温馨提示:APP静态检测会有结果不完整的现象,如有疑问或建议, 可加入我们的微信群讨论

APP图标



下载APP

文件信息

文件名 nhfss002_2024.8.20.400.apk
文件大小 11.87MB
MD5值 9ab8c5d8c1d0e4c1cbfdb0761bd465a2
SHA1值 171291da3a41b81df224967bd7d4da47b99b9e6b
SHA256值 9ea80b497ceeeb53d734f4402372677f71a11b26b145ca452019e978982f1eed

APK信息

APK名称 N号房
包名 com.zq.nhf
主活动 com.zq.douyin.MainActivity
安卓版本名称 1.1.1
域名线索 35 条
查看
URL线索 16 条
查看
邮箱线索 3 条
查看
手机号线索 9 条
查看

域名线索

域名 查询域名 ip 地区 查询地区
lf3-cdn-tos.bdxiguastatic.com 42.59.6.90 China - Liaoning
cdn.plyr.io 104.27.195.88 United States of America - California
html2canvas.hertzen.com 172.67.140.170 United States of America - California
go.aniview.com 104.120.120.147 Italy - Lombardia
pan.baidu.com 110.242.69.176 China - Hebei
brianleroux.github.com 185.199.109.153 United States of America - Pennsylvania
t.me 127.0.0.1 - - -
aomedia.org 185.199.110.153 United States of America - Pennsylvania
jsperf.com 104.16.227.18 United States of America - California
swiperjs.comn 没有ip信息 没有地区信息
d3n2vdp1h9ohbb.cloudfront.net 13.33.100.176 Singapore - Singapore
rm.zkbsw.cc 103.190.125.14 Hong Kong - Hong Kong
ldy.nroom10.com 106.74.25.198 China - Shandong
imasdk.googleapis.com 114.250.65.33 China - Beijing
issues.apache.org 168.119.33.54 Germany - Bayern
hertzen.com 104.21.65.51 United States of America - California
cres.rqi564.com 103.39.108.219 Hong Kong - Hong Kong
cdn.jsdelivr.net 8.7.198.46 United States of America - Louisiana
i.ytimg.com 168.143.162.58 United States of America - Washington
noembed.com 151.101.129.91 United States of America - California
github.com 20.205.243.166 Singapore - Singapore
player.vimeo.com 157.240.17.35 Switzerland - Zurich
www.apache.org 151.101.2.132 United States of America - California
www.youtube-nocookie.com 199.16.158.182 United States of America - California
bk.dlkxi.cc 0.0.0.0 - - -
www.youtube.com 199.16.158.182 United States of America - California
raw.githubusercontent.com 185.199.109.133 United States of America - Pennsylvania
www.w3.org 104.18.23.19 United States of America - California
hfive.qsxon.com 104.21.40.242 United States of America - California
axios-http.com 18.139.194.139 Singapore - Singapore
img01.yzcdn.cn 221.15.70.53 China - Henan
developer.mozilla.org 34.111.97.67 United States of America - Missouri
43.231.0.225 43.231.0.225 Hong Kong - Hong Kong
34.150.33.40 34.150.33.40 Hong Kong - Hong Kong
vimeo.com 31.13.88.26 Ireland - Dublin

