分析任务

分析类型 虚拟机标签 开始时间 结束时间 持续时间
文件 (Windows) win7-sp1-x64-shaapp02-1 2024-04-18 11:28:42 2024-04-18 11:30:53 131 秒

魔盾分数

0.0

正常的

文件详细信息

文件名 classes.dex
文件大小 131608 字节
文件类型 Dalvik dex file version 035
MD5 2b51f17d615a90a06904132f523738f7
SHA1 7609099de6a4e9635b37e4039c007740046bdae2
SHA256 a10c1844baabc8bff444bc76fa6b1628580842780d680b54af125f9ed6ee2236
SHA512 a1877f4289d83b1a7a776046e43b6f5b9b7b85c97db7150147a702df53c075b293d93f67b97bd9f4a7e074c39792c195b2050fba7263981298d281c05816c8b9
CRC32 1ED74E55
Ssdeep 3072:goe1rLbPwUKUP5mWuglKJ/dPePUsu5vJU2gX29WtThF9JfPrPYdehgR:gn1rnPwUKUP5mfgS/dPe2BUniehF7DWj
Yara 登录查看Yara规则
找不到该样本 提交漏报

登录查看威胁特征

运行截图


访问主机纪录 (可点击查询WPING实时安全评级)

无主机纪录.

域名解析 (可点击查询WPING实时安全评级)

无域名信息.


