VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load

VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

File information

Scanner results
Scanner results:2%Scanner(s) (1/39)found malware!
Behavior analysis report:         Habo file analysis
Time: 2014-11-12 23:10:16 (CST)
Scanner Engine Ver Sig Ver Sig Date Scan result Time
ahnlab 9.9.9 9.9.9 2013-05-28 Found nothing 3
antivir 1.9.2.0 1.9.159.0 7.11.184.98 Found nothing 13
antiy 114701 AVL141003 2014-10-04 Found nothing 7
arcavir 1.0 2011 2014-05-30 Found nothing 9
asquared 9.0.0.4157 9.0.0.4157 2014-07-30 Found nothing 4
avast 141111-0 4.7.4 2014-11-11 Found nothing 30
avg 2109/8019 10.0.1405 2014-11-06 Found nothing 14
baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 3
baidusd 1.0 1.0 2014-04-02 Found nothing 4
bitdefender 7.57661 7.90123 2014-11-10 Found nothing 9
clamav 19608 0.97.5 2014-11-10 Found nothing 9
comodo 15023 5.1 2014-10-03 Found nothing 3
ctch 4.6.5 5.3.14 2013-12-01 Found nothing 2
drweb 5.0.2.3300 5.0.1.1 2014-10-31 Found nothing 58
fortinet 23.159, 23.159 5.1.158 2014-11-11 Found nothing 2
fprot 4.6.2.117 6.5.1.5418 2014-11-11 Found nothing 2
fsecure 2014-04-02-01 9.13 2014-04-02 Found nothing 20
gdata 24.3819 24.3819 2014-08-29 Found nothing 12
hauri 2.73 2.73 2014-06-13 Found nothing 1
ikarus 1.06.01 V1.32.31.0 2014-11-11 Found nothing 18
jiangmin 16.0.100 1.0.0.0 2014-07-28 Found nothing 14
kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 27
kingsoft 2.1 2.1 2013-09-22 Found nothing 5
mcafee 7520 5400.1158 2014-08-04 Found nothing 12
nod32 0436 3.0.21 2014-09-18 Found nothing 3
panda 9.05.01 9.05.01 2014-06-15 Found nothing 5
pcc 11.270.05 9.500-1005 2014-11-11 Found nothing 3
qh360 1.0.1 1.0.1 1.0.1 Found nothing 12
qqphone 1.0.0.0 1.0.0.0 2014-11-12 美迪(a.banner.mmedia) 1
quickheal 14.00 14.00 2014-06-14 Found nothing 8
rising 25.17.00.04 25.17.00.04 2014-06-02 Found nothing 22
sophos 5.04 3.51.0 2014-08-05 Found nothing 60
sunbelt 3.9.2589.2 3.9.2589.2 2014-06-13 Found nothing 7
symantec 20141110.003 1.3.0.24 2014-11-10 Found nothing 2
tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 8
thehacker 6.8.0.5 6.8.0.5 2014-06-12 Found nothing 10
tws 17.47.17308 1.0.2.2108 2014-06-16 Found nothing 14
vba 3.12.26.3 3.12.26.3 2014-11-11 Found nothing 7
virusbuster 15.0.965.0 5.5.2.13 2014-11-11 Found nothing 19
权限列表
许可名称 信息
android.permission.WAKE_LOCK 手机屏幕关闭后后台进程仍运行
android.permission.GET_TASKS 获取有关当前或最近运行的任务信息
android.permission.RESTART_PACKAGES 重启其他程序
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.WRITE_SETTINGS 读写系统设置项
com.android.launcher.permission.INSTALL_SHORTCUT 创建快捷方式
com.android.launcher.permission.READ_SETTINGS 读取快捷方式信息
com.android.launcher.permission.WRITE_SETTINGS
android.permission.SET_WALLPAPER 设置桌面壁纸
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.KILL_BACKGROUND_PROCESSES 关闭后台进程
android.permission.GET_ACCOUNTS 访问账户列表
android.permission.USE_CREDENTIALS 获取认证令牌
android.permission.MANAGE_ACCOUNTS 管理账户
android.permission.WRITE_MEDIA_STORAGE
文件信息
VirSCANVirSCAN
安全评分 :79
基本信息
VirSCANVirSCAN
MD5:276a1f4184c843627bd4530e13dd1a7b
文件大小:5.58MB
上传时间: 2014-09-22 10:36:30 (CST)
包名:com.metago.astro
最低运行环境:Android 2.3, 2.3.1, 2.3.2
版权:Android
关键行为
VirSCANVirSCAN
行为描述: 在桌面创建快捷方式
详情信息: C:\Documents and Settings\All Users\桌面\无极影音.lnk
C:\Documents and Settings\All Users\桌面\电影FM.lnk
C:\Documents and Settings\All Users\桌面\淘宝购物.lnk
C:\Documents and Settings\All Users\桌面\音乐FM.lnk
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
C:\Documents and Settings\Administrator\IETldCache
行为描述: 隐藏指定窗口
详情信息: [Window,Class] = [无极影音,WujiPlayer]
行为描述: 修改注册表_启动项
详情信息: \REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\WJNews_20141112
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\WujiPlayer_20141112
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\BoxNews_20141112
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\MusicPlayer_20141112
进程行为
VirSCANVirSCAN
行为描述: 在桌面创建快捷方式
详情信息: C:\Documents and Settings\All Users\桌面\无极影音.lnk
C:\Documents and Settings\All Users\桌面\电影FM.lnk
C:\Documents and Settings\All Users\桌面\淘宝购物.lnk
C:\Documents and Settings\All Users\桌面\音乐FM.lnk
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
C:\Documents and Settings\Administrator\IETldCache
行为描述: 隐藏指定窗口
详情信息: [Window,Class] = [无极影音,WujiPlayer]
行为描述: 修改注册表_启动项
详情信息: \REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\WJNews_20141112
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\WujiPlayer_20141112
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\BoxNews_20141112
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\MusicPlayer_20141112
文件行为
VirSCANVirSCAN
行为描述: 在系统敏感位置(如开始菜单等)释放链接或快捷方式
详情信息: C:\Documents and Settings\Administrator\「开始」菜单\程序\音乐FM\音乐FM.lnk
C:\Documents and Settings\Administrator\「开始」菜单\程序\音乐FM\官方主页.lnk
C:\Documents and Settings\Administrator\「开始」菜单\程序\音乐FM\配置工具\卸载音乐FM.lnk
行为描述: 创建可执行文件
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temp\4.tmp\setup_open_267.exe
C:\Documents and Settings\Administrator\Local Settings\Temp\4.tmp\setup_2949-18349.exe
C:\Documents and Settings\Administrator\Local Settings\Temp\4.tmp\up.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\nso6.tmp\inetc.dll
C:\Program Files\Wuji\20141112\PlayerUpdate.exe
C:\Program Files\MusicPlayer\20141112\audio.dll
C:\Program Files\Wuji\20141112\DuiLib.dll
C:\Program Files\MusicPlayer\20141112\avcodec-54.dll
C:\Program Files\MusicPlayer\20141112\avcore.dll
C:\Program Files\Wuji\20141112\WujiPlayer.exe
C:\Program Files\Wuji\20141112\Unins.exe
C:\Program Files\Wuji\20141112\WJNewsUninstall.exe
C:\Program Files\MusicPlayer\20141112\avformat-54.dll
C:\Program Files\MusicPlayer\20141112\avutil-52.dll
C:\Program Files\Wuji\20141112\WJNews.exe
行为描述: 在桌面创建快捷方式
详情信息: C:\Documents and Settings\All Users\桌面\无极影音.lnk
C:\Documents and Settings\All Users\桌面\电影FM.lnk
C:\Documents and Settings\All Users\桌面\淘宝购物.lnk
C:\Documents and Settings\All Users\桌面\音乐FM.lnk
行为描述: 写权限映射文件
详情信息: Local\UrlZonesSM_Administrator
DfSharedHeapBE4B8
\WINDOWS\system32\zh-cn\wshext.dll.mui
\WINDOWS\system32\zh-cn\ieframe.dll.mui
\Documents and Settings\Administrator\IETldCache\index.datndex.dat_245760
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
C:\Documents and Settings\Administrator\IETldCache
行为描述: 修改文件内容
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temp\4.tmp\setup.bat---> Offset = 0
C:\Program Files\Wuji\20141112\Data\Def.html---> Offset = 0
C:\Program Files\Wuji\20141112\Data\def.jpg---> Offset = 32768
C:\Program Files\Wuji\20141112\Data\EKanR.dat---> Offset = 49152
C:\Program Files\Wuji\20141112\Data\Err.html---> Offset = 0
C:\Program Files\Wuji\20141112\Data\err.jpg---> Offset = 16384
C:\Program Files\Wuji\20141112\Data\loading.gif---> Offset = 0
C:\Program Files\Wuji\20141112\playlist.xml---> Offset = 0
C:\Program Files\Wuji\20141112\client.ini---> Offset = 0
C:\Program Files\Wuji\20141112\server.ini---> Offset = 0
C:\Program Files\Wuji\20141112\SysConfig.ini---> Offset = 0
C:\Program Files\Wuji\20141112\icon\dyfm.ico---> Offset = 16384
C:\Program Files\Wuji\20141112\Data\tab_more.png---> Offset = 0
C:\Program Files\Wuji\20141112\icon\taobao.ico---> Offset = 0
C:\Program Files\Wuji\20141112\INISet\DMSet.Xml---> Offset = 0
网络行为
VirSCANVirSCAN
行为描述: 联网打开网址
详情信息: InternetOpenUrlA: http://tj.wuji.com/a.ashx?v=51856086832E9ADBC77945524BA9B200505134C373A9351F56AC9AA7F4B5E860B0495A727792E7C114F9B536D83CA315AFB6989AE0748590CB197BBE9D3CE5B36C9940812ED7C66844A963884ED7E7BF1FC5AEDE6DFA4E5CD6376241FB905B1758AE167C5E1FEAE6 hInt
InternetOpenUrlA: http://tj.wuji.com/a.ashx?v=51856086832E9ADBC77945524BA9B200505134C373A9351F56AC9AA7F4B5E860B0495A727792E7C114F9B536D83CA315AFB6989AE0748590CB197BBE9D3CE5B36C9940812ED7C668175D4B9592D1F39CB518033D84EE19491FF57D630AF4F674D4A7DE7F36380C1D212B5
行为描述: 下载文件
详情信息: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\nso6.tmp\soft.ini
行为描述: 连接指定站点
详情信息: InternetConnectA: ServerName = psq1103.3wcy.com, PORT = 80
行为描述: 建立到一个指定的套接字连接
详情信息: 127.0.0.1:1040
行为描述: 读取网络文件
详情信息: hFile = 0x00000684, BytesToRead =8192, BytesRead = 8192.
