VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

Language
Server load
Server Load

VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

File information

Scanner results
Scanner results:0%Scanner(s) (0/32)found malware!
Behavior analysis report:         Habo file analysis
Time: 2017-09-01 10:33:48 (CST)
Scanner Engine Ver Sig Ver Sig Date Scan result Time
antiy AVL SDK 2.0 1970-01-01 Found nothing 5
asquared 9.0.0.4799 9.0.0.4799 2015-03-08 Found nothing 3
avast 170303-1 4.7.4 2017-03-03 Found nothing 60
avg 2109/14366 10.0.1405 2017-08-23 Found nothing 60
baidusd 1.0 1.0 2017-03-22 Found nothing 1
bitdefender 7.58879 7.90123 2015-01-16 Found nothing 60
clamav 23741 0.97.5 2017-08-31 Found nothing 60
drweb 5.0.2.3300 5.0.1.1 2017-06-18 Found nothing 60
fortinet 1.000, 51.337, 51.320, 51.290 5.4.247 2017-09-01 Found nothing 60
fprot 4.6.2.117 6.5.1.5418 2016-02-05 Found nothing 60
fsecure 2015-08-01-02 9.13 2015-08-01 Found nothing 60
gdata 25.14039 25.14039 2017-08-31 Found nothing 15
ikarus 1.06.01 V1.32.31.0 2017-08-31 Found nothing 60
jiangmin 16.0.100 1.0.0.0 2017-08-31 Found nothing 2
kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 60
kingsoft 2.1 2.1 2017-08-31 Found nothing 5
mcafee 8620 5400.1158 2017-08-12 Found nothing 60
nod32 6001 3.0.21 2017-08-30 Found nothing 60
panda 9.05.01 9.05.01 2017-08-31 Found nothing 5
pcc 13.302.06 9.500-1005 2017-03-27 Found nothing 60
qh360 1.0.1 1.0.1 1.0.1 Found nothing 10
qqphone 1.0.0.0 1.0.0.0 2015-12-30 Found nothing 60
quickheal 14.00 14.00 2017-08-30 Found nothing 4
rising 26.28.00.01 26.28.00.01 2016-07-18 Found nothing 5
sophos 5.32 3.65.2 2016-10-10 Found nothing 60
symantec 20151230.005 1.3.0.24 2015-12-30 Found nothing 60
tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 8
thehacker 6.8.0.5 6.8.0.5 2017-08-28 Found nothing 3
tws 17.47.17308 1.0.2.2108 2017-08-31 Found nothing 20
vba 3.12.29.5 beta 3.12.29.5 beta 2017-08-31 Found nothing 60
virusbuster 15.0.985.0 5.5.2.13 2014-12-05 Found nothing 60
权限列表
许可名称 信息
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.MOUNT_UNMOUNT_FILESYSTEMS 挂载、反挂载外部文件系统
android.permission.INTERNET 连接网络(2G或3G)
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.WAKE_LOCK 手机屏幕关闭后后台进程仍运行
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
文件信息
VirSCANVirSCAN
安全评分 :
基本信息
VirSCANVirSCAN
MD5:935c9cef348e5cf4d4a7a5f95487bacf
文件大小:5.58MB
上传时间: 2014-09-22 10:36:30 (CST)
包名:com.iBookStar.activity
最低运行环境:Android 1.6
版权:Android
关键行为
VirSCANVirSCAN
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
行为描述: 获取TickCount值
详情信息: TickCount = 279734, SleepMilliseconds = 60000.
TickCount = 279750, SleepMilliseconds = 60000.
TickCount = 279765, SleepMilliseconds = 60000.
TickCount = 279796, SleepMilliseconds = 60000.
TickCount = 279875, SleepMilliseconds = 60000.
TickCount = 280000, SleepMilliseconds = 60000.
TickCount = 280140, SleepMilliseconds = 60000.
TickCount = 280203, SleepMilliseconds = 60000.
TickCount = 280218, SleepMilliseconds = 60000.
TickCount = 280234, SleepMilliseconds = 60000.
TickCount = 280328, SleepMilliseconds = 60000.
TickCount = 280359, SleepMilliseconds = 60000.
TickCount = 280375, SleepMilliseconds = 60000.
TickCount = 280390, SleepMilliseconds = 60000.
TickCount = 280421, SleepMilliseconds = 60000.
进程行为
VirSCANVirSCAN
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
行为描述: 获取TickCount值
详情信息: TickCount = 279734, SleepMilliseconds = 60000.
TickCount = 279750, SleepMilliseconds = 60000.
TickCount = 279765, SleepMilliseconds = 60000.
TickCount = 279796, SleepMilliseconds = 60000.
TickCount = 279875, SleepMilliseconds = 60000.
TickCount = 280000, SleepMilliseconds = 60000.
TickCount = 280140, SleepMilliseconds = 60000.
TickCount = 280203, SleepMilliseconds = 60000.
TickCount = 280218, SleepMilliseconds = 60000.
TickCount = 280234, SleepMilliseconds = 60000.
TickCount = 280328, SleepMilliseconds = 60000.
TickCount = 280359, SleepMilliseconds = 60000.
