MT Manager icon

MT_Manager_2.26.1_apkcombo.com.apk

MT Manager

27.52 MB

Analyzed: 2026-02-04 02:11 UTC

APK Security & Privacy Score

Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.

Security Scan-weighted
60/100
Threat scan flagged
Privacy Permissions & network
75/100
High-risk permissions HTTP URLs found AllowBackup enabled Possible tracking
66/100
Caution
Overall trust

Source Verification

Status unverified
Observed hash 0a2bdce9dda10cc70db62d4a8bcec00adafa70c3fa2422e82f2ae2ed481397d9
Package exists, but this exact version could not be matched to a reference release. The file may come from a different channel.

Facts

Threat scan 1/76 flagged, 0 suspicious
Permissions 23 requested
Network strings 58 URLs (9 HTTP, 49 HTTPS)
Target SDK 30
Certificate Valid until 3012-10-21
Source verification UNVERIFIED (version mismatch)

Warnings

Threat scan flagged: 1/76 scanners marked this file as malicious.
Found 9 HTTP URL strings (unencrypted).
High-risk permissions detected: android.permission.ACCESS_SUPERUSER, android.permission.REQUEST_INSTALL_PACKAGES, android.permission.SYSTEM_ALERT_WINDOW, android.permission.REQUEST_DELETE_PACKAGES, android.permission.QUERY_ALL_PACKAGES
Reference version could not be matched; file may come from a different distribution channel.
AllowBackup is enabled.
Possible analytics/tracking domains found: aaid.umeng.com, alogsus.umeng.com, alogus.umeng.com, developer.umeng.com, plbslog.umeng.com
Package Name bin.mt.plus
Version Code 26011668
Version Name 2.26.1
Debuggable No
Allow Backup Yes
Min SDK Android 21 (Lollipop)
Target SDK Android 30 (Android 11)
Supported ABIs
arm64-v8a armeabi-v7a x86 x86_64

Certificate & Signer

Valid From 2013-06-20 11:53:19
Valid To 3012-10-21 11:53:19
Serial Number 24adf7de
Thumbprint 9779572c0ec948c3502d7985f9590fbfbde1ab24
Issuer: CN bin
Issuer: DN CN:bin
Subject: CN bin
Subject: DN CN:bin

Security Scan

1 /76
⚠️ Threats Detected
Detected by 1 vendor: AhnLab-V3 (PUP/Android.FLPrev.1255949)
Scanned by 76 security vendors
Last scan: 2026-02-03 07:24:58 +0000 UTC
Malicious
1
Suspicious
0
Harmless
0
Undetected
66
Timeout
0
Failure
0

