VirSCAN VirSCAN

1, You can UPLOAD any files, but there is 20Mb limit per file.
2, VirSCAN supports Rar/Zip decompression, but it must be less than 20 files.
3, VirSCAN can scan compressed files with password 'infected' or 'virus'.

Language
Server load
Server Load

File information
Safety rating:
Behavior list
Basic Information
MD5:3f3ab6d2c2614dcea0bd963b7731dd14
Package names:com.suiyi.qqtx
Minimum operating environment:Android 2.2.x
copyright:E4A
Key behavior
Behavior description:跨进程写入数据
details:TargetProcess = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe, WriteAddress = 0x00150000, Size = 0x00019000 TargetPID = 0x00000ac4
TargetProcess = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe, WriteAddress = 0x00400000, Size = 0x00000200 TargetPID = 0x00000ac4
TargetProcess = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe, WriteAddress = 0x00458000, Size = 0x00015e00 TargetPID = 0x00000ac4
TargetProcess = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe, WriteAddress = 0x0046e000, Size = 0x00000200 TargetPID = 0x00000ac4
TargetProcess = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe, WriteAddress = 0x7ffd8008, Size = 0x00000004 TargetPID = 0x00000ac4
Behavior description:设置线程上下文
details:C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe
Behavior description:获取TickCount值
details:TickCount = 218803, SleepMilliseconds = 100.
TickCount = 220390, SleepMilliseconds = 1000.
TickCount = 220500, SleepMilliseconds = 1000.
TickCount = 220625, SleepMilliseconds = 1000.
TickCount = 220656, SleepMilliseconds = 1000.
TickCount = 220828, SleepMilliseconds = 1000.
TickCount = 220875, SleepMilliseconds = 1000.
TickCount = 219874, SleepMilliseconds = -1.
TickCount = 220890, SleepMilliseconds = 1000.
TickCount = 220921, SleepMilliseconds = 1000.
TickCount = 219971, SleepMilliseconds = 50.
TickCount = 220937, SleepMilliseconds = 1000.
TickCount = 220984, SleepMilliseconds = 1000.
TickCount = 220034, SleepMilliseconds = 50.
TickCount = 220096, SleepMilliseconds = 50.
Behavior description:设置特殊文件属性
details:C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe
Behavior description:跨进程写代码段数据
details:TargetProcess = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe, WriteAddress = 0x00402000, Size = 0x00055800 TargetPID = 0x00000ac4
Behavior description:直接获取CPU时钟
details:EAX = 0x5f69440b, EDX = 0x000000b4
EAX = 0x5f694457, EDX = 0x000000b4
EAX = 0xfd909096, EDX = 0x000000b5
EAX = 0xfd9090e2, EDX = 0x000000b5
EAX = 0x101f2b98, EDX = 0x000000b6
EAX = 0x101f2be4, EDX = 0x000000b6
EAX = 0x101f2c30, EDX = 0x000000b6
EAX = 0x101f2c7c, EDX = 0x000000b6
EAX = 0x180cfa65, EDX = 0x000000b6
EAX = 0x180cfab1, EDX = 0x000000b6
EAX = 0x3cbef2e2, EDX = 0x000000b7
EAX = 0x3cbef32e, EDX = 0x000000b7
Behavior description:修改注册表_启动项
details:\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\WPA Service
Process behavior
Behavior description:创建进程
details:[0x00000ac4]ImagePath = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe, CmdLine = "C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe"
Behavior description:创建本地线程
details:TargetProcess: %temp%\****.exe, InheritedFromPID = 2000, ProcessID = 2676, ThreadID = 2712, StartAddress = 79F0237F, Parameter = 00000000
TargetProcess: %temp%\****.exe, InheritedFromPID = 2000, ProcessID = 2676, ThreadID = 2740, StartAddress = 79F91FCF, Parameter = 001A5780
TargetProcess: %temp%\****.exe, InheritedFromPID = 2676, ProcessID = 2756, ThreadID = 2776, StartAddress = 79F0237F, Parameter = 00000000
TargetProcess: %temp%\****.exe, InheritedFromPID = 2676, ProcessID = 2756, ThreadID = 2780, StartAddress = 79F91FCF, Parameter = 002AF9D8
TargetProcess: %temp%\****.exe, InheritedFromPID = 2676, ProcessID = 2756, ThreadID = 2796, StartAddress = 79F91FCF, Parameter = 002C81C8
TargetProcess: %temp%\****.exe, InheritedFromPID = 2676, ProcessID = 2756, ThreadID = 2800, StartAddress = 79F91FCF, Parameter = 002C81C8
TargetProcess: %temp%\****.exe, InheritedFromPID = 2676, ProcessID = 2756, ThreadID = 2804, StartAddress = 79FD8897, Parameter = 0012E9AC
TargetProcess: %temp%\****.exe, InheritedFromPID = 2676, ProcessID = 2756, ThreadID = 2808, StartAddress = 79F91FCF, Parameter = 002E96B8
TargetProcess: %temp%\****.exe, InheritedFromPID = 2676, ProcessID = 2756, ThreadID = 2812, StartAddress = 79FCBA1E, Parameter = 00000000
TargetProcess: %temp%\****.exe, InheritedFromPID = 2676, ProcessID = 2756, ThreadID = 2816, StartAddress = 79F91FCF, Parameter = 002FBB08
TargetProcess: %temp%\****.exe, InheritedFromPID = 2676, ProcessID = 2756, ThreadID = 2820, StartAddress = 77DC845A, Parameter = 00000000
