温馨提示:APP静态检测会有结果不完整的现象,如有疑问或建议, 可加入我们的微信群讨论

APP图标

图标隐藏

下载APP

文件信息

文件名 uetoken-xyz.foil.teyelf.apk
文件大小 33.79MB
MD5值 626ea3a9a14eb6b3a236f86b7ff0b61a
SHA1值 8f1550f86ee0e5db8bd335960db552c6980b8090
SHA256值 13bf48166d9c591dbfb9066b84f59b6c8fe90162bb7eddd8382768fbec573a17

APK信息

APK名称 码库
包名 xyz.foil.teyelf
主活动 com.uetoken.cn.mvp.ui.activity.SplashActivity
安卓版本名称 4.0.6
域名线索 37 条
查看
URL线索 46 条
查看
邮箱线索 1 条
查看
手机号线索 3 条
查看

域名线索

域名 查询域名 ip 地区 查询地区
ucc.umeng.com 203.119.169.175 China - Zhejiang
uev2.dtwy.xyz 116.213.43.145 Hong Kong - Hong Kong
xml.apache.org 151.101.2.132 United States of America - California
errlogos.umeng.com 47.246.110.18 Singapore - Singapore
utoken.umeng.com 223.109.148.171 China - Jiangsu
log.tbs.qq.com 124.95.231.218 China - Liaoning
errnewlogos.umeng.com 47.246.110.96 Singapore - Singapore
resolve.umeng.com 223.109.148.141 China - Jiangsu
pslog.umeng.com 59.82.60.43 China - Zhejiang
tbs.imtt.qq.com 122.188.45.181 China - Hubei
cnlogs.umeng.com 223.109.148.141 China - Jiangsu
schemas.android.com 没有ip信息 没有地区信息
mdc.html5.qq.com 125.39.196.199 China - Tianjin
accounts.google.com 46.82.174.69 Germany - Niedersachsen
support.metamask.io 173.252.108.21 United States of America - California
ulogs.umeng.com 223.109.148.141 China - Jiangsu
alogus.umeng.com 223.109.148.141 China - Jiangsu
ulogs.umengcloud.com 223.109.148.141 China - Jiangsu
errnewlog.umeng.com 223.109.148.129 China - Jiangsu
developer.umeng.com 59.82.60.43 China - Zhejiang
help.tpwallet.io 202.53.137.209 Hong Kong - Hong Kong
api.github.com 20.205.243.168 Singapore - Singapore
errlog.umeng.com 223.109.148.142 China - Jiangsu
debugx5.qq.com 60.29.240.122 China - Tianjin
d30bkbk9zem6y9.cloudfront.net 108.157.254.100 United States of America - Washington
github.com 20.205.243.166 Singapore - Singapore
www.slf4j.org 195.15.222.169 Switzerland - Geneve
alogsus.umeng.com 223.109.148.141 China - Jiangsu
greenrobot.org 85.13.163.69 Germany - Thuringen
pms.mb.qq.com 60.29.240.17 China - Tianjin
debugtbs.qq.com 60.29.240.122 China - Tianjin
s3-us-west-1.amazonaws.com 52.219.120.216 United States of America - California
cfg.imtt.qq.com 60.29.240.17 China - Tianjin
res.ue.shumaoheng.com 47.97.231.117 China - Zhejiang
client.ue.shumaoheng.com 47.97.231.117 China - Zhejiang
aspect-upush.umeng.com 223.109.148.141 China - Jiangsu
unpkg.com 104.18.1.22 United States of America - California

