温馨提示:本平台仅供研究软件风险、安全评估,禁止用于非法用途。由于展示的数据过于全面,请耐心等待加载完成。如有疑问或建议, 可加入我们的微信群讨论

APP评分

病毒检测 文件安全

安全评分

文件信息

文件名称 com.wrestle_universe v1.5.9.apk
文件大小 8.53MB
MD5 f54d72b4c719a58fefb479304b0f6a7e
SHA1 5817ffdbc7d9ee799f3e9df49467e9824f129299
SHA256 d2248bf5f8034d35959363bf21e508cbb12d25b8089444a4bf785b32945b5caf

应用信息

应用名称 WRESTLE UNIVERSE
包名 com.wrestle_universe
主活动 com.wrestle_universe.MainActivity
目标SDK 33     最小SDK 22
版本号 1.5.9     子版本号 44325
加固信息 未加壳

GooglePlay应用信息

标题 WRESTLE UNIVERSE
评分 4.64
安装 10,000+   次下载
价格 0
Android版本支持
分类 娱乐
Play 商店链接 com.wrestle_universe
开发者 CyberFight, Inc.
开发者 ID CyberFight,+Inc.
开发者 地址 None
开发者 主页 https://www.wrestle-universe.com/
开发者 Email support@wrestle-universe.com
发布日期 2022年2月23日
隐私政策 Privacy link

关于此应用
与《摔跤宇宙》一起沉浸在激动人心的氛围中!
享受各种摔跤组织的无限直播和点播流媒体!您一定会找到符合您风格的团体!
体验高品质、稳定的全高清职业摔跤视频流。

▼ 扩大阵容
无限制观看 DDT、NOAH、Tokyo Joshi Pro Wrestling、Ganbare☆Pro-Wrestling、Marigold、Sendai Girls' Pro Wrestling、Michinoku Pro Wrestling 和 ZERO1 的比赛!

▼ 随时观看过去的点播直播和错过的直播!
从我们丰富的阵容中发现您感兴趣的比赛!

▼ 评论功能
通过配备人工智能翻译的评论功能,与世界各地的职业摔跤迷一起享受刺激!

▼ Chromecast 支持
WRESTLE UNIVERSE 应用程序支持 Chromecast,让您可以在电视等大屏幕上观看。

▼ 申请优先门票!
WRESTLE UNIVERSE会员可以申请优先门票,更容易获得现场活动的好座位!

组件导出信息

扫描选项

重新扫描 管理规则 动态分析

反编译代码

Manifest文件 查看
APK文件 下载
Java源代码 查看 -- 下载

证书信息

二进制文件已签名
v1 签名: True
v2 签名: True
v3 签名: True
v4 签名: False
主题: C=US, ST=California, L=Mountain View, O=Google Inc., OU=Android, CN=Android
签名算法: rsassa_pkcs1v15
有效期自: 2022-02-01 01:28:25+00:00
有效期至: 2052-02-01 01:28:25+00:00
发行人: C=US, ST=California, L=Mountain View, O=Google Inc., OU=Android, CN=Android
序列号: 0x6956f165a02e37eb1e23a50c2773402e919053c5
哈希算法: sha256
证书MD5: 324fb2536c01ac0905ac6d9ee8bf3844
证书SHA1: 58e49f1b5e2b9216b5fd076f61a513d7bcf02b39
证书SHA256: 86cb61703cc6a6245a02cf836c7baa074e68c188cdb963d45f4a479544d53866
证书SHA512: 67d76de64d19dfd46b7af8c02743d409658d24d342a4cda29549e958dcff25c0720f2039d32519c0fcd7adbf3cb4271ea08a57be9079f2349b1d6f49da786983
公钥算法: rsa
密钥长度: 4096
指纹: b84caf28091a874955a441287278470cac55d69b9e76f676ab926f05e342534d
找到 1 个唯一证书

应用程序权限

权限名称 安全等级 权限内容 权限描述 关联代码
android.permission.INTERNET 危险 完全互联网访问 允许应用程序创建网络套接字。
android.permission.VIBRATE 普通 控制振动器 允许应用程序控制振动器,用于消息通知振动功能。
android.permission.WAKE_LOCK 危险 防止手机休眠 允许应用程序防止手机休眠,在手机屏幕关闭后后台进程仍然运行。
android.permission.ACCESS_NETWORK_STATE 普通 获取网络状态 允许应用程序查看所有网络的状态。
android.permission.POST_NOTIFICATIONS 危险 发送通知的运行时权限 允许应用发布通知,Android 13 引入的新权限。
android.permission.RECEIVE_BOOT_COMPLETED 普通 开机自启 允许应用程序在系统完成启动后即自行启动。这样会延长手机的启动时间,而且如果应用程序一直运行,会降低手机的整体速度。
android.permission.USE_FULL_SCREEN_INTENT 普通 全屏通知 Android 10以后的全屏 Intent 的通知。
android.permission.SCHEDULE_EXACT_ALARM 普通 精确的闹钟权限 允许应用程序使用准确的警报 API。
android.permission.BLUETOOTH 危险 创建蓝牙连接 允许应用程序查看或创建蓝牙连接。
android.permission.BLUETOOTH_ADMIN 危险 管理蓝牙 允许程序发现和配对新的蓝牙设备。
android.permission.BLUETOOTH_CONNECT 危险 新蓝牙运行时权限 Android 12 系统引入了新的运行时权限,需要能够连接到配对的蓝牙设备。
android.permission.FOREGROUND_SERVICE 普通 创建前台Service Android 9.0以上允许常规应用程序使用 Service.startForeground,用于podcast播放(推送悬浮播放,锁屏播放)
com.google.android.c2dm.permission.RECEIVE 普通 接收推送通知 允许应用程序接收来自云的推送通知。
com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE 普通 Google 定义的权限 由 Google 定义的自定义权限。
com.google.android.gms.permission.AD_ID 普通 应用程序显示广告 此应用程序使用 Google 广告 ID,并且可能会投放广告。
com.wrestle_universe.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION 未知 未知权限 来自 android 引用的未知权限。

证书分析

高危
0
警告
1
信息
1
标题 严重程度 描述信息
已签名应用 信息 应用程序已使用代码签名证书进行签名

MANIFEST分析

高危
0
警告
6
信息
0
屏蔽
0
序号 问题 严重程度 描述信息 操作
1 应用程序可以安装在有漏洞的已更新 Android 版本上
Android 5.1-5.1.1, [minSdk=22]
信息 该应用程序可以安装在具有多个未修复漏洞的旧版本 Android 上。这些设备不会从 Google 接收合理的安全更新。支持 Android 版本 => 10、API 29 以接收合理的安全更新。
2 Activity (com.google.android.gms.tagmanager.TagManagerPreviewActivity) 未被保护。
[android:exported=true]
警告 发现 Activity与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。
3 Broadcast Receiver (io.flutter.plugins.firebase.messaging.FlutterFirebaseMessagingReceiver) 受权限保护, 但是应该检查权限的保护级别。
Permission: com.google.android.c2dm.permission.SEND
[android:exported=true]
警告 发现一个 Broadcast Receiver被共享给了设备上的其他应用程序,因此让它可以被设备上的任何其他应用程序访问。它受到一个在分析的应用程序中没有定义的权限的保护。因此,应该在定义它的地方检查权限的保护级别。如果它被设置为普通或危险,一个恶意应用程序可以请求并获得这个权限,并与该组件交互。如果它被设置为签名,只有使用相同证书签名的应用程序才能获得这个权限。
4 Broadcast Receiver (com.google.firebase.iid.FirebaseInstanceIdReceiver) 受权限保护, 但是应该检查权限的保护级别。
Permission: com.google.android.c2dm.permission.SEND
[android:exported=true]
警告 发现一个 Broadcast Receiver被共享给了设备上的其他应用程序,因此让它可以被设备上的任何其他应用程序访问。它受到一个在分析的应用程序中没有定义的权限的保护。因此,应该在定义它的地方检查权限的保护级别。如果它被设置为普通或危险,一个恶意应用程序可以请求并获得这个权限,并与该组件交互。如果它被设置为签名,只有使用相同证书签名的应用程序才能获得这个权限。
5 Activity (com.google.firebase.auth.internal.GenericIdpActivity) 未被保护。
[android:exported=true]
警告 发现 Activity与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。
6 Activity (com.google.firebase.auth.internal.RecaptchaActivity) 未被保护。
[android:exported=true]
警告 发现 Activity与设备上的其他应用程序共享,因此可被设备上的任何其他应用程序访问。
7 Service (com.transistorsoft.tsbackgroundfetch.FetchJobService) 受权限保护, 但是应该检查权限的保护级别。
Permission: android.permission.BIND_JOB_SERVICE
[android:exported=true]
警告 发现一个 Service被共享给了设备上的其他应用程序,因此让它可以被设备上的任何其他应用程序访问。它受到一个在分析的应用程序中没有定义的权限的保护。因此,应该在定义它的地方检查权限的保护级别。如果它被设置为普通或危险,一个恶意应用程序可以请求并获得这个权限,并与该组件交互。如果它被设置为签名,只有使用相同证书签名的应用程序才能获得这个权限。

