VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.
4, If your browser cannot upload files, please download VirSCAN uploader to upload.

Language
Server load
Server Load

VirSCAN
VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, Aplikace VirSCAN může skenovat komprimované soubory s heslem 'infected'nebo'virus'.

File information

File Name :shuazan.apk (File not down)
File Size :2791455 byte
File Type : application/zip
MD5:59c27f184929112d02ce4b572000164a
SHA1:b0a2b2aa1aba59058e0161b3e351c2d03e8306a8
Scanner results
Scanner results:6%Antivirus software(2/32)found malware!
Behavior analysis report:         Habo file analysis
Time: 2015-10-17 12:34:29 (CST)
Scanner Engine Ver Sig Ver Sig Date Scan result Time
antiy AVL SDK 3.0 1970-01-01 Found nothing 5
asquared 9.0.0.4324 9.0.0.4324 2014-07-03 Android.Adware.Dowgin.AW 1
avast 150725-1 4.7.4 2015-07-25 Found nothing 0
avg 2109/8133 10.0.1405 2014-11-26 Found nothing 0
baidu 2.0.1.0 4.1.3.52192 2.0.1.0 Found nothing 5
baidusd 1.0 1.0 2014-04-02 Found nothing 1
bitdefender 7.58469 7.90123 2014-12-25 Found nothing 0
clamav 19861 0.97.5 2014-12-31 Found nothing 0
drweb 5.0.2.3300 5.0.1.1 2014-12-31 Found nothing 0
fortinet 23.345, 23.345 5.1.158 2014-12-08 Found nothing 0
fprot 4.6.2.117 6.5.1.5418 2014-12-31 Found nothing 0
fsecure 2014-04-02-01 9.13 2014-04-02 Found nothing 0
gdata 25.3911 25.3911 2015-10-17 Android.Adware.Dowgin.AW 8
ikarus 1.06.01 V1.32.31.0 2014-12-08 Found nothing 0
jiangmin 16.0.100 1.0.0.0 2015-07-25 Found nothing 41
kaspersky 5.5.33 5.5.33 2014-04-01 Found nothing 0
kingsoft 2.1 2.1 2013-09-22 Found nothing 11
mcafee 7638 5400.1158 2014-11-30 Found nothing 0
nod32 0920 3.0.21 2014-12-23 Found nothing 0
panda 9.05.01 9.05.01 2015-07-26 Found nothing 4
pcc 11.380.07 9.500-1005 2014-12-31 Found nothing 0
qh360 1.0.1 1.0.1 1.0.1 Found nothing 7
qqphone 1.0.0.0 1.0.0.0 2014-12-09 Found nothing 0
quickheal 14.00 14.00 2015-07-25 Found nothing 2
rising 25.76.04.01 25.76.04.01 2015-07-24 Found nothing 3
sophos 5.08 3.55.0 2014-12-01 Found nothing 0
symantec 20141230.001 1.3.0.24 2014-12-30 Found nothing 0
tachyon 9.9.9 9.9.9 2013-12-27 Found nothing 4
thehacker 6.8.0.5 6.8.0.5 2015-07-23 Found nothing 2
tws 17.47.17308 1.0.2.2108 2014-12-08 Found nothing 14
vba 3.12.26.3 3.12.26.3 2014-12-31 Found nothing 0
virusbuster 15.0.985.0 5.5.2.13 2014-12-05 Found nothing 0
权限列表
许可名称 信息
com.android.launcher.permission.INSTALL_SHORTCUT 创建快捷方式
android.permission.GET_TASKS 获取有关当前或最近运行的任务信息
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.PROCESS_OUTGOING_CALLS 监视、修改有关拨出电话
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.ACCESS_COARSE_LOCATION 获取粗略的位置(通过wifi、基站)
android.permission.CALL_PHONE 拨打电话
android.permission.MODIFY_AUDIO_SETTINGS 修改声音设置
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.MOUNT_UNMOUNT_FILESYSTEMS 挂载、反挂载外部文件系统
android.permission.SYSTEM_ALERT_WINDOW 显示系统窗口
android.permission.MODIFY_PHONE_STATE 修改电话状态