TargetProcess: %temp%\****.exe, InheritedFromPID = 2676, ProcessID = 2756, ThreadID = 2824, StartAddress = 79F91FCF, Parameter = 00300448
Behavior description:跨进程写入数据
details:TargetProcess = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe, WriteAddress = 0x00150000, Size = 0x00019000 TargetPID = 0x00000ac4
TargetProcess = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe, WriteAddress = 0x00400000, Size = 0x00000200 TargetPID = 0x00000ac4
TargetProcess = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe, WriteAddress = 0x00458000, Size = 0x00015e00 TargetPID = 0x00000ac4
TargetProcess = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe, WriteAddress = 0x0046e000, Size = 0x00000200 TargetPID = 0x00000ac4
TargetProcess = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe, WriteAddress = 0x7ffd8008, Size = 0x00000004 TargetPID = 0x00000ac4
Behavior description:设置线程上下文
details:C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe
Behavior description:枚举进程
details:N/A
Behavior description:跨进程写代码段数据
details:TargetProcess = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe, WriteAddress = 0x00402000, Size = 0x00055800 TargetPID = 0x00000ac4
File behavior
Behavior description:创建文件
details:C:\Documents and Settings\Administrator\Application Data\DCFF734B-BC3F-43CB-8911-9B5D467629CF\run.dat
C:\Program Files\WPA Service\wpasv.exe
Behavior description:创建可执行文件
details:C:\Program Files\WPA Service\wpasv.exe
Behavior description:查找文件
details:FileName = C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
FileName = C:\WINDOWS\Microsoft.NET\Framework\\*
FileName = C:\WINDOWS
FileName = C:\WINDOWS\WinSxS
FileName = C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
FileName = C:\WINDOWS\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.INI
FileName = C:\Documents and Settings\Administrator\Local Settings\Temp
FileName = C:\Documents and Settings\Administrator\Local Settings\%temp%
FileName = C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe
FileName = C:\Documents and Settings
FileName = C:\Documents and Settings\Administrator
FileName = C:\Documents and Settings\Administrator\Local Settings
FileName = C:\Documents and Settings\Administrator\Local Settings\%temp%\996E.INI
FileName = C:\WINDOWS\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.INI
FileName = C:\WINDOWS\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.INI
Behavior description:设置特殊文件属性
details:C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe
Behavior description:复制文件
details:C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CasPol.exe ---> C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe
C:\Documents and Settings\Administrator\Local Settings\%temp%\****.exe ---> C:\Program Files\WPA Service\wpasv.exe
Behavior description:修改文件内容
details:C:\Documents and Settings\Administrator\Application Data\DCFF734B-BC3F-43CB-8911-9B5D467629CF\run.dat ---> Offset = 0
C:\Program Files\WPA Service\wpasv.exe ---> Offset = 0
C:\Program Files\WPA Service\wpasv.exe ---> Offset = 65536
C:\Program Files\WPA Service\wpasv.exe ---> Offset = 131072
C:\Program Files\WPA Service\wpasv.exe ---> Offset = 196608
C:\Program Files\WPA Service\wpasv.exe ---> Offset = 262144
Network behavior
Behavior description:按名称获取主机地址
details:DnsQuery_W: gini.ddns.net
GetAddrInfoW: gi****et
Registry behavior
Behavior description:修改注册表_启动项
details:\REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\WPA Service
Other behavior
Behavior description:检测自身是否被调试
details:IsDebuggerPresent
Behavior description:创建互斥体
details:CTF.LBES.MutexDefaultS-*
CTF.Compart.MutexDefaultS-*
CTF.Asm.MutexDefaultS-*
CTF.Layouts.MutexDefaultS-*
CTF.TMD.MutexDefaultS-*
CTF.TimListCache.FMPDefaultS-*MUTEX.DefaultS-*
Global\{bfe3bd08-2800-49d7-869a-0ba7ff9cb0a4}
Global\.net clr networking
Behavior description:创建事件对象
details:EventName = Global\CorDBIPCSetupSyncEvent_2676
EventName = Global\CorDBIPCSetupSyncEvent_2756
Behavior description:打开互斥体
details:ShimCacheMutex
Global\CLR_CASOFF_MUTEX
qazwsxedc
Global\.net clr networking
Behavior description:加密数据
details:[CryptEncrypt] Data: 0x002E3F70, PlainTextLen: 16, CipherTextLen: 16, Flags: 0x00000000
[CryptEncrypt] Data: 0x002D5148, PlainTextLen: 16, CipherTextLen: 16, Flags: 0x00000000
[CryptEncrypt] Data: 0x002E3840, PlainTextLen: 16, CipherTextLen: 16, Flags: 0x00000000
Behavior description:打开事件
details:Global\CLR_PerfMon_StartEnumEvent
\KernelObjects\LowMemoryCondition
HookSwitchHookEnabledEvent
\SECURITY\LSA_AUTHENTICATION_INITIALIZED
Behavior description:获取TickCount值
details:TickCount = 218803, SleepMilliseconds = 100.
