nyapanel_1.0__15_.apk

13.43 MB

Analyzed: 2026-05-22 20:39 UTC

APK Security & Privacy Score

Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.

Security Scan-weighted
73/100
Threat scan flagged Debuggable build
Privacy Permissions & network
98/100
AllowBackup enabled Low data access
84/100
Good
Overall trust

Facts

Threat scan 3/75 flagged, 0 suspicious
Permissions 8 requested
Network strings 12 URLs (0 HTTP, 12 HTTPS)
Target SDK 33
Certificate Valid until 2035-07-17 (9 years, suspicious)

Warnings

Threat scan flagged: 3/75 scanners marked this file as malicious.
AllowBackup is enabled.
Package Name com.example.w01010
Version Code 1
Version Name 1.0
Debuggable Yes
Allow Backup Yes
Min SDK Android 24 (Nougat)
Target SDK Android 33 (Android 13)
Supported ABIs
Universal

Certificate & Signer

Valid From 2008-02-29 01:33:46
Valid To 2035-07-17 01:33:46
Serial Number 936eacbe07f201df
Thumbprint 61ed377e85d386a8dfee6b864bd85b0bfaa5af81
Issuer: C US
Issuer: CN Android
Issuer: DN C:US, CN:Android, L:Mountain View, O:Android, ST:California, OU:Android, email:android@android.com
Issuer: L Mountain View
Issuer: O Android
Issuer: OU Android
Issuer: ST California
Issuer: email android@android.com
Subject: C US
Subject: CN Android
Subject: DN C:US, CN:Android, L:Mountain View, O:Android, ST:California, OU:Android, email:android@android.com
Subject: L Mountain View
Subject: O Android
Subject: OU Android
Subject: ST California
Subject: email android@android.com

Security Scan

3 /75
⚠️ Threats Detected
Detected by 3 vendors: BitDefenderFalx (Android.Riskware.TestKey.rA), Google (Detected), Ikarus (Trojan-Spy.AndroidOS.SMSSpy)
Scanned by 75 security vendors
Last scan: 2026-05-22 20:39 UTC
Malicious
3
Suspicious
0
Harmless
0
Undetected
63
Timeout
1
Failure
0

Scan Providers

75 vendors
ALYac undetected
No result reported
Engine 2.0.0.10
APEX type-unsupported
No result reported
Engine 6.781
AVG undetected
No result reported
Engine 23.9.8494.0
Acronis undetected
No result reported
Engine 1.2.0.121
AhnLab-V3 undetected
No result reported
Engine 3.30.0.10666
Alibaba undetected
No result reported
Engine 0.3.0.5
Antiy-AVL undetected
No result reported
Engine 3.0
Arcabit undetected
No result reported
Engine 2025.0.0.23
Avast undetected
No result reported
Engine 23.9.8494.0
Avast-Mobile undetected
No result reported
Engine 260522-00
Avira undetected
No result reported
Engine 8.3.3.24
BitDefender undetected
No result reported
Engine 7.2
BitDefenderFalx malicious
Android.Riskware.TestKey.rA
Engine 2.0.936
Bkav undetected
No result reported
Engine 8.2.40(8338)
CAT-QuickHeal undetected
No result reported
Engine 22.00
CMC undetected
No result reported
Engine 2.4.2022.1
CTX undetected
No result reported
Engine 2024.8.29.1
ClamAV undetected
No result reported
Engine 1.5.2.0
CrowdStrike undetected
No result reported
Engine 1.0
Cylance type-unsupported
No result reported
Engine 3.0.0.0
Cynet undetected
No result reported
Engine 4.0.3.4
DeepInstinct type-unsupported
No result reported
Engine 5.0.0.8
DrWeb undetected
No result reported
Engine 7.0.75.2070
ESET-NOD32 undetected
No result reported
Engine 18.2.18.0
Elastic type-unsupported
No result reported
Engine 4.0.261
Emsisoft undetected
No result reported
Engine 2024.8.0.61147
F-Secure undetected
No result reported
Engine 18.10.1547.307
Fortinet undetected
No result reported
Engine 7.0.48.0
GData undetected
No result reported
Engine GD:27.44639AVA:64.31288
Google malicious
Detected
Engine 1779478291
Gridinsoft undetected
No result reported
Engine 1.0.245.174
Ikarus malicious
Trojan-Spy.AndroidOS.SMSSpy
Engine 6.4.16.0
Jiangmin undetected
No result reported
Engine 16.0.100
K7AntiVirus undetected
No result reported
Engine 14.53.59589
K7GW undetected
No result reported
Engine 14.53.59589
Kaspersky undetected
No result reported
Engine 22.0.1.28
Kingsoft undetected
No result reported
Engine None
Lionic undetected
No result reported
Engine 8.16
Malwarebytes undetected
No result reported
Engine 3.1.0.235
MaxSecure timeout
No result reported
Engine 1.0.0.1
McAfeeD undetected
No result reported
Engine 1.2.0.14532
MicroWorld-eScan undetected
No result reported
Engine 14.0.409.0
Microsoft undetected
No result reported
Engine 1.1.26040.8
NANO-Antivirus undetected
No result reported
Engine 1.0.170.26895
Paloalto type-unsupported
No result reported
Engine 0.9.0.1003
Panda undetected
No result reported
Engine 4.6.4.2
Rising undetected
No result reported
Engine 25.0.0.28
SUPERAntiSpyware undetected
No result reported
Engine 5.6.0.1032
Sangfor undetected
No result reported
Engine 2.22.3.0
SentinelOne undetected
No result reported
Engine 7.6.2.19
Skyhigh undetected
No result reported
Engine v2021.2.0+4045
Sophos undetected
No result reported
Engine 3.5.1.0
Symantec undetected
No result reported
Engine 1.22.0.0
SymantecMobileInsight undetected
No result reported
Engine 2.0
TACHYON undetected
No result reported
Engine 2026-05-22.02
Tencent undetected
No result reported
Engine 1.0.0.1
Trapmine type-unsupported
No result reported
Engine 4.0.12.0
TrellixENS undetected
No result reported
Engine 6.0.6.653
TrendMicro undetected
No result reported
Engine 24.550.0.1002
TrendMicro-HouseCall undetected
No result reported
Engine 24.550.0.1002
Trustlook undetected
No result reported
Engine 1.0
VBA32 undetected
No result reported
Engine 5.6.1
VIPRE undetected
No result reported
Engine 6.0.0.35
Varist undetected
No result reported
Engine 6.6.1.3
ViRobot undetected
No result reported
Engine 2014.3.20.0
VirIT undetected
No result reported
Engine 9.5.1213
Webroot undetected
No result reported
Engine 1.9.0.8
Xcitium undetected
No result reported
Engine 38669
Yandex undetected
No result reported
Engine 5.5.2.24
Zillya undetected
No result reported
Engine 2.0.0.5607
ZoneAlarm undetected
No result reported
Engine 6.25-116106992
Zoner undetected
No result reported
Engine 2.2.2.0
alibabacloud type-unsupported
No result reported
Engine 2.2.0
huorong undetected
No result reported
Engine 434f907:434f907:dce9a18:dce9a18
tehtris type-unsupported
No result reported

