Reminder: The static detection of the APP may result in incomplete findings. If you have any doubts or suggestions, contact us.

File Information

File name cg_0719.apk
Size 33.68MB
MD5 c1163fcc4e53869837aaf4124568a92b
SHA1 5950ea5ed527503ff05f8ea7faf89eb9b577365a
SHA256 e81776265b1b4a3ccc993ffe44a85007caa7ddccc031aa579f432255946f3751

APK Information

App name 51品茶
Package name com.example.chaguaner2023
Main activity com.example.chaguaner2023.MainActivity
Version 4.0.0
Domain Clues 25 records
View
URL Clues 15 records
View
Email Clues 2 records
View
Phone Clues 1 records
View

Domain Clues

Domain Domain query IP Location Location query
aomedia.org 185.199.109.153 United States of America - Pennsylvania
schemas.microsoft.com 13.107.246.73 United States of America - Washington
vbwtbv.wehzmsx.com 104.21.47.210 United States of America - California
scripts.sil.org 104.22.11.254 United States of America - California
www.w3.org 104.18.23.19 United States of America - California
h0fr77y9.slt.sched.intlscdn.com 170.187.231.7 Singapore - Singapore
flutter.dev 199.36.158.100 United States of America - California
developer.apple.com 17.253.85.203 Hong Kong - Hong Kong
gitee.com 180.76.198.77 China - Beijing
default.url No information No locations
exoplayer.dev 185.199.111.153 United States of America - Pennsylvania
vbwtbv.uyijwwn.com 172.67.203.38 United States of America - California
developer.mozilla.org 34.111.97.67 United States of America - Missouri
www.jsdelivr.com 104.21.23.24 United States of America - California
wvseee.jsbacjr.com 172.67.175.194 United States of America - California
raw.githubusercontent.com 0.0.0.0 - - -
api.flutter.dev 199.36.158.100 United States of America - California
github.com 20.205.243.166 Singapore - Singapore
new1.wanzhuoli.top 122.189.171.115 China - Hubei
www.ibm.com 23.13.189.250 Hong Kong - Hong Kong
dashif.org 185.199.108.153 United States of America - Pennsylvania
www.unicode.org 64.182.27.164 United States of America - Texas
developer.android.com 172.217.163.46 United States of America - California
android.googlesource.com 142.251.170.82 United States of America - California
ns.adobe.com No information No locations