TickCount = 220390, SleepMilliseconds = 1000.
TickCount = 220500, SleepMilliseconds = 1000.
TickCount = 220625, SleepMilliseconds = 1000.
TickCount = 220656, SleepMilliseconds = 1000.
TickCount = 220828, SleepMilliseconds = 1000.
TickCount = 220875, SleepMilliseconds = 1000.
TickCount = 219874, SleepMilliseconds = -1.
TickCount = 220890, SleepMilliseconds = 1000.
TickCount = 220921, SleepMilliseconds = 1000.
TickCount = 219971, SleepMilliseconds = 50.
TickCount = 220937, SleepMilliseconds = 1000.
TickCount = 220984, SleepMilliseconds = 1000.
TickCount = 220034, SleepMilliseconds = 50.
TickCount = 220096, SleepMilliseconds = 50.
Behavior description:调整进程token权限
details:SE_DEBUG_PRIVILEGE
Behavior description:枚举窗口
details:N/A
Behavior description:可执行文件签名信息
details:C:\Program Files\WPA Service\wpasv.exe(签名验证: 未通过)
Behavior description:调用Sleep函数
details:[1]: MilliSeconds = 100.
[1]: MilliSeconds = 1000.
[2]: MilliSeconds = 500.
[3]: MilliSeconds = 1000.
[4]: MilliSeconds = 1000.
[5]: MilliSeconds = 1000.
[6]: MilliSeconds = 1000.
[7]: MilliSeconds = 1000.
[8]: MilliSeconds = -1.
[9]: MilliSeconds = 1000.
[10]: MilliSeconds = 50.
Behavior description:隐藏指定窗口
details:[Window,Class] = [,WindowsForms10.Window.8.app.0.33c0d9d]
Behavior description:可执行文件MD5
details:C:\Program Files\WPA Service\wpasv.exe ---> 22e338cb8844e5384cca452377d0c3f0
Behavior description:直接获取CPU时钟
details:EAX = 0x5f69440b, EDX = 0x000000b4
EAX = 0x5f694457, EDX = 0x000000b4
EAX = 0xfd909096, EDX = 0x000000b5
EAX = 0xfd9090e2, EDX = 0x000000b5
EAX = 0x101f2b98, EDX = 0x000000b6
EAX = 0x101f2be4, EDX = 0x000000b6
EAX = 0x101f2c30, EDX = 0x000000b6
EAX = 0x101f2c7c, EDX = 0x000000b6
EAX = 0x180cfa65, EDX = 0x000000b6
EAX = 0x180cfab1, EDX = 0x000000b6
EAX = 0x3cbef2e2, EDX = 0x000000b7
EAX = 0x3cbef32e, EDX = 0x000000b7
Behavior description:解密数据
details:[CryptDecrypt] Data: 0x002CE600, CipherTextLen: 0, PlainTextLen: 0, Flags: 0x00000000
[CryptDecrypt] Data: 0x002E5A90, CipherTextLen: 8, PlainTextLen: 8, Flags: 0x00000000
[CryptDecrypt] Data: 0x002E5A90, CipherTextLen: 0, PlainTextLen: 0, Flags: 0x00000000
[CryptDecrypt] Data: 0x002E3F70, CipherTextLen: 16, PlainTextLen: 16, Flags: 0x00000000
[CryptDecrypt] Data: 0x002E4AD8, CipherTextLen: 8, PlainTextLen: 8, Flags: 0x00000000
[CryptDecrypt] Data: 0x002E4AD8, CipherTextLen: 0, PlainTextLen: 0, Flags: 0x00000000
[CryptDecrypt] Data: 0x002D5148, CipherTextLen: 16, PlainTextLen: 16, Flags: 0x00000000
[CryptDecrypt] Data: 0x002E6008, CipherTextLen: 89368, PlainTextLen: 89368, Flags: 0x00000000
Behavior description:导入密钥
details:[CryptImportKey] Algorithm: CALG_DES (0x00006601), Data: 0x002CBE28, DataLen: 20, Flags: 0x00000001
[CryptImportKey] Algorithm: CALG_DES (0x00006601), Data: 0x002D5C30, DataLen: 20, Flags: 0x00000001
[CryptImportKey] Algorithm: CALG_DES (0x00006601), Data: 0x002DD140, DataLen: 20, Flags: 0x00000001
[CryptImportKey] Algorithm: CALG_DES (0x00006601), Data: 0x002DCF38, DataLen: 20, Flags: 0x00000001
Activities
Activity nameTypes of
com.e4a.runtime.android.StartActivityandroid.intent.action.MAIN
com.e4a.runtime.android.StartActivityandroid.intent.category.DEFAULT
com.stub.plugin.Stub01android.intent.action.MAIN
com.stub.plugin.Stub01android.intent.category.LAUNCHER
com.e4a.runtime.android.mainActivityandroid.intent.action.MAIN
com.e4a.runtime.android.mainActivityandroid.intent.category.DEFAULT
com.tencent.tauth.AuthActivityandroid.intent.action.VIEW
