Loading Joe Sandbox Report ...

Edit tour

Android Analysis Report
the-planet-app.apk

Overview

General Information

Sample Name:the-planet-app.apk
Analysis ID:791292
MD5:3a894374fae47123d29297c7baaf1262
SHA1:54fcd667721de082b468213917de89fd5ef4ef66
SHA256:e4a5070782f53f6581c1ce1fdce84930c98138d5b690241b6e4ab87b5b1fac45
Infos:

Detection

Score:60
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

Tries to detect the analysis device (e.g. the Android emulator)
Access the class loader (often done to load a new code)
Uses command line tools to install new APKs
Removes its application launcher (likely to stay hidden)
Tries to detect Android x86
Executes logcat command
Checks if a SIM card is installed
Queries the SIM provider numeric MCC+MNC (mobile country code + mobile network code)
Queries list of running processes/tasks
Queries media storage location field
Starts/registers a service/receiver on phone boot (autostart)
Queries the SIM provider name (SPN - Service Provider Name)
Obfuscates method names
Installs a new wake lock (to get activate on phone screen on)
Found suspicious command strings (may be related to BOT commands)
Checks an internet connection is available
Queries list of installed packages
Reads logcat
Requests potentially dangerous permissions
HTTP GET or POST without a user agent
Requests root access
Checks if phone is rooted (checks for test-keys build tags)
Potential date aware sample found
Has permission to take photos
Queries the phones location (GPS)
Opens an internet connection
Queries the network operator name
Checks if debugger is running
Has permission to install other packages
Has permissions to create, read or change account settings (inlcuding account password settings)
Lists and deletes files in the same context
Queries a list of installed applications
Requests permissions only permitted to signed APKs or APKs which are within the system image
Queries the network operator ISO country code
Detected TCP or UDP traffic on non-standard ports
Has functionality to send UDP packets
Has functionalty to add an overlay to other apps
Queries stored mail and application accounts (e.g. Gmail or Whatsup)
Accesses /proc
Queries the SIM provider ISO country code
Accesses android OS build fields
Executes native commands
Installs an application shortcut on the screen
Performs DNS lookups (Java API)
Queries the network operator numeric MCC+MNC (mobile country code + mobile network code)
Queries several sensitive phone informations
Checks CPU details
Queries the unique operating system id (ANDROID_ID)
Sets an intent to the APK data type (used to install other APKs)
Has permission to execute code after phone reboot
Uses reflection

Classification

No yara matches
No Snort rule has matched

Click to jump to signature section

Show All Signature Results
Source: io.rakam.api.d$b;->i:131API Call: android.location.Location.getLatitude
Source: io.rakam.api.d$b;->i:132API Call: android.location.Location.getLongitude
Source: io.rakam.api.d;->i:37API Call: android.location.LocationManager.getLastKnownLocation
Source: io.rakam.api.h;->a:394API Call: android.location.Location.getLatitude
Source: io.rakam.api.h;->a:397API Call: android.location.Location.getLongitude
Source: androidx.appcompat.app.n;->a:6API Call: android.location.LocationManager.getLastKnownLocation
Source: androidx.appcompat.app.n;->a:19API Call: android.location.Location.getLatitude
Source: androidx.appcompat.app.n;->a:20API Call: android.location.Location.getLongitude
Source: androidx.appcompat.app.n;->a:22API Call: android.location.Location.getLatitude
Source: androidx.appcompat.app.n;->a:23API Call: android.location.Location.getLongitude
Source: androidx.appcompat.app.n;->a:25API Call: android.location.Location.getLatitude
Source: androidx.appcompat.app.n;->a:26API Call: android.location.Location.getLongitude
Source: com.flurry.sdk.u;->a:15API Call: android.location.LocationManager.getLastKnownLocation
Source: com.flurry.sdk.y5;->a:20API Call: android.location.Location.getLatitude
Source: com.flurry.sdk.y5;->a:24API Call: android.location.Location.getLongitude
Source: cm.aptoide.pt.root.execution.Shell;->getSuVersion:165API Call: java.lang.Runtime.exec ("su -v")
Source: cm.aptoide.pt.install.installer.Root;-><init>:4API Call: java.lang.Runtime.exec ("su")
Source: cm.aptoide.pt.install.installer.Root;->requestRoot:25API Call: java.lang.Runtime.exec ("su -c exit")
Source: cm.aptoide.pt.utils.AptoideUtils$SystemU;->hasRoot:105API Call: java.lang.Runtime.exec ("su")