URL线索

URL信息 Url所在文件
https://s3-us-west-1.amazonaws.com
com/amazonaws/services/s3/AmazonS3Client.java
http://xml.apache.org/xslt
com/blankj/utilcode/util/y.java
https://errnewlogos.umeng.com/api/crashsdk/logcollect
com/efs/sdk/base/core/controller/ControllerCenter.java
https://errnewlog.umeng.com/api/crashsdk/logcollect
com/efs/sdk/base/core/controller/ControllerCenter.java
https://errnewlog.umeng.com/api/crashsdk/logcollect
com/efs/sdk/base/core/f/c.java
https://)([\\s\\S]+)
com/huawei/hms/scankit/p/t3.java
https://github.com/kongzue/DialogX/wiki
com/kongzue/dialogx/DialogX.java
https://github.com/kongzue/DialogX
com/kongzue/dialogx/interfaces/BaseDialog.java
https://github.com/kongzue/DialogX/wiki
com/kongzue/dialogx/interfaces/l.java
https://github.com/kongzue/DialogX
com/kongzue/filedialog/FileDialog.java
https://debugtbs.qq.com
com/tencent/smtt/sdk/WebView.java
https://debugx5.qq.com
com/tencent/smtt/sdk/WebView.java
https://debugtbs.qq.com?10000\
com/tencent/smtt/sdk/WebView.java
https://pms.mb.qq.com/rsp204
com/tencent/smtt/sdk/k.java
https://mdc.html5.qq.com/d/directdown.jsp?channel_id=50079
com/tencent/smtt/sdk/stat/MttLoader.java
https://mdc.html5.qq.com/mh?channel_id=50079&u=
com/tencent/smtt/sdk/stat/MttLoader.java
https://log.tbs.qq.com/ajax?c=pu&v=2&k=
com/tencent/smtt/utils/o.java
https://log.tbs.qq.com/ajax?c=pu&tk=
com/tencent/smtt/utils/o.java
https://log.tbs.qq.com/ajax?c=dl&k=
com/tencent/smtt/utils/o.java
https://cfg.imtt.qq.com/tbs?v=2&mk=
com/tencent/smtt/utils/o.java
https://log.tbs.qq.com/ajax?c=ul&v=2&k=
com/tencent/smtt/utils/o.java
https://tbs.imtt.qq.com/plugin/DebugPlugin_v2.tbs
com/tencent/smtt/utils/d.java
https://errlogos.umeng.com
com/uc/crashsdk/a/d.java
https://errlog.umeng.com
com/uc/crashsdk/a/d.java
https://api.github.com
com/uetoken/cn/mvp/model/api/Api.java
https://uev2.dtwy.xyz
com/uetoken/cn/mvp/model/api/Api.java
http://client.ue.shumaoheng.com
com/uetoken/cn/mvp/model/api/Api.java
https://d30bkbk9zem6y9.cloudfront.net/uev2/0.json
com/uetoken/cn/mvp/model/api/Api.java
https://d30bkbk9zem6y9.cloudfront.net/uev2/0_test.json
com/uetoken/cn/mvp/model/api/Api.java
https://unpkg.com/vconsole@latest/dist/vconsole.min.js';script.onload
com/uetoken/cn/mvp/ui/tencentx5/X5WebViewActivity.java
http://res.ue.shumaoheng.com/ueres/test/uejstest.html
com/uetoken/cn/mvp/ui/activity/me/AboutUsActivity.java
https://support.metamask.io/zh-cn/managing-my-tokens/custom-tokens/how-to-display-tokens-in-metamask/
com/uetoken/cn/mvp/ui/activity/dtc/DtcPublicChainActivity.java
https://help.tpwallet.io/cn/wallet-management/token/about-custom-token
com/uetoken/cn/mvp/ui/activity/dtc/DtcPublicChainActivity.java
http://developer.umeng.com/docs/66650/cate/66650
