温馨提示:APP静态检测会有结果不完整的现象,如有疑问或建议, 可加入我们的微信群讨论

APP图标



下载APP

文件信息

文件名 银河VPN.apk
文件大小 33.74MB
MD5值 5e7ba9cc75afafd94f0d8cff4b2a785d
SHA1值 59a3abdc44d813feb756c767de4d3e00955ba395
SHA256值 e89703950342adf966e72501481644a0235e9d678bcf8bf1d6c7dc16645cf255

APK信息

APK名称 GalaxyVPN
包名 com.galaxylab.ss
主活动 com.galaxylab.android.SplashActivity
安卓版本名称 2.1.5
域名线索 38 条
查看
URL线索 28 条
查看
邮箱线索 0 条
查看
手机号线索 0 条
查看

域名线索

域名 查询域名 ip 地区 查询地区
api.msmaster.qa.paypal.com 没有ip信息 没有地区信息
app-measurement.com 114.250.64.33 China - Beijing
checkout.paypal.com 172.64.153.163 United States of America - California
api.paypal.com 64.4.249.23 United States of America - California
c.sandbox.paypal.com 151.101.91.1 United States of America - California
mobile.events.data.microsoft.com 13.89.178.27 United States of America - Iowa
in1-gw2-01-ce7dd027.eastus2.cloudapp.azure.com 没有ip信息 没有地区信息
www.facebook.com 31.13.73.9 Ireland - Dublin
api-m.sandbox.paypal.com 151.101.91.1 United States of America - California
outcome-arm-ext-med-ext.sonic-us.supersonicads.com 没有ip信息 没有地区信息
c.paypal.com 151.101.89.21 United States of America - California
www.paypalobjects.com 151.101.91.1 United States of America - California
api-m.paypal.com 104.16.123.74 United States of America - California
graph.facebook.com 104.244.43.182 United States of America - California
goo.gl 142.250.69.174 United States of America - California
api.sandbox.braintreegateway.com 159.242.242.128 United States of America - California
in.appcenter.ms 93.46.8.90 Italy - Lombardia
uri.paypal.com 没有ip信息 没有地区信息
outcome-ssp.supersonicads.com 3.169.231.65 United States of America - Washington
api.braintreegateway.com 35.156.167.229 Germany - Hessen
developers.braintreepayments.com 151.101.89.21 United States of America - California
www.apkgalaxylab.com 35.155.85.218 United States of America - Oregon
api.sandbox.paypal.com 173.0.93.228 United States of America - California
backup2.apkgalaxylab.com 没有ip信息 没有地区信息
outcome-crash-report.supersonicads.com 没有ip信息 没有地区信息
b.stats.paypal.com 34.147.177.40 United Kingdom of Great Britain and Northern Ireland - England
in2-prod-east-us2-23fa330.trafficmanager.net 4.152.45.235 United States of America - Virginia
www.slf4j.org 195.15.222.169 Switzerland - Geneve
github.com 20.205.243.166 Singapore - Singapore
star.c10r.facebook.com 202.160.129.37 Singapore - Singapore
shadowsocks.org 8.7.198.45 United States of America - Louisiana
assets.staging.braintreepayments.com 没有ip信息 没有地区信息
init.supersonicads.com 18.155.202.2 United States of America - California
star-mini.c10r.facebook.com 103.252.114.61 Singapore - Singapore
api.facebook.com 202.160.129.37 Singapore - Singapore
10.0.2.2 10.0.2.2 - - -
galaxylab2019-b0baa.firebaseio.com 35.201.97.85 United States of America - Missouri
scontent-iad3-2.xx.fbcdn.net 157.240.229.1 United States of America - Virginia