Scan Providers

76 vendors
ALYac undetected
No result reported
Engine 2.0.0.10
APEX type-unsupported
No result reported
Engine 6.743
AVG undetected
No result reported
Engine 23.9.8494.0
Acronis undetected
No result reported
Engine 1.2.0.121
AhnLab-V3 malicious
PUP/Android.FLPrev.1255949
Engine 3.29.1.10604
Alibaba undetected
No result reported
Engine 0.3.0.5
Antiy-AVL undetected
No result reported
Engine 3.0
Arcabit undetected
No result reported
Engine 2025.0.0.23
Avast undetected
No result reported
Engine 23.9.8494.0
Avast-Mobile undetected
No result reported
Engine 260202-00
Avira undetected
No result reported
Engine 8.3.3.24
Baidu undetected
No result reported
Engine 1.0.0.2
BitDefender undetected
No result reported
Engine 7.2
BitDefenderFalx undetected
No result reported
Engine 2.0.936
Bkav undetected
No result reported
Engine 2.0.0.1
CAT-QuickHeal undetected
No result reported
Engine 22.00
CMC undetected
No result reported
Engine 2.4.2022.1
CTX undetected
No result reported
Engine 2024.8.29.1
ClamAV undetected
No result reported
Engine 1.5.1.0
CrowdStrike undetected
No result reported
Engine 1.0
Cylance type-unsupported
No result reported
Engine 3.0.0.0
Cynet type-unsupported
No result reported
Engine 4.0.3.4
DeepInstinct type-unsupported
No result reported
Engine 5.0.0.8
DrWeb undetected
No result reported
Engine 7.0.74.11120
ESET-NOD32 undetected
No result reported
Engine 18.2.18.0
Elastic undetected
No result reported
Engine 4.0.247
Emsisoft undetected
No result reported
Engine 2024.8.0.61147
F-Secure undetected
No result reported
Engine 18.10.1547.307
Fortinet undetected
No result reported
Engine 7.0.30.0
GData undetected
No result reported
Engine GD:27.43407AVA:64.30600
Google undetected
No result reported
Engine 1770098429
Gridinsoft undetected
No result reported
Engine 1.0.237.174
Ikarus undetected
No result reported
Engine 6.4.16.0
Jiangmin undetected
No result reported
Engine 16.0.100
K7AntiVirus undetected
No result reported
Engine 14.33.58476
K7GW undetected
No result reported
Engine 14.33.58476
Kaspersky undetected
No result reported
Engine 22.0.1.28
Kingsoft undetected
No result reported
Engine None
Lionic undetected
No result reported
Engine 8.16
Malwarebytes undetected
No result reported
Engine 3.1.0.207
MaxSecure undetected
No result reported
Engine 1.0.0.1
McAfeeD undetected
No result reported
Engine 1.2.0.13486
MicroWorld-eScan undetected
No result reported
Engine 14.0.409.0
Microsoft undetected
No result reported
Engine 1.1.25110.1
NANO-Antivirus undetected
No result reported
Engine 1.0.170.26895
Paloalto type-unsupported
No result reported
Engine 0.9.0.1003
Panda undetected
No result reported
Engine 4.6.4.2
Rising undetected
No result reported
Engine 25.0.0.28
SUPERAntiSpyware undetected
No result reported
Engine 5.6.0.1032
Sangfor undetected
No result reported
Engine 2.22.3.0
SentinelOne type-unsupported
No result reported
Engine 7.5.3.1
Skyhigh undetected
No result reported
Engine v2021.2.0+4045
Sophos undetected
No result reported
Engine 3.3.1.0
Symantec undetected
No result reported
Engine 1.22.0.0
SymantecMobileInsight undetected
No result reported
Engine 2.0
TACHYON undetected
No result reported
Engine 2026-02-03.02
Tencent undetected
No result reported
Engine 1.0.0.1
Trapmine type-unsupported
No result reported
Engine 4.0.8.0
TrellixENS undetected
No result reported
Engine 6.0.6.653
TrendMicro undetected
No result reported
Engine 24.550.0.1002
TrendMicro-HouseCall undetected
No result reported
Engine 24.550.0.1002
Trustlook undetected
No result reported
Engine 1.0
VBA32 undetected
No result reported
Engine 5.5.0
VIPRE undetected
No result reported
Engine 6.0.0.35
Varist undetected
No result reported
Engine 6.6.1.3
ViRobot undetected
No result reported
Engine 2014.3.20.0
VirIT undetected
No result reported
Engine 9.5.1136
Webroot undetected
No result reported
Engine 1.9.0.8
Xcitium undetected
No result reported
Engine 38381
Yandex undetected
No result reported
Engine 5.5.2.24
Zillya undetected
No result reported
Engine 2.0.0.5536
ZoneAlarm undetected
No result reported
Engine 6.22-112233576
Zoner undetected
No result reported
Engine 2.2.2.0
alibabacloud type-unsupported
No result reported
Engine 2.2.0
huorong undetected
No result reported
Engine 7d4d51e:7d4d51e:7a189e7:7a189e7
tehtris type-unsupported
No result reported

File Signatures

SHA-256 0a2bdce9dda10cc70db62d4a8bcec00adafa70c3fa2422e82f2ae2ed481397d9
MD5 2e6c4bbd0a0324736e6e429006c9238f
SHA-1 e52880ca2d911852a1f8764fa920955066d4dc34
SSDEEP 786432:LscFXgvk2cXyWZU0wqYx/4/B6winCsaTwFqmuxuN:YqXgvk2R02w6jCfTaqX+
TLSH T17C572395278914AEC43651BA8842263B7AEB4CBD37A7531715103A3E2CF36E44F6DBCC
VHASH 944b24e90c58ff60d83180795c69dc74
PERMHASH 02292a67089b0685b6afe3ea7bca82ed73e2ed9277f57c35f39d05b703bee24a