行为描述: 打开HTTP请求
详情信息: HttpOpenRequestA: psq1103.3wcy.com:80/cpa.txt, hConnect = 0x00000680
注册表行为
VirSCANVirSCAN
行为描述: 修改注册表
详情信息: \REGISTRY\USER\S-1-5-21-1482476501-1645522239-1417001333-500\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\X\BaseClass
\REGISTRY\USER\S-1-5-21-1482476501-1645522239-1417001333-500\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\Documents and Settings\Administrator\Local Settings\Temp\4.tmp\setup.bat
\REGISTRY\MACHINE\SOFTWARE\MusicPlayer\Rd
\REGISTRY\MACHINE\SOFTWARE\Wuji\Rd
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\无极影音\DisplayIcon
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\无极影音\DisplayName
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\无极影音\DisplayVersion
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\无极影音\Publisher
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\无极影音\UninstallString
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\音乐FM\DisplayIcon
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\音乐FM\DisplayName
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\音乐FM\DisplayVersion
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\音乐FM\Publisher
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\音乐FM\UninstallString
行为描述: 修改注册表_延迟重命名项
详情信息: \REGISTRY\MACHINE\SYSTEM\ControlSet001\Control\Session Manager\PendingFileRenameOperations
行为描述: 修改注册表_启动项
详情信息: \REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\WJNews_20141112
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\WujiPlayer_20141112
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\BoxNews_20141112
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\MusicPlayer_20141112
其他行为
VirSCANVirSCAN
行为描述: 创建互斥体
详情信息: Local\ZonesCounterMutex
Local\ZoneAttributeCacheCounterMutex
Local\ZonesCacheCounterMutex
Local\ZonesLockedCacheCounterMutex
SetupApp
Local\c:!documents and settings!administrator!ietldcache!
DirectSound DllMain mutex (0x00000F40)
1128acc29a2f4c564400859e81d4b5b3BC
DirectSound DllMain mutex (0x00000300)
行为描述: 隐藏指定窗口
详情信息: [Window,Class] = [无极影音,WujiPlayer]
行为描述: 查找指定窗口
详情信息: NtUserFindWindowEx: [Class,Window] = [WujiSetup,无极影音安装程序]
NtUserFindWindowEx: [Class,Window] = [shell_traywnd,]
NtUserFindWindowEx: [Class,Window] = [WujiPlayer,无极影音]
NtUserFindWindowEx: [Class,Window] = [Shell_TrayWnd,]
行为描述: 尝试打开调试器或监控软件的驱动设备对象
详情信息: \??\SICE
\??\SIWVID
\??\NTICE
行为描述: 获取系统权限
详情信息: SE_LOAD_DRIVER_PRIVILEGE
SE_DEBUG_PRIVILEGE
行为描述: 窗口信息
详情信息: Pid = 2092, Hwnd=0xa0198, Text = 确定, ClassName = Button.
Pid = 2092, Hwnd=0xd01a4, Text = 取消, ClassName = Button.
Pid = 644, Hwnd=0xe0180, Text = 确定, ClassName = Button.
Pid = 644, Hwnd=0xc01c2, Text = 取消, ClassName = Button.
Pid = 768, Hwnd=0xb03ee, Text = 5EbOi2SxORrzFAK, ClassName = Cb5w0DxJ42FDkli.
行为描述: 打开图片文件
详情信息: \Program Files\Wuji\20141112\Data\def.jpg
\Program Files\Wuji\20141112\Data\err.jpg
\Program Files\MusicPlayer\20141112\Skin\125x125.jpg
\Program Files\MusicPlayer\20141112\Skin\DefaultUserImage.jpg
\Program Files\MusicPlayer\20141112\Skin\forgettt.jpg
\Program Files\MusicPlayer\20141112\Skin\playersidebg.jpg
\Program Files\MusicPlayer\20141112\Skin\playinging.jpg
\Program Files\MusicPlayer\20141112\Skin\playinginga.jpg
\Program Files\MusicPlayer\20141112\Skin\playingplaying.jpg
\Program Files\MusicPlayer\20141112\Skin\playingprev.jpg
\Program Files\MusicPlayer\20141112\Skin\playingpreva.jpg
\Program Files\MusicPlayer\20141112\Skin\playingrandom.jpg
\Program Files\MusicPlayer\20141112\Skin\playingrandoma.jpg
\Program Files\MusicPlayer\20141112\Skin\random.jpg
\Program Files\MusicPlayer\20141112\Skin\random01.jpg
异常崩溃
VirSCANVirSCAN
行为描述: 创建互斥体
详情信息: Local\ZonesCounterMutex
Local\ZoneAttributeCacheCounterMutex
Local\ZonesCacheCounterMutex
Local\ZonesLockedCacheCounterMutex
SetupApp
Local\c:!documents and settings!administrator!ietldcache!
DirectSound DllMain mutex (0x00000F40)
1128acc29a2f4c564400859e81d4b5b3BC
DirectSound DllMain mutex (0x00000300)
行为描述: 隐藏指定窗口
详情信息: [Window,Class] = [无极影音,WujiPlayer]
行为描述: 查找指定窗口
详情信息: NtUserFindWindowEx: [Class,Window] = [WujiSetup,无极影音安装程序]
NtUserFindWindowEx: [Class,Window] = [shell_traywnd,]
NtUserFindWindowEx: [Class,Window] = [WujiPlayer,无极影音]
NtUserFindWindowEx: [Class,Window] = [Shell_TrayWnd,]
行为描述: 尝试打开调试器或监控软件的驱动设备对象
详情信息: \??\SICE
\??\SIWVID
\??\NTICE
行为描述: 获取系统权限
详情信息: SE_LOAD_DRIVER_PRIVILEGE
SE_DEBUG_PRIVILEGE
行为描述: 窗口信息
详情信息: Pid = 2092, Hwnd=0xa0198, Text = 确定, ClassName = Button.
Pid = 2092, Hwnd=0xd01a4, Text = 取消, ClassName = Button.
Pid = 644, Hwnd=0xe0180, Text = 确定, ClassName = Button.
Pid = 644, Hwnd=0xc01c2, Text = 取消, ClassName = Button.
Pid = 768, Hwnd=0xb03ee, Text = 5EbOi2SxORrzFAK, ClassName = Cb5w0DxJ42FDkli.
行为描述: 打开图片文件
详情信息: \Program Files\Wuji\20141112\Data\def.jpg
\Program Files\Wuji\20141112\Data\err.jpg
\Program Files\MusicPlayer\20141112\Skin\125x125.jpg
\Program Files\MusicPlayer\20141112\Skin\DefaultUserImage.jpg
\Program Files\MusicPlayer\20141112\Skin\forgettt.jpg
\Program Files\MusicPlayer\20141112\Skin\playersidebg.jpg
\Program Files\MusicPlayer\20141112\Skin\playinging.jpg
\Program Files\MusicPlayer\20141112\Skin\playinginga.jpg
\Program Files\MusicPlayer\20141112\Skin\playingplaying.jpg
\Program Files\MusicPlayer\20141112\Skin\playingprev.jpg
\Program Files\MusicPlayer\20141112\Skin\playingpreva.jpg
\Program Files\MusicPlayer\20141112\Skin\playingrandom.jpg
\Program Files\MusicPlayer\20141112\Skin\playingrandoma.jpg
\Program Files\MusicPlayer\20141112\Skin\random.jpg
\Program Files\MusicPlayer\20141112\Skin\random01.jpg
危险行为
VirSCANVirSCAN
行为描述: 执行系统命令
详情信息: logcat -v threadtime -d
动态列表行为
VirSCANVirSCAN
行为描述: 传递附加信息
详情信息: Ljava/lang/String;=com.metago.astro.jobs.args | Landroid/os/Parcelable;=vi@417c1970
Ljava/lang/String;=com.metago.astro.jobs.messenger | Landroid/os/Parcelable;=null
Ljava/lang/String;=com.metago.astro.jobs.id | Landroid/os/Parcelable;=v{id=-3693464311494115456}
Ljava/lang/String;=com.metago.astro.jobs.args | Landroid/os/Parcelable;=ajz@416a6950
Ljava/lang/String;=com.metago.astro.jobs.messenger | Landroid/os/Parcelable;=android.os.Messenger@41690008
Ljava/lang/String;=com.metago.astro.jobs.id | Landroid/os/Parcelable;=v{id=9019911587050439920}
Ljava/lang/String;=com.metago.astro.jobs.args | Landroid/os/Parcelable;=ajz@4168e8c0
Ljava/lang/String;=com.metago.astro.jobs.messenger | Landroid/os/Parcelable;=android.os.Messenger@4163c370
Ljava/lang/String;=com.metago.astro.jobs.id | Landroid/os/Parcelable;=v{id=3970959020354809354}
Ljava/lang/String;=com.metago.astro.jobs.args | Landroid/os/Parcelable;=ajz@416a5ec0
Ljava/lang/String;=com.metago.astro.jobs.messenger | Landroid/os/Parcelable;=android.os.Messenger@41844428
Ljava/lang/String;=com.metago.astro.jobs.id | Landroid/os/Parcelable;=v{id=-3626176516595183033}
Ljava/lang/String;=com.metago.astro.jobs.args | Landroid/os/Parcelable;=ajz@417b5d38
Ljava/lang/String;=com.metago.astro.jobs.messenger | Landroid/os/Parcelable;=android.os.Messenger@417ce818
Ljava/lang/String;=com.metago.astro.jobs.id | Landroid/os/Parcelable;=v{id=-2142343401529983174}
Ljava/lang/String;=com.metago.astro.jobs.args | Landroid/os/Parcelable;=adb@418251e8
Ljava/lang/String;=com.metago.astro.jobs.messenger | Landroid/os/Parcelable;=android.os.Messenger@41825798
Ljava/lang/String;=com.metago.astro.jobs.id | Landroid/os/Parcelable;=v{id=1440481744430758872}