Source: Lq/b/g/d/a/a;->j()Ljava/lang/Boolean;Method string: "/system/bin/su"
Source: Lq/b/g/d/a/a;->j()Ljava/lang/Boolean;Method string: "/system/xbin/su"
Source: unknownHTTPS traffic detected: 157.240.17.17:443 -> 192.168.2.30:51636 version: TLS 1.2
Source: unknownHTTPS traffic detected: 157.240.17.17:443 -> 192.168.2.30:51638 version: TLS 1.2
Source: unknownHTTPS traffic detected: 87.248.119.252:443 -> 192.168.2.30:37452 version: TLS 1.2
Source: unknownHTTPS traffic detected: 54.170.31.11:443 -> 192.168.2.30:43418 version: TLS 1.2
Source: unknownHTTPS traffic detected: 54.76.47.55:443 -> 192.168.2.30:55110 version: TLS 1.2
Source: unknownHTTPS traffic detected: 52.17.195.46:443 -> 192.168.2.30:55832 version: TLS 1.2
Source: unknownHTTPS traffic detected: 104.22.10.83:443 -> 192.168.2.30:34712 version: TLS 1.2
Source: unknownHTTPS traffic detected: 104.22.10.83:443 -> 192.168.2.30:34714 version: TLS 1.2
Source: unknownHTTPS traffic detected: 52.30.67.242:443 -> 192.168.2.30:60242 version: TLS 1.2
Source: unknownHTTPS traffic detected: 34.98.104.50:443 -> 192.168.2.30:48110 version: TLS 1.2
Source: cm.aptoide.pt.install.installer.DefaultInstaller;-><clinit>:2API Call: android.os.Environment.getExternalStorageDirectory
Source: cm.aptoide.pt.ApplicationModule;->provideCachePath:99API Call: android.os.Environment.getExternalStorageDirectory
Source: cm.aptoide.pt.database.room.RoomInstalled;->getObbSize:36API Call: android.os.Environment.getExternalStorageDirectory
Source: q.b.g.d.a.a;->d:66API Call: android.os.Environment.getExternalStorageDirectory
Source: q.b.g.d.a.a;->f:98API Call: android.os.Environment.getExternalStorageDirectory
Source: q.b.g.d.a.a;->i:171API Call: android.os.Environment.getExternalStorageState
Source: androidx.core.content.FileProvider;->b:63API Call: android.os.Environment.getExternalStorageDirectory
Source: com.facebook.internal.x;->a:256API Call: android.os.Environment.getExternalStorageState
Source: com.facebook.internal.x;->h:440API Call: android.os.Environment.getExternalStorageDirectory
Source: com.facebook.internal.x;->k:471API Call: android.os.Environment.getExternalStorageDirectory
Source: com.flurry.sdk.i4;->a:33API Call: android.os.Environment.getExternalStorageDirectory
Source: cm.aptoide.pt.install.remote.RemoteInstallationSenderManager;->getAddress:11API Call: android.net.wifi.WifiManager.getConnectionInfo
Source: cm.aptoide.pt.utils.AptoideUtils$SystemU;->getConnectionType:60API Call: android.net.ConnectivityManager.getActiveNetworkInfo
Source: q.b.g.d.a.a;->i:177API Call: android.net.ConnectivityManager.getActiveNetworkInfo
Source: q.b.g.d.a.a;->i:178API Call: android.net.NetworkInfo.isConnected
Source: androidx.work.impl.k.f.e;->d:54API Call: android.net.ConnectivityManager.getActiveNetworkInfo
Source: androidx.work.impl.k.f.e;->d:55API Call: android.net.NetworkInfo.isConnected
Source: n.h.a.f0.f;->d:85API Call: android.net.ConnectivityManager.getActiveNetworkInfo
Source: l.h.h.a;->a:2API Call: android.net.ConnectivityManager.getActiveNetworkInfo
Source: com.bumptech.glide.m.e;->a:21API Call: android.net.ConnectivityManager.getActiveNetworkInfo
Source: com.bumptech.glide.m.e;->a:22API Call: android.net.NetworkInfo.isConnected
Source: com.squareup.picasso.Dispatcher$NetworkBroadcastReceiver;->onReceive:15API Call: android.net.ConnectivityManager.getActiveNetworkInfo
Source: com.squareup.picasso.Dispatcher;->performNetworkStateChange:169API Call: android.net.NetworkInfo.isConnected
Source: com.squareup.picasso.Dispatcher;->performRetry:244API Call: android.net.ConnectivityManager.getActiveNetworkInfo
Source: com.squareup.picasso.Dispatcher;->performRetry:245API Call: android.net.NetworkInfo.isConnected
Source: com.squareup.picasso.NetworkRequestHandler;->shouldRetry:27API Call: android.net.NetworkInfo.isConnected
Source: com.squareup.picasso.PicassoExecutorService;->adjustThreadCount:7API Call: android.net.NetworkInfo.isConnectedOrConnecting
Source: com.flurry.sdk.w;->b:65API Call: android.net.ConnectivityManager.getActiveNetworkInfo
Source: com.flurry.sdk.w;->b:66API Call: android.net.NetworkInfo.isConnected
Source: com.flurry.sdk.w;->b:161API Call: android.net.ConnectivityManager.getActiveNetworkInfo
Source: com.flurry.sdk.w;->b:162API Call: android.net.NetworkInfo.isConnected
Source: global trafficHTTP traffic detected: POST /service/event HTTP/1.1Content-Type: application/jsonIndicative-Client: AndroidContent-Length: 479Host: api.indicative.comConnection: Keep-Alive