com/umeng/analytics/pro/l.java
https://aspect-upush.umeng.com/occa/v1/event/report
com/umeng/analytics/pro/aq.java
https://cnlogs.umeng.com/ext_event
com/umeng/analytics/pro/aq.java
https://cnlogs.umeng.com/uapp_ekverr_logs
com/umeng/analytics/pro/aq.java
https://resolve.umeng.com/resolve
com/umeng/analytics/pro/by.java
https://ucc.umeng.com/v2/inn/fetch
com/umeng/analytics/pro/ar.java
https://developer.umeng.com/docs/66632/detail/
com/umeng/commonsdk/debug/UMLogUtils.java
https://developer.umeng.com/docs/119267/detail/182050
com/umeng/commonsdk/debug/UMLogCommon.java
https://developer.umeng.com/docs/119267/detail/118637
com/umeng/commonsdk/debug/UMLogCommon.java
https://ulogs.umeng.com
com/umeng/commonsdk/statistics/UMServerURL.java
https://alogus.umeng.com
com/umeng/commonsdk/statistics/UMServerURL.java
https://alogsus.umeng.com
com/umeng/commonsdk/statistics/UMServerURL.java
https://ulogs.umengcloud.com
com/umeng/commonsdk/statistics/UMServerURL.java
https://pslog.umeng.com
com/umeng/commonsdk/vchannel/a.java
https://pslog.umeng.com/
com/umeng/commonsdk/vchannel/a.java
https://ulogs.umeng.com
com/umeng/commonsdk/stateless/a.java
https://alogus.umeng.com
com/umeng/commonsdk/stateless/a.java
https://errnewlog.umeng.com
com/umeng/umcrash/UMCrashContent.java
https://errnewlogos.umeng.com
com/umeng/umcrash/UMCrashContent.java
https://errnewlogos.umeng.com/upload
com/umeng/umcrash/UMCrash.java
https://errnewlogos.umeng.com
com/umeng/umcrash/UMCrash.java
https://errnewlog.umeng.com/upload
com/umeng/umcrash/UMCrash.java
https://errnewlog.umeng.com
com/umeng/umcrash/UMCrash.java
https://utoken.umeng.com
com/umeng/umzid/ZIDManager.java
https://github.com/ReactiveX/RxJava/wiki/Plugins
io/reactivex/Completable.java
https://github.com/ReactiveX/RxJava/wiki/Plugins
io/reactivex/Single.java
https://github.com/ReactiveX/RxJava/wiki/Plugins
io/reactivex/Maybe.java
https://github.com/ReactiveX/RxJava/wiki/Plugins
io/reactivex/Observable.java
https://github.com/ReactiveX/RxJava/wiki/Plugins
io/reactivex/Flowable.java
https://github.com/ReactiveX/RxJava/wiki/Error-Handling
io/reactivex/exceptions/OnErrorNotImplementedException.java
https://github.com/ReactiveX/RxJava/wiki/What's-different-in-2.0
io/reactivex/exceptions/UndeliverableException.java
http://schemas.android.com/apk/res/android
i4/b.java
http://www.slf4j.org/codes.html
hg/b.java
https://greenrobot.org/greendao/documentation/database-encryption/
org/greenrobot/greendao/database/DatabaseOpenHelper.java
http://xml.apache.org/xslt
n5/b.java
http://localhost/
retrofit2/Response.java
https://accounts.google.com/o/oauth2/v2/auth
e9/b.java
https://uev2.dtwy.xyz/home/googleauth
e9/b.java
https://api.github.com/
f5/q.java
https://github.com/kongzue/DialogX
u5/a.java