URL线索

URL信息 Url所在文件
https://cdn.jsdelivr.net/npm/workbox-cdn@5.1.4/workbox
摸瓜V2引擎
http://www.apache.org/licenses/LICENSE-2.0
摸瓜V2引擎
http://jsperf.com/b64tests
摸瓜V2引擎
http://server/myapp/index.html
摸瓜V2引擎
https://issues.apache.org/jira/browse/CB-11522)
摸瓜V2引擎
https://html2canvas.hertzen.com>
摸瓜V2引擎
https://hertzen.com>
摸瓜V2引擎
http://www.apache.org/licenses/LICENSE-2.0
摸瓜V2引擎
http://www.apache.org/licenses/LICENSE-2.0
摸瓜V2引擎
http://www.apache.org/licenses/LICENSE-2.0
摸瓜V2引擎
http://www.apache.org/licenses/LICENSE-2.0
摸瓜V2引擎
https://developer.mozilla.org/fr/docs/Web/API/CustomEvent
摸瓜V2引擎
http://www.apache.org/licenses/LICENSE-2.0
摸瓜V2引擎
http://www.apache.org/licenses/LICENSE-2.0
摸瓜V2引擎
http://www.apache.org/licenses/LICENSE-2.0
摸瓜V2引擎
http://brianleroux.github.com/lawnchair/),
摸瓜V2引擎
http://www.apache.org/licenses/LICENSE-2.0
摸瓜V2引擎
https://raw.githubusercontent.com/stefanpenner/es6-promise/master/LICENSE
摸瓜V2引擎
http://www.apache.org/licenses/LICENSE-2.0
摸瓜V2引擎
https://cdn.plyr.io/3.7.2/plyr.svg
摸瓜V2引擎
https://cdn.plyr.io/static/blank.mp4
摸瓜V2引擎
https://player.vimeo.com/api/player.js
摸瓜V2引擎
https://player.vimeo.com/video/
摸瓜V2引擎
https://vimeo.com/api/oembed.json?url=
摸瓜V2引擎
https://www.youtube.com/iframe_api
摸瓜V2引擎
https://noembed.com/embed?url=https://www.youtube.com/watch?v=
摸瓜V2引擎
https://imasdk.googleapis.com/js/sdkloader/ima3.js
摸瓜V2引擎
https://www.youtube-nocookie.com
摸瓜V2引擎
http://www.youtube.com
摸瓜V2引擎
https://i.ytimg.com/vi/
摸瓜V2引擎
https://go.aniview.com/api/adserver6/vast/
摸瓜V2引擎
https://hfive.qsxon.com
摸瓜V2引擎
https://t.me/
摸瓜V2引擎
https://lf3-cdn-tos.bdxiguastatic.com/obj/ixigua-static/xigua_fe/xigua_video_web_pc/static/media/series.bd5583e1.gif
摸瓜V2引擎
https://pan.baidu.com/s/1wPlQE5srd_cGuPVqBWNUxw?pwd=1234
摸瓜V2引擎
https://ldy.nroom10.com:19999/nhfth001
摸瓜V2引擎
https://cres.rqi564.com
摸瓜V2引擎
https://43.231.0.225:19888/api/v1
摸瓜V2引擎
https://34.150.33.40:19888/api/v1
摸瓜V2引擎
https://bk.dlkxi.cc/api/v1
摸瓜V2引擎
https://rm.zkbsw.cc/api/v1
摸瓜V2引擎
https://d3n2vdp1h9ohbb.cloudfront.net/api/v1
摸瓜V2引擎
https://aomedia.org/emsg/ID3
摸瓜V2引擎
https://github.com/mathiasbynens/CSS.escape).
摸瓜V2引擎
https://github.com/zloirock/core-js/blob/v3.37.1/LICENSE
摸瓜V2引擎
https://github.com/zloirock/core-js
摸瓜V2引擎
http://a
摸瓜V2引擎
http://a/c%20d?a=1&c=3
摸瓜V2引擎
https://a@b
摸瓜V2引擎
http://x
摸瓜V2引擎
https://github.com/crypto-browserify/crypto-browserify
摸瓜V2引擎
https://img01.yzcdn.cn/vant/share-sheet-
摸瓜V2引擎
https://img01.yzcdn.cn/vant/empty-image-
摸瓜V2引擎
http://swiperjs.com\n
摸瓜V2引擎
https://github.com/indutny/elliptic/issues
摸瓜V2引擎
https://github.com/indutny/elliptic
摸瓜V2引擎
https://github.com/axios/axios.git
摸瓜V2引擎
https://github.com/axios/axios/issues
摸瓜V2引擎
https://axios-http.com
摸瓜V2引擎

邮箱线索

邮箱地址 所在文件
solderzzc@gmail.com
摸瓜V2引擎
stefano.magrassi@gmail.com
摸瓜V2引擎
sy12god@gmail.com
摸瓜V2引擎
git@github.com
摸瓜V2引擎
fedor@indutny.com
摸瓜V2引擎

手机线索

手机号 所在文件
13411538969
defpackage/l7.java
14622674786
defpackage/xd.java
15351175428
defpackage/wb.java
17890589254
defpackage/qu.java
17210090653
defpackage/s5.java
19847420677
defpackage/sn.java
17145714854
defpackage/ya.java
15702333322
defpackage/ma.java
19919152923
摸瓜V2引擎

代码反编译

AndroidManifest配置 查看
Java源代码 查看 -- 下载

签名证书

APK已签名
v1 签名: True
v2 签名: True
v3 签名: True
找到 1 个唯一证书
主题: C=xx, ST=xx, L=xx, O=XX, OU=xx, CN=xx.com
签名算法: rsassa_pkcs1v15
有效期自: 2024-08-20 00:14:52+00:00
有效期至: 2052-01-06 00:14:52+00:00
发行人: C=xx, ST=xx, L=xx, O=XX, OU=xx, CN=xx.com
序列号: 0x41ae68df
哈希算法: sha256
md5值: 21fdc1d901bce0a742d75d1a7a0faaeb
sha1值: cf55947c7d8fa1dd0ad9be14b0dae3b80d1e67d6
sha256值: bebbc4959edf561e2b2520387736cdcc87336007e0947387e5d3d6a33ca0c6e6
sha512值: 5658040192badd86001f462a0044802a7599d482b4dfd51d1efaf9baaac5647d6234ac517d1b8691d220d92dd09356f8d222aa91c89112c3ddeba07b819f4d9c
公钥算法: rsa
密钥长度: 2048
指纹: 3d156e714e80c135833b4f865de43624cd4e0a197cf85e1e5aa726999b9c5ac2

硬编码敏感信息

加壳分析

第三方插件

危险动作

向手机申请的权限 是否危险 类型 详细情况
android.permission.INTERNET 正常 互联网接入 允许应用程序创建网络套接字
android.permission.ACCESS_NETWORK_STATE 正常 查看网络状态 允许应用程序查看所有网络的状态
android.permission.ACCESS_WIFI_STATE 正常 查看Wi-Fi状态 允许应用程序查看有关 Wi-Fi 状态的信息
android.permission.WRITE_EXTERNAL_STORAGE 危险 读取/修改/删除外部存储内容 允许应用程序写入外部存储
android.permission.REQUEST_INSTALL_PACKAGES 危险 允许应用程序请求安装包。 恶意应用程序可以利用它来尝试诱骗用户安装其他恶意软件包。
android.permission.READ_EXTERNAL_STORAGE 危险 读取外部存储器内容 允许应用程序从外部存储读取