APKCombo Installer icon

APKCombo_Installer_4.2_apkcombo.com.apk

APKCombo Installer

4.35 MB

Analyzed: 2026-02-04 19:24 UTC

APK Security & Privacy Score

Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.

Security Scan-weighted
65/100
Threat scan clean
Privacy Permissions & network
83/100
High-risk permissions HTTP URLs found Possible tracking
72/100
Caution
Overall trust

Source Verification

Status unverified
Observed hash 2f914530948bc8f2f3566f98e79620b4e358a81902fd9f9d19f69f6c74c3d706
A reference release was found, but hash values were not published.

Facts

Threat scan 0/76 flagged, 0 suspicious
Permissions 15 requested
Network strings 35 URLs (4 HTTP, 31 HTTPS)
Target SDK 29
Certificate Valid until 2045-03-28
Source verification UNVERIFIED (hash missing)

Warnings

Found 4 HTTP URL strings (unencrypted).
High-risk permissions detected: android.permission.REQUEST_INSTALL_PACKAGES, android.permission.REQUEST_DELETE_PACKAGES, android.permission.QUERY_ALL_PACKAGES, android.permission.RECEIVE_BOOT_COMPLETED
Reference release exists, but published hash is unavailable; trust confidence is reduced.
Possible analytics/tracking domains found: app-measurement.com, pagead2.googlesyndication.com, update.crashlytics.com
Package Name com.apkcombo.app
Version Code 42
Version Name 4.2
Debuggable No
Allow Backup No
Min SDK Android 21 (Lollipop)
Target SDK Android 29 (Android 10)
Supported ABIs
Universal

Certificate & Signer

Valid From 2020-04-03 04:07:49
Valid To 2045-03-28 04:07:49
Serial Number 694f6ad4
Thumbprint 69ce51c41d3c045373537cd9419582093a8cf130
Issuer: CN Lucy
Issuer: DN CN:Lucy
Subject: CN Lucy
Subject: DN CN:Lucy

Security Scan

0 /76
✓ Clean
Scanned by 76 security vendors
Last scan: 2026-02-04 12:34:19 +0000 UTC
Malicious
0
Suspicious
0
Harmless
0
Undetected
58
Timeout
5
Failure
7