com.tencent.tauth.AuthActivityandroid.intent.category.DEFAULT
com.tencent.tauth.AuthActivityandroid.intent.category.BROWSABLE
Dangerous function
Function nameinformation
getRuntime获取命令行环境
java/lang/Runtime;->exec执行字符串命令
Permission list
License nameinformation
com.android.launcher.permission.INSTALL_SHORTCUT创建快捷方式
android.permission.GET_TASKS获取有关当前或最近运行的任务信息
android.permission.WRITE_EXTERNAL_STORAGE写外部存储器(如:SD卡)
android.permission.ACCESS_WIFI_STATE读取wifi网络状态
android.permission.ACCESS_COARSE_LOCATION获取粗略的位置(通过wifi、基站)
android.permission.MOUNT_UNMOUNT_FILESYSTEMS挂载、反挂载外部文件系统
android.permission.READ_PHONE_STATE读取电话状态
android.permission.SYSTEM_ALERT_WINDOW显示系统窗口
android.permission.INTERNET连接网络(2G或3G)
android.permission.ACCESS_FINE_LOCATION获取精确的位置(通过GPS)
com.android.launcher.permission.READ_SETTINGS读取快捷方式信息
android.permission.ACCESS_NETWORK_STATE读取网络状态(2G或3G)
android.permission.WAKE_LOCK手机屏幕关闭后后台进程仍运行
android.permission.CHANGE_CONFIGURATION修改当前设置(如:本地化)
android.permission.READ_EXTERNAL_STORAGE读外部存储器(如:SD卡)
android.permission.READ_LOGS读取系统日志
android.permission.CALL_PHONE拨打电话
android.permission.SET_DEBUG_APP调试程序
android.permission.GET_ACCOUNTS访问账户列表
android.permission.USE_CREDENTIALS获取认证令牌
android.permission.MANAGE_ACCOUNTS管理账户
Service list
name
com.stub.plugin.Stub02
Providers
nameinformation
com.stub.plugin.Stub04
File List
file name Check code
META-INF/MANIFEST.MF 0x1213e749
META-INF/SUIYI.SF 0x986293d3
META-INF/SUIYI.RSA 0x325f33fe
AndroidManifest.xml 0xd6e354d4
assets/.appkey 0xb1eeb3f4
assets/1.mp4 0xbebb14dc
assets/2.mp4 0x27084d39
assets/3.mp4 0x98b75db
assets/4.mp4 0xe03c5c5d
assets/5.mp4 0xd13d05a4
assets/FileDialog/1.png 0x78686c7a
assets/FileDialog/2.png 0x7e93bac3
assets/FileDialog/3.png 0x4608dc7e
assets/FileDialog/4.png 0xae74269b
assets/FileDialog/5.png 0x67adec41
assets/FileDialog/6.png 0xcd055e6c
assets/FileDialog/7.png 0x446d8c59
assets/FileDialog/8.png 0x46c0be08
assets/FileDialog/9.png 0xbdadc5b1
assets/baise.png 0xa5fd9987
assets/blue_bg.png 0xc1898e2f
assets/icon.png 0xb9147b3f
assets/libjiagu.so 0xb4cd659f
assets/libjiagu_ls.so 0x1975fc22
assets/libjiagu_x86.so 0x7bd146aa
assets/main_bg.jpg 0xf04b702b
assets/my_bg.jpg 0x69d9fee1
assets/pwd_js.html 0x684993da
classes.dex 0xc1067021
lib/armeabi/ 0x0
lib/armeabi/libjiagu_art.so 0x0
lib/x86/ 0x0
lib/x86/libjiagu_art.so 0x0
res/anim/push_bottom_in.xml 0x56b328b4
res/anim/push_bottom_in2.xml 0x5008b24f
res/anim/push_bottom_out.xml 0x47153c81
res/anim/push_danru_in.xml 0x68e45b0e
res/anim/push_danru_out.xml 0x836bcdbf
res/anim/umeng_socialize_fade_in.xml 0xf2e7bdac
res/anim/umeng_socialize_fade_out.xml 0x19682b1d
res/anim/umeng_socialize_shareboard_animation_in.xml 0x5b62eaa8
res/anim/umeng_socialize_shareboard_animation_out.xml 0x100d0f13
res/anim/umeng_socialize_slide_in_from_bottom.xml 0x72fa759c
res/anim/umeng_socialize_slide_out_from_bottom.xml 0x62fd58e7
res/drawable-hdpi/background_toast.xml 0x178e945c
res/drawable-hdpi/cyberplayer_listbtn_normal.png 0xa2be03dc
res/drawable-hdpi/cyberplayer_listbtn_pressed.png 0x21de95cb
res/drawable-hdpi/cyberplayer_next_play.png 0x4dbc08ae
res/drawable-hdpi/cyberplayer_next_play_disable.png 0xd9509e6a
res/drawable-hdpi/cyberplayer_next_play_pressed.png 0xecd2fb3a
res/drawable-hdpi/cyberplayer_play_media.png 0x7825fccf
res/drawable-hdpi/cyberplayer_play_media_disable.png 0xd06ad4ea
res/drawable-hdpi/cyberplayer_play_media_pressed.png 0x754abc4d
res/drawable-hdpi/cyberplayer_retreat_media.png 0xc1863e71
