APK Security & Privacy Score
Security scoring uses multi-engine scan signals and APK indicators. Privacy scoring uses requested permissions and network endpoint patterns.
Security
Scan-weighted
96/100
Threat scan clean
Modern target SDK
Privacy
Permissions & network
87/100
High-risk permissions
AllowBackup enabled
Possible tracking
91/100
Excellent
Overall trust
Facts
Threat scan
0/76 flagged, 0 suspicious
Permissions
13 requested
Network strings
18 URLs (0 HTTP, 18 HTTPS)
Target SDK
36
Certificate
Valid until 2072-08-27 (47 years, suspicious)
Warnings
High-risk permissions detected: android.permission.REQUEST_INSTALL_PACKAGES
AllowBackup is enabled.
Possible analytics/tracking domains found: app-measurement.com, firebase-settings.crashlytics.com, pagead2.googlesyndication.com
Package Name
com.mobile.one_win
Version Code
53
Version Name
1.3.18
Application Name
com.bytefrontier.partner.a1win.App
Debuggable
No
Allow Backup
Yes
Min SDK
Android 26 (Oreo)
Target SDK
Android 36 (Unknown)
Supported ABIs
arm64-v8a
armeabi-v7a
x86
x86_64
Certificate & Signer
Valid From
Valid To
Serial Number
Thumbprint
Issuer: C
Issuer: CN
Issuer: DN
Issuer: L
Issuer: O
Issuer: OU
Issuer: ST
Subject: C
Subject: CN
Subject: DN
Subject: L
Subject: O
Subject: OU
Subject: ST
Security Scan
0
✓ Clean
Malicious
0
Suspicious
0
Harmless
0
Undetected
67
Timeout
0
Failure
1
Scan Providers
ALYac
APEX
AVG
Acronis
AhnLab-V3
Alibaba
Antiy-AVL
Arcabit
Avast
Avast-Mobile
Avira
Baidu
BitDefender
BitDefenderFalx
Bkav
CAT-QuickHeal
CMC
CTX
ClamAV
CrowdStrike
Cylance
Cynet
DeepInstinct
DrWeb
ESET-NOD32
Elastic
Emsisoft
F-Secure
Fortinet
GData
Google
Gridinsoft
Ikarus
Jiangmin
K7AntiVirus
K7GW
Kaspersky
Kingsoft
Lionic
Malwarebytes
MaxSecure
McAfeeD
MicroWorld-eScan
Microsoft
NANO-Antivirus
Paloalto
Panda
Rising
SUPERAntiSpyware
Sangfor
SentinelOne
Skyhigh
Sophos
Symantec
SymantecMobileInsight
TACHYON
Tencent
Trapmine
TrellixENS
TrendMicro
TrendMicro-HouseCall
Trustlook
VBA32
VIPRE
Varist
ViRobot
VirIT
Webroot
Xcitium
Yandex
Zillya
ZoneAlarm
Zoner
alibabacloud
huorong
tehtris
File Signatures
SHA-256
9ada7ccf56a3a508a746e62bb8b1d988f761a61b68bfcee47d5af0942a129f2d
MD5
45e4cb9917776303245246c5b5d94c50
SHA-1
9a7b641d54dc3823d063a22adfa089b099e5dc63
SSDEEP
98304:yT1Z25kteu458e307GInEjqyoMmF6di/KrQL4r:4L25kVe32GrEMmF6k4r
TLSH
T1F026BEC6F7D85A2EC87740B2CC9A56F112565C26CA439F83AD58335C38BB6E40F897D8
VHASH
554df9e91ecdd7f26751a731cab06364
PERMHASH
879a8cb96eecd4828ba87ce9f5f18d4c46522ec6953af400d0417627a191bff4
File Intelligence
Type Description
Human-friendly file type name based on multiple detection methods.
Type Extension
Most likely file extension inferred from the content.
Type Tag
Primary type tag assigned by the classifier.
Type Tags
Additional type tags that describe the file content.
Magic
File signature result from magic bytes inspection.
Magika
File type predicted by Magika (ML-based file type detection).
TrID
TrID file type guesses with probabilities.
dhash
Perceptual hash used to compare visual similarity of files.
raw md5
Raw MD5 hash of the file contents.
extensions
File extensions found inside the APK and how many of each.
file types
Detected embedded file types and their counts.
highest datetime
Latest timestamp found among files inside the archive.
lowest datetime
Earliest timestamp found among files inside the archive.
num children
Number of files contained within the archive.
type
Container type detected for the analyzed file.
uncompressed size
Estimated total size of all files after extraction.