Source: n.h.a.b0.b;-><init>:6API Call: java.net.URL.openConnection (not executed)
Source: n.h.a.b0.b;-><init>:7API Call: java.net.URL.openConnection (not executed)
Source: io.sentry.connection.g;->b:37API Call: java.net.URL.openConnection (not executed)
Source: io.sentry.connection.g;->b:39API Call: java.net.URL.openConnection (not executed)
Source: com.facebook.GraphRequest;->a:58API Call: java.net.URL.openConnection (not executed)
Source: com.google.android.gms.ads.identifier.zza;->run:18API Call: java.net.URL.openConnection (not executed)
Source: com.google.android.gms.auth.api.signin.internal.zzd;->run:20API Call: java.net.URL.openConnection (not executed)
Source: com.bumptech.glide.load.m.j$a;->a:2API Call: java.net.URL.openConnection (not executed)
Source: com.squareup.picasso.UrlConnectionDownloader;->openConnection:48API Call: java.net.URL.openConnection (not executed)
Source: okhttp3.internal.platform.AndroidPlatform;->connectSocket:78API Call: java.net.Socket.connect (not executed)
Source: okhttp3.internal.platform.Platform;->connectSocket:50API Call: java.net.Socket.connect (not executed)
Source: com.flurry.sdk.k1;->d:15API Call: java.net.URL.openConnection (not executed)
Source: com.airbnb.lottie.t.c;->e:31API Call: java.net.URL.openConnection (not executed)
Source: com.facebook.t.u.f;->a:5API Call: java.net.URL.openConnection (not executed)
Source: global trafficTCP traffic: 192.168.2.30:56068 -> 8.8.4.4:853
Source: r.a.g.k;->a:17API Call: java.net.InetAddress.getByName (not executed)
Source: r.a.g.k;->q:87API Call: java.net.InetAddress.getByName (not executed)
Source: r.a.g.l;->a:150API Call: java.net.InetAddress.getByName (not executed)
Source: r.a.g.l;->a:152API Call: java.net.InetAddress.getByName (not executed)
Source: com.google.gson.t.l.n$o;->a:7API Call: java.net.InetAddress.getByName (not executed)
Source: okhttp3.Dns$Companion$SYSTEM$1;->lookup:4API Call: java.net.InetAddress.getAllByName (not executed)
Source: com.fasterxml.jackson.databind.deser.std.FromStringDeserializer$Std;->_deserialize:22API Call: java.net.InetAddress.getByName (not executed)
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 34728
Source: unknownNetwork traffic detected: HTTP traffic on port 43428 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 34724
Source: unknownNetwork traffic detected: HTTP traffic on port 51658 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 51696 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 55110
Source: unknownNetwork traffic detected: HTTP traffic on port 51644 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 43424 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 43418 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 51640 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 60252
Source: unknownNetwork traffic detected: HTTP traffic on port 55846 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 43466 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 51648 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51636
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 43430
Source: unknownNetwork traffic detected: HTTP traffic on port 34728 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 34718
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51638
Source: unknownNetwork traffic detected: HTTP traffic on port 48110 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 55832
Source: unknownNetwork traffic detected: HTTP traffic on port 34724 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 43464 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 34714
Source: unknownNetwork traffic detected: HTTP traffic on port 50870 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 51636 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 34712
Source: unknownNetwork traffic detected: HTTP traffic on port 34718 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 43428
Source: unknownNetwork traffic detected: HTTP traffic on port 37452 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 43424
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 43468
Source: unknownNetwork traffic detected: HTTP traffic on port 41366 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 43464
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 41366
Source: unknownNetwork traffic detected: HTTP traffic on port 34714 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 43466