TickCount = 280375, SleepMilliseconds = 60000.
TickCount = 280390, SleepMilliseconds = 60000.
TickCount = 280421, SleepMilliseconds = 60000.
文件行为
VirSCANVirSCAN
行为描述: 创建文件
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\softapi_sosoyunpan_com[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\navcancl[2]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\ErrorPageTemplate[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\errorPageStrings[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\httpErrorPagesScripts[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\background_gradient[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\info_48[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\bullet[1]
行为描述: 覆盖已有文件
详情信息: C:\Documents and Settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\navcancl[2]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\ErrorPageTemplate[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\errorPageStrings[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\httpErrorPagesScripts[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\background_gradient[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\info_48[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\bullet[1]
行为描述: 查找文件
详情信息: FileName = C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
FileName = C:\WINDOWS\Microsoft.NET\Framework\\*
FileName = C:\WINDOWS\Microsoft.Net\assembly\GAC_32\mscorlib\v4.0_4.0.0.0__b77a5c561934e089\mscorlib.INI
FileName = C:\Documents and Settings\Administrator\Local Settings\Temp
FileName = C:\Documents and Settings\Administrator\Local Settings\%temp%
FileName = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe
FileName = C:\Documents and Settings
FileName = C:\Documents and Settings\Administrator
FileName = C:\Documents and Settings\Administrator\Local Settings
FileName = C:\Documents and Settings\Administrator\Local Settings\%temp%\996E.INI
FileName = C:\WINDOWS\Microsoft.Net\assembly\GAC_MSIL\System.Windows.Forms\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Forms.INI
FileName = C:\WINDOWS\Microsoft.Net\assembly\GAC_MSIL\System.Drawing\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Drawing.INI
FileName = C:\WINDOWS\Microsoft.Net\assembly\GAC_MSIL\System\v4.0_4.0.0.0__b77a5c561934e089\System.INI
FileName = C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Connections\Pbk\*.pbk
FileName = C:\WINDOWS\system32\Ras\*.pbk
行为描述: 删除文件
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\softapi_sosoyunpan_com[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\navcancl[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\ErrorPageTemplate[2]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\errorPageStrings[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\httpErrorPagesScripts[1]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\background_gradient[3]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\info_48[2]
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\IUKHR8T2\bullet[2]
行为描述: 设置特殊文件夹属性
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\Administrator\Local Settings\History
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5
C:\Documents and Settings\Administrator\Cookies
行为描述: 修改文件内容
详情信息: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\navcancl[2] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\ErrorPageTemplate[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\errorPageStrings[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\httpErrorPagesScripts[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\background_gradient[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\C1OS62RY\info_48[1] ---> Offset = 0
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\6TLOMATB\bullet[1] ---> Offset = 0
网络行为
VirSCANVirSCAN
行为描述: 连接指定站点
详情信息: InternetConnectA: ServerName = so****om, PORT = 80, UserName = , Password = , hSession = 0x00cc0004, hConnect = 0x00cc0008, Flags = 0x00000000
行为描述: 打开HTTP连接
详情信息: InternetOpenA: UserAgent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; .NET4.0C; .NET4.0E; KB974489), hSession = 0x00cc0004
行为描述: 建立到一个指定的套接字连接
详情信息: URL: so****om, IP: **.133.40.**:80, SOCKET = 0x00000454
URL: so****om, IP: **.133.40.**:80, SOCKET = 0x00000648
行为描述: 读取网络文件
详情信息: hFile = 0x00cc000c, BytesToRead =4096, BytesRead = 4096.
行为描述: 发送HTTP包
详情信息: GET / HTTP/1.1 Accept: */* Accept-Language: zh-cn Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; .NET4.0C; .NET4.0E; KB974489) Host: so****om Connection: Keep-Alive
行为描述: 打开HTTP请求
详情信息: HttpOpenRequestA: so****om:80/, hConnect = 0x00cc0008, hRequest = 0x00cc000c, Verb: GET, Referer: , Flags = 0x00400000
HttpOpenRequestA: so****om:80/, hConnect = 0x00cc0008, hRequest = 0x00cc000c, Verb: GET, Referer: , Flags = 0x00400010
行为描述: 按名称获取主机地址
详情信息: GetAddrInfoW: so****om
注册表行为
VirSCANVirSCAN
行为描述: 修改注册表
详情信息: \REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\SavedLegacySettings
行为描述: 删除注册表键值
详情信息: \REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer
\REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyOverride
\REGISTRY\USER\S-*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoConfigURL
其他行为
VirSCANVirSCAN
行为描述: 检测自身是否被调试
详情信息: IsDebuggerPresent
行为描述: 创建互斥体
详情信息: CTF.LBES.MutexDefaultS-*
CTF.Compart.MutexDefaultS-*
CTF.Asm.MutexDefaultS-*
CTF.Layouts.MutexDefaultS-*
CTF.TMD.MutexDefaultS-*
CTF.TimListCache.FMPDefaultS-*MUTEX.DefaultS-*
Local\ZonesCounterMutex
Local\ZoneAttributeCacheCounterMutex
Local\ZonesCacheCounterMutex
Local\ZonesLockedCacheCounterMutex
RasPbFile
CritOpMutex
Local\!PrivacIE!SharedMemory!Mutex
MSIMGSIZECacheMutex
MSCTF.Shared.MUTEX.IOH
行为描述: 创建事件对象
详情信息: EventName = Global\CPFATE_2632_v4.0.30319
EventName = DINPUTWINMM
EventName = Global\userenv: User Profile setup event
EventName = MSCTF.SendReceive.Event.MAL.IC
EventName = MSCTF.SendReceiveConection.Event.MAL.IC
行为描述: 查找指定窗口
详情信息: NtUserFindWindowEx: [Class,Window] = [MS_AutodialMonitor,]
NtUserFindWindowEx: [Class,Window] = [MS_WebCheckMonitor,]
NtUserFindWindowEx: [Class,Window] = [Shell_TrayWnd,]
NtUserFindWindowEx: [Class,Window] = [CicLoaderWndClass,]
行为描述: 窗口信息
详情信息: Pid = 2632, Hwnd=0x103a8, Text = 资源搜索, ClassName = WindowsForms10.Window.8.app.0.2bf8098_r19_ad1.
