文件信息
文件名 LADBROKES_599.apk文件大小 89.96MB
MD5值 414cefd1f960ee1b0e9d1a91a80597a7
SHA1值 4a6a6da7e3fe20ac79e157e05762999fcf7ad877
SHA256值 785859a62f4f53d0bcbe68fbdf8d08fe1302eb1357f2323fdff85579b32b24eb
APK信息
APK名称 Ladbrokes包名 com.lb7be
主活动 com.qsf.taogin.Splash.vi.SplashActivity
安卓版本名称 5.4.0119
域名线索
域名 | 查询域名 | ip | 地区 | 查询地区 |
---|---|---|---|---|
github.com | 20.205.243.166 | Singapore - Singapore | ||
errlogos.umeng.com | 47.246.110.96 | Singapore - Singapore | ||
errnewlog.umeng.com | 223.109.148.129 | China - Jiangsu | ||
live.leisu.com | 27.221.79.6 | China - Shandong | ||
ccs.umeng.com | 110.253.189.138 | China - Hebei | ||
2021euapi.k33uc.com | 没有ip信息 | 没有地区信息 | ||
errnewlogos.umeng.com | 47.246.110.18 | Singapore - Singapore | ||
developer.umeng.com | 59.82.29.249 | China - Zhejiang | ||
www.jihai8.com | 47.95.126.66 | China - Zhejiang | ||
errlog.umeng.com | 223.109.148.180 | China - Jiangsu | ||
tg.zjqde.cn | 没有ip信息 | 没有地区信息 | ||
alogus.umeng.com | 223.109.148.130 | China - Jiangsu | ||
plbslog.umeng.com | 36.156.202.78 | China - Jiangsu | ||
utoken.umeng.com | 223.109.148.139 | China - Jiangsu | ||
pslog.umeng.com | 59.82.31.92 | China - Zhejiang | ||
schemas.android.com | 没有ip信息 | 没有地区信息 | ||
h.trace.qq.com | 113.56.189.162 | China - Hubei | ||
ip-api.com | 208.95.112.1 | United States of America - North Carolina | ||
www.slf4j.org | 159.100.250.151 | Switzerland - Zurich | ||
audid.umeng.com | 123.183.232.13 | China - Hebei | ||
msg.umengcloud.com | 110.253.188.231 | China - Hebei | ||
ulogs.umengcloud.com | 223.109.148.130 | China - Jiangsu | ||
app.reflpo.cn | 127.0.0.1 | - - - | ||
app.tpxdrme.cn | 127.0.0.1 | - - - | ||
sss.umeng.com | 59.82.29.249 | China - Zhejiang | ||
ulogs.umeng.com | 223.109.148.130 | China - Jiangsu | ||
cs.cs3upebmh9.shop | 127.0.0.1 | - - - | ||
c.k33uc.com | 没有ip信息 | 没有地区信息 | ||
offmsg.umeng.com | 59.82.31.154 | China - Zhejiang | ||
alogsus.umeng.com | 223.109.148.179 | China - Jiangsu | ||
m1.lbzz15786.art | 127.0.0.1 | - - - | ||
www.tgtop88.com | 127.0.0.1 | - - - | ||
43.132.55.55 | 43.132.55.55 | Singapore - Singapore |
URL线索
邮箱线索
邮箱地址 | 所在文件 |
---|---|
danikula@gmail.com |
com/danikula/videocache/HttpUrlSource.java |
this@calendarfragment.requirecon |
com/qsf/taogin/micronet/view/CalendarFragment.java |
手机线索
签名证书
APK已签名
v1 签名: False
v2 签名: True
v3 签名: False
找到 1 个唯一证书
主题: C=6CrK7S7g6CrK7S7g, ST=EuCS8MXbEuCS8MXb, L=Rt4aQH36Rt4aQH36, O=cwpWWy4gcwpWWy4g, OU=BKUp3P8UBKUp3P8U, CN=qQ8rz7VMqQ8rz7VM
签名算法: rsassa_pkcs1v15
有效期自: 2019-01-29 07:26:46+00:00
有效期至: 2069-01-16 07:26:46+00:00
发行人: C=6CrK7S7g6CrK7S7g, ST=EuCS8MXbEuCS8MXb, L=Rt4aQH36Rt4aQH36, O=cwpWWy4gcwpWWy4g, OU=BKUp3P8UBKUp3P8U, CN=qQ8rz7VMqQ8rz7VM
