MegaCraft 0.14.3 icon

base.apk

MegaCraft 0.14.3

19.42 MB

Analyzed: 2026-07-17 08:48 UTC

APK Security & Privacy Score

Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.

Security Scan-weighted
87/100
Threat scan flagged Outdated target SDK
Privacy Permissions & network
94/100
HTTP URLs found Possible tracking Low data access
90/100
Excellent
Overall trust

Facts

Threat scan 1/74 flagged, 0 suspicious
Permissions 5 requested
Network strings 105 URLs (15 HTTP, 90 HTTPS)
Target SDK 26
Certificate Valid until 2035-07-17 (9 years, suspicious)

Warnings

Threat scan flagged: 1/74 scanners marked this file as malicious.
Found 15 HTTP URL strings (unencrypted).
Possible analytics/tracking domains found: googleads.g.doubleclick.net, pagead2.googlesyndication.com
Package Name com.craft.mega
Version Code 760140307
Version Name 0.14.3
Debuggable No
Allow Backup No
Min SDK Android 17 (Jelly Bean)
Target SDK Android 26 (Oreo)
Supported ABIs
armeabi-v7a

Certificate & Signer

Valid From 2008-02-29 01:33:46
Valid To 2035-07-17 01:33:46
Serial Number 936eacbe07f201df
Thumbprint 61ed377e85d386a8dfee6b864bd85b0bfaa5af81
Issuer: C US
Issuer: CN Android
Issuer: DN C:US, CN:Android, L:Mountain View, O:Android, ST:California, OU:Android, email:android@android.com
Issuer: L Mountain View
Issuer: O Android
Issuer: OU Android
Issuer: ST California
Issuer: email android@android.com
Subject: C US
Subject: CN Android
Subject: DN C:US, CN:Android, L:Mountain View, O:Android, ST:California, OU:Android, email:android@android.com
Subject: L Mountain View
Subject: O Android
Subject: OU Android
Subject: ST California
Subject: email android@android.com

Security Scan

1 /74
⚠️ Threats Detected
Detected by 1 vendor: BitDefenderFalx (Android.Riskware.TestKey.rA)
Scanned by 74 security vendors
Last scan: 2026-07-17 08:48 UTC
Malicious
1
Suspicious
0
Harmless
0
Undetected
65
Timeout
1
Failure
1