Pid = 2632, Hwnd=0x103ac, Text = 跳, ClassName = WindowsForms10.BUTTON.app.0.2bf8098_r19_ad1.
Pid = 2632, Hwnd=0x103ae, Text = 检测当前页有效性, ClassName = WindowsForms10.BUTTON.app.0.2bf8098_r19_ad1.
Pid = 2632, Hwnd=0x103b0, Text = 0, ClassName = WindowsForms10.EDIT.app.0.2bf8098_r19_ad1.
Pid = 2632, Hwnd=0x103be, Text = 最后页, ClassName = WindowsForms10.BUTTON.app.0.2bf8098_r19_ad1.
Pid = 2632, Hwnd=0x103c0, Text = 下一页, ClassName = WindowsForms10.BUTTON.app.0.2bf8098_r19_ad1.
Pid = 2632, Hwnd=0x103c2, Text = 上一页, ClassName = WindowsForms10.BUTTON.app.0.2bf8098_r19_ad1.
Pid = 2632, Hwnd=0x103c4, Text = 首 页, ClassName = WindowsForms10.BUTTON.app.0.2bf8098_r19_ad1.
Pid = 2632, Hwnd=0x103c6, Text = 分页:, ClassName = WindowsForms10.STATIC.app.0.2bf8098_r19_ad1.
Pid = 2632, Hwnd=0x103c8, Text = 点击搜索, ClassName = WindowsForms10.BUTTON.app.0.2bf8098_r19_ad1.
Pid = 2632, Hwnd=0x103ca, Text = 高级选项, ClassName = WindowsForms10.BUTTON.app.0.2bf8098_r19_ad1.
Pid = 2632, Hwnd=0x103ce, Text = 输入搜索内容:, ClassName = WindowsForms10.STATIC.app.0.2bf8098_r19_ad1.
Pid = 2632, Hwnd=0x10352, Text = 软件说明, ClassName = WindowsForms10.Window.8.app.0.2bf8098_r19_ad1.
Pid = 2632, Hwnd=0x2035e, Text = 在线注册, ClassName = WindowsForms10.Window.8.app.0.2bf8098_r19_ad1.
Pid = 2632, Hwnd=0x103d2, Text = 官方网站, ClassName = WindowsForms10.STATIC.app.0.2bf8098_r19_ad1.
行为描述: 获取TickCount值
详情信息: TickCount = 279734, SleepMilliseconds = 60000.
TickCount = 279750, SleepMilliseconds = 60000.
TickCount = 279765, SleepMilliseconds = 60000.
TickCount = 279796, SleepMilliseconds = 60000.
TickCount = 279875, SleepMilliseconds = 60000.
TickCount = 280000, SleepMilliseconds = 60000.
TickCount = 280140, SleepMilliseconds = 60000.
TickCount = 280203, SleepMilliseconds = 60000.
TickCount = 280218, SleepMilliseconds = 60000.
TickCount = 280234, SleepMilliseconds = 60000.
TickCount = 280328, SleepMilliseconds = 60000.
TickCount = 280359, SleepMilliseconds = 60000.
TickCount = 280375, SleepMilliseconds = 60000.
TickCount = 280390, SleepMilliseconds = 60000.
TickCount = 280421, SleepMilliseconds = 60000.
行为描述: 获取光标位置
详情信息: CursorPos = (80,18468), SleepMilliseconds = 100.
CursorPos = (6373,26501), SleepMilliseconds = 100.
CursorPos = (19208,15725), SleepMilliseconds = 100.
CursorPos = (11517,29359), SleepMilliseconds = 100.
CursorPos = (27001,24465), SleepMilliseconds = 100.
CursorPos = (5744,28146), SleepMilliseconds = 100.
CursorPos = (23320,16828), SleepMilliseconds = 100.
CursorPos = (10000,492), SleepMilliseconds = 100.
CursorPos = (3034,11943), SleepMilliseconds = 100.
CursorPos = (4866,5437), SleepMilliseconds = 100.
