温馨提示:APP静态检测会有结果不完整的现象,如有疑问或建议, 可加入我们的微信群讨论

APP图标



下载APP

文件信息

文件名 Tourobox1.apk
文件大小 11.26MB
MD5值 d0ea4f82c067dfabc3cf14bbceaf6d8c
SHA1值 e2b40b4faf0306e517e76a88211726e1a7d5ca4d
SHA256值 d046b73d4534c52b3913fa308991f5bffdc418fd82aa313a49aba26249072ca4

APK信息

APK名称 Touro box1
包名 com.new2tourosat.app
主活动 com.newott.app.ui.auth.active.AuthActiveActivity
安卓版本名称 1.1.0
域名线索 18 条
查看
URL线索 31 条
查看
邮箱线索 1 条
查看
手机号线索 2 条
查看

域名线索

域名 查询域名 ip 地区 查询地区
pagead2.googlesyndication.com 203.208.50.38 China - Beijing
firebase-settings.crashlytics.com 220.181.174.226 China - Beijing
developer.apple.com 17.253.87.206 Hong Kong - Hong Kong
exoplayer.dev 185.199.109.153 United States of America - Pennsylvania
update.crashlytics.com 203.208.50.34 China - Beijing
www.google.com 128.242.240.91 United States of America - California
reports.crashlytics.com 没有ip信息 没有地区信息
www.w3.org 128.30.52.100 United States of America - Massachusetts
google.com 93.46.8.90 Italy - Lombardia
www.googleadservices.com 203.208.50.166 China - Beijing
goo.gl 142.251.42.238 United States of America - California
schemas.android.com 没有ip信息 没有地区信息
play.google.com 172.217.160.78 United States of America - California
app-measurement.com 220.181.174.33 China - Beijing
activecode.turoisherego.xyz 104.21.12.7 United States of America - California
plus.google.com 54.89.135.129 United States of America - Virginia
firebase.google.com 172.217.160.78 United States of America - California
aomedia.org 185.199.108.153 United States of America - Pennsylvania

URL线索

URL信息 Url所在文件
http://schemas.android.com/apk/res/android
d/h/d/b/h.java
https://firebase-settings.crashlytics.com/spi/v2/platforms/android/gmp/%s/settings
f/d/c/l/b.java
https://update.crashlytics.com/spi/v1/platforms/android/apps
f/d/c/l/f/m/h.java
https://update.crashlytics.com/spi/v1/platforms/android/apps/%s
f/d/c/l/f/m/h.java
https://reports.crashlytics.com/spi/v1/platforms/android/apps/%s/reports
f/d/c/l/f/m/h.java
https://reports.crashlytics.com/sdk-api/v1/platforms/android/apps/%s/minidumps
f/d/c/l/f/m/h.java
https://firebase.google.com/support/privacy/init-options.
f/d/c/r/d.java
https://app-measurement.com/a
f/d/a/c/i/f/t8.java
https://goo.gl/J1sWQy
f/d/a/c/i/f/e0.java
https://pagead2.googlesyndication.com/pagead/gen_204?id=gmob-apps
f/d/a/c/a/a/b.java
https://app-measurement.com/a
f/d/a/c/j/b/x2.java
https://www.google.com
f/d/a/c/j/b/l6.java
https://google.com/search?
f/d/a/c/j/b/k6.java
https://firebase.google.com/support/guides/disable-analytics
f/d/a/c/j/b/c3.java
https://goo.gl/NAOOOI.
f/d/a/c/j/b/k9.java
https://goo.gl/NAOOOI
f/d/a/c/j/b/k9.java
https://www.googleadservices.com/pagead/conversion/app/deeplink?id_type=adid&sdk_version=%s&rdid=%s&bundleid=%s&retry=%s
f/d/a/c/j/b/o5.java
https://plus.google.com/
f/d/a/c/e/o/o0.java
https://exoplayer.dev/issues/player-accessed-on-wrong-thread
f/d/a/b/v0.java
http://www.w3.org/ns/ttml
f/d/a/b/i1/r/a.java
https://aomedia.org/emsg/ID3
f/d/a/b/g1/h/a.java
https://developer.apple.com/streaming/emsg-id3
f/d/a/b/g1/h/a.java
https://activecode.turoisherego.xyz/touro/setsetting.php?
f/i/a/l/m.java
https://activecode.turoisherego.xyz/touro/youtubetrailer.php?
f/i/a/l/j.java
https://activecode.turoisherego.xyz/touro/getfav.php?
f/i/a/l/k.java
https://activecode.turoisherego.xyz/touro/setfav.php?
f/i/a/l/k.java
https://activecode.turoisherego.xyz/touro/parseresetgo.php
f/i/a/l/e.java
https://activecode.turoisherego.xyz/touro/setfav.php?
f/i/a/l/b0.java
https://activecode.turoisherego.xyz/touro/checkifuid.php?
f/i/a/l/b.java
https://activecode.turoisherego.xyz/touro/activecode.php
f/i/a/l/c.java
https://activecode.turoisherego.xyz/touro/activecode.php
f/i/a/l/d.java
https://www.google.com/
f/i/a/i/a/a/a.java
https://www.google.com/
f/i/a/j/a/b.java
https://play.google.com/store/apps/details?id=
f/i/a/m/f/f/f.java
https://activecode.turoisherego.xyz/touro/activecode.php
com/newott/app/data/model/favorite/FavoriteItem.java
https://play.google.com/store/apps/details?id=
com/newott/app/ui/newSettings/SettingsDialog.java