android.permission.ACCESS_WIFI_STATE.android.permission.READ_PHONE_STATE
android.permission.INTERNET 连接网络(2G或3G)
android.permission.CHANGE_WIFI_STATE 改变WIFI连接状态
android.permission.ACCESS_LOCATION_EXTRA_COMMANDS 访问额外的定位指令
android.permission.ACCESS_FINE_LOCATION 获取精确的位置(通过GPS)
android.permission.VIBRATE 允许设备震动
com.android.launcher.permission.READ_SETTINGS 读取快捷方式信息
android.permission.READ_CALL_LOG 读取通话记录
android.permission.WAKE_LOCK 手机屏幕关闭后后台进程仍运行
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.CHANGE_CONFIGURATION 修改当前设置(如:本地化)
android.permission.RESTART_PACKAGES 重启其他程序
com.android.launcher.permission.WRITE_SETTINGS
android.permission.RECEIVE_BOOT_COMPLETED 接收开机启动广播
android.permission.INSTALL_SHORTCUT
文件信息
VirSCANVirSCAN
安全评分 :
基本信息
VirSCANVirSCAN
MD5:59c27f184929112d02ce4b572000164a
文件大小:5.58MB
上传时间: 2014-09-22 10:36:30 (CST)
包名:com.suzhuan
最低运行环境:Android 2.2.x
版权:E4A
关键行为
VirSCANVirSCAN
行为描述: 写权限映射文件
详情信息: CiceroSharedMemDefaultS-*
MSCTF.MarshalInterface.FileMap.IDC..JNIGH
MSCTF.MarshalInterface.FileMap.IDC.B.JNIGH
MSCTF.MarshalInterface.FileMap.IDC.C.JNIGH
MSCTF.MarshalInterface.FileMap.IDC.D.JNIGH
MSCTF.MarshalInterface.FileMap.IDC.E.JNIGH
MSCTF.MarshalInterface.FileMap.IDC.F.JNIGH
MSCTF.MarshalInterface.FileMap.IDC.G.JNIGH
MSCTF.Shared.SFM.IDC
MSCTF.MarshalInterface.FileMap.IDC.H.FHCLH
MSCTF.MarshalInterface.FileMap.IDC.I.FHCLH
MSCTF.MarshalInterface.FileMap.IDC.J.FHCLH
MSCTF.MarshalInterface.FileMap.IDC.K.FHCLH
MSCTF.MarshalInterface.FileMap.IDC.L.FHCLH
MSCTF.MarshalInterface.FileMap.IDC.M.FICLH
行为描述: DLL样本(x86)
详情信息: N/A
行为描述: 修改注册表_启动项
详情信息: \REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ Report\
进程行为
VirSCANVirSCAN
行为描述: 写权限映射文件
详情信息: CiceroSharedMemDefaultS-*
MSCTF.MarshalInterface.FileMap.IDC..JNIGH
MSCTF.MarshalInterface.FileMap.IDC.B.JNIGH
MSCTF.MarshalInterface.FileMap.IDC.C.JNIGH
MSCTF.MarshalInterface.FileMap.IDC.D.JNIGH
MSCTF.MarshalInterface.FileMap.IDC.E.JNIGH
MSCTF.MarshalInterface.FileMap.IDC.F.JNIGH
MSCTF.MarshalInterface.FileMap.IDC.G.JNIGH
MSCTF.Shared.SFM.IDC
MSCTF.MarshalInterface.FileMap.IDC.H.FHCLH
MSCTF.MarshalInterface.FileMap.IDC.I.FHCLH
MSCTF.MarshalInterface.FileMap.IDC.J.FHCLH
MSCTF.MarshalInterface.FileMap.IDC.K.FHCLH
MSCTF.MarshalInterface.FileMap.IDC.L.FHCLH
MSCTF.MarshalInterface.FileMap.IDC.M.FICLH
行为描述: DLL样本(x86)
详情信息: N/A
行为描述: 修改注册表_启动项
详情信息: \REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ Report\
文件行为
VirSCANVirSCAN
行为描述: 写权限映射文件
详情信息: CiceroSharedMemDefaultS-*
MSCTF.MarshalInterface.FileMap.IDC..JNIGH
MSCTF.MarshalInterface.FileMap.IDC.B.JNIGH
MSCTF.MarshalInterface.FileMap.IDC.C.JNIGH
MSCTF.MarshalInterface.FileMap.IDC.D.JNIGH
MSCTF.MarshalInterface.FileMap.IDC.E.JNIGH
MSCTF.MarshalInterface.FileMap.IDC.F.JNIGH
MSCTF.MarshalInterface.FileMap.IDC.G.JNIGH
MSCTF.Shared.SFM.IDC
MSCTF.MarshalInterface.FileMap.IDC.H.FHCLH
MSCTF.MarshalInterface.FileMap.IDC.I.FHCLH
MSCTF.MarshalInterface.FileMap.IDC.J.FHCLH
MSCTF.MarshalInterface.FileMap.IDC.K.FHCLH
MSCTF.MarshalInterface.FileMap.IDC.L.FHCLH
