APK Security & Privacy Score
Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.
Security
Scan-weighted
99/100
Threat scan clean
Modern target SDK
Privacy
Permissions & network
75/100
HTTP URLs found
Possible tracking
85/100
Good
Overall trust
Facts
Threat scan
0/75 flagged, 0 suspicious
Permissions
11 requested
Network strings
143 URLs (2 HTTP, 141 HTTPS)
Target SDK
35
Certificate
Valid until 2047-08-06 (21 years, suspicious)
Warnings
Found 2 HTTP URL strings (unencrypted).
Possible analytics/tracking domains found: app-measurement.com, app.adjust.com, app.adjust.net.in, app.adjust.world, pagead2.googlesyndication.com
Package Name
com.einnovation.temu
Version Code
45002
Version Name
4.50.1
Application Name
com.baogong.WhaleCoApplication
Debuggable
No
Allow Backup
No
Min SDK
Android 21 (Lollipop)
Target SDK
Android 35 (Android 15)
Supported ABIs
Universal
Certificate & Signer
Valid From
Valid To
Serial Number
Thumbprint
Issuer: C
Issuer: CN
Issuer: DN
Issuer: L
Issuer: O
Issuer: OU
Issuer: ST
Subject: C
Subject: CN
Subject: DN
Subject: L
Subject: O
Subject: OU
Subject: ST
Security Scan
0
✓ Clean
Malicious
0
Suspicious
0
Harmless
0
Undetected
59
Timeout
3
Failure
3
Scan Providers
ALYac
APEX
AVG
Acronis
AhnLab-V3
Alibaba
Antiy-AVL
Arcabit
Avast
Avast-Mobile
Avira
BitDefender
BitDefenderFalx
Bkav
CAT-QuickHeal
CMC
CTX
ClamAV
CrowdStrike
Cylance
Cynet
DeepInstinct
DrWeb
ESET-NOD32
Elastic
Emsisoft
F-Secure
Fortinet
GData
Google
Gridinsoft
Ikarus
Jiangmin
K7AntiVirus
K7GW
Kaspersky
Kingsoft
Lionic
Malwarebytes
MaxSecure
McAfeeD
MicroWorld-eScan
Microsoft
NANO-Antivirus
Paloalto
Panda
Rising
SUPERAntiSpyware
Sangfor
SentinelOne
Skyhigh
Sophos
Symantec
SymantecMobileInsight
TACHYON
Tencent
Trapmine
TrellixENS
TrendMicro
TrendMicro-HouseCall
Trustlook
VBA32
VIPRE
Varist
ViRobot
VirIT
Webroot
Xcitium
Yandex
Zillya
ZoneAlarm
Zoner
alibabacloud
huorong
tehtris
File Signatures
SHA-256
9576bf220933ef044fec562b72fccc0e2ec11f728f4f47e006ca623dbf2ce0ff
MD5
a34ad202f01bfede761ab2f9f9bab49f
SHA-1
836f62d8403c8f7d6b30388c13c2964e84724064
SSDEEP
393216:6eIfG5goQYR7xUweUiyfG2JyzgHgmQyaqmnT:6y/QYfeUEmQ3qmnT
TLSH
T1E9973712BA22DE22D4BD87398CA6C3D27336BD45EF4753673206B76CAD732C5AE45180
VHASH
ac224f4fbdae1624aa8a00d94b203f72
PERMHASH
065c56f0df528086d1332f68ad76fdf137e3d736bbbe13d7a9f91b98a4c920c7
File Intelligence
Type Description
Human-friendly file type name based on multiple detection methods.
Type Extension
Most likely file extension inferred from the content.
Type Tag
Primary type tag assigned by the classifier.
Type Tags
Additional type tags that describe the file content.
Magic
File signature result from magic bytes inspection.
Magika
File type predicted by Magika (ML-based file type detection).