Ljava/lang/String;=com.metago.astro.jobs.messenger | Landroid/os/Parcelable;=android.os.Messenger@41844b30
Ljava/lang/String;=com.metago.astro.jobs.id | Landroid/os/Parcelable;=v{id=-7861648978757441563}
Ljava/lang/String;=com.metago.astro.jobs.messenger | Landroid/os/Parcelable;=android.os.Messenger@419c17f8
Ljava/lang/String;=com.metago.astro.jobs.id | Landroid/os/Parcelable;=v{id=7495560193574361227}
Ljava/lang/String;=com.metago.astro.jobs.messenger | Landroid/os/Parcelable;=android.os.Messenger@416c04e0
Ljava/lang/String;=com.metago.astro.jobs.id | Landroid/os/Parcelable;=v{id=3558297767729794664}
Ljava/lang/String;=com.metago.astro.jobs.messenger | Landroid/os/Parcelable;=android.os.Messenger@41835b80
Ljava/lang/String;=com.metago.astro.jobs.id | Landroid/os/Parcelable;=v{id=-1290457977170563430}
Ljava/lang/String;=exception | Ljava/io/Serializable;=java.lang.NullPointerException
Ljava/lang/String;=restart | Z=true
行为描述: 启动服务
详情信息: com.android.musicfx.Compatibility$Service
com.metago.astro.jobs.JobService
com.android.mms.transaction.SmsReceiverService
行为描述: 读取文件
详情信息: path:/proc/760/cmdline length:105
path:/proc/772/cmdline length:105
path:/proc/774/cmdline length:105
path:/proc/783/cmdline length:105
path:/proc/798/cmdline length:105
path:/proc/810/cmdline length:105
path:/dev/urandom length:17
path:/proc/840/mounts length:105
path:/proc/840/mounts length:105
path:/proc/840/cmdline length:105
path:/proc/853/cmdline length:105
path:/proc/meminfo length:105
path:/proc/900/cmdline length:105
path:/proc/902/cmdline length:105
path:/proc/914/cmdline length:105
path:/proc/916/cmdline length:105
path:/proc/925/cmdline length:105
path:/proc/937/cmdline length:105
path:/data/data/com.metago.astro/shared_prefs/com.metago.astro_preferences.xml length:105
path:/proc/937/mounts length:105
path:/proc/937/mounts length:105
path:pipe:[3735] length:105
path:pipe:[3735] length:105
path:pipe:[3735] length:105
path:pipe:[3735] length:55
path:pipe:[3735] length:105
path:pipe:[3735] length:105
path:pipe:[3735] length:105
path:pipe:[3735] length:105
path:pipe:[3735] length:105
path:pipe:[3735] length:105
path:pipe:[3735] length:105
path:pipe:[3735] length:105
path:/proc/meminfo length:105
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:5
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:7
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:7
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:25
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:7
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:24
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:6
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:11
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:7
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsMain length:7
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsMain length:7
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsMain length:43
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsMain length:7
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsData_XASSJYEM2TCPFK8LJUGN_171 length:7
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsData_XASSJYEM2TCPFK8LJUGN_171 length:7
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsData_XASSJYEM2TCPFK8LJUGN_171 length:41
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsData_XASSJYEM2TCPFK8LJUGN_171 length:41
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsData_XASSJYEM2TCPFK8LJUGN_171 length:7
path:/dev/urandom length:18
path:/proc/937/cmdline length:105
行为描述: 注册ContentObserver
详情信息: URI=astro:///pro
URI=shortcuts://com.metago.astro
URI=file:///mnt/sdcard/
行为描述: 访问URL
详情信息: libcore.net.http.HttpsURLConnectionImpl$HttpUrlConnectionDelegate:https://s3.amazonaws.com/astro_app_item/sys_addon_1_link
libcore.net.http.HttpsURLConnectionImpl$HttpUrlConnectionDelegate:https://ap.metago.net/v1/bootstrap?api=1&version=0
行为描述: 数据加密
详情信息: {u'operation': u'keyalgo', u'algorithm': u'AES', u'key': u'68, 11, 101, -94, -50, -56, 77, 65, 78, 109, -88, -40, 113, -40, 95, -54, -85, -116, 110, 91, 77, 64, 78, 87, 77, -119, 124, 83, 75, 65, -12, -37'}
行为描述: 类加载
详情信息: path:/system/app/PicoTts.apk
path:/system/app/MusicFX.apk
path:/system/framework/am.jar
path:/data/app/com.metago.astro-1.apk
行为描述: 设置组件属性
详情信息: Landroid/content/ComponentName;=ComponentInfo{com.metago.astro/com.metago.astro.RestartReceiver} | I=1 | I=1
Landroid/content/ComponentName;=ComponentInfo{com.metago.astro/com.metago.astro.RestartReceiver} | I=0 | I=1
Landroid/content/ComponentName;=ComponentInfo{com.metago.astro/com.metago.astro.MainActivity} | I=0 | I=1
行为描述: 执行系统命令
详情信息: logcat -v threadtime -d
行为描述: 缓冲区读取一行数据
详情信息: <html>
<head>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1">
<style type="text/css">
body {
margin: 20;
padding: 0;
}
img {
border: none;
display: block;
margin-left: auto;
margin-right: auto;
font-size: 20px;
</style>
</head>
<body>
<center><font size="+2">[{%s1_1}]</font></center>
<br/>
<img width="auto" height="50%" src="astro_open_anim.gif"/>
<center>[{%s1_2}]</center>
</body>
</html>
null
<head>
<img width="auto" height="50%" src="starting_locations_dialog_graphic_no_dropshadow.png"/>
<center>[{%s2_1}]<br/><br/>[{%s2_2}]</center>
<center><i>[{%s3_1}]</i> [{%s3_2}]</center>
# begin build properties
# autogenerated by buildinfo.sh
ro.build.id=JRO03R
ro.build.display.id=full-eng 4.1.1 JRO03R eng.root.20140403.100135 test-keys
ro.build.version.incremental=eng.root.20140403.100135
ro.build.version.sdk=16
ro.build.version.codename=REL
ro.build.version.release=4.1.1
ro.build.date=Thu Apr 3 10:05:58 CST 2014
ro.build.date.utc=1396490758
ro.build.type=eng
ro.build.user=root
ro.build.host=MyUbuntuCloud
ro.build.tags=test-keys
ro.product.model=Full Android on Emulator
ro.product.brand=Android
ro.product.name=full
ro.product.device=generic
ro.product.board=
ro.product.cpu.abi=armeabi-v7a
ro.product.cpu.abi2=armeabi
ro.product.manufacturer=unknown
ro.product.locale.language=en
ro.product.locale.region=US
ro.wifi.channels=
ro.board.platform=
# ro.build.product is obsolete; use ro.product.device
ro.build.product=generic
# Do not try to parse ro.build.description or .fingerprint
ro.build.description=full-eng 4.1.1 JRO03R eng.root.20140403.100135 test-keys
ro.build.fingerprint=Android/full/generic:4.1.1/JRO03R/eng.root.20140403.100135:eng/test-keys
ro.build.characteristics=default
# end build properties
#
# system.prop for generic sdk
rild.libpath=/system/lib/libreference-ril.so
rild.libargs=-d /dev/ttyS0
# ADDITIONAL_BUILD_PROPERTIES
keyguard.no_require_sim=true
ro.com.android.dataroaming=true
ro.com.android.dateformat=MM-dd-yyyy
ro.config.ringtone=Ring_Synth_04.ogg
ro.config.notification_sound=pixiedust.ogg
ro.carrier=unknown
ro.config.alarm_alert=Alarm_Classic.ogg
ro.ril.hsxpa=1
ro.ril.gprsclass=10
ro.adb.qemud=1
ro.kernel.android.checkjni=1
net.bt.name=Android
dalvik.vm.stack-trace-file=/data/anr/traces.txt
04-30 09:46:53.784 32 883 W SocketClient: write error (Broken
04-30 09:46:54.863 840 843 D dalvikvm: GC_CONCURRENT freed 1844K, 19% free 22257K/27207K, paused 33ms+102ms, total 483ms
04-30 09:46:57.714 840 843 D dalvikvm: GC_CONCURRENT freed 2062K, 19% free 22130K/27207K, paused 22ms+41ms, total 230ms
04-30 09:47:01.534 374 374 I Choreographer: Skipped 59 frames! The application may be doing too much work on its main thread.