Sandbox
Sandbox Verdicts
Zenbox android
category: harmless | confidence: 88 | classification: CLEAN | sandbox: Zenbox android
Deep Manifest Analysis
Activity Intents (1)
com.bytefrontier.partner.a1win.presentation.ui.MainActivity
Service Intents (2)
com.bytefrontier.partner.a1win.commons.firebase.AppFirebaseMessagingService
Firebase messaging service
com.google.firebase.messaging.FirebaseMessagingService
Receiver Intents (2)
Profile installer
androidx.profileinstaller.ProfileInstallReceiver
com.google.firebase.iid.FirebaseInstanceIdReceiver
Native Libraries (2)
libandroidx.graphics.path
libandroidx.graphics.path.so
libdatastore_shared_counter
libdatastore_shared_counter.so
Requested Permissions (13)
view network connections
android.permission.ACCESS_NETWORK_STATE
android.permission.POST_NOTIFICATIONS
android.permission.POST_NOTIFICATIONS
android.permission.REQUEST_INSTALL_PACKAGES
android.permission.REQUEST_INSTALL_PACKAGES
have full network access
android.permission.INTERNET
android.permission.USE_BIOMETRIC
android.permission.USE_BIOMETRIC
android.permission.USE_FINGERPRINT
android.permission.USE_FINGERPRINT
keep car screen turned on
android.permission.WAKE_LOCK
Cloud messaging receive
com.google.android.c2dm.permission.RECEIVE
Install Referrer service
com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE
com.google.android.gms.permission.AD_ID
com.google.android.gms.permission.AD_ID
AdServices Attribution
android.permission.ACCESS_ADSERVICES_ATTRIBUTION
AdServices Advertising ID
android.permission.ACCESS_ADSERVICES_AD_ID
Dynamic receiver access
com.mobile.one_win.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION
Activities (5)
com.bytefrontier.partner.a1win.presentation.ui.MainActivity
androidx.credentials.playservices.HiddenActivity
androidx.credentials.playservices.IdentityCredentialApiHiddenActivity
com.google.android.gms.auth.api.signin.internal.SignInHubActivity
com.google.android.gms.common.api.GoogleApiActivity
Services (10)
com.bytefrontier.partner.a1win.commons.firebase.AppFirebaseMessagingService
androidx.credentials.playservices.CredentialProviderMetadataHolder
com.google.android.gms.auth.api.signin.RevocationBoundService
Firebase messaging service
com.google.firebase.messaging.FirebaseMessagingService
com.google.firebase.components.ComponentDiscoveryService
com.google.android.gms.measurement.AppMeasurementService
com.google.android.gms.measurement.AppMeasurementJobService
com.google.firebase.sessions.SessionLifecycleService
com.google.android.datatransport.runtime.backends.TransportBackendDiscovery
com.google.android.datatransport.runtime.scheduling.jobscheduling.JobInfoSchedulerService
Broadcast Receivers (4)
com.google.firebase.iid.FirebaseInstanceIdReceiver
com.google.firebase.iid.FirebaseInstanceIdReceiver
com.google.android.gms.measurement.AppMeasurementReceiver
com.google.android.gms.measurement.AppMeasurementReceiver
com.google.android.datatransport.runtime.scheduling.jobscheduling.AlarmManagerSchedulerBroadcastReceiver
com.google.android.datatransport.runtime.scheduling.jobscheduling.AlarmManagerSchedulerBroadcastReceiver
Profile installer
androidx.profileinstaller.ProfileInstallReceiver
Content Providers (3)
androidx.core.content.FileProvider
com.google.firebase.provider.FirebaseInitProvider
androidx.startup.InitializationProvider
URL Endpoints (18)
https://accounts.google.com/o/oauth2/revoke?token=
https://app-measurement.com/a
https://firebase-settings.crashlytics.com/spi/v2/platforms/android/gmp/
https://firebase.google.com/docs/crashlytics/get-started?platform=android#add-plugin
https://firebase.google.com/support/guides/disable-analytics
https://firebase.google.com/support/privacy/init-options
https://firebaseinstallations.googleapis.com/v1/
https://goo.gl/NAOOOI
https://goo.gle/compose-feedback
https://google.com/search
https://issuetracker.google.com/issues/241760537
https://issuetracker.google.com/issues/new?component=907884&template=1466542
https://pagead2.googlesyndication.com/pagead/gen_204?id=gmob-apps
https://www.google.com
https://www.googleadservices.com/pagead/conversion/app/deeplink?id_type=adid&sdk_version=
https://www.googleapis.com/auth/games
https://www.googleapis.com/auth/games_lite
https://youtrack.jetbrains.com/issue/KT-55980
Submission Details
Submitted At
First Submission
Last Submission
Stored Until