1win icon

1win.apk

1win

4.29 MB

Analyzed: 2026-02-23 11:10 UTC

APK Security & Privacy Score

Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.

Security Scan-weighted
96/100
Threat scan clean Modern target SDK
Privacy Permissions & network
87/100
High-risk permissions AllowBackup enabled Possible tracking
91/100
Excellent
Overall trust

Facts

Threat scan 0/76 flagged, 0 suspicious
Permissions 13 requested
Network strings 18 URLs (0 HTTP, 18 HTTPS)
Target SDK 36
Certificate Valid until 2072-08-27 (47 years, suspicious)

Warnings

High-risk permissions detected: android.permission.REQUEST_INSTALL_PACKAGES
AllowBackup is enabled.
Possible analytics/tracking domains found: app-measurement.com, firebase-settings.crashlytics.com, pagead2.googlesyndication.com
Package Name com.mobile.one_win
Version Code 53
Version Name 1.3.18
Application Name com.bytefrontier.partner.a1win.App
Debuggable No
Allow Backup Yes
Min SDK Android 26 (Oreo)
Target SDK Android 36 (Unknown)
Supported ABIs
arm64-v8a armeabi-v7a x86 x86_64

Certificate & Signer

Valid From 2017-11-24 04:09:18
Valid To 2072-08-27 04:09:18
Serial Number 33d18cb3
Thumbprint 8e28b3a867a273db8247be43ea0c08f0a4e1eaa3
Issuer: C qw
Issuer: CN qw
Issuer: DN C:qw, CN:qw, L:qw, O:qw, ST:qw, OU:qw
Issuer: L qw
Issuer: O qw
Issuer: OU qw
Issuer: ST qw
Subject: C qw
Subject: CN qw
Subject: DN C:qw, CN:qw, L:qw, O:qw, ST:qw, OU:qw
Subject: L qw
Subject: O qw
Subject: OU qw
Subject: ST qw

Security Scan

0 /76
✓ Clean
Scanned by 76 security vendors
Last scan: 2026-02-23 11:12 UTC
Malicious
0
Suspicious
0
Harmless
0
Undetected
67
Timeout
0
Failure
1

Scan Providers

76 vendors
ALYac undetected
No result reported
Engine 2.0.0.10
APEX type-unsupported
No result reported
Engine 6.750
AVG undetected
No result reported
Engine 23.9.8494.0
Acronis undetected
No result reported
Engine 1.2.0.121
AhnLab-V3 undetected
No result reported
Engine 3.29.1.10604
Alibaba undetected
No result reported
Engine 0.3.0.5
Antiy-AVL undetected
No result reported
Engine 3.0
Arcabit undetected
No result reported
Engine 2025.0.0.23
Avast undetected
No result reported
Engine 23.9.8494.0
Avast-Mobile undetected
No result reported
Engine 260223-00
Avira undetected
No result reported
Engine 8.3.3.24
Baidu undetected
No result reported
Engine 1.0.0.2
BitDefender undetected
No result reported
Engine 7.2
BitDefenderFalx undetected
No result reported
Engine 2.0.936
Bkav failure
No result reported
Engine 2.0.0.1
CAT-QuickHeal undetected
No result reported
Engine 22.00
CMC undetected
No result reported
Engine 2.4.2022.1
CTX undetected
No result reported
Engine 2024.8.29.1
ClamAV undetected
No result reported
Engine 1.5.1.0
CrowdStrike undetected
No result reported
Engine 1.0
Cylance type-unsupported
No result reported
Engine 3.0.0.0
Cynet undetected
No result reported
Engine 4.0.3.4
DeepInstinct type-unsupported
No result reported
Engine 5.0.0.8
DrWeb undetected
No result reported
Engine 7.0.75.2070
ESET-NOD32 undetected
No result reported
Engine 18.2.18.0
Elastic undetected
No result reported
Engine 4.0.249
Emsisoft undetected
No result reported
Engine 2024.8.0.61147
F-Secure undetected
No result reported
Engine 18.10.1547.307
Fortinet undetected
No result reported
Engine 7.0.30.0
GData undetected
No result reported
Engine GD:27.43630AVA:64.30716
Google undetected
No result reported
Engine 1771837254
Gridinsoft undetected
No result reported
Engine 1.0.238.174
Ikarus undetected
No result reported
Engine 6.4.16.0
Jiangmin undetected
No result reported
Engine 16.0.100
K7AntiVirus undetected
No result reported
Engine 14.37.58673
K7GW undetected
No result reported
Engine 14.37.58673
Kaspersky undetected
No result reported
Engine 22.0.1.28
Kingsoft undetected
No result reported
Engine None
Lionic undetected
No result reported
Engine 8.16
Malwarebytes undetected
No result reported
Engine 3.1.0.209
MaxSecure undetected
No result reported
Engine 1.0.0.1
McAfeeD undetected
No result reported
Engine 1.2.0.13781
MicroWorld-eScan undetected
No result reported
Engine 14.0.409.0
Microsoft undetected
No result reported
Engine 1.1.26010.1
NANO-Antivirus undetected
No result reported
Engine 1.0.170.26895
Paloalto type-unsupported
No result reported
Engine 0.9.0.1003
Panda undetected
No result reported
Engine 4.6.4.2
Rising undetected
No result reported
Engine 25.0.0.28
SUPERAntiSpyware undetected
No result reported
Engine 5.6.0.1032
Sangfor undetected
No result reported
Engine 2.22.3.0
SentinelOne type-unsupported
No result reported
Engine 7.5.3.1
Skyhigh undetected
No result reported
Engine v2021.2.0+4045
Sophos undetected
No result reported
Engine 3.3.1.0
Symantec undetected
No result reported
Engine 1.22.0.0
SymantecMobileInsight undetected
No result reported
Engine 2.0
TACHYON undetected
No result reported
Engine 2026-02-23.02
Tencent undetected
No result reported
Engine 1.0.0.1
Trapmine type-unsupported
No result reported
Engine 4.0.9.0
TrellixENS undetected
No result reported
Engine 6.0.6.653
TrendMicro undetected
No result reported
Engine 24.550.0.1002
TrendMicro-HouseCall undetected
No result reported
Engine 24.550.0.1002
Trustlook undetected
No result reported
Engine 1.0
VBA32 undetected
No result reported
Engine 5.5.1
VIPRE undetected
No result reported
Engine 6.0.0.35
Varist undetected
No result reported
Engine 6.6.1.3
ViRobot undetected
No result reported
Engine 2014.3.20.0
VirIT undetected
No result reported
Engine 9.5.1150
Webroot undetected
No result reported
Engine 1.9.0.8
Xcitium undetected
No result reported
Engine 38435
Yandex undetected
No result reported
Engine 5.5.2.24
Zillya undetected
No result reported
Engine 2.0.0.5549
ZoneAlarm undetected
No result reported
Engine 6.23-113518380
Zoner undetected
No result reported
Engine 2.2.2.0
alibabacloud type-unsupported
No result reported
Engine 2.2.0
huorong undetected
No result reported
Engine 46a034f:46a034f:b97a070:b97a070
tehtris type-unsupported
No result reported

