VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, VirSCAN can scan compressed files with password 'infected' or 'virus'.

Language
Server load
Server Load



File information
File Name :智慧星.apk (File not down)
File Size :233509 byte
File Type :application/zip
MD5:5e80d7dd606ea53b40bde5d1d64c2eed
SHA1:5bb923f5a18a90e9622c518825b417b4986117e5
  • 扫描结果
  • 权限
  • 文件行为分析
  • Scanner results
    Scanner results:6%Scanner(s) (2/32)found malware!
    Behavior analysis report:         Habo file analysis
    Time: 2017-09-19 13:26:39 (CST)
    VirSCANVirSCAN
    Scanner Engine Ver Sig Ver Sig Date Scan result Time
    antiy AVL SDK 2.0 1970-01-01 Found nothing 5
    asquared 9.0.0.4799 9.0.0.4799 2015-03-08 Found nothing 1
    avast 170303-1 4.7.4 2017-03-03 Found nothing 60
    avg 2109/14460 10.0.1405 2017-09-14 Found nothing 60
    baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 7
    baidusd 1.0 1.0 2017-03-22 Found nothing 1
    bitdefender 7.58879 7.90123 2015-01-16 Found nothing 60
    clamav 23845 0.97.5 2017-09-17 Found nothing 60
    drweb 5.0.2.3300 5.0.1.1 2017-09-11 Found nothing 60
    fortinet 1.000, 51.740, 51.597, 51.621 5.4.247 2017-09-19 Found nothing 60
    fprot 4.6.2.117 6.5.1.5418 2016-02-05 Found nothing 60
    fsecure 2015-08-01-02 9.13 2015-08-01 Found nothing 60
    gdata 25.14236 25.14236 2017-09-18 Android.Adware.Epatroa.A 11
    ikarus 3.02.09 V1.32.31.0 2017-09-18 Found nothing 60
    jiangmin 16.0.100 1.0.0.0 2017-09-18 Found nothing 2
    kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 60
    kingsoft 2.1 2.1 2017-09-18 Found nothing 60
    mcafee 8620 5400.1158 2017-08-12 Found nothing 60
    nod32 6095 3.0.21 2017-09-17 Found nothing 60
    panda 9.05.01 9.05.01 2017-09-18 Found nothing 4
    pcc 13.302.06 9.500-1005 2017-03-27 Found nothing 60
    qh360 1.0.1 1.0.1 1.0.1 Found nothing 3
    qqphone 1.0.0.0 1.0.0.0 2015-12-30 Found nothing 60
    quickheal 14.00 14.00 2017-09-18 Android.Styricka.GEN6254 3
    rising 26.28.00.01 26.28.00.01 2016-07-18 Found nothing 1
    sophos 5.32 3.65.2 2016-10-10 Found nothing 60
    symantec 20151230.005 1.3.0.24 2015-12-30 Found nothing 60
    tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 3
    thehacker 6.8.0.5 6.8.0.5 2017-09-16 Found nothing 1
    tws 17.47.17308 1.0.2.2108 2017-09-18 Found nothing 13
    vba 3.12.29.5 beta 3.12.29.5 beta 2017-09-18 Found nothing 60
    virusbuster 15.0.985.0 5.5.2.13 2014-12-05 Found nothing 60
    Heuristic/Suspicious Exact
    NOTICE: Results are not 100% accurate and can be reported as a false positive by some scannerswhen and if malware is found. Please judge these results for yourself.