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51648
Source: unknownNetwork traffic detected: HTTP traffic on port 60252 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51646
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 43462
Source: unknownNetwork traffic detected: HTTP traffic on port 55860 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 48110
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51640
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 55846
Source: unknownNetwork traffic detected: HTTP traffic on port 43442 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 60242 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51644
Source: unknownNetwork traffic detected: HTTP traffic on port 51694 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51642
Source: unknownNetwork traffic detected: HTTP traffic on port 51642 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 43418
Source: unknownNetwork traffic detected: HTTP traffic on port 43468 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 34736 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 51646 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 54604 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 50458 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 34732 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 34730 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51658
Source: unknownNetwork traffic detected: HTTP traffic on port 39602 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 55832 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 54604
Source: unknownNetwork traffic detected: HTTP traffic on port 43462 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51694
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 34736
Source: unknownNetwork traffic detected: HTTP traffic on port 51638 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 37452
Source: unknownNetwork traffic detected: HTTP traffic on port 55110 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 34732
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 51696
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 34730
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 55860
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 60242
Source: unknownNetwork traffic detected: HTTP traffic on port 34712 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 43430 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 43442
Source: global trafficHTTP traffic detected: HTTP/1.1 404 Not FoundDate: Wed, 25 Jan 2023 08:41:18 GMTContent-Type: application/jsonTransfer-Encoding: chunkedConnection: closeServer: nginxX-Frame-Options: DENY
Source: global trafficHTTP traffic detected: HTTP/1.1 404 Not FoundDate: Wed, 25 Jan 2023 08:41:19 GMTContent-Type: application/jsonTransfer-Encoding: chunkedConnection: closeServer: nginxX-Frame-Options: DENY
Source: n.f.a.a.a$b;->a:17API Call: org.apache.http.client.HttpClient.execute
Source: io.sentry.connection.g;->b:70API Call: java.net.HttpURLConnection.connect
Source: com.bumptech.glide.load.m.j;->a:47API Call: java.net.HttpURLConnection.connect
Source: com.flurry.sdk.k1;->d:55API Call: java.net.HttpURLConnection.connect
Source: com.airbnb.lottie.t.c;->e:34API Call: java.net.HttpURLConnection.connect
Source: unknownTCP traffic detected without corresponding DNS query: 216.58.212.170
Source: unknownTCP traffic detected without corresponding DNS query: 142.250.186.163
Source: unknownTCP traffic detected without corresponding DNS query: 216.58.212.170
Source: unknownTCP traffic detected without corresponding DNS query: 142.250.186.163
Source: unknownTCP traffic detected without corresponding DNS query: 216.58.212.170
Source: unknownTCP traffic detected without corresponding DNS query: 142.250.186.163
Source: unknownTCP traffic detected without corresponding DNS query: 216.58.212.170
Source: unknownTCP traffic detected without corresponding DNS query: 142.250.186.163
Source: unknownTCP traffic detected without corresponding DNS query: 216.58.212.170
Source: unknownTCP traffic detected without corresponding DNS query: 142.250.186.163
Source: unknownTCP traffic detected without corresponding DNS query: 142.250.186.42
Source: unknownTCP traffic detected without corresponding DNS query: 74.125.143.188
Source: unknownTCP traffic detected without corresponding DNS query: 74.125.143.188
Source: unknownTCP traffic detected without corresponding DNS query: 74.125.143.188
