tr.apk

The file tr.apk has been detected as a potentially unwanted program by 25 anti-malware scanners. The file has been seen being downloaded from dw13.uptodown.com and multiple other hosts.
MD5:
e287e785d0e3e043fb0cfbfe69309d8e

SHA-1:
7409eb1deb8cfd42d98587492c38beb47e805b68

SHA-256:
5aa19d58ccda518979ecec97db9ee7a6a1de606fd661ef9238e65f3b533f170c

Scanner detections:
25 / 68

Status:
Potentially unwanted

Analysis date:
11/24/2024 9:33:33 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Android.Riskware.Agent.gVPS
5838107

AegisLab AV Signature
Lotoor
2.1.4+

AhnLab V3 Security
Android-AppCare/Rootor.6b68
2015.07.24

Avira AntiVirus
ANDROID/TowelExploit.TGH
8.3.1.6

Arcabit
Android.Riskware.Agent.gVPS
1.0.0.425

avast!
Android:Towel-A [PUP]
2014.9-150726

AVG
Android/Deng
2016.0.3037

Baidu Antivirus
Trojan.Android.Towel
4.0.3.15726

Bitdefender
Android.Riskware.Agent.gVPS
1.0.20.1035

Comodo Security
UnclassifiedMalware
22853

Dr.Web
infected with Android.Exploit.10
9.0.1.05190

Emsisoft Anti-Malware
Exploit.Android.Towel
10.0.0.5366

ESET NOD32
Android/Exploit.Towel.A trojan
7.0.302.0

Fortinet FortiGate
Riskware/Towelroot!Android
7/26/2015

F-Secure
Android.Riskware.Agent
5.14.151

G Data
Android.Riskware.Agent.gVPS
15.7.25

IKARUS anti.virus
not-a-virus:Rooter.TowelRoot
t3scan.1.9.5.0

Kaspersky
HEUR:Exploit.AndroidOS.Lotoor
15.0.0.543

McAfee
Trojan.Artemis!E287E785D0E3
18.0.204.0

MicroWorld eScan
Android.Riskware.Agent.gVPS
16.0.0.621

NANO AntiVirus
Trojan.Android.TowelExploit.dlbeom
0.30.24.2668

Norman
Android.Riskware.Agent.gVPS
07.07.2015 03:10:29

Quick Heal
Android.TowelRoot.A
7.15.14.00

Sophos
Virus 'Andr/TowRoot-A'
5.15

VIPRE Antivirus
Trojan.AndroidOS.Generic.A
42282

File size:
110.4 KB (113,099 bytes)

The file tr.apk has been seen being distributed by the following 8 URLs.

Remove tr.apk - Powered by Reason Core Security