04-30 09:47:01.544 589 589 V SmsReceiverService: onStart: #1 mResultCode: -1 = Activity.RESULT_OK
04-30 09:47:01.714 889 889 D AndroidRuntime:
04-30 09:47:01.714 889 889 D AndroidRuntime: >>>>>> AndroidRuntime START com.android.internal.os.RuntimeInit <<<<<<
04-30 09:47:01.714 889 889 D AndroidRuntime: CheckJNI is ON
04-30 09:47:01.804 889 889 D dalvikvm: Trying to load lib libjavacore.so 0x0
04-30 09:47:01.825 889 889 D dalvikvm: Added shared lib libjavacore.so 0x0
04-30 09:47:01.884 889 889 D dalvikvm: Trying to load lib libnativehelper.so 0x0
04-30 09:47:01.894 889 889 D dalvikvm: Added shared lib libnativehelper.so 0x0
04-30 09:47:03.174 889 889 D AndroidRuntime: Calling main entry com.android.commands.am.Am
04-30 09:47:03.293 889 889 D AndroidRuntime: Shutting down VM
04-30 09:47:03.314 889 894 D dalvikvm: GC_CONCURRENT freed 117K, 72% free 586K/2048K, paused 1ms+1ms, total 14ms
04-30 09:47:03.334 889 899 I AndroidRuntime: NOTE: attach of thread 'Binder_3' failed
04-30 09:47:03.444 840 840 W ApplicationContext: Unable to create external cache directory
04-30 09:47:04.244 902 902 D AndroidRuntime:
04-30 09:47:04.244 902 902 D AndroidRuntime: >>>>>> AndroidRuntime START com.android.internal.os.RuntimeInit <<<<<<
04-30 09:47:04.244 902 902 D AndroidRuntime: CheckJNI is ON
04-30 09:47:04.343 902 902 D dalvikvm: Trying to load lib libjavacore.so 0x0
04-30 09:47:04.354 902 902 D dalvikvm: Added shared lib libjavacore.so 0x0
04-30 09:47:04.414 902 902 D dalvikvm: Trying to load lib libnativehelper.so 0x0
04-30 09:47:04.414 902 902 D dalvikvm: Added shared lib libnativehelper.so 0x0
04-30 09:47:05.724 902 902 D AndroidRuntime: Calling main entry com.android.commands.am.Am
04-30 09:47:05.824 589 591 W dalvikvm: threadid=2: spin on suspend #1 threadid=14
04-30 09:47:05.824 589 591 D dalvikvm: Temporarily moving tid 890 to fg (was
04-30 09:47:05.824 902 902 D AndroidRuntime: Shutting down VM
04-30 09:47:05.854 902 906 D dalvikvm: GC_CONCURRENT freed 117K, 72% free 586K/2048K, paused 1ms+2ms, total 22ms
04-30 09:47:05.854 902 911 I AndroidRuntime: NOTE: attach of thread 'Binder_3' failed
04-30 09:47:05.884 589 591 D dalvikvm: Temporarily raised priority on tid 890 (10 ->
04-30 09:47:06.004 840 912 W dalvikvm: threadid=19: thread exiting with uncaught exception
04-30 09:47:06.004 840 912 W System.err: java.lang.NullPointerException
04-30 09:47:06.024 840 912 W System.err: at
04-30 09:47:06.034 840 912 W System.err: at
04-30 09:47:06.144 589 591 W dalvikvm: threadid=2: spin on suspend resolved in 2458 msec
04-30 09:47:06.174 589 591 D dalvikvm: Restored policy of 890 to 0
04-30 09:47:06.204 589 591 D dalvikvm: Restored priority on 890 to 10
04-30 09:47:06.544 589 591 D dalvikvm: GC_CONCURRENT freed 147K, 3% free 11861K/12103K, paused 46ms+2557ms, total 3908ms
04-30 09:47:06.854 916 916 D AndroidRuntime:
04-30 09:47:06.854 916 916 D AndroidRuntime: >>>>>> AndroidRuntime START com.android.internal.os.RuntimeInit <<<<<<
04-30 09:47:06.854 916 916 D AndroidRuntime: CheckJNI is ON
04-30 09:47:06.934 916 916 D dalvikvm: Trying to load lib libjavacore.so 0x0
04-30 09:47:06.954 916 916 D dalvikvm: Added shared lib libjavacore.so 0x0
04-30 09:47:07.014 916 916 D dalvikvm: Trying to load lib libnativehelper.so 0x0
04-30 09:47:07.014 916 916 D dalvikvm: Added shared lib libnativehelper.so 0x0
04-30 09:47:07.744 840 843 D dalvikvm: GC_CONCURRENT freed 1986K, 19% free 22191K/27207K, paused 210ms+154ms, total 1262ms
04-30 09:47:07.744 840 862 D dalvikvm: WAIT_FOR_CONCURRENT_GC blocked 238ms
04-30 09:47:07.764 840 912 D dalvikvm: WAIT_FOR_CONCURRENT_GC blocked 586ms
04-30 09:47:07.764 840 871 D dalvikvm: WAIT_FOR_CONCURRENT_GC blocked 566ms
04-30 09:47:07.954 148 505 I ActivityManager: Force stopping package com.metago.astro uid=10050
04-30 09:47:07.954 148 505 I ActivityManager: Killing proc 840:com.metago.astro/u0a50: force stop
04-30 09:47:07.984 148 505 W ActivityManager: Force removing ActivityRecord{418710b8 com.metago.astro/.MainActivity}: app died, no saved state
04-30 09:47:08.364 916 916 D AndroidRuntime: Calling main entry com.android.commands.am.Am
04-30 09:47:08.564 148 162 I ActivityManager: Start proc com.metago.astro for broadcast com.metago.astro/.RestartReceiver: pid=925 uid=10050 gids={3003, 1015, 1028}
04-30 09:47:08.624 148 161 D PackageManager:
04-30 09:47:08.645 148 181 I InputReader: Reconfiguring input devices. changes=0x00000010
04-30 09:47:08.694 148 161 D PackageManager:
04-30 09:47:09.044 925 925 E Trace : error opening trace file: No such file or directory
04-30 09:47:09.144 925 925 D dalvikvm: WAIT_FOR_CONCURRENT_GC blocked 0ms
04-30 09:47:09.785 925 928 D dalvikvm: GC_CONCURRENT freed 183K, 3% free 11597K/11847K, paused 34ms+4ms, total 119ms
04-30 09:47:09.785 925 925 D dalvikvm: WAIT_FOR_CONCURRENT_GC blocked 30ms
04-30 09:47:10.164 925 928 D dalvikvm: GC_CONCURRENT freed 156K, 3% free 11946K/12231K, paused 22ms+30ms, total 118ms
04-30 09:47:10.334 925 925 I ActivityThread: Pub com.metago.astro.index: com.metago.astro.search.SearchContentProvider
04-30 09:47:10.534 148 283 I WindowState: WIN DEATH: Window{41ba8be8 com.metago.astro/com.metago.astro.MainActivity paused=false}
04-30 09:47:10.584 148 180 W InputDispatcher: channel '41b37b88 com.metago.astro/com.metago.astro.MainActivity
04-30 09:47:10.584 148 180 E InputDispatcher: channel '41b37b88 com.metago.astro/com.metago.astro.MainActivity
04-30 09:47:10.593 148 505 I WindowState: WIN DEATH: Window{41b37b88 com.metago.astro/com.metago.astro.MainActivity paused=false}
04-30 09:47:10.593 148 505 W InputDispatcher: Attempted to unregister already unregistered input channel '41b37b88 com.metago.astro/com.metago.astro.MainActivity
04-30 09:47:10.604 148 370 I WindowState: WIN DEATH: Window{417d3578 com.metago.astro/com.metago.astro.MainActivity paused=false}
04-30 09:47:10.614 148 180 I WindowManager: WINDOW DIED Window{41b37b88 com.metago.astro/com.metago.astro.MainActivity paused=false}
04-30 09:47:10.614 148 180 E InputDispatcher: Received spurious receive callback for unknown input channel. fd=216, events=0x9
04-30 09:47:10.774 148 148 I ActivityManager: START {flg=0x10840004 cmp=com.metago.astro/.gui.dialogs.UncaughtExceptionDialog (has
04-30 09:47:10.784 148 148 W WindowManager: Failure taking screenshot for
04-30 09:47:10.843 148 159 I ActivityManager: Start proc com.metago.astro:exception for activity com.metago.astro/.gui.dialogs.UncaughtExceptionDialog: pid=937 uid=10050 gids={3003, 1015, 1028}
04-30 09:47:11.084 925 928 D dalvikvm: GC_CONCURRENT freed 219K, 3% free 12159K/12487K, paused 48ms+4ms, total 564ms
04-30 09:47:11.354 937 937 E Trace : error opening trace file: No such file or directory
04-30 09:47:11.513 937 937 D dalvikvm: WAIT_FOR_CONCURRENT_GC blocked 0ms
04-30 09:47:11.874 937 940 D dalvikvm: GC_CONCURRENT freed 190K, 3% free 11589K/11847K, paused 36ms+14ms, total 134ms
04-30 09:47:11.874 937 937 D dalvikvm: WAIT_FOR_CONCURRENT_GC blocked 39ms
04-30 09:47:12.254 916 916 D AndroidRuntime: Shutting down VM
04-30 09:47:12.264 916 920 D dalvikvm: GC_CONCURRENT freed 119K, 72% free 589K/2048K, paused 1ms+3ms, total 15ms
04-30 09:47:12.284 916 951 I AndroidRuntime: NOTE: attach of thread 'Binder_3' failed
04-30 09:47:12.414 937 940 D dalvikvm: GC_CONCURRENT freed 161K, 3% free 11961K/12231K, paused 22ms+27ms, total 129ms
04-30 09:47:13.214 954 954 D AndroidRuntime:
04-30 09:47:13.214 954 954 D AndroidRuntime: >>>>>> AndroidRuntime START com.android.internal.os.RuntimeInit <<<<<<
04-30 09:47:13.214 954 954 D AndroidRuntime: CheckJNI is ON
04-30 09:47:13.304 954 954 D dalvikvm: Trying to load lib libjavacore.so 0x0
04-30 09:47:13.314 937 940 D dalvikvm: GC_CONCURRENT freed 230K, 3% free 12175K/12487K, paused 80ms+4ms, total 298ms
04-30 09:47:13.314 954 954 D dalvikvm: Added shared lib libjavacore.so 0x0
04-30 09:47:13.384 954 954 D dalvikvm: Trying to load lib libnativehelper.so 0x0
04-30 09:47:13.384 954 954 D dalvikvm: Added shared lib libnativehelper.so 0x0
04-30 09:47:14.364 937 940 D dalvikvm: GC_CONCURRENT freed 318K, 4% free 12341K/12743K, paused 43ms+17ms, total 270ms
04-30 09:47:14.454 937 955 D dalvikvm: WAIT_FOR_CONCURRENT_GC blocked 272ms
04-30 09:47:14.924 954 954 D AndroidRuntime: Calling main entry com.android.commands.am.Am
04-30 09:47:15.034 954 954 D AndroidRuntime: Shutting down VM
04-30 09:47:15.054 954 961 D dalvikvm: GC_CONCURRENT freed 119K, 72% free 589K/2048K, paused 1ms+1ms, total 13ms