URL Clues

URL File path
https://developer.android.com/guide/topics/permissions/overview
io/flutter/plugin/platform/c.java
https://exoplayer.dev/issues/player-accessed-on-wrong-thread
e0/x0.java
https://exoplayer.dev/issues/cleartext-not-permitted
b2/b0.java
https://x</LA_URL>
j0/k0.java
https://default.url
j0/k0.java
http://schemas.microsoft.com/DRM/2007/03/protocols/AcquireLicense
j0/l0.java
http://dashif.org/guidelines/last-segment-number
l1/d.java
http://dashif.org/guidelines/trickmode
l1/d.java
http://dashif.org/thumbnail_tile
l1/d.java
http://dashif.org/guidelines/thumbnail_tile
l1/d.java
http://ns.adobe.com/xap/1.0/
p0/a.java
https://aomedia.org/emsg/ID3
z0/a.java
https://developer.apple.com/streaming/emsg-id3
z0/a.java
https://www.jsdelivr.com/using-sri-with-dynamic-files
摸瓜V2引擎
https://github.com/apvarun/toastify-js
摸瓜V2引擎
https://github.com/richtr/NoSleep.js/issues/15
摸瓜V2引擎
https://developer.mozilla.org/en-US/docs/Web/API/WakeLockSentinel/released)
摸瓜V2引擎
play.googleapis.com
摸瓜V3引擎
www.googleapis.com
摸瓜V3引擎
http://www.unicode.org/copyright.html
摸瓜V3引擎
vbwtbv.wehzmsx.com
摸瓜V3引擎
http://scripts.sil.org/OFLhttp://scripts.sil.org/OFL
摸瓜V3引擎
https://www.jsdelivr.com/using-sri-with-dynamic-files
摸瓜V3引擎
h0fr77y9.slt.sched.intlscdn.com
摸瓜V3引擎
https://aomedia.org/emsg/ID3
摸瓜V3引擎
http://dashif.org/thumbnail_tile
摸瓜V3引擎
http://schemas.android.com/apk/res/android
摸瓜V3引擎
https://developer.android.com/guide/topics/permissions/overview
摸瓜V3引擎
https://github.com/flutter/flutter/issues.
摸瓜V3引擎
wvseee.jsbacjr.com
摸瓜V3引擎
https://android.googlesource.com/toolchain/llvm-project
摸瓜V3引擎
http://dashif.org/guidelines/trickmode
摸瓜V3引擎
http://dashif.org/guidelines/thumbnail_tile
摸瓜V3引擎
https://github.com/dart-lang/sdk/blob/master/runtime/docs/compiler/aot/entry_point_pragma.md
摸瓜V3引擎
new1.wanzhuoli.top
摸瓜V3引擎
https://github.com/apvarun/toastify-js
摸瓜V3引擎
https://exoplayer.dev/issues/player-accessed-on-wrong-thread
摸瓜V3引擎
http://dashif.org/guidelines/last-segment-number
摸瓜V3引擎
https://exoplayer.dev/issues/cleartext-not-permitted
摸瓜V3引擎
https://default.url
摸瓜V3引擎
https://api.flutter.dev/flutter/material/Scaffold/of.html
lib/arm64-v8a/libapp.so
https://github.com/flutter/flutter/issues.
lib/arm64-v8a/libflutter.so
https://api.flutter.dev/flutter/dart-ui/ChannelBuffers-class.html
lib/armeabi-v7a/libapp.so
http://localhost/
lib/armeabi-v7a/libapp.so
http://www.ibm.com/data/dtd/v11/ibmxhtml1-transitional.dtd
lib/armeabi-v7a/libapp.so
https://vbwtbv.wehzmsx.com
lib/armeabi-v7a/libapp.so
https://api.flutter.dev/flutter/material/Scaffold/of.html
lib/armeabi-v7a/libapp.so
https://gitee.com/fdsaw/ffewelmcxww/raw/master/cg.txt
lib/armeabi-v7a/libapp.so
https://github.com/flutter/flutter/issues/new.
lib/armeabi-v7a/libapp.so
https://wvseee.jsbacjr.com/cg.txt
lib/armeabi-v7a/libapp.so
https://raw.githubusercontent.com/little-5/backup/master/cg.txt?t=
lib/armeabi-v7a/libapp.so
https://vbwtbv.uyijwwn.com
lib/armeabi-v7a/libapp.so
https://flutter.dev/docs/release/breaking-changes/network-policy-ios-android.
lib/armeabi-v7a/libapp.so
https://github.com/flutter/flutter/issues.
lib/armeabi-v7a/libflutter.so

Email Clues

Emails File path
appro@openssl.org
lib/arm64-v8a/libflutter.so
_growablelist@0150898._literal
lib/armeabi-v7a/libapp.so
_typeerror@0150898._create
lib/armeabi-v7a/libapp.so
_bytebuffer@7027147._new
lib/armeabi-v7a/libapp.so
_immutablelist@0150898._uk
lib/armeabi-v7a/libapp.so
_double@0150898.fromintege
lib/armeabi-v7a/libapp.so
_casterror@0150898._create
lib/armeabi-v7a/libapp.so
_assertionerror@0150898._create
lib/armeabi-v7a/libapp.so