MSCTF.MarshalInterface.FileMap.IDC.M.FICLH
注册表行为
VirSCANVirSCAN
行为描述: 修改注册表
详情信息: \REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{32C50D96-7A9E-4F3E-8763-F74D86AFEDC2}\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{32C50D96-7A9E-4F3E-8763-F74D86AFEDC2}\InprocServer32\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{32C50D96-7A9E-4F3E-8763-F74D86AFEDC2}\InprocServer32\ThreadingModel
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{32C50D96-7A9E-4F3E-8763-F74D86AFEDC2}\TypeLib\
\REGISTRY\MACHINE\SOFTWARE\Classes\CLSID\{32C50D96-7A9E-4F3E-8763-F74D86AFEDC2}\Version\
\REGISTRY\MACHINE\SOFTWARE\Classes\TypeLib\{2A47137C-F777-419F-A47A-7C8BB9B8F796}\1.0\
\REGISTRY\MACHINE\SOFTWARE\Classes\TypeLib\{2A47137C-F777-419F-A47A-7C8BB9B8F796}\1.0\FLAGS\
\REGISTRY\MACHINE\SOFTWARE\Classes\TypeLib\{2A47137C-F777-419F-A47A-7C8BB9B8F796}\1.0\0\win32\
\REGISTRY\MACHINE\SOFTWARE\Classes\TypeLib\{2A47137C-F777-419F-A47A-7C8BB9B8F796}\1.0\HELPDIR\
\REGISTRY\MACHINE\SOFTWARE\Classes\Interface\{C43FB2DE-5D41-45ED-B3CC-E2FCBCEBA42A}\
\REGISTRY\MACHINE\SOFTWARE\Classes\Interface\{C43FB2DE-5D41-45ED-B3CC-E2FCBCEBA42A}\ProxyStubClsid\
\REGISTRY\MACHINE\SOFTWARE\Classes\Interface\{C43FB2DE-5D41-45ED-B3CC-E2FCBCEBA42A}\ProxyStubClsid32\
\REGISTRY\MACHINE\SOFTWARE\Classes\Interface\{C43FB2DE-5D41-45ED-B3CC-E2FCBCEBA42A}\TypeLib\
\REGISTRY\MACHINE\SOFTWARE\Classes\Interface\{C43FB2DE-5D41-45ED-B3CC-E2FCBCEBA42A}\TypeLib\Version
\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{32C50D96-7A9E-4F3E-8763-F74D86AFEDC2}
行为描述: 修改注册表_启动项
详情信息: \REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ Report\
其他行为
VirSCANVirSCAN
行为描述: 创建互斥体
详情信息: SHIMLIB_LOG_MUTEX
CTF.LBES.MutexDefaultS-*
CTF.Compart.MutexDefaultS-*
CTF.Asm.MutexDefaultS-*
CTF.Layouts.MutexDefaultS-*
CTF.TMD.MutexDefaultS-*
CTF.TimListCache.FMPDefaultS-*MUTEX.DefaultS-*
MSCTF.Shared.MUTEX.ELH
MSCTF.Shared.MUTEX.IDC
行为描述: DLL样本(x86)
详情信息: N/A
行为描述: 查找指定窗口
详情信息: NtUserFindWindowEx: [Class,Window] = [Shell_TrayWnd,]
NtUserFindWindowEx: [Class,Window] = [CicLoaderWndClass,]
行为描述: 获取系统权限
详情信息: SE_LOAD_DRIVER_PRIVILEGE
SE_DEBUG_PRIVILEGE
动态列表行为
VirSCANVirSCAN
行为描述: 获取加密实例
详情信息: [u'AES/ECB/PKCS7Padding']
[u'DES/CBC/PKCS5Padding']
[u'PBEWITHMD5andDES']
行为描述: 添加View
详情信息: [u'com.android.internal.policy.impl.PhoneWindow$DecorView@414c49a8', u'WM.LayoutParams{(0,0)(fillxfill) sim=#120 ty=1 fl=#9010100 pfl=0x8 wanim=0x103028f}', u'android.view.CompatibilityInfoHolder@414af928']
[u'com.android.internal.policy.impl.PhoneWindow$DecorView@41512568', u'WM.LayoutParams{(0,0)(wrapxwrap) gr=#11 sim=#120 ty=2 fl=#9020002 pfl=0x8 fmt=-2 wanim=0x1030290}', u'android.view.CompatibilityInfoHolder@414af928']
行为描述: root权限检测
详情信息: /system/bin/su
/system/xbin/su
行为描述: 读取文件
详情信息: path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:6
path:/system/build.prop length:5
path:/mnt/sdcard/Android/data/.class/android length:38
path:/mnt/sdcard/Android/data/.class/android length:5
行为描述: 监听手机SIM卡或者移动网络信息