摘要

登录查看详细行为信息
没有可用的静态分析.
bytes
bytes, read
%s-retry [timeout=%s]
%s-timeout-giveup [timeout=%s]
%s: %s
&fb_cookie_id=
&install_log_id=
&is_paying_user=0
&is_paying_user=1
&last_open_log_id=
&open_log_id=
&source=
&update_log_id=
(%-4d ms) %s
7()Ljava/util/Map<Ljava/lang/String;Ljava/lang/String;>;
(+%-4d) [%2d] %s
(ILjava/lang/String;Ljava/lang/String;Lo/rg7po4id4laqg940j82751cgr$nhr3d4pi59hj9o9c51409f542k<TT;>;Lo/rg7po4id4laqg940j82751cgr$ofgkpmadcg99ma5nc4kld68o5d;)V
(ILjava/lang/String;Lorg/json/JSONObject;Lo/rg7po4id4laqg940j82751cgr$nhr3d4pi59hj9o9c51409f542k<Lorg/json/JSONObject;>;Lo/rg7po4id4laqg940j82751cgr$ofgkpmadcg99ma5nc4kld68o5d;)V
=(I[BLjava/util/Map<Ljava/lang/String;Ljava/lang/String;>;ZJ)V
?(Landroid/content/Context;)Ljava/util/List<Ljava/lang/String;>;
_(Landroid/content/Context;)Lo/elmggpljk4ln4llhd7koe4kil9<Ljava/lang/Double;Ljava/lang/Double;>;
^(Landroid/content/Context;Ljava/lang/String;)Ljava/util/List<Lo/dhaleb734bfnam4ehe8chk4dlr5;>;
L(Ljava/io/InputStream;)Ljava/util/Map<Ljava/lang/String;Ljava/lang/String;>;
m(Ljava/lang/String;Ljava/util/HashMap<Ljava/lang/String;Ljava/lang/String;>;Lo/o23aef0cmh5erei38i4c9b6609g;)V
F(Ljava/lang/String;Ljava/util/List<Lo/dhaleb734bfnam4ehe8chk4dlr5;>;)V
J(Ljava/lang/String;Ljava/util/Map<Ljava/lang/String;Ljava/lang/String;>;)V
U(Ljava/lang/String;Lo/bfd3jfpr02bc3ca7i387fjc9368<*>;Lo/m2qqpg4bjfqb0jbi8qi02pp7bm;)V
(Ljava/lang/String;Lorg/json/JSONObject;Lo/rg7po4id4laqg940j82751cgr$nhr3d4pi59hj9o9c51409f542k<Lorg/json/JSONObject;>;Lo/rg7po4id4laqg940j82751cgr$ofgkpmadcg99ma5nc4kld68o5d;)V
A(Ljava/net/HttpURLConnection;Lo/bfd3jfpr02bc3ca7i387fjc9368<*>;)V
4(Ljava/util/List<Lo/ag2kijer16d5h7lp9lj1ph7ip8k;>;)V
8(Ljava/util/Map<Ljava/lang/String;Ljava/lang/String;>;)V
[(Ljava/util/Map<Ljava/lang/String;Ljava/lang/String;>;Ljava/lang/String;)Ljava/lang/String;
(Ljava/util/concurrent/BlockingQueue<Lo/bfd3jfpr02bc3ca7i387fjc9368<*>;>;Ljava/util/concurrent/BlockingQueue<Lo/bfd3jfpr02bc3ca7i387fjc9368<*>;>;Lo/nhr3d4pi59hj9o9c51409f542k;Lo/pike3fe5nicjoaq9qkrda2lo;)V
(Ljava/util/concurrent/BlockingQueue<Lo/bfd3jfpr02bc3ca7i387fjc9368<*>;>;Lo/j6dnrrrrr8q3f2pr7ei918o36qa;Lo/nhr3d4pi59hj9o9c51409f542k;Lo/pike3fe5nicjoaq9qkrda2lo;)V
C(Lo/bfd3jfpr02bc3ca7i387fjc9368<*>;)Lo/m4ra0d093hnkn04aihh338onbdf;
w(Lo/bfd3jfpr02bc3ca7i387fjc9368<*>;Ljava/util/Map<Ljava/lang/String;Ljava/lang/String;>;)Lorg/apache/http/HttpResponse;
C(Lo/bfd3jfpr02bc3ca7i387fjc9368<*>;Lo/m2qqpg4bjfqb0jbi8qi02pp7bm;)V
Y(Lo/bfd3jfpr02bc3ca7i387fjc9368<*>;Lo/rg7po4id4laqg940j82751cgr<*>;Ljava/lang/Runnable;)V
U(Lo/m4ra0d093hnkn04aihh338onbdf;)Lo/rg7po4id4laqg940j82751cgr<Lorg/json/JSONObject;>;
C(Lo/m4ra0d093hnkn04aihh338onbdf;)Lo/rg7po4id4laqg940j82751cgr<TT;>;
g(Lorg/apache/http/client/methods/HttpUriRequest;Ljava/util/Map<Ljava/lang/String;Ljava/lang/String;>;)V
(TA;TB;)V
(TT;)V
?(TT;Lo/nhr3d4pi59hj9o9c51409f542k$ofgkpmadcg99ma5nc4kld68o5d;)V
:([BLjava/util/Map<Ljava/lang/String;Ljava/lang/String;>;)V
P([Lorg/apache/http/Header;)Ljava/util/Map<Ljava/lang/String;Ljava/lang/String;>;
0123456789ABCDEF
<<A:Ljava/lang/Object;B:Ljava/lang/Object;>Ljava/lang/Object;
`<T:Ljava/lang/Object;>(Lo/bfd3jfpr02bc3ca7i387fjc9368<TT;>;)Lo/bfd3jfpr02bc3ca7i387fjc9368<TT;>;
=<T:Ljava/lang/Object;>(Lo/bfd3jfpr02bc3ca7i387fjc9368<TT;>;)V
(<T:Ljava/lang/Object;>Ljava/lang/Object;
d<T:Ljava/lang/Object;>Ljava/lang/Object;Ljava/lang/Comparable<Lo/bfd3jfpr02bc3ca7i387fjc9368<TT;>;>;
:<T:Ljava/lang/Object;>Lo/bfd3jfpr02bc3ca7i387fjc9368<TT;>;
<clinit>
<init>
<unknown>
AES/CBC/NoPadding
Bad URL
CASE_INSENSITIVE_ORDER
Cache-Control
Content-Type
Could not clean up file %s
4Could not delete cache entry for key=%s, filename=%s
8Could not retrieve response code from HttpUrlConnection.