Source: unknownTCP traffic detected without corresponding DNS query: 74.125.143.188
Source: unknownTCP traffic detected without corresponding DNS query: 74.125.143.188
Source: unknownTCP traffic detected without corresponding DNS query: 74.125.143.188
Source: unknownTCP traffic detected without corresponding DNS query: 74.125.143.188
Source: unknownTCP traffic detected without corresponding DNS query: 74.125.143.188
Source: unknownTCP traffic detected without corresponding DNS query: 74.125.143.188
Source: unknownTCP traffic detected without corresponding DNS query: 74.125.143.188
Source: unknownTCP traffic detected without corresponding DNS query: 74.125.143.188
Source: unknownTCP traffic detected without corresponding DNS query: 172.217.168.78
Source: unknownTCP traffic detected without corresponding DNS query: 172.217.168.78
Source: unknownTCP traffic detected without corresponding DNS query: 172.217.168.78
Source: unknownTCP traffic detected without corresponding DNS query: 172.217.168.78
Source: unknownTCP traffic detected without corresponding DNS query: 172.217.168.78
Source: unknownTCP traffic detected without corresponding DNS query: 172.217.168.78
Source: unknownTCP traffic detected without corresponding DNS query: 172.217.168.78
Source: unknownTCP traffic detected without corresponding DNS query: 172.217.168.78
Source: unknownTCP traffic detected without corresponding DNS query: 172.217.168.78
Source: unknownTCP traffic detected without corresponding DNS query: 172.217.168.78
Source: unknownTCP traffic detected without corresponding DNS query: 172.217.168.78
Source: unknownTCP traffic detected without corresponding DNS query: 172.217.168.78
Source: unknownTCP traffic detected without corresponding DNS query: 172.217.168.78
Source: unknownTCP traffic detected without corresponding DNS query: 157.240.17.17
Source: unknownTCP traffic detected without corresponding DNS query: 157.240.17.17
Source: unknownTCP traffic detected without corresponding DNS query: 157.240.17.17
Source: unknownTCP traffic detected without corresponding DNS query: 157.240.17.17
Source: unknownTCP traffic detected without corresponding DNS query: 157.240.17.17
Source: unknownTCP traffic detected without corresponding DNS query: 157.240.17.17
Source: unknownTCP traffic detected without corresponding DNS query: 157.240.17.17
Source: unknownTCP traffic detected without corresponding DNS query: 157.240.17.17
Source: unknownTCP traffic detected without corresponding DNS query: 157.240.17.17
Source: unknownTCP traffic detected without corresponding DNS query: 157.240.17.17
Source: unknownTCP traffic detected without corresponding DNS query: 157.240.17.17
Source: unknownTCP traffic detected without corresponding DNS query: 157.240.17.17
Source: unknownTCP traffic detected without corresponding DNS query: 157.240.17.17
Source: unknownTCP traffic detected without corresponding DNS query: 157.240.17.17
Source: unknownTCP traffic detected without corresponding DNS query: 157.240.17.17
Source: androidString found in binary or memory: https://www.youtube.com/embed/ equals www.youtube.com (Youtube)
Source: androidString found in binary or memory: http://imgs.aptoide.com/
Source: androidString found in binary or memory: http://m.aptoide.com
Source: androidString found in binary or memory: http://m.aptoide.com/account/password-recovery
Source: androidString found in binary or memory: http://play.google.com
Source: androidString found in binary or memory: http://pool.img.aptoide.com/asf-store/ace60f6352f6dd9289843b5b0b2ab3d4_icon.png
Source: $ic_pause_to_resume__1.xmlString found in binary or memory: http://schemas.android.com/aapt
Source: reward_app_home_item.xml, androidString found in binary or memory: http://schemas.android.com/apk/res-auto
Source: fragment_screenshots_viewer.xml, androidString found in binary or memory: http://schemas.android.com/apk/res/android
Source: androidString found in binary or memory: http://www.slf4j.org/codes.html#StaticLoggerBinder
Source: androidString found in binary or memory: http://www.slf4j.org/codes.html#loggerNameMismatch
Source: androidString found in binary or memory: http://www.slf4j.org/codes.html#multiple_bindings
Source: androidString found in binary or memory: http://www.slf4j.org/codes.html#no_static_mdc_binder
Source: androidString found in binary or memory: http://www.slf4j.org/codes.html#null_MDCA
Source: androidString found in binary or memory: http://www.slf4j.org/codes.html#replay
