VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, VirSCAN can scan compressed files with password 'infected' or 'virus'.

Language
Server load
Server Load



File information
File Name : 爱聊6.0_2203.apk (File not down)
File Size :1831296 byte
File Type :application/jar
MD5:da7171d879a9f5a31830c389c9b98e8f
SHA1:cbbbfe48a52b40e5a9759817ff660da2e747a011
  • 扫描结果
  • 权限
  • 文件行为分析
  • Scanner results
    Scanner results:0%Scanner(s) (0/32)found malware!        Behavior
    Time: 2015-10-16 11:15:24 (CST)
    VirSCANVirSCAN
    Scanner Engine Ver Sig Ver Sig Date Scan result Time
    antiy AVL SDK 3.0 1970-01-01 Found nothing 5
    asquared 9.0.0.4324 9.0.0.4324 2014-07-03 Found nothing 2
    avast 150725-1 4.7.4 2015-07-25 Found nothing 0
    avg 2109/8133 10.0.1405 2014-11-26 Found nothing 0
    baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 8
    baidusd 1.0 1.0 2014-04-02 Found nothing 2
    bitdefender 7.58469 7.90123 2014-12-25 Found nothing 0
    clamav 19861 0.97.5 2014-12-31 Found nothing 0
    drweb 5.0.2.3300 5.0.1.1 2014-12-31 Found nothing 0
    fortinet 23.345, 23.345 5.1.158 2014-12-08 Found nothing 0
    fprot 4.6.2.117 6.5.1.5418 2014-12-31 Found nothing 0
    fsecure 2014-04-02-01 9.13 2014-04-02 Found nothing 0
    gdata 25.3894 25.3894 2015-10-16 Found nothing 10
    ikarus 1.06.01 V1.32.31.0 2014-12-08 Found nothing 0
    jiangmin 16.0.100 1.0.0.0 2015-07-25 Found nothing 46
    kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 0
    kingsoft 2.1 2.1 2013-09-22 Found nothing 7
    mcafee 7638 5400.1158 2014-11-30 Found nothing 0
    nod32 0920 3.0.21 2014-12-23 Found nothing 0
    panda 9.05.01 9.05.01 2015-07-26 Found nothing 4
    pcc 11.380.07 9.500-1005 2014-12-31 Found nothing 0
    qh360 1.0.1 1.0.1 1.0.1 Found nothing 3
    qqphone 1.0.0.0 1.0.0.0 2014-12-09 Found nothing 0
    quickheal 14.00 14.00 2015-07-25 Found nothing 2
    rising 25.76.04.01 25.76.04.01 2015-07-24 Found nothing 2
    sophos 5.08 3.55.0 2014-12-01 Found nothing 0
    symantec 20141230.001 1.3.0.24 2014-12-30 Found nothing 0
    tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 7
    thehacker 6.8.0.5 6.8.0.5 2015-07-23 Found nothing 2
    tws 17.47.17308 1.0.2.2108 2014-12-08 Found nothing 13
    vba 3.12.26.3 3.12.26.3 2014-12-31 Found nothing 0
    virusbuster 15.0.985.0 5.5.2.13 2014-12-05 Found nothing 0
    Heuristic/Suspicious Exact
    NOTICE: Results are not 100% accurate and can be reported as a false positive by some scannerswhen and if malware is found. Please judge these results for yourself.
    Copy to clipboard
  • 权限列表
    许可名称信息
    android.permission.CHANGE_WIFI_MULTICAST_STATE变更WIFI多播状态
    android.permission.RECORD_AUDIO录音(使用AudioRecord)
    android.permission.INTERNET连接网络(2G或3G)
    android.permission.GET_PACKAGE_SIZE获取应用大小
    android.permission.WRITE_EXTERNAL_STORAGE写外部存储器(如:SD卡)
    android.permission.READ_PHONE_STATE读取电话状态
    android.permission.ACCESS_WIFI_STATE读取wifi网络状态
    android.permission.RESTART_PACKAGES重启其他程序
    android.permission.WAKE_LOCK手机屏幕关闭后后台进程仍运行
    android.permission.READ_LOGS读取系统日志
    android.permission.ACCESS_NETWORK_STATE读取网络状态(2G或3G)
    android.permission.WRITE_SETTINGS读写系统设置项
    android.permission.GET_TASKS获取有关当前或最近运行的任务信息
    android.permission.RECEIVE_BOOT_COMPLETED接收开机启动广播
    android.permission.CHANGE_NETWORK_STATE变更网络状态
    android.permission.CHANGE_WIFI_STATE改变WIFI连接状态
    android.permission.READ_EXTERNAL_STORAGE读外部存储器(如:SD卡)
    android.permission.ACCESS_MTK_MMHW
    android.permission.KILL_BACKGROUND_PROCESSES关闭后台进程
    android.permission.WRITE_SECURE_SETTINGS读写系统敏感设置
  • 文件信息
    安全评分 :
    基本信息
    MD5:da7171d879a9f5a31830c389c9b98e8f
    包名:com.android.flydd
    最低运行环境:Android 2.1.x
    版权:nlg
    关键行为
    行为描述:写权限映射文件
    详情信息:CiceroSharedMemDefaultS-*
    C:DOCUME~1ADMINI~1LOCALS~1TempEB93A6%temp%\1444935155.571566.exe
    \WINDOWS\system32\zh-cn\ieframe.dll.mui
    DD1CC70822FC94806B6C29E47748EFB2
    MSCTF.MarshalInterface.FileMap.ABD..GAIHH
    MSCTF.MarshalInterface.FileMap.ABD.B.GBIHH
    MSCTF.MarshalInterface.FileMap.ABD.C.GBIHH
    MSCTF.MarshalInterface.FileMap.ABD.D.GBIHH
    MSCTF.MarshalInterface.FileMap.ABD.E.GCIHH
    MSCTF.MarshalInterface.FileMap.ABD.F.FDIHH
    MSCTF.MarshalInterface.FileMap.ABD.G.FEIHH
    MSCTF.Shared.SFM.ABD
    行为描述:屏蔽窗口关闭消息
    详情信息:hWnd = 0x000202cc, Text = , ClassName = TFrmMain.