DELETE
DIRECTORY_DOWNLOADS
DefaultLocale
7Dropping queued request because no MAT object was found
Empty string
+Error occured when calling consumingContent
Expected
Expires
Failed to write header for %s
HALF_UP
QHTTP response for request=<%s> [lifetime=%d], [size=%s], [rc=%d], [retryCount=%s]
HTTP_1_1
IMMEDIATE
If-Modified-Since
If-None-Match
LLDLLLLLLL
LLILI
LLLLLL
Landroid/accounts/Account;
!Landroid/accounts/AccountManager;
!Landroid/annotation/SuppressLint;
Landroid/app/Activity;
-Landroid/app/ActivityManager$RunningTaskInfo;
Landroid/app/ActivityManager;
Landroid/app/AlarmManager;
Landroid/app/PendingIntent;
Landroid/app/Service;
#Landroid/content/BroadcastReceiver;
Landroid/content/ComponentName;
!Landroid/content/ContentResolver;
Landroid/content/Context;
Landroid/content/Intent;
Landroid/content/IntentFilter;
*Landroid/content/SharedPreferences$Editor;
#Landroid/content/SharedPreferences;
!Landroid/content/pm/ActivityInfo;
$Landroid/content/pm/ApplicationInfo;
9Landroid/content/pm/PackageManager$NameNotFoundException;
#Landroid/content/pm/PackageManager;
Landroid/content/pm/ResolveInfo;
Landroid/content/res/Resources;
Landroid/database/Cursor;
Landroid/graphics/Bitmap;
Landroid/graphics/Point;
Landroid/location/Location;
"Landroid/location/LocationManager;
!Landroid/net/ConnectivityManager;
Landroid/net/NetworkInfo;
Landroid/net/TrafficStats;
Landroid/net/Uri;
Landroid/net/UrlQuerySanitizer;
$Landroid/net/http/AndroidHttpClient;
Landroid/net/wifi/WifiInfo;
Landroid/net/wifi/WifiManager;
Landroid/os/Build$VERSION;
Landroid/os/Build;
Landroid/os/Bundle;
Landroid/os/Environment;
Landroid/os/Handler;
Landroid/os/IBinder;
Landroid/os/Looper;
Landroid/os/Message;
Landroid/os/Process;
Landroid/os/SystemClock;
&Landroid/preference/PreferenceManager;
"Landroid/provider/Settings$Secure;
$Landroid/telephony/TelephonyManager;
Landroid/text/TextUtils;
Landroid/util/Base64;
Landroid/util/DisplayMetrics;
Landroid/util/Log;
Landroid/view/Display;
Landroid/view/WindowManager;
$Landroid/webkit/JavascriptInterface;
Landroid/webkit/WebSettings;
Landroid/webkit/WebView;
Landroid/webkit/WebViewClient;
Last-Modified
Lcom/flash/scrap/MainActivity;
"Lcom/wally/receivers/BootReceiver;
@Lcom/wally/receivers/InstallReceiver$ofgkpmadcg99ma5nc4kld68o5d;
%Lcom/wally/receivers/InstallReceiver;
"Ldalvik/annotation/EnclosingClass;
Ldalvik/annotation/InnerClass;
!Ldalvik/annotation/MemberClasses;
Ldalvik/annotation/Signature;
Ljava/io/BufferedInputStream;
Ljava/io/BufferedOutputStream;
Ljava/io/BufferedReader;
Ljava/io/ByteArrayOutputStream;
Ljava/io/DataOutputStream;
Ljava/io/EOFException;
Ljava/io/File;
Ljava/io/FileInputStream;
Ljava/io/FileOutputStream;
Ljava/io/FilterInputStream;
Ljava/io/IOException;
Ljava/io/InputStream;
Ljava/io/InputStreamReader;
Ljava/io/OutputStream;
Ljava/io/Reader;
Ljava/io/Serializable;
&Ljava/io/UnsupportedEncodingException;
Ljava/lang/Boolean;
Ljava/lang/CharSequence;
Ljava/lang/Character;
Ljava/lang/Class;
Ljava/lang/Comparable;
Ljava/lang/Deprecated;
Ljava/lang/Double;
Ljava/lang/Enum;
LLjava/lang/Enum<Lo/bfd3jfpr02bc3ca7i387fjc9368$ofgkpmadcg99ma5nc4kld68o5d;>;
1Ljava/lang/Enum<Lo/hqmj92fp40c7p21p73keq9ek6dq;>;
Ljava/lang/Exception;
Ljava/lang/Float;
!Ljava/lang/IllegalStateException;
%Ljava/lang/IndexOutOfBoundsException;
Ljava/lang/Integer;
Ljava/lang/InterruptedException;
Ljava/lang/Long;
Ljava/lang/Math;
&Ljava/lang/NegativeArraySizeException;
Ljava/lang/Object;
ILjava/lang/Object;Ljava/util/Comparator<Lo/dhaleb734bfnam4ehe8chk4dlr5;>;
,Ljava/lang/Object;Ljava/util/Comparator<[B>;
aLjava/lang/Object;Lo/rg7po4id4laqg940j82751cgr$nhr3d4pi59hj9o9c51409f542k<Lorg/json/JSONObject;>;
Ljava/lang/Runnable;
Ljava/lang/RuntimeException;