Scan Providers

76 vendors
ALYac undetected
No result reported
Engine 2.0.0.10
APEX type-unsupported
No result reported
Engine 6.744
AVG failure
No result reported
Engine 23.9.8494.0
Acronis undetected
No result reported
Engine 1.2.0.121
AhnLab-V3 undetected
No result reported
Engine 3.29.1.10604
Alibaba undetected
No result reported
Engine 0.3.0.5
Antiy-AVL undetected
No result reported
Engine 3.0
Arcabit undetected
No result reported
Engine 2025.0.0.23
Avast failure
No result reported
Engine 23.9.8494.0
Avast-Mobile undetected
No result reported
Engine 260204-04
Avira undetected
No result reported
Engine 8.3.3.24
Baidu timeout
No result reported
Engine 1.0.0.2
BitDefender undetected
No result reported
Engine 7.2
BitDefenderFalx undetected
No result reported
Engine 2.0.936
Bkav undetected
No result reported
Engine 2.0.0.1
CAT-QuickHeal undetected
No result reported
Engine 22.00
CMC undetected
No result reported
Engine 2.4.2022.1
CTX undetected
No result reported
Engine 2024.8.29.1
ClamAV undetected
No result reported
Engine 1.5.1.0
CrowdStrike undetected
No result reported
Engine 1.0
Cylance timeout
No result reported
Engine 3.0.0.0
Cynet undetected
No result reported
Engine 4.0.3.4
DeepInstinct failure
No result reported
Engine 5.0.0.8
DrWeb undetected
No result reported
Engine 7.0.74.11120
ESET-NOD32 undetected
No result reported
Engine 18.2.18.0
Elastic type-unsupported
No result reported
Engine 4.0.248
Emsisoft undetected
No result reported
Engine 2024.8.0.61147
F-Secure undetected
No result reported
Engine 18.10.1547.307
Fortinet undetected
No result reported
Engine 7.0.30.0
GData undetected
No result reported
Engine GD:27.43421AVA:64.30606
Google undetected
No result reported
Engine 1770206447
Gridinsoft undetected
No result reported
Engine 1.0.237.174
Ikarus undetected
No result reported
Engine 6.4.16.0
Jiangmin undetected
No result reported
Engine 16.0.100
K7AntiVirus undetected
No result reported
Engine 14.33.58488
K7GW undetected
No result reported
Engine 14.33.58488
Kaspersky undetected
No result reported
Engine 22.0.1.28
Kingsoft undetected
No result reported
Engine None
Lionic undetected
No result reported
Engine 8.16
Malwarebytes undetected
No result reported
Engine 3.1.0.207
MaxSecure undetected
No result reported
Engine 1.0.0.1
McAfeeD undetected
No result reported
Engine 1.2.0.13486
MicroWorld-eScan undetected
No result reported
Engine 14.0.409.0
Microsoft undetected
No result reported
Engine 1.1.25110.1
NANO-Antivirus undetected
No result reported
Engine 1.0.170.26895
Paloalto type-unsupported
No result reported
Engine 0.9.0.1003
Panda undetected
No result reported
Engine 4.6.4.2
Rising undetected
No result reported
Engine 25.0.0.28
SUPERAntiSpyware undetected
No result reported
Engine 5.6.0.1032
Sangfor undetected
No result reported
Engine 2.22.3.0
SentinelOne timeout
No result reported
Engine 7.5.3.1
Skyhigh failure
No result reported
Sophos undetected
No result reported
Engine 3.3.1.0
Symantec undetected
No result reported
Engine 1.22.0.0
SymantecMobileInsight undetected
No result reported
Engine 2.0
TACHYON undetected
No result reported
Engine 2026-02-04.02
Tencent undetected
No result reported
Engine 1.0.0.1
Trapmine type-unsupported
No result reported
Engine 4.0.9.0
TrellixENS failure
No result reported
Engine 6.0.6.653
TrendMicro timeout
No result reported
Engine 24.550.0.1002
TrendMicro-HouseCall undetected
No result reported
Engine 24.550.0.1002
Trustlook undetected
No result reported
Engine 1.0
VBA32 undetected
No result reported
Engine 5.5.0
VIPRE undetected
No result reported
Engine 6.0.0.35
Varist timeout
No result reported
Engine 6.6.1.3
ViRobot undetected
No result reported
Engine 2014.3.20.0
VirIT failure
No result reported
Webroot undetected
No result reported
Engine 1.9.0.8
Xcitium undetected
No result reported
Engine 38385
Yandex undetected
No result reported
Engine 5.5.2.24
Zillya failure
No result reported
Engine 2.0.0.5536
ZoneAlarm undetected
No result reported
Engine 6.22-112233618
Zoner undetected
No result reported
Engine 2.2.2.0
alibabacloud type-unsupported
No result reported
Engine 2.2.0
huorong undetected
No result reported
Engine 71f0b6d:71f0b6d:c477ed4:c477ed4
tehtris type-unsupported
No result reported
Engine v0.1.4

File Signatures

SHA-256 2f914530948bc8f2f3566f98e79620b4e358a81902fd9f9d19f69f6c74c3d706
MD5 d87afcb8811f86e245983158ccc070f2
SHA-1 b55167f07b23a7e80722445112a8ab484e6ef697
SSDEEP 98304:zvDTpSuRGCemJrj4IqHd7rlfgpkQnUc7wW1RBkLfrZUDUnM:7DTpS4ZJIIK7rlrQUC1RinM
TLSH T14F260286F32DA03FD5B781378AB6037266960C0940A6EB231659B31C6EF7E405F59FC9
VHASH 9c3b212d61f408cb83183df26d5fea9c
PERMHASH fe9b968950989fef66127ef6c70d4ac3a22228a99cd5d7e9613ef7fa1395c05b