序列号: 0x2e7192d1
哈希算法: sha256
md5值: 452e1fb91a108f4fc362961c57b9e2f2
sha1值: ac48a0d77f26d779b6ab7ca9a5ad9d8b7f0211ec
sha256值: a5cf03565f33ad1052d3f9ec4cff9280c272e55af7f11a1f3e256208aca5dd99
sha512值: 4374799803aa4f121c0d030514c9003684d4c6f932512fe2cdc2496096d4137c37463a060d4c996f72ee371d85b15541abf53832548c2b5f88ccf6af96cf3899
公钥算法: rsa
密钥长度: 2048
指纹: baa107bff257cc875c6f2a07d532c67e7f08adc9b1a817741d0ec009d4c08eab
硬编码敏感信息
"STR_KEY" : "STR_FROM_RESOURCE_VALUE"
"auto_authorization_description" : "不想错过任何一个获利机会,请授权K7系统自动执行"
"auto_authorization_description2" : "每次下单时,授权K7系统自动执行"
"ball_possession" : "控球率"
"cancel_authorization" : "取消授权"
"dialog_auth_method_mail" : "邮箱"
"dialog_auth_method_mail_common" : "邮箱:"
"dialog_auth_method_mobile" : "手机"
"dialog_choose_auth" : "验证方式"
"dialog_choose_auth_common" : "验证方式"
"draw_password" : "提领密码 :"
"fingerprint_auth" : "进行指纹登入"
"fingerprint_auth_not_ready" : "指纹辨识未设定完成"
"fingerprint_auth_successful" : "指纹辨识成功"
"guide_user_name" : "麦可麦可麦…"
"inout_password" : "输入密码"
"login_password" : "登入密码 :"
"not_authentication_permission" : "未同意指纹使用权限"
"notice_user_name" : "请输入昵称,7个中英文数字内(必填)"
"personal_info_withdraw_password" : "提款密码"
"please_enter_password" : "请输入提款密码"
"please_enter_your_password" : "请输入密码"
"registered_password" : "提款密码"
"reset_password" : "重设密码"
"set_withdraw_pwd_first" : "请先至提领页设置您的提款密码"
"trans3_goto_transhistory" : "前往交易记录"
"user_name" : "用户名称"
"vip_auth" : "VIP权限"
"wrong_password" : "密码错误"
"ball_possession" : "ボールコントロール率"
"dialog_auth_method_mail" : "メールアドレス"
"dialog_auth_method_mail_common" : "メールアドレス:"
"dialog_auth_method_mobile" : "携帯番号"
"dialog_choose_auth" : "認証方法"
"dialog_choose_auth_common" : "認証方法"
"draw_password" : "引き出しパスワード:"
"fingerprint_auth" : "指紋認証でログイン"
"fingerprint_auth_not_ready" : "指紋認証が設定されていません"
"fingerprint_auth_successful" : "指紋認証成功"
"guide_user_name" : "マイクマイクマイク…"
"inout_password" : "パスワード入力"
"login_password" : "ログインパスワード:"
"not_authentication_permission" : "指紋認証の使用権限に同意していません"
"notice_user_name" : "ニックネームを入力してください。7文字以内英数含む(必須)"
"personal_info_withdraw_password" : "出金パスワード"
"please_enter_password" : "引き出しパスワードを入力してください"
"please_enter_your_password" : "パスワードを入力してください"
"registered_password" : "出金パスワード"
"reset_password" : "パスワード再設定"
"set_withdraw_pwd_first" : "引き出しページで、引き出しパスワードを設定してください"
"trans3_goto_transhistory" : "取引記録へ進む"
"user_name" : "ユーザー名"
"vip_auth" : "VIP権限"
"wrong_password" : "パスワード間違い"
"auto_authorization_description" : "Authorize K7 system auto execute if you don't want to miss any profitable opportunity."
"auto_authorization_description2" : "Authorize K7 auto execution when placing bets every time."
