APK Security & Privacy Score
Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.
Security
Scan-weighted
65/100
Threat scan flagged
Outdated target SDK
Privacy
Permissions & network
59/100
HTTP URLs found
Possible tracking
62/100
Caution
Overall trust
Facts
Threat scan
4/75 flagged, 0 suspicious
Permissions
10 requested
Network strings
112 URLs (64 HTTP, 48 HTTPS)
Target SDK
28
Certificate
Valid until 2121-12-26 (96 years, suspicious)
Warnings
Threat scan flagged: 4/75 scanners marked this file as malicious.
Found 64 HTTP URL strings (unencrypted).
Possible analytics/tracking domains found: alogsus.umeng.com, alogus.umeng.com, developer.umeng.com, ouplog.umeng.com, plbslog.umeng.com
Package Name
com.differ.xiaoming
Version Code
2813
Version Name
28.1.3
Application Name
org.cocos2dx.javascript.AppApplication
Debuggable
No
Allow Backup
No
Min SDK
Android 24 (Nougat)
Target SDK
Android 28 (Pie)
Supported ABIs
armeabi
Certificate & Signer
Valid From
Valid To
Serial Number
Thumbprint
Issuer: C
Issuer: CN
Issuer: DN
Issuer: L
Issuer: O
Issuer: OU
Issuer: ST
Subject: C
Subject: CN
Subject: DN
Subject: L
Subject: O
Subject: OU
Subject: ST
Security Scan
4
⚠️ Threats Detected
Detected by
4 vendors:
AhnLab-V3 (PUP/Android.Agent.1311865), BitDefenderFalx (Android.Riskware.Agent.OSP), Google (Detected)
Malicious
4
Suspicious
0
Harmless
0
Undetected
63
Timeout
0
Failure
0
Scan Providers
ALYac
APEX
AVG
Acronis
AhnLab-V3
PUP/Android.Agent.1311865
Alibaba
Antiy-AVL
Arcabit
Avast
Avast-Mobile
Avira
BitDefender
BitDefenderFalx
Android.Riskware.Agent.OSP
Bkav
CAT-QuickHeal
CMC
CTX
ClamAV
CrowdStrike
Cylance
Cynet
DeepInstinct
DrWeb
ESET-NOD32
Elastic
Emsisoft
F-Secure
Fortinet
GData
Google
Detected
Gridinsoft
Ikarus
Trojan.AndroidOS.Agent
Jiangmin
K7AntiVirus
K7GW
Kaspersky
Kingsoft
Lionic
Malwarebytes
MaxSecure
McAfeeD
MicroWorld-eScan
Microsoft
NANO-Antivirus
Paloalto
Panda
Rising
SUPERAntiSpyware
Sangfor
SentinelOne
Skyhigh
Sophos
Symantec
SymantecMobileInsight
TACHYON
Tencent
Trapmine
TrellixENS
TrendMicro
TrendMicro-HouseCall
Trustlook
VBA32
VIPRE
Varist
ViRobot
VirIT
Webroot
Xcitium
Yandex
Zillya
ZoneAlarm
Zoner
alibabacloud
huorong
tehtris
File Signatures
SHA-256
7883caa896424cdd09bbbf57bec3b9bd765798ff0c614fd775ad03ddd7cbe243
MD5
8a26f0e975b4012b5d4c60944b1b1897
SHA-1
610a36f7413e9816bd845335a89fd21f7585107c
SSDEEP
393216:ktiUB2msUZfJ/f545WDF01ptkdjLkWnPd1gIO5/PTipQv4p2BhwiM:OAmsmf9fmAJEEjLld1zAH9R9M
TLSH
T13AF622A1954CA809CF29E073C17963B2B49B6F407625B432FDCDF1582BB5972E60CB87
VHASH
e068881bdb7e8693e85163c909f3ccf2
PERMHASH
d8ee64b2f56b40f555d10c538be2736e28f6f65d5eefe9756244e329ab08aea4
File Intelligence
Type Description
Human-friendly file type name based on multiple detection methods.
