分析类型 | 开始时间 | 结束时间 | 持续时间 |
---|---|---|---|
文件 (apk) | 2018-11-19 20:13:02 | 2018-11-19 20:18:10 | 308 秒 |
2018-11-19 20:13:56,271 [root] INFO: Starting analyzer from: /data/local/tmp/mzhpfad 2018-11-19 20:13:56,278 [root] INFO: Storing results at: /data/local/tmp/srlapbukxe 2018-11-19 20:13:56,281 [root] INFO: Target is: /data/local/tmp/___.apk 2018-11-19 20:13:56,284 [root] INFO: No analysis package specified, trying to detect it automagically 2018-11-19 20:13:56,287 [root] INFO: Automatically selected analysis package "apk" 2018-11-19 20:13:57,477 [root] INFO: Started auxiliary module FileCollector 2018-11-19 20:13:57,491 [root] INFO: Started auxiliary module Screenshots 2018-11-19 20:13:57,509 [root] INFO: Started auxiliary module TouchSimulator 2018-11-19 20:13:57,658 [root] INFO: installing sample on emulator: pm install /data/local/tmp/___.apk 2018-11-19 20:14:05,461 [root] INFO: Success 2018-11-19 20:14:05,467 [root] INFO: finished 2018-11-19 20:14:05,471 [root] INFO: executing sample on emulator:adb shell am start -n com.xianren.fuyuyo/com.uzmap.pkg.EntranceActivity 2018-11-19 20:18:07,222 [root] INFO: Analysis timeout hit, terminating analysis 2018-11-19 20:18:07,384 [root] INFO: Analysis completed
图标 | 应用程序包(Package) | 主活动(Main Activity) |
---|---|---|
com.xianren.fuyuyo |
com.uzmap.pkg.EntranceActivity |
文件名 | 仙人挂.apk |
---|---|
文件大小 | 2215967 字节 |
文件类型 | Zip archive data, at least v2.0 to extract |
MD5 | 83a0193fcb951f39f649fdcd80929b25 |
SHA1 | 94cf93168e0db1fa56d0bf4f1975bf96dace08ce |
SHA256 | 903ae1806fa0b9a48cbab7e6ef57e9fccd664023cd4fecbacec6f99ca4119085 |
SHA512 | 75e7b2d4219a6ec9f45ca1e18c72372109cf2922ea33e5eb15c56c4d74b48a571d81c2e69e677b22da86a0c050996c7cda208d338aad2a659e40ad7e795180aa |
CRC32 | 83F3800F |
Ssdeep | 49152:bSO0JSO0BJlDVTyhK3k5Vrf6WdF8DfRcU:mOPO49HA2WdF8LRz |
Yara | 无规则匹配 |
样本下载 |
android.permission.INTERNET | Allows an application to create network sockets. | |||||
android.permission.WRITE_EXTERNAL_STORAGE | Allows an application to write to the SD card. | |||||
android.permission.ACCESS_COARSE_LOCATION | Access coarse location sources, such as the mobile network database, to determine an approximate phone location, where available. Malicious applications can use this to determine approximately where you are. | |||||
android.permission.ACCESS_FINE_LOCATION | Access fine location sources, such as the Global Positioning System on the phone, where available. Malicious applications can use this to determine where you are and may consume additional battery power. | |||||
android.permission.ACCESS_MOCK_LOCATION | Create mock location sources for testing. Malicious applications can use this to override the location and/or status returned by real-location sources such as GPS or Network providers. | |||||
android.permission.CHANGE_WIFI_STATE | Allows an application to connect to and disconnect from Wi-Fi access points and to make changes to configured Wi-Fi networks. | |||||
android.permission.CAMERA | Allows application to take pictures and videos with the camera. This allows the application to collect images that the camera is seeing at any time. | |||||
android.permission.READ_PHONE_STATE | Allows the application to access the phone features of the device. An application with this permission can determine the phone number and serial number of this phone, whether a call is active, the number that call is connected to and so on. | |||||
android.permission.RECORD_AUDIO | Allows application to access the audio record path. | |||||