Source: androidString found in binary or memory: http://www.slf4j.org/codes.html#substituteLogger
Source: androidString found in binary or memory: http://www.slf4j.org/codes.html#unsuccessfulInit
Source: androidString found in binary or memory: http://www.slf4j.org/codes.html#version_mismatch
Source: androidString found in binary or memory: https://accounts.google.com/o/oauth2/revoke?token=
Source: androidString found in binary or memory: https://api.aptoide.com/
Source: androidString found in binary or memory: https://api.blockchainds.com/
Source: androidString found in binary or memory: https://api.indicative.com/service/event
Source: androidString found in binary or memory: https://apichain-dev.blockchainds.com
Source: androidString found in binary or memory: https://apichain.blockchainds.com
Source: androidString found in binary or memory: https://blog.aptoide.com/aptoide-new-authentication-system-no-user-data-storage/
Source: androidString found in binary or memory: https://blog.aptoide.com/what-is-aptoidetv/
Source: androidString found in binary or memory: https://catappult.io/?utm_source=vanilla
Source: androidString found in binary or memory: https://cdn6.aptoide.com/includes/themes/2014/images/vanilla_appcoins_info_video_placeholder.svg
Source: androidString found in binary or memory: https://data.flurry.com/aap.do
Source: androidString found in binary or memory: https://data.flurry.com/v1/flr.do
Source: androidString found in binary or memory: https://diagnostics.rakam.io/event/batch
Source: androidString found in binary or memory: https://docs.sentry.io/clients/java/
Source: androidString found in binary or memory: https://docs.sentry.io/clients/java/config/
Source: androidString found in binary or memory: https://docs.sentry.io/clients/java/config/#in-application-stack-frames
Source: androidString found in binary or memory: https://docs.sentry.io/clients/java/modules/android/
Source: androidString found in binary or memory: https://docs.sentry.io/learn/quotas/
Source: androidString found in binary or memory: https://github.com/ReactiveX/RxJava/wiki/Error-Handling
Source: androidString found in binary or memory: https://github.com/ReactiveX/RxJava/wiki/Plugins
Source: androidString found in binary or memory: https://github.com/ReactiveX/RxJava/wiki/What
Source: androidString found in binary or memory: https://github.com/airbnb/epoxy/wiki/Avoiding-Memory-Leaks
Source: androidString found in binary or memory: https://github.com/lingochamp/FileDownloader/wiki/filedownloader.properties
Source: androidString found in binary or memory: https://goo.gl/J1sWQy
Source: androidString found in binary or memory: https://graph-video.%s
Source: androidString found in binary or memory: https://graph.%s
Source: androidString found in binary or memory: https://impression.appsflyer.com
Source: androidString found in binary or memory: https://pagead2.googlesyndication.com/pagead/gen_204?id=gmob-apps
Source: androidString found in binary or memory: https://placeimg.com/640/480/any
Source: androidString found in binary or memory: https://play.google.com
Source: androidString found in binary or memory: https://play.google.com/store/apps/details?id=
Source: androidString found in binary or memory: https://plus.google.com/
Source: androidString found in binary or memory: https://twitter.com/aptoide
Source: androidString found in binary or memory: https://webservices.aptoide.com/webservices/3/
Source: androidString found in binary or memory: https://ws75-primary.aptoide.com/api/7/
Source: androidString found in binary or memory: https://ws75.aptoide.com/api/7/
Source: androidString found in binary or memory: https://ws75.aptoide.com/api/7/getStoreWidgets/store_id=15/context=apps/widget=apps_list%3A0%261%3Ap
Source: androidString found in binary or memory: https://ws75.aptoide.com/api/7/getStoreWidgets/store_id=15/context=games/widget=apps_list%3A0%262%3A
Source: androidString found in binary or memory: https://ws75.aptoide.com/api/7/getStoreWidgets/store_id=15/context=stores
Source: androidString found in binary or memory: https://ws75.aptoide.com/api/7/listApps/store_name=
Source: androidString found in binary or memory: https://www.googleapis.com/auth/games
Source: androidString found in binary or memory: https://www.googleapis.com/auth/games_lite
Source: androidString found in binary or memory: https://www.instagram.com/aptoideappstore/
