温馨提示:APP静态检测会有结果不完整的现象,如有疑问或建议, 可加入我们的微信群讨论
文件信息
文件名 gofly.apk文件大小 39.8MB
MD5值 1dbccc8dfca806bb858cb0b9b1132bc0
SHA1值 5aecfefc37c7f04a218af2598e2adc08209f75cb
SHA256值 a1471d99e722c288b37a2065e9b36f9385e39c77608c2153283b1407b9e91451
APK信息
APK名称 GoFly VPN包名 com.ambrose.overwall
主活动 com.ambrose.overwall.WelcomeActivity
安卓版本名称 4.5.1
域名线索
域名 | 查询域名 | ip | 地区 | 查询地区 |
---|---|---|---|---|
rt.applovin.com | 34.117.147.68 | United States of America - Missouri | ||
ms.applovin.com | 34.102.162.219 | United States of America - Missouri | ||
app-measurement.com | 127.0.0.1 | - - - | ||
vid.applovin.com | 34.160.64.118 | United States of America - Missouri | ||
res.applovin.com | 34.149.87.163 | United States of America - Missouri | ||
adc3-launch-staging.adcolony.com | 没有ip信息 | 没有地区信息 | ||
stage-pdn.applovin.com | 107.178.242.116 | United States of America - Missouri | ||
monetization-support.applovin.com | 34.110.151.135 | United States of America - Missouri | ||
www.applovin.com | 141.193.213.20 | United States of America - Texas | ||
www.departuresvpn.tk | 52.58.1.161 | Germany - Hessen | ||
bitbucket.org | 13.200.41.136 | India - Maharashtra | ||
t.me | 149.154.167.99 | United Kingdom of Great Britain and Northern Ireland - England | ||
prod-a.applovin.com | 34.117.147.68 | United States of America - Missouri | ||
pdn.applovin.com | 34.160.254.144 | United States of America - Missouri | ||
u.appl.vn | 34.149.159.73 | United States of America - Missouri | ||
unity-data-gke-prd-gateway.cdp.internal.unity3d.com | 34.107.172.168 | United States of America - Missouri | ||
publisher-config.unityads.unity3d.com | 34.110.229.214 | United States of America - Missouri | ||
android.googlesource.com | 142.250.107.82 | United States of America - California | ||
httpkafka.unityads.unity3d.com | 35.244.205.3 | United States of America - Missouri | ||
developer.android.com | 142.251.211.238 | United States of America - California | ||
www.googleadservices.com | 114.250.64.38 | China - Beijing | ||
schemas.applovin.com | 没有ip信息 | 没有地区信息 | ||
adc3-launch.adcolony.com | 34.36.45.50 | United States of America - Missouri | ||
fb.me | 127.0.0.1 | - - - | ||
firebase-settings.crashlytics.com | 114.250.64.34 | China - Beijing | ||
aomedia.org | 127.0.0.1 | - - - | ||
prod-a.applovin.comhttps | 没有ip信息 | 没有地区信息 | ||
stage-img.applovin.com | 34.160.240.239 | United States of America - Missouri | ||
d18yyyqht609b0.cloudfront.net | 3.164.143.82 | United States of America - Washington | ||
ads.api.vungle.com | 18.180.45.184 | Japan - Tokyo | ||
vungle.com | 141.193.213.10 | United States of America - Texas | ||
gce-auction22-prd.unityads.unity3d.com | 34.110.184.100 | United States of America - Missouri | ||
ms.applvn.com | 34.102.162.219 | United States of America - Missouri | ||
goo.gl | 142.251.33.78 | Canada - Ontario | ||
connectivitycheck.gstatic.com | 203.208.43.98 | China - Beijing | ||
exoplayer.dev | 185.199.111.153 | United States of America - Pennsylvania | ||
auction-load.unityads.unity3d.com | 34.49.168.197 | United States of America - California | ||
d.applvn.com | 34.110.179.88 | United States of America - Missouri | ||
ads-config.unityads.unity3d.com | 34.110.229.214 | United States of America - Missouri | ||
a.applvn.com | 34.117.147.68 | United States of America - Missouri | ||
res3.applovin.com | 34.149.87.163 | United States of America - Missouri | ||
stage-assets.applovin.com | 35.186.244.199 | United States of America - Missouri | ||
stage-vid.applovin.com | 34.149.203.26 | United States of America - Missouri | ||
www.gstatic.com | 203.208.50.34 | China - Beijing | ||
www.apache.org | 151.101.2.132 | United States of America - California | ||
