温馨提示:APP静态检测会有结果不完整的现象,如有疑问或建议, 可加入我们的微信群讨论
文件信息
文件名 via-release-cn.apk文件大小 1.73MB
MD5值 3753d5c91e7ad73e5dc162506fa0b499
SHA1值 c9d90892c3533ad55d6d16be4214c769039126a6
SHA256值 07e4cd45b5f09fefc4846f30f739a5061f56ce26104b5af7e697a67b9282c629
APK信息
APK名称 Via包名 mark.via
主活动 mark.via.Shell
安卓版本名称 5.1.1
域名线索
域名 | 查询域名 | ip | 地区 | 查询地区 |
---|---|---|---|---|
m.baidu.com | 110.242.68.9 | China - Hebei | ||
app.viayoo.com | 47.98.219.161 | China - Zhejiang | ||
viayoo.com | 172.67.186.34 | United States of America - California | ||
st.so.com | 112.64.200.23 | China - Shanghai | ||
raw.githubusercontent.com | 0.0.0.0 | - - - | ||
suggestion.baidu.com | 163.177.17.122 | China - Guangdong | ||
clients1.google.com | 172.217.160.78 | United States of America - California | ||
api.bing.com | 13.107.5.80 | United States of America - Washington | ||
3d.iqdb.org | 91.121.210.31 | France - Hauts-de-France | ||
www.gstatic.com | 203.208.50.98 | China - Beijing | ||
dav.jianguoyun.com | 118.186.60.194 | China - Beijing | ||
yandex.ru | 77.88.55.88 | Russian Federation - Moskva | ||
violentmonkey.github.io | 185.199.110.153 | United States of America - Pennsylvania | ||
m.so.com | 42.236.98.98 | China - Henan | ||
my.cdn.com | 没有ip信息 | 没有地区信息 | ||
www.sogou.com | 61.135.158.87 | China - Beijing | ||
coolapk.com | 218.12.71.58 | China - Hebei | ||
data.flurry.com | 69.147.88.7 | United States of America - New York | ||
www.so.com | 42.236.9.70 | China - Henan | ||
help.eyeo.com | 88.99.84.224 | Germany - Sachsen | ||
wap.sogou.com | 61.135.158.193 | China - Beijing | ||
tineye.com | 199.96.59.19 | United States of America - California | ||
ascii2d.net | 104.26.5.72 | United States of America - California | ||
yandex.com | 5.255.255.80 | Russian Federation - Moskva | ||
trace.moe | 172.67.80.163 | United States of America - California | ||
twitter.com | 59.188.250.54 | Hong Kong - Hong Kong | ||
iqdb.org | 91.121.210.31 | France - Hauts-de-France | ||
file-examples.com | 185.135.88.81 | Poland - Wielkopolskie | ||
support.qq.com | 116.130.229.78 | China - Beijing | ||
webtrans.yodao.com | 103.74.50.106 | China - Guangdong | ||
www.google.com | 104.244.46.5 | United States of America - California | ||
weibo.com | 202.108.0.98 | China - Beijing | ||
res.viayoo.com | 104.21.19.117 | United States of America - California | ||
sug.so.360.cn | 42.236.98.67 | China - Henan | ||
so.toutiao.com | 122.14.230.133 | China - Beijing | ||
duckduckgo.com | 74.86.226.234 | United States of America - California | ||
fanyi.baidu.com | 110.242.68.186 | China - Hebei | ||
yz.m.sm.cn | 59.82.23.55 | China - Zhejiang | ||
lens.google.com | 172.217.163.46 | United States of America - California | ||
fastly.jsdelivr.net | 146.75.113.229 | Sweden - Vastra Gotalands lan | ||
cfg.flurry.com | 98.136.147.20 | United States of America - New York | ||
us.app.viayoo.com | 67.209.185.243 | United States of America - California | ||
www.baidu.com | 110.242.68.4 | China - Hebei | ||
play.google.com | 172.217.160.78 | United States of America - California | ||