详情信息: [u'com.e4a.runtime.components.impl.android.n9.\u624b\u673aImpl$MyPhoneStateListener@415a9470', u'32']
行为描述: 初始化Intent
详情信息: [u'android.os.Parcel@414ad150']
[u'android.os.Parcel@414ad110']
[u'android.os.Parcel@414ad110']
[u'com.e4a.runtime.android.E4Aapplication@41537658', u'class net.youmi.android.AdService']
[u'android.os.Parcel@414ad110']
[u'ep_a5bc16abc828fde8']
[u'android.os.Parcel@414ad110']
[u'android.os.Parcel@414ad110']
[u'android.os.Parcel@414ad150']
行为描述: 传递附加信息
详情信息: uMJpK6hDkTmz:net.youmi.android.offers.f@41d7c900
行为描述: 调用哈希算法
详情信息: MD5
SHA
行为描述: 注册广播接收器
详情信息: [u'com.e4a.runtime.components.impl.android.n9.\u624b\u673aImpl$1@415bfbf8', u'android.content.IntentFilter@415c1660']
[u'net.youmi.android.spot.l@41cbeab0', u'android.content.IntentFilter@41cbeac8']
[u'net.youmi.android.offers.e@41d20eb8', u'android.content.IntentFilter@417d4088']
[u'net.youmi.android.a.a.g.e.g@42143b00', u'android.content.IntentFilter@41d84948']
[u'com.an.home.n.f$b@417ad450', u'android.content.IntentFilter@417ad468']
行为描述: 访问URL
详情信息: http://app.wapx.cn/action/connect/active?app_id=cfe82aa8af872202d7e4a25912b032f5&udid=357143040944263&imsi=460000043140572&net=wifi&base=wapx.cn&app_version=1.2.0&sdk_version=2.2.0&device_name=sdk&device_brand=Lenovo&y=8cff55afc276cc7661fd0caf56b4837d&device_type=android&os_version=4.1.2&country_code=US&language=en&act=com.suzhuan&root=true&channel=waps&device_width=768&device_height=1184&rec=h9fFLgXL%2BJ3C9bjehErUIxN6wKZIfLn3lAkMFR2ZmZeG4%2F2Cr8lFS3xQG13%2BOSMXwcdnnEgVpzax%0AGmBSo9dIpnDzaqneTHWpZyzbh4CnG7RTbdnFqj8SN%2FXY7wF46qeP6JggAsCDe2eX0bXcPhSfc0g%2B%0AgGVGMzoWLFMJLXFSj8QVj8enZPWgHkMT3E5Pz5tO%0A&at=1439264655059
行为描述: 读取sdcard
详情信息: path:/mnt/sdcard/Android/data/.class/android
path:/mnt/sdcard/Android/data/.class/android
path:/mnt/sdcard/Android/data/.class/android
行为描述: 执行SQL查询
详情信息: [u'select notId,title,url,fileName,size,state,orderCode,packName,reboot,progress,model,tips,tipId from apk_table where state=1 or state=3 or state=2', u'null']
行为描述: 获取网络状态信息[*]
详情信息: NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
NetworkInfo: type: WIFI[], state: CONNECTED/CONNECTED, reason: (unspecified), extra: freewifi, roaming: false, failover: false, isAvailable: true
行为描述: 初始化URL
详情信息: [u'http://app.wapx.cn/action/connect/active?app_id=cfe82aa8af872202d7e4a25912b032f5&udid=357143040944263&imsi=460000043140572&net=wifi&base=wapx.cn&app_version=1.2.0&sdk_version=2.2.0&device_name=sdk&device_brand=Lenovo&y=8cff55afc276cc7661fd0caf56b4837d&device_type=android&os_version=4.1.2&country_code=US&language=en&act=com.suzhuan&root=true&channel=waps&device_width=768&device_height=1184&rec=h9fFLgXL%2BJ3C9bjehErUIxN6wKZIfLn3lAkMFR2ZmZeG4%2F2Cr8lFS3xQG13%2BOSMXwcdnnEgVpzax%0AGmBSo9dIpnDzaqneTHWpZyzbh4CnG7RTbdnFqj8SN%2FXY7wF46qeP6JggAsCDe2eX0bXcPhSfc0g%2B%0AgGVGMzoWLFMJLXFSj8QVj8enZPWgHkMT3E5Pz5tO%0A&at=1439264655059']
行为描述: 获取设备ID
详情信息: 357143040944263
357143040944263
357143040944263
357143040944263
行为描述: 加载链接库文件
