温馨提示:APP静态检测会有结果不完整的现象,如有疑问或建议, 可加入我们的微信群讨论

APP图标



下载APP

文件信息

文件名 7_9_3_night.apk
文件大小 30.01MB
MD5值 2377c80ffe56e0ac516b848397b03b12
SHA1值 f0230aec09841ef495cc83cd9c444a7aaed1af14
SHA256值 303f0c0ee5ead2e88716a71dde9314a37f431b8626dad5256404c541cebf8909

APK信息

APK名称 爱威奶
包名 com.avnight
主活动 com.avnight.Activity.LandingActivity.LandingActivity
安卓版本名称 7.9.3
域名线索 33 条
查看
URL线索 26 条
查看
邮箱线索 1 条
查看
手机号线索 2 条
查看

域名线索

域名 查询域名 ip 地区 查询地区
exoplayer.dev 185.199.111.153 United States of America - Pennsylvania
schemas.xmlsoap.org 13.107.246.74 United States of America - Washington
java.sun.com 23.210.26.6 Japan - Tokyo
android.googlesource.com 142.251.188.82 United States of America - California
www.mzitu.com 118.184.78.78 China - Shanghai
goo.gl 74.125.135.102 United States of America - California
av9av9-1309454273.cos.ap-guangzhou.myqcloud.com 36.248.13.186 China - Fujian
www.google.com 199.16.158.182 United States of America - California
www.sec.co.kr 112.106.187.200 Korea (Republic of) - Seoul-teukbyeolsi
github.com 20.205.243.166 Singapore - Singapore
av9av9-1318371851.cos.accelerate.myqcloud.com 111.202.29.114 China - Beijing
bitdash-a.akamaihd.net 2.19.117.147 United Kingdom of Great Britain and Northern Ireland - England
firebase-settings.crashlytics.com 114.250.67.34 China - Beijing
av9av9-1318371851.cos.ap-guangzhou.myqcloud.com 36.248.13.185 China - Fujian
dev-avnight-cpi.appdev.icu 139.162.98.177 Japan - Tokyo
qlaops.nongchang168.com 没有ip信息 没有地区信息
glassfish.dev.java.net 137.254.56.48 United States of America - California
storage.googleapis.com 142.250.107.207 United States of America - California
a9-cos.dango33.com 103.199.103.112 Korea (Republic of) - Seoul-teukbyeolsi
app-av9-8631e.firebaseio.com 35.201.97.85 United States of America - Missouri
ns.adobe.com 没有ip信息 没有地区信息
dashif.org 185.199.109.153 United States of America - Pennsylvania
pv.sohu.com 124.163.195.89 China - Shanxi
9ynefxy-1.sbs 0.0.0.0 - - -
www.w3.org 104.18.23.19 United States of America - California
i.imgur.com 103.228.130.27 Spain - Valenciana, Comunidad
d1vcfwitp2um8b.cloudfront.net 65.9.37.120 Japan - Tokyo
aomedia.org 74.86.228.110 United States of America - California
openinstall.iavnight.com 162.125.32.10 United States of America - California
9cl.yangguanging.com 没有ip信息 没有地区信息
www.google-analytics.com 114.250.70.33 China - Beijing
default.url 没有ip信息 没有地区信息
api.api98.xyz 没有ip信息 没有地区信息

URL线索

URL信息 Url所在文件
https://av9av9-1309454273.cos.ap-guangzhou.myqcloud.com/host_and.jsonb
com/avnight/Activity/LandingActivity/p0.java
https://av9av9-1318371851.cos.ap-guangzhou.myqcloud.com/host_and.jsonb
com/avnight/Activity/LandingActivity/p0.java
https://storage.googleapis.com/a9a9/host_and.jsonb
com/avnight/Activity/LandingActivity/p0.java
https://d1vcfwitp2um8b.cloudfront.net/api/host_and.jsonb
com/avnight/Activity/LandingActivity/p0.java
https://a9-cos.dango33.com/host_and.jsonb
com/avnight/Activity/LandingActivity/p0.java
https://av9av9-1318371851.cos.accelerate.myqcloud.com/host_and.jsonb
com/avnight/Activity/LandingActivity/p0.java
https://openinstall.iavnight.com/api/
com/avnight/Activity/LandingActivity/r0.java
https://www.mzitu.com/
com/avnight/Activity/MaituViewerActivity/u.java
https://www.mzitu.com/
com/avnight/Activity/MaituViewerActivity/v.java
https://bitdash-a.akamaihd.net/content/sintel/hls/video/
com/avnight/Activity/VideoStorageActivity/c0.java
https://www.google-analytics.com/mp/collect?measurement_id=
com/avnight/EventTracker/MeasurementGA.java
https://i.imgur.com/TOo1GxX.jpeg
com/avnight/ApiModel/AvVideoBean.java
https://9cl.yangguanging.com/head/img/12971972/2021-12-20/e3dec7a4efa23a873441751e9477a7e9511798f8-5\
com/avnight/x/o/p.java
https://9ynefxy-1.sbs
com/avnight/o/n7.java
http://pv.sohu.com/cityjson?ie=utf-8
com/avnight/tools/z.java
http://qlaops.nongchang168.com/black
com/avnight/tools/r/b.java
http://qlaops.nongchang168.com/black
com/avnight/tools/Base64ImageLoadUtil/d.java
https://www.google.com/
com/avnight/l/m7.java
https://api.api98.xyz
com/avnight/webservice/AvNightWebService.java
https://dev-avnight-cpi.appdev.icu/API/
com/avnight/webservice/AvNightWebService.java
https://github.com/danikula/AndroidVideoCache/issues/88.
com/danikula/videocache/i.java
https://github.com/danikula/AndroidVideoCache/issues/43.
com/danikula/videocache/i.java
https://github.com/danikula
com/danikula/videocache/i.java
https://github.com/danikula/AndroidVideoCache/issues.
com/danikula/videocache/i.java
https://github.com/danikula/AndroidVideoCache/issues/134.
com/danikula/videocache/k.java
https://www.google.com/speedtest/
com/ngs/myngsspeedtest/e.java
http://ns.adobe.com/xap/1.0/\u0000
d/g/a/a.java
https://github.com/ReactiveX/RxJava/wiki/Plugins
g/a/f.java
https://github.com/ReactiveX/RxJava/wiki/Error-Handling
io/reactivex/exceptions/OnErrorNotImplementedException.java
https://github.com/ReactiveX/RxJava/wiki/What's-different-in-2.0
io/reactivex/exceptions/UndeliverableException.java
http://schemas.xmlsoap.org/soap/envelope/
org/fourthline/cling/transport/c/p.java
http://schemas.xmlsoap.org/soap/encoding/
org/fourthline/cling/transport/c/p.java
http://www.sec.co.kr/dlna
org/fourthline/cling/binding/xml/g.java
https://app-av9-8631e.firebaseio.com
摸瓜V1引擎
https://d1vcfwitp2um8b.cloudfront.net/api/host_and.jsonb
摸瓜V3引擎
http://schemas.xmlsoap.org/soap/encoding/
摸瓜V3引擎
http://schemas.xmlsoap.org/wsdl/soap/http?mtom=true
摸瓜V3引擎
https://exoplayer.dev/issues/player-accessed-on-wrong-thread
摸瓜V3引擎
http://pv.sohu.com/cityjson?ie=utf-8
摸瓜V3引擎
firebase-settings.crashlytics.com
摸瓜V3引擎
http://schemas.android.com/apk/res-auto
摸瓜V3引擎
http://schemas.android.com/apk/res/android
摸瓜V3引擎
https://9ynefxy-1.sbs
摸瓜V3引擎
http://java.sun.com/xml/ns/javaee
摸瓜V3引擎
https://github.com/ReactiveX/RxJava/wiki/What
摸瓜V3引擎
https://a9-cos.dango33.com/host_and.jsonb
摸瓜V3引擎
https://i.imgur.com/TOo1GxX.jpeg
摸瓜V3引擎
https://android.googlesource.com/toolchain/llvm-project
摸瓜V3引擎
https://av9av9-1318371851.cos.ap-guangzhou.myqcloud.com/host_and.jsonb
摸瓜V3引擎
https://9cl.yangguanging.com/head/img/12971972/2021-12-20/e3dec7a4efa23a873441751e9477a7e9511798f8-5
摸瓜V3引擎
https://aomedia.org/emsg/ID3
摸瓜V3引擎
http://java.sun.com/xml/ns/javaee/javaee_web_services_1_2.xsd
摸瓜V3引擎
https://av9av9-1309454273.cos.ap-guangzhou.myqcloud.com/host_and.jsonb
摸瓜V3引擎
https://openinstall.iavnight.com/api/
摸瓜V3引擎
https://dev-avnight-cpi.appdev.icu/API/
摸瓜V3引擎
http://qlaops.nongchang168.com/black
摸瓜V3引擎
http://schemas.android.com/tools
摸瓜V3引擎
https://app-av9-8631e.firebaseio.com
摸瓜V3引擎
https://www.mzitu.com/
摸瓜V3引擎
https://github.com/ReactiveX/RxJava/wiki/Error-Handling
摸瓜V3引擎
http://java.sun.com/xml/ns/jaxb
摸瓜V3引擎
http://schemas.xmlsoap.org/soap/envelope/
摸瓜V3引擎
https://default.url
摸瓜V3引擎
http://java.sun.com/xml/ns/jaxb/xjc
摸瓜V3引擎
http://goo.gl/8Rd3yj
摸瓜V3引擎
https://github.com/ReactiveX/RxJava/wiki/Plugins
摸瓜V3引擎
https://glassfish.dev.java.net/public/CDDL
摸瓜V3引擎
https://av9av9-1318371851.cos.accelerate.myqcloud.com/host_and.jsonb
摸瓜V3引擎
http://dashif.org/guidelines/trickmode
摸瓜V3引擎
http://goo.gl/naFqQk
摸瓜V3引擎
www.google-analytics.com
摸瓜V3引擎
http://schemas.xmlsoap.org/wsdl/soap/http
摸瓜V3引擎