Ljava/lang/StackTraceElement;
Ljava/lang/String;
Ljava/lang/StringBuffer;
Ljava/lang/StringBuilder;
Ljava/lang/System;
Ljava/lang/Thread;
Ljava/lang/Throwable;
Ljava/lang/ref/WeakReference;
Ljava/lang/reflect/Field;
Ljava/lang/reflect/Method;
Ljava/math/BigDecimal;
Ljava/math/BigInteger;
Ljava/math/RoundingMode;
Ljava/net/HttpURLConnection;
Ljava/net/MalformedURLException;
!Ljava/net/SocketTimeoutException;
Ljava/net/URI;
Ljava/net/URL;
Ljava/net/URLConnection;
Ljava/net/URLDecoder;
Ljava/net/URLEncoder;
Ljava/security/Key;
Ljava/security/MessageDigest;
(Ljava/security/NoSuchAlgorithmException;
Ljava/security/SecureRandom;
+Ljava/security/spec/AlgorithmParameterSpec;
Ljava/util/ArrayList;
Ljava/util/Arrays;
Ljava/util/Collection;
Ljava/util/Collections;
Ljava/util/Comparator;
Ljava/util/Comparator<[B>;
Ljava/util/Date;
Ljava/util/HashMap;
:Ljava/util/HashMap<Ljava/lang/String;Ljava/lang/Integer;>;
Ljava/util/HashSet;
Ljava/util/Iterator;
Ljava/util/LinkedHashMap;
Ljava/util/LinkedList;
Ljava/util/List;
1Ljava/util/List<Lo/dhaleb734bfnam4ehe8chk4dlr5;>;
fLjava/util/List<Lo/h2dro8knr9in6e46h6cejf1io5$ofgkpmadcg99ma5nc4kld68o5d$ofgkpmadcg99ma5nc4kld68o5d;>;
0Ljava/util/List<Lo/nhr3d4pi59hj9o9c51409f542k;>;
Ljava/util/List<[B>;
Ljava/util/Locale;
Ljava/util/Map$Entry;
Ljava/util/Map;
5Ljava/util/Map<Ljava/lang/String;Ljava/lang/String;>;
XLjava/util/Map<Ljava/lang/String;Ljava/util/Queue<Lo/bfd3jfpr02bc3ca7i387fjc9368<*>;>;>;
]Ljava/util/Map<Ljava/lang/String;Lo/n59mq1k0b39flgf6fm27212505m$ofgkpmadcg99ma5nc4kld68o5d;>;
Ljava/util/Observable;
Ljava/util/Observer;
Ljava/util/Queue;
Ljava/util/Random;
Ljava/util/Set;
3Ljava/util/Set<Lo/bfd3jfpr02bc3ca7i387fjc9368<*>;>;
Ljava/util/TreeMap;
Ljava/util/UUID;
$Ljava/util/concurrent/BlockingQueue;
HLjava/util/concurrent/BlockingQueue<Lo/bfd3jfpr02bc3ca7i387fjc9368<*>;>;
(Ljava/util/concurrent/ConcurrentHashMap;
Ljava/util/concurrent/Executor;
Ljava/util/concurrent/Executors;
,Ljava/util/concurrent/PriorityBlockingQueue;
PLjava/util/concurrent/PriorityBlockingQueue<Lo/bfd3jfpr02bc3ca7i387fjc9368<*>;>;
/Ljava/util/concurrent/ScheduledExecutorService;
Ljava/util/concurrent/Semaphore;
+Ljava/util/concurrent/atomic/AtomicInteger;
Ljava/util/regex/Matcher;
Ljava/util/regex/Pattern;
Ljavax/crypto/Cipher;
%Ljavax/crypto/NoSuchPaddingException;
#Ljavax/crypto/spec/IvParameterSpec;
!Ljavax/crypto/spec/SecretKeySpec;
Ljavax/net/ssl/HostnameVerifier;
"Ljavax/net/ssl/HttpsURLConnection;
Ljavax/net/ssl/SSLContext;
Ljavax/net/ssl/SSLSession;
Ljavax/net/ssl/SSLSocketFactory;
Ljavax/net/ssl/X509TrustManager;
Lo/a436go6jci6i538mp17k1392m8o;
Lo/a6dg6kplcjge857kb5gdc7j0iep;
Lo/ag2kijer16d5h7lp9lj1ph7ip8k;
Lo/arbpl9hjabpdh81gap692n2m44e;
Lo/b0ek4hipp8qbc012da29gd549g;
Lo/b5lg6q3ph29o0qg1bgd20i87k9d;
6Lo/b5lg6q3ph29o0qg1bgd20i87k9d<Lorg/json/JSONObject;>;
Lo/b872fo6ke4c0cq9l6pegmb2k1k7;
Lo/bbqe15oqenc06nkageqmd9f4kf;
Lo/bd85ja5edngck54jc9r04r0mh0a;
:Lo/bfd3jfpr02bc3ca7i387fjc9368$ofgkpmadcg99ma5nc4kld68o5d;
Lo/bfd3jfpr02bc3ca7i387fjc9368;
Lo/bg9hc8ha88qj6rb9lkcr1nh8ib;
Lo/bgpc3o02gr5lp76ajh01becrmb;
Lo/bh82n57hhhblo97kgaoa3o6d5ba;
Lo/c0nfp2ahhkb0aop4h4ja0qhip55;
7Lo/ck76oomlf0ic1apg3rc83983$ofgkpmadcg99ma5nc4kld68o5d;
Lo/ck76oomlf0ic1apg3rc83983;
Lo/d8crqohi4cearq7neq0q8d801gh;
Lo/dbpebbrccl5ag6g2n68fi6051eb;
Lo/ddf9cna49o64or25e448jg2mb;
:Lo/dhaleb734bfnam4ehe8chk4dlr5$ofgkpmadcg99ma5nc4kld68o5d;
Lo/dhaleb734bfnam4ehe8chk4dlr5;
Lo/e9lmdhrooa2rhkj6hh8id58enf;
Lo/ehpm811gpbdaoa9a826q48gh19i;
Lo/ehr3l9ql31o4iqm2g2m5rh173;
Lo/elmggpljk4ln4llhd7koe4kil9;
Lo/f279c7lbcmli3fge0m0okjc6p3;
Lo/fg81np65rqpip8em10fjoo2r7ra;
Lo/fkg0jne4g21lh5he0pel0i;
Lo/fkj365gb2qndhnr0k7p020gqb2c;
Lo/fmh4gb3555o6p6c4cqp255ef6fb;
Lo/fod408o22hqqa7ocadh29q75fc;
Lo/g33eh9qbaio59hb006e1pp5j4em;