res/drawable-hdpi/cyberplayer_retreat_media_disable.png 0x105d69ea
res/drawable-hdpi/cyberplayer_retreat_media_pressed.png 0x107d406d
res/drawable-hdpi/cyberplayer_seekbar_background.png 0x470141ee
res/drawable-hdpi/cyberplayer_seekbar_background_normal.9.png 0xb682f96c
res/drawable-hdpi/cyberplayer_seekbar_background_process.9.png 0x525e50fe
res/drawable-hdpi/cyberplayer_seekbar_background_sound_normal.9.png 0xf670f95b
res/drawable-hdpi/cyberplayer_seekbar_background_sound_process.9.png 0x5e8b1ec9
res/drawable-hdpi/cyberplayer_seekbar_cache.png 0x273eb0ec
res/drawable-hdpi/cyberplayer_seekbar_normal.png 0x60b412f3
res/drawable-hdpi/cyberplayer_seekbar_ratio.png 0x8ec16bd1
res/drawable-hdpi/cyberplayer_seekbar_ratio_white.png 0xa7a8ded9
res/drawable-hdpi/cyberplayer_stop_media.png 0x6395a790
res/drawable-hdpi/cyberplayer_stop_media_disable.png 0xbaafc338
res/drawable-hdpi/cyberplayer_stop_media_pressed.png 0x520b1252
res/drawable-hdpi/cyberplayer_subtitle_setting.png 0xdd3621e6
res/drawable-hdpi/cyberplayer_subtitle_setting_disable.png 0xcb77113f
res/drawable-hdpi/cyberplayer_subtitle_setting_pressed.png 0x9a0a6625
res/drawable-hdpi/cyberplayer_switch_subtitle.png 0xe91d219b
res/drawable-hdpi/cyberplayer_switch_subtitle_disable.png 0x4f852d8c
res/drawable-hdpi/cyberplayer_switch_subtitle_pressed.png 0xf6580cd6
res/drawable-hdpi/cyberplayer_take_snapshot.png 0xab8e7fd5
res/drawable-hdpi/cyberplayer_take_snapshot_disable.png 0x234d73be
res/drawable-hdpi/cyberplayer_take_snapshot_pressed.png 0x241205e
res/drawable-hdpi/cyberplayer_textbtn_background_blue.9.png 0x84105c73
res/drawable-hdpi/cyberplayer_titlebar_return.png 0xaafad296
res/drawable-hdpi/cyberplayer_volumebar_background.9.png 0xd4992489
res/drawable-hdpi/default_toast.xml 0x7a23122d
res/drawable-hdpi/error_toast.xml 0x868e74ab
res/drawable-hdpi/ic_episode_titlebar_videoplayer.png 0xc4f1ae6b
res/drawable-hdpi/ic_episode_titlebar_videoplayer_disable.png 0xaba89ad2
res/drawable-hdpi/ic_episode_titlebar_videoplayer_pressed.png 0x4b8d08e3
res/drawable-hdpi/ic_next_play.png 0x719162df
res/drawable-hdpi/ic_next_play_pressed.png 0x1da89f5
res/drawable-hdpi/ic_play_media.png 0xe1efa842
res/drawable-hdpi/ic_play_media_disable.png 0xd06ad4ea
res/drawable-hdpi/ic_play_media_pressed.png 0x369158f9
res/drawable-hdpi/ic_retreat_media.png 0x62ad09c7
res/drawable-hdpi/ic_retreat_media_disable.png 0x105d69ea
res/drawable-hdpi/ic_retreat_media_pressed.png 0x9e62fb86
res/drawable-hdpi/ic_stop_media.png 0x5e106da4
res/drawable-hdpi/ic_stop_media_pressed.png 0x101fb9db
res/drawable-hdpi/ic_zoom_in_btn_videoplayer.png 0x986da792
res/drawable-hdpi/ic_zoom_in_btn_videoplayer_disable.png 0x590e0a34
res/drawable-hdpi/ic_zoom_in_btn_videoplayer_pressed.png 0xea9b5ca1
res/drawable-hdpi/ic_zoom_out_btn_videoplayer.png 0xa25660f0
res/drawable-hdpi/ic_zoom_out_btn_videoplayer_disable.png 0x1489a84c
res/drawable-hdpi/ic_zoom_out_btn_videoplayer_pressed.png 0x722558a6
res/drawable-hdpi/info_toast.xml 0xcfbefc80
res/drawable-hdpi/mo_shang_1.png 0x4d41f2f4
res/drawable-hdpi/mo_xia_1.png 0x2111cc9e
res/drawable-hdpi/success_toast.xml 0x810563ca
res/drawable-hdpi/warning_toast.xml 0xd235369d
res/drawable-xhdpi/bookmark_expand_icon.png 0x6639221b
res/drawable-xhdpi/bookmark_icon_folder.png 0xae8b5d6b
res/drawable-xhdpi/bookmark_unexpand_icon.png 0xf6e40be6
res/drawable-xhdpi/btn_style_alert_dialog_button_normal.9.png 0x19f80729