04-30 09:47:15.064 954 967 I AndroidRuntime: NOTE: attach of thread 'Binder_3' failed
04-30 09:47:15.534 937 940 D dalvikvm: GC_CONCURRENT freed 216K, 3% free 12608K/12935K, paused 24ms+219ms, total 448ms
行为描述: 写入文件
详情信息: path:/data/data/com.android.gallery3d/shared_prefs/com.android.gallery3d_preferences.xml length:105
path:/data/data/com.android.musicfx/shared_prefs/musicfx.xml length:105
path:/data/data/com.metago.astro/shared_prefs/com.metago.astro_preferences.xml length:105
path:/data/data/com.android.gallery3d/shared_prefs/com.android.gallery3d_preferences.xml length:105
path:/data/data/com.metago.astro/shared_prefs/com.metago.astro_preferences.xml length:105
path:/data/data/com.metago.astro/shared_prefs/com.metago.astro_preferences.xml length:105
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:5
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:7
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:27
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:26
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:6
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:11
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:7
path:/data/data/com.metago.astro/files/.flurrydatasenderblock.a2c6ab3e-2b38-4909-bd73-b72a072a60e1 length:7
path:/data/data/com.metago.astro/files/.flurrydatasenderblock.a2c6ab3e-2b38-4909-bd73-b72a072a60e1 length:100
path:/data/data/com.metago.astro/files/.flurrydatasenderblock.a2c6ab3e-2b38-4909-bd73-b72a072a60e1 length:7
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsData_XASSJYEM2TCPFK8LJUGN_171 length:7
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsData_XASSJYEM2TCPFK8LJUGN_171 length:7
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsData_XASSJYEM2TCPFK8LJUGN_171 length:41
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsData_XASSJYEM2TCPFK8LJUGN_171 length:7
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsMain length:7
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsMain length:7
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsMain length:43
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsMain length:7
path:/data/data/com.metago.astro/files/hmam length:5
path:/data/data/com.metago.astro/files/hmam length:7
path:/data/data/com.metago.astro/files/hmam length:6
path:/data/data/com.metago.astro/files/hmam length:6
path:/data/data/com.metago.astro/files/hmam length:45
path:/data/data/com.metago.astro/files/hmam length:9
path:/data/data/com.metago.astro/files/hmam length:6
path:/data/data/com.metago.astro/files/hmam length:7
path:/data/data/com.metago.astro/files/hmam length:6
path:/data/data/com.metago.astro/files/hmam length:18
path:/data/data/com.metago.astro/files/hmam length:19
path:/data/data/com.metago.astro/files/hmam length:6
path:/data/data/com.metago.astro/files/hmam length:15
path:/data/data/com.metago.astro/files/hmam length:57
path:/data/data/com.metago.astro/files/hmam length:6
path:/data/data/com.metago.astro/files/hmam length:6
path:/data/data/com.metago.astro/files/hmam length:9
path:/data/data/com.metago.astro/files/hmam length:9
path:/data/data/com.metago.astro/files/hmam length:6
path:/data/data/com.metago.astro/files/hmam length:56
path:/data/data/com.metago.astro/files/hmam length:12
path:/data/data/com.metago.astro/files/hmam length:6
path:/data/data/com.metago.astro/files/hmam length:7
path:/data/data/com.metago.astro/files/hmam length:9
path:/data/data/com.metago.astro/files/hmam length:53
path:/data/data/com.metago.astro/files/hmam length:11
path:/data/data/com.metago.astro/files/hmam length:7
path:/data/data/com.metago.astro/files/hmam length:6
path:/data/data/com.metago.astro/files/hmam length:17
path:/data/data/com.metago.astro/files/hmam length:47
path:/data/data/com.metago.astro/files/hmam length:10
path:/data/data/com.metago.astro/files/hmam length:6
path:/data/data/com.metago.astro/files/hmam length:11
path:/data/data/com.metago.astro/files/hmam length:55
path:/data/data/com.metago.astro/files/hmam length:59
path:/data/data/com.metago.astro/files/hmam length:10
path:/data/data/com.metago.astro/files/hmam length:52
path:/data/data/com.metago.astro/files/hmam length:9
path:/data/data/com.metago.astro/files/hmam length:60
path:/data/data/com.metago.astro/files/hmam length:11
path:/data/data/com.metago.astro/files/hmam length:12
path:/data/data/com.metago.astro/files/hmam length:61
path:/data/data/com.metago.astro/files/hmam length:8
path:/data/data/com.metago.astro/files/hmam length:9
path:/data/data/com.metago.astro/files/hmam length:9
path:/data/data/com.metago.astro/files/hmam length:6
path:/data/data/com.metago.astro/files/hmam length:9
path:/data/data/com.metago.astro/files/hmam length:9
path:/data/data/com.metago.astro/files/hmam length:15
path:/data/data/com.metago.astro/files/hmam length:9
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:7
path:/data/data/com.metago.astro/files/.flurryagent.-4adaaa66 length:98
path:/data/data/com.metago.astro/files/.flurrydatasenderblock.431819ea-7a2a-46a2-a745-1e18ab19556e length:7
path:/data/data/com.metago.astro/files/.flurrydatasenderblock.431819ea-7a2a-46a2-a745-1e18ab19556e length:99
path:/data/data/com.metago.astro/files/.flurrydatasenderblock.431819ea-7a2a-46a2-a745-1e18ab19556e length:7
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsData_XASSJYEM2TCPFK8LJUGN_171 length:7
path:/data/data/com.metago.astro/cache/uncaught_exception.astro length:92
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsData_XASSJYEM2TCPFK8LJUGN_171 length:41
path:/data/data/com.android.gallery3d/shared_prefs/com.android.gallery3d_preferences.xml length:105
path:/data/data/com.android.gallery3d/shared_prefs/com.android.gallery3d_preferences.xml length:105
path:/data/data/com.metago.astro/files/.flurrydatasenderblock.ebcdd92b-094f-4ddb-a5d0-a96151ba4589 length:7
path:/data/data/com.metago.astro/files/.flurrydatasenderblock.ebcdd92b-094f-4ddb-a5d0-a96151ba4589 length:100
path:/data/data/com.metago.astro/files/.flurrydatasenderblock.ebcdd92b-094f-4ddb-a5d0-a96151ba4589 length:7
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsData_XASSJYEM2TCPFK8LJUGN_171 length:7
path:/data/data/com.metago.astro/files/.FlurrySenderIndex.info.AnalyticsData_XASSJYEM2TCPFK8LJUGN_171 length:41
行为描述: 读取字符数据
详情信息: {, ", s, h, o, w, D, i, r, F, i, r, s, t, ", :, t, r, u, e, ,, ", v, i, e, w, S, i, z, e, ", :, ", M, E, D, I, U, M, ", ,, ", s, h, o, w, F, i, l, e, D, e, t, a, i, l, s, ", :, t, r, u, e, ,, ", s, h, o, w, T, h, u, m, b, n, a, i, l, s, ", :, t, r, u, e, ,, ", s, o, r, t, T, y, p, e, ", :, ", N, A, M, E, ", ,, ", s, h, o, w, H, i, d, d, e, n, F, i, l, e, s, ", :, f, a, l, s, e, ,, ", _, C, L, A, S, S, T, A, G, ", :, ", D, i, r, O, p, t, i, o, n, s, ", ,, ", s, h, o, w, S, e, l, e, c, t, i, o, n, B, a, r, ", :, f, a, l, s, e, ,, ", v, i, e, w, ", :, ", G, R, I, D, ", ,, ", s, o, r, t, D, i, r, ", :, ", A, S, C, E, N, D, I, N, G, ", ,, ", s, h, o, w, F, i, l, e, E, x, t, e, n, s, i, o, n, s, ", :, t, r, u, e,
{, ", u, r, i, _, s, e, t, ", :, [, ", f, i, l, e, :, \, /, \, /, \, /, m, n, t, \, /, s, d, c, a, r, d, \, /, ", ], ,, ", _, C, L, A, S, S, T, A, G, ", :, ", U, r, i, S, e, t, ",
{,
行为描述: 获取设备ID
详情信息: 357242043237511
行为描述: 初始化Intent
详情信息: Landroid/content/Context;=com.metago.astro.ASTRO@41602900 | Ljava/lang/Class;=class com.metago.astro.jobs.JobService
Landroid/content/Context;=com.metago.astro.ASTRO@41602900 | Ljava/lang/Class;=class com.metago.astro.gui.dialogs.UncaughtExceptionDialog
Landroid/content/Context;=android.app.ReceiverRestrictedContext@4162dfc8 | Ljava/lang/Class;=class com.metago.astro.gui.dialogs.UncaughtExceptionDialog
Activities
VirSCANVirSCAN
活动名 类型
.MainActivity android.intent.action.MAIN
.MainActivity android.intent.action.SEARCH
.MainActivity android.intent.category.LAUNCHER
.MainActivity android.intent.category.MULTIWINDOW_LAUNCHER
com.metago.astro.FileChooserActivity com.metago.astro.action.FILE_CHOOSER
com.metago.astro.FileChooserActivity android.intent.action.CREATE_SHORTCUT
com.metago.astro.FileChooserActivity android.intent.action.GET_CONTENT
com.metago.astro.FileChooserActivity com.metago.astro.action.PICK
com.metago.astro.FileChooserActivity android.intent.action.SET_WALLPAPER
com.metago.astro.FileChooserActivity android.intent.category.DEFAULT
com.metago.astro.FileChooserActivity android.intent.category.OPENABLE
com.metago.astro.tools.editor.TextEditorActivity android.intent.action.VIEW