github.com | 20.205.243.166 | Singapore - Singapore | ||
easylist-downloads.adblockplus.org | 210.57.59.56 | Japan - Tokyo | ||
t.me | 149.154.167.99 | United Kingdom of Great Britain and Northern Ireland - England | ||
saucenao.com | 104.26.1.232 | United States of America - California | ||
search.yahoo.com | 108.160.166.253 | United States of America - California | ||
www.bing.com | 202.89.233.100 | China - Beijing | ||
startpage.com | 199.96.62.21 | United States of America - California | ||
beian.miit.gov.cn | 112.84.222.56 | China - Jiangsu | ||
translate.google.com | 172.217.163.46 | United States of America - California | ||
www.yandex.ru | 5.255.255.77 | Russian Federation - Moskva | ||
lingva.retiolus.net | 65.21.91.32 | Finland - Uusimaa |
URL线索
邮箱线索
邮箱地址 | 所在文件 |
---|---|
yafengtu@gmail.com |
h/a/h0/b4.java |
yafengtu@gmail.com |
h/a/h0/f4.java |
2376688759@qq.com |
h/a/w/i/d.java |
wiar1824@gmail.com |
h/a/w/i/d.java |
2376688759@qq.com |
Mogua Engine V1 |
wiar1824@gmail.com |
Mogua Engine V1 |
手机线索
签名证书
APK已签名
v1 签名: True
v2 签名: True
v3 签名: False
找到 1 个唯一证书
主题: C=CN, ST=广西, L=广西, CN=Various Tu
签名算法: rsassa_pkcs1v15
有效期自: 2014-08-27 05:03:28+00:00
有效期至: 2114-08-03 05:03:28+00:00
发行人: C=CN, ST=广西, L=广西, CN=Various Tu
序列号: 0x3f3b121a
哈希算法: sha256
md5值: 9830874658327c15600f6e4ea939c324
sha1值: af5d11b1703127167e23b45fa706f0dd9865499b
sha256值: 3df7f89d3b8d1315f05710c914fccbcf3a4e24980afddccb8dcebde90836a390
sha512值: a1325fe5ee670753629e4741a6492684f9f06d54660e51d9facfd086fcae18a3399eae57b63038dfd3b7d70c6b90be91787cb229f0c71541e9427a17a23fbe22
公钥算法: rsa
密钥长度: 2048
指纹: b59491fe7b82fd23aedec96f9b1f35082a50bf5a21b4e952543b75780193986b
硬编码敏感信息
加壳分析
第三方插件
危险动作
向手机申请的权限 | 是否危险 | 类型 | 详细情况 |
---|---|---|---|
mark.via.permission.BROADCAST | 未知 | 调用了未知的操作 | |
android.permission.ACCESS_NETWORK_STATE | 正常 | 查看网络状态 | 允许应用程序查看所有网络的状态 |
android.permission.ACCESS_WIFI_STATE | 正常 | 查看Wi-Fi状态 | 允许应用程序查看有关 Wi-Fi 状态的信息 |
android.permission.INTERNET | 正常 | 互联网接入 | 允许应用程序创建网络套接字 |
android.permission.WRITE_EXTERNAL_STORAGE | 危险 | 读取/修改/删除外部存储内容 | 允许应用程序写入外部存储 |
android.permission.WAKE_LOCK | 正常 | 防止手机睡眠 | 允许应用程序防止手机进入睡眠状态 |
android.permission.ACCESS_FINE_LOCATION | 危险 | 精细定位(GPS) | 访问精细位置源,例如手机上的全球定位系统,如果可用。恶意应用程序可以使用它来确定您的位置,并可能消耗额外的电池电量 |
android.permission.REQUEST_INSTALL_PACKAGES | 危险 | 允许应用程序请求安装包。 | 恶意应用程序可以利用它来尝试诱骗用户安装其他恶意软件包。 |
android.permission.FOREGROUND_SERVICE | 正常 | 允许常规应用程序使用 Service.startForeground。 | |
android.permission.QUERY_ALL_PACKAGES | 正常 | 允许查询设备上的任何普通应用程序,无论清单声明如何 | |
android.permission.POST_NOTIFICATIONS | 未知 | 调用了未知的操作 | |
android.permission.RECORD_AUDIO | 危险 | 录音 | 允许应用程序访问音频记录路径 |
android.permission.MODIFY_AUDIO_SETTINGS | 正常 | 更改您的音频设置 | 允许应用程序修改全局音频设置,例如音量和路由 |
com.android.launcher.permission.INSTALL_SHORTCUT | 未知 | 调用了未知的操作 | |
com.bbk.launcher2.permission.READ_SETTINGS | 未知 | 调用了未知的操作 | |
com.google.android.gms.permission.AD_ID | 未知 | 调用了未知的操作 | |
android.permission.CAMERA | 危险 | 拍照和录像 | 允许应用程序用相机拍照和录像。这允许应用程序收集相机随时看到的图像 |