VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.
4, If your browser cannot upload files, please download VirSCAN uploader to upload.

Language
Server load
Server Load

VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

File information

Scanner results
Scanner results:0%Antivirus software(0/32)found malware!
Behavior analysis report:         Habo file analysis
Time: 2015-10-17 22:07:51 (CST)
Scanner Engine Ver Sig Ver Sig Date Scan result Time
antiy AVL SDK 3.0 1970-01-01 Found nothing 5
asquared 9.0.0.4324 9.0.0.4324 2014-07-03 Found nothing 1
avast 150725-1 4.7.4 2015-07-25 Found nothing 0
avg 2109/8133 10.0.1405 2014-11-26 Found nothing 0
baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 16
baidusd 1.0 1.0 2014-04-02 Found nothing 2
bitdefender 7.58469 7.90123 2014-12-25 Found nothing 0
clamav 19861 0.97.5 2014-12-31 Found nothing 0
drweb 5.0.2.3300 5.0.1.1 2014-12-31 Found nothing 0
fortinet 23.345, 23.345 5.1.158 2014-12-08 Found nothing 0
fprot 4.6.2.117 6.5.1.5418 2014-12-31 Found nothing 0
fsecure 2014-04-02-01 9.13 2014-04-02 Found nothing 0
gdata 25.3911 25.3911 2015-10-17 Found nothing 13
ikarus 1.06.01 V1.32.31.0 2014-12-08 Found nothing 0
jiangmin 16.0.100 1.0.0.0 2015-07-25 Found nothing 60
kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 0
kingsoft 2.1 2.1 2013-09-22 Found nothing 10
mcafee 7638 5400.1158 2014-11-30 Found nothing 0
nod32 0920 3.0.21 2014-12-23 Found nothing 0
panda 9.05.01 9.05.01 2015-07-26 Found nothing 4
pcc 11.380.07 9.500-1005 2014-12-31 Found nothing 0
qh360 1.0.1 1.0.1 1.0.1 Found nothing 12
qqphone 1.0.0.0 1.0.0.0 2014-12-09 Found nothing 0
quickheal 14.00 14.00 2015-07-25 Found nothing 2
rising 25.76.04.01 25.76.04.01 2015-07-24 Found nothing 1
sophos 5.08 3.55.0 2014-12-01 Found nothing 0
symantec 20141230.001 1.3.0.24 2014-12-30 Found nothing 0
tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 4
thehacker 6.8.0.5 6.8.0.5 2015-07-23 Found nothing 1
tws 17.47.17308 1.0.2.2108 2014-12-08 Found nothing 25
vba 3.12.26.3 3.12.26.3 2014-12-31 Found nothing 0
virusbuster 15.0.985.0 5.5.2.13 2014-12-05 Found nothing 0
权限列表
许可名称 信息
android.permission.WAKE_LOCK 手机屏幕关闭后后台进程仍运行
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.READ_PHONE_STATE 读取电话状态
文件信息
VirSCANVirSCAN
安全评分 :
基本信息
VirSCANVirSCAN
MD5:d1def903e3bbf96abafeed5dcc16c566
文件大小:5.58MB
上传时间: 2014-09-22 10:36:30 (CST)
包名:com.mobbuddy.shutupsounds
最低运行环境:Android 2.1.x
版权:
关键行为
VirSCANVirSCAN
行为描述: 写权限映射文件
详情信息: CiceroSharedMemDefaultS-*
\WINDOWS\system32\zh-cn\ieframe.dll.mui
AtlDebugAllocator_FileMappingNameStatic3_96c
Local\C:_Documents and Settings_Administrator_IETldCache_index.dat_245760
Local\UrlZonesSM_Administrator
AtlDebugAllocator_FileMappingNameStatic3_930
Local\!PrivacIE!SharedMem!Counter
MSCTF.MarshalInterface.FileMap.IBE..NPBJH
\WINDOWS\system32\zh-cn\mshtml.dll.mui
MSCTF.MarshalInterface.FileMap.IBE.B.DFLHI
MSCTF.MarshalInterface.FileMap.IBE.C.DFLHI
MSCTF.MarshalInterface.FileMap.IBE.D.DFLHI
MSCTF.MarshalInterface.FileMap.IBE.E.DFLHI
MSCTF.MarshalInterface.FileMap.IBE.F.DFLHI