TrID
TrID file type guesses with probabilities.
dhash
Perceptual hash used to compare visual similarity of files.
raw md5
Raw MD5 hash of the file contents.
extensions
File extensions found inside the APK and how many of each.
file types
Detected embedded file types and their counts.
highest datetime
Latest timestamp found among files inside the archive.
lowest datetime
Earliest timestamp found among files inside the archive.
num children
Number of files contained within the archive.
type
Container type detected for the analyzed file.
uncompressed size
Estimated total size of all files after extraction.
Deep Manifest Analysis
Activity Intents (9)
com.baogong.activity.ContainerActivity
com.baogong.app_push_permission.OtpReceiverActivity
com.baogong.login.app_auth.activity.KakaoAuthCustomTabActivity
com.baogong.login.app_auth.activity.LineAuthCallBackActivity
com.baogong.login.app_auth.activity.TwitterAuthCustomTabActivity
com.baogong.splash.activity.MainFrameActivity
com.braintreepayments.api.BraintreeDeepLinkActivity
com.einnovation.whaleco.pay.auth.braintree.BraintreeCallbackActivity
com.facebook.CustomTabActivity
Service Intents (2)
com.baogong.push.WhaleCoFirebaseMessagingService
Firebase messaging service
com.google.firebase.messaging.FirebaseMessagingService
Receiver Intents (10)
com.baogong.app_push_permission.OtpErrReceiver
com.baogong.app_push_permission.OtpReceiver
com.baogong.app_shortcuts.LocaleChangedReceiver
com.baogong.widget.provider.FarmlandWidget
com.baogong.widget.provider.FishlandWidget
com.facebook.AuthenticationTokenManager$CurrentAuthenticationTokenChangedBroadcastReceiver
com.facebook.CurrentAccessTokenExpirationBroadcastReceiver
com.google.firebase.iid.FirebaseInstanceIdReceiver
com.whaleco.widget.logistics.LogisticsWidgetProvider
com.whaleco.widget.search.SearchWidgetProvider
Requested Permissions (11)
have full network access
android.permission.INTERNET
view Wi-Fi connections
android.permission.ACCESS_WIFI_STATE
view network connections
android.permission.ACCESS_NETWORK_STATE
control vibration
android.permission.VIBRATE
keep car screen turned on
android.permission.WAKE_LOCK
com.google.android.gms.permission.AD_ID
com.google.android.gms.permission.AD_ID
Install Referrer service
com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE
android.permission.POST_NOTIFICATIONS
android.permission.POST_NOTIFICATIONS
Cloud messaging receive
com.google.android.c2dm.permission.RECEIVE
access approximate location only in the foreground
android.permission.ACCESS_COARSE_LOCATION
access precise location only in the foreground
android.permission.ACCESS_FINE_LOCATION
Uses Features (11)
Bluetooth
android.hardware.bluetooth
Camera
android.hardware.camera
Camera Autofocus
android.hardware.camera.autofocus
Location
android.hardware.location
Location Gps
android.hardware.location.gps
Location Network
android.hardware.location.network
Microphone
android.hardware.microphone
Screen Portrait
android.hardware.screen.portrait
Touchscreen
android.hardware.touchscreen
Wifi
android.hardware.wifi
Leanback
android.software.leanback
Activities (27)
com.einnovation.temu.pay.impl.base.container.PaymentContainerActivity
com.baogong.activity.ContainerActivity
com.baogong.activity.ContainerSplitActivity
com.baogong.activity.ContainerMaskActivity
com.baogong.activity.SplitHolderActivity