    Copy to clipboard
  • 权限列表
    许可名称信息
    com.android.launcher.permission.INSTALL_SHORTCUT创建快捷方式
    android.permission.GET_TASKS获取有关当前或最近运行的任务信息
    android.permission.WRITE_EXTERNAL_STORAGE写外部存储器(如:SD卡)
    android.permission.ACCESS_WIFI_STATE读取wifi网络状态
    android.permission.ACCESS_COARSE_LOCATION获取粗略的位置(通过wifi、基站)
    android.permission.MOUNT_UNMOUNT_FILESYSTEMS挂载、反挂载外部文件系统
    android.permission.READ_PHONE_STATE读取电话状态
    android.permission.SYSTEM_ALERT_WINDOW显示系统窗口
    android.permission.INTERNET连接网络(2G或3G)
    android.permission.ACCESS_FINE_LOCATION获取精确的位置(通过GPS)
    com.android.launcher.permission.READ_SETTINGS读取快捷方式信息
    android.permission.ACCESS_NETWORK_STATE读取网络状态(2G或3G)
    android.permission.WAKE_LOCK手机屏幕关闭后后台进程仍运行
    android.permission.CHANGE_CONFIGURATION修改当前设置(如:本地化)
  • 文件信息
    安全评分 :
    基本信息
    MD5:5e80d7dd606ea53b40bde5d1d64c2eed
    包名:com.wanluse
    最低运行环境:Android 2.2.x
    版权:google
    关键行为
    行为描述:跨进程写入数据
    详情信息:TargetProcess = C:\WINDOWS\explorer.exe, WriteAddress = 0x0007fbc0, Size = 0x00000424 TargetPID = 0x00000db4
    行为描述:设置线程上下文
    详情信息:C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe_7zdump\flashplayer27ax_ha_install.exe
    行为描述:获取TickCount值
    详情信息:TickCount = 284953, SleepMilliseconds = 60000.
    行为描述:屏蔽窗口关闭消息
    详情信息:hWnd = 0x00010342, Text = Adobe Flash Player 安装程序, ClassName = #32770.
    行为描述:设置特殊文件夹属性
    详情信息:C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
    C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
    C:\Documents and Settings\Administrator\Local Settings\History
    C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
    C:\Documents and Settings\Administrator\Cookies
    行为描述:自删除
    详情信息:C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe_7zdump\flashplayer27ax_ha_install.exe
    进程行为
    行为描述:创建进程
    详情信息:[0x00000db4]ImagePath = C:\WINDOWS\explorer.exe, CmdLine = explorer.exe
    行为描述:创建本地线程
    详情信息:TargetProcess: flashplayer27ax_ha_install.exe, InheritedFromPID = 2000, ProcessID = 2952, ThreadID = 3004, StartAddress = 77DC845A, Parameter = 00000000
    TargetProcess: flashplayer27ax_ha_install.exe, InheritedFromPID = 2000, ProcessID = 2952, ThreadID = 3036, StartAddress = 6359727B, Parameter = 00276900
    TargetProcess: flashplayer27ax_ha_install.exe, InheritedFromPID = 2000, ProcessID = 2952, ThreadID = 3040, StartAddress = 77E56C7D, Parameter = 00279FF0
    TargetProcess: flashplayer27ax_ha_install.exe, InheritedFromPID = 2000, ProcessID = 2952, ThreadID = 3044, StartAddress = 769AE43B, Parameter = 024934C0
    TargetProcess: flashplayer27ax_ha_install.exe, InheritedFromPID = 2000, ProcessID = 2952, ThreadID = 3048, StartAddress = 35C51A30, Parameter = 0219651C
    TargetProcess: flashplayer27ax_ha_install.exe, InheritedFromPID = 2000, ProcessID = 2952, ThreadID = 3052, StartAddress = 35C51A30, Parameter = 0219651C
    TargetProcess: flashplayer27ax_ha_install.exe, InheritedFromPID = 2000, ProcessID = 2952, ThreadID = 3056, StartAddress = 35C51A30, Parameter = 0219651C
    TargetProcess: flashplayer27ax_ha_install.exe, InheritedFromPID = 2000, ProcessID = 2952, ThreadID = 3060, StartAddress = 35C51A30, Parameter = 0219651C
    TargetProcess: flashplayer27ax_ha_install.exe, InheritedFromPID = 2000, ProcessID = 2952, ThreadID = 3064, StartAddress = 0045D2C0, Parameter = 02569A50
    TargetProcess: flashplayer27ax_ha_install.exe, InheritedFromPID = 2000, ProcessID = 2952, ThreadID = 3068, StartAddress = 0045D2C0, Parameter = 02569AF0
    TargetProcess: flashplayer27ax_ha_install.exe, InheritedFromPID = 2000, ProcessID = 2952, ThreadID = 3072, StartAddress = 004093D0, Parameter = 001A4068
    TargetProcess: flashplayer27ax_ha_install.exe, InheritedFromPID = 2000, ProcessID = 2952, ThreadID = 3076, StartAddress = 4A426B97, Parameter = 042FD000
    TargetProcess: flashplayer27ax_ha_install.exe, InheritedFromPID = 2000, ProcessID = 2952, ThreadID = 3080, StartAddress = 4A426D10, Parameter = 4A410000
