tr.apk
The file tr.apk has been detected as a potentially unwanted program by 25 anti-malware scanners. The file has been seen being downloaded from dw13.uptodown.com and multiple other hosts.
MD5:
e287e785d0e3e043fb0cfbfe69309d8e
SHA-1:
7409eb1deb8cfd42d98587492c38beb47e805b68
SHA-256:
5aa19d58ccda518979ecec97db9ee7a6a1de606fd661ef9238e65f3b533f170c
Scanner detections:
25 / 68
Status:
Potentially unwanted
Analysis date:
11/24/2024 9:33:33 PM UTC (today)
Scan engine
Detection
Engine version
Lavasoft Ad-Aware
Android.Riskware.Agent.gVPS
5838107
AegisLab AV Signature
Lotoor
2.1.4+
AhnLab V3 Security
Android-AppCare/Rootor.6b68
2015.07.24
Avira AntiVirus
ANDROID/TowelExploit.TGH
8.3.1.6
Arcabit
Android.Riskware.Agent.gVPS
1.0.0.425
avast!
Android:Towel-A [PUP]
2014.9-150726
AVG
Android/Deng
2016.0.3037
Baidu Antivirus
Trojan.Android.Towel
4.0.3.15726
Bitdefender
Android.Riskware.Agent.gVPS
1.0.20.1035
Comodo Security
UnclassifiedMalware
22853
Dr.Web
infected with Android.Exploit.10
9.0.1.05190
Emsisoft Anti-Malware
Exploit.Android.Towel
10.0.0.5366
ESET NOD32
Android/Exploit.Towel.A trojan
7.0.302.0
Fortinet FortiGate
Riskware/Towelroot!Android
7/26/2015
F-Secure
Android.Riskware.Agent
5.14.151
G Data
Android.Riskware.Agent.gVPS
15.7.25
IKARUS anti.virus
not-a-virus:Rooter.TowelRoot
t3scan.1.9.5.0
Kaspersky
HEUR:Exploit.AndroidOS.Lotoor
15.0.0.543
McAfee
Trojan.Artemis!E287E785D0E3
18.0.204.0
MicroWorld eScan
Android.Riskware.Agent.gVPS
16.0.0.621
NANO AntiVirus
Trojan.Android.TowelExploit.dlbeom
0.30.24.2668
Norman
Android.Riskware.Agent.gVPS
07.07.2015 03:10:29
Quick Heal
Android.TowelRoot.A
7.15.14.00
Sophos
Virus 'Andr/TowRoot-A'
5.15
VIPRE Antivirus
Trojan.AndroidOS.Generic.A
42282
File size:
110.4 KB (113,099 bytes)
The file tr.apk has been seen being distributed by the following 8 URLs.