Source: androidString found in binary or memory: https://www.youtube.com/embed/
Source: unknownHTTP traffic detected: POST /c2dm/register3 HTTP/1.1Authorization: AidLogin 3976102378291501644:1184905049225720946app: com.google.android.gmsgcm_ver: 210214031User-Agent: Android-GCM/1.5 (x86 PI)content-length: 477content-type: application/x-www-form-urlencodedHost: android.clients.google.comConnection: Keep-AliveAccept-Encoding: gzip
Source: com.squareup.picasso.Dispatcher$NetworkBroadcastReceiver;->register:22API Call: android.content.IntentFilter.addAction android.net.conn.CONNECTIVITY_CHANGE
Source: global trafficHTTP traffic detected: GET /v6.0/477114135645153?fields=supports_implicit_sdk_logging%2Cgdpv4_nux_content%2Cgdpv4_nux_enabled%2Candroid_dialog_configs%2Candroid_sdk_error_categories%2Capp_events_session_timeout%2Capp_events_feature_bitmask%2Cauto_event_mapping_android%2Cseamless_login%2Csmart_login_bookmark_icon_url%2Csmart_login_menu_icon_url%2Crestrictive_data_filter_params%2Caam_rules%2Csuggested_events_setting&format=json&sdk=android HTTP/1.1User-Agent: FBAndroidSDK.7.1.0Accept-Language: en_USContent-Type: application/x-www-form-urlencodedContent-Encoding: gzipHost: graph.facebook.comConnection: Keep-AliveAccept-Encoding: gzip
Source: global trafficHTTP traffic detected: GET /v6.0/477114135645153/mobile_sdk_gk?fields=gatekeepers&format=json&sdk_version=7.1.0&sdk=android&platform=android HTTP/1.1User-Agent: FBAndroidSDK.7.1.0Accept-Language: en_USContent-Type: application/x-www-form-urlencodedContent-Encoding: gzipHost: graph.facebook.comConnection: Keep-AliveAccept-Encoding: gzip
Source: global trafficHTTP traffic detected: GET /v6.0/477114135645153?fields=supports_implicit_sdk_logging%2Cgdpv4_nux_content%2Cgdpv4_nux_enabled%2Candroid_dialog_configs%2Candroid_sdk_error_categories%2Capp_events_session_timeout%2Capp_events_feature_bitmask%2Cauto_event_mapping_android%2Cseamless_login%2Csmart_login_bookmark_icon_url%2Csmart_login_menu_icon_url%2Crestrictive_data_filter_params%2Caam_rules%2Csuggested_events_setting&format=json&sdk=android HTTP/1.1User-Agent: FBAndroidSDK.7.1.0Accept-Language: en_USContent-Type: application/x-www-form-urlencodedContent-Encoding: gzipHost: graph.facebook.comConnection: Keep-AliveAccept-Encoding: gzip
Source: global trafficHTTP traffic detected: GET /v6.0/477114135645153/mobile_sdk_gk?fields=gatekeepers&format=json&sdk_version=7.1.0&sdk=android&platform=android HTTP/1.1User-Agent: FBAndroidSDK.7.1.0Accept-Language: en_USContent-Type: application/x-www-form-urlencodedContent-Encoding: gzipHost: graph.facebook.comConnection: Keep-AliveAccept-Encoding: gzip
Source: global trafficHTTP traffic detected: GET /api/7/apks/package/autoupdate/get/package_name=cm.aptoide.pt/sdk=28 HTTP/1.1User-Agent: aptoide-9.20.6.1;VMware Virtual Platform(android_x86);v9;i686;0x0;id:94eebf5f-94ea-48fe-b018-fc5129dd0bec;;Host: ws75.aptoide.comConnection: Keep-AliveAccept-Encoding: gzip
Source: global trafficHTTP traffic detected: GET /pnp/v1/notifications/94eebf5f-94ea-48fe-b018-fc5129dd0bec/campaigns?aptoide_package=cm.aptoide.pt&language=en_US&aptoide_version=9.20.6.1 HTTP/1.1X-Bypass-Cache: trueHost: pnp.aptoide.comConnection: Keep-AliveAccept-Encoding: gzipUser-Agent: okhttp/4.2.2
Source: global trafficHTTP traffic detected: GET /v6.0/477114135645153/model_asset?fields=use_case%2Cversion_id%2Casset_uri%2Crules_uri%2Cthresholds&format=json&sdk=android HTTP/1.1User-Agent: FBAndroidSDK.7.1.0Accept-Language: en_USContent-Type: application/x-www-form-urlencodedContent-Encoding: gzipHost: graph.facebook.comConnection: Keep-AliveAccept-Encoding: gzip
Source: global trafficHTTP traffic detected: GET /api/7/getApp?q=bWF4U2RrPTI4Jm1heFNjcmVlbj14bGFyZ2UmbWF4R2xlcz0zLjAmbXlDUFU9eDg2LGFybWVhYmktdjdhLGFybWVhYmkmbGVhbmJhY2s9MCZteURlbnNpdHk9MTYw&aab=true&nodes={%22groups%22:{},%22meta%22:{%22appId%22:63921595},%22versions%22:{}}&aptoide_package=cm.aptoide.pt&mature=false&not_apk_tags=alpha,beta&refresh=false&aptoide_vercode=12010&cdn=pool&lang=en_US&aptoide_md5sum=3a894374fae47123d29297c7baaf1262&app_id=63921595 HTTP/1.1User-Agent: aptoide-9.20.6.1;VMware Virtual Platform(android_x86);v9;i686;0x0;id:94eebf5f-94ea-48fe-b018-fc5129dd0bec;;Host: ws75-cache.aptoide.comConnection: Keep-AliveAccept-Encoding: gzip
Source: global trafficHTTP traffic detected: GET /apps/ea6057d6c3026c72e067c441804b8774_icon_127x127.png HTTP/1.1User-Agent: Dalvik/2.1.0 (Linux; U; Android 9; VMware Virtual Platform Build/PI)Host: pool.img.aptoide.comConnection: Keep-AliveAccept-Encoding: gzip