File Intelligence

Type Description Android Human-friendly file type name based on multiple detection methods.
Type Extension apk Most likely file extension inferred from the content.
Type Tag android Primary type tag assigned by the classifier.
Type Tags executable, mobile, android, apk Additional type tags that describe the file content.
Magic Zip archive data, at least v1.0 to extract, compression method=deflate File signature result from magic bytes inspection.
Magika APK File type predicted by Magika (ML-based file type detection).
TrID SPSS Extension (28.4%), Android Package (25.5%), Java Archive (12.7%), VYM Mind Map (11.8%), Sweet Home 3D Design (generic) (9.9%) TrID file type guesses with probabilities.
dhash 0000000c0e090400 Perceptual hash used to compare visual similarity of files.
raw md5 8bf4bff76bd38519459a0a639c180108 Raw MD5 hash of the file contents.
extensions xml (426), mtsx (53), so (44), mtl (22), properties (10), kotlin_builtins (8), dex (4), json (2), apk (1), arsc (1), bin (1), class (1), CoroutineExceptionHandler (1), dat (1), MainDispatcherFactory (1), pem (1), pk8 (1), png (1), Provider (1), smali (1), textproto (1), ttf (1), txt (1) File extensions found inside the APK and how many of each.
file types XML (659), PNG (161), unknown (125), ELF (48), DEX (4), Java Bytecode (2), ZIP (1) Detected embedded file types and their counts.
highest datetime 2026-01-16 16:30:14 UTC Latest timestamp found among files inside the archive.
lowest datetime 2013-06-20 20:53:18 UTC Earliest timestamp found among files inside the archive.
num children 2162 Number of files contained within the archive.
type APK Container type detected for the analyzed file.
uncompressed size 56 MB Estimated total size of all files after extraction.

Deep Manifest Analysis

Activity Intents (1)

com.tencent.tauth.AuthActivity
Actions
View Activity Action: Display the data to the user. android.intent.action.VIEW
Categories
android.intent.category.DEFAULT android.intent.category.BROWSABLE

Service Intents (1)

bin.mt.function.ar.ActivityRecordService
Actions
android.accessibilityservice.AccessibilityService android.accessibilityservice.AccessibilityService

Native Libraries (12)

libdeflate libdeflate.so
libffmpegJNI libffmpegJNI.so
libhook libhook.so
liblsplant liblsplant.so
libmt1 libmt1.so
libmt2 libmt2.so
libmt3 libmt3.so
libmtprotect libmtprotect.so
libpl_droidsonroids_gif libpl_droidsonroids_gif.so
libterm libterm.so
libumeng-spy libumeng-spy.so
libzstd-jni-1.5.7-6 libzstd-jni-1.5.7-6.so

Requested Permissions (23)