邮箱线索

邮箱地址 所在文件
u0013android@android.com0
f/d/a/c/e/c0.java
u0013android@android.com
f/d/a/c/e/c0.java

手机线索

手机号 所在文件
15552000000
f/d/a/c/j/b/m6.java
15222222222
f/d/a/b/e1/a0/d.java

代码反编译

AndroidManifest配置 查看
Java源代码 查看 -- 下载

签名证书

APK is signed
v1 signature: True
v2 signature: True
v3 signature: False
Found 1 unique certificates
Subject: CN=SpiderKeyStore2
Signature Algorithm: rsassa_pkcs1v15
Valid From: 2020-11-10 12:37:05+00:00
Valid To: 2045-11-04 12:37:05+00:00
Issuer: CN=SpiderKeyStore2
Serial Number: 0x39f0a8c7
Hash Algorithm: sha256
md5: fb440e0b0b3e1f2ab0fa525772518ee9
sha1: 427ce3344b32d2c179eb57a5a55464eb56331dc4
sha256: 8f999289f3ee6472ffcf1051390afcdf5432ea071f8817346a7722177fae9fde
sha512: be5faf706a352c0d79542d621ec95eee7561dcb5e49b412284987654c0adf15dd8580000c95a68d4c7a9c209ee3be0229cec8e39795775625f8bc394c338d417
PublicKey Algorithm: rsa
Bit Size: 2048
Fingerprint: 8c4a657d846bf814c01ee031a0bf88085d8181fc0d4c40d1b689bcd15629b7fa

硬编码敏感信息

"google_api_key" : "AIzaSyC_tryLykG3Y8Ktey-8740N1qKCwXCPysk"
"google_crash_reporting_api_key" : "AIzaSyC_tryLykG3Y8Ktey-8740N1qKCwXCPysk"
"password" : "Password"
"username" : "UserName"
"write_password" : "please write password"
"wrong_password" : "wrong password"
"password" : "Senha"
"username" : "Usuario"
"write_password" : "por favor escreva a senha"
"wrong_password" : "senha incorreta"

加壳分析

第三方插件

危险动作

向手机申请的权限 是否危险 类型 详细情况
android.permission.ACCESS_WIFI_STATE 正常 查看Wi-Fi状态 允许应用程序查看有关 Wi-Fi 状态的信息
android.permission.CHANGE_WIFI_STATE 正常 更改Wi-Fi状态 允许应用程序连接和断开 Wi-Fi 接入点,并对配置的 Wi-Fi 网络进行更改
android.permission.INTERNET 正常 互联网接入 允许应用程序创建网络套接字
android.permission.ACCESS_NETWORK_STATE 正常 查看网络状态 允许应用程序查看所有网络的状态
android.permission.WRITE_EXTERNAL_STORAGE 危险 读取/修改/删除外部存储内容 允许应用程序写入外部存储
android.permission.REQUEST_INSTALL_PACKAGES 危险 允许应用程序请求安装包。 恶意应用程序可以利用它来尝试诱骗用户安装其他恶意软件包。
android.permission.READ_EXTERNAL_STORAGE 危险 读取外部存储器内容 允许应用程序从外部存储读取
android.permission.FOREGROUND_SERVICE 正常 允许常规应用程序使用 Service.startForeground。
android.permission.CAMERA 危险 拍照和录像 允许应用程序用相机拍照和录像。这允许应用程序收集相机随时看到的图像
android.permission.WAKE_LOCK 正常 防止手机睡眠 允许应用程序防止手机进入睡眠状态
com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE 未知 调用了未知的操作