res/drawable-xhdpi/btn_style_alert_dialog_button_pressed.9.png 0xca61388e
res/drawable-xhdpi/btn_style_alert_dialog_cancel_normal.9.png 0x2baa5f01
res/drawable-xhdpi/btn_style_alert_dialog_special_normal.9.png 0xfb7979e3
res/drawable-xhdpi/btn_style_alert_dialog_special_pressed.9.png 0x4d13cbda
res/drawable-xhdpi/download_bookmark_toolbar_delete.png 0x3a7249be
res/drawable-xhdpi/download_toolbar_backward.png 0xa3e23cfd
res/drawable-xhdpi/ic_action_search.png 0x3294aee3
res/drawable-xhdpi/menu_exit.png 0x2983d8b8
res/drawable-xhdpi/mo_shang.png 0x9c8a8e1d
res/drawable-xhdpi/mo_xia.png 0x33a6a99b
res/drawable-xhdpi/mo_zhong.png 0x5784734e
res/drawable-xhdpi/ok_win10_1.png 0x3f2da75e
res/drawable-xhdpi/ok_win10_10.png 0xf1b2f71e
res/drawable-xhdpi/ok_win10_11.png 0xbb91fe35
res/drawable-xhdpi/ok_win10_12.png 0x8e59419e
res/drawable-xhdpi/ok_win10_13.png 0x583476b6
res/drawable-xhdpi/ok_win10_14.png 0x7e6d87da
res/drawable-xhdpi/ok_win10_15.png 0x9c5fd291
res/drawable-xhdpi/ok_win10_16.png 0xda091058
res/drawable-xhdpi/ok_win10_17.png 0xabd11b0b
res/drawable-xhdpi/ok_win10_18.png 0x7d50df6d
res/drawable-xhdpi/ok_win10_19.png 0xedd4f106
res/drawable-xhdpi/ok_win10_2.png 0x8c31996e
res/drawable-xhdpi/ok_win10_20.png 0xc2062a6
res/drawable-xhdpi/ok_win10_21.png 0x7b988fc4
res/drawable-xhdpi/ok_win10_22.png 0xb429d99c
res/drawable-xhdpi/ok_win10_23.png 0x8e25fefa
res/drawable-xhdpi/ok_win10_24.png 0x8f107ff3
res/drawable-xhdpi/ok_win10_25.png 0x23650567
res/drawable-xhdpi/ok_win10_26.png 0x7c5fadae
res/drawable-xhdpi/ok_win10_27.png 0xf9812dff
res/drawable-xhdpi/ok_win10_28.png 0x353d2aef
res/drawable-xhdpi/ok_win10_29.png 0xd6403544
res/drawable-xhdpi/ok_win10_3.png 0x30d49bea
res/drawable-xhdpi/ok_win10_30.png 0x4fd184fe
res/drawable-xhdpi/ok_win10_31.png 0xae4fcca7
res/drawable-xhdpi/ok_win10_32.png 0x1811001f
res/drawable-xhdpi/ok_win10_33.png 0xf1647bbe
res/drawable-xhdpi/ok_win10_34.png 0xee51f09b
res/drawable-xhdpi/ok_win10_35.png 0xd4560822
res/drawable-xhdpi/ok_win10_36.png 0xf2f61c5
res/drawable-xhdpi/ok_win10_37.png 0x8c34a715
res/drawable-xhdpi/ok_win10_38.png 0x54f98dd1
res/drawable-xhdpi/ok_win10_39.png 0x5b69bac3
res/drawable-xhdpi/ok_win10_4.png 0x9042ed2
res/drawable-xhdpi/ok_win10_40.png 0x5204a48e
res/drawable-xhdpi/ok_win10_41.png 0x562d4ca1
res/drawable-xhdpi/ok_win10_42.png 0xfbb04908
res/drawable-xhdpi/ok_win10_43.png 0x96e3309e
res/drawable-xhdpi/ok_win10_44.png 0x583476b6
res/drawable-xhdpi/ok_win10_45.png 0x5af76e72
res/drawable-xhdpi/ok_win10_46.png 0xdf187d2f
res/drawable-xhdpi/ok_win10_47.png 0x72bf0510
res/drawable-xhdpi/ok_win10_48.png 0x8c77307a
res/drawable-xhdpi/ok_win10_49.png 0x7d50df6d
res/drawable-xhdpi/ok_win10_5.png 0x1e969f02
res/drawable-xhdpi/ok_win10_50.png 0x93a5e64e
res/drawable-xhdpi/ok_win10_51.png 0x84db4127
res/drawable-xhdpi/ok_win10_52.png 0xf2b97805
res/drawable-xhdpi/ok_win10_53.png 0x9816bea0
res/drawable-xhdpi/ok_win10_54.png 0xa397d7dd
res/drawable-xhdpi/ok_win10_55.png 0x8f107ff3
res/drawable-xhdpi/ok_win10_56.png 0x5819d596
res/drawable-xhdpi/ok_win10_57.png 0xb37a1fd1
res/drawable-xhdpi/ok_win10_58.png 0xd02da4a6
res/drawable-xhdpi/ok_win10_59.png 0x353d2aef
res/drawable-xhdpi/ok_win10_6.png 0xf8a63f04
res/drawable-xhdpi/ok_win10_60.png 0xf3901052
res/drawable-xhdpi/ok_win10_61.png 0xb7a2ff0e
res/drawable-xhdpi/ok_win10_62.png 0xdc899480
res/drawable-xhdpi/ok_win10_63.png 0x1811001f
res/drawable-xhdpi/ok_win10_64.png 0x89777e6b
res/drawable-xhdpi/ok_win10_65.png 0x6ec37229
