文件信息
文件名 base.apk文件大小 57.61MB
MD5值 b830f1c573090f102e13175fba2d5b44
SHA1值 b055b3b90c52ae1d3dd77064a29a7fe42cab0939
SHA256值 ba0b685700bbce7fc5e6bbe905421a3659ffb454ec088c7affab9259a21a0de7
APK信息
APK名称 Mattermost包名 com.mattermost.rn
主活动 com.mattermost.rn.MainActivity
安卓版本名称 2.15.0
域名线索
域名 | 查询域名 | ip | 地区 | 查询地区 |
---|---|---|---|---|
www.whatwg.org | 165.227.248.76 | United States of America - New Jersey | ||
www.mathjax.org | 172.67.72.172 | United States of America - California | ||
www.example.com | 93.184.215.14 | United States of America - California | ||
www.quirksmode.org | 172.67.139.199 | United States of America - California | ||
code.google.com | 172.217.163.46 | United States of America - California | ||
twitter.com | 202.160.129.37 | Singapore - Singapore | ||
electronjs.org | 104.21.49.33 | United States of America - California | ||
www.apache.org | 151.101.2.132 | United States of America - California | ||
mathiasbynens.be | 83.137.145.144 | Netherlands - Groningen | ||
www.w3.org | 104.18.23.19 | United States of America - California | ||
www.andismith.com | 13.215.144.61 | Singapore - Singapore | ||
html.spec.whatwg.org | 165.227.248.76 | United States of America - New Jersey | ||
fb.me | 157.240.7.35 | Singapore - Singapore | ||
xml.org | 104.239.240.11 | United States of America - Texas | ||
github.com | 20.205.243.166 | Singapore - Singapore | ||
api-7231322553409637977-752355.firebaseio.com | 35.201.97.85 | United States of America - Missouri | ||
docs.swmansion.com | 172.67.142.188 | United States of America - California | ||
w3c.github.io | 185.199.109.153 | United States of America - Pennsylvania | ||
play.google.com | 59.24.3.174 | Korea (Republic of) - Gyeonggi-do | ||
pinterest.com | 157.240.10.36 | United States of America - California | ||
www.owasp.org | 104.22.26.77 | United States of America - California | ||
xmlpull.org | 185.199.111.153 | United States of America - Pennsylvania | ||
developer.mozilla.org | 34.111.97.67 | United States of America - Missouri | ||
mths.be | 83.137.145.144 | Netherlands - Groningen | ||
reactjs.org | 76.76.21.21 | United States of America - California | ||
bugs.chromium.org | 142.251.43.19 | United States of America - California | ||
modernizr.com | 75.2.60.5 | United States of America - Washington | ||
developer.microsoft.com | 60.210.8.162 | China - Shandong | ||
cdn.mathjax.org | 172.67.72.172 | United States of America - California | ||
cdnjs.cloudflare.com | 104.17.24.14 | United States of America - California | ||
www.facebook.com | 199.96.62.75 | United States of America - California | ||
www.unix.org | 170.39.106.9 | United States of America - California | ||
www.thespanner.co.uk | 217.160.0.167 | Germany - Nordrhein-Westfalen | ||
www.slf4j.org | 195.15.222.169 | Switzerland - Geneve | ||
tools.ietf.org | 104.16.44.99 | United States of America - California | ||
bugzilla.mozilla.org | 34.110.178.183 | United States of America - Missouri | ||
foo.com | 34.206.39.153 | United States of America - Virginia | ||
plus.google.com | 128.242.240.85 | United States of America - Washington | ||
logback.qos.ch | 159.100.250.151 | Switzerland - Zurich |
URL线索
邮箱线索
手机线索
手机号 | 所在文件 |
---|---|
17179869184 |
com/caverock/androidsvg/SVGAndroidRenderer.java |
17179869184 |
com/caverock/androidsvg/SVG.java |
17179869184 |
com/caverock/androidsvg/SVGParser.java |
签名证书
APK已签名
v1 签名: False
v2 签名: True
v3 签名: False
找到 1 个唯一证书
主题: C=US, ST=CA, L=Palo Alto, O=Mattermost, OU=IT, CN=Mattermost
签名算法: rsassa_pkcs1v15
有效期自: 2017-01-12 02:41:30+00:00
有效期至: 2044-05-30 02:41:30+00:00
发行人: C=US, ST=CA, L=Palo Alto, O=Mattermost, OU=IT, CN=Mattermost
序列号: 0x18cae1c3
哈希算法: sha256
md5值: 56dd47fc85163b01902a89bca72c4d95
sha1值: e3fb91ecb1a9c23acf6431fbaceb15ac68a21831
sha256值: 5ca732ab1f657dd9e4beff0840a8b9d19c59c30de3adcf4be6a2927226c11f4f
sha512值: c360222a6364c833e09e696636fc97e089a358342041bbb9d1c51225fe896189d62be1cd8def3024826dfa279c51d71950fddc4554ad19e54a576d2fe15408b9
公钥算法: rsa
密钥长度: 2048
指纹: 5e37cb7d5e79814713520a93f466b7866cb50c5364761b270ea7ed4a285f6dd2
硬编码敏感信息
"firebase_database_url" : "https://api-7231322553409637977-752355.firebaseio.com"
"google_api_key" : "AIzaSyCkZkU2ECVg-mmdCG5OoHHQXtKiENuvWPE"
"google_crash_reporting_api_key" : "AIzaSyCkZkU2ECVg-mmdCG5OoHHQXtKiENuvWPE"
"inAppSessionAuth_description" : "Instead of default flow from the mobile browser, enforce SSO with the WebView."
