APK Security & Privacy Score
Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.
Security
Scan-weighted
73/100
Threat scan flagged
Debuggable build
Privacy
Permissions & network
98/100
AllowBackup enabled
Low data access
84/100
Good
Overall trust
Facts
Threat scan
3/75 flagged, 0 suspicious
Permissions
8 requested
Network strings
12 URLs (0 HTTP, 12 HTTPS)
Target SDK
33
Certificate
Valid until 2035-07-17 (9 years, suspicious)
Warnings
Threat scan flagged: 3/75 scanners marked this file as malicious.
AllowBackup is enabled.
Package Name
com.example.w01010
Version Code
1
Version Name
1.0
Debuggable
Yes
Allow Backup
Yes
Min SDK
Android 24 (Nougat)
Target SDK
Android 33 (Android 13)
Supported ABIs
Universal
Certificate & Signer
Valid From
Valid To
Serial Number
Thumbprint
Issuer: C
Issuer: CN
Issuer: DN
Issuer: L
Issuer: O
Issuer: OU
Issuer: ST
Issuer: email
Subject: C
Subject: CN
Subject: DN
Subject: L
Subject: O
Subject: OU
Subject: ST
Subject: email
Security Scan
3
⚠️ Threats Detected
Detected by
3 vendors:
BitDefenderFalx
(Android.Riskware.TestKey.rA), Google
(Detected), Ikarus
(Trojan-Spy.AndroidOS.SMSSpy)
Malicious
3
Suspicious
0
Harmless
0
Undetected
63
Timeout
1
Failure
0
Scan Providers
ALYac
APEX
AVG
Acronis
AhnLab-V3
Alibaba
Antiy-AVL
Arcabit
Avast
Avast-Mobile
Avira
BitDefender
BitDefenderFalx
Android.Riskware.TestKey.rA
Bkav
CAT-QuickHeal
CMC
CTX
ClamAV
CrowdStrike
Cylance
Cynet
DeepInstinct
DrWeb
ESET-NOD32
Elastic
Emsisoft
F-Secure
Fortinet
GData
Google
Detected
Gridinsoft
Ikarus
Trojan-Spy.AndroidOS.SMSSpy
Jiangmin
K7AntiVirus
K7GW
Kaspersky
Kingsoft
Lionic
Malwarebytes
MaxSecure
McAfeeD
MicroWorld-eScan
Microsoft
NANO-Antivirus
Paloalto
Panda
Rising
SUPERAntiSpyware
Sangfor
SentinelOne
Skyhigh
Sophos
Symantec
SymantecMobileInsight
TACHYON
Tencent
Trapmine
TrellixENS
TrendMicro
TrendMicro-HouseCall
Trustlook
VBA32
VIPRE
Varist
ViRobot
VirIT
Webroot
Xcitium
Yandex
Zillya
ZoneAlarm
Zoner
alibabacloud
huorong
tehtris
File Signatures
SHA-256
260baef6a648733581fd96218791a00b8f006ffd5e2d47bc18afcb289cf39161
MD5
2e72989c50827befe79d0c860efc1d21
SHA-1
d1005b50f7d8e2ad5f20fe7da96fd78d0f933dc1
SSDEEP
196608:lt9pXYmW4AMbCoZvL5bcjwrTlQ2IKse8/r3QMz/gD2h+IWw1nxfBnXF1nEDe:H9pBHPblVbcjwrBw/r3ZopFw1hBXHoe
TLSH
T1F4E61247FF48DA1BC03752726D671A39160B0D099A83A7AB25183F8D3DB75D40E8ABCD
VHASH
3e27fa21bca699ca349897432009b639
PERMHASH
0aa2d1bada835b3447673903e807e26fc9b737b3f82aa968c4063b65508ede0a
File Intelligence
Type Description
Human-friendly file type name based on multiple detection methods.
Type Extension
Most likely file extension inferred from the content.
Type Tag
Primary type tag assigned by the classifier.
Type Tags
Additional type tags that describe the file content.
Magic
File signature result from magic bytes inspection.
Magika
File type predicted by Magika (ML-based file type detection).