Lo/g8ooh9henmn6010j5qnbc04knf;
Lo/g9qkcmq23lg504pedc39kh0dd;
Lo/gadg31l6b4glkr3lq46f2jdcm5;
Lo/gdb644e10d496p4oghf6rdicfch;
Lo/gjc013dgdgm7l0agf9fb5npg4n;
Lo/gliifb5d20p0p6331nr48ln8bmo;
Lo/gneqn883om87qanqdanl25c1ql7;
Lo/go0931qap8on0jkq4bm60r8jaj;
TLo/h2dro8knr9in6e46h6cejf1io5$ofgkpmadcg99ma5nc4kld68o5d$ofgkpmadcg99ma5nc4kld68o5d;
9Lo/h2dro8knr9in6e46h6cejf1io5$ofgkpmadcg99ma5nc4kld68o5d;
Lo/h2dro8knr9in6e46h6cejf1io5;
Lo/h2oqqkjg85irknne91k7gc46qnn;
Lo/h4iol69i8ffap3ph7p2ge77d6rn;
Lo/hcpe74blco97230dbafhniqiqme;
Lo/hgi8k3jflfh4fa7fg8163b6opr;
Lo/hm4f00fpr482edrk91moh6loni;
Lo/hqmj92fp40c7p21p73keq9ek6dq;
Lo/i56afadd80767q29b3mjoihl;
9Lo/i93fl17257khfd2ad2lmd8l59b$ofgkpmadcg99ma5nc4kld68o5d;
Lo/i93fl17257khfd2ad2lmd8l59b;
Lo/iba9f1mr747mnam1kbcj02a0d3;
Lo/ih01k48bj1ilfh29c4fac1el;
Lo/in4pindli76q9p6f6fak94k0djh;
Lo/j0d9lh9okfqnkh62eo9m26q1h6;
Lo/j6dnrrrrr8q3f2pr7ei918o36qa;
Lo/j7pd21kj9k4kceb32j296fo58q;
Lo/jcpblfe88kb2k9ck78re6bjej47;
Lo/jiefn4c8r94p8drccpa459ljk6o;
Lo/kj4of6aaagmbf0merlgi574pc;
Lo/kk093lm8o7cconcahrhr0ca683f;
Lo/kpd6mm5e9d6ildeeam257m2oll1;
Lo/l5b9dmmncmqkee464orpld319p1;
Lo/l5odj1baj5f5o6jcqn7rcg50i5;
Lo/lfamfmb1oeg4a376cadrq3m5nrn;
Lo/ll46ordd1a9eod5kr4716i0aon2;
Lo/lo3hn1h53g6krf1rj02nh1jb3j;
Lo/m118c52ap39kk618l4b3g8hd78;
Lo/m2qqpg4bjfqb0jbi8qi02pp7bm;
Lo/m4ra0d093hnkn04aihh338onbdf;
Lo/men9l0jk2ao905h3nlo4jem43b;
Lo/merpa3277n7rj2m66jb378kcj;
Lo/mmc6rgajl24r4a3b2rq7691766p;
Lo/mr3miqkkqjg6034kdq2ho693gg1;
:Lo/n59mq1k0b39flgf6fm27212505m$nhr3d4pi59hj9o9c51409f542k;
:Lo/n59mq1k0b39flgf6fm27212505m$ofgkpmadcg99ma5nc4kld68o5d;
Lo/n59mq1k0b39flgf6fm27212505m;
9Lo/nhr3d4pi59hj9o9c51409f542k$ofgkpmadcg99ma5nc4kld68o5d;
Lo/nhr3d4pi59hj9o9c51409f542k;
Lo/nma9bjickij4eqqbpdlldr;
Lo/o23aef0cmh5erei38i4c9b6609g;
Lo/ofgkpmadcg99ma5nc4kld68o5d;
Lo/oh02l675e740n2j0kqc9368902k;
Lo/ojqlf5qerl3dqhf9laloco6qn;
Lo/p0k9krql792pq2e3c2rmcra4aj;
Lo/p53r6o2aqo2p0a0of4eo30pni2e;
Lo/p65bma9ecg572jjle1io82n8ri;
Lo/p96q2iji8349a9hbqe845nbm6o;
Lo/pike3fe5nicjoaq9qkrda2lo;
Lo/ppk4c7qhhhfgegkk86lrd1fo9g;
Lo/ppn0agdhjr3rp50odaa2erf;
Lo/pq6gbe1l0ph82cp2b81r5l53md5;
Lo/qa4qjm04jl29gd64kaqcrp97ed;
Lo/qomek9jkmb3bfdh5i6gl3h6hii;
Lo/qqr25666g7n8rkrq0gl4h4m7ao6;
Lo/re8c4nfkf8ahjd85lla6l6m37co;
8Lo/rg7po4id4laqg940j82751cgr$nhr3d4pi59hj9o9c51409f542k;
=Lo/rg7po4id4laqg940j82751cgr$nhr3d4pi59hj9o9c51409f542k<TT;>;
8Lo/rg7po4id4laqg940j82751cgr$ofgkpmadcg99ma5nc4kld68o5d;
Lo/rg7po4id4laqg940j82751cgr;
Lo/rma34idrr7i0hq9lor3ke7rm1ba;
Location
Lorg/apache/http/Header;
Lorg/apache/http/HttpEntity;
Lorg/apache/http/HttpResponse;
Lorg/apache/http/HttpVersion;
!Lorg/apache/http/ProtocolVersion;
Lorg/apache/http/StatusLine;
#Lorg/apache/http/client/HttpClient;
+Lorg/apache/http/client/methods/HttpDelete;
?Lorg/apache/http/client/methods/HttpEntityEnclosingRequestBase;
(Lorg/apache/http/client/methods/HttpGet;
)Lorg/apache/http/client/methods/HttpHead;
,Lorg/apache/http/client/methods/HttpOptions;
)Lorg/apache/http/client/methods/HttpPost;
(Lorg/apache/http/client/methods/HttpPut;
0Lorg/apache/http/client/methods/HttpRequestBase;
*Lorg/apache/http/client/methods/HttpTrace;
/Lorg/apache/http/client/methods/HttpUriRequest;
.Lorg/apache/http/conn/ClientConnectionManager;
.Lorg/apache/http/conn/ConnectTimeoutException;
0Lorg/apache/http/conn/scheme/PlainSocketFactory;
$Lorg/apache/http/conn/scheme/Scheme;
,Lorg/apache/http/conn/scheme/SchemeRegistry;
+Lorg/apache/http/conn/scheme/SocketFactory;
+Lorg/apache/http/conn/ssl/SSLSocketFactory;
(Lorg/apache/http/entity/BasicHttpEntity;
(Lorg/apache/http/entity/ByteArrayEntity;
%Lorg/apache/http/entity/StringEntity;
/Lorg/apache/http/impl/client/DefaultHttpClient;
=Lorg/apache/http/impl/conn/tsccm/ThreadSafeClientConnManager;