CursorPos = (32430,14605), SleepMilliseconds = 100.
CursorPos = (3941,154), SleepMilliseconds = 60000.
CursorPos = (331,12383), SleepMilliseconds = 60000.
CursorPos = (17460,18717), SleepMilliseconds = 60000.
CursorPos = (19757,19896), SleepMilliseconds = 500.
行为描述: 打开事件
详情信息: Global\CLR_PerfMon_StartEnumEvent
\KernelObjects\LowMemoryCondition
HookSwitchHookEnabledEvent
MSFT.VSA.COM.DISABLE.2632
MSFT.VSA.IEC.STATUS.6c736db0
\SECURITY\LSA_AUTHENTICATION_INITIALIZED
Global\SvcctrlStartEvent_A3752DX
\INSTALLATION_SECURITY_HOLD
_fCanRegisterWithShellService
CTF.ThreadMIConnectionEvent.000007E8.00000000.0000000F
CTF.ThreadMarshalInterfaceEvent.000007E8.00000000.0000000F
MSCTF.SendReceiveConection.Event.IOH.IC
MSCTF.SendReceive.Event.IOH.IC
行为描述: 调整进程token权限
详情信息: SE_LOAD_DRIVER_PRIVILEGE
行为描述: 调用Sleep函数
详情信息: [1]: MilliSeconds = 60000.
[2]: MilliSeconds = 60000.
[3]: MilliSeconds = 100.
[4]: MilliSeconds = 0.
[5]: MilliSeconds = 0.
[6]: MilliSeconds = 60000.
[7]: MilliSeconds = 0.
[8]: MilliSeconds = 0.
[9]: MilliSeconds = 0.
[10]: MilliSeconds = 0.
行为描述: 隐藏指定窗口
详情信息: [Window,Class] = [,SysLink]
[Window,Class] = [,Static]
[Window,Class] = [文件大小未知,Static]
[Window,Class] = [打开此类文件前总是询问(&W),Button]
[Window,Class] = [发行者:,Static]
[Window,Class] = [,Shell Embedding]
[Window,Class] = [,Internet Explorer_Server]
行为描述: 打开互斥体
详情信息: ShimCacheMutex
Local\!IETld!Mutex
Local\WininetStartupMutex
Local\_!MSFTHISTORY!_
Local\c:!documents and settings!administrator!local settings!temporary internet files!content.ie5!
Local\c:!documents and settings!administrator!cookies!
Local\c:!documents and settings!administrator!local settings!history!history.ie5!
Local\WininetConnectionMutex
Local\WininetProxyRegistryMutex
RasPbFile
CtfmonInstMutexDefaultS-*
Activities
VirSCANVirSCAN
活动名 类型
Splash android.intent.action.MAIN
Splash android.intent.action.VIEW
Splash android.intent.category.LAUNCHER
Splash android.intent.category.DEFAULT
ZipFileView android.intent.action.VIEW
ZipFileView android.intent.category.DEFAULT
OutFileOpen android.intent.action.VIEW
OutFileOpen android.intent.category.DEFAULT
危险函数
VirSCANVirSCAN
函数名称 信息
java/net/URL;->openConnection 连接URL
java/net/URLConnection;->connect 连接URL
TelephonyManager;->getDeviceId 搜集用户手机IMEI码、电话号码、系统版本号等信息
HttpClient;->execute 请求远程服务器
LocationManager;->getLastKnownLocation 获取地址位置
android/app/NotificationManager;->notify 信息通知栏
java/net/HttpURLConnection;->connect 连接URL
启动方式
VirSCANVirSCAN
名称 信息
com.iBookStar.activity.MediaButtonReceiver
权限列表
VirSCANVirSCAN
许可名称 信息
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.MOUNT_UNMOUNT_FILESYSTEMS 挂载、反挂载外部文件系统
android.permission.INTERNET 连接网络(2G或3G)
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.WAKE_LOCK 手机屏幕关闭后后台进程仍运行
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
服务列表
VirSCANVirSCAN
名称
com.iBookStar.activity.FTPServerService
文件列表
VirSCANVirSCAN
文件名 校验码
AndroidManifest.xml 0xb1582ffe
assets/ 0x0
assets/help.txt 0x940de37
classes.dex 0x29888285
META-INF/ 0x0
META-INF/CERT.RSA 0x2ea309ae
META-INF/CERT.SF 0xba611e2d
META-INF/MANIFEST.MF 0xcf17667
res/ 0x0
resources.arsc 0xe6b6fa27
res/anim/ 0x0
res/anim/activity_enter.xml 0xd0618f63
res/anim/alpha_anim.xml 0x1d20ce2a
res/anim/fake_alpha_anim.xml 0x4123d10e
res/anim/translate_alpha_in_frombottom_anim.xml 0xfa076fac
res/anim/translate_alpha_in_fromup_anim.xml 0x582497a
res/anim/translate_alpha_out_tobottom_anim.xml 0x1cf5a28e