MSCTF.MarshalInterface.FileMap.IBE.G.DFLHI
行为描述: 修改HOST文件
详情信息: C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\hosts---> Offset = 0
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
C:\Documents and Settings\Administrator\IETldCache
行为描述: 按名称获取主机地址
详情信息: mxbl.cn
www.baidu.com
进程行为
VirSCANVirSCAN
行为描述: 写权限映射文件
详情信息: CiceroSharedMemDefaultS-*
\WINDOWS\system32\zh-cn\ieframe.dll.mui
AtlDebugAllocator_FileMappingNameStatic3_96c
Local\C:_Documents and Settings_Administrator_IETldCache_index.dat_245760
Local\UrlZonesSM_Administrator
AtlDebugAllocator_FileMappingNameStatic3_930
Local\!PrivacIE!SharedMem!Counter
MSCTF.MarshalInterface.FileMap.IBE..NPBJH
\WINDOWS\system32\zh-cn\mshtml.dll.mui
MSCTF.MarshalInterface.FileMap.IBE.B.DFLHI
MSCTF.MarshalInterface.FileMap.IBE.C.DFLHI
MSCTF.MarshalInterface.FileMap.IBE.D.DFLHI
MSCTF.MarshalInterface.FileMap.IBE.E.DFLHI
MSCTF.MarshalInterface.FileMap.IBE.F.DFLHI
MSCTF.MarshalInterface.FileMap.IBE.G.DFLHI
行为描述: 修改HOST文件
详情信息: C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\hosts---> Offset = 0
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
C:\Documents and Settings\Administrator\IETldCache
行为描述: 按名称获取主机地址
详情信息: mxbl.cn
www.baidu.com
文件行为
VirSCANVirSCAN
行为描述: 创建可执行文件
详情信息: C:\WINDOWS\HYDati.dll
C:\WINDOWS\mydll.dll
C:\WINDOWS\ByPass.dll
C:\WINDOWS\xunyou.dll
C:\WINDOWS\haoi.dll
C:\WINDOWS\dinput8.dll
行为描述: 查找文件
详情信息: FileName = C:\WINDOWS
FileName = C:\WINDOWS\system32
FileName = C:\WINDOWS\system32\cmd.exe
FileName = C:\DOCUME~1
FileName = C:\DOCUME~1\ADMINI~1
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\cacls.*
FileName = C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\cacls
FileName = C:\Python27\cacls.*
FileName = C:\Python27\cacls
FileName = C:\Python27\Scripts\cacls.*
FileName = C:\Python27\Scripts\cacls
FileName = C:\WINDOWS\system32\cacls.*
行为描述: 修改HOST文件
详情信息: C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\hosts---> Offset = 0
行为描述: 写权限映射文件
详情信息: CiceroSharedMemDefaultS-*
\WINDOWS\system32\zh-cn\ieframe.dll.mui
AtlDebugAllocator_FileMappingNameStatic3_96c
Local\C:_Documents and Settings_Administrator_IETldCache_index.dat_245760
Local\UrlZonesSM_Administrator
AtlDebugAllocator_FileMappingNameStatic3_930
Local\!PrivacIE!SharedMem!Counter
MSCTF.MarshalInterface.FileMap.IBE..NPBJH
\WINDOWS\system32\zh-cn\mshtml.dll.mui
MSCTF.MarshalInterface.FileMap.IBE.B.DFLHI
MSCTF.MarshalInterface.FileMap.IBE.C.DFLHI
MSCTF.MarshalInterface.FileMap.IBE.D.DFLHI
MSCTF.MarshalInterface.FileMap.IBE.E.DFLHI
MSCTF.MarshalInterface.FileMap.IBE.F.DFLHI
MSCTF.MarshalInterface.FileMap.IBE.G.DFLHI
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
C:\Documents and Settings\Administrator\IETldCache
行为描述: 修改文件内容
详情信息: C:\DOCUME~1\ADMINI~1\LOCALS~1\%temp%\hosts---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\dnserrordiagoff_webOC[2]---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\ErrorPageTemplate[1]---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\errorPageStrings[1]---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\httpErrorPagesScripts[1]---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\background_gradient[1]---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\info_48[1]---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\bullet[1]---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IUKHR8T2\down[1]---> Offset = 0