File Intelligence

Type Description Android Human-friendly file type name based on multiple detection methods.
Type Extension apk Most likely file extension inferred from the content.
Type Tag android Primary type tag assigned by the classifier.
Type Tags executable, mobile, android, apk Additional type tags that describe the file content.
Magic Zip archive data, at least v0.0 to extract, compression method=store File signature result from magic bytes inspection.
Magika APK File type predicted by Magika (ML-based file type detection).
TrID Android Package (35.7%), Java Archive (17.8%), VYM Mind Map (16.5%), Sweet Home 3D Design (generic) (13.9%), Mozilla Firefox browser extension (10.5%) TrID file type guesses with probabilities.
dhash 0000001c1c0d0408 Perceptual hash used to compare visual similarity of files.
raw md5 70a84b2144860e2df61f02e8f5db2eef Raw MD5 hash of the file contents.
extensions xml (501), png (399), version (36), properties (24), kotlin_module (6), kotlin_builtins (5), arsc (1), dex (1), gz (1), json (1), md (1), MF (1), past (1), pk8 (1), RSA (1), SF (1) File extensions found inside the APK and how many of each.
file types XML (501), PNG (399), unknown (99), DEX (1) Detected embedded file types and their counts.
highest datetime 1981-01-01 01:01:02 UTC Latest timestamp found among files inside the archive.
lowest datetime 1981-01-01 01:01:02 UTC Earliest timestamp found among files inside the archive.
num children 1174 Number of files contained within the archive.
type APK Container type detected for the analyzed file.
uncompressed size 8.6 MB Estimated total size of all files after extraction.

Deep Manifest Analysis

Activity Intents (2)

com.apkcombo.app.ui.activities.MainActivity
Actions
Main Activity Action: Start as a main entry point, does not expect to android.intent.action.MAIN
OPEN_URL OPEN_URL
View Activity Action: Display the data to the user. android.intent.action.VIEW
Categories
android.intent.category.LAUNCHER android.intent.category.LEANBACK_LAUNCHER android.intent.category.DEFAULT android.intent.category.BROWSABLE android.intent.category.OPENABLE
com.apkcombo.app.ui.activities.NotificationActivity
Actions
OPEN_URL_ACTION OPEN_URL_ACTION
Categories
android.intent.category.DEFAULT

Service Intents (2)

com.apkcombo.app.firebase.APKComboFirebaseMessagingService
Actions
Firebase messaging event Action used by Firebase to deliver a push message to the app. com.google.firebase.MESSAGING_EVENT
Firebase messaging service Handles push notifications and data messages from Firebase Cloud Messaging. com.google.firebase.messaging.FirebaseMessagingService
Actions
Firebase messaging event Action used by Firebase to deliver a push message to the app. com.google.firebase.MESSAGING_EVENT

Receiver Intents (8)

androidx.work.impl.background.systemalarm.ConstraintProxy$BatteryChargingProxy
Actions
Power Connected Broadcast Action: External power has been connected to the device. android.intent.action.ACTION_POWER_CONNECTED
android.intent.action.ACTION_POWER_DISCONNECTED android.intent.action.ACTION_POWER_DISCONNECTED
androidx.work.impl.background.systemalarm.ConstraintProxy$BatteryNotLowProxy
Actions
Battery Okay Broadcast Action: Indicates the battery is now okay after being low. android.intent.action.BATTERY_OKAY
Battery Low Broadcast Action: Indicates low battery condition on the device. android.intent.action.BATTERY_LOW
androidx.work.impl.background.systemalarm.ConstraintProxy$NetworkStateProxy
Actions
android.net.conn.CONNECTIVITY_CHANGE android.net.conn.CONNECTIVITY_CHANGE
androidx.work.impl.background.systemalarm.ConstraintProxy$StorageNotLowProxy
Actions
Device Storage Low Broadcast Action: A sticky broadcast that indicates low memory android.intent.action.DEVICE_STORAGE_LOW
Device Storage Ok Broadcast Action: Indicates low memory condition on the device no longer exists android.intent.action.DEVICE_STORAGE_OK
androidx.work.impl.background.systemalarm.ConstraintProxyUpdateReceiver
Actions
androidx.work.impl.background.systemalarm.UpdateProxies androidx.work.impl.background.systemalarm.UpdateProxies
Work rescheduler Reschedules background work after reboot or app update. androidx.work.impl.background.systemalarm.RescheduleReceiver
Actions
Boot Completed Broadcast Action: This is broadcast once, after the system has finished android.intent.action.BOOT_COMPLETED
Time Changed Broadcast Action: The time was set. android.intent.action.TIME_SET
Timezone Changed Broadcast Action: The timezone has changed. android.intent.action.TIMEZONE_CHANGED
com.apkcombo.app.update.receiver.AppUpdateServiceReceiver
Actions
Boot Completed Broadcast Action: This is broadcast once, after the system has finished android.intent.action.BOOT_COMPLETED
android.intent.action.QUICKBOOT_POWERON android.intent.action.QUICKBOOT_POWERON
com.google.firebase.iid.FirebaseInstanceIdReceiver
Actions
com.google.android.c2dm.intent.RECEIVE com.google.android.c2dm.intent.RECEIVE