res/anim/translate_in_fromleft_anim.xml 0x879f7aa7
res/anim/translate_in_fromright_anim.xml 0xfc8fada3
res/anim/translate_in_fromup_anim.xml 0x722f7f93
res/anim/translate_out_frombottom_anim.xml 0xed55d76b
res/anim/translate_out_fromleft_anim.xml 0xd57799c5
res/anim/translate_out_fromright_anim.xml 0x18e5d25f
res/color/ 0x0
res/color/tabcolor.xml 0x6b460b8a
res/color/toptabcolor.xml 0x761bc5ce
res/drawable-hdpi/ 0x0
res/drawable-hdpi/aaa.png 0x4f2c0c0
res/drawable-hdpi/active_round_bg.png 0x658c7fa3
res/drawable-hdpi/active_round_whitebg.png 0x1d1bfbe7
res/drawable-hdpi/add.png 0xca5ae5c8
res/drawable-hdpi/addimg_group.xml 0xcd6baa52
res/drawable-hdpi/addtobookshelf.png 0x4cb6bd3d
res/drawable-hdpi/add_pressed.png 0xb54a2d97
res/drawable-hdpi/back.png 0x21d83e23
res/drawable-hdpi/back_list.png 0x38c1d612
res/drawable-hdpi/bar_bookshelf.png 0x26e714dc
res/drawable-hdpi/bar_fileman.png 0xc1afb475
res/drawable-hdpi/bar_setting.png 0x307feab9
res/drawable-hdpi/bookmark_pin.png 0xf2e4f3ca
res/drawable-hdpi/bookshelf_bg.png 0xbfb74066
res/drawable-hdpi/bottomtabbg.png 0xd0885335
res/drawable-hdpi/bottom_tipbg.png 0xcd3ef3d0
res/drawable-hdpi/bs_tool_sort.png 0xa2a2ef86
res/drawable-hdpi/btncontainer_bg.png 0x5d9f826e
res/drawable-hdpi/btncontainer_selected.png 0x6b66e250
res/drawable-hdpi/btn_bg2.9.png 0xee53067f
res/drawable-hdpi/btn_bgpress2.9.png 0x9b2a9290
res/drawable-hdpi/btn_lightbg.9.png 0xac97bcdd
res/drawable-hdpi/btn_lightpress.9.png 0xbfea59
res/drawable-hdpi/btn_selector2.xml 0xc2e8b75b
res/drawable-hdpi/center_tip.9.png 0x5ec4b7a5
res/drawable-hdpi/center_tip2.9.png 0xbae35c55
res/drawable-hdpi/center_tip3.9.png 0x25820187
res/drawable-hdpi/checkbox_group.xml 0xef516dcb
res/drawable-hdpi/checkedbox.png 0xd317a7a9
res/drawable-hdpi/clientbg.png 0x39a50724
res/drawable-hdpi/clientbg_repeat.xml 0x2aa4117f
res/drawable-hdpi/client_withmenu.9.png 0x9d9e3960
res/drawable-hdpi/cover_bg.png 0x1f9c7ea
res/drawable-hdpi/cover_default.png 0xe6b7c57b
res/drawable-hdpi/cove_name_bg.png 0xd1548f8b
res/drawable-hdpi/deep_clientbg.png 0x9029239d
res/drawable-hdpi/delete_done_bg.png 0x1a84673a
res/drawable-hdpi/delete_done_press.png 0xdf211090
res/drawable-hdpi/desc_bg.png 0x33184560
res/drawable-hdpi/divider.png 0x232dd136
res/drawable-hdpi/emptybook.png 0xe04977bd
res/drawable-hdpi/enter.png 0xa3459895
res/drawable-hdpi/epub.png 0xa938a3d3
res/drawable-hdpi/file.png 0x62c44084
res/drawable-hdpi/file_b.png 0x38f6a799
res/drawable-hdpi/file_c.png 0xed77be2b
res/drawable-hdpi/file_d.png 0x59536f9
res/drawable-hdpi/file_e.png 0xf5c4668d
res/drawable-hdpi/file_f.png 0x53e26a0b
res/drawable-hdpi/file_g.png 0x1249a7d7
res/drawable-hdpi/file_h.png 0x655aac44
res/drawable-hdpi/file_i.png 0x874d8e0e
res/drawable-hdpi/file_j.png 0xb88d769b
res/drawable-hdpi/file_k.png 0x2d2b7994
res/drawable-hdpi/file_l.png 0xe580e777
res/drawable-hdpi/fm_tool_ope.png 0xf8aa0fa2
res/drawable-hdpi/fm_tool_rapidpath.png 0xb99ae0fb
res/drawable-hdpi/fm_tool_zip.png 0x37de5072
res/drawable-hdpi/folder.png 0xc1cf7a4d
res/drawable-hdpi/folder_bluetooth.png 0x2056fdc4
res/drawable-hdpi/folder_down.png 0x5406d42e
res/drawable-hdpi/folder_image.png 0xcbdfffed
res/drawable-hdpi/folder_phone.png 0xfcd5d76a
res/drawable-hdpi/folder_sdcard.png 0x9034b916
res/drawable-hdpi/folder_small.png 0x5071497d
res/drawable-hdpi/font_big.png 0x85357ee4
res/drawable-hdpi/font_bold.png 0x9c8734f2