    hWnd = 0x000202a2, Text = 996e, ClassName = TApplication.
    行为描述:在桌面创建快捷方式
    详情信息:C:\Documents and Settings\Administrator\桌面\嘟嘟传奇.lnk
    行为描述:隐藏指定窗口
    详情信息:[Window,Class] = [,ComboLBox]
    [Window,Class] = [,Shell Embedding]
    [Window,Class] = [,TFrmMain]
    行为描述:按名称获取主机地址
    详情信息:www.60743.com
    进程行为
    行为描述:枚举进程
    详情信息:N/A
    文件行为
    行为描述:写权限映射文件
    详情信息:CiceroSharedMemDefaultS-*
    C:DOCUME~1ADMINI~1LOCALS~1TempEB93A6%temp%\1444935155.571566.exe
    \WINDOWS\system32\zh-cn\ieframe.dll.mui
    DD1CC70822FC94806B6C29E47748EFB2
    MSCTF.MarshalInterface.FileMap.ABD..GAIHH
    MSCTF.MarshalInterface.FileMap.ABD.B.GBIHH
    MSCTF.MarshalInterface.FileMap.ABD.C.GBIHH
    MSCTF.MarshalInterface.FileMap.ABD.D.GBIHH
    MSCTF.MarshalInterface.FileMap.ABD.E.GCIHH
    MSCTF.MarshalInterface.FileMap.ABD.F.FDIHH
    MSCTF.MarshalInterface.FileMap.ABD.G.FEIHH
    MSCTF.Shared.SFM.ABD
    行为描述:在桌面创建快捷方式
    详情信息:C:\Documents and Settings\Administrator\桌面\嘟嘟传奇.lnk
    行为描述:修改文件内容
    详情信息:C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\GameLogin_Debug.txt---> Offset = 0
    C:\Documents and Settings\Administrator\桌面\嘟嘟传奇.lnk---> Offset = 0
    行为描述:查找文件
    详情信息:FileName = GameLogin_Debug.txt
    FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\LoginTemp.ini
    FileName = C:\Documents and Settings
    FileName = C:\Documents and Settings\Administrator
    FileName = C:\Documents and Settings\Administrator\桌面
    FileName = C:\Documents and Settings\Administrator\NetHood
    FileName = C:\Documents and Settings\All Users
    FileName = C:\Documents and Settings\All Users\Documents
    FileName = C:\Documents and Settings\All Users\Documents\My Music
    FileName = C:\Documents and Settings\Administrator\My Documents
    FileName = C:\Documents and Settings\All Users\Documents\My Pictures
    FileName = C:\Documents and Settings\All Users\Templates
    FileName = C:\Documents and Settings\All Users\Application Data
    FileName = C:\Documents and Settings\All Users\桌面
    FileName = C:\Program Files
    网络行为
    行为描述:建立到一个指定的套接字连接
    详情信息:219.133.40.1:80
    行为描述:按名称获取主机地址
    详情信息:www.60743.com
    其他行为
    行为描述:创建互斥体
    详情信息:CTF.LBES.MutexDefaultS-*
    CTF.Compart.MutexDefaultS-*
    CTF.Asm.MutexDefaultS-*
    CTF.Layouts.MutexDefaultS-*
    CTF.TMD.MutexDefaultS-*
    CTF.TimListCache.FMPDefaultS-*MUTEX.DefaultS-*
    MSCTF.Shared.MUTEX.ELH
    MSCTF.Shared.MUTEX.ABD
    行为描述:隐藏指定窗口
    详情信息:[Window,Class] = [,ComboLBox]
    [Window,Class] = [,Shell Embedding]
    [Window,Class] = [,TFrmMain]
    行为描述:查找指定窗口
    详情信息:NtUserFindWindowEx: [Class,Window] = [Shell_TrayWnd,]
    NtUserFindWindowEx: [Class,Window] = [CicLoaderWndClass,]
    NtUserFindWindowEx: [Class,Window] = [MS_WINHELP,]
    行为描述:窗口信息
    详情信息:Pid = 1396, Hwnd=0x202c6, Text = 800 X 600, ClassName = TComboBox.
