温馨提示:APP静态检测会有结果不完整的现象,如有疑问或建议, 可加入我们的微信群讨论
文件信息
文件名 zhaoyaoad321.apk文件大小 12.31MB
MD5值 5eb549e856013128b1c00959e68fa3d3
SHA1值 24d7ee1975644cf46c516d6ca3010ee13295af73
SHA256值 44fd2dc2c9ae9ae31defa816ca26298969d34de062df8edbdc227cb14d72adf3
APK信息
APK名称 照妖镜1.8包名 com.android.ftpeasys
主活动 a.more.box.ui.activity.SplashActivity
安卓版本名称 1.0
域名线索
域名 | 查询域名 | ip | 地区 | 查询地区 |
---|---|---|---|---|
cpucdn.baidu.com | 221.204.49.35 | China - Shanxi | ||
hmma.baidu.com | 110.242.68.196 | China - Hebei | ||
render-server.cdn.bcebos.com | 221.204.61.38 | China - Shanxi | ||
cpu-openapi.baidu.com | 110.242.68.91 | China - Hebei | ||
m.baidu.com | 110.242.68.10 | China - Hebei | ||
multi-az-ad.kuaishou.com | 103.102.202.80 | China - Beijing | ||
gcc.gnu.org | 8.43.85.97 | United States of America - North Carolina | ||
211.151.146.65 | 211.151.146.65 | China - Beijing | ||
cpro.baidustatic.com | 101.72.203.38 | China - Hebei | ||
cpucdn.baidu.com.a.bdydns.com | 221.204.49.35 | China - Shanxi | ||
bes-mtj.baidu.com | 103.211.221.124 | China - Jiangsu | ||
opencdnbaiduwm.jomodns.com | 101.72.203.35 | China - Hebei | ||
lh3-dz.googleusercontent.com | 142.251.215.225 | United States of America - California | ||
lupic.cdn.bcebos.com | 123.117.133.35 | China - Beijing | ||
p2-lm.adukwai.com | 60.222.11.135 | China - Shanxi | ||
mobads-logs.e.shifen.com | 153.3.237.160 | China - Jiangsu | ||
gdfp.gifshow.com | 116.136.162.62 | China - Nei Mongol | ||
apps.samsung.com | 139.215.225.97 | China - Jilin | ||
ulogs.umeng.com | 223.109.148.130 | China - Jiangsu | ||
utoken.umeng.com | 223.109.148.139 | China - Jiangsu | ||
gcp-anycast.sg.kwaionline.com | 8.219.118.134 | Singapore - Singapore | ||
p1-lm.adkwai.com.cdn.dnsv1.com | 39.91.181.47 | China - Shandong | ||
pslog.umeng.com | 59.82.60.43 | China - Zhejiang | ||
multi-az-ulog.gifshow.com | 103.107.217.28 | China - Beijing | ||
developer.umeng.com | 59.82.112.112 | China - Zhejiang | ||
ulogs.umengcloud.com | 223.109.148.141 | China - Jiangsu | ||
p3-ad.adukwai.com | 42.56.77.2 | China - Liaoning | ||
lupic.cdn.bcebos.com.a.bdydns.com | 123.117.133.35 | China - Beijing | ||
mobads.baidu.com | 111.206.208.180 | China - Beijing | ||
alogsus.umeng.com | 223.109.148.179 | China - Jiangsu | ||
opencdnsslglobal.jomodns.com | 221.204.49.35 | China - Shanxi | ||
p1-lm.adkwai.com | 39.91.181.47 | China - Shandong | ||
mobads-logs.baidu.com | 153.3.237.160 | China - Jiangsu | ||
lh3.googleusercontent.com | 142.251.215.225 | United States of America - California | ||
c.tenor.com | 185.45.7.97 | United Kingdom of Great Britain and Northern Ireland - England | ||
encrypted-tbn0.gstatic.com | 142.251.215.238 | United States of America - California | ||
media.tenor.com | 67.228.102.32 | United States of America - California | ||
gcp-anycast-nq.sg.kwaionline.com | 8.219.118.134 | Singapore - Singapore | ||
p4-ad.adukwai.com | 60.6.3.120 | China - Hebei | ||
tx.a.kspkg.com | 221.204.73.105 | China - Shanxi | ||
cpu.baidu.com | 110.242.68.91 | China - Hebei | ||
plbslog.umeng.com | 36.156.202.68 | China - Jiangsu | ||
open.e.kuaishou.com | 116.136.202.194 | China - Nei Mongol | ||
w1.kskwai.com | 123.125.244.44 | China - Beijing | ||
lqlq6pqu.ovslegodl.sched.ovscdns.com | 43.152.24.53 | Hong Kong - Hong Kong | ||