网络行为
VirSCANVirSCAN
行为描述: 连接指定站点
详情信息: InternetConnectA: ServerName = www.mxbl.cn, PORT = 80
行为描述: 下载文件
详情信息: URLDownloadToFileW: http://www.mxbl.cn/version.ini ---> c://version.ini
C:\version.ini
行为描述: 建立到一个指定的套接字连接
详情信息: 110.110.110.110:80
127.0.0.1:1032
行为描述: 打开HTTP请求
详情信息: HttpOpenRequestA: www.mxbl.cn:80/, hConnect = 0x00000450
行为描述: 按名称获取主机地址
详情信息: mxbl.cn
www.baidu.com
注册表行为
VirSCANVirSCAN
行为描述: 修改注册表
详情信息: \REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\SavedLegacySettings
\REGISTRY\MACHINE\SOFTWARE\Microsoft\ESENT\Process\ipconfig\DEBUG\Trace Level
行为描述: 删除注册表键值
详情信息: \REGISTRY\MACHINE\SOFTWARE\Microsoft\ESENT\Process\ipconfig\DEBUG\Trace Level
行为描述: 删除注册表键值_IE连接设置
详情信息: \REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer
\REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoConfigURL
其他行为
VirSCANVirSCAN
行为描述: 创建互斥体
详情信息: oleacc-msaa-loaded
SHIMLIB_LOG_MUTEX
CTF.LBES.MutexDefaultS-*
CTF.Compart.MutexDefaultS-*
CTF.Asm.MutexDefaultS-*
CTF.Layouts.MutexDefaultS-*
CTF.TMD.MutexDefaultS-*
CTF.TimListCache.FMPDefaultS-*MUTEX.DefaultS-*
RasPbFile
client
Local\c:!documents and settings!administrator!ietldcache!
Local\ZonesCounterMutex
Local\ZoneAttributeCacheCounterMutex
Local\ZonesCacheCounterMutex
Local\ZonesLockedCacheCounterMutex
行为描述: 内联HOOK
详情信息: C:\WINDOWS\system32\kernel32.dll--->WaitForSingleObjectEx Offset = 0x28c
C:\WINDOWS\system32\SHELL32.dll--->SHLockShared Offset = 0x5635201
行为描述: 查找指定窗口
详情信息: NtUserFindWindowEx: [Class,Window] = [Shell_TrayWnd,]
NtUserFindWindowEx: [Class,Window] = [MS_AutodialMonitor,]
NtUserFindWindowEx: [Class,Window] = [MS_WebCheckMonitor,]
NtUserFindWindowEx: [Class,Window] = [#32770,Windows 任务管理器]
NtUserFindWindowEx: [Class,Window] = [#32770,]
NtUserFindWindowEx: [Class,Window] = [SysListView32,]
NtUserFindWindowEx: [Class,Window] = [CicLoaderWndClass,]
NtUserFindWindowEx: [Class,Window] = [OleMainThreadWndClass,]
行为描述: 窗口信息
详情信息: Pid = 872, Hwnd=0x602c8, Text = 是(&Y), ClassName = Button.
Pid = 872, Hwnd=0x302da, Text = 否(&N), ClassName = Button.
Pid = 872, Hwnd=0x202b0, Text = 本软件仅用于研究与测试,不得用于商业用途.请在试用后自行销毁. 软件版权属各自产权人所有.超出个人研究范围所引发的版权及责任等问题的争, ClassName = Static.
Pid = 872, Hwnd=0x170142, Text = ★★★★★★★★★★★★★★★免责条款★★★★★★★★★★★★★★★, ClassName = #32770.
Pid = 872, Hwnd=0x202cc, Text = 启动游戏, ClassName = Button.
Pid = 872, Hwnd=0x202b4, Text = 检查更新, ClassName = Button.
Pid = 872, Hwnd=0x202b2, Text = 设置游戏目录, ClassName = Button.
Pid = 872, Hwnd=0x202d4, Text = 七彩冒险岛 经验:20000倍 爆率/金钱:2000倍 上线送极品32767装备 官方网站:www.qcmxd.com 群号:148421114, ClassName = Static.
Pid = 872, Hwnd=0x302dc, Text = 急速代练全区全服接单1-120 8元起,1-150 1-210特价 淘宝ID:冒险老范。QQ594881067 群240040992, ClassName = Static.
Pid = 872, Hwnd=0x202d6, Text = 多开模式, ClassName = Button(CheckBox).