res/drawable-hdpi/font_distance.png 0x38c8b8f
res/drawable-hdpi/font_filtersp.png 0x6e34bdc
res/drawable-hdpi/font_italic.png 0x2f3f977b
res/drawable-hdpi/font_linespace_big.png 0xe72c62c3
res/drawable-hdpi/font_linespace_small.png 0x1c829874
res/drawable-hdpi/font_readinfo.png 0xcde27cfb
res/drawable-hdpi/font_reserveline.png 0x279964bb
res/drawable-hdpi/font_scalex.png 0xbc23913d
res/drawable-hdpi/font_shadow.png 0x87e119c0
res/drawable-hdpi/font_small.png 0x6e32d7e4
res/drawable-hdpi/font_smooth.png 0x5be9bfcf
res/drawable-hdpi/font_underline.png 0x302ec9a2
res/drawable-hdpi/format_cartoon.png 0xbd62cb10
res/drawable-hdpi/format_epub.png 0x2c05245e
res/drawable-hdpi/format_txt.png 0xb30eca48
res/drawable-hdpi/format_umd.png 0xd2dd6187
res/drawable-hdpi/ftpentry_group.xml 0x39ac0e8d
res/drawable-hdpi/ftp_entry.png 0xda6b95a1
res/drawable-hdpi/ftp_entry_pressed.png 0xf0f46de9
res/drawable-hdpi/general_tool_btshare.png 0x46841030
res/drawable-hdpi/general_tool_copy.png 0x536b9d05
res/drawable-hdpi/general_tool_cut.png 0x4ed8c410
res/drawable-hdpi/general_tool_delete.png 0x7baef6dc
res/drawable-hdpi/general_tool_empty.png 0x395ad402
res/drawable-hdpi/general_tool_mark.png 0x7607751e
res/drawable-hdpi/general_tool_search.png 0x9b7fd0d5
res/drawable-hdpi/grid_presstor.xml 0x8783bf7
res/drawable-hdpi/group_btncontainer_bg.xml 0x629a3b38
res/drawable-hdpi/group_readtoolbarbtnselector.xml 0x395964c6
res/drawable-hdpi/help.png 0x3608e6e7
res/drawable-hdpi/icon.png 0x816b3bd5
res/drawable-hdpi/indicator_bg.9.png 0xba6b95dd
res/drawable-hdpi/indicator_down.png 0x7bb7d95b
res/drawable-hdpi/jindu.9.png 0xecce9534
res/drawable-hdpi/jindu2.9.png 0xbdb20cb0
res/drawable-hdpi/lightbtn_selector.xml 0x4ad076fe
res/drawable-hdpi/listpressed.png 0x45f8f05e
res/drawable-hdpi/listselector.xml 0x21dd2ced
res/drawable-hdpi/listtailbtnselector.xml 0x241047bd
res/drawable-hdpi/listtail_del_btn_selector.xml 0x191fc037
res/drawable-hdpi/list_roundbg.9.png 0x3276080e
res/drawable-hdpi/list_tail_btnbg.png 0x9dacc296
res/drawable-hdpi/list_tail_btnpress.png 0x27f2df6c
res/drawable-hdpi/lock.png 0xfb01e89d
res/drawable-hdpi/login_bg_tip.png 0xe414779
res/drawable-hdpi/logo.png 0x85fad2f4
res/drawable-hdpi/menu_bg.9.png 0x5bdfe5d5
res/drawable-hdpi/menu_download.png 0x56225c5b
res/drawable-hdpi/menu_online.png 0xf0a8ce37
res/drawable-hdpi/menu_update.png 0xa2c34a05
res/drawable-hdpi/mode_grid.png 0x921d3c7e
res/drawable-hdpi/mode_list.png 0x7468bc6c
res/drawable-hdpi/next.png 0xf4a8afe
res/drawable-hdpi/pagemargin.png 0x7809ccda
res/drawable-hdpi/quit_app.png 0x85e995a2
res/drawable-hdpi/readtool_btn_bg.png 0x978f6c
res/drawable-hdpi/readtool_btn_pressed.png 0xeaa55538
res/drawable-hdpi/read_bg1.jpg 0x62611697
res/drawable-hdpi/read_bg2.jpg 0x836075a8
res/drawable-hdpi/read_bg3.jpg 0xcf39325c
res/drawable-hdpi/read_layout_bg.png 0xe0b9f4a3
res/drawable-hdpi/read_titlebg.png 0xc4efc80c
res/drawable-hdpi/right_slidebg.9.png 0x6635bfe4
res/drawable-hdpi/sc_autoreadmode.png 0x88b547e9
res/drawable-hdpi/sc_flippageregion.png 0xfec4dbb9
res/drawable-hdpi/sc_fullscreen.png 0xe1810a6e
res/drawable-hdpi/sc_gravity.png 0x1b83acc6
res/drawable-hdpi/sc_idleexit.png 0xa8b7910e
res/drawable-hdpi/sc_lightmode.png 0x8262fd6f
res/drawable-hdpi/sc_pageanim.png 0x24eb038f
res/drawable-hdpi/sc_readmode.png 0x5b9bae8a
res/drawable-hdpi/sc_screenkeepon.png 0x9aaeb206
res/drawable-hdpi/search.png 0x551b9205