File Signatures

SHA-256 9ada7ccf56a3a508a746e62bb8b1d988f761a61b68bfcee47d5af0942a129f2d
MD5 45e4cb9917776303245246c5b5d94c50
SHA-1 9a7b641d54dc3823d063a22adfa089b099e5dc63
SSDEEP 98304:yT1Z25kteu458e307GInEjqyoMmF6di/KrQL4r:4L25kVe32GrEMmF6k4r
TLSH T1F026BEC6F7D85A2EC87740B2CC9A56F112565C26CA439F83AD58335C38BB6E40F897D8
VHASH 554df9e91ecdd7f26751a731cab06364
PERMHASH 879a8cb96eecd4828ba87ce9f5f18d4c46522ec6953af400d0417627a191bff4

File Intelligence

Type Description Android Human-friendly file type name based on multiple detection methods.
Type Extension apk Most likely file extension inferred from the content.
Type Tag android Primary type tag assigned by the classifier.
Type Tags executable, mobile, android, apk Additional type tags that describe the file content.
Magic Zip archive data, at least v0.0 to extract, compression method=deflate File signature result from magic bytes inspection.
Magika APK File type predicted by Magika (ML-based file type detection).
TrID Android Package (40%), Java Archive (20%), VYM Mind Map (18.5%), Sweet Home 3D Design (generic) (15.5%), ZIP compressed archive (5.9%) TrID file type guesses with probabilities.
dhash 0000001e1e190408 Perceptual hash used to compare visual similarity of files.
raw md5 3c8c183780528ddba590a6f5bb3ef8a0 Raw MD5 hash of the file contents.
extensions xml (655), png (199), version (84), properties (26), so (8), kotlin_builtins (7), js (3), proto (3), txt (3), json (2), a (1), bin (1), dex (1), gz (1), MF (1), prof (1), profm (1), textproto (1), v (1) File extensions found inside the APK and how many of each.
file types XML (655), PNG (199), unknown (137), ELF (8), Java Bytecode (1) Detected embedded file types and their counts.
highest datetime 1981-01-01 01:01:02 UTC Latest timestamp found among files inside the archive.
lowest datetime 1981-01-01 01:01:02 UTC Earliest timestamp found among files inside the archive.
num children 1032 Number of files contained within the archive.
type APK Container type detected for the analyzed file.
uncompressed size 4.9 MB Estimated total size of all files after extraction.