    行为描述:获取系统权限
    详情信息:SE_LOAD_DRIVER_PRIVILEGE
    行为描述:获取TickCount值
    详情信息:TickCount = 489478, SleepMilliseconds = 10.
    TickCount = 489494, SleepMilliseconds = 10.
    TickCount = 489510, SleepMilliseconds = 10.
    TickCount = 489525, SleepMilliseconds = 10.
    TickCount = 489541, SleepMilliseconds = 10.
    TickCount = 489978, SleepMilliseconds = 10.
    TickCount = 489994, SleepMilliseconds = 10.
    TickCount = 490010, SleepMilliseconds = 10.
    TickCount = 498978, SleepMilliseconds = 10.
    TickCount = 507369, SleepMilliseconds = 10.
    TickCount = 508369, SleepMilliseconds = 10.
    TickCount = 508640, SleepMilliseconds = 250.
    行为描述:获取光标位置
    详情信息:CursorPos = (106,18467), SleepMilliseconds = 10.
    CursorPos = (6399,26500), SleepMilliseconds = 10.
    CursorPos = (19234,15724), SleepMilliseconds = 10.
    CursorPos = (11543,29358), SleepMilliseconds = 10.
    CursorPos = (27027,24464), SleepMilliseconds = 10.
    CursorPos = (5770,28145), SleepMilliseconds = 10.
    CursorPos = (23346,16827), SleepMilliseconds = 10.
    CursorPos = (10026,491), SleepMilliseconds = 10.
    CursorPos = (3060,11942), SleepMilliseconds = 10.
    CursorPos = (4892,5436), SleepMilliseconds = 10.
    CursorPos = (32456,14604), SleepMilliseconds = 10.
    CursorPos = (3967,153), SleepMilliseconds = 10.
    CursorPos = (357,12382), SleepMilliseconds = 10.
    CursorPos = (17486,18716), SleepMilliseconds = 10.
    CursorPos = (19783,19895), SleepMilliseconds = 10.
    行为描述:屏蔽窗口关闭消息
    详情信息:hWnd = 0x000202cc, Text = , ClassName = TFrmMain.
    hWnd = 0x000202a2, Text = 996e, ClassName = TApplication.
    行为描述:枚举窗口
    详情信息:N/A
    动态列表行为
    行为描述:启动服务
    详情信息:{"FLAG":0,"COMPONENT_NAME":"ComponentInfo{com.android.flydd\/com.android.flydd.service.MainService}"}
    {"FLAG":0,"COMPONENT_NAME":"ComponentInfo{com.android.flydd\/com.mb.server.Payserver}"}
    {"FLAG":0,"COMPONENT_NAME":"ComponentInfo{com.android.flydd\/com.mb.server.Payserver}"}
    行为描述:模拟器驱动文件初始化
    详情信息:/proc/cpuinfo
    行为描述:类加载
    详情信息:path:/data/data/com.android.flydd/app_dex/tomaindex.jar
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar
    行为描述:获取用户ID
    详情信息:460000043140572
    460000043140572
    行为描述:添加View
    详情信息:[u'com.android.internal.policy.impl.PhoneWindow$DecorView@4155a5a8', u'WM.LayoutParams{(0,0)(fillxfill) sim=#100 ty=1 fl=#8010100 pfl=0x8 wanim=0x1030001}', u'android.view.CompatibilityInfoHolder@414af968']
    行为描述:调用Intent的setAction
    详情信息:[u'com.android.flydd.personHasChanged']
    [u'com.android.flydd.personHasChanged']
    行为描述:root权限检测
    详情信息:/system/bin/su
    /system/xbin/su
    /system/bin/su
    /system/xbin/su
    /system/bin/su
    /system/xbin/su
    行为描述:访问网络
    详情信息:host:fe80::5054:ff:fe12:3456%eth0 port:7
    host:10.0.2.15 port:7
    host:fe80::5054:ff:fe12:3456%eth0 port:7
    host:10.0.2.15 port:7
    host:fe80::5054:ff:fe12:3456%eth0 port:7
    host:10.0.2.15 port:7
    host:fe80::5054:ff:fe12:3456%eth0 port:7
    host:10.0.2.15 port:7
    行为描述:初始化IntentFilter
    详情信息:[u'android.net.conn.CONNECTIVITY_CHANGE']
    行为描述:读取文件
    详情信息:path:/sys/class/net/lo/ifindex length:7
    path:/sys/class/net/lo/ifindex length:5
    path:/proc/net/if_inet6 length:69
    path:/proc/net/if_inet6 length:5
    path:/sys/class/net/eth0/ifindex length:7
    path:/sys/class/net/eth0/ifindex length:5
    path:/sys/class/net/sit0/ifindex length:7
    path:/sys/class/net/sit0/ifindex length:5
    path:/proc/cpuinfo length:69
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:69
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:65
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:62
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:64
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:64
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:62
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:62
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:59