com.baogong.app_login.LoginActivity
com.facebook.FacebookActivity
com.facebook.CustomTabActivity
com.baogong.login.app_auth.activity.KakaoAuthCustomTabActivity
com.baogong.login.app_auth.activity.TwitterAuthCustomTabActivity
com.baogong.login.app_auth.activity.LineAuthResolverActivity
com.baogong.login.app_auth.activity.LineAuthCallBackActivity
com.baogong.app_push_permission.OtpReceiverActivity
com.baogong.splash.activity.MainFrameActivity
com.einnovation.whaleco.pay.auth.base.PaymentSdkActivity
com.einnovation.whaleco.pay.auth.braintree.BraintreeCallbackActivity
androidx.credentials.playservices.HiddenActivity
androidx.credentials.playservices.IdentityCredentialApiHiddenActivity
com.braintreepayments.api.BraintreeDeepLinkActivity
com.braintreepayments.api.GooglePayActivity
com.facebook.CustomTabMainActivity
com.google.android.gms.auth.api.signin.internal.SignInHubActivity
com.google.android.gms.common.api.GoogleApiActivity
com.google.android.play.core.common.PlayCoreDialogWrapperActivity
com.baogong.home.activity.LauncherActivity
com.whaleco.web_container.customtab_browser.BrowserCustomTabActivity
com.whaleco.safemode.strategy.FailSafeActivity
Services (38)
androidx.room.MultiInstanceInvalidationService
androidx.credentials.playservices.CredentialProviderMetadataHolder
com.baogong.push.WhaleCoFirebaseMessagingService
com.google.firebase.components.ComponentDiscoveryService
com.google.android.datatransport.runtime.backends.TransportBackendDiscovery
com.google.android.datatransport.runtime.scheduling.jobscheduling.JobInfoSchedulerService
com.einnovation.temu.work.impl.background.SystemJobService
com.google.android.gms.auth.api.signin.RevocationBoundService
com.google.android.gms.measurement.AppMeasurementService
com.google.android.gms.measurement.AppMeasurementJobService
Firebase messaging service
com.google.firebase.messaging.FirebaseMessagingService
com.whaleco.apm.crash.CrashReportIntentService
com.whaleco.apm.helper.MainDaemonService
com.whaleco.apm.helper.PushHelpService
com.whaleco.ipc_adapter.service.MainProcessIPCService
com.whaleco.ipc_adapter.service.LongLinkProcessIPCService
com.whaleco.net_push.service.PushService
com.whaleco.safemode.FailSafeService
org.chromium.content.app.PrivilegedProcessService0
org.chromium.content.app.PrivilegedProcessService1
org.chromium.content.app.PrivilegedProcessService2
org.chromium.content.app.PrivilegedProcessService3
org.chromium.content.app.PrivilegedProcessService4
org.chromium.content.app.PrivilegedProcessService5
org.chromium.content.app.PrivilegedProcessService6
org.chromium.content.app.PrivilegedProcessService7
org.chromium.content.app.PrivilegedProcessService8
org.chromium.content.app.PrivilegedProcessService9
org.chromium.content.app.PrivilegedProcessServiceFallback0
org.chromium.content.app.PrivilegedProcessServiceFallback1
org.chromium.content.app.PrivilegedProcessServiceFallback2
org.chromium.content.app.PrivilegedProcessServiceFallback3
org.chromium.content.app.PrivilegedProcessServiceFallback4
org.chromium.content.app.PrivilegedProcessServiceFallback5
org.chromium.content.app.PrivilegedProcessServiceFallback6
org.chromium.content.app.PrivilegedProcessServiceFallback7
org.chromium.content.app.PrivilegedProcessServiceFallback8
org.chromium.content.app.PrivilegedProcessServiceFallback9
Broadcast Receivers (14)