    TargetProcess: flashplayer27ax_ha_install.exe, InheritedFromPID = 2000, ProcessID = 2952, ThreadID = 3084, StartAddress = 4A426D10, Parameter = 4A410000
    TargetProcess: explorer.exe, InheritedFromPID = 2952, ProcessID = 3508, ThreadID = 3596, StartAddress = 77DC845A, Parameter = 00000000
    行为描述:设置线程上下文
    详情信息:C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe_7zdump\flashplayer27ax_ha_install.exe
    行为描述:枚举进程
    详情信息:N/A
    行为描述:跨进程写入数据
    详情信息:TargetProcess = C:\WINDOWS\explorer.exe, WriteAddress = 0x0007fbc0, Size = 0x00000424 TargetPID = 0x00000db4
    文件行为
    行为描述:创建文件
    详情信息:C:\Documents and Settings\Administrator\Local Settings\Temp\Adobe_ADMLogs\Adobe_ADM.log
    C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\160[1]
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\warning_icon_200.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_caution_200.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_caution_100.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_caution_125.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_caution_150.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_x_200.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_x_100.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_x_125.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_x_150.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_check_200.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_check_100.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_check_125.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_check_150.png
    行为描述:覆盖已有文件
    详情信息:C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\160[1]
    C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\SC[1]
    行为描述:查找文件
    详情信息:FileName = C:\Documents and Settings\Administrator\Local Settings\Temp
    FileName = C:\Documents and Settings\Administrator\Local Settings\%temp%
    FileName = C:\WINDOWS
    FileName = C:\WINDOWS\explorer.exe
    FileName = C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\*
    行为描述:删除文件
    详情信息:C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\close_200.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\gray_button_200.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\info_icon_100.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\progressbar_blue_active_100.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\progressbar_blue_active_125.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\progressbar_blue_active_150.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\progressbar_blue_active_200.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\progressbar_darkgray_base_100.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\progressbar_darkgray_base_200.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\progressbar_pole_null_100.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\progressbar_pole_null_125.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\progressbar_pole_null_150.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\progressbar_pole_null_200.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_caution_100.png
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_caution_125.png
    行为描述:设置特殊文件夹属性
    详情信息:C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
    C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
    C:\Documents and Settings\Administrator\Local Settings\History
    C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
    C:\Documents and Settings\Administrator\Cookies
    行为描述:修改文件内容
    详情信息:C:\Documents and Settings\Administrator\Local Settings\Temp\Adobe_ADMLogs\Adobe_ADM.log ---> Offset = 0
    C:\Documents and Settings\Administrator\Local Settings\Temp\Adobe_ADMLogs\Adobe_ADM.log ---> Offset = 2
    C:\Documents and Settings\Administrator\Local Settings\Temp\Adobe_ADMLogs\Adobe_ADM.log ---> Offset = 340
    C:\Documents and Settings\Administrator\Local Settings\Temp\Adobe_ADMLogs\Adobe_ADM.log ---> Offset = 344