com.metago.astro.tools.editor.TextEditorActivity android.intent.action.EDIT
com.metago.astro.tools.editor.TextEditorActivity android.intent.category.DEFAULT
com.metago.astro.tools.image.SimpleImageViewerActivity android.intent.action.VIEW
com.metago.astro.tools.image.SimpleImageViewerActivity android.intent.category.DEFAULT
com.dropbox.client2.android.AuthActivity android.intent.action.VIEW
com.dropbox.client2.android.AuthActivity android.intent.category.BROWSABLE
com.dropbox.client2.android.AuthActivity android.intent.category.DEFAULT
危险函数
VirSCANVirSCAN
函数名称 信息
java/net/URL;->openConnection 连接URL
ContentResolver;->delete 删除短信、联系人
ContentResolver;->query 读取联系人、短信等数据库
ActivityManager;->killBackgroundProcesses 中断进程,可用于关闭杀软
TelephonyManager;->getDeviceId 搜集用户手机IMEI码、电话号码、系统版本号等信息
getRuntime 获取命令行环境
HttpClient;->execute 请求远程服务器
LocationManager;->getLastKnownLocation 获取地址位置
java/net/HttpURLConnection;->connect 连接URL
java/lang/Runtime;->exec 执行字符串命令
android/app/NotificationManager;->notify 信息通知栏
DefaultHttpClient;->execute 发送HTTP请求
启动方式
VirSCANVirSCAN
名称 信息
com.kii.cloud.collector.Receiver 应用安装时启动服务
com.kii.cloud.collector.Receiver 应用卸载时启动服务
com.kii.cloud.collector.Receiver 开机启动服务
广告信息
VirSCANVirSCAN
名称 信息
com.inmobi.androidsdk InMobi
com.millennialmedia.android MillennialMedia
权限列表
VirSCANVirSCAN
许可名称 信息
android.permission.WAKE_LOCK 手机屏幕关闭后后台进程仍运行
android.permission.GET_TASKS 获取有关当前或最近运行的任务信息
android.permission.RESTART_PACKAGES 重启其他程序
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.WRITE_SETTINGS 读写系统设置项
com.android.launcher.permission.INSTALL_SHORTCUT 创建快捷方式
com.android.launcher.permission.READ_SETTINGS 读取快捷方式信息
com.android.launcher.permission.WRITE_SETTINGS
android.permission.SET_WALLPAPER 设置桌面壁纸
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.KILL_BACKGROUND_PROCESSES 关闭后台进程
android.permission.GET_ACCOUNTS 访问账户列表
android.permission.USE_CREDENTIALS 获取认证令牌
android.permission.MANAGE_ACCOUNTS 管理账户
android.permission.WRITE_MEDIA_STORAGE
服务列表
VirSCANVirSCAN
名称
com.metago.astro.jobs.JobService
com.metago.astro.analytics.metago.MAServ
Providers
VirSCANVirSCAN
名称 信息
com.metago.astro.jobs.JobService
com.metago.astro.analytics.metago.MAServ
文件列表
VirSCANVirSCAN
文件名 校验码
META-INF/MANIFEST.MF 0xf57e4d36
META-INF/CERT.SF 0x6c199595
META-INF/CERT.RSA 0x34875419
res/layout/simple_html_viewer.xml 0x500d6491
res/drawable-hdpi/orange_theme2_tab_unselected_holo.9.png 0x7f40ce86
res/drawable-xhdpi/orange_theme2_btn_check_off_disabled_focused_holo_light.png 0x70b9a193
res/layout/new_location_post_fragment.xml 0xa4127dbb
res/drawable/abc_spinner_ab_holo_light.xml 0xea14fd16
res/drawable/add_icon_light_32_dark.png 0xe2f1f385
res/drawable/sort_size_32.png 0x77e81348
res/drawable/skydrive_icon_color_72.png 0xbd27e212
res/drawable/com_facebook_picker_list_longpressed.9.png 0xc09562f2
res/layout/dialog_body_two_progress.xml 0x7054f90c
res/anim/grow_from_top.xml 0x85f10bd9
res/drawable-xhdpi/spinner_ab_default_ab_orange1.9.png 0x119e809a
res/drawable-xhdpi/abc_ic_menu_moreoverflow_normal_holo_light.png 0xc2a9ad8e
res/drawable-xxhdpi/abc_ic_menu_moreoverflow_normal_holo_dark.png 0xdcb066fd
res/drawable-xxhdpi/common_signin_btn_text_disabled_light.9.png 0x5f12ee94
res/drawable/down_light.png 0x75593f5a
res/drawable-hdpi/zip_medium.xml 0xadf6d051
res/drawable-xhdpi/ic1_server.png 0xc9d5409f
res/drawable-xhdpi/orange_theme2_progressbar_indeterminate_holo2.png 0xdfa61ae8
res/drawable-xxhdpi/abc_ic_ab_back_holo_light.png 0x79286fea
res/drawable-xhdpi/common_signin_btn_text_pressed_dark.9.png 0x64d28972
res/layout-v11/abc_simple_decor.xml 0x7475909b
res/drawable-xxhdpi/orange_theme2_btn_radio_off_pressed_holo_light.png 0x27ae983f
res/layout/dialog_body_two_inputs.xml 0x6ce70406
res/drawable-mdpi/pic_group_medium.xml 0x396d0ca5
res/menu/file_panel_blueshare_submenu.xml 0xf24e67fe
res/drawable/btn_check_off_pressed_holo_dark.png 0x4efe05dc
res/drawable-hdpi/social_group_32dp.xml 0x3f862d65
res/layout/no_account_connected_simple_layout.xml 0x76e262d6
res/layout/dialog_basic_conflict_three_buttons.xml 0xc3d57b3d
res/drawable-hdpi/abc_list_pressed_holo_light.9.png 0x816ffde7
res/layout/navigation_drawer_footer.xml 0x740df291
res/drawable-xhdpi/abc_menu_dropdown_panel_holo_dark.9.png 0x90e63080
res/drawable-hdpi/ic1_drive.png 0x16cc33e9
res/drawable-hdpi/my_files_small.xml 0x1e11f823
res/drawable-hdpi/com_facebook_button_blue_pressed.9.png 0xdd177d09
res/drawable-xxhdpi/common_signin_btn_icon_normal_light.9.png 0x30488965
res/drawable/images_icon_color_192.png 0x8376c4e1
res/layout/view_settings_advanced.xml 0xab94775b
res/drawable-hdpi/ic1_hide_folders.png 0x1daac6b2
res/drawable-mdpi/abc_ab_stacked_solid_light_holo.9.png 0xde0f77d5
res/drawable-mdpi/orange_theme2_scrubber_track_holo_light.9.png 0x2a1bb801
LICENSE-2.0.txt 0x495fc599
res/drawable-xxhdpi/abc_ab_bottom_solid_dark_holo.9.png 0x6581e0bc
res/drawable-hdpi/orange_theme2_scrubber_primary_holo.9.png 0x1d7daf76
res/drawable-xhdpi/search_small.xml 0xc7d89074
res/layout/system_panel.xml 0x20985a69
res/drawable-hdpi/orange_theme2_textfield_activated_holo_light.9.png 0xa054498f
res/drawable-hdpi/tab_selected_pressed_ab_orange1.9.png 0xb8ab7551
res/drawable-mdpi/orange_theme2_btn_radio_on_disabled_holo_light.png 0x9fafe3f2
res/drawable-mdpi/orange_theme2_btn_check_on_holo_light.png 0xc88b1e10
res/drawable-mdpi/abc_spinner_ab_focused_holo_light.9.png 0x93649699
res/drawable/plain_48.png 0x42b1cb9
res/drawable/list_32_dark.png 0x65ef9faa
res/drawable-mdpi/ic1_bookmark_no.png 0x2ea63295
res/drawable-mdpi/skydrive_icon_color_small.xml 0xc473cddb
res/layout/navigation_panel.xml 0xb6e7d455
res/drawable-mdpi/my_files_medium.xml 0x77dd042e
res/layout/tools_fragment.xml 0xc2c2dd58
res/drawable-xxhdpi/orange_theme2_text_select_handle_left.png 0xcb36110b
res/drawable/com_facebook_button_check_on.png 0xd23a2024
res/drawable-mdpi/orange_theme2_textfield_disabled_focused_holo_light.9.png 0xf1fcbef9
res/drawable-xhdpi/facebook_icon_color_medium.xml 0x70187c7e
res/drawable-xhdpi/orange_theme2_btn_default_disabled_holo_light.9.png 0x9b5c030
res/drawable-mdpi/abc_ic_clear_search_api_disabled_holo_light.png 0x61c26545
res/drawable-xhdpi/music_icon_color_medium.xml 0x9bb029d9
res/drawable-xxhdpi/ic_plusone_medium_off_client.png 0x5e3d79cd
res/drawable-xxhdpi/abc_cab_background_bottom_holo_light.9.png 0x46dfaf8f
res/layout/search_fragment_location_chooser_layout.xml 0x813a6529
res/drawable-xxhdpi/ic_plusone_standard_off_client.png 0xd60db340
res/drawable-hdpi/ic1_app_mgr.png 0xfa1f94cb
res/drawable/breadcrumb_tile_background.xml 0x26ae3528
res/anim/abc_slide_in_top.xml 0x41f8f3af
res/drawable/favorite_on.png 0x99553471
res/drawable-mdpi/abc_ic_clear_search_api_holo_light.png 0xa4331b55
res/drawable-hdpi/common_signin_btn_icon_focus_light.9.png 0xbc5f3c42
res/drawable-mdpi/orange_theme2_btn_radio_on_focused_holo_light.png 0xb10cf626
res/drawable-hdpi/abc_spinner_ab_default_holo_light.9.png 0xa910af35
bin/livesdk.jar 0x8e5f19d0
res/drawable/zip_dark.png 0xf7194d5
res/drawable-xxhdpi/ic1_rename.png 0x3068480c
res/drawable/workgroup_96.png 0xaa19f8ba
res/layout/installed_app_manager_layout.xml 0xa835d775
res/layout/com_facebook_usersettingsfragment.xml 0x1909d41d
res/drawable/google_drive_icon_color_32.png 0x5c14703f
res/drawable-xhdpi/ic1_extract.png 0xf1f1e8c6
res/drawable/add.png 0x573d9a0a
res/drawable/find_icon_dark_64.png 0x8208eab1
res/layout/navigation_drawer_item.xml 0x2bcbd407
res/drawable-hdpi/abc_textfield_search_default_holo_light.9.png 0xef7abffe
res/drawable-mdpi/abc_list_focused_holo.9.png 0xe40d1bf
res/drawable-mdpi/ic1_edit_location.png 0x5f34c05
res/drawable-mdpi/abc_ic_commit_search_api_holo_light.png 0x8ad302fe
res/drawable-hdpi/spinner_ab_pressed_ab_orange1.9.png 0x83cf1b6a
res/drawable-xhdpi/com_facebook_button_grey_pressed.9.png 0x460dbce7
res/drawable-xhdpi/orange_theme2_btn_radio_off_disabled_focused_holo_light.png 0x866e7648
res/layout/dialog_body_one_input.xml 0x96630a2c
res/drawable/red_btn_background_pressed.xml 0x145e6c9e
res/drawable/my_files_64.png 0x7f468ce3
res/drawable-hdpi/orange_theme2_btn_check_on_pressed_holo_light.png 0xcb0cc3ed
res/layout/scan_files_title.xml 0x5ae61580
res/drawable/nav_drawer_header_background.xml 0x44516b13
res/menu/search_menu.xml 0x966fa2a4
res/drawable/dropbox_icon_color_192.png 0x98a55fe3
res/drawable/nav_expand_state.xml 0x9ea9c0fe
res/layout/com_facebook_picker_checkbox.xml 0xde654509
res/drawable-xhdpi/ic1_audio_96.png 0x12990183