URL线索

URL信息 Url所在文件
https://developers.braintreepayments.com/guides/client-sdk/android/v2
com/braintreepayments/api/n.java
https://developers.braintreepayments.com/guides/paypal/overview/android/
com/braintreepayments/api/i.java
https://developers.braintreepayments.com/guides/client-sdk/android/
com/braintreepayments/api/i.java
http://10.0.2.2:3000/
com/braintreepayments/api/v/p0.java
https://api.sandbox.braintreegateway.com/
com/braintreepayments/api/v/p0.java
https://api.braintreegateway.com/
com/braintreepayments/api/v/p0.java
https://api.paypal.com
com/braintreepayments/api/v/a0.java
https://api.sandbox.paypal.com
com/braintreepayments/api/v/a0.java
https://api.msmaster.qa.paypal.com
com/braintreepayments/api/v/a0.java
https://api.sandbox.braintreegateway.com:443/merchants/
com/braintreepayments/api/v/a0.java
https://api.braintreegateway.com:443/merchants/
com/braintreepayments/api/v/a0.java
https://github.com/braintree/browser-switch-android
com/braintreepayments/browserswitch/b.java
https://shadowsocks.org/acl/android/v1/
com/github/shadowsocks/acl/AclSyncer.java
http://outcome-arm-ext-med-ext.sonic-us.supersonicads.com/aemData
com/ironsource/mediationsdk/u1/a.java
http://outcome-arm-ext-med-ext.sonic-us.supersonicads.com/aemData
com/ironsource/mediationsdk/u1/o.java
https://outcome-ssp.supersonicads.com/mediation?adUnit=3
com/ironsource/mediationsdk/k1/f.java
https://outcome-ssp.supersonicads.com/mediation?adUnit=2
com/ironsource/mediationsdk/k1/e.java
https://init.supersonicads.com/sdk/v
com/ironsource/mediationsdk/r1/b.java
https://outcome-crash-report.supersonicads.com/reporter
com/ironsource/environment/f.java
https://app-measurement.com/a
e/g/b/c/f/j/rb.java
https://goo.gl/J1sWQy
e/g/b/c/f/j/g.java
https://in.appcenter.ms
e/j/a/m/a.java
https://mobile.events.data.microsoft.com/OneCollector/1.0
e/j/a/m/c.java
https://api-m.paypal.com/v1/
e/k/a/a/b/a/d.java
https://api-m.paypal.com/v1/
e/k/a/a/b/a/l/a.java
https://api-m.sandbox.paypal.com/v1/
e/k/a/a/b/a/l/a.java
https://uri.paypal.com/services/payments/futurepayments\
e/k/a/a/b/a/h/e.java
https://checkout.paypal.com/one-touch-login/\
e/k/a/a/b/a/h/e.java
https://assets.staging.braintreepayments.com/one-touch-login/\
e/k/a/a/b/a/h/e.java
https://www.paypalobjects.com/webstatic/otc/otc-config.android.json
e/k/a/a/b/a/h/e.java
https://www.paypalobjects.com/digitalassets/c/rda-magnes/magnes_config_android_v4.json
h/a/a/a/a/k.java
https://www.paypalobjects.com/digitalassets/c/rda-magnes/magnes_android_rc_v1.json
h/a/a/a/a/m/m.java
https://c.paypal.com/r/v1/device/client-metadata
h/a/a/a/a/m/o.java
https://www.paypalobjects.com/digitalassets/c/rda-magnes/magnes_config_android_v4.json
h/a/a/a/a/m/o.java
https://www.paypalobjects.com/digitalassets/c/rda-magnes/magnes_config_android_v4.json
h/a/a/a/a/m/p.java
https://b.stats.paypal.com/counter.cgi
h/a/a/a/a/m/c.java
https://c.sandbox.paypal.com/r/v1/device/client-metadata
h/a/a/a/a/m/d.java
https://c.paypal.com/r/v1/device/client-metadata
h/a/a/a/a/m/d.java
http://www.slf4j.org/codes.html
l/b/c.java
https://github.com/shadowsocks/shadowsocks-android/blob/master/.github/faq.md
摸瓜V1引擎
https://galaxylab2019-b0baa.firebaseio.com
摸瓜V1引擎
https://github.com/shadowsocks/shadowsocks-android/blob/master/.github/faq.ru.md
摸瓜V1引擎
api.facebook.com
摸瓜V3引擎
graph.facebook.com
摸瓜V3引擎
in1-gw2-01-ce7dd027.eastus2.cloudapp.azure.com
摸瓜V3引擎
backup2.apkgalaxylab.com
摸瓜V3引擎
in.appcenter.ms
摸瓜V3引擎
scontent-iad3-2.xx.fbcdn.net
摸瓜V3引擎
in2-prod-east-us2-23fa330.trafficmanager.net
摸瓜V3引擎
www.facebook.com
摸瓜V3引擎
star.c10r.facebook.com
摸瓜V3引擎
star-mini.c10r.facebook.com
摸瓜V3引擎
www.apkgalaxylab.com
摸瓜V3引擎