res/drawable-xhdpi/ok_win10_66.png 0xd849beaa
res/drawable-xhdpi/ok_win10_67.png 0x3bad2405
res/drawable-xhdpi/ok_win10_68.png 0x726b7b15
res/drawable-xhdpi/ok_win10_69.png 0xe59993a2
res/drawable-xhdpi/ok_win10_7.png 0xb5d1e2f4
res/drawable-xhdpi/ok_win10_70.png 0xd1b58aa5
res/drawable-xhdpi/ok_win10_71.png 0xa97f2961
res/drawable-xhdpi/ok_win10_72.png 0xb79aa5b7
res/drawable-xhdpi/ok_win10_73.png 0xbec3199d
res/drawable-xhdpi/ok_win10_74.png 0xf52b6e9b
res/drawable-xhdpi/ok_win10_75.png 0xc4a38d7f
res/drawable-xhdpi/ok_win10_8.png 0xb6af5baf
res/drawable-xhdpi/ok_win10_9.png 0x90a86d8c
res/drawable-xhdpi/p_phone_account_back_small.png 0x2c10b95a
res/drawable-xhdpi/p_phone_account_back_small_selected.png 0x5ed996e6
res/drawable-xhdpi/pause_btn_cai_apy_style.xml 0xe6994ee
res/drawable-xhdpi/pause_btn_fanhui_apy_style.xml 0x47488670
res/drawable-xhdpi/pause_btn_fenx_apy_style.xml 0x44269f6e
res/drawable-xhdpi/pause_btn_hou_apy_style.xml 0x14dd7a88
res/drawable-xhdpi/pause_btn_jin_apy_style.xml 0x49f17439
res/drawable-xhdpi/pause_btn_qi_apy_style.xml 0xe6994ee
res/drawable-xhdpi/pause_btn_quan_apy_style.xml 0x3766e458
res/drawable-xhdpi/pause_btn_shoc_apy_style.xml 0x71c5746a
res/drawable-xhdpi/pause_btn_suo1_apy_style.xml 0x51bfbe89
res/drawable-xhdpi/pause_btn_suo_apy_style.xml 0xb6cbad5a
res/drawable-xhdpi/pause_btn_ting_apy_style.xml 0x879f394
res/drawable-xhdpi/pause_btn_xiazai_apy_style.xml 0x8d85281f
res/drawable-xhdpi/pause_btn_zan_apy_style.xml 0x93cf19dd
res/drawable-xhdpi/play_ctrl_battery.png 0x63856226
res/drawable-xhdpi/player_landscape_btn_paopao_normal.png 0xe9597c12
res/drawable-xhdpi/player_landscape_btn_paopao_pressed.png 0xd822ef8d
res/drawable-xhdpi/player_landscape_download_normal.png 0xee7aad7f
res/drawable-xhdpi/player_landscape_download_pressed.png 0x455c2625
res/drawable-xhdpi/player_landscape_more_normal.png 0x41dc98c1
res/drawable-xhdpi/player_landscape_more_pressed.png 0x574b1438
res/drawable-xhdpi/player_landscape_next_normal.png 0x19548549
res/drawable-xhdpi/player_landscape_next_normal_1.png 0x8c07631c
res/drawable-xhdpi/player_landscape_next_pressed.png 0xc3ca3c8a
res/drawable-xhdpi/player_landscape_next_pressed_1.png 0xa127802
res/drawable-xhdpi/player_landscape_screen_off_normal.png 0x32c3e657
res/drawable-xhdpi/player_landscape_screen_off_pressed.png 0x3ccab448
res/drawable-xhdpi/player_landscape_screen_on_noraml.png 0x538eeed2
res/drawable-xhdpi/player_landscape_screen_on_pressed.png 0xab926f23
res/drawable-xhdpi/player_landscape_share_normal.png 0xfbc29256
res/drawable-xhdpi/player_landscape_share_pressed.png 0x204245c6
res/drawable-xhdpi/qiyi_sdk_play_portrait_btn_pause_normal.png 0x6e7a4941
res/drawable-xhdpi/qiyi_sdk_play_portrait_btn_pause_pressed.png 0x810ca554
res/drawable-xhdpi/qiyi_sdk_play_portrait_btn_player_normal.png 0x2f948853
res/drawable-xhdpi/qiyi_sdk_play_portrait_btn_player_pressed.png 0xe9eed674
res/drawable-xhdpi/quan_mg_233.png 0xd6c795ee
res/drawable-xhdpi/quan_mg_234.png 0x8da844cd
res/drawable-xhdpi/round_48px_1071539_easyicon.png 0xc24a6722
res/drawable-xhdpi/toast_collect.png 0xed174b5d
res/drawable-xhdpi/toast_uncollect.png 0xad9b5b86
res/drawable-xhdpi/yanse_baise.png 0xc1df8226
res/drawable-xhdpi/yanse_baisu.png 0x1da031d2
res/drawable-xhdpi/yanse_huhuise.png 0xbf5ef6c1
res/drawable-xhdpi/yanse_huise.png 0xd8256c99
res/drawable/aa.png 0xb4e4753e
res/drawable/ad_indicator_selected.png 0x3c90412a
res/drawable/bb.png 0x4e325f24
