5d398d16
res/drawable-mdpi-v4/ic_launcher.png 0xfa93e23a
res/drawable-mdpi-v4/ic_like.png 0x3e3523ac
res/drawable-mdpi-v4/ic_menu.png 0x7e3085a2
res/drawable-mdpi-v4/ic_next.png 0x101d22eb
res/drawable-mdpi-v4/ic_next_blue.png 0xcd27f13f
res/drawable-mdpi-v4/ic_next_blue_black.png 0xc662c063
res/drawable-mdpi-v4/ic_other_apps.png 0xc68da448
res/drawable-mdpi-v4/ic_run_in_background.png 0xd7957a62
res/drawable-mdpi-v4/ic_settings.png 0xdb9ff2e1
res/drawable-mdpi-v4/ic_stamp.png 0xba4472ff
res/drawable-mdpi-v4/ic_star.png 0xae36cff0
res/drawable-mdpi-v4/ic_up.png 0x3b0d3610
res/drawable-mdpi-v4/ic_upgrade.png 0x499dc440
res/drawable-mdpi-v4/ic_zoom_in.png 0x9996cb71
res/drawable-mdpi-v4/ic_zoom_out.png 0xc60a3854
res/drawable-mdpi-v4/icon.png 0x99a4f90b
res/drawable-mdpi-v4/unchecked.png 0x3c141244
res/drawable-nodpi-v4/grey.png 0x870a4be3
res/drawable-nodpi-v4/ic_gps_1.png 0x6bc4680e
res/drawable-nodpi-v4/ic_gps_2.png 0x777b0cdb
res/drawable-nodpi-v4/ic_photo_album.png 0xecb44877
res/drawable-nodpi-v4/ic_search.png 0xcd6ed050
res/drawable-nodpi-v4/timestamp_logo.png 0xc5fe0f8f
res/drawable-xhdpi-v4/checked.png 0x26fa9cef
res/drawable-xhdpi-v4/ic_action_add_directory.png 0xd1db65db
res/drawable-xhdpi-v4/ic_action_camera.png 0xa7483f79
res/drawable-xhdpi-v4/ic_action_close.png 0xac90c1ac
res/drawable-xhdpi-v4/ic_action_delete.png 0xe43076e
res/drawable-xhdpi-v4/ic_action_edit.png 0x1bf8935f
res/drawable-xhdpi-v4/ic_action_faq.png 0xa059457e
res/drawable-xhdpi-v4/ic_action_gallery.png 0xf31204e
res/drawable-xhdpi-v4/ic_action_rate.png 0x13e42162
res/drawable-xhdpi-v4/ic_action_save.png 0x4299f8ff
res/drawable-xhdpi-v4/ic_action_search.png 0x3294aee3
res/drawable-xhdpi-v4/ic_action_stamp.png 0x100340c7
res/drawable-xhdpi-v4/ic_add_camera.png 0x7499ccb2
res/drawable-xhdpi-v4/ic_add_stamp.png 0xb8b58247
res/drawable-xhdpi-v4/ic_ascend_apps.png 0x703d6d01
res/drawable-xhdpi-v4/ic_back.png 0xcd514296
res/drawable-xhdpi-v4/ic_camera.png 0xa7483f79
res/drawable-xhdpi-v4/ic_delete.png 0xe43076e
res/drawable-xhdpi-v4/ic_email.png 0x252fefc3
res/drawable-xhdpi-v4/ic_exit.png 0x1028c9f1
res/drawable-xhdpi-v4/ic_extend.png 0xa4fad25
res/drawable-xhdpi-v4/ic_file.png 0xca842eed
res/drawable-xhdpi-v4/ic_folder.png 0x1c77b977
res/drawable-xhdpi-v4/ic_folder_large.png 0xf40f8f0
res/drawable-xhdpi-v4/ic_folder_white.png 0x1c77b977
res/drawable-xhdpi-v4/ic_google_plus.png 0xe11d50d5
res/drawable-xhdpi-v4/ic_hide.png 0x5b222776
res/drawable-xhdpi-v4/ic_language.png 0x67ae9e1a
res/drawable-xhdpi-v4/ic_launcher.png 0xd6dfcdce
res/drawable-xhdpi-v4/ic_like.png 0x32ed2ccc
res/drawable-xhdpi-v4/ic_menu.png 0xcbeaf1fa
res/drawable-xhdpi-v4/ic_next.png 0xcbc6431e
res/drawable-xhdpi-v4/ic_next_blue.png 0xb959f415
res/drawable-xhdpi-v4/ic_other_apps.png 0xd1db65db
res/drawable-xhdpi-v4/ic_run_in_background.png 0xb21a0b60
res/drawable-xhdpi-v4/ic_settings.png 0x1fe2dc3e
res/drawable-xhdpi-v4/ic_stamp.png 0x100340c7
res/drawable-xhdpi-v4/ic_star.png 0x6df164ab
res/drawable-xhdpi-v4/ic_up.png 0x1760f2c6
res/drawable-xhdpi-v4/ic_upgrade.png 0x72d32ca9
res/drawable-xhdpi-v4/ic_zoom_in.png 0x8868ba02
res/drawable-xhdpi-v4/ic_zoom_out.png 0x876f2e55
res/drawable-xhdpi-v4/unchecked.png 0x5f6f995b