File Signatures

SHA-256 260baef6a648733581fd96218791a00b8f006ffd5e2d47bc18afcb289cf39161
MD5 2e72989c50827befe79d0c860efc1d21
SHA-1 d1005b50f7d8e2ad5f20fe7da96fd78d0f933dc1
SSDEEP 196608:lt9pXYmW4AMbCoZvL5bcjwrTlQ2IKse8/r3QMz/gD2h+IWw1nxfBnXF1nEDe:H9pBHPblVbcjwrBw/r3ZopFw1hBXHoe
TLSH T1F4E61247FF48DA1BC03752726D671A39160B0D099A83A7AB25183F8D3DB75D40E8ABCD
VHASH 3e27fa21bca699ca349897432009b639
PERMHASH 0aa2d1bada835b3447673903e807e26fc9b737b3f82aa968c4063b65508ede0a

File Intelligence

Type Description Android Human-friendly file type name based on multiple detection methods.
Type Extension apk Most likely file extension inferred from the content.
Type Tag android Primary type tag assigned by the classifier.
Type Tags executable, mobile, android, apk Additional type tags that describe the file content.
Magic Zip archive data, at least v1.0 to extract, compression method=store File signature result from magic bytes inspection.
Magika APK File type predicted by Magika (ML-based file type detection).
TrID Android Package (49%), Java Archive (24.5%), Sweet Home 3D Design (generic) (19%), ZIP compressed archive (7.2%) TrID file type guesses with probabilities.
dhash 0000001e0e161300 Perceptual hash used to compare visual similarity of files.
raw md5 b0d5aef43d7a8b0fe0bbfd51e638a8b0 Raw MD5 hash of the file contents.
extensions xml (671), png (197), version (51), properties (32), proto (25), kotlin_builtins (7), dex (6), jpg (2), bin (1), CoroutineExceptionHandler (1), LoadBalancerProvider (1), MainDispatcherFactory (1), ManagedChannelProvider (1), MF (1), NameResolverProvider (1), RSA (1), SF (1) File extensions found inside the APK and how many of each.
file types XML (671), PNG (195), unknown (131), JPG (2), Java Bytecode (1) Detected embedded file types and their counts.
highest datetime 2026-05-03 03:44:34 UTC Latest timestamp found among files inside the archive.
lowest datetime 1981-01-01 01:01:02 UTC Earliest timestamp found among files inside the archive.
num children 1045 Number of files contained within the archive.
type APK Container type detected for the analyzed file.
uncompressed size 26 MB Estimated total size of all files after extraction.