Requested Permissions (15)

view network connections Allows the app to view information about network connections such as which networks exist and are connected. android.permission.ACCESS_NETWORK_STATE
have full network access Allows the app to create network sockets and use custom network protocols. The browser and other applications provide means to send data to the internet, so this permission is not required to send data to the internet. android.permission.INTERNET
run at startup Allows the app to have itself started as soon as the system has finished booting. This can make it take longer to start the tablet and allow the app to slow down the overall tablet by always running. android.permission.RECEIVE_BOOT_COMPLETED
keep car screen turned on Allows the app to keep the car screen turned on. android.permission.WAKE_LOCK
read the contents of your shared storage Allows the app to read the contents of your shared storage. android.permission.READ_EXTERNAL_STORAGE
modify or delete the contents of your shared storage Allows the app to write the contents of your shared storage. android.permission.WRITE_EXTERNAL_STORAGE
android.permission.REQUEST_INSTALL_PACKAGES Custom app or vendor permission (not publicly documented). android.permission.REQUEST_INSTALL_PACKAGES
android.permission.REQUEST_DELETE_PACKAGES Custom app or vendor permission (not publicly documented). android.permission.REQUEST_DELETE_PACKAGES
Foreground service Allows the app to run a foreground service. android.permission.FOREGROUND_SERVICE
android.permission.QUERY_ALL_PACKAGES Custom app or vendor permission (not publicly documented). android.permission.QUERY_ALL_PACKAGES
moe.shizuku.manager.permission.API_V23 Custom app or vendor permission (not publicly documented). moe.shizuku.manager.permission.API_V23
com.google.android.gms.permission.AD_ID Custom app or vendor permission (not publicly documented). com.google.android.gms.permission.AD_ID
Cloud messaging receive Allows the app to receive push messages via Google/Firebase Cloud Messaging. com.google.android.c2dm.permission.RECEIVE
Install Referrer service Allows Google Play to bind to the app's Install Referrer service for install attribution. com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE
moe.shizuku.manager.permission.API Custom app or vendor permission (not publicly documented). moe.shizuku.manager.permission.API

Uses Features (4)

Bluetooth Feature for {@link #getSystemAvailableFeatures} and android.hardware.bluetooth
Location Gps Feature for {@link #getSystemAvailableFeatures} and android.hardware.location.gps
Touchscreen Feature for {@link #getSystemAvailableFeatures} and android.hardware.touchscreen
Leanback Feature for {@link #getSystemAvailableFeatures} and android.software.leanback

Activities (13)

com.apkcombo.app.ui.activities.BackupSettingsActivity
com.apkcombo.app.ui.activities.BackupManageAppActivity
com.apkcombo.app.ui.activities.DonateActivity
com.apkcombo.app.ui.activities.MiActivity
com.apkcombo.app.ui.activities.NotificationActivity
com.apkcombo.app.ui.activities.MainActivity
com.apkcombo.app.ui.activities.PreferencesActivity
com.apkcombo.app.ui.activities.AboutActivity
com.apkcombo.app.ui.activities.ConfirmationIntentWrapperActivity
com.apkcombo.app.ui.activities.LicensesActivity
com.apkcombo.app.installer2.impl.rootless.ConfirmationIntentWrapperActivity2
com.inmobi.ads.rendering.InMobiAdActivity
com.google.android.gms.common.api.GoogleApiActivity