    C:\Documents and Settings\Administrator\Local Settings\Temp\Adobe_ADMLogs\Adobe_ADM.log ---> Offset = 590
    C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\160[1] ---> Offset = 0
    C:\Documents and Settings\Administrator\Local Settings\Temp\Adobe_ADMLogs\Adobe_ADM.log ---> Offset = 594
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\warning_icon_200.png ---> Offset = 0
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_caution_200.png ---> Offset = 0
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_caution_100.png ---> Offset = 0
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_caution_125.png ---> Offset = 0
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_caution_150.png ---> Offset = 0
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_x_200.png ---> Offset = 0
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_x_100.png ---> Offset = 0
    C:\Documents and Settings\Administrator\Local Settings\Application Data\Adobe\3D95FB0B-9228-44D3-89D9-FF925545AF20\status_icon_x_125.png ---> Offset = 0
    行为描述:自删除
    详情信息:C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe_7zdump\flashplayer27ax_ha_install.exe
    网络行为
    行为描述:打开指定IE网页
    详情信息:https://ge****om/flashplayer/
    行为描述:连接指定站点
    详情信息:WinHttpConnect: ServerName = ge****om, PORT = 443, UserName = , Password = , hSession = 0x042f3000, hConnect = 0x042f3100, Flags = 0x00000000
    行为描述:打开HTTP连接
    详情信息:WinHttpOpen: UserAgent: WinHTTP AutoProxy, hSession = 0x042f3000
    WinHttpOpen: UserAgent: AAM, hSession = 0x042f3000
    行为描述:建立到一个指定的套接字连接
    详情信息:IP: **.0.0.**:1031, SOCKET = 0x00000510
    IP: **.0.0.**:1032, SOCKET = 0x00000510
    IP: **.0.0.**:1033, SOCKET = 0x00000510
    URL: ge****om, IP: **.133.40.**:443, SOCKET = 0x0000053c
    IP: **.0.0.**:1034, SOCKET = 0x00000518
    IP: **.0.0.**:1036, SOCKET = 0x00000518
    IP: **.0.0.**:1037, SOCKET = 0x00000518
    IP: **.0.0.**:1038, SOCKET = 0x00000518
    IP: **.0.0.**:1039, SOCKET = 0x00000518
    IP: **.0.0.**:1040, SOCKET = 0x00000518
    IP: **.0.0.**:1041, SOCKET = 0x00000518
    IP: **.0.0.**:1042, SOCKET = 0x00000518
    IP: **.0.0.**:1043, SOCKET = 0x00000518
    IP: **.0.0.**:1044, SOCKET = 0x00000518
    IP: **.0.0.**:1045, SOCKET = 0x00000518
    行为描述:打开HTTP请求
    详情信息:WinHttpOpenRequest: ge****om:443/flashplayer/webservices/adm/?cname=flashplayer27ax_ha_install.exe&bname=flashplayerax&site=live&type=install&language=cn, hConnect = 0x042f3100, hRequest = 0x04312000, Verb: GET, Referer: , Flags = 0x00800000
    行为描述:按名称获取主机地址
    详情信息:GetAddrInfoW: ge****om
    注册表行为
    行为描述:修改注册表
    详情信息:\REGISTRY\MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name
    \REGISTRY\MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\ID
    其他行为
    行为描述:创建互斥体
    详情信息:oleacc-msaa-loaded
    CTF.LBES.MutexDefaultS-*
    CTF.Compart.MutexDefaultS-*
    CTF.Asm.MutexDefaultS-*
    CTF.Layouts.MutexDefaultS-*
    CTF.TMD.MutexDefaultS-*
    CTF.TimListCache.FMPDefaultS-*MUTEX.DefaultS-*
    Adobe_ADM.log
    Local\!PrivacIE!SharedMemory!Mutex
    Local\ZonesCounterMutex
    Local\ZoneAttributeCacheCounterMutex
    Local\ZonesCacheCounterMutex
    Local\ZonesLockedCacheCounterMutex
    DDrawWindowListMutex
    DDrawDriverObjectListMutex
    行为描述:创建事件对象
    详情信息:EventName = DINPUTWINMM
    EventName = Global\crypt32LogoffEvent
    EventName = CancelPort{0132A8FC-0683-4694-B681-B0036FAACFDA}
    EventName = MSCTF.SendReceive.Event.MIL.IC
    EventName = MSCTF.SendReceiveConection.Event.MIL.IC
    EventName = Global\userenv: User Profile setup event
    行为描述:查找指定窗口
    详情信息:NtUserFindWindowEx: [Class,Window] = [MS_AutodialMonitor,]
    NtUserFindWindowEx: [Class,Window] = [MS_WebCheckMonitor,]
    NtUserFindWindowEx: [Class,Window] = [Shell_TrayWnd,]
    NtUserFindWindowEx: [Class,Window] = [CicLoaderWndClass,]
    行为描述:窗口信息
    详情信息:Pid = 2952, Hwnd=0x10342, Text = Adobe Flash Player 安装程序, ClassName = #32770.
    行为描述:获取TickCount值
    详情信息:TickCount = 284953, SleepMilliseconds = 60000.