res/drawable-xxhdpi-v4/ic_launcher.png 0xc9c4a39f
res/drawable/custom_checkbox.xml 0xf030457f
res/drawable/divider_gradient.xml 0x76f4771
res/drawable/divider_grey.xml 0xe5dd4771
res/drawable/divider_menu.xml 0x611556ec
res/drawable/loading_animation.xml 0x2f8b5d31
res/drawable/pressed.xml 0x112d8987
res/drawable/selector_with_transparency.xml 0x9f6db5b5
res/drawable/transparent.xml 0x938485d3
res/layout-land/dialog_color_picker.xml 0xe1219145
res/layout/activity_about.xml 0xef1e4789
res/layout/activity_albums.xml 0xbe5a9513
res/layout/activity_camera_app_detail.xml 0xc56d1664
res/layout/activity_camera_menu.xml 0x23d5cb26
res/layout/activity_cameras.xml 0xf9c5c171
res/layout/activity_comparison.xml 0xd40298cb
res/layout/activity_eula.xml 0x62f6a90e
res/layout/activity_faq.xml 0xd5073f3c
res/layout/activity_main.xml 0xed06b561
res/layout/activity_select_file.xml 0x2a5d82ae
res/layout/activity_select_folder.xml 0x1ae3b7ff
res/layout/activity_select_photo.xml 0xd04568d1
res/layout/add_directory.xml 0xf9ca1b8a
res/layout/add_timestamp_progress.xml 0x243fe22
res/layout/album_grid.xml 0x4740c23e
res/layout/camera_app_item.xml 0xefcf8763
res/layout/comparison_item.xml 0xd7d906ae
res/layout/crashreport.xml 0x917d5047
res/layout/custom_title_bar.xml 0xee0bd153
res/layout/date_time_picker.xml 0x6a61c6f4
res/layout/dialog_color_picker.xml 0xbc7872c3
res/layout/do_not_show_again.xml 0xdf52c964
res/layout/folder_item.xml 0xb995c3f4
res/layout/gallery_item.xml 0xf59d141a
res/layout/gps_help.xml 0x9f0d98b4
res/layout/gps_load_view.xml 0x4174698
res/layout/language_chooser.xml 0xb689b71
res/layout/manul_timestamp_options.xml 0x515e79b5
res/layout/menu_item.xml 0x9ea565e
res/layout/menu_item2.xml 0x45ce688
res/layout/menu_list.xml 0xe2f5a417
res/layout/progress_dialog.xml 0x81b622ec
res/layout/saved_note_item.xml 0xf7242721
res/layout/text_border.xml 0xade20143
res/layout/text_size_preference.xml 0x71b2f12e
res/layout/three_buttons.xml 0x84062511
res/layout/three_buttons_exit.xml 0x96889051
res/layout/title_bar.xml 0x1818d91f
res/layout/wait.xml 0x37216492
res/layout/wait_dialog.xml 0x63ae2da
res/raw-es/eula.txt 0x5e79afd3
res/raw-es/eula2.txt 0xf57c4473
res/raw-es/store_listing.txt 0x558189fb
res/raw-es/whatsnew.txt 0x108eab54
res/raw-ja/eula.txt 0x3b3abae4
res/raw-ja/eula2.txt 0x96eaf335
res/raw-ja/store_listing.txt 0x62920224
res/raw-ja/whatsnew.txt 0x1d4b4519
res/raw-ko/eula.txt 0x8fe2d37b
res/raw-ko/eula2.txt 0xa039f72
res/raw-ko/store_listing.txt 0x7fd3e349
res/raw-ko/whatsnew.txt 0x61f07805
res/raw-pt/eula.txt 0x1d214c1d
res/raw-pt/eula2.txt 0x72aedea4
res/raw-zh-CN/eula.txt 0x740068d4
res/raw-zh-CN/eula2.txt 0x8d9dd37e
res/raw-zh-CN/store_listing.txt 0x6e7013b4
res/raw-zh-CN/whatsnew.txt 0xb5fc2a4a
res/raw-zh-TW/eula.txt 0xaf1651fb
res/raw-zh-TW/eula2.txt 0x632eafb
res/raw-zh-TW/store_listing.txt 0x5dd26110
res/raw-zh-TW/whatsnew.txt 0x9817d233
res/raw/eula.txt 0x9608985a
res/raw/eula2.txt 0xa6b807e
res/raw/store_listing.txt 0xf32421e9
res/raw/whatsnew.txt 0x5ff8b9a6
res/xml/settings.xml 0x5bd2f7a8
resources.arsc 0xdab45fe1
Run screenshot
VirSCAN

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
中国反网络病毒联盟
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号