view network connections Allows the app to view information about network connections such as which networks exist and are connected. android.permission.ACCESS_NETWORK_STATE
view Wi-Fi connections Allows the app to view information about Wi-Fi networking, such as whether Wi-Fi is enabled and name of connected Wi-Fi devices. android.permission.ACCESS_WIFI_STATE
have full network access Allows the app to create network sockets and use custom network protocols. The browser and other applications provide means to send data to the internet, so this permission is not required to send data to the internet. android.permission.INTERNET
change your audio settings Allows the app to modify global audio settings such as volume and which speaker is used for output. android.permission.MODIFY_AUDIO_SETTINGS
android.permission.REQUEST_INSTALL_PACKAGES Custom app or vendor permission (not publicly documented). android.permission.REQUEST_INSTALL_PACKAGES
android.permission.REQUEST_DELETE_PACKAGES Custom app or vendor permission (not publicly documented). android.permission.REQUEST_DELETE_PACKAGES
android.permission.QUERY_ALL_PACKAGES Custom app or vendor permission (not publicly documented). android.permission.QUERY_ALL_PACKAGES
control vibration Allows the app to control the vibrator. android.permission.VIBRATE
keep car screen turned on Allows the app to keep the car screen turned on. android.permission.WAKE_LOCK
read the contents of your shared storage Allows the app to read the contents of your shared storage. android.permission.READ_EXTERNAL_STORAGE
modify or delete the contents of your shared storage Allows the app to write the contents of your shared storage. android.permission.WRITE_EXTERNAL_STORAGE
android.permission.MANAGE_EXTERNAL_STORAGE Custom app or vendor permission (not publicly documented). android.permission.MANAGE_EXTERNAL_STORAGE
This app can appear on top of other apps This app can appear on top of other apps or other parts of the screen. This may interfere with normal app usage and change the way that other apps appear. android.permission.SYSTEM_ALERT_WINDOW
Foreground service Allows the app to run a foreground service. android.permission.FOREGROUND_SERVICE
android.permission.FOREGROUND_SERVICE_MEDIA_PROJECTION Custom app or vendor permission (not publicly documented). android.permission.FOREGROUND_SERVICE_MEDIA_PROJECTION
android.permission.FOREGROUND_SERVICE_SPECIAL_USE Custom app or vendor permission (not publicly documented). android.permission.FOREGROUND_SERVICE_SPECIAL_USE
android.permission.REQUEST_IGNORE_BATTERY_OPTIMIZATIONS Custom app or vendor permission (not publicly documented). android.permission.REQUEST_IGNORE_BATTERY_OPTIMIZATIONS
android.permission.ACCESS_SUPERUSER Custom app or vendor permission (not publicly documented). android.permission.ACCESS_SUPERUSER
App badge update Allows the app to update the launcher icon badge count on launcher launchers. com.android.launcher.permission.INSTALL_SHORTCUT
App badge update Allows the app to update the launcher icon badge count on launcher launchers. com.android.launcher.permission.UNINSTALL_SHORTCUT
moe.shizuku.manager.permission.API_V23 Custom app or vendor permission (not publicly documented). moe.shizuku.manager.permission.API_V23
Dynamic receiver access Internal app permission used to protect dynamic broadcast receivers. bin.mt.plus.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION
com.rosan.dhizuku.permission.API Custom app or vendor permission (not publicly documented). com.rosan.dhizuku.permission.API

Activities (11)

bin.mt.plus.Main
bin.mt.plus.ShortcutActivity
bin.mt.plus.WXPayEntryActivity
com.tencent.tauth.AuthActivity
com.tencent.connect.common.AssistActivity
com.alipay.sdk.app.H5PayActivity
com.alipay.sdk.app.H5AuthActivity
com.alipay.sdk.app.PayResultActivity
com.alipay.sdk.app.AlipayResultActivity
com.alipay.sdk.app.H5OpenAuthActivity
com.alipay.sdk.app.APayEntranceActivity

Services (1)

bin.mt.function.ar.ActivityRecordService

URL Endpoints (80)

http://acs.amazonaws.com/groups/global/AllUsers http://acs.amazonaws.com/groups/global/AuthenticatedUsers http://acs.amazonaws.com/groups/s3/LogDelivery http://developer.umeng.com/docs/66650/cate/66650 http://g.co/dev/packagevisibility http://mclient.alipay.com/cashier/mobilepay.htm http://mclient.alipay.com/home/exterfaceAssign.htm http://mclient.alipay.com/service/rest.htm http://schemas.microsoft.com/DRM/2007/03/protocols/AcquireLicense http://wappaygw.alipay.com/service/rest.htm http://xml.org/sax/features/external-general-entities http://xml.org/sax/features/external-parameter-entities http://xml.org/sax/features/namespace-prefixes http://xml.org/sax/properties/lexical-handler http://xmlpull.org/v1/doc/features.html#indent-output http://xmlpull.org/v1/doc/features.html#process-docdecl http://xmlpull.org/v1/doc/features.html#process-namespaces http://xmlpull.org/v1/doc/features.html#relaxed https://aaid.umeng.com/api/postZdata https://aaid.umeng.com/api/updateZdata

Submission Details

Submitted At 2026-02-04
First Submission 2026-02-04
Last Submission 2026-02-04
Stored Until 2026-03-06