邮箱线索

邮箱地址 所在文件
this@addfavdialog.childfragm
com/avnight/o/r5.java

手机线索

手机号 所在文件
17512775099
e/c/b/a/a.java
17179869184
tv/danmaku/ijk/media/player/IjkMediaMeta.java

代码反编译

AndroidManifest配置 查看
Java源代码 查看 -- 下载

签名证书

APK已签名
v1 签名: True
v2 签名: True
v3 签名: True
找到 1 个唯一证书
主题: O=AvNight, OU=IT, CN=Eric Lin
签名算法: rsassa_pkcs1v15
有效期自: 2016-05-06 02:54:23+00:00
有效期至: 2041-04-30 02:54:23+00:00
发行人: O=AvNight, OU=IT, CN=Eric Lin
序列号: 0x633954be
哈希算法: sha256
md5值: ae49c75d9549826f5b7adfb259649fcb
sha1值: 7302bcc88f1adb1b280497f8b83627f720c59474
sha256值: 4d16c34c491c9e6ca60524f7c139f74127d9cc8b70258380a40f274ea562ea78
sha512值: 15d82146fc34a20ef65ef43518807548f188cf55defe2932f0e684cc74abd258098c7008f923ff548fb1da2f6f529b1317982d3fcf4b6828c2444527f828b811
公钥算法: rsa
密钥长度: 2048
指纹: f8128e85d6b21bfbdbbcb784f3d7be801f82df0129d340ff82e93a317cbed2ea

硬编码敏感信息

"firebase_database_url" : "https://app-av9-8631e.firebaseio.com"
"google_api_key" : "AIzaSyCl9rvV7COaM_j81LZPG7S9a_zVp_cXcj0"
"google_crash_reporting_api_key" : "AIzaSyCl9rvV7COaM_j81LZPG7S9a_zVp_cXcj0"
"mixpanel_token" : "266b05c861f7ff6d29c32e714bbf4794"
"mixpanel_token" : "266b05c861f7ff6d29c32e714bbf4794"
"mixpanel_token" : "266b05c861f7ff6d29c32e714bbf4794"

加壳分析

第三方插件

危险动作

向手机申请的权限 是否危险 类型 详细情况
android.permission.INTERNET 正常 互联网接入 允许应用程序创建网络套接字
android.permission.ACCESS_NETWORK_STATE 正常 查看网络状态 允许应用程序查看所有网络的状态
android.permission.WRITE_EXTERNAL_STORAGE 危险 读取/修改/删除外部存储内容 允许应用程序写入外部存储
android.permission.READ_EXTERNAL_STORAGE 危险 读取外部存储器内容 允许应用程序从外部存储读取
android.permission.DOWNLOAD_WITHOUT_NOTIFICATION 未知 调用了未知的操作
android.permission.GET_TASKS 危险 检索正在运行的应用程序 允许应用程序检索有关当前和最近运行的任务的信息。可能允许恶意应用程序发现有关其他应用程序的私人信息
android.permission.CHANGE_WIFI_STATE 正常 更改Wi-Fi状态 允许应用程序连接和断开 Wi-Fi 接入点,并对配置的 Wi-Fi 网络进行更改
android.permission.ACCESS_WIFI_STATE 正常 查看Wi-Fi状态 允许应用程序查看有关 Wi-Fi 状态的信息
android.permission.QUERY_ALL_PACKAGES 正常 允许查询设备上的任何普通应用程序,无论清单声明如何
android.permission.RECEIVE_BOOT_COMPLETED 正常 开机时自动启动 允许应用程序在系统完成启动后立即启动。这可能会使启动手机需要更长的时间,并允许应用程序通过始终运行来减慢整个手机的速度
android.permission.VIBRATE 正常 可控震源 允许应用程序控制振动器
android.permission.REQUEST_INSTALL_PACKAGES 危险 允许应用程序请求安装包。 恶意应用程序可以利用它来尝试诱骗用户安装其他恶意软件包。
android.permission.WAKE_LOCK 正常 防止手机睡眠 允许应用程序防止手机进入睡眠状态
android.permission.CHANGE_WIFI_MULTICAST_STATE 正常 允许Wi-Fi多播接收 允许应用程序接收不是直接发送到您设备的数据包。这在发现附近提供的服务时很有用。它比非多播模式使用更多的功率
com.google.android.c2dm.permission.RECEIVE 合法 C2DM 权限 云到设备消息传递的权限
android.permission.SYSTEM_ALERT_WINDOW 危险 显示系统级警报 允许应用程序显示系统警报窗口。恶意应用程序可以接管手机的整个屏幕
android.permission.POST_NOTIFICATIONS 未知 调用了未知的操作
com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE 未知 调用了未知的操作
com.google.android.gms.permission.AD_ID 未知 调用了未知的操作
android.permission.CAMERA 危险 拍照和录像 允许应用程序用相机拍照和录像。这允许应用程序收集相机随时看到的图像