"ball_possession" : "Possession Rate"
"cancel_authorization" : "Cancel Authorization"
"dialog_auth_method_mail" : "Email"
"dialog_auth_method_mail_common" : "Email:"
"dialog_auth_method_mobile" : "Mobile"
"dialog_choose_auth" : "Verification Methods"
"dialog_choose_auth_common" : "Verification Methods"
"draw_password" : "Withdraw Password:"
"fingerprint_auth" : "Use fingerprint login"
"fingerprint_auth_not_ready" : "Fingerprint recognition setting incomplete"
"fingerprint_auth_successful" : "Fingerprint recognized"
"guide_user_name" : "MikeMikeMike..."
"inout_password" : "Enter password"
"login_password" : "Login Password:"
"not_authentication_permission" : "Disagree with fingerprint access permission."
"notice_user_name" : "Enter within 7 chars and numbers (*req)"
"personal_info_withdraw_password" : "Withdrawal Password"
"please_enter_password" : "Please enter withdrawal password."
"please_enter_your_password" : "Please enter password"
"registered_password" : "Withdrawal
Password"
"reset_password" : "Rest password"
"set_withdraw_pwd_first" : "Please go to Withdrawal to set your withdrawal password."
"trans3_goto_transhistory" : "Go to transactions"
"user_name" : "Username"
"vip_auth" : "VIP Privileges"
"wrong_password" : "Password is incorrect"
"ball_possession" : "볼 점유율"
"dialog_auth_method_mail" : "이메일"
"dialog_auth_method_mail_common" : "이메일:"
"dialog_auth_method_mobile" : "휴대전화 번호"
"dialog_choose_auth" : "인증 방식"
"dialog_choose_auth_common" : "인증 방식"
"draw_password" : "출금 비밀번호:"
"fingerprint_auth" : "지문으로 로그인"
"fingerprint_auth_not_ready" : "지문인식 설정 미완료"
"fingerprint_auth_successful" : "지문인식 성공"
"guide_user_name" : "홍길동홍길동…"
"inout_password" : "비밀번호를 입력하세요."
"login_password" : "로그인 비밀번호 :"
"not_authentication_permission" : "지문 인식 사용 권한을 부여하지 않았습니다."
"notice_user_name" : "문자, 숫자로 된 닉네임 7자를 입력하세요.(필수)"
"personal_info_withdraw_password" : "출금 비밀번호"
"please_enter_password" : "출금 비밀번호를 입력하세요."
"please_enter_your_password" : "비밀번호를 입력하세요."
"registered_password" : "출금 비밀번호"
"reset_password" : "비밀번호 재설정"
"set_withdraw_pwd_first" : "먼저 출금 페이지에서 출금 비밀번호를 설정해 주세요."
"trans3_goto_transhistory" : "거래 기록으로 이동"
"user_name" : "사용자명"
"vip_auth" : "VIP 권한"
"wrong_password" : "비밀번호 오류"
"auto_authorization_description" : "不想錯過任何一個獲利機會,請授權K7系統自動執行"
"auto_authorization_description2" : "每次下單時,授權K7系統自動執行"
"ball_possession" : "控球率"
"cancel_authorization" : "取消授權"
"dialog_auth_method_mail" : "郵箱"
"dialog_auth_method_mail_common" : "郵箱:"
"dialog_auth_method_mobile" : "手機"
"dialog_choose_auth" : "驗證方式"
"dialog_choose_auth_common" : "驗證方式"
"draw_password" : "提領密碼 :"
"fingerprint_auth" : "進行指紋登入"
"fingerprint_auth_not_ready" : "指紋辨識未設定完成"
"fingerprint_auth_successful" : "指紋辨識成功"
"guide_user_name" : "麥可麥可麥…"
"inout_password" : "輸入密碼"
"login_password" : "登入密碼 :"
"not_authentication_permission" : "未同意指紋使用權限"
"notice_user_name" : "請輸入暱稱,7個中英文數字內(必填)"