Phone Clues

Phones File path
17512775099
i2/a.java

Code Decompile

AndroidManifest View
Java Source View -- Download

Signature Certificate

APK已签名
v1 签名: True
v2 签名: True
v3 签名: False
找到 1 个唯一证书
主题: CN=Android Debug, O=Android, C=US
签名算法: rsassa_pkcs1v15
有效期自: 2024-02-10 07:12:47+00:00
有效期至: 2054-02-02 07:12:47+00:00
发行人: CN=Android Debug, O=Android, C=US
序列号: 0x1
哈希算法: sha256
md5值: 73e8a618da84833ebd3aed6d63a9ccaf
sha1值: 8cfcf0fea89841747a1bd225f70d99045787e230
sha256值: 3700cee9dcef3c9e696aa51d4ad581b332fbc4040477853f7812ea91c75b75f0
sha512值: b59b74d1370c5509886a41046509857127a0839378b83926a43aa423d1bb45dea901907a9b8f1172ac0430536fa282687ee4c5f256e1e2e49b3dca070457338f
公钥算法: rsa
密钥长度: 2048
指纹: 5a3db976ca130f12887af21ec865966dadfba3e4e6c924570369047e0ede67fe

Leaked Information

Shells Analysis

Plugins Analysis

Dangerous Actions

Permissions Is Dangerous Category Information
android.permission.INTERNET Normal 互联网接入 允许应用程序创建网络套接字
android.permission.SYSTEM_ALERT_WINDOW Dangerous 显示系统级警报 允许应用程序显示系统警报窗口。恶意应用程序可以接管手机的整个屏幕
android.permission.REQUEST_INSTALL_PACKAGES Dangerous 允许应用程序请求安装包。 恶意应用程序可以利用它来尝试诱骗用户安装其他恶意软件包。
android.permission.WRITE_EXTERNAL_STORAGE Dangerous 读取/修改/删除外部存储内容 允许应用程序写入外部存储
android.permission.READ_EXTERNAL_STORAGE Dangerous 读取外部存储器内容 允许应用程序从外部存储读取
android.permission.VIBRATE Normal 可控震源 允许应用程序控制振动器
android.permission.ACCESS_NETWORK_STATE Normal 查看网络状态 允许应用程序查看所有网络的状态
android.permission.ACCESS_WIFI_STATE Normal 查看Wi-Fi状态 允许应用程序查看有关 Wi-Fi 状态的信息
android.permission.DOWNLOAD_WITHOUT_NOTIFICATION unknown unknown
android.permission.READ_PHONE_STATE Dangerous 读取电话状态和身份 允许应用访问设备的电话功能。具有此权限的应用程序可以确定此电话的电话号码和序列号,呼叫是否处于活动状态,呼叫所连接的号码等
android.permission.CAMERA Dangerous 拍照和录像 允许应用程序用相机拍照和录像。这允许应用程序收集相机随时看到的图像
android.permission.RECEIVE_BOOT_COMPLETED Normal 开机时自动启动 允许应用程序在系统完成启动后立即启动。这可能会使启动手机需要更长的时间,并允许应用程序通过始终运行来减慢整个手机的速度
android.permission.RECORD_AUDIO Dangerous 录音 允许应用程序访问音频记录路径
android.permission.MODIFY_AUDIO_SETTINGS Normal 更改您的音频设置 允许应用程序修改全局音频设置,例如音量和路由
android.permission.BLUETOOTH Normal 创建蓝牙连接 允许应用程序连接到配对的蓝牙设备
android.permission.WAKE_LOCK Normal 防止手机睡眠 允许应用程序防止手机进入睡眠状态
android.permission.QUERY_ALL_PACKAGES Normal 允许查询设备上的任何普通应用程序,无论清单声明如何
android.permission.READ_PRIVILEGED_PHONE_STATE unknown unknown
android.permission.USE_FULL_SCREEN_INTENT Normal 针对想要使用通知全屏意图的 Build.VERSION_CODES.Q 的应用程序是必需的
android.permission.SCHEDULE_EXACT_ALARM Normal 允许应用程序使用精确的警报调度 API 来执行对时间敏感的后台工作
android.permission.POST_NOTIFICATIONS unknown unknown
com.example.chaguaner2023.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION unknown unknown