android.permission.BLUETOOTH_ADMIN | Allows an application to configure the local Bluetooth phone and to discover and pair with remote devices. | |||||
android.permission.BLUETOOTH | Allows an application to view configuration of the local Bluetooth phone and to make and accept connections with paired devices. | |||||
android.permission.WRITE_EXTERNAL_STORAGE | Allows an application to write to the SD card. | |||||
android.permission.INTERNET | Allows an application to create network sockets. |
AndroidManifest.xml |
md5:
369e176bb21c6b53aade6befe38c13fa type: Android binary XML name: AndroidManifest.xml size: 9752 |
lib/armeabi/libsec.so |
md5:
5fe631f4d55e85527369ea5c3879a7c1 type: ELF 32-bit LSB shared object, ARM, EABI5 version 1 (SYSV) name: lib/armeabi/libsec.so size: 30564 |
动态API调用 | getDeviceId() | |||||
动态API调用 | getNetworkOperator() | |||||
动态API调用 | getSimOperatorName() |
Receiver | UZMAP.MODULE.REC.GEO | |||||
Receiver | android.intent.action.CLOSE_SYSTEM_DIALOGS | |||||
Receiver | android.security.STORAGE_CHANGED | |||||
Receiver | UZMAP.UPUSH.MSM | |||||
Receiver | android.intent.action.PACKAGE_ADDED | |||||
Receiver | UZMAP.DOWNLOAD.COMPLETE | |||||
Receiver | android.intent.action.PACKAGE_REMOVED | |||||
Receiver | android.net.conn.CONNECTIVITY_CHANGE | |||||
Receiver | android.intent.action.PROXY_CHANGE | |||||
Receiver | UZMAP.UPUSH.MSM.AUTH | |||||
Receiver | UZMAP.UPUSH.MSG.ORDER | |||||
Receiver | UZMAP.NEED.REPORT.GEO |
动态API调用 | android.app.SharedPreferencesImpl_EditorImpl->apply | |||||
动态API调用 | ->values | |||||
动态API调用 | java.lang.Class->get |
未知 | xianrens.fuyuyo.com | |||||
灰名单 | res.yytou.cn |
灰名单 | 61.130.28.202 | |||||
灰名单 | 47.95.45.56 |
直接 | IP | 安全评级 | 地理位置 |
---|---|---|---|
否 | 61.130.28.202 | 中国 | |
否 | 58.220.40.132 | 中国 | |
否 | 47.95.45.56 | 中国 | |
否 | 180.163.150.252 | 中国 |
Package | com.xianren.fuyuyo |
---|---|
Main Activity | com.uzmap.pkg.EntranceActivity |
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 658975617 (0x27472b81)
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=(zh), ST=(Beijing), L=(Beijing), O=(819467064@qq.com), OU=(fuyuyo), CN=(fuyuyo)
Validity
Not Before: Nov 19 11:35:49 2018 GMT
Not After : Oct 26 11:35:49 2118 GMT
Subject: C=(zh), ST=(Beijing), L=(Beijing), O=(819467064@qq.com), OU=(fuyuyo), CN=(fuyuyo)
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (1024 bit)
Modulus:
00:e9:6c:3a:56:10:40:80:c5:40:01:5c:4e:50:93:
50:03:12:df:65:33:31:59:b3:64:44:3b:dc:46:3f:
77:b1:31:58:2c:69:c3:de:73:24:88:e6:4a:f6:dd:
e7:a0:07:c6:e5:39:26:82:26:18:96:98:b2:40:79:
a9:d4:08:ae:26:26:86:82:31:f4:1f:b2:a2:a8:31:
40:0b:20:e5:7e:c4:da:00:f5:84:28:6c:53:53:8a:
86:3e:ec:3b:f9:6d:a6:e4:a4:d6:31:e6:82:1d:61:
ec:64:15:5c:f3:14:c2:2e:a5:45:06:7c:4f:3c:02:
da:50:12:03:43:d9:44:45:61
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
0D:F7:40:A3:E2:17:00:15:13:AA:99:0D:69:2C:12:33:D3:3C:90:EC
Signature Algorithm: sha256WithRSAEncryption
35:c6:39:8e:82:f2:0f:19:09:90:2e:e8:61:91:fa:ff:e0:09:
a1:8e:07:61:bf:6f:df:3b:e6:4f:7f:7a:9e:ad:c3:03:fc:cd:
d1:0c:ec:4c:7e:4e:f0:88:14:8c:36:4a:a7:55:32:a8:14:18:
2d:a1:37:36:5e:b6:f0:e4:bb:bb:3e:76:41:97:eb:a4:ad:7f:
17:61:e1:e6:22:c5:04:dc:11:5e:3c:be:26:16:5c:50:24:da:
1e:cc:f2:4a:bd:cb:4f:09:2a:45:9d:85:ab:c4:48:0b:22:5b:
b2:ed:7d:84:a0:b7:fb:a2:03:c1:84:47:8e:02:d8:91:4d:45:
03:33
resources.arsc |
md5
9902322e0108a92e39ef7b20e3543e4f type data name resources.arsc size 1864 |
res/drawable-hdpi/uz_pull_down_refresh_arrow.png |
md5
331d76a39172df84dd3585af10a5a4e8 type PNG image data, 29 x 46, 8-bit colormap, non-interlaced name res/drawable-hdpi/uz_pull_down_refresh_arrow.png size 501 |