"personal_info_withdraw_password" : "提款密碼"
"please_enter_password" : "請輸入提款密碼"
"please_enter_your_password" : "請輸入密碼"
"registered_password" : "提款密碼"
"reset_password" : "重設密碼"
"set_withdraw_pwd_first" : "請先至提領頁設置您的提款密碼"
"trans3_goto_transhistory" : "前往交易記錄"
"user_name" : "用戶名稱"
"vip_auth" : "VIP權限"
"wrong_password" : "密碼錯誤"
"ball_possession" : "控球率"
"dialog_auth_method_mail" : "邮箱"
"dialog_auth_method_mail_common" : "邮箱:"
"dialog_auth_method_mobile" : "手机"
"dialog_choose_auth" : "验证方式"
"dialog_choose_auth_common" : "验证方式"
"draw_password" : "提领密码 :"
"fingerprint_auth" : "进行指纹登入"
"fingerprint_auth_not_ready" : "指纹辨识未设定完成"
"fingerprint_auth_successful" : "指纹辨识成功"
"guide_user_name" : "麦可麦可麦…"
"inout_password" : "输入密码"
"login_password" : "登入密码 :"
"not_authentication_permission" : "未同意指纹使用权限"
"notice_user_name" : "请输入昵称,7个中英文数字内(必填)"
"personal_info_withdraw_password" : "提款密码"
"please_enter_password" : "请输入提款密码"
"please_enter_your_password" : "请输入密码"
"registered_password" : "提款密码"
"reset_password" : "重设密码"
"set_withdraw_pwd_first" : "请先至提领页设置您的提款密码"
"trans3_goto_transhistory" : "前往交易记录"
"user_name" : "用户名称"
"vip_auth" : "VIP权限"
"wrong_password" : "密码错误"
加壳分析
第三方插件
危险动作
向手机申请的权限 | 是否危险 | 类型 | 详细情况 |
---|---|---|---|
android.permission.INTERNET | 正常 | 互联网接入 | 允许应用程序创建网络套接字 |
android.permission.ACCESS_NETWORK_STATE | 正常 | 查看网络状态 | 允许应用程序查看所有网络的状态 |
android.permission.USE_FINGERPRINT | 正常 | allow use of指纹 | 该常量在 API 级别 28 中已被弃用。应用程序应改为请求 USE_BIOMETRIC |
android.permission.WRITE_EXTERNAL_STORAGE | 危险 | 读取/修改/删除外部存储内容 | 允许应用程序写入外部存储 |
android.permission.READ_EXTERNAL_STORAGE | 危险 | 读取外部存储器内容 | 允许应用程序从外部存储读取 |
android.permission.READ_MEDIA_IMAGES | 未知 | 调用了未知的操作 | |
android.permission.READ_MEDIA_VIDEO | 未知 | 调用了未知的操作 | |
android.permission.CAMERA | 危险 | 拍照和录像 | 允许应用程序用相机拍照和录像。这允许应用程序收集相机随时看到的图像 |
android.permission.VIBRATE | 正常 | 可控震源 | 允许应用程序控制振动器 |
android.permission.ACCESS_WIFI_STATE | 正常 | 查看Wi-Fi状态 | 允许应用程序查看有关 Wi-Fi 状态的信息 |
android.permission.READ_PHONE_STATE | 危险 | 读取电话状态和身份 | 允许应用访问设备的电话功能。具有此权限的应用程序可以确定此电话的电话号码和序列号,呼叫是否处于活动状态,呼叫所连接的号码等 |
android.permission.GET_TASKS | 危险 | 检索正在运行的应用程序 | 允许应用程序检索有关当前和最近运行的任务的信息。可能允许恶意应用程序发现有关其他应用程序的私人信息 |
android.permission.REQUEST_INSTALL_PACKAGES | 危险 | 允许应用程序请求安装包。 | 恶意应用程序可以利用它来尝试诱骗用户安装其他恶意软件包。 |
android.permission.FOREGROUND_SERVICE | 正常 | 允许常规应用程序使用 Service.startForeground。 | |
android.permission.RECEIVE_SMS | 危险 | 接收短信 | 允许应用程序接收和处理 SMS 消息。恶意应用程序可能会监视您的消息或将其删除而不向您显示 |
android.permission.POST_NOTIFICATIONS | 未知 | 调用了未知的操作 | |
android.permission.FLASHLIGHT | 正常 | 控制手电筒 | 允许应用程序控制手电筒 |
android.permission.WAKE_LOCK | 正常 | 防止手机睡眠 | 允许应用程序防止手机进入睡眠状态 |
com.huawei.android.launcher.permission.CHANGE_BADGE | 正常 | 在应用程序上显示通知计数 | 在华为手机的应用程序启动图标上显示通知计数或徽章。 |
com.vivo.notification.permission.BADGE_ICON | 未知 | 调用了未知的操作 | |
com.lb7be.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION | 未知 | 调用了未知的操作 |