邮箱线索

邮箱地址 所在文件
x5tbs@tencent.com
com/tencent/smtt/sdk/X5Downloader.java

手机线索

手机号 所在文件
15107301212
wa/e0.java
15107301212
wa/o.java
15107301212
wa/w0.java

代码反编译

AndroidManifest配置 查看
Java源代码 查看 -- 下载

签名证书

APK已签名
v1 签名: True
v2 签名: True
v3 签名: True
找到 1 个唯一证书
主题: C=China, ST=China, L=China, O=China, OU=China, CN=China
签名算法: rsassa_pkcs1v15
有效期自: 2023-11-22 09:21:03+00:00
有效期至: 2078-08-25 09:21:03+00:00
发行人: C=China, ST=China, L=China, O=China, OU=China, CN=China
序列号: 0x1b2a8a2d2df746bf
哈希算法: sha256
md5值: 799bdabe869f46e1255ebf22834e7420
sha1值: 88992718d6c939a22f89f4979feaf2f519a4a499
sha256值: 9c65643c3a3f0c0fdcf9aa87d23e63372b51c42fa09153098c3031bd6f8914b9
sha512值: a2aa136814d5f44d3546af53432b15f513ade41d7db69b0283f47fb621272ab8ae4d33ae69adb559be1c57def0f31afc3f9e946a1139cd95e3448eefc2f10b47
公钥算法: rsa
密钥长度: 2048
指纹: 253b34f6e924674f0e22cb6a407623e6e4c24592e3fe023c6af74683fafe24c3

硬编码敏感信息

加壳分析

第三方插件

危险动作

向手机申请的权限 是否危险 类型 详细情况
android.permission.CAMERA 危险 拍照和录像 允许应用程序用相机拍照和录像。这允许应用程序收集相机随时看到的图像
android.permission.MANAGE_EXTERNAL_STORAGE 危险 允许应用程序广泛访问范围存储中的外部存储 允许应用程序广泛访问范围存储中的外部存储。旨在供少数需要代表用户管理文件的应用程序使用
android.permission.INTERNET 正常 互联网接入 允许应用程序创建网络套接字
android.permission.WRITE_EXTERNAL_STORAGE 危险 读取/修改/删除外部存储内容 允许应用程序写入外部存储
android.permission.READ_EXTERNAL_STORAGE 危险 读取外部存储器内容 允许应用程序从外部存储读取
android.permission.ACCESS_NETWORK_STATE 正常 查看网络状态 允许应用程序查看所有网络的状态
android.permission.ACCESS_WIFI_STATE 正常 查看Wi-Fi状态 允许应用程序查看有关 Wi-Fi 状态的信息
android.permission.CHANGE_WIFI_STATE 正常 更改Wi-Fi状态 允许应用程序连接和断开 Wi-Fi 接入点,并对配置的 Wi-Fi 网络进行更改
android.permission.READ_PHONE_STATE 危险 读取电话状态和身份 允许应用访问设备的电话功能。具有此权限的应用程序可以确定此电话的电话号码和序列号,呼叫是否处于活动状态,呼叫所连接的号码等
android.permission.BLUETOOTH_SCAN 未知 调用了未知的操作
android.permission.BLUETOOTH_CONNECT 未知 调用了未知的操作
android.permission.BLUETOOTH_ADVERTISE 未知 调用了未知的操作
android.permission.BLUETOOTH 正常 创建蓝牙连接 允许应用程序连接到配对的蓝牙设备
android.permission.BLUETOOTH_ADMIN 正常 蓝牙管理 允许应用程序发现和配对蓝牙设备。
android.permission.ACCESS_FINE_LOCATION 危险 精细定位(GPS) 访问精细位置源,例如手机上的全球定位系统,如果可用。恶意应用程序可以使用它来确定您的位置,并可能消耗额外的电池电量
android.permission.FOREGROUND_SERVICE 正常 允许常规应用程序使用 Service.startForeground。
android.permission.READ_MEDIA_IMAGES 未知 调用了未知的操作
android.permission.READ_MEDIA_AUDIO 未知 调用了未知的操作
android.permission.READ_MEDIA_VIDEO 未知 调用了未知的操作
android.permission.USE_BIOMETRIC 正常 允许应用使用设备支持的生物识别模式。
android.permission.USE_FINGERPRINT 正常 allow use of指纹 该常量在 API 级别 28 中已被弃用。应用程序应改为请求 USE_BIOMETRIC
android.permission.REQUEST_INSTALL_PACKAGES 危险 允许应用程序请求安装包。 恶意应用程序可以利用它来尝试诱骗用户安装其他恶意软件包。
android.permission.POST_NOTIFICATIONS 未知 调用了未知的操作
com.uetoken.cn.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION 未知 调用了未知的操作
com.google.android.gms.permission.AD_ID 未知 调用了未知的操作