res/drawable-mdpi/uz_splash_bg.png |
md5
40bd59cc0c806981fdb38f1e6700695d type PNG image data, 480 x 800, 8-bit colormap, non-interlaced name res/drawable-mdpi/uz_splash_bg.png size 138271 |
META-INF/MANIFEST.MF |
md5
c721f06f373c0ab41598a0f878b3f6bc type ASCII text, with CRLF line terminators name META-INF/MANIFEST.MF size 2180 |
assets/widget/css/common.css |
md5
dd49abdc839a345ea9c1c6043f50563d type data name assets/widget/css/common.css size 718 |
res/drawable-xxhdpi/uz_splash_bg.png |
md5
8ba4ebc1946ec2d6548d9dc94505c3cb type PNG image data, 1080 x 1920, 8-bit colormap, non-interlaced name res/drawable-xxhdpi/uz_splash_bg.png size 665990 |
assets/widget/css/api.css |
md5
528434ed9e09ad5d94b3d63ea694568c type data name assets/widget/css/api.css size 1340 |
res/drawable-mdpi/uz_icon.png |
md5
76f5487e68be9b62645d79d5099d79c0 type PNG image data, 72 x 72, 8-bit/color RGB, non-interlaced name res/drawable-mdpi/uz_icon.png size 11769 |
assets/widget/error/error.html |
md5
943bdc6172a813f5dde4435ff2ca3028 type data name assets/widget/error/error.html size 3898 |
assets/widget/config.xml |
md5
03b13804ee6df9dbfdc15c00c735bb0b type data name assets/widget/config.xml size 425 |
res/drawable-xhdpi/uz_splash_bg.png |
md5
ec56edc365c09715293c8bfc79888939 type PNG image data, 720 x 1280, 8-bit colormap, non-interlaced name res/drawable-xhdpi/uz_splash_bg.png size 311911 |
META-INF/___.SF |
md5
7bf17043ff74e4ca8d5659891a5787b0 type ASCII text, with CRLF line terminators name META-INF/___.SF size 2301 |
res/drawable-hdpi/uz_icon.png |
md5
e108dee16f40b744d33931938e405ad0 type PNG image data, 96 x 96, 8-bit/color RGB, non-interlaced name res/drawable-hdpi/uz_icon.png size 20045 |
lib/armeabi/libsec.so |
md5
5fe631f4d55e85527369ea5c3879a7c1 type ELF 32-bit LSB shared object, ARM, EABI5 version 1 (SYSV) name lib/armeabi/libsec.so size 30564 |
assets/widget/image/set.png |
md5
3d7da0bef1eab7df38a4ab88146730bc type PNG image data, 31 x 30, 8-bit/color RGBA, non-interlaced name assets/widget/image/set.png size 438 |
assets/widget/image/loading.gif |
md5
72b9e4f3cc10fdf835d7ad3d9958f8c8 type GIF image data, version 89a, 65 x 65 name assets/widget/image/loading.gif size 6191 |
assets/widget/image/reload.png |
md5
caa84b12192c68e4ad9fcdad9435766b type PNG image data, 31 x 30, 8-bit/color RGBA, non-interlaced name assets/widget/image/reload.png size 494 |
assets/widget/image/logo.png |
md5
917f2ef14c151a2e22836b11f56babf4 type PNG image data, 229 x 223, 8-bit/color RGBA, non-interlaced name assets/widget/image/logo.png size 19047 |
assets/widget/script/api.js |
md5
4693807603405d15777df3cf2e0e7ebe type data name assets/widget/script/api.js size 17841 |
assets/widget/index.html |
md5
cc679ac6466511828508aac9dbbec6ad type data name assets/widget/index.html size 2460 |
android-support-multidex.version.txt |
md5
e086bcc3d9c2471e62b87d87ac9743d7 type ASCII text name android-support-multidex.version.txt size 91 |
res/drawable-xxhdpi/uz_icon.png |
md5
ad1434556f8074cc511bd30f90198c6a type PNG image data, 144 x 144, 8-bit/color RGB, non-interlaced name res/drawable-xxhdpi/uz_icon.png size 40273 |
classes.dex |
md5
a424f524bc4710d13186022ad1ead4cd type Dalvik dex file version 035 name classes.dex size 1910784 |
assets/uzmap/module.json |
md5
951403d8d76d36ff5062a42073defaf8 type ASCII text name assets/uzmap/module.json size 81 |
assets/widget/image/back.png |
md5
bc727c0e84b00c86916d3ac9cd13abc1 type PNG image data, 31 x 30, 8-bit/color RGBA, non-interlaced name assets/widget/image/back.png size 380 |
META-INF/___.RSA |
md5