0Lorg/apache/http/impl/cookie/DateParseException;
'Lorg/apache/http/impl/cookie/DateUtils;
%Lorg/apache/http/message/BasicHeader;
+Lorg/apache/http/message/BasicHttpResponse;
)Lorg/apache/http/message/BasicStatusLine;
(Lorg/apache/http/params/BasicHttpParams;
-Lorg/apache/http/params/HttpConnectionParams;
#Lorg/apache/http/params/HttpParams;
+Lorg/apache/http/params/HttpProtocolParams;
Lorg/json/JSONArray;
Lorg/json/JSONException;
Lorg/json/JSONObject;
Lorg/json/JSONTokener;
MANUFACTURER
MODEL
Marker added to finished log
GMarker log finalized without finish() - uncaught exit point for request
MobileAppTracker
NORMAL
Null request skipped from queue
OPTIONS
PATCH
Pruning old cache entries.
RELEASE
.Releasing %d waiting requests for cacheKey=%s.
'Request at %s has been redirected to %s
Request completed with status
6Request for cacheKey=%s is in flight, putting on hold.
Request on the loose
<Request received 400 error from MAT server, won't be retried
Request:
SDK_INT
SHA-1
TRACE
UTF-8
Unable to create cache dir %s
"Unexpected response code %d for %s
Unhandled exception %s
Unknown method type.
Unknown request method.
AUnsupported Encoding while trying to get the bytes of %s using %s
VIJJL
VILLLL
VILLZJ
VLIIL
VLILII
VLILL
VLLLDLLLLLLLLLZ
VLLLL
VLLLLDLLLLLLLLLL
Volley
X-MAT-Responder
[%d] %s: %s
[Landroid/accounts/Account;
[Ljava/io/File;
[Ljava/lang/Class;
[Ljava/lang/Object;
[Ljava/lang/StackTraceElement;
[Ljava/lang/String;
%[Ljava/security/cert/X509Certificate;
[Ljavax/net/ssl/KeyManager;
[Ljavax/net/ssl/TrustManager;
;[Lo/bfd3jfpr02bc3ca7i387fjc9368$ofgkpmadcg99ma5nc4kld68o5d;
[Lo/hqmj92fp40c7p21p73keq9ek6dq;
[Lo/ppn0agdhjr3rp50odaa2erf;
[Lorg/apache/http/Header;
[encrypt]
a436go6jci6i538mp17k1392m8o
a6dg6kplcjge857kb5gdc7j0iep
accessFlags
acquire
action
activityInfo
add-to-queue
addAll
addFlags
addHeader
addJavascriptInterface
addObserver
addRequestProperty
after
altitude
android.content.Context
$android.net.conn.CONNECTIVITY_CHANGE
$android.permission.ACCESS_WIFI_STATE
#android.permission.READ_PHONE_STATE
android_id
android_id_md5
android_id_sha1
android_id_sha256
android_purchase_status
app_ad_tracking
append
application/json
application/json; charset=%s
0application/x-www-form-urlencoded; charset=UTF-8
arraycopy
asList
attribute_sub1
attribute_sub2
attribute_sub3
attribute_sub4
attribute_sub5
baseActivity
bfd3jfpr02bc3ca7i387fjc9368
binarySearch
booleanValue
cache-hit
cache-hit-expired
cache-hit-parsed
cache-hit-refresh-needed
cache-miss
cache-queue-take
charAt
charset
checkCallingOrSelfPermission
checkClientTrusted
checkServerTrusted
clone
close
commit
compare
compareTo
compile
connection
connection_type
connectivity
consumeContent
contains
containsKey
<content://com.facebook.katana.provider.AttributionIdProvider
conversion
count
create
currency
currentThread
currentTimeMillis
ddf9cna49o64or25e448jg2mb
decode
delete
density
destroy
digest
doFinal
doubleValue
elapsedRealtime
emptyMap
encode
encodeToString
entrySet
equals
event_attribute1
event_attribute2
event_attribute3
event_attribute4
event_attribute5
event_items
execute
exists
f279c7lbcmli3fge0m0okjc6p3
facebook_user_id
fillInStackTrace
finalize
finish
finishPath
flush
forName
format
formatDate
g8ooh9henmn6010j5qnbc04knf
gender
getAbsolutePath
getAcceptedIssuers
getAction
getActiveNetworkInfo
getAllHeaders
getApplicationContext
getApplicationInfo
getApplicationLabel
getBoolean
getBroadcast
getBytes
getCacheDir
getCause
getClass
getClassName
getColumnIndex
getConnectionInfo
getContent
getContentEncoding
getContentLength
getContentResolver
getContentType
getCountry
getDeclaredField
getDeclaredMethod
getDefault
getDefaultDisplay
getDefaultSharedPreferences
getDisplayLanguage
getDisplayMetrics
getDouble
getEntity