Pid = 872, Hwnd=0x202a6, Text = DEIF0UyHDMHxC6CBnrfSiGldqu, ClassName = #32770.
Pid = 872, Hwnd=0x1032a, Text = 确定, ClassName = Button.
Pid = 872, Hwnd=0x1032e, Text = 因为未设置游戏目录,所以无法运行!, ClassName = Static.
Pid = 872, Hwnd=0x10328, Text = 996E, ClassName = #32770.
Pid = 872, Hwnd=0x10346, Text = 确定, ClassName = Button.
行为描述: 获取系统权限
详情信息: SE_LOAD_DRIVER_PRIVILEGE
SE_DEBUG_PRIVILEGE
行为描述: 获取TickCount值
详情信息: TickCount = 490703, SleepMilliseconds = 1000.
TickCount = 490781, SleepMilliseconds = 1000.
TickCount = 490812, SleepMilliseconds = 1000.
TickCount = 490843, SleepMilliseconds = 1000.
TickCount = 490890, SleepMilliseconds = 1000.
TickCount = 491015, SleepMilliseconds = 1000.
TickCount = 491031, SleepMilliseconds = 1000.
TickCount = 491125, SleepMilliseconds = 1000.
TickCount = 491140, SleepMilliseconds = 1000.
TickCount = 491171, SleepMilliseconds = 1000.
TickCount = 491234, SleepMilliseconds = 1000.
TickCount = 491281, SleepMilliseconds = 1000.
TickCount = 491296, SleepMilliseconds = 1000.
TickCount = 491312, SleepMilliseconds = 1000.
TickCount = 491343, SleepMilliseconds = 1000.
行为描述: 获取光标位置
详情信息: CursorPos = (106,18467), SleepMilliseconds = 1000.
CursorPos = (6399,26500), SleepMilliseconds = 1000.
CursorPos = (19234,15724), SleepMilliseconds = 1000.
CursorPos = (11543,29358), SleepMilliseconds = 60000.
CursorPos = (27027,24464), SleepMilliseconds = 60000.
CursorPos = (5770,28145), SleepMilliseconds = 60000.
CursorPos = (23346,16827), SleepMilliseconds = 60000.
CursorPos = (10026,491), SleepMilliseconds = 60000.
CursorPos = (3060,11942), SleepMilliseconds = 60000.
CursorPos = (4892,5436), SleepMilliseconds = 60000.
CursorPos = (32456,14604), SleepMilliseconds = 60000.
CursorPos = (3967,153), SleepMilliseconds = 60000.
CursorPos = (357,12382), SleepMilliseconds = 60000.
行为描述: 枚举窗口
详情信息: N/A
行为描述: 调用Sleep函数
详情信息: [1]: MilliSeconds = 1000.
[2]: MilliSeconds = 1000.
[3]: MilliSeconds = 1000.
[4]: MilliSeconds = 1000.
[5]: MilliSeconds = 1000.
[6]: MilliSeconds = 1000.
[7]: MilliSeconds = 60000.
[8]: MilliSeconds = 1000.
[9]: MilliSeconds = 1000.
[10]: MilliSeconds = 1000.