res/drawable-hdpi/seekbar_bg.9.png 0xbbe60a37
res/drawable-hdpi/seekbar_fg.9.png 0xcdf24527
res/drawable-hdpi/seekbar_style.xml 0x13843de
res/drawable-hdpi/seekbar_thumb.png 0xfc4b31c9
res/drawable-hdpi/seeme.png 0xa1d13773
res/drawable-hdpi/select_done_bg.png 0x70d5e6b0
res/drawable-hdpi/select_done_press.png 0xc0c2e064
res/drawable-hdpi/shapebg.xml 0xc40fe5b3
res/drawable-hdpi/shapebookhilight.xml 0xf415ad65
res/drawable-hdpi/shape_transplantbg.xml 0x7669803
res/drawable-hdpi/skinbtnselector.xml 0xeff5684e
res/drawable-hdpi/smoothbtnselector.xml 0x36ab989c
res/drawable-hdpi/sub.png 0xe6286a47
res/drawable-hdpi/subimg_group.xml 0xce694a19
res/drawable-hdpi/sub_pressed.png 0x8bceda5
res/drawable-hdpi/switchskin.png 0x7c31e552
res/drawable-hdpi/switchskin_press.png 0x845f7ff
res/drawable-hdpi/tabselector.xml 0x2e661c2c
res/drawable-hdpi/tab_selected.png 0x920ebe9b
res/drawable-hdpi/tail_delete.png 0x3b1d7ac7
res/drawable-hdpi/titlebg.png 0x9f78df31
res/drawable-hdpi/title_breakline.png 0xd83c7aa2
res/drawable-hdpi/toast_bg.png 0xc89fddeb
res/drawable-hdpi/toolbarbg.png 0xcff6995e
res/drawable-hdpi/toolbarbtnselector.xml 0x5643d323
res/drawable-hdpi/toolbarselector.xml 0x41ceeef4
res/drawable-hdpi/toolbar_childbg.png 0x4f2c0c0
res/drawable-hdpi/toolbar_childselector.xml 0xf143eb2
res/drawable-hdpi/toolbar_child_head.png 0x5533ed7b
res/drawable-hdpi/toolbar_child_tail.png 0xabef7c54
res/drawable-hdpi/toolbar_groupbg.png 0xe9363959
res/drawable-hdpi/toolbar_groupselector.xml 0xc8e05a8f
res/drawable-hdpi/toolbar_listpress.png 0x13f29792
res/drawable-hdpi/tool_autoread.png 0xe5b116ab
res/drawable-hdpi/tool_bg.png 0xfc2aad05
res/drawable-hdpi/tool_btn_bg.png 0x3e4880b1
res/drawable-hdpi/tool_btn_pressed.png 0xab0e3d6b
res/drawable-hdpi/tool_content.png 0xe1f284be
res/drawable-hdpi/tool_find.png 0x10bd2e2e
res/drawable-hdpi/tool_go.png 0xe98f2ae4
res/drawable-hdpi/tool_link.png 0x416947b5
res/drawable-hdpi/tool_linkmanager.png 0xfce2a391
res/drawable-hdpi/tool_palette.png 0x437fdaac
res/drawable-hdpi/tool_powersave.png 0x4c17aba6
res/drawable-hdpi/tool_rotate.png 0x6ab1609
res/drawable-hdpi/tool_scale.png 0x71955e0b
res/drawable-hdpi/tool_select.png 0x7c5562f7
res/drawable-hdpi/tool_setting.png 0x943a4c08
res/drawable-hdpi/tool_ttf.png 0xdc6cf8e9
res/drawable-hdpi/toptabselector.xml 0x58e3e6a4
res/drawable-hdpi/toptab_bg.9.png 0x97996111
res/drawable-hdpi/toptab_select.9.png 0x1a842ac9
res/drawable-hdpi/transparentbg.xml 0x9fbddaf8
res/drawable-hdpi/tts.png 0x742e1630
res/drawable-hdpi/tts_back.png 0xe19adbdb
res/drawable-hdpi/tts_next.png 0x4014cdb8
res/drawable-hdpi/tts_start.png 0x6f249626
res/drawable-hdpi/tts_stop.png 0x1fdea797
res/drawable-hdpi/txt.png 0x42e52096
res/drawable-hdpi/umdbg.png 0x1b2026c6
res/drawable-hdpi/umdc.png 0x14f59e1c
res/drawable-hdpi/umdt.png 0xd3927b5a
res/drawable-hdpi/uncheckbox.png 0x7164903c
res/drawable-hdpi/vertical_toolbarbg.9.png 0x2f266286
res/drawable-hdpi/wifi_state0.png 0xb882582f
res/drawable-hdpi/wifi_state4.png 0x6cb68479
res/drawable-mdpi/ 0x0
res/drawable-mdpi/icon.png 0xe3a69e31
res/drawable-xhdpi/ 0x0
res/drawable-xhdpi/icon.png 0x1650b8d7
res/layout/ 0x0
res/layout/about.xml 0x1ce22fc0
res/layout/apptheme_gridview.xml 0x612af0be
res/layout/apptheme_gridview_item.xml 0x4120e252
res/layout/bookcontents.xml 0x6d152831
res/layout/bookcontents_listitem.xml 0x14d5a88d
res/layout/bookmark.xml 0x8e9fa589