邮箱线索

手机线索

代码反编译

AndroidManifest配置 查看
Java源代码 查看 -- 下载

签名证书

APK已签名
v1 签名: True
v2 签名: True
v3 签名: True
找到 1 个唯一证书
主题: C=US, ST=California, L=Mountain View, O=Google Inc., OU=Android, CN=Android
签名算法: rsassa_pkcs1v15
有效期自: 2019-08-03 16:45:11+00:00
有效期至: 2049-08-03 16:45:11+00:00
发行人: C=US, ST=California, L=Mountain View, O=Google Inc., OU=Android, CN=Android
序列号: 0xcaa46150da4103c2bff3cce38d6d9c78eaefd1d8
哈希算法: sha256
md5值: 25f9eb08c26059876ddc6355e36e313e
sha1值: 7ec16112297bab96361c60977c45dac28646f006
sha256值: 0a0d5f1d97e003e6b2a79ef42d3f00d2ee60dc0ee26b3be408709429da555f77
sha512值: e01a31ff56a144499e2ab1f13c6413c0d190a8453c68ed2c3442180ade492d63c84524bc8aa342548da1d50bafb1ffafc74fdbe91ac595a36f24693bb046f6e1
公钥算法: rsa
密钥长度: 4096
指纹: 5fda72696fba986b5d34cdf2bfb9258fd0a50433687781d6fb46f28488238b61

硬编码敏感信息

"com_facebook_device_auth_instructions" : "Visit <b>facebook.com/device</b> and enter the code shown above."
"firebase_database_url" : "https://galaxylab2019-b0baa.firebaseio.com"
"google_api_key" : "AIzaSyDQjcOLnjy1Edrie_g10ILNTFFfe7LvLu4"
"google_crash_reporting_api_key" : "AIzaSyDQjcOLnjy1Edrie_g10ILNTFFfe7LvLu4"
"sitekey" : "Password"
"com_facebook_device_auth_instructions" : "请访问<b>facebook.com/device</b>并输入以上验证码。"
"sitekey" : "密码"
"com_facebook_device_auth_instructions" : "<b>facebook.com/device</b>にアクセスして、上のコードを入力してください。"
"sitekey" : "パスワード"
"com_facebook_device_auth_instructions" : "<b>facebook.com/device</b>에 방문하여 위 코드를 입력하세요."
"sitekey" : "비밀번호"
"com_facebook_device_auth_instructions" : "Consultez <b>facebook.com/device</b> et entrez le code affiché ci-dessus."
"sitekey" : "Mot de passe"
"com_facebook_device_auth_instructions" : "<b>facebook.com/device</b> adresine git ve yukarıda gösterilen kodu gir."
"sitekey" : "Şifre"
"com_facebook_device_auth_instructions" : "Ve a <b>facebook.com/device</b> e ingresa el código que se muestra arriba."
"sitekey" : "Contraseña"
"com_facebook_device_auth_instructions" : "Откройте <b>facebook.com/device</b> и введите код, показанный выше."
"sitekey" : "Пароль"
"com_facebook_device_auth_instructions" : "前往<b>facebook.com/device</b&gt,並輸入上方顯示的代碼。"
"sitekey" : "密碼"
"sitekey" : "کلمه عبور"

加壳分析

第三方插件

危险动作

向手机申请的权限 是否危险 类型 详细情况
android.permission.ACCESS_WIFI_STATE 正常 查看Wi-Fi状态 允许应用程序查看有关 Wi-Fi 状态的信息
android.permission.QUERY_ALL_PACKAGES 正常 允许查询设备上的任何普通应用程序,无论清单声明如何
com.galaxylab.ss.SERVICE 未知 调用了未知的操作
android.permission.FOREGROUND_SERVICE 正常 允许常规应用程序使用 Service.startForeground。
android.permission.INTERNET 正常 互联网接入 允许应用程序创建网络套接字
android.permission.RECEIVE_BOOT_COMPLETED 正常 开机时自动启动 允许应用程序在系统完成启动后立即启动。这可能会使启动手机需要更长的时间,并允许应用程序通过始终运行来减慢整个手机的速度
android.permission.WAKE_LOCK 正常 防止手机睡眠 允许应用程序防止手机进入睡眠状态
android.permission.ACCESS_NETWORK_STATE 正常 查看网络状态 允许应用程序查看所有网络的状态
android.permission.CHANGE_NETWORK_STATE 正常 更改网络连接 允许应用程序更改网络连接状态。
com.android.vending.BILLING 未知 调用了未知的操作
com.galaxylab.ss.permission.RECEIVE_BROADCASTS 未知 调用了未知的操作
com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE 未知 调用了未知的操作
com.google.android.c2dm.permission.RECEIVE 合法 C2DM 权限 云到设备消息传递的权限