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:65
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:67
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:58
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:64
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:68
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:66
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:5
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar length:9
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar length:23
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar length:69
    path:/mnt/sdcard/onmbs/imsi.txt length:20
    path:/mnt/sdcard/onmbs/imsi.txt length:5
    行为描述:内存加载jar
    详情信息:/data/data/com.android.flydd/app_dex/tomaindex.jar
    行为描述:初始化Intent
    详情信息:[u'com.android.flydd.home.FlyPigeonMainActivity@41558e30', u'class com.android.flydd.service.MainService']
    [u'android.os.Parcel@414ad258']
    [u'android.os.Parcel@414ad218']
    [u'android.os.Parcel@414ad218']
    []
    [u'android.os.Parcel@414ad258']
    [u'android.app.Application@4154f5d8', u'class com.mb.server.Payserver']
    [u'android.os.Parcel@414ae100']
    [u'android.os.Parcel@414ae0c0']
    [u'android.os.Parcel@414ae100']
    [u'android.os.Parcel@414ae0c0']
    [u'android.os.Parcel@414ae100']
    [u'android.os.Parcel@414ae0c0']
    [u'android.os.Parcel@414ad218']
    [u'android.os.Parcel@414ad258']
    []
    [u'android.os.Parcel@414ad218']
    [u'android.os.Parcel@414ae100']
    [u'android.os.Parcel@414ae0c0']
    [u'android.os.Parcel@414ad258']
    [u'android.app.ReceiverRestrictedContext@41522530', u'class com.mb.server.Payserver']
    [u'android.os.Parcel@414ae100']
    [u'android.os.Parcel@414ae0c0']
    行为描述:打开/关闭wlan
    详情信息:[u'true']
    [u'true']
    [u'true']
    [u'true']
    行为描述:调用哈希算法
    详情信息:MD5
    行为描述:内存加载dex
    详情信息:/data/data/com.android.flydd/app_outdex/tomaindex.dex
    行为描述:解析通用资源标识符
    详情信息:content://telephony/carriers
    content://telephony/carriers/preferapn
    content://telephony/carriers/preferapn
    content://telephony/carriers
    content://telephony/carriers
    content://telephony/carriers/preferapn
    content://telephony/carriers/preferapn
    content://telephony/carriers
    行为描述:注册广播接收器
    详情信息:[u'com.android.flydd.home.FlyPigeonMainActivity$MyBroadcastRecv@414cb0b8', u'android.content.IntentFilter@4151ef88']
    [u'com.android.flydd.service.MainService$ServiceBroadcastReceiver@415676b0', u'android.content.IntentFilter@415676c8']
    [u'com.mb.server.MyBroadcastReceiver@414eb188', u'android.content.IntentFilter@414f4688', u'null', u'null']
    [u'com.mb.server.MyBroadcastReceiver@415088e8', u'android.content.IntentFilter@4152f268', u'null', u'null']
    [u'com.mb.server.RoundReceiver@4150e090', u'android.content.IntentFilter@4150e0a8']
    [u'com.mb.server.StatAlarmReceiver@4151fd10', u'android.content.IntentFilter@41524c68']
    [u'com.mb.server.ShutdownReceiver@415557b8', u'android.content.IntentFilter@4151ed98']
    [u'com.mb.server.NetworkChangeReceiver@414dcae0', u'android.content.IntentFilter@414dcaf8']
    [u'com.mb.server.NetworkChangeReceiver@4152b450', u'android.content.IntentFilter@4152b468']
    [u'com.android.flydd.service.MainService$ServiceBroadcastReceiver@415c2ca8', u'android.content.IntentFilter@415c2cc0']
    [u'com.mb.server.MyBroadcastReceiver@4152c710', u'android.content.IntentFilter@41555d48', u'null', u'null']
    [u'com.mb.server.RoundReceiver@4151f298', u'android.content.IntentFilter@4151f2b0']
    [u'com.mb.server.StatAlarmReceiver@415102e8', u'android.content.IntentFilter@41518a50']
    [u'com.mb.server.ShutdownReceiver@414b2008', u'android.content.IntentFilter@41525fe8']
    [u'com.mb.server.MyBroadcastReceiver@41510b18', u'android.content.IntentFilter@4154e4f0', u'null', u'null']
    [u'com.mb.server.RoundReceiver@41504af8', u'android.content.IntentFilter@41504b10']