res/drawable/search_48.png 0xd8f42d37
res/drawable/menu_upload_64.png 0xc8a16878
res/drawable/google_plus_logo_18.png 0x7b682870
res/drawable-mdpi/orange_theme2_btn_check_on_pressed_holo_light.png 0x62841efa
res/drawable-hdpi/abc_textfield_search_default_holo_dark.9.png 0x26a9a88a
res/drawable/favorite_folder.png 0x3f2bdd42
res/drawable/more_icon_dark_grey_60_alpha.png 0x2b5ab255
res/drawable/box_btn_background.xml 0xfd7f3195
res/drawable-xxhdpi/progress_bg_ab_orange1.9.png 0x9c48174e
res/drawable/edit_location_unmount_btn_background.xml 0x77da26af
res/drawable-xhdpi/find_network_medium.xml 0xb957f0cb
res/drawable-xxhdpi/abc_ic_commit_search_api_holo_dark.png 0x49ef4437
res/drawable-xxhdpi/orange_theme2_progressbar_indeterminate_holo5.png 0xee3dccf6
res/drawable-mdpi/facebook_icon_color_medium.xml 0x5b04688e
res/drawable/apps_out_of_sync_btn_background.xml 0x21302b1c
res/drawable-xhdpi/orange_theme2_btn_check_off_focused_holo_light.png 0x11279f4
res/layout/dialog_edit_location_shortcut.xml 0x8e1efa5a
res/drawable-mdpi/orange_theme2_progressbar_indeterminate_holo5.png 0xd9eb8b4a
res/drawable-xhdpi/list_pressed_ab_orange1.9.png 0x633b4b0f
res/drawable-xhdpi/abc_list_longpressed_holo.9.png 0xf31ffc88
com_bluepeach_io_BlueFramework.c 0xd086a085
res/drawable-hdpi/music_icon_color_small.xml 0xf31a1eb1
res/drawable/menu_upload_48.png 0xbc766c92
res/drawable/rotate_right_32_dark.png 0x4606cc3e
res/layout/tab_layout.xml 0x88db2b65
res/drawable-hdpi/orange_theme2_text_select_handle_right.png 0x8a8b45f4
res/drawable-xhdpi/common_signin_btn_text_focus_dark.9.png 0x434d065d
res/drawable-xxhdpi/common_signin_btn_icon_pressed_dark.9.png 0x54407d1c
res/drawable-hdpi/doc_large.xml 0x75c99959
res/drawable/question_icon_dark.png 0xc04b8a24
res/drawable/rename_light.png 0xac0c7e03
res/drawable-hdpi/ic_navigation_drawer.png 0x6b5e3aa1
res/drawable-mdpi/orange_theme2_progressbar_indeterminate_holo1.png 0xf9fb622
res/drawable-xxhdpi/abc_ic_ab_back_holo_dark.png 0x387b304f
res/drawable-hdpi/ic1_share.png 0xc2236a20
res/anim/file_panel_enter.xml 0x5f7ec0d7
res/drawable-xhdpi/ic1_audio.png 0x1ddb0ff9
res/drawable-xhdpi/orange_theme2_scrubber_track_holo_light.9.png 0x3e9a2847
res/drawable/usb_dark.png 0x82fd62e8
res/drawable-hdpi/navigation_next_item.png 0x98a9c890
res/drawable/card_ui_background_connected.xml 0xd26cc1f
res/drawable-hdpi/orange_theme2_btn_radio_on_pressed_holo_light.png 0xa870b6f1
res/drawable-xhdpi/btn_cab_done_pressed_ab_orange1.9.png 0xadb01940
res/drawable/folder_full_shared_64.png 0xdd87c2ba
res/drawable-hdpi/google_plus_logo_32dp.xml 0xee08613c
res/layout/abc_action_bar_decor_include.xml 0x4dee2d7e
res/drawable/search.png 0x359e25c5
res/drawable-hdpi/facebook_icon_color_32dp.xml 0x9d139aec
res/drawable-xhdpi/orange_theme2_btn_check_off_holo_light.png 0xad57b7ac
res/drawable-xhdpi/orange_theme2_scrubber_control_normal_holo.png 0x984f0755
res/anim/progress_in.xml 0x8f491979
res/drawable/acer_promo_icon.png 0xfeac1f33
res/drawable/pdf_96.png 0x2cd32957
res/drawable-hdpi/workgroup_small.xml 0xfbcef9b1
res/drawable-xxhdpi/orange_theme2_btn_radio_off_disabled_focused_holo_light.png 0x91a7ec5a
res/drawable-xxhdpi/ic1_task_mgr.png 0x7d351691
res/drawable-xhdpi/abc_menu_dropdown_panel_holo_light.9.png 0xbfae0e99
res/drawable-xhdpi/com_facebook_picker_magnifier.png 0x102dfa85
res/drawable/doc_64.png 0xad9f5026
res/drawable-xhdpi/facebook_icon_color_32dp.xml 0x5b04688e
res/drawable/zip_48.png 0x6ef33cd5
res/drawable/blank_head.png 0x3636ec72
res/drawable-xhdpi/progress_bg_ab_orange1.9.png 0x1f61ce1f
res/drawable-xxhdpi/orange_theme2_textfield_disabled_focused_holo_light.9.png 0x542a5491
res/drawable/find_icon_dark_72.png 0x648a5eda
res/drawable/sd_card_blue_128.png 0xf734a89
res/drawable-mdpi/orange_theme2_btn_check_off_disabled_holo_light.png 0x249a2c35
res/drawable-mdpi/orange_theme2_btn_radio_off_holo_light.png 0xca434a38
res/drawable/dropbox_icon_color_72.png 0xcabc55e3
res/drawable-mdpi/common_signin_btn_text_normal_dark.9.png 0xfb223b7d
res/drawable-hdpi/spinner_ab_focused_ab_orange1.9.png 0xbb663cac
res/drawable/backup.png 0xc264365d
res/drawable-mdpi/skydrive_icon_color_large.xml 0xd1fdc7a3
res/drawable/add_icon_dark.png 0x1a032c51
res/drawable-xxhdpi/abc_ab_stacked_solid_dark_holo.9.png 0x743c07ba
res/drawable-xhdpi/abc_ab_bottom_solid_light_holo.9.png 0x1053168
res/drawable-xhdpi/ic1_gplus.png 0x83017f6f
res/drawable-xxhdpi/orange_theme2_text_select_handle_middle.png 0xe2efcb95
res/drawable/move_icon_dark.png 0x5912b382
res/drawable/select_menu_item.xml 0x659fb121
res/drawable/astro_open_anim.gif 0x567560f0
unboundid-ldapsdk-matchingrules.properties 0x9197ecc
res/drawable-mdpi/facebook_icon_color_small.xml 0x9d139aec
res/layout/eula.xml 0x14db4f7d
res/drawable/actionbar_background_tiled.xml 0x30da98b6
res/drawable-xhdpi/social_group_32dp.xml 0x564ad168
res/layout/astro_share_contact_selector.xml 0x37e8bda6
res/drawable-xhdpi/abc_ab_stacked_solid_dark_holo.9.png 0x45995026
res/drawable-xhdpi/folder_full_shared_large.xml 0x640d2f5
res/layout/new_connection_layout.xml 0xfa0a88d1
com_bluepeach_io_BlueJNIUtils.c 0xe39f697e
res/drawable-hdpi/orange_theme2_scrubber_control_pressed_holo.png 0xa995b6ad
res/drawable-xhdpi/ic1_image.png 0x5e20bbf5
res/drawable-xxhdpi/ic1_saved_search.png 0x3a2e5fb2
res/drawable-hdpi/orange_theme2_text_select_handle_middle.png 0xaa54b4d
res/layout/abc_list_menu_item_layout.xml 0x4b8b9309
res/drawable/presentation.png 0x1f41f38f
res/drawable-ldpi/com_facebook_close.png 0xb8423855
res/drawable-xxhdpi/common_signin_btn_text_focus_light.9.png 0x108e8c16
res/drawable-xhdpi/box_icon_color_large.xml 0xf2a6f75d
assets/direct_track.html 0x7038c08d
res/drawable/sort.png 0x1e9e6bc2
res/drawable-xhdpi/orange_theme2_textfield_default_holo_light.9.png 0x38937f29
res/drawable-xhdpi/abc_ic_cab_done_holo_light.png 0x8791c4c4
res/drawable/com_facebook_profile_picture_blank_square.png 0xd3d9bf3f
res/xml/preferences.xml 0xce68f462
res/anim/abc_slide_out_bottom.xml 0x51b9c50a
res/drawable/edit_shortcut_edit_item_pressed_background.xml 0xa55ceb3c
res/drawable-mdpi/ic_plusone_standard_off_client.png 0x8173abf6
res/anim/grow_from_bottomleft_to_topright.xml 0xe57effe7
res/drawable-xxhdpi/orange_theme2_btn_radio_off_disabled_holo_light.png 0xf69f9ae0
res/menu/package_activity_menu.xml 0x9f871fc9
res/drawable-mdpi/common_signin_btn_text_disabled_dark.9.png 0xe16d4f8b
res/drawable-hdpi/abc_ab_stacked_solid_dark_holo.9.png 0x909db13
res/layout/abc_action_bar_tabbar.xml 0xf3b0abcf
res/drawable/orange_theme2_tab_indicator_holo.xml 0xdc0b8086
res/drawable/workgroup_72.png 0xd2ac67d9
res/drawable-xxhdpi/orange_theme2_textfield_default_holo_light.9.png 0xe1c4f899
res/drawable/google_drive_icon_color_144.png 0x25ee591e
res/layout/dialog_header_double_title.xml 0x778466f
res/drawable-mdpi/abc_ic_menu_share_holo_dark.png 0x7f93973c
res/drawable-xhdpi/workgroup_large.xml 0x3dd90bd3
res/drawable/social_group_32.png 0x66aef744
res/drawable/find_icon_dark_192.png 0x33ef8e27
res/drawable-hdpi/ic1_open_as.png 0xb2fef804
res/drawable-xhdpi/zip_small.xml 0xadf6d051
res/drawable-xxhdpi/common_signin_btn_icon_focus_dark.9.png 0x7e270fd9
res/drawable-xxhdpi/abc_textfield_search_right_default_holo_dark.9.png 0x8c2163ca
res/drawable-xhdpi/ab_solid_ab_orange1.9.png 0xd4c174b2
res/drawable/sort_32_dark.png 0x15b2bc50
res/drawable-hdpi/ic1_refresh.png 0xbe08846b
res/drawable-xhdpi/orange_theme2_tab_unselected_holo.9.png 0x1fe5a31
res/drawable/abc_ic_clear.xml 0x9f16de5b
res/menu/action_menu_overflow.xml 0xd62a088e
res/drawable/search_icon_light.png 0x55ad8eba
res/drawable/scan_item_background.xml 0xcb6798b1
res/drawable-hdpi/images_icon_color_medium.xml 0x3c65e23f
res/drawable-xhdpi/abc_ab_stacked_solid_light_holo.9.png 0x4fa1423
res/drawable/normal_button_selector_background.xml 0xfa901711
res/drawable-hdpi/abc_ic_commit_search_api_holo_light.png 0xf90511bf
res/drawable-xhdpi/abc_ab_transparent_dark_holo.9.png 0xe5266da1
res/drawable-xxhdpi/ic1_filter.png 0x92633e65
res/drawable-hdpi/abc_ic_search.png 0x55176584
res/layout/notification_job_progress_layout.xml 0x729a9012
res/layout/homescreen_tab_item.xml 0x4c24e595
res/drawable/facebook_icon_color_192.png 0x6d443945
res/drawable-hdpi/common_signin_btn_text_disabled_focus_light.9.png 0x6f060356
res/anim/progress_fade_out.xml 0x7674125c
res/drawable-xxhdpi/ic1_facebook.png 0x3a449c99
res/drawable-xhdpi/workgroup_medium.xml 0xee40f3c9