可浏览的ACTIVITIES

ACTIVITY INTENT
com.wrestle_universe.MainActivity Schemes: https://,
Hosts: @string/app_links_host, @string/dynamic_links_host,
Path Prefixes: /lives, /videos,
com.google.android.gms.tagmanager.TagManagerPreviewActivity Schemes: tagmanager.c.com.wrestle_universe://,
com.google.firebase.auth.internal.GenericIdpActivity Schemes: genericidp://,
Hosts: firebase.auth,
Paths: /,
com.google.firebase.auth.internal.RecaptchaActivity Schemes: recaptcha://,
Hosts: firebase.auth,
Paths: /,

网络安全配置

序号 范围 严重级别 描述

API调用分析

API功能 源码文件
一般功能-> IPC通信
A/AbstractBinderC0193a.java
A/AbstractBinderC0196d.java
A/C0195c.java
B0/C0554l.java
C/AbstractBinderC0588b.java
C/C0587a.java
C/C0592f.java
E/AbstractC0806b.java
E/c.java
E/d.java
K/e.java
K/h.java
K/k.java
K1/b.java
K1/c.java
O1/a.java
O1/c.java
S0/H.java
S0/I.java
T0/w.java
U/AbstractC1261a.java
U/j.java
U/p.java
W/C1284b.java
W/C1285c.java
W/d.java
W0/q.java
Z/C1.java
Z/C1357L.java
Z/C1364T.java
Z/C1382f0.java
Z/C1388i0.java
Z/C1389j.java
Z/C1406r0.java
Z/C1410t0.java
Z/C1422z0.java
Z/D1.java
Z/RunnableC0132b.java
Z/ServiceConnectionC1402p0.java
Z0/a.java
Z0/c.java
Z0/n.java
Z0/p.java
Z0/q.java
b/C0538a.java
b/b.java
b1/BinderC0569b.java
b1/C0571d.java
b1/p.java
b1/r.java
b1/s.java
com/dexterous/flutterlocalnotifications/ActionBroadcastReceiver.java
com/dexterous/flutterlocalnotifications/FlutterLocalNotificationsPlugin.java
com/dexterous/flutterlocalnotifications/ScheduledNotificationBootReceiver.java
com/dexterous/flutterlocalnotifications/ScheduledNotificationReceiver.java
com/dexterous/flutterlocalnotifications/e.java
com/dexterous/flutterlocalnotifications/models/NotificationDetails.java
com/pichillilorenzo/flutter_inappwebview/chrome_custom_tabs/ActionBroadcastReceiver.java
com/pichillilorenzo/flutter_inappwebview/chrome_custom_tabs/ChromeCustomTabsActivity.java
com/pichillilorenzo/flutter_inappwebview/chrome_custom_tabs/ChromeCustomTabsOptions.java
com/pichillilorenzo/flutter_inappwebview/chrome_custom_tabs/ChromeSafariBrowserManager.java
com/pichillilorenzo/flutter_inappwebview/chrome_custom_tabs/CustomTabsHelper.java
com/pichillilorenzo/flutter_inappwebview/chrome_custom_tabs/KeepAliveService.java
com/pichillilorenzo/flutter_inappwebview/chrome_custom_tabs/TrustedWebActivity.java
com/pichillilorenzo/flutter_inappwebview/in_app_browser/ActivityResultListener.java
com/pichillilorenzo/flutter_inappwebview/in_app_browser/InAppBrowserActivity.java
com/pichillilorenzo/flutter_inappwebview/in_app_browser/InAppBrowserManager.java
com/pichillilorenzo/flutter_inappwebview/in_app_webview/InAppWebViewChromeClient.java
com/pichillilorenzo/flutter_inappwebview/in_app_webview/ThreadedInputConnectionProxyAdapterView.java
com/transistorsoft/tsbackgroundfetch/BootReceiver.java
com/transistorsoft/tsbackgroundfetch/FetchAlarmReceiver.java
com/transistorsoft/tsbackgroundfetch/c.java
com/wrestle_universe/bunkyo/cast/CastOptionsProvider.java
dev/fluttercommunity/plus/share/SharePlusPendingIntent.java
e0/C0808b.java
j1/b.java
l/d.java
l/e.java
l1/d.java
n1/e.java
n1/g.java
w2/a.java
w2/b.java
y0/b.java
y0/d.java
y0/e.java
y0/g.java
y0/i.java
y0/j.java
隐私数据-> 获取已安装的应用程序
组件-> 启动 Service
一般功能-> 文件操作
B0/b.java
C0/C0007b.java
C0/C0008c.java
C0/C0012g.java
C0/H.java
C0/I.java
C0/N.java
C0/S.java
C0/Y.java
C0/r.java
D1/AbstractC0775B.java
D1/AbstractC0780b.java
D1/C0776C.java
D1/C0798u.java
D1/I.java
D1/T.java
D1/X.java
D1/b.java
D1/d.java
D1/e.java
D1/g0.java
D1/h0.java
D2/A.java
D2/C.java
D2/C0031a.java
D2/C0034d.java
D2/C0036f.java
D2/C0037g.java
D2/C0038h.java
D2/C0039i.java
D2/C0041k.java
D2/C0042l.java
D2/D.java
D2/E.java
D2/F.java
D2/H.java
D2/L.java
D2/m.java
D2/t.java
D2/u.java
D2/w.java
D2/x.java
D2/y.java
E2/b.java
E2/f.java
F0/C.java
F0/C0046d.java
F0/C0833I.java
F0/C0844i.java
F0/C0848m.java
F0/n.java
F0/v.java
F0/x.java
F1/C0862a.java
F1/h.java
F1/l.java
F2/a.java
G0/C0867a.java
G0/c.java
G0/d.java
G0/q.java
G0/r.java
G0/s.java
G0/v.java
G0/w.java
H1/g.java
H2/B.java
H2/C0048a.java
H2/C0049b.java
H2/d.java
H2/e.java
H2/f.java
H2/i.java
H2/m.java
H2/n.java
H2/o.java
H2/p.java
H2/q.java
H2/r.java
H2/u.java
H2/y.java
H2/z.java
J/C0066p.java
J/z.java
J0/C0928c.java
M/a.java
O/A.java
O0/C1015b.java
O0/C1019f.java
O0/C1020g.java
O0/f.java
P/q.java
R0/C1106n.java
S1/B.java
S1/i.java
S1/j.java
S1/k.java
S1/l.java
S1/m.java
S1/n.java
T1/C1248k.java
T1/u.java
T1/v.java
T1/w.java
U0/C1265d.java
U1/d.java
U1/m.java
V/e.java
V1/AbstractC1278B.java
V1/j.java
V1/o.java
V1/s.java
X1/C1298a.java
X1/C1299b.java
X1/C1300c.java
X1/i.java
X1/z.java
Y1/C1341k.java
Y1/l.java
Y1/m.java
Y1/n.java
Z/C0137c1.java
Z/C0154i0.java
Z/C0183v.java
Z/X0.java
Z1/a.java
Z1/b.java
a0/D.java
a0/I.java
a2/b.java
a2/c.java
a2/d.java
a2/e.java
a2/f.java
a2/g.java
a2/j.java
a2/o.java
b/a.java
b1/x.java
b2/g.java
b2/j.java
c1/h.java
c1/k.java
c2/C0610d.java
c2/a.java
c2/g.java
com/dexterous/flutterlocalnotifications/FlutterLocalNotificationsPlugin.java
com/dexterous/flutterlocalnotifications/e.java
com/dexterous/flutterlocalnotifications/f.java
com/dexterous/flutterlocalnotifications/h.java
com/dexterous/flutterlocalnotifications/models/MessageDetails.java
com/dexterous/flutterlocalnotifications/models/NotificationAction.java
com/dexterous/flutterlocalnotifications/models/NotificationChannelDetails.java
com/dexterous/flutterlocalnotifications/models/NotificationChannelGroupDetails.java
com/dexterous/flutterlocalnotifications/models/NotificationDetails.java
com/dexterous/flutterlocalnotifications/models/PersonDetails.java
com/dexterous/flutterlocalnotifications/models/Time.java
com/dexterous/flutterlocalnotifications/models/styles/StyleInformation.java
com/pichillilorenzo/flutter_inappwebview/InAppWebViewMethodHandler.java
com/pichillilorenzo/flutter_inappwebview/ServiceWorkerManager.java
com/pichillilorenzo/flutter_inappwebview/Util.java
com/pichillilorenzo/flutter_inappwebview/chrome_custom_tabs/ChromeSafariBrowserManager.java
com/pichillilorenzo/flutter_inappwebview/content_blocker/ContentBlockerHandler.java
com/pichillilorenzo/flutter_inappwebview/in_app_browser/InAppBrowserActivity.java
com/pichillilorenzo/flutter_inappwebview/in_app_browser/InAppBrowserManager.java
com/pichillilorenzo/flutter_inappwebview/in_app_webview/FlutterWebView.java
com/pichillilorenzo/flutter_inappwebview/in_app_webview/InAppWebView.java
com/pichillilorenzo/flutter_inappwebview/in_app_webview/InAppWebViewChromeClient.java
com/pichillilorenzo/flutter_inappwebview/in_app_webview/InAppWebViewClient.java
com/transistorsoft/flutter/backgroundfetch/e.java
com/transistorsoft/flutter/backgroundfetch/f.java
com/transistorsoft/tsbackgroundfetch/a.java
com/transistorsoft/tsbackgroundfetch/h.java
com/transistorsoft/tsbackgroundfetch/j.java
d0/C0754f.java
d0/C0771x.java
d0/HandlerC0751c.java
d0/W.java
d0/Y.java
e1/a.java
e1/e.java
j2/AbstractC0945f0.java
k0/g.java
l/a.java
m0/C0992d.java
n1/C1001a.java
n1/C1004d.java
n1/C1005e.java
n1/e.java
p0/C1038e.java
x2/E.java
x2/F.java
x2/G.java
x2/InterfaceC1309f.java
x2/L.java
x2/N.java
x2/u.java
y2/d.java
调用java反射机制
网络通信-> TCP套接字
一般功能-> 获取系统服务(getSystemService)
加密解密-> Crypto加解密组件
加密解密-> Base64 解密
网络通信-> 蓝牙连接 K/k.java
组件-> 启动 Activity
网络通信-> WebView JavaScript接口
网络通信-> WebView POST请求 com/pichillilorenzo/flutter_inappwebview/InAppWebViewMethodHandler.java
com/pichillilorenzo/flutter_inappwebview/in_app_webview/InAppWebView.java
com/pichillilorenzo/flutter_inappwebview/types/InAppWebViewInterface.java
网络通信-> WebView 相关
网络通信-> SSL证书处理
一般功能-> 获取活动网路信息 S0/H.java
U/t.java
l1/a.java
加密解密-> Base64 加密
加密解密-> 信息摘要算法
一般功能-> 查看\修改Android系统属性 S0/V.java
JavaScript 接口方法 com/pichillilorenzo/flutter_inappwebview/JavaScriptBridgeInterface.java
网络通信-> WebView GET请求
组件-> 发送广播 K1/b.java
进程操作-> 获取进程pid C0/C0018m.java
b1/C0576i.java
一般功能-> 设置手机铃声,媒体音量 Z/D1.java
隐私数据-> 屏幕截图,截取自己应用内部界面 J0/j.java