    [u'com.mb.server.StatAlarmReceiver@414af040', u'android.content.IntentFilter@414af058']
    [u'com.mb.server.ShutdownReceiver@414ccdd0', u'android.content.IntentFilter@414ccde8']
    行为描述:读取系统设置
    详情信息:[u'android.app.ContextImpl$ApplicationContentResolver@4154f5a0', u'font_scale']
    [u'android.app.ContextImpl$ApplicationContentResolver@4154f5a0', u'font_scale']
    行为描述:读取sdcard
    详情信息:path:/mnt/sdcard/onmbs/imsi.txt
    path:/mnt/sdcard/onmbs/imsi.txt
    path:/mnt/sdcard/onmbs/imsi.txt
    行为描述:发送广播
    详情信息:{"ACTION":"com.android.flydd.personHasChanged","FLAG":0}
    {"ACTION":"com.android.flydd.personHasChanged","FLAG":0}
    行为描述:查询Wifi是否开启
    详情信息:false
    false
    false
    false
    行为描述:写入文件
    详情信息:path:/data/data/com.android.flydd/shared_prefs/com.android.flydd_preferences.xml length:110
    path:/data/data/com.android.flydd/shared_prefs/umeng_general_config.xml length:261
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:69
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:65
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:62
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:64
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:64
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:62
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:62
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:59
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:65
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:67
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:58
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:64
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:68
    path:/data/data/com.android.flydd/app_dex/maindex.jar length:66
    path:/data/data/com.android.flydd/files/umeng_it.cache length:68
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar length:69
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar length:64
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar length:62
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar length:64
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar length:64
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar length:63
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar length:60
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar length:59
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar length:65
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar length:67
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar length:58
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar length:62
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar length:68
    path:/data/data/com.android.flydd/app_dex/tomaindex.jar length:65
    path:/data/data/com.android.flydd/shared_prefs/simno.xml length:107
    path:/data/data/com.android.flydd/shared_prefs/localimsi.xml length:125
    path:/mnt/sdcard/onmbs/imsi.txt length:20
    path:/data/data/com.android.flydd/files/.um/um_cache_1439264637661.env length:69
    path:/data/data/com.android.flydd/shared_prefs/inittime.xml length:119
    path:/data/data/com.android.flydd/shared_prefs/nexttime.xml length:110
    行为描述:获取设备ID
    详情信息:357143040944263
    357143040944263
    357143040944263
    357143040944263
    357143040944263
    357143040944263
    357143040944263
    357143040944263
    行为描述:获取运行service
    详情信息:[u'2147483647']
    [u'2147483647']
    [u'2147483647']
    [u'2147483647']
    [u'2147483647']
    行为描述:发送网络数据
    详情信息:operation:send host:239.9.9.1 port:5760 data:data:ANDPuZhang San
    operation:send host:239.9.9.1 port:5760 data:data:ANDPuZhang San 
    operation:send host:239.9.9.1 port:5760 data:data:ANDPuZhang San 
    operation:send host:239.9.9.1 port:5760 data:data:ANDPuZhang San
    operation:send host:239.9.9.1 port:5760 data:data:ANDPuZhang San 
    operation:send host:239.9.9.1 port:5760 data:data:ANDPuZhang San 
    operation:send host:239.9.9.1 port:5760 data:data:ANDPuZhang San 
    行为描述:获取当前连接的Wifi热点信息