Services (13)

com.apkcombo.app.installer.rootless.RootlessSAIPIService
com.apkcombo.app.backup2.impl.BackupService2
com.apkcombo.app.firebase.APKComboFirebaseMessagingService
Firebase messaging service Handles push notifications and data messages from Firebase Cloud Messaging. com.google.firebase.messaging.FirebaseMessagingService
com.google.firebase.components.ComponentDiscoveryService
com.google.android.gms.measurement.AppMeasurementService
com.google.android.gms.measurement.AppMeasurementJobService
androidx.work.impl.background.systemalarm.SystemAlarmService
androidx.work.impl.background.systemjob.SystemJobService
androidx.work.impl.foreground.SystemForegroundService
androidx.room.MultiInstanceInvalidationService
com.google.android.datatransport.runtime.backends.TransportBackendDiscovery
com.google.android.datatransport.runtime.scheduling.jobscheduling.JobInfoSchedulerService

Broadcast Receivers (11)

com.apkcombo.app.update.receiver.AppUpdateServiceReceiver com.apkcombo.app.update.receiver.AppUpdateServiceReceiver
com.google.firebase.iid.FirebaseInstanceIdReceiver com.google.firebase.iid.FirebaseInstanceIdReceiver
com.google.android.gms.measurement.AppMeasurementReceiver com.google.android.gms.measurement.AppMeasurementReceiver
androidx.work.impl.utils.ForceStopRunnable$BroadcastReceiver androidx.work.impl.utils.ForceStopRunnable$BroadcastReceiver
androidx.work.impl.background.systemalarm.ConstraintProxy$BatteryChargingProxy androidx.work.impl.background.systemalarm.ConstraintProxy$BatteryChargingProxy
androidx.work.impl.background.systemalarm.ConstraintProxy$BatteryNotLowProxy androidx.work.impl.background.systemalarm.ConstraintProxy$BatteryNotLowProxy
androidx.work.impl.background.systemalarm.ConstraintProxy$StorageNotLowProxy androidx.work.impl.background.systemalarm.ConstraintProxy$StorageNotLowProxy
androidx.work.impl.background.systemalarm.ConstraintProxy$NetworkStateProxy androidx.work.impl.background.systemalarm.ConstraintProxy$NetworkStateProxy
Work rescheduler Reschedules background work after reboot or app update. androidx.work.impl.background.systemalarm.RescheduleReceiver
androidx.work.impl.background.systemalarm.ConstraintProxyUpdateReceiver androidx.work.impl.background.systemalarm.ConstraintProxyUpdateReceiver
com.google.android.datatransport.runtime.scheduling.jobscheduling.AlarmManagerSchedulerBroadcastReceiver com.google.android.datatransport.runtime.scheduling.jobscheduling.AlarmManagerSchedulerBroadcastReceiver

Content Providers (7)

moe.shizuku.api.ShizukuBinderReceiveProvider
com.apkcombo.app.flavor.FlavorInitProvider
androidx.core.content.FileProvider
androidx.work.impl.WorkManagerInitializer
com.squareup.picasso.PicassoProvider
com.google.firebase.provider.FirebaseInitProvider
androidx.lifecycle.ProcessLifecycleOwnerInitializer

URL Endpoints (39)

http://tizen.org/feature/platform.version http://tizen.org/system/model_name http://www.amazon.com/gp/mas/dl/android?p= http://www.google.com https://ads.inmobi.com/sdk https://apkcombo-installer.firebaseio.com https://apkcombo.com/?utm_source=apkcombo_installer https://apkcombo.com/apk-downloader/?q= https://apkcombo.com/how-to-install/?utm_source=apkcombo_installer#enable-developer-options https://app-measurement.com/a https://config.inmobi.com/config-server/v1/config/secure.cfg https://crash-metrics.sdk.inmobi.com/trace https://f-droid.org/repository/browse/?fdid= https://firebase.google.com/support/guides/disable-analytics https://firebase.google.com/support/privacy/init-options https://github.com/ https://github.com/Aefyr/APKCombo https://github.com/javiersantos https://github.com/javiersantos/AppUpdater https://goo.gl/J1sWQy

Submission Details

Submitted At 2026-02-04
First Submission 2026-02-04
Last Submission 2026-02-04
Stored Until 2026-03-06