Scan Providers

74 vendors
ALYac undetected
No result reported
Engine 2.0.0.10
APEX type-unsupported
No result reported
Engine 6.799
AVG undetected
No result reported
Engine 23.9.8494.0
Acronis undetected
No result reported
Engine 1.2.0.121
AhnLab-V3 undetected
No result reported
Engine 3.30.1.10706
Alibaba undetected
No result reported
Engine 0.3.0.5
Antiy-AVL undetected
No result reported
Engine 3.0
Arcabit undetected
No result reported
Engine 2025.0.0.23
Avast undetected
No result reported
Engine 23.9.8494.0
Avast-Mobile undetected
No result reported
Engine 260717-00
Avira undetected
No result reported
Engine 8.3.3.24
BitDefender undetected
No result reported
Engine 7.2
BitDefenderFalx malicious
Android.Riskware.TestKey.rA
Engine 2.0.936
Bkav undetected
No result reported
Engine 8.2.40(8338)
CAT-QuickHeal undetected
No result reported
Engine 22.00
CMC undetected
No result reported
Engine 2.4.2022.1
CTX undetected
No result reported
Engine 2024.8.29.1
ClamAV undetected
No result reported
Engine 1.5.3.0
CrowdStrike undetected
No result reported
Engine 1.0
Cylance type-unsupported
No result reported
Engine 3.0.0.0
Cynet undetected
No result reported
Engine 4.0.3.4
DrWeb undetected
No result reported
Engine 7.0.75.2070
ESET-NOD32 undetected
No result reported
Engine 18.2.18.0
Elastic undetected
No result reported
Engine 4.0.273
Emsisoft undetected
No result reported
Engine 2024.8.0.61147
F-Secure undetected
No result reported
Engine 18.10.1547.307
Fortinet undetected
No result reported
Engine 7.0.48.0
GData undetected
No result reported
Engine GD:27.45296AVA:64.31593
Google undetected
No result reported
Engine 1784275293
Gridinsoft undetected
No result reported
Engine 1.0.250.174
Ikarus failure
No result reported
Engine 6.5.4.0
Jiangmin undetected
No result reported
Engine 16.0.100
K7AntiVirus undetected
No result reported
Engine 14.63.60160
K7GW undetected
No result reported
Engine 14.63.60162
Kaspersky undetected
No result reported
Engine 22.0.1.28
Kingsoft undetected
No result reported
Engine None
Lionic undetected
No result reported
Engine 8.16
Malwarebytes undetected
No result reported
Engine 3.1.0.246
MaxSecure timeout
No result reported
Engine 1.0.0.1
McAfeeD undetected
No result reported
Engine 1.2.0.15146
MicroWorld-eScan undetected
No result reported
Engine 14.0.409.0
Microsoft undetected
No result reported
Engine 1.1.26060.3008
NANO-Antivirus undetected
No result reported
Engine 1.0.170.26895
Paloalto type-unsupported
No result reported
Engine 0.9.0.1003
Panda undetected
No result reported
Engine 4.6.4.2
Rising undetected
No result reported
Engine 25.0.0.28
SUPERAntiSpyware undetected
No result reported
Engine 5.6.0.1032
Sangfor undetected
No result reported
Engine 2.22.3.0
SentinelOne undetected
No result reported
Engine 7.7.0.1
Skyhigh undetected
No result reported
Engine v2021.2.0+4045
Sophos undetected
No result reported
Engine 3.6.2.0
Symantec undetected
No result reported
Engine 1.22.0.0
SymantecMobileInsight undetected
No result reported
Engine 2.0
TACHYON undetected
No result reported
Engine 2026-07-17.02
Tencent undetected
No result reported
Engine 1.0.0.1
Trapmine type-unsupported
No result reported
Engine 4.0.14.0
TrellixENS undetected
No result reported
Engine 6.0.6.653
TrendMicro undetected
No result reported
Engine 24.550.0.1002
TrendMicro-HouseCall undetected
No result reported
Engine 24.550.0.1002
Trustlook undetected
No result reported
Engine 1.0
VBA32 undetected
No result reported
Engine 5.6.1
VIPRE undetected
No result reported
Engine 6.0.0.35
Varist undetected
No result reported
Engine 6.6.1.3
ViRobot undetected
No result reported
Engine 2014.3.20.0
VirIT undetected
No result reported
Engine 9.5.1251
Webroot undetected
No result reported
Engine 1.9.0.8
Xcitium undetected
No result reported
Engine 38813
Yandex undetected
No result reported
Engine 5.5.2.24
Zillya undetected
No result reported
Engine 2.0.0.5643
ZoneAlarm undetected
No result reported
Engine 6.26-117392280
Zoner undetected
No result reported
Engine 2.2.2.0
alibabacloud type-unsupported
No result reported
Engine 2.2.0
huorong undetected
No result reported
Engine c765f78:c765f78:c4a569e:c4a569e
tehtris type-unsupported
No result reported

File Signatures

SHA-256 da646d41de360bea6a599853644a7ee29efbf03146391a1a525b842d1bd642b7
MD5 e97ac2f2226a1d004c849e38d70da942
SHA-1 7480d92f5304a80d8d2150baaba3d5b4432c096f
SSDEEP 393216:VsU72UNnwz2JMzFftHMhPgdaxI1Rh1gzdrkAhugGOlN7lNaovkTQbfPXt9:/2+kFshTUh1KhGOlNxWTsL
TLSH T1C9273350F651C19ACCF3A53AE06BA083E99807586225F96F9FE8940877F5E81070BFF5
VHASH 4752322c0a1f0ca846ac5797177217f0
PERMHASH f97d3b2d1a87717e7a078dee300869a93771891cc14b45211ef4125bb9b5f27e