85653bb6f3a54df81d7336b483cc27bf type data name META-INF/___.RSA size 1023 |
AndroidManifest.xml |
md5
369e176bb21c6b53aade6befe38c13fa type Android binary XML name AndroidManifest.xml size 9752 |
res/drawable-hdpi/uz_splash_bg.png |
md5
40bd59cc0c806981fdb38f1e6700695d type PNG image data, 480 x 800, 8-bit colormap, non-interlaced name res/drawable-hdpi/uz_splash_bg.png size 138271 |
res/drawable-xhdpi/uz_icon.png |
md5
cd112ee163f6e5590116bb17fa1567c9 type PNG image data, 114 x 114, 8-bit/color RGB, non-interlaced name res/drawable-xhdpi/uz_icon.png size 27590 |
键 | 值 |
/data/data/com.xianren.fuyuyo/shared_prefs/com.xianren.fuyuyo_preferences.xml |
/proc/meminfo |
/data/data/com.xianren.fuyuyo/shared_prefs/multidex.version.xml |
/data/data/com.xianren.fuyuyo/shared_prefs/UzAppStorage.xml |
/data/app/com.xianren.fuyuyo-1.apk |
getDeviceId |
getNetworkOperator |
getSimOperatorName |
android.app.SharedPreferencesImpl_EditorImpl->apply |
->values |
java.lang.Class->get |
UZMAP.MODULE.REC.GEO |
android.intent.action.CLOSE_SYSTEM_DIALOGS |
android.security.STORAGE_CHANGED |
UZMAP.UPUSH.MSM |
android.intent.action.PACKAGE_ADDED |
UZMAP.DOWNLOAD.COMPLETE |
android.intent.action.PACKAGE_REMOVED |
android.net.conn.CONNECTIVITY_CHANGE |
android.intent.action.PROXY_CHANGE |
UZMAP.UPUSH.MSM.AUTH |
UZMAP.UPUSH.MSG.ORDER |
UZMAP.NEED.REPORT.GEO |
debug.hwui.disable_vsync |
dalvik.vm.heapsize |
debug.hwui.print_config |
persist.sys.timezone |
debug.sqlite.journalmode |
gsm.sim.operator.alpha |
dalvik.vm.heapgrowthlimit |
gsm.sim.state |
debug.sqlite.syncmode |
gsm.operator.numeric |
qemu.hw.mainkeys |
debug.hwui.show_dirty_regions |
viewancestor.profile_rendering |
debug.hwui.profile |
Library Name:sec ,Library Path:/data/data/com.xianren.fuyuyo/lib/libsec.so |
直接 | IP | 安全评级 | 地理位置 |
---|---|---|---|
否 | 61.130.28.202 | 中国 | |
否 | 58.220.40.132 | 中国 | |
否 | 47.95.45.56 | 中国 | |
否 | 180.163.150.252 | 中国 |
源地址 | 源端口 | 目标地址 | 目标端口 |
---|---|---|---|
10.0.2.15 | 42227 | 180.163.150.252 | login.mobile.yytou.com | 80 |
10.0.2.15 | 60424 | 58.220.40.132 | xianrens.fuyuyo.com | 80 |
10.0.2.15 | 40053 | 61.130.28.202 | res.yytou.cn | 80 |
10.0.2.15 | 40054 | 61.130.28.202 | res.yytou.cn | 80 |
10.0.2.15 | 40055 | 61.130.28.202 | res.yytou.cn | 80 |
10.0.2.15 | 40056 | 61.130.28.202 | res.yytou.cn | 80 |
10.0.2.15 | 40057 | 61.130.28.202 | res.yytou.cn | 80 |
10.0.2.15 | 40058 | 61.130.28.202 | res.yytou.cn | 80 |
源地址 | 源端口 | 目标地址 | 目标端口 |
---|---|---|---|
10.0.2.15 | 1794 | 10.0.2.3 | 53 |
10.0.2.15 | 1921 | 10.0.2.3 | 53 |
10.0.2.15 | 3706 | 10.0.2.3 | 53 |
10.0.2.15 | 43601 | 10.0.2.3 | 53 |
10.0.2.15 | 54175 | 10.0.2.3 | 53 |
10.0.2.15 | 35915 | 209.58.185.100 | 123 |
URI | HTTP数据 |
---|---|
http://res.yytou.cn/site/login.mobile/images/bg.jpg | GET /site/login.mobile/images/bg.jpg HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/site/login.mobile/images/loading27.gif | GET /site/login.mobile/images/loading27.gif HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/site/login.mobile/js/login.js?v=15 | GET /site/login.mobile/js/login.js?v=15 HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 Accept: */* X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/site/login.mobile/images/eye1.png | GET /site/login.mobile/images/eye1.png HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/site/login.mobile/images/btn_nuber.png | GET /site/login.mobile/images/btn_nuber.png HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/site/login.mobile/images/btn_twitter.png | GET /site/login.mobile/images/btn_twitter.png HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/site/login.mobile/images/btn_login.png | GET /site/login.mobile/images/btn_login.png HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/site/login.mobile/images/switc1.gif | GET /site/login.mobile/images/switc1.gif HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/jslib/cookies.js?v=2 | GET /jslib/cookies.js?v=2 HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 Accept: */* X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/jslib/jsutil.js?v=6 | GET /jslib/jsutil.js?v=6 HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 Accept: */* X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/site/login.mobile/images/top.gif | GET /site/login.mobile/images/top.gif HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/site/login.mobile/js/floatmenu.js?v=3 | GET /site/login.mobile/js/floatmenu.js?v=3 HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 Accept: */* X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/site/login.mobile/images/btn_facebook.png | GET /site/login.mobile/images/btn_facebook.png HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://xianrens.fuyuyo.com/?area=7698202 | GET /?area=7698202 HTTP/1.1 Host: xianrens.fuyuyo.com Connection: keep-alive Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8 X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/jslib/jquery.md5.js | GET /jslib/jquery.md5.js HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 Accept: */* X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/site/login.mobile/js/util.js?v=10 | GET /site/login.mobile/js/util.js?v=10 HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 Accept: */* X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 | GET /yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 HTTP/1.1 Host: login.mobile.yytou.com Connection: keep-alive Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8 X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/site/login.mobile/css/global.css | GET /site/login.mobile/css/global.css HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 Accept: text/css,*/*;q=0.1 X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://login.mobile.yytou.com/yyCodeImg.do | GET /yyCodeImg.do HTTP/1.1 Host: login.mobile.yytou.com Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 Cookie: JSESSIONID=5E1BE436868BAB5BE0FFA4EC43DDAE5C; lang=zh |
http://res.yytou.cn/jslib/jquery.js | GET /jslib/jquery.js HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 Accept: */* X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/site/login.mobile/images/btn_loginz.png | GET /site/login.mobile/images/btn_loginz.png HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/site/login.mobile/images/more1.png | GET /site/login.mobile/images/more1.png HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
http://res.yytou.cn/site/login.mobile/images/switc2.gif | GET /site/login.mobile/images/switc2.gif HTTP/1.1 Host: res.yytou.cn Connection: keep-alive Referer: http://login.mobile.yytou.com/yyLogin.do?appid=113&platform=web&cid=NJaXpExStrPtUEux&ckey=4f4271cd457a1f0c86b1717c1bc625e2&wx_auto=y&lang=zh&return_uri=http%3A%2F%2Fxianrens.fuyuyo.com%2Fareas.do%3Farg%3D7698202%26jian%3D1 X-Requested-With: com.xianren.fuyuyo User-Agent: Mozilla/5.0 (Linux; U; Android 4.1.2; en-us; Nexus 5 Build/MASTER) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30 Accept-Encoding: gzip,deflate Accept-Language: en-US Accept-Charset: utf-8, iso-8859-1, utf-16, *;q=0.7 |
无ICMP流量.
无IRC请求.
请求 | 应答 |
---|---|
GET https://a.apicloud.com/AM_Service_API/StartupReport HTTP/1.1 |