详情信息: /data/data/com.suzhuan/files/libjiagu.so
行为描述: 获取当前连接的Wifi热点信息
详情信息: []
[]
[]
[]
行为描述: 获取用户ID
详情信息: 460000043140572
460000043140572
460000043140572
460000043140572
460000043140572
行为描述: 缓冲区读取一行数据
详情信息: dsv=030100&jsv=&ipb=96ZJ1eMQzfuWHwTOl1&idv=357143040944263%2C460000043140572%2C72c0258c73ad917e&pkg_name=com.suzhuan
null
msg=ZcDbzVPGrDijx7ZomlHOAXC7uZCtAcZ%2BHxoOlwiddWNH4giFD2gYjb5pANZiPDrmmTKCLm7jLejZFrIqxWN%2FUYbiSIBQNhdzYz7wKOdb5nukb4Zyc5rzzvUtqxtmeTtcqJgkuxH8Rm4Zf%2FI1eV1R1HSKfkGVcK0RdszpTRkkKDs%3D
null
RSZbbUsEdX%2Fd49IujgZPfA%3D%3D%0A
null
行为描述: 写入sdcard
详情信息: path:/mnt/sdcard/Android/data/cache/CacheTime.dat
path:/mnt/sdcard/Android/data/.class/android
行为描述: 数据库查询
详情信息: [u'YINcpuKxQ5cA', u'null', u'a=?', u'[39de4bbdb01d77bf58335f9e89049991]', u'null', u'null', u'null']
[u'YINcpuKxQ5cA', u'null', u'a=?', u'[d8e4cbdbaafbf49b12439f1e9f2b8210]', u'null', u'null', u'null']
[u'YINcpuKxQ5cA', u'null', u'a=?', u'[39de4bbdb01d77bf58335f9e89049991]', u'null', u'null', u'null']
[u'YINcpuKxQ5cA', u'null', u'a=?', u'[d8e4cbdbaafbf49b12439f1e9f2b8210]', u'null', u'null', u'null']
行为描述: 写入文件
详情信息: path:/data/data/com.suzhuan/files/libjiagu.so length:69
path:/data/data/com.suzhuan/files/libjiagu.so length:66
path:/data/data/com.suzhuan/files/libjiagu.so length:68
path:/data/data/com.suzhuan/files/libjiagu.so length:68
path:/data/data/com.suzhuan/files/libjiagu.so length:69
path:/data/data/com.suzhuan/files/libjiagu.so length:64
path:/data/data/com.suzhuan/files/libjiagu.so length:68
path:/data/data/com.suzhuan/files/libjiagu.so length:66
path:/data/data/com.suzhuan/files/libjiagu.so length:69
path:/data/data/com.suzhuan/files/libjiagu.so length:66
path:/data/data/com.suzhuan/files/libjiagu.so length:62
path:/data/data/com.suzhuan/files/libjiagu.so length:60
path:/data/data/com.suzhuan/files/libjiagu.so length:61
path:/data/data/com.suzhuan/files/libjiagu.so length:64
path:/data/data/com.suzhuan/files/libjiagu.so length:61
path:/data/data/com.suzhuan/files/libjiagu.so length:64
path:/data/data/com.suzhuan/files/libjiagu.so length:67
path:/data/data/com.suzhuan/files/libjiagu.so length:64
path:/data/data/com.suzhuan/files/libjiagu.so length:67
path:/data/data/com.suzhuan/files/libjiagu.so length:67
path:/data/data/com.suzhuan/files/libjiagu.so length:62
path:/data/data/com.suzhuan/files/libjiagu.so length:62
path:/data/data/com.suzhuan/files/libjiagu.so length:66
path:/data/data/com.suzhuan/files/libjiagu.so length:68
path:/data/data/com.suzhuan/files/libjiagu.so length:65
path:/data/data/com.suzhuan/files/libjiagu.so length:65
path:/data/data/com.suzhuan/files/libjiagu.so length:65
path:/data/data/com.suzhuan/files/libjiagu.so length:64
path:/data/data/com.suzhuan/files/libjiagu.so length:63
path:/data/data/com.suzhuan/files/libjiagu.so length:64
path:/data/data/com.suzhuan/files/libjiagu.so length:65
path:/data/data/com.suzhuan/files/libjiagu.so length:66
path:/data/data/com.suzhuan/files/libjiagu.so length:65