File Intelligence

Type Description Android Human-friendly file type name based on multiple detection methods.
Type Extension apk Most likely file extension inferred from the content.
Type Tag android Primary type tag assigned by the classifier.
Type Tags executable, mobile, android, apk Additional type tags that describe the file content.
Magic Java archive data (JAR) File signature result from magic bytes inspection.
Magika APK File type predicted by Magika (ML-based file type detection).
TrID Android Package (60.6%), Java Archive (30.3%), ZIP compressed archive (8.9%) TrID file type guesses with probabilities.
dhash 000000080e0f0c00 Perceptual hash used to compare visual similarity of files.
raw md5 6ab378a262d0aaf10ead88d1d11845aa Raw MD5 hash of the file contents.
extensions png (810), fsb (90), fragment (22), material (20), vertex (17), json (16), tga (16), images (3), meta (2), bin (1), h (1), lang (1), xml (1) File extensions found inside the APK and how many of each.
file types PNG (804), unknown (189), JPG (6), XML (1) Detected embedded file types and their counts.
highest datetime 2008-02-29 06:33:46 UTC Latest timestamp found among files inside the archive.
lowest datetime 2008-02-29 06:33:46 UTC Earliest timestamp found among files inside the archive.
num children 1440 Number of files contained within the archive.
type APK Container type detected for the analyzed file.
uncompressed size 10 MB Estimated total size of all files after extraction.

Sandbox

Sandbox Verdicts

Yomi Hunter
Harmless CLEAN
Zenbox android
Harmless 84% confidence CLEAN

Deep Manifest Analysis

Activity Intents (1)

com.mojang.minecraftpe.MainActivity
Actions
Main Activity Action: Start as a main entry point, does not expect to android.intent.action.MAIN
View Activity Action: Display the data to the user. android.intent.action.VIEW
Categories
android.intent.category.LAUNCHER android.intent.category.DEFAULT android.intent.category.BROWSABLE

Receiver Intents (1)

com.amazon.device.iap.ResponseReceiver
Actions
com.amazon.inapp.purchasing.NOTIFY com.amazon.inapp.purchasing.NOTIFY

Native Libraries (3)

libfmod libfmod.so
libgnustl_shared libgnustl_shared.so
libminecraftpe libminecraftpe.so

Requested Permissions (5)

have full network access Allows the app to create network sockets and use custom network protocols. The browser and other applications provide means to send data to the internet, so this permission is not required to send data to the internet. android.permission.INTERNET
com.android.vending.BILLING
view network connections Allows the app to view information about network connections such as which networks exist and are connected. android.permission.ACCESS_NETWORK_STATE
modify or delete the contents of your shared storage Allows the app to write the contents of your shared storage. android.permission.WRITE_EXTERNAL_STORAGE
control vibration Allows the app to control the vibrator. android.permission.VIBRATE

Uses Features (1)

Touchscreen Feature for {@link #getSystemAvailableFeatures} and android.hardware.touchscreen

Activities (8)

com.mojang.minecraftpe.MainActivity
com.google.android.gms.ads.AdActivity
com.unity3d.services.ads.adunit.AdUnitActivity
com.unity3d.services.ads.adunit.AdUnitTransparentActivity
com.unity3d.services.ads.adunit.AdUnitTransparentSoftwareActivity
com.unity3d.services.ads.adunit.AdUnitSoftwareActivity
com.facebook.ads.AudienceNetworkActivity
com.facebook.ads.internal.ipc.RemoteANActivity

Services (2)

com.facebook.ads.internal.ipc.AdsProcessPriorityService
com.facebook.ads.internal.ipc.AdsMessengerService

Broadcast Receivers (1)

com.amazon.device.iap.ResponseReceiver com.amazon.device.iap.ResponseReceiver

URL Endpoints (109)

http://Passport.NET/tb http://aka.ms/smscode\E http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-utility-1.0.xsd http://docs.oasis-open.org/wss/2004/XX/oasis-2004XX-wss-saml-token-profile-1.0#SAMLAssertionID http://enforcement.xbox.com http://play.google.com/store/apps/ http://play.google.com/store/apps/category/GAME http://schemas.microsoft.com/Passport/PPCRL http://schemas.microsoft.com/Passport/SoapServices/PPCRL http://schemas.microsoft.com/Passport/SoapServices/SOAPFault http://schemas.xmlsoap.org/ws/2004/09/policy http://schemas.xmlsoap.org/ws/2005/02/sc http://schemas.xmlsoap.org/ws/2005/02/trust http://schemas.xmlsoap.org/ws/2005/02/trust/Issue http://schemas.xmlsoap.org/ws/2005/02/trust/RST/Issue http://www.google.com http://www.xbox.com https://account https://accounts.dnet.xboxlive.com

Submission Details

Submitted At 2026-07-17
First Submission 2026-07-17
Last Submission 2026-07-17
Stored Until 2026-08-16