img.applovin.com | 34.160.119.165 | United States of America - Missouri | ||
a.applovin.com | 34.117.147.68 | United States of America - Missouri | ||
thind.unityads.unity3d.com | 101.32.104.143 | Singapore - Singapore | ||
assets.applovin.com | 34.120.175.182 | United States of America - Missouri | ||
configv2.unityads.unity3d.com | 34.110.229.214 | United States of America - Missouri | ||
res1.applovin.com | 34.149.87.163 | United States of America - Missouri | ||
webview.unityads.unity3d.com | 127.0.0.1 | - - - | ||
api.vungle.com | 3.209.92.56 | United States of America - Virginia | ||
github.com | 20.205.243.166 | Singapore - Singapore | ||
wd.adcolony.com | 130.211.8.42 | United States of America - Missouri | ||
adc-ad-assets.adtilt.com | 151.101.91.52 | United States of America - California | ||
googlemobileadssdk.page.link | 142.251.33.65 | Canada - Ontario | ||
config.unityads.unity3d.com | 34.110.229.214 | United States of America - Missouri | ||
d.applovin.com | 34.110.179.88 | United States of America - Missouri | ||
edgedl.me.gvt1.com | 34.104.35.123 | United States of America - California | ||
rt.applvn.com | 34.117.147.68 | United States of America - Missouri | ||
res2.applovin.com | 34.149.87.163 | United States of America - Missouri | ||
www.youtube.com | 31.13.94.37 | Argentina - Ciudad Autonoma de Buenos Aires | ||
pagead2.googlesyndication.com | 114.250.65.38 | China - Beijing | ||
schemas.android.com | 没有ip信息 | 没有地区信息 | ||
cdnjs.cloudflare.com | 104.17.25.14 | United States of America - California | ||
googleads.g.doubleclick.net | 114.250.65.38 | China - Beijing | ||
play.google.com | 46.82.174.69 | Germany - Niedersachsen |
URL线索
邮箱线索
邮箱地址 | 所在文件 |
---|---|
bestcolorvolly@proton.me |
com/ambrose/overwall/fragment/k0.java |
bestcolorvolly@gmail.com |
com/ambrose/overwall/fragment/k0.java |
ambroseyuwoquan@gmail.com |
com/ambrose/overwall/fragment/child/f.java |
手机线索
签名证书
APK已签名
v1 签名: True
v2 签名: True
v3 签名: False
找到 1 个唯一证书
主题: C=yuwoquan, ST=yuwoquan, L=yuwoquan, O=yuwoquan, OU=yuwoquan, CN=yuwoquan
签名算法: rsassa_pkcs1v15
有效期自: 2018-07-04 16:04:11+00:00
有效期至: 2045-11-19 16:04:11+00:00
发行人: C=yuwoquan, ST=yuwoquan, L=yuwoquan, O=yuwoquan, OU=yuwoquan, CN=yuwoquan
序列号: 0x463b3b70
哈希算法: sha256
md5值: 24dfb3cc7c20f9a92ac07e674f0bdae2
sha1值: 230c0502c096701696d86c2b7c0d58298bcb7af8
sha256值: 6b495efbc14fc35a753932b8d0fbe3ec789c40527f2fe3a616535a3450a41e93
sha512值: 1e8e3af2ee8dc28a82ca026821ec17f158b6aed039e3040e0123691caf3e0ab7a15e9ef37c3e5913ab8e5a2a6fd4d6795f3789803fcfa87711407e2f425cf92d
公钥算法: rsa
密钥长度: 2048
指纹: fe586469b4d4d432a59a368a9b372c82a306fb9e247cb64c1675e50215fa6515
硬编码敏感信息
"google_api_key" : "AIzaSyAAcLKyFDlAA3kNdsi5LpiGzCInUloLFGU"
"google_crash_reporting_api_key" : "AIzaSyAAcLKyFDlAA3kNdsi5LpiGzCInUloLFGU"
加壳分析
第三方插件
危险动作
向手机申请的权限 | 是否危险 | 类型 | 详细情况 |
---|---|---|---|
android.permission.INTERNET | 正常 | 互联网接入 | 允许应用程序创建网络套接字 |
android.permission.BLUETOOTH | 正常 | 创建蓝牙连接 | 允许应用程序连接到配对的蓝牙设备 |
android.permission.ACCESS_NETWORK_STATE | 正常 | 查看网络状态 | 允许应用程序查看所有网络的状态 |
android.permission.ACCESS_WIFI_STATE | 正常 | 查看Wi-Fi状态 | 允许应用程序查看有关 Wi-Fi 状态的信息 |
android.permission.WAKE_LOCK | 正常 | 防止手机睡眠 | 允许应用程序防止手机进入睡眠状态 |
android.permission.FOREGROUND_SERVICE | 正常 | 允许常规应用程序使用 Service.startForeground。 | |
android.permission.CHANGE_NETWORK_STATE | 正常 | 更改网络连接 | 允许应用程序更改网络连接状态。 |
android.permission.Ad_ID | 未知 | 调用了未知的操作 | |
android.permission.QUERY_ALL_PACKAGES | 正常 | 允许查询设备上的任何普通应用程序,无论清单声明如何 | |
android.permission.POST_NOTIFICATIONS | 未知 | 调用了未知的操作 | |
com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE | 未知 | 调用了未知的操作 | |
com.google.android.gms.permission.AD_ID | 未知 | 调用了未知的操作 | |
com.ambrose.overwall.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION | 未知 | 调用了未知的操作 |