path:/data/data/com.suzhuan/files/libjiagu.so length:66
path:/data/data/com.suzhuan/files/libjiagu.so length:68
path:/data/data/com.suzhuan/files/libjiagu.so length:66
path:/data/data/com.suzhuan/files/libjiagu.so length:65
path:/data/data/com.suzhuan/files/libjiagu.so length:63
path:/data/data/com.suzhuan/files/libjiagu.so length:64
path:/data/data/com.suzhuan/shared_prefs/com.e4a.runtime.android.mainActivity.xml length:104
path:/data/data/com.suzhuan/shared_prefs/com.e4a.runtime.android.mainActivity.xml length:133
path:/data/data/com.suzhuan/shared_prefs/com.e4a.runtime.android.mainActivity.xml length:162
path:/data/data/com.suzhuan/shared_prefs/com.e4a.runtime.android.mainActivity.xml length:191
path:/data/data/com.suzhuan/shared_prefs/com.e4a.runtime.android.mainActivity.xml length:221
path:/data/data/com.suzhuan/shared_prefs/com.e4a.runtime.android.mainActivity.xml length:251
path:/data/data/com.suzhuan/shared_prefs/com.e4a.runtime.android.mainActivity.xml length:261
path:/data/data/com.suzhuan/shared_prefs/com.e4a.runtime.android.mainActivity.xml length:261
path:/data/data/com.suzhuan/shared_prefs/com.e4a.runtime.android.mainActivity.xml length:261
path:/data/data/com.suzhuan/shared_prefs/com.e4a.runtime.android.mainActivity.xml length:261
path:/mnt/sdcard/Android/data/cache/CacheTime.dat length:18
path:/data/data/com.suzhuan/files/CacheTime.dat length:18
path:/mnt/sdcard/Android/data/.class/android length:38
path:/data/data/com.suzhuan/shared_prefs/AppSettings.xml length:139
path:/data/data/com.suzhuan/shared_prefs/com.e4a.runtime.android.mainActivity.xml length:261
path:/data/data/com.suzhuan/shared_prefs/OFFERSCONFIG1.xml length:122
path:/data/data/com.suzhuan/shared_prefs/CE94557724F842149D690D0E8CBB1CBD.xml length:235
path:/data/data/com.suzhuan/shared_prefs/CE94557724F842149D690D0E8CBB1CBD.xml length:261
path:/data/data/com.suzhuan/shared_prefs/CE94557724F842149D690D0E8CBB1CBD.xml length:261
Activities
VirSCANVirSCAN
活动名 类型
com.e4a.runtime.android.mainActivity android.intent.action.MAIN
com.e4a.runtime.android.mainActivity android.intent.category.DEFAULT
com.e4a.runtime.android.mainActivity android.intent.category.LAUNCHER
com.tencent.tauth.AuthActivity android.intent.action.VIEW
com.tencent.tauth.AuthActivity android.intent.category.DEFAULT
com.tencent.tauth.AuthActivity android.intent.category.BROWSABLE
com.an.home.u.DSWV android.intent.action.MAIN
启动方式
VirSCANVirSCAN
名称 信息
net.youmi.android.AdReceiver 应用安装时启动服务
com.an.home.n.OpenReceiver 开机启动服务
com.an.home.n.OpenReceiver 网络连接改变时启动服务
com.an.home.n.OpenReceiver 屏幕解锁启动服务
广告信息
VirSCANVirSCAN
名称 信息
com.baidu 百度
net.youmi 有米广告
com.winad.android 赢告
权限列表
VirSCANVirSCAN
许可名称 信息
com.android.launcher.permission.INSTALL_SHORTCUT 创建快捷方式
android.permission.GET_TASKS 获取有关当前或最近运行的任务信息
android.permission.WRITE_EXTERNAL_STORAGE 写外部存储器(如:SD卡)
android.permission.PROCESS_OUTGOING_CALLS 监视、修改有关拨出电话
android.permission.ACCESS_WIFI_STATE 读取wifi网络状态
android.permission.ACCESS_COARSE_LOCATION 获取粗略的位置(通过wifi、基站)