源代码分析

高危
2
警告
4
信息
1
安全
2
屏蔽
0
序号 问题 等级 参考标准 文件位置 操作
1 应用程序记录日志信息,不得记录敏感信息 信息 CWE: CWE-532: 通过日志文件的信息暴露
OWASP MASVS: MSTG-STORAGE-3
C0/C0018m.java
F1/h.java
K/e.java
K/h.java
K/i.java
K/k.java
K1/b.java
K1/c.java
Q/l.java
S0/C0114t.java
U/AbstractC1261a.java
W/d.java
Z/C1343A0.java
Z/C1357L.java
Z/C1361P.java
Z/C1366V.java
Z/C1379e.java
Z/C1385h.java
Z/C1387i.java
Z/C1388i0.java
Z/C1396m0.java
Z/HandlerC1377d.java
Z/HandlerC1394l0.java
Z/ServiceConnectionC1402p0.java
b1/C0576i.java
b2/g.java
com/dexterous/flutterlocalnotifications/ActionBroadcastReceiver.java
com/pichillilorenzo/flutter_inappwebview/JavaScriptBridgeInterface.java
com/pichillilorenzo/flutter_inappwebview/ServiceWorkerManager.java
com/pichillilorenzo/flutter_inappwebview/Util.java
com/pichillilorenzo/flutter_inappwebview/chrome_custom_tabs/CustomTabsHelper.java
com/pichillilorenzo/flutter_inappwebview/content_blocker/ContentBlockerHandler.java
com/pichillilorenzo/flutter_inappwebview/in_app_browser/InAppBrowserActivity.java
com/pichillilorenzo/flutter_inappwebview/in_app_browser/InAppBrowserManager.java
com/pichillilorenzo/flutter_inappwebview/in_app_webview/DisplayListenerProxy.java
com/pichillilorenzo/flutter_inappwebview/in_app_webview/FlutterWebView.java
com/pichillilorenzo/flutter_inappwebview/in_app_webview/InAppWebView.java
com/pichillilorenzo/flutter_inappwebview/in_app_webview/InAppWebViewChromeClient.java
com/pichillilorenzo/flutter_inappwebview/in_app_webview/InAppWebViewClient.java
com/pichillilorenzo/flutter_inappwebview/in_app_webview/InAppWebViewRenderProcessClient.java
com/pichillilorenzo/flutter_inappwebview/in_app_webview/InputAwareWebView.java
com/transistorsoft/flutter/backgroundfetch/HeadlessTask.java
com/transistorsoft/flutter/backgroundfetch/a.java
com/transistorsoft/tsbackgroundfetch/BootReceiver.java
com/transistorsoft/tsbackgroundfetch/FetchJobService.java
com/transistorsoft/tsbackgroundfetch/LifecycleManager.java
com/transistorsoft/tsbackgroundfetch/c.java
com/transistorsoft/tsbackgroundfetch/f.java
com/transistorsoft/tsbackgroundfetch/h.java
com/transistorsoft/tsbackgroundfetch/j.java
com/transistorsoft/tsbackgroundfetch/l.java
com/transistorsoft/tsbackgroundfetch/m.java
com/wrestle_universe/bunkyo/cast/CastEventDispatcher.java
com/wrestle_universe/bunkyo/cast/CustomMessageChannelHandler.java
com/wrestle_universe/bunkyo/player/PlayerPlugin.java
e1/a.java
e1/e.java
e1/f.java
j1/b.java
n1/C1001a.java
n1/C1003c.java
n1/C1005e.java
2 文件可能包含硬编码的敏感信息,如用户名、密码、密钥等 警告 CWE: CWE-312: 明文存储敏感信息
OWASP Top 10: M9: Reverse Engineering
OWASP MASVS: MSTG-STORAGE-14
com/dexterous/flutterlocalnotifications/FlutterLocalNotificationsPlugin.java
com/dexterous/flutterlocalnotifications/models/NotificationDetails.java
com/pichillilorenzo/flutter_inappwebview/credential_database/URLCredentialContract.java
3 应用程序使用不安全的随机数生成器 警告 CWE: CWE-330: 使用不充分的随机数
OWASP Top 10: M5: Insufficient Cryptography
OWASP MASVS: MSTG-CRYPTO-6
4 应用程序使用带PKCS5/PKCS7填充的加密模式CBC。此配置容易受到填充oracle攻击。 高危 CWE: CWE-649: 依赖于混淆或加密安全相关输入而不进行完整性检查
OWASP Top 10: M5: Insufficient Cryptography
OWASP MASVS: MSTG-CRYPTO-3
F0/C0043a.java
F1/h.java
5 应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库 警告 CWE: CWE-89: SQL命令中使用的特殊元素转义处理不恰当('SQL 注入')
OWASP Top 10: M7: Client Code Quality
6 此应用程序可能具有Root检测功能 安全
OWASP MASVS: MSTG-RESILIENCE-1
Z0/s.java
b1/u.java
7 如果一个应用程序使用WebView.loadDataWithBaseURL方法来加载一个网页到WebView,那么这个应用程序可能会遭受跨站脚本攻击 高危 CWE: CWE-79: 在Web页面生成时对输入的转义处理不恰当('跨站脚本')
OWASP Top 10: M1: Improper Platform Usage
OWASP MASVS: MSTG-PLATFORM-6
com/pichillilorenzo/flutter_inappwebview/InAppWebViewMethodHandler.java
com/pichillilorenzo/flutter_inappwebview/in_app_browser/InAppBrowserActivity.java
com/pichillilorenzo/flutter_inappwebview/in_app_webview/FlutterWebView.java
8 此应用程序使用SSL Pinning 来检测或防止安全通信通道中的MITM攻击 安全
OWASP MASVS: MSTG-NETWORK-4
x2/D.java
9 SHA-1是已知存在哈希冲突的弱哈希 警告 CWE: CWE-327: 使用已被攻破或存在风险的密码学算法
OWASP Top 10: M5: Insufficient Cryptography
OWASP MASVS: MSTG-CRYPTO-4
m1/a.java

动态库分析

No Shared Objects found.
序号 动态库 NX(堆栈禁止执行) STACK CANARY(栈保护) RELRO RPATH(指定SO搜索路径) RUNPATH(指定SO搜索路径) FORTIFY(常用函数加强检查) SYMBOLS STRIPPED(裁剪符号表)

文件分析

序号 问题 文件

VIRUSTOTAL扫描

  检出率: 0 / 64       完整报告

滥用权限

恶意软件常用权限 3/30
android.permission.VIBRATE
android.permission.WAKE_LOCK
android.permission.RECEIVE_BOOT_COMPLETED
其它常用权限 8/46
android.permission.INTERNET
android.permission.ACCESS_NETWORK_STATE
android.permission.BLUETOOTH
android.permission.BLUETOOTH_ADMIN
android.permission.FOREGROUND_SERVICE
com.google.android.c2dm.permission.RECEIVE
com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE
com.google.android.gms.permission.AD_ID