Sandbox

Sandbox Verdicts

Zenbox android category: harmless | confidence: 88 | classification: CLEAN | sandbox: Zenbox android

Deep Manifest Analysis

Activity Intents (1)

com.bytefrontier.partner.a1win.presentation.ui.MainActivity
Actions
Main Activity Action: Start as a main entry point, does not expect to android.intent.action.MAIN
START_MAIN START_MAIN
View Activity Action: Display the data to the user. android.intent.action.VIEW
Categories
android.intent.category.LAUNCHER android.intent.category.DEFAULT android.intent.category.BROWSABLE

Service Intents (2)

com.bytefrontier.partner.a1win.commons.firebase.AppFirebaseMessagingService
Actions
Firebase messaging event Action used by Firebase to deliver a push message to the app. com.google.firebase.MESSAGING_EVENT
Firebase messaging service Handles push notifications and data messages from Firebase Cloud Messaging. com.google.firebase.messaging.FirebaseMessagingService
Actions
Firebase messaging event Action used by Firebase to deliver a push message to the app. com.google.firebase.MESSAGING_EVENT

Receiver Intents (2)

Profile installer Installs performance profiles to speed up app startup and hot paths. androidx.profileinstaller.ProfileInstallReceiver
Actions
Install performance profile Installs a profile that helps optimize app performance. androidx.profileinstaller.action.INSTALL_PROFILE
Skip profile install Skips profile installation for this build. androidx.profileinstaller.action.SKIP_FILE
Save performance profile Saves a profile generated during app usage. androidx.profileinstaller.action.SAVE_PROFILE
Benchmark operation Runs a profile installer benchmark operation. androidx.profileinstaller.action.BENCHMARK_OPERATION
com.google.firebase.iid.FirebaseInstanceIdReceiver
Actions
com.google.android.c2dm.intent.RECEIVE com.google.android.c2dm.intent.RECEIVE

Native Libraries (2)

libandroidx.graphics.path libandroidx.graphics.path.so
libdatastore_shared_counter libdatastore_shared_counter.so

Requested Permissions (13)

view network connections Allows the app to view information about network connections such as which networks exist and are connected. android.permission.ACCESS_NETWORK_STATE
android.permission.POST_NOTIFICATIONS Custom app or vendor permission (not publicly documented). android.permission.POST_NOTIFICATIONS
android.permission.REQUEST_INSTALL_PACKAGES Custom app or vendor permission (not publicly documented). android.permission.REQUEST_INSTALL_PACKAGES
have full network access Allows the app to create network sockets and use custom network protocols. The browser and other applications provide means to send data to the internet, so this permission is not required to send data to the internet. android.permission.INTERNET
android.permission.USE_BIOMETRIC Custom app or vendor permission (not publicly documented). android.permission.USE_BIOMETRIC
android.permission.USE_FINGERPRINT Custom app or vendor permission (not publicly documented). android.permission.USE_FINGERPRINT
keep car screen turned on Allows the app to keep the car screen turned on. android.permission.WAKE_LOCK
Cloud messaging receive Allows the app to receive push messages via Google/Firebase Cloud Messaging. com.google.android.c2dm.permission.RECEIVE
Install Referrer service Allows Google Play to bind to the app's Install Referrer service for install attribution. com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE
com.google.android.gms.permission.AD_ID Custom app or vendor permission (not publicly documented). com.google.android.gms.permission.AD_ID
AdServices Attribution Required to call AdServices Attribution APIs. android.permission.ACCESS_ADSERVICES_ATTRIBUTION
AdServices Advertising ID Required to call AdServices Advertising ID APIs. android.permission.ACCESS_ADSERVICES_AD_ID
Dynamic receiver access Internal app permission used to protect dynamic broadcast receivers. com.mobile.one_win.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION

Activities (5)

com.bytefrontier.partner.a1win.presentation.ui.MainActivity
androidx.credentials.playservices.HiddenActivity
androidx.credentials.playservices.IdentityCredentialApiHiddenActivity
com.google.android.gms.auth.api.signin.internal.SignInHubActivity
com.google.android.gms.common.api.GoogleApiActivity

Services (10)

com.bytefrontier.partner.a1win.commons.firebase.AppFirebaseMessagingService
androidx.credentials.playservices.CredentialProviderMetadataHolder
com.google.android.gms.auth.api.signin.RevocationBoundService
Firebase messaging service Handles push notifications and data messages from Firebase Cloud Messaging. com.google.firebase.messaging.FirebaseMessagingService
com.google.firebase.components.ComponentDiscoveryService
com.google.android.gms.measurement.AppMeasurementService
com.google.android.gms.measurement.AppMeasurementJobService
com.google.firebase.sessions.SessionLifecycleService
com.google.android.datatransport.runtime.backends.TransportBackendDiscovery
com.google.android.datatransport.runtime.scheduling.jobscheduling.JobInfoSchedulerService

Broadcast Receivers (4)

com.google.firebase.iid.FirebaseInstanceIdReceiver com.google.firebase.iid.FirebaseInstanceIdReceiver
com.google.android.gms.measurement.AppMeasurementReceiver com.google.android.gms.measurement.AppMeasurementReceiver
com.google.android.datatransport.runtime.scheduling.jobscheduling.AlarmManagerSchedulerBroadcastReceiver com.google.android.datatransport.runtime.scheduling.jobscheduling.AlarmManagerSchedulerBroadcastReceiver
Profile installer Installs performance profiles to speed up app startup and hot paths. androidx.profileinstaller.ProfileInstallReceiver

Content Providers (3)

androidx.core.content.FileProvider
com.google.firebase.provider.FirebaseInitProvider
androidx.startup.InitializationProvider

Submission Details

Submitted At 2026-02-23
First Submission 2026-02-23
Last Submission 2026-02-23
Stored Until 2026-03-25