android.permission.CALL_PHONE 拨打电话
android.permission.MODIFY_AUDIO_SETTINGS 修改声音设置
android.permission.READ_PHONE_STATE 读取电话状态
android.permission.MOUNT_UNMOUNT_FILESYSTEMS 挂载、反挂载外部文件系统
android.permission.SYSTEM_ALERT_WINDOW 显示系统窗口
android.permission.MODIFY_PHONE_STATE 修改电话状态
android.permission.ACCESS_WIFI_STATE.android.permission.READ_PHONE_STATE
android.permission.INTERNET 连接网络(2G或3G)
android.permission.CHANGE_WIFI_STATE 改变WIFI连接状态
android.permission.ACCESS_LOCATION_EXTRA_COMMANDS 访问额外的定位指令
android.permission.ACCESS_FINE_LOCATION 获取精确的位置(通过GPS)
android.permission.VIBRATE 允许设备震动
com.android.launcher.permission.READ_SETTINGS 读取快捷方式信息
android.permission.READ_CALL_LOG 读取通话记录
android.permission.WAKE_LOCK 手机屏幕关闭后后台进程仍运行
android.permission.ACCESS_NETWORK_STATE 读取网络状态(2G或3G)
android.permission.CHANGE_CONFIGURATION 修改当前设置(如:本地化)
android.permission.RESTART_PACKAGES 重启其他程序
com.android.launcher.permission.WRITE_SETTINGS
android.permission.RECEIVE_BOOT_COMPLETED 接收开机启动广播
android.permission.INSTALL_SHORTCUT
服务列表
VirSCANVirSCAN
名称
net.youmi.android.AdService
net.youmi.android.ExpService
com.dyk.hfsdk.util.DetectionService
com.dlnetwork.DianleGoogleService
com.an.home.n.OpenService
com.an.home.n.FSsevice
com.an.home.n.DwService
文件列表
VirSCANVirSCAN
文件名 校验码
META-INF/MANIFEST.MF 0xc8338dba
META-INF/MYKEY.SF 0x451e7904
META-INF/MYKEY.RSA 0xce382410
AndroidManifest.xml 0xfe87c731
assets/ 0x0
assets/00001.jpg 0xd04007f0
assets/111.jpg 0xa45ace10
assets/11111.png 0xe4964b8f
assets/122.gif 0x230bdef0
assets/404.png 0x1516826d
assets/404plaque.png 0xa6b4de60
assets/X.png 0xfe11608b
assets/an.png 0x80475781
assets/anniu1.png 0x713a3ee5
assets/anniu2.png 0x2ba7c625
assets/anquanrenzheng.png 0x8e8fd995
assets/apk.apk 0x5800b0a7
assets/asd.jpg 0x356e5e93
assets/back.png 0x2d278eb2
assets/bg.png 0xbb40037e
assets/bg1.png 0x24418c9e
assets/book.png 0x16200938
assets/bull_z.png 0x1aa1ea7d
assets/caidan.png 0xf9a6e56c
assets/downbutton.png 0xd7c43a10
assets/download01.png 0x4ae04630
assets/download02.png 0xdc25e744
assets/dui.png 0xab48251d
assets/dui1.png 0x1c96ba24
assets/end.png 0xe1b1a7f3
assets/error.png 0xf62343f8
assets/fanhui.png 0x746e9b9b
assets/fenxiang.png 0xc3dc25e0
assets/fenxiang1.png 0x2a6c5116
assets/help.png 0x1daa71ab
assets/hongbao.png 0x7135e402
assets/hongbao1.png 0xfc1b6750
assets/hongse.png 0xae81d8d6
assets/huilv.png 0xc399f17e
assets/huise.png 0x649c70be
assets/id.png 0x8db041db
assets/index.html 0x9e04064c
assets/jiesuan.png 0x762c419e
assets/jilu.png 0x5fa5ef2f
assets/jinbi.png 0x287d37ec
assets/jinbi1.png 0xfcfcd069
assets/jpdata 0x3db6a81c
assets/kongjian.png 0x21c47168
assets/lanmu.png 0xaf3acdc9
assets/lanmu1.png 0x51a25915
assets/lanmu2.png 0xf78f1866
assets/lanmu2f.png 0xfece4cc4
assets/lanmu3.png 0xbb48b5ea
assets/lanmu3f.png 0x200fba42
assets/libjiagu.so 0x2cc8a022
assets/libjiagu_x86.so 0x70e57ad
assets/line.png 0x4d653619
assets/line_h.jpg 0x1e007156
assets/line_jf.jpg 0x321c3c1c
assets/lipin.png 0x61a26964