getErrorStream
!getExternalStoragePublicDirectory
getExtras
getField
getFirstHeader
getHeaderFields
getHeight
getHost
getId
getInputStream
getInstance
getInt
getIntExtra
getJSONArray
getJSONObject
getKey
getLastKnownLocation
getLatitude
getLocalizedMessage
getLong
getLongitude
getMacAddress
getMainLooper
getMessage
getMethod
getMethodName
getName
getNetworkCountryIso
getNetworkInfo
getNetworkOperator
getNetworkOperatorName
getOutputStream
getPackageManager
getPackageName
getParams
getProtocol
getProviders
getResources
getResponseCode
getResponseMessage
getRunningTasks
getSettings
getSharedPreferences
getSimCountryIso
getSize
getSocketFactory
getStackTrace
getStatusCode
getStatusLine
getString
getStringExtra
getSystemService
getTime
getType
getUserAgentString
getValue
getWidth
google_ad_tracking_disabled
google_aid
google_user_id
handleMessage
hasChanged
hasExtra
hasNext
hashCode
heF9BATUfWuISyO8
https
iap_data
iap_signature
incrementAndGet
intValue
intermediate-response
intern
interrupt
invoke
isConnected
isDirectory
isEmpty
isFile
isLoggable
isUpperCase
iterator
j6dnrrrrr8q3f2pr7ei918o36qa
j7pd21kj9k4kceb32j296fo58q
jiefn4c8r94p8drccpa459ljk6o
keySet
lastIndexOf
lastModified
latitude
length
listFiles
loadUrl
logId
log_id
longValue
longitude
m4ra0d093hnkn04aihh338onbdf
mat_fb_intent
mat_id
mat_is_paying_user
mat_log_id_install
mat_log_id_last_open
mat_log_id_open
mat_log_id_update
mat_queue
mat_referrer
matcher
max-age=
merpa3277n7rj2m66jb378kcj
mkdirs
mobile
mobile_country_code
mobile_network_code
moveToFirst
must-revalidate
myLooper
network-cache-written
network-http-complete
network-parse-complete
network-queue-take
newInstance
newSingleThreadScheduledExecutor
nhr3d4pi59hj9o9c51409f542k
nma9bjickij4eqqbpdlldr
no-cache
no-store
not-modified
notifyObservers
ofgkpmadcg99ma5nc4kld68o5d
onBind
onCreate
onPageFinished
onPageStarted
onReceive
onReceivedError
onStartCommand
openConnection
optBoolean
optInt
optString
ordinal
packageName
parse
parseDate
parseLong
phone
pike3fe5nicjoaq9qkrda2lo
post-error
post-response
postDelayed
ppk4c7qhhhfgegkk86lrd1fo9g
ppn0agdhjr3rp50odaa2erf
pq6gbe1l0ph82cp2b81r5l53md5
printStackTrace
proxy-revalidate
pruned %d files, %d bytes, %d ms
putAll
putBoolean
putExtra
putInt
putString
qa4qjm04jl29gd64kaqcrp97ed
query
queryIntentActivities
queuesize
randomUUID
readLine
redirect
ref_id
referral_source
referral_url
referrer
register
registerReceiver
release
remove
replace
revenue
rg7po4id4laqg940j82751cgr
run_date
screen_density
screen_layout_size
sendEmptyMessage
setAccessible
setBlockNetworkImage
setCacheMode
setComponentEnabledSetting
setConnectTimeout
setConnectionTimeout
setContent
setContentCharset
setContentEncoding
setContentLength
setContentType
setData
setDefaultHostnameVerifier
setDefaultSSLSocketFactory
setDoInput
setDoOutput
setEntity
setFlags
setHeader
setInexactRepeating
setJavaScriptEnabled
setLoadWithOverviewMode
setPackage
setPriority
setReadTimeout
setRequestMethod
setScale
setScrollBarStyle
setSoTimeout
setSocketBufferSize
setThreadPriority
setThreadStatsTag
setURI
setUseCaches
setUseWideViewPort
setVersion
setWebViewClient
setWifiEnabled
shouldOverrideUrlLoading
should_build_data
showHTML
shuffle
site_event_type
sleep
socket
sourceDir
split
stale-while-revalidate=
start
start new dispatcher
startActivity
startService
startsWith
stopLoading
stopSelf
store_iap_data
store_iap_signature
substring
success
toByteArray
toCharArray
toHexString
toLowerCase
toString
toUpperCase
twitter_user_id
unregisterReceiver
update
user_email
user_name
utf-8
value
valueOf
values
verify
volley
volley/0
window
write
<----
z;=<?--<x
<-xKKK
iKKKKL
<-----
;----
;----
KxLMZ<
w--Z-
<=Zi<
<-iKKKKKK
=iiiij
!@R1O
A%n Q
P2T@<
0!Up>
ooooooo
没有防病毒引擎扫描信息!

