APK Security & Privacy Score
Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.
Security
Scan-weighted
99/100
Threat scan clean
Modern target SDK
Privacy
Permissions & network
98/100
HTTP URLs found
Possible tracking
Low data access
98/100
Excellent
Overall trust
Facts
Threat scan
0/75 flagged, 0 suspicious
Permissions
4 requested
Network strings
35 URLs (6 HTTP, 29 HTTPS)
Target SDK
36
Certificate
Valid until 2053-08-20 (27 years, suspicious)
Warnings
Found 6 HTTP URL strings (unencrypted).
Possible analytics/tracking domains found: pagead2.googlesyndication.com
Package Name
it.puntocolf.mobile
Version Code
141
Version Name
1.0.16
Debuggable
No
Allow Backup
No
Min SDK
Android 24 (Nougat)
Target SDK
Android 36 (Unknown)
Supported ABIs
arm64-v8a
armeabi-v7a
x86_64
Certificate & Signer
Valid From
Valid To
Serial Number
Thumbprint
Issuer: C
Issuer: CN
Issuer: DN
Issuer: L
Issuer: O
Issuer: OU
Issuer: ST
Subject: C
Subject: CN
Subject: DN
Subject: L
Subject: O
Subject: OU
Subject: ST
Security Scan
0
✓ Clean
Malicious
0
Suspicious
0
Harmless
0
Undetected
66
Timeout
0
Failure
1
Scan Providers
ALYac
APEX
AVG
Acronis
AhnLab-V3
Alibaba
Antiy-AVL
Arcabit
Avast
Avast-Mobile
Avira
BitDefender
BitDefenderFalx
Bkav
CAT-QuickHeal
CMC
CTX
ClamAV
CrowdStrike
Cylance
Cynet
DeepInstinct
DrWeb
ESET-NOD32
Elastic
Emsisoft
F-Secure
Fortinet
GData
Google
Gridinsoft
Ikarus
Jiangmin
K7AntiVirus
K7GW
Kaspersky
Kingsoft
Lionic
Malwarebytes
MaxSecure
McAfeeD
MicroWorld-eScan
Microsoft
NANO-Antivirus
Paloalto
Panda
Rising
SUPERAntiSpyware
Sangfor
SentinelOne
Skyhigh
Sophos
Symantec
SymantecMobileInsight
TACHYON
Tencent
Trapmine
TrellixENS
TrendMicro
TrendMicro-HouseCall
Trustlook
VBA32
VIPRE
Varist
ViRobot
VirIT
Webroot
Xcitium
Yandex
Zillya
ZoneAlarm
Zoner
alibabacloud
huorong
tehtris
File Signatures
SHA-256
bdb8aa27257315da9e0414cd7b76d8b4a37661c3623c345e755518a879a694a3
MD5
4fba0ebb1cf2ec4de72bf498c849bdfa
SHA-1
c653d225fd7901a2b6caa683dd8b6fb88839718c
SSDEEP
786432:p2iECrJ8gV+fDM+rT6xaobFI+c1FUz4t6VlTLQ9:pDECd8NrT6xao5UFUPLa
TLSH
T144F7D043E0AD8635C8DEE134BB6E1625B230384C45E6556B794CA214BFCF9E02BE67F1
VHASH
87251f6d81a2f109fad027f334e22807
PERMHASH
cc68fdafe7ae75cf3bc8a41160797efd3433b0374048dcd6796f4b89be82099c
File Intelligence
Type Description
Human-friendly file type name based on multiple detection methods.
Type Extension
Most likely file extension inferred from the content.
Type Tag
Primary type tag assigned by the classifier.
Type Tags
Additional type tags that describe the file content.
Magic
File signature result from magic bytes inspection.
Magika
File type predicted by Magika (ML-based file type detection).
TrID
TrID file type guesses with probabilities.
dhash
Perceptual hash used to compare visual similarity of files.
raw md5
Raw MD5 hash of the file contents.
extensions
File extensions found inside the APK and how many of each.
file types
Detected embedded file types and their counts.
highest datetime
Latest timestamp found among files inside the archive.
lowest datetime
Earliest timestamp found among files inside the archive.
num children
Number of files contained within the archive.
type
Container type detected for the analyzed file.
uncompressed size
Estimated total size of all files after extraction.
Deep Manifest Analysis
Activity Intents (1)
it.puntocolf.mobile.MainActivity
Receiver Intents (2)
Profile installer
androidx.profileinstaller.ProfileInstallReceiver
com.amazon.device.iap.ResponseReceiver
Native Libraries (3)
libapp
libapp.so
libdatastore_shared_counter
libdatastore_shared_counter.so
libflutter
libflutter.so
Requested Permissions (4)
have full network access
android.permission.INTERNET
view network connections
android.permission.ACCESS_NETWORK_STATE
com.android.vending.BILLING
Dynamic receiver access
it.puntocolf.mobile.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION
Activities (7)
it.puntocolf.mobile.MainActivity
io.flutter.plugins.urllauncher.WebViewActivity
com.revenuecat.purchases.amazon.purchasing.ProxyAmazonBillingActivity
com.revenuecat.purchases.TestStoreErrorDialogActivity
com.android.billingclient.api.ProxyBillingActivity
com.android.billingclient.api.ProxyBillingActivityV2
com.google.android.gms.common.api.GoogleApiActivity
Services (2)
com.google.android.datatransport.runtime.backends.TransportBackendDiscovery
com.google.android.datatransport.runtime.scheduling.jobscheduling.JobInfoSchedulerService
Broadcast Receivers (3)
com.amazon.device.iap.ResponseReceiver
com.amazon.device.iap.ResponseReceiver
Profile installer
androidx.profileinstaller.ProfileInstallReceiver
com.google.android.datatransport.runtime.scheduling.jobscheduling.AlarmManagerSchedulerBroadcastReceiver
com.google.android.datatransport.runtime.scheduling.jobscheduling.AlarmManagerSchedulerBroadcastReceiver
Content Providers (2)
com.crazecoder.openfile.FileProvider
androidx.startup.InitializationProvider
URL Endpoints (43)
http://dashif.org/guidelines/last-segment-number
http://dashif.org/guidelines/thumbnail_tile
http://dashif.org/guidelines/trickmode
http://dashif.org/thumbnail_tile
http://g.co/dev/packagevisibility
http://schemas.microsoft.com/DRM/2007/03/protocols/AcquireLicense
http://www.amazon.com/gp/mas/get-appstore/android/ref=mas_mx_mba_iap_dl
https://aomedia.org/emsg/ID3
https://api-diagnostics.revenuecat.com/
https://api-paywalls.revenuecat.com/
https://api-production.8-lives-cat.io/
https://api.revenuecat.com/
https://api.revenuecat.com/force-server-failure
https://default.url
https://developer.android.com/guide/topics/media/issues/cleartext-not-permitted
https://developer.android.com/guide/topics/media/issues/player-accessed-on-wrong-thread
https://developer.android.com/guide/topics/permissions/overview
https://developer.android.com/reference/android/content/Context#createDeviceProtectedStorageContext(
https://developer.android.com/reference/android/view/View#announceForAccessibility(java.lang.CharSequence
https://developer.apple.com/streaming/emsg-id3
Submission Details
Submitted At
First Submission
Last Submission
Stored Until