恶意软件常用权限 是被已知恶意软件广泛滥用的权限。
其它常用权限 是已知恶意软件经常滥用的权限。

IP地图

域名检测

域名 状态 中国境内 位置信息 解析
www.recaptcha.net 安全
IP地址: 180.163.151.162
国家: 中国
地区: 上海
城市: 上海
查看: 高德地图





exoplayer.dev 安全
IP地址: 180.163.150.34
国家: 美利坚合众国
地区: 宾夕法尼亚
城市: 加利福尼亚
查看: Google 地图





pagead2.googlesyndication.com 安全
IP地址: 172.217.14.66
国家: 美利坚合众国
地区: 华盛顿
城市: 西雅图
查看: Google 地图





www.wrestle-universe.com 安全
IP地址: 13.35.122.52
国家: 美利坚合众国
地区: 加利福尼亚
城市: 旧金山
查看: Google 地图





aomedia.org 安全
IP地址: 180.163.150.34
国家: 美利坚合众国
地区: 宾夕法尼亚
城市: 加利福尼亚
查看: Google 地图





default.url 安全
没有可用的地理位置信息。




goo.gl 安全
IP地址: 172.217.14.66
国家: 美利坚合众国
地区: 加利福尼亚
城市: 山景城
查看: Google 地图





app-measurement.com 安全
IP地址: 172.217.14.66
国家: 美利坚合众国
地区: 科罗拉多州
城市: 丹佛
查看: Google 地图





firebase-settings.crashlytics.com 安全
IP地址: 180.163.150.34
国家: 中国
地区: 上海
城市: 上海
查看: 高德地图





google.com 安全
IP地址: 172.217.14.66
国家: 美利坚合众国
地区: 加利福尼亚
城市: 山景城
查看: Google 地图





手机号码

手机号 源码文件
13222222222
l0/e.java

网址

网址信息 源码文件
https://default.url
d0/V.java
https://developer.apple.com/streaming/emsg-id3
https://aomedia.org/emsg/id3
U0/C1263b.java
https://play.google.com/store/apps/details?id=
j1/b.java
https://exoplayer.dev/issues/player-accessed-on-wrong-thread
Z/Y.java
https://%s/%s/%s
https://app-measurement.com/a
https://google.com/search?
https://www.recaptcha.net/recaptcha/api3/mwv
https://goo.gl/naoooi
https://pagead2.googlesyndication.com/pagead/gen_204?id=gmob-apps
https://developer.apple.com/streaming/emsg-id3
https://plus.google.com/
https://exoplayer.dev/issues/cleartext-not-permitted
https://firebase.google.com/docs/analytics
http://goo.gl/8rd3yj
www.wrestle-universe.com
https://www.recaptcha.net/recaptcha/api3/mlg
www.google.com
https://aomedia.org/emsg/id3
https://console.firebase.google.com
https://exoplayer.dev/issues/player-accessed-on-wrong-thread
https://firebase.google.com/support/guides/disable-analytics
https://default.url
https://firebase-settings.crashlytics.com/spi/v2/platforms/android/gmp/%s/settings
https://play.google.com/store/apps/details?id=
https://firebase.google.com/support/privacy/init-options
https://www.google.com
www.recaptcha.net
http://hostname/?
https://firebase.google.com/docs/crashlytics/get-started?platform=android#add-plugin
http://goo.gl/nafqqk
自研引擎-S

FIREBASE实例

邮箱

追踪器

名称 类别 网址
Google Analytics Analytics https://reports.exodus-privacy.eu.org/trackers/48
Google CrashLytics Crash reporting https://reports.exodus-privacy.eu.org/trackers/27
Google Firebase Analytics Analytics https://reports.exodus-privacy.eu.org/trackers/49
Google Tag Manager Analytics https://reports.exodus-privacy.eu.org/trackers/105

密钥凭证

已显示 7 个secrets
1、 "com.google.firebase.crashlytics.mapping_file_id" : "c72e1c39f75246c3a57477e6e3e13490"
2、 "google_api_key" : "AIzaSyDwH48-YJTxv-H20eNBSntvsFU7LiIblDk"
3、 "google_crash_reporting_api_key" : "AIzaSyDwH48-YJTxv-H20eNBSntvsFU7LiIblDk"
4、 VGhpcyBpcyB0aGUgcHJlZml4IGZvciBhIHNlY3VyZSBzdG9yYWdlCg
5、 VGhpcyBpcyB0aGUga2V5IGZvcihBIHNlY3XyZZBzdG9yYWdlIEFFUyBLZXkK
6、 edef8ba9-79d6-4ace-a3c8-27dcd51d21ed
7、 VGhpcyBpcyB0aGUga2V5IGZvciBhIHNlY3VyZSBzdG9yYWdlIEFFUyBLZXkK

字符串列表

建议导出为TXT,方便查看。

活动列表

已显示 12 个activities
1、 com.wrestle_universe.MainActivity
2、 com.google.android.gms.tagmanager.TagManagerPreviewActivity
3、 com.pichillilorenzo.flutter_inappwebview.in_app_browser.InAppBrowserActivity
4、 com.pichillilorenzo.flutter_inappwebview.chrome_custom_tabs.ChromeCustomTabsActivity
5、 com.pichillilorenzo.flutter_inappwebview.chrome_custom_tabs.TrustedWebActivity
6、 com.pichillilorenzo.flutter_inappwebview.chrome_custom_tabs.ChromeCustomTabsActivitySingleInstance
7、 com.pichillilorenzo.flutter_inappwebview.chrome_custom_tabs.TrustedWebActivitySingleInstance
8、 io.flutter.plugins.urllauncher.WebViewActivity
9、 com.google.firebase.auth.internal.GenericIdpActivity
10、 com.google.firebase.auth.internal.RecaptchaActivity
11、 com.google.android.gms.common.api.GoogleApiActivity
12、 com.google.android.play.core.common.PlayCoreDialogWrapperActivity

服务列表

已显示 12 个services
1、 io.flutter.plugins.firebase.messaging.FlutterFirebaseMessagingBackgroundService
2、 io.flutter.plugins.firebase.messaging.FlutterFirebaseMessagingService
3、 com.google.firebase.components.ComponentDiscoveryService
4、 com.google.android.gms.cast.framework.media.MediaNotificationService
5、 com.google.android.gms.cast.framework.ReconnectionService
6、 com.google.android.gms.tagmanager.TagManagerService
7、 com.google.android.gms.measurement.AppMeasurementService
8、 com.google.android.gms.measurement.AppMeasurementJobService
9、 com.google.firebase.messaging.FirebaseMessagingService
10、 com.google.android.datatransport.runtime.backends.TransportBackendDiscovery
11、 com.google.android.datatransport.runtime.scheduling.jobscheduling.JobInfoSchedulerService
12、 com.transistorsoft.tsbackgroundfetch.FetchJobService

广播接收者列表

已显示 12 个receivers
1、 io.flutter.plugins.firebase.messaging.FlutterFirebaseMessagingReceiver
2、 com.dexterous.flutterlocalnotifications.ActionBroadcastReceiver
3、 com.dexterous.flutterlocalnotifications.ScheduledNotificationReceiver
4、 com.dexterous.flutterlocalnotifications.ScheduledNotificationBootReceiver
5、 com.pichillilorenzo.flutter_inappwebview.chrome_custom_tabs.ActionBroadcastReceiver
6、 dev.fluttercommunity.plus.share.SharePlusPendingIntent
7、 com.google.android.gms.cast.framework.media.MediaIntentReceiver
8、 com.google.android.gms.measurement.AppMeasurementReceiver
9、 com.google.firebase.iid.FirebaseInstanceIdReceiver
10、 com.google.android.datatransport.runtime.scheduling.jobscheduling.AlarmManagerSchedulerBroadcastReceiver
11、 com.transistorsoft.tsbackgroundfetch.FetchAlarmReceiver
12、 com.transistorsoft.tsbackgroundfetch.BootReceiver

内容提供者列表

已显示 4 个providers
1、 io.flutter.plugins.firebase.messaging.FlutterFirebaseMessagingInitProvider
2、 dev.fluttercommunity.plus.share.ShareFileProvider
3、 com.google.firebase.provider.FirebaseInitProvider
4、 androidx.startup.InitializationProvider

第三方SDK

SDK名称 开发者 描述信息
Google Play Service Google 借助 Google Play 服务,您的应用可以利用由 Google 提供的最新功能,例如地图,Google+ 等,并通过 Google Play 商店以 APK 的形式分发自动平台更新。 这样一来,您的用户可以更快地接收更新,并且可以更轻松地集成 Google 必须提供的最新信息。
Jetpack App Startup Google App Startup 库提供了一种直接,高效的方法来在应用程序启动时初始化组件。库开发人员和应用程序开发人员都可以使用 App Startup 来简化启动顺序并显式设置初始化顺序。App Startup 允许您定义共享单个内容提供程序的组件初始化程序,而不必为需要初始化的每个组件定义单独的内容提供程序。这可以大大缩短应用启动时间。
Firebase Google Firebase 提供了分析、数据库、消息传递和崩溃报告等功能,可助您快速采取行动并专注于您的用户。
Google Cast Google 使用 Google Cast SDK,您可以扩展 Android,iOS 或 Chrome 应用,以将其流式视频和音频定向到电视或声音系统。 您的应用程序成为播放,暂停,搜索,倒带,停止和控制媒体的遥控器。
Firebase Analytics Google Google Analytics(分析)是一款免费的应用衡量解决方案,可提供关于应用使用情况和用户互动度的分析数据。