static.yximgs.com | 60.222.11.128 | China - Shanxi | ||
edgedl.me.gvt1.com | 34.104.35.123 | United States of America - California | ||
github.com | 20.205.243.166 | Singapore - Singapore | ||
alogus.umeng.com | 223.109.148.177 | China - Jiangsu | ||
p2-ad.adukwai.com | 60.222.11.138 | China - Shanxi | ||
cpro.baidustatic.com.a.bdydns.com | 101.72.203.38 | China - Hebei | ||
p5-ad.adukwai.com | 123.117.133.41 | China - Beijing | ||
w1.kskwai.com.cdn.dnsv1.com | 123.125.244.23 | China - Beijing | ||
haokan.baidu.com | 111.206.209.29 | China - Beijing | ||
zt.gifshow.com | 103.102.202.120 | China - Beijing | ||
mobads-pre-config.cdn.bcebos.com | 221.204.61.38 | China - Shanxi | ||
a11agcf1.ovslegodl.sched.ovscdns.com | 203.205.136.188 | Hong Kong - Hong Kong | ||
aden.baidu.com | 110.242.68.230 | China - Hebei | ||
union.baidu.com | 111.206.208.169 | China - Beijing | ||
tx.a.kspkg.com.cdn.dnsv1.com | 221.204.72.196 | China - Shanxi | ||
d9cqi2xz.sched.kslego-dk.tdnsstic1.cn | 221.204.72.196 | China - Shanxi | ||
127.0.0.1 | 127.0.0.1 | - - - | ||
googlehosted.l.googleusercontent.com | 142.251.215.225 | United States of America - California | ||
adjs-default-scd.e.kuaishou.com | 116.136.202.194 | China - Nei Mongol | ||
opencdnglobal.gshifen.com | 103.235.45.242 | Hong Kong - Hong Kong | ||
opencdnsslv6.jomodns.com | 123.117.133.35 | China - Beijing | ||
ulog-sdk.gifshow.com | 103.102.202.158 | China - Beijing | ||
mobads.e.shifen.com | 111.206.208.180 | China - Beijing |
URL线索
邮箱线索
邮箱地址 | 所在文件 |
---|---|
danikula@gmail.com |
com/kwad/sdk/core/videocache/h.java |
.apk@classes.dex |
com/kuaishou/weapon/p0/ac.java |
手机线索
签名证书
APK已签名
v1 签名: True
v2 签名: True
v3 签名: True
找到 1 个唯一证书
主题: CN=null, OU=null, O=null, L=null, ST=null, C=null
签名算法: rsassa_pkcs1v15
有效期自: 2023-03-13 05:39:06+00:00
有效期至: 2048-03-06 05:39:06+00:00
发行人: CN=null, OU=null, O=null, L=null, ST=null, C=null
序列号: 0x1
哈希算法: sha256
md5值: 3f174f045db1cca96c224a78f723de78
sha1值: 43ec84f5258490dddb46191964234dfe1100e43c
sha256值: 4276cf49530eff26205127c1cd5acf3422b943862a3f944e5b1b34382d23a424
sha512值: 8edb5a66bd17141bfc884efc2d9d5a2cd6995528e0bb5ac5b42fab851280b33f448fd42f6da0e5dd2186c110c3c3fbf352e4830b827cf5b41fdd5151a8f10620
公钥算法: rsa
密钥长度: 2048
指纹: 5a4ef851f2efe993297da5d9511d4460950f3c062fafcbc9c3dd9ea6801ffa02
硬编码敏感信息
加壳分析
第三方插件
危险动作
向手机申请的权限 | 是否危险 | 类型 | 详细情况 |
---|---|---|---|
android.permission.INTERNET | 正常 | 互联网接入 | 允许应用程序创建网络套接字 |
android.permission.ACCESS_NETWORK_STATE | 正常 | 查看网络状态 | 允许应用程序查看所有网络的状态 |
android.permission.ACCESS_WIFI_STATE | 正常 | 查看Wi-Fi状态 | 允许应用程序查看有关 Wi-Fi 状态的信息 |
android.permission.READ_PHONE_STATE | 危险 | 读取电话状态和身份 | 允许应用访问设备的电话功能。具有此权限的应用程序可以确定此电话的电话号码和序列号,呼叫是否处于活动状态,呼叫所连接的号码等 |
android.permission.ACCESS_COARSE_LOCATION | 危险 | 粗定位 | 访问粗略位置源,例如移动网络数据库,以确定大概的电话位置(如果可用)。恶意应用程序可以使用它来确定您的大致位置 |
android.permissio.WRITE_EXTERNAL_STORAGE | 危险 | 读取/修改/删除外部存储内容 | 允许应用程序写入外部存储 |
android.permission.REQUEST_INSTALL_PACKAGES | 危险 | 允许应用程序请求安装包。 | 恶意应用程序可以利用它来尝试诱骗用户安装其他恶意软件包。 |
android.permission.QUERY_ALL_PACKAGES | 正常 | 允许查询设备上的任何普通应用程序,无论清单声明如何 | |
android.permission.VIBRATE | 正常 | 可控震源 | 允许应用程序控制振动器 |
com.zyfb.android.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION | 未知 | 调用了未知的操作 |