    详情信息:[]
    []
    []
    行为描述:窗口信息
    详情信息:{"text": "爱聊", "class": "android.widget.TextView"}
    {"text": "输入你的昵称", "class": "android.widget.TextView"}
    {"text": "在线(0)", "class": "android.widget.TextView"}
    {"text": "男生(0)", "class": "android.widget.TextView"}
    {"text": "女生(0)", "class": "android.widget.TextView"}
    {"text": "商户(0)", "class": "android.widget.TextView"}
    {"text": "客服(0)", "class": "android.widget.TextView"}
    行为描述:缓冲区读取一行数据
    详情信息:00000000000000000000000000000001 01 80 10 80 lo
    fe80000000000000505400fffe123456 02 40 20 80 eth0
    null
    00000000000000000000000000000001 01 80 10 80 lo
    fe80000000000000505400fffe123456 02 40 20 80 eth0
    null
    00000000000000000000000000000001 01 80 10 80 lo
    fe80000000000000505400fffe123456 02 40 20 80 eth0
    null
    00000000000000000000000000000001 01 80 10 80 lo
    fe80000000000000505400fffe123456 02 40 20 80 eth0
    null
    Processor : ARMv7 Processor rev 0 (v7l)
    00000000000000000000000000000001 01 80 10 80 lo
    fe80000000000000505400fffe123456 02 40 20 80 eth0
    null
    00000000000000000000000000000001 01 80 10 80 lo
    fe80000000000000505400fffe123456 02 40 20 80 eth0
    null
    00000000000000000000000000000001 01 80 10 80 lo
    fe80000000000000505400fffe123456 02 40 20 80 eth0
    null
    00000000000000000000000000000001 01 80 10 80 lo
    fe80000000000000505400fffe123456 02 40 20 80 eth0
    00000000000000000000000000000001 01 80 10 80 lo
    null
    fe80000000000000505400fffe123456 02 40 20 80 eth0
    null
    00000000000000000000000000000001 01 80 10 80 lo
    fe80000000000000505400fffe123456 02 40 20 80 eth0
    00000000000000000000000000000001 01 80 10 80 lo
    null
    fe80000000000000505400fffe123456 02 40 20 80 eth0
    null
    00000000000000000000000000000001 01 80 10 80 lo
    fe80000000000000505400fffe123456 02 40 20 80 eth0
    null
    460000043140572
    null
    行为描述:查询App共享数据
    详情信息:[u'content://telephony/carriers/preferapn', u'null', u'null', u'null', u'null']
    [u'content://telephony/carriers/preferapn', u'null', u'null', u'null', u'null']
    行为描述:获取网络状态信息[*]
    详情信息:NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
    NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
    NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
    NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
    NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
    NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
    NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
    NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
    NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
    NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
    行为描述:数据库查询
    详情信息:[u'config', u'null', u'null', u'null', u'null', u'null', u'null']
    [u'config', u'null', u'null', u'null', u'null', u'null', u'null']
    [u'queue', u'null', u'null', u'null', u'null', u'null', u'null']
    [u'SynOrder', u'null', u'null', u'null', u'null', u'null', u'null']
    [u'SynOrder', u'null', u'null', u'null', u'null', u'null', u'null']
    [u'config', u'null', u'null', u'null', u'null', u'null', u'null']
    行为描述:写入sdcard
    详情信息:path:/mnt/sdcard/onmbs/imsi.txt
    Activities
    活动名类型
    .home.FlyPigeonMainActivityandroid.intent.action.MAIN
    .home.FlyPigeonMainActivityandroid.intent.category.LAUNCHER
    启动方式
    名称信息
    com.mb.server.pbReceiver开机启动服务
    权限列表
    许可名称信息
    android.permission.CHANGE_WIFI_MULTICAST_STATE变更WIFI多播状态
    android.permission.RECORD_AUDIO录音(使用AudioRecord)
    android.permission.INTERNET连接网络(2G或3G)
    android.permission.GET_PACKAGE_SIZE获取应用大小
    android.permission.WRITE_EXTERNAL_STORAGE写外部存储器(如:SD卡)
    android.permission.READ_PHONE_STATE读取电话状态
    android.permission.ACCESS_WIFI_STATE读取wifi网络状态
    android.permission.RESTART_PACKAGES重启其他程序
    android.permission.WAKE_LOCK手机屏幕关闭后后台进程仍运行
    android.permission.READ_LOGS读取系统日志