文件列表

AndroidManifest.xml
DebugProbesKt.bin
META-INF/androidx.activity_activity.version
META-INF/androidx.annotation_annotation-experimental.version
META-INF/androidx.appcompat_appcompat-resources.version
META-INF/androidx.appcompat_appcompat.version
META-INF/androidx.arch.core_core-runtime.version
META-INF/androidx.browser_browser.version
META-INF/androidx.core_core-ktx.version
META-INF/androidx.core_core.version
META-INF/androidx.cursoradapter_cursoradapter.version
META-INF/androidx.customview_customview.version
META-INF/androidx.documentfile_documentfile.version
META-INF/androidx.drawerlayout_drawerlayout.version
META-INF/androidx.emoji2_emoji2-views-helper.version
META-INF/androidx.emoji2_emoji2.version
META-INF/androidx.fragment_fragment.version
META-INF/androidx.interpolator_interpolator.version
META-INF/androidx.legacy_legacy-support-core-utils.version
META-INF/androidx.lifecycle_lifecycle-extensions.version
META-INF/androidx.lifecycle_lifecycle-livedata-core.version
META-INF/androidx.lifecycle_lifecycle-livedata.version
META-INF/androidx.lifecycle_lifecycle-process.version
META-INF/androidx.lifecycle_lifecycle-runtime.version
META-INF/androidx.lifecycle_lifecycle-service.version
META-INF/androidx.lifecycle_lifecycle-viewmodel-savedstate.version
META-INF/androidx.lifecycle_lifecycle-viewmodel.version
META-INF/androidx.loader_loader.version
META-INF/androidx.localbroadcastmanager_localbroadcastmanager.version
META-INF/androidx.media_media.version
META-INF/androidx.mediarouter_mediarouter.version
META-INF/androidx.palette_palette.version
META-INF/androidx.print_print.version
META-INF/androidx.recyclerview_recyclerview.version
META-INF/androidx.savedstate_savedstate.version
META-INF/androidx.security_security-crypto.version
META-INF/androidx.startup_startup-runtime.version
META-INF/androidx.swiperefreshlayout_swiperefreshlayout.version
META-INF/androidx.tracing_tracing.version
META-INF/androidx.vectordrawable_vectordrawable-animated.version
META-INF/androidx.vectordrawable_vectordrawable.version
META-INF/androidx.versionedparcelable_versionedparcelable.version
META-INF/androidx.viewpager_viewpager.version
META-INF/androidx.webkit_webkit.version
META-INF/androidx.window_window-java.version
META-INF/androidx.window_window.version
META-INF/com/android/build/gradle/app-metadata.properties
META-INF/com.google.dagger_dagger.version
META-INF/kotlinx_coroutines_android.version
META-INF/kotlinx_coroutines_core.version
META-INF/kotlinx_coroutines_play_services.version
META-INF/services/com.google.protobuf.GeneratedExtensionRegistryLoader
META-INF/services/j2.C
META-INF/services/kotlinx.coroutines.internal.p
assets/containers/GTM-WPBTJ2W.json
assets/dexopt/baseline.prof
assets/dexopt/baseline.profm
assets/flutter_assets/AssetManifest.json
assets/flutter_assets/FontManifest.json
assets/flutter_assets/NOTICES.Z
assets/flutter_assets/assets/animation/back.json
assets/flutter_assets/assets/animation/forward.json
assets/flutter_assets/assets/animation/splash.json
assets/flutter_assets/assets/animation/splash_fix.json
assets/flutter_assets/assets/animation/wu_card.json
assets/flutter_assets/assets/fonts/NotoSansCJKjp-Bold.otf
assets/flutter_assets/assets/fonts/NotoSansCJKjp-Regular.otf
assets/flutter_assets/assets/icon/add.svg
assets/flutter_assets/assets/icon/alerm_clock.svg
assets/flutter_assets/assets/icon/alert.svg
assets/flutter_assets/assets/icon/arrow_down.svg
assets/flutter_assets/assets/icon/arrow_return.svg
assets/flutter_assets/assets/icon/attention.svg
assets/flutter_assets/assets/icon/back_10sec.svg
assets/flutter_assets/assets/icon/block.svg
assets/flutter_assets/assets/icon/bubble_bump_bottom.svg
assets/flutter_assets/assets/icon/bubble_bump_top.svg
assets/flutter_assets/assets/icon/calendar.svg
assets/flutter_assets/assets/icon/calendar_fill.svg
assets/flutter_assets/assets/icon/cast_tv.svg
assets/flutter_assets/assets/icon/chapter_back.svg
assets/flutter_assets/assets/icon/chapter_forward.svg
assets/flutter_assets/assets/icon/check.svg
assets/flutter_assets/assets/icon/check_off.svg
assets/flutter_assets/assets/icon/check_on.svg
assets/flutter_assets/assets/icon/close.svg
assets/flutter_assets/assets/icon/close_modal.svg
assets/flutter_assets/assets/icon/comment.svg
assets/flutter_assets/assets/icon/copy.svg
assets/flutter_assets/assets/icon/eye_off.svg
assets/flutter_assets/assets/icon/eye_on.svg
assets/flutter_assets/assets/icon/faq.svg
assets/flutter_assets/assets/icon/filter.svg
assets/flutter_assets/assets/icon/forward_10sec.svg
assets/flutter_assets/assets/icon/history.svg
assets/flutter_assets/assets/icon/home.svg
assets/flutter_assets/assets/icon/home_fill.svg
assets/flutter_assets/assets/icon/index.svg
assets/flutter_assets/assets/icon/info.svg
assets/flutter_assets/assets/icon/lang_eng.svg
assets/flutter_assets/assets/icon/lang_multi.svg
assets/flutter_assets/assets/icon/language_english.svg
assets/flutter_assets/assets/icon/left_arrow.svg
assets/flutter_assets/assets/icon/link.svg
assets/flutter_assets/assets/icon/love.svg
assets/flutter_assets/assets/icon/love_fill.svg
assets/flutter_assets/assets/icon/mail.svg
assets/flutter_assets/assets/icon/menu_vertical.svg
assets/flutter_assets/assets/icon/mypage.svg
assets/flutter_assets/assets/icon/mypage_fill.svg
assets/flutter_assets/assets/icon/notification_fill.svg
assets/flutter_assets/assets/icon/notification_off.svg
assets/flutter_assets/assets/icon/notification_on.svg
assets/flutter_assets/assets/icon/open_pulldown.svg
assets/flutter_assets/assets/icon/order.svg
assets/flutter_assets/assets/icon/p_in_p.svg
assets/flutter_assets/assets/icon/pause_circle.svg
assets/flutter_assets/assets/icon/plan.svg
assets/flutter_assets/assets/icon/play_circle.svg
assets/flutter_assets/assets/icon/player_full.svg
assets/flutter_assets/assets/icon/player_min.svg
assets/flutter_assets/assets/icon/player_pause.svg
assets/flutter_assets/assets/icon/player_play.svg
assets/flutter_assets/assets/icon/pull_down.svg
assets/flutter_assets/assets/icon/purchased.svg
assets/flutter_assets/assets/icon/quality.svg
assets/flutter_assets/assets/icon/radio_off.svg
assets/flutter_assets/assets/icon/radio_on.svg
assets/flutter_assets/assets/icon/radio_red_off.svg
assets/flutter_assets/assets/icon/radio_red_on.svg
assets/flutter_assets/assets/icon/right_arrow.svg
assets/flutter_assets/assets/icon/right_arrow_fill.svg
assets/flutter_assets/assets/icon/search.svg
assets/flutter_assets/assets/icon/search_fill.svg
assets/flutter_assets/assets/icon/seting_b.svg
assets/flutter_assets/assets/icon/share.svg
assets/flutter_assets/assets/icon/shop.svg
assets/flutter_assets/assets/icon/ticket.svg
assets/flutter_assets/assets/icon/trash.svg
assets/flutter_assets/assets/image/app/icon.webp
assets/flutter_assets/assets/image/artist_background/landscape/ddt.webp
assets/flutter_assets/assets/image/artist_background/landscape/ganpro.webp
assets/flutter_assets/assets/image/artist_background/landscape/noah.webp
assets/flutter_assets/assets/image/artist_background/landscape/tjpw.webp
assets/flutter_assets/assets/image/artist_background/portrait/ddt.webp
assets/flutter_assets/assets/image/artist_background/portrait/ganpro.webp
assets/flutter_assets/assets/image/artist_background/portrait/noah.webp
assets/flutter_assets/assets/image/artist_background/portrait/tjpw.webp
assets/flutter_assets/assets/image/dummy/artist/large.webp
assets/flutter_assets/assets/image/dummy/artist/small.webp
assets/flutter_assets/assets/image/dummy/thumbnail/landscape/ddt.svg
assets/flutter_assets/assets/image/dummy/thumbnail/landscape/ganpro.svg
assets/flutter_assets/assets/image/dummy/thumbnail/landscape/noah.svg
assets/flutter_assets/assets/image/dummy/thumbnail/landscape/tjpw.svg
assets/flutter_assets/assets/image/dummy/thumbnail/landscape/wu.svg