com.baogong.app_baog_share.ShareAppChooserReceiver
com.baogong.app_baog_share.ShareAppChooserReceiver
com.baogong.app_push_permission.OtpReceiver
com.baogong.app_push_permission.OtpReceiver
com.baogong.app_push_permission.OtpErrReceiver
com.baogong.app_push_permission.OtpErrReceiver
com.baogong.app_shortcuts.LocaleChangedReceiver
com.baogong.app_shortcuts.LocaleChangedReceiver
com.baogong.widget.provider.FarmlandWidget
com.baogong.widget.provider.FarmlandWidget
com.baogong.widget.provider.FishlandWidget
com.baogong.widget.provider.FishlandWidget
com.google.firebase.iid.FirebaseInstanceIdReceiver
com.google.firebase.iid.FirebaseInstanceIdReceiver
com.google.android.datatransport.runtime.scheduling.jobscheduling.AlarmManagerSchedulerBroadcastReceiver
com.google.android.datatransport.runtime.scheduling.jobscheduling.AlarmManagerSchedulerBroadcastReceiver
com.baogong.push.DeleteNotificationReceiver
com.baogong.push.DeleteNotificationReceiver
com.facebook.CurrentAccessTokenExpirationBroadcastReceiver
com.facebook.CurrentAccessTokenExpirationBroadcastReceiver
com.facebook.AuthenticationTokenManager$CurrentAuthenticationTokenChangedBroadcastReceiver
com.facebook.AuthenticationTokenManager$CurrentAuthenticationTokenChangedBroadcastReceiver
com.google.android.gms.measurement.AppMeasurementReceiver
com.google.android.gms.measurement.AppMeasurementReceiver
com.whaleco.widget.search.SearchWidgetProvider
com.whaleco.widget.search.SearchWidgetProvider
com.whaleco.widget.logistics.LogisticsWidgetProvider
com.whaleco.widget.logistics.LogisticsWidgetProvider
Content Providers (4)
com.facebook.FacebookContentProvider
com.baogong.app_base_user.auth.AuthNotifyProvider
com.facebook.internal.FacebookInitProvider
com.whaleco.temu.fileprovider.BGFileProvider
URL Endpoints (149)
http://apache.org/xml/features/disallow-doctype-decl
http://otter
http://xml.org/sax/features/external-general-entities
http://xml.org/sax/features/external-parameter-entities
http://xml.org/sax/features/namespaces
https://#SID#.cdn4.forter.com/mob/v3/#SID#/prop.json?t=#TS#&s=#BS#&u=#UID#&r=#RT#&seed=#SEED#&bn=#BNUMBER#
https://.facebook.com
https://accounts.google.com/o/oauth2/revoke?token=
https://aimg.kwcdn.com/material-put/1e1918bb488/1564679f-37f7-4efd-a278-d645e8ac5546.png
https://aimg.kwcdn.com/material-put/1e1918bb488/1aa1de1b-3050-4528-9b50-f4a93d06c056.png
https://aimg.kwcdn.com/material-put/1e1918bb488/7c77285c-813e-430f-9a75-376bee1765e9.png
https://aimg.kwcdn.com/material-put/1e1918bb488/aa287bfb-95e0-4430-a8db-a56328623b64.png
https://aimg.kwcdn.com/material-put/1e1918bb488/b922785d-e97d-4dc3-9b93-78779ca7757b.png
https://aimg.kwcdn.com/material-put/1e1918bb488/e05f145f-dd68-4b7d-a934-62509cc3c7da.png
https://aimg.kwcdn.com/material-put/1e1918bb488/ecb88dc1-5535-4205-b7b1-c07f981ae65f.png
https://aimg.kwcdn.com/material-put/1e1918bb488/fefa4ff9-3b6f-452c-90ab-5762e365575a.png
https://aimg.kwcdn.com/shark-push/2019505e764/f98240e0-4f5f-49d0-bd4a-a4dbfc608b3e_72x32.png
https://aimg.kwcdn.com/upload_aimg/address/1752da7d-33e5-4aeb-bafb-564215ddb1bb.png
https://aimg.kwcdn.com/upload_aimg/address/1e3b49be-aa33-4456-a553-41d121922206.png
https://aimg.kwcdn.com/upload_aimg/address/a679be6c-80a8-4582-b92b-4e61fb2865ce.png
Submission Details
Submitted At
First Submission
Last Submission
Stored Until