    android.permission.ACCESS_NETWORK_STATE读取网络状态(2G或3G)
    android.permission.WRITE_SETTINGS读写系统设置项
    android.permission.GET_TASKS获取有关当前或最近运行的任务信息
    android.permission.RECEIVE_BOOT_COMPLETED接收开机启动广播
    android.permission.CHANGE_NETWORK_STATE变更网络状态
    android.permission.CHANGE_WIFI_STATE改变WIFI连接状态
    android.permission.READ_EXTERNAL_STORAGE读外部存储器(如:SD卡)
    android.permission.ACCESS_MTK_MMHW
    android.permission.KILL_BACKGROUND_PROCESSES关闭后台进程
    android.permission.WRITE_SECURE_SETTINGS读写系统敏感设置
    服务列表
    名称
    com.android.flydd.service.MainService
    com.mb.server.Payserver
    文件列表
    文件名 校验码
    META-INF/MANIFEST.MF 0x413ab0c4
    META-INF/CERT.SF 0x86f0bec4
    META-INF/CERT.RSA 0x29c78fb
    res/drawable-hdpi-v4/jar.png 0xf46d579d
    res/drawable-ldpi-v4/red_bird.png 0xf5a9d3fa
    res/drawable-hdpi-v4/send_msg_icon.png 0xddedd249
    res/drawable-ldpi-v4/folder_root.png 0x5d437c26
    res/drawable-hdpi-v4/video.png 0xbc9a9af3
    res/drawable-ldpi-v4/image.png 0x302f4297
    res/layout/head_image_spinner_layout.xml 0x693c55e2
    res/drawable-mdpi-v4/home_bg.jpg 0x64e8bb16
    res/drawable-ldpi-v4/pig_egg.png 0xbaf05802
    res/drawable-ldpi-v4/green_bird.png 0x1c4ff6fa
    res/layout/person_chart_layout.xml 0xd6d832fd
    res/layout/request_talk_layout.xml 0x50b7335
    res/drawable-mdpi-v4/sendmsg_icon.png 0x734100f6
    res/drawable-mdpi-v4/folder_icon.png 0x87377947
    res/drawable-mdpi-v4/received_msg_bg.9.png 0x32b73b9f
    res/drawable-ldpi-v4/all_bird.png 0xf6e7e5c4
    com/android/flydd/util/protocol.txt 0xf2529769
    res/layout/send_receive_file_layout.xml 0xc3bf3d80
    res/drawable-mdpi-v4/white_bird.png 0xeb5d002
    res/drawable-mdpi-v4/image.png 0x584233c6
    res/drawable-hdpi-v4/icon.png 0x3c13576b
    res/drawable-ldpi-v4/sendmsg_icon.png 0xee77233a
    res/drawable-hdpi-v4/apk.png 0xf097a5e8
    res/drawable-ldpi-v4/music.png 0x46142e47
    res/drawable-ldpi-v4/yellow_bird.png 0xb87ac2f1
    res/drawable-hdpi-v4/dialog_bg.jpg 0x8689afd
    res/drawable-mdpi-v4/about_icon.png 0x44a96832
    res/drawable-hdpi-v4/folder_up.png 0xf49a57b2
    res/drawable/list_item_selector_bg.xml 0xc4528bf3
    res/drawable-mdpi-v4/apk.png 0xce012fd
    res/menu/chart_menu.xml 0x7bd2b407
    res/drawable-hdpi-v4/folder_icon2.png 0x40b8124c
    res/drawable-ldpi-v4/send_msg_icon.png 0x351eb6ff
    res/drawable-hdpi-v4/red_bird.png 0x6f2e28c0
    res/drawable-mdpi-v4/send_file_icon.png 0xf0241525
    res/drawable-mdpi-v4/dialog_bg.jpg 0x8689afd
    resources.arsc 0x9af7dc0b
    res/drawable-ldpi-v4/doc.png 0x1c4bfb1a
    res/drawable-mdpi-v4/black_bird.png 0x6bbae40d
    AndroidManifest.xml 0xf01ecaee
    res/drawable-ldpi-v4/send_file_icon.png 0xf40fd090
    res/drawable-hdpi-v4/black_bird.png 0x6bbae40d
    res/drawable-mdpi-v4/pig_egg.png 0x30f8631
    res/drawable-hdpi-v4/image.png 0xd9f4c6af
    res/drawable-mdpi-v4/folder_root.png 0x9b0629d
    res/drawable-mdpi-v4/gp.png 0x146999ff
    res/drawable-mdpi-v4/long_cancel.png 0x8cd54ddd
    classes.dex 0x983d57db
    res/layout/row_file_layout.xml 0x6eca1cf6
    res/drawable-mdpi-v4/send_msg_bg.9.png 0xcf56eb4a
    res/drawable-hdpi-v4/setting_icon.png 0xa4ac117d
    res/drawable-ldpi-v4/long_cancel.png 0xd196a23
    res/layout/send_msg_layout.xml 0x93b8ff92
    res/drawable-hdpi-v4/ppt.png 0xc45630c1
    res/drawable-hdpi-v4/call_icon.png 0xc753253d
    res/drawable-mdpi-v4/blue_bird.png 0xfac2044a
    res/layout/person_long_click_layout.xml 0x823f589e
    res/drawable-ldpi-v4/send_msg_bg.9.png 0xdfa027bb
    res/drawable-ldpi-v4/folder_icon.png 0xdfb7dce3
    res/drawable-hdpi-v4/blue_bird.png 0xc6299763
    res/drawable-ldpi-v4/icon.png 0x8ef78580
    res/drawable-mdpi-v4/send_msg_icon.png 0xa620740a
    res/drawable-ldpi-v4/call_icon.png 0x612c6ee8
    res/drawable-hdpi-v4/long_cancel.png 0x1d6298fa
    res/drawable-ldpi-v4/bg.jpg 0x95755ab4
    res/drawable-ldpi-v4/dialog_bg.jpg 0x8689afd