assets/flutter_assets/assets/image/dummy/thumbnail/portrait/ddt.svg
assets/flutter_assets/assets/image/dummy/thumbnail/portrait/ganpro.svg
assets/flutter_assets/assets/image/dummy/thumbnail/portrait/noah.svg
assets/flutter_assets/assets/image/dummy/thumbnail/portrait/tjpw.svg
assets/flutter_assets/assets/image/dummy/thumbnail/portrait/wu.svg
assets/flutter_assets/assets/image/ec_banner/noah_bg_mobile.webp
assets/flutter_assets/assets/image/ec_banner/noah_bg_tablet.webp
assets/flutter_assets/assets/image/ec_banner/noah_part_rectangle.svg
assets/flutter_assets/assets/image/label/event_state/archive_large.svg
assets/flutter_assets/assets/image/label/event_state/archive_medium.svg
assets/flutter_assets/assets/image/label/event_state/archive_small.svg
assets/flutter_assets/assets/image/label/event_state/coming_large.svg
assets/flutter_assets/assets/image/label/event_state/coming_medium.svg
assets/flutter_assets/assets/image/label/event_state/coming_small.svg
assets/flutter_assets/assets/image/label/event_state/live_large.svg
assets/flutter_assets/assets/image/label/event_state/live_medium.svg
assets/flutter_assets/assets/image/label/event_state/live_small.svg
assets/flutter_assets/assets/image/label/free_large.svg
assets/flutter_assets/assets/image/label/free_medium.svg
assets/flutter_assets/assets/image/label/free_small.svg
assets/flutter_assets/assets/image/label/group/ddt_large.svg
assets/flutter_assets/assets/image/label/group/ddt_medium.svg
assets/flutter_assets/assets/image/label/group/ddt_small.svg
assets/flutter_assets/assets/image/label/group/ganpro_large.svg
assets/flutter_assets/assets/image/label/group/ganpro_medium.svg
assets/flutter_assets/assets/image/label/group/ganpro_small.svg
assets/flutter_assets/assets/image/label/group/noah_large.svg
assets/flutter_assets/assets/image/label/group/noah_medium.svg
assets/flutter_assets/assets/image/label/group/noah_small.svg
assets/flutter_assets/assets/image/label/group/tjpw_large.svg
assets/flutter_assets/assets/image/label/group/tjpw_medium.svg
assets/flutter_assets/assets/image/label/group/tjpw_small.svg
assets/flutter_assets/assets/image/label/new_large.svg
assets/flutter_assets/assets/image/label/new_medium.svg
assets/flutter_assets/assets/image/label/new_small.svg
assets/flutter_assets/assets/image/label/ppv_large.svg
assets/flutter_assets/assets/image/label/ppv_medium.svg
assets/flutter_assets/assets/image/label/ppv_small.svg
assets/flutter_assets/assets/image/logo/ddt.svg
assets/flutter_assets/assets/image/logo/ddt_color.svg
assets/flutter_assets/assets/image/logo/ganpro.svg
assets/flutter_assets/assets/image/logo/ganpro_color.svg
assets/flutter_assets/assets/image/logo/noah.svg
assets/flutter_assets/assets/image/logo/noah_color.svg
assets/flutter_assets/assets/image/logo/tjpw.svg
assets/flutter_assets/assets/image/logo/tjpw_color.svg
assets/flutter_assets/assets/image/logo/universe.svg
assets/flutter_assets/assets/image/popup/error.webp
assets/flutter_assets/assets/image/tab_header/ddt.svg
assets/flutter_assets/assets/image/tab_header/ganpro.svg
assets/flutter_assets/assets/image/tab_header/noah.svg
assets/flutter_assets/assets/image/tab_header/pick_up.svg
assets/flutter_assets/assets/image/tab_header/tjpw.svg
assets/flutter_assets/assets/image/unit_brand/ddt.svg
assets/flutter_assets/assets/image/unit_brand/ganpro.svg
assets/flutter_assets/assets/image/unit_brand/noah.svg
assets/flutter_assets/assets/image/unit_brand/tjpw.svg
assets/flutter_assets/fonts/MaterialIcons-Regular.otf
assets/flutter_assets/packages/flutter_inappwebview/assets/t_rex_runner/t-rex.css
assets/flutter_assets/packages/flutter_inappwebview/assets/t_rex_runner/t-rex.html
assets/flutter_assets/packages/fluttertoast/assets/toastify.css
assets/flutter_assets/packages/fluttertoast/assets/toastify.js
assets/flutter_assets/packages/wakelock_web/assets/no_sleep.js
assets/flutter_assets/shaders/ink_sparkle.frag
classes.dex
classes2.dex
client_analytics.proto
core-common.properties
firebase-analytics.properties
firebase-annotations.properties
firebase-auth-interop.properties
firebase-auth.properties
firebase-components.properties
firebase-datatransport.properties
firebase-dynamic-links.properties
firebase-encoders-json.properties
firebase-encoders-proto.properties
firebase-encoders.properties
firebase-iid-interop.properties
firebase-iid.properties
firebase-installations-interop.properties
firebase-measurement-connector.properties
firebase-perf.properties
google/protobuf/any.proto
google/protobuf/api.proto
google/protobuf/duration.proto
google/protobuf/empty.proto
google/protobuf/field_mask.proto
google/protobuf/source_context.proto
google/protobuf/struct.proto
google/protobuf/timestamp.proto
google/protobuf/type.proto
google/protobuf/wrappers.proto
integrity.properties
kotlin/annotation/annotation.kotlin_builtins
kotlin/collections/collections.kotlin_builtins
kotlin/coroutines/coroutines.kotlin_builtins
kotlin/internal/internal.kotlin_builtins
kotlin/kotlin.kotlin_builtins
kotlin/ranges/ranges.kotlin_builtins
kotlin/reflect/reflect.kotlin_builtins
kotlin-tooling-metadata.json
messaging_event.proto
messaging_event_extension.proto
okhttp3/internal/publicsuffix/NOTICE
okhttp3/internal/publicsuffix/publicsuffixes.gz
play-services-ads-identifier.properties
play-services-analytics-impl.properties
play-services-auth-api-phone.properties
play-services-base.properties
play-services-basement.properties
play-services-cast-framework.properties
play-services-cast.properties
play-services-cloud-messaging.properties
play-services-flags.properties
play-services-measurement-api.properties
play-services-measurement-base.properties
play-services-measurement-impl.properties
play-services-measurement-sdk-api.properties
play-services-measurement-sdk.properties
play-services-measurement.properties
play-services-safetynet.properties
play-services-stats.properties
play-services-tagmanager-api.properties
play-services-tagmanager.properties
play-services-tasks.properties
protolite-well-known-types.properties
recaptcha.properties
res/anim/abc_fade_in.xml
res/anim/abc_fade_out.xml
res/anim/abc_grow_fade_in_from_bottom.xml
res/anim/abc_popup_enter.xml
res/anim/abc_popup_exit.xml
res/anim/abc_shrink_fade_out_from_bottom.xml
res/anim/abc_slide_in_bottom.xml
res/anim/abc_slide_in_top.xml
res/anim/abc_slide_out_bottom.xml
res/anim/abc_slide_out_top.xml
res/anim/abc_tooltip_enter.xml
res/anim/abc_tooltip_exit.xml
res/anim/btn_checkbox_to_checked_box_inner_merged_animation.xml
res/anim/btn_checkbox_to_checked_box_outer_merged_animation.xml
res/anim/btn_checkbox_to_checked_icon_null_animation.xml
res/anim/btn_checkbox_to_unchecked_box_inner_merged_animation.xml
res/anim/btn_checkbox_to_unchecked_check_path_merged_animation.xml
res/anim/btn_checkbox_to_unchecked_icon_null_animation.xml
res/anim/btn_radio_to_off_mtrl_dot_group_animation.xml
res/anim/btn_radio_to_off_mtrl_ring_outer_animation.xml
res/anim/btn_radio_to_off_mtrl_ring_outer_path_animation.xml
res/anim/btn_radio_to_on_mtrl_dot_group_animation.xml
res/anim/btn_radio_to_on_mtrl_ring_outer_animation.xml
res/anim/btn_radio_to_on_mtrl_ring_outer_path_animation.xml
res/anim-v21/fragment_fast_out_extra_slow_in.xml
res/animator/fragment_close_enter.xml
res/animator/fragment_close_exit.xml
res/animator/fragment_fade_enter.xml
res/animator/fragment_fade_exit.xml
res/animator/fragment_open_enter.xml
res/animator/fragment_open_exit.xml
res/color/abc_background_cache_hint_selector_material_dark.xml
res/color/abc_background_cache_hint_selector_material_light.xml
res/color/abc_btn_colored_text_material.xml
res/color/abc_hint_foreground_material_dark.xml
res/color/abc_hint_foreground_material_light.xml
res/color/abc_primary_text_disable_only_material_dark.xml
res/color/abc_primary_text_disable_only_material_light.xml