进程树


cmd.exe, PID: 2536, 上一级进程 PID: 2240
rundll32.exe, PID: 2768, 上一级进程 PID: 2536

访问主机纪录 (可点击查询WPING实时安全评级)

无主机纪录.

TCP

源地址 源端口 目标地址 目标端口
192.168.122.201 49160 184.50.27.11 80

UDP

源地址 源端口 目标地址 目标端口
192.168.122.201 63246 192.168.122.1 53

域名解析 (可点击查询WPING实时安全评级)

无域名信息.

TCP

源地址 源端口 目标地址 目标端口
192.168.122.201 49160 184.50.27.11 80

UDP

源地址 源端口 目标地址 目标端口
192.168.122.201 63246 192.168.122.1 53

HTTP 请求

URI HTTP数据
URL专业沙箱检测 -> http://acroipm.adobe.com/11/rdr/CHS/win/nooem/none/message.zip
GET /11/rdr/CHS/win/nooem/none/message.zip HTTP/1.1
Accept: */*
If-Modified-Since: Mon, 08 Nov 2017 08:44:36 GMT
User-Agent: IPM
Host: acroipm.adobe.com
Connection: Keep-Alive
Cache-Control: no-cache

SMTP 流量

无SMTP流量.

IRC 流量

无IRC请求.

ICMP 流量

无ICMP流量.

CIF 报告

无 CIF 结果

网络警报

无警报

TLS

No TLS

Suricata HTTP

No Suricata HTTP

未发现网络提取文件
抱歉! 没有任何文件投放。
没有发现相似的分析.
HTML 总结报告
(需15-60分钟同步)
下载

Processing ( 16.194 seconds )

  • 12.672 Suricata
  • 3.16 NetworkAnalysis
  • 0.267 TargetInfo
  • 0.071 BehaviorAnalysis
  • 0.011 Strings
  • 0.01 AnalysisInfo
  • 0.002 Memory
  • 0.001 Static

Signatures ( 1.419 seconds )

  • 1.315 proprietary_url_bl
  • 0.019 antiav_detectreg
  • 0.008 infostealer_ftp
  • 0.008 proprietary_domain_bl
  • 0.005 anomaly_persistence_autorun
  • 0.005 antiav_detectfile
  • 0.005 infostealer_im
  • 0.005 ransomware_files
  • 0.004 antianalysis_detectreg
  • 0.004 geodo_banking_trojan
  • 0.004 ransomware_extensions
  • 0.003 api_spamming
  • 0.003 stealth_timeout
  • 0.003 infostealer_bitcoin
  • 0.003 infostealer_mail
  • 0.003 network_http
  • 0.002 tinba_behavior
  • 0.002 stealth_decoy_document
  • 0.002 antivm_vbox_files
  • 0.002 disables_browser_warn
  • 0.001 rat_nanocore
  • 0.001 betabot_behavior
  • 0.001 kibex_behavior
  • 0.001 antivm_generic_scsi
  • 0.001 cerber_behavior
  • 0.001 antivm_parallels_keys
  • 0.001 antivm_xen_keys
  • 0.001 bot_drive
  • 0.001 bot_drive2
  • 0.001 browser_security
  • 0.001 modify_proxy
  • 0.001 proprietary_malicious_drop_executable_file_to_temp_folder
  • 0.001 proprietary_bad_drop
  • 0.001 network_cnc_http

Reporting ( 0.615 seconds )

  • 0.607 ReportHTMLSummary
  • 0.008 Malheur
Task ID 744074
Mongo ID 66209431dc327b654662326e
Cuckoo release 1.4-Maldun