res/layout/bookmark_listitem.xml 0x99cf3502
res/layout/bookmark_toolbar.xml 0x83c8efea
res/layout/bookshelf.xml 0xb8a36e2f
res/layout/bookshelf_grid.xml 0xa4b5e692
res/layout/bookshelf_list.xml 0x2004567f
res/layout/bookshelf_title.xml 0x4c0be67e
res/layout/bottomtab.xml 0xaed85344
res/layout/buttonpreference.xml 0x625cc6c8
res/layout/colorpicker.xml 0x590764ab
res/layout/custom_anim_title.xml 0x63cf4a17
res/layout/custom_prefcategory_layout.xml 0x96b9b601
res/layout/custom_pref_layout.xml 0x732416f7
res/layout/custom_title.xml 0x1c815e78
res/layout/dialog_adjustlight.xml 0x3261fc7e
res/layout/dialog_deletebooks.xml 0x8a810b5e
res/layout/dialog_filesearch_entry.xml 0x14f726fa
res/layout/dialog_searchbooks.xml 0x39ae8214
res/layout/dialog_search_entry.xml 0xea20d4f3
res/layout/dialog_seekbar.xml 0x85fce55c
res/layout/dialog_single_text.xml 0x67dbdeda
res/layout/dlg_prev_image.xml 0xf5d8adb7
res/layout/down_up_toolbar.xml 0x3fdf386a
res/layout/empty_bookshelf.xml 0x8a493698
res/layout/expandable_list_toolbar.xml 0xfca3b912
res/layout/expandable_list_toolbar_item_child.xml 0x20196005
res/layout/expandable_list_toolbar_item_group.xml 0xd9a6b186
res/layout/fileman_iconview.xml 0x912dbd7c
res/layout/fileman_iconview_item.xml 0xfadf9398
res/layout/fileman_listview.xml 0xb091594f
res/layout/fileman_listview_item.xml 0x39680814
res/layout/fileman_popup_item.xml 0xfe3692b
res/layout/fileman_topfield.xml 0xa13294fd
res/layout/filepathmanager.xml 0xb50ef966
res/layout/filepathselectview.xml 0x23275c7e
res/layout/filepathselect_listview_item.xml 0x9bfc7b7f
res/layout/filepath_listitem.xml 0x5b207f1e
res/layout/filesearchresult.xml 0x214fd3a6
res/layout/filesearch_listview_item.xml 0xeccf21f4
res/layout/filesearch_popup_item.xml 0xf57ad76b
res/layout/ftpserver.xml 0xf849e03e
res/layout/general_texttoolbar.xml 0x5922cb3e
res/layout/general_texttoolbar_item.xml 0x958cd873
res/layout/general_toolbar.xml 0x4961c49f
res/layout/general_toolbar_item.xml 0x72c08787
res/layout/help.xml 0xc0d8e75f
res/layout/main_title.xml 0xc4d8dbb1
res/layout/picturebrowser.xml 0x1aff7b24
res/layout/popup_single_text.xml 0x7dbf58b6
res/layout/preferencelist.xml 0xfc3ed5e3
res/layout/preference_smart_layout.xml 0xa06fc47a
res/layout/pwdpreference.xml 0x6f3b5820
res/layout/readerlayouttoast.xml 0x1b6a9a76
res/layout/readerofumdcartoon.xml 0xa6222eeb
res/layout/readersettingtoast.xml 0x1d584df0
res/layout/reader_bottombar.xml 0x967ced3d
res/layout/reader_bottombar_2.xml 0x5a3c1559
res/layout/reader_setting_tab.xml 0x327eaf61
res/layout/reader_toolbar_item.xml 0x103234ce
res/layout/read_percent_seek.xml 0xe0e2dfc
res/layout/read_popup_layout.xml 0x25016e8f
res/layout/splash.xml 0x96302b1e
res/layout/subview_title.xml 0xf59d1b35
res/layout/tab_indicator.xml 0x5d6e9c72
res/layout/textreader.xml 0x8cd4ede2
res/layout/theme_gridview.xml 0x1163a43f
res/layout/theme_gridview_item.xml 0xb185b5cf
res/layout/tiptoast.xml 0x1dc9ed72
res/layout/titlepreferencelist.xml 0x117e8196
res/layout/topsettingtab.xml 0x2b531c7e
res/layout/top_tab_indicator.xml 0xde3ca203
res/layout/tts_controlpane.xml 0x286f7e6a
res/layout/wizard.xml 0x9a139ffe
res/layout/zipfileview.xml 0x23275c7e
res/layout/zipfile_listview_item.xml 0xd7cc905f
res/menu/ 0x0
res/menu/global_menu.xml 0x605eef2a
res/xml/ 0x0
res/xml/fileman_pref.xml 0xe3fb1a8
res/xml/system_pref.xml 0x5916f1b4
运行截图
VirSCANVirSCAN
VirSCAN