Source: global trafficHTTP traffic detected: GET /apps/815872daa4e7a55f93cb3692aff65e31_ravatar.jpg HTTP/1.1User-Agent: Dalvik/2.1.0 (Linux; U; Android 9; VMware Virtual Platform Build/PI)Host: pool.img.aptoide.comConnection: Keep-AliveAccept-Encoding: gzip
Source: global trafficHTTP traffic detected: GET /apps/ea6057d6c3026c72e067c441804b8774_icon_127x127.png HTTP/1.1User-Agent: Dalvik/2.1.0 (Linux; U; Android 9; VMware Virtual Platform Build/PI)Host: pool.img.aptoide.comConnection: Keep-AliveAccept-Encoding: gzip
Source: global trafficHTTP traffic detected: GET /api/7/apps/getRecommended?q=bWF4U2RrPTI4Jm1heFNjcmVlbj14bGFyZ2UmbWF4R2xlcz0zLjAmbXlDUFU9eDg2LGFybWVhYmktdjdhLGFybWVhYmkmbGVhbmJhY2s9MCZteURlbnNpdHk9MTYw&aptoide_package=cm.aptoide.pt&offset=0&mature=false&package_name=com.theplanetapp&limit=48&refresh=false&aptoide_vercode=12010&section=appc&cdn=pool&lang=en_US&aptoide_md5sum=3a894374fae47123d29297c7baaf1262 HTTP/1.1Cache-Control: no-cacheUser-Agent: aptoide-9.20.6.1;VMware Virtual Platform(android_x86);v9;i686;0x0;id:94eebf5f-94ea-48fe-b018-fc5129dd0bec;;Host: ws75-cache.aptoide.comConnection: Keep-AliveAccept-Encoding: gzip
Source: global trafficHTTP traffic detected: GET /apps/de523456301d26c1805ba1cb5892ad91_screen_96x160.png HTTP/1.1User-Agent: Dalvik/2.1.0 (Linux; U; Android 9; VMware Virtual Platform Build/PI)Host: pool.img.aptoide.comConnection: Keep-AliveAccept-Encoding: gzip
Source: global trafficHTTP traffic detected: GET /apps/a27fa282518fcc7ff26a3e3375b4b0ad_screen_96x160.png HTTP/1.1User-Agent: Dalvik/2.1.0 (Linux; U; Android 9; VMware Virtual Platform Build/PI)Host: pool.img.aptoide.comConnection: Keep-AliveAccept-Encoding: gzip
Source: global trafficHTTP traffic detected: GET /apps/425c9c2f3d5102307bbb4bac9393b39f_screen_96x160.png HTTP/1.1User-Agent: Dalvik/2.1.0 (Linux; U; Android 9; VMware Virtual Platform Build/PI)Host: pool.img.aptoide.comConnection: Keep-AliveAccept-Encoding: gzip
Source: global trafficHTTP traffic detected: GET /apps/9750c16dc656bd81ff4fe17d2fcd3e30_screen_96x160.png HTTP/1.1User-Agent: Dalvik/2.1.0 (Linux; U; Android 9; VMware Virtual Platform Build/PI)Host: pool.img.aptoide.comConnection: Keep-AliveAccept-Encoding: gzip
Source: global trafficHTTP traffic detected: GET /api/7/apps/getRecommended?q=bWF4U2RrPTI4Jm1heFNjcmVlbj14bGFyZ2UmbWF4R2xlcz0zLjAmbXlDUFU9eDg2LGFybWVhYmktdjdhLGFybWVhYmkmbGVhbmJhY2s9MCZteURlbnNpdHk9MTYw&aptoide_package=cm.aptoide.pt&offset=0&mature=false&package_name=com.theplanetapp&limit=48&refresh=false&aptoide_vercode=12010&cdn=pool&lang=en_US&aptoide_md5sum=3a894374fae47123d29297c7baaf1262 HTTP/1.1Cache-Control: no-cacheUser-Agent: aptoide-9.20.6.1;VMware Virtual Platform(android_x86);v9;i686;0x0;id:94eebf5f-94ea-48fe-b018-fc5129dd0bec;;Host: ws75-cache.aptoide.comConnection: Keep-AliveAccept-Encoding: gzip
Source: global trafficHTTP traffic detected: GET /apps/78e1de56c628a080ad2c6b624116aca1_screen_96x160.png HTTP/1.1User-Agent: Dalvik/2.1.0 (Linux; U; Android 9; VMware Virtual Platform Build/PI)Host: pool.img.aptoide.comConnection: Keep-AliveAccept-Encoding: gzip
Source: unknownHTTPS traffic detected: 157.240.17.17:443 -> 192.168.2.30:51636 version: TLS 1.2
Source: unknownHTTPS traffic detected: 157.240.17.17:443 -> 192.168.2.30:51638 version: TLS 1.2
Source: unknownHTTPS traffic detected: 87.248.119.252:443 -> 192.168.2.30:37452 version: TLS 1.2
Source: unknownHTTPS traffic detected: 54.170.31.11:443 -> 192.168.2.30:43418 version: TLS 1.2
Source: unknownHTTPS traffic detected: 54.76.47.55:443 -> 192.168.2.30:55110 version: TLS 1.2
Source: unknownHTTPS traffic detected: 52.17.195.46:443 -> 192.168.2.30:55832 version: TLS 1.2
Source: unknownHTTPS traffic detected: 104.22.10.83:443 -> 192.168.2.30:34712 version: TLS 1.2
Source: unknownHTTPS traffic detected: 104.22.10.83:443 -> 192.168.2.30:34714 version: TLS 1.2
Source: unknownHTTPS traffic detected: 52.30.67.242:443 -> 192.168.2.30:60242 version: TLS 1.2
Source: unknownHTTPS traffic detected: 34.98.104.50:443 -> 192.168.2.30:48110 version: TLS 1.2
Source: submitted apkRequest permission: android.permission.CAMERA
Source: r.a.g.l;->a:558API Call: java.net.MulticastSocket.send
Source: cm.aptoide.pt.util.ReferrerUtils;->extractReferrer:85API Call: WindowManager.addView
Source: androidx.appcompat.app.g;->a:148API Call: WindowManager.addView
Source: androidx.appcompat.widget.u0;->a:83API Call: WindowManager.addView
Source: