温馨提示:APP静态检测会有结果不完整的现象,如有疑问或建议, 可加入我们的微信群讨论
文件信息
文件名 codex1.1.9.apk文件大小 173.33MB
MD5值 5802a3d8d02f241d5479f3b2aaf0165f
SHA1值 5c6d391af5a28c7e9a95dfa64aa7975e3c85ebec
SHA256值 c14a5a00b8fd277933e59e8df10acaefd0368a273b576b7f35e6b5a9df44ef8e
APK信息
APK名称 英魂传说包名 com.jyj.codex
主活动 org.cocos2dx.javascript.AppActivity
安卓版本名称 1.1.9
域名线索
域名 | 查询域名 | ip | 地区 | 查询地区 |
---|---|---|---|---|
www.apple.com | 27.148.139.136 | China - Fujian | ||
mobilegw.alipaydev.com | 110.75.132.131 | China - Zhejiang | ||
github.com | 20.205.243.166 | Singapore - Singapore | ||
loggw-exsdk.alipay.com | 110.76.6.82 | China - Zhejiang | ||
h5.m.taobao.com | 125.38.11.131 | China - Tianjin | ||
configure.rayjump.com | 112.126.23.181 | China - Beijing | ||
mobilegw.alipay.com | 203.209.250.2 | China - Zhejiang | ||
open.e.kuaishou.com | 116.136.202.194 | China - Nei Mongol | ||
crbug.com | 216.239.32.29 | United States of America - California | ||
whatwg.org | 165.227.248.76 | United States of America - New Jersey | ||
apps.samsung.com | 104.17.142.17 | United States of America - California | ||
mobilegwpre.alipay.com | 110.75.138.35 | China - Zhejiang | ||
long.open.weixin.qq.com | 112.65.193.170 | China - Shanghai | ||
eligrey.com | 104.236.163.66 | United States of America - California | ||
xmlpull.org | 185.199.108.153 | United States of America - Pennsylvania | ||
schemas.microsoft.com | 13.107.246.73 | United States of America - Washington | ||
mclient.alipay.com | 116.142.234.199 | China - Beijing | ||
mobilegw.dl.alipaydev.com | 110.75.132.25 | China - Zhejiang | ||
pitk.birdgesdk.com | 39.108.103.199 | China - Guangdong | ||
mores.toponad.com | 123.126.74.16 | China - Beijing | ||
mcgw.alipay.com | 124.95.190.88 | China - Liaoning | ||
www.saxproject.org | 204.68.111.100 | United States of America - California | ||
www.cocos.com | 221.194.141.162 | China - Hebei | ||
analytics.rayjump.com | 123.56.168.170 | China - Beijing | ||
wappaygw.alipay.com | 124.95.190.88 | China - Liaoning | ||
open.weixin.qq.com | 220.196.139.154 | China - Jiangsu | ||
sf6-ttcdn-tos.pstatp.com | 14.205.45.114 | China - Yunnan | ||
apps.oceanengine.com | 42.56.93.212 | China - Liaoning | ||
cdn-adn-https.rayjump.com | 123.126.74.18 | China - Beijing | ||
s3-us-west-2.amazonaws.com | 52.218.182.152 | United States of America - Oregon | ||
detect.rayjump.com | 52.0.111.172 | United States of America - Virginia | ||
gist.github.com | 243.185.187.39 | - - - | ||
policy.rayjump.com | 112.126.23.181 | China - Beijing | ||
www.khronos.org | 159.65.181.57 | United States of America - New Jersey | ||
www.w3.org | 104.18.22.19 | United States of America - California | ||
play.google.com | 142.250.217.78 | United States of America - California | ||
i.snssdk.com | 123.125.216.198 | China - Beijing | ||
apps.bytesfield-b.com | 106.74.132.34 | China - Shandong | ||
www.openssl.org | 34.49.79.89 | United States of America - California | ||
heycam.github.io | 185.199.108.153 | United States of America - Pennsylvania | ||
www.samsungapps.com | 54.229.93.185 | Ireland - Dublin | ||
d1tru86qrby720.cloudfront.net | 18.172.39.192 | Japan - Tokyo | ||
aa.birdgesdk.com | 120.78.94.142 | China - Zhejiang | ||
hybird.rayjump.com | 123.126.74.16 | China - Beijing | ||
mp.weixin.qq.com | 220.196.139.154 | China - Jiangsu | ||
lazy.rayjump.com | 112.126.23.181 | China - Beijing | ||
mtg-native.rayjump.com | 123.125.46.38 | China - Beijing | ||
check.rayjump.com | 112.126.23.181 | China - Beijing | ||
apps.bytesfield.com | 106.74.132.38 | China - Shandong | ||
p1-lm.adkwai.com | 116.153.46.55 | China - Jiangxi | ||
purl.eligrey.com | 104.236.163.66 | United States of America - California | ||
static.yximgs.com | 101.73.101.241 | China - Hebei | ||
cdn.jsdelivr.net | 151.101.89.229 | United States of America - California | ||
cn-magnet.rayjump.com | 47.94.43.17 | China - Zhejiang | ||
dom.spec.whatwg.org | 165.227.248.76 | United States of America - New Jersey | ||
net.rayjump.com | 8.147.107.120 | China - Zhejiang |
URL线索
邮箱线索
邮箱地址 | 所在文件 |
---|---|
danikula@gmail.com |
com/kwad/sdk/core/videocache/h.java |
.apk@classes.dex |
com/kuaishou/weapon/p0/ac.java |
c@3.tnbyз_ |
摸瓜V2引擎 |
yth@i.ivy34tݢ |
摸瓜V2引擎 |
cocos@cocoss-macbook-pro.local |
lib/arm64-v8a/libcocos2djs.so |
cocos@cocoss-macbook-pro.local |
lib/armeabi-v7a/libcocos2djs.so |
手机线索
签名证书
APK已签名
v1 签名: True
v2 签名: True
v3 签名: False
找到 1 个唯一证书
主题: C=china, ST=fujian, L=quanzhou, O=jyjgy, OU=jyjgy, CN=linjie
签名算法: rsassa_pkcs1v15
有效期自: 2024-08-26 07:50:47+00:00
有效期至: 2034-08-24 07:50:47+00:00
发行人: C=china, ST=fujian, L=quanzhou, O=jyjgy, OU=jyjgy, CN=linjie
序列号: 0x776762fe
哈希算法: sha256
md5值: e5fb8735e8f505dd038b3f02f05d5540
sha1值: f045f4c612337d606fa2f4b2c0a42c8802fca204
sha256值: 14c2c8450d060d6174807c9b99ca67ad72c560e18c8435d2b6ffbe2920f4df92
sha512值: 0caaf682627bfea82535746d5c5318c2128b8323cdb062577fa22ba3d244b62856141557c1cff92bed6fd446b5a2a0c2ac7cabd2e64ff845fa60c098c14b6eea
公钥算法: rsa
密钥长度: 1024
指纹: f296a70f2e0cbd6bd36e816f3a05f9bcd86fc24291b3a4af04a5e2e6da79ad75
硬编码敏感信息
"anythink_myoffer_feedback_violation_of_laws" : "Illegal"
"dyStrategy.privateAddress" : "privateAddress"
"anythink_myoffer_feedback_violation_of_laws" : "违规违法"
加壳分析
第三方插件
危险动作
向手机申请的权限 | 是否危险 | 类型 | 详细情况 |
---|---|---|---|
android.permission.INTERNET | 正常 | 互联网接入 | 允许应用程序创建网络套接字 |
android.permission.ACCESS_NETWORK_STATE | 正常 | 查看网络状态 | 允许应用程序查看所有网络的状态 |
android.permission.ACCESS_WIFI_STATE | 正常 | 查看Wi-Fi状态 | 允许应用程序查看有关 Wi-Fi 状态的信息 |
android.permission.VIBRATE | 正常 | 可控震源 | 允许应用程序控制振动器 |
android.permission.WRITE_EXTERNAL_STORAGE | 危险 | 读取/修改/删除外部存储内容 | 允许应用程序写入外部存储 |
android.permission.REQUEST_INSTALL_PACKAGES | 危险 | 允许应用程序请求安装包。 | 恶意应用程序可以利用它来尝试诱骗用户安装其他恶意软件包。 |
android.permission.WAKE_LOCK | 正常 | 防止手机睡眠 | 允许应用程序防止手机进入睡眠状态 |
com.jyj.codex.openadsdk.permission.TT_PANGOLIN | 未知 | 调用了未知的操作 | |
android.permission.READ_EXTERNAL_STORAGE | 危险 | 读取外部存储器内容 | 允许应用程序从外部存储读取 |
android.permission.READ_PHONE_STATE | 危险 | 读取电话状态和身份 | 允许应用访问设备的电话功能。具有此权限的应用程序可以确定此电话的电话号码和序列号,呼叫是否处于活动状态,呼叫所连接的号码等 |
com.google.android.gms.permission.AD_ID | 未知 | 调用了未知的操作 | |
android.permission.CHANGE_NETWORK_STATE | 正常 | 更改网络连接 | 允许应用程序更改网络连接状态。 |
android.permission.ACCESS_COARSE_LOCATION | 危险 | 粗定位 | 访问粗略位置源,例如移动网络数据库,以确定大概的电话位置(如果可用)。恶意应用程序可以使用它来确定您的大致位置 |
android.permission.QUERY_ALL_PACKAGES | 正常 | 允许查询设备上的任何普通应用程序,无论清单声明如何 | |
android.permission.REORDER_TASKS | 正常 | 重新排序正在运行的应用程序 | 允许应用程序将任务移动到前台和后台。恶意应用程序可以在不受您控制的情况下将自己强加于前 |
com.asus.msa.SupplementaryDID.ACCESS | 未知 | 调用了未知的操作 | |
android.permission.SYSTEM_ALERT_WINDOW | 危险 | 显示系统级警报 | 允许应用程序显示系统警报窗口。恶意应用程序可以接管手机的整个屏幕 |
android.permission.CHANGE_WIFI_STATE | 正常 | 更改Wi-Fi状态 | 允许应用程序连接和断开 Wi-Fi 接入点,并对配置的 Wi-Fi 网络进行更改 |