Type Extension
Most likely file extension inferred from the content.
Type Tag
Primary type tag assigned by the classifier.
Type Tags
Additional type tags that describe the file content.
Magic
File signature result from magic bytes inspection.
Magika
File type predicted by Magika (ML-based file type detection).
TrID
TrID file type guesses with probabilities.
dhash
Perceptual hash used to compare visual similarity of files.
raw md5
Raw MD5 hash of the file contents.
extensions
File extensions found inside the APK and how many of each.
file types
Detected embedded file types and their counts.
highest datetime
Latest timestamp found among files inside the archive.
lowest datetime
Earliest timestamp found among files inside the archive.
num children
Number of files contained within the archive.
type
Container type detected for the analyzed file.
uncompressed size
Estimated total size of all files after extraction.
Deep Manifest Analysis
Activity Intents (2)
cn.jpush.android.ui.PushActivity
org.cocos2dx.javascript.AppActivity
Service Intents (2)
cn.jpush.android.service.DaemonService
cn.jpush.android.service.PushService
Receiver Intents (1)
cn.jpush.android.service.PushReceiver
Native Libraries (5)
libBugly
libBugly.so
libcocos2djs
libcocos2djs.so
libjcore123
libjcore123.so
libmp3lame
libmp3lame.so
libpl_droidsonroids_gif
libpl_droidsonroids_gif.so
Requested Permissions (10)
have full network access
android.permission.INTERNET
control vibration
android.permission.VIBRATE
view network connections
android.permission.ACCESS_NETWORK_STATE
view Wi-Fi connections
android.permission.ACCESS_WIFI_STATE
modify or delete the contents of your shared storage
android.permission.WRITE_EXTERNAL_STORAGE
read the contents of your shared storage
android.permission.READ_EXTERNAL_STORAGE
record audio
android.permission.RECORD_AUDIO
take pictures and videos
android.permission.CAMERA
access approximate location only in the foreground
android.permission.ACCESS_COARSE_LOCATION
access precise location only in the foreground
android.permission.ACCESS_FINE_LOCATION
Uses Features (2)
Camera
android.hardware.camera
Microphone
android.hardware.microphone
Activities (6)
org.cocos2dx.javascript.AdsActivity
org.cocos2dx.javascript.AppActivity
com.differ.xiaoming.wxapi.WXEntryActivity
com.differ.xiaoming.apshare.ShareEntryActivity
cn.jpush.android.ui.PopWinActivity
cn.jpush.android.ui.PushActivity
Services (2)
cn.jpush.android.service.PushService
cn.jpush.android.service.DaemonService
Broadcast Receivers (1)
cn.jpush.android.service.PushReceiver
cn.jpush.android.service.PushReceiver
Content Providers (1)
cn.jpush.android.service.DownloadProvider
URL Endpoints (114)
http://119.29.29.29/d?dn=
http://120.24.210.161:52234/gateway/red/dispatcher
http://182.92.20.189:9099/
http://188.188.1.94:2018/api/gateway
http://223.252.220.223/lbs/conf
http://223.252.220.223/lbsrc/conf.jsp
http://abroad.apilocate.amap.com/mobile/binary
http://android.bugly.qq.com/rqd/async
http://apilocate.amap.com/mobile/binary
http://apilocatesrc.amap.com/mobile/binary
http://appsupport.qq.com/cgi-bin/qzapps/mapp_addapp.cgi
http://c.isdspeed.qq.com/code.cgi
http://cfg.imtt.qq.com/tbs?v=2&mk=
http://cgi.connect.qq.com/qqconnectopen/openapi/policy_conf
http://cgicol.amap.com/collection/writedata?ver=v1.0_ali&
http://da.qiyukf.netease.com
http://da.ysf.space
http://data.iapppay.com:8048/domain?dn=data.iapppay.com
http://debugtbs.qq.com
http://debugtbs.qq.com?10000
Submission Details
Submitted At
First Submission
Last Submission
Stored Until