    res/drawable-ldpi-v4/about_icon.png 0xdb957071
    res/drawable-mdpi-v4/green_bird.png 0xd5ec53a4
    res/drawable-hdpi-v4/rar.png 0x295f5a2b
    res/drawable-hdpi-v4/doc.png 0x2afeff28
    res/drawable-hdpi-v4/flypigeon.png 0xae0b32ed
    res/drawable-hdpi-v4/attatchment_icon.png 0x9928093c
    res/drawable-ldpi-v4/green_pig.png 0xe65b3fc6
    res/drawable-ldpi-v4/apk.png 0xed30ecdd
    res/drawable-ldpi-v4/attatchment_icon.png 0x8c331529
    res/drawable-hdpi-v4/green_bird.png 0xd0708833
    res/drawable-hdpi-v4/send_file_icon.png 0x95c13d26
    assets/maindex.jar 0xa3923f3
    res/drawable-mdpi-v4/flypigeon.png 0xae0b32ed
    res/layout/request_file_popupwindow_layout.xml 0xdb331ccc
    res/drawable-mdpi-v4/all_bird.png 0xf6e7e5c4
    res/drawable-mdpi-v4/tab_bg.9.png 0x3a9ce445
    res/drawable-mdpi-v4/ok_icon.png 0xd1fb4b2d
    res/drawable-ldpi-v4/file_icon.png 0xc3d62944
    res/layout/about_dialog_layout.xml 0xa23b2ee4
    res/drawable-ldpi-v4/flypigeon.png 0xae0b32ed
    res/drawable-mdpi-v4/doc.png 0xb9a40f2f
    res/drawable-ldpi-v4/jar.png 0x4b6feb1b
    res/drawable-mdpi-v4/bg.jpg 0x95755ab4
    res/drawable/listview_selected.xml 0x2bdc42cc
    assets/gb.jar 0x2c87707c
    res/layout/main.xml 0xf83dc5a9
    res/drawable-mdpi-v4/music.png 0xe32bcc31
    res/drawable-hdpi-v4/green_pig.png 0xb71a114f
    res/drawable-ldpi-v4/rar.png 0xd5ca725
    res/drawable-ldpi-v4/white_bird.png 0xf8418657
    res/drawable-hdpi-v4/about_icon.png 0x991faf22
    res/drawable-ldpi-v4/blue_bird.png 0xbebc7136
    res/drawable-mdpi-v4/setting_icon.png 0xbaa013a
    res/drawable-mdpi-v4/jar.png 0x97dab37
    res/drawable-mdpi-v4/cancel_icon.png 0x5e1043fb
    res/drawable-hdpi-v4/sendmsg_icon.png 0x10a6054
    res/drawable-mdpi-v4/icon.png 0x99a4f90b
    assets/dyxml.xml 0xe0d621de
    res/layout/fileselect_layout.xml 0xb15d630c
    res/drawable-hdpi-v4/music.png 0x74b1dfd
    res/drawable-hdpi-v4/send_msg_bg.9.png 0xcb187e94
    res/menu/main_menu.xml 0xfc9dbb37
    res/drawable-mdpi-v4/rar.png 0x649be211
    res/layout/received_msg_layout.xml 0x6537baa9
    res/drawable-mdpi-v4/folder_icon2.png 0x1e8b15cf
    res/layout/setting_dialog_layout.xml 0x58a56427
    res/drawable-mdpi-v4/green_pig.png 0x4c7d3c81
    res/drawable-hdpi-v4/white_bird.png 0x17230c86
    res/drawable-hdpi-v4/received_msg_bg.9.png 0xc6efdf2b
    res/drawable-hdpi-v4/all_bird.png 0xf6e7e5c4
    res/drawable-ldpi-v4/black_bird.png 0x6bbae40d
    res/drawable-mdpi-v4/video.png 0xe55b701e
    assets/Ms.png 0x8229b25
    res/drawable-hdpi-v4/folder_root.png 0xd82dbf53
    res/drawable-mdpi-v4/call_icon.png 0xdd40fc2d
    res/drawable-mdpi-v4/folder_up.png 0x99d6525e
    res/drawable-mdpi-v4/xls.png 0x71617efb
    res/drawable-hdpi-v4/xls.png 0xf2b51b6c
    res/drawable-ldpi-v4/xls.png 0x5cf24420
    res/drawable-mdpi-v4/attatchment_icon.png 0x9a31a92b
    res/drawable-mdpi-v4/ppt.png 0xe3dc6da3
    res/drawable-ldpi-v4/setting_icon.png 0x3c0c0696
    res/layout/person_item_layout.xml 0xb8df00af
    res/drawable-hdpi-v4/folder_icon.png 0x458b7754
    res/drawable-hdpi-v4/yellow_bird.png 0x7d536aab
    res/drawable-ldpi-v4/video.png 0xee0e17ae
    res/drawable/gdoc.png 0x6620c1e8
    res/drawable-hdpi-v4/file_icon.png 0x1f7ca09
    res/drawable-hdpi-v4/pig_egg.png 0x253501ff
    res/drawable-ldpi-v4/ppt.png 0xd4eb5913
    res/drawable-ldpi-v4/folder_icon2.png 0x13f4cd1c
    res/drawable-hdpi-v4/bg.jpg 0x95755ab4
    res/drawable-mdpi-v4/red_bird.png 0xcd42fb24
    res/layout/help_layout.xml 0x90fb0078
    res/drawable-mdpi-v4/yellow_bird.png 0xaae6c5be
    res/drawable-mdpi-v4/file_icon.png 0x9f3cda56
    res/drawable-ldpi-v4/folder_up.png 0x970f87a
    res/drawable-ldpi-v4/received_msg_bg.9.png 0xacd6ca87
    运行截图
    VirSCAN

About VirSCAN | Privacy Policy | Contact us | link | Help VirSCAN
Translated by Keith Miller, United States
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号