TrID
TrID file type guesses with probabilities.
dhash
Perceptual hash used to compare visual similarity of files.
raw md5
Raw MD5 hash of the file contents.
extensions
File extensions found inside the APK and how many of each.
file types
Detected embedded file types and their counts.
highest datetime
Latest timestamp found among files inside the archive.
lowest datetime
Earliest timestamp found among files inside the archive.
num children
Number of files contained within the archive.
type
Container type detected for the analyzed file.
uncompressed size
Estimated total size of all files after extraction.
Deep Manifest Analysis
Activity Intents (3)
com.example.brm.MainActivity
com.google.firebase.auth.internal.GenericIdpActivity
com.google.firebase.auth.internal.RecaptchaActivity
Service Intents (1)
Firebase messaging service
com.google.firebase.messaging.FirebaseMessagingService
Receiver Intents (2)
Profile installer
androidx.profileinstaller.ProfileInstallReceiver
com.google.firebase.iid.FirebaseInstanceIdReceiver
Requested Permissions (8)
have full network access
android.permission.INTERNET
view network connections
android.permission.ACCESS_NETWORK_STATE
android.permission.POST_NOTIFICATIONS
android.permission.POST_NOTIFICATIONS
keep car screen turned on
android.permission.WAKE_LOCK
com.example.w01010_com.google.android.c2dm.permission.RECEIVE
com.example.w01010_com.google.android.c2dm.permission.RECEIVE
com.example.w01010_com.google.android.gms.permission.AD_ID
com.example.w01010_com.google.android.gms.permission.AD_ID
com.example.w01010_com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE
com.example.w01010_com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE
Dynamic receiver access
com.example.w01010.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION
Activities (11)
com.example.brm.MainActivity2
com.example.brm.liked
com.example.brm.onlypin
com.example.brm.logged
com.example.brm.money
com.example.brm.online
com.example.brm.MainActivity
com.google.firebase.auth.internal.GenericIdpActivity
com.google.firebase.auth.internal.RecaptchaActivity
com.google.android.gms.auth.api.signin.internal.SignInHubActivity
com.google.android.gms.common.api.GoogleApiActivity
Services (7)
Firebase messaging service
com.google.firebase.messaging.FirebaseMessagingService
com.google.firebase.components.ComponentDiscoveryService
com.google.android.gms.auth.api.signin.RevocationBoundService
com.google.android.datatransport.runtime.backends.TransportBackendDiscovery
com.google.android.datatransport.runtime.scheduling.jobscheduling.JobInfoSchedulerService
com.google.android.gms.measurement.AppMeasurementService
com.google.android.gms.measurement.AppMeasurementJobService
Broadcast Receivers (4)
com.google.firebase.iid.FirebaseInstanceIdReceiver
com.google.firebase.iid.FirebaseInstanceIdReceiver
com.google.android.datatransport.runtime.scheduling.jobscheduling.AlarmManagerSchedulerBroadcastReceiver
com.google.android.datatransport.runtime.scheduling.jobscheduling.AlarmManagerSchedulerBroadcastReceiver
com.google.android.gms.measurement.AppMeasurementReceiver
com.google.android.gms.measurement.AppMeasurementReceiver
Profile installer
androidx.profileinstaller.ProfileInstallReceiver
Content Providers (2)
com.google.firebase.provider.FirebaseInitProvider
androidx.startup.InitializationProvider
URL Endpoints (14)
https://bit.ly/2XFpdma
https://console.firebase.google.com/
https://developer.android.com/google/play/integrity/reference/com/google/android/play/core/integrity/model/IntegrityErrorCode.html#
https://firebase.google.com/docs/android/kotlin-migration
https://firebase.google.com/docs/database/android/retrieve-data#filtering_data
https://firebase.google.com/docs/database/ios/structure-data#best_practices_for_data_structure
https://firebase.google.com/support/privacy/init-options
https://firebasestorage.googleapis.com/v0
https://github.com/firebase/firebase-android-sdk
https://play.google.com/store/search?q=otpauth&c=apps
https://www.firebase.com/docs/android/guide/offline-capabilities.html#section-handling-transactions-offline
https://www.recaptcha.net/recaptcha/api3
https://yellow-new-panel-default-rtdb.firebaseio.com
https://yellow-new-panel.firebasestorage.app
Submission Details
Submitted At
First Submission
Last Submission
Stored Until