动态列表行为
VirSCANVirSCAN
行为描述: 调用哈希算法
详情信息: MD5
行为描述: 读取文件
详情信息: path:unknown length:22
path:/proc/meminfo length:69
行为描述: 解析通用资源标识符
详情信息: market://details?id=com.google.ads
geo:0,0?q=donuts
market://search?q=pname:com.google
tel://6509313940
行为描述: 注册广播接收器
详情信息: [u'android.webkit.WebViewClassic$PackageListener@41505bc0', u'android.content.IntentFilter@4151c938']
[u'android.webkit.WebViewClassic$ProxyReceiver@414ccc80', u'android.content.IntentFilter@415342c8']
[u'android.webkit.WebViewClassic$TrustStorageListener@41535908', u'android.content.IntentFilter@41538df0']
[u'com.google.ads.util.AdUtil$UserActivityReceiver@4153c368', u'android.content.IntentFilter@415400a0']
行为描述: 读取系统设置
详情信息: [u'android.app.ContextImpl$ApplicationContentResolver@414fd3b8', u'show_password']
[u'android.app.ContextImpl$ApplicationContentResolver@414fd3b8', u'show_password']
[u'android.app.ContextImpl$ApplicationContentResolver@414fd3b8', u'show_password']
行为描述: 初始化IntentFilter
详情信息: [u'android.intent.action.PACKAGE_ADDED']
行为描述: 数据库查询
详情信息: [u'formurl', u'null', u'null', u'null', u'null', u'null', u'null']
行为描述: 窗口信息
详情信息: {"text": "Shut Up 1", "class": "android.widget.TextView"}
{"text": "Set Random On", "class": "android.widget.Button"}
{"text": "More Apps", "class": "android.widget.Button"}
行为描述: 添加View
详情信息: [u'com.android.internal.policy.impl.PhoneWindow$DecorView@414ff210', u'WM.LayoutParams{(0,0)(fillxfill) sim=#100 ty=1 fl=#1810100 pfl=0x8 wanim=0x1030001}', u'android.view.CompatibilityInfoHolder@414b87e8']
行为描述: 初始化Intent
详情信息: [u'com.mobbuddy.shutupsounds.MainActivity@414fe468', u'class com.google.ads.AdActivity']
[]
[]
[u'android.intent.action.VIEW', u'market://details?id=com.google.ads']
[u'android.intent.action.VIEW', u'geo:0,0?q=donuts']
[u'android.intent.action.VIEW', u'market://search?q=pname:com.google']
[u'android.intent.action.VIEW', u'tel://6509313940']
行为描述: 唤醒锁屏
详情信息: [u'26', u'DoNotDimScreen']
行为描述: 获取网络状态信息[*]
详情信息: NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
Activities
VirSCANVirSCAN
活动名 类型
MainActivity android.intent.action.MAIN
MainActivity android.intent.category.LAUNCHER
危险函数
VirSCANVirSCAN
函数名称 信息
ContentResolver;->query 读取联系人、短信等数据库
java/net/URL;->openConnection 连接URL
java/net/HttpURLConnection;->connect 连接URL
广告信息
VirSCANVirSCAN
名称 信息
com.google.ads AdMob
权限列表
VirSCANVirSCAN
许可名称 信息
android.permission.WAKE_LOCK 手机屏幕关闭后后台进程仍运行
android.permission.INTERNET 连接网络(2G或3G)
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.READ_PHONE_STATE 读取电话状态
文件列表
VirSCANVirSCAN
文件名 校验码
res/drawable/button_1.png 0x478da636
res/drawable/button_2.png 0xcceb089b
res/drawable/left_arrow.png 0x665c0f9d
res/drawable/right_arrow.png 0x2f9e87fe
res/layout/main.xml 0xee2000d0
res/raw/excuse_me.ogg 0xd31a49ed
res/raw/great_idea.ogg 0x89dfb61
res/raw/hey_shut_up.ogg 0xe10fd557
res/raw/hey_you.ogg 0x456185b1
res/raw/how_many_times.ogg 0x68db55f3
res/raw/shut_the_hell.ogg 0x8f24a3b3
res/raw/shut_up6.ogg 0xe14f3728
res/raw/shut_up7.ogg 0x34212228
res/raw/shut_up_1.mp3 0xf2db2d91
res/raw/shut_up_2.mp3 0x904d3fa2
res/raw/shut_up_3.mp3 0x8fa071ba
res/raw/shut_up_4.mp3 0xb982f801
res/raw/shut_up_5.wav 0x48b6d669
res/raw/why_dont_you.ogg 0x602115d2
res/raw/will_you_please.ogg 0x42a333b0
res/raw/would_everyone.ogg 0xa77bac02
AndroidManifest.xml 0x7a8c762e
resources.arsc 0xad2f8387
res/drawable-hdpi/ic_launcher.png 0x6c911ffa
res/drawable-hdpi/left_arrow.png 0x665c0f9d
res/drawable-hdpi/right_arrow.png 0x2f9e87fe
res/drawable-ldpi/ic_launcher.png 0x70ea927f
res/drawable-mdpi/ic_launcher.png 0xe29fdf21
res/drawable-xhdpi/ic_launcher.png 0xa2e3435b
classes.dex 0xa9df72c6
META-INF/MANIFEST.MF 0x8dd3bc0c
META-INF/CERT.SF 0x7e65471a
META-INF/CERT.RSA 0x7e9957e2
运行截图
VirSCANVirSCAN
VirSCAN