res/color/abc_primary_text_material_dark.xml
res/color/abc_primary_text_material_light.xml
res/color/abc_search_url_text.xml
res/color/abc_secondary_text_material_dark.xml
res/color/abc_secondary_text_material_light.xml
res/color/abc_tint_btn_checkable.xml
res/color/abc_tint_default.xml
res/color/abc_tint_edittext.xml
res/color/abc_tint_seek_thumb.xml
res/color/abc_tint_spinner.xml
res/color/abc_tint_switch_track.xml
res/color/common_google_signin_btn_text_dark.xml
res/color/common_google_signin_btn_text_light.xml
res/color/common_google_signin_btn_tint.xml
res/color/switch_thumb_material_dark.xml
res/color/switch_thumb_material_light.xml
res/color-v21/abc_btn_colored_borderless_text_material.xml
res/color-v23/abc_btn_colored_borderless_text_material.xml
res/color-v23/abc_btn_colored_text_material.xml
res/color-v23/abc_color_highlight_material.xml
res/color-v23/abc_tint_btn_checkable.xml
res/color-v23/abc_tint_default.xml
res/color-v23/abc_tint_edittext.xml
res/color-v23/abc_tint_seek_thumb.xml
res/color-v23/abc_tint_spinner.xml
res/color-v23/abc_tint_switch_track.xml
res/drawable/abc_btn_borderless_material.xml
res/drawable/abc_btn_check_material.xml
res/drawable/abc_btn_check_material_anim.xml
res/drawable/abc_btn_default_mtrl_shape.xml
res/drawable/abc_btn_radio_material.xml
res/drawable/abc_btn_radio_material_anim.xml
res/drawable/abc_cab_background_internal_bg.xml
res/drawable/abc_cab_background_top_material.xml
res/drawable/abc_ic_ab_back_material.xml
res/drawable/abc_ic_arrow_drop_right_black_24dp.xml
res/drawable/abc_ic_clear_material.xml
res/drawable/abc_ic_go_search_api_material.xml
res/drawable/abc_ic_menu_copy_mtrl_am_alpha.xml
res/drawable/abc_ic_menu_cut_mtrl_alpha.xml
res/drawable/abc_ic_menu_overflow_material.xml
res/drawable/abc_ic_menu_paste_mtrl_am_alpha.xml
res/drawable/abc_ic_menu_selectall_mtrl_alpha.xml
res/drawable/abc_ic_menu_share_mtrl_alpha.xml
res/drawable/abc_ic_search_api_material.xml
res/drawable/abc_ic_voice_search_api_material.xml
res/drawable/abc_item_background_holo_dark.xml
res/drawable/abc_item_background_holo_light.xml
res/drawable/abc_list_selector_background_transition_holo_dark.xml
res/drawable/abc_list_selector_background_transition_holo_light.xml
res/drawable/abc_list_selector_holo_dark.xml
res/drawable/abc_list_selector_holo_light.xml
res/drawable/abc_ratingbar_indicator_material.xml
res/drawable/abc_ratingbar_material.xml
res/drawable/abc_ratingbar_small_material.xml
res/drawable/abc_seekbar_thumb_material.xml
res/drawable/abc_seekbar_tick_mark_material.xml
res/drawable/abc_seekbar_track_material.xml
res/drawable/abc_spinner_textfield_background_material.xml
res/drawable/abc_star_black_48dp.xml
res/drawable/abc_star_half_black_48dp.xml
res/drawable/abc_switch_thumb_material.xml
res/drawable/abc_tab_indicator_material.xml
res/drawable/abc_text_cursor_material.xml
res/drawable/abc_textfield_search_material.xml
res/drawable/abc_vector_test.xml
res/drawable/btn_checkbox_checked_mtrl.xml
res/drawable/btn_checkbox_checked_to_unchecked_mtrl_animation.xml
res/drawable/btn_checkbox_unchecked_mtrl.xml
res/drawable/btn_checkbox_unchecked_to_checked_mtrl_animation.xml
res/drawable/btn_radio_off_mtrl.xml
res/drawable/btn_radio_off_to_on_mtrl_animation.xml
res/drawable/btn_radio_on_mtrl.xml
res/drawable/btn_radio_on_to_off_mtrl_animation.xml
res/drawable/cast_expanded_controller_actionbar_bg_gradient_light.xml
res/drawable/cast_expanded_controller_bg_gradient_light.xml
res/drawable/cast_expanded_controller_live_indicator_drawable.xml
res/drawable/cast_expanded_controller_seekbar_thumb.xml
res/drawable/cast_expanded_controller_seekbar_track.xml
res/drawable/cast_ic_expanded_controller_closed_caption.xml
res/drawable/cast_ic_expanded_controller_forward30.xml
res/drawable/cast_ic_expanded_controller_mute.xml
res/drawable/cast_ic_expanded_controller_pause.xml
res/drawable/cast_ic_expanded_controller_play.xml
res/drawable/cast_ic_expanded_controller_rewind30.xml
res/drawable/cast_ic_expanded_controller_skip_next.xml
res/drawable/cast_ic_expanded_controller_skip_previous.xml
res/drawable/cast_ic_expanded_controller_stop.xml
res/drawable/cast_ic_mini_controller_closed_caption.xml
res/drawable/cast_ic_mini_controller_forward30.xml
res/drawable/cast_ic_mini_controller_mute.xml
res/drawable/cast_ic_mini_controller_pause.xml
res/drawable/cast_ic_mini_controller_pause_large.xml
res/drawable/cast_ic_mini_controller_play.xml
res/drawable/cast_ic_mini_controller_play_large.xml
res/drawable/cast_ic_mini_controller_rewind30.xml
res/drawable/cast_ic_mini_controller_skip_next.xml
res/drawable/cast_ic_mini_controller_skip_prev.xml
res/drawable/cast_ic_mini_controller_stop.xml
res/drawable/cast_ic_mini_controller_stop_large.xml
res/drawable/cast_ic_notification_connecting.xml
res/drawable/cast_ic_notification_disconnect.xml
res/drawable/cast_ic_notification_forward.xml
res/drawable/cast_ic_notification_forward10.xml
res/drawable/cast_ic_notification_forward30.xml
res/drawable/cast_ic_notification_pause.xml
res/drawable/cast_ic_notification_play.xml
res/drawable/cast_ic_notification_rewind.xml
res/drawable/cast_ic_notification_rewind10.xml
res/drawable/cast_ic_notification_rewind30.xml
res/drawable/cast_ic_notification_skip_next.xml
res/drawable/cast_ic_notification_skip_prev.xml
res/drawable/cast_ic_notification_small_icon.xml
res/drawable/cast_ic_notification_stop_live_stream.xml
res/drawable/cast_mini_controller_gradient_light.xml
res/drawable/cast_mini_controller_progress_drawable.xml
res/drawable/cast_skip_ad_label_border.xml
res/drawable/cast_tooltip_background.xml
res/drawable/common_google_signin_btn_icon_dark.xml
res/drawable/common_google_signin_btn_icon_dark_focused.xml
res/drawable/common_google_signin_btn_icon_dark_normal.xml
res/drawable/common_google_signin_btn_icon_disabled.xml
res/drawable/common_google_signin_btn_icon_light.xml
res/drawable/common_google_signin_btn_icon_light_focused.xml
res/drawable/common_google_signin_btn_icon_light_normal.xml
res/drawable/common_google_signin_btn_text_dark.xml
res/drawable/common_google_signin_btn_text_dark_focused.xml
res/drawable/common_google_signin_btn_text_dark_normal.xml
res/drawable/common_google_signin_btn_text_disabled.xml
res/drawable/common_google_signin_btn_text_light.xml
res/drawable/common_google_signin_btn_text_light_focused.xml
res/drawable/common_google_signin_btn_text_light_normal.xml
res/drawable/corner.xml
res/drawable/floating_action_mode_shape.xml
res/drawable/launch_background.xml
res/drawable/mr_button_connected_dark.xml
res/drawable/mr_button_connected_light.xml
res/drawable/mr_button_connecting_dark.xml
res/drawable/mr_button_connecting_light.xml
res/drawable/mr_button_dark.xml
res/drawable/mr_button_dark_static.xml
res/drawable/mr_button_light.xml
res/drawable/mr_button_light_static.xml
res/drawable/mr_cast_checkbox.xml
res/drawable/mr_cast_group_seekbar_track.xml
res/drawable/mr_cast_mute_button.xml
res/drawable/mr_cast_route_seekbar_track.xml
res/drawable/mr_cast_stop.xml
res/drawable/mr_cast_thumb.xml
res/drawable/mr_dialog_close_dark.xml
res/drawable/mr_dialog_close_light.xml
res/drawable/mr_dialog_material_background_dark.xml
res/drawable/mr_dialog_material_background_light.xml
res/drawable/mr_group_collapse.xml
res/drawable/mr_group_expand.xml
res/drawable/mr_media_pause_dark.xml
res/drawable/mr_media_pause_light.xml
res/drawable/mr_media_play_dark.xml
res/drawable/mr_media_play_light.xml
res/drawable/mr_media_stop_dark.xml
res/drawable/mr_media_stop_light.xml
res/drawable/mr_vol_type_audiotrack_dark.xml
res/drawable/mr_vol_type_audiotrack_light.xml
res/drawable/notification_bg.xml
res/drawable/notification_bg_low.xml
res/drawable/notification_icon_background.xml
res/drawable/notification_tile_bg.xml
res/drawable/test_level_drawable.xml
res/drawable/toast_bg.xml