Deep Manifest Analysis

Activity Intents (3)

com.example.brm.MainActivity
Actions
Main Activity Action: Start as a main entry point, does not expect to android.intent.action.MAIN
Categories
android.intent.category.LAUNCHER
com.google.firebase.auth.internal.GenericIdpActivity
Actions
View Activity Action: Display the data to the user. android.intent.action.VIEW
Categories
android.intent.category.DEFAULT android.intent.category.BROWSABLE
com.google.firebase.auth.internal.RecaptchaActivity
Actions
View Activity Action: Display the data to the user. android.intent.action.VIEW
Categories
android.intent.category.DEFAULT android.intent.category.BROWSABLE

Service Intents (1)

Firebase messaging service Handles push notifications and data messages from Firebase Cloud Messaging. com.google.firebase.messaging.FirebaseMessagingService
Actions
Firebase messaging event Action used by Firebase to deliver a push message to the app. com.google.firebase.MESSAGING_EVENT

Receiver Intents (2)

Profile installer Installs performance profiles to speed up app startup and hot paths. androidx.profileinstaller.ProfileInstallReceiver
Actions
Install performance profile Installs a profile that helps optimize app performance. androidx.profileinstaller.action.INSTALL_PROFILE
Skip profile install Skips profile installation for this build. androidx.profileinstaller.action.SKIP_FILE
Save performance profile Saves a profile generated during app usage. androidx.profileinstaller.action.SAVE_PROFILE
Benchmark operation Runs a profile installer benchmark operation. androidx.profileinstaller.action.BENCHMARK_OPERATION
com.google.firebase.iid.FirebaseInstanceIdReceiver
Actions
com.google.android.c2dm.intent.RECEIVE com.google.android.c2dm.intent.RECEIVE

Requested Permissions (8)

have full network access Allows the app to create network sockets and use custom network protocols. The browser and other applications provide means to send data to the internet, so this permission is not required to send data to the internet. android.permission.INTERNET
view network connections Allows the app to view information about network connections such as which networks exist and are connected. android.permission.ACCESS_NETWORK_STATE
android.permission.POST_NOTIFICATIONS Custom app or vendor permission (not publicly documented). android.permission.POST_NOTIFICATIONS
keep car screen turned on Allows the app to keep the car screen turned on. android.permission.WAKE_LOCK
com.example.w01010_com.google.android.c2dm.permission.RECEIVE Custom app or vendor permission (not publicly documented). com.example.w01010_com.google.android.c2dm.permission.RECEIVE
com.example.w01010_com.google.android.gms.permission.AD_ID Custom app or vendor permission (not publicly documented). com.example.w01010_com.google.android.gms.permission.AD_ID
com.example.w01010_com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE Custom app or vendor permission (not publicly documented). com.example.w01010_com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE
Dynamic receiver access Internal app permission used to protect dynamic broadcast receivers. com.example.w01010.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION

Activities (11)

com.example.brm.MainActivity2
com.example.brm.liked
com.example.brm.onlypin
com.example.brm.logged
com.example.brm.money
com.example.brm.online
com.example.brm.MainActivity
com.google.firebase.auth.internal.GenericIdpActivity
com.google.firebase.auth.internal.RecaptchaActivity
com.google.android.gms.auth.api.signin.internal.SignInHubActivity
com.google.android.gms.common.api.GoogleApiActivity

Services (7)

Firebase messaging service Handles push notifications and data messages from Firebase Cloud Messaging. com.google.firebase.messaging.FirebaseMessagingService
com.google.firebase.components.ComponentDiscoveryService
com.google.android.gms.auth.api.signin.RevocationBoundService
com.google.android.datatransport.runtime.backends.TransportBackendDiscovery
com.google.android.datatransport.runtime.scheduling.jobscheduling.JobInfoSchedulerService
com.google.android.gms.measurement.AppMeasurementService
com.google.android.gms.measurement.AppMeasurementJobService

Broadcast Receivers (4)

com.google.firebase.iid.FirebaseInstanceIdReceiver com.google.firebase.iid.FirebaseInstanceIdReceiver
com.google.android.datatransport.runtime.scheduling.jobscheduling.AlarmManagerSchedulerBroadcastReceiver com.google.android.datatransport.runtime.scheduling.jobscheduling.AlarmManagerSchedulerBroadcastReceiver
com.google.android.gms.measurement.AppMeasurementReceiver com.google.android.gms.measurement.AppMeasurementReceiver
Profile installer Installs performance profiles to speed up app startup and hot paths. androidx.profileinstaller.ProfileInstallReceiver

Content Providers (2)

com.google.firebase.provider.FirebaseInitProvider
androidx.startup.InitializationProvider

Submission Details

Submitted At 2026-05-22
First Submission 2026-05-22
Last Submission 2026-05-22
Stored Until 2026-06-21