    行为描述:屏蔽窗口关闭消息
    详情信息:hWnd = 0x00010342, Text = Adobe Flash Player 安装程序, ClassName = #32770.
    行为描述:打开事件
    详情信息:HookSwitchHookEnabledEvent
    Global\crypt32LogoffEvent
    \SECURITY\LSA_AUTHENTICATION_INITIALIZED
    MSFT.VSA.COM.DISABLE.2952
    MSFT.VSA.IEC.STATUS.6c736db0
    CTF.ThreadMIConnectionEvent.000007E8.00000000.0000000F
    CTF.ThreadMarshalInterfaceEvent.000007E8.00000000.0000000F
    MSCTF.SendReceiveConection.Event.IOH.IC
    MSCTF.SendReceive.Event.IOH.IC
    Global\SvcctrlStartEvent_A3752DX
    行为描述:调用Sleep函数
    详情信息:[1]: MilliSeconds = 0.
    [2]: MilliSeconds = 60000.
    [3]: MilliSeconds = 0.
    [4]: MilliSeconds = 0.
    行为描述:隐藏指定窗口
    详情信息:[Window,Class] = [Adobe Download Manager,#32770]
    [Window,Class] = [Adobe Flash Player 安装程序,#32770]
    [Window,Class] = [,Shell Embedding]
    [Window,Class] = [,Internet Explorer_Server]
    行为描述:打开互斥体
    详情信息:ShimCacheMutex
    Local\WininetStartupMutex
    Local\_!MSFTHISTORY!_
    Local\c:!documents and settings!administrator!local settings!temporary internet files!content.ie5!
    Local\c:!documents and settings!administrator!cookies!
    Local\c:!documents and settings!administrator!local settings!history!history.ie5!
    Local\WininetConnectionMutex
    Local\WininetProxyRegistryMutex
    Local\!IETld!Mutex
    CtfmonInstMutexDefaultS-*
    RasPbFile
    Activities
    活动名类型
    com.e4a.runtime.android.StartActivityandroid.intent.action.MAIN
    com.e4a.runtime.android.StartActivityandroid.intent.category.DEFAULT
    com.e4a.runtime.android.StartActivityandroid.intent.category.LAUNCHER
    com.e4a.runtime.android.mainActivityandroid.intent.action.MAIN
    com.e4a.runtime.android.mainActivityandroid.intent.category.DEFAULT
    权限列表
    许可名称信息
    com.android.launcher.permission.INSTALL_SHORTCUT创建快捷方式
    android.permission.GET_TASKS获取有关当前或最近运行的任务信息
    android.permission.WRITE_EXTERNAL_STORAGE写外部存储器(如:SD卡)
    android.permission.ACCESS_WIFI_STATE读取wifi网络状态
    android.permission.ACCESS_COARSE_LOCATION获取粗略的位置(通过wifi、基站)
    android.permission.MOUNT_UNMOUNT_FILESYSTEMS挂载、反挂载外部文件系统
    android.permission.READ_PHONE_STATE读取电话状态
    android.permission.SYSTEM_ALERT_WINDOW显示系统窗口
    android.permission.INTERNET连接网络(2G或3G)
    android.permission.ACCESS_FINE_LOCATION获取精确的位置(通过GPS)
    com.android.launcher.permission.READ_SETTINGS读取快捷方式信息
    android.permission.ACCESS_NETWORK_STATE读取网络状态(2G或3G)
    android.permission.WAKE_LOCK手机屏幕关闭后后台进程仍运行
    android.permission.CHANGE_CONFIGURATION修改当前设置(如:本地化)
    文件列表
    文件名 校验码
    META-INF/MANIFEST.MF 0xa19b1f4e
    META-INF/CERT.SF 0xf528b477
    META-INF/CERT.RSA 0xa564a92f
    AndroidManifest.xml 0x338e907
    assets/321.png 0x739cf02c
    assets/Bj.png 0x85a8d2d6
    assets/E4Abanner2017917144145.jpg 0x4565b93a
    classes.dex 0x1ea624d5
    res/drawable/icon.png 0x2b60ff7b
    resources.arsc 0xdfb93232
    运行截图
    VirSCAN

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
Translated by Keith Miller, United States
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号