res/drawable/orange_theme2_item_background_holo_light.xml 0xc4bba4d1
res/drawable-hdpi/abc_list_divider_holo_dark.9.png 0xe4823600
res/drawable-xhdpi/images_icon_color_small.xml 0x3c65e23f
res/drawable-xxhdpi/orange_theme2_progressbar_indeterminate_holo3.png 0xa2bd7a07
res/anim/slide_from_center_to_top.xml 0x3fd994f4
res/drawable-mdpi/abc_spinner_ab_default_holo_dark.9.png 0x1d8819d9
res/drawable-hdpi/abc_ic_voice_search.png 0xcf92a5d3
res/drawable/transparent_button_background.xml 0x27e31849
res/color/abc_search_url_text_holo.xml 0xab9e8622
res/drawable/facebook_icon_color_144.png 0x52269717
res/drawable-xhdpi/menu_dropdown_panel_ab_orange1.9.png 0x5a38ef25
res/drawable-xhdpi/abc_ab_bottom_transparent_dark_holo.9.png 0x5a6affd1
res/drawable-xhdpi/ic1_drive.png 0xc9c7402f
res/drawable-hdpi/abc_textfield_search_right_default_holo_light.9.png 0xa243c65b
res/drawable-mdpi/abc_ic_menu_moreoverflow_normal_holo_dark.png 0x46183a6
res/drawable-xhdpi/orange_theme2_progress_primary_holo_light.9.png 0x5b08e3ff
res/drawable/forward_arrow.png 0xe7db6fa1
res/drawable/abc_textfield_searchview_right_holo_light.xml 0xeb9b6686
res/drawable-hdpi/sd_card_blue_large.xml 0x4279418e
res/drawable/progress_drawable.xml 0x3d8214a4
res/drawable-hdpi/ic1_compress.png 0xe2302c0a
res/drawable/add_icon_light_32.png 0x9e80519c
res/drawable-hdpi/abc_ab_solid_dark_holo.9.png 0xa39d484f
res/drawable-mdpi/search_small.xml 0x1cf6216
res/drawable-xhdpi/skydrive_icon_color_medium.xml 0x40b4d744
res/drawable/eject_icon_dark.png 0x67f1b726
res/drawable/zip_64.png 0xf83d828b
res/drawable-mdpi/documents_icon_color_large.xml 0x9888b778
res/drawable/error_icon.png 0x9624d4dd
res/layout/starting_location_loading.xml 0xf3fa0491
res/layout/set_start_screen_layout.xml 0x863fe61d
res/drawable-mdpi/abc_spinner_ab_focused_holo_dark.9.png 0x6521b9bf
res/layout/dialog_body_gridview.xml 0xa01537d0
res/drawable-mdpi/common_signin_btn_icon_focus_dark.9.png 0x373f3662
res/drawable/box_icon_color_192.png 0x89c1826c
res/drawable/documents_icon_color_48.png 0xfe37de2c
res/layout/com_facebook_picker_image.xml 0x2d6b0de3
res/drawable-mdpi/abc_menu_dropdown_panel_holo_dark.9.png 0x5c0fa5f3
res/drawable-xxhdpi/abc_list_divider_holo_light.9.png 0x917ddcee
res/drawable-xxhdpi/orange_theme2_scrubber_primary_holo.9.png 0x9d5ab4e7
res/drawable-xxhdpi/ic1_sd_card.png 0xbf2c730a
res/drawable/pb_avg.jpg 0xeb1851bb
res/drawable/card_ui_background.xml 0xe7ba06b
res/drawable-mdpi/abc_cab_background_top_holo_light.9.png 0x5818ab75
res/drawable/pic_64.png 0x32c63631
res/drawable/workgroup_64.png 0x14ddbbf9
res/drawable/com_facebook_profile_default_icon.png 0x387f9128
res/drawable/folder_full_shared_144.png 0x61255548
res/drawable-xhdpi/abc_ic_commit_search_api_holo_light.png 0x62093d86
res/drawable-xhdpi/orange_theme2_btn_check_off_disabled_holo_light.png 0xca650d20
res/drawable-xhdpi/pdf_medium.xml 0xff303674
res/layout/texteditor.xml 0x9f1226a7
res/layout/dialog_unknown_exception.xml 0x45264ec3
res/drawable-hdpi/orange_theme2_btn_radio_off_focused_holo_light.png 0x9d4d0310
res/layout/navigation_list_item.xml 0xaa192eba
res/layout/navigation_buttons.xml 0x2e79a85c
res/drawable-hdpi/orange_theme2_btn_default_disabled_holo_light.9.png 0xd51ca5e3
res/drawable/settings.png 0x23b590f7
res/drawable-mdpi/abc_ab_stacked_transparent_dark_holo.9.png 0x14d06f11
res/drawable/videos_icon_color_128.png 0x9fd199b2
res/drawable/server_192.png 0xf4a70f95
res/drawable/select_all_list_selected_32.png 0x56284bba
res/drawable-mdpi/music_icon_color_small.xml 0x8e3e23a1
res/layout/search_fragment_advanced_options_card_layout.xml 0xe92557c
res/drawable-mdpi/ic1_video.png 0xfd3a2426
res/drawable/com_facebook_inverse_icon.png 0x20ea95ba
res/drawable-xxhdpi/abc_cab_background_top_holo_dark.9.png 0x659e7fa5
res/drawable-xhdpi/abc_textfield_search_selected_holo_light.9.png 0x8b354482
res/drawable/right_side_dropshadow.xml 0x13aacee3
res/drawable-hdpi/ic1_image.png 0x89786a71
res/drawable-hdpi/ic1_audio_96.png 0xab490a52
res/drawable/box_icon_color_96.png 0xc121d5e9
res/drawable/music_96.png 0x114e1e9e
res/layout/selected_menu_bar.xml 0x3e845c60
res/drawable-xhdpi/documents_icon_color_large.xml 0x36357272
res/layout/new_blueshare_location_layout.xml 0x6335f3d8
res/anim/shrink_from_top.xml 0xc3a06977
res/drawable-mdpi/orange_theme2_btn_check_on_disabled_holo_light.png 0x27cd276e
res/drawable/bottom_dropshadow.xml 0x886fb1e6
res/drawable-mdpi/orange_theme2_btn_radio_on_disabled_focused_holo_light.png 0x644eaae5
res/drawable-xhdpi/orange_theme2_btn_radio_off_disabled_holo_light.png 0x882e0aad
res/layout/filter_location_layout.xml 0xe8dd4a60
res/drawable-hdpi/file_small.xml 0x955797d6
res/layout/actionbar_custom_filter_ui.xml 0x24c1ff49
res/drawable-hdpi/orange_theme2_btn_check_on_disabled_holo_light.png 0x546095d0
res/drawable-mdpi/abc_ic_clear_disabled.png 0x31c22a50
res/drawable-hdpi/skydrive_icon_color_large.xml 0x7e26c9cc
res/drawable-xhdpi/orange_theme2_tab_unselected_focused_holo.9.png 0x6d009ecc
res/layout/file_panel_content.xml 0x64da6986
res/drawable/my_files_96.png 0x3b006a87
res/drawable-xhdpi/ic1_bookmark_no.png 0xaeba7863
res/layout/abc_action_menu_item_layout.xml 0xb38e44cd
res/drawable/add_icon_light.png 0xa27160dd
res/drawable-mdpi/orange_theme2_progress_primary_holo_light.9.png 0x1f80d05
res/drawable-xhdpi/ic1_share.png 0x4d9cc20a
res/layout/com_facebook_picker_activity_circle_row.xml 0xfb2e83b8
res/drawable-hdpi/abc_ic_search_api_holo_light.png 0x333d525b
res/drawable-hdpi/server_small.xml 0xee09124e
res/drawable-xhdpi/abc_cab_background_top_holo_light.9.png 0x3396b7e2
res/drawable-xhdpi/ic1_expand.png 0xf419acf3
res/drawable/app_128.png 0x1d94dab0
res/drawable-xhdpi/abc_spinner_ab_focused_holo_light.9.png 0x54f05d49
res/drawable-xxhdpi/tab_unselected_pressed_ab_orange1.9.png 0x59b6343b
res/drawable/skydrive_icon_color_64.png 0x68bea56
res/drawable-mdpi/abc_ab_stacked_transparent_light_holo.9.png 0xc4c6064f
res/anim/slide_out_to_right.xml 0x5fe4c1c8
res/drawable-mdpi/common_signin_btn_icon_focus_light.9.png 0x2f93a4f5
res/drawable-mdpi/common_signin_btn_text_pressed_dark.9.png 0x1e60cd2
res/drawable/dropbox_icon_color_32.png 0xad57e6ab
res/drawable-xhdpi/google_drive_icon_color_small.xml 0xeb01fcd4
res/drawable-hdpi/abc_ic_menu_share_holo_light.png 0x3e081d60
res/drawable-mdpi/orange_theme2_textfield_activated_holo_light.9.png 0x5753e418
res/drawable-xxhdpi/abc_tab_selected_pressed_holo.9.png 0xf9b76195
res/drawable-xhdpi/com_facebook_button_grey_normal.9.png 0x72e263b4
res/layout/web_bootstrap.xml 0x93fd0f43
res/layout/dialog_basic_message_one_button.xml 0x2ab0ef5d
res/layout/astro_share_manage_accounts.xml 0x2858636d
res/drawable/search_icon_dark.png 0x1af14905
res/layout/file_panel_paste_bar.xml 0xbbfd4f80
res/drawable/copy_icon_dark_32.png 0x8f823618
res/drawable/lock_icon.png 0x8e415e94
res/drawable-hdpi/orange_theme2_tab_unselected_pressed_holo.9.png 0x26efc7e3
res/drawable-xxhdpi/orange_theme2_tab_unselected_pressed_holo.9.png 0x128c3131
res/drawable-mdpi/abc_textfield_search_selected_holo_dark.9.png 0xf29f6f89
res/drawable/app_48.png 0x68f37ecc
res/drawable-xxhdpi/tab_unselected_focused_ab_orange1.9.png 0x58bb044b
res/drawable-xxhdpi/orange_theme2_progress_bg_holo_light.9.png 0xb6e7b445
res/drawable/zip_128.png 0x2a400352
res/layout/file_menu_action_overflow.xml 0x7400f53b
res/layout/navigation_drawer.xml 0xc5ea7ed3
res/drawable-hdpi/abc_list_pressed_holo_dark.9.png 0x816ffde7
res/drawable-xhdpi/list_focused_ab_orange1.9.png 0x89b25e61
res/drawable/music_icon_color_192.png 0x909c027b
res/drawable-hdpi/common_signin_btn_icon_normal_dark.9.png 0x7ea98f7a
res/drawable-hdpi/spreadsheet_medium.xml 0x6f560c71
res/drawable-mdpi/ic1_select_all.png 0xb367f14b
res/drawable-hdpi/dir_medium.xml 0xb488d065
res/drawable-mdpi/abc_ic_cab_done_holo_light.png 0x8e10da0a
res/drawable-mdpi/ic1_up.png 0xf0667e57
res/drawable/pic_192.png 0x166985a1
res/drawable-hdpi/common_signin_btn_text_disabled_light.9.png 0x17e0aaed
res/drawable-xhdpi/orange_theme2_tab_selected_holo.9.png 0xba24c519
res/layout/available_apps_dialog_layout.xml 0xa037e5bc
res/drawable-hdpi/image_large.xml 0x135d1b83
res/drawable-xxhdpi/orange_theme2_btn_check_on_pressed_holo_light.png 0xc2e209ce
res/drawable-xxhdpi/common_signin_btn_icon_normal_dark.9.png 0x8046e05e
res/menu/app_manager_actionbar_menu.xml 0x65b4b5f4
res/drawable-xhdpi/com_facebook_button_blue_normal.9.png 0x49cd260b
res/drawable/up_arrow_icon_light.png