assets/lipin1.png 0x1481a664
assets/loading_logo.png 0x2b34ee2a
assets/logo.png 0x9634d558
assets/logo_qq.png 0x8fc0342d
assets/logo_qzone.png 0x941340b9
assets/logo_sinaweibo.png 0x2adb5572
assets/logo_wechat.png 0xf3ced6d8
assets/logo_wechatmoments.png 0x84d26167
assets/mpz.png 0xc53493c4
assets/openbutton.png 0x61542df9
assets/page_indicator_focused.png 0x8350bc2c
assets/page_indicator_unfocused.png 0x443e9026
assets/pengyouquan.png 0x58c7d02
assets/plaque_back.png 0xeea285d2
assets/plaque_bg.png 0xeb94617
assets/plaquebg.png 0xeb94617
assets/plaquewater.png 0xde45171d
assets/plus.png 0xa9f4f2e9
assets/punchbox.png 0x21cccb99
assets/qian.png 0x7013c6d7
assets/qian1.png 0x1deeb967
assets/qiandao.png 0xbf1e10f8
assets/qianjin.png 0xaa98fe7
assets/qq.png 0x45f13faf
assets/qqfangxing.png 0x8fc0342d
assets/qqhuang.png 0x394a01fd
assets/red_back.png 0x3739c23b
assets/reflectup.png 0xa5f349d0
assets/sanjiao.png 0xf6f9034a
assets/shou.png 0x9f69afb4
assets/shou1.png 0x4c4a6952
assets/shouqi.png 0xf2739c90
assets/sly.png 0xbc96b994
assets/srq.png 0x2ec43085
assets/ssz.png 0x25240186
assets/success.png 0x71fbc44c
assets/tb1.png 0x2cf139a2
assets/tg.png 0xf8d44b8e
assets/tip.png 0xfeccf90b
assets/touxiang.png 0x278ae9c2
assets/web404.html 0x9379ede1
assets/winads/offers/winad_banner.png 0xb361cebe
assets/winads/offers/winad_exit.png 0x80b12ad4
assets/winads/offers/winad_loading.png 0x7302917e
assets/winads/offers/winad_next.png 0x998423a6
assets/winads/offers/winad_next_off.png 0xc2186c1d
assets/winads/offers/winad_out.png 0xe7b09f4
assets/winads/offers/winad_preview.png 0x47afa47a
assets/winads/offers/winad_preview_off.png 0x80e3db2b
assets/winads/offers/winad_refresh.png 0x4ac9093b
assets/winads/offers/winad_window_background.9.png 0x91bd4cc2
assets/winads/offers/winad_window_btn_close.png 0xc193678e
assets/winads/offers/winad_window_num_bg.png 0x6e92e56a
assets/wo.png 0x46530c84
assets/wo1.png 0x352b629a
assets/wo2.png 0xd7025f83
assets/xd_01.png 0x7a2fa4cb
assets/xiazai.png 0xe7f43ea1
assets/xinlang.png 0x83f02529
assets/yback.png 0x2d278eb2
assets/yclose.png 0x967c890
assets/za1n.jpg 0xb7853e2c
assets/zan111.jpg 0x94f7b81f
assets/zan111111.jpg 0x4d446401
assets/zan1111111.jpg 0x211f0f83
assets/zan11111111.jpg 0xeff52f44
assets/zhan1.png 0x1b381b19
assets/zhankai.png 0x80d56ea5
assets/zhuan1.png 0x42232ca8
classes.dex 0x721e1964
lib/ 0x0
lib/armeabi/ 0x0
lib/armeabi/libjiagu_art.so 0x0
res/drawable/bg_bombbox.9.png 0x2353055a
res/drawable/btn_cancel.9.png 0xf0ed32af
res/drawable/btn_cancel_pressed.9.png 0x8a78b3d0
res/drawable/btn_cancel_selector.xml 0x2dba33cd
res/drawable/btn_ok_normal.9.png 0x2f43d695
res/drawable/btn_ok_pressed.9.png 0xd25ea88f
res/drawable/btn_ok_selector.xml 0xcd197f2e
res/drawable/dialog_bottom_bg.xml 0x626fef86
res/drawable/e4alistview_new_message.png 0x1cdc5409
res/drawable/icon.png 0xcee956a9
res/layout/mydialog.xml 0xa47131f2
res/layout/mydialog2.xml 0x62feec81
resources.arsc 0xe29c0953
运行截图
VirSCANVirSCAN
VirSCAN