res/drawable/btn_style_alert_dialog_button.xml 0xaf2a6653
res/drawable/btn_style_alert_dialog_cancel.xml 0xe69cb350
res/drawable/btn_style_alert_dialog_special.xml 0x2760728a
res/drawable/caidan_btn_style.xml 0xe7d7fc0b
res/drawable/caidian_lie_style.xml 0xa3e3b0d5
res/drawable/caidian_lies_style.xml 0x3db6e9fa
res/drawable/cc.png 0xaf709172
res/drawable/e4alistview_new_message.png 0x1cdc5409
res/drawable/emoticon_pager_select_normal.png 0xd4b3274c
res/drawable/fancircle_banner_cover.png 0x635e2d55
res/drawable/hongsebtn.xml 0x8a92c48c
res/drawable/hou.png 0x356ecd7c
res/drawable/icon.png 0xf3d558cc
res/drawable/lansebtn.xml 0xa7608b23
res/drawable/moren.png 0x8a1f4b00
res/drawable/next_btn_style.xml 0x19c23410
res/drawable/ok_win10.xml 0xa4e2224f
res/drawable/ound_easyicon.png 0x9d7c819f
res/drawable/pause_btn_style.xml 0x9d314b5b
res/drawable/play_btn_style.xml 0x4c47af92
res/drawable/player_landscape_more_normal.png 0xcf66ec96
res/drawable/player_landscape_more_press.png 0x38397897
res/drawable/pre_btn_style.xml 0x3a59e2ed
res/drawable/qcloud_player_icon_audio_vol.png 0x73be6b62
res/drawable/qcloud_player_icon_brightness.png 0x3e7ba87b
res/drawable/qian.png 0xf69d578
res/drawable/qian1.png 0x6f020979
res/drawable/seekbar_define2_style.xml 0xdf058d71
res/drawable/seekbar_define_style.xml 0xab9f700a
res/drawable/seekbar_thumb.xml 0xc7ac7fef
res/drawable/umeng_socialize_more.png 0xd76dd455
res/drawable/umeng_socialize_qq.png 0x141c5ea2
res/drawable/umeng_socialize_qzone.png 0xefe76ab3
res/drawable/umeng_socialize_share_music.png 0x970770da
res/drawable/umeng_socialize_share_pic.png 0x1b838ca6
res/drawable/umeng_socialize_share_video.png 0x6eead77a
res/drawable/umeng_socialize_shareboard_item_background.xml 0x2b6939c4
res/drawable/umeng_socialize_title_back_bt.xml 0xd9071548
res/drawable/umeng_socialize_title_back_bt_normal.png 0xf06342af
res/drawable/umeng_socialize_title_back_bt_selected.png 0xa372e23a
res/drawable/umeng_socialize_title_right_bt.xml 0x30186b22
res/drawable/umeng_socialize_title_right_bt_normal.png 0x361e32e5
res/drawable/umeng_socialize_title_right_bt_selected.png 0x3abfd408
res/drawable/umeng_socialize_window_shadow_pad.xml 0xccbfb7d1
res/drawable/umeng_socialize_x_button.png 0x12819e5e
res/drawable/vive_yuanxing.xml 0x6663f83c
res/drawable/zidingyi_anniu_style.xml 0x315c21d
res/drawable/zidingyi_anniu_style1.xml 0x900abd67
res/drawable/zidingyi_anniu_style2.xml 0x6a4e1a60
res/layout/canduanxiang.xml 0xb8f9e539
res/layout/controllerplayinging.xml 0x80174b25
res/layout/controllerplayingok.xml 0x286200ea
res/layout/controllerplayingok_apy2.xml 0xd1ec6e1
res/layout/default_toast_layout.xml 0x79e77338
res/layout/error_toast_layout.xml 0x76749c08
res/layout/info_toast_layout.xml 0x30337319
res/layout/loading_dialog.xml 0x85152c15
res/layout/prom_dialog.xml 0x49e77e57
res/layout/refresh_layout.xml 0x8fcaceef
res/layout/success_toast_layout.xml 0xa5f54264
res/layout/umeng_socialize_oauth_dialog.xml 0xe16051ef
res/layout/umeng_socialize_post_share.xml 0x3e783b49
res/layout/umeng_socialize_shareboard_item.xml 0xd2aed40f
res/layout/umeng_socialize_titile_bar.xml 0x4b62bdb0
res/layout/warning_toast_layout.xml 0x7b03258f
res/xml/config.xml 0x6f818853
resources.arsc 0x93a5c843
Run screenshot
VirSCAN

About VirSCAN | Privacy Policy | Contact us | Links | Help VirSCAN
Translated by Keith Miller, United States
Powered By CentOSpol

京ICP备11007605号-12

pol

京公网安备 11010802020746号