"inAppSessionAuth_title" : "In-App Session Auth"
加壳分析
第三方插件
危险动作
向手机申请的权限 | 是否危险 | 类型 | 详细情况 |
---|---|---|---|
android.permission.INTERNET | 正常 | 互联网接入 | 允许应用程序创建网络套接字 |
android.permission.VIBRATE | 正常 | 可控震源 | 允许应用程序控制振动器 |
android.permission.RECEIVE_BOOT_COMPLETED | 正常 | 开机时自动启动 | 允许应用程序在系统完成启动后立即启动。这可能会使启动手机需要更长的时间,并允许应用程序通过始终运行来减慢整个手机的速度 |
android.permission.CAMERA | 危险 | 拍照和录像 | 允许应用程序用相机拍照和录像。这允许应用程序收集相机随时看到的图像 |
android.permission.READ_MEDIA_AUDIO | 未知 | 调用了未知的操作 | |
android.permission.READ_MEDIA_IMAGES | 未知 | 调用了未知的操作 | |
android.permission.READ_MEDIA_VIDEO | 未知 | 调用了未知的操作 | |
android.permission.WRITE_EXTERNAL_STORAGE | 危险 | 读取/修改/删除外部存储内容 | 允许应用程序写入外部存储 |
android.permission.READ_EXTERNAL_STORAGE | 危险 | 读取外部存储器内容 | 允许应用程序从外部存储读取 |
android.permission.ACCESS_NETWORK_STATE | 正常 | 查看网络状态 | 允许应用程序查看所有网络的状态 |
android.permission.RECORD_AUDIO | 危险 | 录音 | 允许应用程序访问音频记录路径 |
android.permission.MODIFY_AUDIO_SETTINGS | 正常 | 更改您的音频设置 | 允许应用程序修改全局音频设置,例如音量和路由 |
android.permission.POST_NOTIFICATIONS | 未知 | 调用了未知的操作 | |
android.permission.FOREGROUND_SERVICE | 正常 | 允许常规应用程序使用 Service.startForeground。 | |
android.permission.BLUETOOTH | 正常 | 创建蓝牙连接 | 允许应用程序连接到配对的蓝牙设备 |
android.permission.BLUETOOTH_ADMIN | 正常 | 蓝牙管理 | 允许应用程序发现和配对蓝牙设备。 |
android.permission.BLUETOOTH_CONNECT | 未知 | 调用了未知的操作 | |
android.permission.WAKE_LOCK | 正常 | 防止手机睡眠 | 允许应用程序防止手机进入睡眠状态 |
android.permission.ACCESS_WIFI_STATE | 正常 | 查看Wi-Fi状态 | 允许应用程序查看有关 Wi-Fi 状态的信息 |
android.permission.USE_BIOMETRIC | 正常 | 允许应用使用设备支持的生物识别模式。 | |
android.permission.USE_FINGERPRINT | 正常 | allow use of指纹 | 该常量在 API 级别 28 中已被弃用。应用程序应改为请求 USE_BIOMETRIC |
com.google.android.c2dm.permission.RECEIVE | 合法 | C2DM 权限 | 云到设备消息传递的权限 |
com.mattermost.rn.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION | 未知 | 调用了未知的操作 | |
com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE | 未知 | 调用了未知的操作 |