res/drawable/tooltip_frame_dark.xml
res/drawable/tooltip_frame_light.xml
res/drawable-nodpi-v4/cast_album_art_placeholder.png
res/drawable-nodpi-v4/cast_album_art_placeholder_large.png
res/drawable-v21/abc_action_bar_item_background_material.xml
res/drawable-v21/abc_btn_colored_material.xml
res/drawable-v21/abc_dialog_material_background.xml
res/drawable-v21/abc_edit_text_material.xml
res/drawable-v21/abc_list_divider_material.xml
res/drawable-v21/notification_action_background.xml
res/drawable-v23/abc_control_background_material.xml
res/drawable-watch-v20/abc_dialog_material_background.xml
res/drawable-xxxhdpi-v4/ic_group_collapse_00.png
res/drawable-xxxhdpi-v4/ic_group_collapse_01.png
res/drawable-xxxhdpi-v4/ic_group_collapse_02.png
res/drawable-xxxhdpi-v4/ic_group_collapse_03.png
res/drawable-xxxhdpi-v4/ic_group_collapse_04.png
res/drawable-xxxhdpi-v4/ic_group_collapse_05.png
res/drawable-xxxhdpi-v4/ic_group_collapse_06.png
res/drawable-xxxhdpi-v4/ic_group_collapse_07.png
res/drawable-xxxhdpi-v4/ic_group_collapse_08.png
res/drawable-xxxhdpi-v4/ic_group_collapse_09.png
res/drawable-xxxhdpi-v4/ic_group_collapse_10.png
res/drawable-xxxhdpi-v4/ic_group_collapse_11.png
res/drawable-xxxhdpi-v4/ic_group_collapse_12.png
res/drawable-xxxhdpi-v4/ic_group_collapse_13.png
res/drawable-xxxhdpi-v4/ic_group_collapse_14.png
res/drawable-xxxhdpi-v4/ic_group_collapse_15.png
res/drawable-xxxhdpi-v4/ic_group_expand_00.png
res/drawable-xxxhdpi-v4/ic_group_expand_01.png
res/drawable-xxxhdpi-v4/ic_group_expand_02.png
res/drawable-xxxhdpi-v4/ic_group_expand_03.png
res/drawable-xxxhdpi-v4/ic_group_expand_04.png
res/drawable-xxxhdpi-v4/ic_group_expand_05.png
res/drawable-xxxhdpi-v4/ic_group_expand_06.png
res/drawable-xxxhdpi-v4/ic_group_expand_07.png
res/drawable-xxxhdpi-v4/ic_group_expand_08.png
res/drawable-xxxhdpi-v4/ic_group_expand_09.png
res/drawable-xxxhdpi-v4/ic_group_expand_10.png
res/drawable-xxxhdpi-v4/ic_group_expand_11.png
res/drawable-xxxhdpi-v4/ic_group_expand_12.png
res/drawable-xxxhdpi-v4/ic_group_expand_13.png
res/drawable-xxxhdpi-v4/ic_group_expand_14.png
res/drawable-xxxhdpi-v4/ic_group_expand_15.png
res/interpolator/btn_checkbox_checked_mtrl_animation_interpolator_0.xml
res/interpolator/btn_checkbox_checked_mtrl_animation_interpolator_1.xml
res/interpolator/btn_checkbox_unchecked_mtrl_animation_interpolator_0.xml
res/interpolator/btn_checkbox_unchecked_mtrl_animation_interpolator_1.xml
res/interpolator/btn_radio_to_off_mtrl_animation_interpolator_0.xml
res/interpolator/btn_radio_to_on_mtrl_animation_interpolator_0.xml
res/interpolator/fast_out_slow_in.xml
res/interpolator/mr_fast_out_slow_in.xml
res/interpolator/mr_linear_out_slow_in.xml
res/layout/abc_action_bar_title_item.xml
res/layout/abc_action_bar_up_container.xml
res/layout/abc_action_menu_item_layout.xml
res/layout/abc_action_menu_layout.xml
res/layout/abc_action_mode_bar.xml
res/layout/abc_action_mode_close_item_material.xml
res/layout/abc_activity_chooser_view.xml
res/layout/abc_activity_chooser_view_list_item.xml
res/layout/abc_alert_dialog_button_bar_material.xml
res/layout/abc_alert_dialog_material.xml
res/layout/abc_alert_dialog_title_material.xml
res/layout/abc_cascading_menu_item_layout.xml
res/layout/abc_dialog_title_material.xml
res/layout/abc_expanded_menu_layout.xml
res/layout/abc_list_menu_item_checkbox.xml
res/layout/abc_list_menu_item_icon.xml
res/layout/abc_list_menu_item_layout.xml
res/layout/abc_list_menu_item_radio.xml
res/layout/abc_popup_menu_header_item_layout.xml
res/layout/abc_popup_menu_item_layout.xml
res/layout/abc_screen_content_include.xml
res/layout/abc_screen_simple.xml
res/layout/abc_screen_simple_overlay_action_mode.xml
res/layout/abc_screen_toolbar.xml
res/layout/abc_search_dropdown_item_icons_2line.xml
res/layout/abc_search_view.xml
res/layout/abc_select_dialog_material.xml
res/layout/abc_tooltip.xml
res/layout/activity_web_view.xml
res/layout/browser_actions_context_menu_page.xml
res/layout/browser_actions_context_menu_row.xml
res/layout/cast_device_chooser_dialog.xml
res/layout/cast_expanded_controller_activity.xml
res/layout/cast_help_text.xml
res/layout/cast_intro_overlay.xml
res/layout/cast_mini_controller.xml
res/layout/cast_tracks_chooser_dialog_layout.xml
res/layout/cast_tracks_chooser_dialog_row_layout.xml
res/layout/chrome_custom_tabs_layout.xml
res/layout/custom_dialog.xml
res/layout/floating_action_mode.xml
res/layout/floating_action_mode_item.xml
res/layout/mr_cast_dialog.xml
res/layout/mr_cast_group_item.xml
res/layout/mr_cast_group_volume_item.xml
res/layout/mr_cast_header_item.xml
res/layout/mr_cast_media_metadata.xml
res/layout/mr_cast_route_item.xml
res/layout/mr_chooser_dialog.xml
res/layout/mr_chooser_list_item.xml
res/layout/mr_controller_material_dialog_b.xml
res/layout/mr_controller_volume_item.xml
res/layout/mr_picker_dialog.xml
res/layout/mr_picker_header_item.xml
res/layout/mr_picker_route_item.xml
res/layout/mr_playback_control.xml
res/layout/mr_volume_control.xml
res/layout/notification_media_action.xml
res/layout/notification_media_cancel_action.xml
res/layout/notification_template_big_media.xml
res/layout/notification_template_big_media_custom.xml
res/layout/notification_template_big_media_narrow.xml
res/layout/notification_template_big_media_narrow_custom.xml
res/layout/notification_template_lines_media.xml
res/layout/notification_template_media.xml
res/layout/notification_template_media_custom.xml
res/layout/notification_template_part_chronometer.xml
res/layout/notification_template_part_time.xml
res/layout/select_dialog_item_material.xml
res/layout/select_dialog_multichoice_material.xml
res/layout/select_dialog_singlechoice_material.xml
res/layout/support_simple_spinner_dropdown_item.xml
res/layout/toast_custom.xml
res/layout-v21/notification_action.xml
res/layout-v21/notification_action_tombstone.xml
res/layout-v21/notification_template_custom_big.xml
res/layout-v21/notification_template_icon_group.xml
res/layout-v26/abc_screen_toolbar.xml
res/layout-watch-v20/abc_alert_dialog_button_bar_material.xml
res/layout-watch-v20/abc_alert_dialog_title_material.xml
res/menu/menu_main.xml
res/mipmap-anydpi-v26/ic_background.png
res/mipmap-anydpi-v26/ic_foreground.png
res/mipmap-anydpi-v26/ic_launcher.xml
res/mipmap-anydpi-v26/ic_launcher_round.xml
res/mipmap-hdpi-v4/ic_launcher.png
res/mipmap-hdpi-v4/ic_launcher_foreground.png
res/mipmap-hdpi-v4/ic_launcher_round.png
res/mipmap-mdpi-v4/ic_launcher.png
res/mipmap-mdpi-v4/ic_launcher_foreground.png
res/mipmap-mdpi-v4/ic_launcher_round.png
res/mipmap-xhdpi-v4/background.png
res/mipmap-xhdpi-v4/foreground.png
res/mipmap-xhdpi-v4/ic_launcher.png
res/mipmap-xhdpi-v4/ic_launcher_foreground.png
res/mipmap-xhdpi-v4/ic_launcher_round.png
res/mipmap-xxhdpi-v4/background.png
res/mipmap-xxhdpi-v4/foreground.png
res/mipmap-xxhdpi-v4/ic_launcher.png
res/mipmap-xxhdpi-v4/ic_launcher_foreground.png
res/mipmap-xxhdpi-v4/ic_launcher_round.png
res/mipmap-xxxhdpi-v4/background.png
res/mipmap-xxxhdpi-v4/foreground.png
res/mipmap-xxxhdpi-v4/ic_launcher.png
res/mipmap-xxxhdpi-v4/ic_launcher_foreground.png
res/mipmap-xxxhdpi-v4/ic_launcher_round.png
res/raw/firebase_common_keep.xml
res/xml/flutter_share_file_paths.xml
res/xml/image_share_filepaths.xml
res/xml/provider_paths.xml
res/xml/splits0.xml
resources.arsc
review.properties
transport-api.properties
stamp-cert-sha256
META-INF/BNDLTOOL.SF
META-INF/BNDLTOOL.RSA
META-INF/MANIFEST.MF

污点分析

当apk较大时,代码量会很大,造成数据流图(ICFG)呈现爆炸式增长,所以该功能比较耗时,请先喝杯咖啡,耐心等待……
规则名称 描述信息 操作
病毒分析 使用安卓恶意软件常用的API进行污点分析 开始分析  
漏洞挖掘 漏洞挖掘场景下的污点分析 开始分析  
隐私合规 隐私合规场景下的污点分析:组件内污点传播、组件间污点传播、组件与库函数之间的污点传播 开始分析  
密码分析 分析加密算法是否使用常量密钥、静态初始化的向量(IV)、加密模式是否使用ECB等 开始分析  
Callback 因为Android中系统级的Callback并不会出现显式地进行回调方法的调用,所以如果需要分析Callback方法需要在声明文件中将其声明,这里提供一份AndroidCallbacks.txt文件,里面是一些常见的原生回调接口或类,如果有特殊接口需求,可以联系管理员 开始分析